blob: 21775ba3a210f276090ea768e616df0d8da1955d [file] [log] [blame]
willy tarreau036e1ce2005-12-17 13:46:33 +01001ChangeLog :
2===========
willy tarreau4302f492005-12-18 01:00:37 +01003
Christopher Faulet01c10562024-09-19 17:25:44 +020042024/09/19 : 2.8.11
5 - BUG/MINOR: quic: fix computed length of emitted STREAM frames
6 - BUG/MINOR: proxy: fix server_id_hdr_name leak on deinit()
7 - BUG/MINOR: proxy: fix log_tag leak on deinit()
8 - BUG/MINOR: proxy: fix check_{command,path} leak on deinit()
9 - BUG/MINOR: proxy: fix dyncookie_key leak on deinit()
10 - BUG/MINOR: proxy: fix source interface and usesrc leaks on deinit()
11 - BUG/MINOR: proxy: fix header_unique_id leak on deinit()
12 - DOC/MINOR: management: add missed -dR and -dv options
13 - DOC: management: rename show stats domain cli "dns" to "resolvers"
14 - DOC: configuration: fix alphabetical order of bind options
15 - SCRIPTS: git-show-backports: do not truncate git-show output
16 - DOC: api/event_hdl: small updates, fix an example and add some precisions
17 - BUG/MINOR: h3: fix crash on STOP_SENDING receive after GOAWAY emission
18 - BUG/MINOR: mux-quic: fix crash on qcs SD alloc failure
19 - BUG/MINOR: quic: fix BUG_ON() on Tx pkt alloc failure
20 - BUG/MINOR: hlua: report proper context upon error in hlua_cli_io_handler_fct()
21 - MINOR: activity: make the memory profiling hash size configurable at build time
22 - BUG/MEDIUM: h3: ensure the ":method" pseudo header is totally valid
23 - BUG/MEDIUM: h3: ensure the ":scheme" pseudo header is totally valid
24 - BUG/MEDIUM: quic: fix race-condition in quic_get_cid_tid()
25 - BUG/MINOR: quic: fix race condition in qc_check_dcid()
26 - BUG/MINOR: quic: fix race-condition on trace for CID retrieval
27 - BUG/MEDIUM: quic: fix possible exit from qc_check_dcid() without unlocking
28 - DOC: configuration: more details about the master-worker mode
29 - MEDIUM: ssl: initialize the SSL stack explicitely
30 - BUG/MINOR: jwt: don't try to load files with HMAC algorithm
31 - DOC: configuration: update maxconn description
32 - BUG/MINOR: jwt: fix variable initialisation
33 - BUG/MINOR: h1: Fail to parse empty transfer coding names
34 - BUG/MINOR: h1: Reject empty coding name as last transfer-encoding value
35 - BUG/MEDIUM: h1: Reject empty Transfer-encoding header
36 - BUG/MEDIUM: spoe: Be sure to create a SPOE applet if none on the current thread
37 - BUG/MEDIUM: bwlim: Be sure to never set the analyze expiration date in past
38 - BUG/MINOR: session: Eval L4/L5 rules defined in the default section
39 - BUG/MEDIUM: debug/cli: fix "show threads" crashing with low thread counts
40 - BUG/MEDIUM: ssl_sock: fix deadlock in ssl_sock_load_ocsp() on error path
41 - DOC: configuration: issuers-chain-path not compatible with OCSP
42 - DOC: config: improve the http-keep-alive section
43 - BUG/MINOR: stick-table: fix crash for src_inc_gpc() without stkcounter
44 - BUG/MINOR: server: Don't warn fallback IP is used during init-addr resolution
45 - BUG/MINOR: cli: Atomically inc the global request counter between CLI commands
46 - BUG/MINOR: quic: Lack of precision when computing K (cubic only cc)
47 - BUG/MEDIUM: jwt: Clear SSL error queue on error when checking the signature
48 - MINOR: queue: add a function to check for TOCTOU after queueing
49 - BUG/MEDIUM: queue: deal with a rare TOCTOU in assign_server_and_queue()
50 - MEDIUM: init: set default for fd_hard_limit via DEFAULT_MAXFD (take #2)
51 - BUG/MEDIUM: init: fix fd_hard_limit default in compute_ideal_maxconn
52 - BUG/MEDIUM: stream: Prevent mux upgrades if client connection is no longer ready
53 - BUG/MEDIUM: cli: Always release back endpoint between two commands on the mcli
54 - BUG/MEDIUM: mux-h1: Properly handle empty message when an error is triggered
55 - BUG/MEDIUM: stconn: Report error on SC on send if a previous SE error was set
56 - BUG/MEDIUM: quic: prevent conn freeze on 0RTT undeciphered content
57 - BUG/MEDIUM: http-ana: Report error on write error waiting for the response
58 - BUG/MEDIUM: h2: Only report early HTX EOM for tunneled streams
59 - BUG/MEDIUM: mux-h2: Propagate term flags to SE on error in h2s_wake_one_stream
60 - BUG/MINOR: fcgi-app: handle a possible strdup() failure
61 - BUG/MINOR: trace/quic: enable conn/session pointer recovery from quic_conn
62 - BUG/MINOR: trace/quic: permit to lock on frontend/connect/session etc
63 - BUG/MEDIUM: trace: fix null deref in lockon mechanism since TRACE_ENABLED()
64 - BUG/MINOR: trace: automatically start in waiting mode with "start <evt>"
65 - BUG/MINOR: trace/quic: make "qconn" selectable as a lockon criterion
66 - BUG/MINOR: quic/trace: make quic_conn_enc_level_init() emit NEW not CLOSE
67 - BUG/MINOR: proto_tcp: delete fd from fdtab if listen() fails
68 - BUG/MINOR: proto_tcp: keep error msg if listen() fails
69 - MINOR: channel: implement ci_insert() function
70 - BUG/MEDIUM: mworker/cli: fix pipelined modes on master CLI
71 - REGTESTS: mcli: test the pipelined commands on master CLI
72 - BUG/MINOR: mux-quic: do not send too big MAX_STREAMS ID
73 - BUG/MINOR: proto_uxst: delete fd from fdtab if listen() fails
74 - BUG/MINOR: h3: properly reject too long header responses
75 - DOC: config: correct the table for option tcplog
76 - BUG/MEDIUM: clock: also update the date offset on time jumps
77 - BUG/MEDIUM: mux-pt/mux-h1: Release the pipe on connection error on sending path
78 - BUG/MINOR: stconn: Request to send something to be woken up when the pipe is full
79 - BUG/MINOR: pattern: pat_ref_set: fix UAF reported by coverity
80 - BUG/MINOR: pattern: pat_ref_set: return 0 if err was found
81 - BUG/MINOR: pattern: do not leave a leading comma on "set" error messages
82 - DOC: configuration: place the HAPROXY_HTTP_LOG_FMT example on the correct line
83 - REGTESTS: fix random failures with wrong_ip_port_logging.vtc under load
84 - BUG/MEDIUM: clock: detect and cover jumps during execution
85 - BUG/MINOR: pattern: prevent const sample from being tampered in pat_match_beg()
86 - BUG/MEDIUM: pattern: prevent UAF on reused pattern expr
87 - BUG/MAJOR: mux-h1: Wake SC to perform 0-copy forwarding in CLOSING state
88 - BUG/MINOR: polling: fix time reporting when using busy polling
89 - BUG/MINOR: clock: make time jump corrections a bit more accurate
90 - BUG/MINOR: clock: validate that now_offset still applies to the current date
91 - BUG/MEDIUM: queue: implement a flag to check for the dequeuing
92 - BUG/MEDIUM: cache/stats: Wait to have the request before sending the response
93 - BUG/MEDIUM: promex: Wait to have the request before sending the response
94 - BUG/MINOR: cfgparse-listen: fix option httpslog override warning message
95
Amaury Denoyellef28885f2024-06-14 14:57:26 +0200962024/06/14 : 2.8.10
97 - BUG/MINOR: cli: Report an error to user if command or payload is too big
98 - BUG/MINOR: listener: always assign distinct IDs to shards
99 - BUG/MINOR: log: fix lf_text_len() truncate inconsistency
100 - BUG/MINOR: tools/log: invalid encode_{chunk,string} usage
101 - BUG/MINOR: log: invalid snprintf() usage in sess_build_logline()
102 - CLEANUP: log: lf_text_len() returns a pointer not an integer
103 - BUG/MEDIUM: http-ana: Deliver 502 on keep-alive for fressh server connection
104 - BUG/MINOR: http-ana: Fix TX_L7_RETRY and TX_D_L7_RETRY values
105 - BUG/MINOR: debug: make sure DEBUG_STRICT=0 does work as documented
106 - BUG/MEDIUM: peers/trace: fix crash when listing event types
107 - CI: revert kernel addr randomization introduced in 3a0fc864
108 - MINOR: net_helper: Add support for floats/doubles.
109 - BUG/MEDIUM: grpc: Fix several unaligned 32/64 bits accesses
110 - BUG/MEDIUM: stconn: Don't forward channel data if input data must be filtered
111 - BUG/MEDIUM: evports: do not clear returned events list on signal
112 - BUG/MEDIUM: applet: Fix applet API to put input data in a buffer
113 - BUG/MEDIUM: spoe: Always retry when an applet fails to send a frame
114 - BUG/MEDIUM: peers: Fix exit condition when max-updates-at-once is reached
115 - BUG/MINOR: server: fix slowstart behavior
116 - BUG/MEDIUM: cache: Vary not working properly on anything other than accept-encoding
117 - BUG/MINOR: stconn: Fix sc_mux_strm() return value
118 - BUG/MINOR: sock: handle a weird condition with connect()
119 - BUG/MINOR: fd: my_closefrom() on Linux could skip contiguous series of sockets
120 - BUG/MINOR: backend: use cum_sess counters instead of cum_conn
121 - BUG/MINOR: h1: fix detection of upper bytes in the URI
122 - BUG/MINOR: mworker: reintroduce way to disable seamless reload with -x /dev/null
123 - BUILD: clock: improve check for pthread_getcpuclockid()
124 - BUG/MINOR: haproxy: only tid 0 must not sleep if got signal
125 - DOC: lua: fix filters.txt file location
126 - MINOR: log: add dup_logsrv() helper function
127 - BUG/MINOR: log: keep the ref in dup_logger()
128 - BUG/MINOR: log: smp_rgs array issues with inherited global log directives
129 - BUG/MINOR: mux-quic: fix error code on shutdown for non HTTP/3
130 - BUG/MINOR: qpack: fix error code reported on QPACK decoding failure
131 - BUG/MEDIUM: htx: mark htx_sl as packed since it may be realigned
132 - BUG/MEDIUM: stick-tables: properly mark stktable_data as packed
133 - BUG/MINOR: h1: Check authority for non-CONNECT methods only if a scheme is found
134 - BUG/MEDIUM: h1: Reject CONNECT request if the target has a scheme
135 - BUILD: stick-tables: better mark the stktable_data as 32-bit aligned
136 - BUG/MEDIUM: fd: prevent memory waste in fdtab array
137 - BUG/MINOR: htpp-ana/stats: Specify that HTX redirect messages have a C-L header
138 - BUG/MINOR: stats: Don't state the 303 redirect response is chunked
139 - CLEANUP: ssl/cli: remove unused code in dump_crtlist_conf
140 - DOC: configuration: update the crt-list documentation
141 - BUG/MINOR: connection: parse PROXY TLV for LOCAL mode
142 - BUG/MAJOR: quic: Crash with TLS_AES_128_CCM_SHA256 (libressl only)
143 - BUG/MEDIUM: quic_tls: prevent LibreSSL < 4.0 from negotiating CHACHA20_POLY1305
144 - BUG/MEDIUM: mux-quic: Create sedesc in same time of the QUIC stream
145 - BUILD: quic: fix unused variable warning when threads are disabled
146 - MEDIUM: config: prevent communication with privileged ports
147 - BUG/MINOR: quic: adjust restriction for stateless reset emission
148 - BUG/MINOR: http-htx: Support default path during scheme based normalization
149 - BUG/MINOR: server: Don't reset resolver options on a new default-server line
150 - DOC: quic: specify that connection migration is not supported
151 - DOC: config: fix incorrect section reference about custom log format
152 - REGTESTS: acl_cli_spaces: avoid a warning caused by undefined logs
153 - CI: scripts: fix build of vtest regarding option -C
154 - BUILD: fd: errno is also needed without poll()
155 - CLEANUP: ssl/ocsp: readable ifdef in ssl_sock_load_ocsp
156 - BUG/MINOR: ssl/ocsp: init callback func ptr as NULL
157 - BUG/MINOR: activity: fix Delta_calls and Delta_bytes count
158 - BUG/MINOR: cfgparse: remove the correct option on httpcheck send-state warning
159 - BUG/MINOR: tcpcheck: report correct error in tcp-check rule parser
160 - BUG/MINOR: tools: fix possible null-deref in env_expand() on out-of-memory
161 - BUG/MINOR: hlua: use CertCache.set() from various hlua contexts
162 - BUG/MINOR: quic: prevent crash on qc_kill_conn()
163 - CLEANUP: hlua: use hlua_pusherror() where relevant
164 - BUG/MINOR: hlua: don't use lua_pushfstring() when we don't expect LJMP
165 - BUG/MINOR: hlua: fix unsafe hlua_pusherror() usage
166 - BUG/MINOR: hlua: prevent LJMP in hlua_traceback()
167 - BUG/MINOR: hlua: fix leak in hlua_ckch_set() error path
168 - CLEANUP: hlua: simplify ambiguous lua_insert() usage in hlua_ctx_resume()
169 - BUG/MEDIUM: ssl: wrong priority whem limiting ECDSA ciphers in ECDSA+RSA configuration
170 - BUG/MEDIUM: server: fix dynamic servers initial settings
171 - BUG/MEDIUM: quic: fix connection freeze on post handshake
172 - MINOR: session: rename private conns elements
173 - BUG/MAJOR: server: do not delete srv referenced by session
174 - BUG/MEDIUM: http_ana: ignore NTLM for reuse aggressive/always and no H1
175 - BUG/MAJOR: connection: fix server used_conns with H2 + reuse safe
176 - BUG/MEDIUM: quic: don't blindly rely on unaligned accesses
177
Christopher Faulet1842fd02024-04-05 20:53:50 +02001782024/04/05 : 2.8.9
179 - BUILD: proxy: Replace free_logformat_list() to manually release log-format
180
Christopher Faulet7d4c2f02024-04-05 20:18:49 +02001812024/04/05 : 2.8.8
182 - MINOR: mux-h2: add a counter of "glitches" on a connection
183 - BUG/MINOR: mux-h2: count rejected DATA frames against the connection's flow control
184 - MINOR: mux-h2: count excess of CONTINUATION frames as a glitch
185 - MINOR: mux-h2: count late reduction of INITIAL_WINDOW_SIZE as a glitch
186 - MINOR: mux-h2: always use h2c_report_glitch()
187 - MEDIUM: mux-h2: allow to set the glitches threshold to kill a connection
188 - MINOR: connection: add a new mux_ctl to report number of connection glitches
189 - MINOR: mux-h2: implement MUX_CTL_GET_GLITCHES
190 - MINOR: connection: add sample fetches to report per-connection glitches
191 - BUG/MAJOR: promex: fix crash on deleted server
192 - BUG/MINOR: quic: reject unknown frame type
193 - BUG/MINOR: quic: reject HANDSHAKE_DONE as server
194 - BUG/MINOR: qpack: reject invalid increment count decoding
195 - BUG/MINOR: qpack: reject invalid dynamic table capacity
196 - DOC: quic: Missing tuning setting in "Global parameters"
197 - BUG/MEDIUM: applet: Immediately free appctx on early error
198 - BUG/MEDIUM: hlua: Be able to garbage collect uninitialized lua sockets
199 - BUG/MEDIUM: hlua: Don't loop if a lua socket does not consume received data
200 - BUG/MEDIUM: quic: fix transient send error with listener socket
201 - DOC: quic: fix recommandation for bind on multiple address
202 - MINOR: quic: warn on bind on multiple addresses if no IP_PKTINFO support
203 - BUG/MINOR: ist: allocate nul byte on istdup
204 - BUG/MINOR: stats: drop srv refcount on early release
205 - BUG/MAJOR: server: fix stream crash due to deleted server
206 - BUG/MINOR: quic: fix output of show quic
207 - BUG/MINOR: ist: only store NUL byte on succeeded alloc
208 - BUG/MINOR: ssl/cli: duplicate cleaning code in cli_parse_del_crtlist
209 - LICENSE: event_hdl: fix GPL license version
210 - LICENSE: http_ext: fix GPL license version
211 - DOC: configuration: clarify ciphersuites usage
212 - BUG/MINOR: config/quic: Alert about PROXY protocol use on a QUIC listener
213 - BUG/MINOR: hlua: Fix log level to the right value when set via TXN:set_loglevel
214 - MINOR: hlua: Be able to disable logging from lua
215 - BUG/MINOR: tools: seed the statistical PRNG slightly better
216 - BUG/MINOR: hlua: fix unsafe lua_tostring() usage with empty stack
217 - BUG/MINOR: hlua: don't use lua_tostring() from unprotected contexts
218 - BUG/MINOR: hlua: fix possible crash in hlua_filter_new() under load
219 - BUG/MINOR: hlua: improper lock usage in hlua_filter_callback()
220 - BUG/MINOR: hlua: improper lock usage in hlua_filter_new()
221 - BUG/MEDIUM: hlua: improper lock usage with SET_SAFE_LJMP()
222 - BUG/MAJOR: hlua: improper lock usage with hlua_ctx_resume()
223 - BUG/MINOR: hlua: don't call ha_alert() in hlua_event_subscribe()
224 - BUG/MINOR: sink: fix a race condition in the TCP log forwarding code
225 - CI: skip scheduled builds on forks
226 - BUG/MINOR: ssl/cli: typo in new ssl crl-file CLI description
227 - BUG/MINOR: cfgparse: report proper location for log-format-sd errors
228 - BUILD: solaris: fix compilation errors
229 - DOC: configuration: clarify ciphersuites usage (V2)
230 - BUG/MINOR: ssl: fix possible ctx memory leak in sample_conv_aes_gcm()
231 - BUG/MINOR: hlua: segfault when loading the same filter from different contexts
232 - BUG/MINOR: hlua: missing lock in hlua_filter_new()
233 - BUG/MINOR: hlua: fix missing lock in hlua_filter_delete()
234 - DEBUG: lua: precisely identify if stream is stuck inside lua or not
235 - MINOR: hlua: use accessors for stream hlua ctx
236 - BUG/MEDIUM: hlua: streams don't support mixing lua-load with lua-load-per-thread (2nd try)
237 - BUG/MINOR: listener: Wake proxy's mngmt task up if necessary on session release
238 - BUG/MINOR: listener: Don't schedule frontend without task in listener_release()
239 - BUG/MEDIUM: spoe: Don't rely on stream's expiration to detect processing timeout
240 - BUG/MINOR: spoe: Be sure to be able to quickly close IDLE applets on soft-stop
241 - CI: temporarily adjust kernel entropy to work with ASAN/clang
242 - BUG/MEDIUM: spoe: Return an invalid frame on recv if size is too small
243 - BUG/MINOR: session: ensure conn owner is set after insert into session
244 - BUG/MEDIUM: ssl: Fix crash in ocsp-update log function
245 - BUG/MINOR: mux-quic: close all QCS before freeing QCC tasklet
246 - BUG/MEDIUM: mux-fcgi: Properly handle EOM flag on end-of-trailers HTX block
247 - OPTIM: http_ext: avoid useless copy in http_7239_extract_{ipv4,ipv6}
248 - BUG/MINOR: server: 'source' interface ignored from 'default-server' directive
249 - BUG/MINOR: ssl: Wrong ocsp-update "incompatibility" error message
250 - BUG/MINOR: ssl: Detect more 'ocsp-update' incompatibilities
251 - BUG/MINOR: server: fix persistence cookie for dynamic servers
252 - MINOR: server: allow cookie for dynamic servers
253 - MINOR: cli: Remove useless loop on commands to find unescaped semi-colon
254 - BUG/MEDIUM: cli: Warn if pipelined commands are delimited by a \n
255 - BUG/MINOR: server: ignore 'enabled' for dynamic servers
256 - BUG/MINOR: backend: properly handle redispatch 0
257 - BUG/MINOR: proxy: fix logformat expression leak in use_backend rules
258
William Lallemand1a82cdf2024-02-26 19:04:22 +01002592024/02/26 : 2.8.7
260 - BUG/MAJOR: ssl/ocsp: crash with ocsp when old process exit or using ocsp CLI
261
Willy Tarreauf6bd0112024-02-15 14:53:26 +01002622024/02/15 : 2.8.6
263 - DOC: configuration: typo req.ssl_hello_type
264 - BUG/MINOR: mworker/cli: fix set severity-output support
265 - BUG/MEDIUM: quic: Possible buffer overflow when building TLS records
266 - BUG/MEDIUM: quic: QUIC CID removed from tree without locking
267 - BUG/MEDIUM: mux-h2: Report too large HEADERS frame only when rxbuf is empty
268 - BUG/MINOR: resolvers: default resolvers fails when network not configured
269 - DOC: config: Update documentation about local haproxy response
270 - MINOR: stats: store the parent proxy in stats ctx (http)
271 - BUG/MEDIUM: stats: unhandled switching rules with TCP frontend
272 - BUG/MINOR: mux-quic: always report error to SC on RESET_STREAM emission
273 - BUG/MINOR: quic: Wrong keylog callback setting.
274 - BUG/MINOR: quic: Missing call to TLS message callbacks
275 - MINOR: h3: check connection error during sending
276 - BUG/MINOR: h3: close connection on header list too big
277 - BUG/MINOR: h3: properly handle alloc failure on finalize
278 - BUG/MINOR: h3: close connection on sending alloc errors
279 - CLEANUP: quic: Remaining useless code into server part
280 - BUG/MEDIUM: h3: fix incorrect snd_buf return value
281 - BUG/MEDIUM: stconn: Forward shutdown on write timeout only if it is forwardable
282 - BUG/MEDIUM: spoe: Never create new spoe applet if there is no server up
283 - MINOR: mux-h2: support limiting the total number of H2 streams per connection
284 - DOC: configuration: corrected description of keyword tune.ssl.ocsp-update.mindelay
285 - BUG/MINOR: mux-quic: do not prevent non-STREAM sending on flow control
286 - BUG/MINOR: mux-h2: also count streams for refused ones
287 - BUG/MEDIUM: quic: keylog callback not called (USE_OPENSSL_COMPAT)
288 - MINOR: compiler: add a new DO_NOT_FOLD() macro to prevent code folding
289 - MINOR: debug: make sure calls to ha_crash_now() are never merged
290 - MINOR: debug: make ABORT_NOW() store the caller's line number when using abort
291 - MINOR: debug: make BUG_ON() catch build errors even without DEBUG_STRICT
292 - MINOR: mux-h2/traces: also suggest invalid header upon parsing error
293 - MINOR: mux-h2/traces: explicitly show the error/refused stream states
294 - MINOR: mux-h2/traces: clarify the "rejected H2 request" event
295 - BUG/MEDIUM: mux-h2: refine connection vs stream error on headers
296 - MINOR: mux-h2/traces: add a missing trace on connection WU with negative inc
297 - REGTESTS: add a test to ensure map-ordering is preserved
298 - BUG/MEDIUM: cli: some err/warn msg dumps add LR into CSV output on stat's CLI
299 - BUG/MINOR: vars/cli: fix missing LF after "get var" output
300 - BUG/MEDIUM: cli: fix once for all the problem of missing trailing LFs
301 - BUG/MINOR: jwt: fix jwt_verify crash on 32-bit archs
302 - BUG/MEDIUM: pool: fix rare risk of deadlock in pool_flush()
303 - BUG/MEDIUM: stconn: Allow expiration update when READ/WRITE event is pending
304 - BUG/MEDIUM: stconn: Don't check pending shutdown to wake an applet up
305 - BUG/MINOR: h1: Don't support LF only at the end of chunks
306 - BUG/MEDIUM: h1: Don't support LF only to mark the end of a chunk size
307 - BUG/MINOR: h1-htx: properly initialize the err_pos field
308 - BUG/MEDIUM: h1: always reject the NUL character in header values
309 - BUG/MAJOR: ssl_sock: Always clear retry flags in read/write functions
310 - BUG/MINOR: ssl: Fix error message after ssl_sock_load_ocsp call
311 - BUG/MINOR: ssl: Duplicate ocsp update mode when dup'ing ckch
312 - BUG/MINOR: ssl: Clear the ckch instance when deleting a crt-list line
313 - MINOR: ssl: Use OCSP_CERTID instead of ckch_store in ckch_store_build_certid
314 - BUG/MEDIUM: ocsp: Separate refcount per instance and per store
315 - BUG/MINOR: ssl: Destroy ckch instances before the store during deinit
316 - BUG/MINOR: ssl: Reenable ocsp auto-update after an "add ssl crt-list"
317 - REGTESTS: ssl: Fix empty line in cli command input
318 - REGTESTS: ssl: Add OCSP related tests
319 - BUG/MEDIUM: ssl: Fix crash when calling "update ssl ocsp-response" when an update is ongoing
320 - BUG/MINOR: h3: fix checking on NULL Tx buffer
321 - BUG/MEDIUM: mux-quic: report early error on stream
322 - CLEANUP: quic: Remove unused CUBIC_BETA_SCALE_FACTOR_SHIFT macro.
323 - MINOR: quic: Stop hardcoding a scale shifting value (CUBIC_BETA_SCALE_FACTOR_SHIFT)
324 - MINOR: quic: extract qc_stream_buf free in a dedicated function
325 - BUG/MEDIUM: quic: remove unsent data from qc_stream_desc buf
326 - MINOR: h3: add traces for stream sending function
327 - BUG/MEDIUM: h3: do not crash on invalid response status code
328 - BUG/MEDIUM: qpack: allow 6xx..9xx status codes
329 - BUG/MEDIUM: quic: fix crash on invalid qc_stream_buf_free() BUG_ON
330 - BUG/MINOR: quic: Wrong ack ranges handling when reaching the limit.
331 - CLEANUP: quic: Code clarifications for QUIC CUBIC (RFC 9438)
332 - BUG/MINOR: quic: fix possible integer wrap around in cubic window calculation
333 - MINOR: quic: Stop using 1024th of a second.
334 - BUG/MEDIUM: quic: Wrong K CUBIC calculation.
335 - MINOR: quic: Update K CUBIC calculation (RFC 9438)
336 - MINOR: quic: Dynamic packet reordering threshold
337 - MINOR: quic: Add a counter for reordered packets
338 - MINOR: errors: ha_alert() and ha_warning() uses warn_exec_path()
339 - BUG/MINOR: diag: always show the version before dumping a diag warning
340 - BUG/MINOR: diag: run the final diags before quitting when using -c
341 - MINOR: ext-check: add an option to preserve environment variables
342 - BUG/MINOR: ext-check: cannot use without preserve-env
343 - BUILD: address a few remaining calloc(size, n) cases
344 - DOC: configuration: clarify http-request wait-for-body
345 - DOC: httpclient: add dedicated httpclient section
346 - DOC: install: recommend pcre2
347 - DOC: internal: update missing data types in peers-v2.0.txt
348 - CI: Update to actions/cache@v4
349 - DEV: makefile: add a new "range" target to iteratively build all commits
350 - DEV: makefile: fix POSIX compatibility for "range" target
351
Christopher Fauletaaba8d02023-12-07 15:20:36 +01003522023/12/07 : 2.8.5
353 - BUG/MAJOR: quic: complete thread migration before tcp-rules
354 - BUG/MEDIUM: mux-h2: fail earlier on malloc in takeover()
355 - BUG/MEDIUM: mux-h1: fail earlier on malloc in takeover()
356 - BUG/MEDIUM: mux-fcgi: fail earlier on malloc in takeover()
357 - BUG/MINOR: stream/cli: report correct stream age in "show sess"
358 - MINOR: stktable: add stktable_deinit function
359 - BUG/MINOR: proxy/stktable: missing frees on proxy cleanup
360 - REGTESTS: http: add a test to validate chunked responses delivery
361 - BUG/MINOR: startup: set GTUNE_SOCKET_TRANSFER correctly
362 - BUG/MINOR: sock: mark abns sockets as non-suspendable and always unbind them
363 - BUG/MEDIUM: quic: Possible crash for connections to be killed
364 - BUG/MINOR: quic: Possible RX packet memory leak under heavy load
365 - BUG/MINOR: server: do not leak default-server in defaults sections
366 - DOC: 51d: updated 51Degrees repo URL for v3.2.10
367 - DOC: config: fix timeout check inheritance restrictions
368 - REGTESTS: connection: disable http_reuse_be_transparent.vtc if !TPROXY
369 - DOC: lua: add sticktable class reference from Proxy.stktable
370 - DOC: lua: fix Proxy.get_mode() output
371 - BUG/MINOR: quic: fix CONNECTION_CLOSE_APP encoding
372 - BUG/MINOR: compression: possible NULL dereferences in comp_prepare_compress_request()
373 - BUG/MEDIUM: master/cli: Properly pin the master CLI on thread 1 / group 1
374 - BUG/MINOR: h3: fix TRAILERS encoding
375 - BUG/MINOR: h3: always reject PUSH_PROMISE
376 - DOC: config: fix missing characters in set-spoe-group action
377 - BUG/MINOR: quic_tp: fix preferred_address decoding
378 - BUG/MINOR: config: Stopped parsing upon unmatched environment variables
379 - BUG/MINOR: cfgparse-listen: fix warning being reported as an alert
380 - DOC: config: specify supported sections for "max-session-srv-conns"
381 - DOC: config: add matrix entry for "max-session-srv-conns"
382 - DOC: config: fix monitor-fail typo
383 - REGTESTS: sample: Test the behavior of consecutive delimiters for the field converter
384 - BUG/MINOR: sample: Make the `word` converter compatible with `-m found`
385 - DOC: Clarify the differences between field() and word()
386 - BUG/MEDIUM: peers: fix partial message decoding
387 - BUG/MINOR: cache: Remove incomplete entries from the cache when stream is closed
388 - BUG/MEDIUM: quic: Possible crash during retransmissions and heavy load
389 - BUG/MINOR: quic: Possible leak of TX packets under heavy load
390 - BUG/MINOR: quic: Missing QUIC connection path member initialization
391 - BUG/MINOR: quic: Packet number spaces too lately initialized
392 - BUG/MINOR: ssl: Double free of OCSP Certificate ID
393 - MINOR: ssl/cli: Add ha_(warning|alert) msgs to CLI ckch callback
394 - BUG/MINOR: ssl: Wrong OCSP CID after modifying an SSL certficate
395 - BUG/MINOR: lua: Wrong OCSP CID after modifying an SSL certficate (LUA)
396 - BUG/MEDIUM: proxy: always initialize the default settings after init
397
Christopher Fauleta4ebf9d2023-11-17 19:06:06 +01003982023/11/17 : 2.8.4
399 - BUILD: bug: make BUG_ON() void to avoid a rare warning
400 - BUG/MINOR: quic: Leak of frames to send.
401 - BUG/MINOR: quic: Wrong cluster secret initialization
402 - MINOR: quic: QUIC openssl wrapper implementation
403 - MINOR: quic: Include QUIC opensssl wrapper header from TLS stacks compatibility header
404 - MINOR: quic: Do not enable O-RTT with USE_QUIC_OPENSSL_COMPAT
405 - MINOR: quic: Set the QUIC connection as extra data before calling SSL_set_quic_method()
406 - MINOR: quic: Do not enable 0RTT with SSL_set_quic_early_data_enabled()
407 - MINOR: quic: Add a compilation option for the QUIC OpenSSL wrapper
408 - MINOR: quic: Export some KDF functions (QUIC-TLS)
409 - MINOR: quic: Initialize TLS contexts for QUIC openssl wrapper
410 - MINOR: quic: Call the keylog callback for QUIC openssl wrapper from SSL_CTX_keylog()
411 - MINOR: quic: Add a quic_openssl_compat struct to quic_conn struct
412 - MINOR: quic: SSL context initialization with QUIC OpenSSL wrapper.
413 - MINOR: quic: Add "limited-quic" new tuning setting
414 - DOC: quic: Add "limited-quic" new tuning setting
415 - BUG/MINOR: quic+openssl_compat: Non initialized TLS encryption levels
416 - MINOR: quic: Warning for OpenSSL wrapper QUIC bindings without "limited-quic"
417 - MINOR: quic+openssl_compat: Do not start without "limited-quic"
418 - MINOR: quic+openssl_compat: Emit an alert for "allow-0rtt" option
419 - BUILD: Makefile: add USE_QUIC_OPENSSL_COMPAT to make help
420 - BUG/MINOR: quic: allow-0rtt warning must only be emitted with quic bind
421 - BUG/MINOR: quic: ssl_quic_initial_ctx() uses error count not error code
422 - BUILD: quic: fix build on centos 8 and USE_QUIC_OPENSSL_COMPAT
423 - MINOR: hlua: add hlua_stream_ctx_prepare helper function
424 - BUG/MEDIUM: hlua: streams don't support mixing lua-load with lua-load-per-thread
425 - Revert "BUG/MEDIUM: quic: missing check of dcid for init pkt including a token"
426 - CI: musl: highlight section if there are coredumps
427 - CI: musl: drop shopt in workflow invocation
428 - BUG/MEDIUM: hlua: don't pass stale nargs argument to lua_resume()
429 - BUG/MINOR: hlua/init: coroutine may not resume itself
430 - BUG/MEDIUM: mux-fcgi: Don't swap trash and dbuf when handling STDERR records
431 - BUG/MINOR: promex: fix backend_agg_check_status
432 - BUG/MEDIUM: master/cli: Pin the master CLI on the first thread of the group 1
433 - BUG/MINOR: freq_ctr: fix possible negative rate with the scaled API
434 - BUG/MAJOR: mux-h2: Report a protocol error for any DATA frame before headers
435 - BUG/MINOR: server: add missing free for server->rdr_pfx
436 - MINOR: pattern: fix pat_{parse,match}_ip() function comments
437 - BUG/MEDIUM: server/cli: don't delete a dynamic server that has streams
438 - BUG/MINOR: mux-quic: remove full demux flag on ncbuf release
439 - BUG/MEDIUM: actions: always apply a longest match on prefix lookup
440 - BUG/MEDIUM: quic_conn: let the scheduler kill the task when needed
441 - BUG/MEDIUM: http-ana: Try to handle response before handling server abort
442 - MINOR: hlua: Set context's appctx when the lua socket is created
443 - MINOR: hlua: Don't preform operations on a not connected socket
444 - MINOR: hlua: Save the lua socket's timeout in its context
445 - MINOR: hlua: Save the lua socket's server in its context
446 - MINOR: hlua: Test the hlua struct first when the lua socket is connecting
447 - BUG/MEDIUM: hlua: Initialize appctx used by a lua socket on connect only
448 - BUG/MINOR: mux-h1: Handle read0 in rcv_pipe() only when data receipt was tried
449 - BUG/MINOR: mux-h1: Ignore C-L when sending H1 messages if T-E is also set
450 - BUG/MEDIUM: h1: Ignore C-L value in the H1 parser if T-E is also set
451 - BUG/MINOR: hq-interop: simplify parser requirement
452 - BUG/MEDIUM: stconn: Fix comparison sign in sc_need_room()
453 - BUG/MINOR: quic: Avoid crashing with unsupported cryptographic algos
454 - BUG/MINOR: quic: reject packet with no frame
455 - BUG/MEDIUM: mux-quic: fix RESET_STREAM on send-only stream
456 - BUG/MINOR: mux-quic: support initial 0 max-stream-data
457 - BUG/MINOR: h3: strengthen host/authority header parsing
458 - BUG/MINOR: mux-quic: fix free on qcs-new fail alloc
459 - BUG/MEDIUM: quic-conn: free unsent frames on retransmit to prevent crash
460 - BUG/MINOR: mux-h1: Send a 400-bad-request on shutdown before the first request
461 - BUG/MINOR: mux-h2: make up other blocked streams upon removal from list
462 - BUG/MEDIUM: mux-h2: Don't report an error on shutr if a shutw is pending
463 - BUG/MINOR: mux-h2: fix http-request and http-keep-alive timeouts again
464 - BUG/MINOR: trace: fix trace parser error reporting
465 - BUG/MEDIUM: peers: Be sure to always refresh recconnect timer in sync task
466 - BUG/MEDIUM: peers: Fix synchro for huge number of tables
467 - BUG/MINOR: mux-h2: commit the current stream ID even on reject
468 - BUG/MINOR: mux-h2: update tracked counters with req cnt/req err
469 - DOC: internal: filters: fix reference to entities.pdf
470 - BUG/MINOR: ssl: load correctly @system-ca when ca-base is define
471 - MINOR: lua: Add flags to configure logging behaviour
472 - DEBUG: mux-h2/flags: fix list of h2c flags used by the flags decoder
473 - MINOR: connection: add conn_pr_mode_to_proto_mode() helper func
474 - BUG/MEDIUM: server: "proto" not working for dynamic servers
475 - BUG/MINOR: quic: do not consider idle timeout on CLOSING state
476 - BUG/MINOR: ssl: use a thread-safe sslconns increment
477 - MINOR: frontend: implement a dedicated actconn increment function
478 - MEDIUM: quic: count quic_conn instance for maxconn
479 - MEDIUM: quic: count quic_conn for global sslconns
480 - BUG/MINOR: ssl: suboptimal certificate selection with TLSv1.3 and dual ECDSA/RSA
481 - BUG/MINOR: mux-quic: fix early close if unset client timeout
482 - BUG/MEDIUM: ssl: segfault when cipher is NULL
483 - BUG/MINOR: tcpcheck: Report hexstring instead of binary one on check failure
484 - BUG/MINOR: stktable: missing free in parse_stick_table()
485 - BUG/MINOR: cfgparse/stktable: fix error message on stktable_init() failure
486 - BUG/MEDIUM: pattern: don't trim pools under lock in pat_ref_purge_range()
487 - BUG/MEDIUM: stconn: Don't report rcv/snd expiration date if SC cannot epxire
488 - BUG/MEDIUM: Don't apply a max value on room_needed in sc_need_room()
489 - BUG/MINOR: stconn: Sanitize report for read activity
490 - CLEANUP: htx: Properly indent htx_reserve_max_data() function
491 - BUG/MEDIUM: quic: fix actconn on quic_conn alloc failure
492 - BUG/MEDIUM: quic: fix sslconns on quic_conn alloc failure
493 - BUG/MINOR: stick-table/cli: Check for invalid ipv4 key
494 - BUG/MINOR: mux-h1: Properly handle http-request and http-keep-alive timeouts
495 - BUG/MEDIUM: freq-ctr: Don't report overshoot for long inactivity period
496 - BUG/MEDIUM: pool: fix releasable pool calculation when overloaded
497 - BUG/MINOR: quic: idle timer task requeued in the past
498 - BUG/MEDIUM: quic: Avoid trying to send ACK frames from an empty ack ranges tree
499 - BUG/MEDIUM: quic: Possible crashes when sending too short Initial packets
500 - BUG/MEDIUM: quic: Avoid some crashes upon TX packet allocation failures
501 - BUG/MEDIUM: stconn: Don't update stream expiration date if already expired
502 - DOC: management: -q is quiet all the time
503 - BUG/MINOR: quic: fix retry token check inconsistency
504 - DOC: config: use the word 'backend' instead of 'proxy' in 'track' description
505 - BUG/MEDIUM: applet: Remove appctx from buffer wait list on release
506 - BUG/MINOR: sink: don't learn srv port from srv addr
507 - DOC: quic: Wrong syntax for "quic-cc-algo" keyword.
508 - BUG/MEDIUM: connection: report connection errors even when no mux is installed
509 - BUG/MINOR: stconn: Handle abortonclose if backend connection was already set up
510 - MINOR: connection: Add a CTL flag to notify mux it should wait for reads again
511 - MEDIUM: mux-h1: Handle MUX_SUBS_RECV flag in h1_ctl() and susbscribe for reads
512 - BUG/MEDIUM: stream: Properly handle abortonclose when set on backend only
513 - REGTESTS: http: Improve script testing abortonclose option
514 - BUG/MEDIUM: stconn: Report a send activity everytime data were sent
515 - BUG/MEDIUM: applet: Report a send activity everytime data were sent
516 - BUG/MEDIUM: mworker: set the master variable earlier
517 - BUG/MEDIUM: stream: Don't call mux .ctl() callback if not implemented
518 - BUG/MEDIUM: stconn: Update fsb date on partial sends
519 - MINOR: htx: Use a macro for overhead induced by HTX
520 - MINOR: channel: Add functions to get info on buffers and deal with HTX streams
521 - BUG/MINOR: stconn: Fix streamer detection for HTX streams
522 - BUG/MINOR: stconn: Use HTX-aware channel's functions to get info on buffer
523 - BUG/MINOR: stconn/applet: Report send activity only if there was output data
524 - BUG/MINOR: stconn: Report read activity on non-indep streams for partial sends
525
Christopher Faulet86e043a2023-09-07 11:32:42 +02005262023/09/07 : 2.8.3
527 - CI: do not use "groupinstall" for Fedora Rawhide builds
528 - CI: get rid of travis-ci wrapper for Coverity scan
529 - BUG/MEDIUM: quic: fix tasklet_wakeup loop on connection closing
530 - BUG/MINOR: hlua: fix invalid use of lua_pop on error paths
531 - DEV: flags/show-sess-to-flags: properly decode fd.state
532 - BUG/MINOR: stktable: allow sc-set-gpt(0) from tcp-request connection
533 - BUG/MINOR: stktable: allow sc-add-gpc from tcp-request connection
534 - DOC: typo: fix sc-set-gpt references
535 - SCRIPTS: git-show-backports: automatic ref and base detection with -m
536 - REGTESTS: Do not use REQUIRE_VERSION for HAProxy 2.5+ (3)
537 - DOC: jwt: Add explicit list of supported algorithms
538 - BUILD: Makefile: add the USE_QUIC option to make help
539 - IMPORT: plock: also support inlining the int code
540 - MINOR: threads: inline the wait function for pthread_rwlock emulation
541 - MINOR: atomic: make sure to always relax after a failed CAS
542 - IMPORT: xxhash: update xxHash to version 0.8.2
543 - CI: fedora: fix "dnf" invocation syntax
544 - BUG/MINOR: hlua_fcn: potentially unsafe stktable_data_ptr usage
545 - DOC: lua: fix core.register_action typo
546 - BUG/MINOR: ssl_sock: fix possible memory leak on OOM
547 - BUILD: import: guard plock.h against multiple inclusion
548 - BUG/MINOR: ssl/cli: can't find ".crt" files when replacing a certificate
549 - BUG/MINOR: stream: protect stream_dump() against incomplete streams
550 - DOC: config: mention uid dependency on the tune.quic.socket-owner option
551 - BUG/MINOR: checks: do not queue/wake a bounced check
552 - DEBUG: applet: Properly report opposite SC expiration dates in traces
553 - BUG/MEDIUM: stconn: Update stream expiration date on blocked sends
554 - BUG/MINOR: stconn: Don't report blocked sends during connection establishment
555 - BUG/MEDIUM: stconn: Wake applets on sending path if there is a pending shutdown
556 - BUG/MEDIUM: stconn: Don't block sends if there is a pending shutdown
557 - BUG/MINOR: quic: Possible skipped RTT sampling
558 - BUG/MAJOR: quic: Really ignore malformed ACK frames.
559 - BUG/MEDIUM: h1-htx: Ensure chunked parsing with full output buffer
560 - BUG/MINOR: stream: further protect stream_dump() against incomplete sessions
561 - DOC: configuration: update examples for req.ver
562 - MINOR: httpclient: allow to configure the retries
563 - MINOR: httpclient: allow to configure the timeout.connect
564 - BUG/MINOR: quic: Wrong RTT adjusments
565 - BUG/MINOR: quic: Wrong RTT computation (srtt and rrt_var)
566 - BUG/MEDIUM: applet: Fix API for function to push new data in channels buffer
567 - BUG/MEDIUM: stconn: Report read activity when a stream is attached to front SC
568 - BUG/MEDIUM: applet: Report an error if applet request more room on aborted SC
569 - BUG/MEDIUM: stconn/stream: Forward shutdown on write timeout
570 - NUG/MEDIUM: stconn: Always update stream's expiration date after I/O
571 - BUG/MINOR: applet: Always expect data when CLI is waiting for a new command
572 - BUG/MINOR: ring/cli: Don't expect input data when showing events
573 - BUG/MINOR: hlua/action: incorrect message on E_YIELD error
574 - MEDIUM: capabilities: enable support for Linux capabilities
575 - CI: Update to actions/checkout@v4
576
Willy Tarreau61a0f572023-08-09 14:16:53 +02005772023/08/09 : 2.8.2
578 - DOC: ssl: Fix typo in 'ocsp-update' option
579 - DOC: ssl: Add ocsp-update troubleshooting clues and emphasize on crt-list only aspect
580 - BUG/MINOR: tcp_sample: bc_{dst,src} return IP not INT
581 - BUG/MINOR: cache: A 'max-age=0' cache-control directive can be overriden by a s-maxage
582 - BUG/MEDIUM: sink: invalid server list in sink_new_from_logsrv()
583 - BUG/MINOR: http_ext: unhandled ERR_ABORT in proxy_http_parse_7239()
584 - BUG/MINOR: sink: missing sft free in sink_deinit()
585 - BUG/MINOR: ring: size warning incorrectly reported as fatal error
586 - BUG/MINOR: ring: maxlen warning reported as alert
587 - BUG/MINOR: log: LF upsets maxlen for UDP targets
588 - MINOR: sink/api: pass explicit maxlen parameter to sink_write()
589 - BUG/MEDIUM: log: improper use of logsrv->maxlen for buffer targets
590 - BUG/MINOR: log: fix missing name error message in cfg_parse_log_forward()
591 - BUG/MINOR: log: fix multiple error paths in cfg_parse_log_forward()
592 - BUG/MINOR: log: free errmsg on error in cfg_parse_log_forward()
593 - BUG/MINOR: sink: invalid sft free in sink_deinit()
594 - BUG/MINOR: sink: fix errors handling in cfg_post_parse_ring()
595 - BUG/MINOR: server: set rid default value in new_server()
596 - MINOR: hlua_fcn/mailers: handle timeout mail from mailers section
597 - BUG/MINOR: sink/log: properly deinit srv in sink_new_from_logsrv()
598 - EXAMPLES: maintain haproxy 2.8 retrocompatibility for lua mailers script
599 - BUG/MINOR: hlua_fcn/queue: use atomic load to fetch queue size
600 - BUG/MINOR: config: Remove final '\n' in error messages
601 - BUG/MEDIUM: quic: token IV was not computed using a strong secret
602 - BUG/MINOR: quic: retry token remove one useless intermediate expand
603 - BUG/MEDIUM: quic: missing check of dcid for init pkt including a token
604 - BUG/MEDIUM: quic: timestamp shared in token was using internal time clock
605 - CLEANUP: quic: remove useless parameter 'key' from quic_packet_encrypt
606 - BUG/MINOR: hlua: hlua_yieldk ctx argument should support pointers
607 - BUG/MEDIUM: hlua_fcn/queue: bad pop_wait sequencing
608 - DOC: config: Fix fc_src description to state the source address is returned
609 - BUG/MINOR: sample: Fix wrong overflow detection in add/sub conveters
610 - BUG/MINOR: http: Return the right reason for 302
611 - CI: add naming convention documentation
612 - CI: explicitely highlight VTest result section if there's something
613 - BUILD: quic: fix warning during compilation using gcc-6.5
614 - BUG/MINOR: hlua: add check for lua_newstate
615 - BUG/MINOR: h1-htx: Return the right reason for 302 FCGI responses
616 - MINOR: cpuset: add cpu_map_configured() to know if a cpu-map was found
617 - BUG/MINOR: config: do not detect NUMA topology when cpu-map is configured
618 - BUG/MINOR: cpuset: remove the bogus "proc" from the cpu_map struct
619 - BUG/MINOR: init: set process' affinity even in foreground
620 - BUG/MINOR: server: Don't warn on server resolution failure with init-addr none
621 - BUG/MINOR: quic: Missing parentheses around PTO probe variable.
622 - BUG/MINOR: server-state: Ignore empty files
623 - BUG/MINOR: server-state: Avoid warning on 'file not found'
624 - BUG/MEDIUM: listener: Acquire proxy's lock in relax_listener() if necessary
625 - MINOR: quic: Make ->set_encryption_secrets() be callable two times
626 - MINOR: quic: Useless call to SSL_CTX_set_quic_method()
627 - BUG/MINOR: ssl: OCSP callback only registered for first SSL_CTX
628 - BUG/MEDIUM: h3: Properly report a C-L header was found to the HTX start-line
629 - DOC: configuration: describe Td in Timing events
630 - BUG/MINOR: chunk: fix chunk_appendf() to not write a zero if buffer is full
631 - BUG/MEDIUM: h3: Be sure to handle fin bit on the last DATA frame
632 - BUG/MEDIUM: bwlim: Reset analyse expiration date when then channel analyse ends
633 - BUG/MEDIUM: quic: consume contig space on requeue datagram
634 - BUG/MINOR: http-client: Don't forget to commit changes on HTX message
635 - BUG/MINOR: quic: reappend rxbuf buffer on fake dgram alloc error
636 - BUILD: quic: fix wrong potential NULL dereference
637 - BUG/MAJOR: http-ana: Get a fresh trash buffer for each header value replacement
638 - REORG: http: move has_forbidden_char() from h2.c to http.h
639 - BUG/MAJOR: h3: reject header values containing invalid chars
640 - BUG/MAJOR: http: reject any empty content-length header value
641 - MINOR: ist: add new function ist_find_range() to find a character range
642 - MINOR: http: add new function http_path_has_forbidden_char()
643 - MINOR: h2: pass accept-invalid-http-request down the request parser
644 - REGTESTS: http-rules: add accept-invalid-http-request for normalize-uri tests
645 - BUG/MINOR: h1: do not accept '#' as part of the URI component
646 - BUG/MINOR: h2: reject more chars from the :path pseudo header
647 - BUG/MINOR: h3: reject more chars from the :path pseudo header
648 - REGTESTS: http-rules: verify that we block '#' by default for normalize-uri
649 - DOC: clarify the handling of URL fragments in requests
650 - BUG/MINOR: http: skip leading zeroes in content-length values
651
Christopher Fauleta90123a2023-07-03 14:28:20 +02006522023/07/03 : 2.8.1
653 - BUG/MINOR: stats: Fix Lua's `get_stats` function
654 - BUG/MINOR: stream: do not use client-fin/server-fin with HTX
655 - BUG/MINOR: quic: Possible crash when SSL session init fails
656 - CONTRIB: Add vi file extensions to .gitignore
657 - BUG/MINOR: spoe: Only skip sending new frame after a receive attempt
658 - DOC: quic: fix misspelled tune.quic.socket-owner
659 - DOC: config: fix jwt_verify() example using var()
660 - DOC: config: fix rfc7239 converter examples (again)
661 - BUG/MINOR: cfgparse-tcp: leak when re-declaring interface from bind line
662 - BUG/MINOR: proxy: add missing interface bind free in free_proxy
663 - BUG/MINOR: proxy/server: free default-server on deinit
664 - BUG/MEDIUM: hlua: Use front SC to detect EOI in HTTP applets' receive functions
665 - BUG/MINOR: peers: Improve detection of config errors in peers sections
666 - REG-TESTS: stickiness: Delay haproxys start to properly resolv variables
667 - BUG/MINOR: ssl: log message non thread safe in SSL Hanshake failure
668 - BUG/MINOR: quic: Wrong encryption level flags checking
669 - BUG/MINOR: quic: Address inversion in "show quic full"
670 - BUG/MINOR: server: inherit from netns in srv_settings_cpy()
671 - BUG/MINOR: namespace: missing free in netns_sig_stop()
672 - BUG/MINOR: quic: Missing initialization (packet number space probing)
673 - BUG/MINOR: quic: Possible crash in quic_conn_prx_cntrs_update()
674 - BUG/MINOR: quic: Possible endless loop in quic_lstnr_dghdlr()
675 - BUG/MEDIUM: mworker: increase maxsock with each new worker
676 - BUG/MINOR: quic: ticks comparison without ticks API use
677 - DOC: Add tune.h2.be.* and tune.h2.fe.* options to table of contents
678 - DOC: Add tune.h2.max-frame-size option to table of contents
679 - REGTESTS: h1_host_normalization : Add a barrier to not mix up log messages
680 - DOC: Attempt to fix dconv parsing error for tune.h2.fe.initial-window-size
681 - BUG/MINOR: http_ext: fix if-none regression in forwardfor option
682 - BUG/MINOR: mworker: leak of a socketpair during startup failure
683 - BUG/MINOR: quic: Prevent deadlock with CID tree lock
684 - BUG/MEDIUM: quic: error checking buffer large enought to receive the retry tag
685 - BUG/MINOR: config: fix stick table duplicate name check
686 - BUG/MINOR: quic: Missing random bits in Retry packet header
687 - BUG/MINOR: quic: Wrong Retry paquet version field endianess
688 - BUG/MINOR: quic: Wrong endianess for version field in Retry token
689 - IMPORT: slz: implement a synchronous flush() operation
690 - MINOR: compression/slz: add support for a pure flush of pending bytes
691 - BUILD: debug: avoid a build warning related to epoll_wait() in debug code
692 - MINOR: quic: Move QUIC encryption level structure definition
693 - MINOR: quic: Move packet number space related functions
694 - MINOR: quic: Reduce the maximum length of TLS secrets
695 - CLEANUP: quic: Remove server specific about Initial packet number space
696
Willy Tarreaufdd81542023-05-31 16:24:38 +02006972023/05/31 : 2.8.0
698 - MINOR: compression: Improve the way Vary header is added
699 - BUILD: makefile: search for SSL_INC/wolfssl before SSL_INC
700 - MINOR: init: pre-allocate kernel data structures on init
701 - DOC: install: add details about WolfSSL
702 - BUG/MINOR: ssl_sock: add check for ha_meth
703 - BUG/MINOR: thread: add a check for pthread_create
704 - BUILD: init: print rlim_cur as regular integer
705 - DOC: install: specify the minimum openssl version recommended
706 - CLEANUP: mux-quic: remove unneeded fields in qcc
707 - MINOR: mux-quic: remove nb_streams from qcc
708 - MINOR: quic: fix stats naming for flow control BLOCKED frames
709 - BUG/MEDIUM: mux-quic: only set EOI on FIN
710 - BUG/MEDIUM: threads: fix a tiny race in thread_isolate()
711 - DOC: config: fix rfc7239 converter examples
712 - DOC: quic: remove experimental status for QUIC
713 - CLEANUP: mux-quic: rename functions for mux_ops
714 - CLEANUP: mux-quic: rename internal functions
715 - BUG/MINOR: mux-h2: refresh the idle_timer when the mux is empty
716 - DOC: config: Fix bind/server/peer documentation in the peers section
717 - BUILD: Makefile: use -pthread not -lpthread when threads are enabled
718 - CLEANUP: doc: remove 21 totally obsolete docs
719 - DOC: install: mention the common strict-aliasing warning on older compilers
720 - DOC: install: clarify a few points on the wolfSSL build method
721 - MINOR: quic: Add QUIC connection statistical counters values to "show quic"
722 - EXAMPLES: update the basic-config-edge file for 2.8
723 - MINOR: quic/cli: clarify the "show quic" help message
724 - MINOR: version: mention that it's LTS now.
725
Willy Tarreauc8bb9ae2023-05-24 22:53:55 +02007262023/05/24 : 2.8-dev13
727 - DOC: add size format section to manual
728 - CLEANUP: mux-quic/h3: complete BUG_ON with comments
729 - MINOR: quic: remove return val of quic_aead_iv_build()
730 - MINOR: quic: use WARN_ON for encrypt failures
731 - BUG/MINOR: quic: handle Tx packet allocation failure properly
732 - MINOR: quic: fix alignment of oneline show quic
733 - MEDIUM: stconn/applet: Allow SF_SL_EOS flag alone
734 - MEDIUM: stconn: make the SE_FL_ERR_PENDING to ERROR transition systematic
735 - DOC: internal: add a bit of documentation for the stconn closing conditions
736 - DOC/MINOR: config: Fix typo in description for `ssl_bc` in configuration.txt
737 - BUILD: quic: re-enable chacha20_poly1305 for libressl
738 - MINOR: mux-quic: set both EOI EOS for stream fin
739 - MINOR: mux-quic: only set EOS on RESET_STREAM recv
740 - MINOR: mux-quic: report error on stream-endpoint earlier
741 - BUILD: makefile: fix build issue on GNU make < 3.82
742 - BUG/MINOR: mux-h2: Check H2_SF_BODY_TUNNEL on H2S flags and not demux frame ones
743 - MINOR: mux-h2: Set H2_SF_ES_RCVD flag when decoding the HEADERS frame
744 - MINOR: mux-h2: Add a function to propagate termination flags from h2s to SE
745 - BUG/MEDIUM: mux-h2: Propagate termination flags when frontend SC is created
746 - DEV: add a Lua helper script for SSL keys logging
747 - CLEANUP: makefile: don't display a dummy features list without a target
748 - BUILD: makefile: do not erase build options for some build options
749 - MINOR: quic: Add low level traces (addresses, DCID)
750 - BUG/MINOR: quic: Wrong token length check (quic_generate_retry_token())
751 - BUG/MINOR: quic: Missing Retry token length on receipt
752 - MINOR: quic: Align "show quic" command help information
753 - CLEANUP: quic: Indentation fix quic_rx_pkt_retrieve_conn()
754 - CLEANUP: quic: Useless tests in qc_rx_pkt_handle()
755 - MINOR: quic: Add some counters at QUIC connection level
756 - MINOR: quic: Add a counter for sent packets
757 - MINOR: hlua: hlua_smp2lua_str() may LJMP
758 - MINOR: hlua: hlua_smp2lua() may LJMP
759 - MINOR: hlua: hlua_arg2lua() may LJMP
760 - DOC: hlua: document hlua_lua2arg() function
761 - DOC: hlua: document hlua_lua2smp() function
762 - BUG/MINOR: hlua: unsafe hlua_lua2smp() usage
763 - BUILD: makefile: commit the tiny FreeBSD makefile stub
764 - BUILD: makefile: fix build options when building tools first
765 - BUILD: ist: do not put a cast in an array declaration
766 - BUILD: ist: use the literal declaration for ist_lc/ist_uc under TCC
767 - BUILD: compiler: systematically set USE_OBSOLETE_LINKER with TCC
768 - DOC: install: update reference to known supported versions
769 - SCRIPTS: publish-release: update the umask to keep group write access
770
Christopher Fauletf48b23f2023-05-17 17:10:12 +02007712023/05/17 : 2.8-dev12
772 - BUILD: mjson: Fix warning about unused variables
773 - MINOR: spoe: Don't stop disabled proxies
774 - BUG/MEDIUM: filters: Don't deinit filters for disabled proxies during startup
775 - BUG/MINOR: hlua_fcn/queue: fix broken pop_wait()
776 - BUG/MINOR: hlua_fcn/queue: fix reference leak
777 - CLEANUP: hlua_fcn/queue: make queue:push() easier to read
778 - BUG/MINOR: quic: Buggy acknowlegments of acknowlegments function
779 - DEBUG: list: add DEBUG_LIST to purposely corrupt list heads after delete
780 - MINOR: stats: report the total number of warnings issued
781 - MINOR: stats: report the number of times the global maxconn was reached
782 - BUG/MINOR: mux-quic: do not prevent shutw on error
783 - BUG/MINOR: mux-quic: do not free frame already released by quic-conn
784 - BUG/MINOR: mux-quic: no need to subscribe for detach streams
785 - MINOR: mux-quic: add traces for stream wake
786 - MINOR: mux-quic: do not send STREAM frames if already subscribe
787 - MINOR: mux-quic: factorize send subscribing
788 - MINOR: mux-quic: simplify return path of qc_send()
789 - MEDIUM: quic: streamline error notification
790 - MEDIUM: mux-quic: adjust transport layer error handling
791 - MINOR: stats: report the listener's protocol along with the address in stats
792 - BUG/MEDIUM: mux-fcgi: Never set SE_FL_EOS without SE_FL_EOI or SE_FL_ERROR
793 - BUG/MEDIUM: mux-fcgi: Don't request more room if mux is waiting for more data
794 - MINOR: stconn: Add a cross-reference between SE descriptor
795 - BUG/MINOR: proxy: missing free in free_proxy for redirect rules
796 - MINOR: proxy: add http_free_redirect_rule() function
797 - BUG/MINOR: http_rules: fix errors paths in http_parse_redirect_rule()
798 - CLEANUP: http_act: use http_free_redirect_rule() to clean redirect act
799 - MINOR: tree-wide: use free_acl_cond() where relevant
800 - CLEANUP: acl: discard prune_acl_cond() function
801 - BUG/MINOR: cli: don't complain about empty command on empty lines
802 - MINOR: cli: add an option to display the uptime in the CLI's prompt
803 - MINOR: master/cli: also implement the timed prompt on the master CLI
804 - MINOR: cli: make "show fd" identify QUIC connections and listeners
805 - MINOR: httpclient: allow to disable the DNS resolvers of the httpclient
806 - BUILD: debug: fix build issue on 32-bit platforms in "debug dev task"
807 - MINOR: ncbuf: missing malloc checks in standalone code
808 - DOC: lua: fix core.{proxies,frontends,backends} visibility
809 - EXAMPLES: fix race condition in lua mailers script
810 - BUG/MINOR: errors: handle malloc failure in usermsgs_put()
811 - BUG/MINOR: log: fix memory error handling in parse_logsrv()
812 - BUG/MINOR: quic: Wrong redispatch for external data on connection socket
813 - MINOR: htx: add function to set EOM reliably
814 - MINOR: mux-quic: remove dedicated function to handle standalone FIN
815 - BUG/MINOR: mux-quic: properly handle buf alloc failure
816 - BUG/MINOR: mux-quic: handle properly recv ncbuf alloc failure
817 - BUG/MINOR: quic: do not alloc buf count on alloc failure
818 - BUG/MINOR: mux-quic: differentiate failure on qc_stream_desc alloc
819 - BUG/MINOR: mux-quic: free task on qc_init() app ops failure
820 - MEDIUM: session/ssl: return the SSL error string during a SSL handshake error
821 - CI: enable monthly Fedora Rawhide clang builds
822 - MEDIUM: mworker/cli: does not disconnect the master CLI upon error
823 - MINOR: stconn: Remove useless test on sedesc on detach to release the xref
824 - MEDIUM: proxy: stop emitting logs for internal proxies when stopping
825 - MINOR: ssl: add new sample ssl_c_r_dn
826 - BUG/MEDIUM: mux-h2: make sure control frames do not refresh the idle timeout
827 - BUILD: ssl: ssl_c_r_dn fetches uses functiosn only available since 1.1.1
828 - BUG/MINOR: mux-quic: handle properly Tx buf exhaustion
829 - BUG/MINOR: h3: missing goto on buf alloc failure
830 - BUILD: ssl: get0_verified chain is available on libreSSL
831 - BUG/MINOR: makefile: use USE_LIBATOMIC instead of USE_ATOMIC
832 - MINOR: mux-quic: add trace to stream rcv_buf operation
833 - MINOR: mux-quic: properly report end-of-stream on recv
834 - MINOR: mux-quic: uninline qc_attach_sc()
835 - BUG/MEDIUM: mux-quic: fix EOI for request without payload
836 - MINOR: checks: make sure spread-checks is used also at boot time
837 - BUG/MINOR: tcp-rules: Don't shortened the inspect-delay when EOI is set
838 - REGTESTS: log: Reduce response inspect-delay for last_rule.vtc
839 - DOC: config: Clarify conditions to shorten the inspect-delay for TCP rules
840 - CLEANUP: server: remove useless tmptrash assigments in srv_update_status()
841 - BUG/MINOR: server: memory leak in _srv_update_status_op() on server DOWN
842 - CLEANUP: check; Remove some useless assignments to NULL
843 - CLEANUP: stats: update the trash chunk where it's used
844 - MINOR: clock: measure the total boot time
845 - MINOR: stats: report the boot time in "show info"
846 - BUG/MINOR: checks: postpone the startup of health checks by the boot time
847 - MINOR: clock: provide a function to automatically adjust now_offset
848 - BUG/MINOR: clock: automatically adjust the internal clock with the boot time
849 - CLEANUP: fcgi-app; Remove useless assignment to NULL
850 - REGTESTS: log: Reduce again response inspect-delay for last_rule.vtc
851 - CI: drop Fedora m32 pipeline in favour of cross matrix
852 - MEDIUM: checks: Stop scheduling healthchecks during stopping stage
853 - MEDIUM: resolvers: Stop scheduling resolution during stopping stage
854 - BUG/MINOR: hlua: SET_SAFE_LJMP misuse in hlua_event_runner()
855 - BUG/MINOR: debug: fix pointer check in debug_parse_cli_task()
856
Willy Tarreauf0e8e792023-05-11 05:33:21 +02008572023/05/11 : 2.8-dev11
858 - BUILD: debug: do not check the isolated_thread variable in non-threaded builds
859 - BUILD: quic: fix build warning when threads are disabled
860 - CI: more granular failure on generating build matrix
861 - CLEANUP: quic: No more used q_buf structure
862 - CLEANUP: quic: Rename several <buf> variables in quic_frame.(c|h)
863 - CLEANUP: quic: Typo fix for quic_connection_id pool
864 - BUG/MINOR: quic: Wrong key update cipher context initialization for encryption
865 - BUG/MEDIUM: cache: Don't request more room than the max allowed
866 - MEDIUM: stconn: Be sure to always be able to unblock a SC that needs room
867 - EXAMPLES: fix IPV6 support for lua mailers script
868 - BUILD: ssl: buggy -Werror=dangling-pointer since gcc 13.0
869 - DOC: stconn: Update comments about ABRT/SHUT for stconn structure
870 - BUG/MEDIUM: stats: Require more room if buffer is almost full
871 - DOC: configuration: add info about ssl-engine for 2.6
872 - BUG/MINOR: mux-quic: fix transport VS app CONNECTION_CLOSE
873 - BUG/MEDIUM: mux-quic: wakeup tasklet to close on error
874 - DEV: flags: add a script to decode most flags in the "show sess all" output
875 - BUG/MINOR: quic: Possible crash when dumping version information
876 - BUG/MINOR: config: make compression work again in defaults section
877 - BUG/MEDIUM: stream: Forward shutdowns when unhandled errors are caught
878 - MEDIUM: stream: Resync analyzers at the end of process_stream() on change
879 - DEV: flags: add missing stream flags to show-sess-to-flags
880 - DEV: flags/show-sess-to-flags: only retrieve hex digits from hex fields
881 - DEV: flags/show-sess-to-flags: add support for color output
882 - CLEANUP: src/listener.c: remove redundant NULL check
883
Willy Tarreaud8cbfa52023-05-07 07:31:54 +02008842023/05/07 : 2.8-dev10
885 - BUG/MINOR: stats: fix typo in `TotalSplicedBytesOut` field name
886 - REGTESTS: add success test, "set server" via fqdn
887 - MINOR: ssl: disable CRL checks with WolfSSL when no CRL file
888 - BUG/MINOR: stream/cli: fix stream age calculation in "show sess"
889 - MINOR: debug: clarify "debug dev stream" help message
890 - DEBUG: cli: add "debug dev task" to show/wake/expire/kill tasks and tasklets
891 - BUG/MINOR: ssl/sample: x509_v_err_str converter output when not found
892 - REGTESTS: ssl: simplify X509_V code check in ssl_client_auth.vtc
893 - BUILD: cli: fix build on Windows due to isalnum() implemented as a macro
894 - MINOR: activity: use a single macro to iterate over all fields
895 - MINOR: activity: show the line header inside the SHOW_VAL macro
896 - MINOR: activity: iterate over all fields in a main loop for dumping
897 - MINOR: activity: allow "show activity" to restart dumping on any line
898 - MINOR: activity: allow "show activity" to restart in the middle of a line
899 - DEV: haring: automatically disable DEBUG_STRICT
900 - DEV: haring: update readme to suggest using the same build options for haring
901 - BUG/MINOR: debug: fix incorrect profiling status reporting in show threads
902 - MINOR: debug: permit the "debug dev loop" to run under isolation
903 - BUG/MEDIUM: mux-h2: Properly handle end of request to expect data from server
904 - BUG/MINOR: mux-quic: prevent quic_conn error code to be overwritten
905 - MINOR: mux-quic: add trace event for local error
906 - MINOR: mux-quic: wake up after recv only if avail data
907 - MINOR: mux-quic: adjust local error API
908 - MINOR: mux-quic: report local error on stream endpoint asap
909 - MINOR: mux-quic: close connection asap on local error
910 - BUG/MINOR: debug: do not emit empty lines in thread dumps
911 - BUG/MINOR: mux-h2: Also expect data when waiting for a tunnel establishment
912 - BUG/MINOR: time: fix NS_TO_TV macro
913 - MEDIUM: debug: simplify the thread dump mechanism
914 - MINOR: debug: write panic dump to stderr one thread at a time
915 - MINOR: debug: make "show threads" properly iterate over all threads
916 - CLEANUP: debug: remove the now unused ha_thread_dump_all_to_trash()
917 - MINOR: ssl: allow to change the server signature algorithm
918 - MINOR: ssl: allow to change the signature algorithm for client authentication
919 - MINOR: cli: Use applet API to write output message
920 - MINOR: stats: Use the applet API to write data
921 - MINOR: peers: Use the applet API to send message
922 - MINOR: stconn: Add a field to specify the room needed by the SC to progress
923 - MEDIUM: tree-wide: Change sc API to specify required free space to progress
924 - BUG/MEDIUM: stconn: Unblock SC from stream if there is enough room to progrees
925 - MEDIUM: applet: Check room needed to unblock opposite SC when data was consumed
926 - MEDIUM: stconn: Check room needed to unblock SC on fast-forward
927 - MEDIUM: stconn: Check room needed to unblock opposite SC when data was sent
928 - MINOR: hlua_fcn: fix Server.is_draining() return type
929 - MINOR: hlua_fcn: add Server.is_backup()
930 - MINOR: hlua_fcn: add Server.is_dynamic()
931 - MINOR: hlua_fcn: add Server.tracking()
932 - MINOR: hlua_fcn: add Server.get_trackers()
933 - MINOR: hlua_fcn: add Server.get_proxy()
934 - MINOR: hlua_fcn: add Server.get_pend_conn() and Server.get_cur_sess()
935 - MINOR: hlua_fcn: add Proxy.get_srv_act() and Proxy.get_srv_bck()
936 - DOC: lua/event: add ServerEvent class header
937 - MINOR: server/event_hdl: publish macro helper
938 - MINOR: server/event_hdl: add SERVER_STATE event
939 - OPTIM: server: publish UP/DOWN events from STATE change
940 - MINOR: hlua: expose SERVER_STATE event
941 - MINOR: server/event_hdl: add SERVER_ADMIN event
942 - MINOR: hlua: expose SERVER_ADMIN event
943 - MINOR: checks/event_hdl: SERVER_CHECK event
944 - MINOR: hlua/event_hdl: expose SERVER_CHECK event
945 - MINOR: mailers/hlua: disable email sending from lua
946 - MINOR: hlua: expose proxy mailers
947 - EXAMPLES: add lua mailers script to replace tcpcheck mailers
948 - BUG/MINOR: hlua: spinning loop in hlua_socket_handler()
949 - MINOR: server: fix message report when IDRAIN is set and MAINT is cleared
950 - CLEANUP: hlua: hlua_register_task() may longjmp
951 - REGTESTS: use lua mailer script for mailers tests
952 - MINOR: hlua: declare hlua_{ref,pushref,unref} functions
953 - MINOR: hlua: declare hlua_gethlua() function
954 - MINOR: hlua: declare hlua_yieldk() function
955 - MINOR: hlua_fcn: add Queue class
956 - EXAMPLES: mailqueue for lua mailers script
957 - MINOR: quic: add format argument for "show quic"
958 - MINOR: quic: implement oneline format for "show quic"
959 - MINOR: config: allow cpu-map to take commas in lists of ranges
960 - CLEANUP: fix a few reported typos in code comments
961 - DOC: fix a few reported typos in the config and install doc
962
Willy Tarreau9de10ce2023-04-28 21:52:13 +02009632023/04/28 : 2.8-dev9
964 - MINOR: quic: Move traces at proto level
965 - BUG/MINOR: quic: Possible memory leak from TX packets
966 - BUG/MINOR: quic: Possible leak during probing retransmissions
967 - BUG/MINOR: quic: Useless probing retransmission in draining or killing state
968 - BUG/MINOR: quic: Useless I/O handler task wakeups (draining, killing state)
969 - CLEANUP: quic: rename frame types with an explicit prefix
970 - CLEANUP: quic: rename frame variables
971 - CLEANUP: quic: Remove useless parameters passes to qc_purge_tx_buf()
972 - CLEANUP: quic: Rename <buf> variable to <token> in quic_generate_retry_token()
973 - CLEANUP: quic: Rename <buf> variable into quic_padding_check()
974 - CLEANUP: quic: Rename <buf> variable into quic_rx_pkt_parse()
975 - CLEANUP: quic: Rename <buf> variable for several low level functions
976 - CLEANUP: quic: Make qc_build_pkt() be more readable
977 - CLEANUP: quic: Rename quic_get_dgram_dcid() <buf> variable
978 - CLEANUP: quic: Rename several <buf> variables at low level
979 - CLEANUP: quic: Rename <buf> variable into quic_packet_read_long_header()
980 - CLEANUP: quic: Rename <buf> variable into qc_parse_hd_form()
981 - CLEANUP: quic: Rename several <buf> variables into quic_sock.c
982 - DEBUG: crash using an invalid opcode on x86/x86_64 instead of an invalid access
983 - DEBUG: crash using an invalid opcode on aarch64 instead of an invalid access
984 - DEV: h2: add a script "mkhdr" to build h2 frames from scratch
985 - DEV: h2: support reading frame payload from a file
986 - MINOR: acme.sh: add the deploy script for acme.sh in admin directory
987 - BUG/MEDIUM: mux-quic: do not emit RESET_STREAM for unknown length
988 - BUG/MEDIUM: mux-quic: improve streams fairness to prevent early timeout
989 - BUG/MINOR: quic: prevent buggy memcpy for empty STREAM
990 - MINOR: mux-quic: do not set buffer for empty STREAM frame
991 - MINOR: mux-quic: do not allocate Tx buf for empty STREAM frame
992 - MINOR: quic: finalize affinity change as soon as possible
993 - BUG/MINOR: quic: fix race on quic_conns list during affinity rebind
994 - CI: switch to Fastly CDN to download LibreSSL
995 - BUILD: ssl: switch LibreSSL to Fastly CDN
996 - BUG/MINOR: clock: fix a few occurrences of 'now' being used in place of 'date'
997 - BUG/MINOR: spoe: use "date" not "now" in debug messages
998 - BUG/MINOR: activity: show wall-clock date, not internal date in show activity
999 - BUG/MINOR: opentracing: use 'date' instead of 'now' in debug output
1000 - Revert "BUG/MINOR: clock: fix a few occurrences of 'now' being used in place of 'date'"
1001 - BUG/MINOR: calltrace: fix 'now' being used in place of 'date'
1002 - BUG/MINOR: trace: show wall-clock date, not internal date in show activity
1003 - BUG/MINOR: hlua: return wall-clock date, not internal date in core.now()
1004 - BUG/MEDIUM: spoe: Don't start new applet if there are enough idle ones
1005 - BUG/MINOR: stconn: Fix SC flags with same value
1006 - BUG/MINOR: resolvers: Use sc_need_room() to wait more room when dumping stats
1007 - BUG/MEDIUM: tcpcheck: Don't eval custom expect rule on an empty buffer
1008 - BUG/MINOR: stats: report the correct start date in "show info"
1009 - MINOR: time: add conversions to/from nanosecond timestamps
1010 - MINOR: time: replace calls to tv_ms_elapsed() with a linear subtract
1011 - MINOR: spoe: switch the timeval-based timestamps to nanosecond timestamps
1012 - MEDIUM: tree-wide: replace timeval with nanoseconds in tv_accept and tv_request
1013 - MINOR: stats: use nanoseconds, not timeval to compute uptime
1014 - MINOR: activity: use nanoseconds, not timeval to compute uptime
1015 - MINOR: checks: use a nanosecond counters instead of timeval for checks->start
1016 - MINOR: clock: do not use now.tv_sec anymore
1017 - MEDIUM: clock: replace timeval "now" with integer "now_ns"
1018 - MINOR: clock: replace the timeval start_time with start_time_ns
1019 - MINOR: sample: Add bc_rtt and bc_rttvar
1020 - MINOR: quic: use real sending rate measurement
1021 - MINOR: proxy: factorize send rate measurement
1022
Willy Tarreau3b50e5c2023-04-23 10:21:37 +020010232023/04/23 : 2.8-dev8
1024 - BUG/MEDIUM: cli: Set SE_FL_EOI flag for '_getsocks' and 'quit' commands
1025 - BUG/MEDIUM: cli: Eat output data when waiting for appctx shutdown
1026 - BUG/MEDIUM: http-client: Eat output data when waiting for appctx shutdown
1027 - BUG/MEDIUM: stats: Eat output data when waiting for appctx shutdown
1028 - BUG/MEDIUM: log: Eat output data when waiting for appctx shutdown
1029 - BUG/MEDIUM: dns: Kill idle DNS sessions during stopping stage
1030 - BUG/MINOR: resolvers: Wakeup DNS idle task on stopping
1031 - BUG/MEDIUM: resolvers: Force the connect timeout for DNS resolutions
1032 - MINOR: hlua: Stop to check the SC state when executing a hlua cli command
1033 - BUG/MEDIUM: mux-h1: Report EOI when a TCP connection is upgraded to H2
1034 - BUG/MEDIUM: mux-h2: Never set SE_FL_EOS without SE_FL_EOI or SE_FL_ERROR
1035 - MINOR: quic: Trace fix in quic_pto_pktns() (handshaske status)
1036 - BUG/MINOR: quic: Wrong packet number space probing before confirmed handshake
1037 - MINOR: quic: Modify qc_try_rm_hp() traces
1038 - MINOR: quic: Dump more information at proto level when building packets
1039 - MINOR: quic: Add a trace for packet with an ACK frame
1040 - MINOR: activity: add a line reporting the average CPU usage to "show activity"
1041 - BUG/MINOR: stick_table: alert when type len has incorrect characters
1042 - MINOR: thread: keep a bitmask of enabled groups in thread_set
1043 - MINOR: fd: optimize fd_claim_tgid() for use in fd_insert()
1044 - MINOR: fd: add a lock bit with the tgid
1045 - MINOR: fd: implement fd_migrate_on() to migrate on a non-local thread
1046 - MINOR: receiver: reserve special values for "shards"
1047 - MINOR: bind-conf: support a new shards value: "by-group"
1048 - BUG/MEDIUM: fd: don't wait for tmask to stabilize if we're not in it.
1049 - MINOR: quic: Add packet loss and maximum cc window to "show quic"
1050 - BUG/MINOR: quic: Ignored less than 1ms RTTs
1051 - MINOR: quic: Add connection flags to traces
1052 - BUG/MEDIUM: quic: Code sanitization about acknowledgements requirements
1053 - BUG/MINOR: quic: Possible wrapped values used as ACK tree purging limit.
1054 - BUG/MINOR: quic: SIGFPE in quic_cubic_update()
1055 - MINOR: quic: Display the packet number space flags in traces
1056 - MINOR: quic: Remove a useless test about probing in qc_prep_pkts()
1057 - BUG/MINOR: quic: Wrong Application encryption level selection when probing
1058 - CI: bump "actions/checkout" to v3 for cross zoo matrix
1059 - CI: enable monthly test on Fedora Rawhide
1060 - BUG/MINOR: stream: Fix test on SE_FL_ERROR on the wrong entity
1061 - BUG/MEDIUM: stream: Report write timeouts before testing the flags
1062 - BUG/MEDIUM: stconn: Do nothing in sc_conn_recv() when the SC needs more room
1063 - MINOR: stream: Uninline and export sess_set_term_flags() function
1064 - MINOR: filters: Review and simplify errors handling
1065 - REGTESTS: fix the race conditions in log_uri.vtc
1066 - MINOR: channel: Forwad close to other side on abort
1067 - MINOR: stream: Introduce stream_abort() to abort on both sides in same time
1068 - MINOR: stconn: Rename SC_FL_SHUTR_NOW in SC_FL_ABRT_WANTED
1069 - MINOR: channel/stconn: Replace channel_shutr_now() by sc_schedule_abort()
1070 - MINOR: stconn: Rename SC_FL_SHUTW_NOW in SC_FL_SHUT_WANTED
1071 - MINOR: channel/stconn: Replace channel_shutw_now() by sc_schedule_shutdown()
1072 - MINOR: stconn: Rename SC_FL_SHUTR in SC_FL_ABRT_DONE
1073 - MINOR: channel/stconn: Replace sc_shutr() by sc_abort()
1074 - MINOR: stconn: Rename SC_FL_SHUTW in SC_FL_SHUT_DONE
1075 - MINOR: channel/stconn: Replace sc_shutw() by sc_shutdown()
1076 - MINOR: tree-wide: Replace several chn_cons() by the corresponding SC
1077 - MINOR: tree-wide: Replace several chn_prod() by the corresponding SC
1078 - BUG/MINOR: cli: Don't close when SE_FL_ERR_PENDING is set in cli analyzer
1079 - MINOR: stconn: Stop to set SE_FL_ERROR on sending path
1080 - MEDIUM: stconn: Forbid applets with more to deliver if EOI was reached
1081 - MINOR: stconn: Don't clear SE_FL_ERROR when endpoint is reset
1082 - MINOR: stconn: Add a flag to ack endpoint errors at SC level
1083 - MINOR: backend: Set SC_FL_ERROR on connection error
1084 - MINOR: stream: Set SC_FL_ERROR on channels' buffer allocation error
1085 - MINOR: tree-wide: Test SC_FL_ERROR with SE_FL_ERROR from upper layer
1086 - MEDIUM: tree-wide: Stop to set SE_FL_ERROR from upper layer
1087 - MEDIUM: backend: Stop to use SE flags to detect connection errors
1088 - MEDIUM: stream: Stop to use SE flags to detect read errors from analyzers
1089 - MEDIUM: stream: Stop to use SE flags to detect endpoint errors
1090 - MEDIUM: stconn: Rely on SC flags to handle errors instead of SE flags
1091 - BUG/MINOR: stconn: Don't set SE_FL_ERROR at the end of sc_conn_send()
1092 - BUG/MINOR: quic: Do not use ack delay during the handshakes
1093 - CLEANUP: use "offsetof" where appropriate
1094 - MINOR: ssl: remove OpenSSL 1.0.2 mention into certificate loading error
1095 - BUG/MEDIUM: http-ana: Properly switch the request in tunnel mode on upgrade
1096 - BUG/MEDIUM: log: Properly handle client aborts in syslog applet
1097 - MINOR: stconn: Add a flag to report EOS at the stream-connector level
1098 - MINOR: stconn: Propagate EOS from a mux to the attached stream-connector
1099 - MINOR: stconn: Propagate EOS from an applet to the attached stream-connector
1100 - MINOR: mux-h2: make the initial window size configurable per side
1101 - MINOR: mux-h2: make the max number of concurrent streams configurable per side
1102 - BUG/MINOR: task: allow to use tasklet_wakeup_after with tid -1
1103 - CLEANUP: quic: remove unused QUIC_LOCK label
1104 - CLEANUP: quic: remove unused scid_node
1105 - CLEANUP: quic: remove unused qc param on stateless reset token
1106 - CLEANUP: quic: rename quic_connection_id vars
1107 - MINOR: quic: remove uneeded tasklet_wakeup after accept
1108 - MINOR: quic: adjust Rx packet type parsing
1109 - MINOR: quic: adjust quic CID derive API
1110 - MINOR: quic: remove TID ref from quic_conn
1111 - MEDIUM: quic: use a global CID trees list
1112 - MINOR: quic: remove TID encoding in CID
1113 - MEDIUM: quic: handle conn bootstrap/handshake on a random thread
1114 - MINOR: quic: do not proceed to accept for closing conn
1115 - MINOR: protocol: define new callback set_affinity
1116 - MINOR: quic: delay post handshake frames after accept
1117 - MEDIUM: quic: implement thread affinity rebinding
1118 - BUG/MINOR: quic: transform qc_set_timer() as a reentrant function
1119 - MINOR: quic: properly finalize thread rebinding
1120 - MAJOR: quic: support thread balancing on accept
1121 - MINOR: listener: remove unneeded local accept flag
1122 - BUG/MINOR: http-ana: Update analyzers on both sides when switching in TUNNEL mode
1123 - CLEANUP: backend: Remove useless debug message in assign_server()
1124 - CLEANUP: cli: Remove useless debug message in cli_io_handler()
1125 - BUG/MEDIUM: stconn: Propagate error on the SC on sending path
1126 - MINOR: config: add "no-alpn" support for bind lines
1127 - REGTESTS: add a new "ssl_alpn" test to test ALPN negotiation
1128 - DOC: add missing documentation for "no-alpn" on bind lines
1129 - MINOR: ssl: do not set ALPN callback with the empty string
1130 - MINOR: ssl_crtlist: dump "no-alpn" on "show crtlist" when "no-alpn" was set
1131 - MEDIUM: config: set useful ALPN defaults for HTTPS and QUIC
1132 - BUG/MEDIUM: quic: prevent crash on Retry sending
1133 - BUG/MINOR: cfgparse: make sure to include openssl-compat
1134 - MINOR: clock: add now_mono_time_fast() function
1135 - MINOR: clock: add now_cpu_time_fast() function
1136 - MEDIUM: hlua: reliable timeout detection
1137 - MEDIUM: hlua: introduce tune.lua.burst-timeout
1138 - CLEANUP: hlua: avoid confusion between internal timers and tick based timers
1139 - MINOR: hlua: hook yield on known lua state
1140 - MINOR: hlua: safe coroutine.create()
1141 - BUG/MINOR: quic: Stop removing ACK ranges when building packets
1142 - MINOR: quic: Do not allocate too much ack ranges
1143 - BUG/MINOR: quic: Unchecked buffer length when building the token
1144 - BUG/MINOR: quic: Wrong Retry token generation timestamp computing
1145 - BUG/MINOR: mux-quic: fix crash with app ops install failure
1146 - BUG/MINOR: mux-quic: properly handle STREAM frame alloc failure
1147 - BUG/MINOR: h3: fix crash on h3s alloc failure
1148 - BUG/MINOR: quic: prevent crash on qc_new_conn() failure
1149 - BUG/MINOR: quic: consume Rx datagram even on error
1150 - CLEANUP: errors: fix obsolete function comments
1151 - CLEANUP: server: fix update_status() function comment
1152 - MINOR: server/event_hdl: add proxy_uuid to event_hdl_cb_data_server
1153 - MINOR: hlua/event_hdl: rely on proxy_uuid instead of proxy_name for lookups
1154 - MINOR: hlua/event_hdl: expose proxy_uuid variable in server events
1155 - MINOR: hlua/event_hdl: fix return type for hlua_event_hdl_cb_data_push_args
1156 - MINOR: server/event_hdl: prepare for upcoming refactors
1157 - BUG/MINOR: event_hdl: don't waste 1 event subtype slot
1158 - CLEANUP: event_hdl: updating obsolete comment for EVENT_HDL_CB_DATA
1159 - CLEANUP: event_hdl: fix comment typo about _sync assertion
1160 - MINOR: event_hdl: dynamically allocated event data members
1161 - MINOR: event_hdl: provide event->when for advanced handlers
1162 - MINOR: hlua/event_hdl: timestamp for events
1163 - DOC: lua: restore 80 char limitation
1164 - BUG/MINOR: server: incorrect report for tracking servers leaving drain
1165 - MINOR: server: explicitly commit state change in srv_update_status()
1166 - BUG/MINOR: server: don't miss proxy stats update on server state transitions
1167 - BUG/MINOR: server: don't miss server stats update on server state transitions
1168 - BUG/MINOR: server: don't use date when restoring last_change from state file
1169 - MINOR: server: central update for server counters on state change
1170 - MINOR: server: propagate server state change to lb through single function
1171 - MINOR: server: propagate lb changes through srv_lb_propagate()
1172 - MINOR: server: change adm_st_chg_cause storage type
1173 - MINOR: server: srv_append_status refacto
1174 - MINOR: server: change srv_op_st_chg_cause storage type
1175 - CLEANUP: server: remove unused variables in srv_update_status()
1176 - CLEANUP: server: fix srv_set_{running, stopping, stopped} function comment
1177 - MINOR: server: pass adm and op cause to srv_update_status()
1178 - MEDIUM: server: split srv_update_status() in two functions
1179 - MINOR: server/event_hdl: prepare for server event data wrapper
1180 - MINOR: quic: support migrating the listener as well
1181 - MINOR: quic_sock: index li->per_thr[] on local thread id, not global one
1182 - MINOR: listener: support another thread dispatch mode: "fair"
1183 - MINOR: receiver: add a struct shard_info to store info about each shard
1184 - MINOR: receiver: add RX_F_MUST_DUP to indicate that an rx must be duped
1185 - MEDIUM: proto: duplicate receivers marked RX_F_MUST_DUP
1186 - MINOR: proto: skip socket setup for duped FDs
1187 - MEDIUM: config: permit to start a bind on multiple groups at once
1188 - MINOR: listener: make accept_queue index atomic
1189 - MEDIUM: listener: rework thread assignment to consider all groups
1190 - MINOR: listener: use a common thr_idx from the reference listener
1191 - MINOR: listener: resync with the thread index before heavy calculations
1192 - MINOR: listener: make sure to avoid ABA updates in per-thread index
1193 - MINOR: listener: always compare the local thread as well
1194 - MINOR: Make `tasklet_free()` safe to be called with `NULL`
1195 - CLEANUP: Stop checking the pointer before calling `tasklet_free()`
1196 - CLEANUP: Stop checking the pointer before calling `pool_free()`
1197 - CLEANUP: Stop checking the pointer before calling `task_free()`
1198 - CLEANUP: Stop checking the pointer before calling `ring_free()`
1199 - BUG/MINOR: cli: clarify error message about stats bind-process
1200 - CI: cirrus-ci: bump FreeBSD image to 13-1
1201 - REGTESTS: remove unsupported "stats bind-process" keyword
1202 - CI: extend spellchecker whitelist, add "clen" as well
1203 - CLEANUP: assorted typo fixes in the code and comments
1204 - BUG/MINOR: sock_inet: use SO_REUSEPORT_LB where available
1205 - BUG/MINOR: tools: check libssl and libcrypto separately
1206 - BUG/MINOR: config: fix NUMA topology detection on FreeBSD
1207 - BUILD: sock_inet: forward-declare struct receiver
1208 - BUILD: proto_tcp: export the correct names for proto_tcpv[46]
1209 - CLEANUP: protocol: move the l3_addrlen to plug a hole in proto_fam
1210 - CLEANUP: protocol: move the nb_receivers to plug a hole in protocol
1211 - REORG: listener: move the bind_conf's thread setup code to listener.c
1212 - MINOR: proxy: make proxy_type_str() recognize peers sections
1213 - MEDIUM: peers: call bind_complete_thread_setup() to finish the config
1214 - MINOR: protocol: add a flags field to store info about protocols
1215 - MINOR: protocol: move the global reuseport flag to the protocols
1216 - MINOR: listener: automatically adjust shards based on support for SO_REUSEPORT
1217 - MINOR: protocol: add a function to check if some features are supported
1218 - MINOR: sock: add a function to check for SO_REUSEPORT support at runtime
1219 - MINOR: protocol: perform a live check for SO_REUSEPORT support
1220 - MINOR: listener: do not restrict CLI to first group anymore
1221 - MINOR: listener: add a new global tune.listener.default-shards setting
1222 - MEDIUM: listener: switch the default sharding to by-group
1223
Willy Tarreau768b6282023-04-08 17:38:39 +020012242023/04/08 : 2.8-dev7
1225 - BUG/MINOR: stats: Don't replace sc_shutr() by SE_FL_EOS flag yet
1226 - BUG/MEDIUM: mux-h2: Be able to detect connection error during handshake
1227 - BUG/MINOR: quic: Missing padding in very short probe packets
1228 - MINOR: proxy/pool: prevent unnecessary calls to pool_gc()
1229 - CLEANUP: proxy: remove stop_time related dead code
1230 - DOC/MINOR: reformat configuration.txt's "quoting and escaping" table
1231 - MINOR: http_fetch: Add support for empty delim in url_param
1232 - MINOR: http_fetch: add case insensitive support for smp_fetch_url_param
1233 - MINOR: http_fetch: Add case-insensitive argument for url_param/urlp_val
1234 - REGTESTS : Add test support for case insentitive for url_param
1235 - BUG/MEDIUM: proxy/sktable: prevent watchdog trigger on soft-stop
1236 - BUG/MINOR: backend: make be_usable_srv() consistent when stopping
1237 - BUG/MINOR: ssl: Remove dead code in cli_parse_update_ocsp_response
1238 - BUG/MINOR: ssl: Fix potential leak in cli_parse_update_ocsp_response
1239 - BUG/MINOR: ssl: ssl-(min|max)-ver parameter not duplicated for bundles in crt-list
1240 - BUG/MINOR: quic: Wrong use of now_ms timestamps (cubic algo)
1241 - MINOR: quic: Add recovery related information to "show quic"
1242 - BUG/MINOR: quic: Wrong use of now_ms timestamps (newreno algo)
1243 - BUG/MINOR: quic: Missing max_idle_timeout initialization for the connection
1244 - MINOR: quic: Implement cubic state trace callback
1245 - MINOR: quic: Adjustments for generic control congestion traces
1246 - MINOR: quic: Traces adjustments at proto level.
1247 - MEDIUM: quic: Ack delay implementation
1248 - BUG/MINOR: quic: Wrong rtt variance computing
1249 - MINOR: cli: support filtering on FD types in "show fd"
1250 - MINOR: quic: Add a fake congestion control algorithm named "nocc"
1251 - CI: run smoke tests on config syntax to check memory related issues
1252 - CLEANUP: assorted typo fixes in the code and comments
1253 - CI: exclude doc/{design-thoughts,internals} from spell check
1254 - BUG/MINOR: quic: Remaining useless statements in cubic slow start callback
1255 - BUG/MINOR: quic: Cubic congestion control window may wrap
1256 - MINOR: quic: Add missing traces in cubic algorithm implementation
1257 - BUG/MAJOR: quic: Congestion algorithms states shared between the connection
1258 - BUG/MINOR: ssl: Undefined reference when building with OPENSSL_NO_DEPRECATED
1259 - BUG/MINOR: quic: Remove useless BUG_ON() in newreno and cubic algo implementation
1260 - MINOR: http-act: emit a warning when a header field name contains forbidden chars
1261 - DOC: config: strict-sni allows to start without certificate
1262 - MINOR: quic: Add trace to debug idle timer task issues
1263 - BUG/MINOR: quic: Unexpected connection closures upon idle timer task execution
1264 - BUG/MINOR: quic: Wrong idle timer expiration (during 20s)
1265 - BUILD: quic: 32bits compilation issue in cli_io_handler_dump_quic()
1266 - BUG/MINOR: quic: Possible wrong PTO computing
1267 - BUG/MINOR: tcpcheck: Be able to expect an empty response
1268 - BUG/MEDIUM: stconn: Add a missing return statement in sc_app_shutr()
1269 - BUG/MINOR: stream: Fix test on channels flags to set clientfin/serverfin touts
1270 - MINOR: applet: Uninline appctx_free()
1271 - MEDIUM: applet/trace: Register a new trace source with its events
1272 - CLEANUP: stconn: Remove remaining debug messages
1273 - BUG/MEDIUM: channel: Improve reports for shut in co_getblk()
1274 - BUG/MEDIUM: dns: Properly handle error when a response consumed
1275 - MINOR: stconn: Remove unecessary test on SE_FL_EOS before receiving data
1276 - MINOR: stconn/channel: Move CF_READ_DONTWAIT into the SC and rename it
1277 - MINOR: stconn/channel: Move CF_SEND_DONTWAIT into the SC and rename it
1278 - MINOR: stconn/channel: Move CF_NEVER_WAIT into the SC and rename it
1279 - MINOR: stconn/channel: Move CF_EXPECT_MORE into the SC and rename it
1280 - MINOR: mux-pt: Report end-of-input with the end-of-stream after a read
1281 - BUG/MINOR: mux-h1: Properly report EOI/ERROR on read0 in h1_rcv_pipe()
1282 - CLEANUP: mux-h1/mux-pt: Remove useless test on SE_FL_SHR/SE_FL_SHW flags
1283 - MINOR: mux-h1: Report an error to the SE descriptor on truncated message
1284 - MINOR: stconn: Always ack EOS at the end of sc_conn_recv()
1285 - MINOR: stconn/applet: Handle EOI in the applet .wake callback function
1286 - MINOR: applet: No longer set EOI on the SC
1287 - MINOR: stconn/applet: Handle EOS in the applet .wake callback function
1288 - MEDIUM: cache: Use the sedesc to report and detect end of processing
1289 - MEDIUM: cli: Use the sedesc to report and detect end of processing
1290 - MINOR: dns: Remove the test on the opposite SC state to send requests
1291 - MEDIUM: dns: Use the sedesc to report and detect end of processing
1292 - MEDIUM: spoe: Use the sedesc to report and detect end of processing
1293 - MEDIUM: hlua/applet: Use the sedesc to report and detect end of processing
1294 - MEDIUM: log: Use the sedesc to report and detect end of processing
1295 - MEDIUM: peers: Use the sedesc to report and detect end of processing
1296 - MINOR: sink: Remove the tests on the opposite SC state to process messages
1297 - MEDIUM: sink: Use the sedesc to report and detect end of processing
1298 - MEDIUM: stats: Use the sedesc to report and detect end of processing
1299 - MEDIUM: promex: Use the sedesc to report and detect end of processing
1300 - MEDIUM: http_client: Use the sedesc to report and detect end of processing
1301 - MINOR: stconn/channel: Move CF_EOI into the SC and rename it
1302 - MEDIUM: tree-wide: Move flags about shut from the channel to the SC
1303 - MINOR: tree-wide: Simplifiy some tests on SHUT flags by accessing SCs directly
1304 - MINOR: stconn/applet: Add BUG_ON_HOT() to be sure SE_FL_EOS is never set alone
1305 - MINOR: server: add SRV_F_DELETED flag
1306 - BUG/MINOR: server/del: fix srv->next pointer consistency
1307 - BUG/MINOR: stats: properly handle server stats dumping resumption
1308 - BUG/MINOR: sink: free forward_px on deinit()
1309 - BUG/MINOR: log: free log forward proxies on deinit()
1310 - MINOR: server: always call ssl->destroy_srv when available
1311 - MINOR: server: correctly free servers on deinit()
1312 - BUG/MINOR: hlua: hook yield does not behave as expected
1313 - MINOR: hlua: properly handle hlua_process_task HLUA_E_ETMOUT
1314 - BUG/MINOR: hlua: enforce proper running context for register_x functions
1315 - MINOR: hlua: Fix two functions that return nothing useful
1316 - MEDIUM: hlua: Dynamic list of frontend/backend in Lua
1317 - MINOR: hlua_fcn: alternative to old proxy and server attributes
1318 - MEDIUM: hlua_fcn: dynamic server iteration and indexing
1319 - MEDIUM: hlua_fcn/api: remove some old server and proxy attributes
1320 - CLEANUP: hlua: fix conflicting comment in hlua_ctx_destroy()
1321 - MINOR: hlua: add simple hlua reference handling API
1322 - MINOR: hlua: fix return type for hlua_checkfunction() and hlua_checktable()
1323 - BUG/MINOR: hlua: fix reference leak in core.register_task()
1324 - BUG/MINOR: hlua: fix reference leak in hlua_post_init_state()
1325 - BUG/MINOR: hlua: prevent function and table reference leaks on errors
1326 - CLEANUP: hlua: use hlua_ref() instead of luaL_ref()
1327 - CLEANUP: hlua: use hlua_pushref() instead of lua_rawgeti()
1328 - CLEANUP: hlua: use hlua_unref() instead of luaL_unref()
1329 - MINOR: hlua: simplify lua locking
1330 - BUG/MEDIUM: hlua: prevent deadlocks with main lua lock
1331 - MINOR: hlua_fcn: add server->get_rid() method
1332 - MINOR: hlua: support for optional arguments to core.register_task()
1333 - DOC: lua: silence "literal block ends without a blank line" Sphinx warnings
1334 - DOC: lua: silence "Unexpected indentation" Sphinx warnings
1335 - BUG/MINOR: event_hdl: fix rid storage type
1336 - BUG/MINOR: event_hdl: make event_hdl_subscribe thread-safe
1337 - MINOR: event_hdl: global sublist management clarification
1338 - BUG/MEDIUM: event_hdl: clean soft-stop handling
1339 - BUG/MEDIUM: event_hdl: fix async data refcount issue
1340 - MINOR: event_hdl: normal tasks support for advanced async mode
1341 - MINOR: event_hdl: add event_hdl_async_equeue_isempty() function
1342 - MINOR: event_hdl: add event_hdl_async_equeue_size() function
1343 - MINOR: event_hdl: pause/resume for subscriptions
1344 - MINOR: proxy: add findserver_unique_id() and findserver_unique_name()
1345 - MEDIUM: hlua/event_hdl: initial support for event handlers
1346 - MINOR: hlua/event_hdl: per-server event subscription
1347 - EXAMPLES: add basic event_hdl lua example script
1348 - MINOR: http-ana: Add a HTTP_MSGF flag to state the Expect header was checked
1349 - BUG/MINOR: http-ana: Don't switch message to DATA when waiting for payload
1350 - BUG/MINOR: quic: Possible crashes in qc_idle_timer_task()
1351 - MINOR: quic: derive first DCID from client ODCID
1352 - MINOR: quic: remove ODCID dedicated tree
1353 - MINOR: quic: remove address concatenation to ODCID
1354 - BUG/MINOR: mworker: unset more internal variables from program section
1355 - BUG/MINOR: errors: invalid use of memprintf in startup_logs_init()
1356 - MINOR: applet: Use unsafe version to get stream from SC in the trace function
1357 - BUG/MUNOR: http-ana: Use an unsigned integer for http_msg flags
1358 - MINOR: compression: Make compression offload a flag
1359 - MINOR: compression: Prepare compression code for request compression
1360 - MINOR: compression: Store algo and type for both request and response
1361 - MINOR: compression: Count separately request and response compression
1362 - MEDIUM: compression: Make it so we can compress requests as well.
1363 - BUG/MINOR: lua: remove incorrect usage of strncat()
1364 - CLEANUP: tcpcheck: remove the only occurrence of sprintf() in the code
1365 - CLEANUP: ocsp: do no use strpcy() to copy a path!
1366 - CLEANUP: tree-wide: remove strpcy() from constant strings
1367 - CLEANUP: opentracing: remove the last two occurrences of strncat()
1368 - BUILD: compiler: fix __equals_1() on older compilers
1369 - MINOR: compiler: define a __attribute__warning() macro
1370 - BUILD: bug.h: add a warning in the base API when unsafe functions are used
1371 - BUG/MEDIUM: listeners: Use the right parameters for strlcpy2().
1372
Willy Tarreau4c7588d2023-03-28 13:58:56 +020013732023/03/28 : 2.8-dev6
1374 - BUG/MEDIUM: mux-pt: Set EOS on error on sending path if read0 was received
1375 - MINOR: ssl: Change the ocsp update log-format
1376 - MINOR: ssl: Use ocsp update task for "update ssl ocsp-response" command
1377 - BUG/MINOR: ssl: Fix double free in ocsp update deinit
1378 - MINOR: ssl: Accept certpath as param in "show ssl ocsp-response" CLI command
1379 - MINOR: ssl: Add certificate path to 'show ssl ocsp-response' output
1380 - BUG/MEDIUM: proxy: properly stop backends on soft-stop
1381 - BUG/MEDIUM: resolvers: Properly stop server resolutions on soft-stop
1382 - DEBUG: cli/show_fd: Display connection error code
1383 - DEBUG: ssl-sock/show_fd: Display SSL error code
1384 - BUG/MEDIUM: mux-h1: Don't block SE_FL_ERROR if EOS is not reported on H1C
1385 - BUG/MINOR: tcp_sample: fix a bug in fc_dst_port and fc_dst_is_local sample fetches
1386 - BUG/MINOR: quic: Missing STREAM frame length updates
1387 - BUG/MEDIUM: connection: Preserve flags when a conn is removed from an idle list
1388 - BUG/MINOR: mux-h2: make sure the h2c task exists before refreshing it
1389 - MINOR: buffer: add br_count() to return the number of allocated bufs
1390 - MINOR: buffer: add br_single() to check if a buffer ring has more than one buf
1391 - BUG/MEDIUM: mux-h2: only restart sending when mux buffer is decongested
1392 - BUG/MINOR: mux-h2: set CO_SFL_STREAMER when sending lots of data
1393 - BUG/MINOR: quic: Missing STREAM frame data pointer updates
1394 - MINOR: stick-table: add sc-add-gpc() to http-after-response
1395 - MINOR: doc: missing entries for sc-add-gpc()
1396 - BUG/MAJOR: qpack: fix possible read out of bounds in static table
1397 - OPTIM: mux-h1: limit first read size to avoid wrapping
1398 - MINOR: mux-h2: set CO_SFL_MSG_MORE when sending multiple buffers
1399 - MINOR: ssl-sock: pass the CO_SFL_MSG_MORE info down the stack
1400 - MINOR: quic: Stop stressing the acknowledgments process (RX ACK frames)
1401 - BUG/MINOR: quic: Dysfunctional 01RTT packet number space probing
1402 - BUG/MEDIUM: stream: do not try to free a failed stream-conn
1403 - BUG/MEDIUM: mux-h2: do not try to free an unallocated h2s->sd
1404 - BUG/MEDIUM: mux-h2: erase h2c->wait_event.tasklet on error path
1405 - BUG/MEDIUM: stconn: don't set the type before allocation succeeds
1406 - BUG/MINOR: stconn: fix sedesc memory leak on stream allocation failure
1407 - MINOR: dynbuf: set POOL_F_NO_FAIL on buffer allocation
1408 - MINOR: pools: preset the allocation failure rate to 1% with -dMfail
1409 - BUG/MEDIUM: mux-h1: properly destroy a partially allocated h1s
1410 - BUG/MEDIUM: applet: only set appctx->sedesc on successful allocation
1411 - BUG/MINOR: quic: wake up MUX on probing only for 01RTT
1412 - BUG/MINOR: quic: ignore congestion window on probing for MUX wakeup
1413 - BUILD: thread: implement thread_harmless_end_sig() for threadless builds
1414 - BUILD: thread: silence a build warning when threads are disabled
1415 - MINOR: debug: support dumping the libs addresses when running in verbose mode
1416 - BUG/MINOR: illegal use of the malloc_trim() function if jemalloc is used
1417 - BUG/MINOR: trace: fix hardcoded level for TRACE_PRINTF
1418 - BUG/MEDIUM: mux-quic: release data from conn flow-control on qcs reset
1419 - MINOR: mux-quic: complete traces for qcs emission
1420 - MINOR: mux-quic: adjust trace level for MAX_DATA/MAX_STREAM_DATA recv
1421 - MINOR: mux-quic: add flow-control info to minimal trace level
1422 - MINOR: pools: make sure 'no-memory-trimming' is always used
1423 - MINOR: pools: intercept malloc_trim() instead of trying to plug holes
1424 - MEDIUM: pools: move the compat code from trim_all_pools() to malloc_trim()
1425 - MINOR: pools: export trim_all_pools()
1426 - MINOR: pattern: use trim_all_pools() instead of a conditional malloc_trim()
1427 - MINOR: tools: relax dlopen() on malloc/free checks
1428 - MEDIUM: tools: further relax dlopen() checks too consider grouped symbols
1429 - BUG/MINOR: pools: restore detection of built-in allocator
1430 - MINOR: pools: report a replaced memory allocator instead of just malloc_trim()
1431 - BUG/MINOR: h3: properly handle incomplete remote uni stream type
1432 - BUG/MINOR: mux-quic: prevent CC status to be erased by shutdown
1433 - MINOR: mux-quic: interrupt qcc_recv*() operations if CC scheduled
1434 - MINOR: mux-quic: ensure CONNECTION_CLOSE is scheduled once per conn
1435 - MINOR: mux-quic: close on qcs allocation failure
1436 - MINOR: mux-quic: close on frame alloc failure
1437 - BUG/MINOR: syslog: Request for more data if message was not fully received
1438 - BUG/MEDIUM: stats: Consume the request except when parsing the POST payload
1439 - DOC: config: set-var() dconv rendering issues
1440 - BUG/MEDIUM: mux-h1: Wakeup H1C on shutw if there is no I/O subscription
1441 - BUG/MINOR: applet/new: fix sedesc freeing logic
1442 - BUG/MINOR: quic: Missing STREAM frame type updated
1443 - BUILD: da: extends CFLAGS to support API v3 from 3.1.7 and onwards.
1444 - BUG/MINOR: ssl: Stop leaking `err` in ssl_sock_load_ocsp()
1445
Willy Tarreaufc0ad292023-03-10 16:28:37 +010014462023/03/10 : 2.8-dev5
1447 - MINOR: ssl: rename confusing ssl_bind_kws
1448 - BUG/MINOR: config: crt-list keywords mistaken for bind ssl keywords
1449 - BUG/MEDIUM: http-ana: Detect closed SC on opposite side during body forwarding
1450 - BUG/MEDIUM: stconn: Don't rearm the read expiration date if EOI was reached
1451 - MINOR: global: Add an option to disable the data fast-forward
1452 - MINOR: haproxy: Add an command option to disable data fast-forward
1453 - REGTESTS: Remove unsupported feature command in http_splicing.vtc
1454 - BUG/MEDIUM: wdt: fix wrong thread being checked for sleeping
1455 - BUG/MINOR: sched: properly report long_rq when tasks remain in the queue
1456 - BUG/MEDIUM: sched: allow a bit more TASK_HEAVY to be processed when needed
1457 - MINOR: threads: add flags to know if a thread is started and/or running
1458 - MINOR: h3/hq-interop: handle no data in decode_qcs() with FIN set
1459 - BUG/MINOR: mux-quic: transfer FIN on empty STREAM frame
1460 - BUG/MINOR: mworker: prevent incorrect values in uptime
1461 - MINOR: h3: add traces on decode_qcs callback
1462 - BUG/MINOR: quic: Possible unexpected counter incrementation on send*() errors
1463 - MINOR: quic: Add new traces about by connection RX buffer handling
1464 - MINOR: quic: Move code to wakeup the timer task to avoid anti-amplication deadlock
1465 - BUG/MINOR: quic: Really cancel the connection timer from qc_set_timer()
1466 - MINOR: quic: Simplication for qc_set_timer()
1467 - MINOR: quic: Kill the connections on ICMP (port unreachable) packet receipt
1468 - MINOR: quic: Add traces to qc_kill_conn()
1469 - MINOR: quic: Make qc_dgrams_retransmit() return a status.
1470 - BUG/MINOR: quic: Missing call to task_queue() in qc_idle_timer_do_rearm()
1471 - MINOR: quic: Add a trace to identify connections which sent Initial packet.
1472 - MINOR: quic: Add <pto_count> to the traces
1473 - BUG/MINOR: quic: Do not probe with too little Initial packets
1474 - BUG/MINOR: quic: Wrong initialization for io_cb_wakeup boolean
1475 - BUG/MINOR: quic: Do not drop too small datagrams with Initial packets
1476 - BUG/MINOR: quic: Missing padding for short packets
1477 - MINOR: quic: adjust request reject when MUX is already freed
1478 - BUG/MINOR: quic: also send RESET_STREAM if MUX released
1479 - BUG/MINOR: quic: acknowledge STREAM frame even if MUX is released
1480 - BUG/MINOR: h3: prevent hypothetical demux failure on int overflow
1481 - MEDIUM: h3: enforce GOAWAY by resetting higher unhandled stream
1482 - MINOR: mux-quic: define qc_shutdown()
1483 - MINOR: mux-quic: define qc_process()
1484 - MINOR: mux-quic: implement client-fin timeout
1485 - MEDIUM: mux-quic: properly implement soft-stop
1486 - MINOR: quic: mark quic-conn as jobs on socket allocation
1487 - MEDIUM: quic: trigger fast connection closing on process stopping
1488 - MINOR: mux-h2/traces: do not log h2s pointer for dummy streams
1489 - MINOR: mux-h2/traces: add a missing TRACE_LEAVE() in h2s_frt_handle_headers()
1490 - BUG/MEDIUM: quic: Missing TX buffer draining from qc_send_ppkts()
1491 - DEBUG: stream: Add a BUG_ON to never exit process_stream with an expired task
1492 - DOC: config: Fix description of options about HTTP connection modes
1493 - MINOR: proxy: Only consider backend httpclose option for server connections
1494 - BUG/MINOR: haproxy: Fix option to disable the fast-forward
1495 - DOC: config: Add the missing tune.fail-alloc option from global listing
1496 - MINOR: cfgcond: Implement strstr condition expression
1497 - MINOR: cfgcond: Implement enabled condition expression
1498 - REGTESTS: Skip http_splicing.vtc script if fast-forward is disabled
1499 - REGTESTS: Fix ssl_errors.vtc script to wait for connections close
1500 - BUG/MINOR: mworker: stop doing strtok directly from the env
1501 - BUG/MEDIUM: mworker: prevent inconsistent reload when upgrading from old versions
1502 - BUG/MEDIUM: mworker: don't register mworker_accept_wrapper() when master FD is wrong
1503 - MINOR: startup: HAPROXY_STARTUP_VERSION contains the version used to start
1504 - BUG/MINOR: cache: Cache response even if request has "no-cache" directive
1505 - BUG/MINOR: cache: Check cache entry is complete in case of Vary
1506 - MINOR: compiler: add a TOSTR() macro to turn a value into a string
1507 - BUG/MINOR: lua/httpclient: missing free in hlua_httpclient_send()
1508 - BUG/MEDIUM: httpclient/lua: fix a race between lua GC and hlua_ctx_destroy
1509 - MEDIUM: channel: Remove CF_READ_NOEXP flag
1510 - MAJOR: channel: Remove flags to report READ or WRITE errors
1511 - DEBUG: stream/trace: Add sedesc flags in trace messages
1512 - MINOR: channel/stconn: Move rto/wto from the channel to the stconn
1513 - MEDIUM: channel/stconn: Move rex/wex timer from the channel to the sedesc
1514 - MEDIUM: stconn: Don't requeue the stream's task after I/O
1515 - MEDIUM: stconn: Replace read and write timeouts by a unique I/O timeout
1516 - MEDIUM: stconn: Add two date to track successful reads and blocked sends
1517 - MINOR: applet/stconn: Add a SE flag to specify an endpoint does not expect data
1518 - MAJOR: stream: Use SE descriptor date to detect read/write timeouts
1519 - MINOR: stream: Dump the task expiration date in trace messages
1520 - MINOR: stream: Report rex/wex value using the sedesc date in trace messages
1521 - MINOR: stream: Use relative expiration date in trace messages
1522 - MINOR: stconn: Always report READ/WRITE event on shutr/shutw
1523 - CLEANUP: stconn: Remove old read and write expiration dates
1524 - MINOR: stconn: Set half-close timeout using proxy settings
1525 - MINOR: stconn: Remove half-closed timeout
1526 - REGTESTS: cache: Use rxresphdrs to only get headers for 304 responses
1527 - MINOR: stconn: Add functions to set/clear SE_FL_EXP_NO_DATA flag from endpoint
1528 - BUG/MINOR: proto_ux: report correct error when bind_listener fails
1529 - BUG/MINOR: protocol: fix minor memory leak in protocol_bind_all()
1530 - MINOR: proto_uxst: add resume method
1531 - MINOR: listener/api: add lli hint to listener functions
1532 - MINOR: listener: add relax_listener() function
1533 - MINOR: listener: workaround for closing a tiny race between resume_listener() and stopping
1534 - MINOR: listener: make sure we don't pause/resume bypassed listeners
1535 - BUG/MEDIUM: listener: fix pause_listener() suspend return value handling
1536 - BUG/MINOR: listener: fix resume_listener() resume return value handling
1537 - BUG/MEDIUM: resume from LI_ASSIGNED in default_resume_listener()
1538 - MINOR: listener: pause_listener() becomes suspend_listener()
1539 - BUG/MEDIUM: listener/proxy: fix listeners notify for proxy resume
1540 - BUG/MINOR: sock_unix: match finalname with tempname in sock_unix_addrcmp()
1541 - MEDIUM: proto_ux: properly suspend named UNIX listeners
1542 - MINOR: proto_ux: ability to dump ABNS names in error messages
1543 - MINOR: haproxy: always protocol unbind on startup error path
1544 - BUILD: quic: 32-bits compilation issue with %zu in quic_rx_pkts_del()
1545 - BUG/MINOR: ring: do not realign ring contents on resize
1546 - MEDIUM: ring: make the offset relative to the head/tail instead of absolute
1547 - CLEANUP: ring: remove the now unused ring's offset
1548 - MINOR: config: add HAPROXY_BRANCH environment variable
1549 - BUILD: thead: Fix several 32 bits compilation issues with uint64_t variables
1550 - BUG/MEDIUM: fd: avoid infinite loops in fd_add_to_fd_list and fd_rm_from_fd_list
1551 - BUG/MEDIUM: h1-htx: Never copy more than the max data allowed during parsing
1552 - BUG/MINOR: stream: Remove BUG_ON about the task expiration in process_stream()
1553 - MINOR: stream: Handle stream's timeouts in a dedicated function
1554 - MEDIUM: stream: Eventually handle stream timeouts when exiting process_stream()
1555 - MINOR: stconn: Report a send activity when endpoint is willing to consume data
1556 - BUG/MEDIUM: stconn: Report a blocked send if some output data are not consumed
1557 - MEDIUM: mux-h1: Don't expect data from server as long as request is unfinished
1558 - MEDIUM: mux-h2: Don't expect data from server as long as request is unfinished
1559 - MEDIUM: mux-quic: Don't expect data from server as long as request is unfinished
1560 - DOC: config: Clarify the meaning of 'hold' in the 'resolvers' section
1561 - DOC: config: Replace TABs by spaces
1562 - BUG/MINOR: fd: used the update list from the fd's group instead of tgid
1563 - BUG/MEDIUM: fd: make fd_delete() support being called from a different group
1564 - CLEANUP: listener: only store conn counts for local threads
1565 - MINOR: tinfo: make thread_set functions return nth group/mask instead of first
1566 - MEDIUM: quic: improve fatal error handling on send
1567 - MINOR: quic: consider EBADF as critical on send()
1568 - BUG/MEDIUM: connection: Clear flags when a conn is removed from an idle list
1569 - BUG/MINOR: mux-h1: Don't report an error on an early response close
1570 - BUG/MINOR: http-check: Don't set HTX_SL_F_BODYLESS flag with a log-format body
1571 - BUG/MINOR: http-check: Skip C-L header for empty body when it's not mandatory
1572 - BUG/MINOR: http-fetch: recognize IPv6 addresses in square brackets in req.hdr_ip()
1573 - REGTEST: added tests covering smp_fetch_hdr_ip()
1574 - MINOR: quic: simplify return path in send functions
1575 - MINOR: quic: implement qc_notify_send()
1576 - MINOR: quic: purge txbuf before preparing new packets
1577 - MEDIUM: quic: implement poller subscribe on sendto error
1578 - MINOR: quic: notify on send ready
1579 - BUG/MINOR: http-ana: Don't increment conn_retries counter before the L7 retry
1580 - BUG/MINOR: http-ana: Do a L7 retry on read error if there is no response
1581 - BUG/MEDIUM: http-ana: Don't close request side when waiting for response
1582 - BUG/MINOR: mxu-h1: Report a parsing error on abort with pending data
1583 - MINOR: ssl: Destroy ocsp update http_client during cleanup
1584 - MINOR: ssl: Reinsert ocsp update entries later in case of unknown error
1585 - MINOR: ssl: Add ocsp update success/failure counters
1586 - MINOR: ssl: Store specific ocsp update errors in response and update ctx
1587 - MINOR: ssl: Add certificate's path to certificate_ocsp structure
1588 - MINOR: ssl: Add 'show ssl ocsp-updates' CLI command
1589 - MINOR: ssl: Add sample fetches related to OCSP update
1590 - MINOR: ssl: Use dedicated proxy and log-format for OCSP update
1591 - MINOR: ssl: Reorder struct certificate_ocsp members
1592 - MINOR: ssl: Increment OCSP update replay delay in case of failure
1593 - MINOR: ssl: Add way to dump ocsp response in base64
1594 - MINOR: ssl: Add global options to modify ocsp update min/max delay
1595 - REGTESTS: ssl: Fix ocsp update crt-lists
1596 - REGTESTS: ssl: Add test for new ocsp update cli commands
1597 - MINOR: ssl: Add ocsp-update information to "show ssl crt-list"
1598 - BUG/MINOR: ssl: Fix ocsp-update when using "add ssl crt-list"
1599 - MINOR: ssl: Replace now.tv_sec with date.tv_sec in ocsp update task
1600 - BUG/MINOR: ssl: Use 'date' instead of 'now' in ocsp stapling callback
1601 - BUG/MEDIUM: quic: properly handle duplicated STREAM frames
1602 - BUG/MINOR: cli: fix CLI handler "set anon global-key" call
1603 - MINOR: http_ext: adding some documentation, forgot to inline function
1604 - BUG/MINOR: quic: Do not send too small datagrams (with Initial packets)
1605 - MINOR: quic: Add a BUG_ON_HOT() call for too small datagrams
1606 - BUG/MINOR: quic: Ensure to be able to build datagrams to be retransmitted
1607 - BUG/MINOR: quic: v2 Initial packets decryption failed
1608 - MINOR: quic: Add traces about QUIC TLS key update
1609 - BUG/MINOR: quic: Remove force_ack for Initial,Handshake packets
1610 - BUG/MINOR: quic: Ensure not to retransmit packets with no ack-eliciting frames
1611 - BUG/MINOR: quic: Do not resend already acked frames
1612 - BUG/MINOR: quic: Missing detections of amplification limit reached
1613 - MINOR: quic: Send PING frames when probing Initial packet number space
1614 - BUG/MEDIUM: quic: do not crash when handling STREAM on released MUX
1615 - BUG/MAJOR: fd/thread: fix race between updates and closing FD
1616 - BUG/MEDIUM: dns: ensure ring offset is properly reajusted to head
1617 - BUG/MINOR: mux-quic: properly init STREAM frame as not duplicated
1618 - MINOR: quic: Do not accept wrong active_connection_id_limit values
1619 - MINOR: quic: Store the next connection IDs sequence number in the connection
1620 - MINOR: quic: Typo fix for ACK_ECN frame
1621 - MINOR: quic: RETIRE_CONNECTION_ID frame handling (RX)
1622 - MINOR: quic: Useless TLS context allocations in qc_do_rm_hp()
1623 - MINOR: quic: Add spin bit support
1624 - MINOR: quic: Add transport parameters to "show quic"
1625 - BUG/MEDIUM: sink/forwarder: ensure ring offset is properly readjusted to head
1626 - BUG/MINOR: dns: fix ring offset calculation on first read
1627 - BUG/MINOR: dns: fix ring offset calculation in dns_resolve_send()
1628 - MINOR: jwt: Add support for RSA-PSS signatures (PS256 algorithm)
1629 - MINOR: h3: add traces on h3_init_uni_stream() error paths
1630 - MINOR: quic: create a global list dedicated for closing QUIC conns
1631 - MINOR: quic: handle new closing list in show quic
1632 - MEDIUM: quic: release closing connections on stopping
1633 - BUG/MINOR: quic: Wrong RETIRE_CONNECTION_ID sequence number check
1634 - MINOR: fd/cli: report the polling mask in "show fd"
1635 - CLEANUP: sock: always perform last connection updates before wakeup
1636 - MINOR: quic: Do not stress the peer during retransmissions of lost packets
1637 - BUG/MINOR: init: properly detect NUMA bindings on large systems
1638 - BUG/MINOR: thread: report thread and group counts in the correct order
1639 - BUG/MAJOR: fd/threads: close a race on closing connections after takeover
1640 - MINOR: debug: add random delay injection with "debug dev delay-inj"
1641 - BUG/MINOR: mworker: use MASTER_MAXCONN as default maxconn value
1642 - BUG/MINOR: quic: Missing listener accept queue tasklet wakeups
1643 - MINOR: quic_sock: un-statify quic_conn_sock_fd_iocb()
1644 - DOC: config: fix typo "dependeing" in bind thread description
1645 - DOC/CLEANUP: fix typos
1646
Willy Tarreauc80560b2023-02-14 16:55:17 +010016472023/02/14 : 2.8-dev4
1648 - BUG/MINOR: stats: fix source buffer size for http dump
1649 - BUG/MEDIUM: stats: fix resolvers dump
1650 - BUG/MINOR: stats: fix ctx->field update in stats_dump_proxy_to_buffer()
1651 - BUG/MINOR: stats: fix show stats field ctx for servers
1652 - BUG/MINOR: stats: fix STAT_STARTED behavior with full htx
1653 - MINOR: quic: Update version_information transport parameter to draft-14
1654 - BUG/MINOR: stats: Prevent HTTP "other sessions" counter underflows
1655 - BUG/MEDIUM: thread: fix extraneous shift in the thread_set parser
1656 - BUG/MEDIUM: listener/thread: bypass shards setting on failed thread resolution
1657 - BUG/MINOR: ssl/crt-list: warn when a line is malformated
1658 - BUG/MEDIUM: stick-table: do not leave entries in end of window during purge
1659 - BUG/MINOR: clock: do not mix wall-clock and monotonic time in uptime calculation
1660 - BUG/MEDIUM: cache: use the correct time reference when comparing dates
1661 - MEDIUM: clock: force internal time to wrap early after boot
1662 - BUILD: ssl/ocsp: ssl_ocsp-t.h depends on ssl_sock-t.h
1663 - MINOR: ssl/ocsp: add a function to check the OCSP update configuration
1664 - MINOR: cfgparse/server: move (min/max)conn postparsing logic into dedicated function
1665 - BUG/MINOR: server/add: ensure minconn/maxconn consistency when adding server
1666 - BUG/MEDIUM: stconn: Schedule a shutw on shutr if data must be sent first
1667 - BUG/MEDIUM: quic: fix crash when "option nolinger" is set in the frontend
1668 - MINOR: quic: implement a basic "show quic" CLI handler
1669 - MINOR: quic: display CIDs and state in "show quic"
1670 - MINOR: quic: display socket info on "show quic"
1671 - MINOR: quic: display infos about various encryption level on "show quic"
1672 - MINOR: quic: display Tx stream info on "show quic"
1673 - MINOR: quic: filter closing conn on "show quic"
1674 - BUG/MINOR: quic: fix filtering of closing connections on "show quic"
1675 - BUG/MEDIUM: stconn: Don't needlessly wake the stream on send during fast-forward
1676 - BUG/MINOR: quic: fix type bug on "show quic" for 32-bits arch
1677 - BUG/MINOR: mworker: fix uptime for master process
1678 - BUG/MINOR: clock/stats: also use start_time not start_date in HTML info
1679 - BUG/MEDIUM: stconn: stop to enable/disable reads from streams via si_update_rx
1680 - BUG/MEDIUM: quic: Buffer overflow when looking through QUIC CLI keyword list
1681 - DOC: proxy-protocol: fix wrong byte in provided example
1682 - MINOR: ssl-ckch: Stop to test CF_WRITE_ERROR to commit CA/CRL file
1683 - MINOR: bwlim: Remove useless test on CF_READ_ERROR to detect the last packet
1684 - BUG/MINOR: http-ana: Fix condition to set LAST termination flag
1685 - BUG/MINOR: mux-h1: Don't report an H1C error on client timeout
1686 - BUG/MEDIUM: spoe: Don't set the default traget for the SPOE agent frontend
1687 - BUG/MINOR: quic: Wrong datagram dispatch because of qc_check_dcid()
1688 - BUG/CRITICAL: http: properly reject empty http header field names
1689
Willy Tarreaue74d77b2023-02-04 10:51:05 +010016902023/02/04 : 2.8-dev3
1691 - BUG/MINOR: sink: make sure to always properly unmap a file-backed ring
1692 - DEV: haring: add a new option "-r" to automatically repair broken files
1693 - BUG/MINOR: ssl: Fix leaks in 'update ssl ocsp-response' CLI command
1694 - MINOR: ssl: Remove debug fprintf in 'update ssl ocsp-response' cli command
1695 - MINOR: connection: add a BUG_ON() to detect destroying connection in idle list
1696 - MINOR: mux-quic/h3: send SETTINGS as soon as transport is ready
1697 - BUG/MINOR: h3: fix GOAWAY emission
1698 - BUG/MEDIUM: mux-quic: fix crash on H3 SETTINGS emission
1699 - BUG/MEDIUM: hpack: fix incorrect huffman decoding of some control chars
1700 - BUG/MINOR: log: release global log servers on exit
1701 - BUG/MINOR: ring: release the backing store name on exit
1702 - BUG/MINOR: sink: free the forwarding task on exit
1703 - CLEANUP: trace: remove the QUIC-specific ifdefs
1704 - MINOR: trace: add a TRACE_ENABLED() macro to determine if a trace is active
1705 - MINOR: trace: add a trace_no_cb() dummy callback for when to use no callback
1706 - MINOR: trace: add the long awaited TRACE_PRINTF()
1707 - MINOR: h2: add h2_phdr_to_ist() to make ISTs from pseudo headers
1708 - MEDIUM: mux-h2/trace: add tracing support for headers
1709 - CLEANUP: mux-h2/trace: shorten the name of the header enc/dec functions
1710 - DEV: hpack: fix `trash` build regression
1711 - MINOR: http_htx: add http_append_header() to append value to header
1712 - MINOR: http_htx: add http_prepend_header() to prepend value to header
1713 - MINOR: sample: add ARGC_OPT
1714 - MINOR: proxy: introduce http only options
1715 - MINOR: proxy/http_ext: introduce proxy forwarded option
1716 - REGTEST: add ifnone-forwardfor test
1717 - MINOR: proxy: move 'forwardfor' option to http_ext
1718 - MINOR: proxy: move 'originalto' option to http_ext
1719 - MINOR: http_ext: introduce http ext converters
1720 - MINOR: http_ext: add rfc7239_is_valid converter
1721 - MINOR: http_ext: add rfc7239_field converter
1722 - MINOR: http_ext: add rfc7239_n2nn converter
1723 - MINOR: http_ext: add rfc7239_n2np converter
1724 - REGTEST: add RFC7239 forwarded header tests
1725 - OPTIM: http_ext/7239: introduce c_mode to save some space
1726 - MINOR: http_ext/7239: warn the user when fetch is not available
1727 - MEDIUM: proxy/http_ext: implement dynamic http_ext
1728 - MINOR: cfgparse/http_ext: move post-parsing http_ext steps to http_ext
1729 - DOC: config: fix option spop-check proxy compatibility
1730 - BUG/MINOR: fcgi-app: prevent 'use-fcgi-app' in default section
1731 - DOC: config: 'http-send-name-header' option may be used in default section
1732 - BUG/MINOR: mux-h2: Fix possible null pointer deref on h2c in _h2_trace_header()
1733 - BUG/MINOR: http_ext/7239: ipv6 dumping relies on out of scope variables
1734 - BUG/MEDIUM: h3: do not crash if no buf space for trailers
1735 - OPTIM: h3: skip buf realign if no trailer to encode
1736 - MINOR: mux-quic/h3: define stream close callback
1737 - BUG/MEDIUM: h3: handle STOP_SENDING on control stream
1738 - BUG/MINOR: h3: reject RESET_STREAM received for control stream
1739 - MINOR: h3: add missing traces on closure
1740 - BUG/MEDIUM: ssl: wrong eviction from the session cache tree
1741 - BUG/MINOR: h3: fix crash due to h3 traces
1742 - BUG/MINOR: h3: fix crash due to h3 traces
1743 - BUG/MEDIUM: thread: consider secondary threads as idle+harmless during boot
1744 - BUG/MINOR: stats: use proper buffer size for http dump
1745 - BUILD: makefile: fix PCRE overriding specific lib path
1746 - MINOR: quic: remove fin from quic_stream frame type
1747 - MINOR: quic: ensure offset is properly set for STREAM frames
1748 - MINOR: quic: define new functions for frame alloc
1749 - MINOR: quic: refactor frame deallocation
1750 - MEDIUM: quic: implement a retransmit limit per frame
1751 - MINOR: quic: add config for retransmit limit
1752 - OPTIM: htx: inline the most common memcpy(8)
1753 - CLEANUP: quic: no need for atomics on packet refcnt
1754 - MINOR: stats: add by HTTP version cumulated number of sessions and requests
1755 - BUG/MINOR: quic: Possible stream truncations under heavy loss
1756 - BUG/MINOR: quic: Too big PTO during handshakes
1757 - MINOR: quic: Add a trace about variable states in qc_prep_fast_retrans()
1758 - BUG/MINOR: quic: Do not ignore coalesced packets in qc_prep_fast_retrans()
1759 - MINOR: quic: When probing Handshake packet number space, also probe the Initial one
1760 - BUG/MAJOR: quic: Possible crash when processing 1-RTT during 0-RTT session
1761 - MEDIUM: quic: Remove qc_conn_finalize() from the ClientHello TLS callbacks
1762 - BUG/MINOR: quic: Unchecked source connection ID
1763 - MEDIUM: listener: move the analysers mask to the bind_conf
1764 - MINOR: listener: move maxseg and tcp_ut to bind_conf
1765 - MINOR: listener: move maxaccept from listener to bind_conf
1766 - MINOR: listener: move the backlog setting from listener to bind_conf
1767 - MINOR: listener: move the maxconn parameter to the bind_conf
1768 - MINOR: listener: move the ->accept callback to the bind_conf
1769 - MINOR: listener: remove the useless ->default_target field
1770 - MINOR: listener: move the nice field to the bind_conf
1771 - MINOR: listener: move the NOLINGER option to the bind_conf
1772 - MINOR: listener: move the NOQUICKACK option to the bind_conf
1773 - MINOR: listener: move the DEF_ACCEPT option to the bind_conf
1774 - MINOR: listener: move TCP_FO to bind_conf
1775 - MINOR: listener: move the ACC_PROXY and ACC_CIP options to bind_conf
1776 - MINOR: listener: move LI_O_UNLIMITED and LI_O_NOSTOP to bind_conf
1777 - MINOR: listener: get rid of LI_O_TCP_L4_RULES and LI_O_TCP_L5_RULES
1778 - CLEANUP: listener: remove the now unused options field
1779 - MINOR: listener: remove the now useless LI_F_QUIC_LISTENER flag
1780 - CLEANUP: config: remove test for impossible case regarding bind thread mask
1781 - MINOR: thread: add a simple thread_set API
1782 - MEDIUM: listener/config: make the "thread" parser rely on thread_sets
1783 - CLEANUP: config: stop using bind_tgroup and bind_thread
1784 - CLEANUP: listener/thread: remove now unused bind_conf's bind_tgroup/bind_thread
1785 - CLEANUP: listener/config: remove the special case for shards==1
1786 - MEDIUM: config: restrict shards, not bind_conf to one group each
1787 - BUG/MEDIUM: quic: do not split STREAM frames if no space
1788 - BUILD: thread: fix build warnings with older gcc compilers
1789
Willy Tarreau0f29b342023-01-22 14:20:57 +010017902023/01/22 : 2.8-dev2
1791 - CLEANUP: htx: fix a typo in an error message of http_str_to_htx
1792 - DOC: config: added optional rst-ttl argument to silent-drop in action lists
1793 - BUG/MINOR: ssl: Fix crash in 'update ssl ocsp-response' CLI command
1794 - BUG/MINOR: ssl: Crash during cleanup because of ocsp structure pointer UAF
1795 - MINOR: ssl: Create temp X509_STORE filled with cert chain when checking ocsp response
1796 - MINOR: ssl: Only set ocsp->issuer if issuer not in cert chain
1797 - MINOR: ssl: Release ssl_ocsp_task_ctx.cur_ocsp when destroying task
1798 - MINOR: ssl: Detect more OCSP update inconsistencies
1799 - BUG/MINOR: ssl: Fix OCSP_CERTID leak when same certificate is used multiple times
1800 - MINOR: ssl: Limit ocsp_uri buffer size to minimum
1801 - MINOR: ssl: Remove mention of ckch_store in error message of cli command
1802 - MINOR: channel: Don't test CF_READ_NULL while CF_SHUTR is enough
1803 - REORG: channel: Rename CF_READ_NULL to CF_READ_EVENT
1804 - REORG: channel: Rename CF_WRITE_NULL to CF_WRITE_EVENT
1805 - MEDIUM: channel: Use CF_READ_EVENT instead of CF_READ_PARTIAL
1806 - MEDIUM: channel: Use CF_WRITE_EVENT instead of CF_WRITE_PARTIAL
1807 - MINOR: channel: Remove CF_READ_ACTIVITY
1808 - MINOR: channel: Remove CF_WRITE_ACTIVITY
1809 - MINOR: channel: Remove CF_ANA_TIMEOUT and report CF_READ_EVENT instead
1810 - MEDIUM: channel: Remove CF_READ_ATTACHED and report CF_READ_EVENT instead
1811 - MINOR: channel: Stop to test CF_READ_ERROR flag if CF_SHUTR is enough
1812 - MINOR: channel/applets: Stop to test CF_WRITE_ERROR flag if CF_SHUTW is enough
1813 - DOC: management: add details on "Used" status
1814 - DOC: management: add details about @system-ca in "show ssl ca-file"
1815 - BUG/MINOR: mux-quic: fix transfer of empty HTTP response
1816 - MINOR: mux-quic: add traces for flow-control limit reach
1817 - MAJOR: mux-quic: rework stream sending priorization
1818 - MEDIUM: h3: send SETTINGS before STREAM frames
1819 - MINOR: mux-quic: use send-list for STOP_SENDING/RESET_STREAM emission
1820 - MINOR: mux-quic: use send-list for immediate sending retry
1821 - BUG/MINOR: h1-htx: Remove flags about protocol upgrade on non-101 responses
1822 - BUG/MINOR: hlua: Fix Channel.line and Channel.data behavior regarding the doc
1823 - BUG/MINOR: resolvers: Wait the resolution execution for a do_resolv action
1824 - BUG/MINOR: ssl: Remove unneeded pointer check in ocsp cli release function
1825 - BUG/MINOR: ssl: Missing ssl_conf pointer check when checking ocsp update inconsistencies
1826 - DEV: tcploop: add minimal support for unix sockets
1827 - BUG/MEDIUM: listener: duplicate inherited FDs if needed
1828 - BUG/MINOR: ssl: OCSP minimum update threshold not properly set
1829 - MINOR: ssl: Treat ocsp-update inconsistencies as fatal errors
1830 - MINOR: ssl: Do not wake ocsp update task if update tree empty
1831 - MINOR: ssl: Reinsert updated ocsp response later in tree in case of http error
1832 - REGTEST: ssl: Add test for 'update ssl ocsp-response' CLI command
1833 - OPTIM: global: move byte counts out of global and per-thread
1834 - BUG/MEDIUM: peers: make "show peers" more careful about partial initialization
1835 - BUG/MINOR: promex: Don't forget to consume the request on error
1836 - MINOR: http-ana: Add a function to set HTTP termination flags
1837 - MINOR: http-ana: Use http_set_term_flags() in most of HTTP analyzers
1838 - BUG/MINOR: http-ana: Report SF_FINST_R flag on error waiting the request body
1839 - MINOR: http-ana: Use http_set_term_flags() when waiting the request body
1840 - BUG/MINOR: http-fetch: Don't block HTTP sample fetch eval in HTTP_MSG_ERROR state
1841 - MAJOR: http-ana: Review error handling during HTTP payload forwarding
1842 - CLEANUP: http-ana: Remove HTTP_MSG_ERROR state
1843 - BUG/MEDIUM: mux-h2: Don't send CANCEL on shutw when response length is unkown
1844 - MINOR: htx: Add an HTX value for the extra field is payload length is unknown
1845 - BUG/MINOR: http-ana: make set-status also update txn->status
1846 - BUG/MINOR: listeners: fix suspend/resume of inherited FDs
1847 - DOC: config: fix wrong section number for "protocol prefixes"
1848 - DOC: config: fix aliases for protocol prefixes "udp4@" and "udp6@"
1849 - DOC: config: mention the missing "quic4@" and "quic6@" in protocol prefixes
1850 - MINOR: listener: also support "quic+" as an address prefix
1851 - CLEANUP: stconn: always use se_fl_set_error() to set the pending error
1852 - BUG/MEDIUM: stconn: also consider SE_FL_EOI to switch to SE_FL_ERROR
1853 - MINOR: quic: Useless test about datagram destination addresses
1854 - MINOR: quic: Disable the active connection migrations
1855 - MINOR: quic: Add "no-quic" global option
1856 - MINOR: sample: Add "quic_enabled" sample fetch
1857 - MINOR: quic: Replace v2 draft definitions by those of the final 2 version
1858 - BUG/MINOR: mux-fcgi: Correctly set pathinfo
1859 - DOC: config: fix "Address formats" chapter syntax
1860 - BUG/MEDIUM: jwt: Properly process ecdsa signatures (concatenated R and S params)
1861 - BUILD: ssl: add ECDSA_SIG_set0() for openssl < 1.1 or libressl < 2.7
1862 - Revert "BUILD: ssl: add ECDSA_SIG_set0() for openssl < 1.1 or libressl < 2.7"
1863 - BUG/MINOR: ssl: Fix compilation with OpenSSL 1.0.2 (missing ECDSA_SIG_set0)
1864 - BUG/MINOR: listener: close tiny race between resume_listener() and stopping
1865 - BUG/MINOR: h3: properly handle connection headers
1866 - MINOR: h3: extend function for QUIC varint encoding
1867 - MINOR: h3: implement TRAILERS encoding
1868 - BUG/MINOR: bwlim: Check scope for period expr for set-bandwitdh-limit actions
1869 - MEDIUM: bwlim: Support constants limit or period on set-bandwidth-limit actions
1870 - BUG/MINOR: bwlim: Fix parameters check for set-bandwidth-limit actions
1871 - MINOR: h3: implement TRAILERS decoding
1872 - BUG/MEDIUM: fd/threads: fix again incorrect thread selection in wakeup broadcast
1873 - BUG/MINOR: thread: always reload threads_enabled in loops
1874 - MINOR: threads: add a thread_harmless_end() version that doesn't wait
1875 - BUG/MEDIUM: debug/thread: make the debug handler not wait for !rdv_requests
1876 - BUG/MINOR: mux-h2: make sure to produce a log on invalid requests
1877 - BUG/MINOR: mux-h2: add missing traces on failed headers decoding
1878 - BUILD: hpack: include global.h for the trash that is needed in debug mode
1879 - BUG/MINOR: jwt: Wrong return value checked
1880 - BUG/MINOR: quic: Do not request h3 clients to close its unidirection streams
1881 - MEDIUM: quic-sock: fix udp source address for send on listener socket
1882
Willy Tarreau40c88f92023-01-07 09:45:17 +010018832023/01/07 : 2.8-dev1
1884 - MEDIUM: 51d: add support for 51Degrees V4 with Hash algorithm
1885 - MINOR: debug: support pool filtering on "debug dev memstats"
1886 - MINOR: debug: add a balance of alloc - free at the end of the memstats dump
1887 - LICENSE: wurfl: clarify the dummy library license.
1888 - MINOR: event_hdl: add event handler base api
1889 - DOC/MINOR: api: add documentation for event_hdl feature
1890 - MEDIUM: ssl: rename the struct "cert_key_and_chain" to "ckch_data"
1891 - MINOR: quic: remove qc from quic_rx_packet
1892 - MINOR: quic: complete traces in qc_rx_pkt_handle()
1893 - MINOR: quic: extract datagram parsing code
1894 - MINOR: tools: add port for ipcmp as optional criteria
1895 - MINOR: quic: detect connection migration
1896 - MINOR: quic: ignore address migration during handshake
1897 - MINOR: quic: startup detect for quic-conn owned socket support
1898 - MINOR: quic: test IP_PKTINFO support for quic-conn owned socket
1899 - MINOR: quic: define config option for socket per conn
1900 - MINOR: quic: allocate a socket per quic-conn
1901 - MINOR: quic: use connection socket for emission
1902 - MEDIUM: quic: use quic-conn socket for reception
1903 - MEDIUM: quic: move receive out of FD handler to quic-conn io-cb
1904 - MINOR: mux-quic: rename duplicate function names
1905 - MEDIUM: quic: requeue datagrams received on wrong socket
1906 - MINOR: quic: reconnect quic-conn socket on address migration
1907 - MINOR: quic: activate socket per conn by default
1908 - BUG/MINOR: ssl: initialize SSL error before parsing
1909 - BUG/MINOR: ssl: initialize WolfSSL before parsing
1910 - BUG/MINOR: quic: fix fd leak on startup check quic-conn owned socket
1911 - BUG/MEDIIM: stconn: Flush output data before forwarding close to write side
1912 - MINOR: server: add srv->rid (revision id) value
1913 - MINOR: stats: add server revision id support
1914 - MINOR: server/event_hdl: add support for SERVER_ADD and SERVER_DEL events
1915 - MINOR: server/event_hdl: add support for SERVER_UP and SERVER_DOWN events
1916 - BUG/MEDIUM: checks: do not reschedule a possibly running task on state change
1917 - BUG/MINOR: checks: make sure fastinter is used even on forced transitions
1918 - CLEANUP: assorted typo fixes in the code and comments
1919 - MINOR: mworker: display an alert upon a wait-mode exit
1920 - BUG/MEDIUM: mworker: fix segv in early failure of mworker mode with peers
1921 - BUG/MEDIUM: mworker: create the mcli_reload socketpairs in case of upgrade
1922 - BUG/MINOR: checks: restore legacy on-error fastinter behavior
1923 - MINOR: check: use atomic for s->consecutive_errors
1924 - MINOR: stats: properly handle ST_F_CHECK_DURATION metric
1925 - MINOR: mworker: remove unused legacy code in mworker_cleanlisteners
1926 - MINOR: peers: unused code path in process_peer_sync
1927 - BUG/MINOR: init/threads: continue to limit default thread count to max per group
1928 - CLEANUP: init: remove useless assignment of nbthread
1929 - BUILD: atomic: atomic.h may need compiler.h on ARMv8.2-a
1930 - BUILD: makefile/da: also clean Os/ in Device Atlas dummy lib dir
1931 - BUG/MEDIUM: httpclient/lua: double LIST_DELETE on end of lua task
1932 - CLEANUP: pools: move the write before free to the uaf-only function
1933 - CLEANUP: pool: only include pool-os from pool.c not pool.h
1934 - REORG: pool: move all the OS specific code to pool-os.h
1935 - CLEANUP: pools: get rid of CONFIG_HAP_POOLS
1936 - DEBUG: pool: show a few examples in -dMhelp
1937 - MINOR: pools: make DEBUG_UAF a runtime setting
1938 - BUG/MINOR: promex: create haproxy_backend_agg_server_status
1939 - MINOR: promex: introduce haproxy_backend_agg_check_status
1940 - DOC: promex: Add missing backend metrics
1941 - BUG/MAJOR: fcgi: Fix uninitialized reserved bytes
1942 - REGTESTS: fix the race conditions in iff.vtc
1943 - CI: github: reintroduce openssl 1.1.1
1944 - BUG/MINOR: quic: properly handle alloc failure in qc_new_conn()
1945 - BUG/MINOR: quic: handle alloc failure on qc_new_conn() for owned socket
1946 - CLEANUP: mux-quic: remove unused attribute on qcs_is_close_remote()
1947 - BUG/MINOR: mux-quic: remove qcs from opening-list on free
1948 - BUG/MINOR: mux-quic: handle properly alloc error in qcs_new()
1949 - CI: github: split ssl lib selection based on git branch
1950 - REGTESTS: startup: check maxconn computation
1951 - BUG/MINOR: startup: don't use internal proxies to compute the maxconn
1952 - REGTESTS: startup: change the expected maxconn to 11000
1953 - CI: github: set ulimit -n to a greater value
1954 - REGTESTS: startup: activate automatic_maxconn.vtc
1955 - MINOR: sample: add param converter
1956 - CLEANUP: ssl: remove check on srv->proxy
1957 - BUG/MEDIUM: freq-ctr: Don't compute overshoot value for empty counters
1958 - BUG/MEDIUM: resolvers: Use tick_first() to update the resolvers task timeout
1959 - REGTESTS: startup: add alternatives values in automatic_maxconn.vtc
1960 - BUG/MEDIUM: h3: reject request with invalid header name
1961 - BUG/MEDIUM: h3: reject request with invalid pseudo header
1962 - MINOR: http: extract content-length parsing from H2
1963 - BUG/MEDIUM: h3: parse content-length and reject invalid messages
1964 - CI: github: remove redundant ASAN loop
1965 - CI: github: split matrix for development and stable branches
1966 - BUG/MEDIUM: mux-h1: Don't release H1 stream upgraded from TCP on error
1967 - BUG/MINOR: mux-h1: Fix test instead a BUG_ON() in h1_send_error()
1968 - MINOR: http-htx: add BUG_ON to prevent API error on http_cookie_register
1969 - BUG/MEDIUM: h3: fix cookie header parsing
1970 - BUG/MINOR: h3: fix memleak on HEADERS parsing failure
1971 - MINOR: h3: check return values of htx_add_* on headers parsing
1972 - MINOR: ssl: Remove unneeded buffer allocation in show ocsp-response
1973 - MINOR: ssl: Remove unnecessary alloc'ed trash chunk in show ocsp-response
1974 - BUG/MINOR: ssl: Fix memory leak of find_chain in ssl_sock_load_cert_chain
1975 - MINOR: stats: provide ctx for dumping functions
1976 - MINOR: stats: introduce stats field ctx
1977 - BUG/MINOR: stats: fix show stat json buffer limitation
1978 - MINOR: stats: make show info json future-proof
1979 - BUG/MINOR: quic: fix crash on PTO rearm if anti-amplification reset
1980 - BUILD: 51d: fix build issue with recent compilers
1981 - REGTESTS: startup: disable automatic_maxconn.vtc
1982 - BUILD: peers: peers-t.h depends on stick-table-t.h
1983 - BUG/MEDIUM: tests: use tmpdir to create UNIX socket
1984 - BUG/MINOR: mux-h1: Report EOS on parsing/internal error for not running stream
1985 - BUG/MINOR:: mux-h1: Never handle error at mux level for running connection
1986 - BUG/MEDIUM: stats: Rely on a local trash buffer to dump the stats
1987 - OPTIM: pool: split the read_mostly from read_write parts in pool_head
1988 - MINOR: pool: make the thread-local hot cache size configurable
1989 - MINOR: freq_ctr: add opportunistic versions of swrate_add()
1990 - MINOR: pool: only use opportunistic versions of the swrate_add() functions
1991 - REGTESTS: ssl: enable the ssl_reuse.vtc test for WolfSSL
1992 - BUG/MEDIUM: mux-quic: fix double delete from qcc.opening_list
1993 - BUG/MEDIUM: quic: properly take shards into account on bind lines
1994 - BUG/MINOR: quic: do not allocate more rxbufs than necessary
1995 - MINOR: ssl: Add a lock to the OCSP response tree
1996 - MINOR: httpclient: Make the CLI flags public for future use
1997 - MINOR: ssl: Add helper function that extracts an OCSP URI from a certificate
1998 - MINOR: ssl: Add OCSP request helper function
1999 - MINOR: ssl: Add helper function that checks the validity of an OCSP response
2000 - MINOR: ssl: Add "update ssl ocsp-response" cli command
2001 - MEDIUM: ssl: Add ocsp_certid in ckch structure and discard ocsp buffer early
2002 - MINOR: ssl: Add ocsp_update_tree and helper functions
2003 - MINOR: ssl: Add crt-list ocsp-update option
2004 - MINOR: ssl: Store 'ocsp-update' mode in the ckch_data and check for inconsistencies
2005 - MEDIUM: ssl: Insert ocsp responses in update tree when needed
2006 - MEDIUM: ssl: Add ocsp update task main function
2007 - MEDIUM: ssl: Start update task if at least one ocsp-update option is set to on
2008 - DOC: ssl: Add documentation for ocsp-update option
2009 - REGTESTS: ssl: Add tests for ocsp auto update mechanism
2010 - MINOR: ssl: Move OCSP code to a dedicated source file
2011 - BUG/MINOR: ssl/ocsp: check chunk_strcpy() in ssl_ocsp_get_uri_from_cert()
2012 - CLEANUP: ssl/ocsp: add spaces around operators
2013 - BUG/MEDIUM: mux-h2: Refuse interim responses with end-stream flag set
2014 - BUG/MINOR: pool/stats: Use ullong to report total pool usage in bytes in stats
2015 - BUG/MINOR: ssl/ocsp: httpclient blocked when doing a GET
2016 - MINOR: httpclient: don't add body when istlen is empty
2017 - MEDIUM: httpclient: change the default log format to skip duplicate proxy data
2018 - BUG/MINOR: httpclient/log: free of invalid ptr with httpclient_log_format
2019 - MEDIUM: mux-quic: implement shutw
2020 - MINOR: mux-quic: do not count stream flow-control if already closed
2021 - MINOR: mux-quic: handle RESET_STREAM reception
2022 - MEDIUM: mux-quic: implement STOP_SENDING emission
2023 - MINOR: h3: use stream error when needed instead of connection
2024 - CI: github: enable github api authentication for OpenSSL tags read
2025 - BUG/MINOR: mux-quic: ignore remote unidirectional stream close
2026 - CI: github: use the GITHUB_TOKEN instead of a manually generated token
2027 - BUILD: makefile: build the features list dynamically
2028 - BUILD: makefile: move common options-oriented macros to include/make/options.mk
2029 - BUILD: makefile: sort the features list
2030 - BUILD: makefile: initialize all build options' variables at once
2031 - BUILD: makefile: add a function to collect all options' CFLAGS/LDFLAGS
2032 - BUILD: makefile: start to automatically collect CFLAGS/LDFLAGS
2033 - BUILD: makefile: ensure that all USE_* handlers appear before CFLAGS are used
2034 - BUILD: makefile: clean the wolfssl include and lib generation rules
2035 - BUILD: makefile: make sure to also ignore SSL_INC when using wolfssl
2036 - BUILD: makefile: reference libdl only once
2037 - BUILD: makefile: make sure LUA_INC and LUA_LIB are always initialized
2038 - BUILD: makefile: do not restrict Lua's prepend path to empty LUA_LIB_NAME
2039 - BUILD: makefile: never force -latomic, set USE_LIBATOMIC instead
2040 - BUILD: makefile: add an implicit USE_MATH variable for -lm
2041 - BUILD: makefile: properly report USE_PCRE/USE_PCRE2 in features
2042 - CLEANUP: makefile: properly indent ifeq/ifneq conditional blocks
2043 - BUILD: makefile: rework 51D to split v3/v4
2044 - BUILD: makefile: support LIBCRYPT_LDFLAGS
2045 - BUILD: makefile: support RT_LDFLAGS
2046 - BUILD: makefile: support THREAD_LDFLAGS
2047 - BUILD: makefile: support BACKTRACE_LDFLAGS
2048 - BUILD: makefile: support SYSTEMD_LDFLAGS
2049 - BUILD: makefile: support ZLIB_CFLAGS and ZLIB_LDFLAGS
2050 - BUILD: makefile: support ENGINE_CFLAGS
2051 - BUILD: makefile: support OPENSSL_CFLAGS and OPENSSL_LDFLAGS
2052 - BUILD: makefile: support WOLFSSL_CFLAGS and WOLFSSL_LDFLAGS
2053 - BUILD: makefile: support LUA_CFLAGS and LUA_LDFLAGS
2054 - BUILD: makefile: support DEVICEATLAS_CFLAGS and DEVICEATLAS_LDFLAGS
2055 - BUILD: makefile: support PCRE[2]_CFLAGS and PCRE[2]_LDFLAGS
2056 - BUILD: makefile: refactor support for 51DEGREES v3/v4
2057 - BUILD: makefile: support WURFL_CFLAGS and WURFL_LDFLAGS
2058 - BUILD: makefile: make all OpenSSL variants use the same settings
2059 - BUILD: makefile: remove the special case of the SSL option
2060 - BUILD: makefile: only consider settings from enabled options
2061 - BUILD: makefile: also list per-option settings in 'make opts'
2062 - BUG/MINOR: debug: don't mask the TH_FL_STUCK flag before dumping threads
2063 - MINOR: cfgparse-ssl: avoid a possible crash on OOM in ssl_bind_parse_npn()
2064 - BUG/MINOR: ssl: Missing goto in error path in ocsp update code
2065 - BUG/MINOR: stick-table: report the correct action name in error message
2066 - CI: Improve headline in matrix.py
2067 - CI: Add in-memory cache for the latest OpenSSL/LibreSSL
2068 - CI: Use proper `if` blocks instead of conditional expressions in matrix.py
2069 - CI: Unify the `GITHUB_TOKEN` name across matrix.py and vtest.yml
2070 - CI: Explicitly check environment variable against `None` in matrix.py
2071 - CI: Reformat `matrix.py` using `black`
2072 - MINOR: config: add environment variables for default log format
2073 - REGTESTS: Remove REQUIRE_VERSION=1.9 from all tests
2074 - REGTESTS: Remove REQUIRE_VERSION=2.0 from all tests
2075 - REGTESTS: Remove tests with REQUIRE_VERSION_BELOW=1.9
2076 - BUG/MINOR: http-fetch: Only fill txn status during prefetch if not already set
2077 - BUG/MAJOR: buf: Fix copy of wrapping output data when a buffer is realigned
2078 - DOC: config: fix alphabetical ordering of http-after-response rules
2079 - MINOR: http-rules: Add missing actions in http-after-response ruleset
2080 - DOC: config: remove duplicated "http-response sc-set-gpt0" directive
2081 - BUG/MINOR: proxy: free orgto_hdr_name in free_proxy()
2082 - REGTEST: fix the race conditions in json_query.vtc
2083 - REGTEST: fix the race conditions in add_item.vtc
2084 - REGTEST: fix the race conditions in digest.vtc
2085 - REGTEST: fix the race conditions in hmac.vtc
2086 - BUG/MINOR: fd: avoid bad tgid assertion in fd_delete() from deinit()
2087 - BUG/MINOR: http: Memory leak of http redirect rules' format string
2088 - MEDIUM: stick-table: set the track-sc limit at boottime via tune.stick-counters
2089 - MINOR: stick-table: implement the sc-add-gpc() action
2090
Willy Tarreaueaded982022-12-01 15:25:34 +010020912022/12/01 : 2.8-dev0
2092 - MINOR: version: mention that it's development again
2093
Willy Tarreau437fd282022-12-01 15:16:46 +010020942022/12/01 : 2.7.0
2095 - MINOR: ssl: forgotten newline in error messages on ca-file
2096 - BUG/MINOR: ssl: shut the ca-file errors emitted during httpclient init
2097 - DOC: config: provide some configuration hints for "http-reuse"
2098 - DOC: config: refer to section about quoting in the "add_item" converter
2099 - DOC: halog: explain how to use -ac and -ad in the help message
2100 - DOC: config: clarify the fact that SNI should not be used in HTTP scenarios
2101 - DOC: config: mention that a single monitor-uri rule is supported
2102 - DOC: config: explain how default matching method for ACL works
2103 - DOC: config: clarify the fact that "retries" is not just for connections
2104 - BUILD: halog: fix missing double-quote at end of help line
2105 - DOC: config: clarify the -m dir and -m dom pattern matching methods
2106 - MINOR: activity: report uptime in "show activity"
2107 - REORG: activity/cli: move the "show activity" handler to activity.c
2108 - DEV: poll: add support for epoll
2109 - DEV: tcploop: centralize the polling code into wait_for_fd()
2110 - DEV: tcploop: add support for POLLRDHUP when supported
2111 - DEV: tcploop: do not report an error on POLLERR
2112 - DEV: tcploop: add optional support for epoll
2113 - SCRIPTS: announce-release: add a link to the data plane API
2114 - CLEANUP: stick-table: fill alignment holes in the stktable struct
2115 - MINOR: stick-table: store a per-table hash seed and use it
2116 - MINOR: stick-table: show the shard number in each entry's "show table" output
2117 - CLEANUP: ncbuf: remove ncb_blk args by value
2118 - CLEANUP: ncbuf: inline small functions
2119 - CLEANUP: ncbuf: use standard BUG_ON with DEBUG_STRICT
2120 - BUG/MINOR: quic: Endless loop during retransmissions
2121 - MINOR: mux-h2: add the expire task and its expiration date in "show fd"
2122 - BUG/MINOR: peers: always initialize the stksess shard value
2123 - REGTESTS: fix peers-related regtests regarding "show table"
2124 - BUG/MEDIUM: mux-h1: Close client H1C on EOS when there is no output data
2125 - MINOR: stick-table: change the API of the function used to calculate the shard
2126 - CLEANUP: peers: factor out the key len calculation in received updates
2127 - BUG/MINOR: peers: always update the stksess shard number on incoming updates
2128 - CLEANUP: assorted typo fixes in the code and comments
2129 - MINOR: mux-h1: add the expire task and its expiration date in "show fd"
2130 - MINOR: debug: improve error handling on the memstats command parser
2131 - BUILD: quic: allow build with USE_QUIC and USE_OPENSSL_WOLFSSL
2132 - CLEANUP: anon: clarify the help message on "debug dev hash"
2133 - MINOR: debug: relax access restrictions on "debug dev hash" and "memstats"
2134 - SCRIPTS: run-regtests: add a version check
2135 - MINOR: version: mention that it's stable now
2136
Willy Tarreau0279df92022-11-24 17:13:05 +010021372022/11/24 : 2.7-dev10
2138 - MEDIUM: tcp-act: add parameter rst-ttl to silent-drop
2139 - BUG/MAJOR: quic: Crash upon retransmission of dgrams with several packets
2140 - MINOR: cli: print parsed command when not found
2141 - BUG/MAJOR: quic: Crash after discarding packet number spaces
2142 - CLEANUP: quic: replace "choosen" with "chosen" all over the code
2143 - MINOR: cli/pools: store "show pools" results into a temporary array
2144 - MINOR: cli/pools: add sorting capabilities to "show pools"
2145 - MINOR: cli/pools: add pool name filtering capability to "show pools"
2146 - DOC: configuration: fix quic prefix typo
2147 - MINOR: quic: report error if force-retry without cluster-secret
2148 - MINOR: global: generate random cluster.secret if not defined
2149 - BUG/MINOR: resolvers: do not run the timeout task when there's no resolution
2150 - BUG/MINOR: server/idle: at least use atomic stores when updating max_used_conns
2151 - MINOR: server/idle: make the next_takeover index per-tgroup
2152 - BUILD: listener: fix build warning on global_listener_rwlock without threads
2153 - BUG/MAJOR: sched: protect task during removal from wait queue
2154 - BUILD: sched: fix build with DEBUG_THREAD with the previous commit
2155 - DOC: quic: add note on performance issue with listener contention
2156 - BUG/MINOR: cfgparse-listen: fix ebpt_next_dup pointer dereference on proxy "from" inheritance
2157 - BUG/MINOR: log: fix parse_log_message rfc5424 size check
2158 - CLEANUP: arg: remove extra check in make_arg_list arg escaping
2159 - CLEANUP: tools: extra check in utoa_pad
2160 - MINOR: h1: Consider empty port as invalid in authority for CONNECT
2161 - MINOR: http: Considere empty ports as valid default ports
2162 - BUG/MINOR: http-htx: Normalized absolute URIs with an empty port
2163 - BUG/MINOR: h1: Replace authority validation to conform RFC3986
2164 - REG-TESTS: http: Add more tests about authority/host matching
2165 - BUG/MINOR: http-htx: Don't consider an URI as normalized after a set-uri action
2166 - BUG/MEDIUM: mux-h1: Don't release H1C on timeout if there is a SC attached
2167 - BUG/MEDIUM: mux-h1: Subscribe for reads on error on sending path
2168 - BUILD: http-htx: Silent build error about a possible NULL start-line
2169 - DOC: configuration.txt: add default_value for table_idle signature
2170 - BUILD: ssl-sock: Silent error about NULL deref in ssl_sock_bind_verifycbk()
2171 - BUG/MEDIUM: mux-h1: Remove H1C_F_WAIT_NEXT_REQ flag on a next request
2172 - BUG/MINOR: mux-h1: Fix handling of 408-Request-Time-Out
2173 - MINOR: mux-h1: Remove H1C_F_WAIT_NEXT_REQ in functions handling errors
2174 - MINOR: mux-h1: Avoid useless call to h1_send() if no error is sent
2175 - DOC: configuration.txt: fix typo in table_idle signature
2176 - BUILD: stick-tables: fix build breakage in xxhash on older compilers
2177 - BUILD: compiler: include compiler's definitions before ours
2178 - BUILD: quic: global.h is needed in cfgparse-quic
2179 - CLEANUP: tools: do not needlessly include xxhash nor cli from tools.h
2180 - BUILD: flags: really restrict the cases where flags are exposed
2181 - BUILD: makefile: minor reordering of objects by build time
2182 - BUILD: quic: silence two invalid build warnings at -O1 with gcc-6.5
2183 - BUILD: quic: use openssl-compat.h instead of openssl/ssl.h
2184 - MEDIUM: ssl: add minimal WolfSSL support with OpenSSL compatibility mode
2185 - MINOR: sample: make the rand() sample fetch function use the statistical_prng
2186 - MINOR: auth: silence null dereference warning in check_user()
2187 - CLEANUP: peers: fix format string for status messages (int signedness)
2188 - CLEANUP: qpack: fix format string in debugging code (int signedness)
2189 - CLEANUP: qpack: properly use the QPACK macros not HPACK ones in debug code
2190 - BUG/MEDIUM: quic: fix datagram dropping on queueing failed
2191
Willy Tarreaua0abec82022-11-18 17:48:49 +010021922022/11/18 : 2.7-dev9
2193 - BUILD: quic: QUIC mux build fix for 32-bit build
2194 - BUILD: scripts: disable tests build on QuicTLS build
2195 - BUG/MEDIUM: httpclient: segfault when the httpclient parser fails
2196 - BUILD: ssl_sock: fix null dereference for QUIC build
2197 - BUILD: quic: Fix build for m68k cross-compilation
2198 - BUG/MINOR: quic: fix buffer overflow on retry token generation
2199 - MINOR: quic: add version field on quic_rx_packet
2200 - MINOR: quic: extend pn_offset field from quic_rx_packet
2201 - MINOR: quic: define first packet flag
2202 - MINOR: quic: extract connection retrieval
2203 - MINOR: quic: split and rename qc_lstnr_pkt_rcv()
2204 - MINOR: quic: refactor packet drop on reception
2205 - MINOR: quic: extend Retry token check function
2206 - BUG/MINOR: log: Preserve message facility when the log target is a ring buffer
2207 - BUG/MINOR: ring: Properly parse connect timeout
2208 - BUG/MEDIUM: httpclient/lua: crash when the lua task timeout before the httpclient
2209 - BUG/MEDIUM: httpclient: check if the httpclient was released in the IO handler
2210 - REGTESTS: httpclient/lua: test the lua task timeout with the httpclient
2211 - CI: github: dump the backtrace of coredumps in the alpine container
2212 - BUILD: Makefile: add "USE_SHM_OPEN" on the linux-musl target
2213 - DOC: lua: add a note about compression w/ httpclient
2214 - CLEANUP: mworker/cli: rename the status function to loadstatus
2215 - MINOR: mworker/cli: does no try to dump the startup-logs w/o USE_SHM_OPEN
2216 - MINOR: list: fixing typo in MT_LIST_LOCK_ELT
2217 - DOC/MINOR: list: fixing MT_LIST_LOCK_ELT macro documentation
2218 - MINOR: list: adding MT_LIST_APPEND_LOCKED macro
2219 - BUG/MINOR: mux-quic: complete flow-control for uni streams
2220 - BUG/MEDIUM: compression: handle rewrite errors when updating response headers
2221 - MINOR: quic: do not crash on unhandled sendto error
2222 - MINOR: quic: display unknown error sendto counter on stat page
2223 - MINOR: peers: Support for peer shards
2224 - MINOR: peers: handle multiple resync requests using shards
2225 - BUG/MINOR: sink: Only use backend capability for the sink proxies
2226 - BUG/MINOR: sink: Set default connect/server timeout for implicit ring buffers
2227 - MINOR: ssl: add the SSL error string when failing to load a certificate
2228 - MINOR: ssl: add the SSL error string before the chain
2229 - MEDIUM: ssl: be stricter about chain error
2230 - BUG/MAJOR: stick-table: don't process store-response rules for applets
2231 - MINOR: quic: remove unnecessary quic_session_accept()
2232 - BUG/MINOR: quic: fix subscribe operation
2233 - BUG/MINOR: log: fixing bug in tcp syslog_io_handler Octet-Counting
2234 - MINOR: ssl: dump the SSL string error when SSL_CTX_use_PrivateKey() failed.
2235 - MINOR: quic: add counter for interrupted reception
2236 - BUG/MINOR: quic: fix race condition on datagram purging
2237 - CI: add monthly gcc cross compile jobs
2238 - CLEANUP: assorted typo fixes in the code and comments
2239 - CLEANUP: ssl: remove dead code in ssl_sock_load_pem_into_ckch()
2240 - BUG/MINOR: httpclient: fixed memory allocation for the SSL ca_file
2241 - BUG/MINOR: ssl: Memory leak of DH BIGNUM fields
2242 - BUG/MINOR: ssl: Memory leak of AUTHORITY_KEYID struct when loading issuer
2243 - BUG/MINOR: ssl: ocsp structure not freed properly in case of error
2244 - CI: switch to the "latest" LibreSSL
2245 - CI: enable QUIC for LibreSSL builds
2246 - BUG/MEDIUM: ssl: Verify error codes can exceed 63
2247 - MEDIUM: ssl: {ca,crt}-ignore-err can now use error constant name
2248 - MINOR: ssl: x509_v_err_str converter transforms an integer to a X509_V_ERR name
2249 - CLEANUP: cli: rename dynamic error printing state
2250 - MINOR: cli: define usermsgs print context
2251 - MINOR: server: clear prefix on stderr logs after add server
2252 - BUG/MINOR: ssl: bind_conf is uncorrectly accessed when using QUIC
2253 - BUILD: ssl_utils: fix build on gcc versions before 8
2254 - BUILD: debug: remove unnecessary quotes in HA_WEAK() calls
2255 - CI: emit the compiler's version in the build reports
2256 - IMPORT: xxhash: update xxHash to version 0.8.1
2257 - IMPORT: slz: declare len to fix debug build when optimal match is enabled
2258 - IMPORT: slz: mention the potential header in slz_finish()
2259 - IMPORT: slz: define and use a __fallthrough statement for switch/case
2260 - BUILD: compiler: add a macro to detect if another one is set and equals 1
2261 - BUILD: compiler: add a default definition for __has_attribute()
2262 - BUILD: compiler: define a __fallthrough statement for switch/case
2263 - BUILD: sample: use __fallthrough in smp_is_rw() and smp_dup()
2264 - BUILD: quic: use __fallthrough in quic_connect_server()
2265 - BUILD: ssl/crt-list: use __fallthrough in cli_io_handler_add_crtlist()
2266 - BUILD: ssl: use __fallthrough in cli_io_handler_commit_{cert,cafile_crlfile}()
2267 - BUILD: ssl: use __fallthrough in cli_io_handler_tlskeys_files()
2268 - BUILD: hlua: use __fallthrough in hlua_post_init_state()
2269 - BUILD: stream: use __fallthrough in stats_dump_full_strm_to_buffer()
2270 - BUILD: tcpcheck: use __fallthrough in check_proxy_tcpcheck()
2271 - BUILD: stats: use __fallthrough in stats_dump_proxy_to_buffer()
2272 - BUILD: peers: use __fallthrough in peer_io_handler()
2273 - BUILD: hash: use __fallthrough in hash_djb2()
2274 - BUILD: tools: use __fallthrough in url_decode()
2275 - BUILD: args: use __fallthrough in make_arg_list()
2276 - BUILD: acl: use __fallthrough in parse_acl_expr()
2277 - BUILD: spoe: use __fallthrough in spoe_handle_appctx()
2278 - BUILD: logs: use __fallthrough in build_log_header()
2279 - BUILD: check: use __fallthrough in __health_adjust()
2280 - BUILD: http_act: use __fallthrough in parse_http_del_header()
2281 - BUILD: h1_htx: use __fallthrough in h1_parse_chunk()
2282 - BUILD: vars: use __fallthrough in var_accounting_{diff,add}()
2283 - BUILD: map: use __fallthrough in cli_io_handler_*()
2284 - BUILD: compression: use __fallthrough in comp_http_payload()
2285 - BUILD: stconn: use __fallthrough in various shutw() functions
2286 - BUILD: prometheus: use __fallthrough in promex_dump_metrics() and IO handler()
2287 - CLEANUP: ssl: remove printf in bind_parse_ignore_err
2288 - BUG/MINOR: ssl: crt-ignore-err memory leak with 'all' parameter
2289 - BUG/MINOR: ssl: Fix potential overflow
2290 - CLEANUP: stick-table: remove the unused table->exp_next
2291 - OPTIM: stick-table: avoid atomic ops in stktable_requeue_exp() when possible
2292 - BUG/MEDIUM: stick-table: fix a race condition when updating the expiration task
2293 - MEDIUM: http-ana: remove set-cookie2 support
2294 - BUG/MEDIUM: wdt/clock: properly handle early task hangs
2295 - MINOR: deinit: add a "quick-exit" option to bypass the deinit step
2296 - OPTIM: ebtree: make ebmb_insert_prefix() keep a copy the new node's pfx
2297 - OPTIM: ebtree: make ebmb_insert_prefix() keep a copy the new node's key
2298 - MINOR: ssl: ssl_sock_load_cert_chain() display error strings
2299 - MINOR: ssl: reintroduce ERR_GET_LIB(ret) == ERR_LIB_PEM in ssl_sock_load_pem_into_ckch()
2300 - BUG/MINOR: http-htx: Fix error handling during parsing http replies
2301 - BUG/MINOR: resolvers: Don't wait periodic resolution on healthcheck failure
2302 - BUG/MINOR: resolvers: Set port before IP address when processing SRV records
2303 - BUG/MINOR: mux-fcgi: Be sure to send empty STDING record in case of zero-copy
2304 - BUG/MEDIUM: mux-fcgi: Avoid value length overflow when it doesn't fit at once
2305 - BUG/MINOR: ssl: SSL_load_error_strings might not be defined
2306 - MINOR: pool/debug: create a new pool_alloc_flag() macro
2307 - MINOR: dynbuf: switch allocation and release to macros to better track users
2308 - BUG/MINOR: mux-h1: Do not send a last null chunk on body-less answers
2309 - REG-TESTS: cache: Remove T-E header for 304-Not-Modified responses
2310 - DOC: config: fix alphabetical ordering of global section
2311 - MINOR: trace: split the CLI "trace" parser in CLI vs statement
2312 - MEDIUM: trace: create a new "trace" statement in the "global" section
2313 - BUG/MEDIUM: ring: fix creation of server in uninitialized ring
2314 - BUILD: quic: fix dubious 0-byte overflow on qc_release_lost_pkts
2315 - BUILD: makefile: mark poll and tcploop targets as phony
2316 - BUILD: makefile: properly pass CC to sub-projects
2317 - BUILD: makefile: move default verbosity settings to include/make/verbose.mk
2318 - BUILD: makefile: use $(cmd_MAKE) in quiet mode
2319 - BUILD: makefile: move the compiler option detection stuff to compiler.mk
2320 - DEV: poll: make the connect() step an action as well
2321 - DEV: poll: strip the "do_" prefix from reported function names
2322 - DEV: poll: indicate the FD's side in front of its value
2323 - BUG/MINOR: pool/cli: use ullong to report total pool usage in bytes
2324 - MINOR: mux-h1: Remove usless code inside shutr callback
2325 - CLEANUP: mux-h1; Rename H1S_F_ERROR flag into H1S_F_ERROR_MASK
2326 - REORG: mux-h1: Reorg the H1C structure
2327 - CLEANUP: mux-h1: Rename H1C_F_ST_ERROR and H1C_F_ST_SILENT_SHUT flags
2328 - MINOR: mux-h1: Add a dedicated enum to deal with H1 connection state
2329 - MEDIUM: mux-h1: Handle H1C states via its state field instead of H1C_F_ST_*
2330 - MINOR: mux-h1: Don't handle subscribe for reads in h1_process_demux()
2331 - CLEANUP: mux-h1: Rename H1C_F_ERR_PENDING into H1C_F_ABRT_PENDING
2332 - MINOR: mux-h1: Add flag on H1 stream to deal with internal errors
2333 - MEDIUM: mux-h1: Rely on the H1C to deal with shutdown for reads
2334 - CLEANUP: mux-h1: Reorder H1 connection flags to avoid holes
2335 - MEDIUM: mux-h1: Don't report a final error whe a message is aborted
2336 - MEDIUM: mux-pt: Don't always set a final error on SE on the sending path
2337 - MEDIUM: mux-h2: Introduce flags to deal with connection read/write errors
2338 - CLEANUP: mux-h2: Remove unused fields in h2c structures
2339 - MEDIUM: mux-fcgi: Introduce flags to deal with connection read/write errors
2340 - MINOR: sconn: Set SE_FL_ERROR only when there is no more data to read
2341 - MINOR: mux-h1: Rely on a H1S flag to know a WS key was found or not
2342 - DOC: lua-api: Remove warning about the lua filters
2343 - BUG/MEDIUM: listener: Fix race condition when updating the global mngmt task
2344 - CLEANUP: listener: Remove useless task_queue from manage_global_listener_queue
2345 - BUG/MINOR: mux-h1: Fix error handling when H1S allocation failed on client side
2346 - DOC: internal: commit notes about polling states and flags
2347 - DOC: internal: commit notes about polling states and flags on connect()
2348 - CLEANUP: mux-h1: Don't test h1c in h1_shutw_conn()
2349 - BUG/MINOR: http_ana/txn: don't re-initialize txn and req var lists
2350 - BUG/MEDIUM: raw-sock: Don't report connection error if something was received
2351 - BUG/MINOR: ssl: don't initialize the keylog callback when not required
2352 - BUILD: Makefile: enable USE_SHM_OPEN by default on freebsd
2353 - BUG/MEDIUM: peers: messages about unkown tables not correctly ignored
2354 - MINOR: cfgparse: Always check the section position
2355 - MEDIUM: thread: Restric nbthread/thread-group(s) to very first global sections
2356 - BUILD: peers: Remove unused variables
2357 - MINOR: ncbuf: complete doc for ncb_advance()
2358 - BUG/MEDIUM: quic: fix unsuccessful handshakes on ncb_advance error
2359 - BUG/MEDIUM: quic: fix memleak for out-of-order crypto data
2360 - MINOR: quic: complete traces/debug for handshake
2361
Willy Tarreauea8aebe2022-10-14 20:45:23 +020023622022/10/14 : 2.7-dev8
2363 - BUG/MINOR: checks: update pgsql regex on auth packet
2364 - DOC: config: Fix pgsql-check documentation to make user param mandatory
2365 - CLEANUP: mux-quic: remove usage of non-standard ull type
2366 - CLEANUP: quic: remove global var definition in quic_tls header
2367 - BUG/MINOR: quic: adjust quic_tls prototypes
2368 - CLEANUP: quic: fix headers
2369 - CLEANUP: quic: remove unused function prototype
2370 - CLEANUP: quic: remove duplicated varint code from xprt_quic.h
2371 - CLEANUP: quic: create a dedicated quic_conn module
2372 - BUG/MINOR: mux-quic: ignore STOP_SENDING for locally closed stream
2373 - BUG/MEDIUM: lua: Don't crash in hlua_lua2arg_check on failure
2374 - BUG/MEDIUM: lua: handle stick table implicit arguments right.
2375 - BUILD: h1: silence an initiialized warning with gcc-4.7 and -Os
2376 - MINOR: fd: add a new function to only raise RLIMIT_NOFILE
2377 - MINOR: init: do not try to shrink existing RLIMIT_NOFIlE
2378 - BUG/MINOR: http-fetch: Update method after a prefetch in smp_fetch_meth()
2379 - BUILD: http_fetch: silence an uninitiialized warning with gcc-4/5/6 at -Os
2380 - BUG/MINOR: hlua: hlua_channel_insert_data() behavior conflicts with documentation
2381 - MINOR: quic: limit usage of ssl_sock_ctx in favor of quic_conn
2382 - MINOR: mux-quic: check quic-conn return code on Tx
2383 - CLEANUP: quic: fix indentation
2384 - MEDIUM: quic: retrieve frontend destination address
2385 - CLEANUP: Reapply ist.cocci (2)
2386 - CLEANUP: Reapply strcmp.cocci
2387 - CLEANUP: quic/receiver: remove the now unused tx_qring list
2388 - BUG/MINOR: quic: set IP_PKTINFO socket option for QUIC receivers only
2389 - MINOR: hlua: some luaL_checktype() calls were not guarded with MAY_LJMP
2390 - DOC: configuration: missing 'if' in tcp-request content example
2391 - MINOR: hlua: removing ambiguous lua_pushvalue with 0 index
2392 - BUG/MAJOR: stick-tables: do not try to index a server name for applets
2393 - MINOR: plock: support disabling exponential back-off
2394 - MINOR: freq_ctr: use the thread's local time whenever possible
2395 - MEDIUM: stick-table: switch the table lock to rwlock
2396 - MINOR: stick-table: do not take an exclusive lock when downing ref_cnt
2397 - MINOR: stick-table: move the write lock inside stktable_touch_with_exp()
2398 - MEDIUM: stick-table: only take the lock when needed in stktable_touch_with_exp()
2399 - MEDIUM: stick-table: make stksess_kill_if_expired() avoid the exclusive lock
2400 - MEDIUM: stick-table: return inserted entry in __stktable_store()
2401 - MEDIUM: stick-table: free newly allocated stkess if it couldn't be inserted
2402 - MEDIUM: stick-table: switch to rdlock in stktable_lookup() and lookup_key()
2403 - MEDIUM: stick-table: make stktable_get_entry() look up under a read lock
2404 - MEDIUM: stick-table: do not take a lock to update t->current anymore.
2405 - MEDIUM: stick-table: make stktable_set_entry() look up under a read lock
2406 - MEDIUM: stick-table: requeue the expiration task out of the exclusive lock
2407 - MINOR: stick-table: split stktable_store() between key and requeue
2408 - MEDIUM: stick-table: always use atomic ops to requeue the table's task
2409 - MEDIUM: stick-table: requeue the wakeup task out of the write lock
2410 - BUG/MINOR: stick-table: fix build with DEBUG_THREAD
2411 - REORG: mux-fcgi: Extract flags and enums into mux_fcgi-t.h
2412 - MINOR: flags/mux-fcgi: Decode FCGI connection and stream flags
2413 - BUG/MEDIUM: mux-h1: Add connection error handling when reading/sending on a pipe
2414 - BUG/MEDIUM: mux-h1: Handle abort with an incomplete message during parsing
2415 - BUG/MINOR: server: make sure "show servers state" hides private bits
2416 - MINOR: checks: use the lighter PRNG for spread checks
2417 - MEDIUM: checks: spread the checks load over random threads
2418 - CI: SSL: use proper version generating when "latest" semantic is used
2419 - CI: SSL: temporarily stick to LibreSSL=3.5.3
2420 - MINOR: quic: New quic_cstream object implementation
2421 - MINOR: quic: Extract CRYPTO frame parsing from qc_parse_pkt_frms()
2422 - MINOR: quic: Use a non-contiguous buffer for RX CRYPTO data
2423 - BUG/MINOR: quic: Stalled 0RTT connections with big ClientHello TLS message
2424 - MINOR: quic: Split the secrets key allocation in two parts
2425 - CLEANUP: quic: remove unused rxbufs member in receiver
2426 - CLEANUP: quic: improve naming for rxbuf/datagrams handling
2427 - MINOR: quic: implement datagram cleanup for quic_receiver_buf
2428 - MINOR: ring: ring_cast_from_area() cast from an allocated area
2429 - MINOR: buffers: split b_force_xfer() into b_cpy() and b_force_xfer()
2430 - MINOR: logs: startup-logs can use a shm for logging the reload
2431 - MINOR: mworker/cli: reload command displays the startup-logs
2432 - MEDIUM: quic: respect the threads assigned to a bind line
2433 - DOC: management: update the "reload" command of the master CLI
2434 - BUILD: ssl_sock: bind_conf uninitialized in ssl_sock_bind_verifycbk()
2435 - BUG/MEDIUM: httpclient: Don't set EOM flag on an empty HTX message
2436 - MINOR: httpclient/lua: Don't set req_payload callback if body is empty
2437 - DOC/CLEANUP: lua-api: some minor corrections
2438 - DOC: lua-api: updating toolbox link
2439 - DOC/CLEANUP: lua-api: removing duplicate core.proxies attribute
2440 - DOC: management: add forgotten "show startup-logs"
2441 - DOC: management: "show startup-logs" for master CLI
2442 - CI: Replace the deprecated `::set-output` command by writing to $GITHUB_OUTPUT in matrix.py
2443 - CI: Replace the deprecated `::set-output` command by writing to $GITHUB_OUTPUT in workflow definition
2444
Willy Tarreaudd4a2a62022-10-03 15:20:38 +020024452022/10/03 : 2.7-dev7
2446 - BUG/MEDIUM: mux-quic: fix nb_hreq decrement
2447 - CLEANUP: httpclient: deleted unused variables
2448 - MINOR: httpclient: enabled the use of SNI presets
2449 - OPTIM: hpack-huff: reduce the cache footprint of the huffman decoder
2450 - BUG/MINOR: mux-quic: do not keep detached qcs with empty Tx buffers
2451 - REORG: mux-quic: extract traces in a dedicated source file
2452 - REORG: mux-quic: export HTTP related function in a dedicated file
2453 - MINOR: mux-quic: refactor snd_buf
2454 - BUG/MEDIUM: mux-quic: properly trim HTX buffer on snd_buf reset
2455 - BUG/MINOR: mux-h1: Account consumed output data on synchronous connection error
2456 - BUG/MINOR: log: improper behavior when escaping log data
2457 - CLEANUP: tools: removing escape_chunk() function
2458 - MINOR: clock: split local and global date updates
2459 - MINOR: pollers: only update the local date during busy polling
2460 - MINOR: clock: do not update the global date too often
2461 - REGTESTS: 4be_1srv_smtpchk_httpchk_layer47errors: Return valid SMTP replies
2462 - MINOR: smtpchk: Update expect rule to fully match replies to EHLO commands
2463 - BUG/MINOR: smtpchk: SMTP Service check should gracefully close SMTP transaction
2464 - MINOR: list: documenting mt_list_for_each_entry_safe() macro
2465 - CLEANUP: list: Fix mt_list_for_each_entry_safe indentation
2466 - BUG/MINOR: hlua: Remove \n in Lua error message built with memprintf
2467 - MINOR: hlua: Allow argument on lua-lod(-per-thread) directives
2468 - BUG/MINOR: anon: memory illegal accesses in tools.c with hash_anon and hash_ipanon
2469 - MEDIUM: mworker/cli: keep the connection of the FD that ask for a reload
2470 - BUG/MINOR: hlua: fixing ambiguous sizeof in hlua_load_per_thread
2471 - MINOR: mworker/cli: replace close() by fd_delete()
2472 - MINOR: mworker: store and shows loading status
2473 - MINOR: mworker: mworker_cli_proxy_new_listener() returns a bind_conf
2474 - MINOR: mworker: stores the mcli_reload bind_conf
2475 - MINOR: mworker/cli: the mcli_reload bind_conf only send the reload status
2476 - DOC: management: describe the new reload command behavior
2477 - CLEANUP: list: fix again some style issues in the recent comments
2478 - BUG/MINOR: stream: Perform errors handling in right order in stream_new()
2479 - BUG/MEDIUM: stconn: Reset SE descriptor when we fail to create a stream
2480 - BUG/MEDIUM: resolvers: Remove aborted resolutions from query_ids tree
2481 - DOC: management: add timeout on the "reload" command
2482 - BUG/MINOR: ring: fix the size check in ring_make_from_area()
2483 - BUG/MINOR: config: don't count trailing spaces as empty arg
2484 - Revert "BUG/MINOR: config: don't count trailing spaces as empty arg"
2485 - BUG/MINOR: hlua: fixing hlua_http_msg_del_data behavior
2486 - BUG/MINOR: hlua: fixing hlua_http_msg_insert_data behavior
2487 - MINOR: cli: Add anonymization on a missed element for 'show sess all'
2488 - MINOR: cli: remove error message with 'set anon on|off'
2489 - MINOR: tools: modify hash_ipanon in order to use it in cli
2490 - MINOR: cli: use hash_ipanon to anonymized address
2491 - MINOR: cli: Add an anonymization on a missed element in 'show server state'
2492 - MINOR: config: correct errors about argument number in condition in cfgparse.c
2493 - MINOR: config: Add other keywords when dump the anonymized configuration file
2494 - MINOR: config: Add option line when the configuration file is dumped
2495 - MINOR: cli: correct commentary and replace 'set global-key' name
2496 - MINOR: tools: Impprove hash_ipanon to support dgram sockets and port offsets
2497 - MINOR: tools: Impprove hash_ipanon to not hash FD-based addresses
2498 - BUG/MINOR: hlua: _hlua_http_msg_delete incorrect behavior when offset is used
2499 - DOC: management: httpclient can resolve server names in URLs
2500 - BUG/MINOR: hlua: prevent crash when loading numerous arguments using lua-load(per-thread)
2501 - DOC/CLEANUP: lua-api: removing duplicate date functions doc
2502 - MINOR: hlua: ambiguous lua_pushvalue with 0 index
2503 - BUG/MINOR: config: don't count trailing spaces as empty arg (v2)
2504 - BUG/MEDIUM: config: count line arguments without dereferencing the output
2505 - BUG/MAJOR: conn-idle: fix hash indexing issues on idle conns
2506 - BUG/MINOR: config: insufficient syntax check of the global "maxconn" value
2507 - BUG/MINOR: backend: only enforce turn-around state when not redispatching
2508
Willy Tarreau4b10a5c2022-09-17 12:24:53 +020025092022/09/17 : 2.7-dev6
2510 - MINOR: Revert part of clarifying samples support per os commit
2511 - BUILD: makefile: enable crypt(3) for NetBSD
2512 - BUG/MINOR: quic: Retransmitted frames marked as acknowledged
2513 - BUG/MINOR: quic: Possible crash with "tls-ticket-keys" on QUIC bind lines
2514 - MINOR: http-check: Remove support for headers/body in "option httpchk" version
2515 - BUG/MINOR: h1: Support headers case adjustment for TCP proxies
2516 - BUG/MINOR: quic: Possible crash when verifying certificates
2517 - BUILD: quic: add some ifdef around the SSL_ERROR_* for libressl
2518 - BUILD: ssl: fix ssl_sock_switchtx_cbk when no client_hello_cb
2519 - BUILD: quic: temporarly ignore chacha20_poly1305 for libressl
2520 - BUILD: quic: enable early data only with >= openssl 1.1.1
2521 - BUILD: ssl: fix the ifdef mess in ssl_sock_initial_ctx
2522 - BUILD: quic: fix the #ifdef in ssl_quic_initial_ctx()
2523 - MINOR: quic: add QUIC support when no client_hello_cb
2524 - MINOR: quic: Add traces about sent or resent TX frames
2525 - MINOR: quic: No TRACE_LEAVE() in retrieve_qc_conn_from_cid()
2526 - BUG/MINOR: quic: Wrong connection ID to thread ID association
2527 - BUG/MINOR: task: always reset a new tasklet's call date
2528 - BUG/MINOR: task: make task_instant_wakeup() work on a task not a tasklet
2529 - MINOR: task: permanently enable latency measurement on tasklets
2530 - CLEANUP: task: rename ->call_date to ->wake_date
2531 - BUG/MINOR: sched: properly account for the CPU time of dying tasks
2532 - MINOR: sched: store the current profile entry in the thread context
2533 - BUG/MINOR: stream/sched: take into account CPU profiling for the last call
2534 - MINOR: tasks: do not keep cpu and latency times in struct task
2535 - MINOR: tools: add generic pointer hashing functions
2536 - CLEANUP: activity: make memprof use the generic ptr_hash() function
2537 - CLEANUP: activity: make taskprof use ptr_hash()
2538 - MINOR: debug: add struct ha_caller to describe a calling location
2539 - CLEANUP: debug: use struct ha_caller for memstat
2540 - DEBUG: task: define a series of wakeup types for tasks and tasklets
2541 - DEBUG: task: use struct ha_caller instead of arrays of file:line
2542 - DEBUG: applet: instrument appctx_wakeup() to log the caller's location
2543 - DEBUG: task: simplify the caller recording in DEBUG_TASK
2544 - CLEANUP: task: move tid and wake_date into the common part
2545 - CLEANUP: sched: remove duplicate code in run_tasks_from_list()
2546 - CLEANUP: activity: make the number of sched activity entries more configurable
2547 - DEBUG: resolvers: unstatify process_resolvers() to make it appear in profiling
2548 - DEBUG: quic: export the few task handlers that often appear in task dumps
2549 - MEDIUM: tasks/activity: combine the called function with the caller
2550 - MINOR: tasks/activity: improve the caller-callee activity hash
2551 - MINOR: activity/cli: support aggregating task profiling outputs
2552 - MINOR: activity/cli: support sorting task profiling by total CPU time
2553 - BUG/MINOR: signals/poller: set the poller timeout to 0 when there are signals
2554 - BUG/MINOR: quic: Speed up the handshake completion only one time
2555 - BUG/MINOR: quic: Trace fix about packet number space information.
2556 - BUG/MINOR: h3: Crash when h3 trace verbosity is "minimal"
2557 - MINOR: h3: Add the quic_conn object to h3 traces
2558 - MINOR: h3: Missing connection argument for a TRACE_LEAVE() argument
2559 - MINOR: h3: Send the h3 settings with others streams (requests)
2560 - MINOR: dev/udp: Apply the corruption to both directions
2561 - BUILD: udp-perturb: Add a make target for udp-perturb tool
2562 - BUG/MINOR: signals/poller: ensure wakeup from signals
2563 - CI: cirrus-ci: bump FreeBSD image to 13-1
2564 - DEV: flags: fix usage message to reflect available options
2565 - DEV: flags: add missing CO_FL_FDLESS connection flag
2566 - MINOR: flags: add a new file to host flag dumping macros
2567 - MINOR: flags: implement a macro used to dump enums inside masks
2568 - MINOR: flags/channel: use flag dumping for channel flags and analysers
2569 - MINOR: flags/connection: use flag dumping for connection flags
2570 - MINOR: flags/stconn: use flag dumping for stconn and sedesc flags
2571 - MINOR: flags/stream: use flag dumping for stream error type
2572 - MINOR: flags/stream: use flag dumping for stream flags
2573 - MINOR: flags/task: use flag dumping for task state
2574 - MINOR: flags/http_ana: use flag dumping for txn flags
2575 - DEV: flags: remove the now unused SHOW_FLAG() definition
2576 - DEV: flags: remove the now useless intermediary functions
2577 - MINOR: flags/htx: use flag dumping to show htx and start-line flags
2578 - MINOR: flags/http_ana: use flag dumping to show http msg states
2579 - BUG/MEDIUM: proxy: ensure pause_proxy() and resume_proxy() own PROXY_LOCK
2580 - MINOR: listener: small API change
2581 - MINOR: proxy/listener: support for additional PAUSED state
2582 - BUG/MINOR: stats: fixing stat shows disabled frontend status as 'OPEN'
2583 - BUILD: flags: fix build warning in some macros used by show_flags
2584 - BUILD: flags: fix the fallback macros for missing stdio
2585 - CLEANUP: pollers: remove dead code in the polling loop
2586 - BUG/MINOR: mux-h1: Increment open_streams counter when H1 stream is created
2587 - REGTESTS: healthcheckmail: Relax matching on the healthcheck log message
2588 - CLEANUP: listener: function comment typo in stop_listener()
2589 - BUG/MINOR: listener: null pointer dereference suspected by coverity
2590 - MINOR: flags/fd: decode FD flags states
2591 - REORG: mux-h2: extract flags and enums into mux_h2-t.h
2592 - MINOR: flags/mux-h2: decode H2C and H2S flags
2593 - REGTESTS: log: test the log-forward feature
2594 - BUG/MEDIUM: sink: bad init sequence on tcp sink from a ring.
2595 - REGTESTS: ssl/log: test the log-forward with SSL
2596 - MEDIUM: httpclient: httpclient_create_proxy() creates a proxy for httpclient
2597 - MEDIUM: httpclient: allow to use another proxy
2598 - DOC: fix TOC in starter guide for subsection 3.3.8. Statistics
2599 - MINOR: httpclient: export httpclient_create_proxy()
2600 - MEDIUM: quic: separate path for rx and tx with set_encryption_secrets
2601 - BUG/MEDIUM: mux-quic: fix crash on early app-ops release
2602 - REORG: mux-h1: extract flags and enums into mux_h1-t.h
2603 - MINOR: flags/mux-h1: decode H1C and H1S flags
2604 - CLEANUP: mux-quic: remove stconn usage in h3/hq
2605 - BUG/MINOR: mux-quic: do not remotely close stream too early
2606 - CLEANUP: exclude udp-perturb with .gitignore
2607 - BUG/MEDIUM: server: segv when adding server with hostname from CLI
2608 - CLEANUP: quic,ssl: fix tiny typos in C comments
2609 - BUG/MEDIUM: captures: free() an error capture out of the proxy lock
2610 - BUILD: fd: fix a build warning on the DWCAS
2611 - MINOR: anon: add new macros and functions to anonymize contents
2612 - MINOR: anon: store the anonymizing key in the global structure
2613 - MINOR: anon: store the anonymizing key in the CLI's appctx
2614 - MINOR: cli: anonymize commands 'show sess' and 'show sess all'
2615 - MINOR: cli: anonymize 'show servers state' and 'show servers conn'
2616 - MINOR: config: add command-line -dC to dump the configuration file
2617 - SCRIPTS: announce-release: update some URLs to https
2618
Willy Tarreau3bb2b5d2022-09-02 19:36:50 +020026192022/09/02 : 2.7-dev5
2620 - BUG/MINOR: mux-quic: Fix memleak on QUIC stream buffer for unacknowledged data
2621 - BUG/MEDIUM: cpu-map: fix thread 1's affinity affecting all threads
2622 - MINOR: cpu-map: remove obsolete diag warning about combined ranges
2623 - BUG/MAJOR: mworker: fix infinite loop on master with no proxies.
2624 - REGTESTS: launch http_reuse_always in mworker mode
2625 - BUG/MINOR: quix: Memleak for non in flight TX packets
2626 - BUG/MINOR: quic: Wrong list_for_each_entry() use when building packets from qc_do_build_pkt()
2627 - BUG/MINOR: quic: Safer QUIC frame builders
2628 - MINOR: quic: Replace MT_LISTs by LISTs for RX packets.
2629 - BUG/MEDIUM: applet: fix incorrect check for abnormal return condition from handler
2630 - BUG/MINOR: applet: make the call_rate only count the no-progress calls
2631 - MEDIUM: peers: limit the number of updates sent at once
2632 - BUILD: tcp_sample: fix build of get_tcp_info() on OpenBSD
2633 - BUG/MINOR: resolvers: return the correct value in resolvers_finalize_config()
2634 - BUG/MINOR: mworker: does not create the "default" resolvers in wait mode
2635 - BUG/MINOR: tcpcheck: Disable QUICKACK only if data should be sent after connect
2636 - REGTESTS: Fix prometheus script to perform HTTP health-checks
2637 - MINOR: resolvers: shut the warning when "default" resolvers is implicit
2638 - Revert "BUG/MINOR: quix: Memleak for non in flight TX packets"
2639 - BUG/MINOR: quic: Leak in qc_release_lost_pkts() for non in flight TX packets
2640 - BUG/MINOR: quic: Stalled connections (missing I/O handler wakeup)
2641 - CLEANUP: quic: No more use ->rx_list MT_LIST entry point (quic_rx_packet)
2642 - CLEANUP: quic: Remove a useless check in qc_lstnr_pkt_rcv()
2643 - MINOR: quic: Remove useless traces about references to TX packets
2644 - Revert "MINOR: quic: Remove useless traces about references to TX packets"
2645 - DOC: configuration: do-resolve doesn't work with a port in the string
2646 - MINOR: sample: add the host_only and port_only converters
2647 - BUG/MINOR: httpclient: fix resolution with port
2648 - DOC: configuration.txt: do-resolve must use host_only to remove its port.
2649 - BUG/MINOR: quic: Null packet dereferencing from qc_dup_pkt_frms() trace
2650 - BUG/MINOR: quic: Frames added to packets even if not built.
2651 - BUG/MEDIUM: spoe: Properly update streams waiting for a ACK in async mode
2652 - BUG/MEDIUM: peers: Add connect and server timeut to peers proxy
2653 - BUG/MEDIUM: peers: Don't use resync timer when local resync is in progress
2654 - BUG/MEDIUM: peers: Don't start resync on reload if local peer is not up-to-date
2655 - BUG/MINOR: hlua: Rely on CF_EOI to detect end of message in HTTP applets
2656 - BUG/MEDIUM: mux-h1: do not refrain from signaling errors after end of input
2657 - BUG/MINOR: epoll: do not actively poll for Rx after an error
2658 - MINOR: raw-sock: don't try to send if an error was already reported
2659 - BUG/MINOR: quic: Missing header protection AES cipher context initialisations (draft-v2)
2660 - MINOR: quic: Add a trace to distinguish the datagram from the packets inside
2661 - BUG/MINOR: ssl: fix deinit of the ca-file tree
2662 - BUG/MINOR: ssl: leak of ckch_inst_link in ckch_inst_free()
2663 - BUG/MINOR: tcpcheck: Disable QUICKACK for default tcp-check (with no rule)
2664 - BUG/MEDIUM: ssl: Fix a UAF when old ckch instances are released
2665 - BUG/MINOR: ssl: revert two wrong fixes with ckhi_link
2666 - BUG/MINOR: dev/udp: properly preset the rx address size
2667 - BUILD: debug: make sure debug macros are never empty
2668 - MINOR: quic: Move traces about RX/TX bytes from QUIC_EV_CONN_PRSAFRM event
2669 - BUG/MINOR: quic: TX frames memleak
2670 - BUG/MINOR: ssl: leak of ckch_inst_link in ckch_inst_free() v2
2671 - MINOR: sink/ring: rotate non-empty file-backed contents only
2672 - BUG/MINOR: regex: Properly handle PCRE2 lib compiled without JIT support
2673 - REGTESTS: http_request_buffer: Add a barrier to not mix up log messages
2674 - BUG/MEDIUM: mux-h1: always use RST to kill idle connections in pools
2675 - MINOR: backend: always satisfy the first req reuse rule with l7 retries
2676 - BUG/MINOR: quic: Do not ack when probing
2677 - MINOR: quic: Add TX frames addresses to traces to several trace events
2678 - MINOR: quic: Trace typo fix in qc_release_frm()
2679 - BUG/MINOR: quic: Frames leak during retransmissions
2680 - BUG/MINOR: h2: properly set the direction flag on HTX response
2681 - BUG/MEDIUM: httpclient: always detach the caller before self-killing
2682 - BUG/MINOR: httpclient: only ask for more room on failed writes
2683 - BUG/MINOR: httpclient: keep-alive was accidentely disabled
2684 - MEDIUM: httpclient: enable ALPN support on outgoing https connections
2685 - BUG/MINOR: mux-h2: fix the "show fd" dest buffer for the subscriber
2686 - BUG/MINOR: mux-h1: fix the "show fd" dest buffer for the subscriber
2687 - BUG/MINOR: mux-fcgi: fix the "show fd" dest buffer for the subscriber
2688 - DEBUG: stream: minor rearrangement of a few fields in struct stream.
2689 - MINOR: debug: report applet pointer and handler in crashes when known
2690 - MINOR: mux-h2: extract the stream dump function out of h2_show_fd()
2691 - MINOR: mux-h2: extract the connection dump function out of h2_show_fd()
2692 - MINOR: muxes: add a "show_sd" helper to complete "show sess" dumps
2693 - MINOR: mux-h2: provide a "show_sd" helper to output stream debugging info
2694 - MINOR: mux-h2: insert line breaks in "show sess all" output for legibility
2695 - MINOR: mux-quic: provide a "show_sd" helper to output stream debugging info
2696 - MINOR: mux-h1: split "show_fd" into connection and stream
2697 - MINOR: mux-h1: provide a "show_sd" helper to output stream debugging info
2698 - BUG/MINOR: http-act: initialize http fmt head earlier
2699
Willy Tarreauf5320192022-08-20 15:56:31 +020027002022/08/20 : 2.7-dev4
2701 - BUG/MEDIUM: quic: Wrong packet length check in qc_do_rm_hp()
2702 - MINOR: quic: Too much useless traces in qc_build_frms()
2703 - BUG/MEDIUM: quic: Missing AEAD TAG check after removing header protection
2704 - MINOR: quic: Replace pool_zalloc() by pool_malloc() for fake datagrams
2705 - MINOR: debug: make the mem_stats section aligned to void*
2706 - MINOR: debug: store and report the pool's name in struct mem_stats
2707 - MINOR: debug: also store the function name in struct mem_stats
2708 - MINOR: debug/memstats: automatically determine first column size
2709 - MINOR: debug/memstats: permit to pass the size to free()
2710 - CLEANUP: mux-quic: remove loop on sending frames
2711 - MINOR: quic: replace custom buf on Tx by default struct buffer
2712 - MINOR: quic: release Tx buffer on each send
2713 - MINOR: quic: refactor datagram commit in Tx buffer
2714 - MINOR: quic: skip sending if no frame to send in io-cb
2715 - BUG/MINOR: mux-quic: open stream on STOP_SENDING
2716 - BUG/MINOR: quic: fix crash on handshake io-cb for null next enc level
2717 - BUG/MEDIUM: quic: always remove the connection from the accept list on close
2718 - BUG/MEDIUM: poller: use fd_delete() to release the poller pipes
2719 - BUG/MEDIUM: task: relax one thread consistency check in task_unlink_wq()
2720 - MEDIUM: quic: xprt traces rework
2721 - BUILD: stconn: fix build warning at -O3 about possible null sc
2722 - MINOR: quic: Remove useless lock for RX packets
2723 - BUG/MINOR: quic: Possible infinite loop in quic_build_post_handshake_frames()
2724 - CLEANUP: quic: Remove trailing spaces
2725 - MINOR: mux-quic: adjust enter/leave traces
2726 - MINOR: mux-quic: define protocol error traces
2727 - CLEANUP: mux-quic: adjust traces level
2728 - MINOR: mux-quic: define new traces
2729 - BUG/MEDIUM: mux-quic: fix crash due to invalid trace arg
2730 - BUG/MEDIUM: quic: Possible use of uninitialized <odcid> variable in qc_lstnr_params_init()
2731 - BUG/MEDIUM: ring: fix too lax 'size' parser
2732 - BUG/MEDIUM: quic: Wrong use of <token_odcid> in qc_lsntr_pkt_rcv()
2733 - BUILD: ring: forward-declare struct appctx to avoid a build warning
2734 - MINOR: ring: support creating a ring from a linear area
2735 - MINOR: ring: add support for a backing-file
2736 - DEV: haring: add a simple utility to read file-backed rings
2737 - DEV: haring: support remapping LF in contents with CR VT
2738 - BUG/MINOR: quic: memleak on wrong datagram receipt
2739 - BUILD: sink: replace S_IRUSR, S_IWUSR with their octal value
2740 - MINOR: ring: archive a previous file-backed ring on startup
2741 - BUG/MINOR: mux-quic: fix crash with traces in qc_detach()
2742 - BUG/MINOR: quic: MIssing check when building TX packets
2743 - BUG/MINOR: quic: Wrong status returned by qc_pkt_decrypt()
2744 - MINOR: memprof: export the minimum definitions for memory profiling
2745 - MINOR: pool/memprof: report pool alloc/free in memory profiling
2746 - MINOR: pools/memprof: store and report the pool's name in each bin
2747 - MINOR: chunk: inline alloc_trash_chunk()
2748 - MINOR: stick-table: Add table_expire() and table_idle() new converters
2749 - CLEANUP: exclude haring with .gitignore
2750 - MINOR: quic: adjust quic_frame flag manipulation
2751 - MINOR: h3: report error on control stream close
2752 - MINOR: qpack: report error on enc/dec stream close
2753 - BUG/MEDIUM: mux-quic: reject uni stream ID exceeding flow control
2754 - MINOR: mux-quic: adjust traces on stream init
2755 - MINOR: mux-quic: add missing args on some traces
2756 - MINOR: quic: refactor application send
2757 - BUG/MINOR: quic: do not notify MUX on frame retransmit
2758 - BUG/MEDIUM: http-ana: fix crash or wrong header deletion by http-restrict-req-hdr-names
2759 - BUG/MINOR: quic: Missing initializations for ducplicated frames.
2760 - BUG/MEDIUM: quic: fix crash on MUX send notification
2761 - REORG: h2: extract cookies concat function in http_htx
2762 - REGTESTS: add test for HTTP/2 cookies concatenation
2763 - MEDIUM: h3: concatenate multiple cookie headers
2764 - MINOR: applet: add a function to reset the svcctx of an applet
2765 - BUG/MEDIUM: cli: always reset the service context between commands
2766 - BUG/MEDIUM: mux-h2: do not fiddle with ->dsi to indicate demux is idle
2767 - MINOR: mux-h2/traces: report transition to SETTINGS1 before not after
2768 - MINOR: mux-h2: make streams know if they need to send more data
2769 - BUG/MINOR: mux-h2: send a CANCEL instead of ES on truncated writes
2770 - BUG/MINOR: quic: Possible crashes when dereferencing ->pkt quic_frame struct member
2771 - MINOR: quic: Add frame addresses to QUIC_EV_CONN_PRSAFRM event traces
2772 - BUG/MINOR: quic: Wrong splitted duplicated frames handling
2773 - MINOR: quic: Add the QUIC connection to mux traces
2774 - MINOR: quic: Trace fix in qc_release_frm()
2775 - BUG/MAJOR: log-forward: Fix log-forward proxies not fully initialized
2776 - BUG/MAJOR: log-forward: Fix ssl layer not initialized on bind even if configured
2777 - MINOR: quic: Add reusable cipher contexts for header protection
2778 - BUG/MINOR: ssl/cli: error when the ca-file is empty
2779 - MINOR: ssl: handle ca-file appending in cafile_entry
2780 - MINOR: ssl/cli: implement "add ssl ca-file"
2781
Willy Tarreau87e95d32022-08-07 17:28:59 +020027822022/08/07 : 2.7-dev3
2783 - BUILD: makefile: Fix install(1) handling for OpenBSD/NetBSD/Solaris/AIX
2784 - BUG/MEDIUM: tools: avoid calling dlsym() in static builds (try 2)
2785 - MINOR: resolvers: resolvers_destroy() deinit and free a resolver
2786 - BUG/MINOR: resolvers: shut off the warning for the default resolvers
2787 - BUG/MINOR: ssl: allow duplicate certificates in ca-file directories
2788 - BUG/MINOR: tools: fix statistical_prng_range()'s output range
2789 - BUG/MINOR: quic: do not send CONNECTION_CLOSE_APP in initial/handshake
2790 - BUILD: debug: Add braces to if statement calling only CHECK_IF()
2791 - BUG/MINOR: fd: Properly init the fd state in fd_insert()
2792 - BUG/MEDIUM: fd/threads: fix incorrect thread selection in wakeup broadcast
2793 - MINOR: init: load OpenSSL error strings
2794 - MINOR: ssl: enhance ca-file error emitting
2795 - BUG/MINOR: mworker/cli: relative pid prefix not validated anymore
2796 - BUG/MAJOR: mux_quic: fix invalid PROTOCOL_VIOLATION on POST data overlap
2797 - BUG/MEDIUM: mworker: proc_self incorrectly set crashes upon reload
2798 - BUILD: add detection for unsupported compiler models
2799 - BUG/MEDIUM: stconn: Only reset connect expiration when processing backend side
2800 - BUG/MINOR: backend: Fallback on RR algo if balance on source is impossible
2801 - BUG/MEDIUM: master: force the thread count earlier
2802 - BUG/MAJOR: poller: drop FD's tgid when masks don't match
2803 - DEBUG: fd: detect possibly invalid tgid in fd_insert()
2804 - BUG/MINOR: sockpair: wrong return value for fd_send_uxst()
2805 - MINOR: sockpair: move send_fd_uxst() error message in caller
2806 - Revert "BUG/MINOR: peers: set the proxy's name to the peers section name"
2807 - DEBUG: fd: split the fd check
2808 - MEDIUM: resolvers: continue startup if network is unavailable
2809 - BUG/MINOR: fd: always remove late updates when freeing fd_updt[]
2810 - MINOR: cli: emit a warning when _getsocks was used more than once
2811 - BUG/MINOR: mworker: PROC_O_LEAVING used but not updated
2812 - Revert "MINOR: cli: emit a warning when _getsocks was used more than once"
2813 - MINOR: cli: warning on _getsocks when socket were closed
2814 - BUG/MEDIUM: mux-quic: fix missing EOI flag to prevent streams leaks
2815 - MINOR: quic: Congestion control architecture refactoring
2816 - MEDIUM: quic: Cubic congestion control algorithm implementation
2817 - MINOR: quic: New "quic-cc-algo" bind keyword
2818 - BUG/MINOR: quic: loss time limit variable computed but not used
2819 - MINOR: quic: Stop looking for packet loss asap
2820 - BUG/MAJOR: quic: Useless resource intensive loop qc_ackrng_pkts()
2821 - MINOR: quic: Send packets as much as possible from qc_send_app_pkts()
2822 - BUG/MEDIUM: queue/threads: limit the number of entries dequeued at once
2823 - MAJOR: threads/plock: update the embedded library
2824 - MINOR: thread: provide an alternative to pthread's rwlock
2825 - DEBUG: tools: provide a tree dump function for ebmbtrees as well
2826 - MINOR: ebtree: add ebmb_lookup_shorter() to pursue lookups
2827 - BUG/MEDIUM: pattern: only visit equivalent nodes when skipping versions
2828 - BUG/MINOR: mux-quic: prevent crash if conn released during IO callback
2829 - CLEANUP: mux-quic: remove useless app_ops is_active callback
2830 - BUG/MINOR: mux-quic: do not free conn if attached streams
2831 - MINOR: mux-quic: save proxy instance into qcc
2832 - MINOR: mux-quic: use timeout server for backend conns
2833 - MEDIUM: mux-quic: adjust timeout refresh
2834 - MINOR: mux-quic: count in-progress requests
2835 - MEDIUM: mux-quic: implement http-keep-alive timeout
2836 - MINOR: peers: Add a warning about incompatible SSL config for the local peer
2837 - MINOR: peers: Use a dedicated reconnect timeout when stopping the local peer
2838 - BUG/MEDIUM: peers: limit reconnect attempts of the old process on reload
2839 - BUG/MINOR: peers: Use right channel flag to consider the peer as connected
2840 - BUG/MEDIUM: dns: Properly initialize new DNS session
2841 - BUG/MINOR: backend: Don't increment conn_retries counter too early
2842 - MINOR: server: Constify source server to copy its settings
2843 - REORG: server: Export srv_settings_cpy() function
2844 - BUG/MEDIUM: proxy: Perform a custom copy for default server settings
2845 - BUG/MINOR: quic: Missing in flight ack eliciting packet counter decrement
2846 - BUG/MEDIUM: quic: Floating point exception in cubic_root()
2847 - MINOR: h3: support HTTP request framing state
2848 - MINOR: mux-quic: refresh timeout on frame decoding
2849 - MINOR: mux-quic: refactor refresh timeout function
2850 - MEDIUM: mux-quic: implement http-request timeout
2851 - BUG/MINOR: quic: Avoid sending truncated datagrams
2852 - BUG/MINOR: ring/cli: fix a race condition between the writer and the reader
2853 - BUG/MEDIUM: sink: Set the sink ref for forwarders created during ring parsing
2854 - BUG/MINOR: sink: fix a race condition between the writer and the reader
2855 - BUG/MINOR: quic: do not reject datagrams matching minimum permitted size
2856 - MINOR: quic: Add two new stats counters for sendto() errors
2857 - BUG/MINOR: quic: Missing Initial packet dropping case
2858 - MINOR: quic: explicitely ignore sendto error
2859 - BUG/MINOR: quic: adjust errno handling on sendto
2860 - BUG/MEDIUM: quic: break out of the loop in quic_lstnr_dghdlr
2861 - MINOR: threads: report the number of thread groups in build options
2862 - MINOR: config: automatically preset MAX_THREADS based on MAX_TGROUPS
2863 - BUILD: SSL: allow to pass additional configure args to QUICTLS
2864 - CI: enable weekly "m32" builds on x86_64
2865 - CLEANUP: assorted typo fixes in the code and comments
2866 - BUG/MEDIUM: fix DH length when EC key is used
2867 - REGTESTS: ssl: adopt tests to OpenSSL-3.0.N
2868 - REGTESTS: ssl: adopt tests to OpenSSL-3.0.N
2869 - REGTESTS: ssl: fix grep invocation to use extended regex in ssl_generate_certificate.vtc
2870 - BUILD: cfgparse: always defined _GNU_SOURCE for sched.h and crypt.h
2871
Willy Tarreau2200a9c2022-07-16 17:17:22 +020028722022/07/16 : 2.7-dev2
2873 - BUG/MINOR: qpack: fix build with QPACK_DEBUG
2874 - MINOR: h3: handle errors on HEADERS parsing/QPACK decoding
2875 - BUG/MINOR: qpack: abort on dynamic index field line decoding
2876 - MINOR: qpack: properly handle invalid dynamic table references
2877 - MINOR: task: Add tasklet_wakeup_after()
2878 - BUG/MINOR: quic: Dropped packets not counted (with RX buffers full)
2879 - MINOR: quic: Add new stats counter to diagnose RX buffer overrun
2880 - MINOR: quic: Duplicated QUIC_RX_BUFSZ definition
2881 - MINOR: quic: Improvements for the datagrams receipt
2882 - CLEANUP: h2: Typo fix in h2_unsubcribe() traces
2883 - MINOR: quic: Increase the QUIC connections RX buffer size (upto 64Kb)
2884 - CLEANUP: mux-quic: adjust comment on qcs_consume()
2885 - MINOR: ncbuf: implement ncb_is_fragmented()
2886 - BUG/MINOR: mux-quic: do not signal FIN if gap in buffer
2887 - MINOR: fd: add a new FD_DISOWN flag to prevent from closing a deleted FD
2888 - BUG/MEDIUM: ssl/fd: unexpected fd close using async engine
2889 - MINOR: tinfo: make tid temporarily still reflect global ID
2890 - CLEANUP: config: remove unused proc_mask()
2891 - MINOR: debug: remove mask support from "debug dev sched"
2892 - MEDIUM: task: add and preset a thread ID in the task struct
2893 - MEDIUM: task/debug: move the ->thread_mask integrity checks to ->tid
2894 - MAJOR: task: use t->tid instead of ffsl(t->thread_mask) to take the thread ID
2895 - MAJOR: task: replace t->thread_mask with 1<<t->tid when thread mask is needed
2896 - CLEANUP: task: remove thread_mask from the struct task
2897 - MEDIUM: applet: only keep appctx_new_*() and drop appctx_new()
2898 - MEDIUM: task: only keep task_new_*() and drop task_new()
2899 - MINOR: applet: always use task_new_on() on applet creation
2900 - MEDIUM: task: remove TASK_SHARED_WQ and only use t->tid
2901 - MINOR: task: replace task_set_affinity() with task_set_thread()
2902 - CLEANUP: task: remove the unused task_unlink_rq()
2903 - CLEANUP: task: remove the now unused TASK_GLOBAL flag
2904 - MINOR: task: make rqueue_ticks atomic
2905 - MEDIUM: task: move the shared runqueue to one per thread
2906 - MEDIUM: task: replace the global rq_lock with a per-rq one
2907 - MINOR: task: remove grq_total and use rq_total instead
2908 - MINOR: task: replace global_tasks_mask with a check for tree's emptiness
2909 - MEDIUM: task: use regular eb32 trees for the run queues
2910 - MEDIUM: queue: revert to regular inter-task wakeups
2911 - MINOR: thread: make wake_thread() take care of the sleeping threads mask
2912 - MINOR: thread: move the flags to the shared cache line
2913 - MINOR: thread: only use atomic ops to touch the flags
2914 - MINOR: poller: centralize poll return handling
2915 - MEDIUM: polling: make update_fd_polling() not care about sleeping threads
2916 - MINOR: poller: update_fd_polling: wake a random other thread
2917 - MEDIUM: thread: add a new per-thread flag TH_FL_NOTIFIED to remember wakeups
2918 - MEDIUM: tasks/fd: replace sleeping_thread_mask with a TH_FL_SLEEPING flag
2919 - MINOR: tinfo: add the tgid to the thread_info struct
2920 - MINOR: tinfo: replace the tgid with tgid_bit in tgroup_info
2921 - MINOR: tinfo: add the mask of enabled threads in each group
2922 - MINOR: debug: use ltid_bit in ha_thread_dump()
2923 - MINOR: wdt: use ltid_bit in wdt_handler()
2924 - MINOR: clock: use ltid_bit in clock_report_idle()
2925 - MINOR: thread: use ltid_bit in ha_tkillall()
2926 - MINOR: thread: add a new all_tgroups_mask variable to know about active tgroups
2927 - CLEANUP: thread: remove thread_sync_release() and thread_sync_mask
2928 - MEDIUM: tinfo: add a dynamic thread-group context
2929 - MEDIUM: thread: make stopping_threads per-group and add stopping_tgroups
2930 - MAJOR: threads: change thread_isolate to support inter-group synchronization
2931 - MINOR: thread: add is_thread_harmless() to know if a thread already is harmless
2932 - MINOR: debug: mark oneself harmless while waiting for threads to finish
2933 - MINOR: wdt: do not rely on threads_to_dump anymore
2934 - MEDIUM: debug: make the thread dumper not rely on a thread mask anymore
2935 - BUILD: debug: fix build issue on clang with previous commit
2936 - BUILD: debug: re-export thread_dump_state
2937 - BUG/MEDIUM: threads: fix incorrect thread group being used on soft-stop
2938 - BUG/MEDIUM: thread: check stopping thread against local bit and not global one
2939 - MINOR: proxy: use tg->threads_enabled in hard_stop() to detect stopped threads
2940 - BUILD: Makefile: Add Lua 5.4 autodetect
2941 - CI: re-enable gcc asan builds
2942 - MEDIUM: mworker: set the iocb of the socketpair without using fd_insert()
2943 - MINOR: fd: Add BUG_ON checks on fd_insert()
2944 - CLEANUP: mworker: rename mworker_pipe to mworker_sockpair
2945 - CLEANUP: mux-quic: do not export qc_get_ncbuf
2946 - REORG: mux-quic: reorganize flow-control fields
2947 - MINOR: mux-quic: implement accessor for sedesc
2948 - MEDIUM: mux-quic: refactor streams opening
2949 - MINOR: mux-quic: rename qcs flag FIN_RECV to SIZE_KNOWN
2950 - MINOR: mux-quic: emit FINAL_SIZE_ERROR on invalid STREAM size
2951 - BUG/MINOR: peers/config: always fill the bind_conf's argument
2952 - BUG/MEDIUM: peers/config: properly set the thread mask
2953 - CLEANUP: bwlim: Set pointers to NULL when memory is released
2954 - BUG/MINOR: http-check: Preserve headers if not redefined by an implicit rule
2955 - BUG/MINOR: http-act: Properly generate 103 responses when several rules are used
2956 - BUG/MEDIUM: thread: mask stopping_threads with threads_enabled when checking it
2957 - CLEANUP: thread: also remove a thread's bit from stopping_threads on stop
2958 - BUG/MINOR: peers: fix possible NULL dereferences at config parsing
2959 - BUG/MINOR: http-htx: Fix scheme based normalization for URIs wih userinfo
2960 - MINOR: http: Add function to get port part of a host
2961 - MINOR: http: Add function to detect default port
2962 - BUG/MEDIUM: h1: Improve authority validation for CONNCET request
2963 - MINOR: http-htx: Use new HTTP functions for the scheme based normalization
2964 - BUG/MEDIUM: http-fetch: Don't fetch the method if there is no stream
2965 - REGTEESTS: filters: Fix CONNECT request in random-forwarding script
2966 - MEDIUM: mworker/systemd: send STATUS over sd_notify
2967 - BUG/MINOR: mux-h1: Be sure to commit htx changes in the demux buffer
2968 - BUG/MEDIUM: http-ana: Don't wait to have an empty buf to switch in TUNNEL state
2969 - BUG/MEDIUM: mux-h1: Handle connection error after a synchronous send
2970 - MEDIUM: epoll: don't synchronously delete migrated FDs
2971 - BUILD: debug: silence warning on gcc-5
2972 - BUILD: http: silence an uninitialized warning affecting gcc-5
2973 - BUG/MEDIUM: mux-quic: fix server chunked encoding response
2974 - REORG: mux-quic: rename stream initialization function
2975 - MINOR: mux-quic: rename stream purge function
2976 - MINOR: mux-quic: add traces on frame parsing functions
2977 - MINOR: mux-quic: implement qcs_alert()
2978 - MINOR: mux-quic: filter send/receive-only streams on frame parsing
2979 - MINOR: mux-quic: do not ack STREAM frames on unrecoverable error
2980 - MINOR: mux-quic: support stream opening via MAX_STREAM_DATA
2981 - MINOR: mux-quic: define basic stream states
2982 - MINOR: mux-quic: use stream states to mark as detached
2983 - MEDIUM: mux-quic: implement RESET_STREAM emission
2984 - MEDIUM: mux-quic: implement STOP_SENDING handling
2985 - BUG/MEDIUM: debug: fix possible hang when multiple threads dump at once
2986 - BUG/MINOR: quic: fix closing state on NO_ERROR code sent
2987 - CLEANUP: quic: clean up include on quic_frame-t.h
2988 - MINOR: quic: define a generic QUIC error type
2989 - MINOR: mux-quic: support app graceful shutdown
2990 - MINOR: mux-quic/h3: prepare CONNECTION_CLOSE on release
2991 - MEDIUM: quic: send CONNECTION_CLOSE on released MUX
2992 - CLEANUP: mux-quic: move qc_release()
2993 - MINOR: mux-quic: send one last time before release
2994 - MINOR: h3: store control stream in h3c
2995 - MINOR: h3: implement graceful shutdown with GOAWAY
2996 - BUG/MINOR: threads: produce correct global mask for tgroup > 1
2997 - BUG/MEDIUM: cli/threads: make "show threads" more robust on applets
2998 - BUG/MINOR: thread: use the correct thread's group in ha_tkillall()
2999 - BUG/MINOR: debug: enter ha_panic() only once
3000 - BUG/MEDIUM: debug: fix parallel thread dumps again
3001 - MINOR: cli/streams: show a stream's tgid next to its thread ID
3002 - DEBUG: cli: add a new "debug dev deadlock" expert command
3003 - MINOR: cli/activity: add a thread number argument to "show activity"
3004 - CLEANUP: applet: remove the obsolete command context from the appctx
3005 - MEDIUM: config: remove deprecated "bind-process" directives from frontends
3006 - MEDIUM: config: remove the "process" keyword on "bind" lines
3007 - MINOR: listener/config: make "thread" always support up to LONGBITS
3008 - CLEANUP: fd: get rid of the __GET_{NEXT,PREV} macros
3009 - MEDIUM: debug/threads: make the lock debugging take tgroups into account
3010 - MEDIUM: proto: stop protocols under thread isolation during soft stop
3011 - MEDIUM: poller: program the update in fd_update_events() for a migrated FD
3012 - MEDIUM: poller: disable thread-groups for poll() and select()
3013 - MINOR: thread: remove MAX_THREADS limitation
3014 - MEDIUM: cpu-map: replace the process number with the thread group number
3015 - MINOR: mworker/threads: limit the mworker sockets to group 1
3016 - MINOR: cli/threads: always bind CLI to thread group 1
3017 - MINOR: fd/thread: get rid of thread_mask()
3018 - MEDIUM: task/thread: move the task shared wait queues per thread group
3019 - MINOR: task: move the niced_tasks counter to the thread group context
3020 - DOC: design: add some thoughts about how to handle the update_list
3021 - MEDIUM: conn: make conn_backend_get always scan the same group
3022 - MAJOR: fd: remove pending updates upon real close
3023 - MEDIUM: fd/poller: make the update-list per-group
3024 - MINOR: fd: delete unused updates on close()
3025 - MINOR: fd: make fd_insert() apply the thread mask itself
3026 - MEDIUM: fd: add the tgid to the fd and pass it to fd_insert()
3027 - MINOR: cli/fd: show fd's tgid and refcount in "show fd"
3028 - MINOR: fd: add functions to manipulate the FD's tgid
3029 - MINOR: fd: add fd_get_running() to atomically return the running mask
3030 - MAJOR: fd: grab the tgid before manipulating running
3031 - MEDIUM: fd/poller: turn polled_mask to group-local IDs
3032 - MEDIUM: fd/poller: turn update_mask to group-local IDs
3033 - MEDIUM: fd/poller: turn running_mask to group-local IDs
3034 - MINOR: fd: make fd_clr_running() return the previous value instead
3035 - MEDIUM: fd: make thread_mask now represent group-local IDs
3036 - MEDIUM: fd: make fd_insert() take local thread masks
3037 - MEDIUM: fd: make fd_insert/fd_delete atomically update fd.tgid
3038 - MEDIUM: fd: quit fd_update_events() when FD is closed
3039 - MEDIUM: thread: change thread_resolve_group_mask() to return group-local values
3040 - MEDIUM: listener: switch bind_thread from global to group-local
3041 - MINOR: fd: add fd_reregister_all() to deal with boot-time FDs
3042 - MEDIUM: fd: support stopping FDs during starting
3043 - MAJOR: pollers: rely on fd_reregister_all() at boot time
3044 - MAJOR: poller: only touch/inspect the update_mask under tgid protection
3045 - MEDIUM: fd: support broadcasting updates for foreign groups in updt_fd_polling
3046 - CLEANUP: threads: remove the now unused all_threads_mask and tid_bit
3047 - MINOR: config: change default MAX_TGROUPS to 16
3048 - BUG/MEDIUM: tools: avoid calling dlsym() in static builds
3049
Willy Tarreauf9de4e92022-06-24 22:09:05 +020030502022/06/24 : 2.7-dev1
3051 - BUG/MINOR: ssl_ckch: Free error msg if commit changes on a cert entry fails
3052 - BUG/MINOR: ssl_ckch: Free error msg if commit changes on a CA/CRL entry fails
3053 - BUG/MEDIUM: ssl_ckch: Don't delete a cert entry if it is being modified
3054 - BUG/MEDIUM: ssl_ckch: Don't delete CA/CRL entry if it is being modified
3055 - BUG/MINOR: ssl_ckch: Don't duplicate path when replacing a cert entry
3056 - BUG/MINOR: ssl_ckch: Don't duplicate path when replacing a CA/CRL entry
3057 - BUG/MEDIUM: ssl_ckch: Rework 'commit ssl cert' to handle full buffer cases
3058 - BUG/MEDIUM: ssl_ckch: Rework 'commit ssl ca-file' to handle full buffer cases
3059 - BUG/MEDIUM: ssl/crt-list: Rework 'add ssl crt-list' to handle full buffer cases
3060 - BUG/MEDIUM: httpclient: Don't remove HTX header blocks before duplicating them
3061 - BUG/MEDIUM: httpclient: Rework CLI I/O handler to handle full buffer cases
3062 - MEDIUM: httpclient: Don't close CLI applet at the end of a response
3063 - MEDIUM: http-ana: Always report rewrite failures as PRXCOND in logs
3064 - CLEANUP: Re-apply xalloc_size.cocci (2)
3065 - REGTESTS: abortonclose: Add a barrier to not mix up log messages
3066 - REGTESTS: http_request_buffer: Increase client timeout to wait "slow" clients
3067 - CLEANUP: ssl_ckch: Use corresponding enum for commit_cacrlfile_ctx.cafile_type
3068 - MINOR: ssl_ckch: Simplify I/O handler to commit changes on CA/CRL entry
3069 - BUG/MINOR: ssl_ckch: Use right type for old entry in show_crlfile_ctx
3070 - BUG/MINOR: ssl_ckch: Dump CRL transaction only once if show command yield
3071 - BUG/MINOR: ssl_ckch: Dump CA transaction only once if show command yield
3072 - BUG/MINOR: ssl_ckch: Dump cert transaction only once if show command yield
3073 - BUG/MINOR: ssl_ckch: Init right field when parsing "commit ssl crl-file" cmd
3074 - CLEANUP: ssl_ckch: Remove unused field in commit_cacrlfile_ctx structure
3075 - MINOR: ssl_ckch: Simplify structure used to commit changes on CA/CRL entries
3076 - MINOR: ssl_ckch: Remove service context for "set ssl cert" command
3077 - MINOR: ssl_ckch: Remove service context for "set ssl ca-file" command
3078 - MINOR: ssl_ckch: Remove service context for "set ssl crl-file" command
3079 - BUG/MINOR: ssl_ckch: Fix possible uninitialized value in show_cert I/O handler
3080 - BUG/MINOR: ssl_ckch: Fix possible uninitialized value in show_cafile I/O handler
3081 - BUG/MINOR: ssl_ckch: Fix possible uninitialized value in show_crlfile I/O handler
3082 - BUILD: ssl_ckch: Fix build error about a possible uninitialized value
3083 - BUG/MINOR: ssl_ckch: Fix another possible uninitialized value
3084 - REGTESTS: http_abortonclose: Extend supported versions
3085 - REGTESTS: restrict_req_hdr_names: Extend supported versions
3086 - MINOR: connection: support HTTP/3.0 for smp_*_http_major fetch
3087 - MINOR: h3: add h3c pointer into h3s instance
3088 - MINOR: mux-quic: simplify decode_qcs API
3089 - MINOR: mux-quic/h3: adjust demuxing function return values
3090 - BUG/MINOR: h3: fix return value on decode_qcs on error
3091 - BUILD: quic: fix anonymous union for gcc-4.4
3092 - BUILD: compiler: implement unreachable for older compilers too
3093 - DEV: tcploop: reorder options in the usage message
3094 - DEV: tcploop: make the current address the default address
3095 - DEV: tcploop: make it possible to change the target address of a connect()
3096 - DEV: tcploop: factor out the socket creation
3097 - DEV: tcploop: permit port 0 to ease handling of default options
3098 - DEV: tcploop: add a new "bind" command to bind to ip/port.
3099 - DEV: tcploop: add minimal UDP support
3100 - BUG/MINOR: trace: Test server existence for health-checks to get proxy
3101 - BUG/MINOR: checks: Properly handle email alerts in trace messages
3102 - BUG/MEDIUM: mailers: Set the object type for check attached to an email alert
3103 - REGTESTS: healthcheckmail: Update the test to be functionnal again
3104 - REGTESTS: healthcheckmail: Relax health-check failure condition
3105 - BUG/MINOR: h3: fix incorrect BUG_ON assert on SETTINGS parsing
3106 - MEDIUM: mux-h2: try to coalesce outgoing WINDOW_UPDATE frames
3107 - OPTIM: mux-h2: increase h2_settings_initial_window_size default to 64k
3108 - BUG/MINOR: h3: fix frame type definition
3109 - BUG/MEDIUM: h3: fix SETTINGS parsing
3110 - BUG/MINOR: cli/stats: add missing trailing LF after JSON outputs
3111 - BUG/MINOR: server: do not enable DNS resolution on disabled proxies
3112 - BUG/MINOR: cli/stats: add missing trailing LF after "show info json"
3113 - DOC: design: update the notes on thread groups
3114 - BUG/MEDIUM: mux-quic: fix flow control connection Tx level
3115 - MINOR: mux-quic: complete BUG_ON on TX flow-control enforcing
3116 - BUG/MINOR: mux-quic: fix memleak on frames rejected by transport
3117 - BUG/MINOR: tcp-rules: Make action call final on read error and delay expiration
3118 - CLEANUP: check: Remove useless tests on check's stream-connector
3119 - BUG/MEDIUM: stconn: Don't wakeup applet for send if it won't consume data
3120 - BUG/MEDIUM: cli: Notify cli applet won't consume data during request processing
3121 - BUG/MEDIUM: mux-quic: fix segfault on flow-control frame cleanup
3122 - MINOR: task: move profiling bit to per-thread
3123 - CLEANUP: quic: use task_new_on() for single-threaded tasks
3124 - MINOR: tinfo: remove the global thread ID bit (tid_bit)
3125 - CLEANUP: hlua: check for at least 2 threads on a task
3126 - MINOR: thread: get rid of MAX_THREADS_MASK
3127 - OPTIM: task: do not consult shared WQ when we're already full
3128 - DOC: design: update the task vs thread affinity requirements
3129 - MINOR: qpack: add comments and remove a useless trace
3130 - MINOR: qpack: reduce dependencies on other modules
3131 - BUG/MINOR: qpack: support header litteral name decoding
3132 - MINOR: qpack: add ABORT_NOW on unimplemented decoding
3133 - BUG/MINOR: h3/qpack: deal with too many headers
3134 - MINOR: qpack: improve decoding function
3135 - MINOR: qpack: implement standalone decoder tool
3136 - BUG/BUILD: h3: fix wrong label name
3137 - BUG/MINOR: quic: Stop hardcoding Retry packet Version field
3138 - MINOR: quic: Add several nonce and key definitions for Retry tag
3139 - BUG/MINOR: quic: Wrong PTO calculation
3140 - MINOR: quic: Parse long packet version from qc_parse_hd_form()
3141 - CLEANUP: quid: QUIC draft-28 no more supported
3142 - MEDIUM: quic: Add QUIC v2 draft support
3143 - MINOR: quic: Released QUIC TLS extension for QUIC v2 draft
3144 - MEDIUM: quic: Compatible version negotiation implementation (draft-08)
3145 - CLEANUP: quic: Remove any reference to boringssl
3146 - BUG/MINOR: task: fix thread assignment in tasklet_kill()
3147 - BUG/MEDIUM: stream: Properly handle destructive client connection upgrades
3148 - MINOR: stream: Rely on stconn flags to abort stream destructive upgrade
3149 - CLEANUP: stconn: Don't expect to have no sedesc on detach
3150 - BUG/MINOR: log: Properly test connection retries to fix dontlog-normal option
3151 - MINOR: hlua: don't dump empty entries in hlua_traceback()
3152 - MINOR: hlua: add a new hlua_show_current_location() function
3153 - MEDIUM: debug: add a tainted flag when a shared library is loaded
3154 - MEDIUM: debug: detect redefinition of symbols upon dlopen()
3155 - BUILD: quic: Wrong HKDF label constant variable initializations
3156 - BUG/MINOR: quic: Unexpected half open connection counter wrapping
3157 - BUG/MINOR: quic_stats: Duplicate "quic_streams_data_blocked_bidi" field name
3158 - BUG/MINOR: quic: purge conn Rx packet list on release
3159 - BUG/MINOR: quic: free rejected Rx packets
3160 - BUG/MINOR: qpack: abort on dynamic index field line decoding
3161 - BUG/MEDIUM: ssl/cli: crash when crt inserted into a crt-list
3162 - REGTESTS: ssl: add the same cert for client/server
3163 - BUG/MINOR: quic: Acknowledgement must be forced during handshake
3164 - MINOR: quic: Dump version_information transport parameter
3165 - BUG/MEDIUM: mworker: use default maxconn in wait mode
3166 - MINOR: intops: add a function to return a valid bit position from a mask
3167 - TESTS: add a unit test for one_among_mask()
3168 - BUILD: ssl_ckch: fix "maybe-uninitialized" build error on gcc-9.4 + ARM
3169 - BUG/MINOR: ssl: Do not look for key in extra files if already in pem
3170 - BUG/MINOR: quic: Missing acknowledgments for trailing packets
3171 - BUG/MINOR: http-ana: Set method to HTTP_METH_OTHER when an HTTP txn is created
3172 - BUG/MINOR: http-fetch: Use integer value when possible in "method" sample fetch
3173 - MINOR: freq_ctr: Add a function to get events excess over the current period
3174 - BUG/MINOR: stream: only free the req/res captures when set
3175 - CLEANUP: pool/tree-wide: remove suffix "_pool" from certain pool names
3176 - MEDIUM: debug: improve DEBUG_MEM_STATS to also report pool alloc/free
3177 - BUG/MINOR: quic: Wrong reuse of fulfilled dgram RX buffer
3178 - BUG/MAJOR: quic: Big RX dgrams leak when fulfilling a buffer
3179 - BUG/MAJOR: quic: Big RX dgrams leak with POST requests
3180 - BUILD: quic+h3: 32-bit compilation errors fixes
3181 - MEDIUM: bwlim: Add support of bandwith limitation at the stream level
3182
Willy Tarreau29698e32022-05-31 17:05:27 +020031832022/05/31 : 2.7-dev0
3184 - MINOR: version: it's development again
3185
Willy Tarreaua1efc042022-05-31 16:58:21 +020031862022/05/31 : 2.6.0
3187 - DOC: Fix formatting in configuration.txt to fix dconv
3188 - CLEANUP: tcpcheck: Remove useless test on the stream-connector in tcpcheck_main
3189 - CLEANUP: muxes: Consider stream's sd as defined in .show_fd callback functions
3190 - MINOR: quic: Ignore out of packet padding.
3191 - CLEANUP: quic: Useless QUIC_CONN_TX_BUF_SZ definition
3192 - CLEANUP: quic: No more used handshake output buffer
3193 - MINOR: quic: QUIC transport parameters split.
3194 - MINOR: quic: Transport parameters dump
3195 - DOC: quic: Update documentation for QUIC Retry
3196 - MINOR: quic: Tunable "max_idle_timeout" transport parameter
3197 - MINOR: quic: Tunable "initial_max_streams_bidi" transport parameter
3198 - MINOR: quic: Clarifications about transport parameters value
3199 - MINOIR: quic_stats: add QUIC connection errors counters
3200 - BUG/MINOR: quic: Largest RX packet numbers mixing
3201 - MINOR: quic_stats: Add transport new counters (lost, stateless reset, drop)
3202 - DOC: quic: Documentation update for QUIC
3203 - MINOR: quic: Connection TX buffer setting renaming.
3204 - MINOR: h3: Add a statistics module for h3
3205 - MINOR: quic: Send STOP_SENDING frames if mux is released
3206 - MINOR: quic: Do not drop packets with RESET_STREAM frames
3207 - BUG/MINOR: qpack: fix buffer API usage on prefix integer encoding
3208 - BUG/MINOR: qpack: support bigger prefix-integer encoding
3209 - BUG/MINOR: h3: do not report bug on unknown method
3210 - SCRIPTS: add make-releases-json to recreate a releases.json file in download dirs
3211 - SCRIPTS: make publish-release try to launch make-releases-json
3212 - MINOR: htx: add an unchecked version of htx_get_head_blk()
3213 - BUILD: htx: use the unchecked version of htx_get_head_blk() where needed
3214 - BUILD: quic: use inttypes.h instead of stdint.h
3215 - DOC: internal: remove totally outdated diagrams
3216 - DOC: remove the outdated ROADMAP file
3217 - DOC: add maintainers for QUIC and HTTP/3
3218 - MINOR: h3: define h3 trace module
3219 - MINOR: h3: add traces on frame recv
3220 - MINOR: h3: add traces on frame send
3221 - MINOR: h3: add traces on h3s init/end
3222 - EXAMPLES: remove completely outdated acl-content-sw.cfg
3223 - BUILD: makefile: reorder objects by build time
3224 - DOC: fix a few spelling mistakes in the docs
3225 - BUG/MEDIUM: peers/cli: fix "show peers" crash
3226 - CLEANUP: peers/cli: stop misusing the appctx local variable
3227 - CLEANUP: peers/cli: make peers_dump_peer() take an appctx instead of an stconn
3228 - BUG/MINOR: peers: set the proxy's name to the peers section name
3229 - MINOR: server: indicate when no address was expected for a server
3230 - BUG/MINOR: peers: detect and warn on init_addr/resolvers/check/agent-check
3231 - DOC: peers: indicate that some server settings are not usable
3232 - DOC: peers: clarify when entry expiration date is renewed.
3233 - DOC: peers: fix port number and addresses on new peers section format
3234 - DOC: gpc/gpt: add commments of gpc/gpt array definitions on stick tables.
3235 - DOC: install: update supported OpenSSL versions in the INSTALL doc
3236 - MINOR: ncbuf: adjust ncb_data with NCBUF_NULL
3237 - BUG/MINOR: h3: fix frame demuxing
3238 - BUG/MEDIUM: h3: fix H3_EXCESSIVE_LOAD when receiving H3 frame header only
3239 - BUG/MINOR: quic: Fix QUIC_EV_CONN_PRSAFRM event traces
3240 - CLEANUP: quic: remove useless check on local UNI stream reception
3241 - BUG/MINOR: qpack: do not consider empty enc/dec stream as error
3242 - DOC: intro: adjust the numbering of paragrams to keep the output ordered
3243 - MINOR: version: mention that it's LTS now.
3244
Willy Tarreau0edb9972022-05-27 19:49:31 +020032452022/05/27 : 2.6-dev12
3246 - CLEANUP: tools: Clean up non-QUIC error message handling in str2sa_range()
3247 - BUG/MEDIUM: tools: Fix `inet_ntop` usage in sa2str
3248 - CLEANUP: tools: Crash if inet_ntop fails due to ENOSPC in sa2str
3249 - BUG/MEDIUM: mux-quic: adjust buggy proxy closing support
3250 - Revert "MINOR: quic: activate QUIC traces at compilation"
3251 - Revert "MINOR: mux-quic: activate qmux traces on stdout via macro"
3252 - CLEANUP: init: address a coverity warning about possible multiply overflow
3253 - BUG/MEDIUM: http: Properly reject non-HTTP/1.x protocols
3254 - MEDIUM: h1: enlarge the scope of accepted version chars with accept-invalid-http-request
3255 - BUG/MEDIUM: resolvers: Don't defer resolutions release in deinit function
3256 - BUG/MEDIUM: peers: fix segfault using multiple bind on peers sections
3257 - BUG/MEDIUM: peers: prevent unitialized multiple listeners on peers section
3258 - BUG/MINOR: task: Don't defer tasks release when HAProxy is stopping
3259 - MINOR: h3: mark ncbuf as const on h3_b_dup
3260 - MINOR: mux-quic: do not alloc quic_stream_desc for uni remote stream
3261 - MINOR: mux-quic: delay cs_endpoint allocation
3262 - MINOR: mux-quic: add traces in qc_recv()
3263 - MINOR: mux-quic: adjust return value of decode_qcs
3264 - CLEANUP: h3: rename struct h3 -> h3c
3265 - CLEANUP: h3: rename uni stream type constants
3266 - BUG/MINOR: h3: prevent overflow when parsing SETTINGS
3267 - MINOR: h3: refactor h3_control_send()
3268 - MINOR: quic: support CONNECTION_CLOSE_APP emission
3269 - MINOR: mux-quic: disable read on CONNECTION_CLOSE emission
3270 - MINOR: h3: reject too big frames
3271 - MINOR: mux-quic: emit STREAM_STATE_ERROR in qcc_recv
3272 - BUG/MINOR: mux-quic: refactor uni streams TX/send H3 SETTINGS
3273 - MINOR: h3/qpack: use qcs as type in decode callbacks
3274 - MINOR: h3: define stream type
3275 - MINOR: h3: refactor uni streams initialization
3276 - MINOR: h3: check if frame is valid for stream type
3277 - MINOR: h3: define non-h3 generic parsing function
3278 - MEDIUM: quic: refactor uni streams RX
3279 - CLEANUP: h3: remove h3 uni tasklet
3280 - MINOR: h3: abort read on unknown uni stream
3281 - MINOR: h3: refactor SETTINGS parsing/error reporting
3282 - Revert "BUG/MINOR: task: Don't defer tasks release when HAProxy is stopping"
3283 - DOC: configuration: add a warning for @system-ca on bind
3284 - CLEANUP: init: address another coverity warning about a possible multiply overflow
3285 - BUG/MINOR: ssl/lua: use correctly cert_ext in CertCache.set()
3286 - BUG/MEDIUM: sample: Fix adjusting size in word converter
3287 - REGTESTS: Do not use REQUIRE_VERSION for HAProxy 2.5+ (2)
3288 - CLEANUP: conn_stream: remove unneeded exclusion of RX_WAIT_EP from RXBLK_ANY
3289 - CLEANUP: conn_stream: rename the cs_endpoint's context to "conn"
3290 - MINOR: conn_stream: add new sets of functions to set/get endpoint flags
3291 - DEV: coccinelle: add cs_endp_flags.cocci
3292 - CLEANUP: conn_stream: apply cs_endp_flags.cocci tree-wide
3293 - DEV: coccinelle: add endp_flags.cocci
3294 - CLEANUP: conn_stream: apply endp_flags.cocci tree-wide
3295 - CLEANUP: conn_stream: rename the stream endpoint flags CS_EP_* to SE_FL_*
3296 - CLEANUP: conn_stream: rename the cs_endpoint's target to "se"
3297 - CLEANUP: conn_stream: rename cs_endpoint to sedesc (stream endpoint descriptor)
3298 - CLEANUP: applet: rename the sedesc pointer from "endp" to "sedesc"
3299 - CLEANUP: conn_stream: rename the conn_stream's endp to sedesc
3300 - CLEANUP: conn_stream: rename cs_app_* to sc_app_*
3301 - CLEANUP: conn_stream: tree-wide rename to stconn (stream connector)
3302 - CLEANUP: mux-h1: add and use h1s_sc() to retrieve the stream connector
3303 - CLEANUP: mux-h2: add and use h2s_sc() to retrieve the stream connector
3304 - CLEANUP: mux-fcgi: add and use fcgi_strm_sc() to retrieve the stream connector
3305 - CLEANUP: mux-pt: add and use pt_sc() to retrieve the stream connector
3306 - CLEANUP: stdesc: rename the stream connector ->cs field to ->sc
3307 - CLEANUP: stream: rename "csf" and "csb" to "scf" and "scb"
3308 - CLEANUP: stconn: tree-wide rename stream connector flags CS_FL_* to SC_FL_*
3309 - CLEANUP: stconn: tree-wide rename stconn states CS_ST/SB_* to SC_ST/SB_*
3310 - MINOR: check: export wake_srv_chk()
3311 - MINOR: conn_stream: test the various ops functions before calling them
3312 - MEDIUM: stconn: merge the app_ops and the data_cb fields
3313 - MINOR: applet: add new wrappers to put chk/blk/str/chr to channel from appctx
3314 - CLEANUP: applet: use applet_put*() everywhere possible
3315 - CLEANUP: stconn: rename cs_{i,o}{b,c} to sc_{i,o}{b,c}
3316 - CLEANUP: stconn: rename cs_{check,strm,strm_task} to sc_strm_*
3317 - CLEANUP: stconn: rename cs_conn() to sc_conn()
3318 - CLEANUP: stconn: rename cs_mux() to sc_mux_strm()
3319 - CLEANUP: stconn: rename cs_conn_mux() to sc_mux_ops()
3320 - CLEANUP: stconn: rename cs_appctx() to sc_appctx()
3321 - CLEANUP: stconn: rename __cs_endp_target() to __sc_endp()
3322 - CLEANUP: stconn: rename cs_get_data_name() to sc_get_data_name()
3323 - CLEANUP: stconn: rename cs_conn_*() to sc_conn_*()
3324 - CLEANUP: stconn: rename cs_conn_get_first() to conn_get_first_sc()
3325 - CLEANUP: stconn: rename cs_ep_set_error() to se_fl_set_error()
3326 - CLEANUP: stconn: make a few functions take a const argument
3327 - CLEANUP: stconn: use a single function to know if SC may send to SE
3328 - MINOR: stconn: consider CF_SHUTW for sc_is_send_allowed()
3329 - MINOR: stconn: remove calls to cs_done_get()
3330 - MEDIUM: stconn: always rely on CF_SHUTR in addition to cs_rx_blocked()
3331 - MEDIUM: stconn: remove SE_FL_RXBLK_SHUT
3332 - MINOR: stconn: rename SE_FL_RXBLK_CONN to SE_FL_APPLET_NEED_CONN
3333 - MEDIUM: stconn: take SE_FL_APPLET_NEED_CONN out of the RXBLK_ANY flags
3334 - CLEANUP: stconn: rename cs_rx_room_{blk,rdy} to sc_{need,have}_room()
3335 - CLEANUP: stconn: rename cs_rx_chan_{blk,rdy} to sc_{wont,will}_read()
3336 - CLEANUP: stconn: rename cs_rx_buff_{blk,rdy} to sc_{need,have}_buff()
3337 - MINOR: stconn: start to rename cs_rx_endp_{more,done}() to se_have_{no_,}more_data()
3338 - MINOR: stconn: add sc_is_recv_allowed() to check for ability to receive
3339 - CLEANUP: stconn: rename SE_FL_RX_WAIT_EP to SE_FL_HAVE_NO_DATA
3340 - MEDIUM: stconn: move the RXBLK flags to the stream connector
3341 - CLEANUP: stconn: rename SE_FL_WANT_GET to SE_FL_WILL_CONSUME
3342 - CLEANUP: stconn: remove cs_tx_blocked() and cs_tx_endp_ready()
3343 - CLEANUP: stconn: rename cs_{want,stop}_get() to se_{will,wont}_consume()
3344 - CLEANUP: stconn: rename cs_cant_get() to se_need_more_data()
3345 - CLEANUP: stconn: rename cs_{new,create,free,destroy}_* to sc_*
3346 - CLEANUP: stconn: rename remaining management functions from cs_* to sc_*
3347 - CLEANUP: stconn: rename cs{,_get}_{src,dst} to sc_*
3348 - CLEANUP: stconn: rename cs_{shut,chk}* to sc_*
3349 - CLEANUP: stconn: rename final state manipulation functions from cs_* to sc_*
3350 - CLEANUP: quic: drop the name "conn_stream" from the pool variable names
3351 - REORG: rename cs_utils.h to sc_strm.h
3352 - REORG: stconn: rename conn_stream.{c,h} to stconn.{c,h}
3353 - CLEANUP: muxes: rename "get_first_cs" to "get_first_sc"
3354 - DEV: flags: use "sc" for stream conns instead of "cs"
3355 - CLEANUP: check: rename all occurrences of stconn "cs" to "sc"
3356 - CLEANUP: connection: rename all occurrences of stconn "cs" to "sc"
3357 - CLEANUP: stconn: rename all occurrences of stconn "cs" to "sc"
3358 - CLEANUP: quic/h3: rename all occurrences of stconn "cs" to "sc"
3359 - CLEANUP: stream: rename all occurrences of stconn "cs" to "sc"
3360 - CLEANUP: promex: rename all occurrences of stconn "cs" to "sc"
3361 - CLEANUP: stats: rename all occurrences of stconn "cs" to "sc"
3362 - CLEANUP: cli: rename all occurrences of stconn "cs" to "sc"
3363 - CLEANUP: applet: rename all occurrences of stconn "cs" to "sc"
3364 - CLEANUP: cache: rename all occurrences of stconn "cs" to "sc"
3365 - CLEANUP: dns: rename all occurrences of stconn "cs" to "sc"
3366 - CLEANUP: spoe: rename all occurrences of stconn "cs" to "sc"
3367 - CLEANUP: hlua: rename all occurrences of stconn "cs" to "sc"
3368 - CLEANUP: log-forward: rename all occurrences of stconn "cs" to "sc"
3369 - CLEANUP: http-client: rename all occurrences of stconn "cs" to "sc"
3370 - CLEANUP: mux-fcgi: rename all occurrences of stconn "cs" to "sc"
3371 - CLEANUP: mux-h1: rename all occurrences of stconn "cs" to "sc"
3372 - CLEANUP: mux-h2: rename all occurrences of stconn "cs" to "sc"
3373 - CLEANUP: mux-pt: rename all occurrences of stconn "cs" to "sc"
3374 - CLEANUP: peers: rename all occurrences of stconn "cs" to "sc"
3375 - CLEANUP: sink: rename all occurrences of stconn "cs" to "sc"
3376 - CLEANUP: sslsock: remove only occurrence of local variable "cs"
3377 - CLEANUP: applet: rename appctx_cs() to appctx_sc()
3378 - CLEANUP: stream: rename stream_upgrade_from_cs() to stream_upgrade_from_sc()
3379 - CLEANUP: obj_type: rename OBJ_TYPE_CS to OBJ_TYPE_SC
3380 - CLEANUP: stconn: replace a few remaining occurrences of CS in comments or traces
3381 - DOC: internal: update the muxes doc to mention the stconn
3382 - CLEANUP: mux-quic: rename the "endp" field to "sd"
3383 - CLEANUP: mux-h1: rename the "endp" field to "sd"
3384 - CLEANUP: mux-h2: rename the "endp" field to "sd"
3385 - CLEANUP: mux-fcgi: rename the "endp" field to "sd"
3386 - CLEANUP: mux-pt: rename the "endp" field to "sd"
3387 - CLEANUP: stconn: rename a few "endp" arguments and variables to "sd"
3388 - MINOR: stconn: turn SE_FL_WILL_CONSUME to SE_FL_WONT_CONSUME
3389 - CLEANUP: stream: remove unneeded test on appctx during initialization
3390 - CLEANUP: stconn: remove the new unneeded SE_FL_APP_MASK
3391 - DEV: flags: fix "siet" shortcut name
3392 - DEV: flags: rename the "endp" shortcut to "sd" for "stream descriptor"
3393 - DEV: flags: reorder a few SC/SE flags
3394 - DOC: internal: add a description of the stream connectors and descriptors
3395
Willy Tarreau137c8fd2022-05-20 23:31:51 +020033962022/05/20 : 2.6-dev11
3397 - CI: determine actual LibreSSL version dynamically
3398 - BUG/MEDIUM: ncbuf: fix null buffer usage
3399 - MINOR: ncbuf: fix warnings for testing build
3400 - MEDIUM: http-ana: Add a proxy option to restrict chars in request header names
3401 - MEDIUM: ssl: Delay random generator initialization after config parsing
3402 - MINOR: ssl: Add 'ssl-propquery' global option
3403 - MINOR: ssl: Add 'ssl-provider' global option
3404 - CLEANUP: Add missing header to ssl_utils.c
3405 - CLEANUP: Add missing header to hlua_fcn.c
3406 - CLEANUP: Remove unused function hlua_get_top_error_string
3407 - BUILD: fix build warning on solaris based systems with __maybe_unused.
3408 - MINOR: tools: add get_exec_path implementation for solaris based systems.
3409 - BUG/MINOR: ssl: Fix crash when no private key is found in pem
3410 - CLEANUP: conn-stream: Remove cs_applet_shut declaration from header file
3411 - MINOR: applet: Prepare appctx to own the session on frontend side
3412 - MINOR: applet: Let the frontend appctx release the session
3413 - MINOR: applet: Change return value for .init callback function
3414 - MINOR: stream: Export stream_free()
3415 - MINOR: applet: Add appctx_init() helper fnuction
3416 - MINOR: applet: Add a function to finalize frontend appctx startup
3417 - MINOR: applet: Add function to release appctx on error during init stage
3418 - MEDIUM: dns: Refactor dns appctx creation
3419 - MEDIUM: spoe: Refactor SPOE appctx creation
3420 - MEDIUM: lua: Refactor cosocket appctx creation
3421 - MEDIUM: httpclient: Refactor http-client appctx creation
3422 - MINOR: sink: Add a ref to sink in the sink_forward_target structure
3423 - MEDIUM: sink: Refactor sink forwarder appctx creation
3424 - MINOR: peers: Add a ref to peers section in the peer structure
3425 - MEDIUM: peers: Refactor peer appctx creation
3426 - MINOR: applet: Add API to start applet on a thread subset
3427 - MEDIUM: applet: Add support for async appctx startup on a thread subset
3428 - MINOR: peers: Track number of applets run by thread
3429 - MEDIUM: peers: Balance applets across threads
3430 - MINOR: conn-stream/applet: Stop setting appctx as the endpoint context
3431 - CLEANUP: proxy: Remove dead code when parsing "http-restrict-req-hdr-names" option
3432 - REGTESTS: abortonclose: Fix some race conditions
3433 - MINOR: ssl: Add 'ssl-provider-path' global option
3434 - CLEANUP: http_ana: Make use of the return value of stream_generate_unique_id()
3435 - BUG/MINOR: spoe: Fix error handling in spoe_init_appctx()
3436 - CLEANUP: peers: Remove unreachable code in peer_session_create()
3437 - CLEANUP: httpclient: Remove useless test on ss_dst in httpclient_applet_init()
3438 - BUG/MEDIUM: quic: fix Rx buffering
3439 - OPTIM: quic: realign empty Rx buffer
3440 - BUG/MINOR: ncbuf: fix ncb_is_empty()
3441 - MINOR: ncbuf: refactor ncb_advance()
3442 - BUG/MINOR: mux-quic: update session's idle delay before stream creation
3443 - MINOR: h3: do not wait a complete frame for demuxing
3444 - MINOR: h3: flag demux as full on HTX full
3445 - MEDIUM: mux-quic: implement recv on io-cb
3446 - MINOR: mux-quic: remove qcc_decode_qcs() call in XPRT
3447 - MINOR: mux-quic: reorganize flow-control frames emission
3448 - MINOR: mux-quic: implement MAX_STREAM_DATA emission
3449 - MINOR: mux-quic: implement MAX_DATA emission
3450 - BUG/MINOR: mux-quic: support nul buffer with qc_free_ncbuf()
3451 - MINOR: mux-quic: free RX buf if empty
3452 - BUG/MEDIUM: config: Reset outline buffer size on realloc error in readcfgfile()
3453 - BUG/MINOR: check: Reinit the buffer wait list at the end of a check
3454 - MEDIUM: check: No longer shutdown the connection in .wake callback function
3455 - REORG: check: Rename and export I/O callback function
3456 - MEDIUM: check: Use the CS to handle subscriptions for read/write events
3457 - BUG/MINOR: quic: break for error on sendto
3458 - MINOR: quic: abort on unlisted errno on sendto()
3459 - MINOR: quic: detect EBADF on sendto()
3460 - BUG/MEDIUM: quic: fix initialization for local/remote TPs
3461 - CLEANUP: quic: adjust comment/coding style for TPs init
3462 - BUG/MINOR: cfgparse: abort earlier in case of allocation error
3463 - MINOR: quic: Dump initial derived secrets
3464 - MINOR: quic_tls: Add quic_tls_derive_retry_token_secret()
3465 - MINOR: quic_tls: Add quic_tls_decrypt2() implementation
3466 - MINOR: quic: Retry implementation
3467 - MINOR: cfgparse: Update for "cluster-secret" keyword for QUIC Retry
3468 - MINOR: quic: Move quic_lstnr_dgram_dispatch() out of xprt_quic.c
3469 - BUILD: stats: Missing headers inclusions from stats.h
3470 - MINOR: quic_stats: Add a new stats module for QUIC
3471 - MINOR: quic: Attach proxy QUIC stats counters to the QUIC connection
3472 - BUG/MINOR: quic: Fix potential memory leak during QUIC connection allocations
3473 - MINOR: quic: QUIC stats counters handling
3474 - MINOR: quic: Add tune.quic.retry-threshold keyword
3475 - MINOR: quic: Dynamic Retry implementation
3476 - MINOR: quic/mux-quic: define CONNECTION_CLOSE send API
3477 - MINOR: mux-quic: emit FLOW_CONTROL_ERROR
3478 - MINOR: mux-quic: emit STREAM_LIMIT_ERROR
3479 - MINOR: mux-quic: close connection on error if different data at offset
3480 - BUG/MINOR: peers: fix error reporting of "bind" lines
3481 - CLEANUP: config: improve address parser error report for unmatched protocols
3482 - CLEANUP: config: provide cleare hints about unsupported QUIC addresses
3483 - MINOR: protocol: replace ctrl_type with xprt_type and clarify it
3484 - MINOR: listener: provide a function to process all of a bind_conf's arguments
3485 - MINOR: config: use the new bind_parse_args_list() to parse a "bind" line
3486 - CLEANUP: listener: add a comment about what the BC_SSL_O_* flags are for
3487 - MINOR: listener: add a new "options" entry in bind_conf
3488 - CLEANUP: listener: replace all uses of bind_conf->is_ssl with BC_O_USE_SSL
3489 - CLEANUP: listener: replace bind_conf->generate_cers with BC_O_GENERATE_CERTS
3490 - CLEANUP: listener: replace bind_conf->quic_force_retry with BC_O_QUIC_FORCE_RETRY
3491 - CLEANUP: listener: store stream vs dgram at the bind_conf level
3492 - MINOR: listener: detect stream vs dgram conflict during parsing
3493 - MINOR: listener: set the QUIC xprt layer immediately after parsing the args
3494 - MINOR: listener/ssl: set the SSL xprt layer only once the whole config is known
3495 - MINOR: connection: add flag MX_FL_FRAMED to mark muxes relying on framed xprt
3496 - MINOR: config: detect and report mux and transport incompatibilities
3497 - MINOR: listener: automatically select a QUIC mux with a QUIC transport
3498 - MINOR: listener: automatically enable SSL if a QUIC transport is found
3499 - BUG/MINOR: quic: Fixe a typo in qc_idle_timer_task()
3500 - BUG/MINOR: quic: Missing <conn_opening> stats counter decrementation
3501 - BUILD/MINOR: cpuset fix build for FreeBSD 13.1
3502 - CI: determine actual OpenSSL version dynamically
3503
Willy Tarreau37033252022-05-14 16:05:50 +020035042022/05/14 : 2.6-dev10
3505 - MINOR: ssl: ignore dotfiles when loading a dir w/ ca-file
3506 - MEDIUM: ssl: ignore dotfiles when loading a dir w/ crt
3507 - BUG/MINOR: ssl: Fix typos in crl-file related CLI commands
3508 - MINOR: compiler: add a new macro to set an attribute on an enum when possible
3509 - BUILD: stats: conditionally mark obsolete stats states as deprecated
3510 - BUILD: ssl: work around bogus warning in gcc 12's -Wformat-truncation
3511 - BUILD: debug: work around gcc-12 excessive -Warray-bounds warnings
3512 - BUILD: listener: shut report of possible null-deref in listener_accept()
3513 - BUG/MEDIUM: ssl: fix the gcc-12 broken fix :-(
3514 - DOC: install: update gcc version requirements
3515 - BUILD: makefile: add -Wfatal-errors to the default flags
3516 - BUG/MINOR: server: Make SRV_STATE_LINE_MAXLEN value from 512 to 2kB (2000 bytes).
3517 - BUG/MAJOR: dns: multi-thread concurrency issue on UDP socket
3518 - BUG/MINOR: mux-h2: mark the stream as open before processing it not after
3519 - MINOR: mux-h2: report a trace event when failing to create a new stream
3520 - DOC: configuration: add the httpclient keywords to the global keywords index
3521 - MINOR: quic: Add a debug counter for sendto() errors
3522 - BUG/MINOR: quic: Dropped peer transport parameters
3523 - BUG/MINOR: quic: Wrong unit for ack delay for incoming ACK frames
3524 - MINOR: quic: Congestion controller event trace fix (loss)
3525 - MINOR: quic: Add correct ack delay values to ACK frames
3526 - MINOR: config: Add "cluster-secret" new global keyword
3527 - MINOR: quic-tls: Add quic_hkdf_extract_and_expand() for HKDF
3528 - MINOR: quic: new_quic_cid() code moving
3529 - MINOR: quic: Initialize stateless reset tokens with HKDF secrets
3530 - MINOR: qc_new_conn() rework for stateless reset
3531 - MINOR: quic: Stateless reset token copy to transport parameters
3532 - MINOR: quic: Send stateless reset tokens
3533 - MINOR: quic: Short packets always embed a trailing AEAD TAG
3534 - CLEANUP: quic: wrong use of eb*entry() macro
3535 - CLEANUP: quic: Useless use of pointer for quic_hkdf_extract()
3536 - CLEANUP: quic_tls: QUIC_TLS_IV_LEN defined two times
3537 - MINOR: ncbuf: define non-contiguous buffer
3538 - MINOR: ncbuf: complete API and define block interal abstraction
3539 - MINOR: ncbuf: optimize storage for the last gap
3540 - MINOR: ncbuf: implement insertion
3541 - MINOR: ncbuf: define various insertion modes
3542 - MINOR: ncbuf: implement advance
3543 - MINOR: ncbuf: write unit tests
3544 - BUG/MEDIUM: lua: fix argument handling in data removal functions
3545 - DOC/MINOR: fix typos in the lua-api document
3546 - BUG/MEDIUM: wdt: don't trigger the watchdog when p is unitialized
3547 - MINOR: mux-h1: Add global option accpet payload for any HTTP/1.0 requests
3548 - CLEANUP: mux-h1: Fix comments and error messages for global options
3549 - MINOR: conn_stream: make cs_set_error() work on the endpoint instead
3550 - CLEANUP: mux-h1: always take the endp from the h1s not the cs
3551 - CLEANUP: mux-h2: always take the endp from the h2s not the cs
3552 - CLEANUP: mux-pt: always take the endp from the context not the cs
3553 - CLEANUP: mux-fcgi: always take the endp from the fstrm not the cs
3554 - CLEANUP: mux-quic: always take the endp from the qcs not the cs
3555 - CLEANUP: applet: use the appctx's endp instead of cs->endp
3556 - MINOR: conn_stream: add a pointer back to the cs from the endpoint
3557 - MINOR: mux-h1: remove the now unneeded h1s->cs
3558 - MINOR: mux-h2: make sure any h2s always has an endpoint
3559 - MINOR: mux-h2: remove the now unneeded conn_stream from the h2s
3560 - MINOR: mux-fcgi: make sure any stream always has an endpoint
3561 - MINOR: mux-fcgi: remove the now unneeded conn_stream from the fcgi_strm
3562 - MINOR: mux-quic: remove the now unneeded conn_stream from the qcs
3563 - MINOR: mux-pt: remove the now unneeded conn_stream from the context
3564 - CLEANUP: muxes: make mux->attach/detach take a conn_stream endpoint
3565 - MINOR: applet: replace cs_applet_shut() with appctx_shut()
3566 - MINOR: applet: add appctx_strm() and appctx_cs() to access common fields
3567 - CLEANUP: applet: remove the unneeded appctx->owner
3568 - CLEANUP: conn_stream: merge cs_new_from_{mux,applet} into cs_new_from_endp()
3569 - MINOR: ext-check: indicate the transport and protocol of a server
3570 - BUG/MEDIUM: mux-quic: fix a thinko in the latest cs/endpoint cleanup
3571 - MINOR: tools: improve error message accuracy in str2sa_range
3572 - MINOR: config: make sure never to mix dgram and stream protocols on a bind line
3573 - BUG/MINOR: ncbuf: fix coverity warning on uninit sz_data
3574 - MINOR: xprt_quic: adjust flow-control according to bufsize
3575 - MEDIUM: mux-quic/h3/hq-interop: use ncbuf for bidir streams
3576 - MEDIUM: mux-quic/h3/qpack: use ncbuf for uni streams
3577 - CLEANUP: mux-quic: remove unused fields for Rx
3578 - CLEANUP: quic: remove unused quic_rx_strm_frm
3579
Willy Tarreaue9797962022-05-08 11:44:15 +020035802022/05/08 : 2.6-dev9
3581 - MINOR: mux-quic: support full request channel buffer
3582 - BUG/MINOR: h3: fix parsing of unknown frame type with null length
3583 - CLEANUP: backend: make alloc_{bind,dst}_address() idempotent
3584 - MEDIUM: stream: remove the confusing SF_ADDR_SET flag
3585 - MINOR: conn_stream: remove the now unused CS_FL_ADDR_*_SET flags
3586 - CLEANUP: protocol: make sure the connect_* functions always receive a dst
3587 - MINOR: connection: get rid of the CO_FL_ADDR_*_SET flags
3588 - MINOR: session: get rid of the now unused SESS_FL_ADDR_*_SET flags
3589 - CLEANUP: mux: Useless xprt_quic-t.h inclusion
3590 - MINOR: quic: Make the quic_conn be aware of the number of streams
3591 - BUG/MINOR: quic: Dropped retransmitted STREAM frames
3592 - BUG/MINOR: mux_quic: Dropped packet upon retransmission for closed streams
3593 - MEDIUM: httpclient: remove url2sa to use a more flexible parser
3594 - MEDIUM: httpclient: http-request rules for resolving
3595 - MEDIUM: httpclient: allow address and port change for resolving
3596 - CLEANUP: httpclient: remove the comment about resolving
3597 - MINOR: httpclient: handle unix and other socket types in dst
3598 - MINOR: httpclient: rename dash by dot in global option
3599 - MINOR: init: exit() after pre-check upon error
3600 - MINOR: httpclient: cleanup the error handling in init
3601 - MEDIUM: httpclient: hard-error when SSL is configured
3602 - MINOR: httpclient: allow to configure the ca-file
3603 - MINOR: httpclient: configure the resolvers section to use
3604 - MINOR: httpclient: allow ipv4 or ipv6 preference for resolving
3605 - DOC: configuration: httpclient global option
3606 - MINOR: conn-stream: Add mask from flags set by endpoint or app layer
3607 - BUG/MEDIUM: conn-stream: Only keep app layer flags of the endpoint on reset
3608 - BUG/MEDIUM: mux-fcgi: Be sure to never set EOM flag on an empty HTX message
3609 - BUG/MEDIUM: mux-h1: Be able to handle trailers when C-L header was specified
3610 - DOC: config: Update doc for PR/PH session states to warn about rewrite failures
3611 - MINOR: resolvers: cleanup alert/warning in parse-resolve-conf
3612 - MINOR: resolvers: move the resolv.conf parser in parse_resolv_conf()
3613 - MINOR: resolvers: resolvers_new() create a resolvers with default values
3614 - BUILD: debug: unify the definition of ha_backtrace_to_stderr()
3615 - BUG/MINOR: tcp/http: release the expr of set-{src,dst}[-port]
3616 - MEDIUM: resolvers: create a "default" resolvers section at startup
3617 - DOC: resolvers: default resolvers section
3618 - BUG/MINOR: startup: usage() when no -cc arguments
3619 - BUG/MEDIUM: resolvers: make "show resolvers" properly yield
3620 - BUG/MEDIUM: cli: make "show cli sockets" really yield
3621 - BUG/MINOR: proxy/cli: don't enumerate internal proxies on "show backend"
3622 - BUG/MINOR: map/cli: protect the backref list during "show map" errors
3623 - BUG/MINOR: map/cli: make sure patterns don't vanish under "show map"'s init
3624 - BUG/MINOR: ssl/cli: fix "show ssl ca-file/crl-file" not to mix cli+ssl contexts
3625 - BUG/MINOR: ssl/cli: fix "show ssl ca-file <name>" not to mix cli+ssl contexts
3626 - BUG/MINOR: ssl/cli: fix "show ssl crl-file" not to mix cli+ssl contexts
3627 - BUG/MINOR: ssl/cli: fix "show ssl cert" not to mix cli+ssl contexts
3628 - CLEANUP: ssl/cli: do not loop on unknown states in "add ssl crt-list" handler
3629 - MINOR: applet: reserve some generic storage in the applet's context
3630 - CLEANUP: applet: make appctx_new() initialize the whole appctx
3631 - CLEANUP: stream/cli: take the "show sess" context definition out of the appctx
3632 - CLEANUP: stream/cli: stop using appctx->st2 for the dump state
3633 - CLEANUP: stream/cli: remove the unneeded init state from "show sess"
3634 - CLEANUP: stream/cli: remove the unneeded STATE_FIN state from "show sess"
3635 - CLEANUP: stream/cli: remove the now unneeded dump state from "show sess"
3636 - CLEANUP: proxy/cli: take the "show errors" context definition out of the appctx
3637 - CLEANUP: stick-table/cli: take the "show table" context definition out of the appctx
3638 - CLEANUP: stick-table/cli: stop using appctx->st2 for the dump state
3639 - CLEANUP: stick-table/cli: remove the unneeded STATE_INIT for "show table"
3640 - CLEANUP: map/cli: take the "show map" context definition out of the appctx
3641 - CLEANUP: map/cli: stop using cli.i0/i1 to store the generation numbers
3642 - CLEANUP: map/cli: stop using appctx->st2 for the dump state
3643 - CLEANUP: map/cli: always detach the backref from the list after "show map"
3644 - CLEANUP: peers/cli: take the "show peers" context definition out of the appctx
3645 - CLEANUP: peers/cli: stop using appctx->st2 for the dump state
3646 - CLEANUP: peers/cli: remove unneeded state STATE_INIT
3647 - CLEANUP: cli: initialize the whole appctx->ctx, not just the stats part
3648 - CLEANUP: promex: make the applet use its own context
3649 - CLEANUP: promex: stop using appctx->st2
3650 - CLEANUP: stats/cli: take the "show stat" context definition out of the appctx
3651 - CLEANUP: stats/cli: stop using appctx->st2
3652 - CLEANUP: hlua/cli: take the hlua_cli context definition out of the appctx
3653 - CLEANUP: ssl/cli: use a local context for "show cafile"
3654 - CLEANUP: ssl/cli: use a local context for "show crlfile"
3655 - CLEANUP: ssl/cli: use a local context for "show ssl cert"
3656 - CLEANUP: ssl/cli: use a local context for "commit ssl cert"
3657 - CLEANUP: ssl/cli: stop using appctx->st2 for "commit ssl cert"
3658 - CLEANUP: ssl/cli: use a local context for "set ssl cert"
3659 - CLEANUP: ssl/cli: use a local context for "set ssl cafile"
3660 - CLEANUP: ssl/cli: use a local context for "set ssl crlfile"
3661 - CLEANUP: ssl/cli: use a local context for "commit ssl {ca|crl}file"
3662 - CLEANUP: ssl/cli: stop using appctx->st2 for "commit ssl ca/crl"
3663 - CLEANUP: ssl/cli: stop using ctx.cli.i0/i1/p0 for "show tls-keys"
3664 - CLEANUP: ssl/cli: add a new "dump_entries" field to "show_keys_ref"
3665 - CLEANUP: ssl/cli: make "show tlskeys" not use appctx->st2 anymore
3666 - CLEANUP: ssl/cli: make "show ssl ocsp-response" not use cli.p0 anymore
3667 - CLEANUP: ssl/cli: make "{show|dump} ssl crtlist" use its own context
3668 - CLEANUP: ssl/cli: make "add ssl crtlist" use its own context
3669 - CLEANUP: ssl/cli: make "add ssl crtlist" not use st2 anymore
3670 - CLEANUP: dns: stop abusing the sink forwarder's context
3671 - CLEANUP: sink: use the generic context to store the forwarder's context
3672 - CLEANUP: activity/cli: make "show profiling" not use ctx.cli anymore
3673 - CLEANUP: debug/cli: make "debug dev fd" not use ctx.cli anymore
3674 - CLEANUP: debug/cli: make "debug dev memstats" not use ctx.cli anymore
3675 - CLEANUP: ring: pass the ring watch flags to ring_attach_cli(), not in ctx.cli
3676 - CLEANUP: ring/cli: use a locally-defined context instead of using ctx.cli
3677 - CLEANUP: resolvers/cli: make "show resolvers" use a locally-defined context
3678 - CLEANUP: resolvers/cli: remove the unneeded appctx->st2 from "show resolvers"
3679 - CLEANUP: cache/cli: make use of a locally defined context for "show cache"
3680 - CLEANUP: proxy/cli: make use of a locally defined context for "show servers"
3681 - CLEANUP: proxy/cli: get rid of appctx->st2 in "show servers"
3682 - CLEANUP: proxy/cli: make "show backend" only use the generic context
3683 - CLEANUP: cli: make "show fd" use its own context
3684 - CLEANUP: cli: make "show env" use its own context
3685 - CLEANUP: cli: simplify the "show cli sockets" I/O handler
3686 - CLEANUP: cli: make "show cli sockets" use its own context
3687 - CLEANUP: httpclient/cli: use a locally-defined context instead of ctx.cli
3688 - CLEANUP: httpclient: do not use the appctx.ctx anymore
3689 - CLEANUP: peers: do not use appctx.ctx anymore
3690 - CLEANUP: spoe: do not use appctx.ctx anymore
3691 - BUILD: applet: mark the CLI's generic variables as deprecated
3692 - BUILD: applet: mark the appctx's st2 variable as deprecated
3693 - CLEANUP: cache: take the context out of appctx.ctx
3694 - MEDIUM: lua: move the cosocket storage outside of appctx.ctx
3695 - MINOR: lua: move the tcp service storage outside of appctx.ctx
3696 - MINOR: lua: move the http service context out of appctx.ctx
3697 - CLEANUP: cli: move the status print context into its own context
3698 - CLEANUP: stats: rename the stats state values an mark the old ones deprecated
3699 - DOC: internal: document the new cleaner approach to the appctx
3700 - MINOR: tcp: socket translate TCP_KEEPIDLE for macOs equivalent
3701 - DOC: fix typo "ant" for "and" in INSTALL
3702 - CI: dynamically determine actual version of h2spec
3703
Willy Tarreau026fef92022-04-30 14:17:51 +020037042022/04/30 : 2.6-dev8
3705 - BUG/MINOR: quic: fix use-after-free with trace on ACK consume
3706 - BUG/MINOR: rules: Forbid captures in defaults section if used by a backend
3707 - BUG/MEDIUM: rules: Be able to use captures defined in defaults section
3708 - BUG/MINOR: rules: Fix check_capture() function to use the right rule arguments
3709 - BUG/MINOR: http-act: make release_http_redir() more robust
3710 - BUG/MINOR: sample: add missing use_backend/use-server contexts in smp_resolve_args
3711 - MINOR: sample: don't needlessly call c_none() in sample_fetch_as_type()
3712 - MINOR: sample: make the bool type cast to bin
3713 - MEDIUM: backend: add new "balance hash <expr>" algorithm
3714 - MINOR: init: add global setting "fd-hard-limit" to bound system limits
3715 - BUILD: pollers: use an initcall to register the pollers
3716 - BUILD: xprt: use an initcall to register the transport layers
3717 - BUILD: thread: use initcall instead of a constructor
3718 - BUILD: http: remove the two unused constructors in rules and ana
3719 - CLEANUP: compression: move the default setting of maxzlibmem to defaults
3720 - MINOR: tree-wide: always consider EWOULDBLOCK in addition to EAGAIN
3721 - BUG/MINOR: connection: "connection:close" header added despite 'close-spread-time'
3722 - MINOR: fd: add functions to set O_NONBLOCK and FD_CLOEXEC
3723 - CLEANUP: tree-wide: use fd_set_nonblock() and fd_set_cloexec()
3724 - CLEANUP: tree-wide: remove 25 occurrences of unneeded fcntl.h
3725 - REGTESTS: fix the race conditions in be2dec.vtc ad field.vtc
3726 - REGTESTS: webstats: remove unused stats socket in /tmp
3727 - MEDIUM: httpclient: disable SSL when the ca-file couldn't be loaded
3728 - BUG/MINOR: httpclient/lua: error when the httpclient_start() fails
3729 - BUG/MINOR: ssl: free the cafile entries on deinit
3730 - BUG/MINOR: ssl: memory leak when trying to load a directory with ca-file
3731 - MEDIUM: httpclient: re-enable the verify by default
3732 - BUG/MEDIUM: ssl/cli: fix yielding in show_cafile_detail
3733 - BUILD: compiler: properly distinguish weak and global symbols
3734 - MINOR: connection: Add way to disable active connection closing during soft-stop
3735 - BUG/MEDIUM: http-ana: Fix memleak in redirect rules with ignore-empty option
3736 - CLEANUP: Destroy `http_err_chunks` members during deinit
3737 - BUG/MINOR: resolvers: Fix memory leak in resolvers_deinit()
3738 - MINOR: Call deinit_and_exit(0) for `haproxy -vv`
3739 - BUILD: fd: disguise the fd_set_nonblock/cloexec result
3740 - BUG/MINOR: pools: make sure to also destroy shared pools in pool_destroy_all()
3741 - MINOR: ssl: add a new global option "tune.ssl.hard-maxrecord"
3742 - CLEANUP: errors: also call deinit_errors_buffers() on deinit()
3743 - CLEANUP: chunks: release trash also in deinit
3744 - CLEANUP: deinit: release the pre-check callbacks
3745 - CLEANUP: deinit: release the config postparsers
3746 - CLEANUP: listeners/deinit: release accept queue tasklets on deinit
3747 - CLEANUP: connections/deinit: destroy the idle_conns tasks
3748 - BUG/MINOR: mux-quic: fix build in release mode
3749 - MINOR: mux-quic: adjust comment on emission function
3750 - MINOR: mux-quic: remove unused bogus qcc_get_stream()
3751 - BUG/MINOR: mux-quic: fix leak if cs alloc failure
3752 - MINOR: mux-quic: count local flow-control stream limit on reception
3753 - BUG/MINOR: h3: fix incomplete POST requests
3754 - BUG/MEDIUM: h3: fix use-after-free on mux Rx buffer wrapping
3755 - MINOR: mux-quic: partially copy Rx frame if almost full buf
3756 - MINOR: h3: change frame demuxing API
3757 - MINOR: mux-quic: add a app-layer context in qcs
3758 - MINOR: h3: implement h3 stream context
3759 - MINOR: h3: support DATA demux if buffer full
3760 - MINOR: quic: decode as much STREAM as possible
3761 - MINOR: quic: Improve qc_prep_pkts() flexibility
3762 - MINOR: quic: Prepare quic_frame struct duplication
3763 - MINOR: quic: Do not retransmit frames from coalesced packets
3764 - MINOR: quic: Add traces about TX frame memory releasing
3765 - MINOR: quic: process_timer() rework
3766 - MEDIUM: quic: New functions for probing rework
3767 - MEDIUM: quic: Retransmission functions rework
3768 - MEDIUM: quic: qc_requeue_nacked_pkt_tx_frms() rework
3769 - MINOR: quic: old data distinction for qc_send_app_pkt()
3770 - MINOR: quic: Mark packets as probing with old data
3771 - MEDIUM: quic: Mark copies of acknowledged frames as acknowledged
3772 - MEDIUM: quic: Enable the new datagram probing process
3773 - MINOR: quic: Do not send ACK frames when probing
3774 - BUG/MINOR: quic: Wrong returned status by qc_build_frms()
3775 - BUG/MINOR: quic: Avoid sending useless PADDING frame
3776 - BUG/MINOR: quic: Traces fix about remaining frames upon packet build failure
3777 - MINOR: quic: Wake up the mux to probe with new data
3778 - BUG/MEDIUM: quic: Possible crash on STREAM frame loss
3779 - BUG/MINOR: quic: Missing Initial packet length check
3780 - CLEANUP: quic: Rely on the packet length set by qc_lstnr_pkt_rcv()
3781 - MINOR: quic: Drop 0-RTT packets if not allowed
3782 - BUG/MINOR: httpclient/ssl: use the correct verify constant
3783 - BUG/MEDIUM: conn-stream: Don't erase endpoint flags on reset
3784 - BUG/MEDIUM: httpclient: Fix loop consuming HTX blocks from the response channel
3785 - BUG/MINOR: httpclient: Count metadata in size to transfer via htx_xfer_blks()
3786 - MINOR: httpclient: Don't use co_set_data() to decrement output
3787 - BUG/MINOR: conn_stream: do not confirm a connection from the frontend path
3788 - MEDIUM: quic: do not ACK packet with STREAM if MUX not present
3789 - MEDIUM: quic: do not ack packet with invalid STREAM
3790 - MINOR: quic: Drop 0-RTT packets without secrets
3791 - CLEANUP: quic: Remaining fprintf() debug trace
3792 - MINOR: quic: moving code for QUIC loss detection
3793 - BUG/MINOR: quic: Missing time threshold multiplifier for loss delay computation
3794 - CI: github actions: update LibreSSL to 3.5.2
3795 - SCRIPTS: announce-release: add URL of dev packages
3796
Willy Tarreau3e69fcc2022-04-23 04:38:36 +020037972022/04/23 : 2.6-dev7
3798 - BUILD: calltrace: fix wrong include when building with TRACE=1
3799 - MINOR: ssl: Use DH parameters defined in RFC7919 instead of hard coded ones
3800 - MEDIUM: ssl: Disable DHE ciphers by default
3801 - BUILD: ssl: Fix compilation with OpenSSL 1.0.2
3802 - MINOR: mux-quic: split xfer and STREAM frames build
3803 - REORG: quic: use a dedicated module for qc_stream_desc
3804 - MINOR: quic-stream: use distinct tree nodes for quic stream and qcs
3805 - MINOR: quic-stream: add qc field
3806 - MEDIUM: quic: implement multi-buffered Tx streams
3807 - MINOR: quic-stream: refactor ack management
3808 - MINOR: quic: limit total stream buffers per connection
3809 - MINOR: mux-quic: implement immediate send retry
3810 - MINOR: cfg-quic: define tune.quic.conn-buf-limit
3811 - MINOR: ssl: Add 'show ssl providers' cli command and providers list in -vv option
3812 - REGTESTS: ssl: Update error messages that changed with OpenSSLv3.1.0-dev
3813 - BUG/MEDIUM: quic: Possible crash with released mux
3814 - BUG/MINOR: mux-quic: unsubscribe on release
3815 - BUG/MINOR: mux-quic: handle null timeout
3816 - BUG/MEDIUM: logs: fix http-client's log srv initialization
3817 - BUG/MINOR: mux-quic: remove dead code in qcs_xfer_data()
3818 - DEV: stream: Fix conn-streams dump in full stream message
3819 - CLEANUP: conn-stream: Rename cs_conn_close() and cs_conn_drain_and_close()
3820 - CLEANUP: conn-stream: Rename cs_applet_release()
3821 - MINOR: conn-stream: Rely on endpoint shutdown flags to shutdown an applet
3822 - BUG/MINOR: cache: Disable cache if applet creation fails
3823 - BUG/MINOR: backend: Don't allow to change backend applet
3824 - BUG/MEDIUM: conn-stream: Set back CS to RDY state when the appctx is created
3825 - MINOR: stream: Don't needlessly detach server endpoint on early client abort
3826 - MINOR: conn-stream: Make cs_detach_* private and use cs_destroy() from outside
3827 - MINOR: init: add the pre-check callback
3828 - MEDIUM: httpclient: change the init sequence
3829 - MEDIUM: httpclient/ssl: verify required
3830 - MINOR: httpclient/mworker: disable in the master process
3831 - MEDIUM: httpclient/ssl: verify is configurable and disabled by default
3832 - BUG/MAJOR: connection: Never remove connection from idle lists outside the lock
3833 - BUG/MEDIUM: mux-quic: fix stalled POST requets
3834 - BUG/MINOR: mux-quic: fix POST with abortonclose
3835 - MINOR: task: add a new task_instant_wakeup() function
3836 - MEDIUM: queue: use tasklet_instant_wakeup() to wake tasks
3837 - DOC: remove my name from the config doc
3838
Willy Tarreaua8b10652022-04-16 12:15:47 +020038392022/04/16 : 2.6-dev6
3840 - CLEANUP: connection: reduce the with of the mux dump output
3841 - CI: Update to actions/checkout@v3
3842 - CI: Update to actions/cache@v3
3843 - DOC: adjust QUIC instruction in INSTALL
3844 - BUG/MINOR: stats: define the description' background color in dark color scheme
3845 - BUILD: ssl: add USE_ENGINE and disable the openssl engine by default
3846 - BUILD: makefile: pass USE_ENGINE to cflags
3847 - BUILD: xprt-quic: replace ERR_func_error_string() with ERR_peek_error_func()
3848 - DOC: install: document the fact that SSL engines are not enabled by default
3849 - CI: github actions: disable -Wno-deprecated
3850 - BUILD: makefile: silence unbearable OpenSSL deprecation warnings
3851 - MINOR: sock: check configured limits at the sock layer, not the listener's
3852 - MINOR: connection: add a new flag CO_FL_FDLESS on fd-less connections
3853 - MINOR: connection: add conn_fd() to retrieve the FD only when it exists
3854 - MINOR: stream: only dump connections' FDs when they are valid
3855 - MINOR: connection: use conn_fd() when displaying connection errors
3856 - MINOR: connection: skip FD-based syscalls for FD-less connections
3857 - MEDIUM: connection: panic when calling FD-specific functions on FD-less conns
3858 - MINOR: mux-quic: properly set the flags and name fields
3859 - MINOR: connection: rearrange conn_get_src/dst to be a bit more extensible
3860 - MINOR: protocol: add get_src() and get_dst() at the protocol level
3861 - MINOR: quic-sock: provide a pair of get_src/get_dst functions
3862 - MEDIUM: ssl: improve retrieval of ssl_sock_ctx and SSL detection
3863 - MEDIUM: ssl: stop using conn->xprt_ctx to access the ssl_sock_ctx
3864 - MEDIUM: xprt-quic: implement get_ssl_sock_ctx()
3865 - MEDIUM: quic: move conn->qc into conn->handle
3866 - BUILD: ssl: fix build warning with previous changes to ssl_sock_ctx
3867 - BUILD: ssl: add an unchecked version of __conn_get_ssl_sock_ctx()
3868 - MINOR: ssl: refine the error testing for fc_err and fc_err_str
3869 - BUG/MINOR: sock: do not double-close the accepted socket on the error path
3870 - CI: cirrus: switch to FreeBSD-13.0
3871 - MINOR: log: add '~' to frontend when the transport layer provides SSL
3872 - BUILD/DEBUG: lru: fix printf format in debug code
3873 - BUILD: peers: adjust some printf format to silence cppcheck
3874 - BUILD/DEBUG: hpack-tbl: fix format string in standalone debug code
3875 - BUILD/DEBUG: hpack: use unsigned int in printf format in debug code
3876 - BUILD: halog: fix some incorrect signs in printf formats for integers
3877 - BUG/MINOR: h3: fix build with DEBUG_H3
3878 - BUG/MINOR: mux-h2: do not send GOAWAY if SETTINGS were not sent
3879 - BUG/MINOR: cache: do not display expired entries in "show cache"
3880 - BUG/MINOR: mux-h1: Don't release unallocated CS on error path
3881 - MINOR: applet: Make .init callback more generic
3882 - MINOR: conn-stream: Add flags to set the type of the endpoint
3883 - MEDIUM: applet: Set the appctx owner during allocation
3884 - MAJOR: conn-stream: Invert conn-stream endpoint and its context
3885 - REORG: Initialize the conn-stream by hand in cs_init()
3886 - MEDIUM: conn-stream: Add an endpoint structure in the conn-stream
3887 - MINOR: conn-stream: Move some CS flags to the endpoint
3888 - MEDIUM: conn-stream: Be able to pass endpoint to create a conn-stream
3889 - MEDIUM: conn-stream: Pre-allocate endpoint to create CS from muxes and applets
3890 - REORG: applet: Uninline appctx_new function
3891 - MAJOR: conn-stream: Share endpoint struct between the CS and the mux/applet
3892 - MEDIUM: conn-stream: Move remaning flags from CS to endpoint
3893 - MINOR: mux-pt: Rely on the endpoint instead of the conn-stream when possible
3894 - MINOR: conn-stream: Add ISBACK conn-stream flag
3895 - MINOR: conn-stream: Add header file with util functions related to conn-streams
3896 - MEDIUM: tree-wide: Use CS util functions instead of SI ones
3897 - MINOR: stream-int/txn: Move buffer for L7 retries in the HTTP transaction
3898 - CLEANUP: http-ana: Remove http_alloc_txn() function
3899 - MINOR: stream-int/stream: Move conn_retries counter in the stream
3900 - MINOR: stream: Simplify retries counter calculation
3901 - MEDIUM: stream-int/conn-stream: Move src/dst addresses in the conn-stream
3902 - MINOR: stream-int/conn-stream: Move half-close timeout in the conn-stream
3903 - MEDIUM: stream-int/stream: Use connect expiration instead of SI expiration
3904 - MINOR: stream-int/conn-stream: Report error to the CS instead of the SI
3905 - MEDIUM: conn-stream: Use endpoint error instead of conn-stream error
3906 - MINOR: channel: Use conn-streams as channel producer and consumer
3907 - MINOR: stream-int: Remove SI_FL_KILL_CON to rely on conn-stream endpoint only
3908 - MINOR: mux-h2/mux-fcgi: Fully rely on CS_EP_KILL_CONN
3909 - MINOR: stream-int: Remove SI_FL_NOLINGER/NOHALF to rely on CS flags instead
3910 - MINOR: stream-int: Remove SI_FL_DONT_WAKE to rely on CS flags instead
3911 - MINOR: stream-int: Remove SI_FL_INDEP_STR to rely on CS flags instead
3912 - MINOR: stream-int: Remove SI_FL_SRC_ADDR to rely on stream flags instead
3913 - CLEANUP: stream-int: Remove unused SI_FL_CLEAN_ABRT flag
3914 - MINOR: stream: Only save previous connection state for the server side
3915 - MEDIUM: stream-int: Move SI err_type in the stream
3916 - MEDIUM: stream-int/conn-stream: Move stream-interface state in the conn-stream
3917 - MINOR: stream-int/stream: Move si_retnclose() in the stream scope
3918 - MINOR: stream-int/backend: Move si_connect() in the backend scope
3919 - MINOR: stream-int/conn-stream: Move si_conn_ready() in the conn-stream scope
3920 - MINOR: conn-stream/connection: Move SHR/SHW modes in the connection scope
3921 - MEDIUM: conn-stream: Be prepared to fail to attach a cs to a mux
3922 - MEDIUM: stream-int/conn-stream: Handle I/O subscriptions in the conn-stream
3923 - MINOR: conn-stream: Rename CS functions dedicated to connections
3924 - MINOR: stream-int/conn-stream: Move si_shut* and si_chk* in conn-stream scope
3925 - MEDIUM: stream-int/conn-stream: Move si_ops in the conn-stream scope
3926 - MINOR: applet: Use the CS to register and release applets instead of SI
3927 - MINOR: connection: unconst mux's get_fist_cs() callback function
3928 - MINOR: stream-int/connection: Move conn_si_send_proxy() in the connection scope
3929 - REORG: stream-int: Export si_cs_recv(), si_cs_send() and si_cs_process()
3930 - REORG: stream-int: Move si_is_conn_error() in the header file
3931 - REORG: conn-stream: Move cs_shut* and cs_chk* in cs_utils
3932 - REORG: conn-stream: Move cs_app_ops in conn_stream.c
3933 - MINOR: stream-int-conn-stream: Move si_update_* in conn-stream scope
3934 - MINOR: stream-int/stream: Move si_update_both in stream scope
3935 - MEDIUM: conn-stream/applet: Add a data callback for applets
3936 - MINOR: stream-int/conn-stream: Move stream_int_read0() in the conn-stream scope
3937 - MINOR: stream-int/conn-stream: Move stream_int_notify() in the conn-stream scope
3938 - MINOR: stream-int/conn-stream: Move si_cs_io_cb() in the conn-stream scope
3939 - MINOR: stream-int/conn-stream: Move si_sync_recv/send() in conn-stream scope
3940 - MINOR: conn-stream: Move si_conn_cb in the conn-stream scope
3941 - MINOR: stream-int/conn-stream Move si_is_conn_error() in the conn-stream scope
3942 - MINOR: stream-int/conn-stream: Move si_alloc_ibuf() in the conn-stream scope
3943 - CLEANUP: stream-int: Remove unused SI functions
3944 - MEDIUM: stream-int/conn-stream: Move blocking flags from SI to CS
3945 - MEDIUM: stream-int/conn-stream: Move I/O functions to conn-stream
3946 - REORG: stream-int/conn-stream: Move remaining functions to conn-stream
3947 - MINOR: stream: Use conn-stream to report server error
3948 - MINOR: http-ana: Use CS to perform L7 retries
3949 - MEDIUM: stream: Don't use the stream-int anymore in process_stream()
3950 - MINOR: conn-stream: Remove the stream-interface from the conn-stream
3951 - DEV: flags: No longer dump SI flags
3952 - CLEANUP: tree-wide: Remove any ref to stream-interfaces
3953 - CLEANUP: conn-stream: Don't export internal functions
3954 - DOC: conn-stream: Add comments on functions of the new CS api
3955 - MEDIUM: check: Use a new conn-stream for each health-check run
3956 - CLEANUP: muxes: Remove MX_FL_CLEAN_ABRT flag
3957 - MINOR: conn-stream: Use a dedicated function to conditionally remove a CS
3958 - CLEANUP: conn-stream: rename cs_register_applet() to cs_applet_create()
3959 - MINOR: muxes: Improve show_fd callbacks to dump endpoint flags
3960 - MINOR: mux-h1: Rely on the endpoint instead of the conn-stream when possible
3961 - BUG/MINOR: quic: Avoid starting the mux if no ALPN sent by the client
3962 - BUILD: debug: mark the __start_mem_stats/__stop_mem_stats symbols as weak
3963 - BUILD: initcall: mark the __start_i_* symbols as weak, not global
3964 - BUG/MINOR: mux-h2: do not use timeout http-keep-alive on backend side
3965 - BUG/MINOR: mux-h2: use timeout http-request as a fallback for http-keep-alive
3966 - MINOR: muxes: Don't expect to have a mux without connection in destroy callback
3967 - MINOR: muxes: Don't handle proto upgrade for muxes not supporting it
3968 - MINOR: muxes: Don't expect to call release function with no mux defined
3969 - MINOR: conn-stream: Use unsafe functions to get conn/appctx in cs_detach_endp
3970 - BUG/MEDIUM: mux-h1: Don't request more room on partial trailers
3971 - BUILD: http-client: Avoid dead code when compiled without SSL support
3972 - BUG/MINOR: mux-quic: prevent a crash in session_free on mux.destroy
3973 - BUG/MINOR: quic-sock: do not double free session on conn init failure
3974 - BUG/MINOR: quic: fix return value for error in start
3975 - MINOR: quic: emit CONNECTION_CLOSE on app init error
3976 - BUILD: sched: workaround crazy and dangerous warning in Clang 14
3977 - BUILD: compiler: use a more portable set of asm(".weak") statements
3978 - BUG/MEDIUM: stream: do not abort connection setup too early
3979 - CLEANUP: extcheck: do not needlessly preset the server's address/port
3980 - MINOR: extcheck: fill in the server's UNIX socket address when known
3981 - BUG/MEDIUM: connection: Don't crush context pointer location if it is a CS
3982 - BUG/MEDIUM: quic: properly clean frames on stream free
3983 - BUG/MEDIUM: fcgi-app: Use http_msg flags to know if C-L header can be added
3984 - BUG/MEDIUM: compression: Don't forget to update htx_sl and http_msg flags
3985 - MINOR: tcp_sample: clarifying samples support per os, for further expansion.
3986 - MINOR: tcp_sample: extend support for get_tcp_info to macOs.
3987 - SCRIPTS: announce-release: update the doc's URL
3988 - DOC: lua: update a few doc URLs
3989 - SCRIPTS: announce-release: add shortened links to pending issues
3990
Willy Tarreaud3b4cd12022-04-09 11:31:40 +020039912022/04/09 : 2.6-dev5
3992 - DOC: reflect H2 timeout changes
3993 - BUG/MEDIUM: mux-fcgi: Properly handle return value of headers/trailers parsing
3994 - BUG/MEDIUM: mux-h1: Properly detect full buffer cases during message parsing
3995 - BUG/MINOR: log: Initialize the list element when allocating a new log server
3996 - BUG/MINOR: samples: add missing context names for sample fetch functions
3997 - MINOR: management: add some basic keyword dump infrastructure
3998 - MINOR: config: add a function to dump all known config keywords
3999 - MINOR: filters: extend flt_dump_kws() to dump to stdout
4000 - MINOR: services: extend list_services() to dump to stdout
4001 - MINOR: cli: add a new keyword dump function
4002 - MINOR: acl: add a function to dump the list of known ACL keywords
4003 - MINOR: samples: add a function to list register sample fetch keywords
4004 - MINOR: sample: list registered sample converter functions
4005 - MINOR: tools: add strordered() to check whether strings are ordered
4006 - MINOR: action: add a function to dump the list of actions for a ruleset
4007 - MINOR: config: alphanumerically sort config keywords output
4008 - MINOR: sample: alphanumerically sort sample & conv keyword dumps
4009 - MINOR: acl: alphanumerically sort the ACL dump
4010 - MINOR: cli: alphanumerically sort the dump of supported commands
4011 - MINOR: filters: alphabetically sort the list of filter names
4012 - MINOR: services: alphabetically sort service names
4013 - MEDIUM: httpclient/lua: be stricter with httpclient parameters
4014 - MINOR: ssl: split the cert commit io handler
4015 - MINOR: ssl: move the cert_exts and the CERT_TYPE enum
4016 - MINOR: ssl: simplify the certificate extensions array
4017 - MINOR: ssl: export ckch_inst_rebuild()
4018 - MINOR: ssl: add "crt" in the cert_exts array
4019 - MINOR: ssl/lua: CertCache.set() allows to update an SSL certificate file
4020 - BUILD: ssl/lua: CacheCert needs OpenSSL
4021 - DOC: lua: CertCache class documentation
4022 - BUG/MEDIUM: quic: do not use qcs from quic_stream on ACK parsing
4023 - MINOR: mux-quic: return qcs instance from qcc_get_qcs
4024 - MINOR: mux-quic: reorganize qcs free
4025 - MINOR: mux-quic: define release app-ops
4026 - BUG/MINOR: h3: release resources on close
4027 - BUG/MINOR: mux-quic: ensure to free all qcs on MUX release
4028 - CLEANUP: quic: complete comment on qcs_try_to_consume
4029 - MINOR: quic: implement stream descriptor for transport layer
4030 - MEDIUM: quic: move transport fields from qcs to qc_conn_stream
4031 - MEDIUM: mux-quic: remove qcs tree node
4032 - BUG/MINOR: cli/stream: fix "shutdown session" to iterate over all threads
4033 - DOC: management: add missing dot in 9.4.1
4034 - BUG/MAJOR: mux_pt: always report the connection error to the conn_stream
4035 - DOC: remove double blanks in configuration.txt
4036 - CI: github actions: update OpenSSL to 3.0.2
4037 - BUG/MEDIUM: quic: Possible crash in ha_quic_set_encryption_secrets()
4038 - CLEANUP: quic: Remove all atomic operations on quic_conn struct
4039 - CLEANUP: quic: Remove all atomic operations on packet number spaces
4040 - MEDIUM: quic: Send ACK frames asap
4041 - BUG/MINOR: quic: Missing probing packets when coalescing
4042 - BUG/MINOR: quic: Discard Initial packet number space only one time
4043 - MINOR: quic: Do not display any timer value from process_timer()
4044 - BUG/MINOR: quic: Do not probe from an already probing packet number space
4045 - BUG/MINOR: quic: Non duplicated frames upon fast retransmission
4046 - BUG/MINOR: quic: Too much prepared retransmissions due to anti-amplification
4047 - MINOR: quic: Useless call to SSL_CTX_set_default_verify_paths()
4048 - MINOR: quic: Add traces about list of frames
4049 - BUG/MINOR: h3: Missing wait event struct field initialization
4050 - BUG/MINOR: quic: QUIC TLS secrets memory leak
4051 - BUG/MINOR: quic: Missing ACK range deallocations
4052 - BUG/MINOR: quic: Missing TX packet deallocations
4053 - CLEANUP: hpack: be careful about integer promotion from uint8_t
4054 - OPTIM: hpack: read 32 bits at once when possible.
4055 - MEDIUM: ssl: allow loading of a directory with the ca-file directive
4056 - BUG/MINOR: ssl: continue upon error when opening a directory w/ ca-file
4057 - MINOR: ssl: ca-file @system-ca loads the system trusted CA
4058 - DOC: configuration: add the ca-file changes
4059 - MINOR: sample: converter: Add add_item convertor
4060 - BUG/MINOR: ssl: handle X509_get_default_cert_dir() returning NULL
4061 - BUG/MINOR: ssl/cli: Remove empty lines from CLI output
4062 - MINOR: httpclient: enable request buffering
4063 - MEDIUM: httpclient: enable l7-retry
4064 - BUG/MINOR: httpclient: end callback in applet release
4065 - MINOR: quic: Add draining connection state.
4066 - MINOR: quic: Add closing connection state
4067 - BUG/MEDIUM: quic: ensure quic-conn survives to the MUX
4068 - CLEANUP: quic: use static qualifer on quic_close
4069 - CLEANUP: mux-quic: remove unused QC_CF_CC_RECV
4070 - BUG/MINOR: fix memleak on quic-conn streams cleaning
4071 - MINOR: mux-quic: factorize conn-stream attach
4072 - MINOR: mux-quic: adjust timeout to accelerate closing
4073 - MINOR: mux-quic: define is_active app-ops
4074 - MINOR: mux-quic: centralize send operations in qc_send
4075 - MEDIUM: mux-quic: report CO_FL_ERROR on send
4076 - MEDIUM: mux-quic: report errors on conn-streams
4077 - MEDIUM: quic: report closing state for the MUX
4078 - BUG/MINOR: fcgi-app: Don't add C-L header on response to HEAD requests
4079 - BUG/MEDIUM: stats: Be sure to never set EOM flag on an empty HTX message
4080 - BUG/MEDIUM: hlua: Don't set EOM flag on an empty HTX message in HTTP applet
4081 - BUG/MEDIUM: promex: Be sure to never set EOM flag on an empty HTX message
4082 - BUG/MEDIUM: mux-h1: Set outgoing message to DONE when payload length is reached
4083 - BUG/MINOR: http_client: Don't add input data on an empty request buffer
4084 - BUG/MEDIUM: http-conv: Fix url_enc() to not crush const samples
4085 - BUG/MEDIUM: http-act: Don't replace URI if path is not found or invalid
4086 - CLEANUP: mux-quic: remove uneeded TODO in qc_detach
4087 - BUG/MEDIUM: mux-quic: properly release conn-stream on detach
4088 - BUG/MINOR: quic: set the source not the destination address on accept()
4089 - BUG/MEDIUM: quic: Possible crash from quic_free_arngs()
4090 - MINOR: quic_tls: Add reusable cipher contexts to QUIC TLS contexts
4091 - MINOR: quic_tls: Stop hardcoding cipher IV lengths
4092 - CLEANUP: quic: Do not set any cipher/group from ssl_quic_initial_ctx()
4093 - MINOR: quic: Add short packet key phase bit values to traces
4094 - MINOR: quic_tls: Make key update use of reusable cipher contexts
4095 - BUG/MINOR: opentracing: setting the return value in function flt_ot_var_set()
4096 - BUG/BUILD: opentracing: fixed OT_DEFINE variable setting
4097 - EXAMPLES: opentracing: refined shell scripts for testing filter performance
4098 - DOC: opentracing: corrected comments in function descriptions
4099 - CLEANUP: opentracing: removed unused function flt_ot_var_unset()
4100 - CLEANUP: opentracing: removed unused function flt_ot_var_get()
4101 - Revert "MINOR: opentracing: change the scope of the variable 'ot.uuid' from 'sess' to 'txn'"
4102 - MINOR: opentracing: only takes the variables lock on shared entries
4103 - CLEANUP: opentracing: added flt_ot_smp_init() function
4104 - CLEANUP: opentracing: added variable to store variable length
4105 - MINOR: opentracing: improved normalization of context variable names
4106 - DEBUG: opentracing: show return values of all functions in the debug output
4107 - CLEANUP: opentracing: added FLT_OT_PARSE_INVALID_enum enum
4108 - DEBUG: opentracing: display the contents of the err variable after setting
4109 - MAJOR: opentracing: reenable usage of vars to transmit opentracing context
4110 - Revert "BUILD: opentracing: display warning in case of using OT_USE_VARS at compile time"
4111 - MEDIUM: global: Add a "close-spread-time" option to spread soft-stop on time window
4112
Willy Tarreau0541c2b2022-03-26 08:31:33 +010041132022/03/26 : 2.6-dev4
4114 - BUG/MEDIUM: httpclient: don't consume data before it was analyzed
4115 - CLEANUP: htx: remove unused co_htx_remove_blk()
4116 - BUG/MINOR: httpclient: consume partly the blocks when necessary
4117 - BUG/MINOR: httpclient: remove the UNUSED block when parsing headers
4118 - BUG/MEDIUM: httpclient: must manipulate head, not first
4119 - REGTESTS: fix the race conditions in be2hex.vtc
4120 - BUG/MEDIUM: quic: Blocked STREAM when retransmitted
4121 - BUG/MAJOR: quic: Possible crash with full congestion control window
4122 - BUG/MINOR: httpclient/lua: stuck when closing without data
4123 - BUG/MEDIUM: applet: Don't call .release callback function twice
4124 - BUG/MEDIUM: cli/debug: Properly get the stream-int in all debug I/O handlers
4125 - BUG/MEDIUM: sink: Properly get the stream-int in appctx callback functions
4126 - DEV: udp: switch parser to getopt() instead of positional arguments
4127 - DEV: udp: add support for random packet corruption
4128 - MINOR: server: export server_parse_sni_expr() function
4129 - BUG/MINOR: httpclient: send the SNI using the host header
4130 - BUILD: httpclient: fix build without SSL
4131 - BUG/MINOR: server/ssl: free the SNI sample expression
4132 - BUG/MINOR: logs: fix logsrv leaks on clean exit
4133 - MINOR: actions: add new function free_act_rule() to free a single rule
4134 - BUG/MINOR: tcp-rules: completely free incorrect TCP rules on error
4135 - BUG/MINOR: http-rules: completely free incorrect TCP rules on error
4136 - BUG/MINOR: httpclient: only check co_data() instead of HTTP_MSG_DATA
4137 - BUG/MINOR: httpclient: process the response when received before the end of the request
4138 - BUG/MINOR: httpclient: CF_SHUTW_NOW should be tested with channel_is_empty()
4139 - CI: github actions: switch to LibreSSL-3.5.1
4140 - BUG/MEDIUM: mux-h1: only turn CO_FL_ERROR to CS_FL_ERROR with empty ibuf
4141 - BUG/MEDIUM: stream-int: do not rely on the connection error once established
4142 - BUG/MEDIUM: trace: avoid race condition when retrieving session from conn->owner
4143 - MEDIUM: mux-h2: slightly relax timeout management rules
4144 - BUG/MEDIUM: mux-h2: make use of http-request and keep-alive timeouts
4145 - BUG/MINOR: rules: Initialize the list element when allocating a new rule
4146 - BUG/MINOR: http-rules: Don't free new rule on allocation failure
4147 - DEV: coccinelle: Fix incorrect replacement in ist.cocci
4148 - CLEANUP: Reapply ist.cocci with `--include-headers-for-types --recursive-includes`
4149 - DEV: coccinelle: Add a new pattern to ist.cocci
4150 - CLEANUP: Reapply ist.cocci
4151 - REGTESTS: Do not use REQUIRE_VERSION for HAProxy 2.5+
4152 - MINOR: quic: Code factorization (TX buffer reuse)
4153 - CLEANUP: quic: "largest_acked_pn" pktns struc member moving
4154 - MEDIUM: quic: Limit the number of ACK ranges
4155 - MEDIUM: quic: Rework of the TX packets memory handling
4156 - BUG/MINOR: quic: Possible crash in parse_retry_token()
4157 - BUG/MINOR: quic: Possible leak in quic_build_post_handshake_frames()
4158 - BUG/MINOR: quic: Unsent frame because of qc_build_frms()
4159 - BUG/MINOR: mux-quic: Access to empty frame list from qc_send_frames()
4160 - BUG/MINOR: mux-quic: Missing I/O handler events initialization
4161 - BUG/MINOR: quic: Missing TX packet initializations
4162 - BUG/MINOR: quic: 1RTT packets ignored after mux was released
4163 - BUG/MINOR: quic: Incorrect peer address validation
4164 - BUG/MINOR: quic: Non initialized variable in quic_build_post_handshake_frames()
4165 - BUG/MINOR: quic: Wrong TX packet related counters handling
4166 - MEDIUM: mqtt: support mqtt_is_valid and mqtt_field_value converters for MQTTv3.1
4167 - DOC: config: Explictly add supported MQTT versions
4168 - MINOR: quic: Add traces about stream TX buffer consumption
4169 - MINOR: quic: Add traces in qc_set_timer() (scheduling)
4170 - CLEANUP: mux-quic: change comment style to not mess with git conflict
4171 - CLEANUP: mux-quic: adjust comment for coding-style
4172 - MINOR: mux-quic: complete trace when stream is not found
4173 - MINOR: mux-quic: add comments for send functions
4174 - MINOR: mux-quic: use shorter name for flow-control fields
4175 - MEDIUM: mux-quic: respect peer bidirectional stream data limit
4176 - MEDIUM: mux-quic: respect peer connection data limit
4177 - MINOR: mux-quic: support MAX_STREAM_DATA frame parsing
4178 - MINOR: mux-quic: support MAX_DATA frame parsing
4179 - BUILD: stream-int: avoid a build warning when DEBUG is empty
4180 - BUG/MINOR: quic: Wrong buffer length passed to generate_retry_token()
4181 - BUG/MINOR: tools: fix url2sa return value with IPv4
4182 - MINOR: mux-quic: convert fin on push-frame as boolean
4183 - BUILD: quic: add missing includes
4184 - REORG: quic: use a dedicated quic_loss.c
4185 - MINOR: mux-quic: declare the qmux trace module
4186 - MINOR: mux-quic: replace printfs by traces
4187 - MINOR: mux-quic: add trace event for frame sending
4188 - MINOR: mux-quic: add trace event for qcs_push_frame
4189 - MINOR: mux-quic: activate qmux traces on stdout via macro
4190 - BUILD: qpack: fix unused value when not using DEBUG_HPACK
4191 - CLEANUP: qpack: suppress by default stdout traces
4192 - CLEANUP: h3: suppress by default stdout traces
4193 - BUG/MINOR: tools: url2sa reads too far when no port nor path
4194
Willy Tarreaubc8b7a12022-03-11 18:09:24 +010041952022/03/11 : 2.6-dev3
4196 - DEBUG: rename WARN_ON_ONCE() to CHECK_IF()
4197 - DEBUG: improve BUG_ON output message accuracy
4198 - DEBUG: implement 4 levels of choices between warn and crash.
4199 - DEBUG: add two new macros to enable debugging in hot paths
4200 - DEBUG: buf: replace some sensitive BUG_ON() with BUG_ON_HOT()
4201 - DEBUG: buf: add BUG_ON_HOT() to most buffer management functions
4202 - MINOR: channel: don't use co_set_data() to decrement output
4203 - DEBUG: channel: add consistency checks using BUG_ON_HOT() in some key functions
4204 - MINOR: conn-stream: Improve API to have safe/unsafe accessors
4205 - MEDIUM: tree-wide: Use unsafe conn-stream API when it is relevant
4206 - CLEANUP: stream-int: Make si_cs_send() function static
4207 - REORG: stream-int: Uninline si_sync_recv() and make si_cs_recv() private
4208 - BUG/MEDIUM: mux-fcgi: Don't rely on SI src/dst addresses for FCGI health-checks
4209 - BUG/MEDIUM: htx: Fix a possible null derefs in htx_xfer_blks()
4210 - REGTESTS: fix the race conditions in normalize_uri.vtc
4211 - DEBUG: stream-int: Fix BUG_ON used to test appctx in si_applet_ops callbacks
4212 - BUILD: debug: fix build warning on older compilers around DEBUG_STRICT_ACTION
4213 - CLEANUP: connection: Indicate unreachability to the compiler in conn_recv_proxy
4214 - MINOR: connection: Transform safety check in PROXYv2 parsing into BUG_ON()
4215 - DOC: install: it's DEBUG_CFLAGS, not DEBUG, which is set to -g
4216 - DOC: install: describe the DEP variable
4217 - DOC: install: describe how to choose options used in the DEBUG variable
4218 - MINOR: queue: Replace if() + abort() with BUG_ON()
4219 - CLEANUP: adjust indentation in bidir STREAM handling function
4220 - MINOR: quic: simplify copy of STREAM frames to RX buffer
4221 - MINOR: quic: handle partially received buffered stream frame
4222 - MINOR: mux-quic: define flag for last received frame
4223 - BUG/MINOR: quic: support FIN on Rx-buffered STREAM frames
4224 - MEDIUM: quic: rearchitecture Rx path for bidirectional STREAM frames
4225 - REGTESTS: fix the race conditions in secure_memcmp.vtc
4226 - CLEANUP: stream: Remove useless tests on conn-stream in stream_dump()
4227 - BUILD: ssl: another build warning on LIBRESSL_VERSION_NUMBER
4228 - MINOR: quic: Ensure PTO timer is not set in the past
4229 - MINOR: quic: Post handshake I/O callback switching
4230 - MINOR: quic: Drop the packets of discarded packet number spaces
4231 - CLEANUP: quic: Useless tests in qc_try_rm_hp()
4232 - CLEANUP: quic: Indentation fix in qc_prep_pkts()
4233 - MINOR: quic: Assemble QUIC TLS flags at the same level
4234 - BUILD: conn_stream: avoid null-deref warnings on gcc 6
4235 - BUILD: connection: do not declare register_mux_proto() inline
4236 - BUILD: http_rules: do not declare http_*_keywords_registre() inline
4237 - BUILD: trace: do not declare trace_registre_source() inline
4238 - BUILD: tcpcheck: do not declare tcp_check_keywords_register() inline
4239 - DEBUG: reduce the footprint of BUG_ON() calls
4240 - BUG/MEDIUM: httpclient/lua: infinite appctx loop with POST
4241 - BUG/MINOR: pool: always align pool_heads to 64 bytes
4242 - DEV: udp: add a tiny UDP proxy for testing
4243 - DEV: udp: implement pseudo-random reordering/loss
4244 - DEV: udp: add an optional argument to set the prng seed
4245 - BUG/MINOR: quic: fix segfault on CC if mux uninitialized
4246 - BUG/MEDIUM: pools: fix ha_free() on area in the process of being freed
4247 - CLEANUP: tree-wide: remove a few rare non-ASCII chars
4248 - CI: coverity: simplify debugging options
4249 - CLEANUP: quic: complete ABORT_NOW with a TODO comment
4250 - MINOR: quic: qc_prep_app_pkts() implementation
4251 - MINOR: quic: Send short packet from a frame list
4252 - MINOR: quic: Make qc_build_frms() build ack-eliciting frames from a list
4253 - MINOR: quic: Export qc_send_app_pkts()
4254 - MINOR: mux-quic: refactor transport parameters init
4255 - MINOR: mux-quic: complete functions to detect stream type
4256 - MINOR: mux-quic: define new unions for flow-control fields
4257 - MEDIUM: mux-quic: use direct send transport API for STREAMs
4258 - MINOR: mux-quic: retry send opportunistically for remaining frames
4259 - MEDIUM: mux-quic: implement MAX_STREAMS emission for bidir streams
4260 - BUILD: fix kFreeBSD build.
4261 - MINOR: quic: Retry on qc_build_pkt() failures
4262 - BUG/MINOR: quic: Missing recovery start timer reset
4263 - CLEANUP: quic: Remove QUIC path manipulations out of the congestion controller
4264 - MINOR: quic: Add a "slow start" callback to congestion controller
4265 - MINOR: quic: Persistent congestion detection outside of controllers
4266 - CLEANUP: quic: Remove useless definitions from quic_cc_event struct
4267 - BUG/MINOR: quic: Confusion betwen "in_flight" and "prep_in_flight" in quic_path_prep_data()
4268 - MINOR: quic: More precise window update calculation
4269 - CLEANUP: quic: Remove window redundant variable from NewReno algorithm state struct
4270 - MINOR: quic: Add quic_max_int_by_size() function
4271 - BUG/MAJOR: quic: Wrong quic_max_available_room() returned value
4272 - MINOR: pools: add a new global option "no-memory-trimming"
4273 - BUG/MINOR: add missing modes in proxy_mode_str()
4274 - BUG/MINOR: cli: shows correct mode in "show sess"
4275 - BUG/MEDIUM: quic: do not drop packet on duplicate stream/decoding error
4276 - MINOR: stats: Add dark mode support for socket rows
4277 - BUILD: fix recent build breakage of freebsd caused by kFreeBSD build fix
4278 - BUG/MINOR: httpclient: Set conn-stream/channel EOI flags at the end of request
4279 - BUG/MINOR: hlua: Set conn-stream/channel EOI flags at the end of request
4280 - BUG/MINOR: stats: Set conn-stream/channel EOI flags at the end of request
4281 - BUG/MINOR: cache: Set conn-stream/channel EOI flags at the end of request
4282 - BUG/MINOR: promex: Set conn-stream/channel EOI flags at the end of request
4283 - BUG/MEDIUM: stream: Use the front analyzers for new listener-less streams
4284 - DEBUG: cache: Update underlying buffer when loading HTX message in cache applet
4285 - BUG/MEDIUM: mcli: Properly handle errors and timeouts during reponse processing
4286 - DEBUG: stream: Add the missing descriptions for stream trace events
4287 - DEBUG: stream: Fix stream trace message to print response buffer state
4288 - MINOR: proxy: Store monitor_uri as a `struct ist`
4289 - MINOR: proxy: Store fwdfor_hdr_name as a `struct ist`
4290 - MINOR: proxy: Store orgto_hdr_name as a `struct ist`
4291 - MEDIUM: proxy: Store server_id_hdr_name as a `struct ist`
4292 - CLEANUP: fcgi: Replace memcpy() on ist by istcat()
4293 - CLEANUP: fcgi: Use `istadv()` in `fcgi_strm_send_params`
4294 - BUG/MAJOR: mux-pt: Always destroy the backend connection on detach
4295 - DOC: sample fetch methods: move distcc_* to the right locations
4296 - MINOR: rules: record the last http/tcp rule that gave a final verdict
4297 - MINOR: stream: add "last_rule_file" and "last_rule_line" samples
4298 - BUG/MINOR: session: fix theoretical risk of memleak in session_accept_fd()
4299 - MINOR: quic: Add max_idle_timeout advertisement handling
4300 - MEDIUM: quic: Remove the QUIC connection reference counter
4301 - BUG/MINOR: quic: ACK_REQUIRED and ACK_RECEIVED flag collision
4302 - BUG/MINOR: quic: Missing check when setting the anti-amplification limit as reached
4303 - MINOR: quic: Add a function to compute the current PTO
4304 - MEDIUM: quic: Implement the idle timeout feature
4305 - BUG/MEDIUM: quic: qc_prep_app_pkts() retries on qc_build_pkt() failures
4306 - CLEANUP: quic: Comments fix for qc_prep_(app)pkts() functions
4307 - MINOR: mux-quic: prevent push frame for unidir streams
4308 - MINOR: mux-quic: improve opportunistic retry sending for STREAM frames
4309 - MINOR: quic: implement sending confirmation
4310 - MEDIUM: mux-quic: improve bidir STREAM frames sending
4311 - MEDIUM: check: do not auto configure SSL/PROXY for dynamic servers
4312 - REGTESTS: server: test SSL/PROXY with checks for dynamic servers
4313 - MEDIUM: server: remove experimental-mode for dynamic servers
4314 - BUG/MINOR: buffer: fix debugging condition in b_peek_varint()
4315
Willy Tarreau3b1d1902022-02-25 17:12:11 +010043162022/02/25 : 2.6-dev2
4317 - DOC: management: rework the Master CLI section
4318 - DOC: management: add expert and experimental mode in 9.4.1
4319 - CLEANUP: cleanup a commentary in pcli_parse_request()
4320 - BUG/MINOR: mworker/cli: don't display help on master applet
4321 - MINOR: mworker/cli: mcli-debug-mode enables every command
4322 - MINOR: mworker/cli: add flags in the prompt
4323 - BUG/MINOR: httpclient: Revisit HC request and response buffers allocation
4324 - BUG/MEDIUM: httpclient: Xfer the request when the stream is created
4325 - MINOR: httpclient: Don't limit data transfer to 1024 bytes
4326 - BUILD: ssl: adjust guard for X509_get_X509_PUBKEY(x)
4327 - REGTESTS: ssl: skip show_ssl_ocspresponse.vtc when BoringSSL is used
4328 - MINOR: quic: Do not modify a marked as consumed datagram
4329 - MINOR: quic: Wrong datagram buffer passed to quic_lstnr_dgram_dispatch()
4330 - MINOR: quic: Remove a useless test in quic_get_dgram_dcid()
4331 - BUG/MINOR: ssl: Remove empty lines from "show ssl ocsp-response <id>" output
4332 - CLEANUP: ssl: Remove unused ssl_sock_create_cert function
4333 - MINOR: ssl: Use high level OpenSSL APIs in sha2 converter
4334 - MINOR: ssl: Remove EC_KEY related calls when preparing SSL context
4335 - REGTESTS: ssl: Add test for "curves" and "ecdhe" SSL options
4336 - MINOR: ssl: Remove EC_KEY related calls when creating a certificate
4337 - REGTESTS: ssl: Add test for "generate-certificates" SSL option
4338 - MINOR: ssl: Remove call to SSL_CTX_set_tlsext_ticket_key_cb with OpenSSLv3
4339 - MINOR: ssl: Remove call to HMAC_Init_ex with OpenSSLv3
4340 - MINOR: h3: hardcode the stream id of control stream
4341 - MINOR: mux-quic: remove quic_transport_params_update
4342 - MINOR: quic: rename local tid variable
4343 - MINOR: quic: remove unused xprt rcv_buf operation
4344 - MINOR: quic: take out xprt snd_buf operation
4345 - CI: enable QUIC for Coverity scan
4346 - BUG/MINOR: mworker: does not erase the pidfile upon reload
4347 - MINOR: ssl: Remove call to ERR_func_error_string with OpenSSLv3
4348 - MINOR: ssl: Remove call to ERR_load_SSL_strings with OpenSSLv3
4349 - REGTESTS: ssl: Add tests for DH related options
4350 - MINOR: ssl: Create HASSL_DH wrapper structure
4351 - MINOR: ssl: Add ssl_sock_get_dh_from_bio helper function
4352 - MINOR: ssl: Factorize ssl_get_tmp_dh and append a cbk to its name
4353 - MINOR: ssl: Add ssl_sock_set_tmp_dh helper function
4354 - MINOR: ssl: Add ssl_sock_set_tmp_dh_from_pkey helper function
4355 - MINOR: ssl: Add ssl_new_dh_fromdata helper function
4356 - MINOR: ssl: Build local DH of right size when needed
4357 - MINOR: ssl: Set default dh size to 2048
4358 - MEDIUM: ssl: Replace all DH objects by EVP_PKEY on OpenSSLv3 (via HASSL_DH type)
4359 - MINOR: ssl: Remove calls to SSL_CTX_set_tmp_dh_callback on OpenSSLv3
4360 - MINOR: quic: Remove an RX buffer useless lock
4361 - MINOR: quic: Variable used before being checked in ha_quic_add_handshake_data()
4362 - MINOR: quic: EINTR error ignored
4363 - MINOR: quic: Potential overflow expression in qc_parse_frm()
4364 - MINOR: quic: Possible overflow in qpack_get_varint()
4365 - CLEANUP: h3: Unreachable target in h3_uqs_init()
4366 - MINOR: quic: Possible memleak in qc_new_conn()
4367 - MINOR: quic: Useless statement in quic_crypto_data_cpy()
4368 - BUG/MEDIUM: pools: ensure items are always large enough for the pool_cache_item
4369 - BUG/MINOR: pools: always flush pools about to be destroyed
4370 - CLEANUP: pools: don't needlessly set a call mark during refilling of caches
4371 - DEBUG: pools: add extra sanity checks when picking objects from a local cache
4372 - DEBUG: pools: let's add reverse mapping from cache heads to thread and pool
4373 - DEBUG: pools: replace the link pointer with the caller's address on pool_free()
4374 - BUG/MAJOR: sched: prevent rare concurrent wakeup of multi-threaded tasks
4375 - MINOR: quic: use a global dghlrs for each thread
4376 - BUG/MEDIUM: quic: fix crash on CC if mux not present
4377 - MINOR: qpack: fix typo in trace
4378 - BUG/MINOR: quic: fix FIN stream signaling
4379 - BUG/MINOR: h3: fix the header length for QPACK decoding
4380 - MINOR: h3: remove transfer-encoding header
4381 - MINOR: h3: add documentation on h3_decode_qcs
4382 - MINOR: h3: set properly HTX EOM/BODYLESS on HEADERS parsing
4383 - MINOR: mux-quic: implement rcv_buf
4384 - MINOR: mux-quic: set EOS on rcv_buf
4385 - MINOR: h3: set CS_FL_NOT_FIRST
4386 - MINOR: h3: report frames bigger than rx buffer
4387 - MINOR: h3: extract HEADERS parsing in a dedicated function
4388 - MINOR: h3: implement DATA parsing
4389 - MINOR: quic: Wrong smoothed rtt initialization
4390 - MINOR: quic: Wrong loss delay computation
4391 - MINOR: quic: Code never reached in qc_ssl_sess_init()
4392 - MINOR: quic: ha_quic_set_encryption_secrets without server specific code
4393 - MINOR: quic: Avoid warning about NULL pointer dereferences
4394 - MINOR: quic: Useless test in quic_lstnr_dghdlr()
4395 - MINOR: quic: Non checked returned value for cs_new() in hq_interop_decode_qcs()
4396 - MINOR: h3: Dead code in h3_uqs_init()
4397 - MINOR: quic: Non checked returned value for cs_new() in h3_decode_qcs()
4398 - MINOR: quic: Possible frame parsers array overrun
4399 - MINOR: quic: Do not retransmit too much packets.
4400 - MINOR: quic: Move quic_rxbuf_pool pool out of xprt part
4401 - MINOR: h3: report error on HEADERS/DATA parsing
4402 - BUG/MINOR: jwt: Double free in deinit function
4403 - BUG/MINOR: jwt: Missing pkey free during cleanup
4404 - BUG/MINOR: jwt: Memory leak if same key is used in multiple jwt_verify calls
4405 - BUG/MINOR: httpclient/cli: display junk characters in vsn
4406 - MINOR: h3: remove unused return value on decode_qcs
4407 - BUG/MAJOR: http/htx: prevent unbounded loop in http_manage_server_side_cookies
4408 - BUG/MAJOR: spoe: properly detach all agents when releasing the applet
4409 - REGTESTS: server: close an occasional race on dynamic_server_ssl.vtc
4410 - REGTESTS: peers: leave a bit more time to peers to synchronize
4411 - BUG/MEDIUM: h2/hpack: fix emission of HPACK DTSU after settings change
4412 - BUG/MINOR: mux-h2: update the session's idle delay before creating the stream
4413 - BUG/MINOR: httpclient: reinit flags in httpclient_start()
4414 - BUG/MINOR: mailers: negotiate SMTP, not ESMTP
4415 - MINOR: httpclient: sets an alternative destination
4416 - MINOR: httpclient/lua: add 'dst' optionnal field
4417 - BUG/MINOR: ssl: Add missing return value check in ssl_ocsp_response_print
4418 - BUG/MINOR: ssl: Fix leak in "show ssl ocsp-response" CLI command
4419 - BUG/MINOR: ssl: Missing return value check in ssl_ocsp_response_print
4420 - CLEANUP: httpclient/cli: fix indentation alignment of the help message
4421 - BUG/MINOR: tools: url2sa reads ipv4 too far
4422 - BUG/MEDIUM: httpclient: limit transfers to the maximum available room
4423 - DEBUG: buffer: check in __b_put_blk() whether the buffer room is respected
4424 - MINOR: mux-quic: fix a possible null dereference in qc_timeout_task
4425 - BUG/MEDIUM: htx: Be sure to have a buffer to perform a raw copy of a message
4426 - BUG/MEDIUM: mux-h1: Don't wake h1s if mux is blocked on lack of output buffer
4427 - BUG/MAJOR: mux-h2: Be sure to always report HTX parsing error to the app layer
4428 - DEBUG: stream-int: Check CS_FL_WANT_ROOM is not set with an empty input buffer
4429 - MINOR: quic: do not modify offset node if quic_rx_strm_frm in tree
4430 - MINOR: h3: fix compiler warning variable set but not used
4431 - MINOR: mux-quic: fix uninitialized return on qc_send
4432 - MINOR: quic: fix handling of out-of-order received STREAM frames
4433 - MINOR: pools: mark most static pool configuration variables as read-mostly
4434 - CLEANUP: pools: remove the now unused pool_is_crowded()
4435 - REGTESTS: fix the race conditions in 40be_2srv_odd_health_checks
4436 - BUG/MEDIUM: stream: Abort processing if response buffer allocation fails
4437 - MINOR: httpclient/lua: ability to set a server timeout
4438 - BUG/MINOR: httpclient/lua: missing pop for new timeout parameter
4439 - DOC: httpclient/lua: fix the type of the dst parameter
4440 - CLEANUP: httpclient: initialize the client in stage INIT not REGISTER
4441 - CLEANUP: muxes: do not use a dynamic trash in list_mux_protos()
4442 - CLEANUP: vars: move the per-process variables initialization to vars.c
4443 - CLEANUP: init: remove the ifdef on HAPROXY_MEMMAX
4444 - MINOR: pools: disable redundant poisonning on pool_free()
4445 - MINOR: pools: introduce a new pool_debugging global variable
4446 - MINOR: pools: switch the fail-alloc test to runtime only
4447 - MINOR: pools: switch DEBUG_DONT_SHARE_POOLS to runtime
4448 - MINOR: pools: add a new debugging flag POOL_DBG_COLD_FIRST
4449 - MINOR: pools: add a new debugging flag POOL_DBG_INTEGRITY
4450 - MINOR: pools: make the global pools a runtime option.
4451 - MEDIUM: pools: replace CONFIG_HAP_POOLS with a runtime "NO_CACHE" flag.
4452 - MINOR: pools: store the allocated size for each pool
4453 - MINOR: pools: get rid of POOL_EXTRA
4454 - MINOR: pools: replace DEBUG_POOL_TRACING with runtime POOL_DBG_CALLER
4455 - MINOR: pools: replace DEBUG_MEMORY_POOLS with runtime POOL_DBG_TAG
4456 - MINOR: pools: add a debugging flag for memory poisonning option
4457 - MEDIUM: initcall: move STG_REGISTER earlier
4458 - MEDIUM: init: split the early initialization in its own function
4459 - MINOR: init: extract args parsing to their own function
4460 - MEDIUM: init: handle arguments earlier
4461 - MINOR: pools: delegate parsing of command line option -dM to a new function
4462 - MINOR: pools: support setting debugging options using -dM
4463 - BUILD: makefile: enable both DEBUG_STRICT and DEBUG_MEMORY_POOLS by default
4464 - CI: github: enable pool debugging by default
4465 - DOC: Fix usage/examples of deprecated ACLs
4466 - DOC: internal: update the pools API to mention boot-time settings
4467 - DOC: design: add design thoughts for later simplification of the pools
4468 - DOC: design: commit the temporary design notes on thread groups
4469 - MINOR: stream-int: Handle appctx case first when releasing the endpoint
4470 - MINOR: connection: Be prepared to handle conn-stream with no connection
4471 - MINOR: stream: Handle appctx case first when creating a new stream
4472 - MINOR: connection: Add a function to detach a conn-stream from the connection
4473 - MINOR: stream-int: Add function to reset a SI endpoint
4474 - MINOR: stream-int: Add function to attach a connection to a SI
4475 - MINOR: stream-int: Be able to allocate a CS without connection
4476 - MEDIUM: stream: No longer release backend conn-stream on connection retry
4477 - MEDIUM: stream: Allocate backend CS when the stream is created
4478 - REORG: conn_stream: move conn-stream stuff in dedicated files
4479 - MEDIUM: conn-stream: No longer access connection field directly
4480 - MEDIUM: conn-stream: Be prepared to use an appctx as conn-stream endpoint
4481 - MAJOR: conn_stream/stream-int: move the appctx to the conn-stream
4482 - MEDIUM: applet: Set the conn-stream as appctx owner instead of the stream-int
4483 - MEDIUM: conn_stream: Add a pointer to the app object into the conn-stream
4484 - MINOR: stream: Add pointer to front/back conn-streams into stream struct
4485 - MINOR: stream: Slightly rework stream_new to separate CS/SI initialization
4486 - MINOR: stream-int: Always access the stream-int via the conn-stream
4487 - MINOR: backend: Always access the stream-int via the conn-stream
4488 - MINOR: stream: Always access the stream-int via the conn-stream
4489 - MINOR: http-ana: Always access the stream-int via the conn-stream
4490 - MINOR: cli: Always access the stream-int via the conn-stream
4491 - MINOR: log: Always access the stream-int via the conn-stream
4492 - MINOR: frontend: Always access the stream-int via the conn-stream
4493 - MINOR: proxy: Always access the stream-int via the conn-stream
4494 - MINOR: peers: Always access the stream-int via the conn-stream
4495 - MINOR: debug: Always access the stream-int via the conn-stream
4496 - MINOR: hlua: Always access the stream-int via the conn-stream
4497 - MINOR: cache: Always access the stream-int via the conn-stream
4498 - MINOR: dns: Always access the stream-int via the conn-stream
4499 - MINOR: http-act: Always access the stream-int via the conn-stream
4500 - MINOR: httpclient: Always access the stream-int via the conn-stream
4501 - MINOR: tcp-act: Always access the stream-int via the conn-stream
4502 - MINOR: sink: Always access the stream-int via the conn-stream
4503 - MINOR: conn-stream: Rename cs_detach() to cs_detach_endp()
4504 - CLEANUP: conn-stream: Don't export conn-stream pool
4505 - MAJOR: stream/conn_stream: Move the stream-interface into the conn-stream
4506 - CLEANUP: stream-int: rename si_reset() to si_init()
4507 - MINOR: conn-stream: Release a CS when both app and endp are detached
4508 - MINOR: stream: Don't destroy conn-streams but detach app and endp
4509 - MAJOR: check: Use a persistent conn-stream for health-checks
4510 - CLEANUP: conn-stream: Remove cs_destroy()
4511 - CLEANUP: backend: Don't export connect_server anymore
4512 - BUG/MINOR: h3/hq_interop: Fix CS and stream creation
4513 - BUILD: tree-wide: Avoid warnings about undefined entities retrieved from a CS
4514 - BUG/MINOR: proxy: preset the error message pointer to NULL in parse_new_proxy()
4515 - BUG/MEDIUM: quic: fix received ACK stream calculation
4516 - BUILD: stream: fix build warning with older compilers
4517 - BUG/MINOR: debug: fix get_tainted() to properly read an atomic value
4518 - DEBUG: move the tainted stuff to bug.h for easier inclusion
4519 - DEBUG: cleanup back trace generation
4520 - DEBUG: cleanup BUG_ON() configuration
4521 - DEBUG: mark ABORT_NOW() as unreachable
4522 - DBEUG: add a new WARN_ON() macro
4523 - DEBUG: make the _BUG_ON() macro return the condition
4524 - DEBUG: add a new WARN_ON_ONCE() macro
4525 - DEBUG: report BUG_ON() and WARN_ON() in the tainted flags
4526 - MINOR: quic: adjust buffer handling for STREAM transmission
4527 - MINOR: quic: liberate the TX stream buffer after ACK processing
4528 - MINOR: quic: add a TODO for a memleak frame on ACK consume
4529
Willy Tarreau2454d6e2022-02-01 18:06:59 +010045302022/02/01 : 2.6-dev1
4531 - BUG/MINOR: cache: Fix loop on cache entries in "show cache"
4532 - BUG/MINOR: httpclient: allow to replace the host header
4533 - BUG/MINOR: lua: don't expose internal proxies
4534 - MEDIUM: mworker: seamless reload use the internal sockpairs
4535 - BUG/MINOR: lua: remove loop initial declarations
4536 - BUG/MINOR: mworker: does not add the -sf in wait mode
4537 - BUG/MEDIUM: mworker: FD leak of the eventpoll in wait mode
4538 - MINOR: quic: do not reject PADDING followed by other frames
4539 - REORG: quic: add comment on rare thread concurrence during CID alloc
4540 - CLEANUP: quic: add comments on CID code
4541 - MEDIUM: quic: handle CIDs to rattach received packets to connection
4542 - MINOR: qpack: support litteral field line with non-huff name
4543 - MINOR: quic: activate QUIC traces at compilation
4544 - MINOR: quic: use more verbose QUIC traces set at compile-time
4545 - MEDIUM: pool: refactor malloc_trim/glibc and jemalloc api addition detections.
4546 - MEDIUM: pool: support purging jemalloc arenas in trim_all_pools()
4547 - BUG/MINOR: mworker: deinit of thread poller was called when not initialized
4548 - BUILD: pools: only detect link-time jemalloc on ELF platforms
4549 - CI: github actions: add the output of $CC -dM -E-
4550 - BUG/MEDIUM: cli: Properly set stream analyzers to process one command at a time
4551 - BUILD: evports: remove a leftover from the dead_fd cleanup
4552 - MINOR: quic: Set "no_application_protocol" alert
4553 - MINOR: quic: More accurate immediately close.
4554 - MINOR: quic: Immediately close if no transport parameters extension found
4555 - MINOR: quic: Rename qc_prep_hdshk_pkts() to qc_prep_pkts()
4556 - MINOR: quic: Possible crash when inspecting the xprt context
4557 - MINOR: quic: Dynamically allocate the secrete keys
4558 - MINOR: quic: Add a function to derive the key update secrets
4559 - MINOR: quic: Add structures to maintain key phase information
4560 - MINOR: quic: Optional header protection key for quic_tls_derive_keys()
4561 - MINOR: quic: Add quic_tls_key_update() function for Key Update
4562 - MINOR: quic: Enable the Key Update process
4563 - MINOR: quic: Delete the ODCIDs asap
4564 - BUG/MINOR: vars: Fix the set-var and unset-var converters
4565 - MEDIUM: pool: Following up on previous pool trimming update.
4566 - BUG/MEDIUM: mux-h1: Fix splicing by properly detecting end of message
4567 - BUG/MINOR: mux-h1: Fix splicing for messages with unknown length
4568 - MINOR: mux-h1: Improve H1 traces by adding info about http parsers
4569 - MINOR: mux-h1: register a stats module
4570 - MINOR: mux-h1: add counters instance to h1c
4571 - MINOR: mux-h1: count open connections/streams on stats
4572 - MINOR: mux-h1: add stat for total count of connections/streams
4573 - MINOR: mux-h1: add stat for total amount of bytes received and sent
4574 - REGTESTS: h1: Add a script to validate H1 splicing support
4575 - BUG/MINOR: server: Don't rely on last default-server to init server SSL context
4576 - BUG/MEDIUM: resolvers: Detach query item on response error
4577 - MEDIUM: resolvers: No longer store query items in a list into the response
4578 - BUG/MAJOR: segfault using multiple log forward sections.
4579 - BUG/MEDIUM: h1: Properly reset h1m flags when headers parsing is restarted
4580 - BUG/MINOR: resolvers: Don't overwrite the error for invalid query domain name
4581 - BUILD: bug: Fix error when compiling with -DDEBUG_STRICT_NOCRASH
4582 - BUG/MEDIUM: sample: Fix memory leak in sample_conv_jwt_member_query
4583 - DOC: spoe: Clarify use of the event directive in spoe-message section
4584 - DOC: config: Specify %Ta is only available in HTTP mode
4585 - BUILD: tree-wide: avoid warnings caused by redundant checks of obj_types
4586 - IMPORT: slz: use the correct CRC32 instruction when running in 32-bit mode
4587 - MINOR: quic: fix segfault on CONNECTION_CLOSE parsing
4588 - MINOR: h3: add BUG_ON on control receive function
4589 - MEDIUM: xprt-quic: finalize app layer initialization after ALPN nego
4590 - MINOR: h3: remove duplicated FIN flag position
4591 - MAJOR: mux-quic: implement a simplified mux version
4592 - MEDIUM: mux-quic: implement release mux operation
4593 - MEDIUM: quic: detect the stream FIN
4594 - MINOR: mux-quic: implement subscribe on stream
4595 - MEDIUM: mux-quic: subscribe on xprt if remaining data after send
4596 - MEDIUM: mux-quic: wake up xprt on data transferred
4597 - MEDIUM: mux-quic: handle when sending buffer is full
4598 - MINOR: quic: RX buffer full due to wrong CRYPTO data handling
4599 - MINOR: quic: Race issue when consuming RX packets buffer
4600 - MINOR: quic: QUIC encryption level RX packets race issue
4601 - MINOR: quic: Delete remaining RX handshake packets
4602 - MINOR: quic: Remove QUIC TX packet length evaluation function
4603 - MINOR: hq-interop: fix tx buffering
4604 - MINOR: mux-quic: remove uneeded code to check fin on TX
4605 - MINOR: quic: add HTX EOM on request end
4606 - BUILD: mux-quic: fix compilation with DEBUG_MEM_STATS
4607 - MINOR: http-rules: Add capture action to http-after-response ruleset
4608 - BUG/MINOR: cli/server: Don't crash when a server is added with a custom id
4609 - MINOR: mux-quic: do not release qcs if there is remaining data to send
4610 - MINOR: quic: notify the mux on CONNECTION_CLOSE
4611 - BUG/MINOR: mux-quic: properly initialize flow control
4612 - MINOR: quic: Compilation fix for quic_rx_packet_refinc()
4613 - MINOR: h3: fix possible invalid dereference on htx parsing
4614 - DOC: config: retry-on list is space-delimited
4615 - DOC: config: fix error-log-format example
4616 - BUG/MEDIUM: mworker/cli: crash when trying to access an old PID in prompt mode
4617 - MINOR: hq-interop: refix tx buffering
4618 - REGTESTS: ssl: use X509_V_ERR_UNABLE_TO_GET_ISSUER_CERT_LOCALLY for cert check
4619 - MINOR: cli: "show version" displays the current process version
4620 - CLEANUP: cfgparse: modify preprocessor guards around numa detection code
4621 - MEDIUM: cfgparse: numa detect topology on FreeBSD.
4622 - BUILD: ssl: unbreak the build with newer libressl
4623 - MINOR: vars: Move UPDATEONLY flag test to vars_set_ifexist
4624 - MINOR: vars: Set variable type to ANY upon creation
4625 - MINOR: vars: Delay variable content freeing in var_set function
4626 - MINOR: vars: Parse optional conditions passed to the set-var converter
4627 - MINOR: vars: Parse optional conditions passed to the set-var actions
4628 - MEDIUM: vars: Enable optional conditions to set-var converter and actions
4629 - DOC: vars: Add documentation about the set-var conditions
4630 - REGTESTS: vars: Add new test for conditional set-var
4631 - MINOR: quic: Attach timer task to thread for the connection.
4632 - CLEANUP: quic_frame: Remove a useless suffix to STOP_SENDING
4633 - MINOR: quic: Add traces for STOP_SENDING frame and modify others
4634 - CLEANUP: quic: Remove cdata_len from quic_tx_packet struct
4635 - MINOR: quic: Enable TLS 0-RTT if needed
4636 - MINOR: quic: No TX secret at EARLY_DATA encryption level
4637 - MINOR: quic: Add quic_set_app_ops() function
4638 - MINOR: ssl_sock: Set the QUIC application from ssl_sock_advertise_alpn_protos.
4639 - MINOR: quic: Make xprt support 0-RTT.
4640 - MINOR: qpack: Missing check for truncated QPACK fields
4641 - CLEANUP: quic: Comment fix for qc_strm_cpy()
4642 - MINOR: hq_interop: Stop BUG_ON() truncated streams
4643 - MINOR: quic: Do not mix packet number space and connection flags
4644 - CLEANUP: quic: Shorten a litte bit the traces in lstnr_rcv_pkt()
4645 - MINOR: mux-quic: fix trace on stream creation
4646 - CLEANUP: quic: fix spelling mistake in a trace
4647 - CLEANUP: quic: rename quic_conn conn to qc in quic_conn_free
4648 - MINOR: quic: add missing lock on cid tree
4649 - MINOR: quic: rename constant for haproxy CIDs length
4650 - MINOR: quic: refactor concat DCID with address for Initial packets
4651 - MINOR: quic: compare coalesced packets by DCID
4652 - MINOR: quic: refactor DCID lookup
4653 - MINOR: quic: simplify the removal from ODCID tree
4654 - REGTESTS: vars: Remove useless ssl tunes from conditional set-var test
4655 - MINOR: ssl: Remove empty lines from "show ssl ocsp-response" output
4656 - MINOR: quic: Increase the RX buffer for each connection
4657 - MINOR: quic: Add a function to list remaining RX packets by encryption level
4658 - MINOR: quic: Stop emptying the RX buffer asap.
4659 - MINOR: quic: Do not expect to receive only one O-RTT packet
4660 - MINOR: quic: Do not forget STREAM frames received in disorder
4661 - MINOR: quic: Wrong packet refcount handling in qc_pkt_insert()
4662 - DOC: fix misspelled keyword "resolve_retries" in resolvers
4663 - CLEANUP: quic: rename quic_conn instances to qc
4664 - REORG: quic: move mux function outside of xprt
4665 - MINOR: quic: add reference to quic_conn in ssl context
4666 - MINOR: quic: add const qualifier for traces function
4667 - MINOR: trace: add quic_conn argument definition
4668 - MINOR: quic: use quic_conn as argument to traces
4669 - MINOR: quic: add quic_conn instance in traces for qc_new_conn
4670 - MINOR: quic: Add stream IDs to qcs_push_frame() traces
4671 - MINOR: quic: unchecked qc_retrieve_conn_from_cid() returned value
4672 - MINOR: quic: Wrong dropped packet skipping
4673 - MINOR: quic: Handle the cases of overlapping STREAM frames
4674 - MINOR: quic: xprt traces fixes
4675 - MINOR: quic: Drop asap Retry or Version Negotiation packets
4676 - MINOR: pools: work around possibly slow malloc_trim() during gc
4677 - DEBUG: ssl: make sure we never change a servername on established connections
4678 - MINOR: quic: Add traces for RX frames (flow control related)
4679 - MINOR: quic: Add CONNECTION_CLOSE phrase to trace
4680 - REORG: quic: remove qc_ prefix on functions which not used it directly
4681 - BUG/MINOR: quic: upgrade rdlock to wrlock for ODCID removal
4682 - MINOR: quic: remove unnecessary call to free_quic_conn_cids()
4683 - MINOR: quic: store ssl_sock_ctx reference into quic_conn
4684 - MINOR: quic: remove unnecessary if in qc_pkt_may_rm_hp()
4685 - MINOR: quic: replace usage of ssl_sock_ctx by quic_conn
4686 - MINOR: quic: delete timer task on quic_close()
4687 - MEDIUM: quic: implement refcount for quic_conn
4688 - BUG/MINOR: quic: fix potential null dereference
4689 - BUG/MINOR: quic: fix potential use of uninit pointer
4690 - BUG/MEDIUM: backend: fix possible sockaddr leak on redispatch
4691 - BUG/MEDIUM: peers: properly skip conn_cur from incoming messages
4692 - CI: Github Actions: do not show VTest failures if build failed
4693 - BUILD: opentracing: display warning in case of using OT_USE_VARS at compile time
4694 - MINOR: compat: detect support for dl_iterate_phdr()
4695 - MINOR: debug: add ability to dump loaded shared libraries
4696 - MINOR: debug: add support for -dL to dump library names at boot
4697 - BUG/MEDIUM: ssl: initialize correctly ssl w/ default-server
4698 - REGTESTS: ssl: fix ssl_default_server.vtc
4699 - BUG/MINOR: ssl: free the fields in srv->ssl_ctx
4700 - BUG/MEDIUM: ssl: free the ckch instance linked to a server
4701 - REGTESTS: ssl: update of a crt with server deletion
4702 - BUILD/MINOR: cpuset FreeBSD 14 build fix.
4703 - MINOR: pools: always evict oldest objects first in pool_evict_from_local_cache()
4704 - DOC: pool: document the purpose of various structures in the code
4705 - CLEANUP: pools: do not use the extra pointer to link shared elements
4706 - CLEANUP: pools: get rid of the POOL_LINK macro
4707 - MINOR: pool: allocate from the shared cache through the local caches
4708 - CLEANUP: pools: group list updates in pool_get_from_cache()
4709 - MINOR: pool: rely on pool_free_nocache() in pool_put_to_shared_cache()
4710 - MINOR: pool: make pool_is_crowded() always true when no shared pools are used
4711 - MINOR: pool: check for pool's fullness outside of pool_put_to_shared_cache()
4712 - MINOR: pool: introduce pool_item to represent shared pool items
4713 - MINOR: pool: add a function to estimate how many may be released at once
4714 - MEDIUM: pool: compute the number of evictable entries once per pool
4715 - MINOR: pools: prepare pool_item to support chained clusters
4716 - MINOR: pools: pass the objects count to pool_put_to_shared_cache()
4717 - MEDIUM: pools: centralize cache eviction in a common function
4718 - MEDIUM: pools: start to batch eviction from local caches
4719 - MEDIUM: pools: release cached objects in batches
4720 - OPTIM: pools: reduce local pool cache size to 512kB
4721 - CLEANUP: assorted typo fixes in the code and comments This is 29th iteration of typo fixes
4722 - CI: github actions: update OpenSSL to 3.0.1
4723 - BUILD/MINOR: tools: solaris build fix on dladdr.
4724 - BUG/MINOR: cli: fix _getsocks with musl libc
4725 - BUG/MEDIUM: http-ana: Preserve response's FLT_END analyser on L7 retry
4726 - MINOR: quic: Wrong traces after rework
4727 - MINOR: quic: Add trace about in flight bytes by packet number space
4728 - MINOR: quic: Wrong first packet number space computation
4729 - MINOR: quic: Wrong packet number space computation for PTO
4730 - MINOR: quic: Wrong loss time computation in qc_packet_loss_lookup()
4731 - MINOR: quic: Wrong ack_delay compution before calling quic_loss_srtt_update()
4732 - MINOR: quic: Remove nb_pto_dgrams quic_conn struct member
4733 - MINOR: quic: Wrong packet number space trace in qc_prep_pkts()
4734 - MINOR: quic: Useless test in qc_prep_pkts()
4735 - MINOR: quic: qc_prep_pkts() code moving
4736 - MINOR: quic: Speeding up Handshake Completion
4737 - MINOR: quic: Probe Initial packet number space more often
4738 - MINOR: quic: Probe several packet number space upon timer expiration
4739 - MINOR: quic: Comment fix.
4740 - MINOR: quic: Improve qc_prep_pkts() flexibility
4741 - MINOR: quic: Do not drop secret key but drop the CRYPTO data
4742 - MINOR: quic: Prepare Handshake packets asap after completed handshake
4743 - MINOR: quic: Flag asap the connection having reached the anti-amplification limit
4744 - MINOR: quic: PTO timer too often reset
4745 - MINOR: quic: Re-arm the PTO timer upon datagram receipt
4746 - MINOR: proxy: add option idle-close-on-response
4747 - MINOR: cpuset: switch to sched_setaffinity for FreeBSD 14 and above.
4748 - CI: refactor spelling check
4749 - CLEANUP: assorted typo fixes in the code and comments
4750 - BUILD: makefile: add -Wno-atomic-alignment to work around clang abusive warning
4751 - MINOR: quic: Only one CRYPTO frame by encryption level
4752 - MINOR: quic: Missing retransmission from qc_prep_fast_retrans()
4753 - MINOR: quic: Non-optimal use of a TX buffer
4754 - BUG/MEDIUM: mworker: don't use _getsocks in wait mode
4755 - BUG/MINOR: ssl: Store client SNI in SSL context in case of ClientHello error
4756 - BUG/MAJOR: mux-h1: Don't decrement .curr_len for unsent data
4757 - DOC: internals: document the pools architecture and API
4758 - CI: github actions: clean default step conditions
4759 - BUILD: cpuset: fix build issue on macos introduced by previous change
4760 - MINOR: quic: Remaining TRACEs with connection as firt arg
4761 - MINOR: quic: Reset ->conn quic_conn struct member when calling qc_release()
4762 - MINOR: quic: Flag the connection as being attached to a listener
4763 - MINOR: quic: Wrong CRYPTO frame concatenation
4764 - MINOR: quid: Add traces quic_close() and quic_conn_io_cb()
4765 - REGTESTS: ssl: Fix ssl_errors regtest with OpenSSL 1.0.2
4766 - MINOR: quic: Do not dereference ->conn quic_conn struct member
4767 - MINOR: quic: fix return of quic_dgram_read
4768 - MINOR: quic: add config parse source file
4769 - MINOR: quic: implement Retry TLS AEAD tag generation
4770 - MEDIUM: quic: implement Initial token parsing
4771 - MINOR: quic: define retry_source_connection_id TP
4772 - MEDIUM: quic: implement Retry emission
4773 - MINOR: quic: free xprt tasklet on its thread
4774 - BUG/MEDIUM: connection: properly leave stopping list on error
4775 - MINOR: pools: enable pools with DEBUG_FAIL_ALLOC as well
4776 - MINOR: quic: As server, skip 0-RTT packet number space
4777 - MINOR: quic: Do not wakeup the I/O handler before the mux is started
4778 - BUG/MEDIUM: htx: Adjust length to add DATA block in an empty HTX buffer
4779 - CI: github actions: use cache for OpenTracing
4780 - BUG/MINOR: httpclient: don't send an empty body
4781 - BUG/MINOR: httpclient: set default Accept and User-Agent headers
4782 - BUG/MINOR: httpclient/lua: don't pop the lua stack when getting headers
4783 - BUILD/MINOR: fix solaris build with clang.
4784 - BUG/MEDIUM: server: avoid changing healthcheck ctx with set server ssl
4785 - CI: refactor OpenTracing build script
4786 - DOC: management: mark "set server ssl" as deprecated
4787 - MEDIUM: cli: yield between each pipelined command
4788 - MINOR: channel: add new function co_getdelim() to support multiple delimiters
4789 - BUG/MINOR: cli: avoid O(bufsize) parsing cost on pipelined commands
4790 - MEDIUM: h2/hpack: emit a Dynamic Table Size Update after settings change
4791 - MINOR: quic: Retransmit the TX frames in the same order
4792 - MINOR: quic: Remove the packet number space TX MT_LIST
4793 - MINOR: quic: Splice the frames which could not be added to packets
4794 - MINOR: quic: Add the number of TX bytes to traces
4795 - CLEANUP: quic: Replace <nb_pto_dgrams> by <probe>
4796 - MINOR: quic: Send two ack-eliciting packets when probing packet number spaces
4797 - MINOR: quic: Probe regardless of the congestion control
4798 - MINOR: quic: Speeding up handshake completion
4799 - MINOR: quic: Release RX Initial packets asap
4800 - MINOR: quic: Release asap TX frames to be transmitted
4801 - MINOR: quic: Probe even if coalescing
4802 - BUG/MEDIUM: cli: Never wait for more data on client shutdown
4803 - BUG/MEDIUM: mcli: do not try to parse empty buffers
4804 - BUG/MEDIUM: mcli: always realign wrapping buffers before parsing them
4805 - BUG/MINOR: stream: make the call_rate only count the no-progress calls
4806 - MINOR: quic: do not use quic_conn after dropping it
4807 - MINOR: quic: adjust quic_conn refcount decrement
4808 - MINOR: quic: fix race-condition on xprt tasklet free
4809 - MINOR: quic: free SSL context on quic_conn free
4810 - MINOR: quic: Add QUIC_FT_RETIRE_CONNECTION_ID parsing case
4811 - MINOR: quic: Wrong packet number space selection
4812 - DEBUG: pools: add new build option DEBUG_POOL_INTEGRITY
4813 - MINOR: quic: add missing include in quic_sock
4814 - MINOR: quic: fix indentation in qc_send_ppkts
4815 - MINOR: quic: remove dereferencement of connection when possible
4816 - MINOR: quic: set listener accept cb on parsing
4817 - MEDIUM: quic/ssl: add new ex data for quic_conn
4818 - MINOR: quic: initialize ssl_sock_ctx alongside the quic_conn
4819 - MINOR: ssl: fix build in release mode
4820 - MINOR: pools: partially uninline pool_free()
4821 - MINOR: pools: partially uninline pool_alloc()
4822 - MINOR: pools: prepare POOL_EXTRA to be split into multiple extra fields
4823 - MINOR: pools: extend pool_cache API to pass a pointer to a caller
4824 - DEBUG: pools: add new build option DEBUG_POOL_TRACING
4825 - DEBUG: cli: add a new "debug dev fd" expert command
4826 - MINOR: fd: register the write side of the poller pipe as well
4827 - CI: github actions: use cache for SSL libs
4828 - BUILD: debug/cli: condition test of O_ASYNC to its existence
4829 - BUILD: pools: fix build error on DEBUG_POOL_TRACING
4830 - MINOR: quic: refactor header protection removal
4831 - MINOR: quic: handle app data according to mux/connection layer status
4832 - MINOR: quic: refactor app-ops initialization
4833 - MINOR: receiver: define a flag for local accept
4834 - MEDIUM: quic: flag listener for local accept
4835 - MINOR: quic: do not manage connection in xprt snd_buf
4836 - MINOR: quic: remove wait handshake/L6 flags on init connection
4837 - MINOR: listener: add flags field
4838 - MINOR: quic: define QUIC flag on listener
4839 - MINOR: quic: create accept queue for QUIC connections
4840 - MINOR: listener: define per-thr struct
4841 - MAJOR: quic: implement accept queue
4842 - CLEANUP: mworker: simplify mworker_free_child()
4843 - BUILD/DEBUG: lru: update the standalone code to support the revision
4844 - DEBUG: lru: use a xorshift generator in the testing code
4845 - BUG/MAJOR: compiler: relax alignment constraints on certain structures
4846 - BUG/MEDIUM: fd: always align fdtab[] to 64 bytes
4847 - MINOR: quic: No DCID length for datagram context
4848 - MINOR: quic: Comment fix about the token found in Initial packets
4849 - MINOR: quic: Get rid of a struct buffer in quic_lstnr_dgram_read()
4850 - MINOR: quic: Remove the QUIC haproxy server packet parser
4851 - MINOR: quic: Add new defintion about DCIDs offsets
4852 - MINOR: quic: Add a list to QUIC sock I/O handler RX buffer
4853 - MINOR: quic: Allocate QUIC datagrams from sock I/O handler
4854 - MINOR: proto_quic: Allocate datagram handlers
4855 - MINOR: quic: Pass CID as a buffer to quic_get_cid_tid()
4856 - MINOR: quic: Convert quic_dgram_read() into a task
4857 - CLEANUP: quic: Remove useless definition
4858 - MINOR: proto_quic: Wrong allocations for TX rings and RX bufs
4859 - MINOR: quic: Do not consume the RX buffer on QUIC sock i/o handler side
4860 - MINOR: quic: Do not reset a full RX buffer
4861 - MINOR: quic: Attach all the CIDs to the same connection
4862 - MINOR: quic: Make usage of by datagram handler trees
4863 - MEDIUM: da: new optional data file download scheduler service.
4864 - MEDIUM: da: update doc and build for new scheduler mode service.
4865 - MEDIUM: da: update module to handle schedule mode.
4866 - MINOR: quic: Drop Initial packets with wrong ODCID
4867 - MINOR: quic: Wrong RX buffer tail handling when no more contiguous data
4868 - MINOR: quic: Iterate over all received datagrams
4869 - MINOR: quic: refactor quic CID association with threads
4870 - BUG/MEDIUM: resolvers: Really ignore trailing dot in domain names
4871 - DEV: flags: Add missing flags
4872 - BUG/MINOR: sink: Use the right field in appctx context in release callback
4873 - MINOR: sock: move the unused socket cleaning code into its own function
4874 - BUG/MEDIUM: mworker: close unused transferred FDs on load failure
4875 - BUILD: atomic: make the old HA_ATOMIC_LOAD() support const pointers
4876 - BUILD: cpuset: do not use const on the source of CPU_AND/CPU_ASSIGN
4877 - BUILD: checks: fix inlining issue on set_srv_agent_[addr,port}
4878 - BUILD: vars: avoid overlapping field initialization
4879 - BUILD: server-state: avoid using not-so-portable isblank()
4880 - BUILD: mux_fcgi: avoid aliasing of a const struct in traces
4881 - BUILD: tree-wide: mark a few numeric constants as explicitly long long
4882 - BUILD: tools: fix warning about incorrect cast with dladdr1()
4883 - BUILD: task: use list_to_mt_list() instead of casting list to mt_list
4884 - BUILD: mworker: include tools.h for platforms without unsetenv()
4885 - BUG/MINOR: mworker: fix a FD leak of a sockpair upon a failed reload
4886 - MINOR: mworker: set the master side of ipc_fd in the worker to -1
4887 - MINOR: mworker: allocate and initialize a mworker_proc
4888 - CI: Consistently use actions/checkout@v2
4889 - REGTESTS: Remove REQUIRE_VERSION=1.8 from all tests
4890 - MINOR: mworker: sets used or closed worker FDs to -1
4891 - MINOR: quic: Try to accept 0-RTT connections
4892 - MINOR: quic: Do not try to treat 0-RTT packets without started mux
4893 - MINOR: quic: Do not try to accept a connection more than one time
4894 - MINOR: quic: Initialize the connection timer asap
4895 - MINOR: quic: Do not use connection struct xprt_ctx too soon
4896 - Revert "MINOR: mworker: sets used or closed worker FDs to -1"
4897 - BUILD: makefile: avoid testing all -Wno-* options when not needed
4898 - BUILD: makefile: validate support for extra warnings by batches
4899 - BUILD: makefile: only compute alternative options if required
4900 - DEBUG: fd: make sure we never try to insert/delete an impossible FD number
4901 - MINOR: mux-quic: add comment
4902 - MINOR: mux-quic: properly initialize qcc flags
4903 - MINOR: mux-quic: do not consider CONNECTION_CLOSE for the moment
4904 - MINOR: mux-quic: create a timeout task
4905 - MEDIUM: mux-quic: delay the closing with the timeout
4906 - MINOR: mux-quic: release idle conns on process stopping
4907 - MINOR: listener: replace the listener's spinlock with an rwlock
4908 - BUG/MEDIUM: listener: read-lock the listener during accept()
4909 - MINOR: mworker/cli: set expert/experimental mode from the CLI
4910
Willy Tarreau73dec762021-11-23 15:50:11 +010049112021/11/23 : 2.6-dev0
4912 - MINOR: version: it's development again
4913
Willy Tarreauf2e08332021-11-23 15:40:21 +010049142021/11/23 : 2.5.0
4915 - BUILD: SSL: add quictls build to scripts/build-ssl.sh
4916 - BUILD: SSL: add QUICTLS to build matrix
4917 - CLEANUP: sock: Wrap `accept4_broken = 1` into additional parenthesis
4918 - BUILD: cli: clear a maybe-unused warning on some older compilers
4919 - BUG/MEDIUM: cli: make sure we can report a warning from a bind keyword
4920 - BUG/MINOR: ssl: make SSL counters atomic
4921 - CLEANUP: assorted typo fixes in the code and comments
4922 - BUG/MINOR: ssl: free correctly the sni in the backend SSL cache
4923 - MINOR: version: mention that it's stable now
4924
Willy Tarreaua99cdfb2021-11-19 19:30:04 +010049252021/11/19 : 2.5-dev15
4926 - BUG/MINOR: stick-table/cli: Check for invalid ipv6 key
4927 - CLEANUP: peers: Remove useless test on peer variable in peer_trace()
4928 - DOC: log: Add comments to specify when session's listener is defined or not
4929 - BUG/MEDIUM: mux-h1: Handle delayed silent shut in h1_process() to release H1C
4930 - REGTESTS: ssl_crt-list_filters: feature cmd incorrectly set
4931 - DOC: internals: document the list API
4932 - BUG/MINOR: h3: ignore unknown frame types
4933 - MINOR: quic: redirect app_ops snd_buf through mux
4934 - MEDIUM: quic: inspect ALPN to install app_ops
4935 - MINOR: quic: support hq-interop
4936 - MEDIUM: quic: send version negotiation packet on unknown version
4937 - BUG/MEDIUM: mworker: cleanup the listeners when reexecuting
4938 - DOC: internals: document the scheduler API
4939 - BUG/MINOR: quic: fix version negotiation packet generation
4940 - CLEANUP: ssl: fix wrong #else commentary
4941 - MINOR: config: support default values for environment variables
4942 - SCRIPTS: run-regtests: reduce the number of processes needed to check options
4943 - SCRIPT: run-regtests: avoid several calls to grep to test for features
4944 - SCRIPT: run-regtests: avoid calling awk to compute the version
4945 - REGTEST: set retries count to zero for all tests that expect at 503
4946 - REGTESTS: make tcp-check_min-recv fail fast
4947 - REGTESTS: extend the default I/O timeouts and make them overridable
4948 - BUG/MEDIUM: ssl: backend TLS resumption with sni and TLSv1.3
4949 - BUG/MEDIUM: ssl: abort with the correct SSL error when SNI not found
4950 - REGTESTS: ssl: test the TLS resumption
4951 - BUILD: makefile: stop opening sub-shells for each and every command
4952 - BUILD: makefile: reorder objects by build time
4953 - BUG/MEDIUM: mux-h2: always process a pending shut read
4954 - MINOR: quic_sock: missing CO_FL_ADDR_TO_SET flag
4955 - MINOR: quic: Possible wrong connection identification
4956 - MINOR: quic: Correctly pad UDP datagrams
4957 - MINOR: quic: Support transport parameters draft TLS extension
4958 - MINOR: quic: Anti-amplification implementation
4959 - MINOR: quic: Wrong Initial packet connection initialization
4960 - MINOR: quic: Wrong ACK range building
4961 - MINOR: quic: Update some QUIC protocol errors
4962 - MINOR: quic: Send CONNECTION_CLOSE frame upon TLS alert
4963 - MINOR: quic: Wrong largest acked packet number parsing
4964 - MINOR: quic: Add minimalistic support for stream flow control frames
4965 - MINOR: quic: Wrong value for version negotiation packet 'Unused' field
4966 - MINOR: quic: Support draft-29 QUIC version
4967 - BUG/MINOR: quic: fix segfault on trace for version negotiation
4968 - BUG/MINOR: hq-interop: fix potential NULL dereference
4969 - BUILD: quic: fix potential NULL dereference on xprt_quic
4970 - DOC: lua: documentation about the httpclient API
4971 - BUG/MEDIUM: cache/cli: make "show cache" thread-safe
4972 - BUG/MEDIUM: shctx: leave the block allocator when enough blocks are found
4973 - BUG/MINOR: shctx: do not look for available blocks when the first one is enough
4974 - MINOR: shctx: add a few BUG_ON() for consistency checks
4975
Willy Tarreaud83f6e62021-11-14 16:04:57 +010049762021/11/14 : 2.5-dev14
4977 - DEV: coccinelle: Remove unused `expression e`
4978 - DEV: coccinelle: Add rule to use `istend()` where possible
4979 - CLEANUP: Apply ist.cocci
4980 - CLEANUP: Re-apply xalloc_size.cocci
4981 - CLEANUP: halog: make the default usage message fit in small screens
4982 - MINOR: h3/qpack: fix gcc11 warnings
4983 - MINOR: mux-quic: fix gcc11 warning
4984 - MINOR: h3: fix potential NULL dereference
4985 - MINOR: quic: Fix potential null pointer dereference
4986 - CLEANUP: halog: remove unused strl2ui()
4987 - OPTIM: halog: improve field parser speed for modern compilers
4988 - OPTIM: halog: skip fields 64 bits at a time when supported
4989 - DEV: coccinelle: Add rule to use `isttrim()` where possible
4990 - CLEANUP: Apply ist.cocci
4991 - DEV: coccinelle: Add rule to use `chunk_istcat()` instead of `chunk_memcat()`
4992 - DEV: coccinelle: Add rule to use `chunk_istcat()` instead of `chunk_strncat()`
4993 - CLEANUP: Apply ist.cocci
4994 - CLEANUP: chunk: Remove duplicated chunk_Xcat implementation
4995 - CLEANUP: chunk: remove misleading chunk_strncat() function
4996 - BUG/MINOR: cache: properly ignore unparsable max-age in quotes
4997 - Revert "DEV: coccinelle: Add rule to use `chunk_istcat()` instead of `chunk_strncat()`"
4998 - DOC: stats: fix location of the text representation
4999 - DOC: internals: document the IST API
5000 - BUG/MINOR: httpclient/lua: rcv freeze when no request payload
5001 - BUG/MEDIUM: httpclient: channel_add_input() must use htx->data
5002 - MINOR: promex: backend aggregated server check status
5003 - DOC: config: Fix typo in ssl_fc_unique_id description
5004 - BUG/MINOR: http-ana: Apply stop to the current section for http-response rules
5005 - Revert "BUG/MINOR: http-ana: Don't eval front after-response rules if stopped on back"
5006 - DOC: config: Be more explicit in "allow" actions description
5007 - DOC: lua: Be explicit with the Reply object limits
5008 - MINOR: mux-h1: Slightly Improve H1 traces
5009 - BUG/MEDIUM: conn-stream: Don't reset CS flags on close
5010 - CLEANUP: mworker: remove any relative PID reference
5011 - MEDIUM: mworker: reexec in waitpid mode after successful loading
5012 - MINOR: mworker: clarify starting/failure messages
5013 - MINOR: mworker: only increment the number of reload in wait mode
5014 - MINOR: mworker: implement a reload failure counter
5015 - MINOR: mworker: ReloadFailed shown depending on failedreload
5016 - MINOR: mworker: change the way we set PROC_O_LEAVING
5017 - BUG/MINOR: mworker: doesn't launch the program postparser
5018 - DOC: management: edit the "show proc" example to show the current output
5019 - BUG/MEDIUM: httpclient/cli: free of unallocated hc->req.uri
5020 - REGTESTS: httpclient/lua: add greater body values
5021 - BUG/MINOR: mux-h2: Fix H2_CF_DEM_SHORT_READ value
5022 - BUG/MINOR: pools: don't mark ourselves as harmless in DEBUG_UAF mode
5023 - BUG/MEDIUM: connection: make cs_shutr/cs_shutw//cs_close() idempotent
5024 - BUILD: makefile: simplify detection of libatomic
5025
Willy Tarreau08d32202021-11-06 09:25:57 +010050262021/11/06 : 2.5-dev13
5027 - SCRIPTS: git-show-backports: re-enable file-based filtering
5028 - MINOR: jwt: Make invalid static JWT algorithms an error in `jwt_verify` converter
5029 - MINOR: mux-h2: add trace on extended connect usage
5030 - BUG/MEDIUM: mux-h2: reject upgrade if no RFC8441 support
5031 - MINOR: stream/mux: implement websocket stream flag
5032 - MINOR: connection: implement function to update ALPN
5033 - MINOR: connection: add alternative mux_ops param for conn_install_mux_be
5034 - MEDIUM: server/backend: implement websocket protocol selection
5035 - MINOR: server: add ws keyword
5036 - BUG/MINOR: resolvers: fix sent messages were counted twice
5037 - BUG/MINOR: resolvers: throw log message if trash not large enough for query
5038 - MINOR: resolvers/dns: split dns and resolver counters in dns_counter struct
5039 - MEDIUM: resolvers: rename dns extra counters to resolvers extra counters
5040 - BUG/MINOR: jwt: Fix jwt_parse_alg incorrectly returning JWS_ALG_NONE
5041 - DOC: add QUIC instruction in INSTALL
5042 - CLEANUP: halog: Remove dead stores
5043 - DEV: coccinelle: Add ha_free.cocci
5044 - CLEANUP: Apply ha_free.cocci
5045 - DEV: coccinelle: Add rule to use `istnext()` where possible
5046 - CLEANUP: Apply ist.cocci
5047 - REGTESTS: Use `feature cmd` for 2.5+ tests (2)
5048 - DOC: internals: move some API definitions to an "api" subdirectory
5049 - MINOR: quic: Allocate listener RX buffers
5050 - CLEANUP: quic: Remove useless code
5051 - MINOR: quic: Enhance the listener RX buffering part
5052 - MINOR: quic: Remove a useless lock for CRYPTO frames
5053 - MINOR: quic: Use QUIC_LOCK QUIC specific lock label.
5054 - MINOR: backend: Get client dst address to set the server's one only if needful
5055 - MINOR: compression: Warn for 'compression offload' in defaults sections
5056 - MEDIUM: connection: rename fc_conn_err and bc_conn_err to fc_err and bc_err
5057 - DOC: configuration: move the default log formats to their own section
5058 - MINOR: ssl: make the ssl_fc_sni() sample-fetch function always available
5059 - MEDIUM: log: add the client's SNI to the default HTTPS log format
5060 - DOC: config: add an example of reasonably complete error-log-format
5061 - DOC: config: move error-log-format before custom log format
5062
Willy Tarreau35dc13f2021-11-02 18:05:41 +010050632021/11/02 : 2.5-dev12
5064 - MINOR: httpclient: support payload within a buffer
5065 - MINOR: httpclient/lua: support more HTTP methods
5066 - MINOR: httpclient/lua: return an error when it can't generate the request
5067 - CLEANUP: lua: Remove any ambiguities about lua txn execution context flags
5068 - BUG/MEDIUM: lua: fix invalid return types in hlua_http_msg_get_body
5069 - CLEANUP: connection: No longer export make_proxy_line_v1/v2 functions
5070 - CLEANUP: tools: Use const address for get_net_port() and get_host_port()
5071 - CLEANUP: lua: Use a const address to retrieve info about a connection
5072 - MINOR: connection: Add function to get src/dst without updating the connection
5073 - MINOR: session: Add src and dst addresses to the session
5074 - MINOR: stream-int: Add src and dst addresses to the stream-interface
5075 - MINOR: frontend: Rely on client src and dst addresses at stream level
5076 - MINOR: log: Rely on client addresses at the appropriate level to log messages
5077 - MINOR: session: Rely on client source address at session level to log error
5078 - MINOR: http-ana: Rely on addresses at stream level to set xff and xot headers
5079 - MINOR: http-fetch: Rely on addresses at stream level in HTTP sample fetches
5080 - MINOR: mux-fcgi: Rely on client addresses at stream level to set default params
5081 - MEDIUM: tcp-sample: Rely on addresses at the appropriate level in tcp samples
5082 - MEDIUM: connection: Rely on addresses at stream level to make proxy line
5083 - MEDIUM: backend: Rely on addresses at stream level to init server connection
5084 - MEDIUM: connection: Assign session addresses when PROXY line is received
5085 - MEDIUM: connection: Assign session addresses when NetScaler CIP proto is parsed
5086 - MEDIUM: tcp-act: Set addresses at the apprioriate level in set-(src/dst) actions
5087 - MINOR: tcp-act: Add set-src/set-src-port for "tcp-request content" rules
5088 - DOC: config: Fix alphabetical order of fc_* samples
5089 - MINOR: tcp-sample: Add samples to get original info about client connection
5090 - REGTESTS: Add script to test client src/dst manipulation at different levels
5091 - MINOR: stream: Use backend stream-interface dst address instead of target_addr
5092 - BUILD: log: Fix compilation without SSL support
5093 - DEBUG: protocol: yell loudly during registration of invalid sock_domain
5094 - MINOR: protocols: add a new protocol type selector
5095 - MINOR: protocols: make use of the protocol type to select the protocol
5096 - MINOR: protocols: replace protocol_by_family() with protocol_lookup()
5097 - MINOR: halog: Add -qry parameter allowing to preserve the query string in -uX
5098 - CLEANUP: jwt: Remove the use of a trash buffer in jwt_jwsverify_hmac()
5099 - CLEANUP: jwt: Remove the use of a trash buffer in jwt_jwsverify_rsa_ecdsa()
5100 - DEV: coccinelle: Add realloc_leak.cocci
5101 - CLEANUP: hlua: Remove obsolete branch in `hlua_alloc()`
5102 - BUILD: atomic: prefer __atomic_compare_exchange_n() for __ha_cas_dw()
5103 - BUILD: atomic: fix build on mac/arm64
5104 - MINOR: atomic: remove the memcpy() call and dependency on string.h
5105 - MINOR: httpclient: request streaming with a callback
5106 - MINOR: httpclient/lua: handle the streaming into the lua applet
5107 - REGTESTS: lua: test httpclient with body streaming
5108 - DOC: halog: Move the `-qry` parameter into the correct section in help text
5109 - MINOR: halog: Rename -qry to -query
5110 - CLEANUP: halog: Use consistent indentation in help()
5111 - BUG/MINOR: halog: Add missing newlines in die() messages
5112 - MINOR: halog: Add support for extracting captures using -hdr
5113 - DOC: Typo fixed "it" should be "is"
5114 - BUG/MINOR: mux-h1: Save shutdown mode if the shutdown is delayed
5115 - BUG/MEDIUM: mux-h1: Perform a connection shutdown when the h1c is released
5116 - BUG/MEDIUM: resolvers: Don't recursively perform requester unlink
5117 - BUG/MEDIUM: http-ana: Drain request data waiting the tarpit timeout expiration
5118 - BUG/MINOR: http: Authorization value can have multiple spaces after the scheme
5119 - BUG/MINOR: http: http_auth_bearer fetch does not work on custom header name
5120 - BUG/MINOR: httpclient/lua: misplaced luaL_buffinit()
5121 - BUILD/MINOR: cpuset freebsd build fix
5122 - BUG/MINOR: httpclient: use a placeholder value for Host header
5123 - BUG/MEDIUM: stream-int: Block reads if channel cannot receive more data
5124 - BUG/MEDIUM: resolvers: Track api calls with a counter to free resolutions
5125 - MINOR: stream: Improve dump of bogus streams
5126 - DOC/peers: some grammar fixes for peers 2.1 spec
5127 - MEDIUM: vars: make the var() sample fetch function really return type ANY
5128 - MINOR: vars: add "set-var" for "tcp-request connection" rules.
5129
Willy Tarreaub4d0cd02021-10-22 19:40:44 +020051302021/10/22 : 2.5-dev11
5131 - DEV: coccinelle: Add strcmp.cocci
5132 - CLEANUP: Apply strcmp.cocci
5133 - CI: Add `permissions` to GitHub Actions
5134 - CI: Clean up formatting in GitHub Action definitions
5135 - MINOR: add ::1 to predefined LOCALHOST acl
5136 - CLEANUP: assorted typo fixes in the code and comments
5137 - CLEANUP: Consistently `unsigned int` for bitfields
5138 - MEDIUM: resolvers: lower-case labels when converting from/to DNS names
5139 - MEDIUM: resolvers: replace bogus resolv_hostname_cmp() with memcmp()
5140 - MINOR: jwt: Empty the certificate tree during deinit
5141 - MINOR: jwt: jwt_verify returns negative values in case of error
5142 - MINOR: jwt: Do not rely on enum order anymore
5143 - BUG/MEDIUM: stream: Keep FLT_END analyzers if a stream detects a channel error
5144 - MINOR: httpclient/cli: access should be only done from expert mode
5145 - DOC: management: doc about the CLI httpclient
5146 - BUG/MEDIUM: tcpcheck: Properly catch early HTTP parsing errors
5147 - BUG/MAJOR: dns: tcp session can remain attached to a list after a free
5148 - BUG/MAJOR: dns: attempt to lock globaly for msg waiter list instead of use barrier
5149 - CLEANUP: dns: always detach the appctx from the dns session on release
5150 - DEBUG: dns: add a few more BUG_ON at sensitive places
5151 - BUG/MAJOR: resolvers: add other missing references during resolution removal
5152 - CLEANUP: resolvers: do not export resolv_purge_resolution_answer_records()
5153 - BUILD: resolvers: avoid a possible warning on null-deref
5154 - BUG/MEDIUM: resolvers: always check a valid item in query_list
5155 - CLEANUP: always initialize the answer_list
5156 - CLEANUP: resolvers: simplify resolv_link_resolution() regarding requesters
5157 - CLEANUP: resolvers: replace all LIST_DELETE with LIST_DEL_INIT
5158 - MEDIUM: resolvers: use a kill list to preserve the list consistency
5159 - MEDIUM: resolvers: remove the last occurrences of the "safe" argument
5160 - BUG/MEDIUM: checks: fix the starting thread for external checks
5161 - MEDIUM: resolvers: replace the answer_list with a (flat) tree
5162 - MEDIUM: resolvers: hash the records before inserting them into the tree
5163 - BUG/MAJOR: buf: fix varint API post- vs pre- increment
5164 - OPTIM: resolvers: move the eb32 node before the data in the answer_item
5165 - MINOR: list: add new macro LIST_INLIST_ATOMIC()
5166 - OPTIM: dns: use an atomic check for the list membership
5167 - BUG/MINOR: task: do not set TASK_F_USR1 for no reason
5168 - BUG/MINOR: mux-h2: do not prevent from sending a final GOAWAY frame
5169 - MINOR: connection: add a new CO_FL_WANT_DRAIN flag to force drain on close
5170 - MINOR: mux-h2: perform a full cycle shutdown+drain on close
5171 - CLEANUP: resolvers: get rid of single-iteration loop in resolv_get_ip_from_response()
5172 - MINOR: quic: Increase the size of handshake RX UDP datagrams
5173 - BUG/MEDIUM: lua: fix memory leaks with realloc() on non-glibc systems
5174 - MINOR: memprof: report the delta between alloc and free on realloc()
5175 - MINOR: memprof: add one pointer size to the size of allocations
5176 - BUILD: fix compilation on NetBSD
5177 - MINOR: backend: add traces for idle connections reuse
5178 - BUG/MINOR: backend: fix improper insert in avail tree for always reuse
5179 - MINOR: backend: improve perf with tcp proxies skipping idle conns
5180 - MINOR: connection: remove unneeded memset 0 for idle conns
5181
Willy Tarreauf2b1b4d2021-10-16 15:24:22 +020051822021/10/16 : 2.5-dev10
5183 - MINOR: initcall: Rename __GLOBL and __GLOBL1.
5184 - MINOR: rules: add a new function new_act_rule() to allocate act_rules
5185 - MINOR: rules: add a file name and line number to act_rules
5186 - MINOR: stream: report the current rule in "show sess all" when known
5187 - MINOR: stream: report the current filter in "show sess all" when known
5188 - CLEANUP: stream: Properly indent current_rule line in "show sess all"
5189 - BUG/MINOR: lua: Fix lua error handling in `hlua_config_prepend_path()`
5190 - CI: github: switch to OpenSSL 3.0.0
5191 - REGTESTS: ssl: Fix references to removed option in test description
5192 - MINOR: ssl: Add ssllib_name_startswith precondition
5193 - REGTESTS: ssl: Fix ssl_errors test for OpenSSL v3
5194 - REGTESTS: ssl: Reenable ssl_errors test for OpenSSL only
5195 - REGTESTS: ssl: Use mostly TLSv1.2 in ssl_errors test
5196 - MEDIUM: mux-quic: rationalize tx buffers between qcc/qcs
5197 - MEDIUM: h3: properly manage tx buffers for large data
5198 - MINOR: mux-quic: standardize h3 settings sending
5199 - CLEANUP: h3: remove dead code
5200 - MINOR: mux-quic: implement standard method to detect if qcc is dead
5201 - MEDIUM: mux-quic: defer stream shut if remaining tx data
5202 - MINOR: mux: remove last occurences of qcc ring buffer
5203 - MINOR: quic: handle CONNECTION_CLOSE frame
5204 - REGTESTS: ssl: re-enable set_ssl_cert_bundle.vtc
5205 - MINOR: ssl: add ssl_fc_is_resumed to "option httpslog"
5206 - MINOR: http: Add http_auth_bearer sample fetch
5207 - MINOR: jwt: Parse JWT alg field
5208 - MINOR: jwt: JWT tokenizing helper function
5209 - MINOR: jwt: Insert public certificates into dedicated JWT tree
5210 - MINOR: jwt: jwt_header_query and jwt_payload_query converters
5211 - MEDIUM: jwt: Add jwt_verify converter to verify JWT integrity
5212 - REGTESTS: jwt: Add tests for the jwt_verify converter
5213 - BUILD: jwt: fix declaration of EVP_KEY in jwt-h.h
5214 - MINOR: proto_tcp: use chunk_appendf() to ouput socket setup errors
5215 - MINOR: proto_tcp: also report the attempted MSS values in error message
5216 - MINOR: inet: report the faulty interface name in "bind" errors
5217 - MINOR: protocol: report the file and line number for binding/listening errors
5218 - MINOR: protocol: uniformize protocol errors
5219 - MINOR: resolvers: fix the resolv_str_to_dn_label() API about trailing zero
5220 - BUG/MEDIUM: resolver: make sure to always use the correct hostname length
5221 - BUG/MINOR: resolvers: do not reject host names of length 255 in SRV records
5222 - MINOR: resolvers: fix the resolv_dn_label_to_str() API about trailing zero
5223 - MEDIUM: listeners: split the thread mask between receiver and bind_conf
5224 - MINOR: listeners: add clone_listener() to duplicate listeners at boot time
5225 - MEDIUM: listener: add the "shards" bind keyword
5226 - BUG/MEDIUM: resolvers: use correct storage for the target address
5227 - MINOR: resolvers: merge address and target into a union "data"
5228 - BUG/MEDIUM: resolvers: fix truncated TLD consecutive to the API fix
5229 - BUG/MEDIUM: jwt: fix base64 decoding error detection
5230 - BUG/MINOR: jwt: use CRYPTO_memcmp() to compare HMACs
5231 - DOC: jwt: fix a typo in the jwt_verify() keyword description
5232 - BUG/MEDIUM: sample/jwt: fix another instance of base64 error detection
5233 - BUG/MINOR: http-ana: Don't eval front after-response rules if stopped on back
5234 - BUG/MINOR: sample: Fix 'fix_tag_value' sample when waiting for more data
5235 - DOC: config: Move 'tcp-response content' at the right place
5236 - BUG/MINOR: proxy: Use .disabled field as a bitfield as documented
5237 - MINOR: proxy: Introduce proxy flags to replace disabled bitfield
5238 - MINOR: sample/arg: Be able to resolve args found in defaults sections
5239 - MEDIUM: proxy: Warn about ambiguous use of named defaults sections
5240 - MINOR: proxy: Be able to reference the defaults section used by a proxy
5241 - MINOR: proxy: Add PR_FL_READY flag on fully configured and usable proxies
5242 - MINOR: config: Finish configuration for referenced default proxies
5243 - MINOR: config: No longer remove previous anonymous defaults section
5244 - MINOR: tcpcheck: Support 2-steps args resolution in defaults sections
5245 - MEDIUM: rules/acl: Parse TCP/HTTP rules and acls defined in defaults sections
5246 - MEDIUM: tcp-rules: Eval TCP rules defined in defaults sections
5247 - MEDIUM: http-ana: Eval HTTP rules defined in defaults sections
5248 - BUG/MEDIUM: sample: Cumulate frontend and backend sample validity flags
5249 - REGTESTS: Add scripts to test support of TCP/HTTP rules in defaults sections
5250 - DOC: config: Add documentation about TCP/HTTP rules in defaults section
5251 - DOC: config: Rework and uniformize how TCP/HTTP rules are documented
5252 - BUG/MINOR: proxy: Release ACLs and TCP/HTTP rules of default proxies
5253 - BUG/MEDIUM: cpuset: fix cpuset size for FreeBSD
5254 - BUG/MINOR: sample: fix backend direction flags consecutive to last fix
5255 - BUG/MINOR: listener: fix incorrect return on out-of-memory
5256 - BUG/MINOR: listener: add an error check for unallocatable trash
5257 - CLEANUP: listeners: remove unreachable code in clone_listener()
5258
Willy Tarreau4c67bd62021-10-08 18:22:24 +020052592021/10/08 : 2.5-dev9
5260 - head-truc
5261 - REGTESTS: lua: test the httpclient:get() feature
5262 - Revert "head-truc"
5263 - BUG/MEDIUM: httpclient: replace ist0 by istptr
5264 - MINOR: config: use a standard parser for the "nbthread" keyword
5265 - CLEANUP: init: remove useless test against MAX_THREADS in affinity loop
5266 - MEDIUM: init: de-uglify the per-thread affinity setting
5267 - MINOR: init: extract the setup and end of threads to their own functions
5268 - MINOR: log: Try to get the status code when MUX_EXIT_STATUS is retrieved
5269 - MINOR: mux-h1: Set error code if possible when MUX_EXIT_STATUS is returned
5270 - MINOR: mux-h1: Be able to set custom status code on parsing error
5271 - MEDIUM: mux-h1: Reject HTTP/1.0 GET/HEAD/DELETE requests with a payload
5272 - MEDIUM: h1: Force close mode for invalid uses of T-E header
5273 - BUG/MINOR: mux-h1/mux-fcgi: Sanitize TE header to only send "trailers"
5274 - MINOR: http: Add 422-Unprocessable-Content error message
5275 - MINOR: h1: Change T-E header parsing to fail if chunked encoding is found twice
5276 - BUG/MEDIUM: mux-h1/mux-fcgi: Reject messages with unknown transfer encoding
5277 - REGTESTS: Add script to validate T-E header parsing
5278 - REORG: pools: move default settings to defaults.h
5279 - DOC: peers: fix doc "enable" statement on "peers" sections
5280 - MINOR: Makefile: add MEMORY_POOLS to the list of DEBUG_xxx options
5281 - MINOR: ssl: Set connection error code in case of SSL read or write fatal failure
5282 - MINOR: ssl: Rename ssl_bc_hsk_err to ssl_bc_err
5283 - MINOR: ssl: Store the last SSL error code in case of read or write failure
5284 - REGTESTS: ssl: enable show_ssl_ocspresponse.vtc again
5285 - REGTESTS: ssl: enable ssl_crt-list_filters.vtc again
5286 - BUG/MEDIUM: lua: fix wakeup condition from sleep()
5287 - BUG/MAJOR: lua: use task_wakeup() to properly run a task once
5288 - MINOR: arg: Be able to forbid unresolved args when building an argument list
5289 - BUG/MINOR: tcpcheck: Don't use arg list for default proxies during parsing
5290 - BUG/MINOR: tcp-rules: Stop content rules eval on read error and end-of-input
5291 - MINOR: tasks: catch TICK_ETERNITY with BUG_ON() in __task_queue()
5292 - REGTESTS: ssl: show_ssl_ocspresponse w/ freebsd won't use base64
5293 - REGTESTS: ssl: wrong feature cmd in show_ssl_ocspresponse.vtc
5294 - CLEANUP: tasks: remove the long-unused work_lists
5295 - MINOR: task: provide 3 task_new_* wrappers to simplify the API
5296 - MINOR: time: uninline report_idle() and move it to task.c
5297 - REORG: sched: move idle time calculation from time.h to task.h
5298 - REORG: sched: move the stolen CPU time detection to sched_entering_poll()
5299 - BUG/MEDIUM: filters: Fix a typo when a filter is attached blocking the release
5300 - BUG/MEDIUM: http-ana: Clear request analyzers when applying redirect rule
5301 - MINOR: httpclient: destroy() must free the headers and the ists
5302 - MINOR: httpclient: set HTTPCLIENT_F_ENDED only in release
5303 - MINOR: httpclient: stop_and_destroy() ask the applet to autokill
5304 - MINOR: httpclient: test if started during stop_and_destroy()
5305 - MINOR: httpclient/lua: implement garbage collection
5306 - BUG/MEDIUM: httpclient/lua: crash because of b_xfer and get_trash_chunk()
5307 - MINOR: httpclient: destroy checks if a client was started but not stopped
5308 - BUG/MINOR: httpclient/lua: does not process headers when failed
5309 - MINOR: httpclient/lua: supports headers via named arguments
5310 - CLEANUP: server: always include the storage for SSL settings
5311 - CLEANUP: sample: rename sample_conv_var2smp() to *_sint
5312 - CLEANUP: sample: uninline sample_conv_var2smp_str()
5313 - MINOR: sample: provide a generic var-to-sample conversion function
5314 - BUG/MEDIUM: sample: properly verify that variables cast to sample
5315 - BUILD: action: add the relevant structures for function arguments
5316 - BUILD: extcheck: needs to include stream-t.h
5317 - BUILD: hlua: needs to include stream-t.h
5318 - BUILD: stats: define several missing structures in stats.h
5319 - BUILD: resolvers: define missing types in resolvers.h
5320 - BUILD: httpclient: include missing ssl_sock-t
5321 - BUILD: sample: include openssl-compat
5322 - BUILD: http_ana: need to include proxy-t to get redirect_rule
5323 - BUILD: http_rules: requires http_ana-t.h for REDIRECT_*
5324 - BUILD: vars: need to include xxhash
5325 - BUILD: peers: need to include eb{32/mb/pt}tree.h
5326 - BUILD: ssl_ckch: include ebpttree.h in ssl_ckch.c
5327 - BUILD: compiler: add the container_of() and container_of_safe() macros
5328 - BUILD: idleconns: include missing ebmbtree.h at several places
5329 - BUILD: connection: connection.h needs list.h and server.h
5330 - BUILD: tree-wide: add missing http_ana.h from many places
5331 - BUILD: cfgparse-ssl: add missing errors.h
5332 - BUILD: tcp_sample: include missing errors.h and session-t.h
5333 - BUILD: mworker: mworker-prog needs time.h for the 'now' variable
5334 - BUILD: tree-wide: add several missing activity.h
5335 - BUILD: compat: fix -Wundef on SO_REUSEADDR
5336 - CLEANUP: pools: pools-t.h doesn't need to include thread-t.h
5337 - REORG: pools: uninline the UAF allocator and force-inline the rest
5338 - REORG: thread: uninline the lock-debugging code
5339 - MINOR: thread/debug: replace nsec_now() with now_mono_time()
5340 - CLEANUP: remove some unneeded includes from applet-t.h
5341 - REORG: listener: move bind_conf_alloc() and listener_state_str() to listener.c
5342 - CLEANUP: listeners: do not include openssl-compat
5343 - CLEANUP: servers: do not include openssl-compat
5344 - REORG: ssl: move ssl_sock_is_ssl() to connection.h and rename it
5345 - CLEANUP: mux_fcgi: remove dependency on ssl_sock
5346 - CLEANUP: ssl/server: move ssl_sock_set_srv() to srv_set_ssl() in server.c
5347 - REORG: ssl-sock: move the sslconns/totalsslconns counters to global
5348 - REORG: sample: move the crypto samples to ssl_sample.c
5349 - REORG: sched: moved samp_time and idle_time to task.c as well
5350 - REORG: time/ticks: move now_ms and global_now_ms definitions to ticks.h
5351 - CLEANUP: tree-wide: remove unneeded include time.h in ~20 files
5352 - REORG: activity: uninline activity_count_runtime()
5353 - REORG: acitvity: uninline sched_activity_entry()
5354 - CLEANUP: stream: remove many unneeded includes from stream-t.h
5355 - CLEANUP: stick-table: no need to include socket nor in.h
5356 - MINOR: connection: use uint64_t for the hashes
5357 - REORG: connection: move the hash-related stuff to connection.c
5358 - REORG: connection: uninline conn_notify_mux() and conn_delete_from_tree()
5359 - REORG: server: uninline the idle conns management functions
5360 - REORG: ebtree: split structures into their own file ebtree-t.h
5361 - CLEANUP: tree-wide: only include ebtree-t from type files
5362 - REORG: connection: move the largest inlines from connection.h to connection.c
5363 - CLEANUP: connection: do not include http_ana!
5364 - CLEANUP: connection: remove unneeded tcpcheck-t.h and use only session-t.h
5365 - REORG: connection: uninline the rest of the alloc/free stuff
5366 - REORG: task: uninline the loop time measurement code
5367 - CLEANUP: time: move a few configurable defines to defaults.h
5368 - CLEANUP: fd: do not include time.h
5369 - REORG: fd: uninline compute_poll_timeout()
5370 - CLENAUP: wdt: use ha_tkill() instead of accessing pthread directly
5371 - REORG: thread: move the thread init/affinity/stop to thread.c
5372 - REORG: thread: move ha_get_pthread_id() to thread.c
5373 - MINOR: thread: use a dedicated static pthread_t array in thread.c
5374 - CLEANUP: thread: uninline ha_tkill/ha_tkillall/ha_cpu_relax()
5375 - DOC: configuration: add clarification on escaping in keyword arguments
5376 - BUG/MINOR: task: fix missing include with DEBUG_TASK
5377 - MINOR: pools: report the amount used by thread caches in "show pools"
5378 - MINOR: quic: Distinguish packet and SSL read enc. level in traces
5379 - MINOR: quic: Add a function to dump SSL stack errors
5380 - MINOR: quic: BUG_ON() SSL errors.
5381 - MINOR: quic: Fix SSL error issues (do not use ssl_bio_and_sess_init())
5382 - BUG/MEDIUM: mux-quic: reinsert all streams in by_id tree
5383 - BUG/MAJOR: xprt-quic: do not queue qc timer if not set
5384 - MINOR: mux-quic: release connection if no more bidir streams
5385 - BUG/MAJOR: quic: remove qc from receiver cids tree on free
5386 - BUG/MEDIUM: mux_h2: Handle others remaining read0 cases on partial frames
5387 - MINOR: qpack: do not encode invalid http status code
5388 - MINOR: qpack: support non-indexed http status code encoding
5389 - MINOR: qpack: fix memory leak on huffman decoding
5390 - CLEANUP: mux-quic: remove unused code
5391 - BUG/MINOR: quic: fix includes for compilation
5392 - BUILD: connection: avoid a build warning on FreeBSD with SO_USER_COOKIE
5393 - BUILD: init: avoid a build warning on FreeBSD with USE_PROCCTL
5394 - REORG: time: move time-keeping code and variables to clock.c
5395 - REORG: clock: move the updates of cpu/mono time to clock.c
5396 - MINOR: activity: get the run_time from the clock updates
5397 - CLEANUP: clock: stop exporting before_poll and after_poll
5398 - REORG: clock: move the clock_id initialization to clock.c
5399 - REORG: clock/wdt: move wdt timer initialization to clock.c
5400 - MINOR: clock: move the clock_ids to clock.c
5401 - MINOR: wdt: move wd_timer to wdt.c
5402 - CLEANUP: wdt: do not remap SI_TKILL to SI_LWP, test the values directly
5403 - REORG: thread/sched: move the task_per_thread stuff to thread_ctx
5404 - REORG: thread/clock: move the clock parts of thread_info to thread_ctx
5405 - REORG: thread/sched: move the thread_info flags to the thread_ctx
5406 - REORG: thread/sched: move the last dynamic thread_info to thread_ctx
5407 - MINOR: thread: make "ti" a const pointer and clean up thread_info a bit
5408 - MINOR: threads: introduce a minimalistic notion of thread-group
5409 - MINOR: global: add a new "thread-groups" directive
5410 - MINOR: global: add a new "thread-group" directive
5411 - MINOR: threads: make tg point to the current thread's group
5412 - MEDIUM: threads: automatically assign threads to groups
5413 - MINOR: threads: set the group ID and its bit in the thread group
5414 - MINOR: threads: set the tid, ltid and their bit in thread_cfg
5415 - MEDIUM: threads: replace ha_set_tid() with ha_set_thread()
5416 - MINOR: threads: add the current group ID in thread-local "tgid" variable
5417 - MINOR: debug: report the group and thread ID in the thread dumps
5418 - MEDIUM: listeners: support the definition of thread groups on bind lines
5419 - MINOR: threads: add a new function to resolve config groups and masks
5420 - MEDIUM: config: resolve relative threads on bind lines to absolute ones
5421 - MEDIUM: stick-table: never learn the "conn_cur" value from peers
5422
Willy Tarreau538f3e02021-09-24 15:52:17 +020054232021/09/24 : 2.5-dev8
5424 - BUILD: compiler: fixed a missing test on defined(__GNUC__)
5425 - BUILD: halog: fix a -Wundef warning on non-glibc systems
5426 - BUILD: threads: fix -Wundef for _POSIX_PRIORITY_SCHEDULING on libmusl
5427 - BUG/MINOR: compat: make sure __WORDSIZE is always defined
5428 - BUILD: sample: fix format warning on 32-bit archs in sample_conv_be2dec_check()
5429 - CLEANUP: pools: factor all malloc_trim() calls into trim_all_pools()
5430 - MINOR: pools: automatically disable malloc_trim() with external allocators
5431 - MINOR: pools: report it when malloc_trim() is enabled
5432 - DOC: Add .mailmap
5433 - CLEANUP: tree-wide: fix prototypes for functions taking no arguments.
5434 - CLEANUP: Remove prototype for non-existent thread_get_default_count()
5435 - CLEANUP: acl: Remove unused variable when releasing an acl expression
5436 - BUG/MAJOR: mux-h1: Don't eval input data if an error was reported
5437 - DOC: update Tim's address in .mailmap
5438 - MINOR: pools: use mallinfo2() when available instead of mallinfo()
5439 - BUG/MINOR: tcpcheck: Improve LDAP response parsing to fix LDAP check
5440 - DOC: management: certificate files must be sanitized before injection
5441 - BUG/MINOR: connection: prevent null deref on mux cleanup task allocation
5442 - BUILD: ist: prevent gcc11 maybe-uninitialized warning on istalloc
5443 - BUG/MINOR: cli/payload: do not search for args inside payload
5444 - BUILD: sockpair: do not set unused flag
5445 - BUILD: proto_uxst: do not set unused flag
5446 - BUILD: fd: remove unused variable totlen in fd_write_frag_line()
5447 - MINOR: applet: remove the thread mask from appctx_new()
5448 - REORG: threads: move ha_get_pthread_id() to tinfo.h
5449 - CLEANUP: Apply ist.cocci
5450 - DEV: coccinelle: Add ist.cocci
5451 - CLEANUP: Apply bug_on.cocci
5452 - DEV: coccinelle: Add xalloc_size.cocci
5453 - DEV: coccinelle: Add bug_on.cocci
5454 - CLEANUP: Apply xalloc_size.cocci
5455 - DEV: coccinelle: Add xalloc_cast.cocci
5456 - BUG/MINOR: flt-trace: fix an infinite loop when random-parsing is set
5457 - MINOR: httpclient: add the EOH when no headers where provided
5458 - CLEANUP: Include check.h in flt_spoe.c
5459 - CLEANUP: Remove unreachable `break` from parse_time_err()
5460 - BUG/MINOR: server: allow 'enable health' only if check configured
5461 - BUG/MINOR: server: alloc dynamic srv ssl ctx if proxy uses ssl chk rule
5462 - MINOR: server: enable more keywords for ssl checks for dynamic servers
5463 - MINOR: server: enable more check related keywords for dynamic servers
5464 - REORG: server: move slowstart init outside of checks
5465 - MINOR: server: enable slowstart for dynamic server
5466 - MEDIUM: listener: deprecate "process" in favor of "thread" on bind lines
5467 - BUG/MEDIUM: leastconn: fix rare possibility of divide by zero
5468 - BUG/MINOR: quic: Possible NULL pointer dereferencing when dumping streams.
5469 - MINOR: quic: Move transport parmaters to anynomous struct.
5470 - MINOR: mux_quic: Add QUIC mux layer.
5471 - MINOR: connection: Add callbacks definitions for QUIC.
5472 - MINOR: quic: Attach QUIC mux connection objet to QUIC connection.
5473 - MINOR: quic: Add a new definition to store STREAM frames.
5474 - MINOR: h3: Add HTTP/3 definitions.
5475 - MINOR: qpack: Add QPACK compression.
5476 - MINOR: quic_sock: Finalize the QUIC connections.
5477 - MINOR: quic: Disable the action of ->rcv_buf() xprt callback
5478 - MINOR: quic: Add callbacks for (un)scribing to QUIC xprt.
5479 - MINOR: quic: Variable-length integer encoding/decoding into/from buffer struct.
5480 - BUG/MINOR: quic: Wrong ->accept() error handling
5481 - MINOR: quic: Add a wrapper function to update transport parameters.
5482 - MINOR: quic: Update the streams transport parameters.
5483 - MINOR: quic: Avoid header collisions
5484 - MINOR: quic: Replace max_packet_size by max_udp_payload size.
5485 - MINOR: quic: Enable some quic, h3 and qpack modules compilation.
5486 - MINOR: quic: Move an SSL func call from QUIC I/O handler to the xprt init.
5487 - MINOR: quic: Initialize the session before starting the xprt.
5488 - BUG/MINOR: quic: Do not check the acception of a new conn from I/O handler.
5489 - MINOR: quic: QUIC conn initialization from I/O handler
5490 - MINOR: quic: Remove header protection for conn with context
5491 - MINOR: quic: Derive the initial secrets asap
5492 - MINOR: quic: Remove header protection also for Initial packets
5493 - BUG/MINOR: quic: Wrong memory free in quic_update_ack_ranges_list()
5494 - MINOR: quic: quic_update_ack_ranges_list() code factorization
5495 - MINOR: quic: Useless test in quic_update_ack_ranges_list()
5496 - MINOR: quic: Remove a useless variable in quic_update_ack_ranges_list()
5497 - BUG/MINOR: quic: Missing cases treatement when updating ACK ranges
5498 - CLEAUNUP: quic: Usage of a useless variable in qc_treat_rx_pkts()
5499 - BUG/MINOR: quic: Wrong RX packet reference counter usage
5500 - MINOR: quic: Do not stop the packet parsing too early in qc_treat_rx_packets()
5501 - MINOR: quic: Add a lock for RX packets
5502 - MINOR: quic: Move the connection state
5503 - MINOR: quic: Replace quic_conn_ctx struct by ssl_sock_ctx struct
5504 - MINOR: quic: Replace the RX list of packet by a thread safety one.
5505 - MINOR: quic: Replace the RX unprotected packet list by a thread safety one.
5506 - MINOR: quic: Add useful traces for I/O dgram handler
5507 - MINOR: quic: Do not wakeup the xprt task on ACK receipt
5508 - MINOR: quic: Connection allocations rework
5509 - MINOR: quic: Move conn_prepare() to ->accept_conn() callback
5510 - MINOR: quic: Make qc_lstnr_pkt_rcv() be thread safe.
5511 - MINOR: quic: Add a ring buffer implementation for QUIC
5512 - MINOR: quic: Prefer x25519 as ECDH preferred parametes.
5513 - MINOR: quic: Add the QUIC v1 initial salt.
5514 - BUG/MINOR: quic: Too much reduced computed space to build handshake packets
5515 - MINOR: net_helper: add functions for pointers
5516 - MINOR: quic: Add ring buffer definition (struct qring) for QUIC
5517 - MINOR: proto_quic: Allocate TX ring buffers for listeners
5518 - MINOR: quic: Initialize pointers to TX ring buffer list
5519 - MINOR: quic: Make use of TX ring buffers to send QUIC packets
5520 - MINOR: quic_tls: Make use of the QUIC V1 salt.
5521 - MINOR: quic: Remove old TX buffer implementation
5522 - MINOR: Add function for TX packets reference counting
5523 - MINOR: quic: Add TX packets at the very last time to their tree.
5524 - MINOR: quic: Unitialized mux context upon Client Hello message receipt.
5525 - MINOR: quic: Missing encryption level rx.crypto member initialization and lock.
5526 - MINOR: quic: Rename ->rx.rwlock of quic_enc_level struct to ->rx.pkts_rwlock
5527 - MINOR: quic: Make qc_treat_rx_pkts() be thread safe.
5528 - MINOR: quic: Make ->tx.frms quic_pktns struct member be thread safe
5529 - MINOR: quic: Replace quic_tx_frm struct by quic_frame struct
5530 - MINOR: quic: Add a mask for TX frame builders and their authorized packet types
5531 - MINOR: quic: Add a useful function to compute any frame length.
5532 - MINOR: quic: Add the QUIC connection state to traces
5533 - MINOR: quic: Store post handshake frame in ->pktns.tx.frms MT_LIST
5534 - MINOR: quic: Add the packet type to quic_tx_packet struct
5535 - MINOR: quic: Modify qc_do_build_hdshk_pkt() to accept any packet type
5536 - MINOR: quic: Atomically handle packet number space ->largest_acked_pn variable
5537 - MINOR: quic: Modify qc_build_cfrms() to support any frame
5538 - MINOR: quic: quic_conn_io_cb() task rework
5539 - MINOR: quic: Make qc_build_hdshk_pkt() atomically consume a packet number
5540 - MINOR: quic: qc_do_build_hdshk_pkt() does not need to pass a copy of CRYPTO frame
5541 - MINOR: quic: Remove Application level related functions
5542 - MINOR: quic: Rename functions which do not build only Handshake packets
5543 - MINOR: quic: Make circular buffer internal buffers be variable-sized.
5544 - MINOR: quic: Add a pool for TX ring buffer internal buffer
5545 - MINOR: quic: Make use of the last cbuf API when initializing TX ring buffers
5546 - MINOR: quic: Missing acks encoded size updates.
5547 - MINOR: quic: Evaluate the packet lengths in advance
5548 - MINOR: quic: Update the TLS extension for QUIC transport parameters
5549 - MINOR: quic: Fix handshake state debug strings
5550 - MINOR: quic: Atomically get/set the connection state
5551 - MINOR: quic: Missing QUIC encryption level for qc_build_pkt()
5552 - MINOR: quic: Coalesce Application level packets with Handshake packets.
5553 - MINOR: quic: Wrong flags handling for acks
5554 - MINOR: quic: Missing case when discarding HANDSHAKE secrets
5555 - MINOR: quic: Post handshake packet building improvements
5556 - MINOR: quic: Prepare Application level packet asap.
5557 - MINOR: h3: Send h3 settings asap
5558 - MINOR: quic: Wrong STREAM frame length computing
5559 - MINOR: quic: Wrong short packet minimum length
5560 - MINOR: quic: Prepare STREAM frames to fill QUIC packets
5561 - MINOR: h3: change default settings
5562 - MINOR: quic-enc: fix varint encoding
5563 - MINOR: qpack: fix wrong comment
5564 - MINOR: qpack: generate headers list on decoder
5565 - MINOR: h3: parse headers to htx
5566 - MINOR: h3: allocate stream on headers
5567 - MEDIUM: mux-quic: implement ring buffer on stream tx
5568 - MINOR: mux-quic: send SETTINGS on uni stream
5569 - MINOR: h3: define snd_buf callback and divert mux ops
5570 - MINOR: mux-quic: define FIN stream flag
5571 - MINOR: qpack: create qpack-enc module
5572 - MINOR: qpack: encode headers functions
5573 - MINOR: h3: encode htx headers to QPACK
5574 - MINOR: h3: send htx data
5575 - MINOR: h3/mux: detect fin on last h3 frame of the stream
5576 - MINOR: quic: Shorten some handshakes
5577 - MINOR: quic: Make QUIC-TLS support at least two initial salts
5578 - MINOR: quic: Attach the QUIC connection to a thread.
5579 - MINOR: quic: Missing active_connection_id_limit default value
5580 - MINOR: quic_sock: Do not flag QUIC connections as being set
5581 - MINOR: buf: Add b_force_xfer() function
5582 - MINOR: quic: Make use of buffer structs to handle STREAM frames
5583 - MINOR: mux_quic: move qc_process() code to qc_send()
5584 - MINOR: quic: Add a typedef for unsigned long long
5585 - MINOR: quic: Confusion between TX/RX for the frame builders
5586 - MINOR: quic: Wrong packet flags settings during frame building
5587 - MINOR: quic: Constantness fixes for frame builders/parsers.
5588 - MINOR: quic_tls: Client/serveur state reordering
5589 - MINOR: quic: Wrong packet loss detection due to wrong pktns order
5590 - MINOR: quic: Wrong packet number space selection in quic_loss_pktns()
5591 - MINOR: quic: Initial packet number spaced not discarded
5592 - MINOR: quic: Add useful trace about pktns discarding
5593 - MINOR: mux_quic: Export the mux related flags
5594 - MINOR: quic: Implement quic_conn_subscribe()
5595 - MINOR: quic: Wake up the mux upon ACK receipt
5596 - MINOR: quic: Stream FIN bit fix in qcs_push_frame()
5597 - MINOR: quic: Implement qc_process_mux()
5598 - MINOR: quic: Wake up the xprt from mux
5599 - CLEANUP: quic: Remove useless inline functions
5600 - MINOR: quic: RX packets memory leak
5601 - MINOR: quic: Possible endless loop in qc_treat_rx_pkts()
5602 - MINOR: quic: Crash upon too big packets receipt
5603 - MINOR: quic: define close handler
5604 - MEDIUM: quic: implement mux release/conn free
5605 - MINOR: quic: fix qcc subs initialization
5606 - BUG/MINOR: h1-htx: Fix a typo when request parser is reset
5607 - BUG/MEDIUM: mux-h1: Adjust conditions to ask more space in the channel buffer
5608 - BUG/MEDIUM: stream-int: Notify stream that the mux wants more room to xfer data
5609 - BUG/MEDIUM: stream: Stop waiting for more data if SI is blocked on RXBLK_ROOM
5610 - MINOR: stream-int: Set CO_RFL transient/persistent flags apart in si_cs_rcv()
5611 - MINOR: htx: Add an HTX flag to know when a message is fragmented
5612 - MINOR: htx: Add a function to know if the free space wraps
5613 - BUG/MEDIUM: stream-int: Defrag HTX message in si_cs_recv() if necessary
5614 - MINOR: stream-int: Notify mux when the buffer is not stuck when calling rcv_buf
5615 - BUG/MINOR: http-ana: increment internal_errors counter on response error
5616 - MINOR: stats: Enable dark mode on stat web page
5617 - CLEANUP: stats: Fix some alignment mistakes
5618 - MINOR: httpclient: httpclient_data() returns the available data
5619 - MINOR: httpclient: httpclient_ended() returns 1 if the client ended
5620 - MINOR: httpclient/lua: httpclient:get() API in lua
5621 - MINOR: httpclient/lua: implement the headers in the response object
5622 - BUG/MINOR: httpclient/lua: return an error on argument check
5623 - CLEANUP: slz: Mark `reset_refs` as static
5624
Willy Tarreau4b3a9fe2021-09-12 11:36:38 +020056252021/09/12 : 2.5-dev7
5626 - BUG/MINOR: config: reject configs using HTTP with bufsize >= 256 MB
5627 - CLEANUP: htx: remove comments about "must be < 256 MB"
5628 - BUG/MAJOR: htx: fix missing header name length check in htx_add_header/trailer
5629 - Revert "BUG/MINOR: stream-int: Don't block reads in si_update_rx() if chn may receive"
5630 - MINOR: proxy: add a global "grace" directive to postpone soft-stop
5631 - MINOR: vars: rename vars_init() to vars_init_head()
5632 - CLEANUP: vars: rename sample_clear_stream() to var_unset()
5633 - REORG: vars: remerge sample_store{,_stream}() into var_set()
5634 - MEDIUM: vars: make the ifexist variant of set-var only apply to the proc scope
5635 - MINOR: vars: add a VF_CREATEONLY flag for creation
5636 - MINOR: vars: support storing empty sample data with a variable
5637 - MINOR: vars: store flags into variables and add VF_PERMANENT
5638 - MEDIUM: vars: make var_clear() only reset VF_PERMANENT variables
5639 - MEDIUM: vars: pre-create parsed SCOPE_PROC variables as permanent ones
5640 - MINOR: vars: preset a random seed to hash variables names
5641 - MEDIUM: vars: replace the global name index with a hash
5642 - CLEANUP: vars: remove the now unused var_names array
5643 - MINOR: vars: centralize the lock/unlock into static inlines
5644 - OPTIM: vars: only takes the variables lock on shared entries
5645 - OPTIM: vars: remove internal bookkeeping for vars_global_size
5646 - OPTIM: vars: do not keep variables usage stats if no limit is set
5647 - BUILD: fix dragonfly build again on __read_mostly
5648 - CI: Github Actions: temporarily disable Opentracing
5649 - BUG/MEDIUM: mux-h1: Remove "Upgrade:" header for requests with payload
5650 - MINOR: htx: Skip headers with no value when adding a header list to a message
5651 - CLEANUP: mux-h1: Remove condition rejecting upgrade requests with payload
5652 - BUG/MEDIUM: stream-int: Don't block SI on a channel policy if EOI is reached
5653 - BUG/MEDIUM: http-ana: Reset channels analysers when returning an error
5654 - BUG/MINOR: filters: Set right FLT_END analyser depending on channel
5655 - CLEANUP: Add haproxy/xxhash.h to avoid modifying import/xxhash.h
5656 - CLEANUP: ebmbtree: Replace always-taken elseif by else
5657 - CLEANUP: Move XXH3 macro from haproxy/compat.h to haproxy/xxhash.h
5658 - BUILD: opentracing: exclude the use of haproxy variables for the OpenTracing context
5659 - BUG/MINOR: opentracing: enable the use of http headers without a set value
5660 - CLEANUP: opentracing: use the haproxy function to generate uuid
5661 - MINOR: opentracing: change the scope of the variable 'ot.uuid' from 'sess' to 'txn'
5662 - CI: Github Actions: re-enable Opentracing
5663 - CLEANUP: opentracing: simplify the condition on the empty header
5664 - BUG/MEDIUM lua: Add missing call to RESET_SAFE_LJMP in hlua_filter_new()
5665
Willy Tarreauf653e832021-09-03 15:19:56 +020056662021/09/03 : 2.5-dev6
5667 - BUG/MINOR threads: Use get_(local|gm)time instead of (local|gm)time
5668 - BUG/MINOR: tools: Fix loop condition in dump_text()
5669 - BUILD: ssl: next round of build warnings on LIBRESSL_VERSION_NUMBER
5670 - BUILD: ssl: fix two remaining occurrences of #if USE_OPENSSL
5671 - BUILD: tools: properly guard __GLIBC__ with defined()
5672 - BUILD: globally enable -Wundef
5673 - MINOR: log: Remove log-error-via-logformat option
5674 - MINOR: log: Add new "error-log-format" option
5675 - BUG/MAJOR: queue: better protect a pendconn being picked from the proxy
5676 - CLEANUP: Add missing include guard to signal.h
5677 - MINOR: ssl: Add new ssl_bc_hsk_err sample fetch
5678 - MINOR: connection: Add a connection error code sample fetch for backend side
5679 - REGTESTS: ssl: Add tests for bc_conn_err and ssl_bc_hsk_err sample fetches
5680 - MINOR: http-rules: add a new "ignore-empty" option to redirects.
5681 - CI: Github Actions: temporarily disable BoringSSL builds
5682 - BUG/MINOR: vars: fix set-var/unset-var exclusivity in the keyword parser
5683 - BUG/MINOR: vars: improve accuracy of the rules used to check expression validity
5684 - MINOR: sample: add missing ARGC_ entries
5685 - BUG/MINOR: vars: properly set the argument parsing context in the expression
5686 - DOC: configuration: remove wrong tcp-request examples in tcp-response
5687 - MEDIUM: vars: add a new "set-var-fmt" action
5688 - BUG/MEDIUM: vars: run over the correct list in release_store_rules()
5689 - BUG/MINOR: vars: truncate the variable name in error reports about scope.
5690 - BUG/MINOR: vars: do not talk about global section in CLI errors for set-var
5691 - CLEANUP: vars: name the temporary proxy "CFG" instead of "CLI" for global vars
5692 - MINOR: log: make log-format expressions completely usable outside of req/resp
5693 - MINOR: vars: add a "set-var-fmt" directive to the global section
5694 - MEDIUM: vars: also support format strings in CLI's "set var" command
5695 - CLEANUP: vars: factor out common code from vars_get_by_{desc,name}
5696 - MINOR: vars: make vars_get_by_* support an optional default value
5697 - MINOR: vars: make the vars() sample fetch function support a default value
5698 - BUILD: ot: add argument for default value to vars_get_by_name()
5699
Willy Tarreau446344c2021-08-28 13:46:11 +020057002021/08/28 : 2.5-dev5
5701 - MINOR: httpclient: initialize the proxy
5702 - MINOR: httpclient: implement a simple HTTP Client API
5703 - MINOR: httpclient/cli: implement a simple client over the CLI
5704 - MINOR: httpclient/cli: change the User-Agent to "HAProxy"
5705 - MEDIUM: ssl: Keep a reference to the client's certificate for use in logs
5706 - BUG/MEDIUM: h2: match absolute-path not path-absolute for :path
5707 - BUILD/MINOR: ssl: Fix compilation with OpenSSL 1.0.2
5708 - MINOR: server: check if srv is NULL in free_server()
5709 - MINOR: proxy: check if p is NULL in free_proxy()
5710 - BUG/MEDIUM: cfgparse: do not allocate IDs to automatic internal proxies
5711 - BUG/MINOR: http_client: make sure to preset the proxy's default settings
5712 - REGTESTS: http_upgrade: fix incorrect expectation on TCP->H1->H2
5713 - REGTESTS: abortonclose: after retries, 503 is expected, not close
5714 - REGTESTS: server: fix agent-check syntax and expectation
5715 - BUG/MINOR: httpclient: fix uninitialized sl variable
5716 - BUG/MINOR: httpclient/cli: change the appctx test in the callbacks
5717 - BUG/MINOR: httpclient: check if hdr_num is not 0
5718 - MINOR: httpclient: cleanup the include files
5719 - MINOR: hlua: take the global Lua lock inside a global function
5720 - MINOR: tools: add FreeBSD support to get_exec_path()
5721 - BUG/MINOR: systemd: ExecStartPre must use -Ws
5722 - MINOR: systemd: remove the ExecStartPre line in the unit file
5723 - MINOR: ssl: add an openssl version string parser
5724 - MINOR: cfgcond: implements openssl_version_atleast and openssl_version_before
5725 - CLEANUP: ssl: remove useless check on p in openssl_version_parser()
5726 - BUG/MINOR: stick-table: fix the sc-set-gpt* parser when using expressions
5727 - BUG/MINOR: httpclient: remove deinit of the httpclient
5728 - BUG/MEDIUM: base64: check output boundaries within base64{dec,urldec}
5729 - MINOR: httpclient: set verify none on the https server
5730 - MINOR: httpclient: add the server to the proxy
5731 - BUG/MINOR: httpclient: fix Host header
5732 - BUILD: httpclient: fix build without OpenSSL
5733 - CI: github-actions: remove obsolete options
5734 - CLEANUP: assorted typo fixes in the code and comments
5735 - MINOR: proc: setting the process to produce a core dump on FreeBSD.
5736 - BUILD: adopt script/build-ssl.sh for OpenSSL-3.0.0beta2
5737 - MINOR: server: return the next srv instance on free_server
5738 - BUG/MINOR: stats: use refcount to protect dynamic server on dump
5739 - MEDIUM: server: extend refcount for all servers
5740 - MINOR: server: define non purgeable server flag
5741 - MINOR: server: mark referenced servers as non purgeable
5742 - MINOR: server: mark servers referenced by LUA script as non purgeable
5743 - MEDIUM: server: allow to remove servers at runtime except non purgeable
5744 - BUG/MINOR: base64: base64urldec() ignores padding in output size check
5745 - REGTEST: add missing lua requirements on server removal test
5746 - REGTEST: fix haproxy required version for server removal test
5747 - BUG/MINOR: proxy: don't dump servers of internal proxies
5748 - REGTESTS: Use `feature cmd` for 2.5+ tests
5749 - REGTESTS: Remove REQUIRE_VERSION=1.5 from all tests
5750 - BUG/MINOR: resolvers: mark servers with name-resolution as non purgeable
5751 - MINOR: compiler: implement an ONLY_ONCE() macro
5752 - BUG/MINOR: lua: use strlcpy2() not strncpy() to copy sample keywords
5753 - MEDIUM: ssl: Capture more info from Client Hello
5754 - MINOR: sample: Expose SSL captures using new fetchers
5755 - MINOR: sample: Add be2dec converter
5756 - MINOR: sample: Add be2hex converter
5757 - MEDIUM: config: Deprecate tune.ssl.capture-cipherlist-size
5758 - BUG/MINOR: time: fix idle time computation for long sleeps
5759 - MINOR: time: add report_idle() to report process-wide idle time
5760 - BUG/MINOR: ebtree: remove dependency on incorrect macro for bits per long
5761 - BUILD: activity: use #ifdef not #if on USE_MEMORY_PROFILING
5762 - BUILD/MINOR: defaults: eliminate warning on MAXHOSTNAMELEN with -Wundef
5763 - BUILD/MINOR: ssl: avoid a build warning on LIBRESSL_VERSION with -Wundef
5764 - IMPORT: slz: silence a build warning with -Wundef
5765 - BUILD/MINOR: regex: avoid a build warning on USE_PCRE2 with -Wundef
5766
Willy Tarreau08d0f232021-08-17 14:08:55 +020057672021/08/17 : 2.5-dev4
5768 - MINOR: log: rename 'dontloglegacyconnerr' to 'log-error-via-logformat'
5769 - MINOR: doc: rename conn_status in `option httsplog`
5770 - MINOR: proxy: disabled takes a stopping and a disabled state
5771 - MINOR: stats: shows proxy in a stopped state
5772 - BUG/MINOR: server: fix race on error path of 'add server' CLI if track
5773 - CLEANUP: thread: fix fantaisist indentation of thread_harmless_till_end()
5774 - MINOR: threads: make thread_release() not wait for other ones to complete
5775 - MEDIUM: threads: add a stronger thread_isolate_full() call
5776 - MEDIUM: servers: make the server deletion code run under full thread isolation
5777 - BUG/MINOR: server: remove srv from px list on CLI 'add server' error
5778 - MINOR: activity/fd: remove the dead_fd counter
5779 - MAJOR: fd: get rid of the DWCAS when setting the running_mask
5780 - CLEANUP: fd: remove the now unused fd_set_running()
5781 - CLEANUP: fd: remove the now unneeded fd_mig_lock
5782 - BUG/MINOR: server: update last_change on maint->ready transitions too
5783 - MINOR: spoe: Add a pointer on the filter config in the spoe_agent structure
5784 - BUG/MEDIUM: spoe: Create a SPOE applet if necessary when the last one is released
5785 - BUG/MEDIUM: spoe: Fix policy to close applets when SPOE connections are queued
5786 - MINOR: server: unmark deprecated on enable health/agent cli
5787 - MEDIUM: task: implement tasklet kill
5788 - MINOR: server: initialize fields for dynamic server check
5789 - MINOR: check: allocate default check ruleset for every backends
5790 - MINOR: check: export check init functions
5791 - MINOR: check: do not increment global maxsock at runtime
5792 - MINOR: server: implement a refcount for dynamic servers
5793 - MEDIUM: check: implement check deletion for dynamic servers
5794 - MINOR: check: enable safe keywords for dynamic servers
5795 - MEDIUM: server: implement check for dynamic servers
5796 - MEDIUM: server: implement agent check for dynamic servers
5797 - REGTESTS: server: add dynamic check server test
5798 - MINOR: doc: specify ulimit-n usage for dynamic servers
5799 - REGTESTS: server: fix dynamic server with checks test
5800 - CI: travis-ci: temporarily disable arm64 builds
5801 - BUG/MINOR: check: test if server is not null in purge
5802 - MINOR: global: define MODE_STOPPING
5803 - BUG/MINOR: server: do not use refcount in free_server in stopping mode
5804 - ADMIN: dyncookie: implement a simple dynamic cookie calculator
5805 - BUG/MINOR: check: do not reset check flags on purge
5806 - BUG/MINOR: check: fix leak on add dynamic server with agent-check error
5807 - BUG/MEDIUM: check: fix leak on agent-check purge
5808 - BUG/MEDIUM: server: support both check/agent-check on a dynamic instance
5809 - BUG/MINOR: buffer: fix buffer_dump() formatting
5810 - MINOR: channel: remove an htx block from a channel
5811 - BUG/MINOR: tcpcheck: Properly detect pending HTTP data in output buffer
5812 - BUG/MINOR: stream: Don't release a stream if FLT_END is still registered
5813 - MINOR: lua: Add a flag on lua context to know the yield capability at run time
5814 - BUG/MINOR: lua: Yield in channel functions only if lua context can yield
5815 - BUG/MINOR: lua: Don't yield in channel.append() and channel.set()
5816 - MINOR: filters/lua: Release filters before the lua context
5817 - MINOR: lua: Add a function to get a reference on a table in the stack
5818 - MEDIUM: lua: Process buffer data using an offset and a length
5819 - MEDIUM: lua: Improve/revisit the lua api to manipulate channels
5820 - DOC: Improve the lua documentation
5821 - MEDIUM: filters/lua: Add support for dummy filters written in lua
5822 - MINOR: lua: Add a function to get a filter attached to a channel class
5823 - MINOR: lua: Add flags on the lua TXN to know the execution context
5824 - MEDIUM: filters/lua: Be prepared to filter TCP payloads
5825 - MEDIUM: filters/lua: Support declaration of some filter callback functions in lua
5826 - MEDIUM: filters/lua: Add HTTPMessage class to help HTTP filtering
5827 - MINOR: filters/lua: Add request and response HTTP messages in the lua TXN
5828 - MINOR: filters/lua: Support the HTTP filtering from filters written in lua
5829 - DOC: config: Fix 'http-response send-spoe-group' documentation
5830 - BUG/MINOR: lua: Properly check negative offset in Channel/HttpMessage functions
5831 - BUG/MINOR: lua: Properly catch alloc errors when parsing lua filter directives
5832 - BUG/MEDIUM: cfgcheck: verify existing log-forward listeners during config check
5833 - MINOR: cli: delare the CLI frontend as an internal proxy
5834 - MINOR: proxy: disable warnings for internal proxies
5835 - BUG/MINOR: filters: Always set FLT_END analyser when CF_FLT_ANALYZE flag is set
5836 - BUG/MINOR: lua/filters: Return right code when txn:done() is called
5837 - DOC: lua-api: Add documentation about lua filters
5838 - CI: Remove obsolete USE_SLZ=1 CI job
5839 - CLEANUP: assorted typo fixes in the code and comments
5840 - CI: github actions: relax OpenSSL-3.0.0 version comparision
5841 - BUILD: tools: get the absolute path of the current binary on NetBSD.
5842 - DOC: Minor typo fix - 'question mark' -> 'exclamation mark'
5843 - DOC/MINOR: fix typo in management document
5844 - MINOR: http: add a new function http_validate_scheme() to validate a scheme
5845 - BUG/MAJOR: h2: verify early that non-http/https schemes match the valid syntax
5846 - BUG/MAJOR: h2: verify that :path starts with a '/' before concatenating it
5847 - BUG/MAJOR: h2: enforce stricter syntax checks on the :method pseudo-header
5848 - BUG/MEDIUM: h2: give :authority precedence over Host
5849 - REGTESTS: add a test to prevent h2 desync attacks
5850
Willy Tarreau8441deb2021-08-01 18:19:51 +020058512021/08/01 : 2.5-dev3
5852 - BUG/MINOR: arg: free all args on make_arg_list()'s error path
5853 - BUG/MINOR: cfgcond: revisit the condition freeing mechanism to avoid a leak
5854 - MEDIUM: proxy: remove long-broken 'option http_proxy'
5855 - CLEANUP: http_ana: Remove now unused label from http_process_request()
5856 - MINOR: deinit: always deinit the init_mutex on failed initialization
5857 - BUG/MEDIUM: cfgcond: limit recursion level in the condition expression parser
5858 - BUG/MEDIUM: mworker: do not register an exit handler if exit is expected
5859 - BUG/MINOR: mworker: do not export HAPROXY_MWORKER_REEXEC across programs
5860 - BUILD/MINOR: memprof fix macOs build.
5861 - BUG/MEDIUM: ssl_sample: fix segfault for srv samples on invalid request
5862 - BUG/MINOR: stats: Add missing agent stats on servers
5863 - BUG/MINOR: check: fix the condition to validate a port-less server
5864 - BUILD: threads: fix pthread_mutex_unlock when !USE_THREAD
5865 - BUG/MINOR: resolvers: Use a null-terminated string to lookup in servers tree
5866 - MINOR: ssl: use __objt_* variant when retrieving counters
5867 - BUG/MINOR: systemd: must check the configuration using -Ws
5868 - BUG/MINOR: mux-h1: Obey dontlognull option for empty requests
5869 - BUG/MINOR: mux-h2: Obey dontlognull option during the preface
5870 - BUG/MINOR: mux-h1: Be sure to swap H1C to splice mode when rcv_pipe() is called
5871 - BUG/MEDIUM: mux-h2: Handle remaining read0 cases on partial frames
5872 - MINOR: proxy: rename PR_CAP_LUA to PR_CAP_INT
5873 - MINOR: mworker: the mworker CLI proxy is internal
5874 - MINOR: stats: don't output internal proxies (PR_CAP_INT)
5875 - CLEANUP: mworker: use the proxy helper functions in mworker_cli_proxy_create()
5876 - CLEANUP: mworker: PR_CAP already initialized with alloc_new_proxy()
5877 - BUG/MINOR: connection: Add missing error labels to conn_err_code_str
5878 - MINOR: connection: Add a connection error code sample fetch
5879 - MINOR: ssl: Enable error fetches in case of handshake error
5880 - MINOR: ssl: Add new ssl_fc_hsk_err sample fetch
5881 - MINOR: ssl: Define a default https log format
5882 - MEDIUM: connection: Add option to disable legacy error log
5883 - REGTESTS: ssl: Add tests for the connection and SSL error fetches
5884 - REGTESTS: ssl: ssl_errors.vtc does not work with old openssl version
5885 - BUG/MEDIUM: connection: close a rare race between idle conn close and takeover
5886 - BUG/MEDIUM: pollers: clear the sleeping bit after waking up, not before
5887 - BUG/MINOR: select: fix excess number of dead/skip reported
5888 - BUG/MINOR: poll: fix abnormally high skip_fd counter
5889 - BUG/MINOR: pollers: always program an update for migrated FDs
5890 - BUG/MINOR: fd: protect fd state harder against a concurrent takeover
5891 - DOC: internals: document the FD takeover process
5892 - MINOR: fd: update flags only once in fd_update_events()
5893 - MINOR: poll/epoll: move detection of RDHUP support earlier
5894 - REORG: fd: uninline fd_update_events()
5895 - MEDIUM: fd: rely more on fd_update_events() to detect changes
5896 - BUG/MINOR: freq_ctr: use stricter barriers between updates and readings
5897 - MEDIUM: atomic: simplify the atomic load/store/exchange operations
5898 - MEDIUM: atomic: relax the load/store barriers on x86_64
5899 - BUILD: opentracing: fixed build when using pkg-config utility
5900
Willy Tarreaubccc91d2021-07-17 12:35:11 +020059012021/07/17 : 2.5-dev2
5902 - BUILD/MEDIUM: tcp: set-mark support for OpenBSD
5903 - DOC: config: use CREATE USER for mysql-check
5904 - BUG/MINOR: stick-table: fix several printf sign errors dumping tables
5905 - BUG/MINOR: peers: fix data_type bit computation more than 32 data_types
5906 - MINOR: stick-table: make skttable_data_cast to use only std types
5907 - MEDIUM: stick-table: handle arrays of standard types into stick-tables
5908 - MEDIUM: peers: handle arrays of std types in peers protocol
5909 - DOC: stick-table: add missing documentation about gpt0 stored type
5910 - MEDIUM: stick-table: add the new array of gpt data_type
5911 - MEDIUM: stick-table: make the use of 'gpt' excluding the use of 'gpt0'
5912 - MEDIUM: stick-table: add the new arrays of gpc and gpc_rate
5913 - MEDIUM: stick-table: make the use of 'gpc' excluding the use of 'gpc0/1''
5914 - BUG/MEDIUM: sock: make sure to never miss early connection failures
5915 - BUG/MINOR: cli: fix server name output in "show fd"
5916 - Revert "MINOR: tcp-act: Add set-src/set-src-port for "tcp-request content" rules"
5917 - MEDIUM: stats: include disabled proxies that hold active sessions to stats
5918 - BUILD: stick-table: shut up invalid "uninitialized" warning in gcc 8.3
5919 - MINOR: http: implement http_get_scheme
5920 - MEDIUM: http: implement scheme-based normalization
5921 - MEDIUM: h1-htx: apply scheme-based normalization on h1 requests
5922 - MEDIUM: h2: apply scheme-based normalization on h2 requests
5923 - REGTESTS: add http scheme-based normalization test
5924 - BUILD: http_htx: fix ci compilation error with isdigit for Windows
5925 - MINOR: http: implement http uri parser
5926 - MINOR: http: use http uri parser for scheme
5927 - MINOR: http: use http uri parser for authority
5928 - REORG: http_ana: split conditions for monitor-uri in wait for request
5929 - MINOR: http: use http uri parser for path
5930 - BUG/MEDIUM: http_ana: fix crash for http_proxy mode during uri rewrite
5931 - MINOR: mux_h2: define config to disable h2 websocket support
5932 - CLEANUP: applet: remove unused thread_mask
5933 - BUG/MINOR: ssl: Default-server configuration ignored by server
5934 - BUILD: add detection of missing important CFLAGS
5935 - BUILD: lua: silence a build warning with TCC
5936 - MINOR: srv: extract tracking server config function
5937 - MINOR: srv: do not allow to track a dynamic server
5938 - MEDIUM: server: support track keyword for dynamic servers
5939 - REGTESTS: test track support for dynamic servers
5940 - MINOR: init: verify that there is a single word on "-cc"
5941 - MINOR: init: make -cc support environment variables expansion
5942 - MINOR: arg: add a free_args() function to free an args array
5943 - CLEANUP: config: use free_args() to release args array in cfg_eval_condition()
5944 - CLEANUP: hlua: use free_args() to release args arrays
5945 - REORG: config: move the condition preprocessing code to its own file
5946 - MINOR: cfgcond: start to split the condition parser to introduce terms
5947 - MEDIUM: cfgcond: report invalid trailing chars after expressions
5948 - MINOR: cfgcond: remerge all arguments into a single line
5949 - MINOR: cfgcond: support negating conditional expressions
5950 - MINOR: cfgcond: make the conditional term parser automatically allocate nodes
5951 - MINOR: cfgcond: insert an expression between the condition and the term
5952 - MINOR: cfgcond: support terms made of parenthesis around expressions
5953 - REGTEST: make check_condition.vtc fail as soon as possible
5954 - REGTESTS: add more complex check conditions to check_conditions.vtc
5955 - BUG/MEDIUM: init: restore behavior of command-line "-m" for memory limitation
5956
Willy Tarreau96a2f502021-06-30 16:16:14 +020059572021/06/30 : 2.5-dev1
5958 - CLEANUP: ssl: Move ssl_store related code to ssl_ckch.c
5959 - MINOR: ssl: Allow duplicated entries in the cafile_tree
5960 - MEDIUM: ssl: Chain ckch instances in ca-file entries
5961 - MINOR: ssl: Add reference to default ckch instance in bind_conf
5962 - MINOR: ssl: Add helper functions to create/delete cafile entries
5963 - MEDIUM: ssl: Add a way to load a ca-file content from memory
5964 - MINOR: ssl: Add helper function to add cafile entries
5965 - MINOR: ssl: Ckch instance rebuild and cleanup factorization in CLI handler
5966 - MEDIUM: ssl: Add "set+commit ssl ca-file" CLI commands
5967 - REGTESTS: ssl: Add new ca-file update tests
5968 - MINOR: ssl: Add "abort ssl ca-file" CLI command
5969 - MINOR: ssl: Add a cafile_entry type field
5970 - MINOR: ssl: Refactorize the "show certificate details" code
5971 - MEDIUM: ssl: Add "show ssl ca-file" CLI command
5972 - MEDIUM: ssl: Add "new ssl ca-file" CLI command
5973 - MINOR: ssl: Add "del ssl ca-file" CLI command
5974 - REGTESTS: ssl: Add "new/del ssl ca-file" tests
5975 - DOC: ssl: Add documentation about CA file hot update commands
5976 - DOC: internals: update the SSL architecture schema
5977 - MINOR: ssl: Chain instances in ca-file entries
5978 - MEDIUM: ssl: Add "set+commit ssl crl-file" CLI commands
5979 - MEDIUM: ssl: Add "new+del crl-file" CLI commands
5980 - MINOR: ssl: Add "abort ssl crl-file" CLI command
5981 - MEDIUM: ssl: Add "show ssl crl-file" CLI command
5982 - REGTESTS: ssl: Add "new/del ssl crl-file" tests
5983 - REGTESTS: ssl: Add "set/commit ssl crl-file" test
5984 - DOC: ssl: Add documentation about CRL file hot update commands
5985 - BUILD/MINOR: ssl: Fix compilation with SSL enabled
5986 - BUILD/MINOR: ssl: Fix compilation with OpenSSL 1.0.2
5987 - CI: introduce scripts/build-vtest.sh for installing VTest
5988 - CLEANUP: ssl: Fix coverity issues found in CA file hot update code
5989 - CI: github actions: add OpenTracing builds
5990 - BUG/MEDIUM: ebtree: Invalid read when looking for dup entry
5991 - BUG/MAJOR: server: prevent deadlock when using 'set maxconn server'
5992 - BUILD/MINOR: opentracing: fixed build when using clang
5993 - BUG/MEDIUM: filters: Exec pre/post analysers only one time per filter
5994 - BUG/MINOR: http-comp: Preserve HTTP_MSGF_COMPRESSIONG flag on the response
5995 - MINOR: map/acl: print the count of all the map/acl entries in "show map/acl"
5996 - CLEANUP: pattern: remove export of non-existent function pattern_delete()
5997 - MINOR: h1-htx: Update h1 parsing functions to return result as a size_t
5998 - MEDIUM: h1-htx: Adapt H1 data parsing to copy wrapping data in one call
5999 - MINOR: mux-h1/mux-fcgi: Don't needlessly loop on data parsing
6000 - MINOR: h1-htx: Move HTTP chunks parsing into a dedicated function
6001 - MEDIUM: h1-htx: Split function to parse a chunk and the loop on the buffer
6002 - MEDIUM: h1-htx: Add a function to parse contiguous small chunks
6003 - MINOR: h1-htx: Use a correlation table to speed-up small chunks parsing
6004 - MINOR: buf: Add function to realign a buffer with a specific head position
6005 - MINOR: muxes/h1-htx: Realign input buffer using b_slow_realign_ofs()
6006 - CLEANUP: mux-h1: Rename functions parsing input buf and filling output buf
6007 - Revert "MEDIUM: http-ana: Deal with L7 retries in HTTP analysers"
6008 - BUG/MINOR: http-ana: Send the right error if max retries is reached on L7 retry
6009 - BUG/MINOR: http-ana: Handle L7 retries on refused early data before K/A aborts
6010 - MINOR: http-ana: Perform L7 retries because of status codes in response analyser
6011 - MINOR: cfgparse: Fail when encountering extra arguments in macro
6012 - DOC: intro: Fix typo in starter guide
6013 - BUG/MINOR: server: Missing calloc return value check in srv_parse_source
6014 - BUG/MINOR: peers: Missing calloc return value check in peers_register_table
6015 - BUG/MINOR: ssl: Missing calloc return value check in ssl_init_single_engine
6016 - BUG/MINOR: http: Missing calloc return value check in parse_http_req_capture
6017 - BUG/MINOR: proxy: Missing calloc return value check in proxy_parse_declare
6018 - BUG/MINOR: proxy: Missing calloc return value check in proxy_defproxy_cpy
6019 - BUG/MINOR: http: Missing calloc return value check while parsing tcp-request/tcp-response
6020 - BUG/MINOR: http: Missing calloc return value check while parsing tcp-request rule
6021 - BUG/MINOR: compression: Missing calloc return value check in comp_append_type/algo
6022 - BUG/MINOR: worker: Missing calloc return value check in mworker_env_to_proc_list
6023 - BUG/MINOR: http: Missing calloc return value check while parsing redirect rule
6024 - BUG/MINOR: http: Missing calloc return value check in make_arg_list
6025 - BUG/MINOR: proxy: Missing calloc return value check in chash_init_server_tree
6026 - CLEANUP: http-ana: Remove useless if statement about L7 retries
6027 - BUG/MAJOR: stream-int: Release SI endpoint on server side ASAP on retry
6028 - MINOR: backend: Don't release SI endpoint anymore in connect_server()
6029 - BUG/MINOR: vars: Be sure to have a session to get checks variables
6030 - DOC/MINOR: move uuid in the configuration to the right alphabetical order
6031 - CLEANUP: mux-fcgi: Don't needlessly store result of data/trailers parsing
6032 - BUILD: fix compilation for OpenSSL-3.0.0-alpha17
6033 - MINOR: http-ana: Use -1 status for client aborts during queuing and connect
6034 - REGTESTS: Fix http_abortonclose.vtc to support -1 status for some client aborts
6035 - CLEANUP: backend: fix incorrect comments on locking conditions for lb functions
6036 - CLEANUP: reg-tests: Remove obsolete no-htx parameter for reg-tests
6037 - CI: github actions: add OpenSSL-3.0.0 builds
6038 - CI: github actions: -Wno-deprecated-declarations with OpenSSL 3.0.0
6039 - MINOR: errors: allow empty va_args for diag variadic macro
6040 - REORG: errors: split errors reporting function from log.c
6041 - CLEANUP: server: fix cosmetic of error message on sni parsing
6042 - MEDIUM: errors: implement user messages buffer
6043 - MINOR: log: do not discard stderr when starting is over
6044 - MEDIUM: errors: implement parsing context type
6045 - MINOR: errors: use user messages context in print_message
6046 - MINOR: log: display exec path on first warning
6047 - MINOR: errors: specify prefix "config" for parsing output
6048 - MINOR: log: define server user message format
6049 - REORG: server: use parsing ctx for server parsing
6050 - REORG: config: use parsing ctx for server config check
6051 - MINOR: server: use parsing ctx for server init addr
6052 - MINOR: server: use ha_alert in server parsing functions
6053 - DOC: use the req.ssl_sni in examples
6054 - CLEANUP: cfgparse: Remove duplication of `MAX_LINE_ARGS + 1`
6055 - CLEANUP: tools: Make errptr const in `parse_line()`
6056 - MINOR: haproxy: Add `-cc` argument
6057 - BUG: errors: remove printf positional args for user messages context
6058 - CI: Make matrix.py executable and add shebang
6059 - BUILD: make tune.ssl.keylog available again
6060 - BUG/MINOR: ssl: OCSP stapling does not work if expire too far in the future
6061 - Revert "BUG/MINOR: opentracing: initialization after establishing daemon mode"
6062 - BUG/MEDIUM: opentracing: initialization before establishing daemon and/or chroot mode
6063 - SCRIPTS: opentracing: enable parallel builds in build-ot.sh
6064 - BUG/MEDIUM: compression: Fix loop skipping unused blocks to get the next block
6065 - BUG/MEDIUM: compression: Properly get the next block to iterate on payload
6066 - BUG/MEDIUM: compression: Add a flag to know the filter is still processing data
6067 - MINOR: ssl: Keep the actual key length in the certificate_ocsp structure
6068 - MINOR: ssl: Add new "show ssl ocsp-response" CLI command
6069 - MINOR: ssl: Add the OCSP entry key when displaying the details of a certificate
6070 - MINOR: ssl: Add the "show ssl cert foo.pem.ocsp" CLI command
6071 - REGTESTS: ssl: Add "show ssl ocsp-response" test
6072 - BUG/MINOR: server: explicitly set "none" init-addr for dynamic servers
6073 - BUG/MINOR: pools: fix a possible memory leak in the lockless pool_flush()
6074 - BUG/MINOR: pools: make DEBUG_UAF always write to the to-be-freed location
6075 - MINOR: pools: do not maintain the lock during pool_flush()
6076 - MINOR: pools: call malloc_trim() under thread isolation
6077 - MEDIUM: pools: use a single pool_gc() function for locked and lockless
6078 - BUG/MAJOR: pools: fix possible race with free() in the lockless variant
6079 - CLEANUP: pools: remove now unused seq and pool_free_list
6080 - MEDIUM: pools: remove the locked pools implementation
6081 - BUILD: ssl: Fix compilation with BoringSSL
6082 - BUG/MEDIUM: errors: include missing obj_type file
6083 - REGTESTS: ssl: show_ssl_ocspresponce.vtc is broken with BoringSSL
6084 - BUG/MAJOR: htx: Fix htx_defrag() when an HTX block is expanded
6085 - BUG/MINOR: mux-fcgi: Expose SERVER_SOFTWARE parameter by default
6086 - BUG/MINOR: h1-htx: Fix a signess bug with char data type when parsing chunk size
6087 - CLEANUP: l7-retries: do not test the buffer before calling b_alloc()
6088 - BUG/MINOR: resolvers: answser item list was randomly purged or errors
6089 - MEDIUM: resolvers: add a ref on server to the used A/AAAA answer item
6090 - MEDIUM: resolvers: add a ref between servers and srv request or used SRV record
6091 - BUG/MINOR: server-state: load SRV resolution only if params match the config
6092 - MINOR: config: remove support for deprecated option "tune.chksize"
6093 - MINOR: config: completely remove support for "no option http-use-htx"
6094 - MINOR: log: remove the long-deprecated early log-format tags
6095 - MINOR: http: remove the long deprecated "set-cookie()" sample fetch function
6096 - MINOR: config: reject long-deprecated "option forceclose"
6097 - MINOR: config: remove deprecated option "http-tunnel"
6098 - MEDIUM: proxy: remove the deprecated "grace" keyword
6099 - MAJOR: config: remove parsing of the global "nbproc" directive
6100 - BUILD: init: remove initialization of multi-process thread mappings
6101 - BUILD: log: remove unused fmt_directive()
6102 - REGTESTS: Remove REQUIRE_VERSION=1.6 from all tests
6103 - REGTESTS: Remove REQUIRE_VERSION=1.7 from all tests
6104 - CI: github actions: enable alpine/musl builds
6105 - BUG/MAJOR: resolvers: segfault using server template without SRV RECORDs
6106 - DOC: lua: Add a warning about buffers modification in HTTP
6107 - MINOR: ssl: Use OpenSSL's ASN1_TIME convertor when available
6108 - BUG/MINOR: stick-table: insert srv in used_name tree even with fixed id
6109 - BUG/MEDIUM: server: extend thread-isolate over much of CLI 'add server'
6110 - BUG/MEDIUM: server: clear dynamic srv on delete from proxy id/name trees
6111 - BUG/MEDIUM: server: do not forget to generate the dynamic servers ids
6112 - BUG/MINOR: server: do not keep an invalid dynamic server in px ids tree
6113 - BUG/MEDIUM: server: do not auto insert a dynamic server in px addr_node
6114 - BUG/MEDIUM: shctx: use at least thread-based locking on USE_PRIVATE_CACHE
6115 - BUG/MINOR: ssl: use atomic ops to update global shctx stats
6116 - BUG/MINOR: mworker: fix typo in chroot error message
6117 - CLEANUP: global: remove unused definition of stopping_task[]
6118 - MEDIUM: init: remove the loop over processes during init
6119 - MINOR: mworker: remove the initialization loop over processes
6120 - CLEANUP: global: remove the nbproc field from the global structure
6121 - CLEANUP: global: remove pid_bit and all_proc_mask
6122 - MEDIUM: global: remove dead code from nbproc/bind_proc removal
6123 - MEDIUM: config: simplify cpu-map handling
6124 - MEDIUM: cpu-set: make the proc a single bit field and not an array
6125 - CLEANUP: global: remove unused definition of MAX_PROCS
6126 - MEDIUM: global: remove the relative_pid from global and mworker
6127 - DOC: update references to process numbers in cpu-map and bind-process
6128 - MEDIUM: config: warn about "bind-process" deprecation
6129 - CLEANUP: shctx: remove the different inter-process locking techniques
6130 - BUG/MAJOR: queue: set SF_ASSIGNED when setting strm->target on dequeue
6131 - MINOR: backend: only skip LB when there are actual connections
6132 - BUG/MINOR: mux-h1: do not skip the error response on bad requests
6133 - MINOR: connection: add helper conn_append_debug_info()
6134 - MINOR: mux-h2/trace: report a few connection-level info during h2_init()
6135 - CLEANUP: mux-h2/traces: better align user messages
6136 - BUG/MINOR: stats: make "show stat typed desc" work again
6137 - MINOR: mux-h2: obey http-ignore-probes during the preface
6138 - BUG/MINOR: mux-h2/traces: bring back the lost "rcvd H2 REQ" trace
6139 - BUG/MINOR: mux-h2/traces: bring back the lost "sent H2 REQ/RES" traces
6140 - CLEANUP: assorted typo fixes in the code and comments
6141 - CI: Replace the requirement for 'sudo' with a call to 'ulimit -n'
6142 - REGTESTS: Replace REQUIRE_VERSION=2.5 with 'haproxy -cc'
6143 - REGTESTS: Replace REQUIRE_OPTIONS with 'haproxy -cc' for 2.5+ tests
6144 - REGTESTS: Replace REQUIRE_BINARIES with 'command -v'
6145 - REGTESTS: Remove support for REQUIRE_BINARIES
6146 - CI: ssl: enable parallel builds for OpenSSL on Linux
6147 - CI: ssl: do not needlessly build the OpenSSL docs
6148 - CI: ssl: keep the old method for ancient OpenSSL versions
6149 - CLEANUP: server: a separate function for initializing the per_thr field
6150 - BUG/MINOR: server: Forbid to set fqdn on the CLI if SRV resolution is enabled
6151 - BUG/MEDIUM: server/cli: Fix ABBA deadlock when fqdn is set from the CLI
6152 - MINOR: resolvers: Clean server in a dedicated function when removing a SRV item
6153 - MINOR: resolvers: Remove server from named_servers tree when removing a SRV item
6154 - BUG/MEDIUM: resolvers: Add a task on servers to check SRV resolution status
6155 - BUG/MINOR: backend: restore the SF_SRV_REUSED flag original purpose
6156 - BUG/MINOR: backend: do not set sni on connection reuse
6157 - BUG/MINOR: resolvers: Use resolver's lock in resolv_srvrq_expire_task()
6158 - BUG/MINOR: server/cli: Fix locking in function processing "set server" command
6159 - BUG/MINOR: cache: Correctly handle existing-but-empty 'accept-encoding' header
6160 - MINOR: ssl: fix typo in usage for 'new ssl ca-file'
6161 - MINOR: ssl: always initialize random generator
6162 - MINOR: ssl: check allocation in ssl_sock_init_srv
6163 - MINOR: ssl: check allocation in parse ciphers/ciphersuites/verifyhost
6164 - MINOR: ssl: check allocation in parse npn/sni
6165 - MINOR: server: disable CLI 'set server ssl' for dynamic servers
6166 - MINOR: ssl: render file-access optional on server crt loading
6167 - MINOR: ssl: split parse functions for alpn/check-alpn
6168 - MINOR: ssl: support ca-file arg for dynamic servers
6169 - MINOR: ssl: support crt arg for dynamic servers
6170 - MINOR: ssl: support crl arg for dynamic servers
6171 - MINOR: ssl: enable a series of ssl keywords for dynamic servers
6172 - MINOR: ssl: support ssl keyword for dynamic servers
6173 - REGTESTS: server: test ssl support for dynamic servers
6174 - MINOR: queue: update the stream's pend_pos before queuing it
6175 - CLEANUP: Prevent channel-t.h from being detected as C++ by GitHub
6176 - BUG/MAJOR: server: fix deadlock when changing maxconn via agent-check
6177 - REGTESTS: fix maxconn update with agent-check
6178 - MEDIUM: queue: make pendconn_process_next_strm() only return the pendconn
6179 - MINOR: queue: update proxy->served once out of the loop
6180 - MEDIUM: queue: refine the locking in process_srv_queue()
6181 - MINOR: lb/api: remove the locked argument from take_conn/drop_conn
6182 - MINOR: queue: create a new structure type "queue"
6183 - MINOR: proxy: replace the pendconns-related stuff with a struct queue
6184 - MINOR: server: replace the pendconns-related stuff with a struct queue
6185 - MEDIUM: queue: use a dedicated lock for the queues
6186 - MEDIUM: queue: simplify again the process_srv_queue() API
6187 - MINOR: queue: factor out the proxy/server queuing code
6188 - MINOR: queue: use atomic-ops to update the queue's index
6189 - MEDIUM: queue: determine in process_srv_queue() if the proxy is usable
6190 - MEDIUM: queue: move the queue lock manipulation to pendconn_process_next_strm()
6191 - MEDIUM: queue: unlock as soon as possible
6192 - MINOR: queue: make pendconn_first() take the lock by itself
6193 - CLEANUP: backend: remove impossible case of round-robin + consistent hash
6194 - MINOR: tcp-act: Add set-src/set-src-port for "tcp-request content" rules
6195 - DOC: config: Add missing actions in "tcp-request session" documentation
6196 - CLEANUP: dns: Remove a forgotten debug message
6197 - DOC: Replace issue templates by issue forms
6198 - Revert "MINOR: queue: make pendconn_first() take the lock by itself"
6199 - Revert "MEDIUM: queue: unlock as soon as possible"
6200 - Revert "MEDIUM: queue: move the queue lock manipulation to pendconn_process_next_strm()"
6201 - Revert "MEDIUM: queue: determine in process_srv_queue() if the proxy is usable"
6202 - Revert "MINOR: queue: use atomic-ops to update the queue's index"
6203 - Revert "MINOR: queue: factor out the proxy/server queuing code"
6204 - Revert "MEDIUM: queue: simplify again the process_srv_queue() API"
6205 - Revert "MEDIUM: queue: use a dedicated lock for the queues"
6206 - Revert "MEDIUM: queue: refine the locking in process_srv_queue()"
6207 - Revert "MINOR: queue: update proxy->served once out of the loop"
6208 - Revert "MEDIUM: queue: make pendconn_process_next_strm() only return the pendconn"
6209 - MEDIUM: queue: update px->served and lb's take_conn once per loop
6210 - MEDIUM: queue: use a dedicated lock for the queues (v2)
6211 - MEDIUM: queue: simplify again the process_srv_queue() API (v2)
6212 - MEDIUM: queue: determine in process_srv_queue() if the proxy is usable (v2)
6213 - MINOR: queue: factor out the proxy/server queuing code (v2)
6214 - MINOR: queue: use atomic-ops to update the queue's index (v2)
6215 - MEDIUM: queue: take the proxy lock only during the px queue accesses
6216 - MEDIUM: queue: use a trylock on the server's queue
6217 - MINOR: queue: add queue_init() to initialize a queue
6218 - MINOR: queue: add a pointer to the server and the proxy in the queue
6219 - MINOR: queue: store a pointer to the queue into the pendconn
6220 - MINOR: queue: remove the px/srv fields from pendconn
6221 - MINOR: queue: simplify pendconn_unlink() regarding srv vs px
6222 - BUG: backend: stop looking for queued connections once there's no more
6223 - BUG/MINOR: queue/debug: use the correct lock labels on the queue lock
6224 - BUG/MINOR: resolvers: Always attach server on matching record on resolution
6225 - BUG/MINOR: resolvers: Reset server IP when no ip is found in the response
6226 - MINOR: resolvers: Reset server IP on error in resolv_get_ip_from_response()
6227 - BUG/MINOR: checks: return correct error code for srv_parse_agent_check
6228 - BUILD: Makefile: fix linkage for Haiku.
6229 - BUG/MINOR: tcpcheck: Fix numbering of implicit HTTP send/expect rules
6230 - MINOR: http-act/tcp-act: Add "set-log-level" for tcp content rules
6231 - MINOR: http-act/tcp-act: Add "set-nice" for tcp content rules
6232 - MINOR: http-act/tcp-act: Add "set-mark" and "set-tos" for tcp content rules
6233 - CLEANUP: tcp-act: Sort action lists
6234 - BUILD/MEDIUM: tcp: set-mark setting support for FreeBSD.
6235 - BUILD: tcp-act: avoid warning when set-mark / set-tos are not supported
6236 - BUG/MINOR: mqtt: Fix parser for string with more than 127 characters
6237 - BUG/MINOR: mqtt: Support empty client ID in CONNECT message
6238 - BUG/MEDIUM: resolvers: Make 1st server of a template take part to SRV resolution
6239 - CLEANUP: peers: re-write intdecode function comment.
6240
Willy Tarreau1f973062021-05-14 09:36:37 +020062412021/05/14 : 2.5-dev0
6242 - MINOR: version: it's development again
6243
Willy Tarreau6cbbecf2021-05-14 09:03:30 +020062442021/05/14 : 2.4.0
6245 - BUG/MINOR: http_fetch: fix possible uninit sockaddr in fetch_url_ip/port
6246 - CLEANUP: cli/activity: Remove double spacing in set profiling command
6247 - CI: Build VTest with clang
6248 - CI: extend spellchecker whitelist, add "ists" as well
6249 - CLEANUP: assorted typo fixes in the code and comments
6250 - BUG/MINOR: memprof: properly account for differences for realloc()
6251 - MINOR: memprof: also report the method used by each call
6252 - MINOR: memprof: also report the totals and delta alloc-free
6253 - CLEANUP: pattern: remove the unused and dangerous pat_ref_reload()
6254 - BUG/MINOR: http_act: Fix normalizer names in error messages
6255 - MINOR: uri_normalizer: Add `fragment-strip` normalizer
6256 - MINOR: uri_normalizer: Add `fragment-encode` normalizer
6257 - IMPORT: slz: use the generic function for the last bytes of the crc32
6258 - IMPORT: slz: do not produce the crc32_fast table when CRC is natively supported
6259 - BUILD/MINOR: opentracing: fixed compilation with filter enabled
6260 - BUILD: makefile: add a few popular ARMv8 CPU targets
6261 - BUG/MEDIUM: stick_table: fix crash when using tcp smp_fetch_src
6262 - REGTESTS: stick-table: add src_conn_rate test
6263 - CLEANUP: stick-table: remove a leftover of an old keyword declaration
6264 - BUG/MINOR: stats: fix lastchk metric that got accidently lost
6265 - EXAMPLES: add a "basic-config-edge" example config
6266 - EXAMPLES: add a trivial config for quick testing
6267 - DOC: management: Correct example reload command in the document
6268 - Revert "CI: Build VTest with clang"
6269 - MINOR: activity/cli: optionally support sorting by address on "show profiling"
6270 - DEBUG: ssl: export ssl_sock_close() to see its symbol resolved in profiling
6271 - BUG/MINOR: lua/vars: prevent get_var() from allocating a new name
6272 - DOC: config: Fix configuration example for mqtt
6273 - BUG/MAJOR: config: properly initialize cpu_map.thread[] up to MAX_THREADS
6274 - BUILD: config: avoid a build warning on numa_detect_topology() without threads
6275 - DOC: update min requirements in INSTALL
6276 - IMPORT: slz: use inttypes.h instead of stdint.h
6277 - BUILD: sample: use strtoll() instead of atoll()
6278 - MINOR: version: mention that it's LTS now.
6279
Willy Tarreau46b93af2021-05-10 07:50:26 +020062802021/05/10 : 2.4-dev19
6281 - BUG/MINOR: hlua: Don't rely on top of the stack when using Lua buffers
6282 - BUG/MEDIUM: cli: prevent memory leak on write errors
6283 - BUG/MINOR: ssl/cli: fix a lock leak when no memory available
6284 - MINOR: debug: add a new "debug dev sym" command in expert mode
6285 - MINOR: pools/debug: slightly relax DEBUG_DONT_SHARE_POOLS
6286 - CI: Github Actions: switch to LibreSSL-3.3.3
6287 - MINOR: srv: close all idle connections on shutdown
6288 - MINOR: connection: move session_list member in a union
6289 - MEDIUM: mux_h1: release idling frontend conns on soft-stop
6290 - MEDIUM: connection: close front idling connection on soft-stop
6291 - MINOR: tools: add functions to retrieve the address of a symbol
6292 - CLEANUP: activity: mark the profiling and task_profiling_mask __read_mostly
6293 - MINOR: activity: add a "memory" entry to "profiling"
6294 - MINOR: activity: declare the storage for memory usage statistics
6295 - MEDIUM: activity: collect memory allocator statistics with USE_MEMORY_PROFILING
6296 - MINOR: activity: clean up the show profiling io_handler a little bit
6297 - MINOR: activity: make "show profiling" support a few arguments
6298 - MINOR: activity: make "show profiling" also dump the memoery usage
6299 - MINOR: activity: add the profiling.memory global setting
6300 - BUILD: makefile: add new option USE_MEMORY_PROFILING
6301 - MINOR: channel: Rely on HTX version if appropriate in channel_may_recv()
6302 - BUG/MINOR: stream-int: Don't block reads in si_update_rx() if chn may receive
6303 - MINOR: conn-stream: Force mux to wait for read events if abortonclose is set
6304 - MEDIUM: mux-h1: Don't block reads when waiting for the other side
6305 - BUG/MEDIUM: mux-h1: Properly report client close if abortonclose option is set
6306 - REGTESTS: Add script to test abortonclose option
6307 - MINOR: mux-h1: clean up conditions to enabled and disabled splicing
6308 - MINOR: mux-h1: Subscribe for sends if output buffer is not empty in h1_snd_pipe
6309 - MINOR: mux-h1: Always subscribe for reads when splicing is disabled
6310 - MEDIUM: mux-h1: Wake H1 stream when both sides a synchronized
6311 - CLEANUP: mux-h1: rename WAIT_INPUT/WAIT_OUTPUT flags
6312 - MINOR: mux-h1: Manage processing blocking flags on the H1 stream
6313 - BUG/MINOR: stream: Decrement server current session counter on L7 retry
6314 - BUG/MINOR: config: fix uninitialized initial state in ".if" block evaluator
6315 - BUG/MINOR: config: add a missing "ELIF_TAKE" test for ".elif" condition evaluator
6316 - BUG/MINOR: config: .if/.elif should also accept negative integers
6317 - MINOR: config: centralize the ".if"/".elif" condition parser and evaluator
6318 - MINOR: config: keep up-to-date current file/line/section in the global struct
6319 - MINOR: config: support some pseudo-variables for file/line/section
6320 - BUILD: activity: do not include malloc.h
6321 - MINOR: arg: improve the error message on missing closing parenthesis
6322 - MINOR: global: export the build features string list
6323 - MINOR: global: add version comparison functions
6324 - MINOR: config: improve .if condition error reporting
6325 - MINOR: config: make cfg_eval_condition() support predicates with arguments
6326 - MINOR: config: add predicate "defined()" to conditional expression blocks
6327 - MINOR: config: add predicates "streq()" and "strneq()" to conditional expressions
6328 - MINOR: config: add predicate "feature" to detect certain built-in features
6329 - MINOR: config: add predicates "version_atleast" and "version_before" to cond blocks
6330 - BUG/MINOR: activity: use the new pointer to calculate the new size in realloc()
6331 - BUG/MINOR: stream: properly clear the previous error mask on L7 retries
6332 - MEDIUM: log: slightly refine the output format of alerts/warnings/etc
6333 - MINOR: config: add a new message directive: .diag
6334 - CLEANUP: cli/tree-wide: properly re-align the CLI commands' help messages
6335 - BUG/MINOR: stream: Reset stream final state and si error type on L7 retry
6336 - BUG/MINOR: checks: Handle synchronous connect when a tcpcheck is started
6337 - BUG/MINOR: checks: Reschedule check on observe mode only if fastinter is set
6338 - MINOR: global: define tainted flag
6339 - MINOR: cfgparse: add a new field flags in cfg_keyword
6340 - MINOR: cfgparse: implement experimental config keywords
6341 - MINOR: action: replace match_pfx by a keyword flags field
6342 - MINOR: action: implement experimental actions
6343 - MINOR: cli: set tainted when using CLI expert/experimental mode
6344 - MINOR: stats: report tainted on show info
6345 - MINOR: http_act: mark normalize-uri as experimental
6346 - BUILD: fix usage of ha_alert without format string
6347 - MINOR: proxy: define PR_CAP_LB
6348 - BUG/MINOR: server: do not report diag for peer servers with null weight
6349 - DOC: ssl: Extra files loading now works for backends too
6350 - ADDONS: make addons/ discoverable by git via .gitignore
6351 - DOC: ssl: Add information about crl-file option
6352 - MINOR: sample: improve error reporting on missing arg to strcmp() converter
6353 - DOC: management: mention that some fields may be emitted as floats
6354 - MINOR: tools: implement trimming of floating point numbers
6355 - MINOR: tools: add a float-to-ascii conversion function
6356 - MINOR: freq_ctr: add new functions to report float measurements
6357 - MINOR: stats: avoid excessive padding of float values with trailing zeroes
6358 - MINOR: stats: add the HTML conversion for float types
6359 - MINOR: stats: pass the appctx flags to stats_fill_info()
6360 - MINOR: stats: support an optional "float" option to "show info"
6361 - MINOR: stats: use tv_remain() to precisely compute the uptime
6362 - MINOR: stats: report uptime and start time as floats with subsecond resolution
6363 - MINOR: stats: make "show info" able to report rates as floats when asked
6364 - MINOR: config: mark tune.fd.edge-triggered as experimental
6365 - REORG: vars: move the "proc" scope variables out of the global struct
6366 - REORG: threads: move all_thread_mask() to thread.h
6367 - BUILD: wdt: include signal-t.h
6368 - BUILD: auth: include missing list.h
6369 - REORG: mworker: move proc_self from global to mworker
6370 - BUILD: ssl: ssl_utils requires chunk.h
6371 - BUILD: config: cfgparse-ssl.c needs tools.h
6372 - BUILD: wurfl: wurfl.c needs tools.h
6373 - BUILD: spoe: flt_spoe.c needs tools.h
6374 - BUILD: promex: service-prometheus.c needs tools.h
6375 - BUILD: resolvers: include tools.h
6376 - BUILD: config: include tools.h in cfgparse-listen.c
6377 - BUILD: htx: include tools.h in http_htx.c
6378 - BUILD: proxy: include tools.h in proxy.c
6379 - BUILD: session: include tools.h in session.c
6380 - BUILD: cache: include tools.h in cache.c
6381 - BUILD: sink: include tools.h in sink.c
6382 - BUILD: connection: include tools.h in connection.c
6383 - BUILD: server-state: include tools.h from server_state.c
6384 - BUILD: dns: include tools.h in dns.c
6385 - BUILD: payload: include tools.h in payload.c
6386 - BUILD: vars: include tools.h in vars.c
6387 - BUILD: compression: include tools.h in compression.c
6388 - BUILD: mworker: include tools.h from mworker.c
6389 - BUILD: queue: include tools.h from queue.c
6390 - BUILD: udp: include tools.h from proto_udp.c
6391 - BUILD: stick-table: include freq_ctr.h from stick_table.h
6392 - BUILD: server: include tools.h from server.c
6393 - BUILD: server: include missing proxy.h in server.c
6394 - BUILD: sink: include proxy.h in sink.c
6395 - BUILD: mworker: include proxy.h in mworker.c
6396 - BUILD: filters: include proxy.h in filters.c
6397 - BUILD: fcgi-app: include proxy.h in fcgi-app.c
6398 - BUILD: connection: move list_mux_proto() to connection.c
6399 - REORG: stick-table: uninline stktable_alloc_data_type()
6400 - REORG: stick-table: move composite address functions to stick_table.h
6401 - REORG: config: uninline warnifnotcap() and failifnotcap()
6402 - BUILD: task: remove unused includes from task.c
6403 - MINOR: task: stop including stream.h from task.c
6404 - BUILD: connection: stop including listener-t.h
6405 - BUILD: hlua: include proxy.h from hlua.c
6406 - BUILD: mux-h1: include proxy.h from mux-h1.c
6407 - BUILD: mux-fcgi: include proxy.h from mux-fcgi.c
6408 - BUILD: listener: include proxy.h from listener.c
6409 - BUILD: http-rules: include proxy.h from http_rules.c
6410 - BUILD: thread: include log.h from thread.c
6411 - BUILD: comp: include proxy.h from flt_http_comp.c
6412 - BUILD: fd: include log.h from fd.c
6413 - BUILD: config: do not include proxy.h nor errors.h anymore in cfgparse.h
6414 - BUILD: makefile: reorder object files by build time
6415 - DOC: Fix a few grammar/spelling issues and casing of HAProxy
6416 - REGTESTS: run-regtests: match both "HAProxy" and "HA-Proxy" in the version
6417 - MINOR: version: report "HAProxy" not "HA-Proxy" in the version output
6418 - DOC: remove last occurrences of "HA-Proxy" syntax
6419 - DOC: peers: fix the protocol tag name in the doc
6420 - ADMIN: netsnmp: report "HAProxy" and not "Haproxy" in output descriptions
6421 - MEDIUM: mailers: use "HAProxy" nor "HAproxy" in the subject of messages
6422 - DOC: fix a few remainig cases of "Haproxy" and "HAproxy" in doc and comments
6423 - MINOR: tools/rnd: compute the result outside of the CAS loop
6424 - BUILD: http_fetch: address a few aliasing warnings with older compilers
6425 - BUILD: ssl: define HAVE_CRYPTO_memcmp() based on the library version
6426 - BUILD: errors: include stdarg in errors.h
6427 - REGTESTS: disable inter-thread idle connection sharing on sensitive tests
6428 - MINOR: cli: make "help" support a command in argument
6429 - MINOR: cli: sort the output of the "help" keywords
6430 - CLEANUP: cli/mworker: properly align the help messages
6431 - BUILD: memprof: make the old caller pointer a const in get_prof_bin()
6432 - BUILD: compat: include malloc_np.h for USE_MEMORY_PROFILING on FreeBSD
6433 - CI: Github Actions: enable USE_QUIC=1 for BoringSSL builds
6434 - BUG/MEDIUM: quic: fix null deref on error path in qc_conn_init()
6435 - BUILD: cli: appease a null-deref warning in cli_gen_usage_msg()
6436
Willy Tarreau080347f2021-05-01 08:25:15 +020064372021/05/01 : 2.4-dev18
6438 - DOC: Fix indentation for `path-strip-dot` normalizer
6439 - DOC: Fix RFC reference for the percent-to-uppercase normalizer
6440 - DOC: Add RFC references for the path-strip-dot(dot)? normalizers
6441 - MINOR: uri_normalizer: Add a `percent-decode-unreserved` normalizer
6442 - BUG/MINOR: mux-fcgi: Don't send normalized uri to FCGI application
6443 - REORG: htx: Inline htx functions to add HTX blocks in a message
6444 - CLEANUP: assorted typo fixes in the code and comments
6445 - DOC: general: fix white spaces for HTML converter
6446 - BUG/MINOR: ssl: ssl_sock_prepare_ssl_ctx does not return an error code
6447 - BUG/MINOR: cpuset: move include guard at the very beginning
6448 - BUG/MAJOR: fix build on musl with cpu_set_t support
6449 - BUG/MEDIUM: cpuset: fix build on MacOS
6450 - BUG/MINOR: htx: Preserve HTX flags when draining data from an HTX message
6451 - MEDIUM: htx: Refactor htx_xfer_blks() to not rely on hdrs_bytes field
6452 - CLEANUP: htx: Remove unsued hdrs_bytes field from the HTX start-line
6453 - BUG/MINOR: mux-h2: Don't encroach on the reserve when decoding headers
6454 - MEDIUM: http-ana: handle read error on server side if waiting for response
6455 - MINOR: htx: Limit length of headers name/value when a HTX message is dumped
6456 - BUG/MINOR: applet: Notify the other side if data were consumed by an applet
6457 - BUG/MINOR: hlua: Don't consume headers when starting an HTTP lua service
6458 - BUG/MEDIUM: mux-h2: Handle EOM flag when sending a DATA frame with zero-copy
6459 - CLEANUP: channel: No longer notify the producer in co_skip()/co_htx_skip()
6460 - DOC: general: fix example in set-timeout
6461 - CLEANUP: cfgparse: de-uglify early file error handling in readcfgfile()
6462 - MINOR: config: add a new "default-path" global directive
6463 - BUG/MEDIUM: peers: initialize resync timer to get an initial full resync
6464 - BUG/MEDIUM: peers: register last acked value as origin receiving a resync req
6465 - BUG/MEDIUM: peers: stop considering ack messages teaching a full resync
6466 - BUG/MEDIUM: peers: reset starting point if peers appears longly disconnected
6467 - BUG/MEDIUM: peers: reset commitupdate value in new conns
6468 - BUG/MEDIUM: peers: re-work updates lookup during the sync on the fly
6469 - BUG/MEDIUM: peers: reset tables stage flags stages on new conns
6470 - MINOR: peers: add informative flags about resync process for debugging
6471 - BUG/MEDIUM: time: fix updating of global_now upon clock drift
6472 - CLEANUP: freq_ctr: make arguments of freq_ctr_total() const
6473 - CLEANUP: hlua: rename hlua_appctx* appctx to luactx
6474 - MINOR: server: fix doc/trace on lb algo for dynamic server creation
6475 - REGTESTS: server: fix cli_add_server due to previous trace update
6476 - REGTESTS: add minimal CLI "add map" tests
6477 - DOC: management: move "set var" to the proper place
6478 - CLEANUP: map: slightly reorder the add map function
6479 - MINOR: map: get rid of map_add_key_value()
6480 - MINOR: map: show the current and next pattern version in "show map"
6481 - MINOR: map/acl: add the possibility to specify the version in "show map/acl"
6482 - MINOR: pattern: support purging arbitrary ranges of generations
6483 - MINOR: map/acl: add the possibility to specify the version in "clear map/acl"
6484 - MINOR: map/acl: add the "prepare map/acl" CLI command
6485 - MINOR: map/acl: add the "commit map/acl" CLI command
6486 - MINOR: map/acl: make "add map/acl" support an optional version number
6487 - CLEANUP: map/cli: properly align the map/acl help
6488 - BUILD: compiler: do not use already defined __read_mostly on dragonfly
6489
Willy Tarreaubfd19d62021-04-23 19:11:10 +020064902021/04/23 : 2.4-dev17
6491 - MINOIR: mux-pt/trace: Register a new trace source with its events
6492 - BUG/MINOR: mux-pt: Fix a possible UAF because of traces in mux_pt_io_cb
6493 - CI: travis: Drastically clean up .travis.yml
6494 - CLEANUP: pattern: make all pattern tables read-only
6495 - MINOR: trace: replace the trace() inline function with an equivalent macro
6496 - MINOR: initcall: uniformize the section names between MacOS and other unixes
6497 - CLEANUP: initcall: rename HA_SECTION to HA_INIT_SECTION
6498 - MINOR: compiler: add macros to declare section names
6499 - CLEANUP: initcall: rely on HA_SECTION_* instead of defining its own
6500 - MINOR: global: declare a read_mostly section
6501 - MINOR: fd: move a few read-mostly variables to their own section
6502 - MINOR: epoll: move epoll_fd to read_mostly
6503 - MINOR: kqueue: move kqueue_fd to read_mostly
6504 - MINOR: pool: move pool declarations to read_mostly
6505 - MINOR: threads: mark all_threads_mask as read_mostly
6506 - MINOR: server: move idle_conn_task to read_mostly
6507 - MINOR: protocol: move __protocol_by_family to read_mostly
6508 - MINOR: pattern: make the pat_lru_seed read_mostly
6509 - MINOR: trace: make trace sources read_mostly
6510 - MINOR: freq_ctr: add a generic function to report the total value
6511 - MEDIUM: freq_ctr: make read_freq_ctr_period() use freq_ctr_total()
6512 - MEDIUM: freq_ctr: reimplement freq_ctr_remain_period() from freq_ctr_total()
6513 - MINOR: freq_ctr: add the missing next_event_delay_period()
6514 - MINOR: freq_ctr: unify freq_ctr and freq_ctr_period into freq_ctr
6515 - MEDIUM: freq_ctr: replace the per-second counters with the generic ones
6516 - MINOR: freq_ctr: add cpu_relax in the rotation loop of update_freq_ctr_period()
6517 - MINOR: freq_ctr: simplify and improve the update function
6518 - CLEANUP: time: remove the now unused ms_left_scaled
6519 - MINOR: time: move the time initialization out of tv_update_date()
6520 - MINOR: time: remove useless variable copies in tv_update_date()
6521 - MINOR: time: change the global timeval and the the global tick at once
6522 - MEDIUM: time: make the clock offset global and no per-thread
6523 - MINOR: atomic: reimplement the relaxed version of x86 BTS/BTR
6524 - MINOR: trace: Add the checks as a possible trace source
6525 - MINOIR: checks/trace: Register a new trace source with its events
6526 - MINOR: hlua: Add function to release a lua function
6527 - BUG/MINOR: hlua: Fix memory leaks on error path when registering a task
6528 - BUG/MINOR: hlua: Fix memory leaks on error path when registering a converter
6529 - BUG/MINOR: hlua: Fix memory leaks on error path when registering a fetch
6530 - BUG/MINOR: hlua: Fix memory leaks on error path when parsing a lua action
6531 - BUG/MINOR: hlua: Fix memory leaks on error path when registering an action
6532 - BUG/MINOR: hlua: Fix memory leaks on error path when registering a service
6533 - BUG/MINOR: hlua: Fix memory leaks on error path when registering a cli keyword
6534 - BUG/MINOR: cfgparse/proxy: Fix some leaks during proxy section parsing
6535 - BUG/MINOR: listener: Handle allocation error when allocating a new bind_conf
6536 - BUG/MINOR: cfgparse/proxy: Hande allocation errors during proxy section parsing
6537 - MINOR: cfgparse/proxy: Group alloc error handling during proxy section parsing
6538 - DOC: internals: update the SSL architecture schema
6539 - BUG/MEDIUM: sample: Fix adjusting size in field converter
6540 - MINOR: sample: add ub64dec and ub64enc converters
6541 - CLEANUP: sample: align samples list in sample.c
6542 - MINOR: ist: Add `istclear(struct ist*)`
6543 - CI: cirrus: install "pcre" package
6544 - MINOR: opentracing: correct calculation of the number of arguments in the args[]
6545 - MINOR: opentracing: transfer of context names without prefix
6546 - MINOR: sample: converter: Add mjson library.
6547 - MINOR: sample: converter: Add json_query converter
6548 - CI: travis-ci: enable weekly graviton2 builds
6549 - DOC: ssl: Certificate hot update only works on fronted certificates
6550 - DOC: ssl: Certificate hot update works on server certificates
6551 - BUG/MEDIUM: threads: Ignore current thread to end its harmless period
6552 - MINOR: threads: Only consider running threads to end a thread harmeless period
6553 - BUG/MINOR: checks: Set missing id to the dummy checks frontend
6554 - MINOR: logs: Add support of checks as session origin to format lf strings
6555 - BUG/MINOR: connection: Fix fc_http_major and bc_http_major for TCP connections
6556 - MINOR: connection: Make bc_http_major compatible with tcp-checks
6557 - BUG/MINOR: ssl-samples: Fix ssl_bc_* samples when called from a health-check
6558 - BUG/MINOR: http-fetch: Make method smp safe if headers were already forwarded
6559 - MINOR: tcp_samples: Add samples to get src/dst info of the backend connection
6560 - MINOR: tcp_samples: Be able to call bc_src/bc_dst from the health-checks
6561 - BUG/MINOR: http_htx: Remove BUG_ON() from http_get_stline() function
6562 - BUG/MINOR: logs: Report the true number of retries if there was no connection
6563 - BUILD: makefile: Redirect stderr to /dev/null when probing options
6564 - MINOR: uri_normalizer: Add uri_normalizer module
6565 - MINOR: uri_normalizer: Add `enum uri_normalizer_err`
6566 - MINOR: uri_normalizer: Add `http-request normalize-uri`
6567 - MINOR: uri_normalizer: Add a `merge-slashes` normalizer to http-request normalize-uri
6568 - MINOR: uri_normalizer: Add a `dotdot` normalizer to http-request normalize-uri
6569 - MINOR: uri_normalizer: Add support for supressing leading `../` for dotdot normalizer
6570 - MINOR: uri_normalizer: Add a `sort-query` normalizer
6571 - MINOR: uri_normalizer: Add a `percent-upper` normalizer
6572 - MEDIUM: http_act: Rename uri-normalizers
6573 - DOC: Add introduction to http-request normalize-uri
6574 - DOC: Note that URI normalization is experimental
6575 - BUG/MINOR: pools: maintain consistent ->allocated count on alloc failures
6576 - BUG/MINOR: pools/buffers: make sure to always reserve the required buffers
6577 - MINOR: pools: drop the unused static history of artificially failed allocs
6578 - CLEANUP: pools: remove unused arguments to pool_evict_from_cache()
6579 - MEDIUM: pools: move the cache into the pool header
6580 - MINOR: pool: remove the size field from pool_cache_head
6581 - MINOR: pools: rename CONFIG_HAP_LOCAL_POOLS to CONFIG_HAP_POOLS
6582 - MINOR: pools: enable the fault injector in all allocation modes
6583 - MINOR: pools: make the basic pool_refill_alloc()/pool_free() update needed_avg
6584 - MEDIUM: pools: unify pool_refill_alloc() across all models
6585 - CLEANUP: pools: re-merge pool_refill_alloc() and __pool_refill_alloc()
6586 - MINOR: pools: call pool_alloc_nocache() out of the pool's lock
6587 - CLEANUP: pools: move the lock to the only __pool_get_first() that needs it
6588 - CLEANUP: pools: rename __pool_get_first() to pool_get_from_shared_cache()
6589 - CLEANUP: pools: rename pool_*_{from,to}_cache() to *_local_cache()
6590 - CLEANUP: pools: rename __pool_free() to pool_put_to_shared_cache()
6591 - MINOR: tools: add statistical_prng_range() to get a random number over a range
6592 - MINOR: pools: use cheaper randoms for fault injections
6593 - MINOR: pools: move the fault injector to __pool_alloc()
6594 - MINOR: pools: split the OS-based allocator in two
6595 - MINOR: pools: always use atomic ops to maintain counters
6596 - MINOR: pools: move pool_free_area() out of the lock in the locked version
6597 - MINOR: pools: factor the release code into pool_put_to_os()
6598 - MEDIUM: pools: make CONFIG_HAP_POOLS control both local and shared pools
6599 - MINOR: pools: create unified pool_{get_from,put_to}_cache()
6600 - MINOR: pools: evict excess objects using pool_evict_from_local_cache()
6601 - MEDIUM: pools: make pool_put_to_cache() always call pool_put_to_local_cache()
6602 - CLEANUP: pools: make the local cache allocator fall back to the shared cache
6603 - CLEANUP: pools: merge pool_{get_from,put_to}_local_caches with generic ones
6604 - CLEANUP: pools: uninline pool_put_to_cache()
6605 - CLEANUP: pools: declare dummy pool functions to remove some ifdefs
6606 - BUILD: pools: fix build with DEBUG_FAIL_ALLOC
6607 - BUG/MINOR: server: make srv_alloc_lb() allocate lb_nodes for consistent hash
6608 - CONTRIB: mod_defender: import the minimal number of includes
6609 - CONTRIB: mod_defender: make the code build with the embedded includes
6610 - CONTRIB: modsecurity: import the minimal number of includes
6611 - CONTRIB: modsecurity: make the code build with the embedded includes
6612 - CLEANUP: sample: Improve local variables in sample_conv_json_query
6613 - CLEANUP: sample: Explicitly handle all possible enum values from mjson
6614 - CLEANUP: sample: Use explicit return for successful `json_query`s
6615 - CLEANUP: lists/tree-wide: rename some list operations to avoid some confusion
6616 - CONTRIB: move spoa_example out of the tree
6617 - BUG/MINOR: server: free srv.lb_nodes in free_server
6618 - BUG/MINOR: logs: free logsrv.conf.file on exit
6619 - BUG/MEDIUM: server: ensure thread-safety of server runtime creation
6620 - MINOR: server: add log on dynamic server creation
6621 - MINOR: server: implement delete server cli command
6622 - CONTRIB: move spoa_server out of the tree
6623 - CONTRIB: move modsecurity out of the tree
6624 - BUG/MINOR: server: fix potential null gcc error in delete server
6625 - BUG/MAJOR: mux-h2: Properly detect too large frames when decoding headers
6626 - BUG/MEDIUM: mux-h2: Fix dfl calculation when merging CONTINUATION frames
6627 - BUG/MINOR: uri_normalizer: Use delim parameter when building the sorted query in uri_normalizer_query_sort
6628 - CLEANUP: uri_normalizer: Remove trailing whitespace
6629 - MINOR: uri_normalizer: Add a `strip-dot` normalizer
6630 - CONTRIB: move mod_defender out of the tree
6631 - CLEANUP: contrib: remove the last references to the now dead contrib/ directory
6632 - BUG/MEDIUM: config: fix cpu-map notation with both process and threads
6633 - MINOR: config: add a diag for invalid cpu-map statement
6634 - BUG/MINOR: mworker/init: don't reset nb_oldpids in non-mworker cases
6635 - BUG/MINOR: mworker: don't use oldpids[] anymore for reload
6636 - BUILD: makefile: fix the "make clean" target on strict bourne shells
6637 - IMPORT: slz: import slz into the tree
6638 - BUILD: compression: switch SLZ from out-of-tree to in-tree
6639 - CI: github: do not build libslz any more
6640 - CLEANUP: compression: remove calls to SLZ init functions
6641 - BUG/MEDIUM: mux-h2: Properly handle shutdowns when received with data
6642 - MINOR: cpuset: define a platform-independent cpuset type
6643 - MINOR: cfgparse: use hap_cpuset for parse_cpu_set
6644 - MEDIUM: config: use platform independent type hap_cpuset for cpu-map
6645 - MINOR: thread: implement the detection of forced cpu affinity
6646 - MINOR: cfgparse: support the comma separator on parse_cpu_set
6647 - MEDIUM: cfgparse: detect numa and set affinity if needed
6648 - MINOR: global: add option to disable numa detection
6649 - BUG/MINOR: haproxy: fix compilation on macOS
6650 - BUG/MINOR: cpuset: fix compilation on platform without cpu affinity
6651 - MINOR: time: avoid unneeded updates to now_offset
6652 - MINOR: time: avoid overwriting the same values of global_now
6653 - CLEANUP: time: use __tv_to_ms() in tv_update_date() instead of open-coding
6654 - MINOR: time: avoid u64 needlessly expensive computations for the 32-bit now_ms
6655 - BUG/MINOR: peers: remove useless table check if initial resync is finished
6656 - BUG/MEDIUM: peers: re-work connection to new process during reload.
6657 - BUG/MEDIUM: peers: re-work refcnt on table to protect against flush
6658 - BUG/MEDIUM: config: fix missing initialization in numa_detect_topology()
6659
Willy Tarreau86512dd2021-04-09 17:10:39 +020066602021/04/09 : 2.4-dev16
6661 - CLEANUP: dev/flags: remove useless test in the stdin number parser
6662 - MINOR: No longer rely on deprecated sample fetches for predefined ACLs
6663 - MINOR: acl: Add HTTP_2.0 predefined macro
6664 - BUG/MINOR: hlua: Detect end of request when reading data for an HTTP applet
6665 - BUG/MINOR: tools: fix parsing "us" unit for timers
6666 - MINOR: server/bind: add support of new prefixes for addresses.
6667 - MINOR: log: register config file and line number on log servers.
6668 - MEDIUM: log: support tcp or stream addresses on log lines.
6669 - BUG/MEDIUM: log: fix config parse error logging on stdout/stderr or any raw fd
6670 - CLEANUP: fd: remove FD_POLL_DATA and FD_POLL_STICKY
6671 - MEDIUM: fd: prepare FD_POLL_* to move to bits 8-15
6672 - MEDIUM: fd: merge fdtab[].ev and state for FD_EV_* and FD_POLL_* into state
6673 - MINOR: fd: move .linger_risk into fdtab[].state
6674 - MINOR: fd: move .cloned into fdtab[].state
6675 - MINOR: fd: move .initialized into fdtab[].state
6676 - MINOR: fd: move .et_possible into fdtab[].state
6677 - MINOR: fd: move .exported into fdtab[].state
6678 - MINOR: fd: implement an exclusive syscall bit to remove the ugly "log" lock
6679 - MINOR: cli/show-fd: slightly reorganize the FD status flags
6680 - MINOR: atomic/arm64: detect and use builtins for the double-word CAS
6681 - CLEANUP: atomic: add an explicit _FETCH variant for add/sub/and/or
6682 - CLEANUP: atomic: make all standard add/or/and/sub operations return void
6683 - CLEANUP: atomic: add a fetch-and-xxx variant for common operations
6684 - CLEANUP: atomic: add HA_ATOMIC_INC/DEC for unit increments
6685 - CLEANUP: atomic/tree-wide: replace single increments/decrements with inc/dec
6686 - CLEANUP: atomic: use the __atomic variant of BTS/BTR on modern compilers
6687 - MINOR: atomic: implement native BTS/BTR for x86
6688 - MINOR: ist: Add `istappend(struct ist, char)`
6689 - MINOR: ist: Add `istshift(struct ist*)`
6690 - MINOR: ist: Add `istsplit(struct ist*, char)`
6691 - BUG/MAJOR: fd: switch temp values to uint in fd_stop_both()
6692 - MINOR: opentracing: register config file and line number on log servers
6693 - MEDIUM: resolvers: add support of tcp address on nameserver line.
6694 - MINOR: ist: Rename istappend() to __istappend()
6695 - CLEANUP: htx: Make http_get_stline take a `const struct`
6696 - CLEANUP: ist: Remove unused `count` argument from `ist2str*`
6697 - CLEANUP: Remove useless malloc() casts
6698
Willy Tarreau59fa1d12021-04-02 19:16:32 +020066992021/04/02 : 2.4-dev15
6700 - BUG/MINOR: payload: Wait for more data if buffer is empty in payload/payload_lv
6701 - BUG/MINOR: stats: Apply proper styles in HTML status page.
6702 - BUG/MEDIUM: time: make sure to always initialize the global tick
6703 - BUG/MINOR: tcp: fix silent-drop workaround for IPv6
6704 - BUILD: tcp: use IPPROTO_IPV6 instead of SOL_IPV6 on FreeBSD/MacOS
6705 - CLEANUP: socket: replace SOL_IP/IPV6/TCP with IPPROTO_IP/IPV6/TCP
6706 - BUG/MINOR: http_fetch: make hdr_ip() resistant to empty fields
6707 - BUG/MINOR: mux-h2: Don't emit log twice if an error occurred on the preface
6708 - MINOR: stream: Don't trigger errors on destructive HTTP upgrades
6709 - MINOR: frontend: Create HTTP txn for HTX streams
6710 - MINOR: stream: Be sure to set HTTP analysers when creating an HTX stream
6711 - BUG/MINOR: stream: Properly handle TCP>H1>H2 upgrades in http_wait_for_request
6712 - BUG/MINOR: config: Add warning for http-after-response rules in TCP mode
6713 - MINOR: muxes: Add a flag to notify a mux does not support any upgrade
6714 - MINOR: mux-h1: Don't perform implicit HTTP/2 upgrade if not supported by mux
6715 - MINOR: mux-pt: Don't perform implicit HTTP upgrade if not supported by mux
6716 - MEDIUM: mux-h1: Expose h1 in the list of supported mux protocols
6717 - MEDIUM: mux-pt: Expose passthrough in the list of supported mux protocols
6718 - MINOR: muxes: Show muxes flags when the mux list is displayed
6719 - DOC: config: Improve documentation about proto/check-proto keywords
6720 - MINOR: stream: Use stream type instead of proxy mode when appropriate
6721 - MINOR: filters/http-ana: Decide to filter HTTP headers in HTTP analysers
6722 - MINOR: http-ana: Simplify creation/destruction of HTTP transactions
6723 - MINOR: stream: Handle stream HTTP upgrade in a dedicated function
6724 - MEDIUM: Add tcp-request switch-mode action to perform HTTP upgrade
6725 - MINOR: config/proxy: Don't warn for HTTP rules in TCP if 'switch-mode http' set
6726 - MINOR: config/proxy: Warn if a TCP proxy without backend is upgradable to HTTP
6727 - DOC: config: Add documentation about TCP to HTTP upgrades
6728 - REGTESTS: Add script to tests TCP to HTTP upgrades
6729 - BUG/MINOR: payload/htx: Ingore L6 sample fetches for HTX streams/checks
6730 - MINOR: htx: Make internal.strm.is_htx an internal sample fetch
6731 - MINOR: action: Use a generic function to check validity of an action rule list
6732 - MINOR: payload/config: Warn if a L6 sample fetch is used from an HTTP proxy
6733 - MEDIUM: http-rules: Add wait-for-body action on request and response side
6734 - REGTESTS: Add script to tests the wait-for-body HTTP action
6735 - BUG/MINOR: http-fetch: Fix test on message state to capture the version
6736 - CLEANUP: vars: always pre-initialize smp in vars_parse_cli_get_var()
6737 - MINOR: global: define diagnostic mode of execution
6738 - MINOR: cfgparse: diag for multiple nbthread statements
6739 - MINOR: server: diag for 0 weight server
6740 - MINOR: diag: create cfgdiag module
6741 - MINOR: diag: diag if servers use the same cookie value
6742 - MINOR: config: diag if global section after non-global
6743 - TESTS: slightly reorganize the code in the tests/ directory
6744 - TESTS: move tests/*.cfg to tests/config
6745 - REGTESTS: ssl: "set ssl cert" and multi-certificates bundle
6746 - REGTESTS: ssl: mark set_ssl_cert_bundle.vtc as broken
6747 - CONTRIB: halog: fix issue with array of type char
6748 - CONTRIB: tcploop: add a shutr command
6749 - CONTRIB: debug: add the show-fd-to-flags script
6750 - CONTRIB: debug: split poll from flags
6751 - CONTRIB: move some dev-specific tools to dev/
6752 - BUILD: makefile: always build the flags utility
6753 - DEV: flags: replace the unneeded makefile with a README
6754 - BUILD: makefile: integrate the hpack tools
6755 - CONTRIB: merge ip6range with iprange
6756 - CONTRIB: move some admin-related sub-projects to admin/
6757 - CONTRIB: move halog to admin/
6758 - ADMIN: halog: automatically enable USE_MEMCHR on the right glibc version
6759 - BUILD: makefile: build halog with the correct flags
6760 - BUILD: makefile: add a "USE_PROMEX" variable to ease building prometheus-exporter
6761 - CONTRIB: move prometheus-exporter to addons/promex
6762 - DOC: add a few words about USE_* and the addons directory
6763 - CONTRIB: move 51Degrees to addons/51degrees
6764 - CONTRIB: move src/da.c and contrib/deviceatlas to addons/deviceatlas
6765 - CONTRIB: move src/wurfl.c and contrib/wurfl to addons/wurfl
6766 - CONTRIB: move contrib/opentracing to addons/ot
6767 - BUG/MINOR: opentracing: initialization after establishing daemon mode
6768 - DOC: clarify that compression works for HTTP/2
6769
Willy Tarreauaf6d88b2021-03-27 09:42:09 +010067702021/03/27 : 2.4-dev14
6771 - MEDIUM: quic: Fix build.
6772 - MEDIUM: quic: Fix build.
6773 - CI: codespell: whitelist "Dragan Dosen"
6774 - CLEANUP: assorted typo fixes in the code and comments
6775 - CI: github actions: update LibreSSL to 3.2.5
6776 - REGTESTS: revert workaround for a crash with recent libressl on http-reuse sni
6777 - CLEANUP: mark defproxy as const on parse tune.fail-alloc
6778 - REGTESTS: remove unneeded experimental-mode in cli add server test
6779 - REGTESTS: wait for proper return of enable server in cli add server test
6780 - MINOR: compression: use pool_alloc(), not pool_alloc_dirty()
6781 - MINOR: spoe: use pool_alloc(), not pool_alloc_dirty()
6782 - MINOR: fcgi-app: use pool_alloc(), not pool_alloc_dirty()
6783 - MINOR: cache: use pool_alloc(), not pool_alloc_dirty()
6784 - MINOR: ssl: use pool_alloc(), not pool_alloc_dirty()
6785 - MINOR: opentracing: use pool_alloc(), not pool_alloc_dirty()
6786 - MINOR: dynbuf: make b_alloc() always check if the buffer is allocated
6787 - CLEANUP: compression: do not test for buffer before calling b_alloc()
6788 - CLEANUP: l7-retries: do not test the buffer before calling b_alloc()
6789 - MINOR: channel: simplify the channel's buffer allocation
6790 - MEDIUM: dynbuf: remove last usages of b_alloc_margin()
6791 - CLEANUP: dynbuf: remove b_alloc_margin()
6792 - CLEANUP: dynbuf: remove the unused b_alloc_fast() function
6793 - CLEANUP: pools: remove the unused pool_get_first() function
6794 - MINOR: pools: make the pool allocator support a few flags
6795 - MINOR: pools: add pool_zalloc() to return a zeroed area
6796 - CLEANUP: connection: use pool_zalloc() in conn_alloc_hash_node()
6797 - CLEANUP: filters: use pool_zalloc() in flt_stream_add_filter()
6798 - CLEANUP: spoe: use pool_zalloc() instead of pool_alloc+memset
6799 - CLEANUP: frontend: use pool_zalloc() in frontend_accept()
6800 - CLEANUP: mailers: use pool_zalloc() in enqueue_one_email_alert()
6801 - CLEANUP: resolvers: use pool_zalloc() in resolv_link_resolution()
6802 - CLEANUP: ssl: use pool_zalloc() in ssl_init_keylog()
6803 - CLEANUP: tcpcheck: use pool_zalloc() instead of pool_alloc+memset
6804 - CLEANUP: quic: use pool_zalloc() instead of pool_alloc+memset
6805 - MINOR: time: also provide a global, monotonic global_now_ms timer
6806 - BUG/MEDIUM: freq_ctr/threads: use the global_now_ms variable
6807 - MINOR: tools: introduce new option PA_O_DEFAULT_DGRAM on str2sa_range.
6808 - BUILD: tools: fix build error with new PA_O_DEFAULT_DGRAM
6809 - BUG/MINOR: ssl: Prevent disk access when using "add ssl crt-list"
6810 - CLEANUP: ssl: remove unused definitions
6811 - BUILD: ssl: guard ecdh functions with SSL_CTX_set_tmp_ecdh macro
6812 - MINOR: lua: Slightly improve function dumping the lua traceback
6813 - BUG/MEDIUM: debug/lua: Use internal hlua function to dump the lua traceback
6814 - BUG/MEDIUM: lua: Always init the lua stack before referencing the context
6815 - MINOR: fd: make fd_clr_running() return the remaining running mask
6816 - MINOR: fd: remove the unneeded running bit from fd_insert()
6817 - BUG/MEDIUM: fd: do not wait on FD removal in fd_delete()
6818 - CLEANUP: fd: remove unused fd_set_running_excl()
6819 - CLEANUP: fd: slightly simplify up _fd_delete_orphan()
6820 - BUG/MEDIUM: fd: Take the fd_mig_lock when closing if no DWCAS is available.
6821 - BUG/MEDIUM: release lock on idle conn killing on reached pool high count
6822 - BUG/MEDIUM: thread: Fix a deadlock if an isolated thread is marked as harmless
6823 - MINOR: tools: make url2ipv4 return the exact number of bytes parsed
6824 - BUG/MINOR: http_fetch: make hdr_ip() reject trailing characters
6825 - BUG/MEDIUM: mux-h1: make h1_shutw_conn() idempotent
6826 - BUG/MINOR: ssl: Fix update of default certificate
6827 - BUG/MINOR: ssl: Prevent removal of crt-list line if the instance is a default one
6828 - BUILD: ssl: introduce fine guard for ssl random extraction functions
6829 - REORG: global: move initcall register code in a dedicated file
6830 - REORG: global: move free acl/action in their related source files
6831 - REORG: split proxy allocation functions
6832 - MINOR: proxy: implement a free_proxy function
6833 - MINOR: proxy: define cap PR_CAP_LUA
6834 - MINOR: lua: properly allocate the lua Socket proxy
6835 - MINOR: lua: properly allocate the lua Socket servers
6836 - MINOR: vars: make get_vars() allow the session to be null
6837 - MINOR: vars: make the var() sample fetch keyword depend on nothing
6838 - CLEANUP: sample: remove duplicate "stopping" sample fetch keyword
6839 - MINOR: sample: make smp_resolve_args() return an allocate error message
6840 - MINOR: sample: add a new SMP_SRC_CONST sample capability
6841 - MINOR: sample: mark the truly constant sample fetch keywords as such
6842 - MINOR: sample: add a new CFG_PARSER context for samples
6843 - MINOR: action: add a new ACT_F_CFG_PARSER origin designation
6844 - MEDIUM: vars: add support for a "set-var" global directive
6845 - REGTESTS: add a basic reg-test for some "set-var" commands
6846 - MINOR: sample: add a new CLI_PARSER context for samples
6847 - MINOR: action: add a new ACT_F_CLI_PARSER origin designation
6848 - MINOR: vars/cli: add a "get var" CLI command to retrieve global variables
6849 - MEDIUM: cli: add a new experimental "set var" command
6850 - MINOR: compat: add short aliases for a few very commonly used types
6851 - BUILD: ssl: use EVP_CIPH_GCM_MODE macro instead of HA_OPENSSL_VERSION
6852 - MEDIUM: backend: use a trylock to grab a connection on high FD counts as well
6853
Willy Tarreau09cc6692021-03-19 17:16:18 +010068542021/03/19 : 2.4-dev13
6855 - BUG/MEDIUM: cli: fix "help" crashing since recent spelling fixes
6856 - BUG/MINOR: cfgparse: use the GLOBAL not LISTEN keywords list for spell checking
6857 - MINOR: tools: improve word fingerprinting by counting presence
6858 - MINOR: tools: do not sum squares of differences for word fingerprints
6859 - MINOR: cli: improve fuzzy matching to work on all remaining words at once
6860 - MINOR: cli: sort the suggestions by order of relevance
6861 - MINOR: cli: limit spelling suggestions to 5
6862 - MINOR: cfgparse/proxy: also support spelling fixes on options
6863 - BUG/MINOR: resolvers: Add missing case-insensitive comparisons of DNS hostnames
6864 - MINOR: time: export the global_now variable
6865 - BUG/MINOR: freq_ctr/threads: make use of the last updated global time
6866 - MINOR: freq_ctr/threads: relax when failing to update a sliding window value
6867 - MINOR/BUG: mworker/cli: do not use the unix_bind prefix for the master CLI socket
6868 - MINOR: mworker/cli: alert the user if we enabled a master CLI but not the master-worker mode
6869 - MINOR: cli: implement experimental-mode
6870 - REORG: server: add a free server function
6871 - MINOR: cfgparse: always alloc idle conns task
6872 - REORG: server: move keywords in srv_kws
6873 - MINOR: server: remove fastinter from mistyped kw list
6874 - REORG: server: split parse_server
6875 - REORG: server: move alert traces in parse_server
6876 - REORG: server: rename internal functions from parse_server
6877 - REORG: server: attach servers in parse_server
6878 - REORG: server: use flags for parse_server
6879 - MINOR: server: prepare parsing for dynamic servers
6880 - MINOR: stats: export function to allocate extra proxy counters
6881 - MEDIUM: server: implement 'add server' cli command
6882 - REGTESTS: implement test for 'add server' cli
6883 - MINOR: server: enable standard options for dynamic servers
6884 - MINOR: server: support keyword proto in 'add server' cli
6885 - BUG/MINOR: protocol: add missing support of dgram unix socket.
6886 - CLEANUP: Fix a typo in fix_is_valid description
6887 - MINOR: raw_sock: Add a close method.
6888 - MEDIUM: connections: Introduce a new XPRT method, start().
6889 - MEDIUM: connections: Implement a start() method for xprt_handshake.
6890 - MEDIUM: connections: Implement a start() method in ssl_sock.
6891 - MINOR: muxes: garbage collect the reset() method.
6892 - CLEANUP: tcp-rules: Fix a typo in error messages about expect-netscaler-cip
6893 - MEDIUM: lua: Use a per-thread counter to track some non-reentrant parts of lua
6894 - BUG/MEDIUM: debug/lua: Don't dump the lua stack if not dumpable
6895
Willy Tarreauacdd47d2021-03-13 11:48:28 +010068962021/03/13 : 2.4-dev12
6897 - CLEANUP: connection: Use `VAR_ARRAY` in `struct tlv` definition
6898 - CLEANUP: connection: Remove useless test for NULL before calling `pool_free()`
6899 - CLEANUP: connection: Use istptr / istlen for proxy_unique_id
6900 - MINOR: connection: Use a `struct ist` to store proxy_authority
6901 - CLEANUP: connection: Consistently use `struct ist` to process all TLV types
6902 - BUILD: task: fix build at -O0 with threads disabled
6903 - BUILD: bug: refine HA_LINK_ERROR() to only be used on gcc and derivatives
6904 - CLEANUP: config: make the cfg_keyword parsers take a const for the defproxy
6905 - BUILD: connection: do not use VAR_ARRAY in struct tlv
6906 - BUG/MEDIUM: session: NULL dereference possible when accessing the listener
6907 - MINOR: build: force CC to set a return code when probing options
6908 - CLEANUP: stream: rename a few remaining occurrences of "stream *sess"
6909 - BUG/MEDIUM: resolvers: handle huge responses over tcp servers.
6910 - CLEANUP: config: also address the cfg_keyword API change in the compression code
6911 - BUG/MEDIUM: ssl: properly remove the TASK_HEAVY flag at end of handshake
6912 - BUG/MINOR: sample: Rename SenderComID/TargetComID to SenderCompID/TargetCompID
6913 - MINOR: task: give the scheduler a bit more flexibility in the runqueue size
6914 - OPTIM: task: automatically adjust the default runqueue-depth to the threads
6915 - BUG/MINOR: connection: Missing QUIC initialization
6916 - BUG/MEDIUM: stick-tables: fix ref counter in table entry using multiple http tracksc.
6917 - BUILD: atomic/arm64: force the register pairs to use in __ha_cas_dw()
6918 - BUG/MEDIUM: filters: Set CF_FL_ANALYZE on channels when filters are attached
6919 - BUG/MINOR: tcpcheck: Update .health threshold of agent inside an agent-check
6920 - BUG/MINOR: proxy/session: Be sure to have a listener to increment its counters
6921 - BUG/MINOR: tcpcheck: Fix double free on error path when parsing tcp/http-check
6922 - BUG/MINOR: server-state: properly handle the case where the base is not set
6923 - BUG/MINOR: server-state: use the argument, not the global state
6924 - CLEANUP: tcp-rules: add missing actions in the tcp-request error message
6925 - CLEANUP: vars: make the error message clearer on missing arguments for set-var
6926 - CLEANUP: http-rules: remove the unexpected comma before the list of action keywords
6927 - CLEANUP: actions: the keyword must always be const from the rule
6928 - MINOR: tools: add simple word fingerprinting to find similar-looking words
6929 - MINOR: cfgparse: add cfg_find_best_match() to suggest an existing word
6930 - MINOR: cfgparse: suggest correct spelling for unknown words in proxy sections
6931 - MINOR: cfgparse: suggest correct spelling for unknown words in global section
6932 - MINOR: cfgparse/server: try to fix spelling mistakes on server lines
6933 - MINOR: cfgparse/bind: suggest correct spelling for unknown bind keywords
6934 - MINOR: actions: add a function to suggest an action ressembling a given word
6935 - MINOR: http-rules: suggest approaching action names on mismatch
6936 - MINOR: tcp-rules: suggest approaching action names on mismatch
6937 - BUG/MINOR: cfgparse/server: increment the extra keyword counter one at a time
6938 - Revert "BUG/MINOR: resolvers: Only renew TTL for SRV records with an additional record"
6939 - BUG/MINOR: resolvers: Consider server to have no IP on DNS resolution error
6940 - BUG/MINOR: resolvers: Reset server address on DNS error only on status change
6941 - BUG/MINOR: resolvers: Unlink DNS resolution to set RMAINT on SRV resolution
6942 - BUG/MEDIUM: resolvers: Don't set an address-less server as UP
6943 - BUG/MEDIUM: resolvers: Fix the loop looking for an existing ADD item
6944 - MINOR: resolvers: new function find_srvrq_answer_record()
6945 - BUG/MINOR; resolvers: Ignore DNS resolution for expired SRV item
6946 - BUG/MEDIUM: resolvers: Trigger a DNS resolution if an ADD item is obsolete
6947 - MINOR: resolvers: Use a function to remove answers attached to a resolution
6948 - MINOR: resolvers: Purge answer items when a SRV resolution triggers an error
6949 - MINOR: resolvers: Add function to change the srv status based on SRV resolution
6950 - MINOR: resolvers: Directly call srvrq_update_srv_state() when possible
6951 - BUG/MEDIUM: resolvers: Don't release resolution from a requester callbacks
6952 - BUG/MEDIUM: resolvers: Skip DNS resolution at startup if SRV resolution is set
6953 - MINOR: resolvers: Use milliseconds for cached items in resolver responses
6954 - MINOR: resolvers: Don't try to match immediatly renewed ADD items
6955 - CLEANUP: resolvers: Use ha_free() in srvrq_resolution_error_cb()
6956 - CLEANUP: resolvers: Perform unsafe loop on requester list when possible
6957 - BUG/MINOR: cli: make sure "help", "prompt", "quit" are enabled at master level
6958 - CLEANUP: cli: fix misleading comment and better indent the access level flags
6959 - MINOR: cli: set the ACCESS_MASTER* bits on the master bind_conf
6960 - MINOR: cli: test the appctx level for master access instead of comparing pointers
6961 - MINOR: cli: print the error message in the parser function itself
6962 - MINOR: cli: filter the list of commands to the matching part
6963 - MEDIUM: cli: apply spelling fixes for known commands before listing them
6964 - MINOR: tools: add the ability to update a word fingerprint
6965 - MINOR: cli: apply the fuzzy matching on the whole command instead of words
6966 - CLEANUP: cli: rename MAX_STATS_ARGS to MAX_CLI_ARGS
6967 - CLEANUP: cli: rename the last few "stats_" to "cli_"
6968 - CLEANUP: task: make sure tasklet handlers always indicate their statuses
6969 - CLEANUP: assorted typo fixes in the code and comments
6970
Willy Tarreau7bbc6c92021-03-05 21:24:23 +010069712021/03/05 : 2.4-dev11
6972 - CI: codespell: skip Makefile for spell check
6973 - CLEANUP: assorted typo fixes in the code and comments
6974 - BUG/MINOR: tcp-act: Don't forget to set the original port for IPv4 set-dst rule
6975 - BUG/MINOR: connection: Use the client's dst family for adressless servers
6976 - BUG/MEDIUM: spoe: Kill applets if there are pending connections and nbthread > 1
6977 - CLEANUP: Use ist2(const void*, size_t) whenever possible
6978 - CLEANUP: Use IST_NULL whenever possible
6979 - BUILD: proxy: Missing header inclusion for quic_transport_params_init()
6980 - BUILD: quic: Implicit conversion between SSL related enums.
6981 - DOC: spoe: Add a note about fragmentation support in HAProxy
6982 - MINOR: contrib: add support for heartbeat control messages.
6983 - MINOR: contrib: Enhance peers dissector heuristic.
6984 - BUG/MINOR: mux-h2: Fix typo in scheme adjustment
6985 - CLEANUP: Reapply the ist2() replacement patch
6986 - CLEANUP: Use istadv(const struct ist, const size_t) whenever possible
6987 - CLEANUP: Use isttest(const struct ist) whenever possible
6988 - Revert "CI: Pin VTest to a known good commit"
6989 - CLEANUP: backend: fix a wrong comment
6990 - BUG/MINOR: backend: free allocated bind_addr if reuse conn
6991 - MINOR: backend: handle reuse for conns with no server as target
6992 - REGTESTS: test http-reuse if no server target
6993 - BUG/MINOR: hlua: Don't strip last non-LWS char in hlua_pushstrippedstring()
6994 - BUG/MINOR: server-state: Don't load server-state file for disabled backends
6995 - CLEANUP: dns: Use DISGUISE() on a never-failing ring_attach() call
6996 - CLEANUP: dns: Remove useless test on ns->dgram in dns_connect_nameserver()
6997 - DOC: fix originalto except clause on destination address
6998 - CLEANUP: Use the ist() macro whenever possible
6999 - CLEANUP: Replace for loop with only a condition by while
7000 - REORG: atomic: reimplement pl_cpu_relax() from atomic-ops.h
7001 - BUG/MINOR: mt-list: always perform a cpu_relax call on failure
7002 - MINOR: atomic: add armv8.1-a atomics variant for cas-dw
7003 - MINOR: atomic: implement a more efficient arm64 __ha_cas_dw() using pairs
7004 - BUG/MINOR: ssl: don't truncate the file descriptor to 16 bits in debug mode
7005 - MEDIUM: pools: add CONFIG_HAP_NO_GLOBAL_POOLS and CONFIG_HAP_GLOBAL_POOLS
7006 - MINOR: pools: double the local pool cache size to 1 MB
7007 - MINOR: stream: use ABORT_NOW() and not abort() in stream_dump_and_crash()
7008 - CLEANUP: stream: explain why we queue the stream at the head of the server list
7009 - MEDIUM: backend: use a trylock when trying to grab an idle connection
7010 - REORG: tools: promote the debug PRNG to more general use as a statistical one
7011 - OPTIM: lb-random: use a cheaper PRNG to pick a server
7012 - MINOR: task: stop abusing the nice field to detect a tasklet
7013 - MINOR: task: move the nice field to the struct task only
7014 - MEDIUM: task: extend the state field to 32 bits
7015 - MINOR: task: add an application specific flag to the state: TASK_F_USR1
7016 - MEDIUM: muxes: mark idle conns tasklets with TASK_F_USR1
7017 - MINOR: xprt: add new xprt_set_idle and xprt_set_used methods
7018 - MEDIUM: ssl: implement xprt_set_used and xprt_set_idle to relax context checks
7019 - MINOR: server: don't read curr_used_conns multiple times
7020 - CLEANUP: global: reorder some fields to respect cache lines
7021 - CLEANUP: sockpair: silence a coverity check about fcntl()
7022 - CLEANUP: lua: set a dummy file name and line number on the dummy servers
7023 - MINOR: server: add a global list of all known servers
7024 - MINOR: cfgparse: finish to set up servers outside of the proxy setup loop
7025 - MINOR: server: allocate a per-thread struct for the per-thread connections stuff
7026 - MINOR: server: move actconns to the per-thread structure
7027 - CLEANUP: server: reorder some fields in the server struct to respect cache lines
7028 - MINOR: backend: add a BUG_ON if conn mux NULL in connect_server
7029 - BUG/MINOR: backend: fix condition for reuse on mode HTTP
7030 - BUILD: Fix build when using clang without optimizing.
7031 - CLEANUP: assorted typo fixes in the code and comments
7032
Willy Tarreau8ab65c22021-02-26 22:49:10 +010070332021/02/26 : 2.4-dev10
7034 - BUILD: SSL: introduce fine guard for RAND_keep_random_devices_open
7035 - MINOR: Configure the `cpp` userdiff driver for *.[ch] in .gitattributes
7036 - BUG/MINOR: ssl/cli: potential null pointer dereference in "set ssl cert"
7037 - BUG/MINOR: sample: secure convs that accept base64 string and var name as args
7038 - BUG/MEDIUM: vars: make functions vars_get_by_{name,desc} thread-safe
7039 - CLEANUP: vars: make smp_fetch_var() to reuse vars_get_by_desc()
7040 - DOC: muxes: add a diagram of the exchanges between muxes and outer world
7041 - BUG/MEDIUM: proxy: use thread-safe stream killing on hard-stop
7042 - BUG/MEDIUM: cli/shutdown sessions: make it thread-safe
7043 - BUG/MINOR: proxy: wake up all threads when sending the hard-stop signal
7044 - MINOR: stream: add an "epoch" to figure which streams appeared when
7045 - MINOR: cli/streams: make "show sess" dump all streams till the new epoch
7046 - MINOR: streams: use one list per stream instead of a global one
7047 - MEDIUM: streams: do not use the streams lock anymore
7048 - BUILD: dns: avoid a build warning when threads are disabled (dss unused)
7049 - MEDIUM: task: remove the tasks_run_queue counter and have one per thread
7050 - MINOR: tasks: do not maintain the rqueue_size counter anymore
7051 - CLEANUP: tasks: use a less confusing name for task_list_size
7052 - CLEANUP: task: move the tree root detection from __task_wakeup() to task_wakeup()
7053 - MINOR: task: limit the remote thread wakeup to the global runqueue only
7054 - MINOR: task: move the allocated tasks counter to the per-thread struct
7055 - CLEANUP: task: split the large tasklet_wakeup_on() function in two
7056 - BUG/MINOR: fd: properly wait for !running_mask in fd_set_running_excl()
7057 - BUG/MINOR: resolvers: Fix condition to release received ARs if not assigned
7058 - BUG/MINOR: resolvers: Only renew TTL for SRV records with an additional record
7059 - BUG/MINOR: resolvers: new callback to properly handle SRV record errors
7060 - BUG/MEDIUM: resolvers: Reset server address and port for obselete SRV records
7061 - BUG/MEDIUM: resolvers: Reset address for unresolved servers
7062 - DOC: Update the module list in MAINTAINERS file
7063 - MINOR: htx: Add function to reserve the max possible size for an HTX DATA block
7064 - DOC: Update the HTX API documentation
7065 - DOC: Update the filters guide
7066 - BUG/MEDIUM: contrib/prometheus-exporter: fix segfault in listener name dump
7067 - MINOR: task: split the counts of local and global tasks picked
7068 - MINOR: task: do not use __task_unlink_rq() from process_runnable_tasks()
7069 - MINOR: task: don't decrement then increment the local run queue
7070 - CLEANUP: task: re-merge __task_unlink_rq() with task_unlink_rq()
7071 - MINOR: task: make grq_total atomic to move it outside of the grq_lock
7072 - MINOR: tasks: also compute the tasklet latency when DEBUG_TASK is set
7073 - MINOR: task: make tasklet wakeup latency measurements more accurate
7074 - MINOR: server: Be more strict on the server-state line parsing
7075 - MINOR: server: Only fill one array when parsing a server-state line
7076 - MEDIUM: server: Refactor apply_server_state() to make it more readable
7077 - CLEANUP: server: Rename state_line node to node instead of name_name
7078 - CLEANUP: server: Rename state_line structure into server_state_line
7079 - CLEANUP: server: Use a local eb-tree to store lines of the global server-state file
7080 - MINOR: server: Be more strict when reading the version of a server-state file
7081 - MEDIUM: server: Store parsed params of a server-state line in the tree
7082 - MINOR: server: Remove cached line from global server-state tree when found
7083 - MINOR: server: Move loading state of servers in a dedicated function
7084 - MEDIUM: server: Use a tree to store local server-state lines
7085 - MINOR: server: Parse and store server-state lines in a dedicated function
7086 - MEDIUM: server: Don't load server-state file if a line is corrupted
7087 - REORG: server: Export and rename some functions updating server info
7088 - REORG: server-state: Move functions to deal with server-state in its own file
7089 - MINOR: server-state: Don't load server-state file for serverless proxies
7090 - CLEANUP: muxes: Remove useless if condition in show_fd function
7091 - BUG/MINOR: stats: fix compare of no-maint url suffix
7092 - MINOR: task: limit the number of subsequent heavy tasks with flag TASK_HEAVY
7093 - MINOR: ssl: mark the SSL handshake tasklet as heavy
7094 - CLEANUP: server: rename srv_cleanup_{idle,toremove}_connections()
7095 - BUG/MINOR: ssl: potential null pointer dereference in ckchs_dup()
7096 - MINOR: task: add one extra tasklet class: TL_HEAVY
7097 - MINOR: task: place the heavy elements in TL_HEAVY
7098 - MINOR: task: only limit TL_HEAVY tasks but not others
7099 - BUG/MINOR: http-ana: Only consider dst address to process originalto option
7100 - MINOR: tools: Add net_addr structure describing a network addess
7101 - MINOR: tools: Add function to compare an address to a network address
7102 - MEDIUM: http-ana: Add IPv6 support for forwardfor and orignialto options
7103 - CLEANUP: hlua: Use net_addr structure internally to parse and compare addresses
7104 - REGTESTS: Add script to test except param for fowardedfor/originalto options
7105 - DOC: scheduler: add a diagram showing the different queues and their usages
7106 - CLEANUP: tree-wide: replace free(x);x=NULL with ha_free(&x)
7107 - CLEANUP: config: replace a few free() with ha_free()
7108 - CLEANUP: vars: always zero the pointers after a free()
7109 - CLEANUP: ssl: remove a useless "if" before freeing an error message
7110 - CLEANUP: ssl: make ssl_sock_free_srv_ctx() zero the pointers after free
7111 - CLEANUP: ssl: use realloc() instead of free()+malloc()
7112
Willy Tarreau31dd3932021-02-20 13:30:31 +010071132021/02/20 : 2.4-dev9
7114 - BUG/MINOR: server: Remove RMAINT from admin state when loading server state
7115 - CLEANUP: check: fix get_check_status_info declaration
7116 - CLEANUP: contrib/prometheus-exporter: align for with srv status case
7117 - MEDIUM: stats: allow to select one field in `stats_fill_li_stats`
7118 - MINOR: stats: add helper to get status string
7119 - MEDIUM: contrib/prometheus-exporter: add listen stats
7120 - BUG/MINOR: dns: add test on result getting value from buffer into ring.
7121 - BUG/MINOR: dns: dns_connect_server must return -1 unsupported nameserver's type
7122 - BUG/MINOR: dns: missing test writing in output channel in session handler
7123 - BUG/MINOR: dns: fix ring attach control on dns_session_new
7124 - BUG/MEDIUM: dns: fix multiple double close on fd in dns.c
7125 - BUG/MAJOR: connection: prevent double free if conn selected for removal
7126 - BUG/MINOR: session: atomically increment the tracked sessions counter
7127 - REGTESTS: fix http_reuse_conn_hash proxy test
7128 - BUG/MINOR: backend: do not call smp_make_safe for sni conn hash
7129 - MINOR: connection: remove pointers for prehash in conn_hash_params
7130 - BUG/MINOR: checks: properly handle wrapping time in __health_adjust()
7131 - BUG/MEDIUM: checks: don't needlessly take the server lock in health_adjust()
7132 - DEBUG: thread: add 5 extra lock labels for statistics and debugging
7133 - OPTIM: server: switch the actconn list to an mt-list
7134 - Revert "MINOR: threads: change lock_t to an unsigned int"
7135 - MINOR: lb/api: let callers of take_conn/drop_conn tell if they have the lock
7136 - OPTIM: lb-first: do not take the server lock on take_conn/drop_conn
7137 - OPTIM: lb-leastconn: do not take the server lock on take_conn/drop_conn
7138 - OPTIM: lb-leastconn: do not unlink the server if it did not change
7139 - MINOR: tasks: add DEBUG_TASK to report caller info in a task
7140 - MINOR: tasks/debug: add some extra controls of use-after-free in DEBUG_TASK
7141 - BUG/MINOR: sample: Always consider zero size string samples as unsafe
7142 - MINOR: cli: add missing agent commands for set server
7143 - BUILD/MEDIUM: da Adding pcre2 support.
7144 - BUILD: ssl: introduce fine guard for OpenSSL specific SCTL functions
7145 - REGTESTS: reorder reuse conn proxy protocol test
7146 - DOC: explain the relation between pool-low-conn and tune.idle-pool.shared
7147 - MINOR: tasks: refine the default run queue depth
7148 - MINOR: listener: refine the default MAX_ACCEPT from 64 to 4
7149 - MINOR: mux_h2: do not try to remove front conn from idle trees
7150 - REGTESTS: workaround for a crash with recent libressl on http-reuse sni
7151 - BUG/MEDIUM: lists: Avoid an infinite loop in MT_LIST_TRY_ADDQ().
7152 - MINOR: connection: allocate dynamically hash node for backend conns
7153 - DOC: DeviceAtlas documentation typo fix.
7154 - BUG/MEDIUM: spoe: Resolve the sink if a SPOE logs in a ring buffer
7155 - BUG/MINOR: http-rules: Always replace the response status on a return action
7156 - BUG/MINOR: server: Init params before parsing a new server-state line
7157 - BUG/MINOR: server: Be sure to cut the last parsed field of a server-state line
7158 - MEDIUM: server: Don't introduce a new server-state file version
7159 - DOC: contrib/prometheus-exporter: remove htx reference
7160 - REGTESTS: contrib/prometheus-exporter: test NaN values
7161 - REGTESTS: contrib/prometheus-exporter: test well known labels
7162 - CI: github actions: switch to stable LibreSSL release
7163 - BUG/MINOR: server: Fix test on number of fields allowed in a server-state line
7164 - MINOR: dynbuf: make the buffer wait queue per thread
7165 - MINOR: dynbuf: use regular lists instead of mt_lists for buffer_wait
7166 - MINOR: dynbuf: pass offer_buffers() the number of buffers instead of a threshold
7167 - MINOR: sched: have one runqueue ticks counter per thread
7168
Willy Tarreaudc626ec2021-02-13 10:17:27 +010071692021/02/13 : 2.4-dev8
7170 - BUILD: ssl: fix typo in HAVE_SSL_CTX_ADD_SERVER_CUSTOM_EXT macro
7171 - BUILD: ssl: guard SSL_CTX_add_server_custom_ext with special macro
7172 - BUG/MINOR: mux-h1: Don't emit extra CRLF for empty chunked messages
7173 - MINOR: contrib/prometheus-exporter: use stats desc when possible followup
7174 - MEDIUM: contrib/prometheus-exporter: export base stick table stats
7175 - CLEANUP: assorted typo fixes in the code and comments
7176 - CLEANUP: check: fix some typo in comments
7177 - CLEANUP: tools: typo in `strl2irc` mention
7178 - BUILD: ssl: guard SSL_CTX_set_msg_callback with SSL_CTRL_SET_MSG_CALLBACK macro
7179 - MEDIUM: ssl: add a rwlock for SSL server session cache
7180 - BUG/MINOR: intops: fix mul32hi()'s off-by-one
7181 - BUG/MINOR: freq_ctr: fix a wrong delay calculation in next_event_delay()
7182 - MINOR: stick-tables/counters: add http_fail_cnt and http_fail_rate data types
7183 - MINOR: ssl: add SSL_SERVER_LOCK label in threads.h
7184 - BUG/MINOR: mux-h1: Don't increment HTTP error counter for 408/500/501 errors
7185 - BUG/MINOR: http-ana: Don't increment HTTP error counter on internal errors
7186 - BUG/MEDIUM: mux-h1: Always set CS_FL_EOI for response in MSG_DONE state
7187 - BUG/MINOR: mux-h1: Fix data skipping for bodyless responses
7188 - BUG/MINOR: mux-h1: Don't blindly skip EOT block for non-chunked messages
7189 - BUG/MEDIUM: mux-h2: Add EOT block when EOM flag is set on an empty HTX message
7190 - MINOR: mux-h1: Be sure EOM flag is set when processing end of outgoing message
7191 - REGTESTS: Add a script to test payload skipping for bodyless HTTP responses
7192 - BUG/MINOR: server: re-align state file fields number
7193 - CLEANUP: muxes: Remove useless calls to b_realign_if_empty()
7194 - BUG/MINOR: tools: Fix a memory leak on error path in parse_dotted_uints()
7195 - CLEANUP: remove unused variable assigned found by Coverity
7196 - CLEANUP: queue: Remove useless tests on p or pp in pendconn_process_next_strm()
7197 - BUG/MINOR: backend: hold correctly lock when killing idle conn
7198 - MEDIUM: connection: protect idle conn lists with locks
7199 - MEDIUM: connection: replace idle conn lists by eb trees
7200 - MINOR: backend: search conn in idle/safe trees after available
7201 - MINOR: backend: search conn in idle tree after safe on always reuse
7202 - MINOR: connection: prepare hash calcul for server conns
7203 - MINOR: connection: use the srv pointer for the srv conn hash
7204 - MINOR: backend: compare conn hash for session conn reuse
7205 - MINOR: connection: use sni as parameter for srv conn hash
7206 - MINOR: reg-tests: test http-reuse with sni
7207 - MINOR: backend: rewrite alloc of stream target address
7208 - MINOR: connection: use dst addr as parameter for srv conn hash
7209 - MINOR: reg-test: test http-reuse with specific dst addr
7210 - MINOR: backend: rewrite alloc of connection src address
7211 - MINOR: connection: use src addr as parameter for srv conn hash
7212 - MINOR: connection: use proxy protocol as parameter for srv conn hash
7213 - MINOR: reg-tests: test http-reuse with proxy protocol
7214 - MINOR: doc: update http reuse for new eligilible connections
7215 - BUG/MINOR: backend: fix compilation without ssl
7216 - REGTESTS: adjust http_reuse_conn_hash requirements
7217 - REGTESTS: deactivate a failed test on CI in http_reuse_conn_hash
7218 - REGTESTS: fix sni used in http_reuse_conn_hash for libressl 3.3.0
7219 - CI: cirrus: update FreeBSD image to 12.2
7220 - MEDIUM: cli: add check-addr command
7221 - MEDIUM: cli: add agent-port command
7222 - MEDIUM: server: add server-states version 2
7223 - MEDIUM: server: support {check,agent}_addr, agent_port in server state
7224 - MINOR: server: enhance error precision when applying server state
7225 - BUG/MINOR: server: Fix server-state-file-name directive
7226 - CLEANUP: deinit: release global and per-proxy server-state variables on deinit
7227 - BUG/MEDIUM: config: don't pick unset values from last defaults section
7228 - BUG/MINOR: stats: revert the change on ST_CONVDONE
7229 - BUG/MINOR: cfgparse: do not mention "addr:port" as supported on proxy lines
7230 - BUG/MINOR: http-htx: defpx must be a const in proxy_dup_default_conf_errors()
7231 - BUG/MINOR: tcpheck: the source list must be a const in dup_tcpcheck_var()
7232 - BUILD: proxy: add missing compression-t.h to proxy-t.h
7233 - REORG: move init_default_instance() to proxy.c and pass it the defproxy pointer
7234 - REORG: proxy: centralize the proxy allocation code into alloc_new_proxy()
7235 - MEDIUM: proxy: only take defaults when a default proxy is passed.
7236 - MINOR: proxy: move the defproxy freeing code to proxy.c
7237 - MINOR: proxy: always properly reset the just freed default instance pointers
7238 - BUG/MINOR: extcheck: proxy_parse_extcheck() must take a const for the defproxy
7239 - BUG/MINOR: tcpcheck: proxy_parse_*check*() must take a const for the defproxy
7240 - BUG/MINOR: server: parse_server() must take a const for the defproxy
7241 - MINOR: cfgparse: move defproxy to cfgparse-listen as a static
7242 - MINOR: proxy: add a new capability PR_CAP_DEF
7243 - MINOR: cfgparse: check PR_CAP_DEF instead of comparing poiner against defproxy
7244 - MINOR: cfgparse: use a pointer to the current default proxy
7245 - MINOR: proxy: also store the name for a defaults section
7246 - MINOR: proxy: support storing defaults sections into their own tree
7247 - MEDIUM: proxy: store the default proxies in a tree by name
7248 - MEDIUM: cfgparse: allow a proxy to designate the defaults section to use
7249 - MINOR: http: add baseq sample fetch
7250 - CLEANUP: tcpcheck: Remove a useless test on port variable
7251 - BUG/MINOR: server: Don't call fopen() with server-state filepath set to NULL
7252 - CLEANUP: server: Remove useless "filepath" variable in apply_server_state()
7253 - MINOR: peers/cli: do not dump the peers dictionaries by default on "show peers"
7254 - MINOR: cfgparse: implement a simple if/elif/else/endif macro block handler
7255 - DOC: tune: explain the origin of block size for ssl.cachesize
7256 - MINOR: tcp: add support for defer-accept on FreeBSD.
7257 - MINOR: ring: adds new ring_init function.
7258 - CLEANUP: channel: fix comment in ci_putblk.
7259 - BUG/MINOR: dns: add missing sent counter and parent id to dns counters.
7260 - BUG/MINOR: resolvers: fix attribute packed struct for dns
7261 - MINOR: resolvers: renames some resolvers internal types and removes dns prefix
7262 - MINOR: resolvers: renames type dns_resolvers to resolvers.
7263 - MINOR: resolvers: renames some resolvers specific types to not use dns prefix
7264 - MINOR: resolvers: renames some dns prefixed types using resolv prefix.
7265 - MINOR: resolvers: renames resolvers DNS_RESP_* errcodes RSLV_RESP_*
7266 - MINOR: resolvers: renames resolvers DNS_UPD_* returncodes to RSLV_UPD_*
7267 - MINOR: resolvers: rework prototype suffixes to split resolving and dns.
7268 - MEDIUM: resolvers: move resolvers section parsing from cfgparse.c to dns.c
7269 - MINOR: resolvers: replace nameserver's resolver ref by generic parent pointer
7270 - MINOR: resolvers: rework dns stats prototype because specific to resolvers
7271 - MEDIUM: resolvers: split resolving and dns message exchange layers.
7272 - MEDIUM: resolvers/dns: split dns.c into dns.c and resolvers.c
7273 - MEDIUM: dns: adds code to support pipelined DNS requests over TCP.
7274 - MEDIUM: resolvers: add supports of TCP nameservers in resolvers.
7275
Willy Tarreau5d46fbd2021-02-05 15:17:33 +010072762021/02/05 : 2.4-dev7
7277 - BUG/MINOR: stats: Continue to fill frontend stats on unimplemented metric
7278 - BUILD: ssl: guard Client Hello callbacks with HAVE_SSL_CLIENT_HELLO_CB macro instead of openssl version
7279 - BUG/MINOR: stats: Init the metric variable when frontend stats are filled
7280 - MINOR: contrib/prometheus-exporter: better output of Not-a-Number
7281 - CLEANUP: stats: improve field selection for frontend http fields
7282 - CLEANUP: assorted typo fixes in the code and comments
7283 - DOC: Improve documentation of the various hdr() fetches
7284 - MEDIUM: stats: allow to select one field in `stats_fill_be_stats`
7285 - MINOR: contrib/prometheus-exporter: use fill_be_stats for backend dump
7286 - MEDIUM: stats: allow to select one field in `stats_fill_sv_stats`
7287 - MINOR: contrib/prometheus-exporter: use fill_sv_stats for server dump
7288 - MINOR: abort() on my_unreachable() when DEBUG_USE_ABORT is set.
7289 - BUG/MEDIUM: filters/htx: Fix data forwarding when payload length is unknown
7290 - BUG/MINOR: config: fix leak on proxy.conn_src.bind_hdr_name
7291 - MINOR: reg-tests: add http-reuse test
7292 - CLEANUP: srv: fix comment for pool-max-conn
7293 - CLEANUP: backend: remove an obsolete comment on conn_backend_get
7294 - REORG: backend: simplify conn_backend_get
7295 - MINOR: ssl: Server ssl context prepare function refactoring
7296 - MINOR: ssl: Certificate chain loading refactorization
7297 - MEDIUM: ssl: Load client certificates in a ckch for backend servers
7298 - MEDIUM: ssl: Enable backend certificate hot update
7299 - MINOR: ssl: Remove client_crt member of the server's ssl context
7300 - CLEANUP: ssl/cli: rework free in cli_io_handler_commit_cert()
7301 - CLEANUP: ssl: remove SSL_CTX function parameter
7302 - CLEANUP: ssl: make load_srv_{ckchs,cert} match their bind counterpart
7303 - BUILD: Include stdlib.h in compiler.h if DEBUG_USE_ABORT is set
7304 - CI: Fix DEBUG_STRICT definition for Coverity
7305 - BUG/MINOR: stats: Remove a break preventing ST_F_QCUR to be set for servers
7306 - BUG/MINOR: stats: Add a break after filling ST_F_MODE field for servers
7307 - CLEANUP: ssl: remove dead code in ckch_inst_new_load_srv_store()
7308 - BUG/MINOR: ssl: init tmp chunk correctly in ssl_sock_load_sctl_from_file()
7309 - BUG/MEDIUM: session: only retrieve ready idle conn from session
7310 - BUG/MEDIUM: backend: never reuse a connection for tcp mode
7311 - REGTESTS: set_ssl_server_cert.vtc: remove the abort command
7312 - REGTESTS: set_ssl_server_cert.vtc: check the Sha1 Fingerprint
7313 - REGTESTS: set_ssl_server_cert.vtc: check the sha1 from the server
7314 - MEDIUM: stream-int: Take care of EOS if the SI wake callback function
7315 - MINOR: mux-h1: Try to wake up data layer first before calling its wake callback
7316 - MINOR: mux-h1: Wake up H1C after its creation if input buffer is not empty
7317 - MEDIUM: mux-h1: Add ST_READY state for the H1 connections
7318 - MINOR: stream: Add a function to validate TCP to H1 upgrades
7319 - MEDIUM: http-ana: Do nothing in wait-for-request analyzer if not htx
7320 - BUG/MEDIUM: stream: Don't immediatly ack the TCP to H1 upgrades
7321 - BUG/MAJOR: mux-h1: Properly handle TCP to H1 upgrades
7322 - MINOR: htx/http-ana: Save info about Upgrade option in the Connection header
7323 - MEDIUM: http-ana: Refuse invalid 101-switching-protocols responses
7324 - BUG/MINOR: h2/mux-h2: Reject 101 responses with a PROTOCOL_ERROR h2s error
7325 - MINOR: mux-h1/mux-fcgi: Don't set TUNNEL mode if payload length is unknown
7326 - MINOR: mux-h1: Split H1C_F_WAIT_OPPOSITE flag to separate input/output sides
7327 - MINOR: mux-h2: Add 2 flags to help to properly handle tunnel mode
7328 - MEDIUM: mux-h2: Block client data on server side waiting tunnel establishment
7329 - MEDIUM: mux-h2: Close streams when processing data for an aborted tunnel
7330 - MEDIUM: mux-h1: Properly handle tunnel establishments and aborts
7331 - BUG/MAJOR: mux-h1/mux-h2/htx: Fix HTTP tunnel management at the mux level
7332 - MINOR: htx: Rename HTX_FL_EOI flag into HTX_FL_EOM
7333 - REGTESTS: Don't run http_msg_full_on_eom script on the 2.4 anymore
7334 - MINOR: htx: Add a function to know if a block is the only one in a message
7335 - MAJOR: htx: Remove the EOM block type and use HTX_FL_EOM instead
7336 - MINOR: mux-h1: Add a flag on H1 streams with a response known to be bodyless
7337 - MEDIUM: mux-h1: Don't emit any payload for bodyless responses
7338 - MINOR: mux-h1: Don't emit C-L and T-E headers for 204 and 1xx responses
7339 - MINOR: mux-h1: Don't add Connection close/keep-alive header for 1xx messages
7340 - MINOR: h2/mux-h2: Add flags to notify the response is known to have no body
7341 - MEDIUM: mux-h2: Don't emit DATA frame for bodyless responses
7342 - MEDIUM: http-ana: Deal with L7 retries in HTTP analysers
7343 - MINOR: h1: reject websocket handshake if missing key
7344 - MEDIUM: h1: generate WebSocket key on response if needed
7345 - MINOR: mux_h2: define H2_SF_EXT_CONNECT_SENT stream flag
7346 - MEDIUM: h2: parse Extended CONNECT reponse to htx
7347 - MEDIUM: mux_h2: generate Extended CONNECT from htx upgrade
7348 - MEDIUM: h1: add a WebSocket key on handshake if needed
7349 - MEDIUM: mux_h2: generate Extended CONNECT response
7350 - MEDIUM: h2: parse Extended CONNECT request to htx
7351 - MEDIUM: h2: send connect protocol h2 settings
7352 - MINOR: vtc: add test for h1/h2 protocol upgrade translation
7353 - MINOR: vtc: add websocket test
7354 - REGTESTS: Fix required versions for several scripts
7355 - REGTEST: Don't use the websocket to validate http-check
7356 - MINOR: mux-h1/trace: add traces at level ERROR for all kind of errors
7357 - MINOR: mux-fcgi/trace: add traces at level ERROR for all kind of errors
7358 - MINOR: h1: Raise the chunk size limit up to (2^52 - 1)
7359 - BUG/MEDIUM: listener: do not accept connections faster than we can process them
7360 - REGTESTS: set_ssl_server_cert.vtc: set as broken
7361 - Revert "BUG/MEDIUM: listener: do not accept connections faster than we can process them"
7362 - BUG/MINOR: backend: check available list allocation for reuse
7363 - CI: Fix the coverity builds
7364 - DOC: management: fix "show resolvers" alphabetical ordering
7365 - MINOR: tools: add print_time_short() to print a condensed duration value
7366 - MINOR: activity: make profiling more manageable
7367 - MINOR: activity: declare a new structure to collect per-function activity
7368 - MEDIUM: tasks/activity: collect per-task statistics when profiling is enabled
7369 - MINOR: activity: also report collected tasks stats in "show profiling"
7370 - MINOR: activity: flush scheduler stats on "set profiling tasks on"
7371 - MINOR: activity: add a new "show tasks" command to list currently active tasks
7372 - MINOR: listener: export accept_queue_process
7373 - MINOR: session: export session_expire_embryonic()
7374 - MINOR: muxes: export the timeout and shutr task handlers
7375 - MINOR: checks: export a few functions that appear often in trace dumps
7376 - MINOR: peers: export process_peer_sync() to improve traces
7377 - MINOR: stick-tables: export process_table_expire()
7378 - MINOR: mux-h1: Remove first useless test on count in h1_process_output()
7379 - BUG/MINOR: stick-table: Always call smp_fetch_src() with a valid arg list
7380 - MINOR: http-fetch: Don't check if argument list is set in sample fetches
7381 - MINOR: http-conv: Don't check if argument list is set in sample converters
7382 - MINOR: sample: Don't check if argument list is set in sample fetches
7383 - MINOR: ssl-sample: Don't check if argument list is set in sample fetches
7384 - MINOR: mux-h2: Don't tests the start-line when sending HEADERS frame
7385 - MINOR: mux-h2: Slightly improve request HEADERS frames sending
7386 - MINOR: contrib/prometheus-exporter: declare states for objects
7387 - MAJOR: contrib/prometheus-exporter: move ftd/bkd/srv states to labels
7388 - MEDIUM: contrib/prometheus-exporter: Use dynamic labels instead of static ones
7389 - MINOR: listener: export manage_global_listener_queue()
7390 - BUG/MINOR: activity: take care of late wakeups in "show tasks"
7391 - REGTESTS: set_ssl_server_cert.vtc: remove SSL caching and set as working
7392 - REGTESTS: set_ssl_server_cert: cleanup the SSL caching option
7393 - MINOR: checks: Add function to get the result code corresponding to a status
7394 - MAJOR: contrib/prometheus-exporter: move health check status to labels
7395 - MINOR: contrib/prometheus-exporter: improve service status description field
7396 - MINOR: stats: improve pending connections description
7397 - MINOR: stats: improve max stats descriptions
7398 - MINOR: contrib/prometheus-exporter: use stats desc when possible
7399 - MINOR: contrib/prometheus-exporter: add uweight field
7400 - MINOR: contrib/prometheus-exporter: add recv logs_logs_total field
7401 - CLEANUP: contrib/prometheus-exporter: remove unused includes
7402 - CLEANUP: contrib/prometheus-exporter: align and reorder fields
7403 - CLEANUP: contrib/prometheus-exporter: remove description in README
7404 - DOC: contrib/prometheus-exporter: Add missing metrics in README
7405 - BUG/MINOR: contrib/prometheus-exporter: Add missing label for ST_F_HRSP_1XX
7406 - BUG/MINOR: contrib/prometheus-exporter: Restart labels dump at the right pos
7407 - BUG/MEDIUM: ssl/cli: abort ssl cert is freeing the old store
7408 - BUG/MEDIUM: ssl: check a connection's status before computing a handshake
7409 - BUG/MINOR: mux_h2: fix incorrect stat titles
7410 - MINOR: ssl/cli: flush the server session cache upon 'commit ssl cert'
7411 - BUG/MINOR: cli: fix set server addr/port coherency with health checks
7412 - MINOR: server: Don't set the check port during the update from a state file
7413 - MINOR: dns: Don't set the check port during a server dns resolution
7414 - MEDIUM: check: remove checkport checkaddr flag
7415 - MEDIUM: server: adding support for check_port in server state
7416 - BUG/MINOR: check: consitent way to set agentaddr
7417 - MEDIUM: check: align agentaddr and agentport behaviour
7418 - DOC: server: Add missing params in comment of the server state line parsing
7419 - BUG/MINOR: xxhash: make sure armv6 uses memcpy()
7420 - REGTESTS: mark http-check-send.vtc as 2.4-only
7421 - REGTESTS: mark sample_fetches/hashes.vtc as 2.4-only
7422 - BUG/MINOR: ssl: do not try to use early data if not configured
7423 - REGTESTS: unbreak http-check-send.vtc
7424 - MINOR: cli/show_fd: report local and report ports when known
7425 - BUILD: Makefile: move REGTESTST_TYPE default setting
7426 - BUG/MEDIUM: mux-h2: handle remaining read0 cases
7427 - CLEANUP: http-htx: Set buffer area to NULL instead of malloc(0)
7428 - BUG/MINOR: sock: Unclosed fd in case of connection allocation failure
7429 - BUG/MEDIUM: mux-h2: do not quit the demux loop before setting END_REACHED
7430
Willy Tarreau24c41d52021-01-22 16:19:46 +010074312021/01/22 : 2.4-dev6
7432 - MINOR: converter: adding support for url_enc
7433 - BUILD: SSL: guard TLS13 ciphersuites with HAVE_SSL_CTX_SET_CIPHERSUITES
7434 - BUILD: ssl: guard EVP_PKEY_get_default_digest_nid with ASN1_PKEY_CTRL_DEFAULT_MD_NID
7435 - BUILD: ssl: guard openssl specific with SSL_READ_EARLY_DATA_SUCCESS
7436 - BUILD: Makefile: exclude broken tests by default
7437 - CLEANUP: cfgparse: replace "realloc" with "my_realloc2" to fix to memory leak on error
7438 - BUG/MINOR: hlua: Fix memory leak in hlua_alloc
7439 - MINOR: contrib/prometheus-exporter: export build_info
7440 - DOC: fix some spelling issues over multiple files
7441 - CLEANUP: Fix spelling errors in comments
7442 - SCRIPTS: announce-release: fix typo in help message
7443 - CI: github: add a few more words to the codespell ignore list
7444 - DOC: Add maintainers for the Prometheus exporter
7445 - BUG/MINOR: sample: fix concat() converter's corruption with non-string variables
7446 - BUG/MINOR: server: Memory leak of proxy.used_server_addr during deinit
7447 - CLEANUP: sample: remove uneeded check in json validation
7448 - MINOR: reg-tests: add a way to add service dependency
7449 - BUG/MINOR: sample: check alloc_trash_chunk return value in concat()
7450 - BUG/MINOR: reg-tests: fix service dependency script
7451 - MINOR: reg-tests: add base prometheus test
7452 - Revert "BUG/MINOR: dns: SRV records ignores duplicated AR records"
7453 - BUG/MINOR: sample: Memory leak of sample_expr structure in case of error
7454 - BUG/MINOR: check: Don't perform any check on servers defined in a frontend
7455 - BUG/MINOR: init: enforce strict-limits when using master-worker
7456 - MINOR: contrib/prometheus-exporter: avoid connection close header
7457 - MINOR: contrib/prometheus-exporter: use fill_info for process dump
7458 - BUG/MINOR: init: Use a dynamic buffer to set HAPROXY_CFGFILES env variable
7459 - MINOR: config: Add failifnotcap() to emit an alert on proxy capabilities
7460 - MINOR: server: Forbid server definitions in frontend sections
7461 - BUG/MINOR: threads: Fixes the number of possible cpus report for Mac.
7462 - CLEANUP: pattern: rename pat_ref_commit() to pat_ref_commit_elt()
7463 - MINOR: pattern: add the missing generation ID manipulation functions
7464 - MINOR: peers: Add traces for peer control messages.
7465 - BUG/MINOR: dns: SRV records ignores duplicated AR records (v2)
7466 - BUILD: peers: fix build warning about unused variable
7467 - BUG/MEDIUM: stats: add missing INF_BUILD_INFO definition
7468 - MINOR: cache: Do not store responses with an unknown encoding
7469 - BUG/MINOR: peers: Possible appctx pointer dereference.
7470 - MINOR: build: discard echoing in help target
7471 - MINOR: cache: Remove the `hash` part of the accept-encoding secondary key
7472 - CLEANUP: cache: Use proper data types in secondary_key_cmp()
7473 - CLEANUP: Rename accept_encoding_hash_cmp to accept_encoding_bitmap_cmp
7474 - BUG/MINOR: peers: Wrong "new_conn" value for "show peers" CLI command.
7475 - MINOR: contrib: Make the wireshark peers dissector compile for more distribs.
7476 - BUG/MINOR: mux_h2: missing space between "st" and ".flg" in the "show fd" helper
7477 - CLEANUP: tools: make resolve_sym_name() take a const pointer
7478 - CLEANUP: cli: make "show fd" use a const connection to access other fields
7479 - MINOR: cli: make "show fd" also report the xprt and xprt_ctx
7480 - MINOR: xprt: add a new show_fd() helper to complete some "show fd" dumps.
7481 - MINOR: ssl: provide a "show fd" helper to report important SSL information
7482 - MINOR: xprt/mux: export all *_io_cb functions so that "show fd" resolves them
7483 - MINOR: mux-h2: make the "show fd" helper also decode the h2s subscriber when known
7484 - MINOR: mux-h1: make the "show fd" helper also decode the h1s subscriber when known
7485 - MINOR: mux-fcgi: make the "show fd" helper also decode the fstrm subscriber when known
7486 - CI: Pin VTest to a known good commit
7487 - MINOR: cli: give the show_fd helpers the ability to report a suspicious entry
7488 - MINOR: cli/show_fd: report some easily detectable suspicious states
7489 - MINOR: ssl/show_fd: report some FDs as suspicious when possible
7490 - MINOR: mux-h2/show_fd: report as suspicious an entry with too many calls
7491 - MINOR: mux-h1/show_fd: report as suspicious an entry with too many calls
7492 - BUG/MINOR: mworker: define _GNU_SOURCE for strsignal()
7493 - BUG/MEDIUM: tcpcheck: Don't destroy connection in the wake callback context
7494 - BUG/MEDIUM: mux-h2: Xfer rxbuf to the upper layer when creating a front stream
7495 - MINOR: http: Add HTTP 501-not-implemented error message
7496 - MINOR: muxes: Add exit status for errors about not implemented features
7497 - MINOR: mux-h1: Be prepared to return 501-not-implemented error during parsing
7498 - MEDIUM: mux-h1: Return a 501-not-implemented for upgrade requests with a body
7499 - DOC: Remove space after comma in converter signature
7500 - DOC: Rename '<var name>' to '<var>' in converter signature
7501 - MINOR: stats: duplicate 3 fields in bytes in info
7502 - MINOR: stats: add new start time field
7503 - MINOR: contrib/prometheus-exporter: merge info description from stats
7504 - MEDIUM: stats: allow to select one field in `stats_fill_fe_stats`
7505 - MINOR: contrib/prometheus-exporter: use fill_fe_stats for frontend dump
7506 - MINOR: contrib/prometheus-exporter: Don't needlessly set empty label for metrics
7507 - MINOR: contrib/prometheus-exporter: Split the PROMEX_FL_STATS_METRIC flag
7508 - MINOR: contrib/prometheus-exporter: Add promex_metric struct defining a metric
7509 - MEDIUM: contrib/prometheus-exporter: Rework matrices defining Promex metrics
7510 - BUG/MINOR: stream: Don't update counters when TCP to H2 upgrades are performed
7511 - BUG/MEDIUM: mux-h2: fix read0 handling on partial frames
7512 - MINOR: debug: always export the my_backtrace function
7513 - MINOR: debug: extract the backtrace dumping code to its own function
7514 - MINOR: debug: create ha_backtrace_to_stderr() to dump an instant backtrace
7515 - MEDIUM: debug: now always print a backtrace on CRASH_NOW() and friends
7516 - MINOR: debug: let ha_dump_backtrace() dump a bit further for some callers
7517 - BUILD: debug: fix build warning by consuming the write() result
7518 - MINOR: lua: remove unused variable
7519 - BUILD/MINOR: lua: define _GNU_SOURCE for LLONG_MAX
7520
Willy Tarreau421ed392021-01-06 17:41:32 +010075212021/01/06 : 2.4-dev5
7522 - BUG/MEDIUM: mux_h2: Add missing braces in h2_snd_buf()around trace+wakeup
7523 - BUILD: hpack: hpack-tbl-t.h uses VAR_ARRAY but does not include compiler.h
7524 - MINOR: time: increase the minimum wakeup interval to 60s
7525 - MINOR: check: do not ignore a connection header for http-check send
7526 - REGTESTS: complete http-check test
7527 - CI: travis-ci: drop coverity scan builds
7528 - MINOR: atomic: don't use ; to separate instruction on aarch64.
7529 - IMPORT: xxhash: update to v0.8.0 that introduces stable XXH3 variant
7530 - MEDIUM: xxhash: use the XXH3 functions to generate 64-bit hashes
7531 - MEDIUM: xxhash: use the XXH_INLINE_ALL macro to inline all functions
7532 - CLEANUP: xxhash: remove the unused src/xxhash.c
7533 - MINOR: sample: add the xxh3 converter
7534 - REGTESTS: add tests for the xxh3 converter
7535 - MINOR: protocol: Create proto_quic QUIC protocol layer.
7536 - MINOR: connection: Attach a "quic_conn" struct to "connection" struct.
7537 - MINOR: quic: Redefine control layer callbacks which are QUIC specific.
7538 - MINOR: ssl_sock: Initialize BIO and SSL objects outside of ssl_sock_init()
7539 - MINOR: connection: Add a new xprt to connection.
7540 - MINOR: ssl: Export definitions required by QUIC.
7541 - MINOR: cfgparse: Do not modify the QUIC xprt when parsing "ssl".
7542 - MINOR: tools: Add support for QUIC addresses parsing.
7543 - MINOR: quic: Add definitions for QUIC protocol.
7544 - MINOR: quic: Import C source code files for QUIC protocol.
7545 - MINOR: listener: Add QUIC info to listeners and receivers.
7546 - MINOR: server: Add QUIC definitions to servers.
7547 - MINOR: ssl: SSL CTX initialization modifications for QUIC.
7548 - MINOR: ssl: QUIC transport parameters parsing.
7549 - MINOR: quic: QUIC socket management finalization.
7550 - MINOR: cfgparse: QUIC default server transport parameters init.
7551 - MINOR: quic: Enable the compilation of QUIC modules.
7552 - MAJOR: quic: Make usage of ebtrees to store QUIC ACK ranges.
7553 - MINOR: quic: Attempt to make trace more readable
7554 - MINOR: quic: Make usage of the congestion control window.
7555 - MINOR: quic: Flag RX packet as ack-eliciting from the generic parser.
7556 - MINOR: quic: Code reordering to help in reviewing/modifying.
7557 - MINOR: quic: Add traces to congestion avoidance NewReno callback.
7558 - MINOR: quic: Display the SSL alert in ->ssl_send_alert() callback.
7559 - MINOR: quic: Update the initial salt to that of draft-29.
7560 - MINOR: quic: Add traces for in flght ack-eliciting packet counter.
7561 - MINOR: quic: make a packet build fails when qc_build_frm() fails.
7562 - MINOR: quic: Add traces for quic_packet_encrypt().
7563 - MINOR: cache: Refactoring of secondary_key building functions
7564 - MINOR: cache: Avoid storing responses whose secondary key was not correctly calculated
7565 - BUG/MINOR: cache: Manage multiple headers in accept-encoding normalization
7566 - MINOR: cache: Add specific secondary key comparison mechanism
7567 - MINOR: http: Add helper functions to trim spaces and tabs
7568 - MEDIUM: cache: Manage a subset of encodings in accept-encoding normalizer
7569 - REGTESTS: cache: Simplify vary.vtc file
7570 - REGTESTS: cache: Add a specific test for the accept-encoding normalizer
7571 - MINOR: cache: Remove redundant test in http_action_req_cache_use
7572 - MINOR: cache: Replace the "process-vary" option's expected values
7573 - CI: GitHub Actions: enable daily Coverity scan
7574 - BUG/MEDIUM: cache: Fix hash collision in `accept-encoding` handling for `Vary`
7575 - MEDIUM: stick-tables: Add srvkey option to stick-table
7576 - REGTESTS: add test for stickiness using "srvkey addr"
7577 - BUILD: Makefile: disable -Warray-bounds until it's fixed in gcc 11
7578 - BUG/MINOR: sink: Return an allocation failure in __sink_new if strdup() fails
7579 - BUG/MINOR: lua: Fix memory leak error cases in hlua_config_prepend_path
7580 - MINOR: lua: Use consistent error message 'memory allocation failed'
7581 - CLEANUP: Compare the return value of `XXXcmp()` functions with zero
7582 - CLEANUP: Apply the coccinelle patch for `XXXcmp()` on include/
7583 - CLEANUP: Apply the coccinelle patch for `XXXcmp()` on contrib/
7584 - MINOR: qpack: Add static header table definitions for QPACK.
7585 - CLEANUP: qpack: Wrong comment about the draft for QPACK static header table.
7586 - CLEANUP: quic: Remove useless QUIC event trace definitions.
7587 - BUG/MINOR: quic: Possible CRYPTO frame building errors.
7588 - MINOR: quic: Pass quic_conn struct to frame parsers.
7589 - BUG/MINOR: quic: Wrong STREAM frames parsing.
7590 - MINOR: quic: Drop packets with STREAM frames with wrong direction.
7591 - CLEANUP: ssl: Remove useless loop in tlskeys_list_get_next()
7592 - CLEANUP: ssl: Remove useless local variable in tlskeys_list_get_next()
7593 - MINOR: ssl: make tlskeys_list_get_next() take a list element
7594 - Revert "BUILD: Makefile: disable -Warray-bounds until it's fixed in gcc 11"
7595 - BUG/MINOR: cfgparse: Fail if the strdup() for `rule->be.name` for `use_backend` fails
7596 - CLEANUP: mworker: remove duplicate pointer tests in cfg_parse_program()
7597 - CLEANUP: Reduce scope of `header_name` in http_action_store_cache()
7598 - CLEANUP: Reduce scope of `hdr_age` in http_action_store_cache()
7599 - CLEANUP: spoe: fix typo on `var_check_arg` comment
7600 - BUG/MINOR: tcpcheck: Report a L7OK if the last evaluated rule is a send rule
7601 - CI: github actions: build several popular "contrib" tools
7602 - DOC: Improve the message printed when running `make` w/o `TARGET`
7603 - BUG/MEDIUM: server: srv_set_addr_desc() crashes when a server has no address
7604 - REGTESTS: add unresolvable servers to srvkey-addr
7605 - BUG/MINOR: stats: Make stat_l variable used to dump a stat line thread local
7606 - BUG/MINOR: quic: NULL pointer dereferences when building post handshake frames.
7607 - SCRIPTS: improve announce-release to support different tag and versions
7608 - SCRIPTS: make announce release support preparing announces before tag exists
7609 - CLEANUP: assorted typo fixes in the code and comments
7610 - BUG/MINOR: srv: do not init address if backend is disabled
7611 - BUG/MINOR: srv: do not cleanup idle conns if pool max is null
7612 - CLEANUP: assorted typo fixes in the code and comments
7613 - CLEANUP: few extra typo and fixes over last one ("ot" -> "to")
7614
Willy Tarreau4d711762020-12-21 11:54:56 +010076152020/12/21 : 2.4-dev4
7616 - BUG/MEDIUM: lb-leastconn: Reposition a server using the right eweight
7617 - BUG/MEDIUM: mux-h1: Fix a deadlock when a 408 error is pending for a client
7618 - BUG/MEDIUM: ssl/crt-list: bad behavior with "commit ssl cert"
7619 - BUG/MAJOR: cache: Crash because of disabled entry not removed from the tree
7620 - BUILD: SSL: fine guard for SSL_CTX_add_server_custom_ext call
7621 - MEDIUM: cache: Add a secondary entry counter and insertion limitation
7622 - MEDIUM: cache: Avoid going over duplicates lists too often
7623 - MINOR: cache: Add a max-secondary-entries cache option
7624 - CI: cirrus: drop CentOS 6 builds
7625 - BUILD: Makefile: have "make clean" destroy .o/.a/.s in contrib subdirs as well
7626 - MINOR: vars: replace static functions with global ones
7627 - MINOR: opentracing: add ARGC_OT enum
7628 - CONTRIB: opentracing: add the OpenTracing filter
7629 - DOC: opentracing: add the OpenTracing filter section
7630 - REGTESTS: make use of HAPROXY_ARGS and pass -dM by default
7631 - BUG/MINOR: http: Establish a tunnel for all 2xx responses to a CONNECT
7632 - BUG/MINOR: mux-h1: Don't set CS_FL_EOI too early for protocol upgrade requests
7633 - BUG/MEDIUM: http-ana: Never for sending data in TUNNEL mode
7634 - CLEANUP: mux-h2: Rename h2s_frt_make_resp_data() to be generic
7635 - CLEANUP: mux-h2: Rename h2c_frt_handle_data() to be generic
7636 - BUG/MEDIUM: mux-h1: Handle h1_process() failures on a pipelined request
7637 - CLEANUP: debug: mark the RNG's seed as unsigned
7638 - CONTRIB: halog: fix build issue caused by %L printf format
7639 - CONTRIB: halog: mark the has_zero* functions unused
7640 - CONTRIB: halog: fix signed/unsigned build warnings on counts and timestamps
7641 - CONTRIB: debug: address "poll" utility build on non-linux platforms
7642 - BUILD: plock: remove dead code that causes a warning in gcc 11
7643 - BUILD: ssl: fine guard for SSL_CTX_get0_privatekey call
7644 - BUG/MINOR: dns: SRV records ignores duplicated AR records
7645 - DOC: fix "smp_size" vs "sample_size" in "log" directive arguments
7646 - CLEANUP: assorted typo fixes in the code and comments
7647 - DOC: assorted typo fixes in the documentation
7648 - CI: codespell: whitelist "te" and "nd" words
7649
Willy Tarreaua786c412020-12-11 17:22:51 +010076502020/12/11 : 2.4-dev3
7651 - MINOR: log: Logging HTTP path only with %HPO
7652 - BUG/MINOR: mux-h2/stats: make stream/connection proto errors more accurate
7653 - MINOR: traces: add a new level "error" below the "user" level
7654 - MINOR: mux-h2/trace: add traces at level ERROR for protocol errors
7655 - BUG/MINOR: mux-h2/stats: not all GOAWAY frames are errors
7656 - BUG/MINOR: lua: missing "\n" in error message
7657 - BUG/MINOR: lua: lua-load doesn't check its parameters
7658 - BUG/MINOR: lua: Post init register function are not executed beyond the first one
7659 - BUG/MINOR: lua: Some lua init operation are processed unsafe
7660 - MINOR: actions: Export actions lookup functions
7661 - MINOR: actions: add a function returning a service pointer from its name
7662 - MINOR: cli: add a function to look up a CLI service description
7663 - BUG/MINOR: lua: warn when registering action, conv, sf, cli or applet multiple times
7664 - MINOR: cache: Improve accept_encoding_normalizer
7665 - MINOR: cache: Add entry to the tree as soon as possible
7666 - BUG/MINOR: trace: Wrong displayed trace level
7667 - BUG/MAJOR: ring: tcp forward on ring can break the reader counter.
7668 - MINOR: lua: simplify hlua_alloc() to only rely on realloc()
7669 - MEDIUM: lua-thread: use atomics for memory accounting
7670 - MINOR: lua-thread: remove struct hlua from function hlua_prepend_path()
7671 - MEDIUM: lua-thread: make hlua_post_init() no longer use the runtime execution function
7672 - MINOR: lua-thread: hlua_ctx_renew() is never called with main gL lua state
7673 - MINOR: lua-thread: Use NULL context for main lua state
7674 - MINOR: lua-thread: Stop usage of struct hlua for the global lua state
7675 - MINOR: lua-thread: Replace embedded struct hlua_function by a pointer
7676 - MINOR: lua-thread: Split hlua_init() function in two parts
7677 - MINOR: lua-thread: make hlua_ctx_init() get L from its caller
7678 - MINOR: lua-thread: Split hlua_load function in two parts
7679 - MINOR: lua-thread: Split hlua_post_init() function in two parts
7680 - MINOR: lua-thread: Add the "thread" core variable
7681 - MEDIUM: lua-thread: No longer use locked context in initialization parts
7682 - MEDIUM: lua-thread: Apply lock only if the parent state is the main thread
7683 - MINOR: lua-thread: Replace global gL var with an array of states
7684 - MINOR: lua-thread: Replace "struct hlua_function" allocation by dedicated function
7685 - MINOR: lua-thread: Replace state_from by state_id
7686 - MINOR: lua-thread: Store each function reference and init reference in array
7687 - MEDIUM: lua-thread: Add the lua-load-per-thread directive
7688 - MINOR: lua-thread: Add verbosity in errors
7689 - REGTESTS: add a test for the threaded Lua code
7690 - BUILD/MINOR: haproxy DragonFlyBSD affinity build update.
7691 - DOC/MINOR: Fix formatting in Management Guide
7692 - MINOR: cache: Do not store stale entry
7693 - MINOR: cache: Add extra "cache-control" value checks
7694 - MEDIUM: cache: Remove cache entry in case of POST on the same resource
7695 - MINOR: cache: Consider invalid Age values as stale
7696 - BUG/MEDIUM: lua-thread: some parts must be initialized once
7697 - BUG/MINOR: lua-thread: close all states on deinit
7698 - BUG/MINOR: listener: use sockaddr_in6 for IPv6
7699 - BUG/MINOR: mux-h1: Handle keep-alive timeout for idle frontend connections
7700 - MINOR: session: Add the idle duration field into the session
7701 - MINOR: mux-h1: Update session idle duration when data are received
7702 - MINOR: mux-h1: Reset session dates and durations info when the CS is detached
7703 - MINOR: logs: Use session idle duration when no stream is provided
7704 - MINOR: stream: Always get idle duration from the session
7705 - MINOR: stream: Don't retrieve anymore timing info from the mux csinfo
7706 - MINOR: mux-h1: Don't provide anymore timing info using cs_info structure
7707 - MINOR: muxes: Remove get_cs_info callback function now useless
7708 - MINOR: stream: Pass an optional input buffer when a stream is created
7709 - MINOR: mux-h1: Add a flag to disable reads to wait opposite side
7710 - MEDIUM: mux-h1: Use a h1c flag to block reads when splicing is in-progress
7711 - MINOR: mux-h1: Introduce H1C_F_IS_BACK flag on the H1 connection
7712 - MINOR: mux-h1: Separate parsing and formatting errors at H1 stream level
7713 - MINOR: mux-h1: Split front/back h1 stream creation in 2 functions
7714 - MINOR: mux-h1: Add a rxbuf into the H1 stream
7715 - MINOR: mux-h1: Don't set CS flags in internal parsing functions
7716 - MINOR: mux-h1: Add embryonic and attached states on the H1 connection
7717 - MINOR: mux-h1: rework the h1_timeout_task() function
7718 - MINOR: mux-h1: Reset more H1C flags when a H1 stream is destroyed
7719 - MINOR: mux-h1: Disable reads if an error was reported on the H1 stream
7720 - MINOR: mux-h1: Rework how shutdowns are handled
7721 - MINOR: mux-h1: Rework h1_refresh_timeout to be easier to read
7722 - MINOR: mux-h1: Process next request for IDLE connection only
7723 - MINOR: mux-h1: Add a idle expiration date on the H1 connection
7724 - MINOR: stick-tables: Add functions to update some values of a tracked counter
7725 - MINOR: session: Add functions to increase http values of tracked counters
7726 - MINOR: mux: Add a ctl parameter to get the exit status of the multiplexers
7727 - MINOR: logs: Get the multiplexer exist status when no stream is provided
7728 - MINOR: mux-h1: Add functions to send HTTP errors from the mux
7729 - MAJOR: mux-h1: Create the client stream as later as possible
7730 - DOC: config: Add notes about errors emitted by H1 mux
7731 - CLEANUP: mux-h1: Rename H1C_F_CS_* flags and reorder H1C flags
7732 - MINOR: http-ana: Remove useless update of t_idle duration of the stream
7733 - CLEANUP: htx: Remove HTX_FL_UPGRADE unsued flag
7734 - MEDIUM: http-ana: Don't process partial or empty request anymore
7735 - CLEANUP: http-ana: Remove TX_WAIT_NEXT_RQ unsued flag
7736 - CLEANUP: connection: Remove CS_FL_READ_PARTIAL flag
7737 - REGTESTS: Fix proxy_protocol_tlv_validation
7738 - MINOR: http-ana: Properly set message flags from the start-line flags
7739 - MINOR: h1-htx/http-ana: Set BODYLESS flag on message in TUNNEL state
7740 - MINOR: protocol: add a ->set_port() helper to address families
7741 - MINOR: listener: automatically set the port when creating listeners
7742 - MINOR: listener: now use a generic add_listener() function
7743 - MEDIUM: ssl: fatal error with bundle + openssl < 1.1.1
7744 - BUG/MEDIUM: stream: Xfer the input buffer to a fully created stream
7745 - BUG/MINOR: stream: Don't use input buffer after the ownership xfer
7746 - MINOR: protocol: remove the redundant ->sock_domain field
7747 - MINOR: protocol: export protocol definitions
7748 - CLEANUP: protocol: group protocol struct members by usage
7749 - MINOR: protocol: add a set of ctrl_init/ctrl_close methods for setup/teardown
7750 - MINOR: connection: use the control layer's init/close
7751 - MINOR: udp: export udp_suspend_receiver() and udp_resume_receiver()
7752 - BUG/MAJOR: spoa/python: Fixing return None
7753 - DOC: spoa/python: Fixing typo in IP related error messages
7754 - DOC: spoa/python: Rephrasing memory related error messages
7755 - DOC: spoa/python: Fixing typos in comments
7756 - BUG/MINOR: spoa/python: Cleanup references for failed Module Addobject operations
7757 - BUG/MINOR: spoa/python: Cleanup ipaddress objects if initialization fails
7758 - BUG/MEDIUM: spoa/python: Fixing PyObject_Call positional arguments
7759 - BUG/MEDIUM: spoa/python: Fixing references to None
7760 - DOC: email change of the DeviceAtlas maintainer
7761 - MINOR: cache: Dump secondary entries in "show cache"
7762 - CLEANUP: connection: use fd_stop_both() instead of conn_stop_polling()
7763 - MINOR: stream-int: don't touch polling anymore on shutdown
7764 - MINOR: connection: implement cs_drain_and_close()
7765 - MINOR: mux-pt: take care of CS_SHR_DRAIN in shutr()
7766 - MINOR: checks: use cs_drain_and_close() instead of draining the connection
7767 - MINOR: checks: don't call conn_cond_update_polling() anymore
7768 - CLEANUP: connection: open-code conn_cond_update_polling() and update the comment
7769 - CLEANUP: connection: remove the unused conn_{stop,cond_update}_polling()
7770 - BUG/MINOR: http-check: Use right condition to consider HTX message as full
7771 - BUG/MINOR: tcpcheck: Don't rearm the check timeout on each read
7772 - MINOR: tcpcheck: Only wait for more payload data on HTTP expect rules
7773 - BUG/MINOR: tools: make parse_time_err() more strict on the timer validity
7774 - BUG/MINOR: tools: Reject size format not starting by a digit
7775 - MINOR: action: define enum for timeout type of the set-timeout rule
7776 - MINOR: stream: prepare the hot refresh of timeouts
7777 - MEDIUM: stream: support a dynamic server timeout
7778 - MEDIUM: stream: support a dynamic tunnel timeout
7779 - MEDIUM: http_act: define set-timeout server/tunnel action
7780 - MINOR: frontend: add client timeout sample fetch
7781 - MINOR: backend: add timeout sample fetches
7782 - MINOR: stream: add sample fetches
7783 - MINOR: stream: add timeout sample fetches
7784 - REGTESTS: add regtest for http-request set-timeout
7785 - CLEANUP: remove the unused fd_stop_send() in conn_xprt_shutw{,_hard}()
7786 - CLEANUP: connection: remove the unneeded fd_stop_{recv,send} on read0/shutw
7787 - MINOR: connection: remove sock-specific code from conn_sock_send()
7788 - REORG: connection: move the socket iocb (conn_fd_handler) to sock.c
7789 - MINOR: protocol: add a ->drain() function at the connection control layer
7790 - MINOR: connection: make conn_sock_drain() use the control layer's ->drain()
7791 - MINOR: protocol: add a pair of check_events/ignore_events functions at the ctrl layer
7792 - MEDIUM: connection: make use of the control layer check_events/ignore_events
7793
Willy Tarreauc94431b2020-12-01 08:15:26 +010077942020/12/01 : 2.4-dev2
7795 - BUILD: Make DEBUG part of .build_opts
7796 - BUILD: Show the value of DEBUG= in haproxy -vv
7797 - CI: Set DEBUG=-DDEBUG_STRICT=1 in GitHub Actions
7798 - MINOR: stream: Add level 7 retries on http error 401, 403
7799 - CLEANUP: remove unused function "ssl_sock_is_ckch_valid"
7800 - BUILD: SSL: add BoringSSL guarding to "RAND_keep_random_devices_open"
7801 - BUILD: SSL: do not "update" BoringSSL version equivalent anymore
7802 - BUG/MEDIUM: http_act: Restore init of log-format list
7803 - DOC: better describes how to configure a fallback crt
7804 - BUG/MAJOR: filters: Always keep all offsets up to date during data filtering
7805 - MINOR: cache: Prepare helper functions for Vary support
7806 - MEDIUM: cache: Add the Vary header support
7807 - MINOR: cache: Add a process-vary option that can enable/disable Vary processing
7808 - BUG/CRITICAL: cache: Fix trivial crash by sending accept-encoding header
7809 - BUG/MAJOR: peers: fix partial message decoding
7810 - DOC: cache: Add new caching limitation information
7811 - DOC: cache: Add information about Vary support
7812 - DOC: better document the config file format and escaping/quoting rules
7813 - DOC: Clarify %HP description in log-format
7814 - CI: github actions: update LibreSSL to 3.3.0
7815 - CI: github actions: enable 51degrees feature
7816 - MINOR: fd/threads: silence a build warning with threads disabled
7817 - BUG/MINOR: tcpcheck: Don't forget to reset tcp-check flags on new kind of check
7818 - MINOR: tcpcheck: Don't handle anymore in-progress send rules in tcpcheck_main
7819 - BUG/MAJOR: tcpcheck: Allocate input and output buffers from the buffer pool
7820 - MINOR: tcpcheck: Don't handle anymore in-progress connect rules in tcpcheck_main
7821 - MINOR: config: Deprecate and ignore tune.chksize global option
7822 - MINOR: config: Add a warning if tune.chksize is used
7823 - REORG: tcpcheck: Move check option parsing functions based on tcp-check
7824 - MINOR: check: Always increment check health counter on CONPASS
7825 - MINOR: tcpcheck: Add support of L7OKC on expect rules error-status argument
7826 - DOC: config: Make disable-on-404 option clearer on transition conditions
7827 - DOC: config: Move req.hdrs and req.hdrs_bin in L7 samples fetches section
7828 - BUG/MINOR: http-fetch: Fix smp_fetch_body() when called from a health-check
7829 - MINOR: plock: use an ARMv8 instruction barrier for the pause instruction
7830 - MINOR: debug: add "debug dev sched" to stress the scheduler.
7831 - MINOR: debug: add a trivial PRNG for scheduler stress-tests
7832 - BUG/MEDIUM: lists: Lock the element while we check if it is in a list.
7833 - MINOR: task: remove tasklet_insert_into_tasklet_list()
7834 - MINOR: task: perform atomic counter increments only once per wakeup
7835 - MINOR: task: remove __tasklet_remove_from_tasklet_list()
7836 - BUG/MEDIUM: task: close a possible data race condition on a tasklet's list link
7837 - BUG/MEDIUM: local log format regression.
7838
Willy Tarreau1a38ffc2020-11-21 16:00:40 +010078392020/11/21 : 2.4-dev1
7840 - MINOR: ist: Add istend() function to return a pointer to the end of the string
7841 - MINOR: sample: Add converters to parse FIX messages
7842 - REGTEST: converter: Add a regtest for fix converters
7843 - MINOR: sample: Add converts to parses MQTT messages
7844 - REGTEST: converter: Add a regtest for MQTT converters
7845 - MINOR: compat: automatically include malloc.h on glibc
7846 - MEDIUM: pools: call malloc_trim() from pool_gc()
7847 - MEDIUM: pattern: call malloc_trim() on pat_ref_reload()
7848 - MINOR: pattern: move the update revision to the pat_ref, not the expression
7849 - CLEANUP: pattern: delete the back refs at once during pat_ref_reload()
7850 - MINOR: pattern: new sflag PAT_SF_REGFREE indicates regex_free() is needed
7851 - MINOR: pattern: make the delete and prune functions more generic
7852 - MEDIUM: pattern: link all final elements from the reference
7853 - MEDIUM: pattern: change the pat_del_* functions to delete from the references
7854 - MINOR: pattern: remerge the list and tree deletion functions
7855 - MINOR: pattern: perform a single call to pat_delete_gen() under the expression
7856 - CLEANUP: acl: don't reference the generic pattern deletion function anymore
7857 - CLEANUP: pattern: remove pat_delete_fcts[] and pattern_head->delete()
7858 - MINOR: pattern: introduce pat_ref_delete_by_ptr() to delete a valid reference
7859 - MINOR: pattern: store a generation number in the reference patterns
7860 - MEDIUM: pattern: only match patterns that match the current generation
7861 - MINOR: pattern: add pat_ref_commit() to commit a previously inserted element
7862 - MINOR: pattern: implement pat_ref_load() to load a pattern at a given generation
7863 - MINOR: pattern: add pat_ref_purge_older() to purge old entries
7864 - MEDIUM: pattern: make pat_ref_prune() rely on pat_ref_purge_older()
7865 - MINOR: pattern: during reload, delete elements frem the ref, not the expression
7866 - MINOR: pattern: prepare removal of a pattern from the list head
7867 - MEDIUM: pattern: turn the pattern chaining to single-linked list
7868 - CLEANUP: cfgparse: remove duplicate registration for transparent build options
7869 - BUG/MINOR: ssl: don't report 1024 bits DH param load error when it's higher
7870 - MINOR: http-htx: Add understandable errors for the errorfiles parsing
7871 - MINOR: ssl: instantiate stats module
7872 - MINOR: ssl: count client hello for stats
7873 - MINOR: ssl: add counters for ssl sessions
7874 - DOC: config: Fix a typo on ssl_c_chain_der
7875 - MINOR: server: remove idle lock in srv_cleanup_connections
7876 - BUILD: ssl: silence build warning on uninitialised counters
7877 - BUILD: http-htx: fix build warning regarding long type in printf
7878 - REGTEST: ssl: test wildcard and multi-type + exclusions
7879 - BUG/MEDIUM: ssl/crt-list: correctly insert crt-list line if crt already loaded
7880 - CI: Expand use of GitHub Actions for CI
7881 - REGTEST: ssl: mark reg-tests/ssl/ssl_crt-list_filters.vtc as broken
7882 - BUG/MINOR: pattern: a sample marked as const could be written
7883 - BUG/MINOR: lua: set buffer size during map lookups
7884 - MEDIUM: cache: Change caching conditions
7885 - BUG/MINOR: stats: free dynamically stats fields/lines on shutdown
7886 - BUG/MEDIUM: stats: prevent crash if counters not alloc with dummy one
7887 - MINOR: peers: Add traces to peer_treat_updatemsg().
7888 - BUG/MINOR: peers: Do not ignore a protocol error for dictionary entries.
7889 - BUG/MINOR: peers: Missing TX cache entries reset.
7890 - BUG/MEDIUM: peers: fix decoding of multi-byte length in stick-table messages
7891 - BUG/MINOR: http-fetch: Extract cookie value even when no cookie name
7892 - BUG/MINOR: http-fetch: Fix calls w/o parentheses of the cookie sample fetches
7893 - BUG/MEDIUM: check: reuse srv proto only if using same mode
7894 - MINOR: check: report error on incompatible proto
7895 - MINOR: check: report error on incompatible connect proto
7896 - BUG/MINOR: http-htx: Handle warnings when parsing http-error and http-errors
7897 - BUG/MAJOR: spoe: Be sure to remove all references on a released spoe applet
7898 - MINOR: spoe: Don't close connection in sync mode on processing timeout
7899 - BUG/MINOR: tcpcheck: Don't warn on unused rules if check option is after
7900 - MINOR: init: Fix the prototype for per-thread free callbacks
7901 - MINOR: config/mux-h2: Return ERR_ flags from init_h2() instead of a status
7902 - CLEANUP: config: Return ERR_NONE from config callbacks instead of 0
7903 - MINOR: cfgparse: tighten the scope of newnameserver variable, free it on error.
7904 - REGTEST: make ssl_client_samples and ssl_server_samples require to 2.2
7905 - REGTESTS: Add sample_fetches/cook.vtc
7906 - BUG/MEDIUM: filters: Forward all filtered data at the end of http filtering
7907 - BUG/MINOR: http-ana: Don't wait for the body of CONNECT requests
7908 - CLEANUP: flt-trace: Remove unused random-parsing option
7909 - MINOR: flt-trace: Add an option to inhibits trace messages
7910 - MINOR: flt-trace: Use a bitfield for the trace options
7911 - REGTESTS: Add a script to test the random forwarding with several filters
7912 - REGTESTS: mark the abns test as broken again
7913 - REGTESTS: converter: add url_dec test
7914 - CI: Stop hijacking the hosts file
7915 - CI: Make the h2spec workflow more consistent with the VTest workflow
7916 - CI: travis-ci: remove amd64, osx builds
7917 - CI: travis-ci: arm64 are not allowed to fail anymore
7918 - DOC: add missing 3.10 in the summary
7919 - MINOR: ssl: remove client hello counters
7920 - MEDIUM: stats: add counters for failed handshake
7921 - MINOR: ssl: create common ssl_ctx init
7922 - MEDIUM: cli/ssl: configure ssl on server at runtime
7923 - REGTEST: server/cli_set_ssl.vtc requires OpenSSL
7924 - DOC: coding-style: update a few rules about pointers
7925 - BUG/MINOR: ssl: segv on startup when AKID but no keyid
7926 - BUILD: ssl: use SSL_MODE_ASYNC macro instead of OPENSSL_VERSION
7927 - BUG/MEDIUM: http-ana: Don't eval http-after-response ruleset on empty messages
7928 - BUG/MEDIUM: ssl/crt-list: bundle support broken in crt-list
7929 - BUG/MEDIUM: ssl: error when no certificate are found
7930 - BUG/MINOR: ssl/crt-list: load bundle in crt-list only if activated
7931 - BUG/MEDIUM: ssl/crt-list: fix error when no file found
7932 - CI: Github Actions: enable prometheus exporter
7933 - CI: Github Actions: remove LibreSSL-3.0.2 builds
7934 - CI: Github Actions: enable BoringSSL builds
7935 - CI: travis-ci: remove builds migrated to GH actions
7936 - BUILD: makefile: enable crypt(3) for OpenBSD
7937 - CI: Github Action: run "apt-get update" before packages restore
7938 - BUILD: SSL: guard TLS13 ciphersuites with HAVE_SSL_CTX_SET_CIPHERSUITES
7939 - CI: Pass the github.event_name to matrix.py
7940 - CI: Clean up Windows CI
7941 - DOC: clarify how to create a fallback crt
7942 - CLEANUP: connection: do not use conn->owner when the session is known
7943 - BUG/MAJOR: connection: reset conn->owner when detaching from session list
7944 - REGTESTS: mark proxy_protocol_random_fail as broken
7945 - BUG/MINOR: http_htx: Fix searching headers by substring
7946 - MINOR: http_act: Add -m flag for del-header name matching method
7947
Willy Tarreau1db55792020-11-05 17:20:35 +010079482020/11/05 : 2.4-dev0
7949 - MINOR: version: it's development again.
7950 - DOC: mention in INSTALL that it's development again
7951
Willy Tarreau1c0a7222020-11-05 17:04:53 +010079522020/11/05 : 2.3.0
7953 - CLEANUP: pattern: remove unused entry "tree" in pattern.val
7954 - BUILD: ssl: use SSL_CTRL_GET_RAW_CIPHERLIST instead of OpenSSL versions
7955 - BUG/MEDIUM: filters: Don't try to init filters for disabled proxies
7956 - BUG/MINOR: proxy/server: Skip per-proxy/server post-check for disabled proxies
7957 - BUG/MINOR: checks: Report a socket error before any connection attempt
7958 - BUG/MINOR: server: Set server without addr but with dns in RMAINT on startup
7959 - MINOR: server: Copy configuration file and line for server templates
7960 - BUG/MEDIUM: mux-pt: Release the tasklet during an HTTP upgrade
7961 - BUILD: ssl: use HAVE_OPENSSL_KEYLOG instead of OpenSSL versions
7962 - MINOR: debug: don't count free(NULL) in memstats
7963 - BUG/MINOR: filters: Skip disabled proxies during startup only
7964 - MINOR: mux_h2: capitalize frame type in stats
7965 - MINOR: mux_h2: add stat for total count of connections/streams
7966 - MINOR: stats: do not display empty stat module title on html
7967 - BUG/MEDIUM: stick-table: limit the time spent purging old entries
7968 - BUG/MEDIUM: listener: only enable a listening listener if needed
7969 - BUG/MEDIUM: listener: never suspend inherited sockets
7970 - BUG/MEDIUM: listener: make the master also keep workers' inherited FDs
7971 - MINOR: fd: add fd_want_recv_safe()
7972 - MEDIUM: listeners: make use of fd_want_recv_safe() to enable early receivers
7973 - REGTESTS: mark abns_socket as working now
7974 - CLEANUP: mux-h2: Remove the h1 parser state from the h2 stream
7975 - MINOR: sock: add a check against cross worker<->master socket activities
7976 - CI: github actions: limit OpenSSL no-deprecated builds to "default,bug,devel" reg-tests
7977 - BUG/MEDIUM: server: make it possible to kill last idle connections
7978 - MINOR: mworker/cli: the master CLI use its own applet
7979 - MINOR: ssl: define SSL_CTX_set1_curves_list to itself on BoringSSL
7980 - BUILD: ssl: use feature macros for detecting ec curves manipulation support
7981 - DOC: Add dns as an available domain to show stat
7982 - BUILD: makefile: usual reorder of objects for faster builds
7983 - DOC: update INSTALL to mention that TCC is supported
7984 - DOC: mention in INSTALL that haproxy 2.3 is a stable version
7985 - MINOR: version: mention that it's stable now
7986
Willy Tarreaubd703e52020-10-31 13:17:06 +010079872020/10/31 : 2.3-dev9
7988 - CLEANUP: http_ana: remove unused assignation of `att_beg`
7989 - BUG/MEDIUM: ssl: OCSP must work with BoringSSL
7990 - BUG/MINOR: log: fix memory leak on logsrv parse error
7991 - BUG/MINOR: log: fix risk of null deref on error path
7992 - BUILD: ssl: more elegant OpenSSL early data support check
7993 - CI: github actions: update h2spec to 2.6.0
7994 - BUG/MINOR: cache: Check the return value of http_replace_res_status
7995 - MINOR: cache: Store the "Last-Modified" date in the cache_entry
7996 - MINOR: cache: Process the If-Modified-Since header in conditional requests
7997 - MINOR: cache: Create res.cache_hit and res.cache_name sample fetches
7998 - MINOR: mux-h2: register a stats module
7999 - MINOR: mux-h2: add counters instance to h2c
8000 - MINOR: mux-h2: add stats for received frame types
8001 - MINOR: mux-h2: report detected error on stats
8002 - MINOR: mux-h2: count open connections/streams on stats
8003 - BUG/MINOR: server: fix srv downtime calcul on starting
8004 - BUG/MINOR: server: fix down_time report for stats
8005 - BUG/MINOR: lua: initialize sample before using it
8006 - MINOR: cache: Add Expires header value parsing
8007 - MINOR: ist: Add a case insensitive istmatch function
8008 - BUG/MINOR: cache: Manage multiple values in cache-control header value
8009 - BUG/MINOR: cache: Inverted variables in http_calc_maxage function
8010 - MINOR: pattern: make pat_ref_append() return the newly added element
8011 - MINOR: pattern: make pat_ref_add() rely on pat_ref_append()
8012 - MINOR: pattern: export pat_ref_push()
8013 - CLEANUP: pattern: use calloc() rather than malloc for structures
8014 - CLEANUP: pattern: fix spelling/grammatical/copy-paste in comments
8015
Willy Tarreaufb1b9e32020-10-24 13:14:31 +020080162020/10/24 : 2.3-dev8
8017 - MINOR: backend: replace the lbprm lock with an rwlock
8018 - MINOR: lb/map: use seek lock and read locks where appropriate
8019 - MINOR: lb/leastconn: only take a read lock in fwlc_get_next_server()
8020 - MINOR: lb/first: use a read lock in fas_get_next_server()
8021 - MINOR: lb/chash: use a read lock in chash_get_server_hash()
8022 - BUG/MINOR: disable dynamic OCSP load with BoringSSL
8023 - BUILD: ssl: make BoringSSL use its own version numbers
8024 - CLEANUP: threads: don't register an initcall when not debugging
8025 - MINOR: threads: change lock_t to an unsigned int
8026 - CLEANUP: tree-wide: reorder a few structures to plug some holes around locks
8027 - CLEANUP: task: remove the unused and mishandled global_rqueue_size
8028 - BUG/MEDIUM: connection: Never cleanup server lists when freeing private conns
8029 - MEDIUM: config: report that "nbproc" is deprecated
8030 - BUG/MINOR: listener: close before free in `listener_accept`
8031 - MINOR: ssl: 'ssl-load-extra-del-ext' removes the certificate extension
8032 - BUG/MINOR: queue: properly report redistributed connections
8033 - CONTRIB: tcploop: remove unused local variables in tcp_pause()
8034 - BUILD: makefile: add entries to build common debugging tools
8035 - BUG/MEDIUM: server: support changing the slowstart value from state-file
8036 - MINOR: http: Add `enum etag_type http_get_etag_type(const struct ist)`
8037 - MINOR: http: Add etag comparison function
8038 - MEDIUM: cache: Store the ETag information in the cache_entry
8039 - MEDIUM: cache: Add support for 'If-None-Match' request header
8040 - REGTEST: cache: Add if-none-match test case
8041 - CLEANUP: compression: Make use of http_get_etag_type()
8042 - BUG/MINOR: http-ana: Don't send payload for internal responses to HEAD requests
8043 - BUG/MAJOR: mux-h2: Don't try to send data if we know it is no longer possible
8044 - MINOR: threads/debug: only report used lock stats
8045 - MINOR: threads/debug: only report lock stats for used operations
8046 - MINOR: proxy; replace the spinlock with an rwlock
8047 - MINOR: server: read-lock the cookie during srv_set_dyncookie()
8048 - MINOR: proxy/cli: only take a read lock in "show errors"
8049 - OPTIM: queue: don't call pendconn_unlink() when the pendconn is not queued
8050 - MINOR: queue: split __pendconn_unlink() in per-srv and per-prx
8051 - MINOR: queue: reduce the locked area in pendconn_add()
8052 - OPTIM: queue: make the nbpend counters atomic
8053 - OPTIM: queue: decrement the nbpend and totpend counters outside of the lock
8054 - MINOR: leastconn: take the queue length into account when queuing servers
8055 - MEDIUM: fwlc: re-enable per-server queuing up to maxqueue
8056 - Revert "OPTIM: queue: don't call pendconn_unlink() when the pendconn is not queued"
8057 - MINOR: stats: support the "up" output modifier for "show stat"
8058 - MINOR: stats: also support a "no-maint" show stat modifier
8059 - MINOR: stats: indicate the number of servers in a backend's status
8060 - MEDIUM: ssl: ssl-load-extra-del-ext work only with .crt
8061 - REGTEST: ssl: test "set ssl cert" with separate key / crt
8062 - DOC: management: apply the "show stat" modifiers to "show stat", not "show info"
8063 - MINOR: stats: report server's user-configured weight next to effective weight
8064 - CI: travis-ci: switch to Ubuntu 20.04
8065 - CONTRIB: release-estimator: Add release estimating tool
8066 - BUG/MEDIUM: queue: fix unsafe proxy pointer when counting nbpend
8067 - BUG/MINOR: extcheck: add missing checks on extchk_setenv()
8068
Willy Tarreau9d58c9b2020-10-17 10:31:50 +020080692020/10/17 : 2.3-dev7
8070 - CI: travis-ci: replace not defined SSL_LIB, SSL_INC for BotringSSL builds
8071 - BUG/MINOR: init: only keep rlim_fd_cur if max is unlimited
8072 - BUG/MINOR: mux-h2: do not stop outgoing connections on stopping
8073 - MINOR: fd: report an error message when failing initial allocations
8074 - MINOR: proto-tcp: make use of connect(AF_UNSPEC) for the pause
8075 - MINOR: sock: add sock_accept_conn() to test a listening socket
8076 - MINOR: protocol: make proto_tcp & proto_uxst report listening sockets
8077 - MINOR: sockpair: implement the .rx_listening function
8078 - CLEANUP: tcp: make use of sock_accept_conn() where relevant
8079 - CLEANUP: unix: make use of sock_accept_conn() where relevant
8080 - BUG/MINOR: listener: detect and handle shared sockets stopped in other processes
8081 - CONTRIB: tcploop: implement a disconnect operation 'D'
8082 - CLEANUP: protocol: intitialize all of the sockaddr when disconnecting
8083 - BUG/MEDIUM: deinit: check fdtab before fdtab[fd].owner
8084 - BUG/MINOR: connection: fix loop iter on connection takeover
8085 - BUG/MEDIUM: connection: fix srv idle count on conn takeover
8086 - MINOR: connection: improve list api usage
8087 - MINOR: mux/connection: add a new mux flag for HOL risk
8088 - MINOR: connection: don't check priv flag on free
8089 - MEDIUM: backend: add new conn to session if mux marked as HOL blocking
8090 - MEDIUM: backend: add reused conn to sess if mux marked as HOL blocking
8091 - MEDIUM: h2: remove conn from session on detach
8092 - MEDIUM: fcgi: remove conn from session on detach
8093 - DOC: Describe reuse safe for HOL handling
8094 - MEDIUM: proxy: remove obsolete "mode health"
8095 - MEDIUM: proxy: remove obsolete "monitor-net"
8096 - CLEANUP: protocol: remove the ->drain() function
8097 - CLEANUP: fd: finally get rid of fd_done_recv()
8098 - MINOR: connection: make sockaddr_alloc() take the address to be copied
8099 - MEDIUM: listener: allocate the connection before queuing a new connection
8100 - MINOR: session: simplify error path in session_accept_fd()
8101 - MINOR: connection: add new error codes for accept_conn()
8102 - MINOR: sock: rename sock_accept_conn() to sock_accepting_conn()
8103 - MINOR: protocol: add a new function accept_conn()
8104 - MINOR: sock: implement sock_accept_conn() to accept a connection
8105 - MINOR: sockpair: implement sockpair_accept_conn() to accept a connection
8106 - MEDIUM: listener: use protocol->accept_conn() to accept a connection
8107 - MEDIUM: listener: remove the second pass of fd manipulation at the end
8108 - MINOR: protocol: add a default I/O callback and put it into the receiver
8109 - MINOR: log: set the UDP receiver's I/O handler in the receiver
8110 - MINOR: protocol: register the receiver's I/O handler and not the protocol's
8111 - CLEANUP: protocol: remove the now unused <handler> field of proto_fam->bind()
8112 - DOC: improve the documentation for "option nolinger"
8113 - BUG/MEDIUM: proxy: properly stop backends
8114 - BUG/MEDIUM: task: bound the number of tasks picked from the wait queue at once
8115 - MINOR: threads: augment rwlock debugging stats to report seek lock stats
8116 - MINOR: threads: add the transitions to/from the seek state
8117 - MEDIUM: task: use an upgradable seek lock when scanning the wait queue
8118 - BUILD: listener: avoir a build warning when threads are disabled
8119 - BUG/MINOR: peers: Possible unexpected peer seesion reset after collisions.
8120 - MINOR: ssl: add volatile flags to ssl samples
8121 - MEDIUM: backend: reuse connection if using a static sni
8122 - BUG/MEDIUM: spoe: Unset variable instead of set it if no data provided
8123 - BUG/MEDIUM: mux-h1: Get the session from the H1S when capturing bad messages
8124 - BUG/MEDIUM: lb: Always lock the server when calling server_{take,drop}_conn
8125 - DOC: fix typo in MAX_SESS_STKCTR
8126
Willy Tarreaub7ffe192020-10-10 10:45:13 +020081272020/10/10 : 2.3-dev6
8128 - REGTESTS: use "command" instead of "which" for better POSIX compatibility
8129 - BUILD: makefile: Update feature flags for OpenBSD
8130 - DOC: agent-check: fix typo in "fail" word expected reply
8131 - DOC: crt: advise to move away from cert bundle
8132 - BUG/MINOR: ssl/crt-list: exit on warning out of crtlist_parse_line()
8133 - REGTEST: fix host part in balance-uri-path-only.vtc
8134 - REGTEST: make ssl_client_samples and ssl_server_samples requiret to 2.3
8135 - REGTEST: the iif converter test requires 2.3
8136 - REGTEST: make agent-check.vtc require 1.8
8137 - REGTEST: make abns_socket.vtc require 1.8
8138 - REGTEST: make map_regm_with_backref require 1.7
8139 - BUILD: makefile: Update feature flags for FreeBSD
8140 - OPTIM: backend/random: never queue on the server, always on the backend
8141 - OPTIM: backend: skip LB when we know the backend is full
8142 - BUILD: makefile: Fix building with closefrom() support enabled
8143 - BUILD: makefile: add an EXTRAVERSION variable to ease local naming
8144 - MINOR: tools: support for word expansion of environment in parse_line
8145 - BUILD: tools: fix minor build issue on isspace()
8146 - BUILD: makefile: Enable closefrom() support on Solaris
8147 - CLEANUP: ssl: Use structured format for error line report during crt-list parsing
8148 - MINOR: ssl: Add error if a crt-list might be truncated
8149 - MINOR: ssl: remove uneeded check in crtlist_parse_file
8150 - BUG/MINOR: Fix several leaks of 'log_tag' in init().
8151 - DOC: tcp-rules: Refresh details about L7 matching for tcp-request content rules
8152 - MEDIUM: tcp-rules: Warn if a track-sc* content rule doesn't depend on content
8153 - BUG/MINOR: tcpcheck: Set socks4 and send-proxy flags before the connect call
8154 - DOC: ssl: new "cert bundle" behavior
8155 - BUG/MEDIUM: queue: make pendconn_cond_unlink() really thread-safe
8156 - CLEANUP: ssl: "bundle" is not an OpenSSL wording
8157 - MINOR: counters: fix a typo in comment
8158 - BUG/MINOR: stats: fix validity of the json schema
8159 - REORG: stats: export some functions
8160 - MINOR: stats: add stats size as a parameter for csv/json dump
8161 - MINOR: stats: hide px/sv/li fields in applet struct
8162 - REORG: stats: extract proxy json dump
8163 - REORG: stats: extract proxies dump loop in a function
8164 - MINOR: hlua: Display debug messages on stderr only in debug mode
8165 - MINOR: stats: define the concept of domain for statistics
8166 - MINOR: stats: define additional flag px cap on domain
8167 - MEDIUM: stats: add delimiter for static proxy stats on csv
8168 - MEDIUM: stats: define an API to register stat modules
8169 - MEDIUM: stats: add abstract type to store counters
8170 - MEDIUM: stats: integrate static proxies stats in new stats
8171 - MINOR: stats: support clear counters for dynamic stats
8172 - MINOR: stats: display extra proxy stats on the html page
8173 - MINOR: stats: add config "stats show modules"
8174 - MINOR: dns/stats: integrate dns counters in stats
8175 - MINOR: stats: remove for loop declaration
8176 - DOC: ssl: fix typo about ocsp files
8177 - BUG/MINOR: peers: Inconsistency when dumping peer status codes.
8178 - DOC: update INSTALL with supported OpenBSD / FreeBSD versions
8179 - BUG/MINOR: proto_tcp: Report warning messages when listeners are bound
8180 - CLEANUP: cache: Fix leak of cconf->c.name during config check
8181 - CLEANUP: ssl: Release cached SSL sessions on deinit
8182 - BUG/MINOR: mux-h1: Be sure to only set CO_RFL_READ_ONCE for the first read
8183 - BUG/MINOR: mux-h1: Always set the session on frontend h1 stream
8184 - MINOR: mux-h1: Don't wakeup the H1C when output buffer become available
8185 - CLEANUP: sock-unix: Remove an unreachable goto clause
8186 - BUG/MINOR: proxy: inc req counter on new syslog messages.
8187 - BUG/MEDIUM: log: old processes with log foward section don't die on soft stop.
8188 - MINOR: stats: inc req counter on listeners.
8189 - MINOR: channel: new getword and getchar functions on channel.
8190 - MEDIUM: log: syslog TCP support on log forward section.
8191 - BUG/MINOR: proxy/log: frontend/backend and log forward names must differ
8192 - DOC: re-work log forward bind statement documentation.
8193 - DOC: fix a confusing typo on a regsub example
8194 - BUILD: Add a DragonFlyBSD target
8195 - BUG/MINOR: makefile: fix a tiny typo in the target list
8196 - BUILD: makefile: Update feature flags for NetBSD
8197 - CI: travis-ci: help Coverity to detect BUG_ON() as a real stop
8198 - DOC: Add missing stats fields in the management doc
8199 - BUG/MEDIUM: mux-fcgi: Don't handle pending read0 too early on streams
8200 - BUG/MEDIUM: mux-h2: Don't handle pending read0 too early on streams
8201 - DOC: Fix typos in configuration.txt
8202 - BUG/MINOR: http: Fix content-length of the default 500 error
8203 - BUG/MINOR: http-htx: Expect no body for 204/304 internal HTTP responses
8204 - REGTESTS: mark abns_socket as broken
8205 - MEDIUM: fd: always wake up one thread when enabling a foreing FD
8206 - MEDIUM: listeners: don't bounce listeners management between queues
8207 - MEDIUM: init: stop disabled proxies after initializing fdtab
8208 - MEDIUM: listeners: make unbind_listener() converge if needed
8209 - MEDIUM: deinit: close all receivers/listeners before scanning proxies
8210 - MEDIUM: listeners: remove the now unused ZOMBIE state
8211 - MINOR: listeners: do not uselessly try to close zombie listeners in soft_stop()
8212 - CLEANUP: proxy: remove the first_to_listen hack in zombify_proxy()
8213 - MINOR: listeners: introduce listener_set_state()
8214 - MINOR: proxy: maintain per-state counters of listeners
8215 - MEDIUM: proxy: remove the unused PR_STFULL state
8216 - MEDIUM: proxy: remove the PR_STERROR state
8217 - MEDIUM: proxy: remove state PR_STPAUSED
8218 - MINOR: startup: don't rely on PR_STNEW to check for listeners
8219 - CLEANUP: peers: don't use the PR_ST* states to mark enabled/disabled
8220 - MEDIUM: proxy: replace proxy->state with proxy->disabled
8221 - MEDIUM: proxy: remove start_proxies()
8222 - MEDIUM: proxy: merge zombify_proxy() with stop_proxy()
8223 - MINOR: listeners: check the current listener state in pause_listener()
8224 - MINOR: listeners: check the current listener earlier state in resume_listener()
8225 - MEDIUM: listener/proxy: make the listeners notify about proxy pause/resume
8226 - MINOR: protocol: introduce protocol_{pause,resume}_all()
8227 - MAJOR: signals: use protocol_pause_all() and protocol_resume_all()
8228 - CLEANUP: proxy: remove the now unused pause_proxies() and resume_proxies()
8229 - MEDIUM: proto_tcp: make the pause() more robust in multi-process
8230 - BUG/MEDIUM: listeners: correctly report pause() errors
8231 - MINOR: listeners: move fd_stop_recv() to the receiver's socket code
8232 - CLEANUP: protocol: remove the ->disable_all method
8233 - CLEANUP: listeners: remove unused disable_listener and disable_all_listeners
8234 - MINOR: listeners: export enable_listener()
8235 - MINOR: protocol: directly call enable_listener() from protocol_enable_all()
8236 - CLEANUP: protocol: remove the ->enable_all method
8237 - CLEANUP: listeners: remove the now unused enable_all_listeners()
8238 - MINOR: protocol: rename the ->listeners field to ->receivers
8239 - MINOR: protocol: replace ->pause(listener) with ->rx_suspend(receiver)
8240 - MINOR: protocol: implement an ->rx_resume() method
8241 - MINOR: listener: use the protocol's ->rx_resume() method when available
8242 - MINOR: sock: provide a set of generic enable/disable functions
8243 - MINOR: protocol: add a new pair of rx_enable/rx_disable methods
8244 - MINOR: protocol: add a new pair of enable/disable methods for listeners
8245 - MEDIUM: listeners: now use the listener's ->enable/disable
8246 - MINOR: listeners: split delete_listener() in two versions
8247 - MINOR: listeners: count unstoppable jobs on creation, not deletion
8248 - MINOR: listeners: add a new stop_listener() function
8249 - MEDIUM: proxy: make stop_proxy() now use stop_listener()
8250 - MEDIUM: proxy: add mode PR_MODE_PEERS to flag peers frontends
8251 - MEDIUM: proxy: centralize proxy status update and reporting
8252 - MINOR: protocol: add protocol_stop_now() to instant-stop listeners
8253 - MEDIUM: proxy: make soft_stop() stop most listeners using protocol_stop_now()
8254 - MEDIUM: udp: implement udp_suspend() and udp_resume()
8255 - MINOR: listener: add a few BUG_ON() statements to detect inconsistencies
8256 - MEDIUM: listeners: always close master vs worker listeners
8257 - BROKEN/MEDIUM: listeners: rework the unbind logic to make it idempotent
8258 - MEDIUM: listener: let do_unbind_listener() decide whether to close or not
8259 - CLEANUP: listeners: remove the do_close argument to unbind_listener()
8260 - MINOR: listeners: move the LI_O_MWORKER flag to the receiver
8261 - MEDIUM: receivers: add an rx_unbind() method in the protocols
8262 - MINOR: listeners: split do_unbind_listener() in two
8263 - MEDIUM: listeners: implement protocol level ->suspend/resume() calls
8264 - MEDIUM: config: mark "grace" as deprecated
8265 - MEDIUM: config: remove the deprecated and dangerous global "debug" directive
8266 - BUG/MINOR: proxy: respect the proper format string in sig_pause/sig_listen
8267 - MINOR: peers: heartbeat, collisions and handshake information for "show peers" command.
8268 - BUILD: makefile: Enable getaddrinfo() on OS/X
8269
Christopher Faulet05f01882020-09-25 18:40:47 +020082702020/09/25 : 2.3-dev5
8271 - DOC: Fix typo in iif() example
8272 - CLEANUP: Update .gitignore
8273 - BUILD: introduce possibility to define ABORT_NOW() conditionally
8274 - CI: travis-ci: help Coverity to recognize abort()
8275 - BUG/MINOR: Fix type passed of sizeof() for calloc()
8276 - CLEANUP: Do not use a fixed type for 'sizeof' in 'calloc'
8277 - CLEANUP: tree-wide: use VAR_ARRAY instead of [0] in various definitions
8278 - BUILD: connection: fix build on clang after the VAR_ARRAY cleanup
8279 - BUG/MINOR: ssl: verifyhost is case sensitive
8280 - BUILD: makefile: change default value of CC from gcc to cc
8281 - CI: travis-ci: split asan step out of running tests
8282 - BUG/MINOR: server: report correct error message for invalid port on "socks4"
8283 - BUG/MEDIUM: ssl: Don't call ssl_sock_io_cb() directly.
8284 - BUG/MINOR: ssl/crt-list: crt-list could end without a \n
8285 - BUG/MINOR: log-forward: fail on unknown keywords
8286 - MEDIUM: log-forward: use "dgram-bind" instead of "bind" for the listener
8287 - BUG/MEDIUM: log-forward: always quit on parsing errors
8288 - MEDIUM: ssl: remove bundle support in crt-list and directories
8289 - MEDIUM: ssl/cli: remove support for multi certificates bundle
8290 - MINOR: ssl: crtlist_dup_ssl_conf() duplicates a ssl_bind_conf
8291 - MINOR: ssl: crtlist_entry_dup() duplicates a crtlist_entry
8292 - MEDIUM: ssl: emulates the multi-cert bundles in the crtlist
8293 - MEDIUM: ssl: emulate multi-cert bundles loading in standard loading
8294 - CLEANUP: ssl: remove test on "multi" variable in ckch functions
8295 - CLEANUP: ssl/cli: remove test on 'multi' variable in CLI functions
8296 - CLEANUP: ssl: remove utility functions for bundle
8297 - DOC: explain bundle emulation in configuration.txt
8298 - BUILD: fix build with openssl < 1.0.2 since bundle removal
8299 - BUG/MINOR: log: gracefully handle the "udp@" address format for log servers
8300 - BUG/MINOR: dns: gracefully handle the "udp@" address format for nameservers
8301 - MINOR: listener: create a new struct "settings" in bind_conf
8302 - MINOR: listener: move bind_proc and bind_thread to struct settings
8303 - MINOR: listener: move the interface to the struct settings
8304 - MINOR: listener: move the network namespace to the struct settings
8305 - REORG: listener: create a new struct receiver
8306 - REORG: listener: move the listening address to a struct receiver
8307 - REORG: listener: move the receiving FD to struct receiver
8308 - REORG: listener: move the listener's proto to the receiver
8309 - MINOR: listener: make sock_find_compatible_fd() check the socket type
8310 - REORG: listener: move the receiver part to a new file
8311 - MINOR: receiver: link the receiver to its settings
8312 - MINOR: receiver: link the receiver to its owner
8313 - MINOR: listener: prefer to retrieve the socket's settings via the receiver
8314 - MINOR: receiver: add a receiver-specific flag to indicate the socket is bound
8315 - MINOR: listener: move the INHERITED flag down to the receiver
8316 - MINOR: receiver: move the FOREIGN and V6ONLY options from listener to settings
8317 - MINOR: sock: make sock_find_compatible_fd() only take a receiver
8318 - MINOR: protocol: rename the ->bind field to ->listen
8319 - MINOR: protocol: add a new ->bind() entry to bind the receiver
8320 - MEDIUM: sock_inet: implement sock_inet_bind_receiver()
8321 - MEDIUM: tcp: make use of sock_inet_bind_receiver()
8322 - MEDIUM: udp: make use of sock_inet_bind_receiver()
8323 - MEDIUM: sock_unix: implement sock_unix_bind_receiver()
8324 - MEDIUM: uxst: make use of sock_unix_bind_receiver()
8325 - MEDIUM: sockpair: implement sockpair_bind_receiver()
8326 - MEDIUM: proto_sockpair: make use of sockpair_bind_receiver()
8327 - MEDIUM: protocol: explicitly start the receiver before the listener
8328 - MEDIUM: protocol: do not call proto->bind() anymore from bind_listener()
8329 - MINOR: protocol: add a new proto_fam structure for protocol families
8330 - MINOR: protocol: retrieve the family-specific fields from the family
8331 - CLEANUP: protocol: remove family-specific fields from struct protocol
8332 - MINOR: protocol: add a real family for existing FDs
8333 - CLEANUP: tools: make str2sa_range() less awful for fd@ and sockpair@
8334 - MINOR: tools: make str2sa_range() take more options than just resolve
8335 - MINOR: tools: add several PA_O_PORT_* flags in str2sa_range() callers
8336 - MEDIUM: tools: make str2sa_range() validate callers' port specifications
8337 - MEDIUM: config: remove all checks for missing/invalid ports/ranges
8338 - MINOR: tools: add several PA_O_* flags in str2sa_range() callers
8339 - MINOR: listener: remove the inherited arg to create_listener()
8340 - MINOR: tools: make str2sa_range() optionally return the fd
8341 - MINOR: log: detect LOG_TARGET_FD from the fd and not from the syntax
8342 - MEDIUM: tools: make str2sa_range() resolve pre-bound listeners
8343 - MINOR: config: do not test an inherited socket again
8344 - MEDIUM: tools: make str2sa_range() check for the sockpair's FD usability
8345 - MINOR: tools: start to distinguish stream and dgram in str2sa_range()
8346 - MEDIUM: tools: make str2sa_range() only report AF_CUST_UDP on listeners
8347 - MINOR: tools: remove the central test for "udp" in str2sa_range()
8348 - MINOR: cfgparse: add str2receiver() to parse dgram receivers
8349 - MINOR: log-forward: use str2receiver() to parse the dgram-bind address
8350 - MEDIUM: config: make str2listener() not accept datagram sockets anymore
8351 - MINOR: listener: pass the chosen protocol to create_listeners()
8352 - MINOR: tools: make str2sa_range() directly return the protocol
8353 - MEDIUM: tools: make str2sa_range() check that the protocol has ->connect()
8354 - MINOR: protocol: add the control layer type in the protocol struct
8355 - MEDIUM: protocol: store the socket and control type in the protocol array
8356 - MEDIUM: tools: make str2sa_range() use protocol_lookup()
8357 - MEDIUM: proto_udp: replace last AF_CUST_UDP* with AF_INET*
8358 - MINOR: tools: drop listener detection hack from str2sa_range()
8359 - BUILD: sock_unix: add missing errno.h
8360 - MINOR: sock_inet: report the errno string in binding errors
8361 - MINOR: sock_unix: report the errno string in binding errors
8362 - BUILD: sock_inet: include errno.h
8363 - MINOR: h2/trace: also display the remaining frame length in traces
8364 - BUG/MINOR: h2/trace: do not display "stream error" after a frame ACK
8365 - BUG/MEDIUM: h2: report frame bits only for handled types
8366 - BUG/MINOR: http-fetch: Don't set the sample type during the htx prefetch
8367 - BUG/MINOR: Fix memory leaks cfg_parse_peers
8368 - BUG/MINOR: config: Fix memory leak on config parse listen
8369 - MINOR: backend: make the "whole" option of balance uri take only one bit
8370 - MINOR: backend: add a new "path-only" option to "balance uri"
8371 - REGTESTS: add a few load balancing tests
8372 - BUG/MEDIUM: listeners: do not pause foreign listeners
8373 - BUG/MINOR: listeners: properly close listener FDs
8374 - BUILD: trace: include tools.h
8375
Willy Tarreau253c4dc2020-09-11 17:05:59 +020083762020/09/11 : 2.3-dev4
8377 - MINOR: hlua: Add error message relative to the Channel manipulation and HTTP mode
8378 - BUG/MEDIUM: ssl: crt-list negative filters don't work
8379 - DOC: overhauling github issue templates
8380 - MEDIUM: cfgparse: Emit hard error on truncated lines
8381 - DOC: cache: Use '<name>' instead of '<id>' in error message
8382 - MINOR: cache: Reject duplicate cache names
8383 - REGTEST: remove stray leading spaces in converteers_ref_cnt_never_dec.vtc
8384 - MINOR: stats: prevent favicon.ico requests for stats page
8385 - BUILD: tools: include auxv a bit later
8386 - BUILD: task: work around a bogus warning in gcc 4.7/4.8 at -O1
8387 - MEDIUM: ssl: Support certificate chaining for certificate generation
8388 - MINOR: ssl: Support SAN extension for certificate generation
8389 - MINOR: tcp: don't try to set/clear v6only on inherited sockets
8390 - BUG/MINOR: reload: detect the OS's v6only status before choosing an old socket
8391 - MINOR: reload: determine the foreing binding status from the socket
8392 - MEDIUM: reload: stop passing listener options along with FDs
8393 - BUG/MEDIUM: ssl: fix ssl_bind_conf double free w/ wildcards
8394 - MEDIUM: fd: replace usages of fd_remove() with fd_stop_both()
8395 - CLEANUP: fd: remove fd_remove() and rename fd_dodelete() to fd_delete()
8396 - MINOR: fd: add a new "exported" flag and use it for all regular listeners
8397 - MEDIUM: reload: pass all exportable FDs, not just listeners
8398 - DOC: add description of pidfile in master-worker mode
8399 - BUG/MINOR: reload: do not fail when no socket is sent
8400 - REORG: tcp: move TCP actions from proto_tcp.c to tcp_act.c
8401 - CLEANUP: tcp: stop exporting smp_fetch_src()
8402 - REORG: tcp: move TCP sample fetches from proto_tcp.c to tcp_sample.c
8403 - REORG: tcp: move TCP bind/server keywords from proto_tcp.c to cfgparse-tcp.c
8404 - REORG: unix: move UNIX bind/server keywords from proto_uxst.c to cfgparse-unix.c
8405 - REORG: sock: start to move some generic socket code to sock.c
8406 - MINOR: sock: introduce sock_inet and sock_unix
8407 - MINOR: tcp/udp/unix: make use of proto->addrcmp() to compare addresses
8408 - MINOR: sock_inet: implement sock_inet_get_dst()
8409 - REORG: inet: replace tcp_is_foreign() with sock_inet_is_foreign()
8410 - REORG: sock_inet: move v6only_default from proto_tcp.c to sock_inet.c
8411 - REORG: sock_inet: move default_tcp_maxseg from proto_tcp.c
8412 - REORG: listener: move xfer_sock_list to sock.{c,h}.
8413 - MINOR: sock: add interface and namespace length to xfer_sock_list
8414 - MINOR: sock: implement sock_find_compatible_fd()
8415 - MINOR: sock_inet: move the IPv4/v6 transparent mode code to sock_inet
8416 - REORG: sock: move get_old_sockets() from haproxy.c
8417 - MINOR: sock: do not use LI_O_* in xfer_sock_list anymore
8418 - MINOR: sock: distinguish dgram from stream types when retrieving old sockets
8419 - BUILD: sock_unix: fix build issue with isdigit()
8420 - BUG/MEDIUM: http-ana: Don't wait to send 1xx responses received from servers
8421 - MINOR: http-htx: Add an option to eval query-string when the path is replaced
8422 - BUG/MINOR: http-rules: Replace path and query-string in "replace-path" action
8423 - MINOR: http-htx: Handle an optional reason when replacing the response status
8424 - MINOR: contrib/spoa-server: allow MAX_FRAME_SIZE override
8425 - BUG/MAJOR: contrib/spoa-server: Fix unhandled python call leading to memory leak
8426 - BUG/MINOR: contrib/spoa-server: Ensure ip address references are freed
8427 - BUG/MINOR: contrib/spoa-server: Do not free reference to NULL
8428 - BUG/MINOR: contrib/spoa-server: Updating references to free in case of failure
8429 - BUG/MEDIUM: contrib/spoa-server: Fix ipv4_address used instead of ipv6_address
8430 - CLEANUP: http: silence a cppcheck warning in get_http_auth()
8431 - REGTEST: increase some short timeouts to make tests more reliable
8432 - BUG/MINOR: threads: work around a libgcc_s issue with chrooting
8433 - BUILD: thread: limit the libgcc_s workaround to glibc only
8434 - MINOR: protocol: do not call proto->bind_all() anymore
8435 - MINOR: protocol: do not call proto->unbind_all() anymore
8436 - CLEANUP: protocol: remove all ->bind_all() and ->unbind_all() functions
8437 - MAJOR: init: start all listeners via protocols and not via proxies anymore
8438 - BUG/MINOR: startup: haproxy -s cause 100% cpu
8439 - Revert "BUG/MINOR: http-rules: Replace path and query-string in "replace-path" action"
8440 - BUG/MEDIUM: doc: Fix replace-path action description
8441 - MINOR: http-rules: Add set-pathq and replace-pathq actions
8442 - MINOR: http-fetch: Add pathq sample fetch
8443 - REGTEST: Add a test for request path manipulations, with and without the QS
8444 - MINOR: Commit .gitattributes
8445 - CLEANUP: Update .gitignore
8446 - BUG/MEDIUM: dns: Don't store additional records in a linked-list
8447 - BUG/MEDIUM: dns: Be sure to renew IP address for already known servers
8448 - MINOR: server: Improve log message sent when server address is updated
8449 - DOC: ssl-load-extra-files only applies to certificates on bind lines
8450 - BUG/MINOR: auth: report valid crypto(3) support depending on build options
8451 - BUG/MEDIUM: mux-h1: always apply the timeout on half-closed connections
8452 - BUILD: threads: better workaround for late loading of libgcc_s
8453 - BUILD: compiler: reserve the gcc version checks to the gcc compiler
8454 - BUILD: compiler: workaround a glibc madness around __attribute__()
8455 - BUILD: intops: on x86_64, the bswap instruction is called bswapq
8456 - BUILD: trace: always have an argument before variadic args in macros
8457 - BUILD: traces: don't pass an empty argument for missing ones
8458 - BUG/MINOR: haproxy: Free uri_auth->scope during deinit
8459 - CLEANUP: Free old_argv on deinit
8460 - CLEANUP: haproxy: Free post_proxy_check_list in deinit()
8461 - CLEANUP: haproxy: Free per_thread_*_list in deinit()
8462 - CLEANUP: haproxy: Free post_check_list in deinit()
8463 - BUG/MEDIUM: pattern: Renew the pattern expression revision when it is pruned
8464 - REORG: tools: move PARSE_OPT_* from tools.h to tools-t.h
8465 - MINOR: sample: Add iif(<true>,<false>) converter
8466
Willy Tarreauf104b532020-08-14 18:54:05 +020084672020/08/14 : 2.3-dev3
8468 - SCRIPTS: git-show-backports: make -m most only show the left branch
8469 - SCRIPTS: git-show-backports: emit the shell command to backport a commit
8470 - BUILD: Makefile: require SSL_LIB, SSL_INC to be explicitly set
8471 - CI: travis-ci: specify SLZ_LIB, SLZ_INC for travis builds
8472 - BUG/MEDIUM: mux-h1: Refresh H1 connection timeout after a synchronous send
8473 - CLEANUP: dns: typo in reported error message
8474 - BUG/MAJOR: dns: disabled servers through SRV records never recover
8475 - BUG/MINOR: spoa-server: fix size_t format printing
8476 - DOC: spoa-server: fix false friends `actually`
8477 - BUG/MINOR: ssl: fix memory leak at OCSP loading
8478 - BUG/MEDIUM: ssl: memory leak of ocsp data at SSL_CTX_free()
8479 - BUG/MEDIUM: map/lua: Return an error if a map is loaded during runtime
8480 - MINOR: arg: Add an argument type to keep a reference on opaque data
8481 - BUG/MINOR: converters: Store the sink in an arg pointer for debug() converter
8482 - BUG/MINOR: lua: Duplicate map name to load it when a new Map object is created
8483 - BUG/MINOR: arg: Fix leaks during arguments validation for fetches/converters
8484 - BUG/MINOR: lua: Check argument type to convert it to IPv4/IPv6 arg validation
8485 - BUG/MINOR: lua: Check argument type to convert it to IP mask in arg validation
8486 - MINOR: hlua: Don't needlessly copy lua strings in trash during args validation
8487 - BUG/MINOR: lua: Duplicate lua strings in sample fetches/converters arg array
8488 - MEDIUM: lua: Don't filter exported fetches and converters
8489 - MINOR: lua: Add support for userlist as fetches and converters arguments
8490 - MINOR: lua: Add support for regex as fetches and converters arguments
8491 - MINOR: arg: Use chunk_destroy() to release string arguments
8492 - BUG/MINOR: snapshots: leak of snapshots on deinit()
8493 - CLEANUP: ssl: ssl_sock_crt2der semicolon and spaces
8494 - MINOR: ssl: add ssl_{c,s}_chain_der fetch methods
8495 - CLEANUP: fix all duplicated semicolons
8496 - BUG/MEDIUM: ssl: fix the ssl-skip-self-issued-ca option
8497 - BUG/MINOR: ssl: ssl-skip-self-issued-ca requires >= 1.0.2
8498 - BUG/MINOR: stats: use strncmp() instead of memcmp() on health states
8499 - BUILD: makefile: don't disable -Wstringop-overflow anymore
8500 - BUG/MINOR: ssl: double free w/ smp_fetch_ssl_x_chain_der()
8501 - BUG/MEDIUM: htx: smp_prefetch_htx() must always validate the direction
8502 - BUG/MEDIUM: ssl: never generates the chain from the verify store
8503 - OPTIM: regex: PCRE2 use JIT match when JIT optimisation occured.
8504 - BUG/MEDIUM: ssl: does not look for all SNIs before chosing a certificate
8505 - CLEANUP: ssl: remove poorly readable nested ternary
8506
Willy Tarreau3f3cc8c2020-07-31 14:48:32 +020085072020/07/31 : 2.3-dev2
8508 - DOC: ssl: req_ssl_sni needs implicit TLS
8509 - BUG/MEDIUM: arg: empty args list must be dropped
8510 - BUG/MEDIUM: resolve: fix init resolving for ring and peers section.
8511 - BUG/MAJOR: tasks: don't requeue global tasks into the local queue
8512 - MINOR: tasks/debug: make the thread affinity BUG_ON check a bit stricter
8513 - MINOR: tasks/debug: add a few BUG_ON() to detect use of wrong timer queue
8514 - MINOR: tasks/debug: add a BUG_ON() check to detect requeued task on free
8515 - BUG/MAJOR: dns: Make the do-resolve action thread-safe
8516 - BUG/MEDIUM: dns: Release answer items when a DNS resolution is freed
8517 - MEDIUM: htx: Add a flag on a HTX message when no more data are expected
8518 - BUG/MEDIUM: stream-int: Don't set MSG_MORE flag if no more data are expected
8519 - BUG/MEDIUM: http-ana: Only set CF_EXPECT_MORE flag on data filtering
8520 - CLEANUP: dns: remove 45 "return" statements from dns_validate_dns_response()
8521 - BUG/MINOR: htx: add two missing HTX_FL_EOI and remove an unexpected one
8522 - BUG/MINOR: mux-fcgi: Don't url-decode the QUERY_STRING parameter anymore
8523 - BUILD: tools: fix build with static only toolchains
8524 - DOC: Use gender neutral language
8525 - BUG/MINOR: debug: Don't dump the lua stack if it is not initialized
8526 - BUG/MAJOR: dns: fix null pointer dereference in snr_update_srv_status
8527 - BUG/MAJOR: dns: don't treat Authority records as an error
8528 - CI : travis-ci : prepare for using stock OpenSSL
8529 - CI: travis-ci : switch to stock openssl when openssl-1.1.1 is used
8530 - MEDIUM: lua: Add support for the Lua 5.4
8531 - BUG/MEDIUM: dns: Don't yield in do-resolve action on a final evaluation
8532 - BUG/MINOR: lua: Abort execution of actions that yield on a final evaluation
8533 - MINOR: tcp-rules: Return an internal error if an action yields on a final eval
8534 - BUG/MINOR: tcp-rules: Preserve the right filter analyser on content eval abort
8535 - BUG/MINOR: tcp-rules: Set the inspect-delay when a tcp-response action yields
8536 - MEDIUM: tcp-rules: Use a dedicated expiration date for tcp ruleset
8537 - MEDIUM: lua: Set the analyse expiration date with smaller wake_time only
8538 - BUG/MEDIUM: connection: Be sure to always install a mux for sync connect
8539 - MINOR: connection: Preinstall the mux for non-ssl connect
8540 - MINOR: stream-int: Be sure to have a mux to do sends and receives
8541 - BUG/MINOR: lua: Fix a possible null pointer deref on lua ctx
8542 - SCRIPTS: announce-release: add the link to the wiki in the announce messages
8543 - CI: travis-ci: use better name for Coverity scan job
8544 - CI: travis-ci: use proper linking flags for SLZ build
8545 - BUG/MEDIUM: backend: always attach the transport before installing the mux
8546 - BUG/MEDIUM: tcp-checks: always attach the transport before installing the mux
8547 - MINOR: connection: avoid a useless recvfrom() on outgoing connections
8548 - MINOR: mux-h1: do not even try to receive if the connection is not fully set up
8549 - MINOR: mux-h1: do not try to receive on backend before sending a request
8550 - CLEANUP: assorted typo fixes in the code and comments
8551 - BUG/MEDIUM: ssl: check OCSP calloc in ssl_sock_load_ocsp()
8552
Willy Tarreaue732cbd2020-07-17 15:13:19 +020085532020/07/17 : 2.3-dev1
8554 - MINOR: config: make strict limits enabled by default
8555 - BUG/MINOR: acl: Fix freeing of expr->smp in prune_acl_expr
8556 - BUG/MINOR: sample: Fix freeing of conv_exprs in release_sample_expr
8557 - BUG/MINOR: haproxy: Free proxy->format_unique_id during deinit
8558 - BUG/MINOR: haproxy: Add missing free of server->(hostname|resolvers_id)
8559 - BUG/MINOR: haproxy: Free proxy->unique_id_header during deinit
8560 - BUG/MINOR: haproxy: Free srule->file during deinit
8561 - BUG/MINOR: haproxy: Free srule->expr during deinit
8562 - BUG/MINOR: sample: Free str.area in smp_check_const_bool
8563 - BUG/MINOR: sample: Free str.area in smp_check_const_meth
8564 - CLEANUP: haproxy: Free proxy_deinit_list in deinit()
8565 - CLEANUP: haproxy: Free post_deinit_list in deinit()
8566 - CLEANUP: haproxy: Free server_deinit_list in deinit()
8567 - CLEANUP: haproxy: Free post_server_check_list in deinit()
8568 - CLEANUP: Add static void vars_deinit()
8569 - CLEANUP: Add static void hlua_deinit()
8570 - CLEANUP: contrib/prometheus-exporter: typo fixes for ssl reuse metric
8571 - BUG/MEDIUM: lists: add missing store barrier on MT_LIST_BEHEAD()
8572 - BUG/MEDIUM: lists: add missing store barrier in MT_LIST_ADD/MT_LIST_ADDQ
8573 - MINOR: tcp: Support TCP keepalive parameters customization
8574 - BUILD: tcp: condition TCP keepalive settings to platforms providing them
8575 - MINOR: lists: rename some MT_LIST operations to clarify them
8576 - MINOR: buffer: use MT_LIST_ADDQ() for buffer_wait lists additions
8577 - MINOR: connection: use MT_LIST_ADDQ() to add connections to idle lists
8578 - MINOR: tasks: use MT_LIST_ADDQ() when killing tasks.
8579 - CONTRIB: da: fix memory leak in dummy function da_atlas_open()
8580 - CI: travis-ci: speed up osx build by running brew scripted, switch to latest osx image
8581 - BUG/MEDIUM: mux-h2: Don't add private connections in available connection list
8582 - BUG/MEDIUM: mux-fcgi: Don't add private connections in available connection list
8583 - MINOR: connection: Set the SNI on server connections before installing the mux
8584 - MINOR: connection: Set new connection as private on reuse never
8585 - MINOR: connection: Add a wrapper to mark a connection as private
8586 - MEDIUM: connection: Add private connections synchronously in session server list
8587 - MINOR: connection: Use a dedicated function to look for a session's connection
8588 - MINOR: connection: Set the conncetion target during its initialisation
8589 - MINOR: session: Take care to decrement idle_conns counter in session_unown_conn
8590 - MINOR: server: Factorize code to deal with reuse of server idle connections
8591 - MINOR: server: Factorize code to deal with connections removed from an idle list
8592 - CLEANUP: connection: remove unused field idle_time from the connection struct
8593 - BUG/MEDIUM: mux-h1: Continue to process request when switching in tunnel mode
8594 - MINOR: raw_sock: Report the number of bytes emitted using the splicing
8595 - MINOR: contrib/prometheus-exporter: Add missing global and per-server metrics
8596 - MINOR: backend: Add sample fetches to get the server's weight
8597 - BUG/MINOR: mux-fcgi: Handle empty STDERR record
8598 - BUG/MINOR: mux-fcgi: Set conn state to RECORD_P when skipping the record padding
8599 - BUG/MINOR: mux-fcgi: Set flags on the right stream field for empty FCGI_STDOUT
8600 - BUG/MINOR: backend: fix potential null deref on srv_conn
8601 - BUG/MEDIUM: log: issue mixing sampled to not sampled log servers.
8602 - MEDIUM: udp: adds minimal proto udp support for message listeners.
8603 - MEDIUM: log/sink: re-work and merge of build message API.
8604 - MINOR: log: adds syslog udp message handler and parsing.
8605 - MEDIUM: log: adds log forwarding section.
8606 - MINOR: log: adds counters on received syslog messages.
8607 - BUG/MEDIUM: fcgi-app: fix memory leak in fcgi_flt_http_headers
8608 - BUG/MEDIUM: server: resolve state file handle leak on reload
8609 - BUG/MEDIUM: server: fix possibly uninitialized state file on close
8610 - BUG/MEDIUM: channel: Be aware of SHUTW_NOW flag when output data are peeked
8611 - BUILD: config: address build warning on raspbian+rpi4
8612 - BUG/MAJOR: tasks: make sure to always lock the shared wait queue if needed
8613 - BUILD: config: fix again bugs gcc warnings on calloc
8614
Willy Tarreau33205c22020-07-07 16:35:28 +020086152020/07/07 : 2.3-dev0
Willy Tarreau848dbdf2020-07-07 16:39:18 +02008616 - [RELEASE] Released version 2.3-dev0
8617 - MINOR: version: back to development, update status message
8618
86192020/07/07 : 2.3-dev0
Willy Tarreau33205c22020-07-07 16:35:28 +02008620 - exact copy of 2.2.0
8621
Willy Tarreau3a00c912020-07-07 16:33:14 +020086222020/07/07 : 2.2.0
8623 - BUILD: mux-h2: fix typo breaking build when using DEBUG_LOCK
8624 - CLEANUP: makefile: update the outdated list of DEBUG_xxx options
8625 - BUILD: tools: make resolve_sym_name() return a const
8626 - CLEANUP: auth: fix useless self-include of auth-t.h
8627 - BUILD: tree-wide: cast arguments to tolower/toupper to unsigned char
8628 - CLEANUP: assorted typo fixes in the code and comments
8629 - WIP/MINOR: ssl: add sample fetches for keylog in frontend
8630 - DOC: fix tune.ssl.keylog sample fetches array
8631 - BUG/MINOR: ssl: check conn in keylog sample fetch
8632 - DOC: configuration: various typo fixes
8633 - MINOR: log: Remove unused case statement during the log-format string parsing
8634 - BUG/MINOR: mux-h1: Fix the splicing in TUNNEL mode
8635 - BUG/MINOR: mux-h1: Don't read data from a pipe if the mux is unable to receive
8636 - BUG/MINOR: mux-h1: Disable splicing only if input data was processed
8637 - BUG/MEDIUM: mux-h1: Disable splicing for the conn-stream if read0 is received
8638 - MINOR: mux-h1: Improve traces about the splicing
8639 - BUG/MINOR: backend: Remove CO_FL_SESS_IDLE if a client remains on the last server
8640 - BUG/MEDIUM: connection: Don't consider new private connections as available
8641 - BUG/MINOR: connection: See new connection as available only on reuse always
8642 - DOC: configuration: remove obsolete mentions of H2 being converted to HTTP/1.x
8643 - CLEANUP: ssl: remove unrelevant comment in smp_fetch_ssl_x_keylog()
8644 - DOC: update INSTALL with new compiler versions
8645 - DOC: minor update to coding style file
8646 - MINOR: version: mention that it's an LTS release now
8647
Willy Tarreau62f11a52020-07-04 07:10:24 +020086482020/07/04 : 2.2-dev12
8649 - BUG/MINOR: mux_h2: don't lose the leaving trace in h2_io_cb()
8650 - MINOR: cli: make "show sess" stop at the last known session
8651 - CLEANUP: buffers: remove unused buffer_wq_lock lock
8652 - BUG/MEDIUM: buffers: always allocate from the local cache first
8653 - MINOR: connection: align toremove_{lock,connections} and cleanup into idle_conns
8654 - CONTRIB: debug: add missing flags SI_FL_L7_RETRY & SI_FL_D_L7_RETRY
8655 - BUG/MEDIUM: connections: Don't increase curr_used_conns for shared connections.
8656 - BUG/MEDIUM: checks: Increment the server's curr_used_conns
8657 - REORG: buffer: rename buffer.c to dynbuf.c
8658 - REORG: includes: create tinfo.h for the thread_info struct
8659 - CLEANUP: pool: only include the type files from types
8660 - MINOR: pools: move the LRU cache heads to thread_info
8661 - BUG/MINOR: debug: fix "show fd" null-deref when built with DEBUG_FD
8662 - MINOR: stats: add 3 new output values for the per-server idle conn state
8663 - MINOR: activity: add per-thread statistics on FD takeover
8664 - BUG/MINOR: server: start cleaning idle connections from various points
8665 - MEDIUM: server: improve estimate of the need for idle connections
8666 - MINOR: stats: add the estimated need of concurrent connections per server
8667 - BUG/MINOR: threads: Don't forget to init each thread toremove_lock.
8668 - BUG/MEDIUM: lists: Lock the element while we check if it is in a list.
8669 - Revert "BUG/MEDIUM: lists: Lock the element while we check if it is in a list."
8670 - BUG/MINOR: haproxy: don't wake already stopping threads on exit
8671 - BUG/MINOR: server: always count one idle slot for current thread
8672 - MEDIUM: server: use the two thresholds for the connection release algorithm
8673 - BUG/MINOR: http-rules: Fix ACLs parsing for http deny rules
8674 - BUG/MINOR: sched: properly cover for a rare MT_LIST_ADDQ() race
8675 - MINOR: mux-h1: avoid taking the toremove_lock in on dying tasks
8676 - MINOR: mux-h2: avoid taking the toremove_lock in on dying tasks
8677 - MINOR: mux-fcgi: avoid taking the toremove_lock in on dying tasks
8678 - MINOR: pools: increase MAX_BASE_POOLS to 64
8679 - DOC: ssl: add "allow-0rtt" and "ciphersuites" in crt-list
8680 - BUG/MEDIUM: pattern: Add a trailing \0 to match strings only if possible
8681 - BUG/MEDIUM: log-format: fix possible endless loop in parse_logformat_string()
8682 - BUG/MINOR: proxy: fix dump_server_state()'s misuse of the trash
8683 - BUG/MINOR: proxy: always initialize the trash in show servers state
8684 - MINOR: cli/proxy: add a new "show servers conn" command
8685 - MINOR: server: skip servers with no idle conns earlier
8686 - BUG/MINOR: server: fix the connection release logic regarding nearly full conditions
8687 - MEDIUM: server: add a new pool-low-conn server setting
8688 - BUG/MEDIUM: backend: always search in the safe list after failing on the idle one
8689 - MINOR: backend: don't always takeover from the same threads
8690 - MINOR: sched: make sched->task_list_size atomic
8691 - MEDIUM: sched: create a new TASK_KILLED task flag
8692 - MEDIUM: sched: implement task_kill() to kill a task
8693 - MEDIUM: mux-h1: use task_kill() during h1_takeover() instead of task_wakeup()
8694 - MEDIUM: mux-h2: use task_kill() during h2_takeover() instead of task_wakeup()
8695 - MEDIUM: mux-fcgi: use task_kill() during fcgi_takeover() instead of task_wakeup()
8696 - MINOR: list: Add MT_LIST_DEL_SAFE_NOINIT() and MT_LIST_ADDQ_NOCHECK()
8697 - CLEANUP: connections: rename the toremove_lock to takeover_lock
8698 - MEDIUM: connections: Don't use a lock when moving connections to remove.
8699 - DOC: configuration: add missing index entries for tune.pool-{low,high}-fd-ratio
8700 - DOC: configuration: fix alphabetical ordering for tune.pool-{high,low}-fd-ratio
8701 - MINOR: config: add a new tune.idle-pool.shared global setting.
8702 - MINOR: 51d: silence a warning about null pointer dereference
8703 - MINOR: debug: add a new "debug dev memstats" command
8704 - MINOR: log-format: allow to preserve spacing in log format strings
8705 - BUILD: debug: avoid build warnings with DEBUG_MEM_STATS
8706 - BUG/MAJOR: sched: make sure task_kill() always queues the task
8707 - BUG/MEDIUM: muxes: Make sure nobody stole the connection before using it.
8708 - BUG/MEDIUM: cli/proxy: don't try to dump idle connection state if there's none
8709 - BUILD: haproxy: fix build error when RLIMIT_AS is not set
8710 - BUG/MAJOR: sched: make it work also when not building with DEBUG_STRICT
8711 - MINOR: log: add time second fraction field to rfc5424 log timestamp.
8712 - BUG/MINOR: log: missing timezone on iso dates.
8713 - BUG/MEDIUM: server: don't kill all idle conns when there are not enough
8714 - MINOR: sched: split tasklet_wakeup() into tasklet_wakeup_on()
8715 - BUG/MEDIUM: connections: Set the tid for the old tasklet on takeover.
8716 - BUG/MEDIUM: connections: Let the xprt layer know a takeover happened.
8717 - BUG/MINOR: http_act: don't check capture id in backend (2)
8718 - BUILD: makefile: disable threads by default on OpenBSD
8719 - BUILD: peers: fix build warning with gcc 4.2.1
8720 - CI: cirrus-ci: exclude slow reg-tests
8721
Willy Tarreau4462af82020-06-26 22:01:04 +020087222020/06/26 : 2.2-dev11
8723 - REGTEST: Add a simple script to tests errorfile directives in proxy sections
8724 - BUG/MEDIUM: fcgi-app: Resolve the sink if a fcgi-app logs in a ring buffer
8725 - BUG/MINOR: spoe: correction of setting bits for analyzer
8726 - BUG/MINOR: cfgparse: Support configurations without newline at EOF
8727 - MINOR: cfgparse: Warn on truncated lines / files
8728 - BUG/MINOR: http_ana: clarify connection pointer check on L7 retry
8729 - MINOR: debug: add a new DEBUG_FD build option
8730 - BUG/MINOR: tasks: make sure never to exceed max_processed
8731 - MINOR: task: add a new pointer to current tasklet queue
8732 - BUG/MEDIUM: task: be careful not to run too many tasks at TL_URGENT
8733 - BUG/MINOR: cfgparse: Fix argument reference in PARSE_ERR_TOOMANY message
8734 - BUG/MINOR: cfgparse: Fix calculation of position for PARSE_ERR_TOOMANY message
8735 - BUG/MEDIUM: ssl: fix ssl_bind_conf double free
8736 - MINOR: ssl: free bind_conf_node in crtlist_free()
8737 - MINOR: ssl: free the crtlist and the ckch during the deinit()
8738 - BUG/MINOR: ssl: fix build with ckch_deinit() and crtlist_deinit()
8739 - BUG/MINOR: ssl/cli: certs added from the CLI can't be deleted
8740 - MINOR: ssl: move the ckch/crtlist deinit to ssl_sock.c
8741 - MEDIUM: tasks: apply a fair CPU distribution between tasklet classes
8742 - MINOR: tasks: make current_queue an index instead of a pointer
8743 - MINOR: tasks: add a mask of the queues with active tasklets
8744 - MINOR: tasks: pass the queue index to run_task_from_list()
8745 - MINOR: tasks: make run_tasks_from_lists() scan the queues itself
8746 - MEDIUM: tasks: add a tune.sched.low-latency option
8747 - BUG/MEDIUM: ssl/cli: 'commit ssl cert' crashes when no private key
8748 - BUG/MINOR: cfgparse: don't increment linenum on incomplete lines
8749 - MINOR: tools: make parse_line() always terminate the args list
8750 - BUG/MINOR: cfgparse: report extraneous args *after* the string is allocated
8751 - MINOR: cfgparse: sanitize the output a little bit
8752 - MINOR: cli/ssl: handle trailing slashes in crt-list commands
8753 - MINOR: ssl: add the ssl_s_* sample fetches for server side certificate
8754 - BUG/MEDIUM: http-ana: Don't loop trying to generate a malformed 500 response
8755 - BUG/MINOR: stream-int: Don't wait to send truncated HTTP messages
8756 - BUG/MINOR: http-ana: Set CF_EOI on response channel for generated responses
8757 - BUG/MINOR: http-ana: Don't wait to send 1xx responses generated by HAProxy
8758 - MINOR: spoe: Don't systematically create new applets if processing rate is low
8759 - DOC: fix some typos in the ssl_s_{s|i}_dn documentation
8760 - BUILD: fix ssl_sample.c when building against BoringSSL
8761 - CI: travis-ci: switch BoringSSL builds to ninja
8762 - CI: extend spellchecker whitelist
8763 - DOC: assorted typo fixes in the documentation
8764 - CLEANUP: assorted typo fixes in the code and comments
8765 - MINOR: http: Add support for http 413 status
8766 - REGTEST: ssl: tests the ssl_f_* sample fetches
8767 - REGTEST: ssl: add some ssl_c_* sample fetches test
8768 - DOC: ssl: update the documentation of "commit ssl cert"
8769 - BUG/MINOR: cfgparse: correctly deal with empty lines
8770 - BUG/MEDIUM: fetch: Fix hdr_ip misparsing IPv4 addresses due to missing NUL
8771
Willy Tarreaudc0936c2020-06-19 21:43:26 +020087722020/06/19 : 2.2-dev10
8773 - BUILD: include: add sys/types before netinet/tcp.h
8774 - BUG/MEDIUM: log: don't hold the log lock during writev() on a file descriptor
8775 - BUILD: Remove nowarn for warnings that do not trigger
8776 - BUG/MEDIUM: pattern: fix thread safety of pattern matching
8777 - BUILD: Re-enable -Wimplicit-fallthrough
8778 - BUG/MINOR: ssl: fix ssl-{min,max}-ver with openssl < 1.1.0
8779 - BUILD: thread: add parenthesis around values of locking macros
8780 - BUILD: proto_uxst: shut up yet another gcc's absurd warning
8781 - BUG/MEDIUM: checks: Fix off-by-one in allocation of SMTP greeting cmd
8782 - CI: travis-ci: use "-O1" for clang builds
8783 - MINOR: haproxy: Add void deinit_and_exit(int)
8784 - MINOR: haproxy: Make use of deinit_and_exit() for clean exits
8785 - BUG/MINOR: haproxy: Free rule->arg.vars.expr during deinit_act_rules
8786 - BUILD: compression: make gcc 10 happy with free_zlib()
8787 - BUILD: atomic: add string.h for memcpy() on ARM64
8788 - BUG/MINOR: http: make smp_fetch_body() report that the contents may change
8789 - BUG/MINOR: tcp-rules: tcp-response must check the buffer's fullness
8790 - BUILD: haproxy: mark deinit_and_exit() as noreturn
8791 - BUG/MAJOR: vars: Fix bogus free() during deinit() for http-request rules
8792 - BUG/MEDIUM: ebtree: use a byte-per-byte memcmp() to compare memory blocks
8793 - MINOR: tools: add a new configurable line parse, parse_line()
8794 - BUG/MEDIUM: cfgparse: use parse_line() to expand/unquote/unescape config lines
8795 - BUG/MEDIUM: cfgparse: stop after a reasonable amount of fatal error
8796 - MINOR: http: do not close connections anymore after internal responses
8797 - BUG/MINOR: cfgparse: Add missing fatal++ in PARSE_ERR_HEX case
8798 - BUG/MINOR: spoe: add missing key length check before checking key names
8799 - MINOR: version: put the compiler version output into version.c not haproxy.c
8800 - MINOR: compiler: always define __has_feature()
8801 - MINOR: version: report the presence of the compiler's address sanitizer
8802 - BUILD: Fix build by including haproxy/global.h
8803 - BUG/MAJOR: connection: always disable ready events once reported
8804 - CLEANUP: activity: remove unused counter fd_lock
8805 - DOC: fd: make it clear that some fields ordering must absolutely be respected
8806 - MINOR: activity: report the number of times poll() reports I/O
8807 - MINOR: activity: rename confusing poll_* fields in the output
8808 - MINOR: fd: Fix a typo in a coment.
8809 - BUG/MEDIUM: fd: Don't fd_stop_recv() a fd we don't own.
8810 - BUG/MEDIUM: fd: Call fd_stop_recv() when we just got a fd.
8811 - MINOR: activity: group the per-loop counters at the top
8812 - MINOR: activity: rename the "stream" field to "stream_calls"
8813 - MEDIUM: fd: refine the fd_takeover() migration lock
8814 - MINOR: fd: slightly optimize the fd_takeover double-CAS loop
8815 - MINOR: fd: factorize the fd_takeover() exit path to make it safer
8816 - MINOR: peers: do not use localpeer as an array anymore
8817 - MEDIUM: peers: add the "localpeer" global option
8818 - MEDIUM: fd: add experimental support for edge-triggered polling
8819 - CONTRIB: debug: add the missing flags CO_FL_SAFE_LIST and CO_FL_IDLE_LIST
8820 - MINOR: haproxy: process signals before runnable tasks
8821 - MEDIUM: tasks: clean up the front side of the wait queue in wake_expired_tasks()
8822 - MEDIUM: tasks: also process late wakeups in process_runnable_tasks()
8823 - BUG/MINOR: cli: allow space escaping on the CLI
8824 - BUG/MINOR: mworker/cli: fix the escaping in the master CLI
8825 - BUG/MINOR: mworker/cli: fix semicolon escaping in master CLI
8826 - REGTEST: http-rules: test spaces in ACLs
8827 - REGTEST: http-rules: test spaces in ACLs with master CLI
8828 - BUG/MAJOR: init: properly compute the default global.maxpipes value
8829 - MEDIUM: map: make the "clear map" operation yield
8830 - BUG/MEDIUM: stream-int: fix loss of CO_SFL_MSG_MORE flag in forwarding
8831 - MINOR: mux_h1: Set H1_F_CO_MSG_MORE if we know we have more to send.
8832 - BUG/MINOR: systemd: Wait for network to be online
8833 - DOC: configuration: Unindent non-code sentences in the protobuf example
8834 - DOC: configuration: http-check send was missing from matrix
8835
Willy Tarreau1385c882020-06-11 10:22:10 +020088362020/06/11 : 2.2-dev9
8837 - BUG/MINOR: http-htx: Don't forget to release the http reply in release function
8838 - BUG/MINOR: http-htx: Fix a leak on error path during http reply parsing
8839 - MINOR: checks: Remove dead code from process_chk_conn()
8840 - REGTESTS: checks: Fix tls_health_checks when IPv6 addresses are used
8841 - REGTESTS: Add missing OPENSSL to REQUIRE_OPTIONS for lua/txn_get_priv
8842 - MINOR: lua: Use vars_unset_by_name_ifexist()
8843 - CLEANUP: vars: Remove void vars_unset_by_name(const char*, size_t, struct sample*)
8844 - MINOR: vars: Make vars_(un|)set_by_name(_ifexist|) return a success value
8845 - MINOR: lua: Make `set_var()` and `unset_var()` return success
8846 - MEDIUM: lua: Add `ifexist` parameter to `set_var`
8847 - MEDIUM: ring: new section ring to declare custom ring buffers.
8848 - REGTESTS: Add missing OPENSSL to REQUIRE_OPTIONS for compression/lua_validation
8849 - REGTESTS: Require the version 2.2 to execute lua/set_var
8850 - BUG/MEDIUM: checks: Refresh the conn-stream and the connection after a connect
8851 - MINOR: checks: Remove useless tests on the connection and conn-stream
8852 - BUG/MEDIUM: contrib/spoa: do not register python3.8 if --embed fail
8853 - BUG/MEDIUM: connection: Ignore PP2 unique ID for stream-less connections
8854 - BUG/MINOR: connection: Always get the stream when available to send PP2 line
8855 - BUG/MEDIUM: backend: set the connection owner to the session when using alpn.
8856 - MINOR: pools: compute an estimate of each pool's average needed objects
8857 - MEDIUM: pools: directly free objects when pools are too much crowded
8858 - REGTEST: Add connection/proxy_protocol_send_unique_id_alpn
8859 - MINOR: http-ana: Make the function http_reply_to_htx() public
8860 - MINOR: http-ana: Use proxy's error replies to emit 401/407 responses
8861 - MINOR: http-rules: Use an action function to eval http-request auth rules
8862 - CLEANUP: http: Remove unused HTTP message templates
8863 - BUG/MEDIUM: checks: Don't blindly subscribe for receive if waiting for connect
8864 - MINOR: checks: I/O callback function only rely on the data layer wake callback
8865 - BUG/MINOR: lua: Add missing string length for lua sticktable lookup
8866 - BUG/MEDIUM: logs: fix trailing zeros on log message.
8867 - CI: cirrus-ci: skip reg-tests/connection/proxy_protocol_send_unique_id_alpn.vtc on CentOS 6
8868 - BUG/MINOR: nameservers: fix error handling in parsing of resolv.conf
8869 - BUG/MEDIUM: checks: Don't add a tcpcheck ruleset twice in the shared tree
8870 - MEDIUM: ssl: use TLSv1.2 as the minimum default on bind lines
8871 - CLEANUP: pools: use the regular lock for the flush operation on lockless pools
8872 - SCRIPTS: publish-release: pass -n to gzip to remove timestamp
8873 - MINOR: ring: re-work ring attach generic API.
8874 - BUG/MINOR: error on unknown statement in ring section.
8875 - MEDIUM: ring: add server statement to forward messages from a ring
8876 - MEDIUM: ring: add new srv statement to support octet counting forward
8877 - MINOR: ssl: set ssl-min-ver in ambiguous configurations
8878 - CLEANUP: ssl: remove comment from dump_crtlist_sslconf()
8879 - BUILD: sink: address build warning on 32-bit architectures
8880 - BUG/MINOR: peers: fix internal/network key type mapping.
8881 - CLEANUP: regex: remove outdated support for regex actions
8882 - Revert "MINOR: ssl: rework add cert chain to CTX to be libssl independent"
8883 - MINOR: mux-h1/proxy: Add a proxy option to disable clear h2 upgrade
8884 - BUG/MEDIUM: lua: Reset analyse expiration timeout before executing a lua action
8885 - DOC: add a line about comments in crt-list
8886 - BUG/MEDIUM: hlua: Lock pattern references to perform set/add/del operations
8887 - BUG/MINOR: checks: Fix test on http-check rulesets during config validity check
8888 - BUG/MEDIUM: contrib/prometheus-exporter: Properly set flags to dump metrics
8889 - BUG/MEDIUM: mworker: fix the copy of options in copy_argv()
8890 - BUG/MINOR: init: -x can have a parameter starting with a dash
8891 - BUG/MINOR: init: -S can have a parameter starting with a dash
8892 - BUG/MEDIUM: mworker: fix the reload with an -- option
8893 - BUG/MINOR: ssl: fix a trash buffer leak in some error cases
8894 - BUG/MINOR: mworker: fix a memleak when execvp() failed
8895 - MINOR: sample: Add secure_memcmp converter
8896 - REORG: ebtree: move the C files from ebtree/ to src/
8897 - REORG: ebtree: move the include files from ebtree to include/import/
8898 - REORG: ebtree: clean up remains of the ebtree/ directory
8899 - REORG: include: create new file haproxy/api-t.h
8900 - REORG: include: create new file haproxy/api.h
8901 - REORG: include: update all files to use haproxy/api.h or api-t.h if needed
8902 - CLEANUP: include: remove common/config.h
8903 - CLEANUP: include: remove unused template.h
8904 - REORG: include: move MIN/MAX from tools.h to compat.h
8905 - REORG: include: move SWAP/MID_RANGE/MAX_RANGE from tools.h to standard.h
8906 - CLEANUP: include: remove unused common/tools.h
8907 - REORG: include: move the base files from common/ to haproxy/
8908 - REORG: include: move version.h to haproxy/
8909 - REORG: include: move base64.h, errors.h and hash.h from common to to haproxy/
8910 - REORG: include: move openssl-compat.h from common/ to haproxy/
8911 - REORG: include: move ist.h from common/ to import/
8912 - REORG: include: move the BUG_ON() code to haproxy/bug.h
8913 - REORG: include: move debug.h from common/ to haproxy/
8914 - CLEANUP: debug: drop unused function p_malloc()
8915 - REORG: include: split buf.h into haproxy/buf-t.h and haproxy/buf.h
8916 - REORG: include: move istbuf.h to haproxy/
8917 - REORG: include: split mini-clist into haproxy/list and list-t.h
8918 - REORG: threads: extract atomic ops from hathreads.h
8919 - CLEANUP: threads: remove a few needless includes of hathreads.h
8920 - REORG: include: split hathreads into haproxy/thread.h and haproxy/thread-t.h
8921 - CLEANUP: thread: rename __decl_hathreads() to __decl_thread()
8922 - REORG: include: move time.h from common/ to haproxy/
8923 - REORG: include: move integer manipulation functions from standard.h to intops.h
8924 - CLEANUP: include: remove excessive includes of common/standard.h
8925 - REORG: include: move freq_ctr to haproxy/
8926 - CLEANUP: pool: include freq_ctr.h and remove locally duplicated functions
8927 - REORG: memory: move the pool type definitions to haproxy/pool-t.h
8928 - REORG: memory: move the OS-level allocator to haproxy/pool-os.h
8929 - MINOR: memory: don't let __pool_get_first() pick from the cache
8930 - MEDIUM: memory: don't let pool_put_to_cache() free the objects itself
8931 - MINOR: memory: move pool-specific path of the locked pool_free() to __pool_free()
8932 - MEDIUM: memory: make local pools independent on lockless pools
8933 - REORG: include: move common/memory.h to haproxy/pool.h
8934 - REORG: include: move common/chunk.h to haproxy/chunk.h
8935 - REORG: include: move activity to haproxy/
8936 - REORG: include: move common/buffer.h to haproxy/dynbuf{,-t}.h
8937 - REORG: include: move common/net_helper.h to haproxy/net_helper.h
8938 - REORG: include: move common/namespace.h to haproxy/namespace{,-t}.h
8939 - REORG: include: split common/regex.h into haproxy/regex{,-t}.h
8940 - REORG: include: split common/xref.h into haproxy/xref{,-t}.h
8941 - REORG: include: move common/ticks.h to haproxy/ticks.h
8942 - REORG: include: split common/http.h into haproxy/http{,-t}.h
8943 - REORG: include: split common/http-hdr.h into haproxy/http-hdr{,-t}.h
8944 - REORG: include: move common/h1.h to haproxy/h1.h
8945 - REORG: include: split common/htx.h into haproxy/htx{,-t}.h
8946 - REORG: include: move hpack*.h to haproxy/ and split hpack-tbl
8947 - REORG: include: move common/h2.h to haproxy/h2.h
8948 - REORG: include: move common/fcgi.h to haproxy/
8949 - REORG: include: move protocol.h to haproxy/protocol{,-t}.h
8950 - REORG: tools: split common/standard.h into haproxy/tools{,-t}.h
8951 - REORG: include: move dict.h to hparoxy/dict{,-t}.h
8952 - REORG: include: move shctx to haproxy/shctx{,-t}.h
8953 - REORG: include: move port_range.h to haproxy/port_range{,-t}.h
8954 - REORG: include: move fd.h to haproxy/fd{,-t}.h
8955 - REORG: include: move ring to haproxy/ring{,-t}.h
8956 - REORG: include: move sink.h to haproxy/sink{,-t}.h
8957 - REORG: include: move pipe.h to haproxy/pipe{,-t}.h
8958 - CLEANUP: include: remove empty raw_sock.h
8959 - REORG: include: move proto_udp.h to haproxy/proto_udp{,-t}.h
8960 - REORG: include: move proto/proto_sockpair.h to haproxy/proto_sockpair.h
8961 - REORG: include: move compression.h to haproxy/compression{,-t}.h
8962 - REORG: include: move h1_htx.h to haproxy/h1_htx.h
8963 - REORG: include: move http_htx.h to haproxy/http_htx{,-t}.h
8964 - REORG: include: move hlua.h to haproxy/hlua{,-t}.h
8965 - REORG: include: move hlua_fcn.h to haproxy/hlua_fcn.h
8966 - REORG: include: move action.h to haproxy/action{,-t}.h
8967 - REORG: include: move arg.h to haproxy/arg{,-t}.h
8968 - REORG: include: move auth.h to haproxy/auth{,-t}.h
8969 - REORG: include: move dns.h to haproxy/dns{,-t}.h
8970 - REORG: include: move flt_http_comp.h to haproxy/
8971 - REORG: include: move counters.h to haproxy/counters-t.h
8972 - REORG: include: split mailers.h into haproxy/mailers{,-t}.h
8973 - REORG: include: move capture.h to haproxy/capture{,-t}.h
8974 - REORG: include: move frontend.h to haproxy/frontend.h
8975 - REORG: include: move obj_type.h to haproxy/obj_type{,-t}.h
8976 - REORG: include: move http_rules.h to haproxy/http_rules.h
8977 - CLEANUP: include: remove unused mux_pt.h
8978 - REORG: include: move mworker.h to haproxy/mworker{,-t}.h
8979 - REORG: include: move ssl_utils.h to haproxy/ssl_utils.h
8980 - REORG: include: move ssl_ckch.h to haproxy/ssl_ckch{,-t}.h
8981 - REORG: move ssl_crtlist.h to haproxy/ssl_crtlist{,-t}.h
8982 - REORG: include: move lb_chash.h to haproxy/lb_chash{,-t}.h
8983 - REORG: include: move lb_fas.h to haproxy/lb_fas{,-t}.h
8984 - REORG: include: move lb_fwlc.h to haproxy/lb_fwlc{,-t}.h
8985 - REORG: include: move lb_fwrr.h to haproxy/lb_fwrr{,-t}.h
8986 - REORG: include: move listener.h to haproxy/listener{,-t}.h
8987 - REORG: include: move pattern.h to haproxy/pattern{,-t}.h
8988 - REORG: include: move map to haproxy/map{,-t}.h
8989 - REORG: include: move payload.h to haproxy/payload.h
8990 - REORG: include: move sample.h to haproxy/sample{,-t}.h
8991 - REORG: include: move protocol_buffers.h to haproxy/protobuf{,-t}.h
8992 - REORG: include: move vars.h to haproxy/vars{,-t}.h
8993 - REORG: include: split global.h into haproxy/global{,-t}.h
8994 - REORG: include: move task.h to haproxy/task{,-t}.h
8995 - REORG: include: move proto_tcp.h to haproxy/proto_tcp.h
8996 - REORG: include: move signal.h to haproxy/signal{,-t}.h
8997 - REORG: include: move tcp_rules.h to haproxy/tcp_rules.h
8998 - REORG: include: move connection.h to haproxy/connection{,-t}.h
8999 - REORG: include: move checks.h to haproxy/check{,-t}.h
9000 - REORG: include: move http_fetch.h to haproxy/http_fetch.h
9001 - REORG: include: move peers.h to haproxy/peers{,-t}.h
9002 - REORG: include: move stick_table.h to haproxy/stick_table{,-t}.h
9003 - REORG: include: move session.h to haproxy/session{,-t}.h
9004 - REORG: include: move trace.h to haproxy/trace{,-t}.h
9005 - REORG: include: move acl.h to haproxy/acl.h{,-t}.h
9006 - REORG: include: split common/uri_auth.h into haproxy/uri_auth{,-t}.h
9007 - REORG: move applet.h to haproxy/applet{,-t}.h
9008 - REORG: include: move stats.h to haproxy/stats{,-t}.h
9009 - REORG: include: move cli.h to haproxy/cli{,-t}.h
9010 - REORG: include: move lb_map.h to haproxy/lb_map{,-t}.h
9011 - REORG: include: move ssl_sock.h to haproxy/ssl_sock{,-t}.h
9012 - REORG: include: move stream_interface.h to haproxy/stream_interface{,-t}.h
9013 - REORG: include: move channel.h to haproxy/channel{,-t}.h
9014 - REORG: include: move http_ana.h to haproxy/http_ana{,-t}.h
9015 - REORG: include: move filters.h to haproxy/filters{,-t}.h
9016 - REORG: include: move fcgi-app.h to haproxy/fcgi-app{,-t}.h
9017 - REORG: include: move log.h to haproxy/log{,-t}.h
9018 - REORG: include: move proxy.h to haproxy/proxy{,-t}.h
9019 - REORG: include: move spoe.h to haproxy/spoe{,-t}.h
9020 - REORG: include: move backend.h to haproxy/backend{,-t}.h
9021 - REORG: include: move queue.h to haproxy/queue{,-t}.h
9022 - REORG: include: move server.h to haproxy/server{,-t}.h
9023 - REORG: include: move stream.h to haproxy/stream{,-t}.h
9024 - REORG: include: move cfgparse.h to haproxy/cfgparse.h
9025 - CLEANUP: hpack: export debug functions and move inlines to .h
9026 - REORG: check: move the e-mail alerting code to mailers.c
9027 - REORG: check: move tcpchecks away from check.c
9028 - REORG: check: move email_alert* from proxy-t.h to mailers-t.h
9029 - REORG: check: extract the external checks from check.{c,h}
9030 - CLEANUP: include: don't include stddef.h directly
9031 - CLEANUP: include: don't include proxy-t.h in global-t.h
9032 - CLEANUP: include: move sample_data out of sample-t.h
9033 - REORG: include: move the error reporting functions to from log.h to errors.h
9034 - BUILD: reorder objects in the Makefile for faster builds
9035 - CLEANUP: compiler: add a THREAD_ALIGNED macro and use it where appropriate
9036 - CLEANUP: include: make atomic.h part of the base API
9037 - REORG: include: move MAX_THREADS to defaults.h
9038 - REORG: include: move THREAD_LOCAL and __decl_thread() to compiler.h
9039 - CLEANUP: include: tree-wide alphabetical sort of include files
9040 - REORG: include: make list-t.h part of the base API
9041 - REORG: dgram: rename proto_udp to dgram
9042
Willy Tarreau73b943b2020-05-22 16:19:04 +020090432020/05/22 : 2.2-dev8
9044 - MINOR: checks: Improve report of unexpected errors for expect rules
9045 - MEDIUM: checks: Add matching on log-format string for expect rules
9046 - DOC: Fix req.body and co documentation to be accurate
9047 - MEDIUM: checks: Remove dedicated sample fetches and use response ones instead
9048 - CLEANUP: checks: sort and rename tcpcheck_expect_type types
9049 - MINOR: checks: Use dedicated actions to send log-format strings in send rules
9050 - MINOR: checks: Simplify matching on HTTP headers in HTTP expect rules
9051 - MINOR: checks/sample: Remove unnecessary tests on the sample session
9052 - REGTEST: checks: Adapt SSL error message reported when connection is rejected
9053 - MINOR: mworker: replace ha_alert by ha_warning when exiting successfuly
9054 - MINOR: checks: Support log-format string to set the URI for HTTP send rules
9055 - MINOR: checks: Support log-format string to set the body for HTTP send rules
9056 - DOC: Be more explicit about configurable check ok/error/timeout status
9057 - MINOR: checks: Make matching on HTTP headers for expect rules less obscure
9058 - BUG/MEDIUM: lua: Fix dumping of stick table entries for STD_T_DICT
9059 - BUG/MINOR: config: Make use_backend and use-server post-parsing less obscur
9060 - REGTESTS: make the http-check-send test require version 2.2
9061 - BUG/MINOR: http-ana: fix NTLM response parsing again
9062 - BUG/MEDIUM: http_ana: make the detection of NTLM variants safer
9063 - BUG/MINOR: cfgparse: Abort parsing the current line if an invalid \x sequence is encountered
9064 - MINOR: cfgparse: Improve error message for invalid \x sequences
9065 - CI: travis-ci: enable arm64 builds again
9066 - MEDIUM: ssl: increase default-dh-param to 2048
9067 - CI: travis-ci: skip pcre2 on arm64 build
9068 - CI: travis-ci: extend the build time for SSL to 60 minutes
9069 - CLEANUP: config: drop unused setting CONFIG_HAP_MEM_OPTIM
9070 - CLEANUP: config: drop unused setting CONFIG_HAP_INLINE_FD_SET
9071 - CLENAUP: config: move CONFIG_HAP_LOCKLESS_POOLS out of config.h
9072 - CLEANUP: remove THREAD_LOCAL from config.h
9073 - CI: travis-ci: upgrade LibreSSL versions
9074 - DOC: assorted typo fixes in the documentation
9075 - CI: extend spellchecker whitelist
9076 - CLEANUP: assorted typo fixes in the code and comments
9077 - MAJOR: contrib: porting spoa_server to support python3
9078 - BUG/MEDIUM: checks: Subscribe to I/O events on an unfinished connect
9079 - BUG/MINOR: checks: Don't subscribe to I/O events if it is already done
9080 - BUG/MINOR: checks: Rely on next I/O oriented rule when waiting for a connection
9081 - MINOR: checks: Don't try to send outgoing data if waiting to be able to send
9082 - MINOR: sample: Move aes_gcm_dec implementation into sample.c
9083 - MINOR: sample: Add digest and hmac converters
9084 - BUG/MEDIUM: checks: Subscribe to I/O events only if a mux was installed
9085 - BUG/MINOR: sample/ssl: Fix digest converter for openssl < 1.1.0
9086 - BUG/MINOR: pools: use %u not %d to report pool stats in "show pools"
9087 - BUG/MINOR: pollers: remove uneeded free in global init
9088 - CLEANUP: select: enhance readability in init
9089 - BUG/MINOR: soft-stop: always wake up waiting threads on stopping
9090 - MINOR: soft-stop: let the first stopper only signal other threads
9091 - BUILD: select: only declare existing local labels to appease clang
9092 - BUG/MEDIUM: streams: Remove SF_ADDR_SET if we're retrying due to L7 retry.
9093 - BUG/MEDIUM: stream: Only allow L7 retries when using HTTP.
9094 - DOC: retry-on can only be used with mode http
9095 - MEDIUM: ssl: allow to register callbacks for SSL/TLS protocol messages
9096 - MEDIUM: ssl: split ssl_sock_msgcbk() and use a new callback mechanism
9097 - MINOR: ssl: add a new function ssl_sock_get_ssl_object()
9098 - MEDIUM: ssl: use ssl_sock_get_ssl_object() in fetchers where appropriate
9099 - REORG: ssl: move macros and structure definitions to ssl_sock.h
9100 - CLEANUP: ssl: remove the shsess_* macros
9101 - REORG: move the crt-list structures in their own .h
9102 - REORG: ssl: move the ckch structures to types/ssl_ckch.h
9103 - CLEANUP: ssl: add ckch prototypes in proto/ssl_ckch.h
9104 - REORG: ssl: move crtlist functions to src/ssl_crtlist.c
9105 - CLEANUP: ssl: avoid circular dependencies in ssl_crtlist.h
9106 - REORG: ssl: move the ckch_store related functions to src/ssl_ckch.c
9107 - REORG: ssl: move ckch_inst functions to src/ssl_ckch.c
9108 - REORG: ssl: move the crt-list CLI functions in src/ssl_crtlist.c
9109 - REORG: ssl: move the CLI 'cert' functions to src/ssl_ckch.c
9110 - REORG: ssl: move ssl configuration to cfgparse-ssl.c
9111 - MINOR: ssl: remove static keyword in some SSL utility functions
9112 - REORG: ssl: move ssl_sock_ctx and fix cross-dependencies issues
9113 - REORG: ssl: move sample fetches to src/ssl_sample.c
9114 - REORG: ssl: move utility functions to src/ssl_utils.c
9115 - DOC: ssl: update MAINTAINERS file
9116 - CI: travis-ci: switch arm64 builds to use openssl from distro
9117 - MINOR: stats: Prepare for more accurate moving averages
9118 - MINOR: stats: Expose native cum_req metric for a server
9119 - MEDIUM: stats: Enable more accurate moving average calculation for stats
9120 - BUILD: ssl: include buffer common headers for ssl_sock_ctx
9121 - BUILD: ssl: include errno.h in ssl_crtlist.c
9122 - CLEANUP: acl: remove unused assignment
9123 - DOC/MINOR: halog: Add long help info for ic flag
9124 - BUILD: ssl: fix build without OPENSSL_NO_ENGINE
9125 - DOC: SPOE is no longer experimental
9126 - BUG/MINOR: cache: Don't needlessly test "cache" keyword in parse_cache_flt()
9127 - MINOR: config: Don't dump keywords if argument is NULL
9128 - MEDIUM: checks: Make post-41 the default mode for mysql checks
9129 - BUG/MINOR: logs: prevent double line returns in some events.
9130 - MEDIUM: sink: build header in sink_write for log formats
9131 - MEDIUM: logs: buffer targets now rely on new sink_write
9132 - MEDIUM: sink: add global statement to create a new ring (sink buffer)
9133 - MEDIUM: hpack: use a pool for the hpack table
9134 - BUG/MAJOR: mux-fcgi: Stop sending loop if FCGI stream is blocked for any reason
9135 - BUG/MEDIUM: ring: write-lock the ring while attaching/detaching
9136 - MINOR: applet: adopt the wait list entry from the CLI
9137 - MINOR: ring: make the applet code not depend on the CLI
9138 - Revert "MEDIUM: sink: add global statement to create a new ring (sink buffer)"
9139 - CI: travis-ci: fix libslz download URL
9140 - MINOR: ssl: split config and runtime variable for ssl-{min,max}-ver
9141 - CLEANUP: http_ana: Remove unused TXN flags
9142 - BUG/MINOR: http-rules: Mark http return rules as final
9143 - MINOR: http-htx: Add http_reply type based on what is used for http return rules
9144 - CLEANUP: http-htx: Rename http_error structure into http_error_msg
9145 - MINOR: http-rules: Use http_reply structure for http return rules
9146 - MINOR: http-htx: Use a dedicated function to release http_reply objects
9147 - MINOR: http-htx: Use a dedicated function to parse http reply arguments
9148 - MINOR: http-htx: Use a dedicated function to check http reply validity
9149 - MINOR: http-ana: Use a dedicated function to send a response from an http reply
9150 - MEDIUM: http-rules: Rely on http reply for http deny/tarpit rules
9151 - MINOR: http-htx: Store default error messages in a global http reply array
9152 - MINOR: http-htx: Store messages of an http-errors section in a http reply array
9153 - MINOR: http-htx: Store errorloc/errorfile messages in http replies
9154 - MINOR: proxy: Add references on http replies for proxy error messages
9155 - MINOR: http-htx: Use http reply from the http-errors section
9156 - MINOR: http-ana: Use a TXN flag to prevent after-response ruleset evaluation
9157 - MEDIUM: http-ana: Use http replies for HTTP error messages
9158 - CLEANUP: http-htx: Remove unused storage of error messages in buffers
9159 - MINOR: htx: Add a function to copy a buffer in an HTX message
9160 - CLEANUP: channel: Remove channel_htx_copy_msg() function
9161 - MINOR: http-ana: Add a function to write an http reply in an HTX message
9162 - MINOR: http-htx/proxy: Add http-error directive using http return syntax
9163 - DOC: Fix "errorfile" description in the configuration manual
9164 - BUG/MINOR: checks: Respect check-ssl param when a port or an addr is specified
9165 - BUILD: hpack: make sure the hpack table can still be built standalone
9166 - CONTRIB: hpack: make use of the simplified standalone HPACK API
9167 - MINOR: connection: add pp2-never-send-local to support old PP2 behavior
9168
Willy Tarreaufc0b8f32020-05-05 21:49:10 +020091692020/05/05 : 2.2-dev7
9170 - MINOR: version: Show uname output in display_version()
9171 - CI: run weekly OpenSSL "no-deprecated" builds
9172 - CLEANUP: log: fix comment of parse_logformat_string()
9173 - DOC: Improve documentation on http-request set-src
9174 - MINOR: ssl/cli: disallow SSL options for directory in 'add ssl crt-list'
9175 - MINOR: ssl/cli: restrain certificate path when inserting into a directory
9176 - MINOR: ssl: add ssl-skip-self-issued-ca global option
9177 - BUG/MINOR: ssl: default settings for ssl server options are not used
9178 - MINOR: config: add a global directive to set default SSL curves
9179 - BUG/MEDIUM: http-ana: Handle NTLM messages correctly.
9180 - DOC: internals: update the SSL architecture schema
9181 - BUG/MINOR: tools: fix the i386 version of the div64_32 function
9182 - BUG/MINOR: mux-fcgi/trace: fix wrong set of trace flags in fcgi_strm_add_eom()
9183 - BUG/MINOR: http: make url_decode() optionally convert '+' to SP
9184 - DOC: option logasap does not depend on mode
9185 - MEDIUM: memory: make pool_gc() run under thread isolation
9186 - MINOR: contrib: make the peers wireshark dissector a plugin
9187 - BUG/MINOR: http-ana: Throw a 500 error if after-response ruleset fails on errors
9188 - BUG/MINOR: check: Update server address and port to execute an external check
9189 - MINOR: mini-clist: Add functions to iterate backward on a list
9190 - MINOR: checks: Add a way to send custom headers and payload during http chekcs
9191 - MINOR: server: respect warning and alert semantic
9192 - BUG/MINOR: checks: Respect the no-check-ssl option
9193 - BUG/MEDIUM: server/checks: Init server check during config validity check
9194 - CLEANUP: checks: Don't export anymore init_check and srv_check_healthcheck_port
9195 - BUG/MINOR: checks: chained expect will not properly wait for enough data
9196 - BUG/MINOR: checks: Forbid tcp-check lines in default section as documented
9197 - MINOR: checks: Use an enum to describe the tcp-check rule type
9198 - MINOR: checks: Simplify connection flag parsing in tcp-check connect
9199 - MEDIUM: checks: rewind to the first inverse expect rule of a chain on new data
9200 - MINOR: checks: simplify tcp expect config parser
9201 - MINOR: checks: add min-recv tcp-check expect option
9202 - MINOR: checks: add linger option to tcp connect
9203 - MINOR: checks: define a tcp expect type
9204 - MEDIUM: checks: rewrite tcp-check expect block
9205 - MINOR: checks: Stop xform buffers to null-terminated string for tcp-check rules
9206 - MINOR: checks: add rbinary expect match type
9207 - MINOR: checks: Simplify functions to get step id and comment
9208 - MEDIUM: checks: capture groups in expect regexes
9209 - MINOR: checks: Don't use a static tcp rule list head
9210 - MEDIUM: checks: Use a non-comment rule iterator to get next rule
9211 - MEDIUM: proxy/checks: Register a keyword to parse tcp-check rules
9212 - MINOR: checks: Set the tcp-check rule index during parsing
9213 - MINOR: checks: define tcp-check send type
9214 - MINOR: checks: define a tcp-check connect type
9215 - MEDIUM: checks: Add implicit tcp-check connect rule
9216 - MAJOR: checks: Refactor and simplify the tcp-check loop
9217 - MEDIUM: checks: Associate a session to each tcp-check healthcheck
9218 - MINOR: checks/vars: Add a check scope for variables
9219 - MEDIUM: checks: Parse custom action rules in tcp-checks
9220 - MINOR: checks: Add support to set-var and unset-var rules in tcp-checks
9221 - MINOR: checks: Add the sni option for tcp-check connect rules
9222 - MINOR: checks: Add the via-socks4 option for tcp-check connect rules
9223 - MINOR: checks: Add the alpn option for tcp-check connect rules
9224 - MINOR: ssl: Export a generic function to parse an alpn string
9225 - MINOR: checks: Add the default option for tcp-check connect rules
9226 - MINOR: checks: Add the addr option for tcp-check connect rule
9227 - MEDIUM: checks: Support expression to set the port
9228 - MEDIUM: checks: Support log-format strings for tcp-check send rules
9229 - MINOR: log: Don't depends on a stream to process samples in log-format string
9230 - MINOR: log: Don't systematically set LW_REQ when a sample expr is added
9231 - MEDIUM: checks: Add a shared list of tcp-check rules
9232 - MINOR: sample: add htonl converter
9233 - MINOR: sample: add cut_crlf converter
9234 - MINOR: sample: add ltrim converter
9235 - MINOR: sample: add rtrim converter
9236 - MINOR: checks: Use a name for the healthcheck status enum
9237 - MINOR: checks: Add option to tcp-check expect rules to customize error status
9238 - MINOR: checks: Merge tcp-check comment rules with the others at config parsing
9239 - MINOR: checks: Add a sample fetch to extract a block from the input check buffer
9240 - MEDIUM: checks: Add on-error/on-success option on tcp-check expect rules
9241 - MEDIUM: checks: Add status-code sample expression on tcp-check expect rules
9242 - MINOR: checks: Relax the default option for tcp-check connect rules
9243 - MEDIUM: checks: Add a list of vars to set before executing a tpc-check ruleset
9244 - MINOR: checks: Export the tcpcheck_eval_ret enum
9245 - MINOR: checks: Use dedicated function to handle onsuccess/onerror messages
9246 - MINOR: checks: Support custom functions to eval a tcp-check expect rules
9247 - MEDIUM: checks: Implement redis check using tcp-check rules
9248 - MEDIUM: checks: Implement ssl-hello check using tcp-check rules
9249 - MEDIUM: checks: Implement smtp check using tcp-check rules
9250 - MEDIUM: checks: Implement postgres check using tcp-check rules
9251 - MEDIUM: checks: Implement MySQL check using tcp-check rules
9252 - MEDIUM: checks: Implement LDAP check using tcp-check rules
9253 - MEDIUM: checks: Implement SPOP check using tcp-check rules
9254 - MINOR: server/checks: Move parsing of agent keywords in checks.c
9255 - MINOR: server/checks: Move parsing of server check keywords in checks.c
9256 - MEDIUM: checks: Implement agent check using tcp-check rules
9257 - REGTEST: Adapt regtests about checks to recent changes
9258 - MINOR: Produce tcp-check info message for pure tcp-check rules only
9259 - MINOR: checks: Add an option to set success status of tcp-check expect rules
9260 - MINOR: checks: Improve log message of tcp-checks on success
9261 - MINOR: proxy/checks: Move parsing of httpchk option in checks.c
9262 - MINOR: proxy/checks: Move parsing of tcp-check option in checks.c
9263 - MINOR: proxy/checks: Register a keyword to parse http-check rules
9264 - MINOR: proxy/checks: Move parsing of external-check option in checks.c
9265 - MINOR: proxy/checks: Register a keyword to parse external-check rules
9266 - MEDIUM: checks: Use a shared ruleset to store tcp-check rules
9267 - MINOR: checks: Use an indirect string to represent the expect matching string
9268 - MINOR: checks: Introduce flags to configure in tcp-check expect rules
9269 - MINOR: standard: Add my_memspn and my_memcspn
9270 - MINOR: checks: Add a reverse non-comment rule iterator to get last rule
9271 - MAJOR: checks: Implement HTTP check using tcp-check rules
9272 - MINOR: checks: Make resume conditions more explicit in tcpcheck_main()
9273 - MINOR: connection: Add macros to know if a conn or a cs uses an HTX mux
9274 - MEDIUM: checks: Refactor how data are received in tcpcheck_main()
9275 - MINOR: checks/obj_type: Add a new object type for checks
9276 - BUG/MINOR: obj_type: Handle stream object in obj_base_ptr() function
9277 - MINOR: checks: Use the check as origin when a session is created
9278 - MINOR: checks: Add a mux proto to health-check and tcp-check connect rule
9279 - MINOR: connection: Add a function to install a mux for a health-check
9280 - MAJOR: checks: Use the best mux depending on the protocol for health checks
9281 - MEDIUM: checks: Implement default TCP check using tcp-check rules
9282 - MINOR: checks: Remove unused code about pure TCP checks
9283 - CLEANUP: checks: Reorg checks.c file to be more readable
9284 - REGTEST: Fix reg-tests about health-checks to adapt them to recent changes
9285 - MINOR: ist: Add a function to retrieve the ist pointer
9286 - MINOR: checks: Use ist API as far as possible
9287 - BUG/MEDIUM: checks: Be sure to subscribe for sends if outgoing data remains
9288 - MINOR: checks: Use a tree instead of a list to store tcp-check rulesets
9289 - BUG/MINOR: checks: Send the right amount of outgoing data for HTTP checks
9290 - REGTEST: Add scripts to test based tcp-check health-checks
9291 - Revert "MEDIUM: checks: capture groups in expect regexes"
9292 - DOC: Add documentation about comments for tcp-check and http-check directives
9293 - DOC: Fix the tcp-check and http-check directives layout
9294 - BUG/MEDIUM: checks: Use the mux protocol specified on the server line
9295 - MINOR: checks: Support mux protocol definition for tcp and http health checks
9296 - BUG/MINOR: mux-fcgi: Be sure to have a connection as session's origin to use it
9297 - MINOR: checks: Support list of status codes on http-check expect rules
9298 - BUG/MEDIUM: checks: Unsubscribe to mux events when a conn-stream is destroyed
9299 - REGTEST: Add a script to validate agent checks
9300 - BUG/MINOR: server: Fix server_finalize_init() to avoid unused variable
9301 - BUG/MEDIUM: checks: unsubscribe for events on the old conn-stream on connect
9302 - BUG/MINOR: checks: Only use ssl_sock_is_ssl() if compiled with SSL support
9303 - BUG/MINOR: checks/server: use_ssl member must be signed
9304 - BUG/MEDIUM: sessions: Always pass the mux context as argument to destroy a mux
9305 - BUG/MEDIUM: checks: Destroy the conn-stream before the session
9306 - BUG/MINOR: checks: Fix PostgreSQL regex on the authentication packet
9307 - CI: cirrus-ci: remove reg-tests/checks/tcp-check-ssl.vtc on CentOS 6
9308 - MINOR: checks: Support HTTP/2 version (without '.0') for http-check send rules
9309 - MINOR: checks: Use ver keyword to specify the HTTP version for http checks
9310 - BUG/MINOR: checks: Remove wrong variable redeclaration
9311 - BUG/MINOR: checks: Properly handle truncated mysql server messages
9312 - CLEANUP: checks: Remove unused code when ldap server message is parsed
9313 - MINOR: checks: Make the use of the check's server more explicit on connect
9314 - BUG/MINOR: checks: Avoid incompatible cast when a binary string is parsed
9315 - BUG/MINOR: checks: Remove bad call to free() when an expect rule is parsed
9316 - BUG/MINOR: checks: Don't lose warning on proxy capability
9317 - MINOR: log: Add "Tu" timer
9318 - BUG/MINOR: checks: Set the output buffer length before calling parse_binary()
9319 - BUG/MEDIUM: mux-h1: make sure we always have a timeout on front connections
9320 - REGTEST: ssl: test the client certificate authentication
9321 - DOC: give a more accurate description of what check does
9322 - BUG/MEDIUM: capture: capture-req/capture-res converters crash without a stream
9323 - BUG/MEDIUM: capture: capture.{req,res}.* crash without a stream
9324 - BUG/MEDIUM: http: the "http_first_req" sample fetch could crash without a steeam
9325 - BUG/MEDIUM: http: the "unique-id" sample fetch could crash without a steeam
9326 - CLEANUP: http: add a few comments on certain functions' assumptions about streams
9327 - BUG/MEDIUM: sample: make the CPU and latency sample fetches check for a stream
9328 - MINOR: http-htx: Export functions to update message authority and host
9329 - MINOR: checks: Don't support multiple host header for http-check send rule
9330 - MINOR: checks: Skip some headers for http-check send rules
9331 - MINOR: checks: Keep the Host header and the request uri synchronized
9332 - CLEANUP: checks: Fix checks includes
9333 - DOC: Fix send rules in the http-check connect example
9334 - DOC: Add more info about request formatting in http-check send description
9335 - REGTEST: http-rules: Require PCRE or PCRE2 option to run map_redirect script
9336 - REGTEST: ssl: remove curl from the "add ssl crt-list" test
9337 - REGTEST: ssl: improve the "set ssl cert" test
9338 - CLEANUP: ssl: silence a build warning when threads are disabled
9339 - BUG/MEDIUM: listener: mark the thread as not stuck inside the loop
9340 - MINOR: threads: export the POSIX thread ID in panic dumps
9341 - BUG/MINOR: debug: properly use long long instead of long for the thread ID
9342 - BUG/MEDIUM: shctx: really check the lock's value while waiting
9343 - BUG/MEDIUM: shctx: bound the number of loops that can happen around the lock
9344 - MINOR: stream: report the list of active filters on stream crashes
9345 - BUG/MEDIUM: mux-fcgi: Return from detach if server don't keep the connection
9346 - BUG/MEDIUM: mux_fcgi: Free the FCGI connection at the end of fcgi_release()
9347 - BUG/MEDIUM: mux-fcgi: Fix wrong test on FCGI_CF_KEEP_CONN in fcgi_detach()
9348 - BUG/MEDIUM: connections: force connections cleanup on server changes
9349 - BUG/MEDIUM: h1: Don't compare host and authority if only h1 headers are parsed
9350 - BUG/MEDIUM: ssl: fix the id length check within smp_fetch_ssl_fc_session_id()
9351 - CLEANUP: connections: align function declaration
9352 - BUG/MINOR: sample: Set the correct type when a binary is converted to a string
9353 - MEDIUM: checks/http-fetch: Support htx prefetch from a check for HTTP samples
9354 - DOC: Document the log-format parameter for tcp-check send/send-binary rules
9355 - MINOR: checks: Add support of payload-based sample fetches
9356 - MINOR: checks: Add support of be_id, be_name, srv_id and srv_name sample fetches
9357 - MINOR: checks: Add support of server side ssl sample fetches
9358 - MINOR: checks: Add support of HTTP response sample fetches
9359 - MINOR: http-htx: Support different methods to look for header names
9360 - MINOR: checks: Set by default expect rule status to UNKNOWN during parsing
9361 - BUG/MINOR: checks: Support multiple HTTP expect rules
9362 - REGTEST: checks: Fix sync condition for agent-check
9363 - MEDIUM: checks: Support matching on headers for http-check expect rules
9364 - MINOR: lua: allow changing port with set_addr
9365 - BUG/MINOR: da: Fix HTX message prefetch
9366 - BUG/MINOR: wurfl: Fix HTX message prefetch
9367 - BUG/MINOR: 51d: Fix HTX message prefetch
9368 - MINOR: ist: add istadv() function
9369 - MINOR: ist: add istissame() function
9370 - MINOR: istbuf: add ist2buf() function
9371 - BUG/MINOR: threads: fix multiple use of argument inside HA_ATOMIC_CAS()
9372 - BUG/MINOR: threads: fix multiple use of argument inside HA_ATOMIC_UPDATE_{MIN,MAX}()
9373 - DOC: update intro.txt for 2.2
9374 - DOC: intro: add a contacts section
9375
Willy Tarreaud0089302020-04-17 14:19:38 +020093762020/04/17 : 2.2-dev6
9377 - BUG/MINOR: ssl: memory leak when find_chain is NULL
9378 - CLEANUP: ssl: rename ssl_get_issuer_chain to ssl_get0_issuer_chain
9379 - MINOR: ssl: rework add cert chain to CTX to be libssl independent
9380 - BUG/MINOR: peers: init bind_proc to 1 if it wasn't initialized
9381 - BUG/MINOR: peers: avoid an infinite loop with peers_fe is NULL
9382 - BUG/MINOR: peers: Use after free of "peers" section.
9383 - CI: github actions: add weekly h2spec test
9384 - BUG/MEDIUM: mux_h1: Process a new request if we already received it.
9385 - MINOR: build: Fix build in mux_h1
9386 - CLEANUP: remove obsolete comments
9387 - BUG/MEDIUM: dns: improper parsing of aditional records
9388 - MINOR: ssl: skip self issued CA in cert chain for ssl_ctx
9389 - MINOR: listener: add so_name sample fetch
9390 - MEDIUM: stream: support use-server rules with dynamic names
9391 - MINOR: servers: Add a counter for the number of currently used connections.
9392 - MEDIUM: connections: Revamp the way idle connections are killed
9393 - MINOR: cli: add a general purpose pointer in the CLI struct
9394 - MINOR: ssl: add a list of bind_conf in struct crtlist
9395 - REORG: ssl: move SETCERT enum to ssl_sock.h
9396 - BUG/MINOR: ssl: ckch_inst wrongly inserted in crtlist_entry
9397 - REORG: ssl: move some functions above crtlist_load_cert_dir()
9398 - MINOR: ssl: use crtlist_free() upon error in directory loading
9399 - MINOR: ssl: add a list of crtlist_entry in ckch_store
9400 - MINOR: ssl: store a ptr to crtlist in crtlist_entry
9401 - MINOR: ssl/cli: update pointer to store in 'commit ssl cert'
9402 - MEDIUM: ssl/cli: 'add ssl crt-list' command
9403 - REGTEST: ssl/cli: test the 'add ssl crt-list' command
9404 - BUG/MINOR: ssl: entry->ckch_inst not initialized
9405 - REGTEST: ssl/cli: change test type to devel
9406 - REGTEST: make the PROXY TLV validation depend on version 2.2
9407 - CLEANUP: assorted typo fixes in the code and comments
9408 - BUG/MINOR: stats: Fix color of draining servers on stats page
9409 - DOC: internals: Fix spelling errors in filters.txt
9410 - MINOR: connections: Don't mark conn flags 0x00000001 and 0x00000002 as unused.
9411 - REGTEST: make the unique-id test depend on version 2.0
9412 - BUG/MEDIUM: dns: Consider the fact that dns answers are case-insensitive
9413 - MINOR: ssl: split the line parsing of the crt-list
9414 - MINOR: ssl/cli: support filters and options in add ssl crt-list
9415 - MINOR: ssl: add a comment above the ssl_bind_conf keywords
9416 - REGTEST: ssl/cli: tests options and filters w/ add ssl crt-list
9417 - REGTEST: ssl: pollute the crt-list file
9418 - BUG/CRITICAL: hpack: never index a header into the headroom after wrapping
9419 - BUG/MINOR: protocol_buffer: Wrong maximum shifting.
9420 - CLEANUP: src/fd.c: mask setsockopt with DISGUISE
9421 - BUG/MINOR: ssl/cli: initialize fcount int crtlist_entry
9422 - REGTEST: ssl/cli: add other cases of 'add ssl crt-list'
9423 - CLEANUP: assorted typo fixes in the code and comments
9424 - DOC: management: add the new crt-list CLI commands
9425 - BUG/MINOR: ssl/cli: fix spaces in 'show ssl crt-list'
9426 - MINOR: ssl/cli: 'del ssl crt-list' delete an entry
9427 - MINOR: ssl/cli: replace dump/show ssl crt-list by '-n' option
9428 - CI: use better SSL library definition
9429 - CI: travis-ci: enable DEBUG_STRICT=1 for CI builds
9430 - CI: travis-ci: upgrade openssl to 1.1.1f
9431 - MINOR: ssl: improve the errors when a crt can't be open
9432 - CI: cirrus-ci: rename openssl package after it is renamed in FreeBSD
9433 - CI: adopt openssl download script to download all versions
9434 - BUG/MINOR: ssl/cli: lock the ckch structures during crt-list delete
9435 - MINOR: ssl/cli: improve error for bundle in add/del ssl crt-list
9436 - MINOR: ssl/cli: 'del ssl cert' deletes a certificate
9437 - BUG/MINOR: ssl: trailing slashes in directory names wrongly cached
9438 - BUG/MINOR: ssl/cli: memory leak in 'set ssl cert'
9439 - CLEANUP: ssl: use the refcount for the SSL_CTX'
9440 - CLEANUP: ssl/cli: use the list of filters in the crtlist_entry
9441 - BUG/MINOR: ssl: memleak of the struct cert_key_and_chain
9442 - CLEANUP: ssl: remove a commentary in struct ckch_inst
9443 - MINOR: ssl: initialize all list in ckch_inst_new()
9444 - MINOR: ssl: free instances and SNIs with ckch_inst_free()
9445 - MINOR: ssl: replace ckchs_free() by ckch_store_free()
9446 - BUG/MEDIUM: ssl/cli: trying to access to free'd memory
9447 - MINOR: ssl: ckch_store_new() alloc and init a ckch_store
9448 - MINOR: ssl: crtlist_new() alloc and initialize a struct crtlist
9449 - REORG: ssl: move some free/new functions
9450 - MINOR: ssl: crtlist_entry_{new, free}
9451 - BUG/MINOR: ssl: ssl_conf always set to NULL on crt-list parsing
9452 - MINOR: ssl: don't alloc ssl_conf if no option found
9453 - BUG/MINOR: connection: always send address-less LOCAL PROXY connections
9454 - BUG/MINOR: peers: Incomplete peers sections should be validated.
9455 - MINOR: init: report in "haproxy -c" whether there were warnings or not
9456 - MINOR: init: add -dW and "zero-warning" to reject configs with warnings
9457 - MINOR: init: report the compiler version in haproxy -vv
9458 - CLEANUP: assorted typo fixes in the code and comments
9459 - MINOR: init: report the haproxy version and executable path once on errors
9460 - DOC: Make how "option redispatch" works more explicit
9461 - BUILD: Makefile: add linux-musl to TARGET
9462 - CLEANUP: assorted typo fixes in the code and comments
9463 - CLEANUP: http: Fixed small typo in parse_http_return
9464 - DOC: hashing: update link to hashing functions
9465
Willy Tarreau3328f182020-03-23 09:43:45 +010094662020/03/23 : 2.2-dev5
9467 - CLEANUP: ssl: is_default is a bit in ckch_inst
9468 - BUG/MINOR: ssl/cli: sni_ctx' mustn't always be used as filters
9469 - DOC: ssl: clarify security implications of TLS tickets
9470 - CLEANUP: remove support for Linux i686 vsyscalls
9471 - CLEANUP: drop support for USE_MY_ACCEPT4
9472 - CLEANUP: remove support for USE_MY_EPOLL
9473 - CLEANUP: remove support for USE_MY_SPLICE
9474 - CLEANUP: remove the now unused common/syscall.h
9475 - BUILD: make dladdr1 depend on glibc version and not __USE_GNU
9476 - BUILD: wdt: only test for SI_TKILL when compiled with thread support
9477 - BUILD: Makefile: the compiler-specific flags should all be in SPEC_CFLAGS
9478 - CLEANUP: ssl: separate the directory loading in a new function
9479 - BUG/MINOR: buffers: MT_LIST_DEL_SAFE() expects the temporary pointer.
9480 - BUG/MEDIUM: mt_lists: Make sure we set the deleted element to NULL;
9481 - MINOR: init: move the maxsock calculation code to compute_ideal_maxsock()
9482 - MEDIUM: init: always try to push the FD limit when maxconn is set from -m
9483 - BUG/MAJOR: list: fix invalid element address calculation
9484 - BUILD: stream-int: fix a few includes dependencies
9485 - MINOR: mt_lists: Appease gcc.
9486 - MINOR: lists: Implement function to convert list => mt_list and mt_list => list
9487 - MINOR: servers: Kill priv_conns.
9488 - MINOR: lists: fix indentation.
9489 - BUG/MEDIUM: random: align the state on 2*64 bits for ARM64
9490 - BUG/MEDIUM: connections: Don't assume the connection has a valid session.
9491 - BUG/MEDIUM: pools: Always update free_list in pool_gc().
9492 - BUG/MINOR: haproxy: always initialize sleeping_thread_mask
9493 - BUG/MINOR: listener/mq: do not dispatch connections to remote threads when stopping
9494 - BUG/MINOR: haproxy/threads: try to make all threads leave together
9495 - Revert "BUILD: travis-ci: enable s390x builds"
9496 - BUILD: travis-ci: enable regular s390x builds
9497 - DOC: proxy_protocol: Reserve TLV type 0x05 as PP2_TYPE_UNIQUE_ID
9498 - MINOR: proxy_protocol: Ingest PP2_TYPE_UNIQUE_ID on incoming connections
9499 - MEDIUM: proxy_protocol: Support sending unique IDs using PPv2
9500 - CLEANUP: connection: Add blank line after declarations in PP handling
9501 - CLEANUP: assorted typo fixes in the code and comments
9502 - CI: add spellcheck github action
9503 - DOC: correct typo in alert message about rspirep
9504 - CI: travis: switch linux builds to clang-9
9505 - MINOR: debug: add a new DISGUISE() macro to pass a value as identity
9506 - MINOR: debug: consume the write() result in BUG_ON() to silence a warning
9507 - MINOR: use DISGUISE() everywhere we deliberately want to ignore a result
9508 - BUILD: pools: silence build warnings with DEBUG_MEMORY_POOLS and DEBUG_UAF
9509 - CLEANUP: connection: Stop directly setting an ist's .ptr
9510 - CI: travis: revert to clang-7 for BoringSSL tests
9511 - BUILD: on ARM, must be linked to libatomic.
9512 - BUILD: makefile: fix regex syntax in ARM platform detection
9513 - BUG/MEDIUM: peers: resync ended with RESYNC_PARTIAL in wrong cases.
9514 - REORG: ssl: move ssl_sock_load_cert()
9515 - MINOR: ssl: pass ckch_inst to ssl_sock_load_ckchs()
9516 - MEDIUM: ssl: allow crt-list caching
9517 - MINOR: ssl: directories are loaded like crt-list
9518 - BUG/MINOR: ssl: can't open directories anymore
9519 - BUG/MEDIUM: spoe: dup agent's engine_id string from trash.area
9520 - MINOR: fd: Use a separate lock for logs instead of abusing the fd lock.
9521 - MINOR: mux_pt: Don't try to remove the connection from the idle list.
9522 - MINOR: ssl/cli: show/dump ssl crt-list
9523 - BUG/MINOR: ssl/cli: free the trash chunk in dump_crtlist
9524 - MEDIUM: fd: Introduce a running mask, and use it instead of the spinlock.
9525 - BUG/MINOR: ssl: memory leak in crtlist_parse_file()
9526 - MINOR: tasks: Provide the tasklet to the callback.
9527 - BUG/MINOR: ssl: memleak of struct crtlist_entry
9528 - BUG/MINOR: pattern: Do not pass len = 0 to calloc()
9529 - BUILD: makefile: fix expression again to detect ARM platform
9530 - CI: travis: re-enable ASAN on clang
9531 - CI: travis: proper group output redirection together with travis_wait
9532 - DOC: assorted typo fixes in the documentation
9533 - MINOR: wdt: Move the definitions of WDTSIG and DEBUGSIG into types/signal.h.
9534 - BUG/MEDIUM: wdt: Don't ignore WDTSIG and DEBUGSIG in __signal_process_queue().
9535 - MINOR: memory: Change the flush_lock to a spinlock, and don't get it in alloc.
9536 - MINOR: ssl/cli: 'new ssl cert' command
9537 - MINOR: ssl/cli: show certificate status in 'show ssl cert'
9538 - MEDIUM: sessions: Don't be responsible for connections anymore.
9539 - MEDIUM: servers: Split the connections into idle, safe, and available.
9540 - MINOR: fd: Implement fd_takeover().
9541 - MINOR: connections: Add a new mux method, "takeover".
9542 - MINOR: connections: Make the "list" element a struct mt_list instead of list.
9543 - MINOR: connections: Add a flag to know if we're in the safe or idle list.
9544 - MEDIUM: connections: Attempt to get idle connections from other threads.
9545 - MEDIUM: mux_h1: Implement the takeover() method.
9546 - MEDIUM: mux_h2: Implement the takeover() method.
9547 - MEDIUM: mux_fcgi: Implement the takeover() method.
9548 - MEDIUM: connections: Kill connections even if we are reusing one.
9549 - BUG/MEDIUM: connections: Don't forget to decrement idle connection counters.
9550 - BUG/MINOR: ssl: Do not free garbage pointers on memory allocation failure
9551 - BUG/MINOR: ssl: Correctly add the 1 for the sentinel to the number of elements
9552 - BUG/MINOR: ssl: crtlist_dup_filters() must return NULL with fcount == 0
9553 - BUG/MEDIUM: build: Fix compilation by spelling decl correctly.
9554 - BUILD/MEDIUM: fd: Declare fd_mig_lock as extern.
9555 - CI: run travis-ci builds on push only, skip pull requests
9556 - CI: temporarily disable unstable travis arm64 builds
9557 - BUG/MINOR: ssl/cli: free BIO upon error in 'show ssl cert'
9558 - BUG/MINOR: connections: Make sure we free the connection on failure.
9559 - BUG/MINOR: ssl/cli: fix a potential NULL dereference
9560 - BUG/MEDIUM: h1: Make sure we subscribe before going into idle list.
9561 - BUG/MINOR: connections: Set idle_time before adding to idle list.
9562 - MINOR: muxes: Note that we can't usee a connection when added to the srv idle.
9563 - REGTEST: increase timeouts on the seamless-reload test
9564 - BUG/MINOR: haproxy/threads: close a possible race in soft-stop detection
9565 - CLEANUP: haproxy/threads: don't check global_tasks_mask twice
9566
Willy Tarreau5a753bd2020-03-09 14:57:20 +010095672020/03/09 : 2.2-dev4
9568 - MEDIUM: buffer: remove the buffer_wq lock
9569 - MINOR: ssl: move find certificate chain code to its own function
9570 - MINOR: ssl: resolve issuers chain later
9571 - MINOR: ssl: resolve ocsp_issuer later
9572 - MINOR: ssl/cli: "show ssl cert" command should print the "Chain Filename:"
9573 - BUG/MINOR: h2: reject again empty :path pseudo-headers
9574 - MINOR: wdt: always clear sigev_value to make valgrind happy
9575 - MINOR: epoll: always initialize all of epoll_event to please valgrind
9576 - BUG/MINOR: sample: Make sure to return stable IDs in the unique-id fetch
9577 - BUG/MEDIUM: ssl: chain must be initialized with sk_X509_new_null()
9578 - BUILD: cirrus-ci: suppress OS version check when installing packages
9579 - BUG/MINOR: http_ana: make sure redirect flags don't have overlapping bits
9580 - CLEANUP: fd: remove the FD_EV_STATUS aggregate
9581 - CLEANUP: fd: remove some unneeded definitions of FD_EV_* flags
9582 - MINOR: fd: merge the read and write error bits into RW error
9583 - BUG/MINOR: dns: ignore trailing dot
9584 - MINOR: contrib/prometheus-exporter: Add the last heathcheck duration metric
9585 - BUG/MINOR: http-htx: Do case-insensive comparisons on Host header name
9586 - MINOR: mux-h1: Remove useless case-insensitive comparisons
9587 - MINOR: rawsock: always mark the FD not ready when we're certain it happens
9588 - MEDIUM: connection: make the subscribe() call able to wakeup if ready
9589 - MEDIUM: connection: don't stop receiving events in the FD handler
9590 - MEDIUM: mux-h1: do not blindly wake up the tasklet at end of request anymore
9591 - BUG/MINOR: arg: don't reject missing optional args
9592 - MINOR: tools: make sure to correctly check the returned 'ms' in date2std_log
9593 - MINOR: debug: report the task handler's pointer relative to main
9594 - BUG/MEDIUM: debug: make the debug_handler check for the thread in threads_to_dump
9595 - MINOR: haproxy: export main to ease access from debugger
9596 - MINOR: haproxy: export run_poll_loop
9597 - MINOR: task: export run_tasks_from_list
9598 - BUILD: tools: remove obsolete and conflicting trace() from standard.c
9599 - MINOR: tools: add new function dump_addr_and_bytes()
9600 - MINOR: tools: add resolve_sym_name() to resolve function pointers
9601 - MINOR: debug: use resolve_sym_name() to dump task handlers
9602 - MINOR: cli: make "show fd" rely on resolve_sym_name()
9603 - MEDIUM: debug: add support for dumping backtraces of stuck threads
9604 - MINOR: debug: call backtrace() once upon startup
9605 - MINOR: ssl: add "ca-verify-file" directive
9606 - BUG/MINOR: wdt: do not return an error when the watchdog couldn't be enabled
9607 - BUILD: Makefile: include librt before libpthread
9608 - MEDIUM: wdt: fall back to CLOCK_REALTIME if CLOCK_THREAD_CPUTIME is not available
9609 - MINOR: wdt: do not depend on USE_THREAD
9610 - MINOR: debug: report the number of entries in the backtrace
9611 - MINOR: debug: improve backtrace() on aarch64 and possibly other systems
9612 - MINOR: debug: use our own backtrace function on clang+x86_64
9613 - MINOR: debug: dump the whole trace if we can't spot the starting point
9614 - BUILD: tools: unbreak resolve_sym_name() on non-GNU platforms
9615 - BUILD: tools: rely on __ELF__ not USE_DL to enable use of dladdr()
9616 - CLEANUP: contrib/spoa_example: Fix several typos
9617 - BUILD: makefile: do not modify the build options during make reg-tests
9618 - BUG/MEDIUM: connection: stop polling for sending when the event is ready
9619 - MEDIUM: stream-int: make sure to try to immediately validate the connection
9620 - MINOR: tcp/uxst/sockpair: only ask for I/O when really waiting for a connect()
9621 - MEDIUM: connection: only call ->wake() for connect() without I/O
9622 - OPTIM: connection: disable receiving on disabled events when the run queue is too high
9623 - OPTIM: mux-h1: subscribe rather than waking up at a few other places
9624 - REGTEST: Add unique-id reg-test
9625 - MINOR: stream: Add stream_generate_unique_id function
9626 - MINOR: stream: Use stream_generate_unique_id
9627 - BUG/MINOR: connection/debug: do not enforce !event_type on subscribe() anymore
9628 - MINOR: ssl/cli: support crt-list filters
9629 - MINOR: ssl: reach a ckch_store from a sni_ctx
9630 - DOC: fix incorrect indentation of http_auth_*
9631 - BUG/MINOR: ssl-sock: do not return an uninitialized pointer in ckch_inst_sni_ctx_to_sni_filters
9632 - MINOR: debug: add CLI command "debug dev write" to write an arbitrary size
9633 - MINOR: ist: Add `IST_NULL` macro
9634 - MINOR: ist: Add `int isttest(const struct ist)`
9635 - MINOR: ist: Add `struct ist istalloc(size_t)` and `void istfree(struct ist*)`
9636 - CLEANUP: Use `isttest()` and `istfree()`
9637 - MINOR: ist: Add `struct ist istdup(const struct ist)`
9638 - MINOR: proxy: Make `header_unique_id` a `struct ist`
9639 - MEDIUM: stream: Make the `unique_id` member of `struct stream` a `struct ist`
9640 - OPTIM: startup: fast unique_id allocation for acl.
9641 - DOC: configuration.txt: fix various typos
9642 - DOC: assorted typo fixes in the documentation and Makefile
9643 - BUG/MINOR: init: make the automatic maxconn consider the max of soft/hard limits
9644 - BUG/MAJOR: proxy_protocol: Properly validate TLV lengths
9645 - CLEANUP: proxy_protocol: Use `size_t` when parsing TLVs
9646 - MINOR: buf: Add function to insert a string at an absolute offset in a buffer
9647 - MINOR: htx: Add a function to return a block at a specific offset
9648 - MINOR: htx: Use htx_find_offset() to truncate an HTX message
9649 - MINOR: flt_trace: Use htx_find_offset() to get the available payload length
9650 - BUG/MINOR: filters: Use filter offset to decude the amount of forwarded data
9651 - BUG/MINOR: filters: Forward everything if no data filters are called
9652 - BUG/MEDIUM: cache/filters: Fix loop on HTX blocks caching the response payload
9653 - BUG/MEDIUM: compression/filters: Fix loop on HTX blocks compressing the payload
9654 - BUG/MINOR: http-ana: Reset request analysers on a response side error
9655 - BUG/MINOR: lua: Abort when txn:done() is called from a Lua action
9656 - BUG/MINOR: lua: Ignore the reserve to know if a channel is full or not
9657 - MINOR: lua: Add function to know if a channel is a response one
9658 - MINOR: lua: Stop using the lua txn in hlua_http_get_headers()
9659 - MINOR: lua: Stop using the lua txn in hlua_http_rep_hdr()
9660 - MINOR: lua: Stop using lua txn in hlua_http_del_hdr() and hlua_http_add_hdr()
9661 - MINOR: lua: Remove the flag HLUA_TXN_HTTP_RDY
9662 - MINOR: lua: Rename hlua_action_wake_time() to hlua_set_wake_time()
9663 - BUG/MINOR: lua: Init the lua wake_time value before calling a lua function
9664 - BUG/MINOR: http-rules: Return ACT_RET_ABRT to abort a transaction
9665 - BUG/MINOR: http-rules: Preserve FLT_END analyzers on reject action
9666 - BUG/MINOR: http-rules: Fix a typo in the reject action function
9667 - MINOR: cache/filters: Initialize the cache filter when stream is created
9668 - MINOR: compression/filters: Initialize the comp filter when stream is created
9669 - BUG/MINOR: rules: Preserve FLT_END analyzers on silent-drop action
9670 - BUG/MINOR: rules: Return ACT_RET_ABRT when a silent-drop action is executed
9671 - BUG/MINOR: rules: Increment be_counters if backend is assigned for a silent-drop
9672 - BUG/MINOR: http-rules: Abort transaction when a redirect is applied on response
9673 - BUILD: buffer: types/{ring.h,checks.h} should include buf.h, not buffer.h
9674 - BUILD: ssl: include mini-clist.h
9675 - BUILD: global: must not include common/standard.h but only types/freq_ctr.h
9676 - BUILD: freq_ctr: proto/freq_ctr needs to include common/standard.h
9677 - BUILD: listener: types/listener.h must not include standard.h
9678 - BUG/MEDIUM: random: initialize the random pool a bit better
9679 - BUG/MEDIUM: random: implement per-thread and per-process random sequences
9680 - Revert "BUG/MEDIUM: random: implement per-thread and per-process random sequences"
9681 - BUILD: cirrus-ci: get rid of unstable freebsd images
9682 - MINOR: tools: add 64-bit rotate operators
9683 - BUG/MEDIUM: random: implement a thread-safe and process-safe PRNG
9684 - MINOR: backend: use a single call to ha_random32() for the random LB algo
9685 - BUG/MINOR: checks/threads: use ha_random() and not rand()
9686 - MINOR: sample: make all bits random on the rand() sample fetch
9687 - MINOR: tools: add a generic function to generate UUIDs
9688 - DOC: fix typo about no-tls-tickets
9689 - DOC: improve description of no-tls-tickets
9690 - DOC: assorted typo fixes in the documentation
9691 - CLEANUP: remove unused code in 'my_ffsl/my_flsl' functions
9692
Willy Tarreau32bf97f2020-02-25 18:14:02 +010096932020/02/25 : 2.2-dev3
9694 - SCRIPTS: announce-release: place the send command in the mail's header
9695 - SCRIPTS: announce-release: allow the user to force to overwrite old files
9696 - SCRIPTS: backport: fix the master branch detection
9697 - BUG/MINOR: http-act: Set stream error flag before returning an error
9698 - BUG/MINOR: http-act: Fix bugs on error path during parsing of return actions
9699 - BUG/MEDIUM: ssl/cli: 'commit ssl cert' wrong SSL_CTX init
9700 - BUG/MEDIUM: tcp-rules: Fix track-sc* actions for L4/L5 TCP rules
9701 - DOC: schematic of the SSL certificates architecture
9702 - BUG/MAJOR: mux-h2: don't wake streams after connection was destroyed
9703 - BUG/MINOR: unix: better catch situations where the unix socket path length is close to the limit
9704 - BUILD: cirrus-ci: switch to "snap" images to unify openssl naming
9705 - BUILD: cirrus-ci: workaround "pkg install" bug
9706 - BUILD: cirrus-ci: add ERR=1 to freebsd builds
9707 - BUG/MINOR: connection: correctly retry I/O on signals
9708 - CLEANUP: mini-clist: simplify nested do { while(1) {} } while (0)
9709 - BUILD: http_act: cast file sizes when reporting file size error
9710 - BUG/MEDIUM: listener: only consider running threads when resuming listeners
9711 - BUG/MINOR: listener: enforce all_threads_mask on bind_thread on init
9712 - BUG/MINOR: tcp: avoid closing fd when socket failed in tcp_bind_listener
9713 - MINOR: build: add aix72-gcc build TARGET and power{8,9} CPUs
9714 - BUILD: travis-ci: no more allowed failures for openssl-1.0.2
9715 - BUILD: travis-ci: harden builds, add ERR=1 (warning ought to be errors)
9716 - BUILD: scripts/build-ssl.sh: use "uname" instead of ${TRAVIS_OS_NAME}
9717 - BUG/MINOR: tcp: don't try to set defaultmss when value is negative
9718 - SCRIPTS: make announce-release executable again
9719 - BUG/MINOR: namespace: avoid closing fd when socket failed in my_socketat
9720 - BUG/MEDIUM: muxes: Use the right argument when calling the destroy method.
9721 - BUG/MINOR: mux-fcgi: Forbid special characters when matching PATH_INFO param
9722 - CLEANUP: ssl: remove unused functions in openssl-compat.h
9723 - MINOR: mux-fcgi: Make the capture of the path-info optional in pathinfo regex
9724 - MINOR: tools: add is_idchar() to tell if a char may belong to an identifier
9725 - MINOR: chunk: implement chunk_strncpy() to copy partial strings
9726 - MINOR: sample/acl: use is_idchar() to locate the fetch/conv name
9727 - MEDIUM: arg: make make_arg_list() stop after its own arguments
9728 - MEDIUM: arg: copy parsed arguments into the trash instead of allocating them
9729 - MEDIUM: arg: make make_arg_list() support quotes in arguments
9730 - MINOR: sample: make sample_parse_expr() able to return an end pointer
9731 - MEDIUM: log-format: make the LF parser aware of sample expressions' end
9732 - BUG/MINOR: arg: report an error if an argument is larger than bufsize
9733 - SCRIPTS: announce-release: use mutt -H instead of -i to include the draft
9734 - BUILD: enable ERR=1 in github cygwin builds
9735 - BUG/MINOR: arg: fix again incorrect argument length check
9736 - MINOR: sample: regsub now supports backreferences
9737 - BUG/MINOR: tools: also accept '+' as a valid character in an identifier
9738 - MINOR: http-htx: Add a function to retrieve the headers size of an HTX message
9739 - MINOR: filters: Forward data only if the last filter forwards something
9740 - BUG/MINOR: filters: Count HTTP headers as filtered data but don't forward them
9741 - BUG/MINOR: http-htx: Don't return error if authority is updated without changes
9742 - BUG/MINOR: stream: Don't incr frontend cum_req counter when stream is closed
9743 - BUG/MINOR: sample: exit regsub() in case of trash allocation error
9744 - MINOR: ssl: add "issuers-chain-path" directive.
9745 - REGTESTS: use "command -v" instead of "which"
9746 - BUG/MINOR: http-ana: Matching on monitor-uri should be case-sensitive
9747 - MINOR: http-ana: Match on the path if the monitor-uri starts by a /
9748 - BUG/MINOR: ssl: Stop passing dynamic strings as format arguments
9749 - BUG/MAJOR: http-ana: Always abort the request when a tarpit is triggered
9750 - BUG/MINOR: mux: do not call conn_xprt_stop_recv() on buffer shortage
9751 - MINOR: checks: do not call conn_xprt_stop_send() anymore
9752 - CLEANUP: epoll: place the struct epoll_event in the stack
9753 - MEDIUM: connection: remove the intermediary polling state from the connection
9754 - MINOR: raw_sock: directly call fd_stop_send() and not conn_xprt_stop_send()
9755 - MINOR: tcp/uxst/sockpair: use fd_want_send() instead of conn_xprt_want_send()
9756 - MINOR: connection: remove the last calls to conn_xprt_{want,stop}_*
9757 - CLEANUP: connection: remove the definitions of conn_xprt_{stop,want}_{send,recv}
9758 - MINOR: connection: introduce a new receive flag: CO_RFL_READ_ONCE
9759 - MINOR: mux-h1: pass CO_RFL_READ_ONCE to the lower layers when relevant
9760 - MINOR: ist: add an iststop() function
9761 - BUG/MINOR: http: http-request replace-path duplicates the query string
9762 - CLEANUP: sample: use iststop instead of a for loop
9763 - BUG/MEDIUM: shctx: make sure to keep all blocks aligned
9764 - MINOR: compiler: move CPU capabilities definition from config.h and complete them
9765 - BUG/MEDIUM: ebtree: don't set attribute packed without unaligned access support
9766 - CLEANUP: http/h1: rely on HA_UNALIGNED_LE instead of checking for CPU families
9767 - BUILD: fix recent build failure on unaligned archs
9768 - MINOR: ssl: load the key from a dedicated file
9769 - BUG/MINOR: ssl: load .key in a directory only after PEM
9770 - MINOR: compiler: drop special cases of likely/unlikely for older compilers
9771 - CLEANUP: conn: Do not pass a pointer to likely
9772 - CLEANUP: net_helper: Do not negate the result of unlikely
9773 - BUILD: remove obsolete support for -mregparm / USE_REGPARM
9774 - CLEANUP: cfgparse: Fix type of second calloc() parameter
9775 - BUILD: ssl: only pass unsigned chars to isspace()
9776 - BUILD: general: always pass unsigned chars to is* functions
9777 - BUG/MINOR: sample: fix the json converter's endian-sensitivity
9778 - BUG/MEDIUM: ssl: fix several bad pointer aliases in a few sample fetch functions
9779 - CLEANUP: fd: use a union in fd_rm_from_fd_list() to shut aliasing warnings
9780 - CLEANUP: cache: use read_u32/write_u32 to access the cache entry's hash
9781 - CLEANUP: stick-tables: use read_u32() to display a node's key
9782 - CLEANUP: sample: use read_u64() in ipmask() to apply an IPv6 mask
9783 - MINOR: pattern: fix all remaining strict aliasing issues
9784 - CLEANUP: lua: fix aliasing issues in the address matching code
9785 - CLEANUP: connection: use read_u32() instead of a cast in the netscaler parser
9786 - BUILD: makefile: re-enable strict aliasing
9787 - BUG/MINOR: connection: make sure to correctly tag local PROXY connections
9788 - MINOR: compiler: add new alignment macros
9789 - BUILD: ebtree: improve architecture-specific alignment
9790 - MINOR: config: mark global.debug as deprecated
9791 - BUILD: travis-ci: enable s390x builds
9792 - MINOR: ssl/cli: 'show ssl cert' displays the chain
9793 - MINOR: ssl/cli: 'show ssl cert'displays the issuer in the chain
9794 - MINOR: ssl/cli: reorder 'show ssl cert' output
9795 - CLEANUP: ssl: move issuer_chain tree and definition
9796 - DOC: proxy-protocol: clarify IPv6 address representation in the spec
9797
Willy Tarreau4c47d912020-02-07 04:12:19 +010097982020/02/07 : 2.2-dev2
9799 - BUILD: CI: temporarily mark openssl-1.0.2 as allowed failure
9800 - MEDIUM: cli: Allow multiple filter entries for "show table"
9801 - BUG/MEDIUM: netscaler: Don't forget to allocate storage for conn->src/dst.
9802 - BUG/MINOR: ssl: ssl_sock_load_pem_into_ckch is not consistent
9803 - BUILD: stick-table: fix build errors introduced by last stick-table change
9804 - BUG/MINOR: cli: Missing arg offset for filter data values.
9805 - MEDIUM: streams: Always create a conn_stream in connect_server().
9806 - MEDIUM: connections: Get ride of the xprt_done callback.
9807 - CLEANUP: changelog: remove the duplicate entry for 2.2-dev1
9808 - BUILD: CI: move cygwin builds to Github Actions
9809 - MINOR: cli: Report location of errors or any extra data for "show table"
9810 - BUG/MINOR: ssl/cli: free the previous ckch content once a PEM is loaded
9811 - CLEANUP: backend: remove useless test for inexistent connection
9812 - CLEANUP: backend: shut another false null-deref in back_handle_st_con()
9813 - CLEANUP: stats: shut up a wrong null-deref warning from gcc 9.2
9814 - BUG/MINOR: ssl: increment issuer refcount if in chain
9815 - BUG/MINOR: ssl: memory leak w/ the ocsp_issuer
9816 - BUG/MINOR: ssl: typo in previous patch
9817 - BUG/MEDIUM: connections: Set CO_FL_CONNECTED in conn_complete_session().
9818 - BUG/MINOR: ssl/cli: ocsp_issuer must be set w/ "set ssl cert"
9819 - MEDIUM: connection: remove CO_FL_CONNECTED and only rely on CO_FL_WAIT_*
9820 - BUG/MEDIUM: 0rtt: Only consider the SSL handshake.
9821 - MINOR: stream-int: always report received shutdowns
9822 - MINOR: connection: remove CO_FL_SSL_WAIT_HS from CO_FL_HANDSHAKE
9823 - MEDIUM: connection: use CO_FL_WAIT_XPRT more consistently than L4/L6/HANDSHAKE
9824 - MINOR: connection: remove checks for CO_FL_HANDSHAKE before I/O
9825 - MINOR: connection: do not check for CO_FL_SOCK_RD_SH too early
9826 - MINOR: connection: don't check for CO_FL_SOCK_WR_SH too early in handshakes
9827 - MINOR: raw-sock: always check for CO_FL_SOCK_WR_SH before sending
9828 - MINOR: connection: remove some unneeded checks for CO_FL_SOCK_WR_SH
9829 - BUG/MINOR: stktable: report the current proxy name in error messages
9830 - BUG/MEDIUM: mux-h2: make sure we don't emit TE headers with anything but "trailers"
9831 - MINOR: lua: Add hlua_prepend_path function
9832 - MINOR: lua: Add lua-prepend-path configuration option
9833 - MINOR: lua: Add HLUA_PREPEND_C?PATH build option
9834 - BUILD: cfgparse: silence a bogus gcc warning on 32-bit machines
9835 - BUG/MINOR: http-ana: Increment the backend counters on the backend
9836 - BUG/MINOR: stream: Be sure to have a listener to increment its counters
9837 - BUG/MEDIUM: streams: Move the conn_stream allocation outside #IF USE_OPENSSL.
9838 - REGTESTS: make the set_ssl_cert test require version 2.2
9839 - BUG/MINOR: ssl: Possible memleak when allowing the 0RTT data buffer.
9840 - MINOR: ssl: Remove dead code.
9841 - BUG/MEDIUM: ssl: Don't forget to free ctx->ssl on failure.
9842 - BUG/MEDIUM: stream: Don't install the mux in back_handle_st_con().
9843 - MEDIUM: streams: Don't close the connection in back_handle_st_con().
9844 - MEDIUM: streams: Don't close the connection in back_handle_st_rdy().
9845 - BUILD: CI: disable slow regtests on Travis
9846 - BUG/MINOR: tcpchecks: fix the connect() flags regarding delayed ack
9847 - BUG/MINOR: http-rules: Always init log-format expr for common HTTP actions
9848 - BUG/MINOR: connection: fix ip6 dst_port copy in make_proxy_line_v2
9849 - BUG/MINOR: dns: allow 63 char in hostname
9850 - MINOR: proxy: clarify number of connections log when stopping
9851 - DOC: word converter ignores delimiters at the start or end of input string
9852 - MEDIUM: raw-sock: remove obsolete calls to fd_{cant,cond,done}_{send,recv}
9853 - BUG/MINOR: ssl/cli: fix unused variable with openssl < 1.0.2
9854 - MEDIUM: pipe/thread: reduce the locking overhead
9855 - MEDIUM: pipe/thread: maintain a per-thread local cache of recently used pipes
9856 - BUG/MEDIUM: pipe/thread: fix atomicity of pipe counters
9857 - MINOR: tasks: move the list walking code to its own function
9858 - MEDIUM: tasks: implement 3 different tasklet classes with their own queues
9859 - MEDIUM: tasks: automatically requeue into the bulk queue an already running tasklet
9860 - OPTIM: task: refine task classes default CPU bandwidth ratios
9861 - BUG/MEDIUM: connections: Don't forget to unlock when killing a connection.
9862 - MINOR: task: permanently flag tasklets waking themselves up
9863 - MINOR: task: make sched->current also reflect tasklets
9864 - MINOR: task: detect self-wakeups on tl==sched->current instead of TASK_RUNNING
9865 - OPTIM: task: readjust CPU bandwidth distribution since last update
9866 - MINOR: task: don't set TASK_RUNNING on tasklets
9867 - BUG/MEDIUM: memory_pool: Update the seq number in pool_flush().
9868 - MINOR: memory: Only init the pool spinlock once.
9869 - BUG/MEDIUM: memory: Add a rwlock before freeing memory.
9870 - BUG/MAJOR: memory: Don't forget to unlock the rwlock if the pool is empty.
9871 - MINOR: ssl: ssl-load-extra-files configure loading of files
9872 - SCRIPTS: add a new "backport" script to simplify long series of backports
9873 - BUG/MINOR: ssl: we may only ignore the first 64 errors
9874 - SCRIPTS: use /usr/bin/env bash instead of /bin/bash for scripts
9875 - BUG/MINOR: ssl: clear the SSL errors on DH loading failure
9876 - CLEANUP: hpack: remove a redundant test in the decoder
9877 - CLEANUP: peers: Remove unused static function `free_dcache`
9878 - CLEANUP: peers: Remove unused static function `free_dcache_tx`
9879 - CONTRIB: debug: add missing flags SF_HTX and SF_MUX
9880 - CONTRIB: debug: add the possibility to decode the value as certain types only
9881 - CONTRIB: debug: support reporting multiple values at once
9882 - BUG/MINOR: http-act: Use the good message to test strict rewritting mode
9883 - MINOR: global: Set default tune.maxrewrite value during global structure init
9884 - MINOR: http-rules: Set SF_ERR_PRXCOND termination flag when a header rewrite fails
9885 - MINOR: http-htx: Emit a warning if an error file runs over the buffer's reserve
9886 - MINOR: htx: Add a function to append an HTX message to another one
9887 - MINOR: htx/channel: Add a function to copy an HTX message in a channel's buffer
9888 - BUG/MINOR: http-ana: Don't overwrite outgoing data when an error is reported
9889 - MINOR: dns: Dynamically allocate dns options to reduce the act_rule size
9890 - MINOR: dns: Add function to release memory allocated for a do-resolve rule
9891 - BUG/MINOR: http-ana: Reset HTX first index when HAPRoxy sends a response
9892 - BUG/MINOR: http-ana: Set HTX_FL_PROXY_RESP flag if a server perform a redirect
9893 - MINOR: http-rules: Add a flag on redirect rules to know the rule direction
9894 - MINOR: http-rules: Handle the rule direction when a redirect is evaluated
9895 - MINOR: http-ana: Rely on http_reply_and_close() to handle server error
9896 - MINOR: http-ana: Add a function for forward internal responses
9897 - MINOR: http-ana/http-rules: Use dedicated function to forward internal responses
9898 - MEDIUM: http: Add a ruleset evaluated on all responses just before forwarding
9899 - MEDIUM: http-rules: Add the return action to HTTP rules
9900 - MEDIUM: http-rules: Support extra headers for HTTP return actions
9901 - CLEANUP: lua: Remove consistency check for sample fetches and actions
9902 - BUG/MINOR: http-ana: Increment failed_resp counters on invalid response
9903 - MINOR: lua: Get the action return code on the stack when an action finishes
9904 - MINOR: lua: Create the global 'act' object to register all action return codes
9905 - MINOR: lua: Add act:wake_time() function to set a timeout when an action yields
9906 - MEDIUM: lua: Add ability for actions to intercept HTTP messages
9907 - REGTESTS: Add reg tests for the HTTP return action
9908 - REGTESTS: Add a reg test for http-after-response rulesets
9909 - BUILD: lua: silence a warning on systems where longjmp is not marked as noreturn
9910 - MINOR: acl: Warn when an ACL is named 'or'
9911 - CONTRIB: debug: also support reading values from stdin
9912 - SCRIPTS: backport: use short revs and resolve the initial commit
9913 - BUG/MINOR: acl: Fix type of log message when an acl is named 'or'
9914
Willy Tarreau71f95fa2020-01-22 10:34:58 +010099152020/01/22 : 2.2-dev1
9916 - DOC: this is development again
9917 - MINOR: version: this is development again, update the status
9918 - SCRIPTS: update create-release to fix the changelog on new branches
9919 - CLEANUP: ssl: Clean up error handling
9920 - BUG/MINOR: contrib/prometheus-exporter: decode parameter and value only
9921 - BUG/MINOR: h1: Don't test the host header during response parsing
9922 - BUILD/MINOR: trace: fix use of long type in a few printf format strings
9923 - DOC: Clarify behavior of server maxconn in HTTP mode
9924 - MINOR: ssl: deduplicate ca-file
9925 - MINOR: ssl: compute ca-list from deduplicate ca-file
9926 - MINOR: ssl: deduplicate crl-file
9927 - CLEANUP: dns: resolution can never be null
9928 - BUG/MINOR: http-htx: Don't make http_find_header() fail if the value is empty
9929 - DOC: ssl/cli: set/commit/abort ssl cert
9930 - BUG/MINOR: ssl: fix SSL_CTX_set1_chain compatibility for openssl < 1.0.2
9931 - BUG/MINOR: fcgi-app: Make the directive pass-header case insensitive
9932 - BUG/MINOR: stats: Fix HTML output for the frontends heading
9933 - BUG/MINOR: ssl: fix X509 compatibility for openssl < 1.1.0
9934 - DOC: clarify matching strings on binary fetches
9935 - DOC: Fix ordered list in summary
9936 - DOC: move the "group" keyword at the right place
9937 - MEDIUM: init: prevent process and thread creation at runtime
9938 - BUG/MINOR: ssl/cli: 'ssl cert' cmd only usable w/ admin rights
9939 - BUG/MEDIUM: stream-int: don't subscribed for recv when we're trying to flush data
9940 - BUG/MINOR: stream-int: avoid calling rcv_buf() when splicing is still possible
9941 - BUG/MINOR: ssl/cli: don't overwrite the filters variable
9942 - BUG/MEDIUM: listener/thread: fix a race when pausing a listener
9943 - BUG/MINOR: ssl: certificate choice can be unexpected with openssl >= 1.1.1
9944 - BUG/MEDIUM: mux-h1: Never reuse H1 connection if a shutw is pending
9945 - BUG/MINOR: mux-h1: Don't rely on CO_FL_SOCK_RD_SH to set H1C_F_CS_SHUTDOWN
9946 - BUG/MINOR: mux-h1: Fix conditions to know whether or not we may receive data
9947 - BUG/MEDIUM: tasks: Make sure we switch wait queues in task_set_affinity().
9948 - BUG/MEDIUM: checks: Make sure we set the task affinity just before connecting.
9949 - MINOR: debug: replace popen() with pipe+fork() in "debug dev exec"
9950 - MEDIUM: init: set NO_NEW_PRIVS by default when supported
9951 - BUG/MINOR: mux-h1: Be sure to set CS_FL_WANT_ROOM when EOM can't be added
9952 - BUG/MEDIUM: mux-fcgi: Handle cases where the HTX EOM block cannot be inserted
9953 - BUG/MINOR: proxy: make soft_stop() also close FDs in LI_PAUSED state
9954 - BUG/MINOR: listener/threads: always use atomic ops to clear the FD events
9955 - BUG/MINOR: listener: also clear the error flag on a paused listener
9956 - BUG/MEDIUM: listener/threads: fix a remaining race in the listener's accept()
9957 - MINOR: listener: make the wait paths cleaner and more reliable
9958 - MINOR: listener: split dequeue_all_listener() in two
9959 - REORG: listener: move the global listener queue code to listener.c
9960 - DOC: document the listener state transitions
9961 - BUG/MEDIUM: kqueue: Make sure we report read events even when no data.
9962 - BUG/MAJOR: dns: add minimalist error processing on the Rx path
9963 - BUG/MEDIUM: proto_udp/threads: recv() and send() must not be exclusive.
9964 - DOC: listeners: add a few missing transitions
9965 - BUG/MINOR: tasks: only requeue a task if it was already in the queue
9966 - MINOR: tasks: split wake_expired_tasks() in two parts to avoid useless wakeups
9967 - DOC: proxies: HAProxy only supports 3 connection modes
9968 - DOC: remove references to the outdated architecture.txt
9969 - BUG/MINOR: log: fix minor resource leaks on logformat error path
9970 - BUG/MINOR: mworker: properly pass SIGTTOU/SIGTTIN to workers
9971 - BUG/MINOR: listener: do not immediately resume on transient error
9972 - BUG/MINOR: server: make "agent-addr" work on default-server line
9973 - BUG/MINOR: listener: fix off-by-one in state name check
9974 - BUILD/MINOR: unix sockets: silence an absurd gcc warning about strncpy()
9975 - MEDIUM: h1-htx: Add HTX EOM block when the message is in H1_MSG_DONE state
9976 - MINOR: http-htx: Add some htx sample fetches for debugging purpose
9977 - REGTEST: Add an HTX reg-test to check an edge case
9978 - DOC: clarify the fact that replace-uri works on a full URI
9979 - BUG/MINOR: sample: fix the closing bracket and LF in the debug converter
9980 - BUG/MINOR: sample: always check converters' arguments
9981 - MINOR: sample: Validate the number of bits for the sha2 converter
9982 - BUG/MEDIUM: ssl: Don't set the max early data we can receive too early.
9983 - MINOR: ssl/cli: 'show ssl cert' give information on the certificates
9984 - BUG/MINOR: ssl/cli: fix build for openssl < 1.0.2
9985 - MINOR: debug: support logging to various sinks
9986 - MINOR: http: add a new "replace-path" action
9987 - REGTEST: ssl: test the "set ssl cert" CLI command
9988 - REGTEST: run-regtests: implement #REQUIRE_BINARIES
9989 - MINOR: task: only check TASK_WOKEN_ANY to decide to requeue a task
9990 - BUG/MAJOR: task: add a new TASK_SHARED_WQ flag to fix foreing requeuing
9991 - BUG/MEDIUM: ssl: Revamp the way early data are handled.
9992 - MINOR: fd/threads: make _GET_NEXT()/_GET_PREV() use the volatile attribute
9993 - BUG/MEDIUM: fd/threads: fix a concurrency issue between add and rm on the same fd
9994 - REGTEST: make the "set ssl cert" require version 2.1
9995 - BUG/MINOR: ssl: openssl-compat: Fix getm_ defines
9996 - BUG/MEDIUM: state-file: do not allocate a full buffer for each server entry
9997 - BUG/MINOR: state-file: do not store duplicates in the global tree
9998 - BUG/MINOR: state-file: do not leak memory on parse errors
9999 - BUG/MAJOR: mux-h1: Don't pretend the input channel's buffer is full if empty
10000 - BUG/MEDIUM: stream: Be sure to never assign a TCP backend to an HTX stream
10001 - BUILD: ssl: improve SSL_CTX_set_ecdh_auto compatibility
10002 - BUILD: travis-ci: link with ssl libraries using rpath instead of LD_LIBRARY_PATH/DYLD_LIBRARY_PATH
10003 - BUILD: travis-ci: reenable address sanitizer for clang builds
10004 - BUG/MINOR: checks: refine which errno values are really errors.
10005 - BUG/MINOR: connection: only wake send/recv callbacks if the FD is active
10006 - CLEANUP: connection: conn->xprt is never NULL
10007 - MINOR: pollers: add a new flag to indicate pollers reporting ERR & HUP
10008 - MEDIUM: tcp: make tcp_connect_probe() consider ERR/HUP
10009 - REORG: connection: move tcp_connect_probe() to conn_fd_check()
10010 - MINOR: connection: check for connection validation earlier
10011 - MINOR: connection: remove the double test on xprt_done_cb()
10012 - CLEANUP: connection: merge CO_FL_NOTIFY_DATA and CO_FL_NOTIFY_DONE
10013 - MINOR: poller: do not call the IO handler if the FD is not active
10014 - OPTIM: epoll: always poll for recv if neither active nor ready
10015 - OPTIM: polling: do not create update entries for FD removal
10016 - BUG/MEDIUM: checks: Only attempt to do handshakes if the connection is ready.
10017 - BUG/MEDIUM: connections: Hold the lock when wanting to kill a connection.
10018 - BUILD: CI: modernize cirrus-ci
10019 - MINOR: config: disable busy polling on old processes
10020 - MINOR: ssl: Remove unused variable "need_out".
10021 - BUG/MINOR: h1: Report the right error position when a header value is invalid
10022 - BUG/MINOR: proxy: Fix input data copy when an error is captured
10023 - BUG/MEDIUM: http-ana: Truncate the response when a redirect rule is applied
10024 - BUG/MINOR: channel: inject output data at the end of output
10025 - BUG/MEDIUM: session: do not report a failure when rejecting a session
10026 - MEDIUM: dns: implement synchronous send
10027 - MINOR: raw_sock: make sure to disable polling once everything is sent
10028 - MINOR: http: Add 410 to http-request deny
10029 - MINOR: http: Add 404 to http-request deny
10030 - CLEANUP: mux-h2: remove unused goto "out_free_h2s"
10031 - BUILD: cirrus-ci: choose proper openssl package name
10032 - BUG/MAJOR: listener: do not schedule a task-less proxy
10033 - CLEANUP: server: remove unused err section in server_finalize_init
10034 - REGTEST: set_ssl_cert.vtc: replace "echo" with "printf"
10035 - BUG/MINOR: stream-int: Don't trigger L7 retry if max retries is already reached
10036 - BUG/MEDIUM: tasks: Use the MT macros in tasklet_free().
10037 - BUG/MINOR: mux-h2: use a safe list_for_each_entry in h2_send()
10038 - BUG/MEDIUM: mux-h2: fix missing test on sending_list in previous patch
10039 - CLEANUP: ssl: remove opendir call in ssl_sock_load_cert
10040 - MEDIUM: lua: don't call the GC as often when dealing with outgoing connections
10041 - BUG/MEDIUM: mux-h2: don't stop sending when crossing a buffer boundary
10042 - BUG/MINOR: cli/mworker: can't start haproxy with 2 programs
10043 - REGTEST: mcli/mcli_start_progs: start 2 programs
10044 - BUG/MEDIUM: mworker: remain in mworker mode during reload
10045 - DOC: clarify crt-base usage
10046 - CLEANUP: compression: remove unused deinit_comp_ctx section
10047 - BUG/MEDIUM: mux_h1: Don't call h1_send if we subscribed().
10048 - BUG/MEDIUM: raw_sock: Make sur the fd and conn are sync.
10049 - CLEANUP: proxy: simplify proxy_parse_rate_limit proxy checks
10050 - BUG/MAJOR: hashes: fix the signedness of the hash inputs
10051 - REGTEST: add sample_fetches/hashes.vtc to validate hashes
10052 - BUG/MEDIUM: cli: _getsocks must send the peers sockets
10053 - CLEANUP: cli: deduplicate the code in _getsocks
10054 - BUG/MINOR: stream: don't mistake match rules for store-request rules
10055 - BUG/MEDIUM: connection: add a mux flag to indicate splice usability
10056 - BUG/MINOR: pattern: handle errors from fgets when trying to load patterns
10057 - MINOR: connection: move the CO_FL_WAIT_ROOM cleanup to the reader only
10058 - MINOR: stream-int: remove dependency on CO_FL_WAIT_ROOM for rcv_buf()
10059 - MEDIUM: connection: get rid of CO_FL_CURR_* flags
10060 - BUILD: pattern: include errno.h
10061 - MEDIUM: mux-h2: do not try to stop sending streams on blocked mux
10062 - MEDIUM: mux-fcgi: do not try to stop sending streams on blocked mux
10063 - MEDIUM: mux-h2: do not make an h2s subscribe to itself on deferred shut
10064 - MEDIUM: mux-fcgi: do not make an fstrm subscribe to itself on deferred shut
10065 - REORG: stream/backend: move backend-specific stuff to backend.c
10066 - MEDIUM: backend: move the connection finalization step to back_handle_st_con()
10067 - MEDIUM: connection: merge the send_wait and recv_wait entries
10068 - MEDIUM: xprt: merge recv_wait and send_wait in xprt_handshake
10069 - MEDIUM: ssl: merge recv_wait and send_wait in ssl_sock
10070 - MEDIUM: mux-h1: merge recv_wait and send_wait
10071 - MEDIUM: mux-h2: merge recv_wait and send_wait event notifications
10072 - MEDIUM: mux-fcgi: merge recv_wait and send_wait event notifications
10073 - MINOR: connection: make the last arg of subscribe() a struct wait_event*
10074 - MINOR: ssl: Add support for returning the dn samples from ssl_(c|f)_(i|s)_dn in LDAP v3 (RFC2253) format.
10075 - DOC: Fix copy and paste mistake in http-response replace-value doc
10076 - BUG/MINOR: cache: Fix leak of cache name in error path
10077 - BUG/MINOR: dns: Make dns_query_id_seed unsigned
10078 - BUG/MINOR: 51d: Fix bug when HTX is enabled
10079 - MINOR: http-htx: Move htx sample fetches in the scope "internal"
10080 - MINOR: http-htx: Rename 'internal.htx_blk.val' to 'internal.htx_blk.data'
10081 - MINOR: http-htx: Make 'internal.htx_blk_data' return a binary string
10082 - DOC: Add a section to document the internal sample fetches
10083 - MINOR: mux-h1: Inherit send flags from the upper layer
10084 - MINOR: contrib/prometheus-exporter: Add heathcheck status/code in server metrics
10085 - BUG/MINOR: http-ana/filters: Wait end of the http_end callback for all filters
10086 - BUG/MINOR: http-rules: Remove buggy deinit functions for HTTP rules
10087 - BUG/MINOR: stick-table: Use MAX_SESS_STKCTR as the max track ID during parsing
10088 - MEDIUM: http-rules: Register an action keyword for all http rules
10089 - MINOR: tcp-rules: Always set from which ruleset a rule comes from
10090 - MINOR: actions: Use ACT_RET_CONT code to ignore an error from a custom action
10091 - MINOR: tcp-rules: Kill connections when custom actions return ACT_RET_ERR
10092 - MINOR: http-rules: Return an error when custom actions return ACT_RET_ERR
10093 - MINOR: counters: Add a counter to report internal processing errors
10094 - MEDIUM: http-ana: Properly handle internal processing errors
10095 - MINOR: http-rules: Add a rule result to report internal error
10096 - MINOR: http-rules: Handle internal errors during HTTP rules evaluation
10097 - MINOR: http-rules: Add more return codes to let custom actions act as normal ones
10098 - MINOR: tcp-rules: Handle denied/aborted/invalid connections from TCP rules
10099 - MINOR: http-rules: Handle denied/aborted/invalid connections from HTTP rules
10100 - MINOR: stats: Report internal errors in the proxies/listeners/servers stats
10101 - MINOR: contrib/prometheus-exporter: Export internal errors per proxy/server
10102 - MINOR: counters: Remove failed_secu counter and use denied_resp instead
10103 - MINOR: counters: Review conditions to increment counters from analysers
10104 - MINOR: http-ana: Add a txn flag to support soft/strict message rewrites
10105 - MINOR: http-rules: Handle all message rewrites the same way
10106 - MINOR: http-rules: Add a rule to enable or disable the strict rewriting mode
10107 - MEDIUM: http-rules: Enable the strict rewriting mode by default
10108 - REGTEST: Fix format of set-uri HTTP request rule in h1or2_to_h1c.vtc
10109 - MINOR: actions: Add a function pointer to release args used by actions
10110 - MINOR: actions: Regroup some info about HTTP rules in the same struct
10111 - MINOR: http-rules/tcp-rules: Call the defined action function first if defined
10112 - MINOR: actions: Rename the act_flag enum into act_opt
10113 - MINOR: actions: Add flags to configure the action behaviour
10114 - MINOR: actions: Use an integer to set the action type
10115 - MINOR: http-rules: Use a specific action type for some custom HTTP actions
10116 - MINOR: http-rules: Make replace-header and replace-value custom actions
10117 - MINOR: http-rules: Make set-header and add-header custom actions
10118 - MINOR: http-rules: Make set/del-map and add/del-acl custom actions
10119 - MINOR: http-rules: Group all processing of early-hint rule in its case clause
10120 - MEDIUM: http-rules: Make early-hint custom actions
10121 - MINOR: http-rule/tcp-rules: Make track-sc* custom actions
10122 - MINOR: tcp-rules: Make tcp-request capture a custom action
10123 - MINOR: http-rules: Add release functions for existing HTTP actions
10124 - BUG/MINOR: http-rules: Fix memory releases on error path during action parsing
10125 - MINOR: tcp-rules: Add release functions for existing TCP actions
10126 - BUG/MINOR: tcp-rules: Fix memory releases on error path during action parsing
10127 - MINOR: http-htx: Add functions to read a raw error file and convert it in HTX
10128 - MINOR: http-htx: Add functions to create HTX redirect message
10129 - MINOR: config: Use dedicated function to parse proxy's errorfiles
10130 - MINOR: config: Use dedicated function to parse proxy's errorloc
10131 - MEDIUM: http-htx/proxy: Use a global and centralized storage for HTTP error messages
10132 - MINOR: proxy: Register keywords to parse errorfile and errorloc directives
10133 - MINOR: http-htx: Add a new section to create groups of custom HTTP errors
10134 - MEDIUM: proxy: Add a directive to reference an http-errors section in a proxy
10135 - MINOR: http-rules: Update txn flags and status when a deny rule is executed
10136 - MINOR: http-rules: Support an optional status on deny rules for http reponses
10137 - MINOR: http-rules: Use same function to parse request and response deny actions
10138 - MINOR: http-ana: Add an error message in the txn and send it when defined
10139 - MEDIUM: http-rules: Support an optional error message in http deny rules
10140 - REGTEST: Add a strict rewriting mode reg test
10141 - REGEST: Add reg tests about error files
10142 - MINOR: ssl: accept 'verify' bind option with 'set ssl cert'
10143 - BUG/MINOR: ssl: ssl_sock_load_ocsp_response_from_file memory leak
10144 - BUG/MINOR: ssl: ssl_sock_load_issuer_file_into_ckch memory leak
10145 - BUG/MINOR: ssl: ssl_sock_load_sctl_from_file memory leak
10146 - BUG/MINOR: http_htx: Fix some leaks on error path when error files are loaded
10147 - CLEANUP: http-ana: Remove useless test on txn when the error message is retrieved
10148 - BUILD: CI: introduce ARM64 builds
10149 - BUILD: ssl: more elegant anti-replay feature presence check
10150 - MINOR: proxy/http-ana: Add support of extra attributes for the cookie directive
10151 - MEDIUM: dns: use Additional records from SRV responses
10152 - CLEANUP: Consistently `unsigned int` for bitfields
10153 - CLEANUP: pattern: remove the pat_time definition
10154 - BUG/MINOR: http_act: don't check capture id in backend
10155 - BUG/MINOR: ssl: fix build on development versions of openssl-1.1.x
10156
Willy Tarreau2e077f82019-11-25 20:36:16 +0100101572019/11/25 : 2.2-dev0
10158 - exact copy of 2.1.0
10159
Willy Tarreaue54b43a2019-11-25 19:47:40 +0100101602019/11/25 : 2.1.0
10161 - BUG/MINOR: init: fix set-dumpable when using uid/gid
10162 - MINOR: init: avoid code duplication while setting identify
10163 - BUG/MINOR: ssl: ssl_pkey_info_index ex_data can store a dereferenced pointer
10164 - BUG/MINOR: ssl: fix crt-list neg filter for openssl < 1.1.1
10165 - MINOR: peers: Alway show the table info for disconnected peers.
10166 - MINOR: peers: Add TX/RX heartbeat counters.
10167 - MINOR: peers: Add debugging information to "show peers".
10168 - BUG/MINOR: peers: Wrong null "server_name" data field handling.
10169 - MINOR: ssl/cli: 'abort ssl cert' deletes an on-going transaction
10170 - BUG/MEDIUM: mworker: don't fill the -sf argument with -1 during the reexec
10171 - BUG/MINOR: peers: "peer alive" flag not reset when deconnecting.
10172 - BUILD/MINOR: ssl: fix compiler warning about useless statement
10173 - BUG/MEDIUM: stream-int: Don't loose events on the CS when an EOS is reported
10174 - MINOR: contrib/prometheus-exporter: filter exported metrics by scope
10175 - MINOR: contrib/prometheus-exporter: Add a param to ignore servers in maintenance
10176 - BUILD: debug: Avoid warnings in dev mode with -02 because of some BUG_ON tests
10177 - BUG/MINOR: mux-h1: Fix tunnel mode detection on the response path
10178 - BUG/MINOR: http-ana: Properly catch aborts during the payload forwarding
10179 - DOC: Update http-buffer-request description to remove the part about chunks
10180 - BUG/MINOR: stream-int: Fix si_cs_recv() return value
10181 - DOC: internal: document the init calls
10182 - MEDIUM: dns: Add resolve-opts "ignore-weight"
10183 - MINOR: ssl: ssl_sock_prepare_ctx() return an error code
10184 - MEDIUM: ssl/cli: apply SSL configuration on SSL_CTX during commit
10185 - MINOR: ssl/cli: display warning during 'commit ssl cert'
10186 - MINOR: version: report the version status in "haproxy -v"
10187 - MINOR: version: emit the link to the known bugs in output of "haproxy -v"
10188 - DOC: Add documentation about the use-service action
10189 - MINOR: ssl: fix possible null dereference in error handling
10190 - BUG/MINOR: ssl: fix curve setup with LibreSSL
10191 - BUG/MINOR: ssl: Stop passing dynamic strings as format arguments
10192 - CLEANUP: ssl: check if a transaction exists once before setting it
10193 - BUG/MINOR: cli: fix out of bounds in -S parser
10194 - MINOR: ist: add ist_find_ctl()
10195 - BUG/MAJOR: h2: reject header values containing invalid chars
10196 - BUG/MAJOR: h2: make header field name filtering stronger
10197 - BUG/MAJOR: mux-h2: don't try to decode a response HEADERS frame in idle state
10198 - MINOR: h2: add a function to report H2 error codes as strings
10199 - MINOR: mux-h2/trace: report the connection and/or stream error code
10200 - SCRIPTS: create-release: show the correct origin name in suggested commands
10201 - SCRIPTS: git-show-backports: add "-s" to proposed cherry-pick commands
10202 - BUG/MEDIUM: trace: fix a typo causing an incorrect startup error
10203 - BUILD: reorder the objects in the makefile
10204 - DOC: mention in INSTALL haproxy 2.1 is a stable stable version
10205 - MINOR: version: indicate that this version is stable
10206
Willy Tarreau84681322019-11-15 18:49:37 +0100102072019/11/15 : 2.1-dev5
10208 - BUG/MEDIUM: ssl/cli: don't alloc path when cert not found
10209 - BUG/MINOR: ssl/cli: unable to update a certificate without bundle extension
10210 - BUG/MINOR: ssl/cli: fix an error when a file is not found
10211 - MINOR: ssl/cli: replace the default_ctx during 'commit ssl cert'
10212 - DOC: fix date and http_date keywords syntax
10213 - MINOR: peers: Add "log" directive to "peers" section.
10214 - BUG/MEDIUM: mux-h1: Disable splicing for chunked messages
10215 - BUG/MEDIUM: stream: Be sure to support splicing at the mux level to enable it
10216 - MINOR: flt_trace: Rename macros to print trace messages
10217 - MINOR: trace: Add a set of macros to trace events if HA is compiled with debug
10218 - MEDIUM: stream/trace: Register a new trace source with its events
10219 - MINOR: doc: http-reuse connection pool fix
10220 - BUG/MEDIUM: stream: Be sure to release allocated captures for TCP streams
10221 - MINOR: http-ana: Remove the unused function http_reset_txn()
10222 - BUG/MINOR: action: do-resolve now use cached response
10223 - BUG: dns: timeout resolve not applied for valid resolutions
10224 - DOC: management: fix typo on "cache_lookups" stats output
10225 - BUG/MINOR: stream: init variables when the list is empty
10226 - BUG/MEDIUM: tasks: Make tasklet_remove_from_tasklet_list() no matter the tasklet.
10227 - BUG/MINOR: queue/threads: make the queue unlinking atomic
10228 - BUG/MEDIUM: Make sure we leave the session list in session_free().
10229 - CLEANUP: session: slightly simplify idle connection cleanup logic
10230 - MINOR: memory: also poison the area on freeing
10231 - CLEANUP: cli: use srv_shutdown_streams() instead of open-coding it
10232 - CLEANUP: stats: use srv_shutdown_streams() instead of open-coding it
10233 - BUG/MEDIUM: listeners: always pause a listener on out-of-resource condition
10234 - BUILD: contrib/da: remove an "unused" warning
10235 - BUG/MEDIUM: filters: Don't call TCP callbacks for HTX streams
10236 - MEDIUM: filters: Adapt filters API to allow again TCP filtering on HTX streams
10237 - MINOR: freq_ctr: Make the sliding window sums thread-safe
10238 - MINOR: stream: Remove the lock on the proxy to update time stats
10239 - MINOR: counters: Add fields to store the max observed for {q,c,d,t}_time
10240 - MINOR: stats: Report max times in addition of the averages for sessions
10241 - MINOR: contrib/prometheus-exporter: Report metrics about max times for sessions
10242 - BUG/MINOR: contrib/prometheus-exporter: Rename some metrics
10243 - MINOR: contrib/prometheus-exporter: report the number of idle conns per server
10244 - DOC: Add missing stats fields in the management manual
10245 - BUG/MINOR: mux-h1: Properly catch parsing errors on payload and trailers
10246 - BUG/MINOR: mux-h1: Don't set CS_FL_EOS on a read0 when receiving data to pipe
10247 - MINOR: mux-h1: Set EOI on the conn-stream when EOS is reported in TUNNEL state
10248 - MINOR: sink: Set the default max length for a message to BUFSIZE
10249 - MINOR: ring: make the parse function automatically set the handler/release
10250 - BUG/MINOR: log: make "show startup-log" use a ring buffer instead
10251 - MINOR: stick-table: allow sc-set-gpt0 to set value from an expression
10252
Willy Tarreau1753cb52019-11-03 15:43:10 +0100102532019/11/03 : 2.1-dev4
10254 - BUG/MINOR: cli: don't call the kw->io_release if kw->parse failed
10255 - BUG/MINOR: mux-h2: Don't pretend mux buffers aren't full anymore if nothing sent
10256 - BUG/MAJOR: stream-int: Don't receive data from mux until SI_ST_EST is reached
10257 - DOC: remove obsolete section about header manipulation
10258 - BUG/MINOR: ssl/cli: cleanup on cli_parse_set_cert error
10259 - MINOR: ssl/cli: rework the 'set ssl cert' IO handler
10260 - BUILD: CI: comment out cygwin build, upgrade various ssl libraries
10261 - DOC: Improve documentation of http-re(quest|sponse) replace-(header|value|uri)
10262 - BUILD/MINOR: tools: shut up the format truncation warning in get_gmt_offset()
10263 - BUG/MINOR: spoe: fix off-by-one length in UUID format string
10264 - BUILD/MINOR: ssl: shut up a build warning about format truncation
10265 - BUILD: do not disable -Wformat-truncation anymore
10266 - MINOR: chunk: add chunk_istcat() to concatenate an ist after a chunk
10267 - Revert "MINOR: istbuf: add b_fromist() to make a buffer from an ist"
10268 - MINOR: mux: Add a new method to get informations about a mux.
10269 - BUG/MEDIUM: stream_interface: Only use SI_ST_RDY when the mux is ready.
10270 - BUG/MEDIUM: servers: Only set SF_SRV_REUSED if the connection if fully ready.
10271 - MINOR: doc: fix busy-polling performance reference
10272 - MINOR: config: allow no set-dumpable config option
10273 - MINOR: init: always fail when setrlimit fails
10274 - MINOR: ssl/cli: rework 'set ssl cert' as 'set/commit'
10275 - CLEANUP: ssl/cli: remove leftovers of bundle/certs (it < 2)
10276 - REGTEST: vtest can now enable mcli with its own flag
10277 - BUG/MINOR: config: Update cookie domain warn to RFC6265
10278 - MINOR: sample: add us/ms support to date/http_date
10279 - BUG/MINOR: ssl/cli: check trash allocation in cli_io_handler_commit_cert()
10280 - BUG/MEDIUM: mux-h2: report no available stream on a connection having errors
10281 - BUG/MEDIUM: mux-h2: immediately remove a failed connection from the idle list
10282 - BUG/MEDIUM: mux-h2: immediately report connection errors on streams
10283 - BUG/MINOR: stats: properly check the path and not the whole URI
10284 - BUG/MINOR: ssl: segfault in cli_parse_set_cert with old openssl/boringssl
10285 - BUG/MINOR: ssl: ckch->chain must be initialized
10286 - BUG/MINOR: ssl: double free on error for ckch->{key,cert}
10287 - MINOR: ssl: BoringSSL ocsp_response does not need issuer
10288 - BUG/MEDIUM: ssl/cli: fix dot research in cli_parse_set_cert
10289 - MINOR: backend: Add srv_name sample fetche
10290 - DOC: Add GitHub issue config.yml
10291
Willy Tarreauc70df532019-10-25 15:48:53 +0200102922019/10/25 : 2.1-dev3
10293 - MINOR: mux-h2/trace: missing conn pointer in demux full message
10294 - MINOR: mux-h2: add a per-connection list of blocked streams
10295 - BUILD: ebtree: make eb_is_empty() and eb_is_dup() take a const
10296 - BUG/MEDIUM: mux-h2: do not enforce timeout on long connections
10297 - BUG/MEDIUM: tasks: Don't forget to decrement tasks_run_queue.
10298 - BUG/MINOR: peers: crash on reload without local peer.
10299 - BUG/MINOR: mux-h2/trace: Fix traces on h2c initialization
10300 - MINOR: h1-htx: Update h1_copy_msg_data() to ease the traces in the mux-h1
10301 - MINOR: htx: Adapt htx_dump() to be used from traces
10302 - MINOR: mux-h1/trace: register a new trace source with its events
10303 - MINOR: proxy: Store http-send-name-header in lower case
10304 - MINOR: http: Remove headers matching the name of http-send-name-header option
10305 - BUG/MINOR: mux-h1: Adjust header case when the server name is add to a request
10306 - BUG/MINOR: mux-h1: Adjust header case when chunked encoding is add to a message
10307 - MINOR: mux-h1: Try to wakeup the stream on output buffer allocation
10308 - MINOR: fcgi: Add function to get the string representation of a record type
10309 - MINOR: mux-fcgi/trace: Register a new trace source with its events
10310 - BUG/MEDIUM: cache: make sure not to cache requests with absolute-uri
10311 - DOC: clarify some points around http-send-name-header's behavior
10312 - MEDIUM: mux-h2: support emitting CONTINUATION frames after HEADERS
10313 - BUG/MINOR: mux-h1/mux-fcgi/trace: Fix position of the 4th arg in some traces
10314 - DOC: fix typo in Prometheus exporter doc
10315 - MINOR: h2: clarify the rules for how to convert an H2 request to HTX
10316 - MINOR: htx: Add 2 flags on the start-line to have more info about the uri
10317 - MINOR: http: Add a function to get the authority into a URI
10318 - MINOR: h1-htx: Set the flag HTX_SL_F_HAS_AUTHORITY during the request parsing
10319 - MEDIUM: http-htx: Keep the Host header and the request start-line synchronized
10320 - MINOR: h1-htx: Only use the path of a normalized URI to format a request line
10321 - MEDIUM: h2: make the request parser rebuild a complete URI
10322 - MINOR: h2: report in the HTX flags when the request has an authority
10323 - MEDIUM: mux-h2: do not map Host to :authority on output
10324 - MEDIUM: h2: use the normalized URI encoding for absolute form requests
10325 - MINOR: stats: mention in the help message support for "json" and "typed"
10326 - MINOR: stats: get rid of the ST_CONVDONE flag
10327 - MINOR: stats: replace the ST_* uri_auth flags with STAT_*
10328 - MINOR: stats: always merge the uri_auth flags into the appctx flags
10329 - MINOR: stats: set the appctx flags when initializing the applet only
10330 - MINOR: stats: get rid of the STAT_SHOWADMIN flag
10331 - MINOR: stats: make stats_dump_fields_json() directly take flags
10332 - MINOR: stats: uniformize the calling convention of the dump functions
10333 - MINOR: stats: support the "desc" output format modifier for info and stat
10334 - MINOR: stats: prepare to add a description with each stat/info field
10335 - MINOR: stats: make "show stat" and "show info"
10336 - MINOR: stats: fill all the descriptions for "show info" and "show stat"
10337 - BUG/MEDIUM: applet: always check a fast running applet's activity before killing
10338 - BUILD: stats: fix missing '=' sign in array declaration
10339 - MINOR: lists: add new macro LIST_SPLICE_END_DETACHED
10340 - MINOR: list: add new macro MT_LIST_BEHEAD
10341 - MEDIUM: task: Split the tasklet list into two lists.
10342 - MINOR: h2: Document traps to be avoided on multithread.
10343 - MINOR: lists: Try to use local variables instead of macro arguments.
10344 - MINOR: lists: Fix alignement of \ when relevant.
10345 - MINOR: mux-h2: also support emitting CONTINUATION on trailers
10346 - MINOR: ssl: crt-list do ckchn_lookup
10347 - REORG: ssl: rename ckch_node to ckch_store
10348 - REORG: ssl: move structures to ssl_sock.h
10349 - MINOR: ssl: initialize the sni_keytypes_map as EB_ROOT
10350 - MINOR: ssl: initialize explicitly the sni_ctx trees
10351 - BUG/MINOR: ssl: abort on sni allocation failure
10352 - BUG/MINOR: ssl: free the sni_keytype nodes
10353 - BUG/MINOR: ssl: abort on sni_keytypes allocation failure
10354 - MEDIUM: ssl: introduce the ckch instance structure
10355 - MEDIUM: ssl: split ssl_sock_add_cert_sni()
10356 - MINOR: ssl: ssl_sock_load_ckchn() can properly fail
10357 - MINOR: ssl: ssl_sock_load_multi_ckchs() can properly fail
10358 - MEDIUM: ssl: ssl_sock_load_ckchs() alloc a ckch_inst
10359 - MINOR: ssl: ssl_sock_load_crt_file_into_ckch() is filling from a BIO
10360 - MEDIUM: ssl/cli: 'set ssl cert' updates a certificate from the CLI
10361 - MINOR: ssl: load the sctl in/from the ckch
10362 - MINOR: ssl: load the ocsp in/from the ckch
10363 - BUG/MEDIUM: ssl: NULL dereference in ssl_sock_load_cert_sni()
10364 - BUG/MINOR: ssl: fix build without SSL
10365 - BUG/MINOR: ssl: fix build without multi-cert bundles
10366 - BUILD: ssl: wrong #ifdef for SSL engines code
10367 - BUG/MINOR: ssl: fix OCSP build with BoringSSL
10368 - BUG/MEDIUM: htx: Catch chunk_memcat() failures when HTX data are formatted to h1
10369 - BUG/MINOR: chunk: Fix tests on the chunk size in functions copying data
10370 - BUG/MINOR: mux-h1: Mark the output buffer as full when the xfer is interrupted
10371 - MINOR: mux-h1: Xfer as much payload data as possible during output processing
10372 - CLEANUP: h1-htx: Move htx-to-h1 formatting functions from htx.c to h1_htx.c
10373 - BUG/MINOR: mux-h1: Capture ignored parsing errors
10374 - MINOR: h1: Reject requests with different occurrences of the header host
10375 - MINOR: h1: Reject requests if the authority does not match the header host
10376 - REGTESTS: Send valid URIs in peers reg-tests and fix HA config to avoid warnings
10377 - REGTESTS: Adapt proxy_protocol_random_fail.vtc to match normalized URI too
10378 - BUG/MINOR: WURFL: fix send_log() function arguments
10379 - BUG/MINOR: ssl: fix error messages for OCSP loading
10380 - BUG/MINOR: ssl: can't load ocsp files
10381 - MINOR: version: make the version strings variables, not constants
10382 - BUG/MINOR: http-htx: Properly set htx flags on error files to support keep-alive
10383 - MINOR: htx: Add a flag on HTX to known when a response was generated by HAProxy
10384 - MINOR: mux-h1: Force close mode for proxy responses with an unfinished request
10385 - BUILD: travis-ci: limit build to branches "master" and "next"
10386 - BUILD/MEDIUM: threads: rename thread_info struct to ha_thread_info
10387 - BUILD/SMALL: threads: enable threads on osx
10388 - BUILD/MEDIUM: threads: enable cpu_affinity on osx
10389 - MINOR: istbuf: add b_fromist() to make a buffer from an ist
10390 - BUG/MINOR: cache: also cache absolute URIs
10391 - BUG/MINOR: mworker/ssl: close openssl FDs unconditionally
10392 - BUG/MINOR: tcp: Don't alter counters returned by tcp info fetchers
10393 - BUG/MEDIUM: lists: Handle 1-element-lists in MT_LIST_BEHEAD().
10394 - BUG/MEDIUM: mux_pt: Make sure we don't have a conn_stream before freeing.
10395 - BUG/MEDIUM: tasklet: properly compute the sleeping threads mask in tasklet_wakeup()
10396 - BUG/MAJOR: idle conns: schedule the cleanup task on the correct threads
10397 - BUG/MEDIUM: task: make tasklets either local or shared but not both at once
10398 - Revert e8826ded5fea3593d89da2be5c2d81c522070995.
10399 - BUG/MEDIUM: mux_pt: Don't destroy the connection if we have a stream attached.
10400 - BUG/MEDIUM: mux_pt: Only call the wake emthod if nobody subscribed to receive.
10401 - REGTEST: mcli/mcli_show_info: launch a 'show info' on the master CLI
10402 - CLEANUP: ssl: make ssl_sock_load_cert*() return real error codes
10403 - CLEANUP: ssl: make ssl_sock_load_ckchs() return a set of ERR_*
10404 - CLEANUP: ssl: make cli_parse_set_cert handle errcode and warnings.
10405 - CLEANUP: ssl: make ckch_inst_new_load_(multi_)store handle errcode/warn
10406 - CLEANUP: ssl: make ssl_sock_put_ckch_into_ctx handle errcode/warn
10407 - CLEANUP: ssl: make ssl_sock_load_dh_params handle errcode/warn
10408 - CLEANUP: bind: handle warning label on bind keywords parsing.
10409 - BUG/MEDIUM: ssl: 'tune.ssl.default-dh-param' value ignored with openssl > 1.1.1
10410 - BUG/MINOR: mworker/cli: reload fail with inherited FD
10411 - BUG/MINOR: ssl: Fix fd leak on error path when a TLS ticket keys file is parsed
10412 - BUG/MINOR: stick-table: Never exceed (MAX_SESS_STKCTR-1) when fetching a stkctr
10413 - BUG/MINOR: cache: alloc shctx after check config
10414 - BUG/MINOR: sample: Make the `field` converter compatible with `-m found`
10415 - BUG/MINOR: server: check return value of fopen() in apply_server_state()
10416 - REGTESTS: make seamless-reload depend on 1.9 and above
10417 - REGTESTS: server/cli_set_fqdn requires version 1.8 minimum
10418 - BUG/MINOR: dns: allow srv record weight set to 0
10419 - BUG/MINOR: ssl: fix memcpy overlap without consequences.
10420 - BUG/MINOR: stick-table: fix an incorrect 32 to 64 bit key conversion
10421 - BUG/MEDIUM: pattern: make the pattern LRU cache thread-local and lockless
10422 - BUG/MINOR: mux-h2: do not emit logs on backend connections
10423 - CLEANUP: ssl: remove old TODO commentary
10424 - CLEANUP: ssl: fix SNI/CKCH lock labels
10425 - MINOR: ssl: OCSP functions can load from file or buffer
10426 - MINOR: ssl: load sctl from buf OR from a file
10427 - MINOR: ssl: load issuer from file or from buffer
10428 - MINOR: ssl: split ssl_sock_load_crt_file_into_ckch()
10429 - BUG/MINOR: ssl/cli: fix looking up for a bundle
10430 - MINOR: ssl/cli: update ocsp/issuer/sctl file from the CLI
10431 - MINOR: ssl: update ssl_sock_free_cert_key_and_chain_contents
10432 - MINOR: ssl: copy a ckch from src to dst
10433 - MINOR: ssl: new functions duplicate and free a ckch_store
10434 - MINOR: ssl/cli: assignate a new ckch_store
10435 - MEDIUM: cli/ssl: handle the creation of SSL_CTX in an IO handler
10436 - BUG/MINOR: ssl/cli: fix build of SCTL and OCSP
10437 - BUG/MINOR: ssl/cli: out of bounds when built without ocsp/sctl
10438 - BUG/MINOR: ssl: fix build with openssl < 1.1.0
10439 - BUG/MINOR: ssl: fix build of X509_chain_up_ref() w/ libreSSL
10440 - MINOR: tcp: avoid confusion in time parsing init
10441 - MINOR: debug: add a new "debug dev stream" command
10442 - MINOR: cli/debug: validate addresses using may_access() in "debug dev stream"
10443 - REORG: move CLI access level definitions to cli.h
10444 - MINOR: cli: add an expert mode to hide dangerous commands
10445 - MINOR: debug: make most debug CLI commands accessible in expert mode
10446 - MINOR: stats/debug: maintain a counter of debug commands issued
10447 - BUG/MEDIUM: debug: address a possible null pointer dereference in "debug dev stream"
10448
Willy Tarreaucb8f03f2019-10-01 18:13:09 +0200104492019/10/01 : 2.1-dev2
10450 - DOC: management: document reuse and connect counters in the CSV format
10451 - DOC: management: document cache_hits and cache_lookups in the CSV format
10452 - BUG/MINOR: dns: remove irrelevant dependency on a client connection
10453 - MINOR: applet: make appctx use their own pool
10454 - BUG/MEDIUM: checks: Don't attempt to receive data if we already subscribed.
10455 - BUG/MEDIUM: http/htx: unbreak option http_proxy
10456 - BUG/MINOR: backend: do not try to install a mux when the connection failed
10457 - MINOR: mux-h2: Don't adjust anymore the amount of data sent in h2_snd_buf()
10458 - BUG/MINOR: http_fetch: Fix http_auth/http_auth_group when called from TCP rules
10459 - BUG/MINOR: http_htx: Initialize HTX error messages for TCP proxies
10460 - BUG/MINOR: cache/htx: Make maxage calculation HTX aware
10461 - BUG/MINOR: hlua: Make the function txn:done() HTX aware
10462 - MINOR: proto_htx: Directly call htx_check_response_for_cacheability()
10463 - MINOR: proto_htx: Rely on the HTX function to apply a redirect rules
10464 - MINOR: proto_htx: Add the function htx_return_srv_error()
10465 - MINOR: backend/htx: Don't rewind output data to set the sni on a srv connection
10466 - MINOR: proto_htx: Don't stop forwarding when there is a post-connect processing
10467 - DOC: htx: Update comments in HTX files
10468 - CLEANUP: htx: Remove the unsued function htx_add_blk_type_size()
10469 - MINOR: htx: Deduce the number of used blocks from tail and head values
10470 - MINOR: htx: Use an array of char to store HTX blocks
10471 - MINOR: htx: Slightly update htx_dump() to report better messages
10472 - DOC: htx: Add internal documentation about the HTX
10473 - MAJOR: http: Deprecate and ignore the option "http-use-htx"
10474 - MEDIUM: mux-h2: Remove support of the legacy HTTP mode
10475 - CLEANUP: h2: Remove functions converting h2 requests to raw HTTP/1.1 ones
10476 - MINOR: connection: Remove the multiplexer protocol PROTO_MODE_HTX
10477 - MINOR: stream: Rely on HTX analyzers instead of legacy HTTP ones
10478 - MEDIUM: http_fetch: Remove code relying on HTTP legacy mode
10479 - MINOR: config: Remove tests on the option 'http-use-htx'
10480 - MINOR: stream: Remove tests on the option 'http-use-htx' in stream_new()
10481 - MINOR: proxy: Remove tests on the option 'http-use-htx' during H1 upgrade
10482 - MINOR: hlua: Remove tests on the option 'http-use-htx' to reject TCP applets
10483 - MINOR: cache: Remove tests on the option 'http-use-htx'
10484 - MINOR: contrib/prometheus-exporter: Remove tests on the option 'http-use-htx'
10485 - CLEANUP: proxy: Remove the flag PR_O2_USE_HTX
10486 - MINOR: proxy: Don't adjust connection mode of HTTP proxies anymore
10487 - MEDIUM: backend: Remove code relying on the HTTP legacy mode
10488 - MEDIUM: hlua: Remove code relying on the legacy HTTP mode
10489 - MINOR: http_act: Remove code relying on the legacy HTTP mode
10490 - MEDIUM: cache: Remove code relying on the legacy HTTP mode
10491 - MEDIUM: compression: Remove code relying on the legacy HTTP mode
10492 - MINOR: flt_trace: Remove code relying on the legacy HTTP mode
10493 - MINOR: stats: Remove code relying on the legacy HTTP mode
10494 - MAJOR: filters: Remove code relying on the legacy HTTP mode
10495 - MINOR: stream: Remove code relying on the legacy HTTP mode
10496 - MAJOR: http: Remove the HTTP legacy code
10497 - MINOR: hlua: Remove useless test on TX_CON_WANT_* flags
10498 - MINOR: proto_http: Remove unused http txn flags
10499 - MINOR: proto_http: Remove the unused flag HTTP_MSGF_WAIT_CONN
10500 - CLEANUP: proto_http: Group remaining flags of the HTTP transaction
10501 - CLEANUP: channel: Remove the unused flag CF_WAKE_CONNECT
10502 - CLEANUP: proto_http: Remove unecessary includes and comments
10503 - CLEANUP: proto_http: Move remaining code from proto_http.c to proto_htx.c
10504 - REORG: proto_htx: Move HTX analyzers & co to http_ana.{c,h} files
10505 - BUG/MINOR: debug: Remove flags CO_FL_SOCK_WR_ENA/CO_FL_SOCK_RD_ENA
10506 - MINOR: proxy: Remove support of the option 'http-tunnel'
10507 - DOC: config: Update as a result of the legacy HTTP removal
10508 - MEDIUM: config: Remove parsing of req* and rsp* directives
10509 - MINOR: proxy: Remove the unused list of block rules
10510 - MINOR: proxy/http_ana: Remove unused req_exp/rsp_exp and req_add/rsp_add lists
10511 - DOC: config: Remove unsupported req* and rsp* keywords
10512 - MINOR: global: Preset tune.max_http_hdr to its default value
10513 - MINOR: http: Don't store raw HTTP errors in chunks anymore
10514 - BUG/MINOR: session: Emit an HTTP error if accept fails only for H1 connection
10515 - BUG/MINOR: session: Send a default HTTP error if accept fails for a H1 socket
10516 - CLEANUP: mux-h2: Remove unused flags H2_SF_CHNK_*
10517 - BUG/MINOR: checks: do not exit tcp-checks from the middle of the loop
10518 - MINOR: config: Warn only if the option http-use-htx is used with "no" prefix
10519 - BUG/MEDIUM: mux-h1: Trim excess server data at the end of a transaction
10520 - MINOR: connection: add conn_get_src() and conn_get_dst()
10521 - MINOR: frontend: switch to conn_get_{src,dst}() for logging and debugging
10522 - MINOR: backend: switch to conn_get_{src,dst}() for port and address mapping
10523 - MINOR: ssl: switch to conn_get_dst() to retrieve the destination address
10524 - MINOR: tcp: replace various calls to conn_get_{from,to}_addr with conn_get_{src,dst}
10525 - MINOR: stream-int: use conn_get_{src,dst} in conn_si_send_proxy()
10526 - MINOR: stream/cli: use conn_get_{src,dst} in "show sess" and "show peers" output
10527 - MINOR: log: use conn_get_{dst,src}() to retrieve the cli/frt/bck/srv/ addresses
10528 - MINOR: http/htx: use conn_get_dst() to retrieve the destination address
10529 - MINOR: lua: use conn_get_{src,dst} to retrieve connection addresses
10530 - MINOR: http: check the source address via conn_get_src() in sample fetch functions
10531 - CLEANUP: connection: remove the now unused conn_get_{from,to}_addr()
10532 - MINOR: connection: add new src and dst fields
10533 - MINOR: connection: use conn->{src,dst} instead of &conn->addr.{from,to}
10534 - MINOR: ssl-sock: use conn->dst instead of &conn->addr.to
10535 - MINOR: lua: switch to conn->dst for a connection's target address
10536 - MINOR: peers: use conn->dst for the peer's target address
10537 - MINOR: htx: switch from conn->addr.{from,to} to conn->{src,dst}
10538 - MINOR: stream: switch from conn->addr.{from,to} to conn->{src,dst}
10539 - MINOR: proxy: switch to conn->src in error snapshots
10540 - MINOR: session: use conn->src instead of conn->addr.from
10541 - MINOR: tcp: replace conn->addr.{from,to} with conn->{src,dst}
10542 - MINOR: unix: use conn->dst for the target address in ->connect()
10543 - MINOR: sockpair: use conn->dst for the target address in ->connect()
10544 - MINOR: log: use conn->{src,dst} instead of conn->addr.{from,to}
10545 - MINOR: checks: replace conn->addr.to with conn->dst
10546 - MINOR: frontend: switch from conn->addr.{from,to} to conn->{src,dst}
10547 - MINOR: http: convert conn->addr.from to conn->src in sample fetches
10548 - MEDIUM: backend: turn all conn->addr.{from,to} to conn->{src,dst}
10549 - MINOR: connection: create a new pool for struct sockaddr_storage
10550 - MEDIUM: connection: make sure all address producers allocate their address
10551 - MAJOR: connection: remove the addr field
10552 - MINOR: connection: don't use clear_addr() anymore, just release the address
10553 - MINOR: stream: add a new target_addr entry in the stream structure
10554 - MAJOR: stream: store the target address into s->target_addr
10555 - MINOR: peers: now remove the remote connection setup code
10556 - MEDIUM: lua: do not allocate the remote connection anymore
10557 - MEDIUM: backend: always release any existing prior connection in connect_server()
10558 - MEDIUM: backend: remove impossible cases from connect_server()
10559 - BUG/MINOR: mux-h1: Close server connection if input data remains in h1_detach()
10560 - BUG/MEDIUM: tcp-checks: do not dereference inexisting conn_stream
10561 - BUG/MINOR: http_ana: Be sure to have an allocated buffer to generate an error
10562 - BUG/MINOR: http_htx: Support empty errorfiles
10563 - BUG/CRITICAL: http_ana: Fix parsing of malformed cookies which start by a delimiter
10564 - BUG/MEDIUM: protocols: add a global lock for the init/deinit stuff
10565 - BUG/MINOR: proxy: always lock stop_proxy()
10566 - MEDIUM: mux-h1: Add the support of headers adjustment for bogus HTTP/1 apps
10567 - BUILD: threads: add the definition of PROTO_LOCK
10568 - BUG/MEDIUM: lb-chash: Fix the realloc() when the number of nodes is increased
10569 - BUG/MEDIUM: streams: Don't switch the SI to SI_ST_DIS if we have data to send.
10570 - BUG/MINOR: log: make sure writev() is not interrupted on a file output
10571 - DOC: improve the wording in CONTRIBUTING about how to document a bug fix
10572 - MEDIUM: h1: Don't try to subscribe if we managed to read data.
10573 - MEDIUM: h1: Don't wake the H1 tasklet if we got the whole request.
10574 - REGTESTS: checks: exclude freebsd target for tcp-check_multiple_ports.vtc
10575 - BUG/MINOR: hlua/htx: Reset channels analyzers when txn:done() is called
10576 - BUG/MEDIUM: hlua: Check the calling direction in lua functions of the HTTP class
10577 - MINOR: hlua: Don't set request analyzers on response channel for lua actions
10578 - MINOR: hlua: Add a flag on the lua txn to know in which context it can be used
10579 - BUG/MINOR: hlua: Only execute functions of HTTP class if the txn is HTTP ready
10580 - BUG/MINOR: htx: Fix free space addresses calculation during a block expansion
10581 - MINOR: ssl: merge ssl_sock_load_cert_file() and ssl_sock_load_cert_chain_file()
10582 - MEDIUM: ssl: use cert_key_and_chain struct in ssl_sock_load_cert_file()
10583 - MEDIUM: ssl: split the loading of the certificates
10584 - MEDIUM: ssl: lookup and store in a ckch_node tree
10585 - MEDIUM: ssl: load DH param in struct cert_key_and_chain
10586 - BUG/MAJOR: queue/threads: avoid an AB/BA locking issue in process_srv_queue()
10587 - MINOR: ssl: use STACK_OF for chain certs
10588 - MINOR: ssl: add extra chain compatibility
10589 - MINOR: ssl: check private key consistency in loading
10590 - MINOR: ssl: do not look at DHparam with OPENSSL_NO_DH
10591 - CLEANUP: ssl: ssl_sock_load_crt_file_into_ckch
10592 - MINOR: ssl: clean ret variable in ssl_sock_load_ckchn
10593 - MAJOR: fd: Get rid of the fd cache.
10594 - MEDIUM: pollers: Remember the state for read and write for each threads.
10595 - MEDIUM: mux-h2: don't try to read more than needed
10596 - BUG/BUILD: ssl: fix build with openssl < 1.0.2
10597 - BUG/MEDIUM: ssl: does not try to free a DH in a ckch
10598 - BUG/MINOR: debug: fix a small race in the thread dumping code
10599 - MINOR: wdt: also consider that waiting in the thread dumper is normal
10600 - REGTESTS: checks: make 4be_1srv_health_checks more reliable
10601 - BUILD: ssl: BoringSSL add EVP_PKEY_base_id
10602 - BUG/MEDIUM: ssl: don't free the ckch in multi-cert bundle
10603 - BUG/MINOR: ssl: fix ressource leaks on error
10604 - BUG/MEDIUM: lb-chash: Ensure the tree integrity when server weight is increased
10605 - BUG/MAJOR: http/sample: use a static buffer for raw -> htx conversion
10606 - BUG/MINOR: stream-int: make sure to always release empty buffers after sending
10607 - BUG/MEDIUM: ssl: open the right path for multi-cert bundle
10608 - BUG/MINOR: stream-int: also update analysers timeouts on activity
10609 - BUG/MEDIUM: mux-h2: unbreak receipt of large DATA frames
10610 - BUG/MEDIUM: mux-h2: split the stream's and connection's window sizes
10611 - BUG/MEDIUM: proxy: Make sure to destroy the stream on upgrade from TCP to H2
10612 - DOC: Add 'Question.md' issue template, discouraging asking questions
10613 - BUG/MEDIUM: fd: Always reset the polled_mask bits in fd_dodelete().
10614 - BUG/MEDIUM: pollers: Clear the poll_send bits as well.
10615 - BUILD: travis-ci: enable daily Coverity scan
10616 - BUG/MINOR: mux-h2: don't refrain from sending an RST_STREAM after another one
10617 - BUG/MINOR: mux-h2: use CANCEL, not STREAM_CLOSED in h2c_frt_handle_data()
10618 - BUG/MINOR: mux-h2: do not send REFUSED_STREAM on aborted uploads
10619 - BUG/MEDIUM: mux-h2: do not recheck a frame type after a state transition
10620 - BUG/MINOR: mux-h2: always send stream window update before connection's
10621 - BUG/MINOR: mux-h2: always reset rcvd_s when switching to a new frame
10622 - BUG/MEDIUM: checks: make sure to close nicely when we're the last to speak
10623 - BUG/MEDIUM: stick-table: Wrong stick-table backends parsing.
10624 - CLEANUP: mux-h2: move the demuxed frame check code in its own function
10625 - MINOR: cache: add method to cache hash
10626 - MINOR: cache: allow caching of OPTIONS request
10627 - BUG/MINOR: ssl: fix 0-RTT for BoringSSL
10628 - MINOR: ssl: ssl_fc_has_early should work for BoringSSL
10629 - BUG/MINOR: pools: don't mark the thread harmless if already isolated
10630 - BUG/MINOR: buffers/threads: always clear a buffer's head before releasing it
10631 - CLEANUP: buffer: replace b_drop() with b_free()
10632 - CLEANUP: task: move the cpu_time field to the task-only part
10633 - MINOR: cli: add two new states to print messages on the CLI
10634 - MINOR: cli: add cli_msg(), cli_err(), cli_dynmsg(), cli_dynerr()
10635 - CLEANUP: cli: replace all occurrences of manual handling of return messages
10636 - BUG/MEDIUM: proxy: Don't forget the SF_HTX flag when upgrading TCP=>H1+HTX.
10637 - BUG/MEDIUM: proxy: Don't use cs_destroy() when freeing the conn_stream.
10638 - BUG/MINOR: lua: fix setting netfilter mark
10639 - BUG/MINOR: Fix prometheus '# TYPE' and '# HELP' headers
10640 - BUG/MEDIUM: lua: Fix test on the direction to set the channel exp timeout
10641 - BUG/MINOR: stats: Wait the body before processing POST requests
10642 - MINOR: fd: make sure to mark the thread as not stuck in fd_update_events()
10643 - BUG/MEDIUM: mux_pt: Don't call unsubscribe if we did not subscribe.
10644 - BUILD: travis-ci: trigger non-mainstream configurations only on daily builds.
10645 - MINOR: debug: indicate the applet name when the task is task_run_applet()
10646 - MINOR: tools: add append_prefixed_str()
10647 - MINOR: lua: export applet and task handlers
10648 - MEDIUM: debug: make the thread dump code show Lua backtraces
10649 - BUG/MEDIUM: h1: Always try to receive more in h1_rcv_buf().
10650 - MINOR: list: add LIST_SPLICE() to merge one list into another
10651 - MINOR: tools: add a DEFNULL() macro to use NULL for empty args
10652 - REORG: trace: rename trace.c to calltrace.c and mention it's not thread-safe
10653 - MINOR: sink: create definitions a minimal code for event sinks
10654 - MINOR: sink: add a support for file descriptors
10655 - MINOR: trace: start to create a new trace subsystem
10656 - MINOR: trace: add allocation of buffer-sized trace buffers
10657 - MINOR: trace/cli: register the "trace" CLI keyword to list the sources
10658 - MINOR: trace/cli: parse the "level" argument to configure the trace verbosity
10659 - MINOR: trace/cli: add "show trace" to report trace state and statistics
10660 - MINOR: trace: implement a very basic trace() function
10661 - MINOR: trace: add the file name and line number in the prefix
10662 - MINOR: trace: make trace() now also take a level in argument
10663 - MINOR: trace: implement a call to a decode function
10664 - MINOR: trace: add per-level macros to produce traces
10665 - MINOR: trace: add a definition of typed arguments to trace()
10666 - MINOR: trace: make sure to always stop the locking when stopping or pausing
10667 - MINOR: trace: add the possibility to lock on some arguments
10668 - MINOR: trace: parse the "lock" argument to trace
10669 - MINOR: trace: retrieve useful pointers and enforce lock-on
10670 - DOC: management: document the "trace" and "show trace" commands
10671 - BUILD: trace: make the lockon_ptr const to silence a warning without threads
10672 - BUG/MEDIUM: mux-h1: do not truncate trailing 0CRLF on buffer boundary
10673 - BUG/MEDIUM: mux-h1: do not report errors on transfers ending on buffer full
10674 - DOC: fixed typo in management.txt
10675 - BUG/MINOR: mworker: disable SIGPROF on re-exec
10676 - BUG/MEDIUM: listener/threads: fix an AB/BA locking issue in delete_listener()
10677 - BUG/MEDIUM: url32 does not take the path part into account in the returned hash.
10678 - MINOR: backend: Add srv_queue converter
10679 - MINOR: sink: set the fd-type sinks to non-blocking
10680 - MINOR: tools: add a function varint_bytes() to report the size of a varint
10681 - MINOR: buffer: add functions to read/write varints from/to buffers
10682 - MINOR: fd: add fd_write_frag_line() to send a fragmented line to an fd
10683 - MINOR: sink: now call the generic fd write function
10684 - MINOR: ring: add a new mechanism for retrieving/storing ring data in buffers
10685 - MINOR: ring: add a ring_write() function
10686 - MINOR: ring: add a generic CLI io_handler to dump a ring buffer
10687 - MINOR: sink: add support for ring buffers
10688 - MINOR: sink: implement "show events" to show supported sinks and dump the rings
10689 - MINOR: sink: now report the number of dropped events on output
10690 - MINOR: trace: support a default callback for the source
10691 - MINOR: trace: extend the source location to 13 chars
10692 - MINOR: trace: show thread number and source name in the trace
10693 - MINOR: trace: change the TRACE() calling convention to put the args and cb last
10694 - MINOR: connection: add the fc_pp_authority fetch -- authority TLV, from PROXYv2
10695 - MINOR: tools: add a generic struct "name_desc" for name-description pairs
10696 - MINOR: trace: replace struct trace_lockon_args with struct name_desc
10697 - MINOR: trace: change the "payload" level to "data" and move it
10698 - MINOR: trace: prepend the function name for developer level traces
10699 - MINOR: trace: also report the trace level in the output
10700 - MINOR: trace: change the detail_level to per-source verbosity
10701 - MINOR: mux-h2/trace: register a new trace source with its events
10702 - MINOR: mux-h2/trace: add the default decoding callback
10703 - MEDIUM: mux-h2/trace: add lots of traces all over the code
10704 - MINOR: mux-h2: add functions to convert an h2c/h2s state to a string
10705 - MINOR: mux-h2/trace: add a new verbosity level "clean"
10706 - MINOR: mux-h2/trace: only decode the start-line at verbosity other than "minimal"
10707 - MINOR: mux-h2/trace: always report the h2c/h2s state and flags
10708 - MINOR: mux-h2/trace: report h2s->id before h2c->dsi for the stream ID
10709 - CLEANUP: mux-h2/trace: reformat the "received" messages for better alignment
10710 - CLEANUP: mux-h2/trace: lower-case event names
10711 - MINOR: trace: extend default event names to 12 chars
10712 - BUG/MINOR: ring: fix the way watchers are counted
10713 - MINOR: cli: extend the CLI context with a list and two offsets
10714 - MINOR: mux-h2/trace: report the connection pointer and state before FRAME_H
10715 - MEDIUM: ring: implement a wait mode for watchers
10716 - BUG/MEDIUM: mux-h2/trace: do not dereference h2c->conn after failed idle
10717 - BUG/MEDIUM: mux-h2/trace: fix missing braces added with traces
10718 - BUG/MINOR: ring: b_peek_varint() returns a uint64_t, not a size_t
10719 - CLEANUP: fd: remove leftovers of the fdcache
10720 - MINOR: fd: add a new "initialized" bit in the fdtab struct
10721 - MINOR: fd/log/sink: make the non-blocking initialization depend on the initialized bit
10722 - MEDIUM: log: use the new generic fd_write_frag_line() function
10723 - MINOR: log: add a target type instead of hacking the address family
10724 - MEDIUM: log: add support for logging to a ring buffer
10725 - MINOR: send-proxy-v2: sends authority TLV according to TLV received
10726 - MINOR: build: add linux-glibc-legacy build TARGET
10727 - BUG/MEDIUM: peers: local peer socket not bound.
10728 - BUILD: connection: silence gcc warning with extra parentheses
10729 - BUG/MINOR: http-ana: Reset response flags when 1xx messages are handled
10730 - BUG/MINOR: h1: Properly reset h1m when parsing is restarted
10731 - BUG/MINOR: mux-h1: Fix size evaluation of HTX messages after headers parsing
10732 - BUG/MINOR: mux-h1: Don't stop anymore input processing when the max is reached
10733 - BUG/MINOR: mux-h1: Be sure to update the count before adding EOM after trailers
10734 - BUG/MEDIUM: cache: Properly copy headers splitted on several shctx blocks
10735 - BUG/MEDIUM: cache: Don't cache objects if the size of headers is too big
10736 - BUG/MINOR: mux-h1: Fix a possible null pointer dereference in h1_subscribe()
10737 - MEDIUM: fd: remove the FD_EV_POLLED status bit
10738 - MEDIUM: fd: simplify the fd_*_{recv,send} functions using BTS/BTR
10739 - MINOR: fd: make updt_fd_polling() a normal function
10740 - CONTRIB: debug: add new program "poll" to test poll() events
10741 - BUG/MINOR: checks: stop polling for write when we have nothing left to send
10742 - BUG/MINOR: checks: start sending the request right after connect()
10743 - BUG/MINOR: checks: make __event_chk_srv_r() report success before closing
10744 - BUG/MINOR: checks: do not uselessly poll for reads before the connection is up
10745 - BUG/MINOR: mux-h1: Fix a UAF in cfg_h1_headers_case_adjust_postparser()
10746 - BUILD: CI: add basic CentOS 6 cirrus build
10747 - MINOR: contrib/prometheus-exporter: Report DRAIN/MAINT/NOLB status for servers
10748 - BUG/MINOR: lb/leastconn: ignore the server weights for empty servers
10749 - BUG/MAJOR: ssl: ssl_sock was not fully initialized.
10750 - MEDIUM: fd: mark the FD as ready when it's inserted
10751 - MINOR: fd: add two new calls fd_cond_{recv,send}()
10752 - MEDIUM: connection: enable reading only once the connection is confirmed
10753 - MINOR: fd: add two flags ERR and SHUT to describe FD states
10754 - MEDIUM: fd: do not use the FD_POLL_* flags in the pollers anymore
10755 - BUG/MEDIUM: connection: don't keep more idle connections than ever needed
10756 - MINOR: stats: report the number of idle connections for each server
10757 - BUILD: CI: skip reg-tests/connection/proxy_protocol_random_fail.vtc on CentOS 6
10758 - BUILD/MINOR: auth: enabling for osx
10759 - BUG/MINOR: listener: Fix a possible null pointer dereference
10760 - BUG/MINOR: ssl: always check for ssl connection before getting its XPRT context
10761 - MINOR: stats: Add JSON export from the stats page
10762 - BUG/MINOR: filters: Properly set the HTTP status code on analysis error
10763 - MINOR: sample: Add UUID-fetch
10764 - CLEANUP: mux-h2: Remove unused flag H2_SF_DATA_CHNK
10765 - BUG/MINOR: acl: Fix memory leaks when an ACL expression is parsed
10766 - BUG/MINOR: backend: Fix a possible null pointer dereference
10767 - BUG/MINOR: Missing stat_field_names (since f21d17bb)
10768 - BUG/MEDIUM: stick-table: Properly handle "show table" with a data type argument
10769 - BUILD: CI: temporarily disable ASAN
10770 - MINOR: htx: Add a flag on HTX message to report processing errors
10771 - MINOR: mux-h1: Report a processing error during output processing
10772 - MINOR: http-ana: Handle HTX errors first during message analysis
10773 - MINOR: http-ana: Remove err_state field from http_msg
10774 - MINOR: config: Support per-proxy and per-server deinit functions callbacks
10775 - MINOR: config: Support per-proxy and per-server post-check functions callbacks
10776 - MINOR: http_fetch: Add sample fetches to get auth method/user/pass
10777 - MINOR: istbuf: Add the function b_isteqi()
10778 - MINOR: log: Provide a function to emit a log for an application
10779 - MINOR: http: Add function to parse value of the header Status
10780 - MEDIUM: mux-h1/h1-htx: move HTX convertion of H1 messages in dedicated file
10781 - MINOR: h1-htx: Use the same function to copy message payload in all cases
10782 - MINOR: muxes/htx: Ignore pseudo header during message formatting
10783 - MINOR: fcgi: Add code related to FCGI protocol
10784 - MEDIUM: fcgi-app: Add FCGI application and filter
10785 - MEDIUM: mux-fcgi: Add the FCGI multiplexer
10786 - MINOR: doc: Add documentation about the FastCGI support
10787 - BUG/MINOR: build: Fix compilation of mux_fcgi.c when compiled without SSL
10788 - BUILD: CI: install golang-1.13 when building BoringSSL
10789 - BUG/MINOR: mux-h2: Be sure to have a connection to unsubcribe
10790 - BUG/MINOR: mux-fcgi: Be sure to have a connection to unsubcribe
10791 - CLEANUP: fcgi-app: Remove useless test on fcgi_conf pointer
10792 - BUG/MINOR: mux-fcgi: Don't compare the filter name in its parsing callback
10793 - BUG/MAJOR: mux-h2: Handle HEADERS frames received after a RST_STREAM frame
10794 - BUG/MEDIUM: check/threads: make external checks run exclusively on thread 1
10795 - MEDIUM: list: Separate "locked" list from regular list.
10796 - MINOR: mt_lists: Add new macroes.
10797 - MEDIUM: servers: Use LIST_DEL_INIT() instead of LIST_DEL().
10798 - MINOR: mt_lists: Do nothing in MT_LIST_ADD/MT_LIST_ADDQ if already in list.
10799 - MINOR: mt_lists: Give MT_LIST_ADD, MT_LIST_ADDQ and MT_LIST_DEL a return value.
10800 - MEDIUM: tasklets: Make the tasklet list a struct mt_list.
10801 - TESTS: Add a stress-test for mt_lists.
10802 - BUILD: travis-ci: add PCRE2, SLZ build
10803 - BUG/MINOR: build: fix event ports (Solaris)
10804 - BUG/MEDIUM: namespace: fix fd leak in master-worker mode
10805 - OPTIM: listeners: use tasklets for the multi-queue rings
10806 - BUILD: makefile: work around yet another GCC fantasy (-Wstring-plus-int)
10807 - BUG/MINOR: stream-int: Process connection/CS errors first in si_cs_send()
10808 - BUG/MEDIUM: stream-int: Process connection/CS errors during synchronous sends
10809 - BUG/MEDIUM: checks: make sure the connection is ready before trying to recv
10810 - CLEANUP: task: remove impossible test
10811 - CLEANUP: task: cache the task_per_thread pointer
10812 - MINOR: task: split the tasklet vs task code in process_runnable_tasks()
10813 - MINOR: task: introduce a thread-local "sched" variable for local scheduler stuff
10814 - CLEANUP: mux-fcgi: Remove the unused function fcgi_strm_id()
10815 - BUG/MINOR: mux-fcgi: Use a literal string as format in app_log()
10816 - BUG/MEDIUM: tasklets: Make sure we're waking the target thread if it sleeps.
10817 - MINOR: h2/trace: indicate 'F' or 'B' to locate the side of an h2c in traces
10818 - MINOR: h2/trace: report the frame type when known
10819 - BUG/MINOR: mux-h2: do not wake up blocked streams before the mux is ready
10820 - BUG/MEDIUM: namespace: close open namespaces during soft shutdown
10821 - MINOR: time: add timeofday_as_iso_us() to return instant time as ISO
10822 - MINOR: sink: finally implement support for SINK_FMT_{TIMED,ISO}
10823 - MINOR: sink: change ring buffer "buf0"'s format to "timed"
10824 - BUG/MEDIUM: mux-h2: don't reject valid frames on closed streams
10825 - BUG/MINOR: mux-fcgi: silence a gcc warning about null dereference
10826 - BUG/MINOR: mux-h2: Fix missing braces because of traces in h2_detach()
10827 - BUG/MINOR: mux-h2: Use the dummy error when decoding headers for a closed stream
10828 - BUG/MAJOR: mux_h2: Don't consume more payload than received for skipped frames
10829 - BUG/MINOR: mux-h1: Do h2 upgrade only on the first request
10830 - BUG/MEDIUM: spoe: Use a different engine-id per process
10831 - MINOR: spoe: Improve generation of the engine-id
10832 - MINOR: spoe: Support the async mode with several threads
10833 - MINOR: http: Add server name header from HTTP multiplexers
10834 - CLEANUP: http-ana: Remove the unused function http_send_name_header()
10835 - MINOR: stats: Add the support of float fields in stats
10836 - BUG/MINOR: contrib/prometheus-exporter: Return the time averages in seconds
10837 - DOC: Fix documentation about the cli command to get resolver stats
10838 - BUG/MEDIUM: fcgi: fix missing list tail in sample fetch registration
10839 - BUG/MINOR: stats: Add a missing break in a switch statement
10840 - BUG/MINOR: lua: Properly initialize the buffer's fields for string samples in hlua_lua2(smp|arg)
10841 - CLEANUP: lua: Get rid of obsolete (size_t *) cast in hlua_lua2(smp|arg)
10842 - BUG/MEDIUM: lua: Store stick tables into the sample's `t` field
10843 - CLEANUP: proxy: Remove `proxy_tbl_by_name`
10844 - BUILD: ssl: fix a warning when built with openssl < 1.0.2
10845 - DOC: replace utf-8 quotes by ascii ones
10846 - BUG/MEDIUM: fd: HUP is an error only when write is active
10847 - BUG/MINOR: action: do-resolve does not yield on requests with body
10848 - Revert "MINOR: cache: allow caching of OPTIONS request"
10849
Willy Tarreaudb514072019-07-16 19:15:28 +0200108502019/07/16 : 2.1-dev1
10851 - BUG/MEDIUM: h2/htx: Update data length of the HTX when the cookie list is built
10852 - DOC: this is a development branch again.
10853 - MEDIUM: Make 'block' directive fatal
10854 - MEDIUM: Make 'redispatch' directive fatal
10855 - MEDIUM: Make '(cli|con|srv)timeout' directive fatal
10856 - MEDIUM: Remove 'option independant-streams'
10857 - MINOR: sample: Add sha2([<bits>]) converter
10858 - MEDIUM: server: server-state global file stored in a tree
10859 - BUG/MINOR: lua/htx: Make txn.req_req_* and txn.res_rep_* HTX aware
10860 - BUG/MINOR: mux-h1: Add the header connection in lower case in outgoing messages
10861 - BUG/MEDIUM: compression: Set Vary: Accept-Encoding for compressed responses
10862 - MINOR: htx: Add the function htx_change_blk_value_len()
10863 - BUG/MEDIUM: htx: Fully update HTX message when the block value is changed
10864 - BUG/MEDIUM: mux-h2: Reset padlen when several frames are demux
10865 - BUG/MEDIUM: mux-h2: Remove the padding length when a DATA frame size is checked
10866 - BUG/MEDIUM: lb_fwlc: Don't test the server's lb_tree from outside the lock
10867 - BUG/MAJOR: sample: Wrong stick-table name parsing in "if/unless" ACL condition.
10868 - BUILD: mworker: silence two printf format warnings around getpid()
10869 - BUILD: makefile: use :space: instead of digits to count commits
10870 - BUILD: makefile: adjust the sed expression of "make help" for solaris
10871 - BUILD: makefile: do not rely on shell substitutions to determine git version
10872 - BUG/MINOR: mworker-prog: Fix segmentation fault during cfgparse
10873 - BUG/MINOR: spoe: Fix memory leak if failing to allocate memory
10874 - BUG/MEDIUM: mworker: don't call the thread and fdtab deinit
10875 - BUG/MEDIUM: stream_interface: Don't add SI_FL_ERR the state is < SI_ST_CON.
10876 - BUG/MEDIUM: connections: Always add the xprt handshake if needed.
10877 - BUG/MEDIUM: ssl: Don't do anything in ssl_subscribe if we have no ctx.
10878 - BUG/MEDIUM: mworker/cli: command pipelining doesn't work anymore
10879 - BUG/MINOR: htx: Save hdrs_bytes when the HTX start-line is replaced
10880 - BUG/MAJOR: mux-h1: Don't crush trash chunk area when outgoing message is formatted
10881 - BUG/MINOR: memory: Set objects size for pools in the per-thread cache
10882 - BUG/MINOR: log: Detect missing sampling ranges in config
10883 - BUG/MEDIUM: proto_htx: Don't add EOM on 1xx informational messages
10884 - BUG/MEDIUM: mux-h1: Use buf_room_for_htx_data() to detect too large messages
10885 - BUG/MINOR: mux-h1: Make format errors during output formatting fatal
10886 - BUG/MEDIUM: ssl: Don't attempt to set alpn if we're not using SSL.
10887 - BUG/MEDIUM: mux-h1: Always release H1C if a shutdown for writes was reported
10888 - BUG/MINOR: mworker/cli: don't output a \n before the response
10889 - BUG/MEDIUM: checks: unblock signals in external checks
10890 - BUG/MINOR: mux-h1: Skip trailers for non-chunked outgoing messages
10891 - BUG/MINOR: mux-h1: Don't return the empty chunk on HEAD responses
10892 - BUG/MEDIUM: connections: Always call shutdown, with no linger.
10893 - BUG/MEDIUM: checks: Make sure the tasklet won't run if the connection is closed.
10894 - BUG/MINOR: contrib/prometheus-exporter: Don't use channel_htx_recv_max()
10895 - BUG/MINOR: hlua: Don't use channel_htx_recv_max()
10896 - BUG/MEDIUM: channel/htx: Use the total HTX size in channel_htx_recv_limit()
10897 - BUG/MINOR: hlua/htx: Respect the reserve when HTX data are sent
10898 - BUG/MINOR: contrib/prometheus-exporter: Respect the reserve when data are sent
10899 - BUG/MEDIUM: connections: Make sure we're unsubscribe before upgrading the mux.
10900 - BUG/MEDIUM: servers: Authorize tfo in default-server.
10901 - BUG/MEDIUM: sessions: Don't keep an extra idle connection in sessions.
10902 - MINOR: server: Add "no-tfo" option.
10903 - BUG/MINOR: contrib/prometheus-exporter: Don't try to add empty data blocks
10904 - MINOR: action: Add the return code ACT_RET_DONE for actions
10905 - BUG/MEDIUM: http/applet: Finish request processing when a service is registered
10906 - BUG/MEDIUM: lb_fas: Don't test the server's lb_tree from outside the lock
10907 - BUG/MEDIUM: mux-h1: Handle TUNNEL state when outgoing messages are formatted
10908 - BUG/MINOR: mux-h1: Don't process input or ouput if an error occurred
10909 - MINOR: stream-int: Factorize processing done after sending data in si_cs_send()
10910 - BUG/MEDIUM: stream-int: Don't rely on CF_WRITE_PARTIAL to unblock opposite si
10911 - DOC: contrib: spoa_server Add some hints for building spoa_server
10912 - DOC: Fix typo in intro.txt
10913 - BUG/MEDIUM: servers: Don't forget to set srv_cs to NULL if we can't reuse it.
10914 - BUG/MINOR: ssl: revert empty handshake detection in OpenSSL <= 1.0.2
10915 - MINOR: pools: release the pool's lock during the malloc/free calls
10916 - MINOR: pools: always pre-initialize allocated memory outside of the lock
10917 - MINOR: pools: make the thread harmless during the mmap/munmap syscalls
10918 - BUG/MEDIUM: fd/threads: fix excessive CPU usage on multi-thread accept
10919 - BUG/MINOR: server: Be really able to keep "pool-max-conn" idle connections
10920 - BUG/MEDIUM: checks: Don't attempt to read if we destroyed the connection.
10921 - BUG/MEDIUM: da: cast the chunk to string.
10922 - DOC: Fix typos and grammer in configuration.txt
10923 - CLEANUP: proto_tcp: Remove useless header inclusions.
10924 - BUG/MEDIUM: servers: Fix a race condition with idle connections.
10925 - MINOR: task: introduce work lists
10926 - BUG/MAJOR: listener: fix thread safety in resume_listener()
10927 - BUG/MEDIUM: mux-h1: Don't release h1 connection if there is still data to send
10928 - BUG/MINOR: mux-h1: Correctly report Ti timer when HTX and keepalives are used
10929 - BUG/MEDIUM: streams: Don't give up if we couldn't send the request.
10930 - BUG/MEDIUM: streams: Don't redispatch with L7 retries if redispatch isn't set.
10931 - BUG/MINOR: mux-pt: do not pretend there's more data after a read0
10932 - BUG/MEDIUM: tcp-check: unbreak multiple connect rules again
10933 - MEDIUM: mworker-prog: Add user/group options to program section
10934 - REGTESTS: checks: tcp-check connect to multiple ports
10935 - BUG/MEDIUM: threads: cpu-map designating a single thread/process are ignored
10936
Willy Tarreau9dc6b972019-06-16 21:49:47 +0200109372019/06/16 : 2.1-dev0
10938 - exact copy of 2.0.0
10939
Willy Tarreauba236302019-06-16 20:00:26 +0200109402019/06/16 : 2.0.0
10941 - MINOR: fd: Don't use atomic operations when it's not needed.
10942 - DOC: mworker-prog: documentation for the program section
10943 - MINOR: http: add a new "http-request replace-uri" action
10944 - BUG/MINOR: 51d/htx: The _51d_fetch method, and the methods it calls are now HTX aware.
10945 - MINOR: 51d: Added dummy libraries for the 51Degrees module for testing.
10946 - MINOR: mworker: change formatting in uptime field of "show proc"
10947 - MINOR: mworker: add the HAProxy version in "show proc"
10948 - MINOR: doc: Remove -Ds option in man page
10949 - MINOR: doc: add master-worker in the man page
10950 - MINOR: doc: mention HAPROXY_LOCALPEER in the man
10951 - BUILD: Silence gcc warning about unused return value
10952 - CLEANUP: 51d: move the 51d dummy lib to contrib/51d/src to match the real lib
10953 - BUILD: travis-ci: add 51Degree device detection, update openssl to 1.1.1c
10954 - MINOR: doc: update the manpage and usage message about -S
10955 - BUILD/MINOR: 51d: Updated build registration output to indicate thatif the library is a dummy one or not.
10956 - BUG/MEDIUM: h1: Don't wait for handshake if we had an error.
10957 - BUG/MEDIUM: h1: Wait for the connection if the handshake didn't complete.
10958 - BUG/MINOR: task: prevent schedulable tasks from starving under high I/O activity
10959 - BUG/MINOR: fl_trace/htx: Be sure to always forward trailers and EOM
10960 - BUG/MINOR: channel/htx: Call channel_htx_full() from channel_full()
10961 - BUG/MINOR: http: Use the global value to limit the number of parsed headers
10962 - BUG/MINOR: htx: Detect when tail_addr meet end_addr to maximize free rooms
10963 - BUG/MEDIUM: htx: Don't change position of the first block during HTX analysis
10964 - CLEANUP: channel: Remove channel_htx_fwd_payload() and channel_htx_fwd_all()
10965 - BUG/MEDIUM: proto_htx: Introduce the state ENDING during forwarding
10966 - MINOR: htx: Add 3 flags on the start-line to deal with the request schemes
10967 - MINOR: h2: Set flags about the request's scheme on the start-line
10968 - MINOR: mux-h1: Set flags about the request's scheme on the start-line
10969 - MINOR: mux-h2: Forward clients scheme to servers checking start-line flags
10970 - MEDIUM: server: server-state only rely on server name
10971 - CLEANUP: connection: rename the wait_event.task field to .tasklet
10972 - CLEANUP: tasks: rename task_remove_from_tasklet_list() to tasklet_remove_*
10973 - BUG/MEDIUM: connections: Don't call shutdown() if we want to disable linger.
10974 - DOC: add some environment variables in section 2.3
10975 - BUILD: makefile: clarify the "help" output and list options
10976 - BUG/MINOR: mux-h1: Wake busy mux for I/O when message is fully sent
10977 - BUG: tasks: fix bug introduced by latest scheduler cleanup
10978 - BUG/MEDIUM: mux-h2: fix early close with option abortonclose
10979 - BUG/MEDIUM: connections: Don't use ALPN to pick mux when in mode TCP.
10980 - BUG/MEDIUM: connections: Don't try to send early data if we have no mux.
10981 - BUG/MEDIUM: mux-h2: properly account for the appended data in HTX
10982 - BUILD: makefile: further clarify the "help" output and list targets
10983 - BUILD: makefile: rename "linux2628" to "linux-glibc" and remove older targets
10984 - BUILD: travis-ci: switch to linux-glibc instead of linux2628
10985 - DOC: update few references to the linux* targets and change them to linux-glibc
10986 - BUILD: makefile: detect and reject recently removed linux targets
10987 - BUILD: makefile: enable linux namespaces by default on linux
10988 - BUILD: makefile: enable TFO on linux platforms
10989 - BUILD: makefile: enable getaddrinfo on the linux-glibc target
10990 - DOC: small updates to the CONTRIBUTING file
10991 - BUG/MEDIUM: ssl: Make sure we initiate the handshake after using early data.
10992 - CLEANUP: removed obsolete examples an move a few to better places
10993 - DOC: Fix typos in CONTRIBUTING
10994 - DOC: update the outdated ROADMAP file
10995 - DOC: create a BRANCHES file to explain the life cycle
10996 - DOC: mention in INSTALL haproxy 2.0 is a long-term supported stable version
10997 - BUILD: travis-ci: TFO and GETADDRINFO are now enabled by default
10998 - BUILD: makefile: make the obsolete target detection compatible with make-3.80
10999 - BUILD: tools: work around an internal compiler bug in gcc-3.4
11000 - BUILD: pattern: work around an internal compiler bug in gcc-3.4
11001 - BUILD: makefile: enable USE_RT on Solaris
11002 - BUILD: makefile: do not use echo -n
11003 - DOC: mention a few common build errors in the INSTALL file
11004
Willy Tarreauca3551f2019-06-11 19:28:00 +0200110052019/06/11 : 2.0-dev7
11006 - BUG/MEDIUM: mux-h2: make sure the connection timeout is always set
11007 - MINOR: tools: add new bitmap manipulation functions
11008 - MINOR: logs: use the new bitmap functions instead of fd_sets for encoding maps
11009 - MINOR: chunks: Make sure trash_size is only set once.
11010 - Revert "MINOR: chunks: Make sure trash_size is only set once."
11011 - MINOR: threads: serialize threads initialization
11012 - MINOR peers: data structure simplifications for server names dictionary cache.
11013 - DOC: peers: Update for dictionary cache entries for peers protocol.
11014 - MINOR: dict: Store the length of the dictionary entries.
11015 - MINOR: peers: A bit of optimization when encoding cached server names.
11016 - MINOR: peers: Optimization for dictionary cache lookup.
11017 - MEDIUM: tools: improve time format error detection
11018 - BUG/MEDIUM: H1: When upgrading, make sure we don't free the buffer too early.
11019 - BUG/MEDIUM: stream_interface: Make sure we call si_cs_process() if CS_FL_EOI.
11020 - MINOR: threads: avoid clearing harmless twice in thread_release()
11021 - MEDIUM: threads: add thread_sync_release() to synchronize steps
11022 - BUG/MEDIUM: init/threads: prevent initialized threads from starting before others
11023 - OPTIM/MINOR: init/threads: only call protocol_enable_all() on first thread
11024 - BUG/MINOR: dict: race condition fix when inserting dictionary entries.
11025 - MEDIUM: init/threads: don't use spinlocks during the init phase
11026 - BUG/MINOR: cache/htx: Fix the counting of data already sent by the cache applet
11027 - BUG/MEDIUM: compression/htx: Fix the adding of the last data block
11028 - MINOR: flt_trace: Don't scrash the original offset during the random forwarding
11029 - MAJOR: htx: Rework how free rooms are tracked in an HTX message
11030 - MINOR: htx: Add the function htx_move_blk_before()
11031 - Revert "BUG/MEDIUM: H1: When upgrading, make sure we don't free the buffer too early."
11032 - BUG/MINOR: http-rules: mention "deny_status" for "deny" in the error message
11033 - MINOR: http: turn default error files to HTTP/1.1
11034 - BUG/MEDIUM: h1: Don't try to subscribe if we had a connection error.
11035 - BUG/MEDIUM: h1: Don't consider we're connected if the handshake isn't done.
11036 - MINOR: contrib/spoa_server: Upgrade SPOP to 2.0
11037 - BUG/MEDIUM: contrib/spoa_server: Set FIN flag on agent frames
11038 - MINOR: contrib/spoa_server: Add random IP score
11039 - DOC/MINOR: contrib/spoa_server: Fix typo in README
11040
Willy Tarreaub57f1092019-06-07 06:12:59 +0200110412019/06/07 : 2.0-dev6
11042 - BUG/MEDIUM: connection: fix multiple handshake polling issues
11043 - MINOR: connection: also stop receiving after a SOCKS4 response
11044 - MINOR: mux-h1: don't try to recv() before the connection is ready
11045 - BUG/MEDIUM: mux-h1: only check input data for the current stream, not next one
11046 - MEDIUM: mux-h1: don't use CS_FL_REOS anymore
11047 - CLEANUP: connection: remove the now unused CS_FL_REOS flag
11048 - CONTRIB: debug: add 4 missing connection/conn_stream flags
11049 - MEDIUM: stream: make a full process_stream() loop when completing I/O on exit
11050 - MINOR: server: increase the default pool-purge-delay to 5 seconds
11051 - BUILD: tools: do not use the weak attribute for trace() on obsolete linkers
11052 - BUG/MEDIUM: vars: make sure the scope is always valid when accessing vars
11053 - BUG/MEDIUM: vars: make the tcp/http unset-var() action support conditions
11054 - BUILD: task: fix a build warning when threads are disabled
11055 - CLEANUP: peers: Remove tabs characters.
11056 - CLEANUP: peers: Replace hard-coded values by macros.
11057 - BUG/MINOR: peers: Wrong stick-table update message building.
11058 - MINOR: dict: Add dictionary new data structure.
11059 - MINOR: peers: Add a LRU cache implementation for dictionaries.
11060 - MINOR: stick-table: Add "server_name" new data type.
11061 - MINOR: cfgparse: Space allocation for "server_name" stick-table data type.
11062 - MINOR: proxy: Add a "server by name" tree to proxy.
11063 - MINOR: server: Add a dictionary for server names.
11064 - MINOR: stream: Stickiness server lookup by name.
11065 - MINOR: peers: Make peers protocol support new "server_name" data type.
11066 - MINOR: stick-table: Make the CLI stick-table handler support dictionary entry data type.
11067 - REGTEST: Add a basic server by name stickiness reg test.
11068 - MINOR: peers: Add dictionary cache information to "show peers" CLI command.
11069 - MINOR: peers: Replace hard-coded for peer protocol 64-bits value encoding by macros.
11070 - MINOR: peers: Replace hard-coded values for peer protocol messaging by macros.
11071 - CLEANUP: ssl: remove unneeded defined(OPENSSL_IS_BORINGSSL)
11072 - BUILD: travis-ci improvements
11073 - MINOR: SSL: add client/server random sample fetches
11074 - BUG/MINOR: channel/htx: Don't alter channel during forward for empty HTX message
11075 - BUG/MINOR: contrib/prometheus-exporter: Add HTX data block in one time
11076 - BUG/MINOR: mux-h1: errflag must be set on H1S and not H1M during output processing
11077 - MEDIUM: mux-h1: refactor output processing
11078 - MINOR: mux-h1: Add the flag HAVE_O_CONN on h1s
11079 - MINOR: mux-h1: Add h1_eval_htx_hdrs_size() to estimate size of the HTX headers
11080 - MINOR: mux-h1: Don't count the EOM in the estimated size of headers
11081 - MEDIUM: cache/htx: Always store info about HTX blocks in the cache
11082 - MEDIUM: htx: Add the parsing of trailers of chunked messages
11083 - MINOR: htx: Don't use end-of-data blocks anymore
11084 - BUG/MINOR: mux-h1: Don't send more data than expected
11085 - BUG/MINOR: flt_trace/htx: Only apply the random forwarding on the message body.
11086 - BUG/MINOR: peers: Wrong "server_name" decoding.
11087 - BUG/MEDIUM: servers: Don't attempt to destroy idle connections if disabled.
11088 - MEDIUM: checks: Make sure we unsubscribe before calling cs_destroy().
11089 - MEDIUM: connections: Wake the upper layer even if sending/receiving is disabled.
11090 - MEDIUM: ssl: Handle subscribe by itself.
11091 - MINOR: ssl: Make ssl_sock_handshake() static.
11092 - MINOR: connections: Add a new xprt method, remove_xprt.
11093 - MINOR: connections: Add a new xprt method, add_xprt().
11094 - MEDIUM: connections: Introduce a handshake pseudo-XPRT.
11095 - MEDIUM: connections: Remove CONN_FL_SOCK*
11096 - BUG/MEDIUM: ssl: Don't forget to initialize ctx->send_recv and ctx->recv_wait.
11097 - BUG/MINOR: peers: Wrong server name parsing.
11098 - MINOR: server: really increase the pool-purge-delay default to 5 seconds
11099 - BUG/MINOR: stream: don't emit a send-name-header in conn error or disconnect states
11100 - MINOR: stream-int: use bit fields to match multiple stream-int states at once
11101 - MEDIUM: stream-int: remove dangerous interval checks for stream-int states
11102 - MEDIUM: stream-int: introduce a new state SI_ST_RDY
11103 - MAJOR: stream-int: switch from SI_ST_CON to SI_ST_RDY on I/O
11104 - MEDIUM: stream-int: make idle-conns switch to ST_RDY
11105 - MEDIUM: stream: re-arrange the connection setup status reporting
11106 - MINOR: stream-int: split si_update() into si_update_rx() and si_update_tx()
11107 - MINOR: stream-int: make si_sync_send() from the send code of si_update_both()
11108 - MEDIUM: stream: rearrange the events to remove the loop
11109 - MEDIUM: stream: only loop on flags relevant to the analysers
11110 - MEDIUM: stream: don't abusively loop back on changes on CF_SHUT*_NOW
11111 - BUILD: stream-int: avoid a build warning in dev mode in si_state_bit()
11112 - BUILD: peers: fix a build warning about an incorrect intiialization
11113 - BUG/MINOR: time: make sure only one thread sets global_now at boot
11114 - BUG/MEDIUM: tcp: Make sure we keep the polling consistent in tcp_probe_connect.
11115
Willy Tarreauabc874e2019-06-02 12:06:08 +0200111162019/06/02 : 2.0-dev5
11117 - BUILD: watchdog: use si_value.sival_int, not si_int for the timer's value
11118 - BUILD: signals: FreeBSD has SI_LWP instead of SI_TKILL
11119 - BUILD: watchdog: condition it to USE_RT
11120 - MINOR: raw_sock: report global traffic statistics
11121 - MINOR: stats: report the global output bit rate in human readable form
11122 - BUG/MINOR: proto-htx: Try to keep connections alive on redirect
11123 - BUG/MEDIUM: spoe: Don't use the SPOE applet after releasing it
11124 - BUG/MINOR: lua: Set right direction and flags on new HTTP objects
11125 - BUG/MINOR: mux-h2: Count EOM in bytes sent when a HEADERS frame is formatted
11126 - BUG/MINOR: mux-h1: Report EOI instead EOS on parsing error or H2 upgrade
11127 - BUG/MEDIUM: proto-htx: Not forward too much data when 1xx reponses are handled
11128 - BUG/MINOR: htx: Remove a forgotten while loop in htx_defrag()
11129 - DOC: fix typos
11130 - BUG/MINOR: ssl_sock: Fix memory leak when disabling compression
11131 - OPTIM: freq-ctr: don't take the date lock for most updates
11132 - MEDIUM: mux-h2: avoid doing expensive buffer realigns when not absolutely needed
11133 - CLEANUP: debug: remove the TRACE() macro
11134 - MINOR: buffer: introduce b_make() to make a buffer from its parameters
11135 - MINOR: buffer: add a new buffer ring API to manipulate rings of buffers
11136 - MEDIUM: mux-h2: replace all occurrences of mbuf with a buffer ring
11137 - MEDIUM: mux-h2: make the conditions to send based on mbuf, not just its tail
11138 - MINOR: mux-h2: introduce h2_release_mbuf() to release all buffers in the mbuf ring
11139 - MEDIUM: mux-h2: make the send() function iterate over all mux buffers
11140 - CLEANUP: mux-h2: consistently use a local variable for the mbuf
11141 - MINOR: mux-h2: report the mbuf's head and tail in "show fd"
11142 - MAJOR: mux-h2: switch to next mux buffer on buffer full condition.
11143 - BUILD: connections: shut up gcc about impossible out-of-bounds warning
11144 - BUILD: ssl: fix latest LibreSSL reg-test error
11145 - MINOR: cli/activity: remove "fd_del" and "fd_skip" from show activity
11146 - MINOR: cli/activity: add 3 general purpose counters in development mode
11147 - BUG/MAJOR: lb/threads: make sure the avoided server is not full on second pass
11148 - BUG/MEDIUM: queue: fix the tree walk in pendconn_redistribute.
11149 - BUG/MEDIUM: threads: fix double-word CAS on non-optimized 32-bit platforms
11150 - MEDIUM: config: now alert when two servers have the same name
11151 - MINOR: htx: Remove the macro IS_HTX_SMP() and always use IS_HTX_STRM() instead
11152 - MINOR: htx: Move the macro IS_HTX_STRM() in proto/stream.h
11153 - MINOR: htx: Store the head position instead of the wrap one
11154 - MINOR: htx: Store start-line block's position instead of address of its payload
11155 - MINOR: htx: Add functions to get the first block of an HTX message
11156 - MINOR: mux-h2/htx: Get the start-line from the head when HEADERS frame is built
11157 - MINOR: htx: Replace the function http_find_stline() by http_get_stline()
11158 - CLEANUP: htx: Remove unused function htx_get_stline()
11159 - MINOR: http/htx: Use sl_pos directly to replace the start-line
11160 - MEDIUM: http/htx: Perform analysis relatively to the first block
11161 - MINOR: channel/htx: Call channel_htx_recv_max() from channel_recv_max()
11162 - MINOR: htx: Add function htx_get_max_blksz()
11163 - BUG/MINOR: htx: Change htx_xfer_blk() to also count metadata
11164 - MEDIUM: mux-h1: Use the count value received from the SI in h1_rcv_buf()
11165 - MINOR: mux-h2: Use the count value received from the SI in h2_rcv_buf()
11166 - MINOR: stream-int: Don't use the flag CO_RFL_KEEP_RSV anymore in si_cs_recv()
11167 - MINOR: connection: Remove the unused flag CO_RFL_KEEP_RSV
11168 - MINOR: mux-h2/htx: Support zero-copy when possible in h2_rcv_buf()
11169 - MINOR: htx: Add a field to set the memory used by headers in the HTX start-line
11170 - MINOR: h2/htx: Set hdrs_bytes on the SL when an HTX message is produced
11171 - MINOR: mux-h1: Set hdrs_bytes on the SL when an HTX message is produced
11172 - MINOR: htx: Be sure to xfer all headers in one time in htx_xfer_blks()
11173 - MEDIUM: htx: 1xx messages are now part of the final reponses
11174 - MINOR: channel/htx: Add function to forward headers of an HTX message
11175 - MINOR: filters/htx: Use channel_htx_fwd_headers() after headers filtering
11176 - MINOR: proto-htx: Use channel_htx_fwd_headers() to forward 1xx responses
11177 - MEDIUM: htx: Store the first block position instead of the start-line one
11178 - MINOR: stats/htx: don't use the first block position but the head one
11179 - MINOR: channel/htx: Add functions to forward a part or all HTX payload
11180 - MINOR: proto-htx: Use channel_htx_fwd_all() when unfiltered body are forwarded
11181 - MEDIUM: filters/htx: Filter body relatively to the first block
11182 - MINOR: htx: Optimize htx_drain() when all data are drained
11183 - MINOR: htx: don't rely on htx_find_blk() anymore in the function htx_truncate()
11184 - MINOR: htx: remove the unused function htx_find_blk()
11185 - MINOR: htx: Remove support of pseudo headers because it is unused
11186 - BUG/MEDIUM: http: fix "http-request reject" when not final
11187 - MINOR: ssl: Make sure the underlying xprt's init method doesn't fail.
11188 - MINOR: ssl: Don't forget to call the close method of the underlying xprt.
11189 - MINOR: htx: rename htx_append_blk_value() to htx_add_data_atonce()
11190 - MINOR: htx: make htx_add_data() return the transmitted byte count
11191 - MEDIUM: htx: make htx_add_data() never defragment the buffer
11192 - MINOR: activity: write totals on the "show activity" output
11193 - MINOR: activity: report totals and average separately
11194 - MEDIUM: poller: separate the wait time from the wake events
11195 - MINOR: activity: report the number of failed pool/buffer allocations
11196 - MEDIUM: buffers: relax the buffer lock a little bit
11197 - MINOR: task: turn the WQ lock to an RW_LOCK
11198 - MEDIUM: task: don't grab the WR lock just to check the WQ
11199 - BUG/MEDIUM: mux-h1: Don't skip the TCP splicing when there is no more data to read
11200 - MEDIUM: sessions: Introduce session flags.
11201 - BUG/MEDIUM: h2: Don't forget to set h2s->cs to NULL after having free'd cs.
11202 - BUG/MEDIUM: mux-h2: fix the conditions to end the h2_send() loop
11203 - BUG/MEDIUM: mux-h2: don't refrain from offering oneself a used buffer
11204 - BUG/MEDIUM: connection: Use the session to get the origin address if needed.
11205 - MEDIUM: tasks: Get rid of active_tasks_mask.
11206 - MEDIUM: connection: Upstream SOCKS4 proxy support
11207 - BUILD: contrib/prometheus: fix build breakage caused by move of idle_pct
11208 - BUG/MINOR: deinit/threads: make hard-stop-after perform a clean exit
11209
Willy Tarreau56740692019-05-22 20:48:33 +0200112102019/05/22 : 2.0-dev4
11211 - BUILD: enable freebsd builds on cirrus-ci
11212 - BUG/MINOR: http_fetch: Rely on the smp direction for "cookie()" and "hdr()"
11213 - MEDIUM: Make 'option forceclose' actually warn
11214 - MEDIUM: Make 'resolution_pool_size' directive fatal
11215 - DOC: management: place "show activity" at the right place
11216 - MINOR: cli/activity: show the dumping thread ID starting at 1
11217 - MINOR: task: export global_task_mask
11218 - MINOR: cli/debug: add a thread dump function
11219 - BUG/MEDIUM: streams: Don't use CF_EOI to decide if the request is complete.
11220 - BUG/MEDIUM: streams: Try to L7 retry before aborting the connection.
11221 - BUG/MINOR: debug: make ha_task_dump() always check the task before dumping it
11222 - BUG/MINOR: debug: make ha_task_dump() actually dump the requested task
11223 - MINOR: debug: make ha_thread_dump() and ha_task_dump() take a buffer
11224 - BUG/MINOR: debug: don't check the call date on tasklets
11225 - MINOR: thread: implement ha_thread_relax()
11226 - MINOR: task: put barriers after each write to curr_task
11227 - MINOR: task: always reset curr_task when freeing a task or tasklet
11228 - MINOR: stream: detach the stream from its own task on stream_free()
11229 - MEDIUM: debug/threads: implement an advanced thread dump system
11230 - REGTEST: extend the check duration on tls_health_checks and mark it slow
11231 - DOC: fix "successful" typo
11232 - MINOR: init: setenv HAPROXY_CFGFILES
11233 - MINOR: threads/init: synchronize the threads startup
11234 - MEDIUM: init/mworker: make the pipe register function a regular initcall
11235 - CLEANUP: memory: make the fault injection code use the OTHER_LOCK label
11236 - CLEANUP: threads: remove the now unused START_LOCK label
11237 - MINOR: init/threads: make the global threads an array of structs
11238 - MINOR: threads: add each thread's clockid into the global thread_info
11239 - CLEANUP: stream: remove an obsolete debugging test
11240 - MINOR: tools: add dump_hex()
11241 - MINOR: debug: implement ha_panic()
11242 - MINOR: debug/cli: add some debugging commands for developers
11243 - MINOR: tools: provide a may_access() function and make dump_hex() use it
11244 - MINOR: debug: make ha_panic() report threads starting at 1
11245 - REORG: compat: move some integer limit definitions from standard.h to compat.h
11246 - REORG: threads: move the struct thread_info from global.h to hathreads.h
11247 - MINOR: compat: make sure to always define clockid_t
11248 - MINOR: threads: always place the clockid in the struct thread_info
11249 - MINOR: threads: add a thread-local thread_info pointer "ti"
11250 - MINOR: time: move the cpu, mono, and idle time to thread_info
11251 - MINOR: time: add a function to retrieve another thread's cputime
11252 - MINOR: debug: report each thread's cpu usage in "show thread"
11253 - BUILD: threads: only assign the clock_id when supported
11254 - BUILD: makefile: use USE_OBSOLETE_LINKER for solaris
11255 - BUILD: makefile: remove -fomit-frame-pointer optimisation (solaris)
11256 - MAJOR: polling: add event ports support (Solaris)
11257 - BUG/MEDIUM: streams: Don't switch from SI_ST_CON to SI_ST_DIS on read0.
11258 - CLEANUP: time: refine the test on _POSIX_TIMERS
11259 - MINOR: compat: define a new empty type empty_t for non-implemented fields
11260 - CLEANUP: time: switch clockid_t to empty_t when not available
11261 - BUG/MINOR: mworker: Fix memory leak of mworker_proc members
11262 - CLEANUP: objtype: make obj_type() and obj_type_name() take consts
11263 - MINOR: debug: switch to SIGURG for thread dumps
11264 - CLEANUP: threads: really move thread_info to hathreads.c
11265 - MINOR: threads: make threads_{harmless|want_rdv}_mask constant 0 without threads
11266 - CLEANUP: debug: always report harmless/want_rdv even without threads
11267 - MINOR: threads: implement ha_tkill() and ha_tkillall()
11268 - CLEANUP: debug: make use of ha_tkill() and remove ifdefs
11269 - MINOR: stream: introduce a stream_dump() function and use it in stream_dump_and_crash()
11270 - MINOR: debug: dump streams when an applet, iocb or stream is known
11271 - MINOR: threads: add a "stuck" flag to the thread_info struct
11272 - MINOR: threads: add a timer_t per thread in thread_info
11273 - MAJOR: watchdog: implement a thread lockup detection mechanism
11274 - MINOR: stream: remove the cpu time detection from process_stream()
11275 - MINOR: connection: report the mux names in "haproxy -vv"
11276 - CLEANUP: mux-h1: use "H1" and not "h1" as the mux's name
11277 - BUG/MEDIUM: WURFL: segfault in wurfl-get() with missing info.
11278 - MINOR: WURFL: call header_retireve_callback() in dummy library
11279 - MINOR: WURFL: fixed Engine load failed error when wurfl-information-list contains wurfl_root_id
11280 - MINOR: WURFL: shows log messages during module initialization
11281 - MINOR: WURFL: removes heading wurfl-information-separator from wurfl-get-all() and wurfl-get() results
11282 - MINOR: WURFL: wurfl_get() and wurfl_get_all() now return an empty string if device detection fails
11283 - MEDIUM: WURFL: HTX awareness.
11284 - MINOR: WURFL: module version bump to 2.0
11285 - MINOR: WURFL: do not emit warnings when not configured
11286 - CONTRIB: wurfl: address 3 build issues in the wurfl dummy library
11287 - BUG/MEDIUM: init/threads: provide per-thread alloc/free function callbacks
11288 - BUILD: travis: add sanitizers to travis-ci builds
11289 - BUILD: time: remove the test on _POSIX_C_SOURCE
11290 - CLEANUP: build: rename some build macros to use the USE_* ones
11291 - CLEANUP: raw_sock: remove support for very old linux splice bug workaround
11292 - BUG/MEDIUM: dns: make the port numbers unsigned
11293 - MEDIUM: config: deprecate the antique req* and rsp* commands
11294
Willy Tarreaua257a9b2019-05-15 16:51:48 +0200112952019/05/15 : 2.0-dev3
11296 - BUG/MINOR: peers: Really close the sessions with no heartbeat.
11297 - CLEANUP: peers: remove useless annoying tabulations.
11298 - CLEANUP: peers: replace timeout constants by macros.
11299 - REGTEST: Enable again reg tests with HEAD HTTP method usage.
11300 - DOC: The option httplog is no longer valid in a backend.
11301 - DOC: peers: Peers protocol documentation update.
11302 - REGTEST: remove unexpected "nbthread" statement from Lua test cases
11303 - BUILD: Makefile: remove 11-years old workarounds for deprecated options
11304 - BUILD: remove 10-years old error message for obsolete option USE_TCPSPLICE
11305 - BUILD: Makefile: remove outdated support for dlmalloc
11306 - BUILD: Makefile: consider a variable's origin and not its value for the options list
11307 - BUILD: Makefile: also report disabled options in the BUILD_OPTIONS variable
11308 - BUILD: Makefile: shorten default settings declaration
11309 - BUILD: Makefile: clean up the target declarations
11310 - BUILD: report the whole feature set with their status in haproxy -vv
11311 - BUILD: pass all "USE_*" variables as -DUSE_* to the compiler
11312 - REGTEST: script: make the script use the new features list
11313 - REGTEST: script: remove platform-specific assigments of OPTIONS
11314 - BUG/MINOR: peers: Missing initializations after peer session shutdown.
11315 - BUG/MINOR: contrib/prometheus-exporter: Fix applet accordingly to recent changes
11316 - BUILD/MINOR: listener: Silent a few signedness warnings.
11317 - BUG/MINOR: mux-h1: Only skip invalid C-L headers on output
11318 - BUG/MEDIUM: mworker: don't free the wrong child when not found
11319 - BUG/MEDIUM: checks: Don't bother subscribing if we have a connection error.
11320 - BUG/MAJOR: checks: segfault during tcpcheck_main
11321 - BUILD: makefile: work around an old bug in GNU make-3.80
11322 - BUILD: makefile: work around another bug in make 3.80
11323 - BUILD: http: properly mark some struct as extern
11324 - BUILD: chunk: properly declare pool_head_trash as extern
11325 - BUILD: cache: avoid a build warning with some compilers/linkers
11326 - MINOR: tools: make memvprintf() never pass a NULL target to vsnprintf()
11327 - MINOR: tools: add an unsetenv() implementation
11328 - BUILD: re-implement an initcall variant without using executable sections
11329 - BUILD: use inttypes.h instead of stdint.h
11330 - BUILD: connection: fix naming of ip_v field
11331 - BUILD: makefile: fix build of IPv6 header on aix51
11332 - BUILD: makefile: add _LINUX_SOURCE_COMPAT to build on AIX-51
11333 - BUILD: define unsetenv on AIX 5.1
11334 - BUILD: Makefile: disable shared cache on AIX 5.1
11335 - MINOR: ssl: Add aes_gcm_dec converter
11336 - REORG: mworker: move serializing functions to mworker.c
11337 - REORG: mworker: move signals functions to mworker.c
11338 - REORG: mworker: move IPC functions to mworker.c
11339 - REORG: mworker: move signal handlers and related functions
11340 - REORG: mworker: move mworker_cleanlisteners to mworker.c
11341 - MINOR: mworker: calloc mworker_proc structures
11342 - MINOR: mworker: don't use children variable anymore
11343 - MINOR: cli: export cli_parse_default() definition in cli.h
11344 - REORG: mworker/cli: move CLI functions to mworker.c
11345 - MEDIUM: mworker-prog: implement program for master-worker
11346 - MINOR: mworker/cli: show programs in 'show proc'
11347 - BUG/MINOR: cli: correctly handle abns in 'show cli sockets'
11348 - MINOR: cli: start addresses by a prefix in 'show cli sockets'
11349 - MINOR: cli: export HAPROXY_CLI environment variable
11350 - BUG/MINOR: htx: Preserve empty HTX messages with an unprocessed parsing error
11351 - BUG/MINOR: proto_htx: Reset to_forward value when a message is set to DONE
11352 - REGTEST: http-capture/h00000: Relax a regex matching the log message
11353 - REGTEST: http-messaging/h00000: Fix the test when the HTX is enabled
11354 - REGTEST: http-rules/h00003: Use a different client for requests expecting a 301
11355 - REGTEST: log/b00000: Be sure the client always hits its timeout
11356 - REGTEST: lua/b00003: Relax the regex matching the log message
11357 - REGTEST: lua/b00003: Specify the HAProxy pid when the command ss is executed
11358 - BUG/MEDIUM: peers: fix a case where peer session is not cleanly reset on release.
11359 - BUG/MEDIUM: h2: Don't attempt to recv from h2_process_demux if we subscribed.
11360 - BUG/MEDIUM: htx: fix random premature abort of data transfers
11361 - BUG/MEDIUM: streams: Don't remove the SI_FL_ERR flag in si_update_both().
11362 - BUG/MEDIUM: streams: Store prev_state before calling si_update_both().
11363 - BUG/MEDIUM: stream: Don't clear the stream_interface flags in si_update_both.
11364 - MINOR: initcall: Don't forget to define the __start/stop_init_##stg symbols.
11365 - MINOR: threads: Implement thread_cpus_enabled() for FreeBSD.
11366 - BUG/MEDIUM: pattern: assign pattern IDs after checking the config validity
11367 - MINOR: skip get_gmtime where tm is unused
11368 - MINOR: ssl: Activate aes_gcm_dec converter for BoringSSL
11369 - BUG/MEDIUM: streams: Only re-run process_stream if we're in a connected state.
11370 - BUG/MEDIUM: stream_interface: Don't bother doing chk_rcv/snd if not connected.
11371 - BUG/MEDIUM: task/threads: address a fairness issue between local and global tasks
11372 - BUG/MINOR: tasks: make sure the first task to be queued keeps its nice value
11373 - BUG/MINOR: listener: renice the accept ring processing task
11374 - MINOR: cli/listener: report the number of accepts on "show activity"
11375 - MINOR: cli/activity: report the accept queue sizes in "show activity"
11376 - BUG/MEDIUM: spoe: Queue message only if no SPOE applet is attached to the stream
11377 - BUG/MEDIUM: spoe: Return an error if nothing is encoded for fragmented messages
11378 - BUG/MINOR: spoe: Be sure to set tv_request when each message fragment is encoded
11379 - BUG/MEDIUM: htx: Defrag if blocks position is changed and the payloads wrap
11380 - BUG/MEDIUM: htx: Don't crush blocks payload when append is done on a data block
11381 - MEDIUM: htx: Deprecate the option 'http-tunnel' and ignore it in HTX
11382 - MINOR: proto_htx: Don't adjust transaction mode anymore in HTX analyzers
11383 - BUG/MEDIUM: htx: Fix the process of HTTP CONNECT with h2 connections
11384 - MINOR: mux-h1: Simplify handling of 1xx responses
11385 - MINOR: stats/htx: Don't add "Connection: close" header anymore in stats responses
11386 - MEDIUM: h1: Add an option to sanitize connection headers during parsing
11387 - MEDIUM: mux-h1: Simplify the connection mode management by sanitizing headers
11388 - MINOR: mux-h1: Don't release the conn_stream anymore when h1s is destroyed
11389 - BUG/MINOR: mux-h1: Handle the flag CS_FL_KILL_CONN during a shutdown read/write
11390 - MINOR: mux-h2: Add a mux_ops dedicated to the HTX mode
11391 - MINOR: muxes: Add a flag to specify a multiplexer uses the HTX
11392 - MINOR: stream: Set a flag when the stream uses the HTX
11393 - MINOR: http: update the macro IS_HTX_STRM() to check the stream flag SF_HTX
11394 - MINOR: http_fetch/htx: Use stream flags instead of px mode in smp_prefetch_htx
11395 - MINOR: filters/htx: Use stream flags instead of px mode to instanciate a filter
11396 - MINOR: muxes: Rely on conn_is_back() during init to handle front/back conn
11397 - MEDIUM: muxes: Add an optional input buffer during mux initialization
11398 - MINOR: muxes: Pass the context of the mux to destroy() instead of the connection
11399 - MEDIUM: muxes: Be prepared to don't own connection during the release
11400 - MEDIUM: connection: Add conn_upgrade_mux_fe() to handle mux upgrades
11401 - MEDIUM: htx: Allow the option http-use-htx to be used on TCP proxies too
11402 - MAJOR: proxy/htx: Handle mux upgrades from TCP to HTTP in HTX mode
11403 - MAJOR: muxes/htx: Handle inplicit upgrades from h1 to h2
11404 - MAJOR: htx: Enable the HTX mode by default for all proxies
11405 - REGTEST: Use HTX by default and add '--no-htx' option to disable it
11406 - BUG/MEDIUM: muxes: Don't dereference mux context if null in release functions
11407 - CLEANUP: task: do not export rq_next anymore
11408 - MEDIUM: tasks: improve fairness between the local and global queues
11409 - MEDIUM: tasks: only base the nice offset on the run queue depth
11410 - MINOR: tasks: restore the lower latency scheduling when niced tasks are present
11411 - BUG/MEDIUM: map: Fix memory leak in the map converter
11412 - BUG/MINOR: ssl: Fix 48 byte TLS ticket key rotation
11413 - BUILD: task/thread: fix single-threaded build of task.c
11414 - BUILD: cli/threads: fix build in single-threaded mode
11415 - BUG/MEDIUM: muxes: Make sure we unsubcribed when destroying mux ctx.
11416 - BUG/MEDIUM: h2: Make sure we're not already in the send_list in h2_subscribe().
11417 - BUG/MEDIUM: h2: Revamp the way send subscriptions works.
11418 - MINOR: connections: Remove the SUB_CALL_UNSUBSCRIBE flag.
11419 - BUG/MEDIUM: Threads: Only use the gcc >= 4.7 builtins when using gcc >= 4.7.
11420 - BUILD: address a few cases of "static <type> inline foo()"
11421 - BUILD: do not specify "const" on functions returning structs or scalars
11422 - BUILD: htx: fix a used uninitialized warning on is_cookie2
11423 - MINOR: peers: Add a new command to the CLI for peers.
11424 - DOC: update for "show peers" CLI command.
11425 - BUG/MAJOR: lb/threads: fix insufficient locking on round-robin LB
11426 - MEDIUM: mworker: store the leaving state of a process
11427 - MEDIUM: mworker-prog: implements 'option start-on-reload'
11428 - CLEANUP: mworker: remove the type field in mworker_proc
11429 - MEDIUM: mworker/cli: export the HAPROXY_MASTER_CLI variable
11430 - MINOR: cli: don't add a semicolon at the end of HAPROXY_CLI
11431 - MINOR: mworker: export HAPROXY_MWORKER=1 when running in mworker mode
11432 - MINOR: init: add a "set-dumpable" global directive to enable core dumps
11433 - BUG/MINOR: listener/mq: correctly scan all bound threads under low load
11434 - BUG/MINOR: mworker: mworker_kill should apply on every children
11435 - BUG/MINOR: mworker: don't exit with an ambiguous value
11436 - BUG/MINOR: mworker: ensure that we still quits with SIGINT
11437 - REGTESTS: exclude tests that require ssl, pcre if no such feature is enabled
11438 - BUG/MINOR: mux-h1: Process input even if the input buffer is empty
11439 - BUG/MINOR: mux-h1: Don't switch the parser in busy mode if other side has done
11440 - BUG/MEDIUM: mux-h1: Notify the stream waiting for TCP splicing if ibuf is empty
11441 - BUG/MEDIUM: mux-h1: Enable TCP splicing to exchange data only
11442 - MINOR: mux-h1: Handle read0 during TCP splicing
11443 - BUG/MEDIUM: htx: Don't return the start-line if the HTX message is empty
11444 - BUG/MAJOR: http_fetch: Get the channel depending on the keyword used
11445 - BUG/MINOR: http_fetch/htx: Allow permissive sample prefetch for the HTX
11446 - BUG/MINOR: http_fetch/htx: Use HTX versions if the proxy enables the HTX mode
11447 - BUG/MEDIUM: tasks: Make sure we set TASK_QUEUED before adding a task to the rq.
11448 - BUG/MEDIUM: tasks: Make sure we modify global_tasks_mask with the rq_lock.
11449 - MINOR: tasks: Don't consider we can wake task with tasklet_wakeup().
11450 - MEDIUM: tasks: No longer use rq.node.leaf_p as a lock.
11451 - MINOR: tasks: Don't set the TASK_RUNNING flag when adding in the tasklet list.
11452 - BUG/MEDIUM: applets: Don't use task_in_rq().
11453 - BUG/MAJOR: task: make sure never to delete a queued task
11454 - MINOR: task/thread: factor out a wake-up condition
11455 - CLEANUP: task: remain consistent when using the task's handler
11456 - MEDIUM: tasks: Merge task_delete() and task_free() into task_destroy().
11457 - MEDIUM: tasks: Don't account a destroyed task as a runned task.
11458 - BUG/MINOR: contrib/prometheus-exporter: Fix a typo in the run-queue metric type
11459 - MINOR: contrib/prometheus-exporter: Remove usless rate metrics
11460 - MINOR: contrib/prometheus-exporter: Rename some metrics to be more usable
11461 - MINOR: contrib/prometheus-exporter: Follow best practices about metrics type
11462 - BUG/MINOR: mworker: disable busy polling in the master process
11463 - MEDIUM: tasks: Use __ha_barrier_store after modifying global_tasks_mask.
11464 - MEDIUM: ssl: Give ssl_sock its own context.
11465 - MEDIUM: connections: Move some fields from struct connection to ssl_sock_ctx.
11466 - MEDIUM: ssl: provide its own subscribe/unsubscribe function.
11467 - MEDIUM: connections: Provide a xprt_ctx for each xprt method.
11468 - MEDIUM: ssl: provide our own BIO.
11469 - BUILD/medium: ssl: Fix build with OpenSSL < 1.1.0
11470 - MINOR: peers: adds counters on show peers about tasks calls.
11471 - MEDIUM: enable travis-ci builds
11472 - MINOR: fd: Add a counter of used fds.
11473 - MEDIUM: connections: Add a way to control the number of idling connections.
11474 - BUG/MEDIUM: maps: only try to parse the default value when it's present
11475 - BUG/MINOR: acl: properly detect pattern type SMP_T_ADDR
11476 - REGTEST: Missing REQUIRE_VERSION declarations.
11477 - MINOR: proto_tcp: tcp-request content: enable set-dst and set-dst-var
11478 - BUG/MEDIUM: h1: Don't parse chunks CRLF if not enough data are available
11479 - BUG/MEDIUM: thread/http: Add missing locks in set-map and add-acl HTTP rules
11480 - BUG/MEDIUM: stream: Don't request a server connection if a shutw was scheduled
11481 - BUG/MINOR: 51d: Get the request channel to call CHECK_HTTP_MESSAGE_FIRST()
11482 - BUG/MINOR: da: Get the request channel to call CHECK_HTTP_MESSAGE_FIRST()
11483 - MINOR: gcc: Fix a silly gcc warning in connect_server()
11484 - MINOR: ssl/cli: async fd io-handlers printable on show fd
11485 - Revert "CLEANUP: wurfl: remove dead, broken and unmaintained code"
11486 - BUILD: add USE_WURFL to the list of known build options
11487 - MINOR: wurfl: indicate in haproxy -vv the wurfl version in use
11488 - BUILD: wurfl: build fix for 1.9/2.0 code base
11489 - CLEANUP: wurfl: removed deprecated methods
11490 - DOC: wurfl: added point of contact in MAINTAINERS file
11491 - MINOR: wurfl: enabled multithreading mode
11492 - MINOR: contrib: dummy wurfl library
11493 - MINOR: dns: dns_requester structures are now in a memory pool
11494 - MINOR: dns: move callback affection in dns_link_resolution()
11495 - MINOR: obj_type: new object type for struct stream
11496 - MINOR: action: new '(http-request|tcp-request content) do-resolve' action
11497 - MINOR: log: Extract some code to send syslog messages.
11498 - REGTEST: replace LEVEL option by a more human readable one.
11499 - REGTEST: rename the reg test files.
11500 - REGTEST: adapt some reg tests after renaming.
11501 - REGTEST: make the "run-regtests" script search for tests in reg-tests by default
11502 - BUG/MAJOR: stream: Missing DNS context initializations.
11503 - BUG/MEDIUM: stream: Fix the way early aborts on the client side are handled
11504 - BUG/MINOR: spoe: Don't systematically wakeup SPOE stream in the applet handler
11505 - BUG/MEDIUM: ssl: Return -1 on recv/send if we got EAGAIN.
11506 - BUG/MAJOR: lb/threads: fix AB/BA locking issue in round-robin LB
11507 - BUG/MAJOR: muxes: Use the HTX mode to find the best mux for HTTP proxies only
11508 - BUG/MINOR: htx: Exclude TCP proxies when the HTX mode is handled during startup
11509 - CLEANUP: task: report calls as unsigned in show sess
11510 - MINOR: tasks/activity: report the context switch and task wakeup rates
11511 - MINOR: stream: measure and report a stream's call rate in "show sess"
11512 - MINOR: applet: measure and report an appctx's call rate in "show sess"
11513 - BUILD: extend Travis CI config to support more platforms
11514 - REGTEST: exclude osx and generic targets for 40be_2srv_odd_health_checks
11515 - REGTEST: relax the IPv6 address format checks in converters_ipmask_concat_strcmp_field_word
11516 - REGTEST: exclude OSX and generic targets from abns_socket.vtc
11517 - BUILD: travis: remove the "allow_failures" entry
11518 - BUG/MINOR: activity: always initialize the profiling variable
11519 - MINOR: activity: make the profiling status per thread and not global
11520 - MINOR: activity: enable automatic profiling turn on/off
11521 - CLEANUP: standard: use proper const to addr_to_str() and port_to_str()
11522 - BUG/MINOR: proto_http: properly reset the stream's call rate on keep-alive
11523 - MINOR: connection: make the debugging helper functions safer
11524 - MINOR: stream/debug: make a stream dump and crash function
11525 - MEDIUM: appctx/debug: force a crash if an appctx spins over itself forever
11526 - MEDIUM: stream/debug: force a crash if a stream spins over itself forever
11527 - MEDIUM: streams: measure processing time and abort when detecting bugs
11528 - BUILD/MEDIUM: contrib: Dummy DeviceAtlas API.
11529 - MEDIUM: da: HTX mode support.
11530 - BUG/MEDIUM: mux-h2: properly deal with too large headers frames
11531 - BUG/MINOR: http: Call stream_inc_be_http_req_ctr() only one time per request
11532 - BUG/MEDIUM: spoe: arg len encoded in previous frag frame but len changed
11533 - MINOR: spoe: Use the sample context to pass frag_ctx info during encoding
11534 - DOC: contrib/modsecurity: Typos and fix the reject example
11535 - BUG/MEDIUM: contrib/modsecurity: If host header is NULL, don't try to strdup it
11536 - MINOR: log: Add "sample" new keyword to "log" lines.
11537 - MINOR: log: Enable the log sampling and load-balancing feature.
11538 - DOC: log: Document the sampling and load-balancing logging feature.
11539 - REGTEST: Add a new reg test for log load-balancing feature.
11540 - BUG/MAJOR: map/acl: real fix segfault during show map/acl on CLI
11541 - REGTEST: Make this reg test be Linux specific.
11542 - CLEANUP: task: move the task_per_thread definition to task.h
11543 - MINOR: activity: report context switch counts instead of rates
11544 - MINOR: threads: Implement HA_ATOMIC_LOAD().
11545 - BUG/MEDIUM: port_range: Make the ring buffer lock-free.
11546 - BUG/MEDIUM: listener: Fix how unlimited number of consecutive accepts is handled
11547 - MINOR: config: Test validity of tune.maxaccept during the config parsing
11548 - CLEANUP: config: Don't alter listener->maxaccept when nbproc is set to 1
11549 - BUG/MEDIUM: servers: fix typo "src" instead of "srv"
11550 - BUG/MEDIUM: ssl: Don't pretend we can retry a recv/send if we got a shutr/w.
11551 - BUG/MINOR: haproxy: fix rule->file memory leak
11552 - BUG/MINOR: log: properly free memory on logformat parse error and deinit()
11553 - BUG/MINOR: checks: free memory allocated for tasklets
11554 - BUG/MEDIUM: pattern: fix memory leak in regex pattern functions
11555 - BUG/MEDIUM: channels: Don't forget to reset output in channel_erase().
11556 - BUG/MEDIUM: connections: Make sure we remove CO_FL_SESS_IDLE on disown.
11557 - MINOR: threads: flatten the per-thread cpu-map
11558 - MINOR: init/threads: remove the useless tids[] array
11559 - MINOR: init/threads: make the threads array global
11560 - BUG/MEDIUM: ssl: Use the early_data API the right way.
11561 - BUG/MEDIUM: streams: Don't add CF_WRITE_ERROR if early data were rejected.
11562 - MEDIUM: streams: Add the ability to retry a request on L7 failure.
11563 - MEDIUM: streams: Add a way to replay failed 0rtt requests.
11564 - MEDIUM: streams: Add a new keyword for retry-on, "junk-response"
11565 - BUG/MINOR: stream: also increment the retry stats counter on L7 retries
11566 - BUG/MEDIUM: checks: make sure the warmup task takes the server lock
11567 - BUG/MINOR: logs/threads: properly split the log area upon startup
11568 - BUILD: extend travis-ci matrix
11569 - CLEANUP: Remove appsession documentation
11570 - DOC: Fix typo in keyword matrix
11571 - BUILD: remove "build_libressl" duplicate declaration
11572 - BUILD: travis-ci: get back to osx without openssl support
11573 - BUILD: enable several LibreSSL hacks, including
11574 - BUILD: temporarily mark LibreSSL builds as allowed to fail
11575 - BUILD: travis: TMPDIR replacement.
11576 - BUG/MEDIUM: ssl: Don't attempt to use early data with libressl.
11577 - MINOR: doc: Document allow-0rtt on the server line.
11578 - MINOR: doc: Document the interaction of allow-0rtt and retry-on 0rtt-rejected.
11579 - MEDIUM: proto: Change the prototype of the connect() method.
11580 - MEDIUM: tcp: add the "tfo" option to support TCP fastopen on the server
11581 - MINOR: config: Extract the code of "stick-table" line parsing.
11582 - BUILD/MINOR: stick-table: Compilation fix.
11583 - MEDIUM: stick-table: Stop handling stick-tables as proxies.
11584 - MINOR: stick-tables: Add peers process binding computing.
11585 - MINOR: stick-table: Add prefixes to stick-table names.
11586 - MINOR: peers: Do not emit global stick-table names.
11587 - DOC: Update for "table" lines in "peers" section.
11588 - REGTEST: Add reg tests for "table" lines in "peers" sections.
11589 - MEDIUM: regex: modify regex_comp() to atomically allocate/free the my_regex struct
11590 - REGTEST: make the tls_health_checks test much faster
11591 - REGTEST: make the "table in peers" test require v2.0
11592 - BUG/MINOR: mux-h2: rely on trailers output not input to turn them to empty data
11593 - BUG/MEDIUM: h2/htx: always fail on too large trailers
11594 - MEDIUM: mux-h2: discard contents that are to be sent after a shutdown
11595 - BUG/MEDIUM: mux-h2/htx: never wait for EOM when processing trailers
11596 - BUG/MEDIUM: h2/htx: never leave a trailers block alone with no EOM block
11597 - REGTEST: Flag some slow reg tests.
11598 - REGTEST: Reg tests file renaming.
11599 - REGTEST: Wrong renaming for one reg test.
11600 - REGTEST: Wrong assumption in IP:port logging test.
11601 - BUG/MINOR: mworker/ssl: close OpenSSL FDs on reload
11602 - MINOR: systemd: Use the variables from /etc/default/haproxy
11603 - MINOR: systemd: Make use of master socket in systemd unit
11604 - MINOR: systemd: support /etc/sysconfig/ for redhat based distrib
11605 - BUG/MEDIUM: stick-table: fix regression caused by a change in proxy struct
11606 - BUG/MEDIUM: tasks: fix possible segfault on task_destroy()
11607 - CLEANUP: task: remove unneeded tests before task_destroy()
11608 - MINOR: mworker: support a configurable maximum number of reloads
11609 - BUG/MINOR: mux-h2: fix the condition to close a cs-less h2s on the backend
11610 - BUG/MEDIUM: spoe: Be sure the sample is found before setting its context
11611 - BUG/MINOR: mux-h1: Fix the parsing of trailers
11612 - BUG/MINOR: htx: Never transfer more than expected in htx_xfer_blks()
11613 - MINOR: htx: Split on DATA blocks only when blocks are moved to an HTX message
11614 - MINOR: htx: Don't try to append a trailer block with the previous one
11615 - MINOR: htx: Remove support for unused OOB HTX blocks
11616 - BUILD: travis-ci bugfixes and improvements
11617 - BUG/MEDIUM: servers: Don't use the same srv flag for cookie-set and TFO.
11618 - BUG/MEDIUM: h2: Make sure we set send_list to NULL in h2_detach().
11619 - BUILD: ssl: fix again a libressl build failure after the openssl FD leak fix
11620 - CLEANUP: ssl-sock: use HA_OPENSSL_VERSION_NUMBER instead of OPENSSL_VERSION_NUMBER
11621 - BUILD: ssl: make libressl use its own version numbers
11622 - CLEANUP: ssl: remove 57 occurrences of useless tests on LIBRESSL_VERSION_NUMBER
11623 - MINOR: ssl: enable aes_gcm_dec on LibreSSL
11624 - BUILD: ssl: fix libressl build again after aes-gcm-enc
11625 - REORG: ssl: move openssl-compat from proto to common
11626 - REORG: ssl: move some OpenSSL defines from ssl_sock to openssl-compat
11627 - CLEANUP: ssl: never include openssl/*.h outside of openssl-compat.h anymore
11628 - CLEANUP: ssl: make inclusion of openssl headers safe
11629 - BUILD: add BoringSSL to travis-ci build matrix
11630 - BUILD: threads: Add __ha_cas_dw fallback for single threaded builds
11631 - BUG/MINOR: stream: Attach the read side on the response as soon as possible
11632 - BUG/MEDIUM: http: Use pointer to the begining of input to parse message headers
11633 - BUG/MEDIUM: h2: Don't check send_wait to know if we're in the send_list.
11634 - BUG/MEDIUM: streams: Make sur SI_FL_L7_RETRY is set before attempting a retry.
11635 - MEDIUM: streams: Add a new http action, disable-l7-retry.
11636 - MINOR: streams: Introduce a new retry-on keyword, all-retryable-errors.
11637 - BUG/MINOR: vars: Fix memory leak in vars_check_arg
11638 - BUILD: travis-ci: make TMPDIR global variable in travis-ci
11639 - CLEANUP: ssl: move the SSL_OP_* and SSL_MODE_* definitions to openssl-compat
11640 - CLEANUP: ssl: remove ifdef around SSL_CTX_get_extra_chain_certs()
11641 - CLEANUP: ssl: move all BIO_* definitions to openssl-compat
11642 - BUILD: threads: fix again the __ha_cas_dw() definition
11643 - BUG/MAJOR: mux-h2: do not add a stream twice to the send list
11644 - Revert "BUG/MINOR: vars: Fix memory leak in vars_check_arg"
11645 - BUG/MINOR: peers: Fix memory leak in cfg_parse_peers
11646 - BUG/MINOR: htx: make sure to always initialize the HTTP method when parsing a buffer
11647 - REGTEST: fix tls_health_checks random failures on MacOS in Travis-CI
11648 - MINOR: spoe: Set the argument chunk size to 0 when SPOE variables are checked
11649 - BUG/MINOR: vars: Fix memory leak in vars_check_arg
11650 - BUG/MAJOR: ssl: segfault upon an heartbeat request
11651 - MINOR: spoa-server: Clone the v1.7 spoa-example project
11652 - MINOR: spoa-server: move some definition from spoa_server.c to spoa_server.h
11653 - MINOR: spoa-server: Externalise debug functions
11654 - MINOR: spoe-server: rename "worker" functions
11655 - MINOR: spoa-server: Replace the thread init system by processes
11656 - MINOR: spoa-server: With debug mode, start only one process
11657 - MINOR: spoa-server: Allow registering external processes
11658 - MINOR: spoa-server: Allow registering message processors
11659 - MINOR: spoa-server: Load files
11660 - MINOR: spoa-server: Prepare responses
11661 - MINOR: spoa-server: Execute registered callbacks
11662 - MINOR: spoa-server: Add Lua processing
11663 - MINOR: spoa-server: Add python
11664 - MINOR/DOC: spoe-server: Add documentation
11665 - BUG/MEDIUM: connections: Don't forget to set xprt_ctx to NULL on close.
11666 - MINOR: lists: add LIST_ADDED() to check if an element belongs to a list
11667 - CLEANUP: mux-h2: use LIST_ADDED() instead of LIST_ISEMPTY() where relevant
11668 - MINOR: mux-h2: add two H2S flags to report the need for shutr/shutw
11669 - CLEANUP: mux-h2: simply use h2s->flags instead of ret in h2_deferred_shut()
11670 - CLEANUP: connection: remove the handle field from the wait_event struct
11671 - BUG/MINOR: log: Wrong log format initialization.
11672 - BUG/MINOR: mux-h2: make the do_shut{r,w} functions more robust against retries
11673 - BUG/MINOR: mworker: use after free when the PID not assigned
11674 - MINOR: mux-h2: remove useless test on stream ID vs last in wake function
11675 - MINOR: mux-h2: make h2_wake_some_streams() not depend on the CS flags
11676 - MINOR: mux-h2: make h2s_wake_one_stream() the only function to deal with CS
11677 - MINOR: mux-h2: make h2s_wake_one_stream() not depend on temporary CS flags
11678 - BUG/MINOR: mux-h2: make sure to honor KILL_CONN in do_shut{r,w}
11679 - CLEANUP: mux-h2: don't test for impossible CS_FL_REOS conditions
11680 - MINOR: mux-h2: add macros to check multiple stream states at once
11681 - MINOR: mux-h2: stop relying on CS_FL_REOS
11682 - BUG/MEDIUM: mux-h2: Set EOI on the conn_stream during h2_rcv_buf()
11683 - BUILD: debug: make gcc not complain on the ABORT_NOW() macro
11684 - MINOR: debug: add a new BUG_ON macro
11685 - MINOR: h2: Use BUG_ON() to enforce rules in subscribe/unsubscribe.
11686 - MINOR: h1: Use BUG_ON() to enforce rules in subscribe/unsubscribe.
11687 - MINOR: connections: Use BUG_ON() to enforce rules in subscribe/unsubscribe.
11688 - BUILD: ist: turn the lower/upper case tables to literal on obsolete linkers
11689
Willy Tarreau6e893b92019-03-26 05:40:51 +0100116902019/03/26 : 2.0-dev2
11691 - CLEANUP: http: Remove unreachable code in parse_http_req_capture
11692 - CLEANUP: stream: Remove bogus loop in conn_si_send_proxy
11693 - MINOR: lists: Implement locked variations.
11694 - MEDIUM: servers: Used a locked list for idle_orphan_conns.
11695 - MEDIUM: servers: Reorganize the way idle connections are cleaned.
11696 - BUG/MEDIUM: lists: Properly handle the case we're removing the first elt.
11697 - MINOR: cfgparse: Add a cast to make gcc happier.
11698 - BUG/MEDIUM: standard: Wrong reallocation size.
11699 - BUG/MINOR: listener: keep accept rate counters accurate under saturation
11700 - DOC: fix alphabetic ordering for "tune.fail-alloc" setting
11701 - MAJOR: config: disable support for nbproc and nbthread in parallel
11702 - MEDIUM: listener: keep a single thread-mask and warn on "process" misuse
11703 - MAJOR: listener: do not hold the listener lock in listener_accept()
11704 - MINOR: listener: maintain a per-thread count of the number of connections on a listener
11705 - MINOR: tools: implement functions to look up the nth bit set in a mask
11706 - MINOR: listener: pre-compute some thread counts per bind_conf
11707 - MINOR: listener: implement multi-queue accept for threads
11708 - MAJOR: listener: use the multi-queue for multi-thread listeners
11709 - MINOR: activity: add accept queue counters for pushed and overflows
11710 - MINOR: config: add global tune.listener.multi-queue setting
11711 - MAJOR: threads: enable one thread per CPU by default
11712 - DOC: update management.txt to reflect that threads are used by default
11713 - BUG/MINOR: config: don't over-count the global maxsock value
11714 - BUG/MEDIUM: list: fix the rollback on addq in the locked liss
11715 - BUG/MEDIUM: list: fix LIST_POP_LOCKED's removal of the last pointer
11716 - BUG/MEDIUM: list: add missing store barriers when updating elements and head
11717 - MINOR: list: make the delete and pop operations idempotent
11718 - MINOR: server: remove a few unneeded LIST_INIT calls after LIST_DEL_LOCKED
11719 - BUG/MEDIUM: listener: use a self-locked list for the dequeue lists
11720 - BUG/MEDIUM: listener: make sure the listener never accepts too many conns
11721 - BUG/MEDIUM: list: correct fix for LIST_POP_LOCKED's removal of last element
11722 - MINOR: listener: introduce listener_backlog() to report the backlog value
11723 - MINOR: listener: do not needlessly set l->maxconn
11724 - MINOR: proxy: do not change the listeners' maxconn when updating the frontend's
11725 - MEDIUM: config: don't enforce a low frontend maxconn value anymore
11726 - MINOR: peers: Add a message for heartbeat.
11727 - MINOR: global: keep a copy of the initial rlim_fd_cur and rlim_fd_max values
11728 - BUG/MINOR: init: never lower rlim_fd_max
11729 - BUG/MINOR: checks: make external-checks restore the original rlim_fd_cur/max
11730 - BUG/MINOR: mworker: be careful to restore the original rlim_fd_cur/max on reload
11731 - MINOR: init: make the maxpipe computation more accurate
11732 - MINOR: init: move some maxsock updates earlier
11733 - MEDIUM: init: make the global maxconn default to what rlim_fd_cur permits
11734 - REGTEST: fix a spurious "nbthread 4" in the connection test
11735 - DOC: update the text related to the global maxconn value
11736 - BUG/MAJOR: mux-h2: fix race condition between close on both ends
11737 - MINOR: sample: Replace "req.ungrpc" smp fetch by a "ungrpc" converter.
11738 - BUG/MEDIUM: list: fix again LIST_ADDQ_LOCKED
11739 - MINOR: htx: unconditionally handle parsing errors in requests or responses
11740 - MINOR: mux-h2: always pass HTX_FL_PARSING_ERROR between h2s and buf on RX
11741 - BUG/MEDIUM: h2/htx: verify that :path doesn't contain invalid chars
11742 - MINOR: sample: Code factorization "ungrpc" converter.
11743 - MINOR: sample: Rework gRPC converter code.
11744 - CLEANUP: wurfl: remove dead, broken and unmaintained code
11745 - MINOR: config: relax the range checks on cpu-map
11746 - BUG/MINOR: ssl: fix warning about ssl-min/max-ver support
11747 - MINOR: sample: Extract some protocol buffers specific code.
11748 - DOC: Remove tabs and fixed punctuation.
11749 - MINOR: sample: Add a protocol buffers specific converter.
11750 - REGTEST: Peers reg tests.
11751 - REGTEST: Enable reg tests with HEAD HTTP method usage.
11752 - MINOR: lists: add a LIST_DEL_INIT() macro
11753 - MINOR: task: use LIST_DEL_INIT() to remove a task from the queue
11754 - MINOR: listener: improve incoming traffic distribution
11755 - MINOR: tools: implement my_flsl()
11756 - MEDIUM: listener: change the LB algorithm again to use two round robins instead
11757 - CLEANUP: listener: remove old thread bit mapping
11758 - MINOR: listener: move thr_idx from the bind_conf to the listener
11759 - BUG/MEDIUM: logs: Only attempt to free startup_logs once.
11760 - BUG/MAJOR: config: Wrong maxconn adjustment.
11761 - BUG/MEDIUM: 51d: fix possible segfault on deinit_51degrees()
11762 - OPTIM: task: limit the impact of memory barriers in taks_remove_from_task_list()
11763 - MINOR: fd: Remove debugging code.
11764 - BUG/MEDIUM: listeners: Don't call fd_stop_recv() if fd_updt is NULL.
11765 - MINOR: threads: Implement __ha_barrier_atomic*.
11766 - MEDIUM: threads: Use __ATOMIC_SEQ_CST when using the newer atomic API.
11767 - MINOR: threads: Add macros to do atomic operation with no memory barrier.
11768 - MEDIUM: various: Use __ha_barrier_atomic* when relevant.
11769 - MEDIUM: applets: Use the new _HA_ATOMIC_* macros.
11770 - MEDIUM: xref: Use the new _HA_ATOMIC_* macros.
11771 - MEDIUM: fd: Use the new _HA_ATOMIC_* macros.
11772 - MEDIUM: freq_ctr: Use the new _HA_ATOMIC_* macros.
11773 - MEDIUM: proxy: Use the new _HA_ATOMIC_* macros.
11774 - MEDIUM: server: Use the new _HA_ATOMIC_* macros.
11775 - MEDIUM: task: Use the new _HA_ATOMIC_* macros.
11776 - MEDIUM: activity: Use the new _HA_ATOMIC_* macros.
11777 - MEDIUM: backend: Use the new _HA_ATOMIC_* macros.
11778 - MEDIUM: cache: Use the new _HA_ATOMIC_* macros.
11779 - MEDIUM: checks: Use the new _HA_ATOMIC_* macros.
11780 - MEDIUM: pollers: Use the new _HA_ATOMIC_* macros.
11781 - MEDIUM: compression: Use the new _HA_ATOMIC_* macros.
11782 - MEDIUM: spoe: Use the new _HA_ATOMIC_* macros.
11783 - MEDIUM: threads: Use the new _HA_ATOMIC_* macros.
11784 - MEDIUM: http: Use the new _HA_ATOMIC_* macros.
11785 - MEDIUM: lb/threads: Use the new _HA_ATOMIC_* macros.
11786 - MEDIUM: listeners: Use the new _HA_ATOMIC_* macros.
11787 - MEDIUM: logs: Use the new _HA_ATOMIC_* macros.
11788 - MEDIUM: memory: Use the new _HA_ATOMIC_* macros.
11789 - MEDIUM: peers: Use the new _HA_ATOMIC_* macros.
11790 - MEDIUM: proto_tcp: Use the new _HA_ATOMIC_* macros.
11791 - MEDIUM: queues: Use the new _HA_ATOMIC_* macros.
11792 - MEDIUM: sessions: Use the new _HA_ATOMIC_* macros.
11793 - MEDIUM: ssl: Use the new _HA_ATOMIC_* macros.
11794 - MEDIUM: stream: Use the new _HA_ATOMIC_* macros.
11795 - MEDIUM: tcp_rules: Use the new _HA_ATOMIC_* macros.
11796 - MEDIUM: time: Use the new _HA_ATOMIC_* macros.
11797 - MEDIUM: vars: Use the new _HA_ATOMIC_* macros.
11798 - MINOR: config: remove obsolete use of DEFAULT_MAXCONN at various places
11799 - MINOR: config: continue to rely on DEFAULT_MAXCONN to set the minimum maxconn
11800 - BUG/MEDIUM: list: fix incorrect pointer unlocking in LIST_DEL_LOCKED()
11801 - BUG/MEDIUM: listener: make sure we don't pick stopped threads
11802 - MEDIUM: list: Remove useless barriers.
11803 - MEDIUM: list: Use _HA_ATOMIC_*
11804 - MEDIUM: connections: Use _HA_ATOMIC_*
11805 - BUG/MAJOR: tasks: Use the TASK_GLOBAL flag to know if we're in the global rq.
11806 - BUG/MEDIUM: threads/fd: do not forget to take into account epoll_fd/pipes
11807 - BUG/MEDIUM: init/threads: consider epoll_fd/pipes for automatic maxconn calculation
11808 - BUG/MEDIUM: tasks: Make sure we wake sleeping threads if needed.
11809 - BUG/MINOR: mux-h1: Don't report an error on EOS if no message was received
11810 - BUG/MINOR: stats/htx: Call channel_add_input() when response headers are sent
11811 - BUG/MINOR: lua/htx: Use channel_add_input() when response data are added
11812 - BUG/MINOR: lua/htx: Don't forget to call htx_to_buf() when appropriate
11813 - MINOR: stats: Add the status code STAT_STATUS_IVAL to handle invalid requests
11814 - MINOR: stats: Move stuff about the stats status codes in stats files
11815 - BUG/MINOR: stats: Be more strict on what is a valid request to the stats applet
11816 - Revert "REGTEST: Enable reg tests with HEAD HTTP method usage."
11817 - BUILD: listener: shut up a build warning when threads are disabled
11818 - BUILD: Makefile: allow the reg-tests target to be verbose
11819 - BUILD: Makefile: resolve LEVEL before calling run-regtests
11820 - BUG/MAJOR: spoe: Fix initialization of thread-dependent fields
11821 - BUG/MAJOR: stats: Fix how huge POST data are read from the channel
11822 - BUG/MINOR: http/counters: fix missing increment of fe->srv_aborts
11823 - BUG/MEDIUM: mux-h2: Always wakeup streams with no id to avoid frozen streams
11824 - MINOR: mux-h2: Set REFUSED_STREAM error to reset a stream if no data was never sent
11825 - MINOR: muxes: Report the Last read with a dedicated flag
11826 - MINOR: proto-http/proto-htx: Make error handling clearer during data forwarding
11827 - BUILD: tools: fix a build warning on some 32-bit archs
11828 - MINOR: init: report the list of optionally available services
11829 - MEDIUM: proto_htx: Switch to infinite forwarding if there is no data filter
11830 - BUG/MINOR: cache: Fully consume large requests in the cache applet
11831 - BUG/MINOR: stats: Fully consume large requests in the stats applet
11832 - BUG/MEDIUM: lua: Fully consume large requests when an HTTP applet ends
11833 - MINOR: proto_http: Add function to handle the header "Expect: 100-continue"
11834 - MINOR: proto_htx: Add function to handle the header "Expect: 100-continue"
11835 - MINOR: stats/cache: Handle the header Expect when applets are registered
11836 - MINOR: http/applets: Handle all applets intercepting HTTP requests the same way
11837 - CLEANUP: cache: don't export http_cache_applet anymore
11838 - MINOR: lua: Don't handle the header Expect in lua HTTP applets anymore
11839 - BUG/MINOR: doc: Be accurate on the behavior on pool-purge-delay.
11840 - Revert "MEDIUM: proto_htx: Switch to infinite forwarding if there is no data filter"
11841 - BUG/MEDIUM: mux-h2: Make sure we destroyed the h2s once shutr/shutw is done.
11842 - BUG/MEDIUM: mux-h2: Don't bother keeping the h2s if detaching and nothing to send.
11843 - BUG/MEDIUM: mux-h2: Use the right list in h2_stop_senders().
11844 - MINOR: mux-h2: copy small data blocks more often and reduce the number of pauses
11845 - CLEANUP: mux-h2: add some comments to help understand the code
11846 - BUG/MEDIUM: ssl: ability to set TLS 1.3 ciphers using ssl-default-server-ciphersuites
11847 - BUG/MINOR: log: properly format IPv6 address when LOG_OPT_HEXA modifier is used.
11848 - BUG/MEDIUM: h2: Try to be fair when sending data.
11849 - BUG/MINOR: proto-http: Don't forward request body anymore on error
11850 - MINOR: mux-h2: Remove useless test on ES flag in h2_frt_transfer_data()
11851 - MINOR: connection: and new flag to mark end of input (EOI)
11852 - MINOR: channel: Report EOI on the input channel if it was reached in the mux
11853 - MEDIUM: mux-h2: Don't mix the end of the message with the end of stream
11854 - MINOR: mux-h1: Set CS_FL_EOI the end of the message is reached
11855 - BUG/MEDIUM: http/htx: Fix handling of the option abortonclose
11856 - CLEANUP: muxes/stream-int: Remove flags CS_FL_READ_NULL and SI_FL_READ_NULL
11857 - MEDIUM: proto_htx: Reintroduce the infinite forwarding on data
11858 - BUG/MEDIUM: h2: only destroy the h2s if h2s->cs is NULL.
11859 - BUG/MEDIUM: h2: Use the new sending_list in h2s_notify_send().
11860 - BUG/MEDIUM: h2: Follow the same logic in h2_deferred_shut than in h2_snd_buf.
11861 - BUG/MEDIUM: h2: Remove the tasklet from the task list if unsubscribing.
11862 - BUG/MEDIUM: task/h2: add an idempotent task removal fucntion
11863 - CLEANUP: task: only perform a LIST_DEL() when the list is not empty
11864 - BUG/MEDIUM: mux-h2: make sure to always notify streams of EOS condition
11865 - CONTRIB: debug: report the CS and CF's EOI flags
11866 - MINOR: channel: don't unset CF_SHUTR_NOW after shutting down.
11867
Willy Tarreau6c1b6672019-02-26 16:43:49 +0100118682019/02/26 : 2.0-dev1
11869 - MINOR: mux-h2: only increase the connection window with the first update
11870 - REGTESTS: remove the expected window updates from H2 handshakes
11871 - BUG/MINOR: mux-h2: make empty HEADERS frame return a connection error
11872 - BUG/MEDIUM: mux-h2: mark that we have too many CS once we have more than the max
11873 - MEDIUM: mux-h2: remove padlen during headers phase
11874 - MINOR: h2: add a bit-based frame type representation
11875 - MINOR: mux-h2: remove useless check for empty frame length in h2s_decode_headers()
11876 - MEDIUM: mux-h2: decode HEADERS frames before allocating the stream
11877 - MINOR: mux-h2: make h2c_send_rst_stream() use the dummy stream's error code
11878 - MINOR: mux-h2: add a new dummy stream for the REFUSED_STREAM error code
11879 - MINOR: mux-h2: fail stream creation more cleanly using RST_STREAM
11880 - MINOR: buffers: add a new b_move() function
11881 - MINOR: mux-h2: make h2_peek_frame_hdr() support an offset
11882 - MEDIUM: mux-h2: handle decoding of CONTINUATION frames
11883 - CLEANUP: mux-h2: remove misleading comments about CONTINUATION
11884 - BUG/MEDIUM: servers: Don't try to reuse connection if we switched server.
11885 - BUG/MEDIUM: tasks: Decrement tasks_run_queue in tasklet_free().
11886 - BUG/MINOR: htx: send the proper authenticate header when using http-request auth
11887 - BUG/MEDIUM: mux_h2: Don't add to the idle list if we're full.
11888 - BUG/MEDIUM: servers: Fail if we fail to allocate a conn_stream.
11889 - BUG/MAJOR: servers: Use the list api correctly to avoid crashes.
11890 - BUG/MAJOR: servers: Correctly use LIST_ELEM().
11891 - BUG/MAJOR: sessions: Use an unlimited number of servers for the conn list.
11892 - BUG/MEDIUM: servers: Flag the stream_interface on handshake error.
11893 - MEDIUM: servers: Be smarter when switching connections.
11894 - MEDIUM: sessions: Keep track of which connections are idle.
11895 - MINOR: payload: add sample fetch for TLS ALPN
11896 - BUG/MEDIUM: log: don't mark log FDs as non-blocking on terminals
11897 - MINOR: channel: Add the function channel_add_input
11898 - MINOR: stats/htx: Call channel_add_input instead of updating channel state by hand
11899 - BUG/MEDIUM: cache: Be sure to end the forwarding when XFER length is unknown
11900 - BUG/MAJOR: htx: Return the good block address after a defrag
11901 - MINOR: lb: allow redispatch when using consistent hash
11902 - CLEANUP: mux-h2: fix end-of-stream flag name when processing headers
11903 - BUG/MEDIUM: mux-h2: always restart reading if data are available
11904 - BUG/MINOR: mux-h2: set the stream-full flag when leaving h2c_decode_headers()
11905 - BUG/MINOR: mux-h2: don't check the CS count in h2c_bck_handle_headers()
11906 - BUG/MINOR: mux-h2: mark end-of-stream after processing response HEADERS, not before
11907 - BUG/MINOR: mux-h2: only update rxbuf's length for H1 headers
11908 - BUG/MEDIUM: mux-h1: use per-direction flags to indicate transitions
11909 - BUG/MEDIUM: mux-h1: make HTX chunking consistent with H2
11910 - BUG/MAJOR: stream-int: Update the stream expiration date in stream_int_notify()
11911 - BUG/MEDIUM: proto-htx: Set SI_FL_NOHALF on server side when request is done
11912 - BUG/MEDIUM: mux-h1: Add a task to handle connection timeouts
11913 - MINOR: mux-h2: make h2c_decode_headers() return a status, not a count
11914 - MINOR: mux-h2: add a new dummy stream : h2_error_stream
11915 - MEDIUM: mux-h2: make h2c_decode_headers() support recoverable errors
11916 - BUG/MINOR: mux-h2: detect when the HTX EOM block cannot be added after headers
11917 - MINOR: mux-h2: remove a misleading and impossible test
11918 - CLEANUP: mux-h2: clean the stream error path on HEADERS frame processing
11919 - MINOR: mux-h2: check for too many streams only for idle streams
11920 - MINOR: mux-h2: set H2_SF_HEADERS_RCVD when a HEADERS frame was decoded
11921 - BUG/MEDIUM: mux-h2: decode trailers in HEADERS frames
11922 - MINOR: h2: add h2_make_h1_trailers to turn H2 headers to H1 trailers
11923 - MEDIUM: mux-h2: pass trailers to H1 (legacy mode)
11924 - MINOR: htx: add a new function to add a block without filling it
11925 - MINOR: h2: add h2_make_htx_trailers to turn H2 headers to HTX trailers
11926 - MEDIUM: mux-h2: pass trailers to HTX
11927 - MINOR: mux-h1: parse the content-length header on output and set H1_MF_CLEN
11928 - BUG/MEDIUM: mux-h1: don't enforce chunked encoding on requests
11929 - MINOR: mux-h2: make HTX_BLK_EOM processing idempotent
11930 - MINOR: h1: make the H1 headers block parser able to parse headers only
11931 - MEDIUM: mux-h2: emit HEADERS frames when facing HTX trailers blocks
11932 - MINOR: stream/htx: Add info about the HTX structs in "show sess all" command
11933 - MINOR: stream: Add the subscription events of SIs in "show sess all" command
11934 - MINOR: mux-h1: Add the subscription events in "show fd" command
11935 - BUG/MEDIUM: h1: Get the h1m state when restarting the headers parsing
11936 - BUG/MINOR: cache/htx: Be sure to count partial trailers
11937 - BUG/MEDIUM: h1: In h1_init(), wake the tasklet instead of calling h1_recv().
11938 - BUG/MEDIUM: server: Defer the mux init until after xprt has been initialized.
11939 - MINOR: connections: Remove a stall comment.
11940 - BUG/MEDIUM: cli: make "show sess" really thread-safe
11941 - BUILD: add a new file "version.c" to carry version updates
11942 - MINOR: stream/htx: add the HTX flags output in "show sess all"
11943 - MINOR: stream/cli: fix the location of the waiting flag in "show sess all"
11944 - MINOR: stream/cli: report more info about the HTTP messages on "show sess all"
11945 - BUG/MINOR: lua: bad args are returned for Lua actions
11946 - BUG/MEDIUM: lua: dead lock when Lua tasks are trigerred
11947 - MINOR: htx: Add an helper function to get the max space usable for a block
11948 - MINOR: channel/htx: Add HTX version for some helper functions
11949 - BUG/MEDIUM: cache/htx: Respect the reserve when cached objects are served
11950 - BUG/MINOR: stats/htx: Respect the reserve when the stats page is dumped
11951 - DOC: regtest: make it clearer what the purpose of the "broken" series is
11952 - REGTEST: mailers: add new test for 'mailers' section
11953 - REGTEST: Add a reg test for health-checks over SSL/TLS.
11954 - BUG/MINOR: mux-h1: Close connection on shutr only when shutw was really done
11955 - MEDIUM: mux-h1: Clarify how shutr/shutw are handled
11956 - BUG/MINOR: compression: Disable it if another one is already in progress
11957 - BUG/MINOR: filters: Detect cache+compression config on legacy HTTP streams
11958 - BUG/MINOR: cache: Disable the cache if any compression filter precedes it
11959 - REGTEST: Add some informatoin to test results.
11960 - MINOR: htx: Add a function to truncate all blocks after a specific offset
11961 - MINOR: channel/htx: Add the HTX version of channel_truncate/erase
11962 - BUG/MINOR: proto_htx: Use HTX versions to truncate or erase a buffer
11963 - BUG/CRITICAL: mux-h2: re-check the frame length when PRIORITY is used
11964 - DOC: Fix typo in req.ssl_alpn example (commit 4afdd138424ab...)
11965 - DOC: http-request cache-use / http-response cache-store expects cache name
11966 - REGTEST: "capture (request|response)" regtest.
11967 - BUG/MINOR: lua/htx: Respect the reserve when data are send from an HTX applet
11968 - REGTEST: filters: add compression test
11969 - BUG/MEDIUM: init: Initialize idle_orphan_conns for first server in server-template
11970 - BUG/MEDIUM: ssl: Disable anti-replay protection and set max data with 0RTT.
11971 - DOC: Be a bit more explicit about allow-0rtt security implications.
11972 - MINOR: mux-h1: make the mux_h1_ops struct static
11973 - BUILD: makefile: add an EXTRA_OBJS variable to help build optional code
11974 - BUG/MEDIUM: connection: properly unregister the mux on failed initialization
11975 - BUG/MAJOR: cache: fix confusion between zero and uninitialized cache key
11976 - REGTESTS: test case for map_regm commit 271022150d
11977 - REGTESTS: Basic tests for concat,strcmp,word,field,ipmask converters
11978 - REGTESTS: Basic tests for using maps to redirect requests / select backend
11979 - DOC: REGTESTS README varnishtest -Dno-htx= define.
11980 - MINOR: spoe: Make the SPOE filter compatible with HTX proxies
11981 - MINOR: checks: Store the proxy in checks.
11982 - BUG/MEDIUM: checks: Avoid having an associated server for email checks.
11983 - REGTEST: Switch to vtest.
11984 - REGTEST: Adapt reg test doc files to vtest.
11985 - BUG/MEDIUM: h1: Make sure we destroy an inactive connectin that did shutw.
11986 - BUG/MINOR: base64: dec func ignores padding for output size checking
11987 - BUG/MEDIUM: ssl: missing allocation failure checks loading tls key file
11988 - MINOR: ssl: add support of aes256 bits ticket keys on file and cli.
11989 - BUG/MINOR: backend: don't use url_param_name as a hint for BE_LB_ALGO_PH
11990 - BUG/MINOR: backend: balance uri specific options were lost across defaults
11991 - BUG/MINOR: backend: BE_LB_LKUP_CHTREE is a value, not a bit
11992 - MINOR: backend: move url_param_name/len to lbprm.arg_str/len
11993 - MINOR: backend: make headers and RDP cookie also use arg_str/len
11994 - MINOR: backend: add new fields in lbprm to store more LB options
11995 - MINOR: backend: make the header hash use arg_opt1 for use_domain_only
11996 - MINOR: backend: remap the balance uri settings to lbprm.arg_opt{1,2,3}
11997 - MINOR: backend: move hash_balance_factor out of chash
11998 - MEDIUM: backend: move all LB algo parameters into an union
11999 - MINOR: backend: make the random algorithm support a number of draws
12000 - BUILD/MEDIUM: da: Necessary code changes for new buffer API.
12001 - BUG/MINOR: stick_table: Prevent conn_cur from underflowing
12002 - BUG: 51d: Changes to the buffer API in 1.9 were not applied to the 51Degrees code.
12003 - BUG/MEDIUM: stats: Get the right scope pointer depending on HTX is used or not
12004 - DOC: add a missing space in the documentation for bc_http_major
12005 - REGTEST: checks basic stats webpage functionality
12006 - BUG/MEDIUM: servers: Make assign_tproxy_address work when ALPN is set.
12007 - BUG/MEDIUM: connections: Add the CO_FL_CONNECTED flag if a send succeeded.
12008 - DOC: add github issue templates
12009 - MINOR: cfgparse: Extract some code to be re-used.
12010 - CLEANUP: cfgparse: Return asap from cfg_parse_peers().
12011 - CLEANUP: cfgparse: Code reindentation.
12012 - MINOR: cfgparse: Useless frontend initialization in "peers" sections.
12013 - MINOR: cfgparse: Rework peers frontend init.
12014 - MINOR: cfgparse: Simplication.
12015 - MINOR: cfgparse: Make "peer" lines be parsed as "server" lines.
12016 - MINOR: peers: Make outgoing connection to SSL/TLS peers work.
12017 - MINOR: cfgparse: SSL/TLS binding in "peers" sections.
12018 - DOC: peers: SSL/TLS documentation for "peers"
12019 - BUG/MINOR: startup: certain goto paths in init_pollers fail to free
12020 - BUG/MEDIUM: checks: fix recent regression on agent-check making it crash
12021 - BUG/MINOR: server: don't always trust srv_check_health when loading a server state
12022 - BUG/MINOR: check: Wake the check task if the check is finished in wake_srv_chk()
12023 - BUG/MEDIUM: ssl: Fix handling of TLS 1.3 KeyUpdate messages
12024 - DOC: mention the effect of nf_conntrack_tcp_loose on src/dst
12025 - BUG/MINOR: proto-htx: Return an error if all headers cannot be received at once
12026 - BUG/MEDIUM: mux-h2/htx: Respect the channel's reserve
12027 - BUG/MINOR: mux-h1: Apply the reserve on the channel's buffer only
12028 - BUG/MINOR: mux-h1: avoid copying output over itself in zero-copy
12029 - BUG/MAJOR: mux-h2: don't destroy the stream on failed allocation in h2_snd_buf()
12030 - BUG/MEDIUM: backend: also remove from idle list muxes that have no more room
12031 - BUG/MEDIUM: mux-h2: properly abort on trailers decoding errors
12032 - MINOR: h2: declare new sets of frame types
12033 - BUG/MINOR: mux-h2: CONTINUATION in closed state must always return GOAWAY
12034 - BUG/MINOR: mux-h2: headers-type frames in HREM are always a connection error
12035 - BUG/MINOR: mux-h2: make it possible to set the error code on an already closed stream
12036 - BUG/MINOR: hpack: return a compression error on invalid table size updates
12037 - MINOR: server: make sure pool-max-conn is >= -1
12038 - BUG/MINOR: stream: take care of synchronous errors when trying to send
12039 - CLEANUP: server: fix indentation mess on idle connections
12040 - BUG/MINOR: mux-h2: always check the stream ID limit in h2_avail_streams()
12041 - BUG/MINOR: mux-h2: refuse to allocate a stream with too high an ID
12042 - BUG/MEDIUM: backend: never try to attach to a mux having no more stream available
12043 - MINOR: server: add a max-reuse parameter
12044 - MINOR: mux-h2: always consider a server's max-reuse parameter
12045 - MEDIUM: stream-int: always mark pending outgoing SI_ST_CON
12046 - MINOR: stream: don't wait before retrying after a failed connection reuse
12047 - MEDIUM: h2: always parse and deduplicate the content-length header
12048 - BUG/MINOR: mux-h2: always compare content-length to the sum of DATA frames
12049 - CLEANUP: h2: Remove debug printf in mux_h2.c
12050 - MINOR: cfgparse: make the process/thread parser support a maximum value
12051 - MINOR: threads: make MAX_THREADS configurable at build time
12052 - DOC: nbthread is no longer experimental.
12053 - BUG/MINOR: listener: always fill the source address for accepted socketpairs
12054 - BUG/MINOR: mux-h2: do not report available outgoing streams after GOAWAY
12055 - BUG/MINOR: spoe: corrected fragmentation string size
12056 - BUG/MINOR: task: fix possibly missed event in inter-thread wakeups
12057 - BUG/MEDIUM: servers: Attempt to reuse an unfinished connection on retry.
12058 - BUG/MEDIUM: backend: always call si_detach_endpoint() on async connection failure
12059 - SCRIPTS: add the issue tracker URL to the announce script
12060 - MINOR: peers: Extract some code to be reused.
12061 - CLEANUP: peers: Indentation fixes.
12062 - MINOR: peers: send code factorization.
12063 - MINOR: peers: Add new functions to send code and reduce the I/O handler.
12064 - MEDIUM: peers: synchronizaiton code factorization to reduce the size of the I/O handler.
12065 - MINOR: peers: Move update receive code to reduce the size of the I/O handler.
12066 - MINOR: peers: Move ack, switch and definition receive code to reduce the size of the I/O handler.
12067 - MINOR: peers: Move high level receive code to reduce the size of I/O handler.
12068 - CLEANUP: peers: Be more generic.
12069 - MINOR: peers: move error handling to reduce the size of the I/O handler.
12070 - MINOR: peers: move messages treatment code to reduce the size of the I/O handler.
12071 - MINOR: peers: move send code to reduce the size of the I/O handler.
12072 - CLEANUP: peers: Remove useless statements.
12073 - MINOR: peers: move "hello" message treatment code to reduce the size of the I/O handler.
12074 - MINOR: peers: move peer initializations code to reduce the size of the I/O handler.
12075 - CLEANUP: peers: factor the error handling code in peer_treet_updatemsg()
12076 - CLEANUP: peers: factor error handling in peer_treat_definedmsg()
12077 - BUILD/MINOR: peers: shut up a build warning introduced during last cleanup
12078 - BUG/MEDIUM: mux-h2: only close connection on request frames on closed streams
12079 - CLEANUP: mux-h2: remove two useless but misleading assignments
12080 - BUG/MEDIUM: checks: Check that conn_install_mux succeeded.
12081 - BUG/MEDIUM: servers: Only destroy a conn_stream we just allocated.
12082 - BUG/MEDIUM: servers: Don't add an incomplete conn to the server idle list.
12083 - BUG/MEDIUM: checks: Don't try to set ALPN if connection failed.
12084 - BUG/MEDIUM: h2: In h2_send(), stop the loop if we failed to alloc a buf.
12085 - BUG/MEDIUM: peers: Handle mux creation failure.
12086 - BUG/MEDIUM: servers: Close the connection if we failed to install the mux.
12087 - BUG/MEDIUM: compression: Rewrite strong ETags
12088 - BUG/MINOR: deinit: tcp_rep.inspect_rules not deinit, add to deinit
12089 - CLEANUP: mux-h2: remove misleading leftover test on h2s' nullity
12090 - BUG/MEDIUM: mux-h2: wake up flow-controlled streams on initial window update
12091 - BUG/MEDIUM: mux-h2: fix two half-closed to closed transitions
12092 - BUG/MEDIUM: mux-h2: make sure never to send GOAWAY on too old streams
12093 - BUG/MEDIUM: mux-h2: do not abort HEADERS frame before decoding them
12094 - BUG/MINOR: mux-h2: make sure response HEADERS are not received in other states than OPEN and HLOC
12095 - MINOR: h2: add a generic frame checker
12096 - MEDIUM: mux-h2: check the frame validity before considering the stream state
12097 - CLEANUP: mux-h2: remove stream ID and frame length checks from the frame parsers
12098 - BUG/MINOR: mux-h2: make sure request trailers on aborted streams don't break the connection
12099 - DOC: compression: Update the reasons for disabled compression
12100 - BUG/MEDIUM: buffer: Make sure b_is_null handles buffers waiting for allocation.
12101 - DOC: htx: make it clear that htxbuf() and htx_from_buf() always return valid pointers
12102 - MINOR: htx: never check for null htx pointer in htx_is_{,not_}empty()
12103 - MINOR: mux-h2: consistently rely on the htx variable to detect the mode
12104 - BUG/MEDIUM: peers: Peer addresses parsing broken.
12105 - BUG/MEDIUM: mux-h1: Don't add "transfer-encoding" if message-body is forbidden
12106 - BUG/MEDIUM: connections: Don't forget to remove CO_FL_SESS_IDLE.
12107 - BUG/MINOR: stream: don't close the front connection when facing a backend error
12108 - BUG/MEDIUM: mux-h2: wait for the mux buffer to be empty before closing the connection
12109 - MINOR: stream-int: add a new flag to mention that we want the connection to be killed
12110 - MINOR: connstream: have a new flag CS_FL_KILL_CONN to kill a connection
12111 - BUG/MEDIUM: mux-h2: do not close the connection on aborted streams
12112 - BUG/MINOR: server: fix logic flaw in idle connection list management
12113 - MINOR: mux-h2: max-concurrent-streams should be unsigned
12114 - MINOR: mux-h2: make sure to only check concurrency limit on the frontend
12115 - MINOR: mux-h2: learn and store the peer's advertised MAX_CONCURRENT_STREAMS setting
12116 - BUG/MEDIUM: mux-h2: properly consider the peer's advertised max-concurrent-streams
12117 - MINOR: xref: Add missing barriers.
12118 - MINOR: muxes: Don't bother to LIST_DEL(&conn->list) before calling conn_free().
12119 - MINOR: debug: Add an option that causes random allocation failures.
12120 - BUG/MEDIUM: backend: always release the previous connection into its own target srv_list
12121 - BUG/MEDIUM: htx: check the HTX compatibility in dynamic use-backend rules
12122 - BUG/MINOR: tune.fail-alloc: Don't forget to initialize ret.
12123 - BUG/MINOR: backend: check srv_conn before dereferencing it
12124 - BUG/MEDIUM: mux-h2: always omit :scheme and :path for the CONNECT method
12125 - BUG/MEDIUM: mux-h2: always set :authority on request output
12126 - BUG/MEDIUM: stream: Don't forget to free s->unique_id in stream_free().
12127 - BUG/MINOR: threads: fix the process range of thread masks
12128 - BUG/MINOR: config: fix bind line thread mask validation
12129 - CLEANUP: threads: fix misleading comment about all_threads_mask
12130 - CLEANUP: threads: use nbits to calculate the thread mask
12131 - OPTIM: listener: optimize cache-line packing for struct listener
12132 - MINOR: tools: improve the popcount() operation
12133 - MINOR: config: keep an all_proc_mask like we have all_threads_mask
12134 - MINOR: global: add proc_mask() and thread_mask()
12135 - MINOR: config: simplify bind_proc processing using proc_mask()
12136 - MINOR: threads: make use of thread_mask() to simplify some thread calculations
12137 - BUG/MINOR: compression: properly report compression stats in HTX mode
12138 - BUG/MINOR: task: close a tiny race in the inter-thread wakeup
12139 - BUG/MAJOR: config: verify that targets of track-sc and stick rules are present
12140 - BUG/MAJOR: spoe: verify that backends used by SPOE cover all their callers' processes
12141 - BUG/MAJOR: htx/backend: Make all tests on HTTP messages compatible with HTX
12142 - BUG/MINOR: config: make sure to count the error on incorrect track-sc/stick rules
12143 - DOC: ssl: Clarify when pre TLSv1.3 cipher can be used
12144 - DOC: ssl: Stop documenting ciphers example to use
12145 - BUG/MINOR: spoe: do not assume agent->rt is valid on exit
12146 - BUG/MINOR: lua: initialize the correct idle conn lists for the SSL sockets
12147 - BUG/MEDIUM: spoe: initialization depending on nbthread must be done last
12148 - BUG/MEDIUM: server: initialize the idle conns list after parsing the config
12149 - BUG/MEDIUM: server: initialize the orphaned conns lists and tasks at the end
12150 - MINOR: config: make MAX_PROCS configurable at build time
12151 - BUG/MAJOR: spoe: Don't try to get agent config during SPOP healthcheck
12152 - BUG/MINOR: config: Reinforce validity check when a process number is parsed
12153 - BUG/MEDIUM: peers: check that p->srv actually exists before using p->srv->use_ssl
12154 - CONTRIB: contrib/prometheus-exporter: Add a Prometheus exporter for HAProxy
12155 - BUG/MINOR: mux-h1: verify the request's version before dropping connection: keep-alive
12156 - BUG: 51d: In Hash Trie, multi header matching was affected by the header names stored globaly.
12157 - MEDIUM: 51d: Enabled multi threaded operation in the 51Degrees module.
12158 - BUG/MAJOR: stream: avoid double free on unique_id
12159 - BUILD/MINOR: stream: avoid a build warning with threads disabled
12160 - BUILD/MINOR: tools: fix build warning in the date conversion functions
12161 - BUILD/MINOR: peers: remove an impossible null test in intencode()
12162 - BUILD/MINOR: htx: fix some potential null-deref warnings with http_find_stline
12163 - BUG/MEDIUM: peers: Missing peer initializations.
12164 - BUG/MEDIUM: http_fetch: fix the "base" and "base32" fetch methods in HTX mode
12165 - BUG/MEDIUM: proto_htx: Fix data size update if end of the cookie is removed
12166 - BUG/MEDIUM: http_fetch: fix "req.body_len" and "req.body_size" fetch methods in HTX mode
12167 - BUILD/MEDIUM: initcall: Fix build on MacOS.
12168 - BUG/MEDIUM: mux-h2/htx: Always set CS flags before exiting h2_rcv_buf()
12169 - MINOR: h2/htx: Set the flag HTX_SL_F_BODYLESS for messages without body
12170 - BUG/MINOR: mux-h1: Add "transfer-encoding" header on outgoing requests if needed
12171 - BUG/MINOR: mux-h2: Don't add ":status" pseudo-header on trailers
12172 - BUG/MINOR: proto-htx: Consider a XFER_LEN message as chunked by default
12173 - BUG/MEDIUM: h2/htx: Correctly handle interim responses when HTX is enabled
12174 - MINOR: mux-h2: Set HTX extra value when possible
12175 - BUG/MEDIUM: htx: count the amount of copied data towards the final count
12176 - MINOR: mux-h2: make the H2 MAX_FRAME_SIZE setting configurable
12177 - BUG/MEDIUM: mux-h2/htx: send an empty DATA frame on empty HTX trailers
12178 - BUG/MEDIUM: servers: Use atomic operations when handling curr_idle_conns.
12179 - BUG/MEDIUM: servers: Add a per-thread counter of idle connections.
12180 - MINOR: fd: add a new my_closefrom() function to close all FDs
12181 - MINOR: checks: use my_closefrom() to close all FDs
12182 - MINOR: fd: implement an optimised my_closefrom() function
12183 - BUG/MINOR: fd: make sure my_closefrom() doesn't miss some FDs
12184 - BUG/MAJOR: fd/threads, task/threads: ensure all spin locks are unlocked
12185 - BUG/MAJOR: listener: Make sure the listener exist before using it.
12186 - MINOR: fd: Use closefrom() as my_closefrom() if supported.
12187 - BUG/MEDIUM: mux-h1: Report the right amount of data xferred in h1_rcv_buf()
12188 - BUG/MINOR: channel: Set CF_WROTE_DATA when outgoing data are skipped
12189 - MINOR: htx: Add function to drain data from an HTX message
12190 - MINOR: channel/htx: Add function to skips output bytes from an HTX channel
12191 - BUG/MAJOR: cache/htx: Set the start-line offset when a cached object is served
12192 - BUG/MEDIUM: cache: Get objects from the cache only for GET and HEAD requests
12193 - BUG/MINOR: cache/htx: Return only the headers of cached objects to HEAD requests
12194 - BUG/MINOR: mux-h1: Always initilize h1m variable in h1_process_input()
12195 - BUG/MEDIUM: proto_htx: Fix functions applying regex filters on HTX messages
12196 - BUG/MEDIUM: h2: advertise to servers that we don't support push
12197 - MINOR: standard: Add a function to parse uints (dotted notation).
12198 - MINOR: arg: Add support for ARGT_PBUF_FNUM arg type.
12199 - MINOR: http_fetch: add "req.ungrpc" sample fetch for gRPC.
12200 - MINOR: sample: Add two sample converters for protocol buffers.
12201 - DOC: sample: Add gRPC related documentation.
12202
Willy Tarreaufba74ea2018-12-22 11:19:45 +0100122032018/12/22 : 2.0-dev0
12204 - BUG/MAJOR: connections: Close the connection before freeing it.
12205 - REGTEST: Require the option LUA to run lua tests
12206 - REGTEST: script: Process script arguments before everything else
12207 - REGTEST: script: Evaluate the varnishtest command to allow quoted parameters
12208 - REGTEST: script: Add the option --clean to remove previous log direcotries
12209 - REGTEST: script: Add the option --debug to show logs on standard ouput
12210 - REGTEST: script: Add the option --keep-logs to keep all log directories
12211 - REGTEST: script: Add the option --use-htx to enable the HTX in regtests
12212 - REGTEST: script: Print only errors in the results report
12213 - REGTEST: Add option to use HTX prefixed by the macro 'no-htx'
12214 - REGTEST: Make reg-tests target support argument.
12215 - REGTEST: Fix a typo about barrier type.
12216 - REGTEST: Be less Linux specific with a syslog regex.
12217 - REGTEST: Missing enclosing quotes for ${tmpdir} macro.
12218 - REGTEST: Exclude freebsd target for some reg tests.
12219 - BUG/MEDIUM: h2: Don't forget to quit the sending_list if SUB_CALL_UNSUBSCRIBE.
12220 - BUG/MEDIUM: mux-h2: Don't forget to quit the send list on error reports
12221 - BUG/MEDIUM: dns: Don't prevent reading the last byte of the payload in dns_validate_response()
12222 - BUG/MEDIUM: dns: overflowed dns name start position causing invalid dns error
12223 - BUG/MINOR: compression/htx: Don't compress responses with unknown body length
12224 - BUG/MINOR: compression/htx: Don't add the last block of data if it is empty
12225 - MEDIUM: mux_h1: Implement h1_show_fd.
12226 - REGTEST: script: Add support of alternatives in requited options list
12227 - REGTEST: Add a basic test for the compression
12228 - BUG/MEDIUM: mux-h2: don't needlessly wake up the demux on short frames
12229 - REGTEST: A basic test for "http-buffer-request"
12230 - BUG/MEDIUM: server: Also copy "check-sni" for server templates.
12231 - MINOR: ssl: Add ssl_sock_set_alpn().
12232 - MEDIUM: checks: Add check-alpn.
12233 - wip
12234
Willy Tarreau82230502018-12-19 19:13:17 +0100122352018/12/19 : 1.9.0
12236 - BUG/MEDIUM: compression: Use the right buffer pointers to compress input data
12237 - BUG/MINOR: mux_pt: Set CS_FL_WANT_ROOM when count is zero in rcv_buf() callback
12238 - BUG/MEDIUM: connection: Add a new CS_FL_ERR_PENDING flag to conn_streams.
12239 - CONTRIB: debug: teach the "flags" utility about new conn_stream flags
12240 - BUG/MEDIUM: stream-int: always clear CS_FL_WANT_ROOM before receiving
12241 - BUG/MEDIUM: mux-h2: also restart demuxing when data are pending in demux
12242 - BUG/MEDIUM: mux-h2: restart demuxing as soon as demux data are available
12243 - BUG/MEDIUM: h2: fix aggregated cookie length computation in HTX mode
12244 - MINOR: mux-h2: report more h2c, last h2s and cs information on "show fd"
12245 - CONTRIB: debug: report stream-int's flag SI_FL_CLEAN_ABRT
12246 - MINOR: cli/stream: add the conn_stream in "show sess" output
12247 - BUG/MINOR: mux-h2: don't report a fantom h2s in "show fd"
12248 - BUG/MINOR: cli/fd: don't isolate the thread for each individual fd
12249 - MINOR: objtype: report a few missing types in names and base pointers
12250 - BUG/MEDIUM: mux-h2: make sure to report synchronous errors after EOS
12251 - BUG/MEDIUM: mux-h2: report asynchronous errors in h2_wake_some_streams()
12252 - BUG/MEDIUM: mux-h2: make sure the demux also wakes streams up on errors
12253 - BUG/MINOR: mux-h1: report the correct frontend in error captures
12254 - BUG/MEDIUM: stream-int: also wake the stream up on end of transfer
12255 - MEDIUM: h2: properly check and deduplicate the content-length header in HTX
12256 - BUG/MEDIUM: stream: Forward the right amount of data before infinite forwarding
12257 - BUG/MINOR: proto_htx: Call the HTX version of the function managing client cookies
12258 - BUG/MEDIUM: lua/htx: Handle EOM in receive/get_line calls in HTTP applets
12259 - BUG/MINOR: lua: Return an error if a legacy HTTP applet doesn't send anything
12260 - MINOR: compression: Remove the thread_local variable buf_output
12261 - CLEANUP: connection: rename subscription events values and event field
12262 - CLEANUP: connection: rename conn->mux_ctx to conn->ctx
12263 - MINOR: connection: remove an unwelcome dependency on struct stream
12264 - CLEANUP: stream-int: consistently call the si/stream_int functions
12265 - BUG/MEDIUM: h1: Don't shutw/shutr the connection if we have keepalive.
12266 - BUG/MEDIUM: H2: Make sure htx is set even on empty frames.
12267 - BUG/MEDIUM: mux-h2: pass CS_FL_ERR_PENDING to h2_wake_some_streams()
12268 - MEDIUM: stream-int: always consider all CS errors on the send side
12269 - BUG/MEDIUM: h2: Make sure we don't set CS_FL_ERROR if there's still data.
12270 - CLEANUP: mux-h2: implement h2s_notify_{send,recv} to report events to subscribers
12271 - MINOR: mux-h2: add a new function h2s_alert() to call the data layer
12272 - BUG/MEDIUM: mux-h2: make use of h2s_alert() to report aborts
12273 - MINOR: connection: add cs_set_error() to set the error bits
12274 - CLEANUP: mux-h2: make use of cs_set_error()
12275 - BUG/MINOR: mux-h2: make sure we check the conn_stream in early data
12276 - BUG/MEDIUM: h2: Don't wait for flow control if the connection had a shutr.
12277 - MINOR: cli/show_fd: report that a connection is back or not
12278 - SCRIPTS: add the slack channel URL to the announce script
12279 - CLEANUP: remove my name and address from the copyright banner
12280 - DOC: mention in the readme that 1.9 is a stable version now
12281
Willy Tarreau2a7d6502018-12-16 22:35:06 +0100122822018/12/16 : 1.9-dev11
12283 - BUG/MEDIUM: connection: Don't use the provided conn_stream if it was tried.
12284 - REGTEST/MINOR: remove double body specification for server txresp
12285 - BUG/MEDIUM: connections: Remove error flags when retrying.
12286 - REGTEST/MINOR: skip seamless-reload test with abns socket on freebsd
12287 - REGTEST/MINOR: remove health-check that can make the test fail
12288 - DOC: clarify that check-sni needs an argument.
12289 - DOC: refer to check-sni in the documentation of sni
12290 - BUG/MEDIUM: mux-h2: fix encoding of non-GET/POST methods
12291 - BUG/MINOR: mux-h1: Fix conn_mode processing for headerless outgoing messages
12292 - BUG/MEDIUM: mux-h1: Add a BUSY mode to not loop on pipelinned requests
12293 - BUG/MEDIUM: mux-h1: Don't loop on the headers parsing if the read0 was received
12294 - BUG/MEDIUM: htx: Always do a defrag if a block value is replace by a bigger one
12295 - BUG/MEDIUM: mux-h2: Don't forget to set the CS_FL_EOS flag with htx.
12296 - BUG/MINOR: hpack: fix off-by-one in header name encoding length calculation
12297 - CLEANUP: hpack: no need to include chunk.h, only include buf.h
12298 - MINOR: hpack: simplify the len to bytes conversion
12299 - MINOR: hpack: use ist2bin() to copy header names in hpack_encode_header()
12300 - MINOR: hpack: optimize header encoding for short names
12301 - CONTRIB: hpack: add a compressed stream generator for the encoder
12302 - MEDIUM: hpack: make it possible to encode any static header name
12303 - MINOR: hpack: move the length computation and encoding functions to .h
12304 - MINOR: hpack: provide a function to encode a short indexed header
12305 - MINOR: hpack: provide a function to encode a long indexed header
12306 - MINOR: hpack: provide new functions to encode the ":status" header
12307 - MEDIUM: mux-h2: make use of standard HPACK encoding functions for the status
12308 - MINOR: hpack: provide a function to encode an HTTP method
12309 - MEDIUM: mux-h2: make use of hpack_encode_method() to encode the method
12310 - MINOR: hpack: provide a function to encode an HTTP scheme
12311 - MEDIUM: mux-h2: make use of hpack_encode_scheme() to encode the scheme
12312 - MINOR: hpack: provide a function to encode an HTTP path
12313 - MEDIUM: mux-h2: make use of hpack_encode_path() to encode the path
12314 - REGTEST: add the HTTP rules test involving HTX processing
12315 - REORG: connection: centralize the conn_set_{tos,mark,quickack} functions
12316 - MEDIUM: cli: rework the CLI proxy parser
12317 - MINOR: cli: parse prompt command in the CLI proxy
12318 - MINOR: cli: implements 'quit' in the CLI proxy
12319 - BUG/MINOR: cli: wait for payload data even without prompt
12320 - MEDIUM: cli: handle payload in CLI proxy
12321 - MINOR: cli: use pcli_flags for prompt activation
12322 - MINOR: compression: Rename the function check_legacy_http_comp_flt()
12323 - MINOR: cache/htx: Don't use the same cache on HTX and legacy HTTP proxies
12324 - MINOR: cache: Register the cache as a data filter only if response is cacheable
12325 - MEDIUM: cache/htx: Add the HTX support into the cache
12326 - MINOR: cache: Improve and simplify the cache configuration check
12327 - MINOR: filters: Export the name of known filters
12328 - MEDIUM: cache/compression: Add a way to safely combined compression and cache
12329 - MEDIUM: cache: Require an explicit filter declaration if other filters are used
12330 - REORG: htx: merge types+proto into common/htx.h
12331 - REORG: http: create http_msg.c to place there some legacy HTTP parts
12332 - REORG: h1: move legacy http functions to http_msg.c
12333 - REORG: h1: move the h1_state definition to proto_http
12334 - CLEANUP: h1: remove some occurrences of unneeded h1.h inclusions
12335 - REORG: h1: merge types+proto into common/h1.h
12336 - CLEANUP: stream: remove SF_TUNNEL, SF_INITIALIZED, SF_CONN_TAR
12337 - MEDIUM: mux-h1: implement true zero-copy of DATA blocks
12338 - MINOR: config: round up global.tune.bufsize to the next multiple of 2 void*
12339 - BUG/MINOR: mux-h2: refrain from muxing during the preface
12340 - BUG/MINOR: mux-h2: advertise a larger connection window size
12341 - DOC: master CLI documentation in management.txt
12342 - MINOR: mux-h2: avoid copying large blocks into full buffers
12343 - MEDIUM: mux-h2: implement true zero-copy send of large HTX DATA blocks
12344 - MINOR: mux-h2: force reads to be HTX-aligned in HTX mode
12345 - MINOR: cli: change 'show proc' output of old processes
12346 - BUG/MEDIUM: mux-h1: Fix the zero-copy on output for chunked messages
12347 - BUG: dns: Prevent stack-exhaustion via recursion loop in dns_read_name
12348 - BUG: dns: Prevent out-of-bounds read in dns_read_name()
12349 - BUG: dns: Prevent out-of-bounds read in dns_validate_dns_response()
12350 - BUG: dns: Fix out-of-bounds read via signedness error in dns_validate_dns_response()
12351 - BUG: dns: Fix off-by-one write in dns_validate_dns_response()
12352 - REGTEST: the cache regtest requires haproxy 1.9
12353 - MEDIUM: cli: store CLI level in the appctx
12354 - MEDIUM: cli: show and change CLI permissions
12355 - CLEANUP: cli: use dedicated define instead of appctx ones
12356 - MEDIUM: cli: handle CLI level from the master CLI
12357 - BUG/MEDIUM: cli: handle correctly prefix and payload
12358 - BUILD: Makefile: Implements the help target
12359 - REGTESTS: adjust the http-rules regtest to support window updates
12360 - BUG/MEDIUM: connections: Remove CS_FL_EOS | CS_FL_REOS on retry.
12361 - BUG/MEDIUM: stream_interface: Don't report read0 if we were not connected.
12362 - BUG/MEDIUM: connection: Just make sure we closed the fd on connection failure.
12363 - MEDIUM: mux: Add an optional "reset" method.
12364 - BUG/MEDIUM: mux-h1: Fix loop if server closes its connection with unparsed data
12365 - MINOR: mux-h1: Add helper functions to wake a stream from recv or send
12366 - BUG/MEDIUM: mux-h1: Wake the stream for send once the connection is established
12367 - BUG/MEDIUM: connections: Don't attempt to reuse an unusable connection.
12368 - MEDIUM: htx: Try to take a connection over if it has no owner.
12369 - REGTEST: Reg testing improvements.
12370 - REGTEST: Add a first test for health-checks.
12371 - REGTEST: Reg test for "check" health-check option.
12372 - REGTEST: level 1 health-check test 2.
12373 - REGTEST: Add miscellaneous reg tests for health-checks.
12374 - REGTEST: add a few HTTP messaging tests
12375 - MINOR: lb: make the leastconn algorithm more accurate
12376 - REGTEST: fix missing space in checks/s00001
12377 - REGTEST: http-messaging: add "option http-buffer-request" for H2 tests
12378 - BUG/MEDIUM: cache: fix random crash on filter parser's error path
12379 - MINOR: connection: realign empty buffers in muxes, not transport layers
12380 - MINOR: mux_h1/h2: simplify the zero-copy Rx alignment
12381 - MINOR: backend: count the number of connect and reuse per server and per backend
12382 - BUG/MINOR: stats: fix inversion of failed header rewrites and other statuses
12383 - MINOR: tools: increase the number of ITOA strings to 16
12384 - MINOR: cache: report the number of cache lookups and cache hits
12385 - MEDIUM: tasks: check the global task mask instead of the thread number
12386 - MINOR: mworker: set all_threads_mask and pid_bit to 1
12387 - BUG/MINOR: proto_htx: Fix htx_res_set_status to also set the reason
12388 - BUG/MINOR: stats: Parse post data for HTX streams
12389 - MINOR: payload/htx: Adapt smp_fetch_len to be HTX aware
12390 - MINOR: http_fecth: Implement body_len and body_size sample fetches for the HTX
12391 - MAJOR: lua: Forbid calls to Channel functions for LUA scripts in HTTP proxies
12392 - MEDIUM: lua/htx: Adapt functions of the HTTP to be compatible with HTX
12393 - MINOR: lua/htx: Adapt the functions get_in_length and is_full to be HTX aware
12394 - MAJOR: lua/htx: Adapt HTTP applets to support HTX messages
12395 - MINOR: lua: Remove useless check on the messages state in HTTP functions
12396 - BUG/MEDIUM: htx: When performing zero-copy, start from the right offset.
12397 - BUG/MINOR: mworker: don't use unitialized mworker_proc struct
12398 - MINOR: mworker/cli: indicate in the master prompt when a reload failed
12399 - MINOR: cli: implements 'reload' on master CLI
12400 - BUG/MEDIUM: log: Don't call sample_fetch_as_type if we don't have a stream.
12401 - BUG/MEDIUM: mux-h1: make sure we always have at least one HTX block to send
12402 - BUG/MAJOR: backend: only update server's counters when the server exists
12403 - MINOR: tools: preset the port of fd-based "sockets" to zero
12404 - BUG/MINOR: log: fix logging to both FD and IP
12405 - REGTEST: Add a reg test for HTTP cookies.
12406 - BUILD: ssl: Fix compilation without deprecated OpenSSL 1.1 APIs
12407 - BUILD: thread: properly report multi-thread support
12408 - BUG/MINOR: logs: leave startup-logs global and not per-thread
12409 - BUG/MEDIUM: threads: don't close the thread waker pipe if not init
12410 - BUG/MAJOR: compression/cache: Make it really works with these both filters
12411 - BUG/MEDIUM: h2: Don't forget to destroy the h2s after deferred shut.
12412 - MEDIUM: proxy: Set http-reuse safe as default.
12413 - MEDIUM: servers: Add a command to limit the number of idling connections.
12414 - MEDIUM: servers: Replace idle-timeout with pool-purge-delay.
12415 - MEDIUM: mux: Destroy the stream before trying to add the conn to the idle list.
12416 - MEDIUM: mux: provide the session to the init() and attach() method.
12417 - MEDIUM: sessions: Don't keep an infinite number of idling connections.
12418 - MEDIUM: servers: Be more agressive when adding H2 connection to idle lists.
12419 - MEDIUM: mux_h2: Always set CS_FL_NOT_FIRST for new conn_streams.
12420 - BUG/MEDIUM: htx/cache: use the correct class of error codes on abort
12421 - BUG/MINOR: cache: also consider CF_SHUTR to abort delivery
12422 - MINOR: pools: Cast to volatile int * instead of int *.
12423 - MINOR: debug: make the ABORT_NOW macro use a volatile int
12424 - BUG/MEDIUM: h2: Don't destroy the h2s if it still has a cs attached.
12425 - BUG/MEDIUM: mux-h1: don't try to process an empty input buffer
12426 - DOC: clarify the agent-check status line syntax
12427 - BUG/MAJOR: hpack: fix length check for short names encoding
12428 - DOC: split the README into README + INSTALL
12429
Willy Tarreau72e92272018-12-08 16:20:55 +0100124302018/12/08 : 1.9-dev10
12431 - MINOR: htx: Rename functions htx_*_to_str() to be H1 specific
12432 - BUG/MINOR: htx: Force HTTP/1.1 on H1 formatting when version is 1.1 or above
12433 - BUG/MINOR: fix ssl_fc_alpn and actually add ssl_bc_alpn
12434 - BUG/MEDIUM: mworker: stop proxies which have no listener in the master
12435 - BUG/MEDIUM: h1: Destroy a connection after detach if it has no owner.
12436 - BUG/MEDIUM: h2: Don't forget to wake the tasklet after shutr/shutw.
12437 - BUG/MINOR: flt_trace/compression: Use the right flag to add the HTX support
12438 - BUG/MEDIUM: stream_interface: Make REALLY sure we read all the data.
12439 - MEDIUM: mux-h1: Revamp the way subscriptions are handled.
12440 - BUG/MEDIUM: mux-h1: Always set CS_FL_RCV_MORE when data are received in h1_recv()
12441 - MINOR: mux-h1: Make sure to return 1 in h1_recv() when needed
12442 - BUG/MEDIUM: mux-h1: Release the mux H1 in h1_process() if there is no h1s
12443 - BUG/MINOR: proto_htx: Truncate the request when an error is detected
12444 - BUG/MEDIUM: h2: When sending in HTX, make sure the caller knows we sent all.
12445 - BUG/MEDIUM: mux-h2: properly update the window size in HTX mode
12446 - BUG/MEDIUM: mux-h2: make sure to always report HTX EOM when consumed by headers
12447 - BUG/MEDIUM: mux-h2: stop sending HTX once the mux is blocked
12448 - BUG/MEDIUM: mux-h2: don't send more HTX data than requested
12449 - MINOR: mux-h2: stop on non-DATA and non-EOM HTX blocks
12450 - BUG/MEDIUM: h1: Correctly report used data with no len.
12451 - MEDIUM: h1: Realign the ibuf before calling rcv_buf if needed.
12452 - BUG/MEDIUM: mux_pt: Always set CS_FL_RCV_MORE.
12453 - MINOR: htx: make htx_from_buf() adjust the size only on new buffers
12454 - MINOR: htx: add buf_room_for_htx_data() to help optimize buffer transfers
12455 - MEDIUM: mux-h1: make use of buf_room_for_htx_data() instead of b_room()
12456 - MEDIUM: mux-h1: attempt to zero-copy Rx DATA transfers
12457 - MEDIUM: mux-h1: avoid a double copy on the Tx path whenever possible
12458 - BUG/MEDIUM: stream-int: don't mark as blocked an empty buffer on Rx
12459 - BUG/MINOR: mux-h1: Check h1m flags to set the server conn_mode on request path
12460 - MEDIUM: htx: Rework conversion from a buffer to an htx structure
12461 - MEDIUM: channel/htx: Add functions for forward HTX data
12462 - MINOR: mux-h1: Don't adjust anymore the amount of data sent in h1_snd_buf()
12463 - CLEANUP: htx: Fix indentation here and there in HTX files
12464 - MINOR: mux-h1: Allow partial data consumption during outgoing data processing
12465 - BUG/MEDIUM: mux-h2: use the correct offset for the HTX start line
12466 - BUG/MEDIUM: mux-h2: stop sending using HTX on errors
12467 - MINOR: mux-h1: Drain obuf if the output is closed after sending data
12468 - BUG/MEDIUM: mworker: stop every tasks in the master
12469 - BUG/MEDIUM: htx: Set the right start-line offset after a defrag
12470 - BUG/MEDIUM: stream: Don't dereference s->txn when it is not there yet.
12471 - BUG/MEDIUM: connections: Reuse an already attached conn_stream.
12472 - MINOR: stream-int: add a new blocking condition on the remote connection
12473 - BUG/MEDIUM: stream-int: don't attempt to receive if the connection is not established
12474 - BUG/MEDIUM: lua: block on remote connection establishment
12475 - BUG/MEDIUM: mworker: fix several typos in mworker_cleantasks()
12476 - SCRIPTS/REGTEST: merge grep+sed into sed in run-regtests
12477 - BUG/MEDIUM: connections: Split CS_FL_RCV_MORE into 2 flags.
12478 - BUG/MEDIUM: h1: Don't free the connection if it's an outgoing connection.
12479 - BUG/MEDIUM: h1: Set CS_FL_REOS if we had a read0.
12480 - BUG/MEDIUM: mux-h1: Be sure to have a conn_stream to set CS_FL_REOS in h1_recv
12481 - REGTEST: Move LUA reg test 4 to level 1.
12482 - MINOR: ist: add functions to copy/uppercase/lowercase into a buffer or string
12483 - MEDIUM: ist: always turn header names to lower case
12484 - MINOR: h2: don't turn HTX header names to lower case anymore
12485 - MEDIUM: ist: use local conversion arrays to case conversion
12486 - MINOR: htx: switch to case sensitive search of lower case header names
12487 - MINOR: mux-h1: Set CS_FL_EOS when read0 is detected and no data are pending
12488 - BUG/MINOR: stream-int: Process read0 even if no data was received in si_cs_recv
12489 - REGTEST: fix the Lua test file name in test lua/h00002 :-)
12490 - REGTEST: add a basic test for HTTP rules manipulating headers
12491 - BUG/MEDIUM: sample: Don't treat SMP_T_METH as SMP_T_STR.
12492 - MINOR: sample: add bc_http_major
12493 - BUG/MEDIUM: htx: fix typo in htx_replace_stline() making it fail all the time
12494 - REGTEST: make the HTTP rules test compatible with HTTP/2 as well
12495 - BUG/MEDIUM: h2: Don't try to chunk data when using HTX.
12496 - MINOR: compiler: add a new macro ALREADY_CHECKED()
12497 - BUILD: h2: mark the start line already checked to avoid warnings
12498 - BUG/MINOR: mux-h1: Remove the connection header when it is useless
12499
Willy Tarreauda7e3be2018-12-02 19:31:37 +0100125002018/12/02 : 1.9-dev9
12501 - BUILD/MINOR: ssl: fix build with non-alpn/non-npn libssl
12502 - BUG/MINOR: mworker: Do not attempt to close(2) fd -1
12503 - BUILD: compression: fix build error with DEFAULT_MAXZLIBMEM
12504 - MINOR: compression: always create the compression pool
12505 - BUG/MEDIUM: mworker: fix FD leak upon reload
12506 - BUILD: htx: fix fprintf format inconsistency on 32-bit platforms
12507 - BUILD: buffers: buf.h requires unistd to get ssize_t on libmusl
12508 - MINOR: initcall: introduce a way to register init functions to call at boot
12509 - MINOR: init: process all initcalls in order at boot time
12510 - MEDIUM: init: convert all trivial registration calls to initcalls
12511 - MINOR: thread: provide a set of lock initialisers
12512 - MINOR: threads: add new macros to declare self-initializing locks
12513 - MEDIUM: init: use self-initializing spinlocks and rwlocks
12514 - MINOR: initcall: apply initcall to all register_build_opts() calls
12515 - MINOR: initcall: use initcalls for most post_{check,deinit} and per_thread*
12516 - MINOR: initcall: use initcalls for section parsers
12517 - MINOR: memory: add a callback function to create a pool
12518 - MEDIUM: init: use initcall for all fixed size pool creations
12519 - MEDIUM: memory: use pool_destroy_all() to destroy all pools on deinit()
12520 - MEDIUM: initcall: use initcalls for a few initialization functions
12521 - MEDIUM: memory: make the pool cache an array and not a thread_local
12522 - MINOR: ssl: free ctx when libssl doesn't support NPN
12523 - BUG/MINOR: proto_htx: only mark connections private if NTLM is detected
12524 - MINOR: h2: make struct h2_ops static
12525 - BUG/MEDIUM: mworker: avoid leak of client socket
12526 - REORG: mworker: declare master variable in global.h
12527 - BUG/MEDIUM: listeners: CLOEXEC flag is not correctly set
12528 - CLEANUP: http: Fix typo in init_http's comment
12529 - BUILD: Makefile: Disable -Wcast-function-type if it exists.
12530 - BUG/MEDIUM: h2: Don't bogusly error if the previous stream was closed.
12531 - REGTEST/MINOR: script: add run-regtests.sh script
12532 - REGTEST: Add a basic test for the cache.
12533 - BUG/MEDIUM: mux_pt: Don't forget to unsubscribe() on attach.
12534 - BUG/MINOR: ssl: ssl_sock_parse_clienthello ignores session id
12535 - BUG/MEDIUM: connections: Wake the stream once the mux is chosen.
12536 - BUG/MEDIUM: connections: Don't forget to detach the connection from the SI.
12537 - BUG/MEDIUM: stream_interface: Don't check if the handshake is done.
12538 - BUG/MEDIUM: stream_interface: Make sure we read all the data available.
12539 - BUG/MEDIUM: h2: Call h2_process() if there's an error on the connection.
12540 - REGTEST: Fix several issues.
12541 - REGTEST: lua: check socket functionality from a lua-task
12542 - BUG/MEDIUM: session: Remove the session from the session_list in session_free.
12543 - BUG/MEDIUM: streams: Don't assume we have a CS in sess_update_st_con_tcp.
12544 - BUG/MEDIUM: connections: Don't assume we have a mux in connect_server().
12545 - BUG/MEDIUM: connections: Remove the connection from the idle list before destroy.
12546 - BUG/MEDIUM: session: properly clean the outgoing connection before freeing.
12547 - BUG/MEDIUM: mux_pt: Don't try to send if handshake is not done.
12548 - MEDIUM: connections: Put H2 connections in the idle list if http-reuse always.
12549 - MEDIUM: h2: Destroy a connection with no stream if it has no owner.
12550 - MAJOR: sessions: Store multiple outgoing connections in the session.
12551 - MEDIUM: session: Steal owner-less connections on end of transaction.
12552 - MEDIUM: server: Be smarter about deciding to reuse the last server.
12553 - BUG/MEDIUM: Special-case http_proxy when dealing with outgoing connections.
12554 - BUG/MINOR: cfgparse: Fix transition between 2 sections with the same name
12555 - BUG/MINOR: http: Use out buffer instead of trash to display error snapshot
12556 - BUG/MINOR: htx: Fix block size calculation when a start-line is added/replaced
12557 - BUG/MINOR: mux-h1: Fix processing of "Connection: " header on outgoing messages
12558 - BUG/MEDIUM: mux-h1: Reset the H1 parser when an outgoing message is processed
12559 - BUG/MINOR: proto_htx: Send outgoing data to client to start response processing
12560 - BUG/MINOR: htx: Stop a header or a start line lookup on the first EOH or EOM
12561 - BUG/MINOR: connection: report mux modes when HTX is supported
12562 - MINOR: htx: add a function to cut the beginning of a DATA block
12563 - MEDIUM: conn_stream: Add a way to get mux's info on a CS from the upper layer
12564 - MINOR: mux-h1: Implement get_cs_info() callback
12565 - MINOR: stream: Rely on CS's info if it exists and fallback on session's ones
12566 - MINOR: proto_htx: Use conn_stream's info to set t_idle duration when possible
12567 - MINOR: mux-h1: Don't rely on the stream anymore in h1_set_srv_conn_mode()
12568 - MINOR: mux-h1: Write last chunk and trailers if not found in the HTX message
12569 - MINOR: mux-h1: Be prepare to fail when EOM is added during trailers parsing
12570 - MINOR: mux-h1: Subscribe to send in h1_snd_buf() when not all data have been sent
12571 - MINOR: mux-h1: Consume channel's data in a loop in h1_snd_buf()
12572 - MEDIUM: mux-h1: Add keep-alive outgoing connections in connections list
12573 - MINOR: htx: Add function to add an HTX block just before another one
12574 - MINOR: htx: Add function to iterate on an HTX message using HTX blocks
12575 - MINOR: htx: Add a function to find the HTX block corresponding to a data offset
12576 - MINOR: stats: Don't add end-of-data marker and trailers in the HTX response
12577 - MEDIUM: htx: Change htx_sl to be a struct instead of an union
12578 - MINOR: htx: Add the start-line offset for the HTX message in the HTX structure
12579 - MEDIUM: htx: Don't rely on h1_sl anymore except during H1 header parsing
12580 - MINOR: proto-htx: Use the start-line flags to set the HTTP messsage ones
12581 - MINOR: htx: Add BODYLESS flags on the HTX start-line and the HTTP message
12582 - MINOR: proto_htx: Use full HTX messages to send 100-Continue responses
12583 - MINOR: proto_htx: Use full HTX messages to send 103-Early-Hints responses
12584 - MINOR: proto_htx: Use full HTX messages to send 401 and 407 responses
12585 - MINOR: proto_htx: Send valid HTX message when redir mode is enabled on a server
12586 - MINOR: proto_htx: Send valid HTX message to send 30x responses
12587 - MEDIUM: proto_htx: Convert all HTTP error messages into HTX
12588 - MINOR: mux-h1: Process conn_mode on the EOH when no connection header is found
12589 - MINOR: mux-h1: Change client conn_mode on an explicit close for the response
12590 - MINOR: mux-h1: Capture bad H1 messages
12591 - MAJOR: filters: Adapt filters API to be compatible with the HTX represenation
12592 - MEDIUM: proto_htx/filters: Add data filtering during the forwarding
12593 - MINOR: flt_trace: Adapt to be compatible with the HTX representation
12594 - MEDIUM: compression: Adapt to be compatible with the HTX representation
12595 - MINOR: h2: implement H2->HTX request header frame transcoding
12596 - MEDIUM: mux-h2: register mux for both HTTP and HTX modes
12597 - MEDIUM: mux-h2: make h2_rcv_buf() support HTX transfers
12598 - MEDIUM: mux-h2: make h2_snd_buf() HTX-aware
12599 - MEDIUM: mux-h2: add basic H2->HTX transcoding support for headers
12600 - MEDIUM: mux-h2: implement emission of H2 headers frames from HTX blocks
12601 - MEDIUM: mux-h2: implement the emission of DATA frames from HTX DATA blocks
12602 - MEDIUM: mux-h2: support passing H2 DATA frames to HTX blocks
12603 - BUG/MINOR: cfgparse: Fix the call to post parser of the last sections parsed
12604 - BUG/MEDIUM: mux-h2: don't lose the first response header in HTX mode
12605 - BUG/MEDIUM: mux-h2: remove the HTX EOM block on H2 response headers
12606 - MINOR: listener: the mux_proto entry in the bind_conf is const
12607 - MINOR: connection: create conn_get_best_mux_entry()
12608 - MINOR: server: the mux_proto entry in the server is const
12609 - MINOR: config: make sure to associate the proper mux to bind and servers
12610 - MINOR: hpack: add ":path" to the list of common header fields
12611 - MINOR: h2: add new functions to produce an HTX message from an H2 response
12612 - MINOR: mux-h2: mention that the mux is compatible with both sides
12613 - MINOR: mux-h2: implement an outgoing stream allocator : h2c_bck_stream_new()
12614 - MEDIUM: mux-h2: start to create the outgoing mux
12615 - MEDIUM: mux-h2: implement encoding of H2 request on the backend side
12616 - MEDIUM: mux-h2: make h2_frt_decode_headers() direction-agnostic
12617 - MEDIUM: mux-h2: make h2_process_demux() capable of processing responses as well
12618 - MEDIUM: mux-h2: Implement h2_attach().
12619 - MEDIUM: mux-h2: Don't bother flagging outgoing connections as TOOMANY.
12620 - REGTEST: Fix LEVEL 4 script 0 of "connection" module.
12621 - MINOR: connection: Fix a comment.
12622 - MINOR: mux: add a "max_streams" method.
12623 - MEDIUM: servers: Add a way to keep idle connections alive.
12624 - CLEANUP: fix typos in the htx subsystem
12625 - CLEANUP: Fix typo in the chunk headers file
12626 - CLEANUP: Fix typos in the h1 subsystem
12627 - CLEANUP: Fix typos in the h2 subsystem
12628 - CLEANUP: Fix a typo in the mini-clist header
12629 - CLEANUP: Fix a typo in the proto_htx subsystem
12630 - CLEANUP: Fix typos in the proto_tcp subsystem
12631 - CLEANUP: Fix a typo in the signal subsystem
12632 - CLEANUP: Fix a typo in the session subsystem
12633 - CLEANUP: Fix a typo in the queue subsystem
12634 - CLEANUP: Fix typos in the shctx subsystem
12635 - CLEANUP: Fix typos in the socket pair protocol subsystem
12636 - CLEANUP: Fix typos in the map management functions
12637 - CLEANUP: Fix typo in the fwrr subsystem
12638 - CLEANUP: Fix typos in the cli subsystem
12639 - CLEANUP: Fix typo in the 51d subsystem
12640 - CLEANUP: Fix a typo in the base64 subsystem
12641 - CLEANUP: Fix a typo in the connection subsystem
12642 - CLEANUP: Fix a typo in the protocol header file
12643 - CLEANUP: Fix a typo in the checks header file
12644 - CLEANUP: Fix typos in the file descriptor subsystem
12645 - CLEANUP: Fix a typo in the listener subsystem
12646 - BUG/MINOR: lb-map: fix unprotected update to server's score
12647 - BUILD: threads: fix minor build warnings when threads are disabled
12648
Willy Tarreau0b936ad2018-11-25 09:16:46 +0100126492018/11/25 : 1.9-dev8
12650 - REORG: config: extract the global section parser into cfgparse-global
12651 - REORG: config: extract the proxy parser into cfgparse-listen.c
12652 - BUILD: update the list of supported targets and compilers in makefile and readme
12653 - BUILD: reorder the objects in the makefile
12654 - BUILD: Makefile: make "V=1" show some of the commands that are executed
12655 - BUILD: Makefile: add the quiet mode to a few more targets
12656 - BUILD: Makefile: add "$(Q)" to clean, tags and cscope targets
12657 - BUILD: Makefile: switch to quiet mode by default for CC/LD/AR
12658 - MINOR: cli: format `show proc` to be more readable
12659 - MINOR: cli: displays uptime in `show proc`
12660 - MINOR: cli: show master information in 'show proc'
12661 - BUG/MEDIUM: hpack: fix encoding of "accept-ranges" field
12662 - MAJOR: mux-h1: Remove the rxbuf and decode HTTP messages in channel's buffer
12663 - BUG/MINOR: mux-h1: Enable keep-alive on server side
12664 - BUG/MEDIUM: mux-h1: Fix freeze when the kernel splicing is used
12665 - BUG/MEDIUM: mux-h1: Don't set the flag CS_FL_RCV_MORE when nothing was parsed
12666 - BUG/MINOR: stats/htx: Remove channel's output when the request is eaten
12667 - BUG/MINOR: proto_htx: Fix request/response synchronisation on error
12668 - MINOR: stream-int: Notify caller when an error is reported after a rcv_pipe()
12669 - MINOR: stream-int: Notify caller when an error is reported after a rcv_buf()
12670 - BUG/MINOR: stream-int: Don't call snd_buf() if there are still data in the pipe
12671 - MINOR: stream-int: remove useless checks on CS and conn flags in si_cs_send()
12672 - BUG/MINOR: config: Be aware of the HTX during the check of mux protocols
12673 - BUG/MINOR: mux-htx: Fix bad test on h1c flags in h1_recv_allowed()
12674 - MEDIUM: mworker: wait mode use standard init code path
12675 - MINOR: log: introduce ha_notice()
12676 - MINOR: mworker: use ha_notice to announce a new worker
12677 - BUG/MEDIUM: http_fetch: Make sure name is initialized before http_find_header.
12678 - MINOR: cli: add mworker_accept_wrapper to 'show fd'
12679 - MEDIUM: signal: signal_unregister() removes every handlers
12680 - BUG/MEDIUM: mworker: unregister the signals of main()
12681 - MINOR: cli: add a few missing includes in proto/cli.h
12682 - REORG: time/activity: move activity measurements to activity.{c,h}
12683 - MINOR: activity: report the average loop time in "show activity"
12684 - MINOR: activity: add configuration and CLI support for "profiling.tasks"
12685 - MEDIUM: tasks: collect per-task CPU time and latency
12686 - MINOR: sample: add cpu_calls, cpu_ns_avg, cpu_ns_tot, lat_ns_avg, lat_ns_tot
12687 - MINOR: cli/activity: rename the stolen CPU time fields to mention milliseconds
12688 - BUG/MINOR: cli: Fix memory leak
12689 - BUG/MINOR: mworker: fix FD leak and memory leak in error path
12690 - MINOR: poller: move the call of tv_update_date() back to the pollers
12691 - MINOR: polling: add an option to support busy polling
12692 - MINOR: server: Add "alpn" and "npn" keywords.
12693 - MEDIUM: connection: Don't bother reactivating polling after connection retry.
12694 - MAJOR: connections: Defer mux creation for outgoing connection if alpn is set.
12695 - MEDIUM: ssl: Add ssl_bc_alpn and ssl_bc_npn sample fetches.
12696 - MINOR: servers: Free [idle|safe|priv]_conns on exit.
12697 - REGTEST: add the option to test only a specific set of files
12698 - REGTEST: add a test for connections to a "dispatch" address
12699 - BUG/MEDIUM: connections: Don't reset the conn flags in *connect_server().
12700 - MINOR: server: Only defined conn_complete_server if USE_OPENSSL is set.
12701 - BUG/MEDIUM: servers: Don't check if we have a conn_stream too soon.
12702 - BUG/MEDIUM: sessions: Set sess->origin to NULL if the origin was destroyed.
12703 - MEDIUM: servers: Store the connection in the SI until we have a mux.
12704 - BUG/MEDIUM: h2: wake the processing task up after demuxing
12705 - BUG/MEDIUM: h2: restart demuxing after releasing buffer space
12706
Willy Tarreau5c0e41b2018-11-18 22:33:00 +0100127072018/11/18 : 1.9-dev7
12708 - BUILD: cache: fix a build warning regarding too large an integer for the age
12709 - CLEANUP: fix typos in the comments of the Makefile
12710 - CLEANUP: fix a typo in a comment for the contrib/halog subsystem
12711 - CLEANUP: fix typos in comments for the contrib/modsecurity subsystem
12712 - CLEANUP: fix typos in comments for contrib/spoa_example
12713 - CLEANUP: fix typos in comments for contrib/wireshark-dissectors
12714 - DOC: Fix typos in README and CONTRIBUTING
12715 - MINOR: log: slightly improve error message syntax on log failure
12716 - DOC: logs: the format directive was missing from the second log part
12717 - MINOR: log: report the number of dropped logs in the stats
12718 - MEDIUM: log: add support for logging to existing file descriptors
12719 - MEDIUM: log: support a new "short" format
12720 - MEDIUM: log: add a new "raw" format
12721 - BUG/MEDIUM: stream-int: change the way buffer room is requested by a stream-int
12722 - BUG/MEDIUM: stream-int: convert some co_data() checks to channel_is_empty()
12723 - MINOR: namespaces: don't build namespace.c if disabled
12724 - BUILD/MEDIUM: threads/affinity: DragonFly build fix
12725 - MINOR: http: Add new "early-hint" http-request action.
12726 - MINOR: http: Make new "early-hint" http-request action really be parsed.
12727 - MINOR: http: Implement "early-hint" http request rules.
12728 - MINOR: doc: Add information about "early-hint" http-request action.
12729 - DOC: early-hints: fix truncated line.
12730 - MINOR: mworker: only close std{in,out,err} in daemon mode
12731 - BUG/MEDIUM: log: don't CLOEXEC the inherited FDs
12732 - BUG/MEDIUM: Make sure stksess is properly aligned.
12733 - BUG/MEDIUM: stream-int: make failed splice_in always subscribe to recv
12734 - BUG/MEDIUM: stream-int: clear CO_FL_WAIT_ROOM after splicing data in
12735 - BUG/MINOR: stream-int: make sure not to go through the rcv_buf path after splice()
12736 - CONTRIB: debug: fix build related to conn_stream flags change
12737 - REGTEST: fix scripts 1 and 3 to accept development version
12738 - BUG/MINOR: http_fetch: Remove the version part when capturing the request uri
12739 - MINOR: http: Regroup return statements of http_req_get_intercept_rule at the end
12740 - MINOR: http: Regroup return statements of http_res_get_intercept_rule at the end
12741 - BUG/MINOR: http: Be sure to sent fully formed HTTP 103 responses
12742 - MEDIUM: jobs: support unstoppable jobs for soft stop
12743 - MEDIUM: listeners: support unstoppable listener
12744 - MEDIUM: cli: worker socketpair is unstoppable
12745 - BUG/MINOR: stream-int: set SI_FL_WANT_PUT in sess_establish()
12746 - MINOR: stream: move the conn_stream specific calls to the stream-int
12747 - BUG/MINOR: config: Copy default error messages when parsing of a backend starts
12748 - CLEANUP: h2: minimum documentation for recent API changes
12749 - MINOR: mux: implement a get_first_cs() method
12750 - MINOR: stream-int: make conn_si_send_proxy() use cs_get_first()
12751 - MINOR: stream-int: relax the forwarding rules in stream_int_notify()
12752 - MINOR: stream-int: expand the flags to 32-bit
12753 - MINOR: stream-int: rename SI_FL_WAIT_ROOM to SI_FL_RXBLK_ROOM
12754 - MINOR: stream-int: introduce new SI_FL_RXBLK flags
12755 - MINOR: stream-int: add new functions si_{rx,tx}_{blocked,endp_ready}()
12756 - MINOR: stream-int: replace SI_FL_WANT_PUT with !SI_FL_RX_WAIT_EP
12757 - MINOR: stream-int: use si_rx_blocked()/si_tx_blocked() to check readiness
12758 - MEDIUM: stream-int: use si_rx_buff_{rdy,blk} to report buffer readiness
12759 - MINOR: stream-int: replace si_{want,stop}_put() with si_rx_endp_{more,done}()
12760 - MEDIUM: stream-int: update the endp polling status only at the end of si_cs_recv()
12761 - MINOR: stream-int: make si_sync_recv() simply check ENDP before si_cs_recv()
12762 - MINOR: stream-int: automatically mark applets as ready if they block on the channel
12763 - MEDIUM: stream-int: fix the si_cant_put() calls used for end point readiness
12764 - MEDIUM: stream-int: fix the si_cant_put() calls used for buffer readiness
12765 - MEDIUM: stream-int: use si_rx_shut_blk() to indicate the SI is closed
12766 - MEDIUM: stream-int: unconditionally call si_chk_rcv() in update and notify
12767 - MEDIUM: stream-int: make use of si_rx_chan_{rdy,blk} to control the stream-int from the channel
12768 - MINOR: stream-int: replace si_cant_put() with si_rx_room_{blk,rdy}()
12769 - MEDIUM: connections: Wait until the connection is established to try to recv.
12770 - MEDIUM: mux: Teach the mux_pt how to deal with idle connections.
12771 - MINOR: mux: Add a new "avail_streams" method.
12772 - MINOR: mux: Add a destroy() method.
12773 - MINOR: sessions: Start to store the outgoing connection in sessions.
12774 - MAJOR: connections: Detach connections from streams.
12775 - MINOR: conn_stream: Add a flag to notify the mux it should flush its buffers
12776 - MINOR: htx: Add proto_htx.c file
12777 - MINOR: conn_stream: Add a flag to notify the mux it must respect the reserve
12778 - MINOR: http: Add standalone functions to parse a start-line or a header
12779 - MINOR: http: Call http_send_name_header with the stream instead of the txn
12780 - MINOR: conn_stream: Add a flag to notify the SI some data were received
12781 - MINOR: http: Add macros to check if a stream uses the HTX representation
12782 - MEDIUM: proto_htx: Add HTX analyzers and use it when the mux H1 is used
12783 - MEDIUM: mux-h1: Add dummy mux to handle HTTP/1.1 connections
12784 - MEDIUM: mux-h1: Add parsing of incoming and ougoing HTTP messages
12785 - MAJOR: mux-h1/proto_htx: Handle keep-alive connections in the mux
12786 - MEDIUM: mux-h1: Add support of the kernel TCP splicing to forward data
12787 - MEDIUM: htx: Add API to deal with the internal representation of HTTP messages
12788 - MINOR: http_htx: Add functions to manipulate HTX messages in http_htx.c
12789 - MINOR: proto_htx: Add some functions to handle HTX messages
12790 - MAJOR: mux-h1/proto_htx: Switch mux-h1 and HTX analyzers on the HTX representation
12791 - MINOR: http_htx: Add functions to replace part of the start-line
12792 - MINOR: http_htx: Add functions to retrieve a specific occurrence of a header
12793 - MINOR: proto_htx: Rewrite htx_apply_redirect_rule to handle HTX messages
12794 - MINOR: proto_htx: Add the internal function htx_del_hdr_value
12795 - MINOR: proto_htx: Add the internal function htx_fmt_res_line
12796 - MINOR: proto_htx: Add functions htx_transform_header and htx_transform_header_str
12797 - MINOR: proto_htx: Add functions htx_req_replace_stline and htx_res_set_status
12798 - MINOR: proto_htx: Add function to build and send HTTP 103 responses
12799 - MINOR: proto_htx: Add functions htx_req_get_intercept_rule and htx_res_get_intercept_rule
12800 - MINOR: proto_htx: Add functions to apply req* and rsp* rules on HTX messages
12801 - MINOR: proto_htx: Add functions to manage cookies on HTX messages
12802 - MINOR: proto_htx: Add functions to check the cacheability of HTX messages
12803 - MINOR: proto_htx: Add functions htx_send_name_header
12804 - MINOR: proto_htx: Add functions htx_perform_server_redirect
12805 - MINOR: proto_htx: Add functions to handle the stats applet
12806 - MEDIUM: proto_htx: Adapt htx_process_req_common to handle HTX messages
12807 - MEDIUM: proto_htx: Adapt htx_process_request to handle HTX messages
12808 - MINOR: proto_htx: Adapt htx_process_tarpit to handle HTX messages
12809 - MEDIUM: proto_htx: Adapt htx_wait_for_request_body to handle HTX messages
12810 - MEDIUM: proto_htx: Adapt htx_process_res_common to handle HTX messages
12811 - MINOR: http_fetch: Add smp_prefetch_htx
12812 - MEDIUM: http_fetch: Adapt all fetches to handle HTX messages
12813 - MEDIUM: mux-h1: Wait for connection establishment before consuming channel's data
12814 - MINOR: stats/htx: Adapt the stats applet to handle HTX messages
12815 - MINOR: stream: Don't reset sov value with HTX messages
12816 - MEDIUM: mux-h1: Handle errors and timeouts in the stream
12817 - MINOR: filters/htx: Forbid filters when the HTX is enabled on a proxy
12818 - MINOR: lua/htx: Forbid lua usage when the HTX is enabled on a proxy
12819 - CLEANUP: Fix some typos in the haproxy subsystem
12820 - CLEANUP: Fix typos in the dns subsystem
12821 - CLEANUP: Fix typos in the pattern subsystem
12822 - CLEANUP: fix 2 typos in the xxhash subsystem
12823 - CLEANUP: fix a few typos in the comments of the server subsystem
12824 - CLEANUP: fix a misspell in tests/filltab25.c
12825 - CLEANUP: fix a typo found in the stream subsystem
12826 - CLEANUP: fix typos in comments in ebtree
12827 - CLEANUP: fix typos in reg-tests
12828 - CLEANUP: fix typos in the comments of the vars subsystem
12829 - CLEANUP: fix typos in the hlua_fcn subsystem
12830 - CLEANUP: fix typos in the proto_http subsystem
12831 - CLEANUP: fix typos in the proxy subsystem
12832 - CLEANUP: fix typos in the ssl_sock subsystem
12833 - DOC: Fix typos in different subsections of the documentation
12834 - DOC: fix a few typos in the documentation
12835 - MINOR: Fix an error message thrown when we run out of memory
12836 - MINOR: Fix typos in error messages in the proxy subsystem
12837 - MINOR: fix typos in the examples files
12838 - CLEANUP: Fix a typo in the stats subsystem
12839 - CLEANUP: Fix typos in the acl subsystem
12840 - CLEANUP: Fix typos in the cache subsystem
12841 - CLEANUP: Fix typos in the cfgparse subsystem
12842 - CLEANUP: Fix typos in the filters subsystem
12843 - CLEANUP: Fix typos in the http subsystem
12844 - CLEANUP: Fix typos in the log subsystem
12845 - CLEANUP: Fix typos in the peers subsystem
12846 - CLEANUP: Fix typos in the regex subsystem
12847 - CLEANUP: Fix typos in the sample subsystem
12848 - CLEANUP: Fix typos in the spoe subsystem
12849 - CLEANUP: Fix typos in the standard subsystem
12850 - CLEANUP: Fix typos in the stick_table subsystem
12851 - CLEANUP: Fix typos in the task subsystem
12852 - MINOR: Fix typo in error message in the standard subsystem
12853 - CLEANUP: fix typos in the comments of hlua
12854 - MINOR: Fix typo in the error 500 output of hlua
12855 - MINOR: Fix a typo in a warning message in the spoe subsystem
12856
Willy Tarreau96079492018-11-11 10:43:39 +0100128572018/11/11 : 1.9-dev6
12858 - BUG/MEDIUM: tools: fix direction of my_ffsl()
12859 - BUG/MINOR: cli: forward the whole command on master CLI
12860 - BUG/MEDIUM: auth/threads: use of crypt() is not thread-safe
12861 - MINOR: compat: automatically detect support for crypt_r()
12862 - MEDIUM: auth/threads: make use of crypt_r() on systems supporting it
12863 - DOC: split the http-request actions in their own section
12864 - DOC: split the http-response actions in their own section
12865 - BUG/MAJOR: stream-int: don't call si_cs_recv() in stream_int_chk_rcv_conn()
12866 - BUG/MINOR: tasks: make sure wakeup events are properly reported to subscribers
12867 - MINOR: stats: report the number of active jobs and listeners in "show info"
12868 - MINOR: stats: report the number of active peers in "show info"
12869 - MINOR: stats: report the number of currently connected peers
12870 - MINOR: cli: show the number of reload in 'show proc'
12871 - MINOR: cli: can't connect to the target CLI
12872 - MEDIUM: mworker: does not create the CLI proxy when no listener
12873 - MINOR: mworker: displays more information when leaving
12874 - MEDIUM: mworker: exit with the incriminated exit code
12875 - MINOR: mworker: displays a message when a worker is forked
12876 - MEDIUM: mworker: leave when the master die
12877 - CLEANUP: stream-int: retro-document si_cs_io_cb()
12878 - BUG/MEDIUM: mworker: does not abort() in mworker_pipe_register()
12879 - BUG/MEDIUM: stream-int: don't wake up for nothing during SI_ST_CON
12880 - BUG/MEDIUM: cli: crash when trying to access a worker
12881 - DOC: restore note about "independant" typo
12882 - MEDIUM: stream: implement stream_buf_available()
12883 - MEDIUM: appctx: check for allocation attempts in buffer allocation callbacks
12884 - MINOR: stream-int: rename si_applet_{want|stop|cant}_{get|put}
12885 - MINOR: stream-int: add si_done_{get,put} to indicate that we won't do it anymore
12886 - MINOR: stream-int: use si_cant_put() instead of setting SI_FL_WAIT_ROOM
12887 - MINOR: stream-int: make use of si_done_{get,put}() in shut{w,r}
12888 - MINOR: stream-int: make it clear that si_ops cannot be null
12889 - MEDIUM: stream-int: temporarily make si_chk_rcv() take care of SI_FL_WAIT_ROOM
12890 - MINOR: stream-int: factor the SI_ST_EST state test into si_chk_rcv()
12891 - MEDIUM: stream-int: make SI_FL_WANT_PUT reflect CF_DONT_READ
12892 - MEDIUM: stream-int: always call si_chk_rcv() when we make room in the buffer
12893 - MEDIUM: stream-int: make si_chk_rcv() check that SI_FL_WAIT_ROOM is cleared
12894 - MINOR: stream-int: replace si_update() with si_update_both()
12895 - MEDIUM: stream-int: make stream_int_update() aware of the lower layers
12896 - CLEANUP: stream-int: remove the now unused si->update() function
12897 - MEDIUM: stream-int: Rely only on SI_FL_WAIT_ROOM to stop data receipt
12898 - MEDIUM: stream-int: Try to read data even if channel's buffer seems to be full
12899 - BUG/MINOR: config: better detect the presence of the h2 pattern in npn/alpn
12900
Willy Tarreaubddf2922018-10-28 20:39:31 +0100129012018/10/28 : 1.9-dev5
12902 - BUILD: Makefile: add the new ERR variable to force -Werror
12903 - MINOR: freq_ctr: add swrate_add_scaled() to work with large samples
12904 - MINOR: stream_interface: Avoid calling si_cs_send/recv if not needed.
12905 - CLEANUP: http: Remove the unused function http_find_header
12906 - MINOR: h1: Export some functions parsing the value of some HTTP headers
12907 - BUG/MEDIUM: stream-int: don't set SI_FL_WAIT_ROOM on CF_READ_DONTWAIT
12908 - MINOR: proxy: add a new option "http-use-htx"
12909 - BUG/MEDIUM: pools: fix the minimum allocation size
12910 - MINOR: shctx: Shared objects block by block allocation.
12911 - MINOR: cache: Larger HTTP objects caching.
12912 - MINOR: shctx: Add a maximum object size parameter.
12913 - MINOR: cache: Add "max-object-size" option.
12914 - DOC: Update about the cache support for big objects.
12915 - BUG/MINOR: cache: Crashes with "total-max-size" > 2047(MB).
12916 - BUG/MINOR: cache: Wrong usage of shctx_init().
12917 - BUG/MINOR: ssl: Wrong usage of shctx_init().
12918 - MINOR: cache: Avoid usage of atoi() when parsing "max-object-size".
12919 - MINOR: shctx: Change max. object size type to unsigned int.
12920 - DOC: cache: Missing information about "total-max-size" and "max-object-size"
12921 - CLEANUP: tools: fix misleading comment above function LIM2A
12922 - MEDIUM: channel: merge back flags CF_WRITE_PARTIAL and CF_WRITE_EVENT
12923 - BUG/MINOR: only mark connections private if NTLM is detected
12924 - BUG/MINOR: only auto-prefer last server if lb-alg is non-deterministic
12925 - MINOR: stream: don't prune variables if the list is empty
12926 - MINOR: stream-int: add si_alloc_ibuf() to ease input buffer allocation
12927 - MEDIUM: stream-int: replace channel_alloc_buffer() with si_alloc_ibuf() everywhere
12928 - MEDIUM: stream: always call si_cs_recv() after a failed buffer allocation
12929 - MEDIUM: stream: don't try to send first in process_stream()
12930 - MEDIUM: stream-int: make si_update() synchronize flag changes before the I/O
12931 - MEDIUM: stream-int: call si_cs_process() in stream_int_update_conn
12932 - MINOR: stream-int: don't needlessly call tasklet_wakeup() in stream_int_chk_snd_conn()
12933 - MINOR: stream-int: make stream_int_notify() not wake the tasklet up
12934 - MINOR: stream-int: don't needlessly call si_cs_send() in si_cs_process()
12935 - MINOR: mworker: number of reload in the life of a worker
12936 - MEDIUM: mworker: each worker socketpair is a CLI listener
12937 - REORG: mworker: move struct mworker_proc to global.h
12938 - MINOR: server: export new_server() function
12939 - MEDIUM: mworker: move proc_list gen before proxies startup
12940 - MEDIUM: mworker: add proc_list in global.h
12941 - MEDIUM: mworker: proxy for the master CLI
12942 - MEDIUM: mworker: create CLI listeners from argv[]
12943 - MEDIUM: cli: disable some keywords in the master
12944 - MEDIUM: mworker: find the server ptr using a CLI prefix
12945 - MEDIUM: cli: 'show proc' displays processus
12946 - MEDIUM: cli: implement 'mode cli' proxy analyzers
12947 - MINOR: cli: displays sockpair@ in "show cli sockets"
12948 - MEDIUM: cli: enable "show cli sockets" for the master
12949 - MINOR: cli: put @master @<relative pid> @!<pid> in the help
12950 - MEDIUM: listeners: set O_CLOEXEC on the accepted FDs
12951 - MEDIUM: mworker: stop the master proxy in the workers
12952 - MEDIUM: channel: reorder the channel analyzers for the cli
12953 - MEDIUM: cli: write a prompt for the CLI proxy of the master
12954 - MINOR: cli: helper to write an response message and close
12955 - MINOR: cache: Add "Age" header.
12956 - REGTEST: make the IP+port logging test more reliable
12957 - BUG/MINOR: memory: make the thread-local cache allocator set the debugging link
12958 - BUG/MAJOR: http: http_txn_get_path() may deference an inexisting buffer
12959 - BUG/MINOR: backend: assign the wait list after the error check
12960
Willy Tarreau01fbe742018-10-21 20:28:30 +0200129612018/10/21 : 1.9-dev4
12962 - BUILD: Allow configuration of pcre-config path
12963 - DOC: clarify force-private-cache is an option
12964 - BUG/MINOR: connection: avoid null pointer dereference in send-proxy-v2
12965 - REORG: http: move the code to different files
12966 - REORG: http: move HTTP rules parsing to http_rules.c
12967 - CLEANUP: http: remove some leftovers from recent cleanups
12968 - BUILD: Makefile: add a "make opts" target to simply show the build options
12969 - BUILD: Makefile: speed up compiler options detection
12970 - BUG/MINOR: backend: check that the mux installed properly
12971 - BUG/MEDIUM: h2: check that the connection is still valid at the end of init()
12972 - BUG/MEDIUM: h2: make h2_stream_new() return an error on memory allocation failure
12973 - REGTEST/MINOR: compatibility: use unix@ instead of abns@ sockets
12974 - MINOR: ssl: cleanup old openssl API call
12975 - MINOR: ssl: generate-certificates for BoringSSL
12976 - BUG/MEDIUM: buffers: Make sure we don't wrap in ci_insert_line2/b_rep_blk.
12977 - MEDIUM: ssl: add support for ciphersuites option for TLSv1.3
12978 - CLEANUP: haproxy: Remove unused variable
12979 - CLEANUP: h1: Fix debug warnings for h1 headers
12980 - CLEANUP: stick-tables: Remove unneeded double (()) around conditional clause
12981 - MEDIUM: task: perform a single tree lookup per run queue batch
12982 - BUG/MEDIUM: Cur/CumSslConns counters not threadsafe.
12983 - BUG/MINOR: threads: move declaration of capabilities to config.h
12984 - OPTIM: tools: optimize my_ffsl() for x86_64
12985 - BUG/MINOR: h2: null-deref
12986 - BUG/MINOR: checks: queues null-deref
12987 - MINOR: connections: Introduce an unsubscribe method.
12988 - MEDIUM: connections: Change struct wait_list to wait_event.
12989 - BUG/MEDIUM: h2: Make sure we're not in the send list on flow control.
12990 - BUG/MEDIUM: mworker: segfault receiving SIGUSR1 followed by SIGTERM.
12991 - BUG/MEDIUM: stream: Make sure to unsubscribe before si_release_endpoint.
12992 - MINOR: http: Move comment about some HTTP macros in the right header file
12993 - MINOR: stats: Add missing include
12994 - MINOR: http: Export some functions and do cleanup to prepare HTTP refactoring
12995 - MEDIUM: http: Ignore http-pretend-keepalive option on frontend
12996 - MEDIUM: http: Ignore http-tunnel option on backend
12997 - MINOR: http: Use same flag for httpclose and forceclose options
12998 - MINOR: h1: Add EOH marker during headers parsing
12999 - MINOR: conn-stream: Add CL_FL_NOT_FIRST flag
13000 - MINOR: h1: Change the union h1_sl to use indirect strings to store infos
13001 - MINOR: h1: Add the flag H1_MF_NO_PHDR to not add pseudo-headers during parsing
13002 - MINOR: log: make sess_log() support sess=NULL
13003 - MINOR: chunk: add chunk_cpy() and chunk_cat()
13004 - MEDIUM: h2: stop relying on H2_SS_IDLE / H2_SS_CLOSED
13005 - CLEANUP: h2: rename h2c_snd_settings() to h2c_send_settings()
13006 - MINOR: h2: don't try to send data before preface
13007 - MINOR: h2: unify the mux init function
13008 - MINOR: h2: retrieve the front proxy from the caller instead of the session
13009 - MINOR: h2: split h2c_stream_new() into h2s_new() + h2c_frt_stream_new()
13010 - MINOR: h2: add a new flag to quickly distinguish front vs back connection
13011 - BUG/MEDIUM: mworker: don't poll on LI_O_INHERITED listeners
13012 - BUG/MEDIUM: stream: don't crash on out-of-memory
13013 - BUILD: compiler: add a new statement "__unreachable()"
13014 - BUILD: lua: silence some compiler warnings about potential null derefs
13015 - BUILD: ssl: fix null-deref warning in ssl_fc_cipherlist_str sample fetch
13016 - BUILD: ssl: fix another null-deref warning in ssl_sock_switchctx_cbk()
13017 - BUILD: stick-table: make sure not to fail on task_new() during initialization
13018 - BUILD: peers: check allocation error during peers_init_sync()
13019 - MINOR: tools: add a new function atleast2() to test masks for more than 1 bit
13020 - MINOR: config: use atleast2() instead of my_popcountl() where relevant
13021 - MEDIUM: fd/threads: only grab the fd's lock if the FD has more than one thread
13022 - MAJOR: tasks: create per-thread wait queues
13023 - OPTIM: tasks: group all tree roots per cache line
13024 - DOC: Fix a few typos
13025 - MINOR: pools: allocate most memory pools from an array
13026 - MINOR: pools: split pool_free() in the lockfree variant
13027 - MEDIUM: pools: implement a thread-local cache for pool entries
13028 - BUG/MEDIUM: threads: fix thread_release() at the end of the rendez-vous point
13029 - Revert "BUILD: lua: silence some compiler warnings about potential null derefs"
13030 - BUILD: lua: silence some compiler warnings about potential null derefs (#2)
13031 - MINOR: lua: all functions calling lua_yieldk() may return
13032 - BUILD: lua: silence some compiler warnings after WILL_LJMP
13033 - BUILD: Makefile: silence an option conflict warning with clang
13034 - MINOR: server: Use memcpy() instead of strncpy().
13035 - CLEANUP: state-file: make the path concatenation code a bit more consistent
13036 - MINOR: build: Disable -Wstringop-overflow.
13037 - MINOR: cfgparse: Write 130 as 128 as 0x82 and 0x80.
13038 - MINOR: peers: use defines instead of enums to appease clang.
13039 - DOC: fix reference to map files in MAINTAINERS
13040 - MINOR: fd: centralize poll timeout computation in compute_poll_timeout()
13041 - MINOR: poller: move time and date computation out of the pollers
13042 - BUILD: memory: fix pointer declaration for atomic CAS
13043 - BUILD: Makefile: add USE_RT to pass -lrt for clock_gettime() and friends
13044 - MINOR: time: add now_mono_time() and now_cpu_time()
13045 - MEDIUM: time: measure the time stolen by other threads
13046 - BUILD: memory: fix free_list pointer declaration again for atomic CAS
13047 - BUILD: compiler: rename __unreachable() to my_unreachable()
13048 - BUG/MEDIUM: pools: Fix the usage of mmap()) with DEBUG_UAF.
13049 - BUILD: memory: fix free_list pointer declaration again for atomic CAS
13050 - BUG/MEDIUM: h2: Close connection if no stream is left an GOAWAY was sent.
13051 - BUG/MEDIUM: connections: Remove subscription if going in idle mode.
13052 - BUG/MEDIUM: stream: Make sure polling is right on retry.
13053 - MINOR: h2: Make sure to return 1 in h2_recv() when needed.
13054 - MEDIUM: connections: Don't directly mess with the polling from the upper layers.
13055 - MINOR: streams: Call tasklet_free() after si_release_endpoint().
13056 - MINOR: connection: Add a SUB_CALL_UNSUBSCRIBE event.
13057 - MINOR: h2: Don't run tasks that are waiting to send if mux in full.
13058 - MINOR: ebtree: save 8 bytes in struct eb32sc_node
13059
Willy Tarreau27010f02018-09-29 20:17:33 +0200130602018/09/29 : 1.9-dev3
13061 - BUG/MINOR: h1: don't consider the status for each header
13062 - MINOR: h1: report in the h1m struct if the HTTP version is 1.1 or above
13063 - MINOR: h1: parse the Connection header field
13064 - DOC: Fix typos in lua documentation
13065 - MINOR: h1: Add H1_MF_XFER_LEN flag
13066 - MINOR: http: add http_hdr_del() to remove a header from a list
13067 - MINOR: h1: add headers to the list after controls, not before
13068 - MEDIUM: h1: better handle transfer-encoding vs content-length
13069 - MEDIUM: h1: deduplicate the content-length header
13070 - BUG/MEDIUM: patterns: fix possible double free when reloading a pattern list
13071 - BUG/MEDIUM: h1: Really skip all updates when incomplete messages are parsed
13072 - CLEANUP/CONTRIB: hpack: remove some h1 build warnings
13073 - BUG/MINOR: tools: fix set_net_port() / set_host_port() on IPv4
13074 - BUG/MINOR: cli: make sure the "getsock" command is only called on connections
13075 - MINOR: stktable: provide an unchecked version of stktable_data_ptr()
13076 - MINOR: stream-int: make si_appctx() never fail
13077 - BUILD: ssl_sock: remove build warnings on potential null-derefs
13078 - BUILD: stats: remove build warnings on potential null-derefs
13079 - BUILD: stream: address null-deref build warnings at -Wextra
13080 - BUILD: http: address a couple of null-deref warnings at -Wextra
13081 - BUILD: log: silent build warnings due to unchecked __objt_{server,applet}
13082 - BUILD: dns: fix null-deref build warning at -Wextra
13083 - BUILD: checks: silence a null-deref build warning at -Wextra
13084 - BUILD: connection: silence a couple of null-deref build warnings at -Wextra
13085 - BUILD: backend: fix 3 build warnings related to null-deref at -Wextra
13086 - BUILD: sockpair: silence a build warning at -Wextra
13087 - BUILD: build with -Wextra and sort out certain warnings
13088 - BUG/CRITICAL: hpack: fix improper sign check on the header index value
13089 - BUG/MEDIUM: http: Don't parse chunked body if there is no input data
13090 - DOC: Update configuration doc about the maximum number of stick counters.
13091 - BUG/MEDIUM: process_stream: Don't use si_cs_io_cb() in process_stream().
13092 - MINOR: h2/stream_interface: Reintroduce te wake() method.
13093 - BUG/MEDIUM: h2: Wake the task instead of calling h2_recv()/h2_process().
13094 - BUG/MEDIUM: process_stream(): Don't wake the task if no new data was received.
13095 - MEDIUM: lua: Add stick table support for Lua.
13096
Willy Tarreau253006d2018-09-12 18:59:48 +0200130972018/09/12 : 1.9-dev2
13098 - BUG/MINOR: buffers: Fix b_slow_realign when a buffer is realign without output
13099 - BUG/MEDIUM: threads: fix the no-thread case after the change to the sync point
13100 - BUG/MEDIUM: servers: check the queues once enabling a server
13101 - BUG/MEDIUM: queue: prevent a backup server from draining the proxy's connections
13102 - MEDIUM: mux: Remove const on the buffer in mux->snd_buf()
13103 - CLEANUP: backend: Move mux install to call it at only one place
13104 - MINOR: conn_stream: add an tx buffer to the conn_stream
13105 - MINOR: conn_stream: add cs_send() as a default snd_buf() function
13106 - MINOR: backend: Try to find the best mux for outgoing connections
13107 - MEDIUM: backend: don't rely on mux_pt_ops in connect_server()
13108 - MINOR: mux: Add info about the supported side in alpn_mux_list structure
13109 - MINOR: mux: Unlink ALPN and multiplexers to rather speak of mux protocols
13110 - MINOR: mux: Print the list of existing mux protocols during HA startup
13111 - MEDIUM: checks: use the new rendez-vous point to spread check result
13112 - MEDIUM: haproxy: don't use sync_poll_loop() anymore in the main loop
13113 - MINOR: threads: remove the previous synchronization point
13114 - MAJOR: server: make server state changes synchronous again
13115 - CLEANUP: server: remove the update list and the update lock
13116 - BUG/MINOR: threads: Remove the unexisting lock label "UPDATED_SERVERS_LOCK"
13117 - BUG/MEDIUM: stream_int: Don't check CO_FL_SOCK_RD_SH flag to trigger cs receive
13118 - MINOR: mux: Change get_mux_proto to get an ist as parameter
13119 - MINOR: mux: Improve the message with the list of existing mux protocols
13120 - MINOR: mux/frontend: Add 'proto' keyword to force the mux protocol
13121 - MINOR: mux/server: Add 'proto' keyword to force the multiplexer's protocol
13122 - MEDIUM: mux: Use the mux protocol specified on bind/server lines
13123 - BUG/MEDIUM: connection/mux: take care of serverless proxies
13124 - MINOR: queue: make sure the pendconn is released before logging
13125 - MINOR: stream: rename {srv,prx}_queue_size to *_queue_pos
13126 - MINOR: queue: store the queue index in the stream when enqueuing
13127 - MINOR: queue: replace the linked list with a tree
13128 - MEDIUM: add set-priority-class and set-priority-offset
13129 - MEDIUM: queue: adjust position based on priority-class and priority-offset
13130 - DOC: update the roadmap about priority queues
13131 - BUG/MINOR: ssl: empty connections reported as errors.
13132 - MINOR: connections: Make rcv_buf mandatory and nuke cs_recv().
13133 - MINOR: connections: Move rxbuf from the conn_stream to the h2s.
13134 - MINOR: connections: Get rid of txbuf.
13135 - MINOR: tasks: Allow tasklet_wakeup() to wakeup a task.
13136 - MINOR: connections/mux: Add the wait reason(s) to wait_list.
13137 - MINOR: stream_interface: Don't use si_cs_send() as a task handler.
13138 - MINOR: stream_interface: Give stream_interface its own wait_list.
13139 - MINOR: mux_h2: Don't use h2_send() as a callback.
13140 - MINOR: checks: Add event_srv_chk_io().
13141 - BUG/MEDIUM: tasks: Don't insert in the global rqueue if nbthread == 1
13142 - BUG/MEDIUM: sessions: Don't use t->state.
13143 - BUG/MEDIUM: ssl: fix missing error loading a keytype cert from a bundle.
13144 - BUG/MEDIUM: ssl: loading dh param from certifile causes unpredictable error.
13145 - BUG/MINOR: map: fix map_regm with backref
13146 - DOC: dns: explain set server ... fqdn requires resolver
13147 - DOC: add documentation for prio_class and prio_offset sample fetches.
13148 - DOC: ssl: Use consistent naming for TLS protocols
13149 - DOC: update the layering design notes
13150 - MINOR: tasks: Don't special-case when nbthreads == 1
13151 - MINOR: fd cache: And the thread_mask with all_threads_mask.
13152 - BUG/MEDIUM: lua: socket timeouts are not applied
13153 - BUG/MINOR: lua: fix extra 500ms added to socket timeouts
13154 - BUG/MEDIUM: server: update our local state before propagating changes
13155 - BUG/MEDIUM: cli/threads: protect all "proxy" commands against concurrent updates
13156 - DOC: server/threads: document which functions need to be called with/without locks
13157 - BUG/MEDIUM: cli/threads: protect some server commands against concurrent operations
13158 - BUG/MEDIUM: streams: Don't forget to remove the si from the wait list.
13159 - BUG/MEDIUM: tasklets: Add the thread as active when waking a tasklet.
13160 - BUG/MEDIUM: stream-int: Check if the conn_stream exist in si_cs_io_cb.
13161 - BUG/MEDIUM: H2: Activate polling after successful h2_snd_buf().
13162 - BUG/MEDIUM: stream_interface: Call the wake callback after sending.
13163 - BUG/MAJOR: queue/threads: make pendconn_redistribute not lock the server
13164 - BUG/MEDIUM: connection: don't forget to always delete the list's head
13165 - BUG/MEDIUM: lb/threads: always properly lock LB algorithms on maintenance operations
13166 - BUG/MEDIUM: check/threads: do not involve the rendez-vous point for status updates
13167 - BUG/MINOR: chunks: do not store -1 into chunk_printf() in case of error
13168 - BUG/MEDIUM: http: don't store exp_replace() result in the trash's length
13169 - BUG/MEDIUM: http: don't store url_decode() result in the samples's length
13170 - BUG/MEDIUM: dns: don't store dns_build_query() result in the trash's length
13171 - BUG/MEDIUM: map: don't store exp_replace() result in the trash's length
13172 - BUG/MEDIUM: connection: don't store recv() result into trash.data
13173 - BUG/MEDIUM: cli/ssl: don't store base64dec() result in the trash's length
13174 - MINOR: chunk: remove impossible tests on negative chunk->data
13175 - MINOR: sample: remove impossible tests on negative smp->data.u.str.data
13176 - DOC: Fix spelling error in configuration doc
13177 - REGTEST/MINOR: Missing mandatory "ignore_unknown_macro".
13178 - REGTEST/MINOR: Add a new class of regression testing files.
13179 - BUG/MEDIUM: unix: provide a ->drain() function
13180 - MINOR: connection: make conn_sock_drain() work for all socket families
13181 - BUG/MINOR: lua: Bad HTTP client request duration.
13182 - REGEST/MINOR: Add reg testing files.
13183 - BUG/MEDIUM: mux_pt: dereference the connection with care in mux_pt_wake()
13184 - REGTEST/MINOR: Add a reg testing file for b406b87 commit.
13185 - BUG/MEDIUM: lua: reset lua transaction between http requests
13186 - MINOR: add be_conn_free sample fetch
13187 - MINOR: Add srv_conn_free sample fetch
13188 - BUG/MEDIUM: hlua: Make sure we drain the output buffer when done.
13189 - MINOR: checks: Call wake_srv_chk() when we can finally send data.
13190 - BUG/MEDIUM: stream_interface: try to call si_cs_send() earlier.
13191 - BUG/MAJOR: thread: lua: Wrong SSL context initialization.
13192 - REGTEST/MINOR: Add a reg testing file for 3e60b11.
13193 - BUG/MEDIUM: hlua: Don't call RESET_SAFE_LJMP if SET_SAFE_LJMP returns 0.
13194 - REGTEST/MINOR: lua: Add reg testing files for 70d318c.
13195 - BUG/MEDIUM: dns/server: fix incomatibility between SRV resolution and server state file
13196 - BUG/MEDIUM: ECC cert should work with TLS < v1.2 and openssl >= 1.1.1
13197 - MINOR: tools: make date2str_log() take some consts
13198 - MINOR: thread: implement HA_ATOMIC_XADD()
13199 - BUG/MINOR: stream: use atomic increments for the request counter
13200 - BUG/MEDIUM: session: fix reporting of handshake processing time in the logs
13201 - BUG/MEDIUM: h2: fix risk of memory leak on malformated wrapped frames
13202 - BUG/MAJOR: buffer: fix incorrect check in __b_putblk()
13203 - MINOR: log: move the log code to sess_build_logline() to add extra arguments
13204 - MINOR: log: make the backend fall back to the frontend when there's no stream
13205 - MINOR: log: make sess_build_logline() not dereference a NULL stream for txn
13206 - MINOR: log: don't unconditionally pick log info from s->logs
13207 - CLEANUP: log: make the low_level lf_{ip,port,text,text_len} functions take consts
13208 - MINOR: log: keep a copy of the backend connection early in sess_build_logline()
13209 - MINOR: log: do not dereference a null stream to access captures
13210 - MINOR: log: be sure not to dereference a null stream for a target
13211 - MINOR: log: don't check the stream-int's conn_retries if the stream is NULL
13212 - MINOR: log: use NULL for the unique_id if there is no stream
13213 - MINOR: log: keep a copy of s->flags early to avoid a dereference
13214 - MINOR: log: use zero as the request counter if there is no stream
13215 - MEDIUM: log: make sess_build_logline() support being called with no stream
13216 - MINOR: log: provide a function to emit a log for a session
13217 - MEDIUM: h2: produce some logs on early errors that prevent streams from being created
13218 - BUG/MINOR: h1: fix buffer shift after realignment
13219 - MINOR: connection: make the initialization more consistent
13220 - MINOR: connection: add new function conn_get_proxy()
13221 - MINOR: connection: add new function conn_is_back()
13222 - MINOR: log: One const should be enough.
13223 - BUG/MINOR: dns: check and link servers' resolvers right after config parsing
13224 - BUG/MINOR: http/threads: atomically increment the error snapshot ID
13225 - MINOR: snapshot: restart on the event ID and not the stream ID
13226 - MINOR: snapshot: split the error snapshots into common and proto-specific parts
13227 - MEDIUM: snapshot: start to reorder the HTTP snapshot output a little bit
13228 - MEDIUM: snapshot: implement a show() callback and use it for HTTP
13229 - MINOR: proxy: add a new generic proxy_capture_error()
13230 - MINOR: http: make the HTTP error capture rely on the generic proxy code
13231 - MINOR: http: remove the pointer to the error snapshot in http_capture_bad_message()
13232 - REORG: cli: move the "show errors" handler from http to proxy
13233 - BUG/MEDIUM: snapshot: take the proxy's lock while dumping errors
13234 - MEDIUM: snapshots: dynamically allocate the snapshots
13235 - MEDIUM: snapshot: merge the captured data after the descriptor
13236 - MEDIUM: mworker: remove register/unregister signal functions
13237 - MEDIUM: mworker: use the haproxy poll loop
13238 - BUG/MINOR: mworker: no need to stop peers for each proxy
13239 - MINOR: mworker: mworker_cleanlisteners() delete the listeners
13240 - MEDIUM: mworker: block SIGCHLD until the master is ready
13241 - MEDIUM: mworker: never block SIG{TERM,INT} during reload
13242 - MEDIUM: startup: unify signal init between daemon and mworker mode
13243 - MINOR: mworker: don't deinit the poller fd when in wait mode
13244 - MEDIUM: mworker: master wait mode use its own initialization
13245 - MEDIUM: mworker: replace the master pipe by socketpairs
13246 - MINOR: mworker: keep and clean the listeners
13247 - MEDIUM: threads: close the thread-waker pipe during deinit
13248 - MEDIUM: mworker: call per_thread deinit in mworker_reload()
13249 - REORG: http: move the HTTP semantics definitions to http.h/http.c
13250 - REORG: http: move http_get_path() to http.c
13251 - REORG: http: move error codes production and processing to http.c
13252 - REORG: http: move the log encoding tables to log.c
13253 - REORG: http: move some header value processing functions to http.c
13254 - BUG/MAJOR: kqueue: Don't reset the changes number by accident.
13255 - MEDIUM: protocol: use a custom AF_MAX to help protocol parser
13256 - MEDIUM: protocol: sockpair protocol
13257 - TESTS: add a python wrapper for sockpair@
13258 - BUG/MINOR: server: Crash when setting FQDN via CLI.
13259 - BUG/MINOR: h2: report asynchronous end of stream on closed connections
13260 - BUILD: fix build without thread
13261 - BUG/MEDIUM: tasks: Don't forget to decrement task_list_size in tasklet_free().
13262 - MEDIUM: connections: Don't reset the polling flags in conn_fd_handler().
13263 - MEDIUM: connections/mux: Add a recv and a send+recv wait list.
13264 - MEDIUM: connections: Get rid of the recv() method.
13265 - MINOR: h2: Let user of h2_recv() and h2_send() know xfer has been done.
13266 - MEDIUM: h2: always subscribe to receive if allowed.
13267 - MEDIUM: h2: Don't use a wake() method anymore.
13268 - MEDIUM: stream_interface: Make recv() subscribe when more data is needed.
13269 - MINOR: connections: Add a "handle" field to wait_list.
13270 - MEDIUM: mux_h2: Revamp the send path when blocking.
13271 - MEDIUM: stream_interfaces: Starts receiving from the upper layers.
13272 - MINOR: checks: Give checks their own wait_list.
13273 - MINOR: conn_streams: Remove wait_list from conn_streams.
13274 - REORG: h1: create a new h1m_state
13275 - MINOR: h1: add the restart offsets into struct h1m
13276 - MINOR: h1: remove the unused states from h1m_state
13277 - MINOR: h1: provide a distinct init() function for request and response
13278 - MINOR: h1: add a message flag to indicate that a message carries a response
13279 - MINOR: h2: make sure h1m->err_pos field is correct on chunk error
13280 - MINOR: h1: properly pre-initialize err_pos to -2
13281 - MINOR: mux_h2: replace the req,res h1 messages with a single h1 message
13282 - MINOR: h2: pre-initialize h1m->err_pos to -1 on the output path
13283 - MEDIUM: h1: consider err_pos before deciding to accept a header name or not
13284 - MEDIUM: h1: make the parser support a pointer to a start line
13285 - MEDIUM: h1: let the caller pass the initial parser's state
13286 - MINOR: h1: make the message parser support a null <hdr> argument
13287 - MEDIUM: h1: support partial message parsing
13288 - MEDIUM: h1: remove the useless H1_MSG_BODY state
13289 - MINOR: h2: store the HTTP status into the H2S, not the H1M
13290 - MINOR: h1: remove the HTTP status from the H1M struct
13291 - MEDIUM: h1: implement the request parser as well
13292 - MINOR: h1: add H1_MF_TOLOWER to decide when to turn header names to lower case
13293 - MINOR: connection: pass the proxy when creating a connection
13294 - BUG/MEDIUM: h2: Don't forget to empty the wait lists on destroy.
13295 - BUG/MEDIUM: h2: Don't forget to set recv_wait_list to NULL in h2_detach.
13296 - BUG/MAJOR: h2: reset the parser's state on mux buffer full
13297
Willy Tarreau65e94d12018-08-02 18:12:50 +0200132982018/08/02 : 1.9-dev1
13299 - BUG/MEDIUM: kqueue: Don't bother closing the kqueue after fork.
13300 - DOC: cache: update sections and fix some typos
13301 - BUILD/MINOR: deviceatlas: enable thread support
13302 - BUG/MEDIUM: tcp-check: Don't lock the server in tcpcheck_main
13303 - BUG/MEDIUM: ssl: don't allocate shctx several time
13304 - BUG/MEDIUM: cache: bad computation of the remaining size
13305 - BUILD: checks: don't include server.h
13306 - BUG/MEDIUM: stream: fix session leak on applet-initiated connections
13307 - BUILD/MINOR: haproxy : FreeBSD/cpu affinity needs pthread_np header
13308 - BUILD/MINOR: Makefile : enabling USE_CPU_AFFINITY
13309 - BUG/MINOR: ssl: CO_FL_EARLY_DATA removal is managed by stream
13310 - BUG/MEDIUM: threads/peers: decrement, not increment jobs on quitting
13311 - BUG/MEDIUM: h2: don't report an error after parsing a 100-continue response
13312 - BUG/MEDIUM: peers: fix some track counter rules dont register entries for sync.
13313 - BUG/MAJOR: thread/peers: fix deadlock on peers sync.
13314 - BUILD/MINOR: haproxy: compiling config cpu parsing handling when needed
13315 - MINOR: config: report when "monitor fail" rules are misplaced
13316 - BUG/MINOR: mworker: fix validity check for the pipe FDs
13317 - BUG/MINOR: mworker: detach from tty when in daemon mode
13318 - MINOR: threads: Fix pthread_setaffinity_np on FreeBSD.
13319 - BUG/MAJOR: thread: Be sure to request a sync between threads only once at a time
13320 - BUILD: Fix LDFLAGS vs. LIBS re linking order in various makefiles
13321 - BUG/MEDIUM: checks: Be sure we have a mux if we created a cs.
13322 - BUG/MINOR: hpack: fix debugging output of pseudo header names
13323 - BUG/MINOR: hpack: must reject huffman literals padded with more than 7 bits
13324 - BUG/MINOR: hpack: reject invalid header index
13325 - BUG/MINOR: hpack: dynamic table size updates are only allowed before headers
13326 - BUG/MAJOR: h2: correctly check the request length when building an H1 request
13327 - BUG/MINOR: h2: immediately close if receiving GOAWAY after the last stream
13328 - BUG/MINOR: h2: try to abort closed streams as soon as possible
13329 - BUG/MINOR: h2: ":path" must not be empty
13330 - BUG/MINOR: h2: fix a typo causing PING/ACK to be responded to
13331 - BUG/MINOR: h2: the TE header if present may only contain trailers
13332 - BUG/MEDIUM: h2: enforce the per-connection stream limit
13333 - BUG/MINOR: h2: do not accept SETTINGS_ENABLE_PUSH other than 0 or 1
13334 - BUG/MINOR: h2: reject incorrect stream dependencies on HEADERS frame
13335 - BUG/MINOR: h2: properly check PRIORITY frames
13336 - BUG/MINOR: h2: reject response pseudo-headers from requests
13337 - BUG/MEDIUM: h2: remove connection-specific headers from request
13338 - BUG/MEDIUM: h2: do not accept upper case letters in request header names
13339 - BUG/MINOR: h2: use the H2_F_DATA_* macros for DATA frames
13340 - BUG/MINOR: action: Don't check http capture rules when no id is defined
13341 - BUG/MAJOR: hpack: don't pretend large headers fit in empty table
13342 - BUG/MINOR: ssl: support tune.ssl.cachesize 0 again
13343 - BUG/MEDIUM: mworker: also close peers sockets in the master
13344 - BUG/MEDIUM: ssl engines: Fix async engines fds were not considered to fix fd limit automatically.
13345 - BUG/MEDIUM: checks: a down server going to maint remains definitely stucked on down state.
13346 - BUG/MEDIUM: peers: set NOLINGER on the outgoing stream interface
13347 - BUG/MEDIUM: h2: fix handling of end of stream again
13348 - MINOR: mworker: Update messages referencing exit-on-failure
13349 - MINOR: mworker: Improve wording in `void mworker_wait()`
13350 - CONTRIB: halog: Add help text for -s switch in halog program
13351 - BUG/MEDIUM: email-alert: don't set server check status from a email-alert task
13352 - BUG/MEDIUM: threads/vars: Fix deadlock in register_name
13353 - MINOR: systemd: remove comment about HAPROXY_STATS_SOCKET
13354 - DOC: notifications: add precisions about thread usage
13355 - BUG/MEDIUM: lua/notification: memory leak
13356 - MINOR: conn_stream: add new flag CS_FL_RCV_MORE to indicate pending data
13357 - BUG/MEDIUM: stream-int: always set SI_FL_WAIT_ROOM on CS_FL_RCV_MORE
13358 - BUG/MEDIUM: h2: automatically set CS_FL_RCV_MORE when the output buffer is full
13359 - BUG/MEDIUM: h2: enable recv polling whenever demuxing is possible
13360 - BUG/MEDIUM: h2: work around a connection API limitation
13361 - BUG/MEDIUM: h2: debug incoming traffic in h2_wake()
13362 - MINOR: h2: store the demux padding length in the h2c struct
13363 - BUG/MEDIUM: h2: support uploading partial DATA frames
13364 - MINOR: h2: don't demand that a DATA frame is complete before processing it
13365 - BUG/MEDIUM: h2: don't switch the state to HREM before end of DATA frame
13366 - BUG/MEDIUM: h2: don't close after the first DATA frame on tunnelled responses
13367 - BUG/MEDIUM: http: don't disable lingering on requests with tunnelled responses
13368 - BUG/MEDIUM: h2: fix stream limit enforcement
13369 - BUG/MINOR: stream-int: don't try to receive again after receiving an EOS
13370 - MINOR: sample: add len converter
13371 - BUG: MAJOR: lb_map: server map calculation broken
13372 - BUG: MINOR: http: don't check http-request capture id when len is provided
13373 - MINOR: sample: rename the "len" converter to "length"
13374 - BUG/MEDIUM: mworker: Set FD_CLOEXEC flag on log fd
13375 - DOC/MINOR: intro: typo, wording, formatting fixes
13376 - MINOR: netscaler: respect syntax
13377 - MINOR: netscaler: remove the use of cip_magic only used once
13378 - MINOR: netscaler: rename cip_len to clarify its uage
13379 - BUG/MEDIUM: netscaler: use the appropriate IPv6 header size
13380 - BUG/MAJOR: netscaler: address truncated CIP header detection
13381 - MINOR: netscaler: check in one-shot if buffer is large enough for IP and TCP header
13382 - MEDIUM: netscaler: do not analyze original IP packet size
13383 - MEDIUM: netscaler: add support for standard NetScaler CIP protocol
13384 - MINOR: spoe: add force-set-var option in spoe-agent configuration
13385 - CONTRIB: iprange: Fix compiler warning in iprange.c
13386 - CONTRIB: halog: Fix compiler warnings in halog.c
13387 - BUG/MINOR: h2: properly report a stream error on RST_STREAM
13388 - MINOR: mux: add flags to describe a mux's capabilities
13389 - MINOR: stream-int: set flag SI_FL_CLEAN_ABRT when mux supports clean aborts
13390 - BUG/MEDIUM: stream: don't consider abortonclose on muxes which close cleanly
13391 - BUG/MEDIUM: checks: a server passed in maint state was not forced down.
13392 - BUG/MEDIUM: lua: fix crash when using bogus mode in register_service()
13393 - MINOR: http: adjust the list of supposedly cacheable methods
13394 - MINOR: http: update the list of cacheable status codes as per RFC7231
13395 - MINOR: http: start to compute the transaction's cacheability from the request
13396 - BUG/MINOR: http: do not ignore cache-control: public
13397 - BUG/MINOR: http: properly detect max-age=0 and s-maxage=0 in responses
13398 - BUG/MINOR: cache: do not force the TX_CACHEABLE flag before checking cacheability
13399 - MINOR: http: add a function to check request's cache-control header field
13400 - BUG/MEDIUM: cache: do not try to retrieve host-less requests from the cache
13401 - BUG/MEDIUM: cache: replace old object on store
13402 - BUG/MEDIUM: cache: respect the request cache-control header
13403 - BUG/MEDIUM: cache: don't cache the response on no-cache="set-cookie"
13404 - BUG/MAJOR: connection: refine the situations where we don't send shutw()
13405 - BUG/MEDIUM: checks: properly set servers to stopping state on 404
13406 - BUG/MEDIUM: h2: properly handle and report some stream errors
13407 - BUG/MEDIUM: h2: improve handling of frames received on closed streams
13408 - DOC/MINOR: configuration: typo, formatting fixes
13409 - BUG/MEDIUM: h2: ensure we always know the stream before sending a reset
13410 - BUG/MEDIUM: mworker: don't close stdio several time
13411 - MINOR: don't close stdio anymore
13412 - BUG/MEDIUM: http: don't automatically forward request close
13413 - BUG/MAJOR: hpack: don't return direct references to the dynamic headers table
13414 - MINOR: h2: add a function to report pseudo-header names
13415 - DEBUG: hpack: make hpack_dht_dump() expose the output file
13416 - DEBUG: hpack: add more traces to the hpack decoder
13417 - CONTRIB: hpack: add an hpack decoder
13418 - MEDIUM: h2: prepare a graceful shutdown when the frontend is stopped
13419 - BUG/MEDIUM: h2: properly handle the END_STREAM flag on empty DATA frames
13420 - BUILD: ssl: silence a warning when building without NPN nor ALPN support
13421 - CLEANUP: rbtree: remove
13422 - BUG/MEDIUM: ssl: cache doesn't release shctx blocks
13423 - BUG/MINOR: lua: Fix default value for pattern in Socket.receive
13424 - DOC: lua: Fix typos in comments of hlua_socket_receive
13425 - BUG/MEDIUM: lua: Fix IPv6 with separate port support for Socket.connect
13426 - BUG/MINOR: lua: Fix return value of Socket.settimeout
13427 - MINOR: dns: Handle SRV record weight correctly.
13428 - BUG/MEDIUM: mworker: execvp failure depending on argv[0]
13429 - MINOR: hathreads: add support for gcc < 4.7
13430 - BUILD/MINOR: ancient gcc versions atomic fix
13431 - BUG/MEDIUM: stream: properly handle client aborts during redispatch
13432 - MINOR: spoe: add register-var-names directive in spoe-agent configuration
13433 - MINOR: spoe: Don't queue a SPOE context if nothing is sent
13434 - DOC: clarify the scope of ssl_fc_is_resumed
13435 - CONTRIB: debug: fix a few flags definitions
13436 - BUG/MINOR: poll: too large size allocation for FD events
13437 - MINOR: sample: add date_us sample
13438 - BUG/MEDIUM: peers: fix expire date wasn't updated if entry is modified remotely.
13439 - MINOR: servers: Don't report duplicate dyncookies for disabled servers.
13440 - MINOR: global/threads: move cpu_map at the end of the global struct
13441 - MINOR: threads: add a MAX_THREADS define instead of LONGBITS
13442 - MINOR: global: add some global activity counters to help debugging
13443 - MINOR: threads/fd: Use a bitfield to know if there are FDs for a thread in the FD cache
13444 - BUG/MEDIUM: threads/polling: Use fd_cache_mask instead of fd_cache_num
13445 - BUG/MEDIUM: fd: maintain a per-thread update mask
13446 - MINOR: fd: add a bitmask to indicate that an FD is known by the poller
13447 - BUG/MEDIUM: epoll/threads: use one epoll_fd per thread
13448 - BUG/MEDIUM: kqueue/threads: use one kqueue_fd per thread
13449 - BUG/MEDIUM: threads/mworker: fix a race on startup
13450 - BUG/MINOR: mworker: only write to pidfile if it exists
13451 - MINOR: threads: Fix build when we're not compiling with threads.
13452 - BUG/MINOR: threads: always set an owner to the thread_sync pipe
13453 - BUG/MEDIUM: threads/server: Fix deadlock in srv_set_stopping/srv_set_admin_flag
13454 - BUG/MEDIUM: checks: Don't try to release undefined conn_stream when a check is freed
13455 - BUG/MINOR: kqueue/threads: Don't forget to close kqueue_fd[tid] on each thread
13456 - MINOR: threads: Use __decl_hathreads instead of #ifdef/#endif
13457 - BUILD: epoll/threads: Add test on MAX_THREADS to avoid warnings when complied without threads
13458 - BUILD: kqueue/threads: Add test on MAX_THREADS to avoid warnings when complied without threads
13459 - CLEANUP: sample: Fix comment encoding of sample.c
13460 - CLEANUP: sample: Fix outdated comment about sample casts functions
13461 - BUG/MINOR: sample: Fix output type of c_ipv62ip
13462 - CLEANUP: Fix typo in ARGT_MSK6 comment
13463 - CLEANUP: standard: Use len2mask4 in str2mask
13464 - MINOR: standard: Add str2mask6 function
13465 - MINOR: config: Add support for ARGT_MSK6
13466 - MEDIUM: sample: Add IPv6 support to the ipmask converter
13467 - MINOR: config: Enable tracking of up to MAX_SESS_STKCTR stick counters.
13468 - BUG/MINOR: cli: use global.maxsock and not maxfd to list all FDs
13469 - MINOR: polling: make epoll and kqueue not depend on maxfd anymore
13470 - MINOR: fd: don't report maxfd in alert messages
13471 - MEDIUM: polling: start to move maxfd computation to the pollers
13472 - CLEANUP: fd/threads: remove the now unused fdtab_lock
13473 - MINOR: poll: more accurately compute the new maxfd in the loop
13474 - CLEANUP: fd: remove the unused "new" field
13475 - MINOR: fd: move the hap_fd_{clr,set,isset} functions to fd.h
13476 - MEDIUM: select: make use of hap_fd_* functions
13477 - MEDIUM: fd: use atomic ops for hap_fd_{clr,set} and remove poll_lock
13478 - MEDIUM: select: don't use the old FD state anymore
13479 - MEDIUM: poll: don't use the old FD state anymore
13480 - MINOR: fd: pass the iocb and owner to fd_insert()
13481 - BUG/MINOR: threads: Update labels array because of changes in lock_label enum
13482 - MINOR: stick-tables: Adds support for new "gpc1" and "gpc1_rate" counters.
13483 - BUG/MINOR: epoll/threads: only call epoll_ctl(DEL) on polled FDs
13484 - DOC: don't suggest using http-server-close
13485 - MINOR: introduce proxy-v2-options for send-proxy-v2
13486 - BUG/MEDIUM: spoe: Always try to receive or send the frame to detect shutdowns
13487 - BUG/MEDIUM: spoe: Allow producer to read and to forward shutdown on request side
13488 - MINOR: spoe: Remove check on min_applets number when a SPOE context is queued
13489 - MINOR: spoe: Always link a SPOE context with the applet processing it
13490 - MINOR: spoe: Replace sending_rate by a frequency counter
13491 - MINOR: spoe: Count the number of frames waiting for an ack for each applet
13492 - MEDIUM: spoe: Use an ebtree to manage idle applets
13493 - MINOR: spoa_example: Count the number of frames processed by each worker
13494 - MINOR: spoe: Add max-waiting-frames directive in spoe-agent configuration
13495 - MINOR: init: make stdout unbuffered
13496 - MINOR: early data: Don't rely on CO_FL_EARLY_DATA to wake up streams.
13497 - MINOR: early data: Never remove the CO_FL_EARLY_DATA flag.
13498 - MINOR: compiler: introduce offsetoff().
13499 - MINOR: threads: Introduce double-width CAS on x86_64 and arm.
13500 - MINOR: threads: add test and set/reset operations
13501 - MINOR: pools/threads: Implement lockless memory pools.
13502 - MAJOR: fd/threads: Make the fdcache mostly lockless.
13503 - MEDIUM: fd/threads: Make sure we don't miss a fd cache entry.
13504 - MAJOR: fd: compute the new fd polling state out of the fd lock
13505 - MINOR: epoll: get rid of the now useless fd_compute_new_polled_status()
13506 - MINOR: kqueue: get rid of the now useless fd_compute_new_polled_status()
13507 - MINOR: poll: get rid of the now useless fd_compute_new_polled_status()
13508 - MINOR: select: get rid of the now useless fd_compute_new_polled_status()
13509 - CLEANUP: fd: remove the now unused fd_compute_new_polled_status() function
13510 - MEDIUM: fd: make updt_fd_polling() use atomics
13511 - MEDIUM: poller: use atomic ops to update the fdtab mask
13512 - MINOR: fd: move the fd_{add_to,rm_from}_fdlist functions to fd.c
13513 - BUG/MINOR: fd/threads: properly dereference fdcache as volatile
13514 - MINOR: fd: remove the unneeded last CAS when adding an fd to the list
13515 - MINOR: fd: reorder fd_add_to_fd_list()
13516 - BUG/MINOR: time/threads: ensure the adjusted time is always correct
13517 - BUG/MEDIUM: standard: Fix memory leak in str2ip2()
13518 - MINOR: init: emit warning when -sf/-sd cannot parse argument
13519 - BUILD: fd/threads: fix breakage build breakage without threads
13520 - DOC: Describe routing impact of using interface keyword on bind lines
13521 - DOC: Mention -Ws in the list of available options
13522 - BUG/MINOR: config: don't emit a warning when global stats is incompletely configured
13523 - BUG/MINOR: fd/threads: properly lock the FD before adding it to the fd cache.
13524 - BUG/MEDIUM: threads: fix the double CAS implementation for ARMv7
13525 - BUG/MEDIUM: ssl: Don't always treat SSL_ERROR_SYSCALL as unrecovarable.
13526 - BUILD/MINOR: memory: stdint is needed for uintptr_t
13527 - BUG/MINOR: init: Add missing brackets in the code parsing -sf/-st
13528 - DOC: lua: new prototype for function "register_action()"
13529 - DOC: cfgparse: Warn on option (tcp|http)log in backend
13530 - BUG/MINOR: ssl/threads: Make management of the TLS ticket keys files thread-safe
13531 - MINOR: sample: add a new "concat" converter
13532 - BUG/MEDIUM: ssl: Shutdown the connection for reading on SSL_ERROR_SYSCALL
13533 - BUG/MEDIUM: http: Switch the HTTP response in tunnel mode as earlier as possible
13534 - BUG/MEDIUM: ssl/sample: ssl_bc_* fetch keywords are broken.
13535 - MINOR: ssl/sample: adds ssl_bc_is_resumed fetch keyword.
13536 - CLEANUP: cfgparse: Remove unused label end
13537 - CLEANUP: spoe: Remove unused label retry
13538 - CLEANUP: h2: Remove unused labels from mux_h2.c
13539 - CLEANUP: pools: Remove unused end label in memory.h
13540 - CLEANUP: standard: Fix typo in IPv6 mask example
13541 - BUG/MINOR: pools/threads: don't ignore DEBUG_UAF on double-word CAS capable archs
13542 - BUG/MINOR: debug/pools: properly handle out-of-memory when building with DEBUG_UAF
13543 - MINOR: debug/pools: make DEBUG_UAF also detect underflows
13544 - MINOR: stats: display the number of threads in the statistics.
13545 - BUG/MINOR: h2: Set the target of dbuf_wait to h2c
13546 - BUG/MEDIUM: h2: always consume any trailing data after end of output buffers
13547 - BUG/MEDIUM: buffer: Fix the wrapping case in bo_putblk
13548 - BUG/MEDIUM: buffer: Fix the wrapping case in bi_putblk
13549 - BUG/MEDIUM: spoe: Remove idle applets from idle list when HAProxy is stopping
13550 - Revert "BUG/MINOR: send-proxy-v2: string size must include ('\0')"
13551 - MINOR: ssl: extract full pkey info in load_certificate
13552 - MINOR: ssl: add ssl_sock_get_pkey_algo function
13553 - MINOR: ssl: add ssl_sock_get_cert_sig function
13554 - MINOR: connection: add proxy-v2-options ssl-cipher,cert-sig,cert-key
13555 - MINOR: connection: add proxy-v2-options authority
13556 - MINOR: systemd: Add section for SystemD sandboxing to unit file
13557 - MINOR: systemd: Add SystemD's Protect*= options to the unit file
13558 - MINOR: systemd: Add SystemD's SystemCallFilter option to the unit file
13559 - CLEANUP: h2: rename misleading h2c_stream_close() to h2s_close()
13560 - MINOR: h2: provide and use h2s_detach() and h2s_free()
13561 - MEDIUM: h2: use a single buffer allocator
13562 - MINOR/BUILD: fix Lua build on Mac OS X
13563 - BUILD/MINOR: fix Lua build on Mac OS X (again)
13564 - BUG/MINOR: session: Fix tcp-request session failure if handshake.
13565 - CLEANUP: .gitignore: Ignore binaries from the contrib directory
13566 - BUG/MINOR: unix: Don't mess up when removing the socket from the xfer_sock_list.
13567 - DOC: buffers: clarify the purpose of the <from> pointer in offer_buffers()
13568 - BUG/MEDIUM: h2: also arm the h2 timeout when sending
13569 - BUG/MINOR: cli: Fix a crash when passing a negative or too large value to "show fd"
13570 - CLEANUP: ssl: Remove a duplicated #include
13571 - CLEANUP: cli: Remove a leftover debug message
13572 - BUG/MINOR: cli: Fix a typo in the 'set rate-limit' usage
13573 - BUG/MEDIUM: fix a 100% cpu usage with cpu-map and nbthread/nbproc
13574 - BUG/MINOR: force-persist and ignore-persist only apply to backends
13575 - BUG/MEDIUM: threads/unix: Fix a deadlock when a listener is temporarily disabled
13576 - BUG/MAJOR: threads/queue: Fix thread-safety issues on the queues management
13577 - BUG/MINOR: dns: don't downgrade DNS accepted payload size automatically
13578 - TESTS: Add a testcase for multi-port + multi-server listener issue
13579 - CLEANUP: dns: remove duplicate code in src/dns.c
13580 - BUG/MINOR: seemless reload: Fix crash when an interface is specified.
13581 - BUG/MINOR: cli: Ensure all command outputs end with a LF
13582 - BUG/MINOR: cli: Fix a crash when sending a command with too many arguments
13583 - BUILD: ssl: Fix build with OpenSSL without NPN capability
13584 - BUG/MINOR: spoa-example: unexpected behavior for more than 127 args
13585 - BUG/MINOR: lua: return bad error messages
13586 - CLEANUP: lua/syntax: lua is a name and not an acronym
13587 - BUG/MEDIUM: tcp-check: single connect rule can't detect DOWN servers
13588 - BUG/MINOR: tcp-check: use the server's service port as a fallback
13589 - BUG/MEDIUM: threads/queue: wake up other threads upon dequeue
13590 - MINOR: log: stop emitting alerts when it's not possible to write on the socket
13591 - BUILD/BUG: enable -fno-strict-overflow by default
13592 - BUG/MEDIUM: fd/threads: ensure the fdcache_mask always reflects the cache contents
13593 - DOC: log: more than 2 log servers are allowed
13594 - MINOR: hash: add new function hash_crc32c
13595 - MINOR: proxy-v2-options: add crc32c
13596 - MINOR: accept-proxy: support proxy protocol v2 CRC32c checksum
13597 - REORG: compact "struct server"
13598 - MINOR: samples: add crc32c converter
13599 - BUG/MEDIUM: h2: properly account for DATA padding in flow control
13600 - BUG/MINOR: h2: ensure we can never send an RST_STREAM in response to an RST_STREAM
13601 - BUG/MINOR: listener: Don't decrease actconn twice when a new session is rejected
13602 - CLEANUP: map, stream: remove duplicate code in src/map.c, src/stream.c
13603 - BUG/MINOR: lua: the function returns anything
13604 - BUG/MINOR: lua funtion hlua_socket_settimeout don't check negative values
13605 - CLEANUP: lua: typo fix in comments
13606 - BUILD/MINOR: fix build when USE_THREAD is not defined
13607 - MINOR: lua: allow socket api settimeout to accept integers, float, and doubles
13608 - BUG/MINOR: hpack: fix harmless use of uninitialized value in hpack_dht_insert
13609 - MINOR: cli/threads: make "show fd" report thread_sync_io_handler instead of "unknown"
13610 - MINOR: cli: make "show fd" report the mux and mux_ctx pointers when available
13611 - BUILD/MINOR: cli: fix a build warning introduced by last commit
13612 - BUG/MAJOR: h2: remove orphaned streams from the send list before closing
13613 - MINOR: h2: always call h2s_detach() in h2_detach()
13614 - MINOR: h2: fuse h2s_detach() and h2s_free() into h2s_destroy()
13615 - BUG/MEDIUM: h2/threads: never release the task outside of the task handler
13616 - BUG/MEDIUM: h2: don't consider pending data on detach if connection is in error
13617 - BUILD/MINOR: threads: always export thread_sync_io_handler()
13618 - MINOR: mux: add a "show_fd" function to dump debugging information for "show fd"
13619 - MINOR: h2: implement a basic "show_fd" function
13620 - MINOR: cli: report cache indexes in "show fd"
13621 - BUG/MINOR: h2: remove accidental debug code introduced with show_fd function
13622 - BUG/MEDIUM: h2: always add a stream to the send or fctl list when blocked
13623 - BUG/MINOR: checks: check the conn_stream's readiness and not the connection
13624 - BUG/MINOR: fd: Don't clear the update_mask in fd_insert.
13625 - BUG/MINOR: email-alert: Set the mailer port during alert initialization
13626 - BUG/MINOR: cache: fix "show cache" output
13627 - BUG/MAJOR: cache: fix random crashes caused by incorrect delete() on non-first blocks
13628 - BUG/MINOR: spoe: Initialize variables used during conf parsing before any check
13629 - BUG/MINOR: spoe: Don't release the context buffer in .check_timeouts callbaclk
13630 - BUG/MINOR: spoe: Register the variable to set when an error occurred
13631 - BUG/MINOR: spoe: Don't forget to decrement fpa when a processing is interrupted
13632 - MINOR: spoe: Add metrics in to know time spent in the SPOE
13633 - MINOR: spoe: Add options to store processing times in variables
13634 - MINOR: log: move 'log' keyword parsing in dedicated function
13635 - MINOR: log: Keep the ref when a log server is copied to avoid duplicate entries
13636 - MINOR: spoe: Add loggers dedicated to the SPOE agent
13637 - MINOR: spoe: Add support for option dontlog-normal in the SPOE agent section
13638 - MINOR: spoe: use agent's logger to log SPOE messages
13639 - MINOR: spoe: Add counters to log info about SPOE agents
13640 - BUG/MAJOR: cache: always initialize newly created objects
13641 - MINOR: servers: Support alphanumeric characters for the server templates names
13642 - BUG/MEDIUM: threads: Fix the max/min calculation because of name clashes
13643 - BUG/MEDIUM: connection: Make sure we have a mux before calling detach().
13644 - BUG/MINOR: http: Return an error in proxy mode when url2sa fails
13645 - MINOR: proxy: Add fe_defbe fetcher
13646 - MINOR: config: Warn if resolvers has no nameservers
13647 - BUG/MINOR: cli: Guard against NULL messages when using CLI_ST_PRINT_FREE
13648 - MINOR: cli: Ensure the CLI always outputs an error when it should
13649 - MEDIUM: sample: Extend functionality for field/word converters
13650 - MINOR: export localpeer as an environment variable
13651 - BUG/MEDIUM: kqueue: When adding new events, provide an output to get errors.
13652 - BUILD: sample: avoid build warning in sample.c
13653 - BUG/CRITICAL: h2: fix incorrect frame length check
13654 - DOC: lua: update the links to the config and Lua API
13655 - BUG/MINOR: pattern: Add a missing HA_SPIN_INIT() in pat_ref_newid()
13656 - BUG/MAJOR: channel: Fix crash when trying to read from a closed socket
13657 - BUG/MINOR: log: t_idle (%Ti) is not set for some requests
13658 - BUG/MEDIUM: lua: Fix segmentation fault if a Lua task exits
13659 - MINOR: h2: detect presence of CONNECT and/or content-length
13660 - BUG/MEDIUM: h2: implement missing support for chunked encoded uploads
13661 - BUG/MINOR: spoe: Fix counters update when processing is interrupted
13662 - BUG/MINOR: spoe: Fix parsing of dontlog-normal option
13663 - MEDIUM: cli: Add payload support
13664 - MINOR: map: Add payload support to "add map"
13665 - MINOR: ssl: Add payload support to "set ssl ocsp-response"
13666 - BUG/MINOR: lua/threads: Make lua's tasks sticky to the current thread
13667 - MINOR: sample: Add strcmp sample converter
13668 - MINOR: http: Add support for 421 Misdirected Request
13669 - BUG/MINOR: config: disable http-reuse on TCP proxies
13670 - MINOR: ssl: disable SSL sample fetches when unsupported
13671 - MINOR: ssl: add fetch 'ssl_fc_session_key' and 'ssl_bc_session_key'
13672 - BUG/MINOR: checks: Fix check->health computation for flapping servers
13673 - BUG/MEDIUM: threads: Fix the sync point for more than 32 threads
13674 - BUG/MINOR, BUG/MINOR: lua: Put tasks to sleep when waiting for data
13675 - MINOR: backend: implement random-based load balancing
13676 - DOC/MINOR: clean up LUA documentation re: servers & array/table.
13677 - MINOR: lua: Add server name & puid to LUA Server class.
13678 - MINOR: lua: add get_maxconn and set_maxconn to LUA Server class.
13679 - BUG/MINOR: map: correctly track reference to the last ref_elt being dumped
13680 - BUG/MEDIUM: task: Don't free a task that is about to be run.
13681 - MINOR: fd: Make the lockless fd list work with multiple lists.
13682 - BUG/MEDIUM: pollers: Use a global list for fd shared between threads.
13683 - MINOR: pollers: move polled_mask outside of struct fdtab.
13684 - BUG/MINOR: lua: schedule socket task upon lua connect()
13685 - BUG/MINOR: lua: ensure large proxy IDs can be represented
13686 - BUG/MEDIUM: pollers/kqueue: use incremented position in event list
13687 - BUG/MINOR: cli: don't stop cli_gen_usage_msg() when kw->usage == NULL
13688 - BUG/MEDIUM: http: don't always abort transfers on CF_SHUTR
13689 - BUG/MEDIUM: ssl: properly protect SSL cert generation
13690 - BUG/MINOR: lua: Socket.send threw runtime error: 'close' needs 1 arguments.
13691 - BUG/MINOR: spoe: Mistake in error message about SPOE configuration
13692 - BUG/MEDIUM: spoe: Flags are not encoded in network order
13693 - CLEANUP: spoe: Remove unused variables the agent structure
13694 - DOC: spoe: fix a typo
13695 - BUG/MEDIUM: contrib/mod_defender: Use network order to encode/decode flags
13696 - BUG/MEDIUM: contrib/modsecurity: Use network order to encode/decode flags
13697 - DOC: add some description of the pending rework of the buffer structure
13698 - BUG/MINOR: ssl/lua: prevent lua from affecting automatic maxconn computation
13699 - MINOR: lua: Improve error message
13700 - BUG/MEDIUM: cache: don't cache when an Authorization header is present
13701 - MINOR: ssl: set SSL_OP_PRIORITIZE_CHACHA
13702 - BUG/MEDIUM: dns: Delay the attempt to run a DNS resolution on check failure.
13703 - BUG/BUILD: threads: unbreak build without threads
13704 - BUG/MEDIUM: servers: Add srv_addr default placeholder to the state file
13705 - BUG/MEDIUM: lua/socket: Length required read doesn't work
13706 - MINOR: tasks: Change the task API so that the callback takes 3 arguments.
13707 - MAJOR: tasks: Create a per-thread runqueue.
13708 - MAJOR: tasks: Introduce tasklets.
13709 - MINOR: tasks: Make the number of tasks to run at once configurable.
13710 - MAJOR: applets: Use tasks, instead of rolling our own scheduler.
13711 - BUG/MEDIUM: stick-tables: Decrement ref_cnt in table_* converters
13712 - MINOR: http: Log warning if (add|set)-header fails
13713 - DOC: management: add the new wrew stats column
13714 - MINOR: stats: also report the failed header rewrites warnings on the stats page
13715 - BUG/MEDIUM: tasks: Don't forget to increase/decrease tasks_run_queue.
13716 - BUG/MEDIUM: task: Don't forget to decrement max_processed after each task.
13717 - MINOR: task: Also consider the task list size when getting global tasks.
13718 - MINOR: dns: Implement `parse-resolv-conf` directive
13719 - BUG/MEDIUM: spoe: Return an error when the wrong ACK is received in sync mode
13720 - MINOR: task/notification: Is notifications registered ?
13721 - BUG/MEDIUM: lua/socket: wrong scheduling for sockets
13722 - BUG/MAJOR: lua: Dead lock with sockets
13723 - BUG/MEDIUM: lua/socket: Notification error
13724 - BUG/MEDIUM: lua/socket: Sheduling error on write: may dead-lock
13725 - BUG/MEDIUM: lua/socket: Buffer error, may segfault
13726 - DOC: contrib/modsecurity: few typo fixes
13727 - DOC: SPOE.txt: fix a typo
13728 - MAJOR: spoe: upgrade the SPOP version to 2.0 and remove the support for 1.0
13729 - BUG/MINOR: contrib/spoa_example: Don't reset the status code during disconnect
13730 - BUG/MINOR: contrib/mod_defender: Don't reset the status code during disconnect
13731 - BUG/MINOR: contrib/modsecurity: Don't reset the status code during disconnect
13732 - BUG/MINOR: contrib/mod_defender: update pointer on the end of the frame
13733 - BUG/MINOR: contrib/modsecurity: update pointer on the end of the frame
13734 - MINOR: task: Fix a compiler warning by adding a cast.
13735 - MINOR: stats: also report the nice and number of calls for applets
13736 - MINOR: applet: assign the same nice value to a new appctx as its owner task
13737 - MINOR: task: Fix compiler warning.
13738 - BUG/MEDIUM: tasks: Use the local runqueue when building without threads.
13739 - MINOR: tasks: Don't define rqueue if we're building without threads.
13740 - BUG/MINOR: unix: Make sure we can transfer abns sockets on seamless reload.
13741 - MINOR: lua: Increase debug information
13742 - BUG/MEDIUM: threads: handle signal queue only in thread 0
13743 - BUG/MINOR: don't ignore SIG{BUS,FPE,ILL,SEGV} during signal processing
13744 - BUG/MINOR: signals: ha_sigmask macro for multithreading
13745 - BUG/MAJOR: map: fix a segfault when using http-request set-map
13746 - DOC: regression testing: Add a short starting guide.
13747 - MINOR: tasks: Make sure we correctly init and deinit a tasklet.
13748 - BUG/MINOR: tasklets: Just make sure we don't pass a tasklet to the handler.
13749 - BUG/MINOR: lua: Segfaults with wrong usage of types.
13750 - BUG/MAJOR: ssl: Random crash with cipherlist capture
13751 - BUG/MAJOR: ssl: OpenSSL context is stored in non-reserved memory slot
13752 - BUG/MEDIUM: ssl: do not store pkinfo with SSL_set_ex_data
13753 - MINOR: tests: First regression testing file.
13754 - MINOR: reg-tests: Add reg-tests/README file.
13755 - MINOR: reg-tests: Add a few regression testing files.
13756 - DOC: Add new REGTEST tag info about reg testing.
13757 - BUG/MEDIUM: fd: Don't modify the update_mask in fd_dodelete().
13758 - MINOR: Some spelling cleanup in the comments.
13759 - BUG/MEDIUM: threads: Use the sync point to check active jobs and exit
13760 - MINOR: threads: Be sure to remove threads from all_threads_mask on exit
13761 - REGTEST/MINOR: Wrong URI in a reg test for SSL/TLS.
13762 - REGTEST/MINOR: Set HAPROXY_PROGRAM default value.
13763 - REGTEST/MINOR: Add levels to reg-tests target.
13764 - BUG/MAJOR: Stick-tables crash with segfault when the key is not in the stick-table
13765 - BUG/BUILD: threads: unbreak build without threads
13766 - BUG/MAJOR: stick_table: Complete incomplete SEGV fix
13767 - MINOR: stick-tables: make stktable_release() do nothing on NULL
13768 - BUG/MEDIUM: lua: possible CLOSE-WAIT state with '\n' headers
13769 - MINOR: startup: change session/process group settings
13770 - MINOR: systemd: consider exit status 143 as successful
13771 - REGTEST/MINOR: Wrong URI syntax.
13772 - CLEANUP: dns: remove obsolete macro DNS_MAX_IP_REC
13773 - CLEANUP: dns: inacurate comment about prefered IP score
13774 - MINOR: dns: fix wrong score computation in dns_get_ip_from_response
13775 - MINOR: dns: new DNS options to allow/prevent IP address duplication
13776 - REGTEST/MINOR: Unexpected curl URL globling.
13777 - BUG/MINOR: ssl: properly ref-count the tls_keys entries
13778 - MINOR: h2: keep a count of the number of conn_streams attached to the mux
13779 - BUG/MEDIUM: h2: don't accept new streams if conn_streams are still in excess
13780 - MINOR: h2: add the mux and demux buffer lengths on "show fd"
13781 - BUG/MEDIUM: h2: never leave pending data in the output buffer on close
13782 - BUG/MEDIUM: h2: make sure the last stream closes the connection after a timeout
13783 - MINOR: tasklet: Set process to NULL.
13784 - MINOR: buffer: implement a new file for low-level buffer manipulation functions
13785 - MINOR: buffer: switch buffer sizes and offsets to size_t
13786 - MINOR: buffer: add a few basic functions for the new API
13787 - MINOR: buffer: Introduce b_sub(), b_add(), and bo_add()
13788 - MINOR: buffer: Add b_set_data().
13789 - MINOR: buffer: introduce b_realign_if_empty()
13790 - MINOR: compression: pass the channel to http_compression_buffer_end()
13791 - MINOR: channel: add a few basic functions for the new buffer API
13792 - MINOR: channel/buffer: use c_realign_if_empty() instead of buffer_realign()
13793 - MINOR: channel/buffer: replace buffer_slow_realign() with channel_slow_realign() and b_slow_realign()
13794 - MEDIUM: channel: make channel_slow_realign() take a swap buffer
13795 - MINOR: h2: use b_slow_realign() with the trash as a swap buffer
13796 - MINOR: buffer: remove buffer_slow_realign() and the swap_buffer allocation code
13797 - MINOR: channel/buffer: replace b_{adv,rew} with c_{adv,rew}
13798 - MINOR: buffer: replace calls to buffer_space_wraps() with b_space_wraps()
13799 - MINOR: buffer: remove bi_getblk() and bi_getblk_nc()
13800 - MINOR: buffer: split bi_contig_data() into ci_contig_data and b_config_data()
13801 - MINOR: buffer: remove bi_ptr()
13802 - MINOR: buffer: remove bo_ptr()
13803 - MINOR: buffer: remove bo_end()
13804 - MINOR: buffer: remove bi_end()
13805 - MINOR: buffer: remove bo_contig_data()
13806 - MINOR: buffer: merge b{i,o}_contig_space()
13807 - MINOR: buffer: replace bo_getblk() with direction agnostic b_getblk()
13808 - MINOR: buffer: replace bo_getblk_nc() with b_getblk_nc() which takes an offset
13809 - MINOR: buffer: replace bi_del() and bo_del() with b_del()
13810 - MINOR: buffer: convert most b_ptr() calls to c_ptr()
13811 - MINOR: h1: make h1_measure_trailers() take the byte count in argument
13812 - MINOR: h2: clarify the fact that the send functions are unsigned
13813 - MEDIUM: h2: prevent the various mux encoders from modifying the buffer
13814 - MINOR: h1: make h1_skip_chunk_crlf() not depend on b_ptr() anymore
13815 - MINOR: h1: make h1_parse_chunk_size() not depend on b_ptr() anymore
13816 - MINOR: h1: make h1_measure_trailers() use an offset and a count
13817 - MEDIUM: h2: do not use buf->o anymore inside h2_snd_buf's loop
13818 - MEDIUM: h2: don't use b_ptr() nor b_end() anymore
13819 - MINOR: buffer: get rid of b_end() and b_to_end()
13820 - MINOR: buffer: make b_getblk_nc() take const pointers
13821 - MINOR: buffer: make b_getblk_nc() take size_t for the block sizes
13822 - MEDIUM: connection: make xprt->snd_buf() take the byte count in argument
13823 - MEDIUM: mux: make mux->snd_buf() take the byte count in argument
13824 - MEDIUM: connection: make xprt->rcv_buf() use size_t for the count
13825 - MEDIUM: mux: make mux->rcv_buf() take a size_t for the count
13826 - MINOR: connection: add a flags argument to rcv_buf()
13827 - MINOR: connection: add a new receive flag : CO_RFL_BUF_WET
13828 - MINOR: buffer: get rid of b_ptr() and convert its last users
13829 - MINOR: buffer: use b_room() to determine available space in a buffer
13830 - MINOR: buffer: replace buffer_not_empty() with b_data() or c_data()
13831 - MINOR: buffer: replace buffer_empty() with b_empty() or c_empty()
13832 - MINOR: buffer: make bo_putchar() use b_tail()
13833 - MINOR: buffer: replace buffer_full() with channel_full()
13834 - MINOR: buffer: replace bi_space_for_replace() with ci_space_for_replace()
13835 - MINOR: buffer: replace buffer_pending() with ci_data()
13836 - MINOR: buffer: replace buffer_flush() with c_adv(chn, ci_data(chn))
13837 - MINOR: buffer: use c_head() instead of buffer_wrap_sub(c->buf, p-o)
13838 - MINOR: buffer: use b_orig() to replace most references to b->data
13839 - MINOR: buffer: Use b_add()/bo_add() instead of accessing b->i/b->o.
13840 - MINOR: channel: remove almost all references to buf->i and buf->o
13841 - MINOR: channel: Add co_set_data().
13842 - MEDIUM: channel: adapt to the new buffer API
13843 - MINOR: checks: adapt to the new buffer API
13844 - MEDIUM: h2: update to the new buffer API
13845 - MINOR: buffer: remove unused bo_add()
13846 - MEDIUM: spoe: use the new buffer API for the SPOE buffer
13847 - MINOR: stats: adapt to the new buffers API
13848 - MINOR: cli: use the new buffer API
13849 - MINOR: cache: use the new buffer API
13850 - MINOR: stream-int: use the new buffer API
13851 - MINOR: stream: use wrappers instead of directly manipulating buffers
13852 - MINOR: backend: use new buffer API
13853 - MEDIUM: http: use wrappers instead of directly manipulating buffers states
13854 - MINOR: filters: convert to the new buffer API
13855 - MINOR: payload: convert to the new buffer API
13856 - MEDIUM: h1: port to new buffer API.
13857 - MINOR: flt_trace: adapt to the new buffer API
13858 - MEDIUM: compression: start to move to the new buffer API
13859 - MINOR: lua: use the wrappers instead of directly manipulating buffer states
13860 - MINOR: buffer: convert part bo_putblk() and bi_putblk() to the new API
13861 - MINOR: buffer: adapt buffer_slow_realign() and buffer_dump() to the new API
13862 - MAJOR: start to change buffer API
13863 - MINOR: buffer: remove the check for output on b_del()
13864 - MINOR: buffer: b_set_data() doesn't truncate output data anymore
13865 - MINOR: buffer: rename the "data" field to "area"
13866 - MEDIUM: buffers: move "output" from struct buffer to struct channel
13867 - MINOR: buffer: replace bi_fast_delete() with b_del()
13868 - MINOR: buffer: replace b{i,o}_put* with b_put*
13869 - MINOR: buffer: add a new file for ist + buffer manipulation functions
13870 - MINOR: checks: use b_putist() instead of b_putstr()
13871 - MINOR: buffers: remove b_putstr()
13872 - CLEANUP: buffer: minor cleanups to buffer.h
13873 - MINOR: buffers/channel: replace buffer_insert_line2() with ci_insert_line2()
13874 - MINOR: buffer: replace buffer_replace2() with b_rep_blk()
13875 - MINOR: buffer: rename the data length member to '->data'
13876 - MAJOR: buffer: finalize buffer detachment
13877 - MEDIUM: chunks: make the chunk struct's fields match the buffer struct
13878 - MAJOR: chunks: replace struct chunk with struct buffer
13879 - DOC: buffers: document the new buffers API
13880 - DOC: buffers: remove obsolete docs about buffers
13881 - MINOR: tasklets: Don't attempt to add a tasklet in the list twice.
13882 - MINOR: connections/mux: Add a new "subscribe" method.
13883 - MEDIUM: connections/mux: Revamp the send direction.
13884 - MINOR: connection: simplify subscription by adding a registration function
13885 - BUG/MINOR: http: Set brackets for the unlikely macro at the right place
13886 - BUG/MINOR: build: Fix compilation with debug mode enabled
13887 - BUILD: Generate sha256 checksums in publish-release
13888 - MINOR: debug: Add check for CO_FL_WILL_UPDATE
13889 - MINOR: debug: Add checks for conn_stream flags
13890 - MINOR: ist: Add the function isteqi
13891 - BUG/MEDIUM: threads: Fix the exit condition of the thread barrier
13892 - BUG/MEDIUM: mux_h2: Call h2_send() before updating polling.
13893 - MINOR: buffers: simplify b_contig_space()
13894 - MINOR: buffers: split b_putblk() into __b_putblk()
13895 - MINOR: buffers: add b_xfer() to transfer data between buffers
13896 - DOC: add some design notes about the new layering model
13897 - MINOR: conn_stream: add a new CS_FL_REOS flag
13898 - MINOR: conn_stream: add an rx buffer to the conn_stream
13899 - MEDIUM: conn_stream: add cs_recv() as a default rcv_buf() function
13900 - MEDIUM: stream-int: automatically call si_cs_recv_cb() if the cs has data on wake()
13901 - MINOR: h2: make each H2 stream support an intermediary input buffer
13902 - MEDIUM: h2: make h2_frt_decode_headers() use an intermediary buffer
13903 - MEDIUM: h2: make h2_frt_transfer_data() copy via an intermediary buffer
13904 - MEDIUM: h2: centralize transfer of decoded frames in h2_rcv_buf()
13905 - MEDIUM: h2: move headers and data frame decoding to their respective parsers
13906 - MEDIUM: buffers: make b_xfer() automatically swap buffers when possible
13907 - MEDIUM: h2: perform a single call to the data layer in demux()
13908 - MEDIUM: h2: don't call data_cb->recv() anymore
13909 - MINOR: h2: make use of CS_FL_REOS to indicate that end of stream was seen
13910 - MEDIUM: h2: use the default conn_stream's receive function
13911 - DOC: add more design feedback on the new layering model
13912 - MINOR: h2: add the error code and the max/last stream IDs to "show fd"
13913 - BUG/MEDIUM: stream-int: don't immediately enable reading when the buffer was reportedly full
13914 - BUG/MEDIUM: stats: don't ask for more data as long as we're responding
13915 - BUG/MINOR: servers: Don't make "server" in a frontend fatal.
13916 - BUG/MEDIUM: tasks: make sure we pick all tasks in the run queue
13917 - BUG/MEDIUM: tasks: Decrement rqueue_size at the right time.
13918 - BUG/MEDIUM: tasks: use atomic ops for active_tasks_mask
13919 - BUG/MEDIUM: tasks: Make sure there's no task left before considering inactive.
13920 - MINOR: signal: don't pass the signal number anymore as the wakeup reason
13921 - MINOR: tasks: extend the state bits from 8 to 16 and remove the reason
13922 - MINOR: tasks: Add a flag that tells if we're in the global runqueue.
13923 - BUG/MEDIUM: tasks: make __task_unlink_rq responsible for the rqueue size.
13924 - MINOR: queue: centralize dequeuing code a bit better
13925 - MEDIUM: queue: make pendconn_free() work on the stream instead
13926 - DOC: queue: document the expected locking model for the server's queue
13927 - MINOR: queue: make sure pendconn->strm->pend_pos is always valid
13928 - MINOR: queue: use a distinct variable for the assigned server and the queue
13929 - MINOR: queue: implement pendconn queue locking functions
13930 - MEDIUM: queue: get rid of the pendconn lock
13931 - MINOR: tasks: Make active_tasks_mask volatile.
13932 - MINOR: tasks: Make global_tasks_mask volatile.
13933 - MINOR: pollers: Add a way to wake a thread sleeping in the poller.
13934 - MINOR: threads/queue: Get rid of THREAD_WANT_SYNC in the queue code.
13935 - BUG/MEDIUM: threads/sync: use sched_yield when available
13936 - MINOR: ssl: BoringSSL matches OpenSSL 1.1.0
13937 - BUG/MEDIUM: h2: prevent orphaned streams from blocking a connection forever
13938 - BUG/MINOR: config: stick-table is not supported in defaults section
13939 - BUILD/MINOR: threads: unbreak build with threads disabled
13940 - BUG/MINOR: threads: Handle nbthread == MAX_THREADS.
13941 - BUG/MEDIUM: threads: properly fix nbthreads == MAX_THREADS
13942 - MINOR: threads: move "nbthread" parsing to hathreads.c
13943 - BUG/MEDIUM: threads: unbreak "bind" referencing an incorrect thread number
13944 - MEDIUM: proxy_protocol: Convert IPs to v6 when protocols are mixed
13945 - BUILD/MINOR: compiler: fix offsetof() on older compilers
13946 - SCRIPTS: git-show-backports: add missing quotes to "echo"
13947 - MINOR: threads: add more consistency between certain variables in no-thread case
13948 - MEDIUM: hathreads: implement a more flexible rendez-vous point
13949 - BUG/MEDIUM: cli: make "show fd" thread-safe
13950
Willy Tarreaub3066502017-11-26 19:50:17 +0100139512017/11/26 : 1.9-dev0
13952
Willy Tarreau0b787922017-11-26 19:25:23 +0100139532017/11/26 : 1.8.0
13954 - BUG/MEDIUM: stream: don't automatically forward connect nor close
13955 - BUG/MAJOR: stream: ensure analysers are always called upon close
13956 - BUG/MINOR: stream-int: don't try to read again when CF_READ_DONTWAIT is set
13957 - MEDIUM: mworker: Add systemd `Type=notify` support
13958 - BUG/MEDIUM: cache: free callback to remove from tree
13959 - CLEANUP: cache: remove unused struct
13960 - MEDIUM: cache: enable the HTTP analysers
13961 - CLEANUP: cache: remove wrong comment
13962 - MINOR: threads/atomic: rename local variables in macros to avoid conflicts
13963 - MINOR: threads/plock: rename local variables in macros to avoid conflicts
13964 - MINOR: threads/atomic: implement pl_mb() in asm on x86
13965 - MINOR: threads/atomic: implement pl_bts() on non-x86
13966 - MINOR: threads/build: atomic: replace the few inlines with macros
13967 - BUILD: threads/plock: fix a build issue on Clang without optimization
13968 - BUILD: ebtree: don't redefine types u32/s32 in scope-aware trees
13969 - BUILD: compiler: add a new type modifier __maybe_unused
13970 - BUILD: h2: mark some inlined functions "unused"
13971 - BUILD: server: check->desc always exists
13972 - BUG/MEDIUM: h2: properly report connection errors in headers and data handlers
13973 - MEDIUM: h2: add a function to emit an HTTP/1 request from a headers list
13974 - MEDIUM: h2: change hpack_decode_headers() to only provide a list of headers
13975 - BUG/MEDIUM: h2: always reassemble the Cookie request header field
13976 - BUG/MINOR: systemd: ignore daemon mode
13977 - CONTRIB: spoa_example: allow to compile outside HAProxy.
13978 - CONTRIB: spoa_example: remove bref, wordlist, cond_wordlist
13979 - CONTRIB: spoa_example: remove last dependencies on type "sample"
13980 - CONTRIB: spoa_example: remove SPOE enums that are useless for clients
13981 - CLEANUP: cache: reorder includes
13982 - MEDIUM: shctx: use unsigned int for len and block_count
13983 - MEDIUM: cache: "show cache" on the cli
13984 - BUG/MEDIUM: cache: use key=0 as a condition for freeing
13985 - BUG/MEDIUM: cache: refcount forbids to free the objects
13986 - BUG/MEDIUM: cache fix cli_kws structure
13987 - BUG/MEDIUM: deinit: correctly deinitialize the proxy and global listener tasks
13988 - BUG/MINOR: ssl: Always start the handshake if we can't send early data.
13989 - MINOR: ssl: Don't disable early data handling if we could not write.
13990 - MINOR: pools: prepare functions to override malloc/free in pools
13991 - MINOR: pools: implement DEBUG_UAF to detect use after free
13992 - BUG/MEDIUM: threads/time: fix time drift correction
13993 - BUG/MEDIUM: threads/time: maintain a common time reference between all threads
13994 - MINOR: sample: Add "thread" sample fetch
13995 - BUG/MINOR: Use crt_base instead of ca_base when crt is parsed on a server line
13996 - BUG/MINOR: stream: fix tv_request calculation for applets
13997 - BUG/MAJOR: h2: always remove a stream from the send list before freeing it
13998 - BUG/MAJOR: threads/task: dequeue expired tasks under the WQ lock
13999 - MINOR: ssl: Handle reading early data after writing better.
14000 - MINOR: mux: Make sure every string is woken up after the handshake.
14001 - MEDIUM: cache: store sha1 for hashing the cache key
14002 - MINOR: http: implement the "http-request reject" rule
14003 - MINOR: h2: send RST_STREAM before GOAWAY on reject
14004 - MEDIUM: h2: don't gracefully close the connection anymore on Connection: close
14005 - MINOR: h2: make use of client-fin timeout after GOAWAY
14006 - MEDIUM: config: ensure that tune.bufsize is at least 16384 when using HTTP/2
14007 - MINOR: ssl: Handle early data with BoringSSL
14008 - BUG/MEDIUM: stream: always release the stream-interface on abort
14009 - BUG/MEDIUM: cache: free ressources in chn_end_analyze
14010 - MINOR: cache: move the refcount decrease in the applet release
14011 - BUG/MINOR: listener: Allow multiple "process" options on "bind" lines
14012 - MINOR: config: Support a range to specify processes in "cpu-map" parameter
14013 - MINOR: config: Slightly change how parse_process_number works
14014 - MINOR: config: Export parse_process_number and use it wherever it's applicable
14015 - MINOR: standard: Add my_ffsl function to get the position of the bit set to one
14016 - MINOR: config: Add auto-increment feature for cpu-map
14017 - MINOR: config: Support partial ranges in cpu-map directive
14018 - MINOR:: config: Remove thread-map directive
14019 - MINOR: config: Add the threads support in cpu-map directive
14020 - MINOR: config: Add threads support for "process" option on "bind" lines
14021 - MEDIUM: listener: Bind listeners on a thread subset if specified
14022 - CLEANUP: debug: Use DPRINTF instead of fprintf into #ifdef DEBUG_FULL/#endif
14023 - CLEANUP: log: Rename Alert/Warning in ha_alert/ha_warning
14024 - MINOR/CLEANUP: proxy: rename "proxy" to "proxies_list"
14025 - CLEANUP: pools: rename all pool functions and pointers to remove this "2"
14026 - DOC: update the roadmap file with the latest changes merged in 1.8
14027 - DOC: fix mangled version in peers protocol documentation
14028 - DOC: add initial peers protovol v2.0 documentation.
14029 - DOC: mention William as maintainer of the cache and master-worker
14030 - DOC: add Christopher and Emeric as maintainers of the threads
14031 - MINOR: cache: replace a fprint() by an abort()
14032 - MEDIUM: cache: max-age configuration keyword
14033 - DOC: explain HTTP2 timeout behavior
14034 - DOC: cache: configuration and management
14035 - MAJOR: mworker: exits the master on failure
14036 - BUG/MINOR: threads: don't drop "extern" on the lock in include files
14037 - MINOR: task: keep a pointer to the currently running task
14038 - MINOR: task: align the rq and wq locks
14039 - MINOR: fd: cache-align fdtab and fdcache locks
14040 - MINOR: buffers: cache-align buffer_wq_lock
14041 - CLEANUP: server: reorder some fields in struct server to save 40 bytes
14042 - CLEANUP: proxy: slightly reorder the struct proxy to reduce holes
14043 - CLEANUP: checks: remove 16 bytes of holes in struct check
14044 - CLEANUP: cache: more efficiently pack the struct cache
14045 - CLEANUP: fd: place the lock at the beginning of struct fdtab
14046 - CLEANUP: pools: align pools on a cache line
14047 - DOC: config: add a few bits about how to configure HTTP/2
14048 - BUG/MAJOR: threads/queue: avoid recursive locking in pendconn_get_next_strm()
14049 - BUILD: Makefile: reorder object files by size
14050
Willy Tarreaucfe14662017-11-19 09:55:29 +0100140512017/11/19 : 1.8-rc4
14052 - BUG/MEDIUM: cache: does not cache if no Content-Length
14053 - BUILD: thread/pipe: fix build without threads
14054 - BUG/MINOR: spoe: check buffer size before acquiring or releasing it
14055 - MINOR: debug/flags: Add missing flags
14056 - MINOR: threads: Use __decl_hathreads to declare locks
14057 - BUG/MINOR: buffers: Fix b_alloc_margin to be "fonctionnaly" thread-safe
14058 - BUG/MAJOR: ebtree/scope: fix insertion and removal of duplicates in scope-aware trees
14059 - BUG/MAJOR: ebtree/scope: fix lookup of next node in scope-aware trees
14060 - MINOR: ebtree/scope: add a function to find next node from a parent
14061 - MINOR: ebtree/scope: simplify the lookup functions by using eb32sc_next_with_parent()
14062 - BUG/MEDIUM: mworker: Fix re-exec when haproxy is started from PATH
14063 - BUG/MEDIUM: cache: use msg->sov to forward header
14064 - MINOR: cache: forward data with headers
14065 - MINOR: cache: disable cache if shctx_row_data_append fail
14066 - BUG/MINOR: threads: tid_bit must be a unsigned long
14067 - CLEANUP: tasks: Remove useless double test on rq_next
14068 - BUG/MEDIUM: standard: itao_str/idx and quote_str/idx must be thread-local
14069 - MINOR: tools: add a function to dump a scope-aware tree to a file
14070 - MINOR: tools: improve the DOT dump of the ebtree
14071 - MINOR: tools: emphasize the node being worked on in the tree dump
14072 - BUG/MAJOR: ebtree/scope: properly tag upper nodes during insertion
14073 - DOC: peers: Add a first version of peers protocol v2.1.
14074 - CONTRIB: Wireshark dissector for HAProxy Peer Protocol.
14075 - MINOR: mworker: display an accurate error when the reexec fail
14076 - BUG/MEDIUM: mworker: wait again for signals when execvp fail
14077 - BUG/MEDIUM: mworker: does not deinit anymore
14078 - BUG/MEDIUM: mworker: does not close inherited FD
14079 - MINOR: tests: add a python wrapper to test inherited fd
14080 - BUG/MINOR: Allocate the log buffers before the proxies startup
14081 - MINOR: tasks: Use a bitfield to track tasks activity per-thread
14082 - MAJOR: polling: Use active_tasks_mask instead of tasks_run_queue
14083 - MINOR: applets: Use a bitfield to track applets activity per-thread
14084 - MAJOR: polling: Use active_appels_mask instead of applets_active_queue
14085 - MEDIUM: applets: Don't process more than 200 active applets at once
14086 - MINOR: stream: Add thread-mask of tasks/FDs/applets in "show sess all" command
14087 - MINOR: SSL: Store the ASN1 representation of client sessions.
14088 - MINOR: ssl: Make sure we don't shutw the connection before the handshake.
14089 - BUG/MEDIUM: deviceatlas: ignore not valuable HTTP request data
14090
Willy Tarreau34650d52017-11-11 09:06:48 +0100140912017/11/11 : 1.8-rc3
14092 - BUILD: use MAXPATHLEN instead of NAME_MAX.
14093 - BUG/MAJOR: threads/checks: add 4 missing spin_unlock() in various functions
14094 - BUG/MAJOR: threads/server: missing unlock in CLI fqdn parser
14095 - BUG/MINOR: cli: do not perform an invalid action on "set server check-port"
14096 - BUG/MAJOR: threads/checks: wrong use of SPIN_LOCK instead of SPIN_UNLOCK
14097 - CLEANUP: checks: remove return statements in locked functions
14098 - BUG/MINOR: cli: add severity in "set server addr" parser
14099 - CLEANUP: server: get rid of return statements in the CLI parser
14100 - BUG/MAJOR: cli/streams: missing unlock on exit "show sess"
14101 - BUG/MAJOR: threads/dns: add missing unlock on allocation failure path
14102 - BUG/MAJOR: threads/lb: fix missing unlock on consistent hash LB
14103 - BUG/MAJOR: threads/lb: fix missing unlock on map-based hash LB
14104 - BUG/MEDIUM: threads/stick-tables: close a race condition on stktable_trash_expired()
14105 - BUG/MAJOR: h2: set the connection's task to NULL when no client timeout is set
14106 - BUG/MAJOR: thread/listeners: enable_listener must not call unbind_listener()
14107 - BUG/MEDIUM: threads: don't try to free build option message on exit
14108 - MINOR: applets: no need to check for runqueue's emptiness in appctx_res_wakeup()
14109 - MINOR: add master-worker in the warning about nbproc
14110 - MINOR: mworker: allow pidfile in mworker + foreground
14111 - MINOR: mworker: write parent pid in the pidfile
14112 - MINOR: mworker: do not store child pid anymore in the pidfile
14113 - MINOR: ebtree: implement the scope-aware functions for eb32
14114 - MEDIUM: ebtree: specify the scope of every node inserted via eb32sc
14115 - MINOR: ebtree: update the eb32sc parent node's scope on delete
14116 - MEDIUM: ebtree: only consider the branches matching the scope in lookups
14117 - MINOR: ebtree: implement eb32sc_lookup_ge_or_first()
14118 - MAJOR: task: make use of the scope-aware ebtree functions
14119 - MINOR: task: simplify wake_expired_tasks() to avoid unlocking in the loop
14120 - MEDIUM: task: change the construction of the loop in process_runnable_tasks()
14121 - MINOR: threads: use faster locks for the spin locks
14122 - MINOR: tasks: only visit filled task slots after processing them
14123 - MEDIUM: tasks: implement a lockless scheduler for single-thread usage
14124 - BUG/MINOR: dns: Don't try to get the server lock if it's already held.
14125 - BUG/MINOR: dns: Don't lock the server lock in snr_check_ip_callback().
14126 - DOC: Add note about encrypted password CPU usage
14127 - BUG/MINOR: h2: set the "HEADERS_SENT" flag on stream, not connection
14128 - BUG/MEDIUM: h2: properly send an RST_STREAM on mux stream error
14129 - BUG/MEDIUM: h2: properly send the GOAWAY frame in the mux
14130 - BUG/MEDIUM: h2: don't try (and fail) to send non-existing data in the mux
14131 - MEDIUM: h2: remove the H2_SS_RESET intermediate state
14132 - BUG/MEDIUM: h2: fix some wrong error codes on connections
14133 - BUILD: threads: Rename SPIN/RWLOCK macros using HA_ prefix
14134 - BUILD: enable USE_THREAD for Solaris build.
14135 - BUG/MEDIUM: h2: don't close the connection is there are data left
14136 - MINOR: h2: don't re-enable the connection's task when we're closing
14137 - BUG/MEDIUM: h2: properly set H2_SF_ES_SENT when sending the final frame
14138 - BUG/MINOR: h2: correctly check for H2_SF_ES_SENT before closing
14139 - MINOR: h2: add new stream flag H2_SF_OUTGOING_DATA
14140 - BUG/MINOR: h2: don't send GOAWAY on failed response
14141 - BUG/MEDIUM: splice/threads: pipe reuse list was not protected.
14142 - BUG/MINOR: comp: fix compilation warning compiling without compression.
14143 - BUG/MINOR: stream-int: don't set MSG_MORE on closed request path
14144 - BUG/MAJOR: threads/tasks: fix the scheduler again
14145 - BUG/MINOR; ssl: Don't assume we have a ssl_bind_conf because a SNI is matched.
14146 - MINOR: ssl: Handle session resumption with TLS 1.3
14147 - MINOR: ssl: Spell 0x10101000L correctly.
14148 - MINOR: ssl: Handle sending early data to server.
14149 - BUILD: ssl: fix build of backend without ssl
14150 - BUILD: shctx: do not depend on openssl anymore
14151 - BUG/MINOR: h1: the HTTP/1 make status code parser check for digits
14152 - BUG/MEDIUM: h2: reject non-3-digit status codes
14153 - BUG/MEDIUM: stream-int: Don't loss write's notifs when a stream is woken up
14154 - BUG/MINOR: pattern: Rely on the sample type to copy it in pattern_exec_match
14155 - BUG/MEDIUM: h2: split the function to send RST_STREAM
14156 - BUG/MEDIUM: h1: ensure the chunk size parser can deal with full buffers
14157 - MINOR: tools: don't use unlikely() in hex2i()
14158 - BUG/MEDIUM: h2: support orphaned streams
14159 - BUG/MEDIUM: threads/cli: fix "show sess" locking on release
14160 - CLEANUP: mux: remove the unused "release()" function
14161 - MINOR: cli: make "show fd" report the fd's thread mask
14162 - BUG/MEDIUM: stream: don't ignore res.analyse_exp anymore
14163 - CLEANUP: global: introduce variable pid_bit to avoid shifts with relative_pid
14164 - MEDIUM: http: always reject the "PRI" method
14165
Willy Tarreaua8d8d6e2017-11-03 23:52:47 +0100141662017/11/03 : 1.8-rc2
14167 - BUG/MINOR: send-proxy-v2: fix dest_len in make_tlv call
14168 - BUG/MINOR: send-proxy-v2: string size must include ('\0')
14169 - MINOR: mux: Only define pipe functions on linux.
14170 - MINOR: cache: Remove useless test for nonzero.
14171 - MINOR: cache: Don't confuse act_return and act_parse_ret.
14172 - BUG/MEDIUM: h2: don't try to parse incomplete H1 responses
14173 - BUG/MEDIUM: checks/mux: always enable send-polling after connecting
14174 - BUG/MAJOR: fix deadlock on healthchecks.
14175 - BUG/MINOR: thread: fix a typo in the debug code
14176 - BUILD: shctx: allow to be built without openssl
14177 - BUG/MEDIUM: cache: don't try to resolve wrong filters
14178 - BUG/MAJOR: buffers: fix get_buffer_nc() for data at end of buffer
14179 - BUG/MINOR: freq: fix infinite loop on freq_ctr_period.
14180 - BUG/MINOR: stdarg.h inclusion
14181 - BUG/MINOR: dns: fix missing lock protection on server.
14182 - BUG/MINOR: lua: fix missing lock protection on server.
14183 - BUILD: enable USE_THREAD for OpenBSD build.
14184 - BUG/MAJOR: mux_pt: don't dereference a connstream after ->wake()
14185 - MINOR: thread: report multi-thread support in haproxy -vv
14186
Willy Tarreau901f75c2017-10-31 23:18:29 +0100141872017/10/31 : 1.8-rc1
14188 - BUG/MEDIUM: server: Allocate tmptrash before using it.
14189 - CONTRIB: trace: add the possibility to place trace calls in the code
14190 - CONTRIB: trace: try to display the function's return value on exit
14191 - CONTRIB: trace: report the base name only for file names
14192 - BUILD: ssl: support OPENSSL_NO_ASYNC #define
14193 - MINOR: ssl: build with recent BoringSSL library
14194 - BUG/MINOR: ssl: OCSP_single_get0_status can return -1
14195 - BUG/MINOR: cli: restore "set ssl tls-key" command
14196 - CLEANUP: cli: remove undocumented "set ssl tls-keys" command
14197 - IMPORT: sha1: import SHA1 functions
14198 - MINOR: sample: add the sha1 converter
14199 - MINOR: sample: add the hex2i converter
14200 - MINOR: stream-int: stop checking for useless connection flags in chk_snd_conn
14201 - MINOR: ssl: don't abort after sending 16kB
14202 - MINOR: connection: move the cleanup of flag CO_FL_WAIT_ROOM
14203 - MINOR: connection: add flag CO_FL_WILL_UPDATE to indicate when updates are granted
14204 - MEDIUM: connection: make use of CO_FL_WILL_UPDATE in conn_sock_shutw()
14205 - MINOR: raw_sock: make use of CO_FL_WILL_UPDATE
14206 - MINOR: ssl_sock: make use of CO_FL_WILL_UPDATE
14207 - BUG/MINOR: checks: Don't forget to release the connection on error case.
14208 - MINOR: buffer: add the buffer input manipulation functions
14209 - BUG/MEDIUM: prevent buffers being overwritten during build_logline() execution
14210 - MEDIUM: cfgparse: post section callback
14211 - MEDIUM: cfgparse: post parsing registration
14212 - MINOR: lua: add uuid to the Class Proxy
14213 - MINOR: hlua: Add regex class
14214 - MINOR: http: Mark the 425 code as "Too Early".
14215 - MEDIUM: ssl: convert CBS (BoringSSL api) usage to neutral code
14216 - MINOR: ssl: support Openssl 1.1.1 early callback for switchctx
14217 - MINOR: ssl: generated certificate is missing in switchctx early callback
14218 - MEDIUM: ssl: Handle early data with OpenSSL 1.1.1
14219 - BUILD: Makefile: disable -Wunused-label
14220 - MINOR: ssl/proto_http: Add keywords to take care of early data.
14221 - BUG/MINOR: lua: const attribute of a string is overridden
14222 - MINOR: ssl: Don't abuse ssl_options.
14223 - MINOR: update proxy-protocol-v2 #define
14224 - MINOR: merge ssl_sock_get calls for log and ppv2
14225 - MINOR: add ALPN information to send-proxy-v2
14226 - MEDIUM: h1: ensure that 1xx, 204 and 304 don't have a payload body
14227 - CLEANUP: shctx: get ride of the shsess_packet{_hdr} structures
14228 - MEDIUM: lists: list_for_each_entry{_safe}_from functions
14229 - REORG: shctx: move lock functions and struct
14230 - MEDIUM: shctx: allow the use of multiple shctx
14231 - REORG: shctx: move ssl functions to ssl_sock.c
14232 - MEDIUM: shctx: separate ssl and shctx
14233 - MINOR: shctx: rename lock functions
14234 - MINOR: h1: store the status code in the H1 message
14235 - BUG/MINOR: spoe: Don't compare engine name and SPOE scope when both are NULL
14236 - BUG/MINOR: spoa: Update pointer on the end of the frame when a reply is encoded
14237 - MINOR: action: Add trk_idx inline function
14238 - MINOR: action: Use trk_idx instead of tcp/http_trk_idx
14239 - MINOR: action: Add a function pointer in act_rule struct to check its validity
14240 - MINOR: action: Add function to check rules using an action ACT_ACTION_TRK_*
14241 - MINOR: action: Add a functions to check http capture rules
14242 - MINOR: action: Factorize checks on rules calling check_ptr if defined
14243 - MINOR: acl: Pass the ACLs as an explicit parameter of build_acl_cond
14244 - MEDIUM: spoe: Add support of ACLS to enable or disable sending of SPOE messages
14245 - MINOR: spoe: Check uniqness of SPOE engine names during config parsing
14246 - MEDIUM: spoe: Parse new "spoe-group" section in SPOE config file
14247 - MEDIUM: spoe/rules: Add "send-spoe-group" action for tcp/http rules
14248 - MINOR: spoe: Move message encoding in its own function
14249 - MINOR: spoe: Add a type to qualify the message list during encoding
14250 - MINOR: spoe: Add a generic function to encode a list of SPOE message
14251 - MEDIUM: spoe/rules: Process "send-spoe-group" action
14252 - BUG/MINOR: dns: Fix CLI keyword declaration
14253 - MAJOR: dns: Refactor the DNS code
14254 - BUG/MINOR: mailers: Fix a memory leak when email alerts are released
14255 - MEDIUM: mailers: Init alerts during conf parsing and refactor their processing
14256 - MINOR: mailers: Use pools to allocate email alerts and its tcpcheck_rules
14257 - MINOR: standard: Add memvprintf function
14258 - MINOR: log: Save alerts and warnings emitted during HAProxy startup
14259 - MINOR: cli: Add "show startup-logs" command
14260 - MINOR: startup: Extend the scope the MODE_STARTING flag
14261 - MINOR: threads: Prepare makefile to link with pthread
14262 - MINOR: threads: Add THREAD_LOCAL macro
14263 - MINOR: threads: Add atomic-ops and plock includes in import dir
14264 - MEDIUM: threads: Add hathreads header file
14265 - MINOR: threads: Add mechanism to register per-thread init/deinit functions
14266 - MINOR: threads: Add nbthread parameter
14267 - MEDIUM: threads: Adds a set of functions to handle sync-point
14268 - MAJOR: threads: Start threads to experiment multithreading
14269 - MINOR: threads: Define the sync-point inside run_poll_loop
14270 - MEDIUM: threads/buffers: Define and register per-thread init/deinit functions
14271 - MEDIUM: threads/chunks: Transform trash chunks in thread-local variables
14272 - MEDIUM: threads/time: Many global variables from time.h are now thread-local
14273 - MEDIUM: threads/logs: Make logs thread-safe
14274 - MEDIUM: threads/pool: Make pool thread-safe by locking all access to a pool
14275 - MAJOR: threads/fd: Make fd stuffs thread-safe
14276 - MINOR: threads/fd: Add a mask of threads allowed to process on each fd in fdtab array
14277 - MEDIUM: threads/fd: Initialize the process mask during the call to fd_insert
14278 - MINOR: threads/fd: Process cached events of FDs depending on the process mask
14279 - MINOR: threads/polling: pollers now handle FDs depending on the process mask
14280 - WIP: SQUASH WITH SYNC POINT
14281 - MAJOR: threads/task: handle multithread on task scheduler
14282 - MEDIUM: threads/signal: Add a lock to make signals thread-safe
14283 - MEDIUM: threads/listeners: Make listeners thread-safe
14284 - MEDIUM: threads/proxy: Add a lock per proxy and atomically update proxy vars
14285 - MEDIUM: threads/server: Make connection list (priv/idle/safe) thread-safe
14286 - MEDIUM: threads/server: Add a lock per server and atomically update server vars
14287 - MINOR: threads/server: Add a lock to deal with insert in updates_servers list
14288 - MEDIUM: threads/lb: Make LB algorithms (lb_*.c) thread-safe
14289 - MEDIUM: threads/stick-tables: handle multithreads on stick tables
14290 - MINOR: threads/sample: Change temp_smp into a thread local variable
14291 - MEDIUM: threads/http: Make http_capture_bad_message thread-safe
14292 - MINOR: threads/regex: Change Regex trash buffer into a thread local variable
14293 - MAJOR: threads/applet: Handle multithreading for applets
14294 - MAJOR: threads/peers: Make peers thread safe
14295 - MAJOR: threads/buffer: Make buffer wait queue thread safe
14296 - MEDIUM: threads/stream: Make streams list thread safe
14297 - MAJOR: threads/ssl: Make SSL part thread-safe
14298 - MEDIUM: threads/queue: Make queues thread-safe
14299 - MAJOR: threads/map: Make acls/maps thread safe
14300 - MEDIUM: threads/freq_ctr: Make the frequency counters thread-safe
14301 - MEDIUM: thread/vars: Make vars thread-safe
14302 - MEDIUM: threads/filters: Add init/deinit callback per thread
14303 - MINOR: threads/filters: Update trace filter to add _per_thread callbacks
14304 - MEDIUM: threads/compression: Make HTTP compression thread-safe
14305 - MEDIUM: threads/lua: Makes the jmpbuf and some other buffers local to the current thread.
14306 - MEDIUM: threads/lua: Add locks around the Lua execution parts.
14307 - MEDIUM: threads/lua: Ensure that the launched tasks runs on the same threads than me
14308 - MEDIUM: threads/lua: Cannot acces to the socket if we try to access from another thread.
14309 - MEDIUM: threads/xref: Convert xref function to a thread safe model
14310 - MEDIUM: threads/tasks: Add lock around notifications
14311 - MEDIUM: thread/spoe: Make the SPOE thread-safe
14312 - MEDIUM: thread/dns: Make DNS thread-safe
14313 - MINOR: threads: Add thread-map config parameter in the global section
14314 - MINOR: threads/checks: Add a lock to protect the pid list used by external checks
14315 - MINOR: threads/checks: Set the task process_mask when a check is executed
14316 - MINOR: threads/mailers: Add a lock to protect queues of email alerts
14317 - MEDIUM: threads/server: Use the server lock to protect health check and cli concurrency
14318 - MINOR: threads: Don't start when device a detection module is used
14319 - BUG/MEDIUM: threads: Run the poll loop on the main thread too
14320 - BUG/MINOR: threads: Add missing THREAD_LOCAL on static here and there
14321 - MAJOR: threads: Offically enable the threads support in HAProxy
14322 - BUG/MAJOR: threads/freq_ctr: fix lock on freq counters.
14323 - BUG/MAJOR: threads/time: Store the time deviation in an 64-bits integer
14324 - BUILD: stick-tables: silence an uninitialized variable warning
14325 - BUG/MINOR: dns: Fix SRV records with the new thread code.
14326 - MINOR: ssl: Remove the global allow-0rtt option.
14327 - CLEANUP: threads: replace the last few 1UL<<tid with tid_bit
14328 - CLEANUP: threads: rename process_mask to thread_mask
14329 - MINOR: h1: add a function to measure the trailers length
14330 - MINOR: threads: add a portable barrier for threads and non-threads
14331 - BUG/MAJOR: threads/freq_ctr: use a memory barrier to detect changes
14332 - BUG/MEDIUM: threads: Initialize the sync-point
14333 - MEDIUM: connection: start to introduce a mux layer between xprt and data
14334 - MINOR: connection: implement alpn registration of muxes
14335 - MINOR: mux: register the pass-through mux for any ALPN string
14336 - MEDIUM: session: use the ALPN token and proxy mode to select the mux
14337 - MINOR: connection: report the major HTTP version from the MUX for logging (fc_http_major)
14338 - MINOR: connection: introduce conn_stream
14339 - MINOR: mux: add more methods to mux_ops
14340 - MINOR: connection: introduce the conn_stream manipulation functions
14341 - MINOR: mux_pt: implement remaining mux_ops methods
14342 - MAJOR: connection : Split struct connection into struct connection and struct conn_stream.
14343 - MINOR: connection: make conn_stream users also check for per-stream error flag
14344 - MINOR: conn_stream: new shutr/w status flags
14345 - MINOR: conn_stream: modify cs_shut{r,w} API to pass the desired mode
14346 - MEDIUM: connection: make conn_sock_shutw() aware of lingering
14347 - MINOR: connection: add cs_close() to close a conn_stream
14348 - MEDIUM: mux_pt: make cs_shutr() / cs_shutw() properly close the connection
14349 - MEDIUM: connection: replace conn_full_close() with cs_close()
14350 - MEDIUM: connection: make mux->detach() release the connection
14351 - MEDIUM: stream: do not forcefully close the client connection anymore
14352 - MEDIUM: checks: exclusively use cs_destroy() to release a connection
14353 - MEDIUM: connection: add a destroy callback
14354 - MINOR: session: release the listener with the session, not the stream
14355 - MEDIUM: session: make use of the connection's destroy callback
14356 - CONTRIB: hpack: implement a reverse huffman table generator for hpack
14357 - MINOR: hpack: implement the HPACK Huffman table decoder
14358 - MINOR: hpack: implement the header tables management
14359 - MINOR: hpack: implement the decoder
14360 - MEDIUM: hpack: implement basic hpack encoding
14361 - MINOR: h2: centralize all HTTP/2 protocol elements and constants
14362 - MINOR: h2: create a very minimalistic h2 mux
14363 - MINOR: h2: expose tune.h2.header-table-size to configure the table size
14364 - MINOR: h2: expose tune.h2.initial-window-size to configure the window size
14365 - MINOR: h2: expose tune.h2.max-concurrent-streams to limit the number of streams
14366 - MINOR: h2: create the h2c struct and allocate its pool
14367 - MINOR: h2: create the h2s struct and the associated pool
14368 - MINOR: h2: handle two extra stream states for errors
14369 - MINOR: h2: add a frame header descriptor for incoming frames
14370 - MEDIUM: h2: allocate and release the h2c context on connection init/end
14371 - MEDIUM: h2: implement basic recv/send/wake functions
14372 - MEDIUM: h2: dynamically allocate the demux buffer on Rx
14373 - MEDIUM: h2: implement the mux buffer allocator
14374 - MINOR: h2: add the connection and stream flags listing the causes for blocking
14375 - MINOR: h2: add function h2s_id() to report a stream's ID
14376 - MINOR: h2: small function to know when the mux is busy
14377 - MINOR: h2: new function h2c_error to mark an error on the connection
14378 - MINOR: h2: new function h2s_error() to mark an error on a stream
14379 - MINOR: h2: add h2_set_frame_size() to update the size in a binary frame
14380 - MINOR: h2: new function h2_peek_frame_hdr() to retrieve a new frame header
14381 - MINOR: h2: add a few functions to retrieve contents from a wrapping buffer
14382 - MINOR: h2: add stream lookup function based on the stream ID
14383 - MINOR: h2: create dummy idle and closed streams
14384 - MINOR: h2: add the function to create a new stream
14385 - MINOR: h2: update the {MUX,DEM}_{M,D}ALLOC flags on buffer availability
14386 - MEDIUM: h2: start to consider the H2_CF_{MUX,DEM}_* flags for polling
14387 - MINOR: h2: also terminate the connection on shutr
14388 - MEDIUM: h2: properly consider all conditions for end of connection
14389 - MEDIUM: h2: wake the connection up for send on pending streams
14390 - MEDIUM: h2: start to implement the frames processing loop
14391 - MINOR: h2: add a function to send a GOAWAY error frame
14392 - MINOR: h2: match the H2 connection preface on init
14393 - MEDIUM: h2: enable connection polling for send when a cs wants to emit
14394 - MEDIUM: h2: enable reading again on the connection if it was blocked on stream buffer full
14395 - MEDIUM: h2: process streams pending for sending
14396 - MINOR: h2: send a real SETTINGS frame based on the configuration
14397 - MEDIUM: h2: detect the presence of the first settings frame
14398 - MINOR: h2: create a stream parser for the demuxer
14399 - MINOR: h2: implement PING frames
14400 - MEDIUM: h2: decode SETTINGS frames and extract relevant settings
14401 - MINOR: h2: lookup the stream during demuxing
14402 - MEDIUM: h2: honor WINDOW_UPDATE frames
14403 - MINOR: h2: implement h2_send_rst_stream() to send RST_STREAM frames
14404 - MINOR: h2: handle CONTINUATION frames
14405 - MEDIUM: h2: partial implementation of h2_detach()
14406 - MEDIUM: h2: unblock a connection when its current stream detaches
14407 - MEDIUM: h2: basic processing of HEADERS frame
14408 - MEDIUM: h2: don't use trash to decode headers!
14409 - MEDIUM: h2: implement the response HEADERS frame to encode the H1 response
14410 - MEDIUM: h2: send the H1 response body as DATA frames
14411 - MEDIUM: h2: skip the response trailers if any
14412 - MEDIUM: h2: properly continue to parse header block when facing a 1xx response
14413 - MEDIUM: h2: send WINDOW_UPDATE frames for connection
14414 - MEDIUM: h2: handle request body in DATA frames
14415 - MINOR: h2: handle RST_STREAM frames
14416 - MEDIUM: h2: send DATA+ES or RST_STREAM on shutw/shutr
14417 - MINOR: h2: use a common function to signal some and all streams.
14418 - MEDIUM: h2: handle GOAWAY frames
14419 - MINOR: h2: centralize the check for the idle streams
14420 - MINOR: h2: centralize the check for the half-closed(remote) streams
14421 - MEDIUM: h2: silently ignore frames higher than last_id after GOAWAY
14422 - MINOR: h2: properly reject PUSH_PROMISE frames coming from the client
14423 - MEDIUM: h2: perform a graceful shutdown on "Connection: close"
14424 - MEDIUM: h2: send a GOAWAY frame when dealing with an empty response
14425 - MEDIUM: h2: apply a timeout to h2 connections
14426 - BUG/MEDIUM: h2: fix incorrect timeout handling on the connection
14427 - MEDIUM: shctx: forbid shctx to read more than expected
14428 - MEDIUM: cache: configuration parsing and initialization
14429 - MEDIUM: cache: store objects in cache
14430 - MEDIUM: cache: deliver objects from cache
14431
Willy Tarreauf08137c2017-10-22 10:13:45 +0200144322017/10/22 : 1.8-dev3
14433 - REORG: ssl: move defines and methodVersions table upper
14434 - MEDIUM: ssl: ctx_set_version/ssl_set_version func for methodVersions table
14435 - MINOR: ssl: support ssl-min-ver and ssl-max-ver with crt-list
14436 - MEDIUM: ssl: disable SSLv3 per default for bind
14437 - BUG/MAJOR: ssl: fix segfault on connection close using async engines.
14438 - BUG/MAJOR: ssl: buffer overflow using offloaded ciphering on async engine
14439 - BUG/MINOR: ssl: do not call directly the conn_fd_handler from async_fd_handler
14440 - BUG/MINOR: haproxy/cli : fix for solaris/illumos distros for CMSG* macros
14441 - BUG/MEDIUM: build without openssl broken
14442 - BUG/MINOR: warning: need_resend may be used uninitialized
14443 - BUG/MEDIUM: misplaced exit and wrong exit code
14444 - BUG/MINOR: Makefile: fix compile error with USE_LUA=1 in ubuntu16.04
14445 - BUILD: scripts: make publish-release support bare repositories
14446 - BUILD: scripts: add an automatic mode for publish-release
14447 - BUILD: scripts: add a "quiet" mode to publish-release
14448 - BUG/MAJOR: http: call manage_client_side_cookies() before erasing the buffer
14449 - BUG/MINOR: buffers: Fix bi/bo_contig_space to handle full buffers
14450 - CONTRIB: plug qdiscs: Plug queuing disciplines mini HOWTO.
14451 - BUG/MINOR: acls: Set the right refflag when patterns are loaded from a map
14452 - BUG/MINOR: ssl: Be sure that SSLv3 connection methods exist for openssl < 1.1.0
14453 - BUG/MINOR: http/filters: Be sure to wait if a filter loops in HTTP_MSG_ENDING
14454 - BUG/MEDIUM: peers: Peers CLOSE_WAIT issue.
14455 - BUG/MAJOR: server: Segfault after parsing server state file.
14456 - BUG/MEDIUM: unix: never unlink a unix socket from the file system
14457 - scripts: create-release pass -n to tail
14458 - SCRIPTS: create-release: enforce GIT_COMMITTER_{NAME|EMAIL} validity
14459 - BUG/MEDIUM: fix segfault when no argument to -x option
14460 - MINOR: warning on multiple -x
14461 - MINOR: mworker: don't copy -x argument anymore in copy_argv()
14462 - BUG/MEDIUM: mworker: don't reuse PIDs passed to the master
14463 - BUG/MINOR: Wrong peer task expiration handling during synchronization processing.
14464 - BUG/MINOR: cfgparse: Check if tune.http.maxhdr is in the range 1..32767
14465 - BUG/MINOR: log: pin the front connection when front ip/ports are logged
14466 - DOC: fix references to the section about the unix socket
14467 - BUG/MINOR: stream: flag TASK_WOKEN_RES not set if task in runqueue
14468 - MAJOR: task: task scheduler rework.
14469 - MINOR: task/stream: tasks related to a stream must be init by the caller.
14470 - MINOR: queue: Change pendconn_get_next_strm into private function
14471 - MINOR: backends: Change get_server_sh/get_server_uh into private function
14472 - MINOR: queue: Change pendconn_from_srv/pendconn_from_px into private functions
14473 - MEDIUM: stream: make stream_new() always set the target and analysers
14474 - MINOR: frontend: initialize HTTP layer after the debugging code
14475 - MINOR: connection: add a .get_alpn() method to xprt_ops
14476 - MINOR: ssl: add a get_alpn() method to ssl_sock
14477 - MINOR: frontend: retrieve the ALPN name when available
14478 - MINOR: frontend: report the connection's ALPN in the debug output
14479 - MINOR: stream: don't set backend's nor response analysers on SF_TUNNEL
14480 - MINOR: connection: send data before receiving
14481 - MAJOR: applet: applet scheduler rework.
14482 - BUG/MAJOR: frontend: don't dereference a null conn on outgoing connections
14483 - BUG/MAJOR: cli: fix custom io_release was crushed by NULL.
14484 - BUG/MAJOR: map: fix segfault during 'show map/acl' on cli.
14485 - BUG/MAJOR: compression: Be sure to release the compression state in all cases
14486 - MINOR: compression: Use a memory pool to allocate compression states
14487 - BUG/MAJOR: applet: fix a freeze if data is immedately forwarded.
14488 - DOC: fix references to the section about time format.
14489 - BUG/MEDIUM: map/acl: fix unwanted flags inheritance.
14490 - BUG/MAJOR: http: fix buffer overflow on loguri buffer.
14491 - MINOR: ssl: compare server certificate names to the SNI on outgoing connections
14492 - BUG/MINOR: stream: Don't forget to remove CF_WAKE_ONCE flag on response channel
14493 - BUG/MINOR: http: Don't reset the transaction if there are still data to send
14494 - BUG/MEDIUM: filters: Be sure to call flt_end_analyze for both channels
14495 - MINOR: peers: Add additional information to stick-table definition messages.
14496 - BUG/MINOR: http: properly handle all 1xx informational responses
14497 - OPTIM: ssl: don't consider a small ssl_read() as an indication of end of buffer
14498 - BUG/MINOR: peers: peer synchronization issue (with several peers sections).
14499 - CLEANUP: hdr_idx: make some function arguments const where possible
14500 - BUG/MINOR: Prevent a use-after-free on error scenario on option "-x".
14501 - BUG/MINOR: lua: In error case, the safe mode is not removed
14502 - BUG/MINOR: lua: executes the function destroying the Lua session in safe mode
14503 - BUG/MAJOR: lua/socket: resources not detroyed when the socket is aborted
14504 - BUG/MEDIUM: lua: bad memory access
14505 - BUG/MINOR: Lua: variable already initialized
14506 - DOC: update CONTRIBUTING regarding optional parts and message format
14507 - DOC: update the list of OpenSSL versions in the README
14508 - BUG/MINOR: http: Set the response error state in http_sync_res_state
14509 - MINOR: http: Reorder/rewrite checks in http_resync_states
14510 - MINOR: http: Switch requests/responses in TUNNEL mode only by checking txn flags
14511 - BUG/MEDIUM: http: Switch HTTP responses in TUNNEL mode when body length is undefined
14512 - MINOR: http: Rely on analyzers mask to end processing in forward_body functions
14513 - BUG/MINOR: http: Fix bug introduced in previous patch in http_resync_states
14514 - BUG/MINOR: contrib/modsecurity: BSD build fix
14515 - BUG/MINOR: contrib/mod_defender: build fix
14516 - BUG/MINOR: ssl: remove haproxy SSLv3 support when ssl lib have no SSLv3
14517 - MINOR: ssl: remove an unecessary SSL_OP_NO_* dependancy
14518 - BUILD: ssl: fix compatibility with openssl without TLSEXT_signature_*
14519 - MINOR: tools: add a portable timegm() alternative
14520 - BUILD: lua: replace timegm() with my_timegm() to fix build on Solaris 10
14521 - DOC: Updated 51Degrees git URL to point to a stable version.
14522 - BUG/MAJOR: http: Fix possible infinity loop in http_sync_(req|res)_state
14523 - MINOR: memory: remove macros
14524 - BUG/MINOR: lua: Fix Server.get_addr() port values
14525 - BUG/MINOR: lua: Correctly use INET6_ADDRSTRLEN in Server.get_addr()
14526 - MINOR: samples: Handle the type SMP_T_METH when we duplicate a sample in smp_dup
14527 - MINOR: samples: Handle the type SMP_T_METH in smp_is_safe and smp_is_rw
14528 - MINOR: samples: Don't allocate memory for SMP_T_METH sample when method is known
14529 - BUG/MINOR: lua: always detach the tcp/http tasks before freeing them
14530 - MINOR: task: always preinitialize the task's timeout in task_init()
14531 - CLEANUP: task: remove all initializations to TICK_ETERNITY after task_new()
14532 - BUG/MAJOR: lua: properly dequeue hlua_applet_wakeup() for new scheduler
14533 - MINOR: lua: Add proxy as member of proxy object.
14534 - DOC: lua: Proxy class doc update
14535 - MINOR: lua: Add lists of frontends and backends
14536 - BUG/MINOR: ssl: Fix check against SNI during server certificate verification
14537 - BUG/MINOR: ssl: make use of the name in SNI before verifyhost
14538 - MINOR: ssl: add a new error codes for wrong server certificates
14539 - BUG/MEDIUM: stream: don't retry SSL connections which fail the SNI name check
14540 - MINOR: ssl: add "no-ca-names" parameter for bind
14541 - BUG/MINOR: lua: Fix bitwise logic for hlua_server_check_* functions.
14542 - DOC: fix alphabetical order of "show commands" in management.txt
14543 - MINOR: listener: add a function to return a listener's state as a string
14544 - MINOR: cli: add a new "show fd" command
14545 - BUG/MEDIUM: ssl: Fix regression about certificates generation
14546 - MINOR: Add server port field to server state file.
14547 - MINOR: ssl: allow to start without certificate if strict-sni is set
14548 - MINOR: dns: Cache previous DNS answers.
14549 - MINOR: obj: Add a new type of object, OBJ_TYPE_SRVRQ.
14550 - Add a few functions to do unaligned access.
14551 - MINOR: dns: Handle SRV records.
14552 - MINOR: check: Fix checks when using SRV records.
14553 - MINOR: doc: Document SRV label usage.
14554 - BUILD/MINOR: cli: shut a minor gcc warning in "show fd"
14555 - BUILD: ssl: replace SSL_CTX_get0_privatekey for openssl < 1.0.2
14556 - BUILD/MINOR: build without openssl still broken
14557 - BUG/MAJOR: stream: in stream_free(), close the front endpoint and not the origin
14558 - CLEANUP: raw_sock: Use a better name for the constructor than __ssl_sock_deinit()
14559 - MINOR: init: Fix CPU affinity setting on FreeBSD.
14560 - MINOR: dns: Update analysis of TRUNCATED response for SRV records
14561 - MINOR: dns: update record dname matching for SRV query types
14562 - MINOR: dns: update dns response buffer reading pointer due to SRV record
14563 - MINOR: dns: duplicate entries in resolution wait queue for SRV records
14564 - MINOR: dns: make debugging function dump_dns_config() compatible with SRV records
14565 - MINOR: dns: ability to use a SRV resolution for multiple backends
14566 - MINOR: dns: enable caching of responses for server set by a SRV record
14567 - MINOR: dns: new dns record type (RTYPE) for OPT
14568 - MINOR: dns: enabled edns0 extension and make accpeted payload size tunable
14569 - MINOR: dns: default "hold obsolete" timeout set to 0
14570 - MINOR: chunks: add chunk_memcpy() and chunk_memcat()
14571 - MINOR: session: add a streams field to the session struct
14572 - MINOR: stream: link the stream to its session
14573 - MEDIUM: session: do not free a session until no stream references it
14574 - MINOR: ist: implement very simple indirect strings
14575 - TESTS: ist: add a test file for the functions
14576 - MINOR: http: export some of the HTTP parser macros
14577 - BUG/MINOR: Wrong type used as argument for spoe_decode_buffer().
14578 - BUG/MINOR: dns: server set by SRV records stay in "no resolution" status
14579 - MINOR: dns: Maximum DNS udp payload set to 8192
14580 - MINOR: dns: automatic reduction of DNS accpeted payload size
14581 - MINOR: dns: make SRV record processing more verbose
14582 - CLEANUP: dns: remove duplicated code in dns_resolve_recv()
14583 - CLEANUP: dns: remove duplicated code in dns_validate_dns_response()
14584 - BUG/MINOR: dns: wrong resolution interval lead to 100% CPU
14585 - BUG/MEDIUM: dns: fix accepted_payload_size parser to avoid integer overflow
14586 - BUG/MAJOR: lua: fix the impact of the scheduler changes again
14587 - BUG/MEDIUM: lua: HTTP services must take care of body-less status codes
14588 - MINOR: lua: properly process the contents of the content-length field
14589 - BUG/MEDIUM: stream: properly set the required HTTP analysers on use-service
14590 - OPTIM: lua: don't use expensive functions to parse headers in the HTTP applet
14591 - OPTIM: lua: don't add "Connection: close" on the response
14592 - REORG/MEDIUM: connection: introduce the notion of connection handle
14593 - BUG/MINOR: stream-int: don't check the CO_FL_CURR_WR_ENA flag
14594 - MEDIUM: connection: get rid of data->init() which was not for data
14595 - MEDIUM: stream: make stream_new() allocate its own task
14596 - CLEANUP: listener: remove the unused handler field
14597 - MEDIUM: session: add a pointer to a struct task in the session
14598 - MINOR: stream: provide a new stream creation function for connections
14599 - MEDIUM: connection: remove useless flag CO_FL_DATA_RD_SH
14600 - CLEANUP: connection: remove the unused conn_sock_shutw_pending()
14601 - MEDIUM: connection: remove useless flag CO_FL_DATA_WR_SH
14602 - DOC: add CLI info on privilege levels
14603 - DOC: Refer to Mozilla TLS info / config generator
14604 - MINOR: ssl: remove duplicate ssl_methods in struct bind_conf
14605 - BUG/MEDIUM: http: Fix a regression bug when a HTTP response is in TUNNEL mode
14606 - DOC: Add note about "* " prefix in CSV stats
14607 - CLEANUP: memory: Remove unused function pool_destroy
14608 - MINOR: listeners: Change listener_full and limit_listener into private functions
14609 - MINOR: listeners: Change enable_listener and disable_listener into private functions
14610 - MINOR: fd: Don't forget to reset fdtab[fd].update when a fd is added/removed
14611 - MINOR: fd: Set owner and iocb field before inserting a new fd in the fdtab
14612 - MINOR: backends: Make get_server_* functions explicitly static
14613 - MINOR: applet: Check applets_active_queue before processing applets queue
14614 - MINOR: chunks: Use dedicated function to init/deinit trash buffers
14615 - MEDIUM: chunks: Realloc trash buffers only after the config is parsed and checked
14616 - MINOR: logs: Use dedicated function to init/deinit log buffers
14617 - MINOR: logs: Realloc log buffers only after the config is parsed and checked
14618 - MINOR: buffers: Move swap_buffer into buffer.c and add deinit_buffer function
14619 - MINOR: stick-tables: Make static_table_key a struct variable instead of a pointer
14620 - MINOR: http: Use a trash chunk to store decoded string of the HTTP auth header
14621 - MINOR: fd: Add fd_active function
14622 - MINOR: fd: Use inlined functions to check fd state in fd_*_send/recv functions
14623 - MINOR: fd: Move (de)allocation of fdtab and fdinfo in (de)init_pollers
14624 - MINOR: freq_ctr: Return the new value after an update
14625 - MEDIUM: check: server states and weight propagation re-work
14626 - BUG/MEDIUM: epoll: ensure we always consider HUP and ERR
14627 - MINOR: fd: Add fd_update_events function
14628 - MINOR: polling: Use fd_update_events to update events seen for a fd
14629 - BUG/MINOR: server: Remove FQDN requirement for using init-addr and state file
14630 - Revert "BUG/MINOR: server: Remove FQDN requirement for using init-addr and state file"
14631 - MINOR: ssl: rework smp_fetch_ssl_fc_cl_str without internal ssl use
14632 - BUG/MEDIUM: http: Close streams for connections closed before a redirect
14633 - BUG/MINOR: Lua: The socket may be destroyed when we try to access.
14634 - MINOR: xref: Add a new xref system
14635 - MEDIUM: xref/lua: Use xref for referencing cosocket relation between stream and lua
14636 - MINOR: tasks: Move Lua notification from Lua to tasks
14637 - MINOR: net_helper: Inline functions meant to be inlined.
14638 - MINOR: cli: add socket commands and config to prepend informational messages with severity
14639 - MINOR: add severity information to cli feedback messages
14640 - BUILD: Makefile: add a function to detect support by the compiler of certain options
14641 - BUILD: Makefile: shut certain gcc/clang stupid warnings
14642 - BUILD: Makefile: improve detection of support for compiler warnings
14643 - MINOR: peers: don't reference the incoming listener on outgoing connections
14644 - MINOR: frontend: don't retrieve ALPN on the critical path
14645 - MINOR: protocols: always pass a "port" argument to the listener creation
14646 - MINOR: protocols: register the ->add function and stop calling them directly
14647 - MINOR: unix: remove the now unused proto_uxst.h file
14648 - MINOR: listeners: new function create_listeners
14649 - MINOR: listeners: make listeners count consistent with reality
14650 - MEDIUM: session: take care of incrementing/decrementing jobs
14651 - MINOR: listener: new function listener_release
14652 - MINOR: session: small cleanup of conn_complete_session()
14653 - MEDIUM: session: factor out duplicated code for conn_complete_session
14654 - MEDIUM: session: count the frontend's connections at a single place
14655 - BUG/MEDIUM: compression: Fix check on txn in smp_fetch_res_comp_algo
14656 - BUG/MINOR: compression: Check response headers before http-response rules eval
14657 - BUG/MINOR: spoe: Don't rely on SPOE ctx in debug message when its creation failed
14658 - BUG/MINOR: dns: Fix check on nameserver in snr_resolution_cb
14659 - MINOR: ssl: Remove useless checks on bind_conf or bind_conf->is_ssl
14660 - BUG/MINOR: contrib/mod_defender: close the va_list argp before return
14661 - BUG/MINOR: contrib/modsecurity: close the va_list ap before return
14662 - MINOR: tools: make my_htonll() more efficient on x86_64
14663 - MINOR: buffer: add b_del() to delete a number of characters
14664 - MINOR: buffer: add b_end() and b_to_end()
14665 - MINOR: net_helper: add functions to read from vectors
14666 - MINOR: net_helper: add write functions
14667 - MINOR: net_helper: add 64-bit read/write functions
14668 - MINOR: connection: adjust CO_FL_NOTIFY_DATA after removal of flags
14669 - MINOR: ist: add a macro to ease const array initialization
14670 - BUG/MEDIUM: server: unwanted behavior leaving maintenance mode on tracked stopping server
14671 - BUG/MEDIUM: server: unwanted behavior leaving maintenance mode on tracked stopping server (take2)
14672 - BUG/MINOR: log: fixing small memory leak in error code path.
14673 - BUG/MINOR: contrib/halog: fixing small memory leak
14674 - BUG/MEDIUM: tcp/http: set-dst-port action broken
14675 - CLEANUUP: checks: don't set conn->handle.fd to -1
14676 - BUG/MEDIUM: tcp-check: properly indicate polling state before performing I/O
14677 - BUG/MINOR: tcp-check: don't quit with pending data in the send buffer
14678 - BUG/MEDIUM: tcp-check: don't call tcpcheck_main() from the I/O handlers!
14679 - BUG/MINOR: unix: properly check for octal digits in the "mode" argument
14680 - MINOR: checks: make chk_report_conn_err() take a check, not a connection
14681 - CLEANUP: checks: remove misleading comments and statuses for external process
14682 - CLEANUP: checks: don't report report the fork() error twice
14683 - CLEANUP: checks: do not allocate a connection for process checks
14684 - TESTS: checks: add a simple test config for external checks
14685 - BUG/MINOR: tcp-check: don't initialize then break a connection starting with a comment
14686 - TESTS: checks: add a simple test config for tcp-checks
14687 - MINOR: tcp-check: make tcpcheck_main() take a check, not a connection
14688 - MINOR: checks: don't create then kill a dummy connection before tcp-checks
14689 - MEDIUM: checks: make tcpcheck_main() indicate if it recycled a connection
14690 - MEDIUM: checks: do not allocate a permanent connection anymore
14691 - BUG/MEDIUM: cli: fix "show fd" crash when dumping closed FDs
14692 - BUG/MEDIUM: http: Return an error when url_dec sample converter failed
14693 - BUG/MAJOR: stream-int: don't re-arm recv if send fails
14694 - BUILD/MINOR: 51d: fix warning when building with 51Degrees release version 3.2.12.12
14695 - DOC: 51d: add 51Degrees git URL that points to release version 3.2.12.12
14696 - DOC: 51d: Updated git URL and instructions for getting Hash Trie data files.
14697 - MINOR: compiler: restore the likely() wrapper for gcc 5.x
14698 - MINOR: session: remove the list of streams from struct session
14699 - DOC: fix some typos
14700 - MINOR: server: add the srv_queue() sample fetch method
14701 - MINOR: payload: add new sample fetch functions to process distcc protocol
14702 - MAJOR: servers: propagate server status changes asynchronously.
14703 - BUG/MEDIUM: ssl: fix OCSP expiry calculation
14704 - BUG/MINOR: stream-int: don't set MSG_MORE on SHUTW_NOW without AUTO_CLOSE
14705 - MINOR: server: Handle weight increase in consistent hash.
14706 - MINOR: checks: Add a new keyword to specify a SNI when doing SSL checks.
14707 - BUG/MINOR: tools: fix my_htonll() on x86_64
14708 - BUG/MINOR: stats: Clear a bit more counters with in cli_parse_clear_counters().
14709 - BUG/MAJOR: lua: scheduled task is freezing.
14710 - MINOR: buffer: add bo_del() to delete a number of characters from output
14711 - MINOR: buffer: add a function to match against string patterns
14712 - MINOR: buffer: add two functions to inject data into buffers
14713 - MINOR: buffer: add buffer_space_wraps()
14714 - REORG: channel: finally rename the last bi_* / bo_* functions
14715 - MINOR: buffer: add bo_getblk() and bo_getblk_nc()
14716 - MINOR: channel: make use of bo_getblk{,_nc} for their channel equivalents
14717 - MINOR: channel: make the channel be a const in all {ci,co}_get* functions
14718 - MINOR: ist: add ist0() to add a trailing zero to a string.
14719 - BUG/MEDIUM: log: check result details truncated.
14720 - MINOR: buffer: make bo_getblk_nc() not return 2 for a full buffer
14721 - REORG: http: move some very http1-specific parts to h1.{c,h}
14722 - REORG: http: move the HTTP/1 chunk parser to h1.{c,h}
14723 - REORG: http: move the HTTP/1 header block parser to h1.c
14724 - MEDIUM: http: make the chunk size parser only depend on the buffer
14725 - MEDIUM: http: make the chunk crlf parser only depend on the buffer
14726 - MINOR: h1: add struct h1m for basic HTTP/1 messages
14727 - MINOR: http: add very simple header management based on double strings
14728 - MEDIUM: h1: reimplement the http/1 response parser for the gateway
14729 - REORG: connection: rename CO_FL_DATA_* -> CO_FL_XPRT_*
14730 - MEDIUM: connection: make conn_sock_shutw() aware of lingering
14731 - MINOR: connection: ensure conn_ctrl_close() also resets the fd
14732 - MINOR: connection: add conn_stop_tracking() to disable tracking
14733 - MINOR: tcp: use conn_full_close() instead of conn_force_close()
14734 - MINOR: unix: use conn_full_close() instead of conn_force_close()
14735 - MINOR: checks: use conn_full_close() instead of conn_force_close()
14736 - MINOR: session: use conn_full_close() instead of conn_force_close()
14737 - MINOR: stream: use conn_full_close() instead of conn_force_close()
14738 - MINOR: stream: use conn_full_close() instead of conn_force_close()
14739 - MINOR: backend: use conn_full_close() instead of conn_force_close()
14740 - MINOR: stream-int: use conn_full_close() instead of conn_force_close()
14741 - MINOR: connection: remove conn_force_close()
14742 - BUG/MINOR: ssl: ocsp response with 'revoked' status is correct
14743
Willy Tarreauf57a29a2017-06-02 15:59:51 +0200147442017/06/02 : 1.8-dev2
14745 - CLEANUP: server: moving netinet/tcp.h inclusion
14746 - DOC: changed "block"(deprecated) examples to http-request deny
14747 - DOC: add few comments to examples.
14748 - DOC: update sample code for PROXY protocol
14749 - DOC: mention lighttpd 1.4.46 implements PROXY
14750 - MINOR server: Restrict dynamic cookie check to the same proxy.
14751 - DOC: stick-table is available in frontend sections
14752 - BUG/MINOR: server : no transparent proxy for DragonflyBSD
14753 - BUILD/MINOR: stats: remove unexpected argument to stats_dump_json_header()
14754 - BUILD/MINOR: tools: fix build warning in debug_hexdump()
14755 - BUG/MINOR: dns: Wrong address family used when creating IPv6 sockets.
14756 - BUG/MINOR: config: missing goto out after parsing an incorrect ACL character
14757 - BUG/MINOR: arg: don't try to add an argument on failed memory allocation
14758 - MEDIUM: server: Inherit CLI weight changes and agent-check weight responses
14759 - BUG/MEDIUM: arg: ensure that we properly unlink unresolved arguments on error
14760 - BUG/MEDIUM: acl: don't free unresolved args in prune_acl_expr()
14761 - BUG/MEDIUM: servers: unbreak server weight propagation
14762 - MINOR: lua: ensure the memory allocator is used all the time
14763 - MINOR: cli: Add a command to send listening sockets.
14764 - MINOR: global: Add an option to get the old listening sockets.
14765 - MINOR: tcp: When binding socket, attempt to reuse one from the old proc.
14766 - MINOR: doc: document the -x flag
14767 - MINOR: proxy: Don't close FDs if not our proxy.
14768 - MINOR: socket transfer: Set a timeout on the socket.
14769 - MINOR: systemd wrapper: add support for passing the -x option.
14770 - BUG/MINOR: server: Fix a wrong error message during 'usesrc' keyword parsing.
14771 - BUG/MAJOR: Broken parsing for valid keywords provided after 'source' setting.
14772 - CLEANUP: logs: typo: simgle => single
14773 - BUG/MEDIUM: acl: proprely release unused args in prune_acl_expr()
14774 - MEDIUM: config: don't check config validity when there are fatal errors
14775 - BUG/MAJOR: Use -fwrapv.
14776 - BUG/MINOR: server: don't use "proxy" when px is really meant.
14777 - BUG/MEDIUM: http: Drop the connection establishment when a redirect is performed
14778 - BUG/MINOR: server: missing default server 'resolvers' setting duplication.
14779 - MINOR: server: Extract the code responsible of copying default-server settings.
14780 - MINOR: server: Extract the code which finalizes server initializations after 'server' lines parsing.
14781 - MINOR: server: Add 'server-template' new keyword supported in backend sections.
14782 - MINOR: server: Add server_template_init() function to initialize servers from a templates.
14783 - DOC: Add documentation for new "server-template" keyword.
14784 - DOC: add layer 4 links/cross reference to "block" keyword.
14785 - DOC: errloc/errorloc302/errorloc303 missing status codes.
14786 - BUG/MEDIUM: lua: memory leak
14787 - CLEANUP: lua: remove test
14788 - BUG/MINOR: hash-balance-factor isn't effective in certain circumstances
14789 - BUG/MINOR: change header-declared function to static inline
14790 - REORG: spoe: move spoe_encode_varint / spoe_decode_varint from spoe to common
14791 - MINOR: Add binary encoding request header sample fetch
14792 - MINOR: proto-http: Add sample fetch wich returns all HTTP headers
14793 - MINOR: Add ModSecurity wrapper as contrib
14794 - BUG/MINOR: ssl: fix warnings about methods for opensslv1.1.
14795 - DOC: update RFC references
14796 - CONTRIB: tcploop: add action "X" to execute a command
14797 - MINOR: server: cli: Add server FQDNs to server-state file and stats socket.
14798 - BUG/MINOR: contrib/mod_security: fix build on FreeBSD
14799 - BUG/MINOR: checks: don't send proxy protocol with agent checks
14800 - MINOR: ssl: add prefer-client-ciphers
14801 - MEDIUM: ssl: revert ssl/tls version settings relative to default-server.
14802 - MEDIUM: ssl: ssl_methods implementation is reworked and factored for min/max tlsxx
14803 - MEDIUM: ssl: calculate the real min/max TLS version and find holes
14804 - MINOR: ssl: support TLSv1.3 for bind and server
14805 - MINOR: ssl: show methods supported by openssl
14806 - MEDIUM: ssl: add ssl-min-ver and ssl-max-ver parameters for bind and server
14807 - MEDIUM: ssl: ssl-min-ver and ssl-max-ver compatibility.
14808 - CLEANUP: retire obsoleted USE_GETSOCKNAME build option
14809 - BUG/MAJOR: dns: Broken kqueue events handling (BSD systems).
14810 - MINOR: sample: Add b64dec sample converter
14811 - BUG/MEDIUM: lua: segfault if a converter or a sample doesn't return anything
14812 - MINOR: cli: add ACCESS_LVL_MASK to store the access level
14813 - MINOR: cli: add 'expose-fd listeners' to pass listeners FDs
14814 - MEDIUM: proxy: zombify proxies only when the expose-fd socket is bound
14815 - MEDIUM: ssl: add basic support for OpenSSL crypto engine
14816 - MAJOR: ssl: add openssl async mode support
14817 - MEDIUM: ssl: handle multiple async engines
14818 - MINOR: boringssl: basic support for OCSP Stapling
14819 - MEDIUM: mworker: replace systemd mode by master worker mode
14820 - MEDIUM: mworker: handle reload and signals
14821 - MEDIUM: mworker: wait mode on reload failure
14822 - MEDIUM: mworker: try to guess the next stats socket to use with -x
14823 - MEDIUM: mworker: exit-on-failure option
14824 - MEDIUM: mworker: workers exit when the master leaves
14825 - DOC: add documentation for the master-worker mode
14826 - MEDIUM: systemd: Type=forking in unit file
14827 - MAJOR: systemd-wrapper: get rid of the wrapper
14828 - MINOR: log: Add logurilen tunable.
14829 - CLEANUP: server.c: missing prototype of srv_free_dns_resolution
14830 - MINOR: dns: smallest DNS fqdn size
14831 - MINOR: dns: functions to manage memory for a DNS resolution structure
14832 - MINOR: dns: parse_server() now uses srv_alloc_dns_resolution()
14833 - REORG: dns: dns_option structure, storage of hostname_dn
14834 - MINOR: dns: new snr_check_ip_callback function
14835 - MAJOR: dns: save a copy of the DNS response in struct resolution
14836 - MINOR: dns: implement a LRU cache for DNS resolutions
14837 - MINOR: dns: make 'ancount' field to match the number of saved records
14838 - MINOR: dns: introduce roundrobin into the internal cache (WIP)
14839 - MAJOR/REORG: dns: DNS resolution task and requester queues
14840 - BUILD: ssl: fix build with OPENSSL_NO_ENGINE
14841 - MINOR: Add Mod Defender integration as contrib
14842 - CLEANUP: str2mask return code comment: non-zero -> zero.
14843 - MINOR: tools: make debug_hexdump() use a const char for the string
14844 - MINOR: tools: make debug_hexdump() take a string prefix
14845 - CLEANUP: connection: remove unused CO_FL_WAIT_DATA
14846
Willy Tarreau7b677262017-04-03 09:27:49 +0200148472017/04/03 : 1.8-dev1
14848 - BUG/MEDIUM: proxy: return "none" and "unknown" for unknown LB algos
14849 - BUG/MINOR: stats: make field_str() return an empty string on NULL
14850 - DOC: Spelling fixes
14851 - BUG/MEDIUM: http: Fix tunnel mode when the CONNECT method is used
14852 - BUG/MINOR: http: Keep the same behavior between 1.6 and 1.7 for tunneled txn
14853 - BUG/MINOR: filters: Protect args in macros HAS_DATA_FILTERS and IS_DATA_FILTER
14854 - BUG/MINOR: filters: Invert evaluation order of HTTP_XFER_BODY and XFER_DATA analyzers
14855 - BUG/MINOR: http: Call XFER_DATA analyzer when HTTP txn is switched in tunnel mode
14856 - BUG/MAJOR: stream: fix session abort on resource shortage
14857 - OPTIM: stream-int: don't disable polling anymore on DONT_READ
14858 - BUG/MINOR: cli: allow the backslash to be escaped on the CLI
14859 - BUG/MEDIUM: cli: fix "show stat resolvers" and "show tls-keys"
14860 - DOC: Fix map table's format
14861 - DOC: Added 51Degrees conv and fetch functions to documentation.
14862 - BUG/MINOR: http: don't send an extra CRLF after a Set-Cookie in a redirect
14863 - DOC: mention that req_tot is for both frontends and backends
14864 - BUG/MEDIUM: variables: some variable name can hide another ones
14865 - MINOR: lua: Allow argument for actions
14866 - BUILD: rearrange target files by build time
14867 - CLEANUP: hlua: just indent functions
14868 - MINOR: lua: give HAProxy variable access to the applets
14869 - BUG/MINOR: stats: fix be/sessions/max output in html stats
14870 - MINOR: proxy: Add fe_name/be_name fetchers next to existing fe_id/be_id
14871 - DOC: lua: Documentation about some entry missing
14872 - DOC: lua: Add documentation about variable manipulation from applet
14873 - MINOR: Do not forward the header "Expect: 100-continue" when the option http-buffer-request is set
14874 - DOC: Add undocumented argument of the trace filter
14875 - DOC: Fix some typo in SPOE documentation
14876 - MINOR: cli: Remove useless call to bi_putchk
14877 - BUG/MINOR: cli: be sure to always warn the cli applet when input buffer is full
14878 - MINOR: applet: Count number of (active) applets
14879 - MINOR: task: Rename run_queue and run_queue_cur counters
14880 - BUG/MEDIUM: stream: Save unprocessed events for a stream
14881 - BUG/MAJOR: Fix how the list of entities waiting for a buffer is handled
14882 - BUILD/MEDIUM: Fixing the build using LibreSSL
14883 - BUG/MEDIUM: lua: In some case, the return of sample-fetches is ignored (2)
14884 - SCRIPTS: git-show-backports: fix a harmless typo
14885 - SCRIPTS: git-show-backports: add -H to use the hash of the commit message
14886 - BUG/MINOR: stream-int: automatically release SI_FL_WAIT_DATA on SHUTW_NOW
14887 - CLEANUP: applet/lua: create a dedicated ->fcn entry in hlua_cli context
14888 - CLEANUP: applet/table: add an "action" entry in ->table context
14889 - CLEANUP: applet: remove the now unused appctx->private field
14890 - DOC: lua: documentation about time parser functions
14891 - DOC: lua: improve links
14892 - DOC: lua: section declared twice
14893 - MEDIUM: cli: 'show cli sockets' list the CLI sockets
14894 - BUG/MINOR: cli: "show cli sockets" wouldn't list all processes
14895 - BUG/MINOR: cli: "show cli sockets" would always report process 64
14896 - CLEANUP: lua: rename one of the lua appctx union
14897 - BUG/MINOR: lua/cli: bad error message
14898 - MEDIUM: lua: use memory pool for hlua struct in applets
14899 - MINOR: lua/signals: Remove Lua part from signals.
14900 - DOC: cli: show cli sockets
14901 - MINOR: cli: automatically enable a CLI I/O handler when there's no parser
14902 - CLEANUP: memory: remove the now unused cli_parse_show_pools() function
14903 - CLEANUP: applet: group all CLI contexts together
14904 - CLEANUP: stats: move a misplaced stats context initialization
14905 - MINOR: cli: add two general purpose pointers and integers in the CLI struct
14906 - MINOR: appctx/cli: remove the cli_socket entry from the appctx union
14907 - MINOR: appctx/cli: remove the env entry from the appctx union
14908 - MINOR: appctx/cli: remove the "be" entry from the appctx union
14909 - MINOR: appctx/cli: remove the "dns" entry from the appctx union
14910 - MINOR: appctx/cli: remove the "server_state" entry from the appctx union
14911 - MINOR: appctx/cli: remove the "tlskeys" entry from the appctx union
14912 - CONTRIB: tcploop: add limits.h to fix build issue with some compilers
14913 - MINOR/DOC: lua: just precise one thing
14914 - DOC: fix small typo in fe_id (backend instead of frontend)
14915 - BUG/MINOR: Fix the sending function in Lua's cosocket
14916 - BUG/MINOR: lua: memory leak executing tasks
14917 - BUG/MINOR: lua: bad return code
14918 - BUG/MINOR: lua: memleak when Lua/cli fails
14919 - MEDIUM: lua: remove Lua struct from session, and allocate it with memory pools
14920 - CLEANUP: haproxy: statify unexported functions
14921 - MINOR: haproxy: add a registration for build options
14922 - CLEANUP: wurfl: use the build options list to report it
14923 - CLEANUP: 51d: use the build options list to report it
14924 - CLEANUP: da: use the build options list to report it
14925 - CLEANUP: namespaces: use the build options list to report it
14926 - CLEANUP: tcp: use the build options list to report transparent modes
14927 - CLEANUP: lua: use the build options list to report it
14928 - CLEANUP: regex: use the build options list to report the regex type
14929 - CLEANUP: ssl: use the build options list to report the SSL details
14930 - CLEANUP: compression: use the build options list to report the algos
14931 - CLEANUP: auth: use the build options list to report its support
14932 - MINOR: haproxy: add a registration for post-check functions
14933 - CLEANUP: checks: make use of the post-init registration to start checks
14934 - CLEANUP: filters: use the function registration to initialize all proxies
14935 - CLEANUP: wurfl: make use of the late init registration
14936 - CLEANUP: 51d: make use of the late init registration
14937 - CLEANUP: da: make use of the late init registration code
14938 - MINOR: haproxy: add a registration for post-deinit functions
14939 - CLEANUP: wurfl: register the deinit function via the dedicated list
14940 - CLEANUP: 51d: register the deinitialization function
14941 - CLEANUP: da: register the deinitialization function
14942 - CLEANUP: wurfl: move global settings out of the global section
14943 - CLEANUP: 51d: move global settings out of the global section
14944 - CLEANUP: da: move global settings out of the global section
14945 - MINOR: cfgparse: add two new functions to check arguments count
14946 - MINOR: cfgparse: move parsing of "ca-base" and "crt-base" to ssl_sock
14947 - MEDIUM: cfgparse: move all tune.ssl.* keywords to ssl_sock
14948 - MEDIUM: cfgparse: move maxsslconn parsing to ssl_sock
14949 - MINOR: cfgparse: move parsing of ssl-default-{bind,server}-ciphers to ssl_sock
14950 - MEDIUM: cfgparse: move ssl-dh-param-file parsing to ssl_sock
14951 - MEDIUM: compression: move the zlib-specific stuff from global.h to compression.c
14952 - BUG/MEDIUM: ssl: properly reset the reused_sess during a forced handshake
14953 - BUG/MEDIUM: ssl: avoid double free when releasing bind_confs
14954 - BUG/MINOR: stats: fix be/sessions/current out in typed stats
14955 - MINOR: tcp-rules: check that the listener exists before updating its counters
14956 - MEDIUM: spoe: don't create a dummy listener for outgoing connections
14957 - MINOR: listener: move the transport layer pointer to the bind_conf
14958 - MEDIUM: move listener->frontend to bind_conf->frontend
14959 - MEDIUM: ssl: remote the proxy argument from most functions
14960 - MINOR: connection: add a new prepare_bind_conf() entry to xprt_ops
14961 - MEDIUM: ssl_sock: implement ssl_sock_prepare_bind_conf()
14962 - MINOR: connection: add a new destroy_bind_conf() entry to xprt_ops
14963 - MINOR: ssl_sock: implement ssl_sock_destroy_bind_conf()
14964 - MINOR: server: move the use_ssl field out of the ifdef USE_OPENSSL
14965 - MINOR: connection: add a minimal transport layer registration system
14966 - CLEANUP: connection: remove all direct references to raw_sock and ssl_sock
14967 - CLEANUP: connection: unexport raw_sock and ssl_sock
14968 - MINOR: connection: add new prepare_srv()/destroy_srv() entries to xprt_ops
14969 - MINOR: ssl_sock: implement and use prepare_srv()/destroy_srv()
14970 - CLEANUP: ssl: move tlskeys_finalize_config() to a post_check callback
14971 - CLEANUP: ssl: move most ssl-specific global settings to ssl_sock.c
14972 - BUG/MINOR: backend: nbsrv() should return 0 if backend is disabled
14973 - BUG/MEDIUM: ssl: for a handshake when server-side SNI changes
14974 - BUG/MINOR: systemd: potential zombie processes
14975 - DOC: Add timings events schemas
14976 - BUILD: lua: build failed on FreeBSD.
14977 - MINOR: samples: add xx-hash functions
14978 - MEDIUM: regex: pcre2 support
14979 - BUG/MINOR: option prefer-last-server must be ignored in some case
14980 - MINOR: stats: Support "select all" for backend actions
14981 - BUG/MINOR: sample-fetches/stick-tables: bad type for the sample fetches sc*_get_gpt0
14982 - BUG/MAJOR: channel: Fix the definition order of channel analyzers
14983 - BUG/MINOR: http: report real parser state in error captures
14984 - BUILD: scripts: automatically update the branch in version.h when releasing
14985 - MINOR: tools: add a generic hexdump function for debugging
14986 - BUG/MAJOR: http: fix risk of getting invalid reports of bad requests
14987 - MINOR: http: custom status reason.
14988 - MINOR: connection: add sample fetch "fc_rcvd_proxy"
14989 - BUG/MINOR: config: emit a warning if http-reuse is enabled with incompatible options
14990 - BUG/MINOR: tools: fix off-by-one in port size check
14991 - BUG/MEDIUM: server: consider AF_UNSPEC as a valid address family
14992 - MEDIUM: server: split the address and the port into two different fields
14993 - MINOR: tools: make str2sa_range() return the port in a separate argument
14994 - MINOR: server: take the destination port from the port field, not the addr
14995 - MEDIUM: server: disable protocol validations when the server doesn't resolve
14996 - BUG/MEDIUM: tools: do not force an unresolved address to AF_INET:0.0.0.0
14997 - BUG/MINOR: ssl: EVP_PKEY must be freed after X509_get_pubkey usage
14998 - BUG/MINOR: ssl: assert on SSL_set_shutdown with BoringSSL
14999 - MINOR: Use "500 Internal Server Error" for 500 error/status code message.
15000 - MINOR: proto_http.c 502 error txt typo.
15001 - DOC: add deprecation notice to "block"
15002 - MINOR: compression: fix -vv output without zlib/slz
15003 - BUG/MINOR: Reset errno variable before calling strtol(3)
15004 - MINOR: ssl: don't show prefer-server-ciphers output
15005 - OPTIM/MINOR: config: Optimize fullconn automatic computation loading configuration
15006 - BUG/MINOR: stream: Fix how backend-specific analyzers are set on a stream
15007 - MAJOR: ssl: bind configuration per certificat
15008 - MINOR: ssl: add curve suite for ECDHE negotiation
15009 - MINOR: checks: Add agent-addr config directive
15010 - MINOR: cli: Add possiblity to change agent config via CLI/socket
15011 - MINOR: doc: Add docs for agent-addr configuration variable
15012 - MINOR: doc: Add docs for agent-addr and agent-send CLI commands
15013 - BUILD: ssl: fix to build (again) with boringssl
15014 - BUILD: ssl: fix build on OpenSSL 1.0.0
15015 - BUILD: ssl: silence a warning reported for ERR_remove_state()
15016 - BUILD: ssl: eliminate warning with OpenSSL 1.1.0 regarding RAND_pseudo_bytes()
15017 - BUILD: ssl: kill a build warning introduced by BoringSSL compatibility
15018 - BUG/MEDIUM: tcp: don't poll for write when connect() succeeds
15019 - BUG/MINOR: unix: fix connect's polling in case no data are scheduled
15020 - MINOR: server: extend the flags to 32 bits
15021 - BUG/MINOR: lua: Map.end are not reliable because "end" is a reserved keyword
15022 - MINOR: dns: give ability to dns_init_resolvers() to close a socket when requested
15023 - BUG/MAJOR: dns: restart sockets after fork()
15024 - MINOR: chunks: implement a simple dynamic allocator for trash buffers
15025 - BUG/MEDIUM: http: prevent redirect from overwriting a buffer
15026 - BUG/MEDIUM: filters: Do not truncate HTTP response when body length is undefined
15027 - BUG/MEDIUM: http: Prevent replace-header from overwriting a buffer
15028 - BUG/MINOR: http: Return an error when a replace-header rule failed on the response
15029 - BUG/MINOR: sendmail: The return of vsnprintf is not cleanly tested
15030 - BUG/MAJOR: ssl: fix a regression in ssl_sock_shutw()
15031 - BUG/MAJOR: lua segmentation fault when the request is like 'GET ?arg=val HTTP/1.1'
15032 - BUG/MEDIUM: config: reject anything but "if" or "unless" after a use-backend rule
15033 - MINOR: http: don't close when redirect location doesn't start with "/"
15034 - MEDIUM: boringssl: support native multi-cert selection without bundling
15035 - BUG/MEDIUM: ssl: fix verify/ca-file per certificate
15036 - BUG/MEDIUM: ssl: switchctx should not return SSL_TLSEXT_ERR_ALERT_WARNING
15037 - MINOR: ssl: removes SSL_CTX_set_ssl_version call and cleanup CTX creation.
15038 - BUILD: ssl: fix build with -DOPENSSL_NO_DH
15039 - MEDIUM: ssl: add new sample-fetch which captures the cipherlist
15040 - MEDIUM: ssl: remove ssl-options from crt-list
15041 - BUG/MEDIUM: ssl: in bind line, ssl-options after 'crt' are ignored.
15042 - BUG/MINOR: ssl: fix cipherlist captures with sustainable SSL calls
15043 - MINOR: ssl: improved cipherlist captures
15044 - BUG/MINOR: spoe: Fix soft stop handler using a specific id for spoe filters
15045 - BUG/MINOR: spoe: Fix parsing of arguments in spoe-message section
15046 - MAJOR: spoe: Add support of pipelined and asynchronous exchanges with agents
15047 - MINOR: spoe: Add support for pipelining/async capabilities in the SPOA example
15048 - MINOR: spoe: Remove SPOE details from the appctx structure
15049 - MINOR: spoe: Add status code in error variable instead of hardcoded value
15050 - MINOR: spoe: Send a log message when an error occurred during event processing
15051 - MINOR: spoe: Check the scope of sample fetches used in SPOE messages
15052 - MEDIUM: spoe: Be sure to wakeup the good entity waiting for a buffer
15053 - MINOR: spoe: Use the min of all known max_frame_size to encode messages
15054 - MAJOR: spoe: Add support of payload fragmentation in NOTIFY frames
15055 - MINOR: spoe: Add support for fragmentation capability in the SPOA example
15056 - MAJOR: spoe: refactor the filter to clean up the code
15057 - MINOR: spoe: Handle NOTIFY frames cancellation using ABORT bit in ACK frames
15058 - REORG: spoe: Move struct and enum definitions in dedicated header file
15059 - REORG: spoe: Move low-level encoding/decoding functions in dedicated header file
15060 - MINOR: spoe: Improve implementation of the payload fragmentation
15061 - MINOR: spoe: Add support of negation for options in SPOE configuration file
15062 - MINOR: spoe: Add "pipelining" and "async" options in spoe-agent section
15063 - MINOR: spoe: Rely on alertif_too_many_arg during configuration parsing
15064 - MINOR: spoe: Add "send-frag-payload" option in spoe-agent section
15065 - MINOR: spoe: Add "max-frame-size" statement in spoe-agent section
15066 - DOC: spoe: Update SPOE documentation to reflect recent changes
15067 - MINOR: config: warn when some HTTP rules are used in a TCP proxy
15068 - BUG/MEDIUM: ssl: Clear OpenSSL error stack after trying to parse OCSP file
15069 - BUG/MEDIUM: cli: Prevent double free in CLI ACL lookup
15070 - BUG/MINOR: Fix "get map <map> <value>" CLI command
15071 - MINOR: Add nbsrv sample converter
15072 - CLEANUP: Replace repeated code to count usable servers with be_usable_srv()
15073 - MINOR: Add hostname sample fetch
15074 - CLEANUP: Remove comment that's no longer valid
15075 - MEDIUM: http_error_message: txn->status / http_get_status_idx.
15076 - MINOR: http-request tarpit deny_status.
15077 - CLEANUP: http: make http_server_error() not set the status anymore
15078 - MEDIUM: stats: Add JSON output option to show (info|stat)
15079 - MEDIUM: stats: Add show json schema
15080 - BUG/MAJOR: connection: update CO_FL_CONNECTED before calling the data layer
15081 - MINOR: server: Add dynamic session cookies.
15082 - MINOR: cli: Let configure the dynamic cookies from the cli.
15083 - BUG/MINOR: checks: attempt clean shutw for SSL check
15084 - CONTRIB: tcploop: make it build on FreeBSD
15085 - CONTRIB: tcploop: fix time format to silence build warnings
15086 - CONTRIB: tcploop: report action 'K' (kill) in usage message
15087 - CONTRIB: tcploop: fix connect's address length
15088 - CONTRIB: tcploop: use the trash instead of NULL for recv()
15089 - BUG/MEDIUM: listener: do not try to rebind another process' socket
15090 - BUG/MEDIUM server: Fix crash when dynamic is defined, but not key is provided.
15091 - CLEANUP: config: Typo in comment.
15092 - BUG/MEDIUM: filters: Fix channels synchronization in flt_end_analyze
15093 - TESTS: add a test configuration to stress handshake combinations
15094 - BUG/MAJOR: stream-int: do not depend on connection flags to detect connection
15095 - BUG/MEDIUM: connection: ensure to always report the end of handshakes
15096 - MEDIUM: connection: don't test for CO_FL_WAKE_DATA
15097 - CLEANUP: connection: completely remove CO_FL_WAKE_DATA
15098 - BUG: payload: fix payload not retrieving arbitrary lengths
15099 - BUILD: ssl: simplify SSL_CTX_set_ecdh_auto compatibility
15100 - BUILD: ssl: fix OPENSSL_NO_SSL_TRACE for boringssl and libressl
15101 - BUG/MAJOR: http: fix typo in http_apply_redirect_rule
15102 - MINOR: doc: 2.4. Examples should be 2.5. Examples
15103 - BUG/MEDIUM: stream: fix client-fin/server-fin handling
15104 - MINOR: fd: add a new flag HAP_POLL_F_RDHUP to struct poller
15105 - BUG/MINOR: raw_sock: always perfom the last recv if RDHUP is not available
15106 - OPTIM: poll: enable support for POLLRDHUP
15107 - MINOR: kqueue: exclusively rely on the kqueue returned status
15108 - MEDIUM: kqueue: take care of EV_EOF to improve polling status accuracy
15109 - MEDIUM: kqueue: only set FD_POLL_IN when there are pending data
15110 - DOC/MINOR: Fix typos in proxy protocol doc
15111 - DOC: Protocol doc: add checksum, TLV type ranges
15112 - DOC: Protocol doc: add SSL TLVs, rename CHECKSUM
15113 - DOC: Protocol doc: add noop TLV
15114 - MEDIUM: global: add a 'hard-stop-after' option to cap the soft-stop time
15115 - MINOR: dns: improve DNS response parsing to use as many available records as possible
15116 - BUG/MINOR: cfgparse: loop in tracked servers lists not detected by check_config_validity().
15117 - MINOR: server: irrelevant error message with 'default-server' config file keyword.
15118 - MINOR: server: Make 'default-server' support 'backup' keyword.
15119 - MINOR: server: Make 'default-server' support 'check-send-proxy' keyword.
15120 - CLEANUP: server: code alignement.
15121 - MINOR: server: Make 'default-server' support 'non-stick' keyword.
15122 - MINOR: server: Make 'default-server' support 'send-proxy' and 'send-proxy-v2 keywords.
15123 - MINOR: server: Make 'default-server' support 'check-ssl' keyword.
15124 - MINOR: server: Make 'default-server' support 'force-sslv3' and 'force-tlsv1[0-2]' keywords.
15125 - CLEANUP: server: code alignement.
15126 - MINOR: server: Make 'default-server' support 'no-ssl*' and 'no-tlsv*' keywords.
15127 - MINOR: server: Make 'default-server' support 'ssl' keyword.
15128 - MINOR: server: Make 'default-server' support 'send-proxy-v2-ssl*' keywords.
15129 - CLEANUP: server: code alignement.
15130 - MINOR: server: Make 'default-server' support 'verify' keyword.
15131 - MINOR: server: Make 'default-server' support 'verifyhost' setting.
15132 - MINOR: server: Make 'default-server' support 'check' keyword.
15133 - MINOR: server: Make 'default-server' support 'track' setting.
15134 - MINOR: server: Make 'default-server' support 'ca-file', 'crl-file' and 'crt' settings.
15135 - MINOR: server: Make 'default-server' support 'redir' keyword.
15136 - MINOR: server: Make 'default-server' support 'observe' keyword.
15137 - MINOR: server: Make 'default-server' support 'cookie' keyword.
15138 - MINOR: server: Make 'default-server' support 'ciphers' keyword.
15139 - MINOR: server: Make 'default-server' support 'tcp-ut' keyword.
15140 - MINOR: server: Make 'default-server' support 'namespace' keyword.
15141 - MINOR: server: Make 'default-server' support 'source' keyword.
15142 - MINOR: server: Make 'default-server' support 'sni' keyword.
15143 - MINOR: server: Make 'default-server' support 'addr' keyword.
15144 - MINOR: server: Make 'default-server' support 'disabled' keyword.
15145 - MINOR: server: Add 'no-agent-check' server keyword.
15146 - DOC: server: Add docs for "server" and "default-server" new "no-*" and other settings.
15147 - MINOR: doc: fix use-server example (imap vs mail)
15148 - BUG/MEDIUM: tcp: don't require privileges to bind to device
15149 - BUILD: make the release script use shortlog for the final changelog
15150 - BUILD: scripts: fix typo in announce-release error message
15151 - CLEANUP: time: curr_sec_ms doesn't need to be exported
15152 - BUG/MEDIUM: server: Wrong server default CRT filenames initialization.
15153 - BUG/MEDIUM: peers: fix buffer overflow control in intdecode.
15154 - BUG/MEDIUM: buffers: Fix how input/output data are injected into buffers
15155 - BUG/MINOR: http: Fix conditions to clean up a txn and to handle the next request
15156 - CLEANUP: http: Remove channel_congested function
15157 - CLEANUP: buffers: Remove buffer_bounce_realign function
15158 - CLEANUP: buffers: Remove buffer_contig_area and buffer_work_area functions
15159 - MINOR: http: remove useless check on HTTP_MSGF_XFER_LEN for the request
15160 - MINOR: http: Add debug messages when HTTP body analyzers are called
15161 - BUG/MEDIUM: http: Fix blocked HTTP/1.0 responses when compression is enabled
15162 - BUG/MINOR: filters: Don't force the stream's wakeup when we wait in flt_end_analyze
15163 - DOC: fix parenthesis and add missing "Example" tags
15164 - DOC: update the contributing file
15165 - DOC: log-format/tcplog/httplog update
15166 - MINOR: config parsing: add warning when log-format/tcplog/httplog is overriden in "defaults" sections
15167
Willy Tarreau0e658fb2016-11-25 16:55:50 +0100151682016/11/25 : 1.8-dev0
15169
Willy Tarreaue59fcdd2016-11-25 16:39:17 +0100151702016/11/25 : 1.7.0
15171 - SCRIPTS: make publish-release also copy the new SPOE doc
15172 - BUILD: http: include types/sample.h in proto_http.h
15173 - BUILD: debug/flags: remove test for SF_COMP_READY
15174 - CONTRIB: debug/flags: add check for SF_ERR_CHK_PORT
15175 - MINOR: lua: add function which return true if the channel is full.
15176 - MINOR: lua: add ip addresses and network manipulation function
15177 - CONTRIB: tcploop: scriptable TCP I/O for debugging purposes
15178 - CONTRIB: tcploop: implement fork()
15179 - CONTRIB: tcploop: implement logging when called with -v
15180 - CONTRIB: tcploop: update the usage output
15181 - CONTRIB: tcploop: support sending plain strings
15182 - CONTRIB: tcploop: don't report failed send() or recv()
15183 - CONTRIB: tcploop: add basic loops via a jump instruction
15184 - BUG/MEDIUM: channel: bad unlikely macro
15185 - CLEANUP: lua: move comment
15186 - CLEANUP: lua: control executed twice
15187 - BUG/MEDIUM: ssl: Store certificate filename in a variable
15188 - BUG/MINOR: ssl: Print correct filename when error occurs reading OCSP
15189 - CLEANUP: ssl: Remove goto after return dead code
15190 - CLEANUP: ssl: Fix bind keywords name in comments
15191 - DOC: ssl: Use correct wording for ca-sign-pass
15192 - CLEANUP: lua: avoid directly calling getsockname/getpeername()
15193 - BUG/MINOR: stick-table: handle out-of-memory condition gracefully
15194 - MINOR: cli: add private pointer and release function
15195 - MEDIUM: lua: Add cli handler for Lua
15196 - BUG/MEDIUM: connection: check the control layer before stopping polling
15197 - DEBUG: connection: mark the closed FDs with a value that is easier to detect
15198 - BUG/MEDIUM: stick-table: fix regression caused by recent fix for out-of-memory
15199 - BUG/MINOR: cli: properly decrement ref count on tables during failed dumps
15200 - BUG/MEDIUM: lua: In some case, the return of sample-fetche is ignored
15201 - MINOR: filters: Add check_timeouts callback to handle timers expiration on streams
15202 - MINOR: spoe: Add 'timeout processing' option to limit time to process an event
15203 - MINOR: spoe: Remove useless 'timeout ack' option
15204 - MINOR: spoe: Add 'option continue-on-error' statement in spoe-agent section
15205 - MINOR: spoe: Add "maxconnrate" and "maxerrrate" statements
15206 - MINOR: spoe: Add "option set-on-error" statement
15207 - MINOR: stats: correct documentation of process ID for typed output
15208 - BUILD: contrib: fix ip6range build on Centos 7
15209 - BUILD: fix build on Solaris 10/11
15210 - BUG/MINOR: cli: fix pointer size when reporting data/transport layer name
15211 - BUG/MINOR: cli: dequeue from the proxy when changing a maxconn
15212 - BUG/MINOR: cli: wake up the CLI's task after a timeout update
15213 - MINOR: connection: add a few functions to report the data and xprt layers' names
15214 - MINOR: connection: add names for transport and data layers
15215 - REORG: cli: split dumpstats.c in src/cli.c and src/stats.c
15216 - REORG: cli: split dumpstats.h in stats.h and cli.h
15217 - REORG: cli: move ssl CLI functions to ssl_sock.c
15218 - REORG: cli: move map and acl code to map.c
15219 - REORG: cli: move show stat resolvers to dns.c
15220 - MINOR: cli: create new function cli_has_level() to validate permissions
15221 - MINOR: server: create new function cli_find_server() to find a server
15222 - MINOR: proxy: create new function cli_find_frontend() to find a frontend
15223 - REORG: cli: move 'set server' to server.c
15224 - REORG: cli: move 'show pools' to memory.c
15225 - REORG: cli: move 'show servers' to proxy.c
15226 - REORG: cli: move 'show sess' to stream.c
15227 - REORG: cli: move 'show backend' to proxy.c
15228 - REORG: cli: move get/set weight to server.c
15229 - REORG: cli: move "show stat" to stats.c
15230 - REORG: cli: move "show info" to stats.c
15231 - REORG: cli: move dump_text(), dump_text_line(), and dump_binary() to standard.c
15232 - REORG: cli: move table dump/clear/set to stick_table.c
15233 - REORG: cli: move "show errors" out of cli.c
15234 - REORG: cli: make "show env" also use the generic keyword registration
15235 - REORG: cli: move "set timeout" to its own handler
15236 - REORG: cli: move "clear counters" to stats.c
15237 - REORG: cli: move "set maxconn global" to its own handler
15238 - REORG: cli: move "set maxconn server" to server.c
15239 - REORG: cli: move "set maxconn frontend" to proxy.c
15240 - REORG: cli: move "shutdown sessions server" to stream.c
15241 - REORG: cli: move "shutdown session" to stream.c
15242 - REORG: cli: move "shutdown frontend" to proxy.c
15243 - REORG: cli: move "{enable|disable} frontend" to proxy.c
15244 - REORG: cli: move "{enable|disable} server" to server.c
15245 - REORG: cli: move "{enable|disable} health" to server.c
15246 - REORG: cli: move "{enable|disable} agent" to server.c
15247 - REORG: cli: move the "set rate-limit" functions to their own parser
15248 - CLEANUP: cli: rename STAT_CLI_* to CLI_ST_*
15249 - CLEANUP: cli: simplify the request parser a little bit
15250 - CLEANUP: cli: remove assignments to st0 and st2 in keyword parsers
15251 - BUILD: server: remove a build warning introduced by latest series
15252 - BUG/MINOR: log-format: uncatched memory allocation functions
15253 - CLEANUP: log-format: useless file and line in json converter
15254 - CLEANUP/MINOR: log-format: unexport functions parse_logformat_var_args() and parse_logformat_var()
15255 - CLEANUP: log-format: fix return code of the function parse_logformat_var()
15256 - CLEANUP: log-format: fix return code of function parse_logformat_var_args()
15257 - CLEANUP: log-format: remove unused arguments
15258 - MEDIUM: log-format: strict parsing and enable fail
15259 - MEDIUM: log-format/conf: take into account the parse_logformat_string() return code
15260 - BUILD: ssl: make the SSL layer build again with openssl 0.9.8
15261 - BUILD: vars: remove a build warning on vars.c
15262 - MINOR: lua: add utility function for check boolean argument
15263 - MINOR: lua: Add tokenize function.
15264 - BUG/MINOR: conf: calloc untested
15265 - MINOR: http/conf: store the use_backend configuration file and line for logs
15266 - MEDIUM: log-format: Use standard HAProxy log system to report errors
15267 - CLEANUP: sample: report "converter" instead of "conv method" in error messages
15268 - BUG: spoe: Fix parsing of SPOE actions in ACK frames
15269 - MINOR: cli: make "show stat" support a proxy name
15270 - MINOR: cli: make "show errors" support a proxy name
15271 - MINOR: cli: make "show errors" capable of dumping only request or response
15272 - BUG/MINOR: freq-ctr: make swrate_add() support larger values
15273 - CLEANUP: counters: move from 3 types to 2 types
15274 - CLEANUP: cfgparse: cascade the warnif_misplaced_* rules
15275 - REORG: tcp-rules: move tcp rules processing to their own file
15276 - REORG: stkctr: move all the stick counters processing to stick-tables.c
15277 - DOC: update the roadmap file with the latest changes
15278
Willy Tarreaud5d890b2016-11-09 23:18:17 +0100152792016/11/09 : 1.7-dev6
15280 - DOC: fix the entry for hash-balance-factor config option
15281 - DOC: Fix typo in description of `-st` parameter in man page
15282 - CLEANUP: cfgparse: Very minor spelling correction
15283 - MINOR: examples: Update haproxy.spec URLs to haproxy.org
15284 - BUG/MEDIUM: peers: on shutdown, wake up the appctx, not the stream
15285 - BUG/MEDIUM: peers: fix use after free in peer_session_create()
15286 - MINOR: peers: make peer_session_forceshutdown() use the appctx and not the stream
15287 - MINOR: peers: remove the pointer to the stream
15288 - BUG/MEDIUM: systemd-wrapper: return correct exit codes
15289 - DOC: stats: provide state details for show servers state
15290 - MEDIUM: tools: make str2ip2() preserve existing ports
15291 - CLEANUP: tools: make ipcpy() preserve the original port
15292 - OPTIM: http: move all http character classs tables into a single one
15293 - OPTIM: http: improve parsing performance of long header lines
15294 - OPTIM: http: improve parsing performance of long URIs
15295 - OPTIM: http: optimize lookup of comma and quote in header values
15296 - BUG/MEDIUM: srv-state: properly restore the DRAIN state
15297 - BUG/MINOR: srv-state: allow to have both CMAINT and FDRAIN flags
15298 - MINOR: server: do not emit warnings/logs/alerts on server state changes at boot
15299 - BUG/MEDIUM: servers: properly propagate the maintenance states during startup
15300 - MEDIUM: wurfl: add Scientiamobile WURFL device detection module
15301 - DOC: move the device detection modules documentation to their own files
15302 - CLEANUP: wurfl: reduce exposure in the rest of the code
15303 - MEDIUM: ssl: Add support for OpenSSL 1.1.0
15304 - MINOR: stream: make option contstats usable again
15305 - MEDIUM: tools: make str2sa_range() return the FQDN even when not resolving
15306 - MINOR: init: move apply_server_state in haproxy.c before MODE_CHECK
15307 - MAJOR: server: postpone address resolution
15308 - MINOR: new srv_admin flag: SRV_ADMF_RMAINT
15309 - MINOR: server: indicate in the logs when RMAINT is cleared
15310 - MINOR: stats: indicate it when a server is down due to resolution
15311 - MINOR: server: make srv_set_admin_state() capable of telling why this happens
15312 - MINOR: dns: implement extra 'hold' timers.
15313 - MAJOR: dns: runtime resolution can change server admin state
15314 - MEDIUM: cli: leave the RMAINT state when setting an IP address on the CLI
15315 - MEDIUM: server: add a new init-addr server line setting
15316 - MEDIUM: server: make use of init-addr
15317 - MINOR: server: implement init-addr none
15318 - MEDIUM: server: make libc resolution failure non-fatal
15319 - MINOR: server: add support for explicit numeric address in init-addr
15320 - DOC: add some documentation for the "init-addr" server keyword
15321 - MINOR: init: add -dr to ignore server address resolution failures
15322 - MEDIUM: server: do not restrict anymore usage of IP address from the state file
15323 - BUG: vars: Fix 'set-var' converter because of a typo
15324 - CLEANUP: remove last references to 'ruleset' section
15325 - MEDIUM: filters: Add attch/detach and stream_set_backend callbacks
15326 - MINOR: filters: Update filters documentation accordingly to recent changes
15327 - MINOR: filters: Call stream_set_backend callbacks before updating backend stats
15328 - MINOR: filters: Remove backend filters attached to a stream only for HTTP streams
15329 - MINOR: flt_trace: Add hexdump option to dump forwarded data
15330 - MINOR: cfgparse: Add functions to backup and restore registered sections
15331 - MINOR: cfgparse: Parse scope lines and save the last one parsed
15332 - REORG: sample: move code to release a sample expression in sample.c
15333 - MINOR: vars: Allow '.' in variable names
15334 - MINOR: vars: Add vars_set_by_name_ifexist function
15335 - MEDIUM: vars: Add a per-process scope for variables
15336 - MINOR: vars: Add 'unset-var' action/converter
15337 - MAJOR: spoe: Add an experimental Stream Processing Offload Engine
15338 - MINOR: spoe: add random ip-reputation service as SPOA example
15339 - MINOR: spoe/checks: Add support for SPOP health checks
15340 - DOC: update ROADMAP file
15341
Willy Tarreau608efa12016-10-25 22:22:00 +0200153422016/10/25 : 1.7-dev5
15343 - MINOR: cfgparse: few memory leaks fixes.
15344 - MEDIUM: log: Decompose %Tq in %Th %Ti %TR
15345 - CLEANUP: logs: remove unused log format field definitions
15346 - BUILD/MAJOR:updated 51d Trie implementation to incorperate latest update to 51Degrees.c
15347 - BUG/MAJOR: stream: properly mark the server address as unset on connect retry
15348 - CLEANUP: proto_http: Removing useless variable assignation
15349 - CLEANUP: dumpstats: Removing useless variables allocation
15350 - CLEANUP: dns: Removing usless variable & assignation
15351 - BUG/MINOR: payload: fix SSLv2 version parser
15352 - MINOR: cli: allow the semi-colon to be escaped on the CLI
15353 - MINOR: cli: change a server health check port through the stats socket
15354 - BUG/MINOR: Fix OSX compilation errors
15355 - MAJOR: check: find out which port to use for health check at run time
15356 - MINOR: server: introduction of 3 new server flags
15357 - MINOR: new update_server_addr_port() function to change both server's ADDR and service PORT
15358 - MINOR: cli: ability to change a server's port
15359 - CLEANUP/MINOR dns: comment do not follow up code update
15360 - MINOR: chunk: new strncat function
15361 - MINOR: dns: wrong DNS_MAX_UDP_MESSAGE value
15362 - MINOR: dns: new MAX values
15363 - MINOR: dns: new macro to compute DNS header size
15364 - MINOR: dns: new DNS structures to store received packets
15365 - MEDIUM: dns: new DNS response parser
15366 - MINOR: dns: query type change when last record is a CNAME
15367 - MINOR: dns: proper domain name validation when receiving DNS response
15368 - MINOR: dns: comments in types/dns.h about structures endianness
15369 - BUG/MINOR: displayed PCRE version is running release
15370 - MINOR: show Built with PCRE version
15371 - MINOR: show Running on zlib version
15372 - MEDIUM: make SO_REUSEPORT configurable
15373 - MINOR: enable IP_BIND_ADDRESS_NO_PORT on backend connections
15374 - BUG/MEDIUM: http/compression: Fix how chunked data are copied during the HTTP body parsing
15375 - BUG/MINOR: stats: report the correct conn_time in backend's html output
15376 - BUG/MEDIUM: dns: don't randomly crash on out-of-memory
15377 - MINOR: Add fe_req_rate sample fetch
15378 - MEDIUM: peers: Fix a peer stick-tables synchronization issue.
15379 - MEDIUM: cli: register CLI keywords with cli_register_kw()
15380 - BUILD: Make use of accept4() on OpenBSD.
15381 - MINOR: tcp: make set-src/set-src-port and set-dst/set-dst-port commutative
15382 - DOC: fix missed entry for "set-{src,dst}{,-port}"
15383 - BUG/MINOR: vars: use sess and not s->sess in action_store()
15384 - BUG/MINOR: vars: make smp_fetch_var() more robust against misuses
15385 - BUG/MINOR: vars: smp_fetch_var() doesn't depend on HTTP but on the session
15386 - MINOR: stats: output dcon
15387 - CLEANUP: tcp rules: mention everywhere that tcp-conn rules are L4
15388 - MINOR: counters: add new fields for denied_sess
15389 - MEDIUM: tcp: add registration and processing of TCP L5 rules
15390 - MINOR: stats: emit dses
15391 - DOC: document tcp-request session
15392 - MINOR: ssl: add debug traces
15393 - BUILD/CLEANUP: ssl: Check BIO_reset() return code
15394 - BUG/MINOR: ssl: Check malloc return code
15395 - BUG/MINOR: ssl: prevent multiple entries for the same certificate
15396 - BUG/MINOR: systemd: make the wrapper return a non-null status code on error
15397 - BUG/MINOR: systemd: always restore signals before execve()
15398 - BUG/MINOR: systemd: check return value of calloc()
15399 - MINOR: systemd: report it when execve() fails
15400 - BUG/MEDIUM: systemd: let the wrapper know that haproxy has completed or failed
15401 - MINOR: proxy: add 'served' field to proxy, equal to total of all servers'
15402 - MINOR: backend: add hash-balance-factor option for hash-type consistent
15403 - MINOR: server: compute a "cumulative weight" to allow chash balancing to hit its target
15404 - MEDIUM: server: Implement bounded-load hash algorithm
15405 - SCRIPTS: make git-show-backports also dump a "git show" command
15406 - MINOR: build: Allow linking to device-atlas library file
15407 - MINOR: stats: Escape equals sign on socket dump
15408
Willy Tarreau41d5e3a2016-08-14 12:25:21 +0200154092016/08/14 : 1.7-dev4
15410 - MINOR: add list_append_word function
15411 - MEDIUM: init: use list_append_word in haproxy.c
15412 - MEDIUM: init: allow directory as argument of -f
15413 - CLEANUP: config: detect double registration of a config section
15414 - MINOR: log: add the %Td log-format specifier
15415 - MEDIUM: filters: Move HTTP headers filtering in its own callback
15416 - MINOR: filters: Simplify calls to analyzers using 2 new macros
15417 - MEDIUM: filters: Add pre and post analyzer callbacks
15418 - DOC: filters: Update the filters documentation accordingly to recent changes
15419 - BUG/MEDIUM: init: don't use environment locale
15420 - SCRIPTS: teach git-show-backports how to report upstream commits
15421 - SCRIPTS: make git-show-backports capable of limiting its history
15422 - BUG/MAJOR: fix listening IP address storage for frontends
15423 - BUG/MINOR: fix listening IP address storage for frontends (cont)
15424 - DOC: Fix typo so fetch is properly parsed by Cyril's converter
15425 - BUG/MAJOR: http: fix breakage of "reqdeny" causing random crashes
15426 - BUG/MEDIUM: stick-tables: fix breakage in table converters
15427 - MINOR: stick-table: change all stick-table converters' inputs to SMP_T_ANY
15428 - BUG/MEDIUM: dns: unbreak DNS resolver after header fix
15429 - BUILD: fix build on Solaris 11
15430 - BUG/MEDIUM: config: fix multiple declaration of section parsers
15431 - BUG/MEDIUM: stats: show servers state may show an servers from another backend
15432 - BUG/MEDIUM: fix risk of segfault with "show tls-keys"
15433 - MEDIUM: dumpstats: 'show tls-keys' is now able to show secrets
15434 - DOC: update doc about tls-tickets-keys dump
15435 - MEDIUM: tcp: add 'set-src' to 'tcp-request connection'
15436 - MINOR: set the CO_FL_ADDR_FROM_SET flags with 'set-src'
15437 - MEDIUM: tcp/http: add 'set-src-port' action
15438 - MEDIUM: tcp/http: new set-dst/set-dst-port actions
15439 - BUG/MEDIUM: sticktables: segfault in some configuration error cases
15440 - BUILD/MEDIUM: rebuild everything when an include file is changed
15441 - BUILD/MEDIUM: force a full rebuild if some build options change
15442 - BUG/MEDIUM: lua: converters doesn't work
15443 - BUG/MINOR: http: add-header: header name copied twice
15444 - BUG/MEDIUM: http: add-header: buffer overwritten
15445 - BUG/MINOR: ssl: fix potential memory leak in ssl_sock_load_dh_params()
15446 - MINOR: stream: export the function 'smp_create_src_stkctr'
15447 - BUG/MEDIUM: dumpstats: undefined behavior in stats_tlskeys_list()
15448 - MEDIUM: dumpstats: make stats_tlskeys_list() yield-aware during tls-keys dump
15449 - BUG/MINOR: http: url32+src should use the big endian version of url32
15450 - BUG/MINOR: http: url32+src should check cli_conn before using it
15451 - DOC: http: add documentation for url32 and url32+src
15452 - BUG/MINOR: fix http-response set-log-level parsing error
15453 - MINOR: systemd: Use variable for config and pidfile paths
15454 - MINOR: systemd: Perform sanity check on config before reload
15455 - MEDIUM: ssl: support SNI filters with multicerts
15456 - MINOR: ssl: crt-list parsing factor
15457 - BUILD: ssl: fix typo causing a build failure in the multicert patch
15458 - MINOR: listener: add the "accept-netscaler-cip" option to the "bind" keyword
15459 - MINOR: tcp: add "tcp-request connection expect-netscaler-cip layer4"
15460 - BUG/MINOR: init: always ensure that global.rlimit_nofile matches actual limits
15461 - BUG/MINOR: init: ensure that FD limit is raised to the max allowed
15462 - BUG/MEDIUM: external-checks: close all FDs right after the fork()
15463 - BUG/MAJOR: external-checks: use asynchronous signal delivery
15464 - BUG/MINOR: external-checks: do not unblock undesired signals
15465 - CLEANUP: external-check: don't block/unblock SIGCHLD when manipulating the list
15466 - BUG/MEDIUM: filters: Fix data filtering when data are modified
15467 - BUG/MINOR: filters: Fix HTTP parsing when a filter loops on data forwarding
15468 - BUG/MINOR: srv-state: fix incorrect output of state file
15469 - BUG/MINOR: ssl: close ssl key file on error
15470 - BUG/MINOR: http: fix misleading error message for response captures
15471 - BUG/BUILD: don't automatically run "make" on "make install"
15472 - DOC: add missing doc for http-request deny [deny_status <status>]
15473 - CLEANUP: dumpstats: u64 field is an unsigned type.
15474 - BUG/MEDIUM: http: unbreak uri/header/url_param hashing
15475 - BUG/MINOR: Rework slightly commit 9962f8fc to clean code and avoid mistakes
15476 - MINOR: new function my_realloc2 = realloc + free upon failure
15477 - CLEANUP: fixed some usages of realloc leading to memory leak
15478 - Revert "BUG/MINOR: ssl: fix potential memory leak in ssl_sock_load_dh_params()"
15479 - CLEANUP: connection: using internal struct to hold source and dest port.
15480 - DOC: spelling fixes
15481 - BUG/MINOR: ssl: fix potential memory leak in ssl_sock_load_dh_params()
15482 - BUG/MEDIUM: dns: fix alignment issues in the DNS response parser
15483 - BUG/MINOR: Fix endiness issue in DNS header creation code
15484 - BUG/MEDIUM: lua: the function txn_done() from sample fetches can crash
15485 - BUG/MEDIUM: lua: the function txn_done() from action wrapper can crash
15486 - MEDIUM: http: implement http-response track-sc* directive
15487 - BUG/MINOR: peers: Fix peers data decoding issue
15488 - BUG/MINOR: peers: don't count track-sc multiple times on errors
15489 - MINOR: standard: add function "escape_string"
15490 - BUG/MEDIUM: log: use function "escape_string" instead of "escape_chunk"
15491 - MINOR: tcp: Return TCP statistics like RTT and RTT variance
15492 - DOC: lua: remove old functions
15493 - BUG/MEDIUM: lua: somme HTTP manipulation functions are called without valid requests
15494 - DOC: fix json converter example and error message
15495 - BUG/MEDIUM: stream-int: completely detach connection on connect error
15496 - DOC: minor typo fixes to improve HTML parsing by haproxy-dconv
15497 - BUILD: make proto_tcp.c compatible with musl library
15498 - BUG/MAJOR: compression: initialize avail_in/next_in even during flush
15499 - BUG/MEDIUM: samples: make smp_dup() always duplicate the sample
15500 - MINOR: sample: implement smp_is_safe() and smp_make_safe()
15501 - MINOR: sample: provide smp_is_rw() and smp_make_rw()
15502 - BUG/MAJOR: server: the "sni" directive could randomly cause trouble
15503 - BUG/MEDIUM: stick-tables: do not fail on string keys with no allocated size
15504 - BUG/MEDIUM: stick-table: properly convert binary samples to keys
15505 - MINOR: sample: use smp_make_rw() in upper/lower converters
15506 - MINOR: tcp: add dst_is_local and src_is_local
15507 - BUG/MINOR: peers: some updates are pushed twice after a resync.
15508 - BUILD: protocol: fix some build errors on OpenBSD
15509 - BUILD: log: iovec requires to include sys/uio.h on OpenBSD
15510 - BUILD: tcp: do not include netinet/ip.h for IP_TTL
15511 - BUILD: connection: fix build breakage on openbsd due to missing in_systm.h
15512 - BUILD: checks: remove the last strcat and eliminate a warning on OpenBSD
15513 - BUILD: tcp: define SOL_TCP when only IPPROTO_TCP exists
15514 - BUILD: compression: remove a warning when no compression lib is used
15515 - BUILD: poll: remove unused hap_fd_isset() which causes a warning with clang
15516 - MINOR: tcp: add further tcp info fetchers
15517 - BUG/MINOR: peers: empty chunks after a resync.
15518 - BUG/MAJOR: stick-counters: possible crash when using sc_trackers with wrong table
15519 - MINOR: standard.c: ipcmp() function to compare 2 IP addresses stored in 2 struct sockaddr_storage
15520 - MINOR: standard.c: ipcpy() function to copy an IP address from a struct sockaddr_storage into an other one
15521 - MAJOR: listen section: don't use first bind port anymore when no server ports are provided
15522
Willy Tarreau7d1b48f2016-05-10 15:36:58 +0200155232016/05/10 : 1.7-dev3
15524 - MINOR: sample: Moves ARGS underlying type from 32 to 64 bits.
15525 - BUG/MINOR: log: Don't use strftime() which can clobber timezone if chrooted
15526 - BUILD: namespaces: fix a potential build warning in namespaces.c
15527 - MINOR: da: Using ARG12 macro for the sample fetch and the convertor.
15528 - DOC: add encoding to json converter example
15529 - BUG/MINOR: conf: "listener id" expects integer, but its not checked
15530 - DOC: Clarify tunes.vars.xxx-max-size settings
15531 - CLEANUP: chunk: adding NULL check to chunk_dup allocation.
15532 - CLEANUP: connection: fix double negation on memcmp()
15533 - BUG/MEDIUM: peers: fix incorrect age in frequency counters
15534 - BUG/MEDIUM: Fix RFC5077 resumption when more than TLS_TICKETS_NO are present
15535 - BUG/MAJOR: Fix crash in http_get_fhdr with exactly MAX_HDR_HISTORY headers
15536 - BUG/MINOR: lua: can't load external libraries
15537 - BUG/MINOR: prevent the dump of uninitialized vars
15538 - CLEANUP: map: it seems that the map were planed to be chained
15539 - MINOR: lua: move class registration facilities
15540 - MINOR: lua: remove some useless checks
15541 - CLEANUP: lua: Remove two same functions
15542 - MINOR: lua: refactor the Lua object registration
15543 - MINOR: lua: precise message when a critical error is catched
15544 - MINOR: lua: post initialization
15545 - MINOR: lua: Add internal function which strip spaces
15546 - MINOR: lua: convert field to lua type
15547 - DOC: "addr" parameter applies to both health and agent checks
15548 - DOC: timeout client: pointers to timeout http-request
15549 - DOC: typo on stick-store response
15550 - DOC: stick-table: amend paragraph blaming the loss of table upon reload
15551 - DOC: typo: ACL subdir match
15552 - DOC: typo: maxconn paragraph is wrong due to a wrong buffer size
15553 - DOC: regsub: parser limitation about the inability to use closing square brackets
15554 - DOC: typo: req.uri is now replaced by capture.req.uri
15555 - DOC: name set-gpt0 mismatch with the expected keyword
15556 - MINOR: http: sample fetch which returns unique-id
15557 - MINOR: dumpstats: extract stats fields enum and names
15558 - MINOR: dumpstats: split stats_dump_info_to_buffer() in two parts
15559 - MINOR: dumpstats: split stats_dump_fe_stats() in two parts
15560 - MINOR: dumpstats: split stats_dump_li_stats() in two parts
15561 - MINOR: dumpstats: split stats_dump_sv_stats() in two parts
15562 - MINOR: dumpstats: split stats_dump_be_stats() in two parts
15563 - MINOR: lua: dump general info
15564 - MINOR: lua: add class proxy
15565 - MINOR: lua: add class server
15566 - MINOR: lua: add class listener
15567 - BUG/MEDIUM: stick-tables: some sample-fetch doesn't work in the connection state.
15568 - MEDIUM: proxy: use dynamic allocation for error dumps
15569 - CLEANUP: remove unneeded casts
15570 - CLEANUP: uniformize last argument of malloc/calloc
15571 - DOC: fix "needed" typo
15572 - BUG/MINOR: dumpstats: fix write to global chunk
15573 - BUG/MINOR: dns: inapropriate way out after a resolution timeout
15574 - BUG/MINOR: dns: trigger a DNS query type change on resolution timeout
15575 - CLEANUP: proto_http: few corrections for gcc warnings.
15576 - BUG/MINOR: DNS: resolution structure change
15577 - BUG/MINOR : allow to log cookie for tarpit and denied request
15578 - BUG/MEDIUM: ssl: rewind the BIO when reading certificates
15579 - OPTIM/MINOR: session: abort if possible before connecting to the backend
15580 - DOC: http: rename the unique-id sample and add the documentation
15581 - BUG/MEDIUM: trace.c: rdtsc() is defined in two files
15582 - BUG/MEDIUM: channel: fix miscalculation of available buffer space (2nd try)
15583 - BUG/MINOR: server: risk of over reading the pref_net array.
15584 - BUG/MINOR: cfgparse: couple of small memory leaks.
15585 - BUG/MEDIUM: sample: initialize the pointer before parse_binary call.
15586 - DOC: fix discrepancy in the example for http-request redirect
15587 - MINOR: acl: Add predefined METH_DELETE, METH_PUT
15588 - CLEANUP: .gitignore cleanup
15589 - DOC: Clarify IPv4 address / mask notation rules
15590 - CLEANUP: fix inconsistency between fd->iocb, proto->accept and accept()
15591 - BUG/MEDIUM: fix maxaccept computation on per-process listeners
15592 - BUG/MINOR: listener: stop unbound listeners on startup
15593 - BUG/MINOR: fix maxaccept computation according to the frontend process range
15594 - TESTS: add blocksig.c to run tests with all signals blocked
15595 - MEDIUM: unblock signals on startup.
15596 - MINOR: filters: Print the list of existing filters during HA startup
15597 - MINOR: filters: Typo in an error message
15598 - MINOR: filters: Filters must define the callbacks struct during config parsing
15599 - DOC: filters: Add filters documentation
15600 - BUG/MEDIUM: channel: don't allow to overwrite the reserve until connected
15601 - BUG/MEDIUM: channel: incorrect polling condition may delay event delivery
15602 - BUG/MEDIUM: channel: fix miscalculation of available buffer space (3rd try)
15603 - BUG/MEDIUM: log: fix risk of segfault when logging HTTP fields in TCP mode
15604 - MINOR: Add ability for agent-check to set server maxconn
15605 - CLEANUP: Use server_parse_maxconn_change_request for maxconn CLI updates
15606 - MINOR: filters: add opaque data
15607 - BUG/MEDIUM: lua: protects the upper boundary of the argument list for converters/fetches.
15608 - MINOR: lua: migrate the argument mask to 64 bits type.
15609 - BUG/MINOR: dumpstats: Fix the "Total bytes saved" counter in backends stats
15610 - BUG/MINOR: log: fix a typo that would cause %HP to log <BADREQ>
15611 - BUG/MEDIUM: http: fix incorrect reporting of server errors
15612 - MINOR: channel: add new function channel_congested()
15613 - BUG/MEDIUM: http: fix risk of CPU spikes with pipelined requests from dead client
15614 - BUG/MAJOR: channel: fix miscalculation of available buffer space (4th try)
15615 - BUG/MEDIUM: stream: ensure the SI_FL_DONT_WAKE flag is properly cleared
15616 - BUG/MEDIUM: channel: fix inconsistent handling of 4GB-1 transfers
15617 - BUG/MEDIUM: stats: show servers state may show an empty or incomplete result
15618 - BUG/MEDIUM: stats: show backend may show an empty or incomplete result
15619 - MINOR: stats: fix typo in help messages
15620 - MINOR: stats: show stat resolvers missing in the help message
15621 - BUG/MINOR: dns: fix DNS header definition
15622 - BUG/MEDIUM: dns: fix alignment issue when building DNS queries
15623 - CLEANUP: don't ignore scripts in .gitignore
15624 - BUILD: add a few release and backport scripts in scripts/
15625
Willy Tarreau8234f6d2016-03-14 00:10:05 +0100156262016/03/14 : 1.7-dev2
15627 - DOC: lua: fix lua API
15628 - DOC: mailers: typo in 'hostname' description
15629 - DOC: compression: missing mention of libslz for compression algorithm
15630 - BUILD/MINOR: regex: missing header
15631 - BUG/MINOR: stream: bad return code
15632 - DOC: lua: fix somme errors and add implicit types
15633 - MINOR: lua: add set/get priv for applets
15634 - BUG/MINOR: http: fix several off-by-one errors in the url_param parser
15635 - BUG/MINOR: http: Be sure to process all the data received from a server
15636 - MINOR: filters/http: Use a wrapper function instead of stream_int_retnclose
15637 - BUG/MINOR: chunk: make chunk_dup() always check and set dst->size
15638 - DOC: ssl: fixed some formatting errors in crt tag
15639 - MINOR: chunks: ensure that chunk_strcpy() adds a trailing zero
15640 - MINOR: chunks: add chunk_strcat() and chunk_newstr()
15641 - MINOR: chunk: make chunk_initstr() take a const string
15642 - MEDIUM: tools: add csv_enc_append() to preserve the original chunk
15643 - MINOR: tools: make csv_enc_append() always start at the first byte of the chunk
15644 - MINOR: lru: new function to delete <nb> least recently used keys
15645 - DOC: add Ben Shillito as the maintainer of 51d
15646 - BUG/MINOR: 51d: Ensures a unique domain for each configuration
15647 - BUG/MINOR: 51d: Aligns Pattern cache implementation with HAProxy best practices.
15648 - BUG/MINOR: 51d: Releases workset back to pool.
15649 - BUG/MINOR: 51d: Aligned const pointers to changes in 51Degrees.
15650 - CLEANUP: 51d: Aligned if statements with HAProxy best practices and removed casts from malloc.
15651 - MINOR: rename master process name in -Ds (systemd mode)
15652 - DOC: fix a few spelling mistakes
15653 - DOC: fix "workaround" spelling
15654 - BUG/MINOR: examples: Fixing haproxy.spec to remove references to .cfg files
15655 - MINOR: fix the return type for dns_response_get_query_id() function
15656 - MINOR: server state: missing LF (\n) on error message printed when parsing server state file
15657 - BUG/MEDIUM: dns: no DNS resolution happens if no ports provided to the nameserver
15658 - BUG/MAJOR: servers state: server port is erased when dns resolution is enabled on a server
15659 - BUG/MEDIUM: servers state: server port is used uninitialized
15660 - BUG/MEDIUM: config: Adding validation to stick-table expire value.
15661 - BUG/MEDIUM: sample: http_date() doesn't provide the right day of the week
15662 - BUG/MEDIUM: channel: fix miscalculation of available buffer space.
15663 - MEDIUM: pools: add a new flag to avoid rounding pool size up
15664 - BUG/MEDIUM: buffers: do not round up buffer size during allocation
15665 - BUG/MINOR: stream: don't force retries if the server is DOWN
15666 - BUG/MINOR: counters: make the sc-inc-gpc0 and sc-set-gpt0 touch the table
15667 - MINOR: unix: don't mention free ports on EAGAIN
15668 - BUG/CLEANUP: CLI: report the proper field states in "show sess"
15669 - MINOR: stats: send content-length with the redirect to allow keep-alive
15670 - BUG: stream_interface: Reuse connection even if the output channel is empty
15671 - DOC: remove old tunnel mode assumptions
15672 - BUG/MAJOR: http-reuse: fix risk of orphaned connections
15673 - BUG/MEDIUM: http-reuse: do not share private connections across backends
15674 - BUG/MINOR: ssl: Be sure to use unique serial for regenerated certificates
15675 - BUG/MINOR: stats: fix missing comma in stats on agent drain
15676 - MAJOR: filters: Add filters support
15677 - MINOR: filters: Do not reset stream analyzers if the client is gone
15678 - REORG: filters: Prepare creation of the HTTP compression filter
15679 - MAJOR: filters/http: Rewrite the HTTP compression as a filter
15680 - MEDIUM: filters: Use macros to call filters callbacks to speed-up processing
15681 - MEDIUM: filters: remove http_start_chunk, http_last_chunk and http_chunk_end
15682 - MEDIUM: filters: Replace filter_http_headers callback by an analyzer
15683 - MEDIUM: filters/http: Move body parsing of HTTP messages in dedicated functions
15684 - MINOR: filters: Add stream_filters structure to hide filters info
15685 - MAJOR: filters: Require explicit registration to filter HTTP body and TCP data
15686 - MINOR: filters: Remove unused or useless stuff and do small optimizations
15687 - MEDIUM: filters: Optimize the HTTP compression for chunk encoded response
15688 - MINOR: filters/http: Slightly update the parsing of chunks
15689 - MINOR: filters/http: Forward remaining data when a channel has no "data" filters
15690 - MINOR: filters: Add an filter example
15691 - MINOR: filters: Extract proxy stuff from the struct filter
15692 - MINOR: map: Add regex matching replacement
15693 - BUG/MINOR: lua: unsafe initialization
15694 - DOC: lua: fix somme errors
15695 - MINOR: lua: file dedicated to unsafe functions
15696 - MINOR: lua: add "now" time function
15697 - MINOR: standard: add RFC HTTP date parser
15698 - MINOR: lua: Add date functions
15699 - MINOR: lua: move common function
15700 - MINOR: lua: merge function
15701 - MINOR: lua: Add concat class
15702 - MINOR: standard: add function "escape_chunk"
15703 - MEDIUM: log: add a new log format flag "E"
15704 - DOC: add server name at rate-limit sessions example
15705 - BUG/MEDIUM: ssl: fix off-by-one in ALPN list allocation
15706 - BUG/MEDIUM: ssl: fix off-by-one in NPN list allocation
15707 - DOC: LUA: fix some typos and syntax errors
15708 - MINOR: cli: add a new "show env" command
15709 - MEDIUM: config: allow to manipulate environment variables in the global section
15710 - MEDIUM: cfgparse: reject incorrect 'timeout retry' keyword spelling in resolvers
15711 - MINOR: mailers: increase default timeout to 10 seconds
15712 - MINOR: mailers: use <CRLF> for all line endings
15713 - BUG/MAJOR: lua: segfault using Concat object
15714 - DOC: lua: copyrights
15715 - MINOR: common: mask conversion
15716 - MEDIUM: dns: extract options
15717 - MEDIUM: dns: add a "resolve-net" option which allow to prefer an ip in a network
15718 - MINOR: mailers: make it possible to configure the connection timeout
15719 - BUG/MAJOR: lua: applets can't sleep.
15720 - BUG/MINOR: server: some prototypes are renamed
15721 - BUG/MINOR: lua: Useless copy
15722 - BUG/MEDIUM: stats: stats bind-process doesn't propagate the process mask correctly
15723 - BUG/MINOR: server: fix the format of the warning on address change
15724 - CLEANUP: server: add "const" to some message strings
15725 - MINOR: server: generalize the "updater" source
15726 - BUG/MEDIUM: chunks: always reject negative-length chunks
15727 - BUG/MINOR: systemd: ensure we don't miss signals
15728 - BUG/MINOR: systemd: report the correct signal in debug message output
15729 - BUG/MINOR: systemd: propagate the correct signal to haproxy
15730 - MINOR: systemd: ensure a reload doesn't mask a stop
15731 - BUG/MEDIUM: cfgparse: wrong argument offset after parsing server "sni" keyword
15732 - CLEANUP: stats: Avoid computation with uninitialized bits.
15733 - CLEANUP: pattern: Ignore unknown samples in pat_match_ip().
15734 - CLEANUP: map: Avoid memory leak in out-of-memory condition.
15735 - BUG/MINOR: tcpcheck: fix incorrect list usage resulting in failure to load certain configs
15736 - BUG/MAJOR: samples: check smp->strm before using it
15737 - MINOR: sample: add a new helper to initialize the owner of a sample
15738 - MINOR: sample: always set a new sample's owner before evaluating it
15739 - BUG/MAJOR: vars: always retrieve the stream and session from the sample
15740 - CLEANUP: payload: remove useless and confusing nullity checks for channel buffer
15741 - BUG/MINOR: ssl: fix usage of the various sample fetch functions
15742 - MINOR: stats: create fields types suitable for all CSV output data
15743 - MINOR: stats: add all the "show info" fields in a table
15744 - MEDIUM: stats: fill all the show info elements prior to displaying them
15745 - MINOR: stats: add a function to emit fields into a chunk
15746 - MINOR: stats: add stats_dump_info_fields() to dump one field per line
15747 - MEDIUM: stats: make use of stats_dump_info_fields() for "show info"
15748 - MINOR: stats: add a declaration of all stats fields
15749 - MINOR: stats: don't hard-code the CSV fields list anymore
15750 - MINOR: stats: create stats fields storage and CSV dump function
15751 - MEDIUM: stats: convert stats_dump_fe_stats() to use stats_dump_fields_csv()
15752 - MEDIUM: stats: make stats_dump_fe_stats() use stats fields for HTML dump
15753 - MEDIUM: stats: convert stats_dump_li_stats() to use stats_dump_fields_csv()
15754 - MEDIUM: stats: make stats_dump_li_stats() use stats fields for HTML dump
15755 - MEDIUM: stats: convert stats_dump_be_stats() to use stats_dump_fields_csv()
15756 - MEDIUM: stats: make stats_dump_be_stats() use stats fields for HTML dump
15757 - MEDIUM: stats: convert stats_dump_sv_stats() to use stats_dump_fields_csv()
15758 - MEDIUM: stats: make stats_dump_sv_stats() use the stats field for HTML
15759 - MEDIUM: stats: move the server state coloring logic to the server dump function
15760 - MINOR: stats: do not use srv->admin & STATS_ADMF_MAINT in HTML dumps
15761 - MINOR: stats: do not check srv->state for SRV_ST_STOPPED in HTML dumps
15762 - MINOR: stats: make CSV report server check status only when enabled
15763 - MINOR: stats: only report backend's down time if it has servers
15764 - MINOR: stats: prepend '*' in front of the check status when in progress
15765 - MINOR: stats: make HTML stats dump rely on the table for the check status
15766 - MINOR: stats: add agent_status, agent_code, agent_duration to output
15767 - MINOR: stats: add check_desc and agent_desc to the output fields
15768 - MINOR: stats: add check and agent's health values in the output
15769 - MEDIUM: stats: make the HTML server state dump use the CSV states
15770 - MEDIUM: stats: only report observe errors when observe is set
15771 - MEDIUM: stats: expose the same flags for CLI and HTTP accesses
15772 - MEDIUM: stats: report server's address in the CSV output
15773 - MEDIUM: stats: report the cookie value in the server & backend CSV dumps
15774 - MEDIUM: stats: compute the color code only in the HTML form
15775 - MEDIUM: stats: report the listeners' address in the CSV output
15776 - MEDIUM: stats: make it possible to report the WAITING state for listeners
15777 - REORG: stats: dump the frontend's HTML stats via a generic function
15778 - REORG: stats: dump the socket stats via the generic function
15779 - REORG: stats: dump the server stats via the generic function
15780 - REORG: stats: dump the backend stats via the generic function
15781 - MEDIUM: stats: add a new "mode" column to report the proxy mode
15782 - MINOR: stats: report the load balancing algorithm in CSV output
15783 - MINOR: stats: add 3 fields to report the frontend-specific connection stats
15784 - MINOR: stats: report number of intercepted requests for frontend and backends
15785 - MINOR: stats: introduce stats_dump_one_line() to dump one stats line
15786 - CLEANUP: stats: make stats_dump_fields_html() not rely on proxy anymore
15787 - MINOR: stats: add ST_SHOWADMIN to pass the admin info in the regular flags
15788 - MINOR: stats: make stats_dump_fields_html() not use &trash by default
15789 - MINOR: stats: add functions to emit typed fields into a chunk
15790 - MEDIUM: stats: support "show info typed" on the CLI
15791 - MEDIUM: stats: implement a typed output format for stats
15792 - DOC: document the "show info typed" and "show stat typed" output formats
15793 - MINOR: cfgparse: warn when uid parameter is not a number
15794 - MINOR: cfgparse: warn when gid parameter is not a number
15795 - BUG/MINOR: standard: Avoid free of non-allocated pointer
15796 - BUG/MINOR: pattern: Avoid memory leak on out-of-memory condition
15797 - CLEANUP: http: fix a build warning introduced by a recent fix
15798 - BUG/MINOR: log: GMT offset not updated when entering/leaving DST
15799
Willy Tarreaucb928252015-12-20 23:33:18 +0100158002015/12/20 : 1.7-dev1
15801 - DOC: specify that stats socket doc (section 9.2) is in management
15802 - BUILD: install only relevant and existing documentation
15803 - CLEANUP: don't ignore debian/ directory if present
15804 - BUG/MINOR: dns: parsing error of some DNS response
15805 - BUG/MEDIUM: namespaces: don't fail if no namespace is used
15806 - BUG/MAJOR: ssl: free the generated SSL_CTX if the LRU cache is disabled
15807 - MEDIUM: dns: Don't use the ANY query type
15808 - BUILD: ssl: fix build error introduced in commit 7969a3 with OpenSSL < 1.0.0
15809 - DOC: fix a typo for a "deviceatlas" keyword
15810 - FIX: small typo in an example using the "Referer" header
15811 - MINOR: cli: ability to set per-server maxconn
15812 - DEBUG/MINOR: memory: add a build option to disable memory pools sharing
15813 - DEBUG/MEDIUM: memory: optionally protect free data in pools
15814 - DEBUG/MEDIUM: memory: add optional control pool memory operations
15815 - MEDIUM: memory: add accounting for failed allocations
15816 - BUG/MEDIUM: config: count memory limits on 64 bits, not 32
15817 - BUG/MAJOR: dns: first DNS response packet not matching queried hostname may lead to a loop
15818 - BUG/MINOR: dns: unable to parse CNAMEs response
15819 - BUG/MINOR: examples/haproxy.init: missing brace in quiet_check()
15820 - DOC: deviceatlas: more example use cases.
15821 - MINOR: config: allow IPv6 bracketed literals
15822 - BUG/BUILD: replace haproxy-systemd-wrapper with $(EXTRA) in install-bin.
15823 - BUILD: add Haiku as supported target.
15824 - BUG/MAJOR: http: don't requeue an idle connection that is already queued
15825 - DOC: typo on capture.res.hdr and capture.req.hdr
15826 - BUG/MINOR: dns: check for duplicate nameserver id in a resolvers section was missing
15827 - CLEANUP: use direction names in place of numeric values
15828 - BUG/MEDIUM: lua: sample fetches based on response doesn't work
15829 - MINOR: check: add agent-send server parameter
15830 - BUG/MINOR: http rule: http capture 'id' rule points to a non existing id
15831 - BUG/MINOR: server: check return value of fgets() in apply_server_state()
15832 - BUG/MINOR: acl: don't use record layer in req_ssl_ver
15833 - BUILD: freebsd: double declaration
15834 - BUG/MEDIUM: lua: clean output buffer
15835 - BUILD: check for libressl to be able to build against it
15836 - DOC: lua-api/index.rst small example fixes, spelling correction.
15837 - DOC: lua: architecture and first steps
15838 - DOC: relation between timeout http-request and option http-buffer-request
15839 - BUILD: Make deviceatlas require PCRE
15840 - BUG: http: do not abort keep-alive connections on server timeout
15841 - BUG/MEDIUM: http: switch the request channel to no-delay once done.
15842 - BUG/MINOR: lua: don't force-sslv3 LUA's SSL socket
15843 - BUILD/MINOR: http: proto_http.h needs sample.h
15844 - BUG/MEDIUM: http: don't enable auto-close on the response side
15845 - BUG/MEDIUM: stream: fix half-closed timeout handling
15846 - CLEANUP: compression: don't allocate DEFAULT_MAXZLIBMEM without USE_ZLIB
15847 - BUG/MEDIUM: cli: changing compression rate-limiting must require admin level
15848 - BUG/MEDIUM: sample: urlp can't match an empty value
15849 - BUILD: dumpstats: silencing warning for printf format specifier / time_t
15850 - CLEANUP: proxy: calloc call inverted arguments
15851 - MINOR: da: silent logging by default and displaying DeviceAtlas support if built.
15852 - BUG/MEDIUM: da: stop DeviceAtlas processing in the convertor if there is no input.
15853 - DOC: Edited 51Degrees section of README/
15854 - BUG/MEDIUM: checks: email-alert not working when declared in defaults
15855 - BUG/MINOR: checks: email-alert causes a segfault when an unknown mailers section is configured
15856 - BUG/MINOR: checks: typo in an email-alert error message
15857 - BUG/MINOR: tcpcheck: conf parsing error when no port configured on server and last rule is a CONNECT with no port
15858 - BUG/MINOR: tcpcheck: conf parsing error when no port configured on server and first rule(s) is (are) COMMENT
15859 - BUG/MEDIUM: http: fix http-reuse when frontend and backend differ
15860 - DOC: prefer using http-request/response over reqXXX/rspXXX directives
15861 - CLEANUP: haproxy: using _GNU_SOURCE instead of __USE_GNU macro.
15862 - MINOR: ssl: Added cert_key_and_chain struct
15863 - MEDIUM: ssl: Added support for creating SSL_CTX with multiple certs
15864 - MINOR: ssl: Added multi cert support for crt-list config keyword
15865 - MEDIUM: ssl: Added multi cert support for loading crt directories
15866 - MEDIUM: ssl: Added support for Multi-Cert OCSP Stapling
15867 - BUILD: ssl: set SSL_SOCK_NUM_KEYTYPES with openssl < 1.0.2
15868 - MINOR: config: make tune.recv_enough configurable
15869 - BUG/MEDIUM: config: properly adjust maxconn with nbproc when memmax is forced
15870 - DOC: ssl: Adding docs for Multi-Cert bundling
15871 - BUG/MEDIUM: peers: table entries learned from a remote are pushed to others after a random delay.
15872 - BUG/MEDIUM: peers: old stick table updates could be repushed.
15873 - MINOR: lua: service/applet can have access to the HTTP headers when a POST is received
15874 - REORG/MINOR: lua: convert boolean "int" to bitfield
15875 - BUG/MEDIUM: lua: Lua applets must not fetch samples using http_txn
15876 - BUG/MINOR: lua: Lua applets must not use http_txn
15877 - BUG/MEDIUM: lua: Forbid HTTP applets from being called from tcp rulesets
15878 - BUG/MAJOR: lua: Do not force the HTTP analysers in use-services
15879 - CLEANUP: lua: bad error messages
15880 - CONTRIB: initiate a debugging suite to make debugging easier
15881
Willy Tarreau991b4782015-10-13 21:48:10 +0200158822015/10/13 : 1.7-dev0
15883 - exact copy of 1.6.0
15884
Willy Tarreau844028b2015-10-13 18:52:22 +0200158852015/10/13 : 1.6.0
15886 - BUG/MINOR: Handle interactive mode in cli handler
15887 - DOC: global section missing parameters
15888 - DOC: backend section missing parameters
15889 - DOC: stats paramaters available in frontend
15890 - MINOR: lru: do not allocate useless memory in lru64_lookup
15891 - BUG/MINOR: http: Add OPTIONS in supported http methods (found by find_http_meth)
15892 - BUG/MINOR: ssl: fix management of the cache where forged certificates are stored
15893 - MINOR: ssl: Release Servers SSL context when HAProxy is shut down
15894 - MINOR: ssl: Read the file used to generate certificates in any order
15895 - MINOR: ssl: Add support for EC for the CA used to sign generated certificates
15896 - MINOR: ssl: Add callbacks to set DH/ECDH params for generated certificates
15897 - BUG/MEDIUM: logs: fix time zone offset format in RFC5424
15898 - BUILD: Fix the build on OSX (htonll/ntohll)
15899 - BUILD: enable build on Linux/s390x
15900 - BUG/MEDIUM: lua: direction test failed
15901 - MINOR: lua: fix a spelling error in some error messages
15902 - CLEANUP: cli: ensure we can never double-free error messages
15903 - BUG/MEDIUM: lua: force server-close mode on Lua services
15904 - MEDIUM: init: support more command line arguments after pid list
15905 - MEDIUM: init: support a list of files on the command line
15906 - MINOR: debug: enable memory poisonning to use byte 0
15907 - BUILD: ssl: fix build error introduced by recent commit
15908 - BUG/MINOR: config: make the stats socket pass the correct proxy to the parsers
15909 - MEDIUM: server: implement TCP_USER_TIMEOUT on the server
15910 - DOC: mention the "namespace" options for bind and server lines
15911 - DOC: add the "management" documentation
15912 - DOC: move the stats socket documentation from config to management
15913 - MINOR: examples: update haproxy.spec to mention new docs
15914 - DOC: mention management.txt in README
15915 - DOC: remove haproxy-{en,fr}.txt
15916 - BUILD: properly report when USE_ZLIB and USE_SLZ are used together
15917 - MINOR: init: report use of libslz instead of "no compression"
15918 - CLEANUP: examples: remove some obsolete and confusing files
15919 - CLEANUP: examples: remove obsolete configuration file samples
15920 - CLEANUP: examples: fix the example file content-sw-sample.cfg
15921 - CLEANUP: examples: update sample file option-http_proxy.cfg
15922 - CLEANUP: examples: update sample file ssl.cfg
15923 - CLEANUP: tests: move a test file from examples/ to tests/
15924 - CLEANUP: examples: shut up warnings in transparent proxy example
15925 - CLEANUP: tests: removed completely obsolete test files
15926 - DOC: update ROADMAP to remove what was done in 1.6
15927 - BUG/MEDIUM: pattern: fixup use_after_free in the pat_ref_delete_by_id
15928
Willy Tarreau8c1ad712015-10-06 12:13:56 +0200159292015/10/06 : 1.6-dev7
15930 - MINOR: cli: Dump all resolvers stats if no resolver section is given
15931 - BUG: config: external-check command validation is checking for incorrect arguments.
15932 - DOC: documentation format cleanups
15933 - DOC: lua: few typos.
15934 - BUG/MEDIUM: str2ip: make getaddrinfo() consider local address selection policy
15935 - BUG/MEDIUM: logs: segfault writing to log from Lua
15936 - DOC: fix lua use-service example
15937 - MINOR: payload: add support for tls session ticket ext
15938 - MINOR: lua: remove the run flag
15939 - MEDIUM: lua: change the timeout execution
15940 - MINOR: lua: rename the tune.lua.applet-timeout
15941 - DOC: lua: update Lua doc
15942 - DOC: lua: update doc according with the last Lua changes
15943 - MINOR: http/tcp: fill the avalaible actions
15944 - DOC: reorder misplaced res.ssl_hello_type in the doc
15945 - BUG/MINOR: tcp: make silent-drop always force a TCP reset
15946 - CLEANUP: tcp: silent-drop: only drain the connection when quick-ack is disabled
15947 - BUILD: tcp: use IPPROTO_IP when SOL_IP is not available
15948 - BUILD: server: fix build warnings introduced by load-server-state
15949 - BUG/MEDIUM: server: fix misuse of format string in load-server-state's warnings
15950
Willy Tarreaue7ae6562015-09-28 23:46:27 +0200159512015/09/28 : 1.6-dev6
15952 - BUG/MAJOR: can't enable a server through the stat socket
15953 - MINOR: server: Macro definition for server-state
15954 - MINOR: cli: new stats socket command: show servers state
15955 - DOC: stats socket command: show servers state
15956 - MINOR: config: new global directive server-state-base
15957 - DOC: global directive server-state-base
15958 - MINOR: config: new global section directive: server-state-file
15959 - DOC: new global directive: server-state-file
15960 - MINOR: config: new backend directives: load-server-state-from-file and server-state-file-name
15961 - DOC: load-server-state-from-file
15962 - MINOR: init: server state loaded from file
15963 - MINOR: server: startup slowstart task when using seamless reload of HAProxy
15964 - MINOR: cli: new stats socket command: show backend
15965 - DOC: servers state seamless reload example
15966 - BUG: dns: can't connect UDP socket on FreeBSD
15967 - MINOR: cfgparse: New function cfg_unregister_sections()
15968 - MINOR: chunk: New function free_trash_buffers()
15969 - BUG/MEDIUM: main: Freeing a bunch of static pointers
15970 - MINOR: proto_http: Externalisation of previously internal functions
15971 - MINOR: global: Few new struct fields for da module
15972 - MAJOR: da: Update of the DeviceAtlas API module
15973 - DOC: DeviceAtlas new keywords
15974 - DOC: README: DeviceAtlas sample configuration updates
15975 - MEDIUM: log: replace sendto() with sendmsg() in __send_log()
15976 - MEDIUM: log: use a separate buffer for the header and for the message
15977 - MEDIUM: logs: remove the hostname, tag and pid part from the logheader
15978 - MEDIUM: logs: add support for RFC5424 header format per logger
15979 - MEDIUM: logs: add a new RFC5424 log-format for the structured-data
15980 - DOC: mention support for the RFC5424 syslog message format
15981 - MEDIUM: logs: have global.log_send_hostname not contain the trailing space
15982 - MEDIUM: logs: pass the trailing "\n" as an iovec
15983 - BUG/MEDIUM: peers: some table updates are randomly not pushed.
15984 - BUG/MEDIUM: peers: same table updates re-pushed after a re-connect
15985 - BUG/MINOR: fct peer_prepare_ackmsg should not use trash.
15986 - MINOR: http: made CHECK_HTTP_MESSAGE_FIRST accessible to other functions
15987 - MINOR: global: Added new fields for 51Degrees device detection
15988 - DOC: Added more explanation for 51Degrees V3.2
15989 - BUILD: Changed 51Degrees option to support V3.2
15990 - MAJOR: 51d: Upgraded to support 51Degrees V3.2 and new features
15991 - MINOR: 51d: Improved string handling for LRU cache
15992 - DOC: add references to rise/fall for the fastinter explanation
15993 - MINOR: support cpu-map feature through the compile option USE_CPU_AFFINITY on FreeBSD
15994 - BUG/MAJOR: lua: potential unexpected aborts()
15995 - BUG/MINOR: lua: breaks the log message if his size exceed one buffer
15996 - MINOR: action: add private configuration
15997 - MINOR: action: add reference to the original keywork matched for the called parser.
15998 - MINOR: lua: change actions registration
15999 - MEDIUM: proto_http: smp_prefetch_http initialize txn
16000 - MINOR: channel: rename function chn_sess to chn_strm
16001 - CLEANUP: lua: align defines
16002 - MINOR: http: export http_get_path() function
16003 - MINOR: http: export the get_reason() function
16004 - MINOR: http: export function http_msg_analyzer()
16005 - MINOR: http: split initialization
16006 - MINOR: lua: reset pointer after use
16007 - MINOR: lua: identify userdata objects
16008 - MEDIUM: lua: use the function lua_rawset in place of lua_settable
16009 - BUG/MAJOR: lua: segfault after the channel data is modified by some Lua action.
16010 - CLEANUP: lua: use calloc in place of malloc
16011 - BUG/MEDIUM: lua: longjmp function must be unregistered
16012 - BUG/MEDIUM: lua: forces a garbage collection
16013 - BUG/MEDIUM: lua: wakeup task on bad conditions
16014 - MINOR: standard: avoid DNS resolution from the function str2sa_range()
16015 - MINOR: lua: extend socket address to support non-IP families
16016 - MINOR: lua/applet: the cosocket applet should use appctx_wakeup in place of task_wakeup
16017 - BUG/MEDIUM: lua: socket destroy before reading pending data
16018 - MEDIUM: lua: change the GC policy
16019 - OPTIM/MEDIUM: lua: executes the garbage collector only when using cosocket
16020 - BUG/MEDIUM: lua: don't reset undesired flags in hlua_ctx_resume
16021 - MINOR: applet: add init function
16022 - MINOR: applet: add an execution timeout
16023 - MINOR: stream/applet: add use-service action
16024 - MINOR: lua: add AppletTCP class and service
16025 - MINOR: lua: add AppletHTTP class and service
16026 - DOC: lua: some documentation update
16027 - DOC: add the documentation about internal circular lists
16028 - DOC: add a CONTRIBUTING file
16029 - DOC: add a MAINTAINERS file
16030 - BUG/MAJOR: peers: fix a crash when stopping peers on unbound processes
16031 - DOC: update coding-style to reference checkpatch.pl
16032 - BUG/MEDIUM: stick-tables: fix double-decrement of tracked entries
16033 - BUG/MINOR: args: add name for ARGT_VAR
16034 - DOC: add more entries to MAINTAINERS
16035 - DOC: add more entries to MAINTAINERS
16036 - CLEANUP: stream-int: remove obsolete function si_applet_call()
16037 - BUG/MAJOR: cli: do not dereference strm_li()->proto->name
16038 - BUG/MEDIUM: http: do not dereference strm_li(stream)
16039 - BUG/MEDIUM: proxy: do not dereference strm_li(stream)
16040 - BUG/MEDIUM: stream: do not dereference strm_li(stream)
16041 - MINOR: stream-int: use si_release_endpoint() to close idle conns
16042 - BUG/MEDIUM: payload: make req.payload and payload_lv aware of dynamic buffers
16043 - BUG/MEDIUM: acl: always accept match "found"
16044 - MINOR: applet: rename applet_runq to applet_active_queue
16045 - BUG/MAJOR: applet: use a separate run queue to maintain list integrity
16046 - MEDIUM: stream-int: split stream_int_update_conn() into si- and conn-specific parts
16047 - MINOR: stream-int: implement a new stream_int_update() function
16048 - MEDIUM: stream-int: factor out the stream update functions
16049 - MEDIUM: stream-int: call stream_int_update() from si_update()
16050 - MINOR: stream-int: export stream_int_update_*
16051 - MINOR: stream-int: move the applet_pause call out of the stream updates
16052 - MEDIUM: stream-int: clean up the conditions to enable reading in si_conn_wake_cb
16053 - MINOR: stream-int: implement the stream_int_notify() function
16054 - MEDIUM: stream-int: use the same stream notification function for applets and conns
16055 - MEDIUM: stream-int: completely remove stream_int_update_embedded()
16056 - MINOR: stream-int: rename si_applet_done() to si_applet_wake_cb()
16057 - BUG/MEDIUM: applet: fix reporting of broken write situation
16058 - BUG/MINOR: stats: do not call cli_release_handler 3 times
16059 - BUG/MEDIUM: cli: properly handle closed output
16060 - MINOR: cli: do not call the release handler on internal error.
16061 - BUG/MEDIUM: stream-int: avoid double-call to applet->release
16062 - DEBUG: add p_malloc() to return a poisonned memory area
16063 - CLEANUP: lua: remove unneeded memset(0) after calloc()
16064 - MINOR: lua: use the proper applet wakeup mechanism
16065 - BUG/MEDIUM: lua: better fix for the protocol check
16066 - BUG/MEDIUM: lua: properly set the target on the connection
16067 - MEDIUM: actions: pass a new "flags" argument to custom actions
16068 - MEDIUM: actions: add new flag ACT_FLAG_FINAL to notify about last call
16069 - MEDIUM: http: pass ACT_FLAG_FINAL to custom actions
16070 - MEDIUM: lua: only allow actions to yield if not in a final call
16071 - DOC: clarify how to make use of abstract sockets in socat
16072 - CLEANUP: config: make the errorloc/errorfile messages less confusing
16073 - MEDIUM: action: add a new flag ACT_FLAG_FIRST
16074 - BUG/MINOR: config: check that tune.bufsize is always positive
16075 - MEDIUM: config: set tune.maxrewrite to 1024 by default
16076 - DOC: add David Carlier as maintainer of da.c
16077 - DOC: fix some broken unexpected unicode chars in the Lua doc.
16078 - BUG/MEDIUM: proxy: ignore stopped peers
16079 - BUG/MEDIUM: proxy: do not wake stopped proxies' tasks during soft_stop()
16080 - MEDIUM: init: completely deallocate unused peers
16081 - BUG/MEDIUM: tcp: fix inverted condition to call custom actions
16082 - DOC: remove outdated actions lists on tcp-request/response
16083 - MEDIUM: tcp: add new tcp action "silent-drop"
16084 - DOC: add URLs to optional libraries in the README
16085
Willy Tarreaua02e8a62015-09-14 12:23:10 +0200160862015/09/14 : 1.6-dev5
16087 - MINOR: dns: dns_resolution structure update: time_t to unsigned int
16088 - BUG/MEDIUM: dns: DNS resolution doesn't start
16089 - BUG/MAJOR: dns: dns client resolution infinite loop
16090 - MINOR: dns: coding style update
16091 - MINOR: dns: new bitmasks to use against DNS flags
16092 - MINOR: dns: dns_nameserver structure update: new counter for truncated response
16093 - MINOR: dns: New DNS response analysis code: DNS_RESP_TRUNCATED
16094 - MEDIUM: dns: handling of truncated response
16095 - MINOR: DNS client query type failover management
16096 - MINOR: dns: no expected DNS record type found
16097 - MINOR: dns: new flag to report that no IP can be found in a DNS response packet
16098 - BUG/MINOR: DNS request retry counter used for retry only
16099 - DOC: DNS documentation updated
16100 - MEDIUM: actions: remove ACTION_STOP
16101 - BUG/MEDIUM: lua: outgoing connection was broken since 1.6-dev2 (bis)
16102 - BUG/MINOR: lua: last log character truncated.
16103 - CLEANUP: typo: bad indent
16104 - CLEANUP: actions: missplaced includes
16105 - MINOR: build: missing header
16106 - CLEANUP: lua: Merge log functions
16107 - BUG/MAJOR: http: don't manipulate the server connection if it's killed
16108 - BUG/MINOR: http: remove stupid HTTP_METH_NONE entry
16109 - BUG/MAJOR: http: don't call http_send_name_header() after an error
16110 - MEDIUM: tools: make str2sa_range() optionally return the FQDN
16111 - BUG/MINOR: tools: make str2sa_range() report unresolvable addresses
16112 - BUG/MEDIUM: dns: use the correct server hostname when resolving
16113
Willy Tarreau61d301f2015-08-30 00:17:17 +0200161142015/08/30 : 1.6-dev4
16115 - MINOR: log: Add log-format variable %HQ, to log HTTP query strings
16116 - DOC: typo in 'redirect', 302 code meaning
16117 - DOC: typos in tcp-check expect examples
16118 - DOC: resolve-prefer default value and default-server update
16119 - MINOR: DNS counters: increment valid counter
16120 - BUG/MEDIUM: DNS resolution response parsing broken
16121 - MINOR: server: add new SRV_ADMF_CMAINT flag
16122 - MINOR: server SRV_ADMF_CMAINT flag doesn't imply SRV_ADMF_FMAINT
16123 - BUG/MEDIUM: dns: wrong first time DNS resolution
16124 - BUG/MEDIUM: lua: Lua tasks fail to start.
16125 - BUILD: add USE_LUA to BUILD_OPTIONS when it's used
16126 - DOC/MINOR: fix OpenBSD versions where haproxy works
16127 - MINOR: 51d: unable to start haproxy without "51degrees-data-file"
16128 - BUG/MEDIUM: peers: fix wrong message id on stick table updates acknowledgement.
16129 - BUG/MAJOR: peers: fix current table pointer not re-initialized on session release.
16130 - BUILD: ssl: Allow building against libssl without SSLv3.
16131 - DOC: clarify some points about SSL and the proxy protocol
16132 - DOC: mention support for RFC 5077 TLS Ticket extension in starter guide
16133 - BUG/MEDIUM: mailer: DATA part must be terminated with <CRLF>.<CRLF>
16134 - DOC: match several lua configuration option names to those implemented in code
16135 - MINOR cfgparse: Correct the mailer warning text to show the right names to the user
16136 - BUG/MINOR: ssl: TLS Ticket Key rotation broken via socket command
16137 - MINOR: stream: initialize the current_rule field to NULL on stream init
16138 - BUG/MEDIUM: lua: timeout error with converters, wrapper and actions.
16139 - CLEANUP: proto_http: remove useless initialisation
16140 - CLEANUP: http/tcp actions: remove the scope member
16141 - BUG/MINOR: proto_tcp: custom action continue is ignored
16142 - MINOR: proto_tcp: add session in the action prototype
16143 - MINOR: vars: reduce the code size of some wrappers
16144 - MINOR: Move http method enum from proto_http to sample
16145 - MINOR: sample: Add ipv6 to ipv4 and sint to ipv6 casts
16146 - MINOR: sample/proto_tcp: export "smp_fetch_src"
16147 - MEDIUM: cli: rely on the map's output type instead of the sample type
16148 - BUG/MEDIUM: stream: The stream doen't inherit SC from the session
16149 - BUG/MEDIUM: vars: segfault during the configuration parsing
16150 - BUG/MEDIUM: stick-tables: refcount error after copying SC for the session to the stream
16151 - BUG/MEDIUM: lua: bad error processing
16152 - MINOR: samples: rename a struct from sample_storage to sample_data
16153 - MINOR: samples: rename some struct member from "smp" to "data"
16154 - MEDIUM: samples: Use the "struct sample_data" in the "struct sample"
16155 - MINOR: samples: extract the anonymous union and create the union sample_value
16156 - MINOR: samples: rename union from "data" to "u"
16157 - MEDIUM: 51degrees: Adapt the 51Degrees library
16158 - MINOR: samples: data assignation simplification
16159 - MEDIUM: pattern/map: Maps can returns various types
16160 - MINOR: map: The map can return IPv4 and IPv6
16161 - MEDIUM: actions: Merge (http|tcp)-(request|reponse) action structs
16162 - MINOR: actions: Remove the data opaque pointer
16163 - MINOR: lua: use the hlua_rule type in place of opaque type
16164 - MINOR: vars: use the vars types as argument in place of opaque type
16165 - MINOR: proto_http: use an "expr" type in place of generic opaque type.
16166 - MINOR: proto_http: replace generic opaque types by real used types for the actions on thr request line
16167 - MINOR: proto_http: replace generic opaque types by real used types in "http_capture"
16168 - MINOR: proto_http: replace generic opaque types by real used types in "http_capture" by id
16169 - MEDIUM: track-sc: Move the track-sc configuration storage in the union
16170 - MEDIUM: capture: Move the capture configuration storage in the union
16171 - MINOR: actions: add "from" information
16172 - MINOR: actions: remove the mark indicating the last entry in enum
16173 - MINOR: actions: Declare all the embedded actions in the same header file
16174 - MINOR: actions: change actions names
16175 - MEDIUM: actions: Add standard return code for the action API
16176 - MEDIUM: actions: Merge (http|tcp)-(request|reponse) keywords structs
16177 - MINOR: proto_tcp: proto_tcp.h is now useles
16178 - MINOR: actions: mutualise the action keyword lookup
16179 - MEDIUM: actions: Normalize the return code of the configuration parsers
16180 - MINOR: actions: Remove wrappers
16181 - MAJOR: stick-tables: use sample types in place of dedicated types
16182 - MEDIUM: stick-tables: use the sample type names
16183 - MAJOR: stick-tables: remove key storage from the key struct
16184 - MEDIUM: stick-tables: Add GPT0 in the stick tables
16185 - MINOR: stick-tables: Add GPT0 access
16186 - MINOR: stick-tables: Add GPC0 actions
16187 - BUG/MEDIUM: lua: the lua fucntion Channel:close() causes a segfault
16188 - DOC: ssl: missing LF
16189 - MINOR: lua: add core.done() function
16190 - DOC: fix function name
16191 - BUG/MINOR: lua: in some case a sample may remain undefined
16192 - DOC: fix "http_action_set_req_line()" comments
16193 - MINOR: http: Action for manipulating the returned status code.
16194 - MEDIUM: lua: turns txn:close into txn:done
16195 - BUG/MEDIUM: lua: cannot process more Lua hooks after a "done()" function call
16196 - BUILD: link with libdl if needed for Lua support
16197 - CLEANUP: backend: factor out objt_server() in connect_server()
16198 - MEDIUM: backend: don't call si_alloc_conn() when we reuse a valid connection
16199 - MEDIUM: stream-int: simplify si_alloc_conn()
16200 - MINOR: stream-int: add new function si_detach_endpoint()
16201 - MINOR: server: add a list of private idle connections
16202 - MINOR: connection: add a new list member in the connection struct
16203 - MEDIUM: stream-int: queue idle connections at the server
16204 - MINOR: stream-int: make si_idle_conn() only accept valid connections
16205 - MINOR: server: add a list of already used idle connections
16206 - MINOR: connection: add a new flag CO_FL_PRIVATE
16207 - MINOR: config: add new setting "http-reuse"
16208 - MAJOR: backend: initial work towards connection reuse
16209 - MAJOR: backend: improve the connection reuse mechanism
16210 - MEDIUM: backend: implement "http-reuse safe"
16211 - MINOR: server: add a list of safe, already reused idle connections
16212 - MEDIUM: backend: add the "http-reuse aggressive" strategy
16213 - DOC: document the new http-reuse directive
16214 - DOC: internals: document next steps for HTTP connection reuse
16215 - DOC: mention that %ms is left-padded with zeroes.
16216 - MINOR: init: indicate to check 'bind' lines when no listeners were found.
16217 - MAJOR: http: remove references to appsession
16218 - CLEANUP: config: remove appsession initialization
16219 - CLEANUP: appsession: remove appsession.c and sessionhash.c
16220 - CLEANUP: tests: remove sessionhash_test.c and test-cookie-appsess.cfg
16221 - CLEANUP: proxy: remove last references to appsession
16222 - CLEANUP: appsession: remove the last include files
16223 - DOC: remove documentation about appsession
16224 - CLEANUP: .gitignore: ignore more test files
16225 - CLEANUP: .gitignore: finally ignore everything but what is known.
16226 - MEDIUM: config: emit a warning on a frontend without listener
16227 - DOC: add doc/internals/entities-v2.txt
16228 - DOC: add doc/linux-syn-cookies.txt
16229 - DOC: add design thoughts on HTTP/2
16230 - DOC: add some thoughts on connection sharing for HTTP/2
16231 - DOC: add design thoughts on dynamic buffer allocation
16232 - BUG/MEDIUM: counters: ensure that src_{inc,clr}_gpc0 creates a missing entry
16233 - DOC: add new file intro.txt
16234 - MAJOR: tproxy: remove support for cttproxy
16235 - BUG/MEDIUM: lua: outgoing connection was broken since 1.6-dev2
16236 - DOC: lua: replace txn:close with txn:done in lua-api
16237 - DOC: intro: minor updates and fixes
16238 - DOC: intro: fix too long line.
16239 - DOC: fix example of http-request using ssl_fc_session_id
16240 - BUG/MEDIUM: lua: txn:done() still causes a segfault in TCP mode
16241 - CLEANUP: lua: fix some indent issues
16242 - BUG/MEDIUM: lua: fix a segfault in txn:done() if called twice
16243 - DOC: lua: mention than txn:close was renamed txn:done.
16244
Willy Tarreau50bdda62015-07-22 17:32:56 +0200162452015/07/22 : 1.6-dev3
16246 - CLEANUP: sample: generalize sample_fetch_string() as sample_fetch_as_type()
16247 - MEDIUM: http: Add new 'set-src' option to http-request
16248 - DOC usesrc root privileges requirments
16249 - BUG/MINOR: dns: wrong time unit for some DNS default parameters
16250 - MINOR: proxy: bit field for proxy_find_best_match diff status
16251 - MINOR: server: new server flag: SRV_F_FORCED_ID
16252 - MINOR: server: server_find functions: id, name, best_match
16253 - DOC: dns: fix chapters syntax
16254 - BUILD/MINOR: tools: rename popcount to my_popcountl
16255 - BUILD: add netbsd TARGET
16256 - MEDIUM: 51Degrees code refactoring and cleanup
16257 - MEDIUM: 51d: add LRU-based cache on User-Agent string detection
16258 - DOC: add notes about the "51degrees-cache-size" parameter
16259 - BUG/MEDIUM: 51d: possible incorrect operations on smp->data.str.str
16260 - BUG/MAJOR: connection: fix TLV offset calculation for proxy protocol v2 parsing
16261 - MINOR: Add sample fetch to detect Supported Elliptic Curves Extension
16262 - BUG/MINOR: payload: Add volatile flag to smp_fetch_req_ssl_ec_ext
16263 - BUG/MINOR: lua: type error in the arguments wrapper
16264 - CLEANUP: vars: remove unused struct
16265 - BUG/MINOR: http/sample: gmtime/localtime can fail
16266 - MINOR: standard: add 64 bits conversion functions
16267 - MAJOR: sample: converts uint and sint in 64 bits signed integer
16268 - MAJOR: arg: converts uint and sint in sint
16269 - MEDIUM: sample: switch to saturated arithmetic
16270 - MINOR: vars: returns variable content
16271 - MEDIUM: vars/sample: operators can use variables as parameter
16272 - BUG/MINOR: ssl: fix smp_fetch_ssl_fc_session_id
16273 - BUILD/MINOR: lua: fix a harmless build warning
16274 - BUILD/MINOR: stats: fix build warning due to condition always true
16275 - BUG/MAJOR: lru: fix unconditional call to free due to unexpected semi-colon
16276 - BUG/MEDIUM: logs: fix improper systematic use of quotes with a few tags
16277 - BUILD/MINOR: lua: ensure that hlua_ctx_destroy is properly defined
16278 - BUG/MEDIUM: lru: fix possible memory leak when ->free() is used
16279 - MINOR: vars: make the accounting not depend on the stream
16280 - MEDIUM: vars: move the session variables to the session, not the stream
16281 - BUG/MEDIUM: vars: do not freeze the connection when the expression cannot be fetched
16282 - BUG/MAJOR: buffers: make the buffer_slow_realign() function respect output data
16283 - BUG/MAJOR: tcp: tcp rulesets were still broken
16284 - MINOR: stats: improve compression stats reporting
16285 - MINOR: ssl: make self-generated certs also work with raw IPv6 addresses
16286 - CLEANUP: ssl: make ssl_sock_generated_cert_serial() take a const
16287 - CLEANUP: ssl: make ssl_sock_generate_certificate() use ssl_sock_generated_cert_serial()
16288 - BUG/MINOR: log: missing some ARGC_* entries in fmt_directives()
16289 - MINOR: args: add new context for servers
16290 - MINOR: stream: maintain consistence between channel_forward and HTTP forward
16291 - MINOR: ssl: provide ia function to set the SNI extension on a connection
16292 - MEDIUM: ssl: add sni support on the server lines
16293 - CLEANUP: stream: remove a useless call to si_detach()
16294 - CLEANUP: stream-int: fix a few outdated comments about stream_int_register_handler()
16295 - CLEANUP: stream-int: remove stream_int_unregister_handler() and si_detach()
16296 - MINOR: stream-int: only use si_release_endpoint() to release a connection
16297 - MINOR: standard: provide htonll() and ntohll()
16298 - CLEANUP/MINOR: dns: dns_str_to_dn_label() only needs a const char
16299 - BUG/MAJOR: dns: fix the length of the string to be copied
16300
Willy Tarreauad90f0d2015-06-17 15:53:25 +0200163012015/06/17 : 1.6-dev2
16302 - BUG/MINOR: ssl: Display correct filename in error message
16303 - MEDIUM: logs: Add HTTP request-line log format directives
16304 - BUG/MEDIUM: check: tcpcheck regression introduced by e16c1b3f
16305 - BUG/MINOR: check: fix tcpcheck error message
16306 - MINOR: use an int instead of calling tcpcheck_get_step_id
16307 - MINOR: tcpcheck_rule structure update
16308 - MINOR: include comment in tcpcheck error log
16309 - DOC: tcpcheck comment documentation
16310 - MEDIUM: server: add support for changing a server's address
16311 - MEDIUM: server: change server ip address from stats socket
16312 - MEDIUM: protocol: add minimalist UDP protocol client
16313 - MEDIUM: dns: implement a DNS resolver
16314 - MAJOR: server: add DNS-based server name resolution
16315 - DOC: server name resolution + proto DNS
16316 - MINOR: dns: add DNS statistics
16317 - MEDIUM: http: configurable http result codes for http-request deny
16318 - BUILD: Compile clean when debug options defined
16319 - MINOR: lru: Add the possibility to free data when an item is removed
16320 - MINOR: lru: Add lru64_lookup function
16321 - MEDIUM: ssl: Add options to forge SSL certificates
16322 - MINOR: ssl: Export functions to manipulate generated certificates
16323 - MEDIUM: config: add DeviceAtlas global keywords
16324 - MEDIUM: global: add the DeviceAtlas required elements to struct global
16325 - MEDIUM: sample: add the da-csv converter
16326 - MEDIUM: init: DeviceAtlas initialization
16327 - BUILD: Makefile: add options to build with DeviceAtlas
16328 - DOC: README: explain how to build with DeviceAtlas
16329 - BUG/MEDIUM: http: fix the url_param fetch
16330 - BUG/MEDIUM: init: segfault if global._51d_property_names is not initialized
16331 - MAJOR: peers: peers protocol version 2.0
16332 - MINOR: peers: avoid re-scheduling of pending stick-table's updates still not pushed.
16333 - MEDIUM: peers: re-schedule stick-table's entry for sync when data is modified.
16334 - MEDIUM: peers: support of any stick-table data-types for sync
16335 - BUG/MAJOR: sample: regression on sample cast to stick table types.
16336 - CLEANUP: deinit: remove codes for cleaning p->block_rules
16337 - DOC: Fix L4TOUT typo in documentation
16338 - DOC: set-log-level in Logging section preamble
16339 - BUG/MEDIUM: compat: fix segfault on FreeBSD
16340 - MEDIUM: check: include server address and port in the send-state header
16341 - MEDIUM: backend: Allow redispatch on retry intervals
16342 - MINOR: Add TLS ticket keys reference and use it in the listener struct
16343 - MEDIUM: Add support for updating TLS ticket keys via socket
16344 - DOC: Document new socket commands "show tls-keys" and "set ssl tls-key"
16345 - MINOR: Add sample fetch which identifies if the SSL session has been resumed
16346 - DOC: Update doc about weight, act and bck fields in the statistics
16347 - BUG/MEDIUM: ssl: fix tune.ssl.default-dh-param value being overwritten
16348 - MINOR: ssl: add a destructor to free allocated SSL ressources
16349 - MEDIUM: ssl: add the possibility to use a global DH parameters file
16350 - MEDIUM: ssl: replace standards DH groups with custom ones
16351 - MEDIUM: stats: Add enum srv_stats_state
16352 - MEDIUM: stats: Separate server state and colour in stats
16353 - MEDIUM: stats: Only report drain state in stats if server has SRV_ADMF_DRAIN set
16354 - MEDIUM: stats: Differentiate between DRAIN and DRAIN (agent)
16355 - MEDIUM: Lower priority of email alerts for log-health-checks messages
16356 - MEDIUM: Send email alerts when servers are marked as UP or enter the drain state
16357 - MEDIUM: Document when email-alerts are sent
16358 - BUG/MEDIUM: lua: bad argument number in analyser and in error message
16359 - MEDIUM: lua: automatically converts strings in proxy, tables, server and ip
16360 - BUG/MINOR: utf8: remove compilator warning
16361 - MEDIUM: map: uses HAProxy facilities to store default value
16362 - BUG/MINOR: lua: error in detection of mandatory arguments
16363 - BUG/MINOR: lua: set current proxy as default value if it is possible
16364 - BUG/MEDIUM: http: the action set-{method|path|query|uri} doesn't run.
16365 - BUG/MEDIUM: lua: undetected infinite loop
16366 - BUG/MAJOR: http: don't read past buffer's end in http_replace_value
16367 - BUG/MEDIUM: http: the function "(req|res)-replace-value" doesn't respect the HTTP syntax
16368 - MEDIUM/CLEANUP: http: rewrite and lighten http_transform_header() prototype
16369 - BUILD: lua: it miss the '-ldl' directive
16370 - MEDIUM: http: allows 'R' and 'S' in the protocol alphabet
16371 - MINOR: http: split the function http_action_set_req_line() in two parts
16372 - MINOR: http: split http_transform_header() function in two parts.
16373 - MINOR: http: export function inet_set_tos()
16374 - MINOR: lua: txn: add function set_(loglevel|tos|mark)
16375 - MINOR: lua: create and register HTTP class
16376 - DOC: lua: fix some typos
16377 - MINOR: lua: add log functions
16378 - BUG/MINOR: lua: Fix SSL initialisation
16379 - DOC: lua: some fixes
16380 - MINOR: lua: (req|res)_get_headers return more than one header value
16381 - MINOR: lua: map system integration in Lua
16382 - BUG/MEDIUM: http: functions set-{path,query,method,uri} breaks the HTTP parser
16383 - MINOR: sample: add url_dec converter
16384 - MEDIUM: sample: fill the struct sample with the session, proxy and stream pointers
16385 - MEDIUM: sample change the prototype of sample-fetches and converters functions
16386 - MINOR: sample: fill the struct sample with the options.
16387 - MEDIUM: sample: change the prototype of sample-fetches functions
16388 - MINOR: http: split the url_param in two parts
16389 - CLEANUP: http: bad indentation
16390 - MINOR: http: add body_param fetch
16391 - MEDIUM: http: url-encoded parsing function can run throught wrapped buffer
16392 - DOC: http: req.body_param documentation
16393 - MINOR: proxy: custom capture declaration
16394 - MINOR: capture: add two "capture" converters
16395 - MEDIUM: capture: Allow capture with slot identifier
16396 - MINOR: http: add array of generic pointers in http_res_rules
16397 - MEDIUM: capture: adds http-response capture
16398 - MINOR: common: escape CSV strings
16399 - MEDIUM: stats: escape some strings in the CSV dump
16400 - MINOR: tcp: add custom actions that can continue tcp-(request|response) processing
16401 - MINOR: lua: Lua tcp action are not final action
16402 - DOC: lua: schematics about lua socket organization
16403 - BUG/MINOR: debug: display (null) in place of "meth"
16404 - DOC: mention the "lua action" in documentation
16405 - MINOR: standard: add function that converts signed int to a string
16406 - BUG/MINOR: sample: wrong conversion of signed values
16407 - MEDIUM: sample: Add type any
16408 - MINOR: debug: add a special converter which display its input sample content.
16409 - MINOR: tcp: increase the opaque data array
16410 - MINOR: tcp/http/conf: extends the keyword registration options
16411 - MINOR: build: fix build dependency
16412 - MEDIUM: vars: adds support of variables
16413 - MINOR: vars: adds get and set functions
16414 - MINOR: lua: Variable access
16415 - MINOR: samples: add samples which returns constants
16416 - BUG/MINOR: vars/compil: fix some warnings
16417 - BUILD: add 51degrees options to makefile.
16418 - MINOR: global: add several 51Degrees members to global
16419 - MINOR: config: add 51Degrees config parsing.
16420 - MINOR: init: add 51Degrees initialisation code
16421 - MEDIUM: sample: add fiftyone_degrees converter.
16422 - MEDIUM: deinit: add cleanup for 51Degrees to deinit
16423 - MEDIUM: sample: add trie support to 51Degrees
16424 - DOC: add 51Degrees notes to configuration.txt.
16425 - DOC: add build indications for 51Degrees to README.
16426 - MEDIUM: cfgparse: introduce weak and strong quoting
16427 - BUG/MEDIUM: cfgparse: incorrect memmove in quotes management
16428 - MINOR: cfgparse: remove line size limitation
16429 - MEDIUM: cfgparse: expand environment variables
16430 - BUG/MINOR: cfgparse: fix typo in 'option httplog' error message
16431 - BUG/MEDIUM: cfgparse: segfault when userlist is misused
16432 - CLEANUP: cfgparse: remove reference to 'ruleset' section
16433 - MEDIUM: cfgparse: check section maximum number of arguments
16434 - MEDIUM: cfgparse: max arguments check in the global section
16435 - MEDIUM: cfgparse: check max arguments in the proxies sections
16436 - CLEANUP: stream-int: remove a redundant clearing of the linger_risk flag
16437 - MINOR: connection: make conn_sock_shutw() actually perform the shutdown() call
16438 - MINOR: stream-int: use conn_sock_shutw() to shutdown a connection
16439 - MINOR: connection: perform the call to xprt->shutw() in conn_data_shutw()
16440 - MEDIUM: stream-int: replace xprt->shutw calls with conn_data_shutw()
16441 - MINOR: checks: use conn_data_shutw_hard() instead of call via xprt
16442 - MINOR: connection: implement conn_sock_send()
16443 - MEDIUM: stream-int: make conn_si_send_proxy() use conn_sock_send()
16444 - MEDIUM: connection: make conn_drain() perform more controls
16445 - REORG: connection: move conn_drain() to connection.c and rename it
16446 - CLEANUP: stream-int: remove inclusion of fd.h that is not used anymore
16447 - MEDIUM: channel: don't always set CF_WAKE_WRITE on bi_put*
16448 - CLEANUP: lua: don't use si_ic/si_oc on known stream-ints
16449 - BUG/MEDIUM: peers: correctly configure the client timeout
16450 - MINOR: peers: centralize configuration of the peers frontend
16451 - MINOR: proxy: store the default target into the frontend's configuration
16452 - MEDIUM: stats: use frontend_accept() as the accept function
16453 - MEDIUM: peers: use frontend_accept() instead of peer_accept()
16454 - CLEANUP: listeners: remove unused timeout
16455 - MEDIUM: listener: store the default target per listener
16456 - BUILD: fix automatic inclusion of libdl.
16457 - MEDIUM: lua: implement a simple memory allocator
16458 - MEDIUM: compression: postpone buffer adjustments after compression
16459 - MEDIUM: compression: don't send leading zeroes with chunk size
16460 - BUG/MINOR: compression: consider the expansion factor in init
16461 - MINOR: http: check the algo name "identity" instead of the function pointer
16462 - CLEANUP: compression: statify all algo-specific functions
16463 - MEDIUM: compression: add a distinction between UA- and config- algorithms
16464 - MEDIUM: compression: add new "raw-deflate" compression algorithm
16465 - MEDIUM: compression: split deflate_flush() into flush and finish
16466 - CLEANUP: compression: remove unused reset functions
16467 - MAJOR: compression: integrate support for libslz
16468 - BUG/MEDIUM: http: hdr_cnt would not count any header when called without name
16469 - BUG/MAJOR: http: null-terminate the http actions keywords list
16470 - CLEANUP: lua: remove the unused hlua_sleep memory pool
16471 - BUG/MAJOR: lua: use correct object size when initializing a new converter
16472 - CLEANUP: lua: remove hard-coded sizeof() in object creations and mallocs
16473 - CLEANUP: lua: fix confusing local variable naming in hlua_txn_new()
16474 - CLEANUP: hlua: stop using variable name "s" alternately for hlua_txn and hlua_smp
16475 - CLEANUP: lua: get rid of the last "*ht" for struct hlua_txn.
16476 - CLEANUP: lua: rename last occurrences of "*s" to "*htxn" for hlua_txn
16477 - CLEANUP: lua: rename variable "sc" for struct hlua_smp
16478 - CLEANUP: lua: get rid of the last two "*hs" for hlua_smp
16479 - REORG/MAJOR: session: rename the "session" entity to "stream"
16480 - REORG/MEDIUM: stream: rename stream flags from SN_* to SF_*
16481 - MINOR: session: start to reintroduce struct session
16482 - MEDIUM: stream: allocate the session when a stream is created
16483 - MEDIUM: stream: move the listener's pointer to the session
16484 - MEDIUM: stream: move the frontend's pointer to the session
16485 - MINOR: session: add a pointer to the session's origin
16486 - MEDIUM: session: use the pointer to the origin instead of s->si[0].end
16487 - CLEANUP: sample: remove useless tests in fetch functions for l4 != NULL
16488 - MEDIUM: http: move header captures from http_txn to struct stream
16489 - MINOR: http: create a dedicated pool for http_txn
16490 - MAJOR: http: move http_txn out of struct stream
16491 - MAJOR: sample: don't pass l7 anymore to sample fetch functions
16492 - CLEANUP: lua: remove unused hlua_smp->l7 and hlua_txn->l7
16493 - MEDIUM: http: remove the now useless http_txn from {req/res} rules
16494 - CLEANUP: lua: don't pass http_txn anymore to hlua_request_act_wrapper()
16495 - MAJOR: sample: pass a pointer to the session to each sample fetch function
16496 - MINOR: stream: provide a few helpers to retrieve frontend, listener and origin
16497 - CLEANUP: stream: don't set ->target to the incoming connection anymore
16498 - MINOR: stream: move session initialization before the stream's
16499 - MINOR: session: store the session's accept date
16500 - MINOR: session: don't rely on s->logs.logwait in embryonic sessions
16501 - MINOR: session: implement session_free() and use it everywhere
16502 - MINOR: session: add stick counters to the struct session
16503 - REORG: stktable: move the stkctr_* functions from stream to sticktable
16504 - MEDIUM: streams: support looking up stkctr in the session
16505 - MEDIUM: session: update the session's stick counters upon session_free()
16506 - MEDIUM: proto_tcp: track the session's counters in the connection ruleset
16507 - MAJOR: tcp: make tcp_exec_req_rules() only rely on the session
16508 - MEDIUM: stream: don't call stream_store_counters() in kill_mini_session() nor session_accept()
16509 - MEDIUM: stream: move all the session-specific stuff of stream_accept() earlier
16510 - MAJOR: stream: don't initialize the stream anymore in stream_accept
16511 - MEDIUM: session: remove the task pointer from the session
16512 - REORG: session: move the session parts out of stream.c
16513 - MINOR: stream-int: make appctx_new() take the applet in argument
16514 - MEDIUM: peers: move the appctx initialization earlier
16515 - MINOR: session: introduce session_new()
16516 - MINOR: session: make use of session_new() when creating a new session
16517 - MINOR: peers: make use of session_new() when creating a new session
16518 - MEDIUM: peers: initialize the task before the stream
16519 - MINOR: session: set the CO_FL_CONNECTED flag on the connection once ready
16520 - CLEANUP: stream.c: do not re-attach the connection to the stream
16521 - MEDIUM: stream: isolate connection-specific initialization code
16522 - MEDIUM: stream: also accept appctx as origin in stream_accept_session()
16523 - MEDIUM: peers: make use of stream_accept_session()
16524 - MEDIUM: frontend: make ->accept only return +/-1
16525 - MEDIUM: stream: return the stream upon accept()
16526 - MEDIUM: frontend: move some stream initialisation to stream_new()
16527 - MEDIUM: frontend: move the fd-specific settings to session_accept_fd()
16528 - MEDIUM: frontend: don't restrict frontend_accept() to connections anymore
16529 - MEDIUM: frontend: move some remaining stream settings to stream_new()
16530 - CLEANUP: frontend: remove one useless local variable
16531 - MEDIUM: stream: don't rely on the session's listener anymore in stream_new()
16532 - MEDIUM: lua: make use of stream_new() to create an outgoing connection
16533 - MINOR: lua: minor cleanup in hlua_socket_new()
16534 - MINOR: lua: no need for setting timeouts / conn_retries in hlua_socket_new()
16535 - MINOR: peers: no need for setting timeouts / conn_retries in peer_session_create()
16536 - CLEANUP: stream-int: swap stream-int and appctx declarations
16537 - CLEANUP: namespaces: fix protection against multiple inclusions
16538 - MINOR: session: maintain the session count stats in the session, not the stream
16539 - MEDIUM: session: adjust the connection flags before stream_new()
16540 - MINOR: stream: pass the pointer to the origin explicitly to stream_new()
16541 - CLEANUP: poll: move the conditions for waiting out of the poll functions
16542 - BUG/MEDIUM: listener: don't report an error when resuming unbound listeners
16543 - BUG/MEDIUM: init: don't limit cpu-map to the first 32 processes only
16544 - BUG/MAJOR: tcp/http: fix current_rule assignment when restarting over a ruleset
16545 - BUG/MEDIUM: stream-int: always reset si->ops when si->end is nullified
16546 - DOC: update the entities diagrams
16547 - BUG/MEDIUM: http: properly retrieve the front connection
16548 - MINOR: applet: add a new "owner" pointer in the appctx
16549 - MEDIUM: applet: make the applet not depend on a stream interface anymore
16550 - REORG: applet: move the applet definitions out of stream_interface
16551 - CLEANUP: applet: rename struct si_applet to applet
16552 - REORG: stream-int: create si_applet_ops dedicated to applets
16553 - MEDIUM: applet: add basic support for an applet run queue
16554 - MEDIUM: applet: implement a run queue for active appctx
16555 - MEDIUM: stream-int: add a new function si_applet_done()
16556 - MAJOR: applet: now call si_applet_done() instead of si_update() in I/O handlers
16557 - MAJOR: stream: use a regular ->update for all stream interfaces
16558 - MEDIUM: dumpstats: don't unregister the applet anymore
16559 - MEDIUM: applet: centralize the call to si_applet_done() in the I/O handler
16560 - MAJOR: stream: do not allocate request buffers anymore when the left side is an applet
16561 - MINOR: stream-int: add two flags to indicate an applet's wishes regarding I/O
16562 - MEDIUM: applet: make the applets only use si_applet_{cant|want|stop}_{get|put}
16563 - MEDIUM: stream-int: pause the appctx if the task is woken up
16564 - BUG/MAJOR: tcp: only call registered actions when they're registered
16565 - BUG/MEDIUM: peers: fix applet scheduling
16566 - BUG/MEDIUM: peers: recent applet changes broke peers updates scheduling
16567 - MINOR: tools: provide an rdtsc() function for time comparisons
16568 - IMPORT: lru: import simple ebtree-based LRU functions
16569 - IMPORT: hash: import xxhash-r39
16570 - MEDIUM: pattern: add a revision to all pattern expressions
16571 - MAJOR: pattern: add LRU-based cache on pattern matching
16572 - BUG/MEDIUM: http: remove content-length from chunked messages
16573 - DOC: http: update the comments about the rules for determining transfer-length
16574 - BUG/MEDIUM: http: do not restrict parsing of transfer-encoding to HTTP/1.1
16575 - BUG/MEDIUM: http: incorrect transfer-coding in the request is a bad request
16576 - BUG/MEDIUM: http: remove content-length form responses with bad transfer-encoding
16577 - MEDIUM: http: restrict the HTTP version token to 1 digit as per RFC7230
16578 - MEDIUM: http: disable support for HTTP/0.9 by default
16579 - MEDIUM: http: add option-ignore-probes to get rid of the floods of 408
16580 - BUG/MINOR: config: clear proxy->table.peers.p for disabled proxies
16581 - MEDIUM: init: don't stop proxies in parent process when exiting
16582 - MINOR: stick-table: don't attach to peers in stopped state
16583 - MEDIUM: config: initialize stick-tables after peers, not before
16584 - MEDIUM: peers: add the ability to disable a peers section
16585 - MINOR: peers: store the pointer to the signal handler
16586 - MEDIUM: peers: unregister peers that were never started
16587 - MEDIUM: config: propagate the table's process list to the peers sections
16588 - MEDIUM: init: stop any peers section not bound to the correct process
16589 - MEDIUM: config: validate that peers sections are bound to exactly one process
16590 - MAJOR: peers: allow peers section to be used with nbproc > 1
16591 - DOC: relax the peers restriction to single-process
16592 - DOC: document option http-ignore-probes
16593 - DOC: fix the comments about the meaning of msg->sol in HTTP
16594 - BUG/MEDIUM: http: wait for the exact amount of body bytes in wait_for_request_body
16595 - BUG/MAJOR: http: prevent risk of reading past end with balance url_param
16596 - MEDIUM: stream: move HTTP request body analyser before process_common
16597 - MEDIUM: http: add a new option http-buffer-request
16598 - MEDIUM: http: provide 3 fetches for the body
16599 - DOC: update the doc on the proxy protocol
16600 - BUILD: pattern: fix build warnings introduced in the LRU cache
16601 - BUG/MEDIUM: stats: properly initialize the scope before dumping stats
16602 - CLEANUP: config: fix misleading information in error message.
16603 - MINOR: config: report the number of processes using a peers section in the error case
16604 - BUG/MEDIUM: config: properly compute the default number of processes for a proxy
16605 - MEDIUM: http: add new "capture" action for http-request
16606 - BUG/MEDIUM: http: fix the http-request capture parser
16607 - BUG/MEDIUM: http: don't forward client shutdown without NOLINGER except for tunnels
16608 - BUILD/MINOR: ssl: fix build failure introduced by recent patch
16609 - BUG/MAJOR: check: fix breakage of inverted tcp-check rules
16610 - CLEANUP: checks: fix double usage of cur / current_step in tcp-checks
16611 - BUG/MEDIUM: checks: do not dereference head of a tcp-check at the end
16612 - CLEANUP: checks: simplify the loop processing of tcp-checks
16613 - BUG/MAJOR: checks: always check for end of list before proceeding
16614 - BUG/MEDIUM: checks: do not dereference a list as a tcpcheck struct
16615 - BUG/MAJOR: checks: break infinite loops when tcp-checks starts with comment
16616 - MEDIUM: http: make url_param iterate over multiple occurrences
16617 - BUG/MEDIUM: peers: apply a random reconnection timeout
16618 - MEDIUM: config: reject invalid config with name duplicates
16619 - MEDIUM: config: reject conflicts in table names
16620 - CLEANUP: proxy: make the proxy lookup functions more user-friendly
16621 - MINOR: proxy: simply ignore duplicates in proxy name lookups
16622 - MINOR: config: don't open-code proxy name lookups
16623 - MEDIUM: config: clarify the conflicting modes detection for backend rules
16624 - CLEANUP: proxy: remove now unused function findproxy_mode()
16625 - MEDIUM: stick-table: remove the now duplicate find_stktable() function
16626 - MAJOR: config: remove the deprecated reqsetbe / reqisetbe actions
16627 - MINOR: proxy: add a new function proxy_find_by_id()
16628 - MINOR: proxy: add a flag to memorize that the proxy's ID was forced
16629 - MEDIUM: proxy: add a new proxy_find_best_match() function
16630 - CLEANUP: http: explicitly reference request in http_apply_redirect_rules()
16631 - MINOR: http: prepare support for parsing redirect actions on responses
16632 - MEDIUM: http: implement http-response redirect rules
16633 - MEDIUM: http: no need to close the request on redirect if data was parsed
16634 - BUG/MEDIUM: http: fix body processing for the stats applet
16635 - BUG/MINOR: da: fix log-level comparison to emove annoying warning
16636 - CLEANUP: global: remove one ifdef USE_DEVICEATLAS
16637 - CLEANUP: da: move the converter registration to da.c
16638 - CLEANUP: da: register the config keywords in da.c
16639 - CLEANUP: adjust the envelope name in da.h to reflect the file name
16640 - CLEANUP: da: remove ifdef USE_DEVICEATLAS from da.c
16641 - BUILD: make 51D easier to build by defaulting to 51DEGREES_SRC
16642 - BUILD: fix build warning when not using 51degrees
16643 - BUILD: make DeviceAtlas easier to build by defaulting to DEVICEATLAS_SRC
16644 - BUILD: ssl: fix recent build breakage on older SSL libs
16645
Willy Tarreau8747b6d2015-03-11 23:57:23 +0100166462015/03/11 : 1.6-dev1
16647 - CLEANUP: extract temporary $CFG to eliminate duplication
16648 - CLEANUP: extract temporary $BIN to eliminate duplication
16649 - CLEANUP: extract temporary $PIDFILE to eliminate duplication
16650 - CLEANUP: extract temporary $LOCKFILE to eliminate duplication
16651 - CLEANUP: extract quiet_check() to avoid duplication
16652 - BUG/MINOR: don't start haproxy on reload
16653 - DOC: Address issue where documentation is excluded due to a gitignore rule.
16654 - BUG/MEDIUM: systemd: set KillMode to 'mixed'
16655 - BUILD: fix "make install" to support spaces in the install dirs
16656 - BUG/MINOR: config: http-request replace-header arg typo
16657 - BUG: config: error in http-response replace-header number of arguments
16658 - DOC: missing track-sc* in http-request rules
16659 - BUILD: lua: missing ifdef related to SSL when enabling LUA
16660 - BUG/MEDIUM: regex: fix pcre_study error handling
16661 - MEDIUM: regex: Use pcre_study always when PCRE is used, regardless of JIT
16662 - BUG/MINOR: Fix search for -p argument in systemd wrapper.
16663 - MEDIUM: Improve signal handling in systemd wrapper.
16664 - DOC: fix typo in Unix Socket commands
16665 - BUG/MEDIUM: checks: external checks can't change server status to UP
16666 - BUG/MEDIUM: checks: segfault with external checks in a backend section
16667 - BUG/MINOR: checks: external checks shouldn't wait for timeout to return the result
16668 - BUG/MEDIUM: auth: fix segfault with http-auth and a configuration with an unknown encryption algorithm
16669 - BUG/MEDIUM: config: userlists should ensure that encrypted passwords are supported
16670 - BUG/MINOR: config: don't propagate process binding for dynamic use_backend
16671 - BUG/MINOR: log: fix request flags when keep-alive is enabled
16672 - BUG/MEDIUM: checks: fix conflicts between agent checks and ssl healthchecks
16673 - MINOR: checks: allow external checks in backend sections
16674 - MEDIUM: checks: provide environment variables to the external checks
16675 - MINOR: checks: update dynamic environment variables in external checks
16676 - DOC: checks: environment variables used by "external-check command"
16677 - BUG/MEDIUM: backend: correctly detect the domain when use_domain_only is used
16678 - MINOR: ssl: load certificates in alphabetical order
16679 - BUG/MINOR: checks: prevent http keep-alive with http-check expect
16680 - MINOR: lua: typo in an error message
16681 - MINOR: report the Lua version in -vv
16682 - MINOR: lua: add a compilation error message when compiled with an incompatible version
16683 - BUG/MEDIUM: lua: segfault when calling haproxy sample fetches from lua
16684 - BUILD: try to automatically detect the Lua library name
16685 - BUILD/CLEANUP: systemd: avoid a warning due to mixed code and declaration
16686 - BUG/MEDIUM: backend: Update hash to use unsigned int throughout
16687 - BUG/MEDIUM: connection: fix memory corruption when building a proxy v2 header
16688 - MEDIUM: connection: add new bit in Proxy Protocol V2
16689 - BUG/MINOR: ssl: rejects OCSP response without nextupdate.
16690 - BUG/MEDIUM: ssl: Fix to not serve expired OCSP responses.
16691 - BUG/MINOR: ssl: Fix OCSP resp update fails with the same certificate configured twice.
16692 - BUG/MINOR: ssl: Fix external function in order not to return a pointer on an internal trash buffer.
16693 - MINOR: add fetchs 'ssl_c_der' and 'ssl_f_der' to return DER formatted certs
16694 - MINOR: ssl: add statement to force some ssl options in global.
16695 - BUG/MINOR: ssl: correctly initialize ssl ctx for invalid certificates
16696 - BUG/MEDIUM: ssl: fix bad ssl context init can cause segfault in case of OOM.
16697 - BUG/MINOR: samples: fix unnecessary memcopy converting binary to string.
16698 - MINOR: samples: adds the bytes converter.
16699 - MINOR: samples: adds the field converter.
16700 - MINOR: samples: add the word converter.
16701 - BUG/MINOR: server: move the directive #endif to the end of file
16702 - BUG/MAJOR: buffer: check the space left is enough or not when input data in a buffer is wrapped
16703 - DOC: fix a few typos
16704 - CLEANUP: epoll: epoll_events should be allocated according to global.tune.maxpollevents
16705 - BUG/MINOR: http: fix typo: "401 Unauthorized" => "407 Unauthorized"
16706 - BUG/MINOR: parse: refer curproxy instead of proxy
16707 - BUG/MINOR: parse: check the validity of size string in a more strict way
16708 - BUILD: add new target 'make uninstall' to support uninstalling haproxy from OS
16709 - DOC: expand the docs for the provided stats.
16710 - BUG/MEDIUM: unix: do not unlink() abstract namespace sockets upon failure.
16711 - MEDIUM: ssl: Certificate Transparency support
16712 - MEDIUM: stats: proxied stats admin forms fix
16713 - MEDIUM: http: Compress HTTP responses with status codes 201,202,203 in addition to 200
16714 - BUG/MEDIUM: connection: sanitize PPv2 header length before parsing address information
16715 - MAJOR: namespace: add Linux network namespace support
16716 - MINOR: systemd: Check configuration before start
16717 - BUILD: ssl: handle boringssl in openssl version detection
16718 - BUILD: ssl: disable OCSP when using boringssl
16719 - BUILD: ssl: don't call get_rfc2409_prime when using boringssl
16720 - MINOR: ssl: don't use boringssl's cipher_list
16721 - BUILD: ssl: use OPENSSL_NO_OCSP to detect OCSP support
16722 - MINOR: stats: fix minor typo in HTML page
16723 - MINOR: Also accept SIGHUP/SIGTERM in systemd-wrapper
16724 - MEDIUM: Add support for configurable TLS ticket keys
16725 - DOC: Document the new tls-ticket-keys bind keyword
16726 - DOC: clearly state that the "show sess" output format is not fixed
16727 - MINOR: stats: fix minor typo fix in stats_dump_errors_to_buffer()
16728 - DOC: httplog does not support 'no'
16729 - BUG/MEDIUM: ssl: Fix a memory leak in DHE key exchange
16730 - MINOR: ssl: use SSL_get_ciphers() instead of directly accessing the cipher list.
16731 - BUG/MEDIUM: Consistently use 'check' in process_chk
16732 - MEDIUM: Add external check
16733 - BUG/MEDIUM: Do not set agent health to zero if server is disabled in config
16734 - MEDIUM/BUG: Only explicitly report "DOWN (agent)" if the agent health is zero
16735 - MEDIUM: Remove connect_chk
16736 - MEDIUM: Refactor init_check and move to checks.c
16737 - MEDIUM: Add free_check() helper
16738 - MEDIUM: Move proto and addr fields struct check
16739 - MEDIUM: Attach tcpcheck_rules to check
16740 - MEDIUM: Add parsing of mailers section
16741 - MEDIUM: Allow configuration of email alerts
16742 - MEDIUM: Support sending email alerts
16743 - DOC: Document email alerts
16744 - MINOR: Remove trailing '.' from email alert messages
16745 - MEDIUM: Allow suppression of email alerts by log level
16746 - BUG/MEDIUM: Do not consider an agent check as failed on L7 error
16747 - MINOR: deinit: fix memory leak
16748 - MINOR: http: export the function 'smp_fetch_base32'
16749 - BUG/MEDIUM: http: tarpit timeout is reset
16750 - MINOR: sample: add "json" converter
16751 - BUG/MEDIUM: pattern: don't load more than once a pattern list.
16752 - MINOR: map/acl/dumpstats: remove the "Done." message
16753 - BUG/MAJOR: ns: HAProxy segfault if the cli_conn is not from a network connection
16754 - BUG/MINOR: pattern: error message missing
16755 - BUG/MEDIUM: pattern: some entries are not deleted with case insensitive match
16756 - BUG/MINOR: ARG6 and ARG7 don't fit in a 32 bits word
16757 - MAJOR: poll: only rely on wake_expired_tasks() to compute the wait delay
16758 - MEDIUM: task: call session analyzers if the task is woken by a message.
16759 - MEDIUM: protocol: automatically pick the proto associated to the connection.
16760 - MEDIUM: channel: wake up any request analyzer on response activity
16761 - MINOR: converters: add a "void *private" argument to converters
16762 - MINOR: converters: give the session pointer as converter argument
16763 - MINOR: sample: add private argument to the struct sample_fetch
16764 - MINOR: global: export function and permits to not resolve DNS names
16765 - MINOR: sample: add function for browsing samples.
16766 - MINOR: global: export many symbols.
16767 - MINOR: includes: fix a lot of missing or useless includes
16768 - MEDIUM: tcp: add register keyword system.
16769 - MEDIUM: buffer: make bo_putblk/bo_putstr/bo_putchk return the number of bytes copied.
16770 - MEDIUM: http: change the code returned by the response processing rule functions
16771 - MEDIUM: http/tcp: permit to resume http and tcp custom actions
16772 - MINOR: channel: functions to get data from a buffer without copy
16773 - MEDIUM: lua: lua integration in the build and init system.
16774 - MINOR: lua: add ease functions
16775 - MINOR: lua: add runtime execution context
16776 - MEDIUM: lua: "com" signals
16777 - MINOR: lua: add the configuration directive "lua-load"
16778 - MINOR: lua: core: create "core" class and object
16779 - MINOR: lua: post initialisation bindings
16780 - MEDIUM: lua: add coroutine as tasks.
16781 - MINOR: lua: add sample and args type converters
16782 - MINOR: lua: txn: create class TXN associated with the transaction.
16783 - MINOR: lua: add shared context in the lua stack
16784 - MINOR: lua: txn: import existing sample-fetches in the class TXN
16785 - MINOR: lua: txn: add lua function in TXN that returns an array of http headers
16786 - MINOR: lua: register and execute sample-fetches in LUA
16787 - MINOR: lua: register and execute converters in LUA
16788 - MINOR: lua: add bindings for tcp and http actions
16789 - MINOR: lua: core: add sleep functions
16790 - MEDIUM: lua: socket: add "socket" class for TCP I/O
16791 - MINOR: lua: core: pattern and acl manipulation
16792 - MINOR: lua: channel: add "channel" class
16793 - MINOR: lua: txn: object "txn" provides two objects "channel"
16794 - MINOR: lua: core: can set the nice of the current task
16795 - MINOR: lua: core: can yield an execution stack
16796 - MINOR: lua: txn: add binding for closing the client connection.
16797 - MEDIUM: lua: Lua initialisation "on demand"
16798 - BUG/MAJOR: lua: send function fails and return bad bytes
16799 - MINOR: remove unused declaration.
16800 - MINOR: lua: remove some #define
16801 - MINOR: lua: use bitfield and macro in place of integer and enum
16802 - MINOR: lua: set skeleton for Lua execution expiration
16803 - MEDIUM: lua: each yielding function returns a wake up time.
16804 - MINOR: lua: adds "forced yield" flag
16805 - MEDIUM: lua: interrupt the Lua execution for running other process
16806 - MEDIUM: lua: change the sleep function core
16807 - BUG/MEDIUM: lua: the execution timeout is ignored in yield case
16808 - DOC: lua: Lua configuration documentation
16809 - MINOR: lua: add the struct session in the lua channel struct
16810 - BUG/MINOR: lua: set buffer if it is nnot avalaible.
16811 - BUG/MEDIUM: lua: reset flags before resuming execution
16812 - BUG/MEDIUM: lua: fix infinite loop about channel
16813 - BUG/MEDIUM: lua: the Lua process is not waked up after sending data on requests side
16814 - BUG/MEDIUM: lua: many errors when we try to send data with the channel API
16815 - MEDIUM: lua: use the Lua-5.3 version of the library
16816 - BUG/MAJOR: lua: some function are not yieldable, the forced yield causes errors
16817 - BUG/MEDIUM: lua: can't handle the response bytes
16818 - BUG/MEDIUM: lua: segfault with buffer_replace2
16819 - BUG/MINOR: lua: check buffers before initializing socket
16820 - BUG/MINOR: log: segfault if there are no proxy reference
16821 - BUG/MEDIUM: lua: sockets don't have buffer to write data
16822 - BUG/MEDIUM: lua: cannot connect socket
16823 - BUG/MINOR: lua: sockets receive behavior doesn't follows the specs
16824 - BUG/BUILD: lua: The strict Lua 5.3 version check is not done.
16825 - BUG/MEDIUM: buffer: one byte miss in buffer free space check
16826 - MEDIUM: lua: make the functions hlua_gethlua() and hlua_sethlua() faster
16827 - MINOR: replace the Core object by a simple model.
16828 - MEDIUM: lua: change the objects configuration
16829 - MEDIUM: lua: create a namespace for the fetches
16830 - MINOR: converters: add function to browse converters
16831 - MINOR: lua: wrapper for converters
16832 - MINOR: lua: replace function (req|get)_channel by a variable
16833 - MINOR: lua: fetches and converters can return an empty string in place of nil
16834 - DOC: lua api
16835 - BUG/MEDIUM: sample: fix random number upper-bound
16836 - BUG/MINOR: stats:Fix incorrect printf type.
16837 - BUG/MAJOR: session: revert all the crappy client-side timeout changes
16838 - BUG/MINOR: logs: properly initialize and count log sockets
16839 - BUG/MEDIUM: http: fetch "base" is not compatible with set-header
16840 - BUG/MINOR: counters: do not untrack counters before logging
16841 - BUG/MAJOR: sample: correctly reinitialize sample fetch context before calling sample_process()
16842 - MINOR: stick-table: make stktable_fetch_key() indicate why it failed
16843 - BUG/MEDIUM: counters: fix track-sc* to wait on unstable contents
16844 - BUILD: remove TODO from the spec file and add README
16845 - MINOR: log: make MAX_SYSLOG_LEN overridable at build time
16846 - MEDIUM: log: support a user-configurable max log line length
16847 - DOC: provide an example of how to use ssl_c_sha1
16848 - BUILD: checks: external checker needs signal.h
16849 - BUILD: checks: kill a minor warning on Solaris in external checks
16850 - BUILD: http: fix isdigit & isspace warnings on Solaris
16851 - BUG/MINOR: listener: set the listener's fd to -1 after deletion
16852 - BUG/MEDIUM: unix: failed abstract socket binding is retryable
16853 - MEDIUM: listener: implement a per-protocol pause() function
16854 - MEDIUM: listener: support rebinding during resume()
16855 - BUG/MEDIUM: unix: completely unbind abstract sockets during a pause()
16856 - DOC: explicitly mention the limits of abstract namespace sockets
16857 - DOC: minor fix on {sc,src}_kbytes_{in,out}
16858 - DOC: fix alphabetical sort of converters
16859 - MEDIUM: stick-table: implement lookup from a sample fetch
16860 - MEDIUM: stick-table: add new converters to fetch table data
16861 - MINOR: samples: add two converters for the date format
16862 - BUG/MAJOR: http: correctly rewind the request body after start of forwarding
16863 - DOC: remove references to CPU=native in the README
16864 - DOC: mention that "compression offload" is ignored in defaults section
16865 - DOC: mention that Squid correctly responds 400 to PPv2 header
16866 - BUILD: fix dependencies between config and compat.h
16867 - MINOR: session: export the function 'smp_fetch_sc_stkctr'
16868 - MEDIUM: stick-table: make it easier to register extra data types
16869 - BUG/MINOR: http: base32+src should use the big endian version of base32
16870 - MINOR: sample: allow IP address to cast to binary
16871 - MINOR: sample: add new converters to hash input
16872 - MINOR: sample: allow integers to cast to binary
16873 - BUILD: report commit ID in git versions as well
16874 - CLEANUP: session: move the stick counters declarations to stick_table.h
16875 - MEDIUM: http: add the track-sc* actions to http-request rules
16876 - BUG/MEDIUM: connection: fix proxy v2 header again!
16877 - BUG/MAJOR: tcp: fix a possible busy spinning loop in content track-sc*
16878 - OPTIM/MINOR: proxy: reduce struct proxy by 48 bytes on 64-bit archs
16879 - MINOR: log: add a new field "%lc" to implement a per-frontend log counter
16880 - BUG/MEDIUM: http: fix inverted condition in pat_match_meth()
16881 - BUG/MEDIUM: http: fix improper parsing of HTTP methods for use with ACLs
16882 - BUG/MINOR: pattern: remove useless allocation of unused trash in pat_parse_reg()
16883 - BUG/MEDIUM: acl: correctly compute the output type when a converter is used
16884 - CLEANUP: acl: cleanup some of the redundancy and spaghetti after last fix
16885 - BUG/CRITICAL: http: don't update msg->sov once data start to leave the buffer
16886 - MEDIUM: http: enable header manipulation for 101 responses
16887 - BUG/MEDIUM: config: propagate frontend to backend process binding again.
16888 - MEDIUM: config: properly propagate process binding between proxies
16889 - MEDIUM: config: make the frontends automatically bind to the listeners' processes
16890 - MEDIUM: config: compute the exact bind-process before listener's maxaccept
16891 - MEDIUM: config: only warn if stats are attached to multi-process bind directives
16892 - MEDIUM: config: report it when tcp-request rules are misplaced
16893 - DOC: indicate in the doc that track-sc* can wait if data are missing
16894 - MINOR: config: detect the case where a tcp-request content rule has no inspect-delay
16895 - MEDIUM: systemd-wrapper: support multiple executable versions and names
16896 - BUG/MEDIUM: remove debugging code from systemd-wrapper
16897 - BUG/MEDIUM: http: adjust close mode when switching to backend
16898 - BUG/MINOR: config: don't propagate process binding on fatal errors.
16899 - BUG/MEDIUM: check: rule-less tcp-check must detect connect failures
16900 - BUG/MINOR: tcp-check: report the correct failed step in the status
16901 - DOC: indicate that weight zero is reported as DRAIN
16902 - BUG/MEDIUM: config: avoid skipping disabled proxies
16903 - BUG/MINOR: config: do not accept more track-sc than configured
16904 - BUG/MEDIUM: backend: fix URI hash when a query string is present
16905 - BUG/MEDIUM: http: don't dump debug headers on MSG_ERROR
16906 - BUG/MAJOR: cli: explicitly call cli_release_handler() upon error
16907 - BUG/MEDIUM: tcp: fix outgoing polling based on proxy protocol
16908 - BUILD/MINOR: ssl: de-constify "ciphers" to avoid a warning on openssl-0.9.8
16909 - BUG/MEDIUM: tcp: don't use SO_ORIGINAL_DST on non-AF_INET sockets
16910 - BUG/BUILD: revert accidental change in the makefile from latest SSL fix
16911 - BUG/MEDIUM: ssl: force a full GC in case of memory shortage
16912 - MEDIUM: ssl: add support for smaller SSL records
16913 - MINOR: session: release a few other pools when stopping
16914 - MINOR: task: release the task pool when stopping
16915 - BUG/MINOR: config: don't inherit the default balance algorithm in frontends
16916 - BUG/MAJOR: frontend: initialize capture pointers earlier
16917 - BUG/MINOR: stats: correctly set the request/response analysers
16918 - MAJOR: polling: centralize calls to I/O callbacks
16919 - DOC: fix typo in the body parser documentation for msg.sov
16920 - BUG/MINOR: peers: the buffer size is global.tune.bufsize, not trash.size
16921 - MINOR: sample: add a few basic internal fetches (nbproc, proc, stopping)
16922 - DEBUG: pools: apply poisonning on every allocated pool
16923 - BUG/MAJOR: sessions: unlink session from list on out of memory
16924 - BUG/MEDIUM: patterns: previous fix was incomplete
16925 - BUG/MEDIUM: payload: ensure that a request channel is available
16926 - BUG/MINOR: tcp-check: don't condition data polling on check type
16927 - BUG/MEDIUM: tcp-check: don't rely on random memory contents
16928 - BUG/MEDIUM: tcp-checks: disable quick-ack unless next rule is an expect
16929 - BUG/MINOR: config: fix typo in condition when propagating process binding
16930 - BUG/MEDIUM: config: do not propagate processes between stopped processes
16931 - BUG/MAJOR: stream-int: properly check the memory allocation return
16932 - BUG/MEDIUM: memory: fix freeing logic in pool_gc2()
16933 - BUG/MAJOR: namespaces: conn->target is not necessarily a server
16934 - BUG/MEDIUM: compression: correctly report zlib_mem
16935 - CLEANUP: lists: remove dead code
16936 - CLEANUP: memory: remove dead code
16937 - CLEANUP: memory: replace macros pool_alloc2/pool_free2 with functions
16938 - MINOR: memory: cut pool allocator in 3 layers
16939 - MEDIUM: memory: improve pool_refill_alloc() to pass a refill count
16940 - MINOR: stream-int: retrieve session pointer from stream-int
16941 - MINOR: buffer: reset a buffer in b_reset() and not channel_init()
16942 - MEDIUM: buffer: use b_alloc() to allocate and initialize a buffer
16943 - MINOR: buffer: move buffer initialization after channel initialization
16944 - MINOR: buffer: only use b_free to release buffers
16945 - MEDIUM: buffer: always assign a dummy empty buffer to channels
16946 - MEDIUM: buffer: add a new buf_wanted dummy buffer to report failed allocations
16947 - MEDIUM: channel: do not report full when buf_empty is present on a channel
16948 - MINOR: session: group buffer allocations together
16949 - MINOR: buffer: implement b_alloc_fast()
16950 - MEDIUM: buffer: implement b_alloc_margin()
16951 - MEDIUM: session: implement a basic atomic buffer allocator
16952 - MAJOR: session: implement a wait-queue for sessions who need a buffer
16953 - MAJOR: session: only allocate buffers when needed
16954 - MINOR: stats: report a "waiting" flags for sessions
16955 - MAJOR: session: only wake up as many sessions as available buffers permit
16956 - MINOR: config: implement global setting tune.buffers.reserve
16957 - MINOR: config: implement global setting tune.buffers.limit
16958 - MEDIUM: channel: implement a zero-copy buffer transfer
16959 - MEDIUM: stream-int: support splicing from applets
16960 - OPTIM: stream-int: try to send pending spliced data
16961 - CLEANUP: session: remove session_from_task()
16962 - DOC: add missing entry for log-format and clarify the text
16963 - MINOR: logs: add a new per-proxy "log-tag" directive
16964 - BUG/MEDIUM: http: fix header removal when previous header ends with pure LF
16965 - MINOR: config: extend the default max hostname length to 64 and beyond
16966 - BUG/MEDIUM: channel: fix possible integer overflow on reserved size computation
16967 - BUG/MINOR: channel: compare to_forward with buf->i, not buf->size
16968 - MINOR: channel: add channel_in_transit()
16969 - MEDIUM: channel: make buffer_reserved() use channel_in_transit()
16970 - MEDIUM: channel: make bi_avail() use channel_in_transit()
16971 - BUG/MEDIUM: channel: don't schedule data in transit for leaving until connected
16972 - CLEANUP: channel: rename channel_reserved -> channel_is_rewritable
16973 - MINOR: channel: rename channel_full() to !channel_may_recv()
16974 - MINOR: channel: rename buffer_reserved() to channel_reserved()
16975 - MINOR: channel: rename buffer_max_len() to channel_recv_limit()
16976 - MINOR: channel: rename bi_avail() to channel_recv_max()
16977 - MINOR: channel: rename bi_erase() to channel_truncate()
16978 - BUG/MAJOR: log: don't try to emit a log if no logger is set
16979 - MINOR: tools: add new round_2dig() function to round integers
16980 - MINOR: global: always export some SSL-specific metrics
16981 - MINOR: global: report information about the cost of SSL connections
16982 - MAJOR: init: automatically set maxconn and/or maxsslconn when possible
16983 - MINOR: http: add a new fetch "query" to extract the request's query string
16984 - MINOR: hash: add new function hash_crc32
16985 - MINOR: samples: provide a "crc32" converter
16986 - MEDIUM: backend: add the crc32 hash algorithm for load balancing
16987 - BUG/MINOR: args: add missing entry for ARGT_MAP in arg_type_names
16988 - BUG/MEDIUM: http: make http-request set-header compute the string before removal
16989 - MEDIUM: args: use #define to specify the number of bits used by arg types and counts
16990 - MEDIUM: args: increase arg type to 5 bits and limit arg count to 5
16991 - MINOR: args: add type-specific flags for each arg in a list
16992 - MINOR: args: implement a new arg type for regex : ARGT_REG
16993 - MEDIUM: regex: add support for passing regex flags to regex_exec_match()
16994 - MEDIUM: samples: add a regsub converter to perform regex-based transformations
16995 - BUG/MINOR: sample: fix case sensitivity for the regsub converter
16996 - MEDIUM: http: implement http-request set-{method,path,query,uri}
16997 - DOC: fix missing closing brackend on regsub
16998 - MEDIUM: samples: provide basic arithmetic and bitwise operators
16999 - MEDIUM: init: continue to enforce SYSTEM_MAXCONN with auto settings if set
17000 - BUG/MINOR: http: fix incorrect header value offset in replace-hdr/replace-value
17001 - BUG/MINOR: http: abort request processing on filter failure
17002 - MEDIUM: tcp: implement tcp-ut bind option to set TCP_USER_TIMEOUT
17003 - MINOR: ssl/server: add the "no-ssl-reuse" server option
17004 - BUG/MAJOR: peers: initialize s->buffer_wait when creating the session
17005 - MINOR: http: add a new function to iterate over each header line
17006 - MINOR: http: add the new sample fetches req.hdr_names and res.hdr_names
17007 - MEDIUM: task: always ensure that the run queue is consistent
17008 - BUILD: Makefile: add -Wdeclaration-after-statement
17009 - BUILD/CLEANUP: ssl: avoid a warning due to mixed code and declaration
17010 - BUILD/CLEANUP: config: silent 3 warnings about mixed declarations with code
17011 - MEDIUM: protocol: use a family array to index the protocol handlers
17012 - BUILD: lua: cleanup many mixed occurrences declarations & code
17013 - BUG/MEDIUM: task: fix recently introduced scheduler skew
17014 - BUG/MINOR: lua: report the correct function name in an error message
17015 - BUG/MAJOR: http: fix stats regression consecutive to HTTP_RULE_RES_YIELD
17016 - Revert "BUG/MEDIUM: lua: can't handle the response bytes"
17017 - MINOR: lua: convert IP addresses to type string
17018 - CLEANUP: lua: use the same function names in C and Lua
17019 - REORG/MAJOR: move session's req and resp channels back into the session
17020 - CLEANUP: remove now unused channel pool
17021 - REORG/MEDIUM: stream-int: introduce si_ic/si_oc to access channels
17022 - MEDIUM: stream-int: add a flag indicating which side the SI is on
17023 - MAJOR: stream-int: only rely on SI_FL_ISBACK to find the requested channel
17024 - MEDIUM: stream-interface: remove now unused pointers to channels
17025 - MEDIUM: stream-int: make si_sess() use the stream int's side
17026 - MEDIUM: stream-int: use si_task() to retrieve the task from the stream int
17027 - MEDIUM: stream-int: remove any reference to the owner
17028 - CLEANUP: stream-int: add si_ib/si_ob to dereference the buffers
17029 - CLEANUP: stream-int: add si_opposite() to find the other stream interface
17030 - REORG/MEDIUM: channel: only use chn_prod / chn_cons to find stream-interfaces
17031 - MEDIUM: channel: add a new flag "CF_ISRESP" for the response channel
17032 - MAJOR: channel: only rely on the new CF_ISRESP flag to find the SI
17033 - MEDIUM: channel: remove now unused ->prod and ->cons pointers
17034 - CLEANUP: session: simplify references to chn_{prod,cons}(&s->{req,res})
17035 - CLEANUP: session: use local variables to access channels / stream ints
17036 - CLEANUP: session: don't needlessly pass a pointer to the stream-int
17037 - CLEANUP: session: don't use si_{ic,oc} when we know the session.
17038 - CLEANUP: stream-int: limit usage of si_ic/si_oc
17039 - CLEANUP: lua: limit usage of si_ic/si_oc
17040 - MINOR: channel: add chn_sess() helper to retrieve session from channel
17041 - MEDIUM: session: simplify receive buffer allocator to only use the channel
17042 - MEDIUM: lua: use CF_ISRESP to detect the channel's side
17043 - CLEANUP: lua: remove the session pointer from hlua_channel
17044 - CLEANUP: lua: hlua_channel_new() doesn't need the pointer to the session anymore
17045 - MEDIUM: lua: remove struct hlua_channel
17046 - MEDIUM: lua: remove hlua_sample_fetch
17047
Willy Tarreau15480d72014-06-19 21:10:58 +0200170482014/06/19 : 1.6-dev0
17049 - exact copy of 1.5.0
17050
Willy Tarreau9229f122014-06-19 21:01:06 +0200170512014/06/19 : 1.5.0
17052 - MEDIUM: ssl: ignored file names ending as '.issuer' or '.ocsp'.
17053 - MEDIUM: ssl: basic OCSP stapling support.
17054 - MINOR: ssl/cli: Fix unapropriate comment in code on 'set ssl ocsp-response'
17055 - MEDIUM: ssl: add 300s supported time skew on OCSP response update.
17056 - MINOR: checks: mysql-check: Add support for v4.1+ authentication
17057 - MEDIUM: ssl: Add the option to use standardized DH parameters >= 1024 bits
17058 - MEDIUM: ssl: fix detection of ephemeral diffie-hellman key exchange by using the cipher description.
17059 - MEDIUM: http: add actions "replace-header" and "replace-values" in http-req/resp
17060 - MEDIUM: Break out check establishment into connect_chk()
17061 - MEDIUM: Add port_to_str helper
17062 - BUG/MEDIUM: fix ignored values for half-closed timeouts (client-fin and server-fin) in defaults section.
17063 - BUG/MEDIUM: Fix unhandled connections problem with systemd daemon mode and SO_REUSEPORT.
17064 - MINOR: regex: fix a little configuration memory leak.
17065 - MINOR: regex: Create JIT compatible function that return match strings
17066 - MEDIUM: regex: replace all standard regex function by own functions
17067 - MEDIUM: regex: Remove null terminated strings.
17068 - MINOR: regex: Use native PCRE API.
17069 - MINOR: missing regex.h include
17070 - DOC: Add Exim as Proxy Protocol implementer.
17071 - BUILD: don't use type "uint" which is not portable
17072 - BUILD: stats: workaround stupid and bogus -Werror=format-security behaviour
17073 - BUG/MEDIUM: http: clear CF_READ_NOEXP when preparing a new transaction
17074 - CLEANUP: http: don't clear CF_READ_NOEXP twice
17075 - DOC: fix proxy protocol v2 decoder example
17076 - DOC: fix remaining occurrences of "pattern extraction"
17077 - MINOR: log: allow the HTTP status code to be logged even in TCP frontends
17078 - MINOR: logs: don't limit HTTP header captures to HTTP frontends
17079 - MINOR: sample: improve sample_fetch_string() to report partial contents
17080 - MINOR: capture: extend the captures to support non-header keys
17081 - MINOR: tcp: prepare support for the "capture" action
17082 - MEDIUM: tcp: add a new tcp-request capture directive
17083 - MEDIUM: session: allow shorter retry delay if timeout connect is small
17084 - MEDIUM: session: don't apply the retry delay when redispatching
17085 - MEDIUM: session: redispatch earlier when possible
17086 - MINOR: config: warn when tcp-check rules are used without option tcp-check
17087 - BUG/MINOR: connection: make proxy protocol v1 support the UNKNOWN protocol
17088 - DOC: proxy protocol example parser was still wrong
17089 - DOC: minor updates to the proxy protocol doc
17090 - CLEANUP: connection: merge proxy proto v2 header and address block
17091 - MEDIUM: connection: add support for proxy protocol v2 in accept-proxy
17092 - MINOR: tools: add new functions to quote-encode strings
17093 - DOC: clarify the CSV format
17094 - MEDIUM: stats: report the last check and last agent's output on the CSV status
17095 - MINOR: freq_ctr: introduce a new averaging method
17096 - MEDIUM: session: maintain per-backend and per-server time statistics
17097 - MEDIUM: stats: report per-backend and per-server time stats in HTML and CSV outputs
17098 - BUG/MINOR: http: fix typos in previous patch
17099 - DOC: remove the ultra-obsolete TODO file
17100 - DOC: update roadmap
17101 - DOC: minor updates to the README
17102 - DOC: mention the maxconn limitations with the select poller
17103 - DOC: commit a few old design thoughts files
17104
Willy Tarreau2e858402014-05-28 17:50:53 +0200171052014/05/28 : 1.5-dev26
17106 - BUG/MEDIUM: polling: fix possible CPU hogging of worker processes after receiving SIGUSR1.
17107 - BUG/MINOR: stats: fix a typo on a closing tag for a server tracking another one
17108 - OPTIM: stats: avoid the calculation of a useless link on tracking servers in maintenance
17109 - MINOR: fix a few memory usage errors
17110 - CONTRIB: halog: Filter input lines by date and time through timestamp
17111 - MINOR: ssl: SSL_CTX_set_options() and SSL_CTX_set_mode() take a long, not an int
17112 - BUG/MEDIUM: regex: fix risk of buffer overrun in exp_replace()
17113 - MINOR: acl: set "str" as default match for strings
17114 - DOC: Add some precisions about acl default matching method
17115 - MEDIUM: acl: strenghten the option parser to report invalid options
17116 - BUG/MEDIUM: config: a stats-less config crashes in 1.5-dev25
17117 - BUG/MINOR: checks: tcp-check must not stop on '\0' for binary checks
17118 - MINOR: stats: improve alignment of color codes to save one line of header
17119 - MINOR: checks: simplify and improve reporting of state changes when using log-health-checks
17120 - MINOR: server: remove the SRV_DRAIN flag which can always be deduced
17121 - MINOR: server: use functions to detect state changes and to update them
17122 - MINOR: server: create srv_was_usable() from srv_is_usable() and use a pointer
17123 - BUG/MINOR: stats: do not report "100%" in the thottle column when server is draining
17124 - BUG/MAJOR: config: don't free valid regex memory
17125 - BUG/MEDIUM: session: don't clear CF_READ_NOEXP if analysers are not called
17126 - BUG/MINOR: stats: tracking servers may incorrectly report an inherited DRAIN status
17127 - MEDIUM: proxy: make timeout parser a bit stricter
17128 - REORG/MEDIUM: server: split server state and flags in two different variables
17129 - REORG/MEDIUM: server: move the maintenance bits out of the server state
17130 - MAJOR: server: use states instead of flags to store the server state
17131 - REORG: checks: put the functions in the appropriate files !
17132 - MEDIUM: server: properly support and propagate the maintenance status
17133 - MEDIUM: server: allow multi-level server tracking
17134 - CLEANUP: checks: rename the server_status_printf function
17135 - MEDIUM: checks: simplify server up/down/nolb transitions
17136 - MAJOR: checks: move health checks changes to set_server_check_status()
17137 - MINOR: server: make the status reporting function support a reason
17138 - MINOR: checks: simplify health check reporting functions
17139 - MINOR: server: implement srv_set_stopped()
17140 - MINOR: server: implement srv_set_running()
17141 - MINOR: server: implement srv_set_stopping()
17142 - MEDIUM: checks: simplify failure notification using srv_set_stopped()
17143 - MEDIUM: checks: simplify success notification using srv_set_running()
17144 - MEDIUM: checks: simplify stopping mode notification using srv_set_stopping()
17145 - MEDIUM: stats: report a server's own state instead of the tracked one's
17146 - MINOR: server: make use of srv_is_usable() instead of checking eweight
17147 - MAJOR: checks: add support for a new "drain" administrative mode
17148 - MINOR: stats: use the admin flags for soft enable/disable/stop/start on the web page
17149 - MEDIUM: stats: introduce new actions to simplify admin status management
17150 - MINOR: cli: introduce a new "set server" command
17151 - MINOR: stats: report a distinct output for DOWN caused by agent
17152 - MINOR: checks: support specific check reporting for the agent
17153 - MINOR: checks: support a neutral check result
17154 - BUG/MINOR: cli: "agent" was missing from the "enable"/"disable" help message
17155 - MEDIUM: cli: add support for enabling/disabling health checks.
17156 - MEDIUM: stats: report down caused by agent prior to reporting up
17157 - MAJOR: agent: rework the response processing and support additional actions
17158 - MINOR: stats: improve the stats web page to support more actions
17159 - CONTRIB: halog: avoid calling time/localtime/mktime for each line
17160 - DOC: document the workarouds for Google Chrome's bogus pre-connect
17161 - MINOR: stats: report SSL key computations per second
17162 - MINOR: stats: add counters for SSL cache lookups and misses
17163
Willy Tarreaua3393952014-05-10 15:16:43 +0200171642014/05/10 : 1.5-dev25
17165 - MEDIUM: connection: Implement and extented PROXY Protocol V2
17166 - MINOR: ssl: clean unused ACLs declarations
17167 - MINOR: ssl: adds fetchs and ACLs for ssl back connection.
17168 - MINOR: ssl: merge client's and frontend's certificate functions.
17169 - MINOR: ssl: adds ssl_f_sha1 fetch to return frontend's certificate fingerprint
17170 - MINOR: ssl: adds sample converter base64 for binary type.
17171 - MINOR: ssl: convert to binary ssl_fc_unique_id and ssl_bc_unique_id.
17172 - BUG/MAJOR: ssl: Fallback to private session cache if current lock mode is not supported.
17173 - MAJOR: ssl: Change default locks on ssl session cache.
17174 - BUG/MINOR: chunk: Fix function chunk_strcmp and chunk_strcasecmp match a substring.
17175 - MINOR: ssl: add global statement tune.ssl.force-private-cache.
17176 - MINOR: ssl: remove fallback to SSL session private cache if lock init fails.
17177 - BUG/MEDIUM: patterns: last fix was still not enough
17178 - MINOR: http: export the smp_fetch_cookie function
17179 - MINOR: http: generic pointer to rule argument
17180 - BUG/MEDIUM: pattern: a typo breaks automatic acl/map numbering
17181 - BUG/MAJOR: patterns: -i and -n are ignored for inlined patterns
17182 - BUG/MINOR: proxy: unsafe initialization of HTTP transaction when switching from TCP frontend
17183 - BUG/MINOR: http: log 407 in case of proxy auth
17184 - MINOR: http: rely on the message body parser to send 100-continue
17185 - MEDIUM: http: move reqadd after execution of http_request redirect
17186 - MEDIUM: http: jump to dedicated labels after http-request processing
17187 - BUG/MINOR: http: block rules forgot to increment the denied_req counter
17188 - BUG/MINOR: http: block rules forgot to increment the session's request counter
17189 - MEDIUM: http: move Connection header processing earlier
17190 - MEDIUM: http: remove even more of the spaghetti in the request path
17191 - MINOR: http: silently support the "block" action for http-request
17192 - CLEANUP: proxy: rename "block_cond" to "block_rules"
17193 - MEDIUM: http: emulate "block" rules using "http-request" rules
17194 - MINOR: http: remove the now unused loop over "block" rules
17195 - MEDIUM: http: factorize the "auth" action of http-request and stats
17196 - MEDIUM: http: make http-request rules processing return a verdict instead of a rule
17197 - MINOR: config: add minimum support for emitting warnings only once
17198 - MEDIUM: config: inform the user about the deprecatedness of "block" rules
17199 - MEDIUM: config: inform the user that "reqsetbe" is deprecated
17200 - MEDIUM: config: inform the user only once that "redispatch" is deprecated
17201 - MEDIUM: config: warn that '{cli,con,srv}timeout' are deprecated
17202 - BUG/MINOR: auth: fix wrong return type in pat_match_auth()
17203 - BUILD: config: remove a warning with clang
17204 - BUG/MAJOR: http: connection setup may stall on balance url_param
17205 - BUG/MEDIUM: http/session: disable client-side expiration only after body
17206 - BUG/MEDIUM: http: correctly report request body timeouts
17207 - BUG/MEDIUM: http: disable server-side expiration until client has sent the body
17208 - MEDIUM: listener: make the accept function more robust against pauses
17209 - BUILD: syscalls: remove improper inline statement in front of syscalls
17210 - BUILD: ssl: SSL_CTX_set_msg_callback() needs openssl >= 0.9.7
17211 - BUG/MAJOR: session: recover the correct connection pointer in half-initialized sessions
17212 - DOC: add some explanation on the shared cache build options in the readme.
17213 - MEDIUM: proxy: only adjust the backend's bind-process when already set
17214 - MEDIUM: config: limit nbproc to the machine's word size
17215 - MEDIUM: config: check the bind-process settings according to nbproc
17216 - MEDIUM: listener: parse the new "process" bind keyword
17217 - MEDIUM: listener: inherit the process mask from the proxy
17218 - MAJOR: listener: only start listeners bound to the same processes
17219 - MINOR: config: only report a warning when stats sockets are bound to more than 1 process
17220 - CLEANUP: config: set the maxaccept value for peers listeners earlier
17221 - BUG/MINOR: backend: only match IPv4 addresses with RDP cookies
17222 - BUG/MINOR: checks: correctly configure the address family and protocol
17223 - MINOR: tools: split is_addr() and is_inet_addr()
17224 - MINOR: protocols: use is_inet_addr() when only INET addresses are desired
17225 - MEDIUM: unix: add preliminary support for connecting to servers over UNIX sockets
17226 - MEDIUM: checks: only complain about the missing port when the check uses TCP
17227 - MEDIUM: unix: implement support for Linux abstract namespace sockets
17228 - DOC: map_beg was missing from the table of map_* converters
17229 - DOC: ebtree: indicate that prefix insertion/lookup may be used with strings
17230 - MEDIUM: pattern: use ebtree's longest match to index/lookup string beginning
17231 - BUILD: remove the obsolete BSD and OSX makefiles
17232 - MEDIUM: unix: avoid a double connect probe when no data are sent
17233 - DOC: stop referencing the slow git repository in the README
17234 - BUILD: only build the systemd wrapper on Linux 2.6 and above
17235 - DOC: update roadmap with completed tasks
17236 - MEDIUM: session: implement half-closed timeouts (client-fin and server-fin)
17237
Willy Tarreau8860dcd2014-04-26 00:08:14 +0200172382014/04/26 : 1.5-dev24
17239 - MINOR: pattern: find element in a reference
17240 - MEDIUM: http: ACL and MAP updates through http-(request|response) rules
17241 - MEDIUM: ssl: explicitly log failed handshakes after a heartbeat
17242 - DOC: Full section dedicated to the converters
17243 - MEDIUM: http: register http-request and http-response keywords
17244 - BUG/MINOR: compression: correctly report incoming byte count
17245 - BUG/MINOR: http: don't report server aborts as client aborts
17246 - BUG/MEDIUM: channel: bi_putblk() must not wrap before the end of buffer
17247 - CLEANUP: buffers: remove unused function buffer_contig_space_with_res()
17248 - MEDIUM: stats: reimplement HTTP keep-alive on the stats page
17249 - BUG/MAJOR: http: fix timeouts during data forwarding
17250 - BUG/MEDIUM: http: 100-continue responses must process the next part immediately
17251 - MEDIUM: http: move skipping of 100-continue earlier
17252 - BUILD: stats: let gcc know that last_fwd cannot be used uninitialized...
17253 - CLEANUP: general: get rid of all old occurrences of "session *t"
17254 - CLEANUP: http: remove the useless "if (1)" inherited from version 1.4
17255 - BUG/MEDIUM: stats: mismatch between behaviour and doc about front/back
17256 - MEDIUM: http: enable analysers to have keep-alive on stats
17257 - REORG: http: move HTTP Connection response header parsing earlier
17258 - MINOR: stats: always emit HTTP/1.1 in responses
17259 - MINOR: http: add capture.req.ver and capture.res.ver
17260 - MINOR: checks: add a new global max-spread-checks directive
17261 - BUG/MAJOR: http: fix the 'next' pointer when performing a redirect
17262 - MINOR: http: implement the max-keep-alive-queue setting
17263 - DOC: fix alphabetic order of tcp-check
17264 - MINOR: connection: add a new error code for SSL with heartbeat
17265 - MEDIUM: ssl: implement a workaround for the OpenSSL heartbleed attack
17266 - BUG/MEDIUM: Revert "MEDIUM: ssl: Add standardized DH parameters >= 1024 bits"
17267 - BUILD: http: remove a warning on strndup
17268 - BUILD: ssl: avoid a warning about conn not used with OpenSSL < 1.0.1
17269 - BUG/MINOR: ssl: really block OpenSSL's response to heartbleed attack
17270 - MINOR: ssl: finally catch the heartbeats missing the padding
17271
Willy Tarreau8317b282014-04-23 01:49:41 +0200172722014/04/23 : 1.5-dev23
17273 - BUG/MINOR: reject malformed HTTP/0.9 requests
17274 - MINOR: systemd wrapper: re-execute on SIGUSR2
17275 - MINOR: systemd wrapper: improve logging
17276 - MINOR: systemd wrapper: propagate exit status
17277 - BUG/MINOR: tcpcheck connect wrong behavior
17278 - MEDIUM: proxy: support use_backend with dynamic names
17279 - MINOR: stats: Enhancement to stats page to provide information of last session time.
17280 - BUG/MEDIUM: peers: fix key consistency for integer stick tables
17281 - DOC: fix a typo on http-server-close and encapsulate options with double-quotes
17282 - DOC: fix fetching samples syntax
17283 - MINOR: ssl: add ssl_fc_unique_id to fetch TLS Unique ID
17284 - MEDIUM: ssl: Use ALPN support as it will be available in OpenSSL 1.0.2
17285 - DOC: fix typo
17286 - CLEANUP: code style: use tabs to indent codes instead of spaces
17287 - DOC: fix a few config typos.
17288 - BUG/MINOR: raw_sock: also consider ENOTCONN in addition to EAGAIN for recv()
17289 - DOC: lowercase format string in unique-id
17290 - MINOR: set IP_FREEBIND on IPv6 sockets in transparent mode
17291 - BUG/MINOR: acl: req_ssl_sni fails with SSLv3 record version
17292 - BUG/MINOR: build: add missing objects in osx and bsd Makefiles
17293 - BUG/MINOR: build: handle whitespaces in wc -l output
17294 - BUG/MINOR: Fix name lookup ordering when compiled with USE_GETADDRINFO
17295 - MEDIUM: ssl: Add standardized DH parameters >= 1024 bits
17296 - BUG/MEDIUM: map: The map parser includes blank lines.
17297 - BUG/MINOR: log: The log of quotted capture header has been terminated by 2 quotes.
17298 - MINOR: standard: add function "encode_chunk"
17299 - BUG/MINOR: http: fix encoding of samples used in http headers
17300 - MINOR: sample: add hex converter
17301 - MEDIUM: sample: change the behavior of the bin2str cast
17302 - MAJOR: auth: Change the internal authentication system.
17303 - MEDIUM: acl/pattern: standardisation "of pat_parse_int()" and "pat_parse_dotted_ver()"
17304 - MEDIUM: pattern: The pattern parser no more uses <opaque> and just takes one string.
17305 - MEDIUM: pattern: Change the prototype of the function pattern_register().
17306 - CONTRIB: ip6range: add a network IPv6 range to mask converter
17307 - MINOR: pattern: separe list element from the data part.
17308 - MEDIUM: pattern: add indexation function.
17309 - MEDIUM: pattern: The parse functions just return "struct pattern" without memory allocation
17310 - MINOR: pattern: Rename "pat_idx_elt" to "pattern_tree"
17311 - MINOR: sample: dont call the sample cast function "c_none"
17312 - MINOR: standard: Add function for converting cidr to network mask.
17313 - MEDIUM: sample: Remove types SMP_T_CSTR and SMP_T_CBIN, replace it by SMP_F_CONST flags
17314 - MEDIUM: sample/http_proto: Add new type called method
17315 - MINOR: dumpstats: Group map inline help
17316 - MEDIUM: pattern: The function pattern_exec_match() returns "struct pattern" if the patten match.
17317 - MINOR: dumpstats: change map inline sentences
17318 - MINOR: dumpstats: change the "get map" display management
17319 - MINOR: map/dumpstats: The cli cmd "get map ..." display the "int" format.
17320 - MEDIUM: pattern: The match function browse itself the list or the tree.
17321 - MEDIUM: pattern: Index IPv6 addresses in a tree.
17322 - MEDIUM: pattern: add delete functions
17323 - MEDIUM: pattern: add prune function
17324 - MEDIUM: pattern: add sample lookup function.
17325 - MEDIUM: pattern/dumpstats: The function pattern_lookup() is no longer used
17326 - MINOR: map/pattern: The sample parser is stored in the pattern
17327 - MAJOR: pattern/map: Extends the map edition system in the patterns
17328 - MEDIUM: pattern: merge same pattern
17329 - MEDIUM: pattern: The expected type is stored in the pattern head, and conversion is executed once.
17330 - MINOR: pattern: Each pattern is identified by unique id.
17331 - MINOR: pattern/acl: Each pattern of each acl can be load with specified id
17332 - MINOR: pattern: The function "pattern_register()" is no longer used.
17333 - MINOR: pattern: Merge function pattern_add() with pat_ref_push().
17334 - MINOR: pattern: store configuration reference for each acl or map pattern.
17335 - MINOR: pattern: Each pattern expression element store the reference struct.
17336 - MINOR: dumpstats: display the reference for th key/pattern and value.
17337 - MEDIUM: pattern: delete() function uses the pat_ref_elt to find the element to be removed
17338 - MEDIUM: pattern_find_smp: functions find_smp uses the pat_ref_elt to find the element to be removed
17339 - MEDIUM: dumpstats/pattern: display and use each pointer of each pattern dumped
17340 - MINOR: pattern/map/acl: Centralization of the file parsers
17341 - MINOR: pattern: Check if the file reference is not used with acl and map
17342 - MINOR: acl/pattern: Acl "-M" option force to load file as map file with two columns
17343 - MEDIUM: dumpstats: Display error message during add of values.
17344 - MINOR: pattern: The function pat_ref_set() have now atomic behavior
17345 - MINOR: regex: The pointer regstr in the struc regex is no longer used.
17346 - MINOR: cli: Block the usage of the command "acl add" in many cases.
17347 - MINOR: doc: Update the documentation about the map and acl
17348 - MINOR: pattern: index duplicates
17349 - MINOR: configuration: File and line propagation
17350 - MINOR: dumpstat/conf: display all the configuration lines that using pattern reference
17351 - MINOR: standard: Disable ip resolution during the runtime
17352 - MINOR: pattern: Remove the flag "PAT_F_FROM_FILE".
17353 - MINOR: pattern: forbid dns resolutions
17354 - DOC: document "get map" / "get acl" on the CLI
17355 - MEDIUM: acl: Change the acl register struct
17356 - BUG/MEDIUM: acl: boolean only matches were broken by recent changes
17357 - DOC: pattern: pattern organisation schematics
17358 - MINOR: pattern/cli: Update used terms in documentation and cli
17359 - MINOR: cli: remove information about acl or map owner.
17360 - MINOR: session: don't always assume there's a listener
17361 - MINOR: pattern: Add function to prune and reload pattern list.
17362 - MINOR: standard: Add ipv6 support in the function url2sa().
17363 - MEDIUM: config: Dynamic sections.
17364 - BUG/MEDIUM: stick-table: fix IPv4-to-IPv6 conversion in src_* fetches
17365 - MINOR: http: Add the "language" converter to for use with accept-language
17366 - BUG/MINOR: log: Don't dump empty unique-id
17367 - BUG/MAJOR: session: fix a possible crash with src_tracked
17368 - DOC: Update "language" documentation
17369 - MINOR: http: add the function "del-header" to the directives http-request and http-response
17370 - DOC: add some information on capture.(req|res).hdr
17371 - MINOR: http: capture.req.method and capture.req.uri
17372 - MINOR: http: optimize capture.req.method and capture.req.uri
17373 - MINOR: session: clean up the connection free code
17374 - BUG/MEDIUM: checks: immediately report a connection success
17375 - MEDIUM: connection: don't use real send() flags in snd_buf()
17376 - OPTIM: ssl: implement dynamic record size adjustment
17377 - MINOR: stats: report exact last session time in backend too
17378 - BUG/MEDIUM: stats: the "lastsess" field must appear last in the CSV.
17379 - BUG/MAJOR: check: fix memory leak in "tcp-check connect" over SSL
17380 - BUG/MINOR: channel: initialize xfer_small/xfer_large on new buffers
17381 - MINOR: channel: add the date of last read in the channel
17382 - MEDIUM: stream-int: automatically disable CF_STREAMER flags after idle
17383 - MINOR: ssl: add DEFAULT_SSL_MAX_RECORD to set the record size at build time
17384 - MINOR: config: make the stream interface idle timer user-configurable
17385 - MINOR: config: add global directives to set default SSL ciphers
17386 - MINOR: sample: add a rand() sample fetch to return a sample.
17387 - BUG/MEDIUM: config: immediately abort if peers section has no name
17388 - BUG/MINOR: ssl: fix syntax in config error message
17389 - BUG/MEDIUM: ssl: always send a full buffer after EAGAIN
17390 - BUG/MINOR: config: server on-marked-* statement is ignored in default-server
17391 - BUG/MEDIUM: backend: prefer-last-server breaks redispatch
17392 - BUG/MEDIUM: http: continue to emit 503 on keep-alive to different server
17393 - MEDIUM: acl: fix pattern type for payload / payload_lv
17394 - BUG/MINOR: config: fix a crash on startup when a disabled backend references a peer
17395 - BUG/MEDIUM: compression: fix the output type of the compressor name
17396 - BUG/MEDIUM: http: don't start to forward request data before the connect
17397 - MINOR: http: release compression context only in http_end_txn()
17398 - MINOR: protect ebimtree/ebistree against multiple inclusions
17399 - MEDIUM: proxy: create a tree to store proxies by name
17400 - MEDIUM: proxy: make findproxy() use trees to look up proxies
17401 - MEDIUM: proxy: make get_backend_server() use findproxy() to lookup proxies
17402 - MEDIUM: stick-table: lookup table names using trees.
17403 - MEDIUM: config: faster lookup for duplicated proxy name
17404 - CLEANUP: acl: remove obsolete test in parse_acl_expr()
17405 - MINOR: sample: move smp_to_type to sample.c
17406 - MEDIUM: compression: consider the "q=" attribute in Accept-Encoding
17407 - REORG: cfgparse: move server keyword parsing to server.c
17408 - BUILD: adjust makefile for AIX 5.1
17409 - BUG/MEDIUM: pattern: fix wrong definition of the pat_prune_fcts array
17410 - CLEANUP: pattern: move array definitions to proto/ and not types/
17411 - BUG/MAJOR: counters: check for null-deref when looking up an alternate table
17412 - BUILD: ssl: previous patch failed
17413 - BUILD/MEDIUM: standard: get rid of the last strcpy()
17414 - BUILD/MEDIUM: standard: get rid of sprintf()
17415 - BUILD/MEDIUM: cfgparse: get rid of sprintf()
17416 - BUILD/MEDIUM: checks: get rid of sprintf()
17417 - BUILD/MEDIUM: http: remove calls to sprintf()
17418 - BUG/MEDIUM: systemd-wrapper: fix locating of haproxy binary
17419 - BUILD/MINOR: ssl: remove one call to sprintf()
17420 - MEDIUM: http: don't reject anymore message bodies not containing the url param
17421 - MEDIUM: http: wait for the first chunk or message body length in http_process_body
17422 - CLEANUP: http: rename http_process_request_body()
17423 - CLEANUP: http: prepare dedicated processing for chunked encoded message bodies
17424 - MINOR: http: make msg->eol carry the last CRLF length
17425 - MAJOR: http: do not use msg->sol while processing messages or forwarding data
17426 - MEDIUM: http: http_parse_chunk_crlf() must not advance the buffer pointer
17427 - MAJOR: http: don't update msg->sov anymore while processing the body
17428 - MINOR: http: add a small helper to compute the amount of body bytes present
17429 - MEDIUM: http: add a small helper to compute how far to rewind to find headers
17430 - MINOR: http: add a small helper to compute how far to rewind to find URI
17431 - MEDIUM: http: small helpers to compute how far to rewind to find BODY and DATA
17432 - MAJOR: http: reset msg->sov after headers are forwarded
17433 - MEDIUM: http: forward headers again while waiting for connection to complete
17434 - BUG/MINOR: http: deinitialize compression after a parsing error
17435 - BUG/MINOR: http: deinitialize compression after a compression error
17436 - MEDIUM: http: headers must be forwarded even if data was already inspected
17437 - MAJOR: http: re-enable compression on chunked encoding
17438 - MAJOR: http/compression: fix chunked-encoded response processing
17439 - MEDIUM: http: cleanup: centralize a little bit HTTP compression end
17440 - MEDIUM: http: start to centralize the forwarding code
17441 - MINOR: http: further cleanups of response forwarding function
17442 - MEDIUM: http: only allocate the temporary compression buffer when needed
17443 - MAJOR: http: centralize data forwarding in the request path
17444 - CLEANUP: http: document the response forwarding states
17445 - CLEANUP: http: remove all calls to http_silent_debug()
17446 - DOC: internal: add some reminders about HTTP parsing and pointer states
17447 - BUG/MAJOR: http: fix bug in parse_qvalue() when selecting compression algo
17448 - BUG/MINOR: stats: last session was not always set
17449 - DOC: add pointer to the Cyril's HTML doc in the README
17450 - MEDIUM: config: relax use_backend check to make the condition optional
17451 - MEDIUM: config: report misplaced http-request rules
17452 - MEDIUM: config: report misplaced use-server rules
17453 - DOC: update roadmap with what was done.
17454
Willy Tarreau1a34d572014-02-03 00:41:29 +0100174552014/02/03 : 1.5-dev22
17456 - MEDIUM: tcp-check new feature: connect
17457 - MEDIUM: ssl: Set verify 'required' as global default for servers side.
17458 - MINOR: ssl: handshake optim for long certificate chains.
17459 - BUG/MINOR: pattern: pattern comparison executed twice
17460 - BUG/MEDIUM: map: segmentation fault with the stats's socket command "set map ..."
17461 - BUG/MEDIUM: pattern: Segfault in binary parser
17462 - MINOR: pattern: move functions for grouping pat_match_* and pat_parse_* and add documentation.
17463 - MINOR: standard: The parse_binary() returns the length consumed and his documentation is updated
17464 - BUG/MINOR: payload: the patterns of the acl "req.ssl_ver" are no parsed with the good function.
17465 - BUG/MEDIUM: pattern: "pat_parse_dotted_ver()" set bad expect_type.
17466 - BUG/MINOR: sample: The c_str2int converter does not fail if the entry is not an integer
17467 - BUG/MEDIUM: http/auth: Sometimes the authentication credentials can be mix between two requests
17468 - MINOR: doc: Bad cli function name.
17469 - MINOR: http: smp_fetch_capture_header_* fetch captured headers
17470 - BUILD: last release inadvertently prepended a "+" in front of the date
17471 - BUG/MEDIUM: stream-int: fix the keep-alive idle connection handler
17472 - BUG/MEDIUM: backend: do not re-initialize the connection's context upon reuse
17473 - BUG: Revert "OPTIM/MEDIUM: epoll: fuse active events into polled ones during polling changes"
17474 - BUG/MINOR: checks: successful check completion must not re-enable MAINT servers
17475 - MINOR: http: try to stick to same server after status 401/407
17476 - BUG/MINOR: http: always disable compression on HTTP/1.0
17477 - OPTIM: poll: restore polling after a poll/stop/want sequence
17478 - OPTIM: http: don't stop polling for read on the client side after a request
17479 - BUG/MEDIUM: checks: unchecked servers could not be enabled anymore
17480 - BUG/MEDIUM: stats: the web interface must check the tracked servers before enabling
17481 - BUG/MINOR: channel: CHN_INFINITE_FORWARD must be unsigned
17482 - BUG/MINOR: stream-int: do not clear the owner upon unregister
17483 - MEDIUM: stats: add support for HTTP keep-alive on the stats page
17484 - BUG/MEDIUM: stats: fix HTTP/1.0 breakage introduced in previous patch
17485 - Revert "MEDIUM: stats: add support for HTTP keep-alive on the stats page"
17486 - MAJOR: channel: add a new flag CF_WAKE_WRITE to notify the task of writes
17487 - OPTIM: session: set the READ_DONTWAIT flag when connecting
17488 - BUG/MINOR: http: don't clear the SI_FL_DONT_WAKE flag between requests
17489 - MINOR: session: factor out the connect time measurement
17490 - MEDIUM: session: prepare to support earlier transitions to the established state
17491 - MEDIUM: stream-int: make si_connect() return an established state when possible
17492 - MINOR: checks: use an inline function for health_adjust()
17493 - OPTIM: session: put unlikely() around the freewheeling code
17494 - MEDIUM: config: report a warning when multiple servers have the same name
17495 - BUG: Revert "OPTIM: poll: restore polling after a poll/stop/want sequence"
17496 - BUILD/MINOR: listener: remove a glibc warning on accept4()
17497 - BUG/MAJOR: connection: fix mismatch between rcv_buf's API and usage
17498 - BUILD: listener: fix recent accept4() again
17499 - BUG/MAJOR: ssl: fix breakage caused by recent fix abf08d9
17500 - BUG/MEDIUM: polling: ensure we update FD status when there's no more activity
17501 - MEDIUM: listener: fix polling management in the accept loop
17502 - MINOR: protocol: improve the proto->drain() API
17503 - MINOR: connection: add a new conn_drain() function
17504 - MEDIUM: tcp: report in tcp_drain() that lingering is already disabled on close
17505 - MEDIUM: connection: update callers of ctrl->drain() to use conn_drain()
17506 - MINOR: connection: add more error codes to report connection errors
17507 - MEDIUM: tcp: report connection error at the connection level
17508 - MEDIUM: checks: make use of chk_report_conn_err() for connection errors
17509 - BUG/MEDIUM: unique_id: HTTP request counter is not stable
17510 - DOC: fix misleading information about SIGQUIT
17511 - BUG/MAJOR: fix freezes during compression
17512 - BUG/MEDIUM: stream-interface: don't wake the task up before end of transfer
17513 - BUILD: fix VERDATE exclusion regex
17514 - CLEANUP: polling: rename "spec_e" to "state"
17515 - DOC: add a diagram showing polling state transitions
17516 - REORG: polling: rename "spec_e" to "state" and "spec_p" to "cache"
17517 - REORG: polling: rename "fd_spec" to "fd_cache"
17518 - REORG: polling: rename the cache allocation functions
17519 - REORG: polling: rename "fd_process_spec_events()" to "fd_process_cached_events()"
17520 - MAJOR: polling: rework the whole polling system
17521 - MAJOR: connection: remove the CO_FL_WAIT_{RD,WR} flags
17522 - MEDIUM: connection: remove conn_{data,sock}_poll_{recv,send}
17523 - MEDIUM: connection: add check for readiness in I/O handlers
17524 - MEDIUM: stream-interface: the polling flags must always be updated in chk_snd_conn
17525 - MINOR: stream-interface: no need to call fd_stop_both() on error
17526 - MEDIUM: connection: no need to recheck FD state
17527 - CLEANUP: connection: use conn_ctrl_ready() instead of checking the flag
17528 - CLEANUP: connection: use conn_xprt_ready() instead of checking the flag
17529 - CLEANUP: connection: fix comments in connection.h to reflect new behaviour.
17530 - OPTIM: raw-sock: don't speculate after a short read if polling is enabled
17531 - MEDIUM: polling: centralize polled events processing
17532 - MINOR: polling: create function fd_compute_new_polled_status()
17533 - MINOR: cli: add more information to the "show info" output
17534 - MEDIUM: listener: add support for limiting the session rate in addition to the connection rate
17535 - MEDIUM: listener: apply a limit on the session rate submitted to SSL
17536 - REORG: stats: move the stats socket states to dumpstats.c
17537 - MINOR: cli: add the new "show pools" command
17538 - BUG/MEDIUM: counters: flush content counters after each request
17539 - BUG/MEDIUM: counters: fix stick-table entry leak when using track-sc2 in connection
17540 - MINOR: tools: add very basic support for composite pointers
17541 - MEDIUM: counters: stop relying on session flags at all
17542 - BUG/MINOR: cli: fix missing break in command line parser
17543 - BUG/MINOR: config: correctly report when log-format headers require HTTP mode
17544 - MAJOR: http: update connection mode configuration
17545 - MEDIUM: http: make keep-alive + httpclose be passive mode
17546 - MAJOR: http: switch to keep-alive mode by default
17547 - BUG/MEDIUM: http: fix regression caused by recent switch to keep-alive by default
17548 - BUG/MEDIUM: listener: improve detection of non-working accept4()
17549 - BUILD: listener: add fcntl.h and unistd.h
17550 - BUG/MINOR: raw_sock: correctly set the MSG_MORE flag
17551
Willy Tarreau6b07bf72013-12-17 00:45:49 +0100175522013/12/17 : 1.5-dev21
17553 - MINOR: stats: don't use a monospace font to report numbers
17554 - MINOR: session: remove debugging code
17555 - BUG/MAJOR: patterns: fix double free caused by loading strings from files
17556 - MEDIUM: http: make option http_proxy automatically rewrite the URL
17557 - BUG/MEDIUM: http: cook_cnt() forgets to set its output type
17558 - BUG/MINOR: stats: correctly report throttle rate of low weight servers
17559 - BUG/MEDIUM: checks: servers must not start in slowstart mode
17560 - BUG/MINOR: acl: parser must also stop at comma on ACL-only keywords
17561 - MEDIUM: stream-int: implement a very simplistic idle connection manager
17562 - DOC: update the ROADMAP file
17563
Willy Tarreau11f64d62013-12-16 02:32:37 +0100175642013/12/16 : 1.5-dev20
17565 - DOC: add missing options to the manpage
17566 - DOC: add manpage references to all system calls
17567 - DOC: update manpage reference to haproxy-en.txt
17568 - DOC: remove -s and -l options from the manpage
17569 - DOC: missing information for the "description" keyword
17570 - DOC: missing http-send-name-header keyword in keyword table
17571 - MINOR: tools: function my_memmem() to lookup binary contents
17572 - MEDIUM: checks: add send/expect tcp based check
17573 - MEDIUM: backend: Enhance hash-type directive with an algorithm options
17574 - MEDIUM: backend: Implement avalanche as a modifier of the hashing functions.
17575 - DOC: Documentation for hashing function, with test results.
17576 - BUG/MEDIUM: ssl: potential memory leak using verifyhost
17577 - BUILD: ssl: compilation issue with openssl v0.9.6.
17578 - BUG/MINOR: ssl: potential memory leaks using ssl_c_key_alg or ssl_c_sig_alg.
17579 - MINOR: ssl: optimization of verifyhost on wildcard certificates.
17580 - BUG/MINOR: ssl: verifyhost does not match empty strings on wildcard.
17581 - MINOR: ssl: Add statement 'verifyhost' to "server" statements
17582 - CLEANUP: session: remove event_accept() which was not used anymore
17583 - BUG/MINOR: deinit: free fdinfo while doing cleanup
17584 - DOC: minor typo fix in documentation
17585 - BUG/MEDIUM: server: set the macro for server's max weight SRV_UWGHT_MAX to SRV_UWGHT_RANGE
17586 - BUG/MINOR: use the same check condition for server as other algorithms
17587 - DOC: fix typo in comments
17588 - BUG/MINOR: deinit: free server map which is allocated in init_server_map()
17589 - CLEANUP: stream_interface: cleanup loop information in si_conn_send_loop()
17590 - MINOR: buffer: align the last output line of buffer_dump()
17591 - MINOR: buffer: align the last output line if there are less than 8 characters left
17592 - DOC: stick-table: modify the description
17593 - OPTIM: stream_interface: return directly if the connection flag CO_FL_ERROR has been set
17594 - CLEANUP: code style: use tabs to indent codes
17595 - DOC: checkcache: block responses with cacheable cookies
17596 - BUG/MINOR: check_config_validity: check the returned value of stktable_init()
17597 - MEDIUM: haproxy-systemd-wrapper: Use haproxy in same directory
17598 - MEDIUM: systemd-wrapper: Kill child processes when interrupted
17599 - LOW: systemd-wrapper: Write debug information to stdout
17600 - BUG/MINOR: http: fix "set-tos" not working in certain configurations
17601 - MEDIUM: http: add IPv6 support for "set-tos"
17602 - DOC: ssl: update build instructions to use new SSL_* variables
17603 - BUILD/MINOR: systemd: fix compiler warning about unused result
17604 - url32+src - like base32+src but whole url including parameters
17605 - BUG/MINOR: fix forcing fastinter in "on-error"
17606 - CLEANUP: Make parameters of srv_downtime and srv_getinter const
17607 - CLEANUP: Remove unused 'last_slowstart_change' field from struct peer
17608 - MEDIUM: Split up struct server's check element
17609 - MEDIUM: Move result element to struct check
17610 - MEDIUM: Paramatise functions over the check of a server
17611 - MEDIUM: cfgparse: Factor out check initialisation
17612 - MEDIUM: Add state to struct check
17613 - MEDIUM: Move health element to struct check
17614 - MEDIUM: Add helper for task creation for checks
17615 - MEDIUM: Add helper function for failed checks
17616 - MEDIUM: Log agent fail, stopped or down as info
17617 - MEDIUM: Remove option lb-agent-chk
17618 - MEDIUM: checks: Add supplementary agent checks
17619 - MEDIUM: Do not mark a server as down if the agent is unavailable
17620 - MEDIUM: Set rise and fall of agent checks to 1
17621 - MEDIUM: Add enable and disable agent unix socket commands
17622 - MEDIUM: Add DRAIN state and report it on the stats page
17623 - BUILD/MINOR: missing header file
17624 - CLEANUP: regex: Create regex_comp function that compiles regex using compilation options
17625 - CLEANUP: The function "regex_exec" needs the string length but in many case they expect null terminated char.
17626 - MINOR: http: some exported functions were not in the header file
17627 - MINOR: http: change url_decode to return the size of the decoded string.
17628 - BUILD/MINOR: missing header file
17629 - BUG/MEDIUM: sample: The function v4tov6 cannot support input and output overlap
17630 - BUG/MINOR: arg: fix error reporting for add-header/set-header sample fetch arguments
17631 - MINOR: sample: export the generic sample conversion parser
17632 - MINOR: sample: export sample_casts
17633 - MEDIUM: acl: use the fetch syntax 'fetch(args),conv(),conv()' into the ACL keyword
17634 - MINOR: stick-table: use smp_expr_output_type() to retrieve the output type of a "struct sample_expr"
17635 - MINOR: sample: provide the original sample_conv descriptor struct to the argument checker function.
17636 - MINOR: tools: Add a function to convert buffer to an ipv6 address
17637 - MINOR: acl: export acl arrays
17638 - MINOR: acl: Extract the pattern parsing and indexation from the "acl_read_patterns_from_file()" function
17639 - MINOR: acl: Extract the pattern matching function
17640 - MINOR: sample: Define new struct sample_storage
17641 - MEDIUM: acl: associate "struct sample_storage" to each "struct acl_pattern"
17642 - REORG: acl/pattern: extract pattern matching from the acl file and create pattern.c
17643 - MEDIUM: pattern: create pattern expression
17644 - MEDIUM: pattern: rename "acl" prefix to "pat"
17645 - MEDIUM: sample: let the cast functions set their output type
17646 - MINOR: sample: add a private field to the struct sample_conv
17647 - MINOR: map: Define map types
17648 - MEDIUM: sample: add the "map" converter
17649 - MEDIUM: http: The redirect strings follows the log format rules.
17650 - BUG/MINOR: acl: acl parser does not recognize empty converter list
17651 - BUG/MINOR: map: The map list was declared in the map.h file
17652 - MINOR: map: Cleanup the initialisation of map descriptors.
17653 - MEDIUM: map: merge identical maps
17654 - BUG/MEDIUM: pattern: Pattern node has type of "struct pat_idx_elt" in place of "struct eb_node"
17655 - BUG/MEDIUM: map: Bad map file parser
17656 - CLEANUP/MINOR: standard: use the system define INET6_ADDRSTRLEN in place of MAX_IP6_LEN
17657 - BUG/MEDIUM: sample: conversion from str to ipv6 may read data past end
17658 - MINOR: map: export map_get_reference() function
17659 - MINOR: pattern: Each pattern sets the expected input type
17660 - MEDIUM: acl: Last patch change the output type
17661 - MEDIUM: pattern: Extract the index process from the pat_parse_*() functions
17662 - MINOR: standard: The function parse_binary() can use preallocated buffer
17663 - MINOR: regex: Change the struct containing regex
17664 - MINOR: regex: Copy the original regex expression into string.
17665 - MINOR: pattern: add support for compiling patterns for lookups
17666 - MINOR: pattern: make the pattern matching function return a pointer to the matched element
17667 - MINOR: map: export parse output sample functions
17668 - MINOR: pattern: add function to lookup a specific entry in pattern list
17669 - MINOR: pattern/map: Each pattern must free the associated sample
17670 - MEDIUM: dumpstat: make the CLI parser understand the backslash as an escape char
17671 - MEDIUM: map: dynamic manipulation of maps
17672 - BUG/MEDIUM: unique_id: junk in log on empty unique_id
17673 - BUG/MINOR: log: junk at the end of syslog packet
17674 - MINOR: Makefile: provide cscope rule
17675 - DOC: compression: chunk are not compressed anymore
17676 - MEDIUM: session: disable lingering on the server when the client aborts
17677 - BUG/MEDIUM: prevent gcc from moving empty keywords lists into BSS
17678 - DOC: remove the comment saying that SSL certs are not checked on the server side
17679 - BUG: counters: third counter was not stored if others unset
17680 - BUG/MAJOR: http: don't emit the send-name-header when no server is available
17681 - BUG/MEDIUM: http: "option checkcache" fails with the no-cache header
17682 - BUG/MAJOR: http: sample prefetch code was not properly migrated
17683 - BUG/MEDIUM: splicing: fix abnormal CPU usage with splicing
17684 - BUG/MINOR: stream_interface: don't call chk_snd() on polled events
17685 - OPTIM: splicing: use splice() for the last block when relevant
17686 - MEDIUM: sample: handle comma-delimited converter list
17687 - MINOR: sample: fix sample_process handling of unstable data
17688 - CLEANUP: acl: move the 3 remaining sample fetches to samples.c
17689 - MINOR: sample: add a new "date" fetch to return the current date
17690 - MINOR: samples: add the http_date([<offset>]) sample converter.
17691 - DOC: minor improvements to the part on the stats socket.
17692 - MEDIUM: sample: systematically pass the keyword pointer to the keyword
17693 - MINOR: payload: split smp_fetch_rdp_cookie()
17694 - MINOR: counters: factor out smp_fetch_sc*_tracked
17695 - MINOR: counters: provide a generic function to retrieve a stkctr for sc* and src.
17696 - MEDIUM: counters: factor out smp_fetch_sc*_get_gpc0
17697 - MEDIUM: counters: factor out smp_fetch_sc*_gpc0_rate
17698 - MEDIUM: counters: factor out smp_fetch_sc*_inc_gpc0
17699 - MEDIUM: counters: factor out smp_fetch_sc*_clr_gpc0
17700 - MEDIUM: counters: factor out smp_fetch_sc*_conn_cnt
17701 - MEDIUM: counters: factor out smp_fetch_sc*_conn_rate
17702 - MEDIUM: counters: factor out smp_fetch_sc*_conn_cur
17703 - MEDIUM: counters: factor out smp_fetch_sc*_sess_cnt
17704 - MEDIUM: counters: factor out smp_fetch_sc*_sess_rate
17705 - MEDIUM: counters: factor out smp_fetch_sc*_http_req_cnt
17706 - MEDIUM: counters: factor out smp_fetch_sc*_http_req_rate
17707 - MEDIUM: counters: factor out smp_fetch_sc*_http_err_cnt
17708 - MEDIUM: counters: factor out smp_fetch_sc*_http_err_rate
17709 - MEDIUM: counters: factor out smp_fetch_sc*_kbytes_in
17710 - MEDIUM: counters: factor out smp_fetch_sc*_bytes_in_rate
17711 - MEDIUM: counters: factor out smp_fetch_sc*_kbytes_out
17712 - MEDIUM: counters: factor out smp_fetch_sc*_bytes_out_rate
17713 - MEDIUM: counters: factor out smp_fetch_sc*_trackers
17714 - MINOR: session: make the number of stick counter entries more configurable
17715 - MEDIUM: counters: support passing the counter number as a fetch argument
17716 - MEDIUM: counters: support looking up a key in an alternate table
17717 - MEDIUM: cli: adjust the method for feeding frequency counters in tables
17718 - MINOR: cli: make it possible to enter multiple values at once with "set table"
17719 - MINOR: payload: allow the payload sample fetches to retrieve arbitrary lengths
17720 - BUG/MINOR: cli: "clear table" must not kill entries that don't match condition
17721 - MINOR: ssl: use MAXPATHLEN instead of PATH_MAX
17722 - MINOR: config: warn when a server with no specific port uses rdp-cookie
17723 - BUG/MEDIUM: unique_id: HTTP request counter must be unique!
17724 - DOC: add a mention about the limited chunk size
17725 - BUG/MEDIUM: fix broken send_proxy on FreeBSD
17726 - MEDIUM: stick-tables: flush old entries upon soft-stop
17727 - MINOR: tcp: add new "close" action for tcp-response
17728 - MINOR: payload: provide the "res.len" fetch method
17729 - BUILD: add SSL_INC/SSL_LIB variables to force the path to openssl
17730 - MINOR: http: compute response time before processing headers
17731 - BUG/MINOR: acl: fix improper string size assignment in proxy argument
17732 - BUG/MEDIUM: http: accept full buffers on smp_prefetch_http
17733 - BUG/MINOR: acl: implicit arguments of ACL keywords were not properly resolved
17734 - BUG/MEDIUM: session: risk of crash on out of memory conditions
17735 - BUG/MINOR: peers: set the accept date in outgoing connections
17736 - BUG/MEDIUM: tcp: do not skip tracking rules on second pass
17737 - BUG/MEDIUM: acl: do not evaluate next terms after a miss
17738 - MINOR: acl: add a warning when an ACL keyword is used without any value
17739 - MINOR: tcp: don't use tick_add_ifset() when timeout is known to be set
17740 - BUG/MINOR: acl: remove patterns from the tree before freeing them
17741 - MEDIUM: backend: add support for the wt6 hash
17742 - OPTIM/MEDIUM: epoll: fuse active events into polled ones during polling changes
17743 - OPTIM/MINOR: mark the source address as already known on accept()
17744 - BUG/MINOR: stats: don't count tarpitted connections twice
17745 - CLEANUP: http: homogenize processing of denied req counter
17746 - CLEANUP: http: merge error handling for req* and http-request *
17747 - BUG/MEDIUM: http: fix possible parser crash when parsing erroneous "http-request redirect" rules
17748 - BUG/MINOR: http: fix build warning introduced with url32/url32_src
17749 - BUG/MEDIUM: checks: fix slow start regression after fix attempt
17750 - BUG/MAJOR: server: weight calculation fails for map-based algorithms
17751 - MINOR: stats: report correct throttling percentage for servers in slowstart
17752 - OPTIM: connection: fold the error handling with handshake handling
17753 - MINOR: peers: accept to learn strings of different lengths
17754 - BUG/MAJOR: fix haproxy crash when using server tracking instead of checks
17755 - BUG/MAJOR: check: fix haproxy crash during soft-stop/soft-start
17756 - BUG/MINOR: stats: do not report "via" on tracking servers in maintenance
17757 - BUG/MINOR: connection: fix typo in error message report
17758 - BUG/MINOR: backend: fix target address retrieval in transparent mode
17759 - BUG/MINOR: config: report the correct track-sc number in tcp-rules
17760 - BUG/MINOR: log: fix log-format parsing errors
17761 - DOC: add some information about how to apply converters to samples
17762 - MINOR: acl/pattern: use types different from int to clarify who does what.
17763 - MINOR: pattern: import acl_find_match_name() into pattern.h
17764 - MEDIUM: stick-tables: support automatic conversion from ipv4<->ipv6
17765 - MEDIUM: log-format: relax parsing of '%' followed by unsupported characters
17766 - BUG/MINOR: http: usual deinit stuff in last commit
17767 - BUILD: log: silent a warning about isblank() with latest patches
17768 - BUG/MEDIUM: checks: fix health check regression causing them to depend on declaration order
17769 - BUG/MEDIUM: checks: fix a long-standing issue with reporting connection errors
17770 - BUG/MINOR: checks: don't consider errno and use conn->err_code
17771 - BUG/MEDIUM: checks: also update the DRAIN state from the web interface
17772 - MINOR: stats: remove some confusion between the DRAIN state and NOLB
17773 - BUG/MINOR: tcp: check that no error is pending during a connect probe
17774 - BUG/MINOR: connection: check EINTR when sending a PROXY header
17775 - MEDIUM: connection: set the socket shutdown flags on socket errors
17776 - BUG/MEDIUM: acl: fix regression introduced by latest converters support
17777 - MINOR: connection: clear errno prior to checking for errors
17778 - BUG/MINOR: checks: do not trust errno in write event before any syscall
17779 - MEDIUM: checks: centralize error reporting
17780 - OPTIM: checks: don't poll on recv when using plain TCP connects
17781 - OPTIM: checks: avoid setting SO_LINGER twice
17782 - MINOR: tools: add a generic binary hex string parser
17783 - BUG/MEDIUM: checks: tcp-check: do not poll when there's nothing to send
17784 - BUG/MEDIUM: check: tcp-check might miss some outgoing data when socket buffers are full
17785 - BUG/MEDIUM: args: fix double free on error path in argument expression parser
17786 - BUG/MINOR: acl: fix sample expression error reporting
17787 - BUG/MINOR: checks: tcp-check actions are enums, not flags
17788 - MEDIUM: checks: make tcp-check perform multiple send() at once
17789 - BUG/MEDIUM: stick: completely remove the unused flag from the store entries
17790 - OPTIM: ebtree: pack the struct eb_node to avoid holes on 64-bit
17791 - BUG/MEDIUM: stick-tables: complete the latest fix about store-responses
17792 - CLEANUP: stream_interface: remove unused field err_loc
17793 - MEDIUM: stats: don't use conn->xprt_st anymore
17794 - MINOR: session: add a simple function to retrieve a session from a task
17795 - MEDIUM: stats: don't use conn->xprt_ctx anymore
17796 - MEDIUM: peers: don't rely on conn->xprt_ctx anymore
17797 - MINOR: http: prevent smp_fetch_url_{ip,port} from using si->conn
17798 - MINOR: connection: make it easier to emit proxy protocol for unknown addresses
17799 - MEDIUM: stats: prepare the HTTP stats I/O handler to support more states
17800 - MAJOR: stats: move the HTTP stats handling to its applet
17801 - MEDIUM: stats: move request argument processing to the final step
17802 - MEDIUM: session: detect applets from the session by using s->target
17803 - MAJOR: session: check for a connection to an applet in sess_prepare_conn_req()
17804 - MAJOR: session: pass applet return traffic through the response analysers
17805 - MEDIUM: stream-int: split the shutr/shutw functions between applet and conn
17806 - MINOR: stream-int: make the shutr/shutw functions void
17807 - MINOR: obj: provide a safe and an unsafe access to pointed objects
17808 - MINOR: connection: add a field to store an object type
17809 - MINOR: connection: always initialize conn->objt_type to OBJ_TYPE_CONN
17810 - MEDIUM: stream interface: move the peers' ptr into the applet context
17811 - MINOR: stream-interface: move the applet context to its own struct
17812 - MINOR: obj: introduce a new type appctx
17813 - MINOR: stream-int: rename ->applet to ->appctx
17814 - MINOR: stream-int: split si_prepare_embedded into si_prepare_none and si_prepare_applet
17815 - MINOR: stream-int: add a new pointer to the end point
17816 - MEDIUM: stream-interface: set the pointer to the applet into the applet context
17817 - MAJOR: stream interface: remove the ->release function pointer
17818 - MEDIUM: stream-int: make ->end point to the connection or the appctx
17819 - CLEANUP: stream-int: remove obsolete si_ctrl function
17820 - MAJOR: stream-int: stop using si->conn and use si->end instead
17821 - MEDIUM: stream-int: do not allocate a connection in parallel to applets
17822 - MEDIUM: session: attach incoming connection to target on embryonic sessions
17823 - MINOR: connection: add conn_init() to (re)initialize a connection
17824 - MINOR: checks: call conn_init() to properly initialize the connection.
17825 - MINOR: peers: make use of conn_init() to initialize the connection
17826 - MINOR: session: use conn_init() to initialize the connections
17827 - MINOR: http: use conn_init() to reinitialize the server connection
17828 - MEDIUM: connection: replace conn_prepare with conn_assign
17829 - MINOR: get rid of si_takeover_conn()
17830 - MINOR: connection: add conn_new() / conn_free()
17831 - MAJOR: connection: add two new flags to indicate readiness of control/transport
17832 - MINOR: stream-interface: introduce si_reset() and si_set_state()
17833 - MINOR: connection: reintroduce conn_prepare to set the protocol and transport
17834 - MINOR: connection: replace conn_assign with conn_attach
17835 - MEDIUM: stream-interface: introduce si_attach_conn to replace si_prepare_conn
17836 - MAJOR: stream interface: dynamically allocate the outgoing connection
17837 - MEDIUM: connection: move the send_proxy offset to the connection
17838 - MINOR: connection: check for send_proxy during the connect(), not the SI
17839 - MEDIUM: connection: merge the send_proxy and local_send_proxy calls
17840 - MEDIUM: stream-int: replace occurrences of si->appctx with si_appctx()
17841 - MEDIUM: stream-int: return the allocated appctx in stream_int_register_handler()
17842 - MAJOR: stream-interface: dynamically allocate the applet context
17843 - MEDIUM: session: automatically register the applet designated by the target
17844 - MEDIUM: stats: delay appctx initialization
17845 - CLEANUP: peers: use less confusing state/status code names
17846 - MEDIUM: peers: delay appctx initialization
17847 - MINOR: stats: provide some appctx information in "show sess all"
17848 - DIET/MINOR: obj: pack the obj_type enum to 8 bits
17849 - DIET/MINOR: connection: rearrange a few fields to save 8 bytes in the struct
17850 - DIET/MINOR: listener: rearrange a few fields in struct listener to save 16 bytes
17851 - DIET/MINOR: proxy: rearrange a few fields in struct proxy to save 16 bytes
17852 - DIET/MINOR: session: reduce the struct session size by 8 bytes
17853 - DIET/MINOR: stream-int: rearrange a few fields in struct stream_interface to save 8 bytes
17854 - DIET/MINOR: http: reduce the size of struct http_txn by 8 bytes
17855 - MINOR: http: switch the http state to an enum
17856 - MINOR: http: use an enum for the auth method in http_auth_data
17857 - DIET/MINOR: task: reduce struct task size by 8 bytes
17858 - MINOR: stream_interface: add reporting of ressouce allocation errors
17859 - MINOR: session: report lack of resources using the new stream-interface's error code
17860 - BUILD: simplify the date and version retrieval in the makefile
17861 - BUILD: prepare the makefile to skip format lines in SUBVERS and VERDATE
17862 - BUILD: use format tags in VERDATE and SUBVERS files
17863 - BUG/MEDIUM: channel: bo_getline() must wait for \n until buffer is full
17864 - CLEANUP: check: server port is unsigned
17865 - BUG/MEDIUM: checks: agent doesn't get the response if server does not closes
17866 - MINOR: tools: buf2ip6 must not modify output on failure
17867 - MINOR: pattern: do not assign SMP_TYPES by default to patterns
17868 - MINOR: sample: make sample_parse_expr() use memprintf() to report parse errors
17869 - MINOR: arg: improve wording on error reporting
17870 - BUG/MEDIUM: sample: simplify and fix the argument parsing
17871 - MEDIUM: acl: fix the argument parser to let the lower layer report detailed errors
17872 - MEDIUM: acl: fix the initialization order of the ACL expression
17873 - CLEANUP: acl: remove useless blind copy-paste from sample converters
17874 - TESTS: add regression tests for ACL and sample expression parsers
17875 - BUILD: time: adapt the type of TV_ETERNITY to the local system
17876 - MINOR: chunks: allocate the trash chunks before parsing the config
17877 - BUILD: definitely silence some stupid GCC warnings
17878 - MINOR: chunks: always initialize the output chunk in get_trash_chunk()
17879 - MINOR: checks: improve handling of the servers tracking chain
17880 - REORG: checks: retrieve the check-specific defines from server.h to checks.h
17881 - MINOR: checks: use an enum instead of flags to report a check result
17882 - MINOR: checks: rename the state flags
17883 - MINOR: checks: replace state DISABLED with CONFIGURED and ENABLED
17884 - MINOR: checks: use check->state instead of srv->state & SRV_CHECKED
17885 - MINOR: checks: fix agent check interval computation
17886 - MINOR: checks: add a PAUSED state for the checks
17887 - MINOR: checks: create the agent tasks even when no check is configured
17888 - MINOR: checks: add a flag to indicate what check is an agent
17889 - MEDIUM: checks: enable agent checks even if health checks are disabled
17890 - BUG/MEDIUM: checks: ensure we can enable a server after boot
17891 - BUG/MEDIUM: checks: tracking servers must not inherit the MAINT flag
17892 - BUG/MAJOR: session: repair tcp-request connection rules
17893 - BUILD: fix SUBVERS extraction in the Makefile
17894 - BUILD: pattern: silence a warning about uninitialized value
17895 - BUILD: log: fix build warning on Solaris
17896 - BUILD: dumpstats: fix build error on Solaris
17897 - DOC: move option pgsql-check to the correct place
17898 - DOC: move option tcp-check to the proper place
17899 - MINOR: connection: add simple functions to report connection readiness
17900 - MEDIUM: connection: centralize handling of nolinger in fd management
17901 - OPTIM: http: set CF_READ_DONTWAIT on response message
17902 - OPTIM: http: do not re-enable reading on client side while closing the server side
17903 - MINOR: config: add option http-keep-alive
17904 - MEDIUM: connection: inform si_alloc_conn() whether existing conn is OK or not
17905 - MAJOR: stream-int: handle the connection reuse in si_connect()
17906 - MAJOR: http: add the keep-alive transition on the server side
17907 - MAJOR: backend: enable connection reuse
17908 - MINOR: http: add option prefer-last-server
17909 - MEDIUM: http: do not report connection errors for second and further requests
17910
Willy Tarreaueab1dc62013-06-17 15:10:25 +0200179112013/06/17 : 1.5-dev19
17912 - MINOR: stats: remove the autofocus on the scope input field
17913 - BUG/MEDIUM: Fix crt-list file parsing error: filtered name was ignored.
17914 - BUG/MEDIUM: ssl: EDH ciphers are not usable if no DH parameters present in pem file.
17915 - BUG/MEDIUM: shctx: makes the code independent on SSL runtime version.
17916 - MEDIUM: ssl: improve crt-list format to support negation
17917 - BUG: ssl: fix crt-list for clients not supporting SNI
17918 - MINOR: stats: show soft-stopped servers in different color
17919 - BUG/MINOR: config: "source" does not work in defaults section
17920 - BUG: regex: fix pcre compile error when using JIT
17921 - MINOR: ssl: add pattern fetch 'ssl_c_sha1'
17922 - BUG: ssl: send payload gets corrupted if tune.ssl.maxrecord is used
17923 - MINOR: show PCRE version and JIT status in -vv
17924 - BUG/MINOR: jit: don't rely on USE flag to detect support
17925 - DOC: readme: add suggestion to link against static openssl
17926 - DOC: examples: provide simplified ssl configuration
17927 - REORG: tproxy: prepare the transparent proxy defines for accepting other OSes
17928 - MINOR: tproxy: add support for FreeBSD
17929 - MINOR: tproxy: add support for OpenBSD
17930 - DOC: examples: provide an example of transparent proxy configuration for FreeBSD 8
17931 - CLEANUP: fix minor typo in error message.
17932 - CLEANUP: fix missing include <string.h> in proto/listener.h
17933 - CLEANUP: protect checks.h from multiple inclusions
17934 - MINOR: compression: acl "res.comp" and fetch "res.comp_algo"
17935 - BUG/MINOR: http: add-header/set-header did not accept the ACL condition
17936 - BUILD: mention in the Makefile that USE_PCRE_JIT is for libpcre >= 8.32
17937 - BUG/MEDIUM: splicing is broken since 1.5-dev12
17938 - BUG/MAJOR: acl: add implicit arguments to the resolve list
17939 - BUG/MINOR: tcp: fix error reporting for TCP rules
17940 - CLEANUP: peers: remove a bit of spaghetti to prepare for the next bugfix
17941 - MINOR: stick-table: allow to allocate an entry without filling it
17942 - BUG/MAJOR: peers: fix an overflow when syncing strings larger than 16 bytes
17943 - MINOR: session: only call http_send_name_header() when changing the server
17944 - MINOR: tcp: report the erroneous word in tcp-request track*
17945 - BUG/MAJOR: backend: consistent hash can loop forever in certain circumstances
17946 - BUG/MEDIUM: log: fix regression on log-format handling
17947 - MEDIUM: log: report file name, line number, and directive name with log-format errors
17948 - BUG/MINOR: cli: "clear table" did not work anymore without a key
17949 - BUG/MINOR: cli: "clear table xx data.xx" does not work anymore
17950 - BUG/MAJOR: http: compression still has defects on chunked responses
17951 - BUG/MINOR: stats: fix confirmation links on the stats interface
17952 - BUG/MINOR: stats: the status bar does not appear anymore after a change
17953 - BUG/MEDIUM: stats: allocate the stats frontend also on "stats bind-process"
17954 - BUG/MEDIUM: stats: fix a regression when dealing with POST requests
17955 - BUG/MINOR: fix unterminated ACL array in compression
17956 - BUILD: last fix broke non-linux platforms
17957 - MINOR: init: indicate the SSL runtime version on -vv.
17958 - BUG/MEDIUM: compression: the deflate algorithm must use global settings as well
17959 - BUILD: stdbool is not portable (again)
17960 - DOC: readme: add a small reminder about restrictions to respect in the code
17961 - MINOR: ebtree: add new eb_next_dup/eb_prev_dup() functions to visit duplicates
17962 - BUG/MINOR: acl: fix a double free during exit when using PCRE_JIT
17963 - DOC: fix wrong copy-paste in the rspdel example
17964 - MINOR: counters: make it easier to extend the amount of tracked counters
17965 - MEDIUM: counters: add support for tracking a third counter
17966 - MEDIUM: counters: add a new "gpc0_rate" counter in stick-tables
17967 - BUG/MAJOR: http: always ensure response buffer has some room for a response
17968 - MINOR: counters: add fetch/acl sc*_tracked to indicate whether a counter is tracked
17969 - MINOR: defaults: allow REQURI_LEN and CAPTURE_LEN to be redefined
17970 - MINOR: log: add a new flag 'L' for locally processed requests
17971 - MINOR: http: add full-length header fetch methods
17972 - MEDIUM: protocol: implement a "drain" function in protocol layers
17973 - MEDIUM: http: add a new "http-response" ruleset
17974 - MEDIUM: http: add the "set-nice" action to http-request and http-response
17975 - MEDIUM: log: add a log level override value in struct session
17976 - MEDIUM: http: add support for action "set-log-level" in http-request/http-response
17977 - MEDIUM: http: add support for "set-tos" in http-request/http-response
17978 - MEDIUM: http: add the "set-mark" action on http-request/http-response rules
17979 - MEDIUM: tcp: add "tcp-request connection expect-proxy layer4"
17980 - MEDIUM: acl: automatically detect the type of certain fetches
17981 - MEDIUM: acl: remove a lot of useless ACLs that are equivalent to their fetches
17982 - MEDIUM: acl: remove 15 additional useless ACLs that are equivalent to their fetches
17983 - DOC: major reorg of ACL + sample fetch
17984 - CLEANUP: http: remove the bogus urlp_ip ACL match
17985 - MINOR: acl: add the new "env()" fetch method to retrieve an environment variable
17986 - BUG/MINOR: acl: correctly consider boolean fetches when doing casts
17987 - BUG/CRITICAL: fix a possible crash when using negative header occurrences
17988 - DOC: update ROADMAP file
17989 - MEDIUM: counters: use sc0/sc1/sc2 instead of sc1/sc2/sc3
17990 - MEDIUM: stats: add proxy name filtering on the statistic page
17991
Willy Tarreau289dd922013-04-03 02:26:31 +0200179922013/04/03 : 1.5-dev18
17993 - DOCS: Add explanation of intermediate certs to crt paramater
17994 - DOC: typo and minor fixes in compression paragraph
17995 - MINOR: config: http-request configuration error message misses new keywords
17996 - DOC: minor typo fix in documentation
17997 - BUG/MEDIUM: ssl: ECDHE ciphers not usable without named curve configured.
17998 - MEDIUM: ssl: add bind-option "strict-sni"
17999 - MEDIUM: ssl: add mapping from SNI to cert file using "crt-list"
18000 - MEDIUM: regex: Use PCRE JIT in acl
18001 - DOC: simplify bind option "interface" explanation
18002 - DOC: tfo: bump required kernel to linux-3.7
18003 - BUILD: add explicit support for TFO with USE_TFO
18004 - MEDIUM: New cli option -Ds for systemd compatibility
18005 - MEDIUM: add haproxy-systemd-wrapper
18006 - MEDIUM: add systemd service
18007 - BUG/MEDIUM: systemd-wrapper: don't leak zombie processes
18008 - BUG/MEDIUM: remove supplementary groups when changing gid
18009 - BUG/MEDIUM: config: fix parser crash with bad bind or server address
18010 - BUG/MINOR: Correct logic in cut_crlf()
18011 - CLEANUP: checks: Make desc argument to set_server_check_status const
18012 - CLEANUP: dumpstats: Make cli_release_handler() static
18013 - MEDIUM: server: Break out set weight processing code
18014 - MEDIUM: server: Allow relative weights greater than 100%
18015 - MEDIUM: server: Tighten up parsing of weight string
18016 - MEDIUM: checks: Add agent health check
18017 - BUG/MEDIUM: ssl: openssl 0.9.8 doesn't open /dev/random before chroot
18018 - BUG/MINOR: time: frequency counters are not totally accurate
18019 - BUG/MINOR: http: don't process abortonclose when request was sent
18020 - BUG/MEDIUM: stream_interface: don't close outgoing connections on shutw()
18021 - BUG/MEDIUM: checks: ignore late resets after valid responses
18022 - DOC: fix bogus recommendation on usage of gpc0 counter
18023 - BUG/MINOR: http-compression: lookup Cache-Control in the response, not the request
18024 - MINOR: signal: don't block SIGPROF by default
18025 - OPTIM: epoll: make use of EPOLLRDHUP
18026 - OPTIM: splice: detect shutdowns and avoid splice() == 0
18027 - OPTIM: splice: assume by default that splice is working correctly
18028 - BUG/MINOR: log: temporary fix for lost SSL info in some situations
18029 - BUG/MEDIUM: peers: only the last peers section was used by tables
18030 - BUG/MEDIUM: config: verbosely reject peers sections with multiple local peers
18031 - BUG/MINOR: epoll: use a fix maxevents argument in epoll_wait()
18032 - BUG/MINOR: config: fix improper check for failed memory alloc in ACL parser
18033 - BUG/MINOR: config: free peer's address when exiting upon parsing error
18034 - BUG/MINOR: config: check the proper variable when parsing log minlvl
18035 - BUG/MEDIUM: checks: ensure the health_status is always within bounds
18036 - BUG/MINOR: cli: show sess should always validate s->listener
18037 - BUG/MINOR: log: improper NULL return check on utoa_pad()
18038 - CLEANUP: http: remove a useless null check
18039 - CLEANUP: tcp/unix: remove useless NULL check in {tcp,unix}_bind_listener()
18040 - BUG/MEDIUM: signal: signal handler does not properly check for signal bounds
18041 - BUG/MEDIUM: tools: off-by-one in quote_arg()
18042 - BUG/MEDIUM: uri_auth: missing NULL check and memory leak on memory shortage
18043 - BUG/MINOR: unix: remove the 'level' field from the ux struct
18044 - CLEANUP: http: don't try to deinitialize http compression if it fails before init
18045 - CLEANUP: config: slowstart is never negative
18046 - CLEANUP: config: maxcompcpuusage is never negative
18047 - BUG/MEDIUM: log: emit '-' for empty fields again
18048 - BUG/MEDIUM: checks: fix a race condition between checks and observe layer7
18049 - BUILD: fix a warning emitted by isblank() on non-c99 compilers
18050 - BUILD: improve the makefile's support for libpcre
18051 - MEDIUM: halog: add support for counting per source address (-ic)
18052 - MEDIUM: tools: make str2sa_range support all address syntaxes
18053 - MEDIUM: config: make use of str2sa_range() instead of str2sa()
18054 - MEDIUM: config: use str2sa_range() to parse server addresses
18055 - MEDIUM: config: use str2sa_range() to parse peers addresses
18056 - MINOR: tests: add a config file to ease address parsing tests.
18057 - MINOR: ssl: add a global tunable for the max SSL/TLS record size
18058 - BUG/MINOR: syscall: fix NR_accept4 system call on sparc/linux
18059 - BUILD/MINOR: syscall: add definition of NR_accept4 for ARM
18060 - MINOR: config: report missing peers section name
18061 - BUG/MEDIUM: tools: fix bad character handling in str2sa_range()
18062 - BUG/MEDIUM: stats: never apply "unix-bind prefix" to the global stats socket
18063 - MINOR: tools: prepare str2sa_range() to return an error message
18064 - BUG/MEDIUM: checks: don't call connect() on unsupported address families
18065 - MINOR: tools: prepare str2sa_range() to accept a prefix
18066 - MEDIUM: tools: make str2sa_range() parse unix addresses too
18067 - MEDIUM: config: make str2listener() use str2sa_range() to parse unix addresses
18068 - MEDIUM: config: use a single str2sa_range() call to parse bind addresses
18069 - MEDIUM: config: use str2sa_range() to parse log addresses
18070 - CLEANUP: tools: remove str2sun() which is not used anymore.
18071 - MEDIUM: config: add complete support for str2sa_range() in dispatch
18072 - MEDIUM: config: add complete support for str2sa_range() in server addr
18073 - MEDIUM: config: add complete support for str2sa_range() in 'server'
18074 - MEDIUM: config: add complete support for str2sa_range() in 'peer'
18075 - MEDIUM: config: add complete support for str2sa_range() in 'source' and 'usesrc'
18076 - CLEANUP: minor cleanup in str2sa_range() and str2ip()
18077 - CLEANUP: config: do not use multiple errmsg at once
18078 - MEDIUM: tools: support specifying explicit address families in str2sa_range()
18079 - MAJOR: listener: support inheriting a listening fd from the parent
18080 - MAJOR: tools: support environment variables in addresses
18081 - BUG/MEDIUM: http: add-header should not emit "-" for empty fields
18082 - BUG/MEDIUM: config: ACL compatibility check on "redirect" was wrong
18083 - BUG/MEDIUM: http: fix another issue caused by http-send-name-header
18084 - DOC: mention the new HTTP 307 and 308 redirect statues
18085 - MEDIUM: poll: do not use FD_* macros anymore
18086 - BUG/MAJOR: ev_select: disable the select() poller if maxsock > FD_SETSIZE
18087 - BUG/MINOR: acl: ssl_fc_{alg,use}_keysize must parse integers, not strings
18088 - BUG/MINOR: acl: ssl_c_used, ssl_fc{,_has_crt,_has_sni} take no pattern
18089 - BUILD: fix usual isdigit() warning on solaris
18090 - BUG/MEDIUM: tools: vsnprintf() is not always reliable on Solaris
18091 - OPTIM: buffer: remove one jump in buffer_count()
18092 - OPTIM: http: improve branching in chunk size parser
18093 - OPTIM: http: optimize the response forward state machine
18094 - BUILD: enable poll() by default in the makefile
18095 - BUILD: add explicit support for Mac OS/X
18096 - BUG/MAJOR: http: use a static storage for sample fetch context
18097 - BUG/MEDIUM: ssl: improve error processing and reporting in ssl_sock_load_cert_list_file()
18098 - BUG/MAJOR: http: fix regression introduced by commit a890d072
18099 - BUG/MAJOR: http: fix regression introduced by commit d655ffe
18100 - BUG/CRITICAL: using HTTP information in tcp-request content may crash the process
18101 - MEDIUM: acl: remove flag ACL_MAY_LOOKUP which is improperly used
18102 - MEDIUM: samples: use new flags to describe compatibility between fetches and their usages
18103 - MINOR: log: indicate it when some unreliable sample fetches are logged
18104 - MEDIUM: samples: move payload-based fetches and ACLs to their own file
18105 - MINOR: backend: rename sample fetch functions and declare the sample keywords
18106 - MINOR: frontend: rename sample fetch functions and declare the sample keywords
18107 - MINOR: listener: rename sample fetch functions and declare the sample keywords
18108 - MEDIUM: http: unify acl and sample fetch functions
18109 - MINOR: session: rename sample fetch functions and declare the sample keywords
18110 - MAJOR: acl: make all ACLs reference the fetch function via a sample.
18111 - MAJOR: acl: remove the arg_mask from the ACL definition and use the sample fetch's
18112 - MAJOR: acl: remove fetch argument validation from the ACL struct
18113 - MINOR: http: add new direction-explicit sample fetches for headers and cookies
18114 - MINOR: payload: add new direction-explicit sample fetches
18115 - CLEANUP: acl: remove ACL hooks which were never used
18116 - MEDIUM: proxy: remove acl_requires and just keep a flag "http_needed"
18117 - MINOR: sample: provide a function to report the name of a sample check point
18118 - MAJOR: acl: convert all ACL requires to SMP use+val instead of ->requires
18119 - CLEANUP: acl: remove unused references to ACL_USE_*
18120 - MINOR: http: replace acl_parse_ver with acl_parse_str
18121 - MEDIUM: acl: move the ->parse, ->match and ->smp fields to acl_expr
18122 - MAJOR: acl: add option -m to change the pattern matching method
18123 - MINOR: acl: remove the use_count in acl keywords
18124 - MEDIUM: acl: have a pointer to the keyword name in acl_expr
18125 - MEDIUM: acl: support using sample fetches directly in ACLs
18126 - MEDIUM: http: remove val_usr() to validate user_lists
18127 - MAJOR: sample: maintain a per-proxy list of the fetch args to resolve
18128 - MINOR: ssl: add support for the "alpn" bind keyword
18129 - MINOR: http: status code 303 is HTTP/1.1 only
18130 - MEDIUM: http: implement redirect 307 and 308
18131 - MINOR: http: status 301 should not be marked non-cacheable
18132
Willy Tarreaua3ecbd92012-12-28 15:04:05 +0100181332012/12/28 : 1.5-dev17
18134 - MINOR: ssl: Setting global tune.ssl.cachesize value to 0 disables SSL session cache.
18135 - BUG/MEDIUM: stats: fix stats page regression introduced by commit 20b0de5
18136 - BUG/MINOR: stats: last fix was still wrong
18137 - BUG/MINOR: stats: http-request rules still don't cope with stats
18138 - BUG/MINOR: http: http-request add-header emits a corrupted header
18139 - BUG/MEDIUM: stats: disable request analyser when processing POST or HEAD
18140 - BUG/MINOR: log: make log-format, unique-id-format and add-header more independant
18141 - BUILD: log: unused variable svid
18142 - CLEANUP: http: rename the misleading http_check_access_rule
18143 - MINOR: http: move redirect rule processing to its own function
18144 - REORG: config: move the http redirect rule parser to proto_http.c
18145 - MEDIUM: http: add support for "http-request redirect" rules
18146 - MEDIUM: http: add support for "http-request tarpit" rule
18147
Willy Tarreau69eda352012-12-24 16:48:14 +0100181482012/12/24 : 1.5-dev16
18149 - BUG/MEDIUM: ssl: Prevent ssl error from affecting other connections.
18150 - BUG/MINOR: ssl: error is not reported if it occurs simultaneously with peer close detection.
18151 - MINOR: ssl: add fetch and acl "ssl_c_used" to check if current SSL session uses a client certificate.
18152 - MINOR: contrib: make the iprange tool grep for addresses
18153 - CLEANUP: polling: gcc doesn't always optimize constants away
18154 - OPTIM: poll: optimize fd management functions for low register count CPUs
18155 - CLEANUP: poll: remove a useless double-check on fdtab[fd].owner
18156 - OPTIM: epoll: use a temp variable for intermediary flag computations
18157 - OPTIM: epoll: current fd does not count as a new one
18158 - BUG/MINOR: poll: the I/O handler was called twice for polled I/Os
18159 - MINOR: http: make resp_ver and status ACLs check for the presence of a response
18160 - BUG/MEDIUM: stream-interface: fix possible stalls during transfers
18161 - BUG/MINOR: stream_interface: don't return when the fd is already set
18162 - BUG/MEDIUM: connection: always update connection flags prior to computing polling
18163 - CLEANUP: buffer: use buffer_empty() instead of buffer_len()==0
18164 - BUG/MAJOR: stream_interface: fix occasional data transfer freezes
18165 - BUG/MEDIUM: stream_interface: fix another case where the reader might not be woken up
18166 - BUG/MINOR: http: don't abort client connection on premature responses
18167 - BUILD: no need to clean up when making git-tar
18168 - MINOR: log: add a tag for amount of bytes uploaded from client to server
18169 - BUG/MEDIUM: log: fix possible segfault during config parsing
18170 - MEDIUM: log: change a few log tokens to make them easier to remember
18171 - BUG/MINOR: log: add_to_logformat_list() used the wrong constants
18172 - MEDIUM: log-format: make the format parser more robust and more extensible
18173 - MINOR: sample: support cast from bool to string
18174 - MINOR: samples: add a function to fetch and convert any sample to a string
18175 - MINOR: log: add lf_text_len
18176 - MEDIUM: log: add the ability to include samples in logs
18177 - REORG: stats: massive code reorg and cleanup
18178 - REORG: stats: move the HTTP header injection to proto_http
18179 - REORG: stats: functions are now HTTP/CLI agnostic
18180 - BUG/MINOR: log: fix regression introduced by commit 8a3f52
18181 - MINOR: chunks: centralize the trash chunk allocation
18182 - MEDIUM: stats: use hover boxes instead of title to report details
18183 - MEDIUM: stats: use multi-line tips to display detailed counters
18184 - MINOR: tools: simplify the use of the int to ascii macros
18185 - MINOR: stats: replace STAT_FMT_CSV with STAT_FMT_HTML
18186 - MINOR: http: prepare to support more http-request actions
18187 - MINOR: log: make parse_logformat_string() take a const char *
18188 - MEDIUM: http: add http-request 'add-header' and 'set-header' to build headers
18189
Willy Tarreau0cae4b32012-12-12 00:39:52 +0100181902012/12/12 : 1.5-dev15
18191 - DOC: add a few precisions on compression
18192 - BUG/MEDIUM: ssl: Fix handshake failure on session resumption with client cert.
18193 - BUG/MINOR: ssl: One free session in cache remains unused.
18194 - BUG/MEDIUM: ssl: first outgoing connection would fail with {ca,crt}-ignore-err
18195 - MEDIUM: ssl: manage shared cache by blocks for huge sessions.
18196 - MINOR: acl: add fetch for server session rate
18197 - BUG/MINOR: compression: Content-Type is case insensitive
18198 - MINOR: compression: disable on multipart or status != 200
18199 - BUG/MINOR: http: don't report client aborts as server errors
18200 - MINOR: stats: compute the ratio of compressed response based on 2xx responses
18201 - MINOR: http: factor out the content-type checks
18202 - BUG/MAJOR: stats: correctly check for a possible divide error when showing compression ratios
18203 - BUILD: ssl: OpenSSL 0.9.6 has no renegociation
18204 - BUG/MINOR: http: disable compression when message has no body
18205 - MINOR: compression: make the stats a bit more robust
18206 - BUG/MEDIUM: comp: DEFAULT_MAXZLIBMEM was expressed in bytes and not megabytes
18207 - MINOR: connection: don't remove failed handshake flags
18208 - MEDIUM: connection: add an error code in connections
18209 - MEDIUM: connection: add minimal error reporting in logs for incomplete connections
18210 - MEDIUM: connection: add error reporting for the PROXY protocol header
18211 - MEDIUM: connection: add error reporting for the SSL
18212 - DOC: document the connection error format in logs
18213 - BUG/MINOR: http: don't log a 503 on client errors while waiting for requests
18214 - BUILD: stdbool is not portable
18215 - BUILD: ssl: NAME_MAX is not portable, use MAXPATHLEN instead
18216 - BUG/MAJOR: raw_sock: must check error code on hangup
18217 - BUG/MAJOR: polling: do not set speculative events on ERR nor HUP
18218 - BUG/MEDIUM: session: fix FD leak when transport layer logging is enabled
18219 - MINOR: stats: add a few more information on session dump
18220 - BUG/MINOR: tcp: set the ADDR_TO_SET flag on outgoing connections
18221 - CLEANUP: connection: remove unused server/proxy/task/si_applet declarations
18222 - BUG/MEDIUM: tcp: process could theorically crash on lack of source ports
18223 - MINOR: cfgparse: mention "interface" in the list of allowed "source" options
18224 - MEDIUM: connection: introduce "struct conn_src" for servers and proxies
18225 - CLEANUP: proto_tcp: use the same code to bind servers and backends
18226 - CLEANUP: backend: use the same tproxy address selection code for servers and backends
18227 - BUG/MEDIUM: stick-tables: conversions to strings were broken in dev13
18228 - MEDIUM: proto_tcp: add support for tracking L7 information
18229 - MEDIUM: counters: add sc1_trackers/sc2_trackers
18230 - MINOR: http: add the "base32" pattern fetch function
18231 - MINOR: http: add the "base32+src" fetch method.
18232 - CLEANUP: session: use an array for the stick counters
18233 - BUG/MINOR: proto_tcp: fix parsing of "table" in track-sc1/2
18234 - BUG/MINOR: proto_tcp: bidirectional fetches not supported anymore in track-sc1/2
18235 - BUG/MAJOR: connection: always recompute polling status upon I/O
18236 - BUG/MINOR: connection: remove a few synchronous calls to polling updates
18237 - MINOR: config: improve error checking on TCP stick-table tracking
18238 - DOC: add some clarifications to the readme
18239
Willy Tarreaufee48ce2012-11-26 03:11:05 +0100182402012/11/26 : 1.5-dev14
18241 - DOC: fix minor typos
18242 - BUG/MEDIUM: compression: does not forward trailers
18243 - MINOR: buffer_dump with ASCII
18244 - BUG/MEDIUM: checks: mark the check as stopped after a connect error
18245 - BUG/MEDIUM: checks: ensure we completely disable polling upon success
18246 - BUG/MINOR: checks: don't mark the FD as closed before transport close
18247 - MEDIUM: checks: avoid accumulating TIME_WAITs during checks
18248 - MINOR: cli: report the msg state in full text in "show sess $PTR"
18249 - CLEANUP: checks: rename some server check flags
18250 - MAJOR: checks: rework completely bogus state machine
18251 - BUG/MINOR: checks: slightly clean the state machine up
18252 - MEDIUM: checks: avoid waking the application up for pure TCP checks
18253 - MEDIUM: checks: close the socket as soon as we have a response
18254 - BUG/MAJOR: checks: close FD on all timeouts
18255 - MINOR: checks: fix recv polling after connect()
18256 - MEDIUM: connection: provide a common conn_full_close() function
18257 - BUG/MEDIUM: checks: prevent TIME_WAITs from appearing also on timeouts
18258 - BUG/MAJOR: peers: the listener's maxaccept was not set and caused loops
18259 - MINOR: listeners: make the accept loop more robust when maxaccept==0
18260 - BUG/MEDIUM: acl: correctly resolve all args, not just the first one
18261 - BUG/MEDIUM: acl: make prue_acl_expr() correctly free ACL expressions upon exit
18262 - BUG/MINOR: stats: fix inversion of the report of a check in progress
18263 - MEDIUM: tcp: add explicit support for delayed ACK in connect()
18264 - BUG/MEDIUM: connection: always disable polling upon error
18265 - MINOR: connection: abort earlier when errors are detected
18266 - BUG/MEDIUM: checks: report handshake failures
18267 - BUG/MEDIUM: connection: local_send_proxy must wait for connection to establish
18268 - MINOR: tcp: add support for the "v6only" bind option
18269 - MINOR: stats: also report the computed compression savings in html stats
18270 - MINOR: stats: report the total number of compressed responses per front/back
18271 - MINOR: tcp: add support for the "v4v6" bind option
18272 - DOC: stats: document the comp_rsp stats column
18273 - BUILD: buffer: fix another isprint() warning on solaris
18274 - MINOR: cli: add support for the "show sess all" command
18275 - BUG/MAJOR: cli: show sess <id> may randomly corrupt the back-ref list
18276 - MINOR: cli: improve output format for show sess $ptr
18277
Willy Tarreauad15d122012-11-22 01:11:33 +0100182782012/11/22 : 1.5-dev13
18279 - BUILD: fix build issue without USE_OPENSSL
18280 - BUILD: fix compilation error with DEBUG_FULL
18281 - DOC: ssl: remove prefer-server-ciphers documentation
18282 - DOC: ssl: surround keywords with quotes
18283 - DOC: fix minor typo on http-send-name-header
18284 - BUG/MEDIUM: acls using IPv6 subnets patterns incorrectly match IPs
18285 - BUG/MAJOR: fix a segfault on option http_proxy and url_ip acl
18286 - MEDIUM: http: accept IPv6 values with (s)hdr_ip acl
18287 - BUILD: report zlib support in haproxy -vv
18288 - DOC: compression: add some details and clean up the formatting
18289 - DOC: Change is_ssl acl to ssl_fc acl in example
18290 - DOC: make it clear what the HTTP request size is
18291 - MINOR: ssl: try to load Diffie-Hellman parameters from cert file
18292 - DOC: ssl: update 'crt' statement on 'bind' about Diffie-Hellman parameters loading
18293 - MINOR: ssl: add elliptic curve Diffie-Hellman support for ssl key generation
18294 - DOC: ssl: add 'ecdhe' statement on 'bind'
18295 - MEDIUM: ssl: add client certificate authentication support
18296 - DOC: ssl: add 'verify', 'cafile' and 'crlfile' statements on 'bind'
18297 - MINOR: ssl: add fetch and ACL 'client_crt' to test a client cert is present
18298 - DOC: ssl: add fetch and ACL 'client_cert'
18299 - MINOR: ssl: add ignore verify errors options
18300 - DOC: ssl: add 'ca-ignore-err' and 'crt-ignore-err' statements on 'bind'
18301 - MINOR: ssl: add fetch and ACL 'ssl_verify_result'
18302 - DOC: ssl: add fetch and ACL 'ssl_verify_result'
18303 - MINOR: ssl: add fetches and ACLs to return verify errors
18304 - DOC: ssl: add fetches and ACLs 'ssl_verify_crterr', 'ssl_verify_caerr', and 'ssl_verify_crterr_depth'
18305 - MINOR: ssl: disable shared memory and locks on session cache if nbproc == 1
18306 - MINOR: ssl: add build param USE_PRIVATE_CACHE to build cache without shared memory
18307 - MINOR: ssl : add statements 'notlsv11' and 'notlsv12' and rename 'notlsv1' to 'notlsv10'.
18308 - DOC: ssl : add statements 'notlsv11' and 'notlsv12' and rename 'notlsv1' to 'notlsv10'.
18309 - MEDIUM: config: authorize frontend and listen without bind.
18310 - MINOR: ssl: add statement 'no-tls-tickets' on bind to disable stateless session resumption
18311 - DOC: ssl: add 'no-tls-tickets' statement documentation.
18312 - BUG/MINOR: ssl: Fix CRL check was not enabled when crlfile was specified.
18313 - BUG/MINOR: build: Fix compilation issue on openssl 0.9.6 due to missing CRL feature.
18314 - BUG/MINOR: conf: Fix 'maxsslconn' statement error if built without OPENSSL.
18315 - BUG/MINOR: build: Fix failure with USE_OPENSSL=1 and USE_FUTEX=1 on archs i486 and i686.
18316 - MINOR: ssl: remove prefer-server-ciphers statement and set it as the default on ssl listeners.
18317 - BUG/MEDIUM: ssl: subsequent handshakes fail after server configuration changes
18318 - MINOR: ssl: add 'crt-base' and 'ca-base' global statements.
18319 - MEDIUM: conf: rename 'nosslv3' and 'notlsvXX' statements 'no-sslv3' and 'no-tlsvXX'.
18320 - MEDIUM: conf: rename 'cafile' and 'crlfile' statements 'ca-file' and 'crl-file'
18321 - MINOR: ssl: use bit fields to store ssl options instead of one int each
18322 - MINOR: ssl: add 'force-sslv3' and 'force-tlsvXX' statements on bind.
18323 - MINOR: ssl: add 'force-sslv3' and 'force-tlsvXX' statements on server
18324 - MINOR: ssl: add defines LISTEN_DEFAULT_CIPHERS and CONNECT_DEFAULT_CIPHERS.
18325 - BUG/MINOR: ssl: Fix issue on server statements 'no-tls*' and 'no-sslv3'
18326 - MINOR: ssl: move ssl context init for servers from cfgparse.c to ssl_sock.c
18327 - MEDIUM: ssl: reject ssl server keywords in default-server statement
18328 - MINOR: ssl: add statement 'no-tls-tickets' on server side.
18329 - MINOR: ssl: add statements 'verify', 'ca-file' and 'crl-file' on servers.
18330 - DOC: Fix rename of options cafile and crlfile to ca-file and crl-file.
18331 - MINOR: sample: manage binary to string type convertion in stick-table and samples.
18332 - MINOR: acl: add parse and match primitives to use binary type on ACLs
18333 - MINOR: sample: export 'sample_get_trash_chunk(void)'
18334 - MINOR: conf: rename all ssl modules fetches using prefix 'ssl_fc' and 'ssl_c'
18335 - MINOR: ssl: add pattern and ACLs fetches 'ssl_fc_protocol', 'ssl_fc_cipher', 'ssl_fc_use_keysize' and 'ssl_fc_alg_keysize'
18336 - MINOR: ssl: add pattern fetch 'ssl_fc_session_id'
18337 - MINOR: ssl: add pattern and ACLs fetches 'ssl_c_version' and 'ssl_f_version'
18338 - MINOR: ssl: add pattern and ACLs fetches 'ssl_c_s_dn', 'ssl_c_i_dn', 'ssl_f_s_dn' and 'ssl_c_i_dn'
18339 - MINOR: ssl: add pattern and ACLs 'ssl_c_sig_alg' and 'ssl_f_sig_alg'
18340 - MINOR: ssl: add pattern and ACLs fetches 'ssl_c_key_alg' and 'ssl_f_key_alg'
18341 - MINOR: ssl: add pattern and ACLs fetches 'ssl_c_notbefore', 'ssl_c_notafter', 'ssl_f_notbefore' and 'ssl_f_notafter'
18342 - MINOR: ssl: add 'crt' statement on server.
18343 - MINOR: ssl: checks the consistency of a private key with the corresponding certificate
18344 - BUG/MEDIUM: ssl: review polling on reneg.
18345 - BUG/MEDIUM: ssl: Fix some reneg cases not correctly handled.
18346 - BUG/MEDIUM: ssl: Fix sometimes reneg fails if requested by server.
18347 - MINOR: build: allow packagers to specify the ssl cache size
18348 - MINOR: conf: add warning if ssl is not enabled and a certificate is present on bind.
18349 - MINOR: ssl: Add tune.ssl.lifetime statement in global.
18350 - MINOR: compression: Enable compression for IE6 w/SP2, IE7 and IE8
18351 - BUG: http: revert broken optimisation from 82fe75c1a79dac933391501b9d293bce34513755
18352 - DOC: duplicate ssl_sni section
18353 - MEDIUM: HTTP compression (zlib library support)
18354 - CLEANUP: use struct comp_ctx instead of union
18355 - BUILD: remove dependency to zlib.h
18356 - MINOR: compression: memlevel and windowsize
18357 - MEDIUM: use pool for zlib
18358 - MINOR: compression: try init in cfgparse.c
18359 - MINOR: compression: init before deleting headers
18360 - MEDIUM: compression: limit RAM usage
18361 - MINOR: compression: tune.comp.maxlevel
18362 - MINOR: compression: maximum compression rate limit
18363 - MINOR: log-format: check number of arguments in cfgparse.c
18364 - BUG/MEDIUM: compression: no Content-Type header but type in configuration
18365 - BUG/MINOR: compression: deinit zlib only when required
18366 - MEDIUM: compression: don't compress when no data
18367 - MEDIUM: compression: use pool for comp_ctx
18368 - MINOR: compression: rate limit in 'show info'
18369 - MINOR: compression: report zlib memory usage
18370 - BUG/MINOR: compression: dynamic level increase
18371 - DOC: compression: unsupported cases.
18372 - MINOR: compression: CPU usage limit
18373 - MEDIUM: http: add "redirect scheme" to ease HTTP to HTTPS redirection
18374 - BUG/MAJOR: ssl: missing tests in ACL fetch functions
18375 - MINOR: config: add a function to indent error messages
18376 - REORG: split "protocols" files into protocol and listener
18377 - MEDIUM: config: replace ssl_conf by bind_conf
18378 - CLEANUP: listener: remove unused conf->file and conf->line
18379 - MEDIUM: listener: add a minimal framework to register "bind" keyword options
18380 - MEDIUM: config: move the "bind" TCP parameters to proto_tcp
18381 - MEDIUM: move bind SSL parsing to ssl_sock
18382 - MINOR: config: improve error reporting for "bind" lines
18383 - MEDIUM: config: move the common "bind" settings to listener.c
18384 - MEDIUM: config: move all unix-specific bind keywords to proto_uxst.c
18385 - MEDIUM: config: enumerate full list of registered "bind" keywords upon error
18386 - MINOR: listener: add a scope field in the bind keyword lists
18387 - MINOR: config: pass the file and line to config keyword parsers
18388 - MINOR: stats: fill the file and line numbers in the stats frontend
18389 - MINOR: config: set the bind_conf entry on listeners created from a "listen" line.
18390 - MAJOR: listeners: use dual-linked lists to chain listeners with frontends
18391 - REORG: listener: move unix perms from the listener to the bind_conf
18392 - BUG: backend: balance hdr was broken since 1.5-dev11
18393 - MINOR: standard: make memprintf() support a NULL destination
18394 - MINOR: config: make str2listener() use memprintf() to report errors.
18395 - MEDIUM: stats: remove the stats_sock struct from the global struct
18396 - MINOR: ssl: set the listeners' data layer to ssl during parsing
18397 - MEDIUM: stats: make use of the standard "bind" parsers to parse global socket
18398 - DOC: move bind options to their own section
18399 - DOC: stats: refer to "bind" section for "stats socket" settings
18400 - DOC: fix index to reference bind and server options
18401 - BUG: http: do not print garbage on invalid requests in debug mode
18402 - BUG/MINOR: config: check the proper pointer to report unknown protocol
18403 - CLEANUP: connection: offer conn_prepare() to set up a connection
18404 - CLEANUP: config: fix typo inteface => interface
18405 - BUG: stats: fix regression introduced by commit 4348fad1
18406 - MINOR: cli: allow to set frontend maxconn to zero
18407 - BUG/MAJOR: http: chunk parser was broken with buffer changes
18408 - MEDIUM: monitor: simplify handling of monitor-net and mode health
18409 - MINOR: connection: add a pointer to the connection owner
18410 - MEDIUM: connection: make use of the owner instead of container_of
18411 - BUG/MINOR: ssl: report the L4 connection as established when possible
18412 - BUG/MEDIUM: proxy: must not try to stop disabled proxies upon reload
18413 - BUG/MINOR: config: use a copy of the file name in proxy configurations
18414 - BUG/MEDIUM: listener: don't pause protocols that do not support it
18415 - MEDIUM: proxy: add the global frontend to the list of normal proxies
18416 - BUG/MINOR: epoll: correctly disable FD polling in fd_rem()
18417 - MINOR: signal: really ignore signals configured with no handler
18418 - MINOR: buffers: add a few functions to write chars, strings and blocks
18419 - MINOR: raw_sock: always report asynchronous connection errors
18420 - MEDIUM: raw_sock: improve connection error reporting
18421 - REORG: connection: rename the data layer the "transport layer"
18422 - REORG: connection: rename app_cb "data"
18423 - MINOR: connection: provide a generic data layer wakeup callback
18424 - MINOR: connection: split conn_prepare() in two functions
18425 - MINOR: connection: add an init callback to the data_cb struct
18426 - MEDIUM: session: use a specific data_cb for embryonic sessions
18427 - MEDIUM: connection: use a generic data-layer init() callback
18428 - MEDIUM: connection: reorganize connection flags
18429 - MEDIUM: connection: only call the data->wake callback on activity
18430 - MEDIUM: connection: make it possible for data->wake to return an error
18431 - MEDIUM: session: register a data->wake callback to process errors
18432 - MEDIUM: connection: don't call the data->init callback upon error
18433 - MEDIUM: connection: it's not the data layer's role to validate the connection
18434 - MEDIUM: connection: automatically disable polling on error
18435 - REORG: connection: move the PROXY protocol management to connection.c
18436 - MEDIUM: connection: add a new local send-proxy transport callback
18437 - MAJOR: checks: make use of the connection layer to send checks
18438 - REORG: server: move the check-specific parts into a check subsection
18439 - MEDIUM: checks: use real buffers to store requests and responses
18440 - MEDIUM: check: add the ctrl and transport layers in the server check structure
18441 - MAJOR: checks: completely use the connection transport layer
18442 - MEDIUM: checks: add the "check-ssl" server option
18443 - MEDIUM: checks: enable the PROXY protocol with health checks
18444 - CLEANUP: checks: remove minor warnings for assigned but not used variables
18445 - MEDIUM: tcp: enable TCP Fast Open on systems which support it
18446 - BUG: connection: fix regression from commit 9e272bf9
18447 - CLEANUP: cttproxy: remove a warning on undeclared close()
18448 - BUG/MAJOR: ensure that hdr_idx is always reserved when L7 fetches are used
18449 - MEDIUM: listener: add support for linux's accept4() syscall
18450 - MINOR: halog: sort output by cookie code
18451 - BUG/MINOR: halog: -ad/-ac report the correct number of output lines
18452 - BUG/MINOR: halog: fix help message for -ut/-uto
18453 - MINOR: halog: add a parameter to limit output line count
18454 - BUILD: accept4: move the socketcall declaration outside of accept4()
18455 - MINOR: server: add minimal infrastructure to parse keywords
18456 - MINOR: standard: make indent_msg() support empty messages
18457 - MEDIUM: server: check for registered keywords when parsing unknown keywords
18458 - MEDIUM: server: move parsing of keyword "id" to server.c
18459 - BUG/MEDIUM: config: check-send-proxy was ignored if SSL was not builtin
18460 - MEDIUM: ssl: move "server" keyword SSL options parsing to ssl_sock.c
18461 - MEDIUM: log: suffix the frontend's name with '~' when using SSL
18462 - MEDIUM: connection: always unset the transport layer upon close
18463 - BUG/MINOR: session: fix some leftover from debug code
18464 - BUG/MEDIUM: session: enable the conn_session_update() callback
18465 - MEDIUM: connection: add a flag to hold the transport layer
18466 - MEDIUM: log: add a new LW_XPRT flag to pin the transport layer
18467 - MINOR: log: make lf_text use a const char *
18468 - MEDIUM: log: report SSL ciphers and version in logs using logformat %sslc/%sslv
18469 - REORG: http: rename msg->buf to msg->chn since it's a channel
18470 - CLEANUP: http: use 'chn' to name channel variables, not 'buf'
18471 - CLEANUP: channel: use 'chn' instead of 'buf' as local variable names
18472 - CLEANUP: tcp: use 'chn' instead of 'buf' or 'b' for channel pointer names
18473 - CLEANUP: stream_interface: use 'chn' instead of 'b' to name channel pointers
18474 - CLEANUP: acl: use 'chn' instead of 'b' to name channel pointers
18475 - MAJOR: channel: replace the struct buffer with a pointer to a buffer
18476 - OPTIM: channel: reorganize struct members to improve cache efficiency
18477 - CLEANUP: session: remove term_trace which is not used anymore
18478 - OPTIM: session: reorder struct session fields
18479 - OPTIM: connection: pack the struct target
18480 - DOC: document relations between internal entities
18481 - MINOR: ssl: add 'ssl_npn' sample/acl to extract TLS/NPN information
18482 - BUILD: ssl: fix shctx build on older compilers
18483 - MEDIUM: ssl: add support for the "npn" bind keyword
18484 - BUG: ssl: fix ssl_sni ACLs to correctly process regular expressions
18485 - MINOR: chunk: provide string compare functions
18486 - MINOR: sample: accept fetch keywords without parenthesis
18487 - MEDIUM: sample: pass an empty list instead of a null for fetch args
18488 - MINOR: ssl: improve socket behaviour upon handshake abort.
18489 - BUG/MEDIUM: http: set DONTWAIT on data when switching to tunnel mode
18490 - MEDIUM: listener: provide a fallback for accept4() when not supported
18491 - BUG/MAJOR: connection: risk of crash on certain tricky close scenario
18492 - MEDIUM: cli: allow the stats socket to be bound to a specific set of processes
18493 - OPTIM: channel: inline channel_forward's fast path
18494 - OPTIM: http: inline http_parse_chunk_size() and http_skip_chunk_crlf()
18495 - OPTIM: tools: inline hex2i()
18496 - CLEANUP: http: rename HTTP_MSG_DATA_CRLF state
18497 - MINOR: compression: automatically disable compression for older browsers
18498 - MINOR: compression: optimize memLevel to improve byte rate
18499 - BUG/MINOR: http: compression should consider all Accept-Encoding header values
18500 - BUILD: fix coexistence of openssl and zlib
18501 - MINOR: ssl: add pattern and ACLs fetches 'ssl_c_serial' and 'ssl_f_serial'
18502 - BUG/MEDIUM: command-line option -D must have precedence over "debug"
18503 - MINOR: tools: add a clear_addr() function to unset an address
18504 - BUG/MEDIUM: tcp: transparent bind to the source only when address is set
18505 - CLEANUP: remove trashlen
18506 - MAJOR: session: detach the connections from the stream interfaces
18507 - DOC: update document describing relations between internal entities
18508 - BUILD: make it possible to specify ZLIB path
18509 - MINOR: compression: add an offload option to remove the Accept-Encoding header
18510 - BUG: compression: disable auto-close and enable MSG_MORE during transfer
18511 - CLEANUP: completely remove trashlen
18512 - MINOR: chunk: add a function to reset a chunk
18513 - CLEANUP: replace chunk_printf() with chunk_appendf()
18514 - MEDIUM: make the trash be a chunk instead of a char *
18515 - MEDIUM: remove remains of BUFSIZE in HTTP auth and sample conversions
18516 - MEDIUM: stick-table: allocate the table key of size buffer size
18517 - BUG/MINOR: stream_interface: don't loop over ->snd_buf()
18518 - BUG/MINOR: session: ensure that we don't retry connection if some data were sent
18519 - OPTIM: session: don't process the whole session when only timers need a refresh
18520 - BUG/MINOR: session: mark the handshake as complete earlier
18521 - MAJOR: connection: remove the CO_FL_CURR_*_POL flag
18522 - BUG/MAJOR: always clear the CO_FL_WAIT_* flags after updating polling flags
18523 - MAJOR: sepoll: make the poller totally event-driven
18524 - OPTIM: stream_interface: disable reading when CF_READ_DONTWAIT is set
18525 - BUILD: compression: remove a build warning
18526 - MEDIUM: fd: don't unset fdtab[].updated upon delete
18527 - REORG: fd: move the speculative I/O management from ev_sepoll
18528 - REORG: fd: move the fd state management from ev_sepoll
18529 - REORG: fd: centralize the processing of speculative events
18530 - BUG: raw_sock: also consider ENOTCONN in addition to EAGAIN
18531 - BUILD: stream_interface: remove si_fd() and its references
18532 - BUILD: compression: enable build in BSD and OSX Makefiles
18533 - MAJOR: ev_select: make the poller support speculative events
18534 - MAJOR: ev_poll: make the poller support speculative events
18535 - MAJOR: ev_kqueue: make the poller support speculative events
18536 - MAJOR: polling: replace epoll with sepoll and remove sepoll
18537 - MAJOR: polling: remove unused callbacks from the poller struct
18538 - MEDIUM: http: refrain from sending "Connection: close" when Upgrade is present
18539 - CLEANUP: channel: remove any reference of the hijackers
18540 - CLEANUP: stream_interface: remove the external task type target
18541 - MAJOR: connection: replace struct target with a pointer to an enum
18542 - BUG: connection: fix typo in previous commit
18543 - BUG: polling: don't skip polled events in the spec list
18544 - MINOR: splice: disable it when the system returns EBADF
18545 - MINOR: build: allow packagers to specify the default maxzlibmem
18546 - BUG: halog: fix broken output limitation
18547 - BUG: proxy: fix server name lookup in get_backend_server()
18548 - BUG: compression: do not always increment the round counter on allocation failure
18549 - BUG/MEDIUM: compression: release the zlib pools between keep-alive requests
18550 - MINOR: global: don't prevent nbproc from being redefined
18551 - MINOR: config: support process ranges for "bind-process"
18552 - MEDIUM: global: add support for CPU binding on Linux ("cpu-map")
18553 - MINOR: ssl: rename and document the tune.ssl.cachesize option
18554 - DOC: update the PROXY protocol spec to support v2
18555 - MINOR: standard: add a simple popcount function
18556 - MEDIUM: adjust the maxaccept per listener depending on the number of processes
18557 - BUG: compression: properly disable compression when content-type does not match
18558 - MINOR: cli: report connection status in "show sess xxx"
18559 - BUG/MAJOR: stream_interface: certain workloads could cause get stuck
18560 - BUILD: cli: fix build when SSL is enabled
18561 - MINOR: cli: report the fd state in "show sess xxx"
18562 - MINOR: cli: report an error message on missing argument to compression rate
18563 - MINOR: http: add some debugging functions to pretty-print msg state names
18564 - BUG/MAJOR: stream_interface: read0 not always handled since dev12
18565 - DOC: documentation on http header capture is wrong
18566 - MINOR: http: allow the cookie capture size to be changed
18567 - DOC: http header capture has not been limited in size for a long time
18568 - DOC: update readme with build methods for BSD
18569 - BUILD: silence a warning on Solaris about usage of isdigit()
18570 - MINOR: stats: report HTTP compression stats per frontend and per backend
18571 - MINOR: log: add '%Tl' to log-format
18572 - MINOR: samples: update the url_param fetch to match parameters in the path
18573
Willy Tarreau16216822012-09-10 09:46:55 +0200185742012/09/10 : 1.5-dev12
18575 - CONTRIB: halog: sort URLs by avg bytes_read or total bytes_read
18576 - MEDIUM: ssl: add support for prefer-server-ciphers option
18577 - MINOR: IPv6 support for transparent proxy
18578 - MINOR: protocol: add SSL context to listeners if USE_OPENSSL is defined
18579 - MINOR: server: add SSL context to servers if USE_OPENSSL is defined
18580 - MEDIUM: connection: add a new handshake flag for SSL (CO_FL_SSL_WAIT_HS).
18581 - MEDIUM: ssl: add new files ssl_sock.[ch] to provide the SSL data layer
18582 - MEDIUM: config: add the 'ssl' keyword on 'bind' lines
18583 - MEDIUM: config: add support for the 'ssl' option on 'server' lines
18584 - MEDIUM: ssl: protect against client-initiated renegociation
18585 - BUILD: add optional support for SSL via the USE_OPENSSL flag
18586 - MEDIUM: ssl: add shared memory session cache implementation.
18587 - MEDIUM: ssl: replace OpenSSL's session cache with the shared cache
18588 - MINOR: ssl add global setting tune.sslcachesize to set SSL session cache size.
18589 - MEDIUM: ssl: add support for SNI and wildcard certificates
18590 - DOC: Typos cleanup
18591 - DOC: fix name for "option independant-streams"
18592 - DOC: specify the default value for maxconn in the context of a proxy
18593 - BUG/MINOR: to_log erased with unique-id-format
18594 - LICENSE: add licence exception for OpenSSL
18595 - BUG/MAJOR: cookie prefix doesn't support cookie-less servers
18596 - BUILD: add an AIX 5.2 (and later) target.
18597 - MEDIUM: fd/si: move peeraddr from struct fdinfo to struct connection
18598 - MINOR: halog: use the more recent dual-mode fgets2 implementation
18599 - BUG/MEDIUM: ebtree: ebmb_insert() must not call cmp_bits on full-length matches
18600 - CLEANUP: halog: make clean should also remove .o files
18601 - OPTIM: halog: make use of memchr() on platforms which provide a fast one
18602 - OPTIM: halog: improve cold-cache behaviour when loading a file
18603 - BUG/MINOR: ACL implicit arguments must be created with unresolved flag
18604 - MINOR: replace acl_fetch_{path,url}* with smp_fetch_*
18605 - MEDIUM: pattern: add the "base" sample fetch method
18606 - OPTIM: i386: make use of kernel-mode-linux when available
18607 - BUG/MINOR: tarpit: fix condition to return the HTTP 500 message
18608 - BUG/MINOR: polling: some events were not set in various pollers
18609 - MINOR: http: add the urlp_val ACL match
18610 - BUG: stktable: tcp_src_to_stktable_key() must return NULL on invalid families
18611 - MINOR: stats/cli: add plans to support more stick-table actions
18612 - MEDIUM: stats/cli: add support for "set table key" to enter values
18613 - REORG/MEDIUM: fd: remove FD_STCLOSE from struct fdtab
18614 - REORG/MEDIUM: fd: remove checks for FD_STERROR in ev_sepoll
18615 - REORG/MEDIUM: fd: get rid of FD_STLISTEN
18616 - REORG/MINOR: connection: move declaration to its own include file
18617 - REORG/MINOR: checks: put a struct connection into the server
18618 - MINOR: connection: add flags to the connection struct
18619 - MAJOR: get rid of fdtab[].state and use connection->flags instead
18620 - MINOR: fd: add a new I/O handler to fdtab
18621 - MEDIUM: polling: prepare to call the iocb() function when defined.
18622 - MEDIUM: checks: make use of fdtab->iocb instead of cb[]
18623 - MEDIUM: protocols: use the generic I/O callback for accept callbacks
18624 - MINOR: connection: add a handler for fd-based connections
18625 - MAJOR: connection: replace direct I/O callbacks with the connection callback
18626 - MINOR: fd: make fdtab->owner a connection and not a stream_interface anymore
18627 - MEDIUM: connection: remove the FD_POLL_* flags only once
18628 - MEDIUM: connection: extract the send_proxy callback from proto_tcp
18629 - MAJOR: tcp: remove the specific I/O callbacks for TCP connection probes
18630 - CLEANUP: remove the now unused fdtab direct I/O callbacks
18631 - MAJOR: remove the stream interface and task management code from sock_*
18632 - MEDIUM: stream_interface: pass connection instead of fd in sock_ops
18633 - MEDIUM: stream_interface: centralize the SI_FL_ERR management
18634 - MAJOR: connection: add a new CO_FL_CONNECTED flag
18635 - MINOR: rearrange tcp_connect_probe() and fix wrong return codes
18636 - MAJOR: connection: call data layer handshakes from the handler
18637 - MEDIUM: fd: remove the EV_FD_COND_* primitives
18638 - MINOR: sock_raw: move calls to si_data_close upper
18639 - REORG: connection: replace si_data_close() with conn_data_close()
18640 - MEDIUM: sock_raw: introduce a read0 callback that is different from shutr
18641 - MAJOR: stream_int: use a common stream_int_shut*() functions regardless of the data layer
18642 - MAJOR: fd: replace all EV_FD_* macros with new fd_*_* inline calls
18643 - MEDIUM: fd: add fd_poll_{recv,send} for use when explicit polling is required
18644 - MEDIUM: connection: add definitions for dual polling mechanisms
18645 - MEDIUM: connection: make use of the new polling functions
18646 - MAJOR: make use of conn_{data|sock}_{poll|stop|want}* in connection handlers
18647 - MEDIUM: checks: don't use FD_WAIT_* anymore
18648 - MINOR: fd: get rid of FD_WAIT_*
18649 - MEDIUM: stream_interface: offer a generic function for connection updates
18650 - MEDIUM: stream-interface: offer a generic chk_rcv function for connections
18651 - MEDIUM: stream-interface: add a snd_buf() callback to sock_ops
18652 - MEDIUM: stream-interface: provide a generic stream_int_chk_snd_conn() function
18653 - MEDIUM: stream-interface: provide a generic si_conn_send_cb callback
18654 - MEDIUM: stream-interface: provide a generic stream_sock_read0() function
18655 - REORG/MAJOR: use "struct channel" instead of "struct buffer"
18656 - REORG/MAJOR: extract "struct buffer" from "struct channel"
18657 - MINOR: connection: provide conn_{data|sock}_{read0|shutw} functions
18658 - REORG: sock_raw: rename the files raw_sock*
18659 - MAJOR: raw_sock: extract raw_sock_to_buf() from raw_sock_read()
18660 - MAJOR: raw_sock: temporarily disable splicing
18661 - MINOR: stream-interface: add an rcv_buf callback to sock_ops
18662 - REORG: stream-interface: move sock_raw_read() to si_conn_recv_cb()
18663 - MAJOR: connection: split the send call into connection and stream interface
18664 - MAJOR: stream-interface: restore splicing mechanism
18665 - MAJOR: stream-interface: make conn_notify_si() more robust
18666 - MEDIUM: proxy-proto: don't use buffer flags in conn_si_send_proxy()
18667 - MAJOR: stream-interface: don't commit polling changes in every callback
18668 - MAJOR: stream-interface: fix splice not to call chk_snd by itself
18669 - MEDIUM: stream-interface: don't remove WAIT_DATA when a handshake is in progress
18670 - CLEANUP: connection: split sock_ops into data_ops, app_cp and si_ops
18671 - REORG: buffers: split buffers into chunk,buffer,channel
18672 - MAJOR: channel: remove the BF_OUT_EMPTY flag
18673 - REORG: buffer: move buffer_flush, b_adv and b_rew to buffer.h
18674 - MINOR: channel: rename bi_full to channel_full as it checks the whole channel
18675 - MINOR: buffer: provide a new buffer_full() function
18676 - MAJOR: channel: stop relying on BF_FULL to take action
18677 - MAJOR: channel: remove the BF_FULL flag
18678 - REORG: channel: move buffer_{replace,insert_line}* to buffer.{c,h}
18679 - CLEANUP: channel: usr CF_/CHN_ prefixes instead of BF_/BUF_
18680 - CLEANUP: channel: use "channel" instead of "buffer" in function names
18681 - REORG: connection: move the target pointer from si to connection
18682 - MAJOR: connection: move the addr field from the stream_interface
18683 - MEDIUM: stream_interface: remove CAP_SPLTCP/CAP_SPLICE flags
18684 - MEDIUM: proto_tcp: remove any dependence on stream_interface
18685 - MINOR: tcp: replace tcp_src_to_stktable_key with addr_to_stktable_key
18686 - MEDIUM: connection: add an ->init function to data layer
18687 - MAJOR: session: introduce embryonic sessions
18688 - MAJOR: connection: make the PROXY decoder a handshake handler
18689 - CLEANUP: frontend: remove the old proxy protocol decoder
18690 - MAJOR: connection: rearrange the polling flags.
18691 - MEDIUM: connection: only call tcp_connect_probe when nothing was attempted yet
18692 - MEDIUM: connection: complete the polling cleanups
18693 - MEDIUM: connection: avoid calling handshakes when polling is required
18694 - MAJOR: stream_interface: continue to update data polling flags during handshakes
18695 - CLEANUP: fd: remove fdtab->flags
18696 - CLEANUP: fdtab: flatten the struct and merge the spec struct with the rest
18697 - CLEANUP: includes: fix includes for a number of users of fd.h
18698 - MINOR: ssl: disable TCP quick-ack by default on SSL listeners
18699 - MEDIUM: config: add a "ciphers" keyword to set SSL cipher suites
18700 - MEDIUM: config: add "nosslv3" and "notlsv1" on bind and server lines
18701 - BUG: ssl: mark the connection as waiting for an SSL connection during the handshake
18702 - BUILD: http: rename error_message http_error_message to fix conflicts on RHEL
18703 - BUILD: ssl: fix shctx build on RHEL with futex
18704 - BUILD: include sys/socket.h to fix build failure on FreeBSD
18705 - BUILD: fix build error without SSL (ssl_cert)
18706 - BUILD: ssl: use MAP_ANON instead of MAP_ANONYMOUS
18707 - BUG/MEDIUM: workaround an eglibc bug which truncates the pidfiles when nbproc > 1
18708 - MEDIUM: config: support per-listener backlog and maxconn
18709 - MINOR: session: do not send an HTTP/500 error on SSL sockets
18710 - MEDIUM: config: implement maxsslconn in the global section
18711 - BUG: tcp: close socket fd upon connect error
18712 - MEDIUM: connection: improve error handling around the data layer
18713 - MINOR: config: make the tasks "nice" value configurable on "bind" lines.
18714 - BUILD: shut a gcc warning introduced by commit 269ab31
18715 - MEDIUM: config: centralize handling of SSL config per bind line
18716 - BUILD: makefile: report USE_OPENSSL status in build options
18717 - BUILD: report openssl build settings in haproxy -vv
18718 - MEDIUM: ssl: add sample fetches for is_ssl, ssl_has_sni, ssl_sni_*
18719 - DOC: add a special acknowledgement for the stud project
18720 - DOC: add missing SSL options for servers and listeners
18721 - BUILD: automatically add -lcrypto for SSL
18722 - DOC: add some info about openssl build in the README
18723
Willy Tarreau02c7c142012-06-04 00:43:45 +0200187242012/06/04 : 1.5-dev11
18725 - BUG/MEDIUM: option forwardfor if-none doesn't work with some configurations
18726 - BUG/MAJOR: trash must always be the size of a buffer
18727 - DOC: fix minor regex example issue and improve doc on stats
18728 - MINOR: stream_interface: add a pointer to the listener for TARG_TYPE_CLIENT
18729 - MEDIUM: protocol: add a pointer to struct sock_ops to the listener struct
18730 - MINOR: checks: add on-marked-up option
18731 - MINOR: balance uri: added 'whole' parameter to include query string in hash calculation
18732 - MEDIUM: stream_interface: remove the si->init
18733 - MINOR: buffers: add a rewind function
18734 - BUG/MAJOR: fix regression on content-based hashing and http-send-name-header
18735 - MAJOR: http: stop using msg->sol outside the parsers
18736 - CLEANUP: http: make it more obvious that msg->som is always null outside of chunks
18737 - MEDIUM: http: get rid of msg->som which is not used anymore
18738 - MEDIUM: http: msg->sov and msg->sol will never wrap
18739 - BUG/MAJOR: checks: don't call set_server_status_* when no LB algo is set
18740 - BUG/MINOR: stop connect timeout when connect succeeds
18741 - REORG: move the send-proxy code to tcp_connect_write()
18742 - REORG/MINOR: session: detect the TCP monitor checks at the protocol accept
18743 - MINOR: stream_interface: introduce a new "struct connection" type
18744 - REORG/MINOR: stream_interface: move si->fd to struct connection
18745 - REORG/MEDIUM: stream_interface: move applet->state and private to connection
18746 - MINOR: stream_interface: add a data channel close function
18747 - MEDIUM: stream_interface: call si_data_close() before releasing the si
18748 - MINOR: peers: use the socket layer operations from the peer instead of sock_raw
18749 - BUG/MINOR: checks: expire on timeout.check if smaller than timeout.connect
18750 - MINOR: add a new function call tracer for debugging purposes
18751 - BUG/MINOR: perform_http_redirect also needs to rewind the buffer
18752 - BUG/MAJOR: b_rew() must pass a signed offset to b_ptr()
18753 - BUG/MEDIUM: register peer sync handler in the proper order
18754 - BUG/MEDIUM: buffers: fix bi_putchr() to correctly advance the pointer
18755 - BUG/MINOR: fix option httplog validation with TCP frontends
18756 - BUG/MINOR: log: don't report logformat errors in backends
18757 - REORG/MINOR: use dedicated proxy flags for the cookie handling
18758 - BUG/MINOR: config: do not report twice the incompatibility between cookie and non-http
18759 - MINOR: http: add support for "httponly" and "secure" cookie attributes
18760 - BUG/MEDIUM: ensure that unresolved arguments are freed exactly once
18761 - BUG/MINOR: commit 196729ef used wrong condition resulting in freeing constants
18762 - MEDIUM: stats: add support for soft stop/soft start in the admin interface
18763 - MEDIUM: stats: add the ability to kill sessions from the admin interface
18764 - BUILD: add support for linux kernels >= 2.6.28
18765
Willy Tarreauffb89472012-05-14 07:26:56 +0200187662012/05/14 : 1.5-dev10
18767 - BUG/MINOR: stats admin: "Unexpected result" was displayed unconditionally
18768 - BUG/MAJOR: acl: http_auth_group() must not accept any user from the userlist
18769 - CLEANUP: auth: make the code build again with DEBUG_AUTH
18770 - BUG/MEDIUM: config: don't crash at config load time on invalid userlist names
18771 - REORG: use the name sock_raw instead of stream_sock
18772 - MINOR: stream_interface: add a client target : TARG_TYPE_CLIENT
18773 - BUG/MEDIUM: stream_interface: restore get_src/get_dst
18774 - CLEANUP: sock_raw: remove last references to stream_sock
18775 - CLEANUP: stream_interface: stop exporting socket layer functions
18776 - MINOR: stream_interface: add an init callback to sock_ops
18777 - MEDIUM: stream_interface: derive the socket operations from the target
18778 - MAJOR: fd: remove the need for the socket layer to recheck the connection
18779 - MINOR: session: call the socket layer init function when a session establishes
18780 - MEDIUM: session: add support for tunnel timeouts
18781 - MINOR: standard: add a new debug macro : fddebug()
18782 - CLEANUP: fd: remove unused cb->b pointers in the struct fdtab
18783 - OPTIM: proto_http: don't enable quick-ack on empty buffers
18784 - OPTIM/MAJOR: ev_sepoll: process spec events after polled events
18785 - OPTIM/MEDIUM: stream_interface: add a new SI_FL_NOHALF flag
18786
Willy Tarreaua0564f32012-05-08 21:56:27 +0200187872012/05/08 : 1.5-dev9
18788 - MINOR: Add release callback to si_applet
18789 - CLEANUP: Fix some minor typos
18790 - MINOR: Add TO/FROM_SET flags to struct stream_interface
18791 - CLEANUP: Fix some minor whitespace issues
18792 - MINOR: stats admin: allow unordered parameters in POST requests
18793 - CLEANUP: fix typo in findserver() log message
18794 - MINOR: stats admin: use the backend id instead of its name in the form
18795 - MINOR: stats admin: reduce memcmp()/strcmp() calls on status codes
18796 - DOC: cleanup indentation, alignment, columns and chapters
18797 - DOC: fix some keywords arguments documentation
18798 - MINOR: cli: display the 4 IP addresses and ports on "show sess XXX"
18799 - BUG/MAJOR: log: possible segfault with logformat
18800 - MEDIUM: log: split of log_format generation
18801 - MEDIUM: log: New format-log flags: %Fi %Fp %Si %Sp %Ts %rt %H %pid
18802 - MEDIUM: log: Unique ID
18803 - MINOR: log: log-format: usable without httplog and tcplog
18804 - BUG/MEDIUM: balance source did not properly hash IPv6 addresses
18805 - MINOR: contrib/iprange: add a network IP range to mask converter
18806 - MEDIUM: session: implement the "use-server" directive
18807 - MEDIUM: log: add a new cookie flag 'U' to report situations where cookie is not used
18808 - MEDIUM: http: make extract_cookie_value() iterate over cookie values
18809 - MEDIUM: http: add cookie and scookie ACLs
18810 - CLEANUP: lb_first: add reference to a paper describing the original idea
18811 - MEDIUM: stream_sock: add a get_src and get_dst callback and remove SN_FRT_ADDR_SET
18812 - BUG/MINOR: acl: req_ssl_sni would randomly fail if a session ID is present
18813 - BUILD: http: make extract_cookie_value() return an int not size_t
18814 - BUILD: http: stop gcc-4.1.2 from complaining about possibly uninitialized values
18815 - CLEANUP: http: message parser must ignore HTTP_MSG_ERROR
18816 - MINOR: standard: add a memprintf() function to build formatted error messages
18817 - CLEANUP: remove a few warning about unchecked return values in debug code
18818 - MEDIUM: move message-related flags from transaction to message
18819 - DOC: add a diagram to explain how circular buffers work
18820 - MAJOR: buffer rework: replace ->send_max with ->o
18821 - MAJOR: buffer: replace buf->l with buf->{o+i}
18822 - MINOR: buffers: provide simple pointer normalization functions
18823 - MINOR: buffers: remove unused function buffer_contig_data()
18824 - MAJOR: buffers: replace buf->w with buf->p - buf->o
18825 - MAJOR: buffers: replace buf->r with buf->p + buf->i
18826 - MAJOR: http: move buffer->lr to http_msg->next
18827 - MAJOR: http: change msg->{som,col,sov,eoh} to be relative to buffer origin
18828 - CLEANUP: http: remove unused http_msg->col
18829 - MAJOR: http: turn http_msg->eol to a buffer-relative offset
18830 - MEDIUM: http: add a pointer to the buffer in http_msg
18831 - MAJOR: http: make http_msg->sol relative to buffer's origin
18832 - MEDIUM: http: http_send_name_header: remove references to msg and buffer
18833 - MEDIUM: http: remove buffer arg in a few header manipulation functions
18834 - MEDIUM: http: remove buffer arg in http_capture_bad_message
18835 - MEDIUM: http: remove buffer arg in http_msg_analyzer
18836 - MEDIUM: http: remove buffer arg in http_upgrade_v09_to_v10
18837 - MEDIUM: http: remove buffer arg in http_buffer_heavy_realign
18838 - MEDIUM: http: remove buffer arg in chunk parsing functions
18839 - MINOR: http: remove useless wrapping checks in http_msg_analyzer
18840 - MEDIUM: buffers: fix unsafe use of buffer_ignore at some places
18841 - MEDIUM: buffers: add new pointer wrappers and get rid of almost all buffer_wrap_add calls
18842 - MEDIUM: buffers: implement b_adv() to advance a buffer's pointer
18843 - MEDIUM: buffers: rename a number of buffer management functions
18844 - MEDIUM: http: add a prefetch function for ACL pattern fetch
18845 - MEDIUM: http: make all ACL fetch function use acl_prefetch_http()
18846 - BUG/MINOR: http_auth: ACLs are volatile, not permanent
18847 - MEDIUM: http/acl: merge all request and response ACL fetches of headers and cookies
18848 - MEDIUM: http/acl: make acl_fetch_hdr_{ip,val} rely on acl_fetch_hdr()
18849 - MEDIUM: add a new typed argument list parsing framework
18850 - MAJOR: acl: make use of the new argument parsing framework
18851 - MAJOR: acl: store the ACL argument types in the ACL keyword declaration
18852 - MEDIUM: acl: acl_find_target() now resolves arguments based on their types
18853 - MAJOR: acl: make acl_find_targets also resolve proxy names at config time
18854 - MAJOR: acl: ensure that implicit table and proxies are valid
18855 - MEDIUM: acl: remove unused tests for missing args when args are mandatory
18856 - MEDIUM: pattern: replace type pattern_arg with type arg
18857 - MEDIUM: pattern: get rid of arg_i in all functions making use of arguments
18858 - MEDIUM: pattern: use the standard arg parser
18859 - MEDIUM: pattern: add an argument validation callback to pattern descriptors
18860 - MEDIUM: pattern: report the precise argument parsing error when known.
18861 - MEDIUM: acl: remove the ACL_TEST_F_NULL_MATCH flag
18862 - MINOR: pattern: add a new 'sample' type to store fetched data
18863 - MEDIUM: pattern: add new sample types to replace pattern types
18864 - MAJOR: acl: make use of the new sample struct and get rid of acl_test
18865 - MEDIUM: pattern/acl: get rid of temp_pattern in ACLs
18866 - MEDIUM: acl: get rid of the SET_RES flags
18867 - MEDIUM: get rid of SMP_F_READ_ONLY and SMP_F_MUST_FREE
18868 - MINOR: pattern: replace struct pattern with struct sample
18869 - MEDIUM: pattern: integrate pattern_data into sample and use sample everywhere
18870 - MEDIUM: pattern: retrieve the sample type in the sample, not in the keyword description
18871 - MEDIUM: acl/pattern: switch rdp_cookie functions stack up-down
18872 - MEDIUM: acl: replace acl_expr with args in acl fetch_* functions
18873 - MINOR: tcp: replace acl_fetch_rdp_cookie with smp_fetch_rdp_cookie
18874 - MEDIUM: acl/pattern: use the same direction scheme
18875 - MEDIUM: acl/pattern: start merging common sample fetch functions
18876 - MEDIUM: pattern: ensure that sample types always cast into other types.
18877 - MEDIUM: acl/pattern: factor out the src/dst address fetches
18878 - MEDIUM: acl: implement payload and payload_lv
18879 - CLEANUP: pattern: ensure that payload and payload_lv always stay in the buffer
18880 - MINOR: stick_table: centralize the handling of empty keys
18881 - MINOR: pattern: centralize handling of unstable data in pattern_process()
18882 - MEDIUM: pattern: use smp_fetch_rdp_cookie instead of the pattern specific version
18883 - MINOR: acl: set SMP_OPT_ITERATE on fetch functions
18884 - MINOR: acl: add a val_args field to keywords
18885 - MINOR: proto_tcp: validate arguments of payload and payload_lv ACLs
18886 - MEDIUM: http: merge acl and pattern header fetch functions
18887 - MEDIUM: http: merge ACL and pattern cookie fetches into a single one
18888 - MEDIUM: acl: report parsing errors to the caller
18889 - MINOR: arg: improve error reporting on invalid arguments
18890 - MINOR: acl: report errors encountered when loading patterns from files
18891 - MEDIUM: acl: extend the pattern parsers to report meaningful errors
18892 - REORG: use the name "sample" instead of "pattern" to designate extracted data
18893 - REORG: rename "pattern" files
18894 - MINOR: acl: add types to ACL patterns
18895 - MINOR: standard: add an IPv6 parsing function (str62net)
18896 - MEDIUM: acl: support IPv6 address matching
18897 - REORG: stream_interface: create a struct sock_ops to hold socket operations
18898 - REORG/MEDIUM: move protocol->{read,write} to sock_ops
18899 - REORG/MEDIUM: stream_interface: initialize socket ops from descriptors
18900 - REORG/MEDIUM: replace stream interface protocol functions by a proto pointer
18901 - REORG/MEDIUM: move the default accept function from sockstream to protocols.c
18902 - MEDIUM: proto_tcp: remove src6 and dst6 pattern fetch methods
18903 - BUG/MINOR: http: error snapshots are wrong if buffer wraps
18904 - BUG/MINOR: http: ensure that msg->err_pos is always relative to buf->p
18905 - MEDIUM: http: improve error capture reports
18906 - MINOR: acl: add the cook_val() match to match a cookie against an integer
18907 - BUG/MEDIUM: send_proxy: fix initialisation of send_proxy_ofs
18908 - MEDIUM: memory: add the ability to poison memory at run time
18909 - BUG/MEDIUM: log: ensure that unique_id is properly initialized
18910 - MINOR: cfgparse: use a common errmsg pointer for all parsers
18911 - MEDIUM: cfgparse: make backend_parse_balance() use memprintf to report errors
18912 - MEDIUM: cfgparse: use the new error reporting framework for remaining cfg_keywords
18913 - MINOR: http: replace http_message_realign() with buffer_slow_realign()
18914
Willy Tarreau9eeb57b2012-03-26 06:15:29 +0200189152012/03/26 : 1.5-dev8
18916 - MINOR: patch for minor typo (ressources/resources)
18917 - MEDIUM: http: add support for sending the server's name in the outgoing request
18918 - DOC: mention that default checks are TCP connections
18919 - BUG/MINOR: fix options forwardfor if-none when an alternative header name is specified
18920 - CLEANUP: Make check_statuses, analyze_statuses and process_chk static
18921 - CLEANUP: Fix HCHK spelling errors
18922 - BUG/MINOR: fix typo in processing of http-send-name-header
18923 - MEDIUM: log: Use linked lists for loggers
18924 - BUILD: fix declaration inside a scope block
18925 - REORG: log: split send_log function
18926 - MINOR: config: Parse the string of the log-format config keyword
18927 - MINOR: add ultoa, ulltoa, ltoa, lltoa implementations
18928 - MINOR: Date and time fonctions that don't use snprintf
18929 - MEDIUM: log: make http_sess_log use log_format
18930 - DOC: log-format documentation
18931 - MEDIUM: log: use log_format for mode tcplog
18932 - MEDIUM: log-format: backend source address %Bi %Bp
18933 - BUG/MINOR: log-format: fix %o flag
18934 - BUG/MEDIUM: bad length in log_format and __send_log
18935 - MINOR: logformat %st is signed
18936 - BUILD/MINOR: fix the source URL in the spec file
18937 - DOC: acl is http_first_req, not http_req_first
18938 - BUG/MEDIUM: don't trim last spaces from headers consisting only of spaces
18939 - MINOR: acl: add new matches for header/path/url length
18940 - BUILD: halog: make halog build on solaris
18941 - BUG/MINOR: don't use a wrong port when connecting to a server with mapped ports
18942 - MINOR: remove the client/server side distinction in SI addresses
18943 - MINOR: halog: add support for matching queued requests
18944 - DOC: indicate that cookie "prefix" and "indirect" should not be mixed
18945 - OPTIM/MINOR: move struct sockaddr_storage to the tail of structs
18946 - OPTIM/MINOR: make it possible to change pipe size (tune.pipesize)
18947 - BUILD/MINOR: silent a build warning in src/pipe.c (fcntl)
18948 - OPTIM/MINOR: move the hdr_idx pools out of the proxy struct
18949 - MEDIUM: tune.http.maxhdr makes it possible to configure the maximum number of HTTP headers
18950 - BUG/MINOR: fix a segfault when parsing a config with undeclared peers
18951 - CLEANUP: rename possibly confusing struct field "tracked"
18952 - BUG/MEDIUM: checks: fix slowstart behaviour when server tracking is in use
18953 - MINOR: config: tolerate server "cookie" setting in non-HTTP mode
18954 - MEDIUM: buffers: add some new primitives and rework existing ones
18955 - BUG: buffers: don't return a negative value on buffer_total_space_res()
18956 - MINOR: buffers: make buffer_pointer() support negative pointers too
18957 - CLEANUP: kill buffer_replace() and use an inline instead
18958 - BUG: tcp: option nolinger does not work on backends
18959 - CLEANUP: ebtree: remove a few annoying signedness warnings
18960 - CLEANUP: ebtree: clarify licence and update to 6.0.6
18961 - CLEANUP: ebtree: remove 4-year old harmless typo in duplicates insertion code
18962 - CLEANUP: ebtree: remove another typo, a wrong initialization in insertion code
18963 - BUG: ebtree: ebst_lookup() could return the wrong entry
18964 - OPTIM: stream_sock: reduce the amount of in-flight spliced data
18965 - OPTIM: stream_sock: save a failed recv syscall when splice returns EAGAIN
18966 - MINOR: acl: add support for TLS server name matching using SNI
18967 - BUG: http: re-enable TCP quick-ack upon incomplete HTTP requests
18968 - BUG: proto_tcp: don't try to bind to a foreign address if sin_family is unknown
18969 - MINOR: pattern: export the global temporary pattern
18970 - CLEANUP: patterns: get rid of pattern_data_setstring()
18971 - MEDIUM: acl: use temp_pattern to store fetched information in the "method" match
18972 - MINOR: acl: include pattern.h to make pattern migration more transparent
18973 - MEDIUM: pattern: change the pattern data integer from unsigned to signed
18974 - MEDIUM: acl: use temp_pattern to store any integer-type information
18975 - MEDIUM: acl: use temp_pattern to store any address-type information
18976 - CLEANUP: acl: integer part of acl_test is not used anymore
18977 - MEDIUM: acl: use temp_pattern to store any string-type information
18978 - CLEANUP: acl: remove last data fields from the acl_test struct
18979 - MEDIUM: http: replace get_ip_from_hdr2() with http_get_hdr()
18980 - MEDIUM: patterns: the hdr() pattern is now of type string
18981 - DOC: add minimal documentation on how ACLs work internally
18982 - DOC: add a coding-style file
18983 - OPTIM: halog: keep a fast path for the lines-count only
18984 - CLEANUP: silence a warning when building on sparc
18985 - BUG: http: tighten the list of allowed characters in a URI
18986 - MEDIUM: http: block non-ASCII characters in URIs by default
18987 - DOC: add some documentation from RFC3986 about URI format
18988 - BUG/MINOR: cli: correctly remove the whole table on "clear table"
18989 - BUG/MEDIUM: correctly disable servers tracking another disabled servers.
18990 - BUG/MEDIUM: zero-weight servers must not dequeue requests from the backend
18991 - MINOR: halog: add some help on the command line
18992 - BUILD: fix build error on FreeBSD
18993 - BUG: fix double free in peers config error path
18994 - MEDIUM: improve config check return codes
18995 - BUILD: make it possible to look for pcre in the default system paths
18996 - MINOR: config: emit a warning when 'default_backend' masks servers
18997 - MINOR: backend: rework the LC definition to support other connection-based algos
18998 - MEDIUM: backend: add the 'first' balancing algorithm
18999 - BUG: fix httplog trailing LF
19000 - MEDIUM: increase chunk-size limit to 2GB-1
19001 - BUG: queue: fix dequeueing sequence on HTTP keep-alive sessions
19002 - BUG: http: disable TCP delayed ACKs when forwarding content-length data
19003 - BUG: checks: fix server maintenance exit sequence
19004 - BUG/MINOR: stream_sock: don't remove BF_EXPECT_MORE and BF_SEND_DONTWAIT on partial writes
19005 - DOC: enumerate valid status codes for "observe layer7"
19006 - MINOR: buffer: switch a number of buffer args to const
19007 - CLEANUP: silence signedness warning in acl.c
19008 - BUG: stream_sock: si->release was not called upon shutw()
19009 - MINOR: log: use "%ts" to log term status only and "%tsc" to log with cookie
19010 - BUG/CRITICAL: log: fix risk of crash in development snapshot
19011 - BUG/MAJOR: possible crash when using capture headers on TCP frontends
19012 - MINOR: config: disable header captures in TCP mode and complain
19013
Willy Tarreau60612eb2011-09-10 23:43:11 +0200190142011/09/10 : 1.5-dev7
19015 - [BUG] fix binary stick-tables
19016 - [MINOR] http: *_dom matching header functions now also split on ":"
19017 - [BUG] checks: fix support of Mysqld >= 5.5 for mysql-check
19018 - [MINOR] acl: add srv_conn acl to count connections on a specific backend server
19019 - [MINOR] check: add redis check support
19020 - [DOC] small fixes to clearly distinguish between keyword and variables
19021 - [MINOR] halog: add support for termination code matching (-tcn/-TCN)
19022 - [DOC] Minor spelling fixes and grammatical enhancements
19023 - [CLEANUP] dumpstats: make symbols static where possible
19024 - [MINOR] Break out dumping table
19025 - [MINOR] Break out processing of clear table
19026 - [MINOR] Allow listing of stick table by key
19027 - [MINOR] Break out all stick table socat command parsing
19028 - [MINOR] More flexible clearing of stick table
19029 - [MINOR] Allow showing and clearing by key of ipv6 stick tables
19030 - [MINOR] Allow showing and clearing by key of integer stick tables
19031 - [MINOR] Allow showing and clearing by key of string stick tables
19032 - [CLEANUP] Remove assigned but unused variables
19033 - [CLEANUP] peers.h: fix declarations
19034 - [CLEANUP] session.c: Make functions static where possible
19035 - [MINOR] Add active connection list to server
19036 - [MINOR] Allow shutdown of sessions when a server becomes unavailable
19037 - [MINOR] Add down termination condition
19038 - [MINOR] Make appsess{,ion}_refresh static
19039 - [MINOR] Add rdp_cookie pattern fetch function
19040 - [CLEANUP] Remove unnecessary casts
19041 - [MINOR] Add non-stick server option
19042 - [MINOR] Consistently use error in tcp_parse_tcp_req()
19043 - [MINOR] Consistently free expr on error in cfg_parse_listen()
19044 - [MINOR] Free rdp_cookie_name on denint()
19045 - [MINOR] Free tcp rules on denint()
19046 - [MINOR] Free stick table pool on denint()
19047 - [MINOR] Free stick rules on denint()
19048 - [MEDIUM] Fix stick-table replication on soft-restart
19049 - [MEDIUM] Correct ipmask() logic
19050 - [MINOR] Correct type in table dump examples
19051 - [MINOR] Fix build error in stream_int_register_handler()
19052 - [MINOR] Use DPRINTF in assign_server()
19053 - [BUG] checks: http-check expect could fail a check on multi-packet responses
19054 - [DOC] fix minor typo in the "dispatch" doc
19055 - [BUG] proto_tcp: fix address binding on remote source
19056 - [MINOR] http: don't report the "haproxy" word on the monitoring response
19057 - [REORG] http: move HTTP error codes back to proto_http.h
19058 - [MINOR] http: make the "HTTP 200" status code configurable.
19059 - [MINOR] http: partially revert the chunking optimization for now
19060 - [MINOR] stream_sock: always clear BF_EXPECT_MORE upon complete transfer
19061 - [CLEANUP] stream_sock: remove unneeded FL_TCP and factor out test
19062 - [MEDIUM] http: add support for "http-no-delay"
19063 - [OPTIM] http: optimize chunking again in non-interactive mode
19064 - [OPTIM] stream_sock: avoid fast-forwarding of partial data
19065 - [OPTIM] stream_sock: don't use splice on too small payloads
19066 - [MINOR] config: make it possible to specify a cookie even without a server
19067 - [BUG] stats: support url-encoded forms
19068 - [MINOR] config: automatically compute a default fullconn value
19069 - [CLEANUP] config: remove some left-over printf debugging code from previous patch
19070 - [DOC] add missing entry or stick store-response
19071 - [MEDIUM] http: add support for 'cookie' and 'set-cookie' patterns
19072 - [BUG] halog: correctly handle truncated last line
19073 - [MINOR] halog: make SKIP_CHAR stop on field delimiters
19074 - [MINOR] halog: add support for HTTP log matching (-H)
19075 - [MINOR] halog: gain back performance before SKIP_CHAR fix
19076 - [OPTIM] halog: cache some common fields positions
19077 - [OPTIM] halog: check once for correct line format and reuse the pointer
19078 - [OPTIM] halog: remove many 'if' by using a function pointer for the filters
19079 - [OPTIM] halog: remove support for tab delimiters in input data
19080 - [BUG] session: risk of crash on out of memory (1.5-dev regression)
19081 - [MINOR] session: try to emit a 500 response on memory allocation errors
19082 - [OPTIM] stream_sock: reduce the default number of accepted connections at once
19083 - [BUG] stream_sock: disable listener when system resources are exhausted
19084 - [MEDIUM] proxy: add a PAUSED state to listeners and move socket tricks out of proxy.c
19085 - [BUG] stream_sock: ensure orphan listeners don't accept too many connections
19086 - [MINOR] listeners: add listen_full() to mark a listener full
19087 - [MINOR] listeners: add support for queueing resource limited listeners
19088 - [MEDIUM] listeners: put listeners in queue upon resource shortage
19089 - [MEDIUM] listeners: queue proxy-bound listeners at the proxy's
19090 - [MEDIUM] listeners: don't stop proxies when global maxconn is reached
19091 - [MEDIUM] listeners: don't change listeners states anymore in maintain_proxies
19092 - [CLEANUP] proxy: rename a few proxy states (PR_STIDLE and PR_STRUN)
19093 - [MINOR] stats: report a "WAITING" state for sockets waiting for resource
19094 - [MINOR] proxy: make session rate-limit more accurate
19095 - [MINOR] sessions: only wake waiting listeners up if rate limit is OK
19096 - [BUG] proxy: peers must only be stopped once, not upon every call to maintain_proxies
19097 - [CLEANUP] proxy: merge maintain_proxies() operation inside a single loop
19098 - [MINOR] task: new function task_schedule() to schedule a wake up
19099 - [MAJOR] proxy: finally get rid of maintain_proxies()
19100 - [BUG] proxy: stats frontend and peers were missing many initializers
19101 - [MEDIUM] listeners: add a global listener management task
19102 - [MINOR] proxy: make findproxy() return proxies from numeric IDs too
19103 - [DOC] fix typos, "#" is a sharp, not a dash
19104 - [MEDIUM] stats: add support for changing frontend's maxconn at runtime
19105 - [MEDIUM] checks: group health checks methods by values and save option bits
19106 - [MINOR] session-counters: add the ability to clear the counters
19107 - [BUG] check: http-check expect + regex would crash in defaults section
19108 - [MEDIUM] http: make x-forwarded-for addition conditional
19109 - [REORG] build: move syscall redefinition to specific places
19110 - [CLEANUP] update the year in the copyright banner
19111 - [BUG] possible crash in 'show table' on stats socket
19112 - [BUG] checks: use the correct destination port for sending checks
19113 - [BUG] backend: risk of picking a wrong port when mapping is used with crossed families
19114 - [MINOR] make use of set_host_port() and get_host_port() to get rid of family mismatches
19115 - [DOC] fixed a few "sensible" -> "sensitive" errors
19116 - [MINOR] make use of addr_to_str() and get_host_port() to replace many inet_ntop()
19117 - [BUG] http: trailing white spaces must also be trimmed after headers
19118 - [MINOR] stats: display "<NONE>" instead of the frontend name when unknown
19119 - [MINOR] http: take a capture of too large requests and responses
19120 - [MINOR] http: take a capture of truncated responses
19121 - [MINOR] http: take a capture of bad content-lengths.
19122 - [DOC] add a few old and uncommitted docs
19123 - [CLEANUP] cfgparse: fix reported options for the "bind" keyword
19124 - [MINOR] halog: add -hs/-HS to filter by HTTP status code range
19125 - [MINOR] halog: support backslash-escaped quotes
19126 - [CLEANUP] remove dirty left-over of a debugging message
19127 - [MEDIUM] stats: disable complex socket reservation for stats socket
19128 - [CLEANUP] remove a useless test in manage_global_listener_queue()
19129 - [MEDIUM] stats: add the "set maxconn" setting to the command line interface
19130 - [MEDIUM] add support for global.maxconnrate to limit the per-process conn rate.
19131 - [MINOR] stats: report the current and max global connection rates
19132 - [MEDIUM] stats: add the ability to adjust the global maxconnrate
19133 - [BUG] peers: don't pre-allocate 65000 connections to each peer
19134 - [MEDIUM] don't limit peers nor stats socket to maxconn nor maxconnrate
19135 - [BUG] peers: the peer frontend must not emit any log
19136 - [CLEANUP] proxy: make pause_proxy() perform the required controls and emit the logs
19137 - [BUG] peers: don't keep a peers section which has a NULL frontend
19138 - [BUG] peers: ensure the peers are resumed if they were paused
19139 - [MEDIUM] stats: add the ability to enable/disable/shutdown a frontend at runtime
19140 - [MEDIUM] session: make session_shutdown() an independant function
19141 - [MEDIUM] stats: offer the possibility to kill a session from the CLI
19142 - [CLEANUP] stats: centralize tests for backend/server inputs on the CLI
19143 - [MEDIUM] stats: offer the possibility to kill sessions by server
19144 - [MINOR] halog: do not consider byte 0x8A as end of line
19145 - [MINOR] frontend: ensure debug message length is always initialized
19146 - [OPTIM] halog: make fgets parse more bytes by blocks
19147 - [OPTIM] halog: add assembly version of the field lookup code
19148 - [MEDIUM] poll: add a measurement of idle vs work time
19149 - [CLEANUP] startup: report only the basename in the usage message
19150 - [MINOR] startup: add an option to change to a new directory
19151 - [OPTIM] task: don't scan the run queue if we know it's empty
19152 - [BUILD] stats: stdint is not present on solaris
19153 - [DOC] update the README file to reflect new naming rules for patches
19154 - [MINOR] stats: report the number of requests intercepted by the frontend
19155 - [DOC] update ROADMAP file
19156
Willy Tarreau04df1122011-04-08 00:56:41 +0200191572011/04/08 : 1.5-dev6
19158 - [BUG] stream_sock: use get_addr_len() instead of sizeof() on sockaddr_storage
19159 - [BUG] TCP source tracking was broken with IPv6 changes
19160 - [BUG] stick-tables did not work when converting IPv6 to IPv4
19161 - [CRITICAL] fix risk of crash when dealing with space in response cookies
19162
Willy Tarreaub06ed2c2011-03-29 01:10:33 +0200191632011/03/29 : 1.5-dev5
19164 - [BUG] standard: is_addr return value for IPv4 was inverted
19165 - [MINOR] update comment about IPv6 support for server
19166 - [MEDIUM] use getaddrinfo to resolve names if gethostbyname fail
19167 - [DOC] update IPv6 support for bind
19168 - [DOC] document IPv6 support for server
19169 - [DOC] fix a minor typo
19170 - [MEDIUM] IPv6 support for syslog
19171 - [DOC] document IPv6 support for syslog
19172 - [MEDIUM] IPv6 support for stick-tables
19173 - [DOC] document IPv6 support for stick-tables
19174 - [DOC] update ROADMAP file
19175 - [BUG] session: src_conn_cur was returning src_conn_cnt instead
19176 - [MINOR] frontend: add a make_proxy_line function
19177 - [MEDIUM] stream_sock: add support for sending the proxy protocol header line
19178 - [MEDIUM] server: add support for the "send-proxy" option
19179 - [DOC] update the spec on the proxy protocol
19180 - [BUILD] proto_tcp: fix build issue with CTTPROXY
19181 - [DOC] update ROADMAP file
19182 - [MEDIUM] config: rework the IPv4/IPv6 address parser to support host-only addresses
19183 - [MINOR] cfgparse: better report wrong listening addresses and make use of str2sa_range
19184 - [BUILD] add the USE_GETADDRINFO build option
19185 - [TESTS] provide a test case for various address formats
19186 - [BUG] session: conn_retries was not always initialized
19187 - [BUG] log: retrieve the target from the session, not the SI
19188 - [BUG] http: fix possible incorrect forwarded wrapping chunk size (take 2)
19189 - [MINOR] tools: add two macros MID_RANGE and MAX_RANGE
19190 - [BUG] http: fix content-length handling on 32-bit platforms
19191 - [OPTIM] buffers: uninline buffer_forward()
19192 - [BUG] stream_sock: fix handling for server side PROXY protocol
19193 - [MINOR] acl: add support for table_cnt and table_avl matches
19194 - [DOC] update ROADMAP file
19195
Willy Tarreaue0052cc2011-03-13 22:15:02 +0100191962011/03/13 : 1.5-dev4
19197 - [MINOR] cfgparse: Check whether the path given for the stats socket actually fits into the sockaddr_un structure to avoid truncation.
19198 - [MINOR] unix sockets : inherits the backlog size from the listener
19199 - [CLEANUP] unix sockets : move create_uxst_socket() in uxst_bind_listener()
19200 - [DOC] fix a minor typo
19201 - [DOC] fix ignore-persist documentation
19202 - [MINOR] add warnings on features not compatible with multi-process mode
19203 - [BUG] http: fix http-pretend-keepalive and httpclose/tunnel mode
19204 - [MINOR] stats: add support for several packets in stats admin
19205 - [BUG] stats: admin commands must check the proxy state
19206 - [BUG] stats: admin web interface must check the proxy state
19207 - [MINOR] http: add pattern extraction method to stick on query string parameter
19208 - [MEDIUM] add internal support for IPv6 server addresses
19209 - [MINOR] acl: add be_id/srv_id to match backend's and server's id
19210 - [MINOR] log: add support for passing the forwarded hostname
19211 - [MINOR] log: ability to override the syslog tag
19212 - [MINOR] checks: add PostgreSQL health check
19213 - [DOC] update ROADMAP file
19214 - [BUILD] pattern: use 'int' instead of 'int32_t'
19215 - [OPTIM] linux: add support for bypassing libc to force using vsyscalls
19216 - [BUG] debug: report the correct poller list in verbose mode
19217 - [BUG] capture: do not capture a cookie if there is no memory left
19218 - [BUG] appsession: fix possible double free in case of out of memory
19219 - [CRITICAL] cookies: mixing cookies in indirect mode and appsession can crash the process
19220 - [BUG] http: correctly update the header list when removing two consecutive headers
19221 - [BUILD] add the CPU=native and ARCH=32/64 build options
19222 - [BUILD] add -fno-strict-aliasing to fix warnings with gcc >= 4.4
19223 - [CLEANUP] hash: move the avalanche hash code globally available
19224 - [MEDIUM] hash: add support for an 'avalanche' hash-type
19225 - [DOC] update roadmap file
19226 - [BUG] http: do not re-enable the PROXY analyser on keep-alive
19227 - [OPTIM] http: don't send each chunk in a separate packet
19228 - [DOC] fix minor typos reported recently in the peers section
19229 - [DOC] fix another typo in the doc
19230 - [MINOR] stats: report HTTP message state and buffer flags in error dumps
19231 - [BUG] http chunking: don't report a parsing error on connection errors
19232 - [BUG] stream_interface: truncate buffers when sending error messages
19233 - [MINOR] http: support wrapping messages in error captures
19234 - [MINOR] http: capture incorrectly chunked message bodies
19235 - [MINOR] stats: add global event ID and count
19236 - [BUG] http: analyser optimizations broke pipelining
19237 - [CLEANUP] frontend: only apply TCP-specific settings to TCP/TCP6 sockets
19238 - [BUG] http: fix incorrect error reporting during data transfers
19239 - [CRITICAL] session: correctly leave turn-around and queue states on abort
19240 - [BUG] session: release slot before processing pending connections
19241 - [MINOR] tcp: add support for dynamic MSS setting
19242 - [BUG] stick-table: correctly terminate string keys during lookups
19243 - [BUG] acl: fix handling of empty lines in pattern files
19244 - [BUG] stick-table: use the private buffer when padding strings
19245 - [BUG] ebtree: fix ebmb_lookup() with len smaller than the tree's keys
19246 - [OPTIM] ebtree: ebmb_lookup: reduce stack usage by moving the return code out of the loop
19247 - [OPTIM] ebtree: inline ebst_lookup_len and ebis_lookup_len
19248 - [REVERT] undo the stick-table string key lookup fixes
19249 - [MINOR] http: improve url_param pattern extraction to ignore empty values
19250 - [BUILD] frontend: shut a warning with TCP_MAXSEG
19251 - [BUG] http: update the header list's tail when removing the last header
19252 - [DOC] fix minor typo in the proxy protocol doc
19253 - [DOC] fix typos (http-request instead of http-check)
19254 - [BUG] http: use correct ACL pointer when evaluating authentication
19255 - [BUG] cfgparse: correctly count one socket per port in ranges
19256 - [BUG] startup: set the rlimits before binding ports, not after.
19257 - [BUG] acl: srv_id must return no match when the server is NULL
19258 - [MINOR] acl: add ability to check for internal response-only parameters
19259 - [MINOR] acl: srv_id is only valid in responses
19260 - [MINOR] config: warn if response-only conditions are used in "redirect" rules
19261 - [BUG] acl: fd leak when reading patterns from file
19262 - [DOC] fix minor typo in "usesrc"
19263 - [BUG] http: fix possible incorrect forwarded wrapping chunk size
19264 - [BUG] http: fix computation of message body length after forwarding has started
19265 - [BUG] http: balance url_param did not work with first parameters on POST
19266 - [TESTS] update the url_param regression test to test check_post too
19267 - [DOC] update ROADMAP
19268 - [DOC] internal: reflect the fact that SI_ST_ASS is transient
19269 - [BUG] config: don't crash on empty pattern files.
19270 - [MINOR] stream_interface: make use of an applet descriptor for IO handlers
19271 - [REORG] stream_interface: move the st0, st1 and private members to the applet
19272 - [REORG] stream_interface: split the struct members in 3 parts
19273 - [REORG] session: move client and server address to the stream interface
19274 - [REORG] tcp: make tcpv4_connect_server() take the target address from the SI
19275 - [MEDIUM] stream_interface: store the target pointer and type
19276 - [CLEANUP] stream_interface: remove the applet.handler pointer
19277 - [MEDIUM] log: take the logged server name from the stream interface
19278 - [CLEANUP] session: remove data_source from struct session
19279 - [CLEANUP] stats: make all dump functions only rely on the stream interface
19280 - [REORG] session: move the data_ctx struct to the stream interface's applet
19281 - [MINOR] proxy: add PR_O2_DISPATCH to detect dispatch mode
19282 - [MINOR] cfgparse: only keep one of dispatch, transparent, http_proxy
19283 - [MINOR] session: add a pointer to the new target into the session
19284 - [MEDIUM] session: remove s->prev_srv which is not needed anymore
19285 - [CLEANUP] stream_interface: use inline functions to manipulate targets
19286 - [MAJOR] session: remove the ->srv pointer from struct session
19287 - [MEDIUM] stats: split frontend and backend stats
19288 - [MEDIUM] http: always evaluate http-request rules before stats http-request
19289 - [REORG] http: move the http-request rules to proto_http
19290 - [BUG] http: stats were not incremented on http-request deny
19291 - [MINOR] checks: report it if checks fail due to socket creation error
19292
Willy Tarreau442e8342010-11-11 23:29:35 +0100192932010/11/11 : 1.5-dev3
19294 - [DOC] fix http-request documentation
19295 - [MEDIUM] enable/disable servers from the stats web interface
19296 - [MEDIUM] stats: add an admin level
19297 - [DOC] stats: document the "stats admin" statement
19298 - [MINOR] startup: print the proxy socket which caused an error
19299 - [CLEANUP] Remove unneeded chars allocation
19300 - [MINOR] config: detect options not supported due to compilation options
19301 - [MINOR] Add pattern's fetchs payload and payload_lv
19302 - [MINOR] frontend: improve accept-proxy header parsing
19303 - [MINOR] frontend: add tcpv6 support on accept-proxy bind
19304 - [MEDIUM] Enhance message errors management on binds
19305 - [MINOR] Manage unix socket source field on logs
19306 - [MINOR] Manage unix socket source field on session dump on sock stats
19307 - [MINOR] Support of unix listener sockets for debug and log event messages on frontend.c
19308 - [MINOR] Add some tests on sockets family for port remapping and mode transparent.
19309 - [MINOR] Manage socket type unix for some logs
19310 - [MINOR] Enhance controls of socket's family on acls and pattern fetch
19311 - [MINOR] Support listener's sockets unix on http logs.
19312 - [MEDIUM] Add supports of bind on unix sockets.
19313 - [BUG] stick table purge failure if size less than 255
19314 - [BUG] stick table entries expire on counters updates/read or show table, even if there is no "expire" parameter
19315 - [MEDIUM] Implement tcp inspect response rules
19316 - [DOC] tcp-response content and inspect
19317 - [MINOR] new acls fetch req_ssl_hello_type and rep_ssl_hello_type
19318 - [DOC] acls rep_ssl_hello and req_ssl_hello
19319 - [MEDIUM] Create new protected pattern types CONSTSTRING and CONSTDATA to force memcpy if data from protected areas need to be manipulated.
19320 - [DOC] new type binary in stick-table
19321 - [DOC] stick store-response and new patterns payload and payload_lv
19322 - [MINOR] Manage all types (ip, integer, string, binary) on cli "show table" command
19323 - [MEDIUM] Create updates tree on stick table to manage sync.
19324 - [MAJOR] Add new files src/peer.c, include/proto/peers.h and include/types/peers.h for sync stick table management
19325 - [MEDIUM] Manage peers section parsing and stick table registration on peers.
19326 - [MEDIUM] Manage soft stop on peers proxy
19327 - [DOC] add documentation for peers section
19328 - [MINOR] checks: add support for LDAPv3 health checks
19329 - [MINOR] add better support to "mysql-check"
19330 - [BUG] Restore info about available active/backup servers
19331 - [CONTRIB] Update haproxy.pl
19332 - [CONTRIB] Update Cacti Tempates
19333 - [CONTRIB] add templates for Cacti.
19334 - [BUG] http: don't consider commas as a header delimitor within quotes
19335 - [MINOR] support a global jobs counter
19336 - [DOC] add a summary about cookie incompatibilities between specs and browsers
19337 - [DOC] fix description of cookie "insert" and "indirect" modes
19338 - [MEDIUM] http: fix space handling in the request cookie parser
19339 - [MEDIUM] http: fix space handling in the response cookie parser
19340 - [DOC] fix typo in the queue() definition (backend, not frontend)
19341 - [BUG] deinit: unbind listeners before freeing them
19342 - [BUG] stream_interface: only call si->release when both dirs are closed
19343 - [MEDIUM] buffers: rework the functions to exchange between SI and buffers
19344 - [DOC] fix typo in the avg_queue() and be_conn() definition (backend, not frontend)
19345 - [MINOR] halog: add '-tc' to sort by termination codes
19346 - [MINOR] halog: skip non-traffic logs for -st and -tc
19347 - [BUG] stream_sock: cleanly disable the listener in case of resource shortage
19348 - [BUILD] stream_sock: previous fix lacked the #include, causing a warning.
19349 - [DOC] bind option is "defer-accept", not "defer_accept"
19350 - [DOC] missing index entry for http-check send-state
19351 - [DOC] tcp-request inspect-delay is for backends too
19352 - [BUG] ebtree: string_equal_bits() could return garbage on identical strings
19353 - [BUG] stream_sock: try to flush any extra pending request data after a POST
19354 - [BUILD] proto_http: eliminate some build warnings with gcc-2.95
19355 - [MEDIUM] make it possible to combine http-pretend-keepalived with httpclose
19356 - [MEDIUM] tcp-request : don't wait for inspect-delay to expire when the buffer is full
19357 - [MEDIUM] checks: add support for HTTP contents lookup
19358 - [TESTS] add test-check-expect to test various http-check methods
19359 - [MINOR] global: add "tune.chksize" to change the default check buffer size
19360 - [MINOR] cookie: add options "maxidle" and "maxlife"
19361 - [MEDIUM] cookie: support client cookies with some contents appended to their value
19362 - [MINOR] http: make some room in the transaction flags to extend cookies
19363 - [MINOR] cookie: add the expired (E) and old (O) flags for request cookies
19364 - [MEDIUM] cookie: reassign set-cookie status flags to store more states
19365 - [MINOR] add encode/decode function for 30-bit integers from/to base64
19366 - [MEDIUM] cookie: check for maxidle and maxlife for incoming dated cookies
19367 - [MEDIUM] cookie: set the date in the cookie if needed
19368 - [DOC] document the cookie maxidle and maxlife parameters
19369 - [BUG] checks: don't log backend down for all zero-weight servers
19370 - [MEDIUM] checks: set server state to one state from failure when leaving maintenance
19371 - [BUG] config: report correct keywords for "observe"
19372 - [MINOR] checks: ensure that we can inherit binary checks from the defaults section
19373 - [MINOR] acl: add the http_req_first match
19374 - [DOC] fix typos about bind-process syntax
19375 - [BUG] cookie: correctly unset default cookie parameters
19376 - [MINOR] cookie: add support for the "preserve" option
19377 - [BUG] ebtree: fix duplicate strings insertion
19378 - [CONTRIB] halog: report per-url counts, errors and times
19379 - [CONTRIB] halog: minor speed improvement in timer parser
19380 - [MINOR] buffers: add a new request analyser flag for PROXY mode
19381 - [MINOR] listener: add the "accept-proxy" option to the "bind" keyword
19382 - [MINOR] standard: add read_uint() to parse a delimited unsigned integer
19383 - [MINOR] standard: change arg type from const char* to char*
19384 - [MINOR] frontend: add a new analyser to parse a proxied connection
19385 - [MEDIUM] session: call the frontend_decode_proxy analyser on proxied connections
19386 - [DOC] add the proxy protocol's specifications
19387 - [DOC] document the 'accept-proxy' bind option
19388 - [MINOR] cfgparse: report support of <path> for the 'bind' statements
19389 - [DOC] add references to unix socket handling
19390 - [MINOR] move MAXPATHLEN definition to compat.h
19391 - [MEDIUM] unix sockets: cleanup the error reporting path
19392 - [BUG] session: don't stop forwarding of data upon last packet
19393 - [CLEANUP] accept: replace some inappropriate Alert() calls with send_log()
19394 - [BUILD] peers: shut a printf format warning (key_size is a size_t)
19395 - [BUG] accept: don't close twice upon error
19396 - [OPTIM] session: don't recheck analysers when buffer flags have not changed
19397 - [OPTIM] stream_sock: don't clear FDs that are already cleared
19398 - [BUG] proto_tcp: potential bug on pattern fetch dst and dport
19399
Willy Tarreau37242fa2010-08-28 19:21:00 +0200194002010/08/28 : 1.5-dev2
19401 - [MINOR] startup: release unused structs after forking
19402 - [MINOR] startup: don't wait for nothing when no old pid remains
19403 - [CLEANUP] reference product branch 1.5
19404 - [MEDIUM] signals: add support for registering functions and tasks
19405 - [MEDIUM] signals: support redistribution of signal zero when stopping
19406 - [BUG] http: don't set auto_close if more data are expected
19407
Willy Tarreaufc815fd2010-08-25 10:56:53 +0200194082010/08/25 : 1.5-dev1
19409 - [BUG] stats: session rate limit gets garbaged in the stats
19410 - [DOC] mention 'option http-server-close' effect in Tq section
19411 - [DOC] summarize and highlight persistent connections behaviour
19412 - [DOC] add configuration samples
19413 - [BUG] http: dispatch and http_proxy modes were broken for a long time
19414 - [BUG] http: the transaction must be initialized even in TCP mode
19415 - [BUG] tcp: dropped connections must be counted as "denied" not "failed"
19416 - [BUG] consistent hash: balance on all servers, not only 2 !
19417 - [CONTRIB] halog: report per-server status codes, errors and response times
19418 - [BUG] http: the transaction must be initialized even in TCP mode (part 2)
19419 - [BUG] client: always ensure to zero rep->analysers
19420 - [BUG] session: clear BF_READ_ATTACHED before next I/O
19421 - [BUG] http: automatically close response if req is aborted
19422 - [BUG] proxy: connection rate limiting was eating lots of CPU
19423 - [BUG] http: report correct flags in case of client aborts during body
19424 - [TESTS] refine non-regression tests and add 4 new tests
19425 - [BUG] debug: wrong pointer was used to report a status line
19426 - [BUG] debug: correctly report truncated messages
19427 - [DOC] document the "dispatch" keyword
19428 - [BUG] stick_table: fix possible memory leak in case of connection error
19429 - [CLEANUP] acl: use 'L6' instead of 'L4' in ACL flags relying on contents
19430 - [MINOR] accept: count the incoming connection earlier
19431 - [CLEANUP] tcp: move some non tcp-specific layer6 processing out of proto_tcp
19432 - [CLEANUP] client: move some ACLs away to their respective locations
19433 - [CLEANUP] rename client -> frontend
19434 - [MEDIUM] separate protocol-level accept() from the frontend's
19435 - [MINOR] proxy: add a list to hold future layer 4 rules
19436 - [MEDIUM] config: parse tcp layer4 rules (tcp-request accept/reject)
19437 - [MEDIUM] tcp: check for pure layer4 rules immediately after accept()
19438 - [OPTIM] frontend: tell the compiler that errors are unlikely to occur
19439 - [MEDIUM] frontend: check for LI_O_TCP_RULES in the listener
19440 - [MINOR] frontend: only check for monitor-net rules if LI_O_CHK_MONNET is set
19441 - [CLEANUP] buffer->cto is not used anymore
19442 - [MEDIUM] session: finish session establishment sequence in with I/O handlers
19443 - [MEDIUM] session: initialize server-side timeouts after connect()
19444 - [MEDIUM] backend: initialize the server stream_interface upon connect()
19445 - [MAJOR] frontend: don't initialize the server-side stream_int anymore
19446 - [MEDIUM] session: move the conn_retries attribute to the stream interface
19447 - [MEDIUM] session: don't assign conn_retries upon accept() anymore
19448 - [MINOR] frontend: rely on the frontend and not the backend for INDEPSTR
19449 - [MAJOR] frontend: reorder the session initialization upon accept
19450 - [MINOR] proxy: add an accept() callback for the application layer
19451 - [MAJOR] frontend: split accept() into frontend_accept() and session_accept()
19452 - [MEDIUM] stats: rely on the standard session_accept() function
19453 - [MINOR] buffer: refine the flags that may wake an analyser up.
19454 - [MINOR] stream_sock: don't dereference a non-existing frontend
19455 - [MINOR] session: differenciate between accepted connections and received connections
19456 - [MEDIUM] frontend: count the incoming connection earlier
19457 - [MINOR] frontend: count denied TCP requests separately
19458 - [CLEANUP] stick_table: add/clarify some comments
19459 - [BUILD] memory: add a few missing parenthesis to the pool management macros
19460 - [MINOR] stick_table: add support for variable-sized data
19461 - [CLEANUP] stick_table: rename some stksess struct members to avoid confusion
19462 - [CLEANUP] stick_table: move pattern to key functions to stick_table.c
19463 - [MEDIUM] stick_table: add room for extra data types
19464 - [MINOR] stick_table: add support for "conn_cum" data type.
19465 - [MEDIUM] stick_table: don't overwrite data when storing an entry
19466 - [MINOR] config: initialize stick tables after all the parsing
19467 - [MINOR] stick_table: provide functions to return stksess data from a type
19468 - [MEDIUM] stick_table: move the server ID to a generic data type
19469 - [MINOR] stick_table: enable it for frontends too
19470 - [MINOR] stick_table: export the stick_table_key
19471 - [MINOR] tcp: add per-source connection rate limiting
19472 - [MEDIUM] stick_table: separate storage and update of session entries
19473 - [MEDIUM] stick-tables: add a reference counter to each entry
19474 - [MINOR] session: add a pointer to the tracked counters for the source
19475 - [CLEANUP] proto_tcp: make the config parser a little bit more flexible
19476 - [BUG] config: report the correct proxy type in tcp-request errors
19477 - [MINOR] config: provide a function to quote args in a more friendly way
19478 - [BUG] stick_table: the fix for the memory leak caused a regression
19479 - [MEDIUM] backend: support servers on 0.0.0.0
19480 - [BUG] stick-table: correctly refresh expiration timers
19481 - [MEDIUM] stream-interface: add a ->release callback
19482 - [MINOR] proxy: add a "parent" member to the structure
19483 - [MEDIUM] session: make it possible to call an I/O handler on both SI
19484 - [MINOR] tools: add a fast div64_32 function
19485 - [MINOR] freq_ctr: add new types and functions for periods different from 1s
19486 - [MINOR] errors: provide new status codes for config parsing functions
19487 - [BUG] http: denied requests must not be counted as denied resps in listeners
19488 - [MINOR] tools: add a get_std_op() function to parse operators
19489 - [MEDIUM] acl: make use of get_std_op() to parse intger ranges
19490 - [MAJOR] stream_sock: better wakeup conditions on read()
19491 - [BUG] session: analysers must be checked when SI state changes
19492 - [MINOR] http: reset analysers to listener's, not frontend's
19493 - [MEDIUM] session: support "tcp-request content" rules in backends
19494 - [BUILD] always match official tags when doing git-tar
19495 - [MAJOR] stream_interface: fix the wakeup conditions for embedded iohandlers
19496 - [MEDIUM] buffer: make buffer_feed* support writing non-contiguous chunks
19497 - [MINOR] tcp: src_count acl does not have a permanent result
19498 - [MAJOR] session: add track-counters to track counters related to the session
19499 - [MINOR] stick-table: provide a table lookup function
19500 - [MINOR] stick-table: use suffix "_cnt" for cumulated counts
19501 - [MEDIUM] session: move counter ACL fetches from proto_tcp
19502 - [MEDIUM] session: add concurrent connections counter
19503 - [MEDIUM] session: add data in and out volume counters
19504 - [MINOR] session: add the trk_conn_cnt ACL keyword to track connection counts
19505 - [MEDIUM] session-counters: automatically update tracked connection count
19506 - [MINOR] session: add the trk_conn_cur ACL keyword to track concurrent connection
19507 - [MINOR] session: add trk_kbytes_* ACL keywords to track data size
19508 - [MEDIUM] session: add a counter on the cumulated number of sessions
19509 - [MINOR] config: support a comma-separated list of store data types in stick-table
19510 - [MEDIUM] stick-tables: add support for arguments to data_types
19511 - [MEDIUM] stick-tables: add stored data argument type checking
19512 - [MEDIUM] session counters: add conn_rate and sess_rate counters
19513 - [MEDIUM] session counters: add bytes_in_rate and bytes_out_rate counters
19514 - [MINOR] stktable: add a stktable_update_key() function
19515 - [MINOR] session-counters: add a general purpose counter (gpc0)
19516 - [MEDIUM] session-counters: add HTTP req/err tracking
19517 - [MEDIUM] stats: add "show table [<name>]" to dump a stick-table
19518 - [MEDIUM] stats: add "clear table <name> key <value>" to clear table entries
19519 - [CLEANUP] stick-table: declare stktable_data_types as extern
19520 - [MEDIUM] stick-table: make use of generic types for stored data
19521 - [MINOR] stats: correctly report errors on "show table" and "clear table"
19522 - [MEDIUM] stats: add the ability to dump table entries matching criteria
19523 - [DOC] configuration: document all the new tracked counters
19524 - [DOC] stats: document "show table" and "clear table"
19525 - [MAJOR] session-counters: split FE and BE track counters
19526 - [MEDIUM] tcp: accept the "track-counters" in "tcp-request content" rules
19527 - [MEDIUM] session counters: automatically remove expired entries.
19528 - [MEDIUM] config: replace 'tcp-request <action>' with "tcp-request connection"
19529 - [MEDIUM] session-counters: make it possible to count connections from frontend
19530 - [MINOR] session-counters: use "track-sc{1,2}" instead of "track-{fe,be}-counters"
19531 - [MEDIUM] session-counters: correctly unbind the counters tracked by the backend
19532 - [CLEANUP] stats: use stksess_kill() to remove table entries
19533 - [DOC] update the references to session counters and to tcp-request connection
19534 - [DOC] cleanup: split a few long lines
19535 - [MEDIUM] http: forward client's close when abortonclose is set
19536 - [BUG] queue: don't dequeue proxy-global requests on disabled servers
19537 - [BUG] stats: global stats timeout may be specified before stats socket.
19538 - [BUG] conf: add tcp-request content rules to the correct list
19539
Willy Tarreau21475e32010-05-23 08:46:08 +0200195402010/05/23 : 1.5-dev0
19541 - exact copy of 1.4.6
19542
Willy Tarreau5fdd77d2010-05-16 22:34:28 +0200195432010/05/16 : 1.4.6
19544 - [BUILD] ebtree: update to v6.0.1 to remove references to dprintf()
19545 - [CLEANUP] acl: make use of eb_is_empty() instead of open coding the tree's emptiness test
19546 - [MINOR] acl: add srv_is_up() to check that a specific server is up or not
19547 - [DOC] add a few precisions about the use of RDP cookies
19548
Willy Tarreau9d4d9e32010-05-13 22:17:08 +0200195492010/05/13 : 1.4.5
19550 - [DOC] report minimum kernel version for tproxy in the Makefile
19551 - [MINOR] add the "ignore-persist" option to conditionally ignore persistence
19552 - [DOC] add the "ignore-persist" option to conditionally ignore persistence
19553 - [DOC] fix ignore-persist/force-persist documentation
19554 - [BUG] cttproxy: socket fd leakage in check_cttproxy_version
19555 - [DOC] doc/configuration.txt: fix typos
19556 - [MINOR] option http-pretend-keepalive is both for FEs and BEs
19557 - [MINOR] fix possible crash in debug mode with invalid responses
19558 - [MINOR] halog: add support for statisticts on status codes
19559 - [OPTIM] halog: use a faster zero test in fgets()
19560 - [OPTIM] halog: minor speedup by using unlikely()
19561 - [OPTIM] halog: speed up fgets2-64 by about 10%
19562 - [DOC] refresh the README file and merge the CONTRIB file into it
19563 - [MINOR] acl: support loading values from files
19564 - [MEDIUM] ebtree: upgrade to version 6.0
19565 - [MINOR] acl trees: add flags and union members to store values in trees
19566 - [MEDIUM] acl: add ability to insert patterns in trees
19567 - [MEDIUM] acl: add tree-based lookups of exact strings
19568 - [MEDIUM] acl: add tree-based lookups of networks
19569 - [MINOR] acl: ignore empty lines and comments in pattern files
19570 - [MINOR] stick-tables: add support for "stick on hdr"
19571
Willy Tarreau9508c1c2010-04-07 23:12:24 +0200195722010/04/07 : 1.4.4
19573 - [BUG] appsession should match the whole cookie name
19574 - [CLEANUP] proxy: move PR_O_SSL3_CHK to options2 to release one flag
19575 - [MEDIUM] backend: move the transparent proxy address selection to backend
19576 - [MINOR] add very fast IP parsing functions
19577 - [MINOR] add new tproxy flags for dynamic source address binding
19578 - [MEDIUM] add ability to connect to a server from an IP found in a header
19579 - [BUILD] config: last patch breaks build without CONFIG_HAP_LINUX_TPROXY
19580 - [MINOR] http: make it possible to pretend keep-alive when doing close
19581 - [MINOR] config: report "default-server" instead of "(null)" in error messages
19582
Willy Tarreau75934a12010-03-30 09:50:08 +0200195832010/03/30 : 1.4.3
19584 - [CLEANUP] stats: remove printf format warning in stats_dump_full_sess_to_buffer()
19585 - [MEDIUM] session: better fix for connection to servers with closed input
19586 - [DOC] indicate in the doc how to bind to port ranges
19587 - [BUG] backend: L7 hashing must not be performed on incomplete requests
19588 - [TESTS] add a simple program to test connection resets
19589 - [MINOR] cli: "show errors" should display "backend <NONE>" when backend was not used
19590 - [MINOR] config: emit warnings when HTTP-only options are used in TCP mode
19591 - [MINOR] config: allow "slowstart 0s"
19592 - [BUILD] 'make tags' did not consider files ending in '.c'
19593 - [MINOR] checks: add the ability to disable a server in the config
19594
Willy Tarreauda618cb2010-03-17 23:41:57 +0100195952010/03/17 : 1.4.2
19596 - [CLEANUP] product branch update
19597 - [DOC] Some more documentation cleanups
19598 - [BUG] clf logs segfault when capturing a non existant header
19599 - [OPTIM] config: only allocate check buffer when checks are enabled
19600 - [MEDIUM] checks: support multi-packet health check responses
19601 - [CLEANUP] session: remove duplicate test
19602 - [BUG] http: don't wait for response data to leave buffer is client has left
19603 - [MINOR] proto_uxst: set accept_date upon accept() to the wall clock time
19604 - [MINOR] stats: don't send empty lines in "show errors"
19605 - [MINOR] stats: make the data dump function reusable for other purposes
19606 - [MINOR] stats socket: add show sess <id> to dump details about a session
19607 - [BUG] stats: connection reset counters must be plain ascii, not HTML
19608 - [BUG] url_param hash may return a down server
19609 - [MINOR] force null-termination of hostname
19610 - [MEDIUM] connect to servers even when the input has already been closed
19611 - [BUG] don't merge anonymous ACLs !
19612 - [BUG] config: fix endless loop when parsing "on-error"
19613 - [MINOR] http: don't mark a server as failed when it returns 501/505
19614 - [OPTIM] checks: try to detect the end of response without polling again
19615 - [BUG] checks: don't report an error when recv() returns an error after data
19616 - [BUG] checks: don't abort when second poll returns an error
19617 - [MINOR] checks: make shutdown() silently fail
19618 - [BUG] http: fix truncated responses on chunk encoding when size divides buffer size
19619 - [BUG] init: unconditionally catch SIGPIPE
19620 - [BUG] checks: don't wait for a close to start parsing the response
19621
Willy Tarreauc5e60c32010-03-04 23:39:19 +0100196222010/03/04 : 1.4.1
19623 - [BUG] Clear-cookie path issue
19624 - [DOC] fix typo on stickiness rules
19625 - [BUILD] fix BSD and OSX makefiles for missing files
19626 - [BUILD] includes order breaks OpenBSD build
19627 - [BUILD] fix some build warnings on Solaris with is* macros
19628 - [BUG] logs: don't report "last data" when we have just closed after an error
19629 - [BUG] logs: don't report "proxy request" when server closes early
19630 - [BUILD] fix platform-dependant build issues related to crypt()
19631 - [STATS] count transfer aborts caused by client and by server
19632 - [STATS] frontend requests were not accounted for failed requests
19633 - [MINOR] report total number of processed connections when stopping a proxy
19634 - [DOC] be more clear about the limitation to one single monitor-net entry
19635
Willy Tarreaue18fdfd2010-02-26 14:55:22 +0100196362010/02/26 : 1.4.0
19637 - [MINOR] stats: report maint state for tracking servers too
19638 - [DOC] fix summary to add pattern extraction
19639 - [DOC] Documentation cleanups
19640 - [BUG] cfgparse memory leak and missing free calls in deinit()
19641 - [BUG] pxid/puid/luid: don't shift IDs when some of them are forced
19642 - [EXAMPLES] add auth.cfg
19643 - [BUG] uri_auth: ST_SHLGNDS should be 0x00000008 not 0x0000008
19644 - [BUG] uri_auth: do not attemp to convert uri_auth -> http-request more than once
19645 - [BUILD] auth: don't use unnamed unions
19646 - [BUG] config: report unresolvable host names as errors
19647 - [BUILD] fix build breakage with DEBUG_FULL
19648 - [DOC] fix a typo about timeout check and clarify the explanation.
19649 - [MEDIUM] http: don't use trash to realign large buffers
19650 - [STATS] report HTTP requests (total and rate) in frontends
19651 - [STATS] separate frontend and backend HTTP stats
19652 - [MEDIUM] http: revert to use a swap buffer for realignment
19653 - [MINOR] stats: report the request rate in frontends as cell titles
19654 - [MINOR] stats: mark areas with an underline when tooltips are available
19655 - [DOC] reorder some entries to maintain the alphabetical order
19656 - [DOC] cleanup of the keyword matrix
19657
Willy Tarreaub05613d2010-02-02 10:18:28 +0100196582010/02/02 : 1.4-rc1
19659 - [MEDIUM] add a maintenance mode to servers
19660 - [MINOR] http-auth: last fix was wrong
19661 - [CONTRIB] add base64rev-gen.c that was used to generate the base64rev table.
19662 - [MINOR] Base64 decode
19663 - [MINOR] generic auth support with groups and encrypted passwords
19664 - [MINOR] add ACL_TEST_F_NULL_MATCH
19665 - [MINOR] http-request: allow/deny/auth support for frontend/backend/listen
19666 - [MINOR] acl: add http_auth and http_auth_group
19667 - [MAJOR] use the new auth framework for http stats
19668 - [DOC] add info about userlists, http-request and http_auth/http_auth_group acls
19669 - [STATS] make it possible to change a CLI connection timeout
19670 - [BUG] patterns: copy-paste typo in type conversion arguments
19671 - [MINOR] pattern: make the converter more flexible by supporting void* and int args
19672 - [MINOR] standard: str2mask: string to netmask converter
19673 - [MINOR] pattern: add support for argument parsers for converters
19674 - [MINOR] pattern: add the "ipmask()" converting function
19675 - [MINOR] config: off-by-one in "stick-table" after list of converters
19676 - [CLEANUP] acl, patterns: make use of my_strndup() instead of malloc+memcpy
19677 - [BUG] restore accidentely removed line in last patch !
19678 - [MINOR] checks: make the HTTP check code add the CRLF itself
19679 - [MINOR] checks: add the server's status in the checks
19680 - [BUILD] halog: make without arch-specific optimizations
19681 - [BUG] halog: fix segfault in case of empty log in PCT mode (cherry picked from commit fe362fe4762151d209b9656639ee1651bc2b329d)
19682 - [MINOR] http: disable keep-alive when process is going down
19683 - [MINOR] acl: add build_acl_cond() to make it easier to add ACLs in config
19684 - [CLEANUP] config: use build_acl_cond() instead of parse_acl_cond()
19685 - [CLEANUP] config: use warnif_cond_requires_resp() to check for bad ACLs
19686 - [MINOR] prepare req_*/rsp_* to receive a condition
19687 - [CLEANUP] config: specify correct const char types to warnif_* functions
19688 - [MEDIUM] config: factor out the parsing of 20 req*/rsp* keywords
19689 - [MEDIUM] http: make the request filter loop check for optional conditions
19690 - [MEDIUM] http: add support for conditional request filter execution
19691 - [DOC] add some build info about the AIX platform (cherry picked from commit e41914c77edbc40aebf827b37542d37d758e371e)
19692 - [MEDIUM] http: add support for conditional request header addition
19693 - [MEDIUM] http: add support for conditional response header rewriting
19694 - [DOC] add some missing ACLs about response header matching
19695 - [MEDIUM] http: add support for proxy authentication
19696 - [MINOR] http-auth: make the 'unless' keyword work as expected
19697 - [CLEANUP] config: use build_acl_cond() to simplify http-request ACL parsing
19698 - [MEDIUM] add support for anonymous ACLs
19699 - [MEDIUM] http: switch to tunnel mode after status 101 responses
19700 - [MEDIUM] http: stricter processing of the CONNECT method
19701 - [BUG] config: reset check request to avoid double free when switching to ssl/sql
19702 - [MINOR] config: fix too large ssl-hello-check message.
19703 - [BUG] fix error response in case of server error
19704
Willy Tarreau2eba6aa2010-01-25 23:28:05 +0100197052010/01/25 : 1.4-dev8
19706 - [CLEANUP] Keep in sync "defaults" support between documentation and code
19707 - [MEDIUM] http: add support for Proxy-Connection header
19708 - [CRITICAL] buffers: buffer_insert_line2 must not change the ->w entry
19709 - [MINOR] http: remove a copy-paste typo in transaction cleaning
19710 - [BUG] http: trim any excess buffer data when recycling a connection
19711
Willy Tarreau6939b552010-01-25 01:54:37 +0100197122010/01/25 : 1.4-dev7
19713 - [BUG] appsession: possible memory leak in case of out of memory condition
19714 - [MINOR] config: don't accept 'appsession' in defaults section
19715 - [MINOR] Add function to parse a size in configuration
19716 - [MEDIUM] Add stick table (persistence) management functions and types
19717 - [MEDIUM] Add pattern fetch management types and functions
19718 - [MEDIUM] Add src dst and dport pattern fetches.
19719 - [MEDIUM] Add stick table configuration and init.
19720 - [MEDIUM] Add stick and store rules analysers.
19721 - [MINOR] add option "mysql-check" to use MySQL health checks
19722 - [BUG] health checks: fix requeued message
19723 - [OPTIM] remove SSP_O_VIA and SSP_O_STATUS
19724 - [BUG] checks: fix newline termination
19725 - [MINOR] acl: add fe_id/so_id to match frontend's and socket's id
19726 - [BUG] appsession's sessid must be reset at end of transaction
19727 - [BUILD] appsession did not build anymore under gcc-2.95
19728 - [BUG] server redirection used an uninitialized string.
19729 - [MEDIUM] http: fix handling of message pointers
19730 - [MINOR] http: fix double slash prefix with server redirect
19731 - [MINOR] http redirect: add the ability to append a '/' to the URL
19732 - [BUG] stream_interface: fix retnclose and remove cond_close
19733 - [MINOR] http redirect: don't explicitly state keep-alive on 1.1
19734 - [MINOR] http: move appsession 'sessid' from session to http_txn
19735 - [OPTIM] reorder http_txn to optimize cache lines placement
19736 - [MINOR] http: differentiate waiting for new request and waiting for a complete requst
19737 - [MINOR] http: add a separate "http-keep-alive" timeout
19738 - [MINOR] config: remove undocumented and buggy 'timeout appsession'
19739 - [DOC] fix various too large lines
19740 - [DOC] remove several trailing spaces
19741 - [DOC] add the doc about stickiness
19742 - [BUILD] remove a warning in standard.h on AIX
19743 - [BUG] checks: chars are unsigned on AIX, check was always true
19744 - [CLEANUP] stream_sock: MSG_NOSIGNAL is only for send(), not recv()
19745 - [BUG] check: we must not check for error before reading a response
19746 - [BUG] buffers: remove remains of wrong obsolete length check
19747 - [OPTIM] stream_sock: don't shutdown(write) when the socket is in error
19748 - [BUG] http: don't count req errors on client resets or t/o during keep-alive
19749 - [MEDIUM] http: don't switch to tunnel mode upon close
19750 - [DOC] add documentation about connection header processing
19751 - [MINOR] http: add http_remove_header2() to remove a header value.
19752 - [MINOR] tools: add a "word_match()" function to match words and ignore spaces
19753 - [MAJOR] http: rework request Connection header handling
19754 - [MAJOR] http: rework response Connection header handling
19755 - [MINOR] add the ability to force kernel socket buffer size.
19756 - [BUG] http_server_error() must not purge a previous pending response
19757 - [OPTIM] http: don't delay response if next request is incomplete
19758 - [MINOR] add the "force-persist" statement to force persistence on down servers
19759 - [MINOR] http: logs must report persistent connections to down servers
19760 - [BUG] buffer_replace2 must never change the ->w entry
19761
Willy Tarreau11f8f542010-01-08 07:49:44 +0100197622010/01/08 : 1.4-dev6
19763 - [BUILD] warning in stream_interface.h
19764 - [BUILD] warning ultoa_r returns char *
19765 - [MINOR] hana: only report stats if it is enabled
19766 - [MINOR] stats: add "a link" & "a href" for sockets
19767 - [MINOR]: stats: add show-legends to report additional informations
19768 - [MEDIUM] default-server support
19769 - [BUG]: add 'observer', 'on-error', 'error-limit' to supported options list
19770 - [MINOR] stats: add href to tracked server
19771 - [BUG] stats: show UP/DOWN status also in tracking servers
19772 - [DOC] Restore ability to search a keyword at the beginning of a line
19773 - [BUG] stats: cookie should be reported under backend not under proxy
19774 - [BUG] cfgparser/stats: fix error message
19775 - [BUG] http: disable auto-closing during chunk analysis
19776 - [BUG] http: fix hopefully last closing issue on data forwarding
19777 - [DEBUG] add an http_silent_debug function to debug HTTP states
19778 - [MAJOR] http: fix again the forward analysers
19779 - [BUG] http_process_res_common() must not skip the forward analyser
19780 - [BUG] http: some possible missed close remain in the forward chain
19781 - [BUG] http: redirect needed to be updated after recent changes
19782 - [BUG] http: don't set no-linger on response in case of forced close
19783 - [MEDIUM] http: restore the original behaviour of option httpclose
19784 - [TESTS] add a file to test various connection modes
19785 - [BUG] http: check options before the connection header
19786 - [MAJOR] session: fix the order by which the analysers are run
19787 - [MEDIUM] session: also consider request analysers added during response
19788 - [MEDIUM] http: make safer use of the DONT_READ and AUTO_CLOSE flags
19789 - [BUG] http: memory leak with captures when using keep-alive
19790 - [BUG] http: fix for capture memory leak was incorrect
19791 - [MINOR] http redirect: use proper call to return last response
19792 - [MEDIUM] http: wait for some flush of the response buffer before a new request
19793 - [MEDIUM] session: limit the number of analyser loops
19794
Willy Tarreau1f445892010-01-03 23:23:36 +0100197952010/01/03 : 1.4-dev5
19796 - [MINOR] server tracking: don't care about the tracked server's mode
19797 - [MEDIUM] appsession: add "len", "prefix" and "mode" options
19798 - [MEDIUM] appsession: add the "request-learn" option
19799 - [BUG] Configuration parser bug when escaping characters
19800 - [MINOR] CSS & HTML fun
19801 - [MINOR] Collect & provide http response codes received from servers
19802 - [BUG] Fix silly typo: hspr_other -> hrsp_other
19803 - [MINOR] Add "a name" to stats page
19804 - [MINOR] add additional "a href"s to stats page
19805 - [MINOR] Collect & provide http response codes for frontends, fix backends
19806 - [DOC] some small spell fixes and unifications
19807 - [MEDIUM] Decrease server health based on http responses / events, version 3
19808 - [BUG] format '%d' expects type 'int', but argument 5 has type 'long int'
19809 - [BUG] config: fix erroneous check on cookie domain names, again
19810 - [BUG] Healthchecks: get a proper error code if connection cannot be completed immediately
19811 - [DOC] trivial fix for man page
19812 - [MINOR] config: report all supported options for the "bind" keyword
19813 - [MINOR] tcp: add support for the defer_accept bind option
19814 - [MINOR] unix socket: report the socket path in case of bind error
19815 - [CONTRIB] halog: support searching by response time
19816 - [DOC] add a reminder about obsolete documents
19817 - [DOC] point to 1.4 doc, not 1.3
19818 - [DOC] option tcp-smart-connect was missing from index
19819 - [MINOR] http: detect connection: close earlier
19820 - [CLEANUP] sepoll: clean up the fd_clr/fd_set functions
19821 - [OPTIM] move some rarely used fields out of fdtab
19822 - [MEDIUM] fd: merge fd_list into fdtab
19823 - [MAJOR] buffer: flag BF_DONT_READ to disable reads when not required
19824 - [MINOR] http: add new transaction flags for keep-alive and content-length
19825 - [MEDIUM] http request: parse connection, content-length and transfer-encoding
19826 - [MINOR] http request: update the TX_SRV_CONN_KA flag on rewrite
19827 - [MINOR] http request: simplify the test of no-data
19828 - [MEDIUM] http request: simplify POST length detection
19829 - [MEDIUM] http request: make use of pre-parsed transfer-encoding header
19830 - [MAJOR] http: create the analyser which waits for a response
19831 - [MINOR] http: pre-set the persistent flags in the transaction
19832 - [MEDIUM] http response: check body length and set transaction flags
19833 - [MINOR] http response: update the TX_CLI_CONN_KA flag on rewrite
19834 - [MINOR] http: remove the last call to stream_int_return
19835 - [IMPORT] import ebtree v5.0 into directory ebtree/
19836 - [MEDIUM] build: switch ebtree users to use new ebtree version
19837 - [CLEANUP] ebtree: remove old unused files
19838 - [BUG] definitely fix regparm issues between haproxy core and ebtree
19839 - [CLEANUP] ebtree: cast to char * to get rid of gcc warning
19840 - [BUILD] missing #ifndef in ebmbtree.h
19841 - [BUILD] missing #ifndef in ebsttree.h
19842 - [MINOR] tools: add hex2i() function to convert hex char to int
19843 - [MINOR] http: create new MSG_BODY sub-states
19844 - [BUG] stream_sock: BUF_INFINITE_FORWARD broke splice on 64-bit platforms
19845 - [DOC] option is "defer-accept", not "defer_accept"
19846 - [MINOR] http: keep pointer to beginning of data
19847 - [BUG] x-original-to: name was not set in default instance
19848 - [MINOR] http: detect tunnel mode and set it in the session
19849 - [BUG] config: fix error message when config file is not found
19850 - [BUG] config: fix wrong handling of too large argument count
19851 - [BUG] config: disable 'option httplog' on TCP proxies
19852 - [BUG] config: fix erroneous check on cookie domain names
19853 - [BUG] config: cookie domain was ignored in defaults sections
19854 - [MINOR] config: support passing multiple "domain" statements to cookies
19855 - [MINOR] ebtree: add functions to lookup non-null terminated strings
19856 - [MINOR] config: don't report error on all subsequent files on failure
19857 - [BUG] second fix for the printf format warning
19858 - [BUG] check_post: limit analysis to the buffer length
19859 - [MEDIUM] http: process request body in a specific analyser
19860 - [MEDIUM] backend: remove HTTP POST parsing from get_server_ph_post()
19861 - [MAJOR] http: completely process the "connection" header
19862 - [MINOR] http: only consider chunk encoding with HTTP/1.1
19863 - [MAJOR] buffers: automatically compute the maximum buffer length
19864 - [MINOR] http: move the http transaction init/cleanup code to proto_http
19865 - [MINOR] http: move 1xx handling earlier to eliminate a lot of ifs
19866 - [MINOR] http: introduce a new synchronisation state : HTTP_MSG_DONE
19867 - [MEDIUM] http: rework chunk-size parser
19868 - [MEDIUM] http: add a new transaction flags indicating if we know the transfer length
19869 - [MINOR] buffers: add buffer_ignore() to skip some bytes
19870 - [BUG] http: offsets are relative to the buffer, not to ->som
19871 - [MEDIUM] http: automatically re-aling request buffer
19872 - [BUG] http: body parsing must consider the start of message
19873 - [MINOR] new function stream_int_cond_close()
19874 - [MAJOR] http: implement body parser
19875 - [BUG] http: typos on several unlikely() around header insertion
19876 - [BUG] stream_sock: wrong max computation on recv
19877 - [MEDIUM] http: rework the buffer alignment logic
19878 - [BUG] buffers: wrong size calculation for displaced data
19879 - [MINOR] stream_sock: prepare for closing when all pending data are sent
19880 - [MEDIUM] http: add two more states for the closing period
19881 - [MEDIUM] http: properly handle "option forceclose"
19882 - [MINOR] stream_sock: add SI_FL_NOLINGER for faster close
19883 - [MEDIUM] http: make forceclose use SI_FL_NOLINGER
19884 - [MEDIUM] session: set SI_FL_NOLINGER when aborting on write timeouts
19885 - [MEDIUM] http: add some SI_FL_NOLINGER around server errors
19886 - [MINOR] config: option forceclose is valid in frontends too
19887 - [BUILD] halog: insufficient include path in makefile
19888 - [MEDIUM] http: make the analyser not rely on msg being initialized anymore
19889 - [MEDIUM] http: make the parsers able to wait for a buffer flush
19890 - [MAJOR] http: add support for option http-server-close
19891 - [BUG] http: ensure we abort data transfer on write error
19892 - [BUG] last fix was overzealous and disabled server-close
19893 - [BUG] http: fix erroneous trailers size computation
19894 - [MINOR] stream_sock: enable MSG_MORE when forwarding finite amount of data
19895 - [OPTIM] http: set MSG_MORE on response when a pipelined request is pending
19896 - [BUG] http: redirects were broken by chunk changes
19897 - [BUG] http: the request URI pointer is relative to the buffer
19898 - [OPTIM] http: don't immediately enable reading on request
19899 - [MINOR] http: move redirect messages to HTTP/1.1 with a content-length
19900 - [BUG] http: take care of errors, timeouts and aborts during the data phase
19901 - [MINOR] http: don't wait for sending requests to the server
19902 - [MINOR] http: make the conditional redirect support keep-alive
19903 - [BUG] http: fix cookie parser to support spaces and commas in values
19904 - [MINOR] config: some options were missing for "redirect"
19905 - [MINOR] redirect: add support for unconditional rules
19906 - [MINOR] config: centralize proxy struct initialization
19907 - [MEDIUM] config: remove the limitation of 10 reqadd/rspadd statements
19908 - [MEDIUM] config: remove the limitation of 10 config files
19909 - [CLEANUP] http: remove a remaining impossible condition
19910 - [OPTIM] http: optimize a bit the construct of the forward loops
19911
Willy Tarreauc82a9e52009-10-12 06:40:53 +0200199122009/10/12 : 1.4-dev4
19913 - [DOC] add missing rate_lim and rate_max
19914 - [MAJOR] struct chunk rework
19915 - [MEDIUM] Health check reporting code rework + health logging, v3
19916 - [BUG] check if rise/fall has an argument and it is > 0
19917 - [MINOR] health checks logging unification
19918 - [MINOR] add "description", "node" and show-node"/"show-desc", remove "node-name", v2
19919 - [MINOR] Allow dots in show-node & add "white-space: nowrap" in th.pxname.
19920 - [DOC] Add information about http://haproxy.1wt.eu/contrib.html
19921 - [MINOR] Introduce include/types/counters.h
19922 - [CLEANUP] Move counters to dedicated structures
19923 - [MINOR] Add "clear counters" to clear statistics counters
19924 - [MEDIUM] Collect & provide separate statistics for sockets, v2
19925 - [BUG] Fix NULL pointer dereference in stats_check_uri_auth(), v2
19926 - [MINOR] acl: don't report valid acls as potential mistakes
19927 - [MINOR] Add cut_crlf(), ltrim(), rtrim() and alltrim()
19928 - [MINOR] Add chunk_htmlencode and chunk_asciiencode
19929 - [MINOR] Capture & display more data from health checks, v2
19930 - [BUG] task.c: don't assing last_timer to node-less entries
19931 - [BUG] http stats: large outputs sometimes got some parts chopped off
19932 - [MINOR] backend: export some functions to recount servers
19933 - [MINOR] backend: uninline some LB functions
19934 - [MINOR] include time.h from freq_ctr.h as is uses "now".
19935 - [CLEANUP] backend: move LB algos to individual files
19936 - [MINOR] lb_map: reorder code in order to ease integration of new hash functions
19937 - [CLEANUP] proxy: move last lb-specific bits to their respective files
19938 - [MINOR] backend: separate declarations of LB algos from their lookup method
19939 - [MINOR] backend: reorganize the LB algorithm selection
19940 - [MEDIUM] backend: introduce the "static-rr" LB algorithm
19941 - [MINOR] report list of supported pollers with -vv
19942 - [DOC] log-health-checks is an option, not a directive
19943 - [MEDIUM] new option "independant-streams" to stop updating read timeout on writes
19944 - [BUG] stats: don't call buffer_shutw(), but ->shutw() instead
19945 - [MINOR] stats: strip CR and LF from the input command line
19946 - [BUG] don't refresh timeouts late after detected activity
19947 - [MINOR] stats_dump_errors_to_buffer: use buffer_feed_chunk()
19948 - [MINOR] stats_dump_sess_to_buffer: use buffer_feed_chunk()
19949 - [MINOR] stats: make stats_dump_raw_to_buffer() use buffer_feed_chunk
19950 - [MEDIUM] stats: don't use s->ana_state anymore
19951 - [MINOR] remove now obsolete ana_state from the session struct
19952 - [MEDIUM] stats: make HTTP stats use an I/O handler
19953 - [MEDIUM] stream_int: adjust WAIT_ROOM handling
19954 - [BUG] config: look for ID conflicts in all sockets, not only last ones.
19955 - [MINOR] config: reference file and line with any listener/proxy/server declaration
19956 - [MINOR] config: report places of duplicate names or IDs
19957 - [MINOR] config: add pointer to file name in block/redirect/use_backend/monitor rules
19958 - [MINOR] tools: add a new get_next_id() function
19959 - [MEDIUM] config: automatically find unused IDs for proxies, servers and listeners
19960 - [OPTIM] counters: move some max numbers to the counters struct
19961 - [BUG] counters: fix segfault on missing counters for a listener
19962 - [MEDIUM] backend: implement consistent hashing variation
19963 - [MINOR] acl: add fe_conn, be_conn, queue, avg_queue
19964 - [MINOR] stats: use 'clear counters all' to clear all values
19965 - [MEDIUM] add access restrictions to the stats socket
19966 - [MINOR] buffers: add buffer_feed2() and make buffer_feed() measure string length
19967 - [MINOR] proxy: provide function to retrieve backend/server pointers
19968 - [MINOR] add the "initial weight" to the server struct.
19969 - [MEDIUM] stats: add the "get weight" command to report a server's weight
19970 - [MEDIUM] stats: add the "set weight" command
19971 - [BUILD] add a 'make tags' target
19972 - [MINOR] stats: add support for numeric IDs in set weight/get weight
19973 - [MINOR] stats: use a dedicated state to output static data
19974 - [OPTIM] stats: check free space before trying to print
19975
Willy Tarreau9f389e02009-09-24 00:12:50 +0200199762009/09/24 : 1.4-dev3
19977 - [BUILD] compilation of haproxy-1.4-dev2 on FreeBSD
19978 - [MEDIUM] Collect & show information about last health check, v3
19979 - [MINOR] export the hostname variable so that all the code can access it
19980 - [MINOR] stats: add a new node-name setting
19981 - [MEDIUM] remove old experimental tcpsplice option
19982 - [BUILD] fix build for systems without SOL_TCP
19983 - [MEDIUM] move connection establishment from backend to the SI.
19984 - [MEDIUM] make the global stats socket part of a frontend
19985 - [MEDIUM] session: account per-listener connections
19986 - [MINOR] session: switch to established state if no connect function
19987 - [MEDIUM] make the unix stats sockets use the generic session handler
19988 - [CLEANUP] unix: remove uxst_process_session()
19989 - [CLEANUP] move remaining stats sockets code to dumpstats
19990 - [MINOR] move the initial task's nice value to the listener
19991 - [MINOR] cleanup set_session_backend by using pre-computed analysers
19992 - [MINOR] set s->srv_error according to the analysers
19993 - [MEDIUM] set rep->analysers from fe and be analysers
19994 - [MEDIUM] replace BUFSIZE with buf->size in computations
19995 - [MEDIUM] make it possible to change the buffer size in the configuration
19996 - [MEDIUM] report error on buffer writes larger than buffer size
19997 - [MEDIUM] stream_interface: add and use ->update function to resync
19998 - [CLEANUP] remove ifdef MSG_NOSIGNAL and define it instead
19999 - [MEDIUM] remove TCP_CORK and make use of MSG_MORE instead
20000 - [BUG] tarpit did not work anymore
20001 - [MINOR] acl: add support for hdr_ip to match IP addresses in headers
20002 - [MAJOR] buffers: fix misuse of the BF_SHUTW_NOW flag
20003 - [MINOR] buffers: provide more functions to handle buffer data
20004 - [MEDIUM] buffers: provide new buffer_feed*() function
20005 - [MINOR] buffers: add peekchar and peekline functions for stream interfaces
20006 - [MINOR] buffers: provide buffer_si_putchar() to send a char from a stream interface
20007 - [BUG] buffer_forward() would not correctly consider data already scheduled
20008 - [MINOR] buffers: add buffer_cut_tail() to cut only unsent data
20009 - [MEDIUM] stream_interface: make use of buffer_cut_tail() to report errors
20010 - [MAJOR] http: add support for HTTP 1xx informational responses
20011 - [MINOR] buffers: inline buffer_si_putchar()
20012 - [MAJOR] buffers: split BF_WRITE_ENA into BF_AUTO_CONNECT and BF_AUTO_CLOSE
20013 - [MAJOR] buffers: fix the BF_EMPTY flag's meaning
20014 - [BUG] stream_interface: SI_ST_CLO must have buffers SHUT
20015 - [MINOR] stream_sock: don't set SI_FL_WAIT_DATA if BF_SHUTW_NOW is set
20016 - [MEDIUM] add support for infinite forwarding
20017 - [BUILD] stream_interface: fix conflicting declaration
20018 - [BUG] buffers: buffer_forward() must not always clear BF_OUT_EMPTY
20019 - [BUG] variable buffer size ignored at initialization time
20020 - [MINOR] ensure that buffer_feed() and buffer_skip() set BF_*_PARTIAL
20021 - [BUG] fix buffer_skip() and buffer_si_getline() to correctly handle wrap-arounds
20022 - [MINOR] stream_interface: add SI_FL_DONT_WAKE flag
20023 - [MINOR] stream_interface: add iohandler callback
20024 - [MINOR] stream_interface: add functions to support running as internal/external tasks
20025 - [MEDIUM] session: call iohandler for embedded tasks (applets)
20026 - [MINOR] add a ->private member to the stream_interface
20027 - [MEDIUM] stats: prepare the connection for closing before dumping
20028 - [MEDIUM] stats: replace the stats socket analyser with an SI applet
20029
Willy Tarreau68dcd252009-08-09 22:57:09 +0200200302009/08/09 : 1.4-dev2
20031 - [BUG] task: fix possible crash when some timeouts are not configured
20032 - [BUG] log: option tcplog would log to global if no logger was defined
20033
Willy Tarreaub03d2982009-07-29 22:38:32 +0200200342009/07/29 : 1.4-dev1
20035 - [MINOR] acl: add support for matching of RDP cookies
20036 - [MEDIUM] add support for RDP cookie load-balancing
20037 - [MEDIUM] add support for RDP cookie persistence
20038 - [MINOR] add a new CLF log format
20039 - [MINOR] startup: don't imply -q with -D
20040 - [BUG] ensure that we correctly re-start old process in case of error
20041 - [MEDIUM] add support for binding to source port ranges during connect
20042 - [MINOR] config: track "no option"/"option" changes
20043 - [MINOR] config: support resetting options do default values
20044 - [MEDIUM] implement option tcp-smart-accept at the frontend
20045 - [MEDIUM] stream_sock: implement tcp-cork for use during shutdowns on Linux
20046 - [MEDIUM] implement tcp-smart-connect option at the backend
20047 - [MEDIUM] add support for TCP MSS adjustment for listeners
20048 - [MEDIUM] support setting a server weight to zero
20049 - [MINOR] make DEFAULT_MAXCONN user-configurable at build time
20050 - [MAJOR] session: don't clear buffer status flags anymore
20051 - [MAJOR] session: only check for timeouts when they have just occurred.
20052 - [MAJOR] session: simplify buffer error handling
20053 - [MEDIUM] config: split parser and checker in two functions
20054 - [MEDIUM] config: support loading multiple configuration files
20055 - [MEDIUM] stream_sock: don't close prematurely when nolinger is set
20056 - [MEDIUM] session: rework buffer analysis to permit permanent analysers
20057 - [MEDIUM] splice: set the capability on each stream_interface
20058 - [BUG] http: redirect rules were processed too early
20059 - [CLEANUP] remove unused DEBUG_PARSE_NO_SPEEDUP define
20060 - [MEDIUM] http: split request waiter from request processor
20061 - [MEDIUM] session: tell analysers what bit they were called for
20062 - [MAJOR] http: complete splitting of the remaining stages
20063 - [MINOR] report in the proxies the requirements for ACLs
20064 - [MINOR] http: rely on proxy->acl_requires to allocate hdr_idx
20065 - [MINOR] acl: add HTTP protocol detection (req_proto_http)
20066 - [MINOR] prepare callers of session_set_backend to handle errors
20067 - [BUG] default ACLs did not properly set the ->requires flag
20068 - [MEDIUM] allow a TCP frontend to switch to an HTTP backend
20069 - [MINOR] ensure we can jump from swiching rules to http without data
20070 - [MINOR] http: take http request timeout from the backend
20071 - [MINOR] allow TCP inspection rules to make use of HTTP ACLs
20072 - [BUILD] report commit date and not author's date as build date
20073 - [MINOR] acl: don't complain anymore when using L7 acls in TCP
20074 - [BUG] stream_sock: always shutdown(SHUT_WR) before closing
20075 - [BUG] stream_sock: don't stop reading when the poller reports an error
20076 - [BUG] config: tcp-request content only accepts "if" or "unless"
20077 - [BUG] task: fix possible timer drift after update
20078 - [MINOR] apply tcp-smart-connect option for the checks too
20079 - [MINOR] stats: better displaying in MSIE
20080 - [MINOR] config: improve error reporting in global section
20081 - [MINOR] config: improve error reporting in listen sections
20082 - [MINOR] config: the "capture" keyword is not allowed in backends
20083 - [MINOR] config: improve error reporting when checking configuration
20084 - [BUILD] fix a minor build warning on AIX
20085 - [BUILD] use "git cmd" instead of "git-cmd"
20086 - [CLEANUP] report 2009 not 2008 in the copyright banner.
20087 - [MINOR] print usage on the stats sockets upon invalid commands
20088 - [MINOR] acl: detect and report potential mistakes in ACLs
20089 - [BUILD] fix incorrect printf arg count with tcp_splice
20090 - [BUG] fix random pauses on last segment of a series
20091 - [BUILD] add support for build under Cygwin
20092
Willy Tarreau79158882009-06-09 11:59:08 +0200200932009/06/09 : 1.4-dev0
20094 - exact copy of 1.3.18
20095
Willy Tarreaubeb05ae2009-05-10 20:27:47 +0200200962009/05/10 : 1.3.18
20097 - [MEDIUM] add support for "balance hdr(name)"
20098 - [CLEANUP] give a little bit more information in error message
20099 - [MINOR] add X-Original-To: header
20100 - [BUG] x-original-to: fix missing initialization to default value
20101 - [BUILD] spec file: fix broken pipe during rpmbuild and add man file
20102 - [MINOR] improve reporting of misplaced acl/reqxxx rules
20103 - [MEDIUM] http: add options to ignore invalid header names
20104 - [MEDIUM] http: capture invalid requests/responses even if accepted
20105 - [BUILD] add format(printf) to printf-like functions
20106 - [MINOR] fix several printf formats and missing arguments
20107 - [BUG] stats: total and lbtot are unsigned
20108 - [MINOR] fix a few remaining printf-like formats on 64-bit platforms
20109 - [CLEANUP] remove unused make option from haproxy.spec
20110 - [BUILD] make it possible to pass alternative arch at build time
20111 - [MINOR] switch all stat counters to 64-bit
20112 - [MEDIUM] ensure we don't recursively call pool_gc2()
20113 - [CRITICAL] uninitialized response field can sometimes cause crashes
20114 - [BUG] fix wrong pointer arithmetics in HTTP message captures
20115 - [MINOR] rhel init script : support the reload operation
20116 - [MINOR] add basic signal handling functions
20117 - [BUILD] add signal.o to all makefiles
20118 - [MEDIUM] call signal_process_queue from run_poll_loop
20119 - [MEDIUM] pollers: don't wait if a signal is pending
20120 - [MEDIUM] convert all signals to asynchronous signals
20121 - [BUG] O(1) pollers should check their FD before closing it
20122 - [MINOR] don't close stdio fds twice
20123 - [MINOR] add options dontlog-normal and log-separate-errors
20124 - [DOC] minor fixes and rearrangements
20125 - [BUG] fix parser crash on unconditional tcp content rules
20126 - [DOC] rearrange the configuration manual and add a summary
20127 - [MINOR] standard: provide a new 'my_strndup' function
20128 - [MINOR] implement per-logger log level limitation
20129 - [MINOR] compute the max of sessions/s on fe/be/srv
20130 - [MINOR] stats: report max sessions/s and limit in CSV export
20131 - [MINOR] stats: report max sessions/s and limit in HTML stats
20132 - [MINOR] stats/html: use the arial font before helvetica
20133
Willy Tarreauf459b422009-03-29 15:26:57 +0200201342009/03/29 : 1.3.17
20135 - Update specfile to build for v2.6 kernel.
20136 - [BUG] reset the stream_interface connect timeout upon connect or error
20137 - [BUG] reject unix accepts when connection limit is reached
20138 - [MINOR] show sess: report number of calls to each task
20139 - [BUG] don't call epoll_ctl() on closed sockets
20140 - [BUG] stream_sock: disable I/O on fds reporting an error
20141 - [MINOR] sepoll: don't count two events on the same FD.
20142 - [MINOR] show sess: report a lot more information about sessions
20143 - [BUG] stream_sock: check for shut{r,w} before refreshing some timeouts
20144 - [BUG] don't set an expiration date directly from now_ms
20145 - [MINOR] implement ulltoh() to write HTML-formatted numbers
20146 - [MINOR] stats/html: group digits by 3 to clarify numbers
20147 - [BUILD] remove haproxy-small.spec
20148 - [BUILD] makefile: remove unused references to linux24eold and EPOLL_CTL_WORKAROUND
20149
Willy Tarreau8019ffa2009-03-22 23:46:12 +0100201502009/03/22 : 1.3.16
20151 - [BUILD] Fixed Makefile for linking pcre
20152 - [CONTRIB] selinux policy for haproxy
20153 - [MINOR] show errors: encode backslash as well as non-ascii characters
20154 - [MINOR] cfgparse: some cleanups in the consistency checks
20155 - [MINOR] cfgparse: set backends to "balance roundrobin" by default
20156 - [MINOR] tcp-inspect: permit the use of no-delay inspection
20157 - [MEDIUM] reverse internal proxy declaration order to match configuration
20158 - [CLEANUP] config: catch and report some possibly wrong rule ordering
20159 - [BUG] connect timeout is in the stream interface, not the buffer
20160 - [BUG] session: errors were not reported in termination flags in TCP mode
20161 - [MINOR] tcp_request: let the caller take care of errors and timeouts
20162 - [CLEANUP] http: remove some commented out obsolete code in process_response
20163 - [MINOR] update ebtree to version 4.1
20164 - [MEDIUM] scheduler: get rid of the 4 trees thanks and use ebtree v4.1
20165 - [BUG] sched: don't leave 3 lasts tasks unprocessed when niced tasks are present
20166 - [BUG] scheduler: fix improper handling of duplicates __task_queue()
20167 - [MINOR] sched: permit a task to stay up between calls
20168 - [MINOR] task: keep a task count and clean up task creators
20169 - [MINOR] stats: report number of tasks (active and running)
20170 - [BUG] server check intervals must not be null
20171 - [OPTIM] stream_sock: don't retry to read after a large read
20172 - [OPTIM] buffer: new BF_READ_DONTWAIT flag reduces EAGAIN rates
20173 - [MEDIUM] session: don't resync FSMs on non-interesting changes
20174 - [BUG] check for global.maxconn before doing accept()
20175 - [OPTIM] sepoll: do not re-check whole list upon accepts
20176
Willy Tarreau8185ced2009-03-09 22:45:53 +0100201772009/03/09 : 1.3.16-rc2
20178 - [BUG] stream_sock: write timeout must be updated when forwarding !
20179
Willy Tarreauff63b432009-03-09 01:03:42 +0100201802009/03/09 : 1.3.16-rc1
20181 - appsessions: cleanup DEBUG_HASH and initialize request_counter
20182 - [MINOR] acl: add new keyword "connslots"
20183 - [MINOR] cfgparse: fix off-by 2 in error message size
20184 - [BUILD] fix build with gcc 4.3
20185 - [BUILD] fix MANDIR default location to match documentation
20186 - [TESTS] add a debug patch to help trigger the stats bug
20187 - [BUG] Flush buffers also where there are exactly 0 bytes left
20188 - [MINOR] Allow to specify a domain for a cookie
20189 - [BUG/CLEANUP] cookiedomain -> cookie_domain rename + free(p->cookie_domain)
20190 - [MEDIUM] Fix memory freeing at exit
20191 - [MEDIUM] Fix memory freeing at exit, part 2
20192 - [BUG] Fix listen & more of 2 couples <ip>:<port>
20193 - [DOC] remove buggy comment for use_backend
20194 - [CRITICAL] fix server state tracking: it was O(n!) instead of O(n)
20195 - [MEDIUM] add support for URI hash depth and length limits
20196 - [MINOR] permit renaming of x-forwarded-for header
20197 - [BUILD] fix Makefile.bsd and Makefile.osx for stream_interface
20198 - [BUILD] Haproxy won't compile if DEBUG_FULL is defined
20199 - [MEDIUM] upgrade to ebtree v4.0
20200 - [DOC] update the README file with new build options
20201 - [MEDIUM] reduce risk of event starvation in ev_sepoll
20202 - [MEDIUM] detect streaming buffers and tag them as such
20203 - [MEDIUM] add support for conditional HTTP redirection
20204 - [BUILD] make install should depend on haproxy not "all"
20205 - [DEBUG] add a TRACE macro to facilitate runtime data extraction
20206 - [BUG] event pollers must not wait if a task exists in the run queue
20207 - [BUG] queue management: wake oldest request in queues
20208 - [BUG] log: reported queue position was offed-by-one
20209 - [BUG] fix the dequeuing logic to ensure that all requests get served
20210 - [DOC] documentation for the "retries" parameter was missing.
20211 - [MEDIUM] implement a monotonic internal clock
20212 - [MEDIUM] further improve monotonic clock by check forward jumps
20213 - [OPTIM] add branch prediction hints in list manipulations
20214 - [MAJOR] replace ultree with ebtree in wait-queues
20215 - [BUG] we could segfault during exit while freeing uri_auths
20216 - [BUG] wqueue: perform proper timeout comparisons with wrapping values
20217 - [MINOR] introduce now_ms, the current date in milliseconds
20218 - [BUG] disable buffer read timeout when reading stats
20219 - [MEDIUM] rework the wait queue mechanism
20220 - [BUILD] change declaration of base64tab to fix build with Intel C++
20221 - [OPTIM] shrink wake_expired_tasks() by using task_wakeup()
20222 - [MAJOR] use an ebtree instead of a list for the run queue
20223 - [MEDIUM] introduce task->nice and boot access to statistics
20224 - [OPTIM] task_queue: assume most consecutive timers are equal
20225 - [BUILD] silent a warning in unlikely() with gcc 4.x
20226 - [MAJOR] convert all expiration timers from timeval to ticks
20227 - [BUG] use_backend would not correctly consider "unless"
20228 - [TESTS] added test-acl.cfg to test some ACL combinations
20229 - [MEDIUM] add support for configuration keyword registration
20230 - [MEDIUM] modularize the global "stats" keyword configuration parser
20231 - [MINOR] cfgparse: add support for warnings in external functions
20232 - [MEDIUM] modularize the "timeout" keyword configuration parser
20233 - [MAJOR] implement tcp request content inspection
20234 - [MINOR] acl: add a new parsing function: parse_dotted_ver
20235 - [MINOR] acl: add req_ssl_ver in TCP, to match an SSL version
20236 - [CLEANUP] remove unused include/types/client.h
20237 - [CLEANUP] remove many #include <types/xxx> from C files
20238 - [CLEANUP] remove dependency on obsolete INTBITS macro
20239 - [DOC] document the new "tcp-request" keyword and associated ACLs
20240 - [MINOR] acl: add REQ_CONTENT to the list of default acls
20241 - [MEDIUM] acl: permit fetch() functions to set the result themselves
20242 - [MEDIUM] acl: get rid of dummy values in always_true/always_false
20243 - [MINOR] acl: add the "wait_end" acl verb
20244 - [MEDIUM] acl: enforce ACL type checking
20245 - [MEDIUM] acl: set types on all currently known ACL verbs
20246 - [MEDIUM] acl: when possible, report the name and requirements of ACLs in warnings
20247 - [CLEANUP] remove 65 useless NULL checks before free
20248 - [MEDIUM] memory: update pool_free2() to support NULL pointers
20249 - [MEDIUM] buffers: ensure buffer_shut* are properly called upon shutdowns
20250 - [MEDIUM] process_srv: rely on buffer flags for client shutdown
20251 - [MEDIUM] process_srv: don't rely at all on client state
20252 - [MEDIUM] process_cli: don't rely at all on server state
20253 - [BUG] fix segfault with url_param + check_post
20254 - [BUG] server timeout was not considered in some circumstances
20255 - [BUG] client timeout incorrectly rearmed while waiting for server
20256 - [MAJOR] kill CL_STINSPECT and CL_STHEADERS (step 1)
20257 - [MAJOR] get rid of SV_STANALYZE (step 2)
20258 - [MEDIUM] simplify and centralize request timeout cancellation and request forwarding
20259 - [MAJOR] completely separate HTTP and TCP states on the request path
20260 - [BUG] fix recently introduced loop when client closes early
20261 - [MAJOR] get rid of the SV_STHEADERS state
20262 - [MAJOR] better separation of response processing and server state
20263 - [MAJOR] clearly separate HTTP response processing from TCP server state
20264 - [MEDIUM] remove unused references to {CL|SV}_STSHUT*
20265 - [MINOR] term_trace: add better instrumentations to trace the code
20266 - [BUG] ev_sepoll: closed file descriptors could persist in the spec list
20267 - [BUG] process_response must not enable the read FD
20268 - [BUG] buffers: remove BF_MAY_CONNECT and fix forwarding issue
20269 - [BUG] process_response: do not touch srv_state
20270 - [BUG] maintain_proxies must not disable backends
20271 - [CLEANUP] get rid of BF_SHUT*_PENDING
20272 - [MEDIUM] buffers: add BF_EMPTY and BF_FULL to remove dependency on req/rep->l
20273 - [MAJOR] process_session: rely only on buffer flags
20274 - [MEDIUM] use buffer->wex instead of buffer->cex for connect timeout
20275 - [MEDIUM] centralize buffer timeout checks at the top of process_session
20276 - [MINOR] ensure the termination flags are set by process_xxx
20277 - [MEDIUM] session: move the analysis bit field to the buffer
20278 - [OPTIM] process_cli/process_srv: reduce the number of tests
20279 - [BUG] regparm is broken on gcc < 3
20280 - [BUILD] fix warning in proto_tcp.c with gcc >= 4
20281 - [MEDIUM] merge inspect_exp and txn->exp into request buffer
20282 - [BUG] process_cli/process_srv: don't call shutdown when already done
20283 - [BUG] process_request: HTTP body analysis must return zero if missing data
20284 - [TESTS] test-fsm: 22 regression tests for state machines
20285 - [BUG] Fix empty X-Forwarded-For header name when set in defaults section
20286 - [BUG] fix harmless but wrong fd insertion sequence
20287 - [MEDIUM] make it possible for analysers to follow the whole session
20288 - [MAJOR] rework of the server FSM
20289 - [OPTIM] remove useless fd_set(read) upon shutdown(write)
20290 - [MEDIUM] massive cleanup of process_srv()
20291 - [MEDIUM] second level of code cleanup for process_srv_data
20292 - [MEDIUM] third cleanup and optimization of process_srv_data()
20293 - [MEDIUM] process_srv_data: ensure that we always correctly re-arm timeouts
20294 - [MEDIUM] stream_sock_process_data moved to stream_sock.c
20295 - [MAJOR] make the client side use stream_sock_process_data()
20296 - [MEDIUM] split stream_sock_process_data
20297 - [OPTIM] stream_sock_read must check for null-reads more often
20298 - [MINOR] only call flow analysers when their read side is connected.
20299 - [MEDIUM] reintroduce BF_HIJACK with produce_content
20300 - [MINOR] re-arrange buffer flags and rename some of them
20301 - [MINOR] do not check for BF_SHUTR when computing write timeout
20302 - [OPTIM] ev_sepoll: detect newly created FDs and check them once
20303 - [OPTIM] reduce the number of calls to task_wakeup()
20304 - [OPTIM] force inlining of large functions with gcc >= 3
20305 - [MEDIUM] indicate a reason for a task wakeup
20306 - [MINOR] change type of fdtab[]->owner to void*
20307 - [MAJOR] make stream sockets aware of the stream interface
20308 - [MEDIUM] stream interface: add the ->shutw method as well as in and out buffers
20309 - [MEDIUM] buffers: add BF_READ_ATTACHED and BF_ANA_TIMEOUT
20310 - [MEDIUM] process_session: make use of the new buffer flags
20311 - [CLEANUP] process_session: move debug outputs out of the critical loop
20312 - [MEDIUM] move QUEUE and TAR timers to stream interfaces
20313 - [OPTIM] add compiler hints in tick_is_expired()
20314 - [MINOR] add buffer_check_timeouts() to check what timeouts have fired.
20315 - [MEDIUM] use buffer_check_timeouts instead of stream_sock_check_timeouts()
20316 - [MINOR] add an expiration flag to the stream_sock_interface
20317 - [MAJOR] migrate the connection logic to stream interface
20318 - [MAJOR] add a connection error state to the stream_interface
20319 - [MEDIUM] add the SN_CURR_SESS flag to the session to track open sessions
20320 - [MEDIUM] continue layering cleanups.
20321 - [MEDIUM] stream_interface: added a DISconnected state between CON/EST and CLO
20322 - [MEDIUM] remove stream_sock_update_data()
20323 - [MINOR] maintain a global session list in order to ease debugging
20324 - [BUG] shutw must imply close during a connect
20325 - [MEDIUM] process shutw during connection attempt
20326 - [MEDIUM] make the stream interface control the SHUT{R,W} bits
20327 - [MAJOR] complete layer4/7 separation
20328 - [CLEANUP] move the session-related functions to session.c
20329 - [MINOR] call session->do_log() for logging
20330 - [MINOR] replace the ambiguous client_return function by stream_int_return
20331 - [MINOR] replace client_retnclose() with stream_int_retnclose()
20332 - [MINOR] replace srv_close_with_err() with http_server_error()
20333 - [MEDIUM] make the http server error function a pointer in the session
20334 - [CLEANUP] session.c: removed some migration left-overs in sess_establish()
20335 - [MINOR] stream_sock_data_finish() should not expose fd
20336 - [MEDIUM] extract TCP request processing from HTTP
20337 - [MEDIUM] extract the HTTP tarpit code from process_request().
20338 - [MEDIUM] move the HTTP request body analyser out of process_request().
20339 - [MEDIUM] rename process_request to http_process_request
20340 - [BUG] fix forgotten server session counter
20341 - [MINOR] declare process_session in session.h, not proto_http.h
20342 - [MEDIUM] first pass of lifting to proto_uxst.c:uxst_event_accept()
20343 - [MINOR] add an analyser code for UNIX stats request
20344 - [MINOR] pre-set analyser flags on the listener at registration time
20345 - [BUG] do not forward close from cons to prod with analysers
20346 - [MEDIUM] ensure that sock->shutw() also closes read for init states
20347 - [MINOR] add an analyser state in struct session
20348 - [MAJOR] make unix sockets work again with stats
20349 - [MEDIUM] remove cli_fd, srv_fd, cli_state and srv_state from the session
20350 - [MINOR] move the listener reference from fd to session
20351 - [MEDIUM] reference the current hijack function in the buffer itself
20352 - [MINOR] slightly rebalance stats_dump_{raw,http}
20353 - [MINOR] add a new back-reference type : struct bref
20354 - [MINOR] add back-references to sessions for later use by a dumper.
20355 - [MEDIUM] add support for "show sess" in unix stats socket
20356 - [BUG] do not release the connection slot during a retry
20357 - [BUG] dynamic connection throttling could return a max of zero conns
20358 - [BUG] do not try to pause backends during reload
20359 - [BUG] ensure that listeners from disabled proxies are correctly unbound.
20360 - [BUG] acl-related keywords are not allowed in defaults sections
20361 - [BUG] cookie capture is declared in the frontend but checked on the backend
20362 - [BUG] critical errors should be reported even in daemon mode
20363 - [MINOR] redirect: add support for the "drop-query" option
20364 - [MINOR] redirect: add support for "set-cookie" and "clear-cookie"
20365 - [MINOR] redirect: in prefix mode a "/" means not to change the URI
20366 - [BUG] do not dequeue requests on a dead server
20367 - [BUG] do not dequeue the backend's pending connections on a dead server
20368 - [MINOR] stats: indicate if a task is running in "show sess"
20369 - [BUG] check timeout must not be changed if timeout.check is not set
20370 - [BUG] "option transparent" is for backend, not frontend !
20371 - [MINOR] transfer errors were not reported anymore in data phase
20372 - [MEDIUM] add a send limit to a buffer
20373 - [MEDIUM] don't report buffer timeout when there is I/O activity
20374 - [MEDIUM] indicate when we don't care about read timeout
20375 - [MINOR] add flags to indicate when a stream interface is waiting for space/data
20376 - [MEDIUM] enable inter-stream_interface wakeup calls
20377 - [MAJOR] implement autonomous inter-socket forwarding
20378 - [MINOR] add the splice_len member to the buffer struct in preparation of splice support
20379 - [MEDIUM] stream_sock: factor out the return path in case of no-writes
20380 - [MEDIUM] i/o: rework ->to_forward and ->send_max
20381 - [OPTIM] stream_sock: do not ask for polling on EAGAIN if we have read
20382 - [OPTIM] buffer: replace rlim by max_len
20383 - [OPTIM] stream_sock: factor out the buffer full handling out of the loop
20384 - [CLEANUP] replace a few occurrences of (flags & X) && !(flags & Y)
20385 - [CLEANUP] stream_sock: move the write-nothing condition out of the loop
20386 - [MEDIUM] split stream_sock_write() into callback and core functions
20387 - [MEDIUM] stream_sock_read: call ->chk_snd whenever there are data pending
20388 - [MINOR] stream_sock: fix a few wrong empty calculations
20389 - [MEDIUM] stream_sock: try to send pending data on chk_snd()
20390 - [MINOR] global.maxpipes: add the ability to reserve file descriptors for pipes
20391 - [MEDIUM] splice: add configuration options and set global.maxpipes
20392 - [MINOR] introduce structures required to support Linux kernel splicing
20393 - [MEDIUM] add definitions for Linux kernel splicing
20394 - [MAJOR] complete support for linux 2.6 kernel splicing
20395 - [BUG] reserve some pipes for backends with splice enabled
20396 - [MEDIUM] splice: add hints to support older buggy kernels
20397 - [MEDIUM] introduce pipe pools
20398 - [MEDIUM] splice: make use of pipe pools
20399 - [STATS] report pipe usage in the statistics
20400 - [OPTIM] make global.maxpipes default to global.maxconn/4 when not specified
20401 - [BUILD] fix snapshot date extraction with negative timezones
20402 - [MEDIUM] move global tuning options to the global structure
20403 - [MEDIUM] splice: add the global "nosplice" option
20404 - [BUILD] add USE_LINUX_SPLICE to enable LINUX_SPLICE on linux 2.6
20405 - [BUG] we must not exit if protocol binding only returns a warning
20406 - [MINOR] add support for bind interface name
20407 - [BUG] inform the user when root is expected but not set
20408 - [MEDIUM] add support for source interface binding
20409 - [MEDIUM] add support for source interface binding at the server level
20410 - [MEDIUM] implement bind-process to limit service presence by process
20411 - [DOC] document maxpipes, nosplice, option splice-{auto,request,response}
20412 - [DOC] filled the logging section of the configuration manual
20413 - [DOC] document HTTP status codes
20414 - [DOC] document a few missing info about errorfile
20415 - [BUG] fix random memory corruption using "show sess"
20416 - [BUG] fix unix socket processing of interrupted output
20417 - [DOC] add diagrams of queuing and future ACL design
20418 - [BUILD] proto_http did not build on gcc-2.95
20419 - [BUG] the "source" keyword must first clear optional settings
20420 - [BUG] global.tune.maxaccept must be limited even in mono-process mode
20421 - [MINOR] ensure that http_msg_analyzer updates pointer to invalid char
20422 - [MEDIUM] store a complete dump of request and response errors in proxies
20423 - [MEDIUM] implement error dump on unix socket with "show errors"
20424 - [DOC] document "show errors"
20425 - [MINOR] errors dump must use user-visible date, not internal date.
20426 - [MINOR] time: add __usec_to_1024th to convert usecs to 1024th of second
20427 - [MINOR] add curr_sec_ms and curr_sec_ms_scaled for current second.
20428 - [MEDIUM] measure and report session rate on frontend, backends and servers
20429 - [BUG] the "connslots" keyword was matched as "connlots"
20430 - [MINOR] acl: add 2 new verbs: fe_sess_rate and be_sess_rate
20431 - [MEDIUM] implement "rate-limit sessions" for the frontend
20432 - [BUG] interface binding: length must include the trailing zero
20433 - [BUG] typo in timeout error reporting : report *res and not *err
20434 - [OPTIM] maintain_proxies: only wake up when the frontend will be ready
20435 - [OPTIM] rate-limit: cleaner behaviour on low rates and reduce consumption
20436 - [BUG] switch server-side stream interface to close in case of abort
20437 - [CLEANUP] remove last references to term_trace
20438 - [OPTIM] freq_ctr: do not rotate the counters when reading
20439 - [BUG] disable any analysers for monitoring requests
20440 - [BUG] rate-limit in defaults section was ignored
20441 - [BUG] task: fix handling of duplicate keys
20442 - [OPTIM] task: don't unlink a task from a wait queue when waking it up
20443 - [OPTIM] displace tasks in the wait queue only if absolutely needed
20444 - [MEDIUM] minor update to the task api: let the scheduler queue itself
20445 - [BUG] event_accept() must always wake the task up, even in health mode
20446 - [CLEANUP] task: distinguish between clock ticks and timers
20447 - [OPTIM] task: reduce the number of calls to task_queue()
20448 - [OPTIM] do not re-check req buffer when only response has changed
20449 - [CLEANUP] don't enable kernel splicing when socket is closed
20450 - [CLEANUP] buffer_flush() was misleading, rename it as buffer_erase
20451 - [MINOR] buffers: implement buffer_flush()
20452 - [MEDIUM] rearrange forwarding condition to enable splice during analysis
20453 - [BUILD] build fixes for Solaris
20454 - [BUILD] proto_http did not build on gcc-2.95 (again)
20455 - [CONTRIB] halog: fast log parser for haproxy
20456 - [CONTRIB] halog: faster fgets() and add support for percentile reporting
20457
Willy Tarreau7b4c5ae2008-04-19 21:06:14 +0200204582008/04/19 : 1.3.15
20459 - [BUILD] Added support for 'make install'
20460 - [BUILD] Added 'install-man' make target for installing the man page
20461 - [BUILD] Added 'install-bin' make target
20462 - [BUILD] Added 'install-doc' make target
20463 - [BUILD] Removed "/" after '$(DESTDIR)' in install targets
20464 - [BUILD] Changed 'install' target to install the binaries first
20465 - [BUILD] Replace hardcoded 'LD = gcc' with 'LD = $(CC)'
20466 - [MEDIUM]: Inversion for options
20467 - [MEDIUM]: Count retries and redispatches also for servers, fix redistribute_pending, extend logs, %d->%u cleanup
20468 - [BUG]: Restore clearing t->logs.bytes
20469 - [MEDIUM]: rework checks handling
20470 - [DOC] Update a "contrib" file with a hint about a scheme used for formathing subjects
20471 - [MEDIUM] Implement "track [<backend>/]<server>"
20472 - [MINOR] Implement persistent id for proxies and servers
20473 - [BUG] Don't increment server connections too much + fix retries
20474 - [MEDIUM]: Prevent redispatcher from selecting the same server, version #3
20475 - [MAJOR] proto_uxst rework -> SNMP support
20476 - [BUG] appsession lookup in URL does not work
20477 - [BUG] transparent proxy address was ignored in backend
20478 - [BUG] hot reconfiguration failed because of a wrong error check
20479 - [DOC] big update to the configuration manual
20480 - [DOC] large update to the configuration manual
20481 - [DOC] document more options
20482 - [BUILD] major rework of the GNU Makefile
20483 - [STATS] add support for "show info" on the unix socket
20484 - [DOC] document options forwardfor to logasap
20485 - [MINOR] add support for the "backlog" parameter
20486 - [OPTIM] introduce global parameter "tune.maxaccept"
20487 - [MEDIUM] introduce "timeout http-request" in frontends
20488 - [MINOR] tarpit timeout is also allowed in backends
20489 - [BUG] increment server connections for each connect()
20490 - [MEDIUM] add a turn-around state of one second after a connection failure
20491 - [BUG] fix typo in redispatched connection
20492 - [DOC] document options nolinger to ssl-hello-chk
20493 - [DOC] added documentation for "option tcplog" to "use_backend"
20494 - [BUG] connect_server: server might not exist when sending error report
20495 - [MEDIUM] support fully transparent proxy on Linux (USE_LINUX_TPROXY)
20496 - [MEDIUM] add non-local bind to connect() on Linux
20497 - [MINOR] add transparent proxy support for balabit's Tproxy v4
20498 - [BUG] use backend's source and not server's source with tproxy
20499 - [BUG] fix overlapping server flags
20500 - [MEDIUM] fix server health checks source address selection
20501 - [BUG] build failed on CONFIG_HAP_LINUX_TPROXY without CONFIG_HAP_CTTPROXY
20502 - [DOC] added "server", "source" and "stats" keywords
20503 - [DOC] all server parameters have been documented
20504 - [DOC] document all req* and rsp* keywords.
20505 - [DOC] added documentation about HTTP header manipulations
20506 - [BUG] log response byte count, not request
20507 - [BUILD] code did not build in full debug mode
20508 - [BUG] fix truncated responses with sepoll
20509 - [MINOR] use s->frt_addr as the server's address in transparent proxy
20510 - [MINOR] fix configuration hint about timeouts
20511 - [DOC] minor cleanup of the doc and notice to contributors
20512 - [MINOR] report correct section type for unknown keywords.
20513 - [BUILD] update MacOS Makefile to build on newer versions
20514 - [DOC] fix erroneous "useallbackups" option in the doc
20515 - [DOC] applied small fixes from early readers
20516 - [MINOR] add configuration support for "redir" server keyword
20517 - [MEDIUM] completely implement the server redirection method
20518 - [TESTS] add a test case for the server redirection mechanism
20519 - [DOC] add a configuration entry for "server ... redir <prefix>"
20520 - [BUILD] backend.c and checks.c did not build without tproxy !
20521 - Revert "[BUILD] backend.c and checks.c did not build without tproxy !"
20522 - [BUILD] backend.c and checks.c did not build without tproxy !
20523 - [OPTIM] used unsigned ints for HTTP state and message offsets
20524 - [OPTIM] GCC4's builtin_expect() is suboptimal
20525 - [BUG] failed conns were sometimes incremented in the frontend!
20526 - [BUG] timeout.check was not pre-set to eternity
20527 - [TESTS] add test-pollers.cfg to easily report pollers in use
20528 - [BUG] do not apply timeout.connect in checks if unset
20529 - [BUILD] ensure that makefile understands USE_DLMALLOC=1
20530 - [MINOR] silent gcc for a wrong warning
20531 - [CLEANUP] update .gitignore to ignore more temporary files
20532 - [CLEANUP] report dlmalloc's source path only if explictly specified
20533 - [BUG] str2sun could leak a small buffer in case of error during parsing
20534 - [BUG] option allbackups was not working anymore in roundrobin mode
20535 - [MAJOR] implementation of the "leastconn" load balancing algorithm
20536 - [BUILD] ensure that users don't build without setting the target anymore.
20537 - [DOC] document the leastconn LB algo
20538 - [MEDIUM] fix stats socket limitation to 16 kB
20539 - [DOC] fix unescaped space in httpchk example.
20540 - [BUG] fix double-decrement of server connections
20541 - [TESTS] add a test case for port mapping
20542 - [TESTS] add a benchmark for integer hashing
20543 - [TESTS] add new methods in ip-hash test file
20544 - [MAJOR] implement parameter hashing for POST requests
20545
Willy Tarreaue5b77e82007-12-06 01:25:44 +0100205462007/12/06 : 1.3.14
20547 - New option http_proxy (Alexandre Cassen)
20548 - add support for "maxqueue" to limit server queue overload (Elijah Epifanov)
20549 - Check for duplicated conflicting proxies (Krzysztof Oledzki)
20550 - stats: report server and backend cumulated downtime (Krzysztof Oledzki)
20551 - use backends only with use_backend directive (Krzysztof Oledzki)
20552 - Handle long lines properly (Krzysztof Oledzki)
20553 - Implement and use generic findproxy and relax duplicated proxy check (Krzysztof Oledzki)
20554 - continous statistics (Krzysztof Oledzki)
20555 - add support for logging via a UNIX socket (Robert Tsai)
20556 - fix error checking in strl2ic/strl2uic()
20557 - fix calls to localtime()
20558 - provide easier-to-use ultoa_* functions
20559 - provide easy-to-use limit_r and LIM2A* macros
20560 - add a simple test for the status page
20561 - move error codes to common/errors.h
20562 - silent warning about LIST_* being redefined on OpenBSD
20563 - add socket address length to the protocols
20564 - group PR_O_BALANCE_* bits into a checkable value
20565 - externalize the "balance" option parser to backend.c
20566 - introduce the "url_param" balance method
20567 - make default_backend work in TCP mode too
20568 - disable warning about localtime_r on Solaris
20569 - adjust error messages about conflicting proxies
20570 - avoid calling some layer7 functions if not needed
20571 - simplify error path in event_accept()
20572 - add an options field to the listeners
20573 - added a new state to listeners
20574 - unbind_listener() must use fd_delete() and not close()
20575 - add a generic unbind_listener() primitive
20576 - add a generic delete_listener() primitive
20577 - add a generic unbind_all_listeners() primitive
20578 - create proto_tcp and move initialization of proxy listeners
20579 - stats: report numerical process ID, proxy ID and server ID
20580 - relative_pid was not initialized
20581 - missing header names in raw stats output
20582 - fix missing parenthesis in check_response_for_cacheability
20583 - small optimization on session_process_counters()
20584 - merge ebtree version 3.0
20585 - make ebtree headers multiple-include compatible
20586 - ebtree: include config.h for REGPRM*
20587 - differentiate between generic LB params and map-specific ones
20588 - add a weight divisor to the struct proxy
20589 - implement the Fast Weighted Round Robin (FWRR) algo
20590 - include filltab25.c to experiment on FWRR for dynamic weights
20591 - merge test-fwrr.cfg to validate dynamic weights
20592 - move the load balancing algorithm to be->lbprm.algo
20593 - change server check result to a bit field
20594 - implement "http-check disable-on-404" for graceful shutdown
20595 - secure the calling conditions of ->set_server_status_{up,down}
20596 - report disabled servers as "NOLB" when they are still UP
20597 - document the "http-check disable-on-404" option
20598 - http-check disable-on-404 is not limited to HTTP mode
20599 - add a test file for disable-on-404
20600 - use distinct bits per load-balancing algorithm type
20601 - implement the slowstart parameter for servers
20602 - document the server's slowstart parameter
20603 - stats: report the server warm up status in a "throttle" column
20604 - fix 2 minor issues on AIX
20605 - add the "nbsrv" ACL verb
20606 - add the "fail" condition to monitor requests
20607 - remove a warning from gcc due to htons() in standard.c
20608 - fwrr: ensure that we never overflow in placements
20609 - store the build options to report with -vv
20610 - fix the status return of the init script (R.I. Pienaar)
20611 - stats: real time monitoring script for unix socket (Prizee)
20612 - document "nbsrv" and "monitor fail"
20613 - restrict the set of allowed characters for identifiers
20614 - implement a time parsing function
20615 - add support for time units in the configuration
20616 - add a bit of documentation about timers
20617 - introduce separation between contimeout, and tarpit + queue
20618 - introduce the "timeout" keyword
20619 - grouped all timeouts in one structure
20620 - slowstart is in ms, not seconds
20621 - slowstart: ensure we don't start with a null weight
20622 - report the number of times each server was selected
20623 - fix build on AIX due to recent log changes
20624 - fix build on Solaris due to recent log changes
20625
Willy Tarreaue855f422007-10-18 22:38:22 +0200206262007/10/18 : 1.3.13
20627 - replace the code under O'Reilly license (Arnaud Cornet)
20628 - add a small man page (Arnaud Cornet)
20629 - stats: report haproxy's version by default (Krzysztof Oledzki)
20630 - stats: count server retries and redispatches (Krzysztof Oledzki)
20631 - core: added easy support for Doug Lea's malloc (dlmalloc)
20632 - core: fade out memory usage when stopping proxies
20633 - core: moved the sockaddr pointer to the fdtab structure
20634 - core: add generic protocol support
20635 - core: implement client-side support for PF_UNIX sockets
20636 - stats: implement the CSV output
20637 - stats: add a link to the CSV export HTML page
20638 - stats: implement the statistics output on a unix socket
20639 - config: introduce the "stats" keyword in global section
20640 - build: centralize version and date into one file for each
20641 - tests: added a new hash algorithm
20642
206432007/10/18 : 1.3.12.3
20644 - add the "nolinger" option to disable data lingering (Alexandre Cassen)
20645 - fix double-free during clean exit (Krzysztof Oledzki)
20646 - prevent the system from sending an RST when closing health-checks
20647 (Krzysztof Oledzki)
20648 - do not add a cache-control header when on non-cacheable responses
20649 (Krzysztof Oledzki)
20650 - spread health checks even more (Krzysztof Oledzki)
20651 - stats: scope "." must match the backend and not the frontend
20652 - fixed call to chroot() during startup
20653 - fix wrong timeout computation in event_accept()
20654 - remove condition for exit() under fork() failure
20655
206562007/09/20 : 1.3.12.2
20657 - fix configuration sanity checks for TCP listeners
20658 - set the log socket receive window to zero bytes
20659 - pre-initialize timeouts to infinity, not zero
20660 - fix the SIGHUP message not to alert on server-less proxies
20661 - timeouts and retries could be ignored when switching backend
20662 - added a file to check that "retries" works.
20663 - O'Reilly has clarified its license
20664
206652007/09/05 : 1.3.12.1
20666 - spec I/O: fix allocations of spec entries for an FD
20667 - ensure we never overflow in chunk_printf()
20668 - improve behaviour with large number of servers per proxy
20669 - add support for "stats refresh <interval>"
20670 - stats page: added links for 'refresh' and 'hide down'
20671 - fix backend's weight in the stats page.
20672 - the "stats" keyword is not allowed in a pure frontend.
20673 - provide a test configuration file for stats and checks
20674
Willy Tarreaub21152b2007-06-17 23:41:40 +0200206752007/06/17 : 1.3.12
20676 - fix segfault at exit when using captures
20677 - bug: negation in ACL conds was not cleared between terms
20678 - errorfile: use a local file to feed error messages
20679 - acl: support '-i' to ignore case when matching
20680 - acl: smarter integer comparison with operators eq,lt,gt,le,ge
20681 - acl: support maching on 'path' component
20682 - acl: implement matching on header values
20683 - acl: distinguish between request and response headers
20684 - acl: permit to return any header when no name specified
20685 - acl: provide default ACLs
20686 - added the 'use_backend' keyword for full content-switching
20687 - acl: specify the direction during fetches
20688 - acl: provide the argument length for fetch functions
20689 - acl: provide a reference to the expr to fetch()
20690 - improve memory freeing upon exit
20691 - str2net() must not change the const char *
20692 - shut warnings 'is*' macros from ctype.h on solaris
20693
Willy Tarreaua3503e02007-06-03 17:27:07 +0200206942007/06/03 : 1.3.11.4
20695 - do not re-arm read timeout in SHUTR state !
20696 - optimize I/O by detecting system starvation
20697 - the epoll FD must not be shared between processes
20698 - limit the number of events returned by *poll*
20699
Willy Tarreau3c6fc072007-05-14 14:40:25 +0200207002007/05/14 : 1.3.11.3
20701 - pre-initialize timeouts with tv_eternity during parsing
20702
Willy Tarreaufc273c22007-05-14 03:42:47 +0200207032007/05/14 : 1.3.11.2
20704 - fixed broken health-checks since switch to timeval
20705
Willy Tarreau3c5340c2007-05-14 03:18:43 +0200207062007/05/14 : 1.3.11.1
20707 - fixed ev_kqueue which was forgotten during the switch to timeval
20708 - allowed null timeouts for past events in select
20709
Willy Tarreau544eb402007-05-14 02:42:33 +0200207102007/05/14 : 1.3.11
20711 - fixed ev_sepoll again by rewriting the state machine
20712 - switched all timeouts to timevals instead of milliseconds
20713 - improved memory management using mempools v2.
20714 - several minor optimizations
20715
Willy Tarreau9ca931f2007-05-10 07:51:17 +0200207162007/05/09 : 1.3.10.2
20717 - fixed build on OpenBSD (missing types.h)
20718
Willy Tarreau13398d32007-05-09 22:58:28 +0200207192007/05/09 : 1.3.10.1
20720 - fixed sepoll transition matrix (two states were missing)
20721
Willy Tarreau61beedf2007-05-09 01:44:58 +0200207222007/05/08 : 1.3.10
20723 - several fixes in ev_sepoll
20724 - fixed some expiration dates on some tasks
20725 - fixed a bug in connection establishment detection due to speculative I/O
20726 - fixed rare bug occuring on TCP with early close (reported by Andy Smith)
20727 - implemented URI hashing algorithm (Guillaume Dallaire)
20728 - implemented SMTP health checks (Peter van Dijk)
20729 - replaced the rbtree with ul2tree from old scheduler project
20730 - new framework for generic ACL support
20731 - added the 'acl' and 'block' keywords to the config language
20732 - added several ACL criteria and matches (IP, port, URI, ...)
20733 - cleaned up and better modularization for some time functions
20734 - fixed list macros
20735 - fixed useless memory allocation in str2net()
20736 - store the original destination address in the session
20737
Willy Tarreau6e0433f2007-04-16 01:18:12 +0200207382007/04/15 : 1.3.9
20739 - modularized the polling mechanisms and use function pointers instead
20740 of macros at many places
20741 - implemented support for FreeBSD's kqueue() polling mechanism
20742 - fixed a warning on OpenBSD : MIN/MAX redefined
20743 - change socket registration order at startup to accomodate kqueue.
20744 - several makefile cleanups to support old shells
20745 - fix build with limits.h once for all
20746 - ev_epoll: do not rely on fd_sets anymore, use changes stacks instead.
20747 - fdtab now holds the results of polling
20748 - implemented support for speculative I/O processing with epoll()
20749 - remove useless calls to shutdown(SHUT_RD), resulting in small speed boost
20750 - auto-registering of pollers at load time
20751
Willy Tarreau42c76592007-04-03 20:30:13 +0200207522007/04/03 : 1.3.8.2
20753 - rewriting either the status line or request line could crash the
20754 process due to a pointer which ought to be reset before parsing.
20755 - rewriting the status line in the response did not work, it caused
20756 a 502 Bad Gateway due to an erroneous state during parsing
20757
Willy Tarreauef6d7612007-04-01 11:06:22 +0200207582007/04/01 : 1.3.8.1
20759 - fix reqadd when no option httpclose is used.
20760 - removed now unused fiprm and beprm from proxies
20761 - split logs into two versions : TCP and HTTP
20762 - added some docs about http headers storage and acls
20763 - added a VIM script for syntax color highlighting (Bruno Michel)
20764
Willy Tarreaud661cc02007-03-26 00:24:56 +0200207652007/03/25 : 1.3.8
20766 - fixed several bugs which might have caused a crash with bad configs
20767 - several optimizations in header processing
20768 - many progresses towards transaction-based processing
20769 - option forwardfor may be used in frontends
20770 - completed HTTP response processing
20771 - some code refactoring between request and response processing
20772 - new HTTP header manipulation functions
20773 - optimizations on the recv() patch to reduce CPU usage under very
20774 high data rates.
20775 - more user-friendly help about the 'usesrc' keyword (CTTPROXY)
20776 - username/groupname support from Marcus Rueckert
20777 - added the "except" keyword to the "forwardfor" option (Bryan German)
20778 - support for health-checks on other addresses (Fabrice Dulaunoy)
20779 - makefile for MacOS 10.4 / Darwin (Dan Zinngrabe)
20780 - do not insert "Connection: close" in HTTP/1.0 messages
20781
Willy Tarreau9cabf702007-01-26 23:49:01 +0100207822007/01/26 : 1.3.7
20783 - fix critical bug introduced with 1.3.6 : an empty request header
20784 may lead to a crash due to missing pointer assignment
20785 - hdr_idx might be left uninitialized in debug mode
20786 - fixed build on FreeBSD due to missing fd_set declaration
20787
Willy Tarreaue7a24382007-01-22 08:57:44 +0100207882007/01/22 : 1.3.6.1
20789 - change in the header chaining broke cookies and authentication
20790
Willy Tarreau49e1ee82007-01-22 00:56:46 +0100207912007/01/22 : 1.3.6
20792 - stats now support the HEAD method too
20793 - extracted http request from the session
20794 - huge rework of the HTTP parser which is now a 28-state FSM.
20795 - linux-style likely/unlikely macros for optimization hints
20796 - do not create a server socket when there's no server
20797 - imported lots of docs
20798
Willy Tarreau5871f8e2007-01-07 02:47:01 +0100207992007/01/07 : 1.3.5
20800 - stats: swap color sets for active and backup servers
20801 - try to guess server check port when unset
20802 - added complete support and doc for TCP Splicing
20803 - replace the wait-queue linked list with an rbtree.
20804 - a few bugfixes and cleanups
20805
Willy Tarreau85270da2007-01-02 00:59:39 +0100208062007/01/02 : 1.3.4
20807 - support for cttproxy on the server side to present the client
20808 address to the server.
20809 - added support for SO_REUSEPORT on Linux (needs kernel patch)
20810 - new RFC2616-compliant HTTP request parser with header indexing
20811 - split proxies in frontends, rulesets and backends
20812 - implemented the 'req[i]setbe' to select a backend depending
20813 on the contents
20814 - added the 'default_backend' keyword to select a default BE.
20815 - new stats page featuring FEs and BEs + bytes in both dirs
20816 - improved log format to indicate the backend and the time in ms.
20817 - lots of cleanups
20818
Willy Tarreau9c9fea42006-10-16 00:03:35 +0200208192006/10/15 : 1.3.3
20820 - fix broken redispatch option in case the connection has already
20821 been marked "in progress" (ie: nearly always).
20822 - support regparm on x86 to speed up some often called functions
20823 - removed a few useless calls to gettimeofday() in log functions.
20824 - lots of 'const char*' cleanups
20825 - turn every FD_* into functions which are faster on recent CPUs
20826
Willy Tarreau690f9aa2006-09-03 11:23:06 +0200208272006/09/03 : 1.3.2
20828 - started the changes towards I/O completion callbacks. stream_sock* have
20829 replaced event_*.
20830 - added the new "reqtarpit" and "reqitarpit" protection features
20831
Willy Tarreau8f2b8552006-07-09 17:11:39 +0200208322006/07/09 : 1.3.1 (1.2.15)
20833 - now, haproxy warns about missing timeout during startup to try to
20834 eliminate all those buggy configurations.
20835 - added "Content-Type: text/html" in responses wherever appropriate, as
20836 suggested by Cameron Simpson.
20837 - implemented "option ssl-hello-chk" to use SSLv3 CLIENT HELLO messages to
20838 test server's health
20839 - implemented "monitor-uri" so that haproxy can reply to a specific URI with
20840 an "HTTP/1.0 200 OK" response. This is useful to validate multiple proxies
20841 at once.
20842
Willy Tarreaub9e98b62006-07-03 10:32:46 +0200208432006/06/29 : 1.3.0
20844 - exploded the whole file into multiple .c and .h. No functionnal
Willy Tarreau8f2b8552006-07-09 17:11:39 +020020845 difference is expected at all.
20846 - fixed a bug by which neither stats nor error messages could be returned if
20847 'clitimeout' was missing.
Willy Tarreaub9e98b62006-07-03 10:32:46 +020020848
willy tarreau7e6328d2006-05-21 23:26:20 +0200208492006/05/21 : 1.2.14
20850 - new HTML status report with the 'stats' keyword.
20851 - added the 'abortonclose' option to better resist traffic surges
20852 - implemented dynamic traffic regulation with the 'minconn' option
20853 - show request time on denied requests
20854 - definitely fixed hot reconf on OpenBSD by the use of SO_REUSEPORT
20855 - now a proxy instance is allowed to run without servers, which is
20856 useful to dedicate one instance to stats
20857 - added lots of error counters
20858 - a missing parenthesis preventd matching of cacheable cookies
20859 - a missing parenthesis in poll_loop() might have caused missed events.
20860
Willy TARREAU4404b7e2006-05-14 10:00:09 +0200208612006/05/14 : 1.2.13.1
20862 - an uninitialized field in the struct session could cause a crash when
20863 the session was freed. This has been encountered on Solaris only.
20864 - Solaris and OpenBSD no not support shutdown() on listening socket. Let's
20865 be nice to them by performing a soft stop if pause fails.
20866
willy tarreauc3a2e072006-05-13 18:51:38 +0200208672006/05/13 : 1.2.13
20868 - 'maxconn' server parameter to do per-server session limitation
20869 - queueing to support non-blocking session limitation
20870 - fixed removal of cookies for cookie-less servers such as backup servers
20871 - two separate wait queues for expirable and non-expirable tasks provide
20872 better performance with lots of sessions.
20873 - some code cleanups and performance improvements
20874 - made state dumps a bit more verbose
20875 - fixed missing checks for NULL srv in dispatch mode
20876 - load balancing on backup servers was not possible in source hash mode.
20877 - two session flags shared the same bit, but fortunately they were not
20878 compatible.
20879
willy tarreauc0d4bbd2006-04-15 21:47:50 +0200208802006/04/15 : 1.2.12
20881 Very few changes preparing for more important changes to support per-server
20882 session limitations and queueing :
20883 - ignore leading empty lines in HTTP requests as suggested by RFC2616.
20884 - added the 'weight' parameter to the servers, limited to 1..256. It applies
20885 to roundrobin and source hash.
20886 - the optional '-s' option could clobber '-st' and '-sf' if compiled in.
20887
willy tarreaue0dd2692006-03-30 16:27:34 +0200208882006/03/30 : 1.2.11.1
20889 - under some conditions, it might have been possible that when the
20890 last dead server became available, it would not have been used
20891 till another one would have changed state. Could not be reproduced
20892 at all, however seems possible from the code.
20893
willy tarreaud2058dc2006-03-25 20:35:41 +0100208942006/03/25 : 1.2.11
20895 - added the '-db' command-line option to disable backgrounding.
20896 - added the -sf/-st command-line arguments which are used to specify
20897 a list of pids to send a FINISH or TERMINATE signal upon startup.
20898 They will also be asked to release their port if a bind fails.
20899 - reworked the startup mechanism to allow the sending of a signal to a list
20900 of old pids if a socket cannot be bound, with a retry for a limited amount
20901 of time (1 second by default).
20902 - added the ability to enforce limits on memory usage.
20903 - added the 'source' load-balancing algorithm which uses the source IP(v4|v6)
20904 - re-architectured the server round-robin mechanism to ease integration of
20905 other algorithms. It now relies on the number of active and backup servers.
20906 - added a counter for the number of active and backup servers, and report
20907 these numbers upon SIGHUP or state change.
20908
willy tarreaubfad5742006-03-23 14:19:11 +0100209092006/03/23 : 1.2.10.1
20910 - while fixing the backup server round-robin "feature", a new bug was
20911 introduced which could miss some backup servers.
20912 - the displayed proxy name was wrong when dumping upon SIGHUP.
20913
willy tarreauaaff30e2006-03-19 21:30:41 +0100209142006/03/19 : 1.2.10
20915 - assert.h is needed when DEBUG is defined.
20916 - ENORMOUS long standing bug affecting the epoll polling system :
20917 event_data is a union, not a structure !
20918 - Make fd management more robust and easier to debug. Also some
20919 micro-optimisations.
20920 - Limit the number of consecutive accept() in multi-process mode.
20921 This produces a more evenly distributed load across the processes and
20922 slightly improves performance by reducing bottlenecks.
20923 - Make health-checks be more regular, and faster to retry after a timeout.
20924 - Fixed some messages to ease parsing of alerts.
20925 - provided a patch to enable epoll on RHEL3 kernels.
20926 - Separated OpenBSD build from the main Makefile into a new one.
20927
willy tarreau50be0172006-03-15 19:41:19 +0100209282006/03/15 : 1.2.9
20929 - haproxy could not be stopped after being paused, it had to be woken up
20930 first. This has been fixed.
20931 - the 'ulimit-n' parameter is now optional and by default computed from
20932 maxconn + the number of listeners + the number of health-checks.
20933 - it is now possible to specify a maximum number of connections at build
20934 time with the SYSTEM_MAXCONN define. The value set in the configuration
20935 file will then be limited to this value, and only the command-line '-n'
20936 option will be able to bypass it. It will prevent against accidental
20937 high memory usage on small systems.
20938 - RFC2616 expects that any HTTP agent accepts multi-line headers. Earlier
20939 versions did not detect a line beginning with a space as the continuation
20940 of previous header. It is now correct.
20941 - health checks sent to servers configured with identical intervals were
20942 sent in perfect synchronisation because the initial time was the same
20943 for all. This could induce high load peaks when fragile servers were
20944 hosting tens of instances for the same application. Now the load is
20945 spread evenly across the smallest interval amongst a listener.
20946 - a new 'forceclose' option was added to make the proxy close the outgoing
20947 channel to the server once it has sent all its headers and the server
20948 starts responding. This helps some servers which don't close upon the
20949 'Connection: close' header. It implies 'option httpclose'.
20950 - there was a bug in the way the backup servers were handled. They were
20951 erroneously load-balanced while the doc said the opposite. Since
20952 load-balanced backup servers is one of the features some people have
20953 been asking for, the problem was fixed to reflect the documented
20954 behaviour and a new option 'allbackups' was introduced to provide the
20955 feature to those who need it.
20956 - a never ending connect() could lead to a fast select() loop if its
20957 timeout times the number of retransmits exceeded the server read or write
20958 timeout, because the later was used to compute select()'s timeout while
20959 the connection timeout was not reached.
20960 - now we initialize the libc's localtime structures very early so that even
20961 under OOM conditions, we can still send dated error messages without
20962 segfaulting.
20963 - the 'daemon' mode implies 'quiet' and disables 'verbose' because file
20964 descriptors are closed.
20965
willy tarreau065f1c02006-01-29 22:10:07 +0100209662006/01/29 : 1.2.8
20967 - fixed a nasty bug affecting poll/epoll which could return unmodified data
20968 from the server to the client, and sometimes lead to memory corruption
20969 crashing the process.
20970 - added the new pause/play mechanism with SIGTTOU/SIGTTIN for hot-reconf.
20971
209722005/12/18 : 1.2.7.1
20973 - the "retries" option was ignored because connect() could not return an
20974 error if the connection failed before the timeout.
20975 - TCP health-checks could not detect a connection refused in poll/epoll
20976 mode.
20977
willy tarreaua56eca72005-12-18 01:34:42 +0100209782005/11/13 : 1.2.7
willy tarreau77bc8542005-12-18 01:31:43 +010020979 - building with -DUSE_PCRE should include PCRE headers and not regex.h. At
20980 least on Solaris, this caused the libc's regex primitives to be used instead
20981 of PCRE, which caused trouble on group references. This is now fixed.
willy tarreaud0fb4652005-12-18 01:32:04 +010020982 - delayed the quiet mode during startup so that most of the startup alerts can
20983 be displayed even in quiet mode.
20984 - display an alert when a listener has no address, invalid or no port, or when
20985 there are no enabled listeners upon startup.
willy tarreau4373b962005-12-18 01:32:31 +010020986 - added "static-pcre" to the list of supported regex options in the Makefile.
willy tarreau77bc8542005-12-18 01:31:43 +010020987
willy tarreaub952e1d2005-12-18 01:31:20 +0100209882005/10/09 : 1.2.7rc (1.1.33rc)
20989 - second batch of socklen_t changes.
20990 - clean-ups from Cameron Simpson.
20991 - because tv_remain() does not know about eternity, using no timeout can
20992 make select() spin around a null time-out. Bug reported by Cameron Simpson.
20993 - client read timeout was not properly set to eternity initialized after an
20994 accept() if it was not set in the config. It remained undetected so long
20995 because eternity is 0 and newly allocated pages are zeroed by the system.
20996 - do not call get_original_dst() when not in transparent mode.
20997 - implemented a workaround for a bug in certain epoll() implementations on
20998 linux-2.4 kernels (epoll-lt <= 0.21).
20999 - implemented TCP keepalive with new options : tcpka, clitcpka, srvtcpka.
21000
willy tarreauc5f73ed2005-12-18 01:26:38 +0100210012005/08/07 : 1.2.6
21002 - clean-up patch from Alexander Lazic fixes build on Debian 3.1 (socklen_t).
21003
210042005/07/06 : 1.2.6-pre5 (1.1.32)
willy tarreau0fe39652005-12-18 01:25:24 +010021005 - added the number of active sessions (proxy/process) in the logs
21006
210072005/07/06 : 1.2.6-pre4 (1.1.32-pre4)
willy tarreaub1285d52005-12-18 01:20:14 +010021008 - the time-out fix introduced in 1.1.25 caused a corner case where it was
21009 possible for a client to keep a connection maintained regardless of the
21010 timeout if the server closed the connection during the HEADER phase,
21011 while the client ignored the close request while doing nothing in the
21012 other direction. This has been fixed now by ensuring that read timeouts
21013 are re-armed when switching to any SHUTW state.
21014
210152005/07/05 : 1.2.6-pre3 (1.1.32-pre3)
21016 - enhanced error reporting in the logs. Now the proxy will precisely detect
21017 various error conditions related to the system and/or process limits, and
21018 generate LOG_EMERG logs indicating that a resource has been exhausted.
21019 - logs will contain two new characters for the error cause : 'R' indicates
21020 a resource exhausted, and 'I' indicates an internal error, though this
21021 one should never happen.
21022 - server connection timeouts can now be reported in the logs (sC), as well
21023 as connections refused because of maxconn limitations (PC).
21024
210252005/07/05 : 1.2.6-pre2 (1.1.32-pre2)
21026 - new global configuration keyword "ulimit-n" may be used to raise the FD
21027 limit to usable values.
21028 - a warning is now displayed on startup if the FD limit is lower than the
21029 configured maximum number of sockets.
21030
210312005/07/05 : 1.2.6-pre1 (1.1.32-pre1)
21032 - new configuration keyword "monitor-net" makes it possible to be monitored
21033 by external devices which connect to the proxy without being logged nor
21034 forwarded to any server. Particularly useful on generic TCPv4 relays.
21035
willy tarreau5dffb602005-12-18 01:15:23 +0100210362005/06/21 : 1.2.5.2
21037 - fixed build on PPC where chars are unsigned by default
21038
willy tarreau08dedbe2005-12-18 01:13:48 +0100210392005/05/02 : 1.2.5.1
21040 - dirty hack to fix a bug introduced with epoll : if we close an FD and
21041 immediately reassign it to another session through a connect(), the
21042 Prev{Read,Write}Events are not updated, which causes trouble detecting
21043 changes, thus leading to many timeouts at high loads.
21044
willy tarreau64a3cc32005-12-18 01:13:11 +0100210452005/04/30 : 1.2.5 (1.1.31)
21046 - changed the runtime argument to disable epoll() to '-de'
21047 - changed the runtime argument to disable poll() to '-dp'
21048 - added global options 'nopoll' and 'noepoll' to do the same at the
21049 configuration level.
21050 - added a 'linux24e' target to the Makefile for Linux 2.4 systems patched to
21051 support epoll().
21052 - changed default FD_SETSIZE to 65536 on Solaris (default=1024)
21053 - conditionned signals redirection to #ifdef DEBUG_MEMORY
21054
willy tarreau1c2ad212005-12-18 01:11:29 +0100210552005/04/26 : 1.2.5-pre4
21056 - made epoll() support a compile-time option : ENABLE_EPOLL
21057 - provided a very little libc replacement for a possibly missing epoll()
21058 implementation which can be enabled by -DUSE_MY_EPOLL
21059 - implemented the poll() poller, which can be enabled with -DENABLE_POLL.
21060 The equivalent runtime argument becomes '-P'. A few tests show that it
21061 performs like select() with many fds, but slightly slower (certainly
21062 because of the higher amount of memory involved).
21063 - separated the 3 polling methods and the tasks scheduler into 4 distinct
21064 functions which makes the code a lot more modular.
21065 - moved some event tables to private static declarations inside the poller
21066 functions.
21067 - the poller functions can now initialize themselves, run, and cleanup.
21068 - changed the runtime argument to enable epoll() to '-E'.
21069 - removed buggy epoll_ctl() code in the client_retnclose() function. This
21070 function was never meant to remove anything.
21071 - fixed a typo which caused glibc to yell about a double free on exit.
21072 - removed error checking after epoll_ctl(DEL) because we can never know if
21073 the fd is still active or already closed.
21074 - added a few entries in the makefile
21075
willy tarreauad90a0c2005-12-18 01:09:15 +0100210762005/04/25 : 1.2.5-pre3
21077 - experimental epoll() support (use temporary '-e' argument)
21078
210792005/04/24 : 1.2.5-pre2
willy tarreauc1f47532005-12-18 01:08:26 +010021080 - implemented the HTTP 303 code for error redirection. This forces the
21081 browser to fetch the given URI with a GET request. The new keyword for
21082 this is 'errorloc303', and a new 'errorloc302' keyword has been created
21083 to make them easily distinguishable.
21084 - added more controls in the parser for valid use of '\x' sequence.
21085 - few fixes from Alex & Klaus
21086
willy tarreauad90a0c2005-12-18 01:09:15 +0100210872005/02/17 : 1.2.5-pre1
willy tarreauc1f47532005-12-18 01:08:26 +010021088 - fixed a few errors in the documentation
21089
210902005/02/13
21091 - do not pre-initialize unused file-descriptors before select() anymore.
21092
willy tarreau12350152005-12-18 01:03:27 +0100210932005/01/22 : 1.2.4
21094 - merged Alexander Lazic's and Klaus Wagner's work on application
21095 cookie-based persistence. Since this is the first merge, this version is
21096 not intended for general use and reports are more than welcome. Some
21097 documentation is really needed though.
21098
willy tarreau0174f312005-12-18 01:02:42 +0100210992005/01/22 : 1.2.3 (1.1.30)
21100 - add an architecture guide to the documentation
21101 - released without any changes
21102
211032004/12/26 : 1.2.3-pre1 (1.1.30-pre1)
21104 - increased default BUFSIZE to 16 kB to accept max headers of 8 kB which is
21105 compatible with Apache. This limit can be configured in the makefile now.
21106 Thanks to Eric Fehr for the checks.
21107 - added a per-server "source" option which now makes it possible to bind to
21108 a different source for each (potentially identical) server.
21109 - changed cookie-based server selection slightly to allow several servers to
21110 share a same cookie, thus making it possible to associate backup servers to
21111 live servers and ease soft-stop for maintenance periods. (Alexander Lazic)
21112 - added the cookie 'prefix' mode which makes it possible to use persistence
21113 with thin clients which support only one cookie. The server name is prefixed
21114 before the application cookie, and restore back.
21115 - fixed the order of servers within an instance to match documentation. Now
21116 the servers are *really* used in the order of their declaration. This is
21117 particularly important when multiple backup servers are in use.
21118
willy tarreau4302f492005-12-18 01:00:37 +0100211192004/10/18 : 1.2.2 (1.1.29)
21120 - fixed a bug where a TCP connection would be logged twice if the 'logasap'
21121 option was enabled without the 'tcplog' option.
21122 - encode_string() would use hdr_encode_map instead of the map argument.
21123
211242004/08/10 : (1.1.29-pre2)
21125 - the logged request is now encoded with '#XX' for unprintable characters
21126 - new keywords 'capture request header' and 'capture response header' enable
21127 logging of arbitrary HTTP headers in requests and responses
21128 - removed "-DSOLARIS" after replacing the last inet_aton() with inet_pton()
21129
willy tarreau982249e2005-12-18 00:57:06 +0100211302004/06/06 : 1.2.1 (1.1.28)
21131 - added the '-V' command line option to verbosely report errors even though
21132 the -q or 'quiet' options are specified. This is useful with '-c'.
21133 - added a Red Hat init script and a .spec from Simon Matter <simon.matter@invoca.ch>
willy tarreau036e1ce2005-12-17 13:46:33 +010021134
willy tarreau982249e2005-12-18 00:57:06 +0100211352004/06/05 :
21136 - added the "logasap" option which produces a log without waiting for the data
21137 to be transferred from the server to the client.
21138 - added the "httpclose" option which removes any "connection:" header and adds
21139 "Connection: close" in both direction.
willy tarreau97f58572005-12-18 00:53:44 +010021140 - added the 'checkcache' option which blocks cacheable responses containing
21141 dangerous headers, such as 'set-cookie'.
willy tarreau982249e2005-12-18 00:57:06 +010021142 - added 'rspdeny' and 'rspideny' to block certain responses to avoid sensible
21143 information leak from servers.
willy tarreau25c4ea52005-12-18 00:49:49 +010021144
211452004/04/18 :
willy tarreaudd07e972005-12-18 00:48:48 +010021146 - send an EMERG log when no server is available for a given proxy
21147 - added the '-c' command line option to syntactically check the
21148 configuration file without starting the service.
21149
willy tarreau8a86dbf2005-12-18 00:45:59 +0100211502003/11/09 : 1.2.0
21151 - the same as 1.1.27 + IPv6 support on the client side
21152
willy tarreaufe2c5c12005-12-17 14:14:34 +0100211532003/10/27 : 1.1.27
21154 - the configurable HTTP health check introduced in 1.1.23 revealed a shameful
21155 bug : the code still assumed that HTTP requests were the same size as the
21156 original ones (22 bytes), and failed if they were not.
21157 - added support for pidfiles.
21158
willy tarreauc58fc692005-12-17 14:13:08 +0100211592003/10/22 : 1.1.26
21160 - the fix introduced in 1.1.25 for client timeouts while waiting for servers
21161 broke almost all compatibility with POST requests, because the proxy
21162 stopped to read anything from the client as soon as it got all of its
21163 headers.
21164
willy tarreauc1cae632005-12-17 14:12:23 +0100211652003/10/15 : 1.1.25
21166 - added the 'tcplog' option, which provides enhanced, HTTP-like logs for
21167 generic TCP proxies, or lighter logs for HTTP proxies.
21168 - fixed a time-out condition wrongly reported as client time-out in data
21169 phase if the client timeout was lower than the connect timeout times the
21170 number of retries.
21171
willy tarreau197e8ec2005-12-17 14:10:59 +0100211722003/09/21 : 1.1.24
21173 - if a client sent a full request then shut its write connection down, then
21174 the request was aborted. This case was detected only when using haproxy
21175 both as health-check client and as a server.
21176 - if 'option httpchk' is used in a 'health' mode server, then responses will
21177 change from 'OK' to 'HTTP/1.0 200 OK'.
21178 - fixed a Linux-only bug in case of HTTP server health-checks, where a single
21179 server response followed by a close could be ignored, and the server seen
21180 as failed.
21181
willy tarreaueedaa9f2005-12-17 14:08:03 +0100211822003/09/19 : 1.1.23
21183 - fixed a stupid bug introduced in 1.1.22 which caused second and subsequent
21184 'default' sections to keep previous parameters, and not initialize logs
21185 correctly.
21186 - fixed a second stupid bug introduced in 1.1.22 which caused configurations
21187 relying on 'dispatch' mode to segfault at the first connection.
21188 - 'option httpchk' now supports method, HTTP version and a few headers.
21189 - now, 'option httpchk', 'cookie' and 'capture' can be specified in
21190 'defaults' section
21191
211922003/09/10 : 1.1.22
willy tarreaua41a8b42005-12-17 14:02:24 +010021193 - 'listen' now supports optionnal address:port-range lists
21194 - 'bind' introduced to add new listen addresses
21195 - fixed a bug which caused a session to be kept established on a server till
21196 it timed out if the client closed during the DATA phase.
21197 - the port part of each server address can now be empty to make the proxy
21198 connect to the server on the same port it was connected to, be an absolute
21199 unsigned number to reflect a single port (as in older versions), or an
21200 explicitly signed number (+N/-N) to indicate that this offset must be
21201 applied to the port the proxy was connected to, when connecting to the
21202 server.
21203 - the 'port' server option allows the user to specify a different
21204 health-check port than the service one. It is mandatory when only relative
21205 ports have been specified and check is required. By default, the checks are
21206 sent to the service port.
21207 - new 'defaults' section which is rather similar to 'listen' except that all
21208 values are only used as default values for future 'listen' sections, until
21209 a new 'defaults' resets them. At the moment, server options, regexes,
21210 cookie names and captures cannot be set in the 'defaults' section.
21211
willy tarreau2f6ba652005-12-17 13:57:42 +0100212122003/05/06 : 1.1.21
21213 - changed the debug output format so that it now includes the session unique
21214 ID followed by the instance name at the beginning of each line.
21215 - in debug mode, accept now shows the client's IP and port.
21216 - added one 3 small debugging scripts to search and pretty print debug output
21217 - changed the default health check request to "OPTIONS /" instead of
21218 "OPTIONS *" since not all servers implement the later one.
21219 - "option httpchk" now accepts an optional parameter allowing the user to
21220 specify and URI other than '/' during health-checks.
21221
willy tarreaub1ff9db2005-12-17 13:51:03 +0100212222003/04/21 : 1.1.20
21223 - fixed two problems with time-outs, one where a server would be logged as
21224 timed out during transfer that take longer to complete than the fixed
21225 time-out, and one where clients were logged as timed-out during the data
21226 phase because they didn't have anything to send. This sometimes caused
21227 slow client connections to close too early while in fact there was no
21228 problem. The proper fix would be to have a per-fd time-out with
21229 conditions depending on the state of the HTTP FSM.
21230
willy tarreau906b2682005-12-17 13:49:52 +0100212312003/04/16 : 1.1.19
21232 - haproxy was NOT RFC compliant because it was case-sensitive on HTTP
21233 "Cookie:" and "Set-Cookie:" headers. This caused JVM 1.4 to fail on
21234 cookie persistence because it uses "cookie:". Two memcmp() have been
21235 replaced with strncasecmp().
21236
willy tarreau036e1ce2005-12-17 13:46:33 +0100212372003/04/02 : 1.1.18
21238 - Haproxy can be compiled with PCRE regex instead of libc regex, by setting
21239 REGEX=pcre on the make command line.
21240 - HTTP health-checks now use "OPTIONS *" instead of "OPTIONS /".
21241 - when explicit source address binding is required, it is now also used for
21242 health-checks.
21243 - added 'reqpass' and 'reqipass' to allow certain headers but not the request
21244 itself.
21245 - factored several strings to reduce binary size by about 2 kB.
21246 - replaced setreuid() and setregid() with more standard setuid() and setgid().
21247 - added 4 status flags to the log line indicating who ended the connection
21248 first, the sessions state, the validity of the cookie, and action taken on
21249 the set-cookie header.
21250
212512002/10/18 : 1.1.17
21252 - add the notion of "backup" servers, which are used only when all other
21253 servers are down.
21254 - make Set-Cookie return "" instead of "(null)" when the server has no
21255 cookie assigned (useful for backup servers).
21256 - "log" now supports an optionnal level name (info, notice, err ...) above
21257 which nothing is sent.
21258 - replaced some strncmp() with memcmp() for better efficiency.
21259 - added "capture cookie" option which logs client and/or server cookies
21260 - cleaned up/down messages and dump servers states upon SIGHUP
21261 - added a redirection feature for errors : "errorloc <errnum> <url>"
21262 - now we won't insist on connecting to a dead server, even with a cookie,
21263 unless option "persist" is specified.
21264 - added HTTP/408 response for client request time-out and HTTP/50[234] for
21265 server reply time-out or errors.
21266
212672002/09/01 : 1.1.16
21268 - implement HTTP health checks when option "httpchk" is specified.
21269
212702002/08/07 : 1.1.15
21271 - replaced setpgid()/setpgrp() with setsid() for better portability, because
21272 setpgrp() doesn't have the same meaning under Solaris, Linux, and OpenBSD.
21273
212742002/07/20 : 1.1.14
21275 - added "postonly" cookie mode
21276
212772002/07/15 : 1.1.13
21278 - tv_diff used inverted parameters which led to negative times !
21279
212802002/07/13 : 1.1.12
21281 - fixed stats monitoring, and optimized some tv_* for most common cases.
21282 - replaced temporary 'newhdr' with 'trash' to reduce stack size
21283 - made HTTP errors more HTML-fiendly.
21284 - renamed strlcpy() to strlcpy2() because of a slightly difference between
21285 their behaviour (return value), to avoid confusion.
21286 - restricted HTTP messages to HTTP proxies only
21287 - added a 502 message when the connection has been refused by the server,
21288 to prevent clients from believing this is a zero-byte HTTP 0.9 reply.
21289 - changed 'Cache-control:' from 'no-cache="set-cookie"' to 'private' when
21290 inserting a cookie, because some caches (apache) don't understand it.
21291 - fixed processing of server headers when client is in SHUTR state
21292
212932002/07/04 :
21294 - automatically close fd's 0,1 and 2 when going daemon ; setpgrp() after
21295 setpgid()
21296
212972002/06/04 : 1.1.11
21298 - fixed multi-cookie handling in client request to allow clean deletion
21299 in insert+indirect mode. Now, only the server cookie is deleted and not
willy tarreau906b2682005-12-17 13:49:52 +010021300 all the header. Should now be compliant to RFC2965.
willy tarreau036e1ce2005-12-17 13:46:33 +010021301 - added a "nocache" option to "cookie" to specify that we explicitly want
21302 to add a "cache-control" header when we add a cookie.
21303 It is also possible to add an "Expires: <old-date>" to keep compatibility
21304 with old/broken caches.
21305
213062002/05/10 : 1.1.10
21307 - if a cookie is used in insert+indirect mode, it's desirable that the
21308 the servers don't see it. It was not possible to remove it correctly
21309 with regexps, so now it's removed automatically.
21310
213112002/04/19 : 1.1.9
21312 - don't use snprintf()'s return value as an end of message since it may
21313 be larger. This caused bus errors and segfaults in internal libc's
21314 getenv() during localtime() in send_log().
21315 - removed dead insecure send_syslog() function and all references to it.
21316 - fixed warnings on Solaris due to buggy implementation of isXXXX().
21317
213182002/04/18 : 1.1.8
21319 - option "dontlognull"
21320 - fixed "double space" bug in config parser
21321 - fixed an uninitialized server field in case of dispatch
21322 with no existing server which could cause a segfault during
21323 logging.
21324 - the pid logged was always the father's, which was wrong for daemons.
21325 - fixed wrong level "LOG_INFO" for message "proxy started".
21326
213272002/04/13 :
21328 - http logging is now complete :
21329 - ip:port, date, proxy, server
21330 - req_time, conn_time, hdr_time, tot_time
21331 - status, size, request
21332 - source address
21333
213342002/04/12 : 1.1.7
21335 - added option forwardfor
21336 - added reqirep, reqidel, reqiallow, reqideny, rspirep, rspidel
21337 - added "log global" in "listen" section.
21338
213392002/04/09 :
21340 - added a new "global" section :
21341 - logs
21342 - debug, quiet, daemon modes
21343 - uid, gid, chroot, nbproc, maxconn
21344
213452002/04/08 : 1.1.6
21346 - regex are now chained and not limited anymore.
21347 - unavailable server now returns HTTP/502.
21348 - increased per-line args limit to 40
21349 - added reqallow/reqdeny to block some request on matches
21350 - added HTTP 400/403 responses
21351
213522002/04/03 : 1.1.5
21353 - connection logging displayed incorrect source address.
21354 - added proxy start/stop and server up/down log events.
21355 - replaced log message short buffers with larger trash.
21356 - enlarged buffer to 8 kB and replace buffer to 4 kB.
21357
213582002/03/25 : 1.1.4
21359 - made rise/fall/interval time configurable
21360
213612002/03/22 : 1.1.3
21362 - fixed a bug : cr_expire and cw_expire were inverted in CL_STSHUT[WR]
21363 which could lead to loops.
21364
213652002/03/21 : 1.1.2
21366 - fixed a bug in buffer management where we could have a loop
21367 between event_read() and process_{cli|srv} if R==BUFSIZE-MAXREWRITE.
21368 => implemented an adjustable buffer limit.
21369 - fixed a bug : expiration of tasks in wait queue timeout is used again,
21370 and running tasks are skipped.
21371 - added some debug lines for accept events.
21372 - send warnings for servers up/down.
21373
213742002/03/12 : 1.1.1
21375 - fixed a bug in total failure handling
21376 - fixed a bug in timestamp comparison within same second (tv_cmp_ms)
21377
213782002/03/10 : 1.1.0
21379 - fixed a few timeout bugs
21380 - rearranged the task scheduler subsystem to improve performance,
21381 add new tasks, and make it easier to later port to librt ;
21382 - allow multiple accept() for one select() wake up ;
21383 - implemented internal load balancing with basic health-check ;
21384 - cookie insertion and header add/replace/delete, with better strings
21385 support.
21386
213872002/03/08
21388 - reworked buffer handling to fix a few rewrite bugs, and
21389 improve overall performance.
21390 - implement the "purge" option to delete server cookies in direct mode.
21391
213922002/03/07
21393 - fixed some error cases where the maxfd was not decreased.
21394
213952002/02/26
21396 - now supports transparent proxying, at least on linux 2.4.
21397
213982002/02/12
21399 - soft stop works again (fixed select timeout computation).
21400 - it seems that TCP proxies sometimes cannot timeout.
21401 - added a "quiet" mode.
21402 - enforce file descriptor limitation on socket() and accept().
21403
214042001/12/30 : release of version 1.0.2 : fixed a bug in header processing
214052001/12/19 : release of version 1.0.1 : no MSG_NOSIGNAL on solaris
214062001/12/16 : release of version 1.0.0.
214072001/12/16 : added syslog capability for each accepted connection.
214082001/11/19 : corrected premature end of files and occasional SIGPIPE.
214092001/10/31 : added health-check type servers (mode health) which replies OK then closes.
214102001/10/30 : added the ability to support standard TCP proxies and HTTP proxies
21411 with or without cookies (use keyword http for this).
214122001/09/01 : added client/server header replacing with regexps.
21413 eg:
21414 cliexp ^(Host:\ [^:]*).* Host:\ \1:80
21415 srvexp ^Server:\ .* Server:\ Apache
214162000/11/29 : first fully working release with complete FSMs and timeouts.
214172000/11/28 : major rewrite
214182000/11/26 : first write