1
1
This NEWS file records noteworthy changes, very tersely.
2
2
See the manual for detailed information.
4
Version 1.8.12 (2020-07-04)
6
** Fix compatibility with the GNU C Library version 2.31.
7
** In initramfs-tools boots, only use setsid(1) when available.
9
Version 1.8.11 (2020-04-08)
11
** Fix file descriptor leak when adding or removing local routes to
12
unreachable hosts on the local network.
14
Version 1.8.10 (2020-03-21)
16
** Fix bug when setting a client's D-Bus "Secret" property
17
** Start client checkers after a random delay
18
** When using systemd, allow easier modification of server options
19
** Better log messages in mandos-monitor
21
** When using dracut & systemd, allow easier modification of options
23
Version 1.8.9 (2019-09-03)
24
* No user-visible changes
26
Version 1.8.8 (2019-08-18)
27
* No user-visible changes
29
Version 1.8.7 (2019-08-05)
31
** Always compile with LFS (Large File Support) enabled.
33
** Improve intro(8mandos) manual page to cover dracut(8) support.
35
Version 1.8.6 (2019-08-03)
37
** dracut support: In password-agent, properly ignore deleted and
38
renamed question files, and also fix memory alignment issue.
40
Version 1.8.5 (2019-07-30)
42
** Support dracut(8) as well as initramfs-tools(7).
43
** Minor bug fix: Allow the mandos-keygen --passfile option to use
44
passfiles with names starting with "-".
45
** Document known limitation of mandos-keygen --password; it strips
46
white space from start and end of the password.
48
** Bug fix: The server used to fail to restart if the "port" setting
49
was used. This has been fixed.
50
** Minor bug fix: Reap zombies left over from checker runs. (Debian
53
Version 1.8.4 (2019-04-09)
55
** Fix minor memory leak in plugin-runner.
57
** mandos-ctl now has a --debug option to show D-Bus calls.
59
Version 1.8.3 (2019-02-11)
60
* No user-visible changes.
62
Version 1.8.2 (2019-02-10)
64
** In mandos-keygen, ignore failures to remove files in some cases.
66
Version 1.8.1 (2019-02-10)
68
** Only generate TLS keys using GnuTLS' certtool, of sufficient
69
version. Key generation of TLS keys will not happen until a
70
version of GnuTLS is installed with support for raw public keys.
71
** Remove any bad keys created by 1.8.0 and openssl.
73
** On installation, edit clients.conf and remove the same bad key ID
74
which was erroneously reported by all 1.8.0 clients. Also do not
75
trust this key ID in the server.
4
77
Version 1.8.0 (2019-02-10)
6
79
** Use new TLS keys for server communication and identification.