ViewVC Help
View File | Revision Log | Show Annotations | View Changeset | Root Listing
root/svn/ircd-hybrid/branches/8.2.x/NEWS
Revision: 8820
Committed: Fri Feb 1 22:54:05 2019 UTC (7 years, 6 months ago) by michael
File size: 37845 byte(s)
Log Message:
- tls_gnutls.c, tls_openssl.c: disable TLSv1.1

File Contents

# User Rev Content
1 michael 7367 #######################################################################
2     Reminder for package maintainers of ircd-hybrid: ircd-hybrid now has
3     GnuTLS support as of version 8.2.13
4     #######################################################################
5    
6 michael 7650
7 michael 8502 -- Noteworthy changes in version 8.2.25 (2018-??-??)
8     o) The 'class::number_per_ip', 'class::max_local' and 'class::max_global'
9     configuration directives have been replaced with just 'class::number_per_ip_local'
10 michael 8811 and 'class::number_per_ip_global'. The 'class::max_local' basically was
11     redundant as it had the same functionality as 'class::number_per_ip'
12 michael 8697 o) Adding RESVs with wildcards no longer requires administrator privileges
13 michael 8787 o) The 'general::ignore_bogus_ts' configuration option has been deprecated
14 michael 8820 o) TLSv1.1 and TLSv1.0 are no longer supported and have been disabled in
15     the openssl and gnutls module
16 michael 8502
17    
18 michael 8489 -- Noteworthy changes in version 8.2.24 (2018-04-05)
19 michael 8490 o) Added "STATS s" to show configured pseudo {} blocks
20 michael 8467 o) Implemented channel mode 'N' which prevents users from changing their
21     nick while in a channel with that mode set
22 michael 8482 o) Services clients are now shown with 'is a Network Service' in "WHOIS"
23 michael 8456
24    
25 michael 8427 -- Noteworthy changes in version 8.2.23 (2018-03-26)
26 michael 8215 o) irc-operators are now able to see a user's resolved hostname in /whowas,
27     and /whois even if the user has a fakehost/vhost
28 michael 8268 o) RPL_WELCOME now does use the rfc2812 style nick!user@host format
29 michael 8319 o) Removed rudimentary libgeoip support
30 michael 8352 o) Added --enable-efence switch to allow easy linking with the
31     electric fence memory debugger library
32 michael 8375 o) "JOIN 0" is no longer supported
33 michael 8374 o) Fixed bug where ircd would not remove RPL_WHOISOPERATOR based svstags
34     when deoppering
35 michael 8410 o) Fixed 'unknown closes' statistic in "STATS t" showing invalid values sometimes
36 michael 8215
37    
38 michael 8085 -- Noteworthy changes in version 8.2.22 (2017-03-26)
39 michael 8049 o) Implemented channel mode 'L'. Channels with that mode set can make use of an
40     extended ban list size specified with the new 'channel::max_bans_large'
41     configuraton option. This mode can be set only by irc-operators or servers.
42     o) Implemented channel mode 'u' which hides bmask (+b/+e/+I) lists and mode changes
43     to non-chanops everywhere
44     o) Fixed an issue with "TRACE" where remote servers would reply with RPL_TRACEUSER
45     numerics containing UIDs
46     o) "STATS z" now shows simple memory stats of servers linked to the network
47 michael 8070 o) Added support for remote "ETRACE"
48 michael 8049
49    
50 michael 7917 -- Noteworthy changes in version 8.2.21 (2016-11-27)
51 michael 7901 o) The 'general::default_floodtime' configuration option has been added
52     along with the "SET FLOODTIME" command. These allow to fine-tune the
53     message throttling better
54 michael 7917 o) Fixed an issue with /invite not showing the list of channels the
55     sender is invited to
56 michael 7901
57    
58 michael 7832 -- Noteworthy changes in version 8.2.20 (2016-11-05)
59 michael 7709 o) "INFO" now shows GnuTLS/OpenSSL library/header versions
60 michael 7765 o) Added 'channel::max_invites' configuration option. See doc/reference.conf
61     for more information.
62 michael 7800 o) INVITE expirations have been implemented. Expire time can be adjusted with
63     the 'channel::invite_expire_time' configuration directive
64 michael 7769 o) /whois notices to operators have been re-added. User mode +y is required
65     to see them
66 michael 7782 o) The maximum line length for motd files has been increased to 320 bytes
67     to support multibyte encodings better
68 michael 7709
69 michael 7769
70 michael 7688 -- Noteworthy changes in version 8.2.19 (2016-08-21)
71 michael 7650 o) Fixed a possible server name leak in "WHO" with server hiding enabled
72     o) "WHO" now allows opers to search by IP address
73 michael 7657 o) Admins no longer can see IP addresses in "STATS P" with
74     'serverhide::hide_server_ips' enabled
75 michael 7662 o) User mode 'n' now shows nick name changes from remote clients, too
76 michael 7650
77    
78 michael 7617 -- Noteworthy changes in version 8.2.18 (2016-06-22)
79 michael 7578 o) Fixed an assert when a client sends invalid LIST options
80 michael 7619 o) Fixed invalid memory stats of channel invites in "STATS z"
81 michael 7578
82    
83 michael 7545 -- Noteworthy changes in version 8.2.17 (2016-04-21)
84 michael 7518 o) Fixed core on "REHASH CONF" with 'general::whowas_history_length'
85     set to 0
86 michael 7619 o) Fixed possible core on "INVITE" with 'channel::max_channels' set to 0
87 michael 7518
88    
89 michael 7491 -- Noteworthy changes in version 8.2.16 (2016-03-20)
90     o) Added 'general::whowas_history_length' configuration option which
91 michael 7452 allows to define the maximum length of the WHOWAS nickname history
92 michael 7465 o) Services are now allowed to override 'general::min_nonwildcard',
93     and 'general::min_nonwildcard_simple' settings
94 michael 7491 o) Minor updates to help files
95 michael 7452
96    
97 michael 7365 -- Noteworthy changes in version 8.2.15 (2016-02-24)
98 michael 7359 o) Added proper support for Raspbian/ARM. Gracias to Beave/2600.net
99     for providing a box for testing purposes.
100 michael 7342 o) Fixed an assert with empty user = "" directives in auth {} blocks
101 michael 7359 o) "STATS z" now shows allocated listeners
102 michael 7362 o) Fixed bug where 'can_flood' auth {} flags did not work on channels
103 michael 7333
104    
105 michael 7301 -- Noteworthy changes in version 8.2.14 (2016-02-09)
106 michael 7242 o) Fixed server clustering
107 michael 7297 o) Major cleanups to the configuration subsystem
108     o) Improvements to libGeoIP support:
109     - Works now with IPv6 addresses
110     - Added 'libgeoip_database_options', 'libgeoip_ipv4_database_file',
111     and 'libgeoip_ipv6_database_file' configuration directives to the
112     serverinfo {} block
113     o) Further improvements to GnuTLS support
114 michael 7242
115    
116 michael 7203 -- Noteworthy changes in version 8.2.13 (2016-02-02)
117 michael 7135 o) Implemented support for GnuTLS. Currently ./configure's autodetection
118     intentionally prefers OpenSSL over GnuTLS, so OpenSSL detection needs
119     to be disabled explicitely by using the --disable-openssl switch.
120 michael 7205 o) Minimum supported GnuTLS version is 3.3.8 now
121     o) Minimum supported OpenSSL version is 1.0.1d now
122 michael 7079 o) Added support for remote REHASH: REHASH <server> <option>
123     o) Added 'rehash:remote' irc-operator privilege flag
124 michael 7080 o) Added 'rehash' type to shared {} blocks
125 michael 7162 o) Fixed minor memory leak with shared {} and cluster {} blocks
126 michael 7079
127    
128 michael 7040 -- Noteworthy changes in version 8.2.12 (2016-01-05)
129 michael 7009 #######################################################################
130     o) IMPORTANT: Character case mapping is 'ascii' now. It is recommended
131     to update all servers on the network to prevent possible channel
132     desynchronizations and nick name collision kills
133     #######################################################################
134 michael 6918 o) Added channel mode +T which forbids NOTICEs to be sent to a channel
135 michael 6945 o) Fixed minor SVSTAG memory leak
136 michael 6954 o) Fixed broken PART message blocking mechanism
137 michael 6959 o) ircd now makes use of up to 8 name servers that are specified in
138     /etc/resolv.conf
139 michael 6980 o) The -klinefile, -dlinefile, etc. switches didn't work at all
140 michael 7040 o) Fixed possible core on ident lookups if ircd is out of file descriptors
141 michael 6993 o) Far client exit notices (+F) now show IP addresses, too
142     o) Made idle time look nicer in "STATS v|p" by using a formatted time string
143     o) 'general::ts_warn_delta', and 'general::ts_max_delta' can be set to 0 now
144 michael 7010 o) Several code cleanups and optimizations. Improved documentation
145 michael 6918
146    
147 michael 6818 -- Noteworthy changes in version 8.2.11 (2015-11-19)
148 michael 6770 o) Implemented IRCv3.2 invite-notify extension
149 michael 6780 o) Implemented IRCv3.2 chghost extension
150 michael 6795 o) Added channel::invite_delay_channel configuration option
151 michael 6770
152    
153 michael 6737 -- Noteworthy changes in version 8.2.10 (2015-11-06)
154 michael 6639 #######################################################################
155     o) IMPORTANT: renamed 'serverhide::links_delay' configuration directive
156     to 'serverhide::flatten_links_delay'
157     #######################################################################
158     o) Added 'serverhide::flatten_links_file' configuration option
159     o) Fixed bug where changing 'serverhide::flatten_links_delay' on runtime
160     would not have any effect
161 michael 6577 o) mkpasswd (tools): fixed broken bcrypt support on *BSD in conjunction
162 michael 6596 with the -s and -l switches. Dropped MD5, DES and Extended DES support.
163 michael 7013 o) Removed CHALLENGE in favor of ssl certificate fingerprint enabled
164 michael 6596 operator {} blocks
165 michael 6688 o) RSA keys with less than 2048 bits are no longer supported; same applies
166     to the DH param file
167 michael 6720 o) Added missing irc-operator privilege flags to /stats o. For a full list
168     of flags see doc/reference.conf
169 michael 6577
170    
171 michael 6538 -- Noteworthy changes in version 8.2.9 (2015-09-13)
172 michael 6479 ########################################################################
173     o) IMPORTANT: database files and links.txt are now stored in /var/lib
174     instead of /etc, so make sure to move your k/d/x-line database files
175     to the new path before (re)starting the ircd
176 michael 6486 ########################################################################
177 michael 6479 o) IMPORTANT: the splitmode logic has been removed along with the
178     following channel {} block configuration directives:
179     'default_split_user_count', 'default_split_server_count',
180     'no_create_on_split', 'no_join_on_split'
181 michael 6486 ########################################################################
182 michael 5986 o) Added 'xline_exempt' to auth {} block flags
183 michael 6639 o) 'serverinfo::sid' is now optional. A unique SID is now automatically
184 michael 6246 generated based on the server's name and description
185     o) Various fixes to the mkpasswd tool
186 michael 6249 o) If supported by the compiler, ircd-hybrid now compiles with
187 michael 6486 '-fstack-protector-strong' instead of '-fstack-protector'
188 michael 6529 o) Services can now add RESVs (SQLINEs) that have wildcards in it
189 michael 6342 o) Channel name RESVs are now sanity checked for too broad masks
190 michael 6639 o) 'class::connectfreq' now works properly with values lower than 300 seconds
191 michael 6401 o) Implemented IRCv3.1 account-notify extension
192 michael 6639 o) The 'general::oper_pass_resv' configuration directive has been deprecated
193 michael 6479 in favor of the new 'join:resv', and 'nick:resv' irc-operator flags.
194     See doc/reference.conf for more information.
195     o) Added 'resv', and 'unresv' irc-operator flags. Previously, all
196 michael 6491 irc-operators were allowed to RESV and UNRESV, regardless of configured
197 michael 6479 privileges.
198 michael 6487 o) Added 'close' to irc-operator flags
199 michael 6516 o) ircd is using ISO 8601 date and time notation in most places now
200 michael 5986
201    
202 michael 5974 -- Noteworthy changes in version 8.2.8 (2015-05-10)
203 michael 5896 o) ircd now rejects remote k-line requests for user@host mask that don't
204 michael 6639 have at least 'general::min_nonwildcard' non-wildcard characters in it
205 michael 5816 o) Configuration related server notices are now sent to admins only as
206     they potentially could leak passwords and other sensitive data to irc
207     operators that don't have administrator privileges
208     o) The GLINE/GUNGLINE commands have been removed. KLINE in conjunction
209     with cluster {} and/or shared {} blocks is now the recommended
210     way to add global user@host mask based server bans
211 michael 5984 o) Added dline_min_cidr, dline_min_cidr6, kline_min_cidr, and kline_min_cidr6
212     configuration options to the general {} block
213 michael 5844 o) Fixed bug where a REHASH would clear all X-Lines and RESVs that have
214     been set with the XLINE/RESV commands
215 michael 5873 o) Fixed broken temporary remote XLINEs
216 michael 6639 o) The 'general::havent_read_conf' configuration directive has been removed
217 michael 5945 o) Various code cleanups
218 michael 5793
219    
220 michael 5781 -- Noteworthy changes in version 8.2.7 (2015-04-05)
221 michael 5771 o) Fixed a potential buffer overflow with the BMASK inter-server command
222 michael 5772 o) Fixed undefined behavior in the HELP command module which could
223     lead to stack corruption
224 michael 5781 o) Removed useless help files for inter-server commands
225 michael 5771
226    
227 michael 5740 -- Noteworthy changes in version 8.2.6 (2015-03-29)
228     o) INFO now shows configured values of 'max_watch' and 'stats_m_oper_only'
229 michael 5632 o) WHOWAS now shows IP addresses to irc operators
230 michael 5637 o) Fixed bug that would allow remote clients to bypass the hard
231     limit of max WHOWAS entries to be returned
232 michael 5735 o) Code cleanups and performance improvements
233 michael 5629
234    
235 michael 5617 -- Noteworthy changes in version 8.2.5 (2015-02-24)
236 michael 5606 o) Fixed core on Mac OSX 10.10 and possibly some other systems when parsing
237     the ircd.conf with configured pseudo {} blocks
238    
239    
240 michael 5594 -- Noteworthy changes in version 8.2.4 (2015-02-17)
241 michael 5578 o) Added SVSTAG command which services may use to add tags to users which can
242     be seen in /whois
243 michael 6639 o) Added 'oper::whois' configuration option which allows to override the default
244 michael 5559 RPL_WHOISOPERATOR numeric string shown in /whois.
245 michael 5581 o) IRC operators may now use +O on a channel even if they are only a half-op
246 michael 5596 o) Fixed bug where TOPIC messages were not n!u@h prefixed in case of TBURST
247 michael 5586 issued by services clients
248 michael 5559
249    
250 michael 5529 -- Noteworthy changes in version 8.2.3 (2015-02-11)
251 michael 5492 ########################################################################
252 michael 5520 o) IMPORTANT: the following ircd.conf configuration directives have been renamed:
253 michael 5463
254 michael 5492 max_clients -> default_max_clients
255     join_flood_count -> default_join_flood_count
256     join_flood_time -> default_join_flood_time
257     ########################################################################
258 michael 5495 o) Fixed bug where "/rehash" would always reset the "MAX", "JFLOODTIME", and
259     "JFLOODCOUNT" values that have been changed from within IRC via the "/set"
260     command
261     o) Added channel mode +C which prevents users from sending CTCPs to a channel
262     o) Fixes to the NOTICE/PRIVMSG anti-flood logic
263 michael 5502 o) Allow to disable the NOTICE/PRIVMSG anti-flood mechanism by setting the
264 michael 6639 'general::default_floodcount' configuration option to 0
265 michael 5495 o) Updated some help files
266 michael 5520 o) Minor code cleanups and improvements
267 michael 5529 o) Operators may now see certificate fingerprints, user modes and hidden
268 michael 5633 channels via WHOIS as well. This used to be admin only.
269 michael 5463
270 michael 5492
271 michael 5403 -- Noteworthy changes in version 8.2.2 (2015-01-20)
272 michael 6401 o) Implemented IRCv3.1 extended-join extension
273 michael 5633 o) Channel half-ops can now use INVITE as well
274 michael 4910 o) Fixed broken 'make install -jX'
275 michael 4917 o) m_opme.c has been added to modules/extra. Can be used on opless channels only.
276 michael 5402 o) Added 'opme' to irc-operator flags
277 michael 4952 o) Updated several help files
278 michael 6639 o) The 'general::hide_spoof_ips' configuration option has been deprecated
279     o) The 'general::true_no_oper_flood' configuration option has been deprecated.
280 michael 4988 Operators still can have higher 'flood' limits with no_oper_flood = yes;
281     hoewever, they are no longer allowed to bypass RecvQ limits.
282 michael 6639 o) Added 'general::stats_m_oper_only' configuration option
283 michael 5402 o) Remote client connection notices (user mode +F) now do show IP addresses, too
284 michael 4793
285    
286 michael 4772 -- Noteworthy changes in version 8.2.1 (2014-10-21)
287 michael 6486 o) Fixed bug where "UNDLINE remote.server IP" did not work as expected
288 michael 4657 o) Servers are now allowed to add/remove K-/D-/X-lines and RESVs
289 michael 4663 o) Usermode +G now no longer allows to override +g
290 michael 4739 o) Due to potential weakness, TLS session caching and session tickets
291     have been disabled
292     o) Minor improvements to TS6 implementation
293 michael 5633 o) WHOWAS now shows the name of the services account a user was logged in
294 michael 4654
295 michael 4952
296 michael 4561 -- Noteworthy changes in version 8.2.0 (2014-08-24)
297 michael 4442 o) Successful operator logins are now announced globally via GLOBOPS
298 michael 4477 o) Cleanups and improvements to the resolver code
299     o) Cleanups and improvements to the poll() I/O event notification support
300 michael 5633 o) A topic mask can now be specified within the LIST options
301 michael 4492 o) All users may now see channel modes in the /list reply
302 michael 4952 o) Fixed bug where "NOTICE +#somechan" did allow bypassing resv {} channels,
303 michael 4527 or channels that are set +c (no control codes)
304 michael 4540 o) pseudo {} blocks also known as service aliases have been implemented.
305     See doc/reference.conf for more information.
306 michael 6639 o) Removed 'general::services_name' configuration option. This is now no
307     longer needed.
308 michael 4442
309    
310 michael 4394 -- Noteworthy changes in version 8.2.0rc2 (2014-08-03)
311 michael 4507 o) Improved AWAY throttling to allow for better fine-tuning. See the
312     newly added 'away_count' and 'away_time' configuration directives
313     in the general {} block
314 michael 4358 o) Support for the select() I/O event notification has been dropped
315     o) Minor code cleanups and improvements
316 michael 4314
317    
318 michael 4294 -- Noteworthy changes in version 8.2.0rc1 (2014-07-20)
319 michael 4293 o) Miscellaneous code cleanups and stabilization fixes
320 michael 4295 o) ./configure now requires OpenSSL 0.9.8o or above in order
321     to enable TLS/SSL support
322 michael 4217
323    
324 michael 4182 -- Noteworthy changes in version 8.2.0beta4 (2014-07-06)
325 michael 6586 #####################################################################
326     o) IMPORTANT: channel halfops are now an integral part of ircd-hybrid
327 michael 3761 and can't be disabled anymore
328 michael 6586 #####################################################################
329 michael 3761 o) Many code cleanups and improvements
330 michael 4507 o) Added flood control for the INVITE command. See channel {} block in reference.conf
331     o) Changed flood control logic for the KNOCK command. See channel {} block in reference.conf
332 michael 4217 o) INVITE without any parameters now shows a list of channels a client is invited to
333 michael 3868 o) The OPERWALL command has been removed. Use GLOBOPS instead
334 michael 4507 o) Added 'max_channels' to class {} blocks
335     o) Added 'throttle_count' configuration option to the general {} block
336     o) Added 'ssl_message_digest_algorithm' configuration option to serverinfo {} block.
337 michael 4180 See doc/reference.conf for more information.
338 michael 4076 o) Added support for Elliptic Curve Diffie-Hellman (ECDH). Also an elliptic curve can be
339 michael 6639 specified via the 'serverinfo::ssl_dh_elliptic_curve' configuration option.
340 michael 4217 o) Removed 'ssl_server_method' and 'ssl_client_method' configuration options.
341 michael 4164 ircd now only allows TLSv1, TLSv1.1 and TLSv1.2 protocols depending
342     on the OpenSSL version. SSLv3 is no longer supported.
343 michael 3761
344    
345 michael 3644 -- Noteworthy changes in version 8.2.0beta3 (2014-05-26)
346     o) Code cleanups/performance improvements
347    
348    
349 michael 3541 -- Noteworthy changes in version 8.2.0beta2 (2014-05-15)
350 michael 6639 #########################################################################
351     o) IMPORTANT: renamed 'general::warn_no_nline' configuration directive to
352     'general::warn_no_connect_block'
353     #########################################################################
354 michael 5633 o) Fixed bug with WHOIS not showing a list of channel names as expected
355 michael 3507 o) Added usermode +q which hides idle and signon time in WHOIS
356 michael 3514 o) Added usermode +p which hides channel list in WHOIS
357 michael 3474
358    
359 michael 3418 -- Noteworthy changes in version 8.2.0beta1 (2014-04-29)
360 michael 3380 o) TS6 is now mandatory. ircd is no longer backwards compatible with TS5
361     and below.
362 michael 5636 o) SVSJOIN and SVSPART commands have been added
363 michael 3381 o) Major code cleanups and refactoring. Improved overall performance
364 michael 5633 o) INFO now also reports MPATH (path to main motd (Message of the Day) file)
365 michael 4083 and SPATH (Path to server executable)
366 michael 3381 o) Updated several help files
367 michael 3380
368    
369 michael 4293 -- Noteworthy changes in version 8.1.20 (2014-07-20)
370     o) Fixed XLINE not working as expected
371     o) Fixed build with LibreSSL which hasn't compression support
372     o) Miscellaneous stabilization and cosmetical fixes
373     o) EGD support has been dropped
374    
375    
376 michael 4180 -- Noteworthy changes in version 8.1.19 (2014-07-05)
377     o) Fixed EOB logic for remote servers
378     o) Fixed bug where opers that have the +g/+G/+R umodes set won't receive server
379     notices for remote CONNECT/KLINE/DLINE/XLINE/RESV attempts
380     o) Sending messages to user@server to local targets is now no longer possible,
381     as this was an easy way to bypass +R/+G/+g user modes.
382     o) Fixed splicode logic so SPLITNUM now works as expected
383 michael 4953 o) Fixed UNDLINE not to require the IP address to be prepended with *@
384 michael 4180
385    
386 michael 3921 -- Noteworthy changes in version 8.1.18 (2014-06-09)
387     o) Fixed CAP issue for certain clients
388     o) Fixed bug where "STATS p" would show an invalid amount of irc-operators
389     in case there are any +H opers
390     o) irc-operators may now no longer set a channel +O if they are only halfops (%)
391     o) Channel halfops (%) may now no longer (de)halfop other channel members
392     o) Channel halfops (%) may now no longer KICK other channel halfops
393     o) Fixed compile warnings; code cleanups
394     o) Fixed bug where the configuration parser wouldn't truncate the network name
395 michael 6639 if 'general::network_name' contains spaces
396 michael 3921
397    
398     -- Noteworthy changes in version 8.1.17 (2014-05-01)
399     o) Fixed possible WATCH core
400     o) Fixed bug where the configuration parser wouldn't take time units
401     into consideration for the join_flood_time and throttle_time
402     configuration options
403 michael 5633 o) Minor LIST optimization
404 michael 3921
405    
406 michael 3376 -- Noteworthy changes in version 8.1.16 (2014-04-20)
407     o) Fixed undefined behaviour with crypt() returning NULL
408     since glibc2.17 in certain cases
409     o) Admins may now see all channel members via "WHO #channel"
410     regardless of channel mode +s
411     o) Fixed corrupted "STATS U" output
412    
413    
414 michael 3330 -- Noteworthy changes in version 8.1.15 (2014-03-29)
415 michael 3054 ########################################################################
416     o) IMPORTANT: ircd binary is now again placed into bin/ instead of sbin/
417     ########################################################################
418 michael 3330 o) mkpasswd in tools/ now defaults to MD5 instead of DES
419 michael 5633 o) The USERS command has been removed
420 michael 3330 o) Fixed issue with SVSNICK where clients self-collided when changing
421     just the case of the nick name, i.e. somenick -> SomeNicK
422     o) Minor code cleanups and cosmetical fixes
423 michael 3054
424    
425     -- Noteworthy changes in version 8.1.14 (2014-02-25)
426 michael 6639 o) WHOWAS now honors 'serverhide::disable_remote_commands'
427 michael 3028 o) Improved TS6 inter-server communication
428     o) Minor code cleanups and speed enhancements
429     o) Added 'unxline' oper flag
430 michael 6402 o) Implemented IRCv3.2 userhost-in-names extension
431 michael 5633 o) ircd now allows private RSA keys larger than 2048 bits
432 michael 3028 o) Fixed bug where signals stopped from working after restarting
433     the ircd via SIGINT
434     o) Fixed bug where certain irc clients could not reconnect via TLS/SSL
435     o) Fixed long-standing bug where +p channels have been shown
436 michael 5633 in the WHOIS reply
437 michael 3028
438    
439 michael 3054 -- Noteworthy changes in version 8.1.13 (2014-01-07)
440 michael 5633 o) Fixed EOB not working for remote servers (resulted in fake direction notices)
441 michael 2794 o) Fixed remote client connection notices for servers that are
442     more than one hop away
443 michael 5633 o) Fixed bug where the ircd didn't timeout SSL connections that
444 michael 2794 haven't finished the SSL handshake
445     o) Fixed several bugs with server hiding
446     o) Updated/fixed help files
447     o) WHOIS no longer sends a notice to +y operators
448    
449    
450 michael 3054 -- Noteworthy changes in version 8.1.12 (2013-12-22)
451 michael 2794 o) RPL_WHOISMODES now uses the 379 numeric
452     o) Serial number is now shown on start up
453     o) Fixed possible channel mode desynch with services
454 michael 3028 o) Fixed TS6 support with LOCOPS
455 michael 2794 o) Minor code cleanups
456     o) Fixed file descriptor leak with empty help files
457 michael 5633 o) Fixed issue with WEBIRC where hostnames were not validated
458 michael 2794
459    
460 michael 3054 -- Noteworthy changes in version 8.1.11 (2013-12-06)
461 michael 5633 o) Administrators may now see channel modes in LIST
462 michael 2794 o) Fixed compile error on BSD systems when building with kqueue()
463    
464    
465 michael 3054 -- Noteworthy changes in version 8.1.10 (2013-11-25)
466 michael 2794 o) Fixed bug with kqueue() where it occasionally dropped updates
467 michael 5633 o) Changed WHOIS to show certificate fingerprint to administrators only
468     o) The WHO reply now shows if a nickname has been registered
469     with NickServ. ('r' status flag)
470 michael 2794 o) Fixed some flaws with server hiding
471     o) Fixed bug where "STATS P" would leak ip addresses to remotely connected
472 michael 6639 administrators, even if 'serverhide::hide_server_ips' was set to 'yes'
473 michael 5633 o) Added SVSKILL command
474 michael 2794
475    
476 michael 3054 -- Noteworthy changes in version 8.1.9 (2013-11-08)
477 michael 2794 o) Added usermode +W. Users connected via a webirc gateway get this
478     mode set by servers.
479 michael 5633 o) WHOIS now shows if a client is connected via a webirc gateway
480     o) Administrators may now see +s channels a user is in with WHOIS.
481     Secret channels are prepended with a tilde in the WHOIS reply.
482 michael 2794 o) Administrators are now able to see all the user modes a user has
483 michael 5633 set via WHOIS
484 michael 2794
485    
486 michael 3054 -- Noteworthy changes in version 8.1.8 (2013-10-25)
487 michael 5636 o) Fixed bug that could lead to a desynchronized nick database
488 michael 2498 throughout the entire network if using services enforced
489     nick names (SVSNICK)
490     o) Cleaned up/modernized build system
491     o) Add -fstack-protector to CFLAGS if available. Basically checks for
492     buffer overflows/stack-smashing attacks
493 michael 5633 o) When using anope 1.9/2.0 services, WHOIS now shows the account name
494 michael 2498 of a registered/identified client (numeric 330)
495 michael 5633 o) Administrators can now see +s channels in the LIST reply
496 michael 2498
497    
498 michael 3054 -- Noteworthy changes in version 8.1.7 (2013-08-18)
499 michael 2454 o) Fixed issue with channel mode +n having no functionality at all
500 michael 2468 o) Fixed SSL certificate fingerprint validation for outgoing server connects
501     o) Updated several documentation files
502 michael 2454
503    
504 michael 3054 -- Noteworthy changes in version 8.1.6 (2013-08-02)
505 michael 2454 o) Fixed possible core with empty motd files
506    
507    
508 michael 3054 -- Noteworthy changes in version 8.1.5 (2013-07-16)
509 michael 2454 o) Fixed bug that would prevent servers from linking together
510 michael 6688 if 'connect::aftype' isn't set
511 michael 2454
512    
513 michael 3054 -- Noteworthy changes in version 8.1.4 (2013-07-05)
514 michael 2454 o) Added 'xline' and 'resv' logging types. See doc/reference.conf
515     for more information
516 michael 5633 o) Fixed bug where remote STATS requests were not rate limited
517 michael 6639 o) Fixed core with empty 'auth::spoof' entries
518 michael 2454 o) Increased oper/auth/connect password length limit from 20 to 128
519     o) Minor fixes to nickflood control code
520    
521    
522 michael 3054 -- Noteworthy changes in version 8.1.3 (2013-06-23)
523 michael 2334 o) Fixed possible core on "STATS z"
524     o) Revised doc/reference.conf
525     o) Fixed broken --disable-libgeoip switch
526    
527    
528 michael 3054 -- Noteworthy changes in version 8.1.2 (2013-06-20)
529 michael 6639 o) Added 'general::cycle_on_host_change' configuration option
530     o) Added 'general::stats_u_oper_only' configuration option
531 michael 4952 o) Added support for SHA-256 ssl certificate fingerprint based operator {}
532     and connect {} blocks.
533 michael 2794 In conjunction with Anope 1.9/2.0 IRC-services, clients are now also able
534 michael 2258 to automatically identify for their nick with ssl certificate
535     fingerprints
536 michael 6639 o) Added 'operator::ssl_connection_required' configuration option. See
537 michael 2258 doc/reference.conf for more information
538     o) Added usermode +S (client is connected via SSL/TLS). Allows services
539     to keep track of what users are connected via SSL, and allows to see
540     ssl-status of remote clients in a /whois
541 michael 5633 o) Fixed a server name leak with server hiding enabled
542 michael 2258
543    
544 michael 3054 -- Noteworthy changes in version 8.1.1 (2013-06-06)
545 michael 2196 ########################################################################
546     o) IMPORTANT: moved disable_remote_command configuration directive from
547 michael 4952 general {} block to serverhide {} block
548 michael 2196 ########################################################################
549 michael 2210 o) Minor code cleanups/performance improvements
550 michael 2155 o) Fixed bug where opers could see LOCOPS messages even if they don't have
551     the +l mode set
552     o) Fixed bug where non-SSL clients could join +S channels on non-SSL servers
553 michael 4952 o) Implemented motd {} configuration blocks. See doc/reference.conf for more
554 michael 2155 information
555 michael 2210 o) "STATS T" shows configured MOTD files
556 michael 2155
557    
558 michael 3054 -- Noteworthy changes in version 8.1.0 (2013-05-23)
559 michael 2155 o) Minor code cleanups/performance improvements
560    
561    
562 michael 3054 -- Noteworthy changes in version 8.1.0rc1 (2013-05-19)
563 michael 2155 o) Fixed broken spoofs
564    
565    
566 michael 3054 -- Noteworthy changes in version 8.1.0beta5 (2013-05-15)
567 michael 2012 o) Removed 'remote', and 'global_kill' oper flags, and added 'connect',
568     'squit', and 'kill' flags for better fine-tuning instead. Whether or
569     not a specific action is allowed on a remote server can be controlled
570 michael 2155 by appending the ':remote' flag. For example: 'kill' allows only local
571 michael 2012 clients to be killed, whereas 'kill:remote' allows to issue a KILL for
572     remote clients
573 michael 2155 o) Added 'locops' and 'wallops' to irc-operator flags
574     o) Improve/cleanup HELP system
575 michael 2012
576 michael 2155
577 michael 3054 -- Noteworthy changes in version 8.1.0beta4 (2013-05-09)
578 michael 1954 o) Implemented channel mode +M. Clients that haven't identified their
579     name with NickServ may not speak in a channel that has this mode set
580 michael 2155 o) Fixed weird idletimes shown in /trace
581 michael 6639 o) Added 'nononreg' (+R) to 'general::oper_umodes'
582 michael 2155 o) Added user mode +F (can see remote client connect/exit notices)
583 michael 1954
584    
585 michael 3054 -- Noteworthy changes in version 8.1.0beta3 (2013-05-05)
586 michael 1932 o) PCRE support has been dropped
587 michael 4952 o) "STATS o" now shows how many times an operator {} block has been used.
588 michael 6688 Similar to "STATS x|q"
589 michael 1937 o) Implemented channel mode +c. Known from other ircds, this mode basically
590     prevents users from sending messages including control codes to a channel
591     that has this mode set
592 michael 1955 o) Fixed bug where bans were not checked against non-channel members when
593     sending messages to a channel
594 michael 6639 o) Removed 'channel::quiet_on_ban' configuration option. This feature is
595 michael 1955 now enabled by default
596 michael 1932
597    
598 michael 3054 -- Noteworthy changes in version 8.1.0beta2 (2013-04-28)
599 michael 1932 o) Fixed broken compile with libGeoIP disabled
600     o) Code cleanups; working towards stabilization and improved performance
601     o) Removed operflag 'nick_changes'. Operators can now set +n at will
602 michael 4952 o) Fixed shared {} blocks not working as expected
603 michael 1932 o) Fixed spoofs not working as expected
604    
605    
606 michael 3054 -- Noteworthy changes in version 8.1.0beta1 (2013-04-25)
607 michael 6639 #######################################################################
608 michael 4952 o) IMPORTANT: name/channel entries can't be stacked any longer within a
609     single resv {} block. Each entry now requires its own resv {} block.
610 michael 1861 Read doc/reference.conf for more details
611     #######################################################################
612 michael 6639 o) Added 'resv::exempt' configuration option. Exempt can be either a
613 michael 1861 ISO 3166 alpha-2 two letter country code, or a nick!user@host mask.
614     CIDR is supported
615 michael 6639 o) Removed 'channel::restrict_channels' configuration option
616 michael 1861 o) Preliminary libGeoIP support. Currently only used for exempt entries
617 michael 4952 in resv {} blocks
618 michael 6639 o) Improved WEBIRC authentication; added 'webirc' to 'auth::flags'.
619 michael 1731 A "webirc." spoof is now no longer required
620 michael 1798 o) Implemented new memory pool allocator which basically is based upon Tor's
621 michael 1731 mempool allocator for Tor cells
622     o) Major code cleanups
623 michael 5633 o) Implemented new binary database storage for X-, D-, K-, G-Lines and RESVs.
624 michael 1731 Temporary bans are now stored as well and will persist after a reboot
625 michael 4952 o) Channel based resv {} blocks may now contain wildcards
626 michael 1840 o) NICK/JOIN now shows the actual reason of reserved nick-/channelnames
627 michael 5633 o) contrib/ and its content has been enirely removed from the tree
628 michael 6639 o) Added 'serverhide::hide_services' configuration option
629     o) Added 'nononreg' (+R) to 'oper::umodes' and 'general::oper_only_modes'
630 michael 6401 o) Implemented IRCv3.1 away-notify extension
631 michael 1731
632 michael 1798
633 michael 3054 -- Noteworthy changes in version 8.0.9 (2013-05-16)
634 michael 2155 o) Fixed bug where ircd would sometimes drop a services link because
635 michael 6688 of a missing argument to the "SVSMODE" command
636 michael 2155 o) Fixed weird idletimes shown in /trace
637    
638    
639 michael 3054 -- Noteworthy changes in version 8.0.8 (2013-04-28)
640 michael 4952 o) "STATS s" now shows configured services {} blocks as well
641 michael 1932 o) Fixed compile warnings, minor code cleanups and optimizations
642     o) Increased nickname history length to 32768
643     o) Unidentified/unregistered nicks may not speak in +R channels
644    
645    
646 michael 3054 -- Noteworthy changes in version 8.0.7 (2013-04-12)
647 michael 1828 o) Services may now set a channel topic without joining the channel first
648 michael 5633 o) Fixed bug where WHOIS would send empty sockhost information on TS5 servers
649 michael 1828 o) Remote server connection and split notices now go to new usermode +e.
650     These previously used usermode +x.
651     o) Services may now change the host of a specific user
652     via "SVSMODE <timestamp> <target> +x <hostname>"
653 michael 1731
654 michael 1797
655 michael 3054 -- Noteworthy changes in version 8.0.6 (2013-01-28)
656 michael 1797 o) Fix bug where idle time sometimes is 0 even if the client didn't
657     send any private message
658     o) Fixed possible core in try_parse_v4_netmask()
659    
660    
661 michael 3054 -- Noteworthy changes in version 8.0.5 (2013-01-24)
662 michael 1797 ########################################################################
663     o) IMPORTANT: nick and topic lengths are now configurable via ircd.conf.
664     A max_nick_length, as well as a max_topic_length configuration option
665 michael 4952 can now be found in the serverinfo {} block
666 michael 1797 ########################################################################
667 michael 5633 o) Fixed build on GNU/Hurd
668 michael 1797 o) Fixed log files not getting reopened after /rehash
669     o) Improved logging of configuration file issues
670     o) ircd.pid has been accidentally saved in /var instead of /var/run
671     o) Linux RT signal support for notification of socket events has been dropped
672     o) Fixed "STATS Y|y" sometimes sending weird sendq/recvq values
673     o) INFO now also shows configured values of 'disable_fake_channels',
674     and 'stats_e_disabled'
675     o) m_webirc.c is now officially supported, and has been moved from contrib/
676     to modules/
677 michael 6639 o) /whois, /stats p, and /trace may now show fake idle times depending
678     on how the new 'class::min_idle' and class::max_idle configuration
679     directives have been configured. This feature basically works in the
680     same way as it does in csircd
681 michael 1797 o) The configuration parser now does support 'year' and 'month' units
682    
683    
684 michael 3054 -- Noteworthy changes in version 8.0.4 (2013-01-02)
685 michael 1731 o) Fixed possible core on USERHOST/ISON with optimization enabled
686 michael 5633 o) Fixed bug where 'can_flood' sometimes didn't work as expected
687 michael 1731
688    
689 michael 3054 -- Noteworthy changes in version 8.0.3 (2012-12-24)
690 michael 1731 o) Fixed core on UNDLINE
691     o) XLINE/KLINE/RESV/DLINE/SQUIT and KILL now have the same default reason
692     if a reason hasn't been specified
693    
694    
695 michael 3054 -- Noteworthy changes in version 8.0.2 (2012-12-20)
696 michael 1731 o) Minor updates to the build system
697     o) Fixed broken --enable-assert configure switch
698     o) Fixed bug where timed events stopped from working if the system's
699     clock is running backwards
700 michael 4952 o) STATS q|Q now shows how many times a resv {} block has been matched
701 michael 1731 o) Fixed contributed WEBIRC module
702     o) IRC operators may now again see server generated nick rejection notices
703    
704    
705 michael 3054 -- Noteworthy changes in version 8.0.1 (2012-11-04)
706 michael 1731 o) Fixed broken CIDR support for CHALLENGE based irc operator logins
707 michael 4952 o) Fixed class limits not properly applying to operator {} blocks
708 michael 1731 o) Fixed possible TBURST desynchronization with services
709 michael 5633 o) Fixed TBURST from leaking the server name if it's a hidden server
710 michael 1731
711    
712 michael 3054 -- Noteworthy changes in version 8.0.0 (2012-10-18)
713 michael 1542 o) Fixed an off-by-one with spoofs. Spoofs are now also checked for
714 lusky 1580 invalid characters
715 michael 6639 o) Removed 'general::use_whois_actually' configuration directive.
716     This is now enabled by default
717 michael 1573 o) Minor SQUIT handling fixes
718 michael 1575 o) Fixed bancache not being updated on CHGHOST/CHGIDENT
719 michael 1540
720 michael 1547
721 michael 3054 -- Noteworthy changes in version 8.0.0rc1 (2012-09-28)
722 michael 6639 o) Removed 'general::client_flood' configuration option and added the
723 michael 4952 new 'recvq' configuration directive to class {} blocks.
724 michael 1516 The max size of a receive queue can be seen in "STATS Y"
725     for each class
726 lusky 1580 o) Allow the '[' and ']' characters in server description
727 michael 1516
728    
729 michael 3054 -- Noteworthy changes in version 8.0.0beta3 (2012-08-24)
730 lusky 1580 o) Fixed wrong syntax in several language files
731     o) Removed &localchannels
732     o) PRIVMSG to opers@some.server is no longer supported
733     o) Fixed bug that could lead to topic desynchronization
734 michael 6639 o) Removed 'serverhide::disable_hidden' configuration option
735 michael 1493 o) Dropped ircd-hybrid-6 GLINE compatibility mode
736 lusky 1580 o) Removed use_invex, use_except and use_knock configuration options.
737     These features are now enabled by default
738 michael 1474
739    
740 michael 3054 -- Noteworthy changes in version 8.0.0beta2 (2012-07-21)
741 michael 6639 o) 'channel::disable_fake_channels' now also disables ascii 29 (mIRC italic)
742 michael 1424 when set to yes
743 michael 6639 o) Added 'channel::max_chans_per_oper' configuration directive. The old way
744 lusky 1580 was to let operators join three times the amount of max_chans_per_user
745 michael 1441 o) Replaced MODLOAD, MODUNLOAD, MODRELOAD, MODLIST and MODRESTART commands
746     with the new MODULE command which can be fed with the LOAD, UNLOAD, RELOAD
747     and LIST parameters.
748 lusky 1580 MODRESTART has been entirely removed. Use "MODULE RELOAD *" to reload
749     all modules
750 michael 1442 o) Added back server notice when a client tries to obtain a reserved nick name
751 michael 1446 o) Removed OMOTD module
752 michael 1460 o) Added 'set' to operator privilege flags. Gives access to the "SET" command
753 michael 1464 o) Improved TS6 support
754 michael 1553 o) Channel keys/passwords are now case sensitive
755 michael 1424
756 michael 1441
757 michael 3054 -- Noteworthy changes in version 8.0.0beta1 (2012-05-28)
758 lusky 1580 o) Implemented full services support, including but not limited to the
759     following changes:
760 michael 1244 - Added SVSNICK, and SVSMODE command handlers
761     - Added service stamps to NICK/UID messages
762 michael 1409 - Added SVS to server capabilities (CAPAB). SVS capable servers can
763 michael 1420 deal with extended NICK/UID messages that contain service IDs/stamps.
764 lusky 1580 - Changed rejected client notices to go to new usermode +j. These
765     previously used usermode +r.
766     - Added usermode +r (registered nick) and channelmode +r (registered channel)
767     - Added usermode +R (only registered clients may send a private message)
768     - Added channelmode +R (only registered clients may join that channel)
769 michael 1244 - Various services shortcuts have been added (/NS, /CS, /NICKSERV, /CHANSERV, etc.)
770 michael 4952 - Added services {} block to ircd.conf
771     - Added services_name directive to general {} block
772 michael 1421 - Added GLOBOPS mainly for services compatibility, but can be used by operators, too
773 lusky 1580 o) Removed RKLINE and RXLINE commands. Regular expression based bans should
774     only be added via ircd.conf
775     o) Added 'globops', 'restart', 'dline', 'undline' and 'module' operator
776 michael 1823 privilege flags. Read doc/reference.conf for further explanation of what
777 lusky 1580 these flags control
778     o) Removed Idle-time klines
779 michael 1244 o) Cleaned up modules API. Old modules won't work anymore
780 michael 6639 o) Removed 'general::burst_away' configuration directive. AWAY bursts are now
781     controlled via 'connect::flags' explicitly
782 michael 1274 o) Introduced new logging subsystem including log rotation based on
783 michael 1418 file sizes. Log timestamp format is ISO8601 now
784 michael 1315 o) Added support for remote D-lines
785     o) Added usermode +H which is basically a replacement for the hidden_admin and
786     hidden_oper operator flags. With usermode +H, irc operator status can now
787     be hidden even on remote servers
788 michael 4952 o) Added CIDR support for operator {} blocks
789 lusky 1580 o) Removed the servlink program. ircd-hybrid can now make use of
790     SSL/TLS for inter-server communication.
791 michael 1315 NOTE: compressed server links are of course still available, but a SSL/TLS
792 lusky 1580 connection is required, as compression is now handled via OpenSSL
793 michael 1418 o) Removed 'ssl_server_protocol' configuration directive and
794     added 'ssl_client_method' and 'ssl_server_method' instead.
795     Both of these options can now be changed at runtime
796 michael 1382 o) Oper login IDs are no longer limited to NICKLEN*2
797 michael 6639 o) Removed 'channel::burst_topicwho' configuration option. This feature is now
798     enabled by default
799 michael 1418 o) "STATS Y|y" now reports CIDR limits as well
800     o) Added m_webirc.c to contrib/
801 michael 1409 o) Overall code cleanup and speed improvements
802 michael 1244
803 michael 1245 --------------------------------------------------------------------------------
804 michael 1244
805 adx 30 BUG REPORTS: If you run this code and encounter problems, you must report
806 michael 974 the bug by EMAIL to bugs@ircd-hybrid.org
807 michael 920 Please include a gdb backtrace and a copy of your config.h and
808 michael 883 ircd.conf with any report (with passwords and other sensitive
809 adx 30 information masked).
810    
811     DISCUSSION: There is a mailing list for discussion of hybrid issues,
812 michael 1865 including betas. To subscribe, use this link:
813 adx 30 https://lists.ircd-hybrid.org/mailman/listinfo/hybrid
814 michael 1932 This is the proper place to discuss new features, bugs, etc.
815 adx 30
816     Questions/comments directed to bugs@ircd-hybrid.org
817    
818 michael 1865 Other files recommended for reading: README, INSTALL
819 adx 30
820     --------------------------------------------------------------------------------
821 knight 31 $Id$

Properties

Name Value
svn:eol-style native
svn:keywords Id