1 |
Koozali SME Server 10 Alpha 2 Release |
Koozali SME Server 10.1 Release Notes |
2 |
===================================== |
============================================ |
3 |
|
12 Sep 2022 |
4 |
31 May 2017 |
|
5 |
|
The Koozali SME Server development team is pleased to announce the |
6 |
The Koozali SME Server development team is pleased to announce the release of |
release of SME Server 10.1 which will be an update release of SME Server. |
7 |
SME Server 10 Alpha 3 which will be the next major release of SME Server. |
|
8 |
|
This release is based on CentOS 7. CentOS 7.# has an EOL of |
9 |
This release is based on CentOS 7. CentOS 7.# has an EOL of 30 June 2024. |
30 June 2024. |
10 |
|
|
11 |
*************************** |
********************************************************** |
12 |
Koozali SME Server users should not upgrade production servers to this release |
Koozali SME Server users are encouraged to update production servers |
13 |
but those who can are encouraged to load the alpha to a dedicated test machine |
to this release. |
14 |
and take part in the testing phase. |
********************************************************** |
15 |
*************************** |
|
16 |
|
Additional notes on Koozali SME Server 10 can be found at |
17 |
Some notes on Koozali SME Server 10 can be found at |
https://wiki.contribs.org/SME_Server_10.0_Development |
18 |
https://wiki.contribs.org/SME_Server_10.0_Development |
|
19 |
|
SME10 Roadmap - |
20 |
Bug reports and reports of potential bugs should be raised in the bug |
https://wiki.contribs.org/SME10_Roadmap#SME_10_Final |
21 |
tracker (and only there, please); |
|
22 |
|
Bug reports and reports of potential bugs should be raised in the bug |
23 |
https://bugs.koozali.org/ |
tracker (and only there, please); |
24 |
|
|
25 |
Download |
https://bugs.koozali.org/ |
26 |
======== |
|
27 |
You can download SME Server 10 from |
Copy of releaase notes may be found here: |
28 |
https://mirror.koozali.org/smeserver/releases/testing/10/ |
https://lists.contribs.org/pipermail/updatesannounce/ |
29 |
or for other methods see https://wiki.koozali.org/SME_Server:Download |
|
30 |
|
Download |
31 |
Please note it may take up to 48 hours for mirrors to finish syncing, |
======== |
32 |
during this time you may experience problems. |
You can download SME Server 10.1 from |
33 |
|
https://mirror.koozali.org/smeserver/releases/10.1/ |
34 |
About SME Server |
or for other methods see: |
35 |
================ |
https://wiki.koozali.org/SME_Server:Download |
36 |
SME Server is the leading Linux distribution for small and medium |
|
37 |
enterprises. SME Server is brought to you by Koozali Foundation, Inc., |
After release, please note it may take up to 48 hours for mirrors to |
38 |
a non-profit corporation that exists to provide marketing and legal support |
finish syncing, during this time you may experience availability issues. |
39 |
for SME Server. |
|
40 |
|
About SME Server |
41 |
SME Server is freely available under the GNU General Public License and |
================ |
42 |
is only possible through the efforts of the SME Server community. |
SME Server is a popular Linux distribution for small and medium |
43 |
|
enterprises. SME Server is brought to you by Koozali Foundation, Inc., |
44 |
However, the availability and quality of SME Server is dependent on |
a non-profit corporation that exists to provide marketing and legal support |
45 |
meeting our expenses, such as hosting costs, server hardware, etc. |
for SME Server. |
46 |
|
|
47 |
As such, we ask for a donation to offset costs and fund further development. |
SME Server is freely available under the GNU General Public License and |
48 |
|
is only possible through the efforts of the SME Server community. |
49 |
a) If you are a school, a church, a non-profit organisation or an individual |
|
50 |
using SME Server for private purposes, we would appreciate you to contribute |
However, the availability and quality of SME Server is dependent on |
51 |
within your means toward the costs associated with hosting, maintenance and |
meeting our expenses, such as hosting costs, server hardware, etc. |
52 |
development. |
|
53 |
|
As such, we encourage a donation to offset costs and fund further development. |
54 |
b) If you are a company or an integrator and you are deploying SME Server in |
|
55 |
the course of your work to generate revenue, we expect you to make a donation |
a) If you are a school, a church, a non-profit organisation or an |
56 |
commensurate with the level of revenue you generate and the number of servers |
individual using SME Server for private purposes, we would appreciate |
57 |
your have in the field. Please, help the project |
you to contribute within your means toward the costs associated with |
58 |
|
hosting, maintenance and development. |
59 |
Please visit https://wiki.koozali.org/Donate to donate. |
|
60 |
|
b) If you are a company or an integrator and you are deploying SME |
61 |
Koozali Inc is happy to supply an invoice for any donations received, |
Server in the course of your work to generate revenue, we expect you to |
62 |
simply email treasurer@koozali.org |
make a donation commensurate with the level of revenue you generate and |
63 |
|
the number of servers your have in the field. Please, help the project |
64 |
Notes |
|
65 |
===== |
Please visit https://wiki.koozali.org/Donate to donate. |
66 |
In-place upgrades are not supported. It is necessary to backup and then restore. |
|
67 |
(Remember, testing purpose only) |
Koozali Inc is happy to supply an invoice for any donations received, |
68 |
|
simply email treasurer at koozali.org |
69 |
The spare handling for RAID arrays is not implemented. |
|
70 |
|
Notes |
71 |
USB installs are now supported, see: https://wiki.koozali.org/Install_From_USB |
===== |
72 |
|
In-place upgrades from previous major releases are not supported. |
73 |
Current installer is still branded CentOS. A kickstart script allows you to go through the graphical installation process. If your disk is not empty, you will need to use the Anaconda interface to format it and partition it. If it is empty all is automatic. You will have to set your root password twice: once during Anaconda installation (you could use a lame password), a second time in the Koozali SME server configuration process. |
It is necessary to backup and then restore. |
74 |
|
|
75 |
Major changes in this release |
In-place point updates within a major release are supported. |
76 |
============================= |
|
77 |
This release is based on CentOS 7 |
Restore of a sme9 console or workstation backup is now fully supported |
78 |
|
there are cautions to be aware of and followed, see wiki and forum notes. |
79 |
Changes in this release |
|
80 |
======================= |
From the many, small and large, fixes and updates the highlights are: |
81 |
see above |
|
82 |
|
The integration of httpd access using the to 2.4 syntax |
83 |
General features |
#Note there will be a need to update your contribs and any custom templates |
84 |
================ |
|
85 |
- Based on CentOS 7.2.1511 and all available updates |
The improvement of syslog management with dedicated log file for all the core |
86 |
|
services (some were in systemd and some in the message log) |
87 |
Detailed changes in this release |
|
88 |
======================= |
Along with changes to the management of logfiles an improved logrotate has |
89 |
Only the changes since SME Server 10 Alpha2 are listed, mainly |
been implemented, this is also now configurable via db config settings ie |
90 |
autogenerated from the changelogs. |
frequency and number to retain |
91 |
|
|
92 |
Packages altered by Centos, Redhat, and Fedora-associated developers are |
Improvement and update to user and system security via update of cvm-unix |
93 |
not included. |
module |
94 |
|
|
95 |
General features - Based on CentOS 7.2.1511 and all available updates |
Support for @.service has now been integrated and implemented |
96 |
|
|
97 |
Backups |
Updates and fixes to radius services have also been implemented and improved |
98 |
|
|
99 |
e-smith-backup |
The task of implementing backup of the contribs data by the the core console |
100 |
- added lock during backup to avoid multiple instance running [SME: 9127] |
backup and workstation backup has begun see: |
101 |
- code from Stefano Zamboni <zamboni@mind-at-work.it> |
https://bugs.koozali.org/show_bug.cgi?id=11997 |
102 |
- added support back to ext2 and ext3 [SME: 9299] |
|
103 |
- fix removable device detection [SME: 9299] |
A large number other minor under the hood changes and upstream updates and |
104 |
- console restoration can be launched again from console [SME: 9550] |
fixes. |
105 |
- fixed bug on the dar catalog when backups are not added in it [SME: 9563] |
===== |
106 |
- Added e-smith-backup-2.6.0.bz9563.UpdateDarCatalogFollowingBackups.patch |
|
107 |
- Remove the dar exclusion message in the email if there is no exclusion. |
The time and effort that has gone into getting SME 10.1 to release has been |
108 |
- Modified e-smith-backup-2.6.0.Do_Dar_Exclusion.patch [SME: 9633] |
extensive, an attempt to list and detail the work that has been done in recent |
109 |
- Added two commented files backup.{include,exclude} in /etc/backup-data.d |
months would not do justice to the effort made, thank you one and all for your |
110 |
- Modified e-smith-backup-2.6.0.Add_Or_Remove_Path_In_Backup.patch [SME: 9607] |
time and help. |
111 |
- Add or remove path in your backup by a file *.include and *.exclude |
|
112 |
- Added e-smith-backup-2.6.0.Add_Or_Remove_Path_In_Backup.patch [SME: 9607] |
In particular thank you for the consistent efforts of: |
113 |
- Test if the remote host (cifs/nfs) is up, else save and display a warning. |
Jean Phillipe Pialasse |
114 |
- Added e-smith-backup-2.6.0.bz9090.Testing_the_remote_host_parameters.patch [SME: 9090] |
John Crisp |
115 |
- The 'tar backup to desktop' of the backup panel takes consideration of exclusion |
Brian Read |
116 |
- Added e-smith-backup-2.6.0.Do_Tar_Exclusion_In_Panel.patch [SME: 9635] |
Michel Begue |
117 |
- The 'dar workstation backup' of the backup panel takes consideration of exclusion |
Zsolt Vasarhelyi |
118 |
- Added e-smith-backup-2.6.0.Do_Dar_Exclusion.patch [SME: 9633] |
|
119 |
- The 'tar backup' of the console takes consideration of exclusion and display a page with the exclusion content |
The changes that have been implemented to ensure the Koozali Sme Server way |
120 |
- e-smith-backup-2.6.0.Do_Tar_Exclusion_In_the_console.patch [SME: 9635] |
is fully implemented have been considered and extensive. |
121 |
|
|
122 |
File Server |
Major changes in this release |
123 |
|
============================= |
124 |
e-smith-proftpd |
This release is based on CentOS 7.# |
125 |
- fix typos [SME: 6804] |
|
126 |
- set default as required |
Changes in this release |
127 |
- NB: client must be set as active connection, not passive |
======================= |
128 |
- updated patch for certificate chain |
see above and below |
129 |
- Thanks to Daniel Berteaud |
|
130 |
- Adding TLS support to proftp configuration [SME: 6804] |
General features |
131 |
- default is enabled but not required, only TLSv1.1 and v1.2 |
================ |
132 |
e-smith-samba |
Based on CentOS 7.9.2009 and all available updates |
133 |
- fix outlook error code 0x8004011c [SME: 10169] |
|
134 |
- when setting up and email account on a win10 computer joined to a domain (with roaming profiles) |
Detailed changes in this release |
135 |
- add systemd skip redirect [SME: 9688] |
======================= |
136 |
- Fix deprecated syntax '~' in rsyslog [SME: 9398] |
Only the changes since SME Server 10 final are listed, autogenerated |
137 |
- added e-smith-samba-2.6.0.bz9398.DeprecatedRsyslogSyntaxSamba.patch |
from the changelogs. |
138 |
proftpd |
|
139 |
- AllowChrootSymlinks off could cause login failures depending on filesystem |
Packages altered by Centos, Redhat, and Fedora-associated developers are |
140 |
permissions: use the IDs of the logging-in user to perform the directory |
not included. |
141 |
walk, looking for symlinks, to be more consistent with similar checks done |
|
142 |
during login (#1443507, upstream bug 4306) |
The changelogs are written per package |
143 |
- Crypt::CrackLib always available now |
|
144 |
- Update to 1.3.5e |
SME built or modified packages - ChangeLogs |
145 |
- SFTP clients using umac-64@openssh.com digest failed to connect |
|
146 |
(upstream bug 4287) |
18 Aug 2022 |
147 |
- SFTP rekeying failure with ProFTPD 1.3.5d, caused by null pointer |
|
148 |
dereference (upstream bug 4288) |
Backups |
149 |
- AllowChrootSymlinks off did not check entire DefaultRoot path for symlinks |
|
150 |
(CVE-2017-7418, upstream bug 4295) |
e-smith-backup |
151 |
- Change shellbangs in shipped perl scripts to use system perl |
- negative date (mtime, data modification time) zerodate fix [SME: 11907] |
152 |
- Drop EL-5 support |
- allow mounting smbv1 backup share [SME: 11557] |
153 |
- Drop BuildRoot: and Group: tags |
- remove lock noise to cron stdout for workstation backup [SME: 11530] |
154 |
- Drop explicit buildroot cleaning in %install section |
- fix dar restore replacing rootdir symlinks by folders [SME: 11424] |
155 |
- Drop explicit %clean section |
- Remove duplicate gunzip call in perform_restore [SME: 11266] |
156 |
- /etc/pam.d/password-auth always available now |
- Remove debug output of device names |
157 |
- pcre 7.0 or later always available now |
- Revert BlockDevices.pm and backup call to not filter to removable drives |
158 |
- Properly allocate (and clear) the UMAC contexts, to fix segfault in mod_sftp |
- Replace hal-* calls with BlockDevices [SME: 11319] |
159 |
(#1420365, upstream bug 4287) |
- add update event [SME: 11124] |
160 |
- Update to 1.3.5d |
- Added /etc/backup-data.d to backup paths [SME: 10245] |
161 |
- Support OpenSSL 1.1.x API (upstream bug 4275) |
- Added error handling to restore using pipe pattern from perform_backup [SME: 3139] |
162 |
Bug fixes: |
- Made reboot optional after console restore |
163 |
- SSH rekey during authentication can cause issues with clients |
- Fixed bootstrap restore not activating config changes [SME: 10921] |
164 |
(upstream bug 4254) |
- Manually added ext2 and ext3 to Block Device file system check where ext4 present |
165 |
- Recursive SCP uploads of multiple directories not handled properly |
- updated Block Device discovery to fix recovery from console [SME: 8244] |
166 |
(upstream bug 4257) |
- Credit to Catton Durbrow |
167 |
- LIST returns different results for file, depending on path syntax |
|
168 |
(upstream bug 4259) |
|
169 |
- "AuthAliasOnly on" in server config breaks anonymous logins |
File Server |
170 |
(upstream bug 4255) |
|
171 |
- CapabilitiesEngine directive not honored for <IfUser>/<IfGroup> sections |
e-smith-samba |
172 |
(upstream bug 4272) |
- samba fix typo in delete v6 profile dir win10 [SME: 11725] |
173 |
- Memory leak when mod_facl is used (upstream bug 4278) |
- samba delete v6 profile dir win10 [SME: 11725] |
174 |
- All FTP logins treated as anonymous logins again (upstream bug 4283, |
- samba create v6 profile dir win10 [SME: 11725] |
175 |
regression in 1.3.5c of upstream bug 3307) |
- netlogon.bat +x [SME: 11566] |
176 |
- Handle client/server version skew in mod_sql_mysql |
- add possibility to reenable allow execute always on ibays homes or everywhere [SME: 11555] |
177 |
(https://forums.proftpd.org/smf/index.php?topic=11887.0) |
- fix double entries for min protocol [SME: 11558] |
178 |
- Fix a possible cause of segfaults in mod_sftp (#1337880, upstream bug 4203) |
- clean rsyslog syntax for smbd and nmbd [SME: 11422] |
179 |
- See if we can fix crash in mod_lang |
- fix noise in message log from nmbd and smbd redirected to dedicated logs [SME: 11349] |
180 |
- BR: perl-generators for correct dependencies in utils sub-package |
- allow using user-create-profiledir action with temp or package-update events [SME: 11348] |
181 |
- Prefer %global over %define |
- fix log noise for smb.service [SME: 11157] |
182 |
|
- add Restart=always [SME: 11118] |
183 |
LDAP |
- add Restart=always [SME: 11117] |
184 |
|
- migrate nmbd to systemd [SME: 11118] |
185 |
e-smith-ldap |
- migrate smbd to systemd [SME: 11117] |
186 |
- Disable SSLv3, but keep the possibility to enable it again [SME: 10108] |
create generik smb.service service |
187 |
- Better default cipher suite, and honor global suite [SME: 10108] |
- create e-smith-samba-update event [SME: 11157] |
188 |
- systemd skip redirect [SME: 9688] |
- Fix mutex locking [SME: 11199] |
189 |
- Eliminated rpmbuild "bogus date" warnings due to inconsistent weekday, |
- Fix pid directory [SME: 11198] |
190 |
|
- Add /etc/krb5.conf as template using templates from smeserver-samba |
191 |
Localisation |
- [SME: 11093] |
192 |
|
- remove win98pwdcache.reg from server-resources [SME: 9060] |
193 |
smeserver-locale |
- set min server and client protocol SMB2 [SME: 10576] |
194 |
- apply 2017-04-26 translation patch [SME: 10252] |
add check so max always greater than min |
195 |
- updated donate patch to correct location https://wiki.koozali.org/Donate [SME: 9595] |
- add port 445 if min server protocol is SMB2 or SMB3 [SME: 10963] |
196 |
- applied smeserver-locale-2.6.0-locale-2017-03-03 |
|
197 |
- Added translations smeserver-locale-2.6.0-locale-2016-07-17.patch |
LDAP |
198 |
- fix wrongly converted http to https in |
|
199 |
- URL starting with http:// or ftp:// |
e-smith-ldap |
200 |
- fix path to documentations (wiki) [SME: 9595] |
- add support or rsshusers system group [SME: 11753] |
201 |
- convert all koozali url to https |
- redirect syslog for ldapt to /var/log/ldap/ldap.log [SME: 11745] |
202 |
- change http://www.smeserver.org\donate to https://wiki.koozali.org/donate [SME: 9595] |
- fix ssl-update reload instead of restart ldap [SME: 11598] |
203 |
- Eliminated rpmbuild "bogus date" warnings due to inconsistent weekday, |
- fix wrong path for templates.metadata [SME: 11595] |
204 |
- change contribs.org to koozali.org [SME: 9595] |
- use template for ssl pem [SME: 11595] |
205 |
|
- fix ldap failing to start on initial boot [SME: 11480] |
206 |
Mail Server |
- fix wrong alias to ldap.init [SME: 11301] |
207 |
|
- add -update event [SME: 11140] |
208 |
e-smith-email |
- move ldap to systemd [SME: 11099] |
209 |
- fix webmail status not displaying correctly in manager [SME: 9594] |
- move ldap.init to systemd [SME: 11096] |
210 |
- More change from smtpd to qpsmtpd in masq templates [SME: 9561] |
- New protocol default as TLSv1.2 [SME: 10936] |
211 |
- Replace smtpd with qpsmtpd in smtp-auth-proxy [SME: 9554] |
New property TLSProtocolMin |
212 |
e-smith-pop3 |
Ciphers are now ordered with stronger first |
213 |
- Honor ConcurrencyLimit and ConcurrencyLimitPerIP prop for pop3 and pop3s |
|
214 |
[SME: 10271] |
Localisation |
215 |
e-smith-qmail |
|
216 |
- Add possibility to exclude users or members of other groups from group |
smeserver-locale |
217 |
email address [SME: 9523] |
- apply local 2022-07-21.patch [SME: 12117] |
218 |
qmail |
- apply local 2021-06-06.patch [SME: 11593] |
219 |
- added documentation [SME: 9705] |
- apply local 2021-05-12.patch [SME: 11593] |
220 |
- added binaries ipmetest et ipmeprint to help configuration |
- apply local 2021-01-09.patch [SME: 11310] |
221 |
- add moreip to avoid loop [SME: 9705] |
- apply local 2019-12-07.patch |
222 |
- patch from Scott Gifford |
|
223 |
- remove qmail-0.0.0.0.patch as it is included |
Mail Server |
224 |
- Consider literal <> as null sender [SME: 9884] |
|
225 |
qpsmtpd |
e-smith-email |
226 |
- Removed Message-Id validation, as it rejects MS account validation email [SME: 10139] |
- add quote around filename to .fetchids moving script [SME: 12131] |
227 |
- fix whitelist plugin to support helo with naughty rejecting at mail stage [SME: 10112] |
- move fetchids from /run and avoid its loss on reboot [SME: 12131] |
228 |
- Validate domains found in uribl with Data::Validate::Domain [SME: 9467] |
similar changes in contrib smesevrer-fetchmail |
229 |
- Use eval to fetch dkim policies, prevent fatal errors in case of DNS |
- fix typo in regex [SME: 11799] |
230 |
timeout [SME: 9480] |
- fix missing dot in regex for untainting [SME: 11799] |
231 |
- Remove karma rcpt handling (buggy and doesn't make a lot of sense) |
would delete any account named with the string before the dot |
232 |
[SME: 9462] |
- untainting string correctly [SME: 11716] |
233 |
qpsmtpd-plugins |
- fix typo for mailpattern for rar files [SME: 11690] |
234 |
- remove whitelit_soft [SME: 10126] |
- fix perms for /var/lock/fetchmail [SME: 11634] |
235 |
smeserver-dovecot |
- make /var/lock/fetchmail dir permanent [SME: 11634] |
236 |
- Better default cipher suite, and honor global suite [SME: 10110] |
- add new RAR file signatures to default mailpatterns database [SME: 11265] |
237 |
smeserver-qpsmtpd |
- webmail is only SSL [SME: 11443] |
238 |
- Turn DMARC reporting off by default [SME: 10303] |
- create -update event [SME: 11133] |
239 |
- update patch smeserver-qpsmtpd-2.6.0-smtpd_to_qpsmtpd.patch [SME: 9478] |
- move smtp-auth-proxy to systemd [SME: 11102] |
240 |
- Greeting property was still attached to smtpd in a template |
- allow creation of pseudonyms with setting of local only [SME: 3802] |
241 |
- updated regex for RBL and SBL in smeserver-qpsmtpd-2.6.0-change_rbl_sbl_list_separator.patch |
|
242 |
- to take into account list using a subdomain [SME: 10123] |
e-smith-qmail |
243 |
- Eliminated rpmbuild "bogus date" warnings due to inconsistent weekday, |
- fix multiple errors with pseudonyms in template [SME: 8591] |
244 |
- Turn SPF and DMARC rejects off by default [SME: 9664] |
orphaned pseudonyms are associated to admin |
245 |
- Fix disabling DMARC reporting [SME: 9206] |
- repopulate qmail assign db and sighup qmail on group event [SME: 11934] |
246 |
- Add missing tnef2mime and MaximumDateOffset to qpsmtpd [SME: 9560] |
- can set to 0 ConcurrencyLocal or ConcurrencyRemote [SME: 11645] |
247 |
smeserver-spamassassin |
this allows to disable of type of delivery |
248 |
- Rewrite spamd run script to add support for --allow-tell [SME: 10137] |
- add Requires=runit.service [SME: 11245] |
249 |
|
- fix missing actions for systemd on upgrade event [SME: 11105] |
250 |
Server manager |
cleanup preset file |
251 |
|
- remove qmail link in init.d and whole rc.d [SME: 11105] |
252 |
e-smith-manager |
take 3 |
253 |
- add a panel to ease reporting bugs [SME: 8783] |
- remove qmail link in init.d [SME: 11105] |
254 |
- Original work from Mats Schuh m.schuh@neckargeo.net |
- execute systemd-reload before service adjust in events [SME: 11228] |
255 |
- fix warning uninitialized value in lc [SME: 10209] |
- remove S95reset-unsavedflag [SME: 11229] |
256 |
- fix typo in e-smith-manager-2.8.0-bz10167-emptyback.patch |
- remove rc7.d link [SME: 11105] |
257 |
- avoid internal server error if empty back parameter [SME: 10167] |
- fix actions in e-smith-qmail-update [SME: 11152] |
258 |
- return user friendly message |
- Move qmail service to systemd [SME: 11105] |
259 |
- fix too short timeout in server-manager [SME: 9921] |
- Create e-smith-qmail-update event [SME: 11152] |
260 |
- now 30 min as default instead of 5 |
|
261 |
- possibility to change this and adapt the default 0.66 of timeout remaining to reset it |
qpsmtpd |
262 |
- by default only a session cookie, can activate persistent cookie |
- fix fetchmail patch to check local_ip [SME: 11763] |
263 |
- sha256 as encryption. |
- fix configuration not honoured on initial start [SME: 10387] |
264 |
- fix bad redirection parameter that might reveal session information to remote site [SME: 9924] |
commented out load_plugins see https://github.com/smtpd/qpsmtpd/issues/288. |
265 |
- added missing template-begin for tkt.css [SME: 9676] |
|
266 |
- Update server-manager to Koozali branding [SME: 9676] |
smeserver-clamav |
267 |
- We thanks John Crisp for his wonderful work. |
- logrotate clamd keeps logging to old log [SME: 11963] |
268 |
- change link for donation to koozali.org [SME: 9599] |
- remove default property ArchiveBlockEncrypted [SME: 11695] |
269 |
- Fix syntax for removing Indexes options [SME: 9587] |
- fix property name error 2.7.0-12.sme [SME: 11695] |
270 |
- Remove index option for manager's resources [SME: 9587] |
- fix spec file error 2.7.0-11.sme [SME: 11474] |
271 |
- fix 307 redirection to http when https is used [SME: 8825] [SME: 9583] |
- rename property ArchiveBlockEncrypted to AlertEncrypted as per upstream [SME: 11695] |
272 |
- update syntaxe for TKT Auth |
added properties AlertBrokenExecutables AlertExceedsMax AlertOLE2Macros |
273 |
- bump 8 for typo |
AlertPartitionIntersection AlertPhishingCloak and AlertPhishingSSLMismatch |
274 |
- Fix a syntax error in server-manager's logout script [SME: 9527] |
with default no |
275 |
e-smith-starterwebsite |
added property HeuristicAlerts with default yes |
276 |
- fix can't chownfile index file [SME: 9900] |
- fix noise on centos2sme [SME: 11474] |
277 |
perl-CGI-FormMagick |
- identify from which server is freshclam error [SME: 11755] |
278 |
- fix uninitialized value $what_to_make in lc [SME: 10210] |
fix from Graeme Fleming |
279 |
php |
- fix typo in logrotate [SME: 11608] |
280 |
- bz2: fix improper error handling in bzread() CVE-2016-5399 |
- fix typo and missing +x [SME: 11520] |
281 |
- gd: fix integer overflow in _gd2GetHeader() resulting in |
- fix issues with non epel standard scan.conf [SME: 11520] |
282 |
heap overflow CVE-2016-5766 |
move clamd.conf to scan.conf |
283 |
- gd: fix integer overflow in gdImagePaletteToTrueColor() |
remove alias for clamtop |
284 |
resulting in heap overflow CVE-2016-5767 |
add a wrapper for clamdscan to force --fdpass |
285 |
- mbstring: fix double free in _php_mb_regex_ereg_replace_exec |
- ease use of clamdtop [SME: 11313] |
286 |
CVE-2016-5768 |
- fix Transaction check error [SME: 11311] |
287 |
- don't set environmental variable based on user supplied Proxy |
- add pid folder /run/clamd/ [SME: 11103] |
288 |
request header CVE-2016-5385 |
few improvements |
289 |
- fix segmentation fault in header_register_callback #1344578 |
- create update event [SME: 11162] |
290 |
- curl: add options to enable TLS #1291667 |
- Updated to use 0.103+ from EPEL [SME: 11194] |
291 |
- mysqli: fix segfault in mysqli_stmt::bind_result() when |
- Updated to use systemd for clamd [SME: 11103] |
292 |
link is closed #1096800 |
- Updated to use systemd for freshclam [SME: 11104] |
293 |
- fpm: fix incorrectly defined SCRIPT_NAME variable when |
- increase lower memory limit to 1GB [SME: 10833] |
294 |
using Apache #1138563 |
- fix for AllowSupplementaryGroups warning [SME: 10813] |
295 |
- core: fix segfault when a zend_extension is loaded twice #1289457 |
|
296 |
- openssl: change default_md algo from MD5 to SHA1 #1073388 |
smeserver-qpsmtpd |
297 |
- wddx: fix segfault in php_wddx_serialize_var #1131979 |
- Print both 255 char and full length DKIM keys [SME: 11974] |
298 |
- session: fix segfault in session with rfc1867 #1297179 |
- fix unable to set internal only pseudonym as full email [SME: 11933] |
299 |
|
- add softlimit template for qpsmtpd [SME: 11858] |
300 |
Webmail and Groupware |
increase softlimit to 50000000. |
301 |
|
- fix regression Set the default helo policy to lenient [SME: 11864] |
302 |
|
- mail sent on 127.0.0.200:25 should be spam checked [SME: 10289] |
303 |
Web Server |
filtering again fetchmail originating mails |
304 |
|
- sighup on reload [SME: 11759] |
305 |
e-smith-php |
- fix tnef2mime FATAL PLUGIN ERROR [SME: 11648] |
306 |
- clean daily session and tmp folders [SME: 9626] |
this will be a temp fix by redefining MIME::Parser::Filer::output_path |
307 |
- updated path for ibays' session and tmp folders to /var/cache |
until it has been fixed upstream |
308 |
- add tmp folder to ibays [SME: 7011] |
- update depreacted reject_threshold to reject [SME: 11492] |
309 |
- add session folder to ibays [SME: 9620] |
- remove /usr/lib/systemd/system-preset/80-koozali-qpsmtpd.preset [SME: 10958] |
310 |
- change global session folder from /tmp to /var/lib/php/session/ [SME: 139] |
- modify for clamav 0.103.0 [SME: 11210] |
311 |
|
- roll up patches |
312 |
Other fixes and updates |
- add Requires=runit.service (qpsmtpd & sqpsmtpd) [SME: 11245] |
313 |
|
- fix service not enabled [SME: 11107] |
314 |
e-smith-base |
remove reset-unsavedflag |
315 |
- Expand route-bond0 when nic bonding is enabled [SME: 10272] |
- Move qpsmtpd & sqpsmtpd services to systemd [SME: 11107] |
316 |
- improve regex to catch local [SME: 9724] |
- Create smeserver-qpsmtpd-update event [SME: 11164] |
317 |
- change smtpd to qpsmtpd for default service access [SME: 9478] |
- expand badrcptto_ext when needed [SME: 10638] |
318 |
- add translation links for manager to most language variations we support [SME: 11121] |
this avoid user, group or pseudonyms for internal purpose to be reachable |
319 |
- prevent restoration from being called on regular and post-upgrade reboot [SME: 9550] |
from outside |
320 |
- console restoration can be launched again from console |
- minimum Protocol TLSv1.0 [SME: 10460] |
321 |
- Use ip route syntax to define routes to local network [SME: 10083] |
better ciphers order. |
322 |
- Allow /32 masks on the external interface, in which case we don't |
|
323 |
check if the gateway is on the correct network) [SME: 9610] |
Server manager |
324 |
- fix config db locale property [SME: 9724] |
|
325 |
- adapt e-smith service command to systemd [SME: 9672] |
e-smith-manager |
326 |
- add systemd skip redirect to e-smith-service [SME: 9688] |
- update to httpd 2.4 access syntax for httpd-admin [SME: 12129] |
327 |
- fix broken link /etc/init.d/supervise/local link [SME: 9687] |
- update to httpd 2.4 access syntax [SME: 12129] |
328 |
- fix mysqld to mariadb [SME: 9438] |
- removing reference to old log rotation action [SME: 11872] |
329 |
- fix missing path to chkconfig [SME: 9641] |
- take 2 wrong system mode reported in bugreport [SME: 10448] |
330 |
- Fix deprecated syntax '*' in rsyslog [SME: 9398] |
- fix wrong system mode reported in bugreport [SME: 10448] |
331 |
- Added e-smith-base-5.8.0.bz9398.DeprecatedRsyslogSyntax.patch |
- create -update event [SME: 11144] |
332 |
- Set the hostname by hostnamectl [SME: 9631] |
- migrate httpd-admin to systemd [SME: 11110] |
333 |
- Stefano Zamboni <zamboni@mind-at-work.it> |
- removing hardcoded ports [SME: 10967] |
334 |
- fix Lang and keyboard layout configured are not used [SME: 9539] |
- Add a FollowSymlinks for user-password in password/cgi-bin (perl-suid) [SME: 9677] |
335 |
- Fix display of email forward fields since smtpd entry has been merged |
- update apache icon path [SME: 9591] |
336 |
qpsmtpd [SME: 9552] |
- add message to indicate EOL after Jun 30 2024 fix [SME: 10170] |
337 |
e-smith-devtools |
e-smith-viewlogfiles |
338 |
- added grub2 directories to ignore list [SME: 10325] |
perl-CGI-FormMagick |
339 |
- Quote filenames in genfilelist so filenames containing spaces are correctly |
|
340 |
handled [SME: 9750] |
Webmail and Groupware |
341 |
e-smith-grub |
|
342 |
- rebuild for file ownership conflict [SME: 10325] |
smeserver-horde |
343 |
- fix edition and consol grub terminal not visible because of koozali logo [SME: 9728] |
- fix invalid domain if ForcePrimaryDomain is enabled [SME: 11980] |
344 |
- enable quota for groups and users with XFS [SME: 10211] |
- fix $ldapServer is commented out if Horde ForcePrimaryDomain is disabled [SME: 11981] |
345 |
- Koozali grub splash screen |
- use httpd 2.4 access control syntax [SME: 11945] |
346 |
- Write the full path for the grub Action [SME: 9668] |
- fix previous patch error extra line [SME: 11694] |
347 |
- Added e-smith-grub-2.6.1.bz9668.AddFullPath2GrubAction.patch |
- fix alarm noise when disabled [SME: 11694] |
348 |
- New source [SME: 9321] |
- Syntax error, unexpected '(T_STRING), expecting ')' [SME: 11738] |
349 |
- Adaptation to grub2 [SME: 9321] |
- thanks to zsolt vasarhelyi for patch test |
350 |
e-smith-hosts |
- Ingo filters TLS error if sieve is enabled [SME: 11628] |
351 |
- remove reference to smtpd [SME: 9478] |
- fix missing call to perl module emsith::php [SME: 11489] |
352 |
- fix servicename syslog to rsylog [SME: 9691] |
- clean rsyslog syntax for horde [SME: 11422] |
353 |
- Eliminated rpmbuild "bogus date" warnings due to inconsistent weekday, |
- improved php basedir, with filtering of noise for gpg [SME: 10945] |
354 |
by assuming the date is correct and changing the weekday. |
- force SSL for horde [SME: 11443] |
355 |
- fix mysqld to mariadb [SME: 9438] |
- fix horde not honoring switch to php-fpm 5.4 [SME: 11433] |
356 |
e-smith-ibays |
- update mail settings for the php-pool [SME: 11431] |
357 |
- fix typo thanks to Stephane de Labrusse [SME: 7011] |
- spamd SpamLearning property migrated to spamassassin SpamLearning [SME: 11376] |
358 |
- ibay to ibays |
- Configuration is not up to date, hash to update [SME: 11308] |
359 |
- as per comment 2 of bug 0600 instead of 0700 for perms [SME: 9621] |
- fix wrong template path for php55, php56 and php [SME: 11255] |
360 |
- as discussed, moving cache and tmp out of ibay folder [SME: 9105] [SME: 9621] |
- fix webmail not accessible after enabling from manager [SME: 11233] |
361 |
- creating basedir /var/cache/e-smith/files/ibays for tmp and cache |
- update rsyslog syntax [SME: 11016] |
362 |
- create tmp folder in ibays when needed [SME: 9105] |
move fragment so syntax is similar to message |
363 |
- create session folder in ibays when needed [SME: 9621] |
- remove harcoded ports [SME: 10969] |
364 |
- Eliminated rpmbuild "bogus date" warnings due to inconsistent weekday, |
- add gpg to php base dir [SME: 10945] |
365 |
e-smith-lib |
- workaround logging noise caused by libsasl [SME: 10943] |
366 |
- remove reference to smtpd in configuration.conf [SME: 9478] |
- log as admin and not admin@domain for cli tasks [SME: 10910] |
367 |
- fix console startup display [SME: 9352] |
- fix ingo imap preferences [SME: 10912] |
368 |
- fix service name syslog to rsyslog [SME: 9691] |
- allow httpd-auth for calendar, tasks access using rpc.php ... [SME: 10908] |
369 |
- fix mysqld to mariadb [SME: 9438] |
- add smeserver-horde-update event [SME: 10909] |
370 |
- Eliminated rpmbuild "bogus date" warnings due to inconsistent weekday, |
- avoid loss of user parameter on Primary Domain change [SME: 1005] |
371 |
- fix esmith::util::serviceControl to manage systemd service [SME: 9660] |
this will also avoid the loss of parameter if we log with a different virtualhost |
372 |
- Added e-smith-lib-2.6.0.bz9660.serviceControlSystemd.patch |
horde preference is now stored with the SME username without @domain |
373 |
e-smith-mysql |
- fix bad regex to strip domain [SME: 10224] |
374 |
- systemd skip redirect [SME: 9688] |
also we can now force Primary domain to use as default email |
375 |
- Corrected a typo in e-smith-mysql-2.6.0.bz9671.RemoveDummyMysqlDatabase.patch |
we can strip heading string from virtualhost domain to create email |
376 |
- [SME: 9671] |
default identity email will update as long as no other identity is created for the user |
377 |
- fix broken link /etc/init.d/supervise/mariadb [SME: 9686] |
- fix typo in php-fpm patch [SME: 10872] |
378 |
- Remove Dummy database from backup and restoration [SME: 9671] |
- remove php3 references [SME: 10866] |
379 |
- Added e-smith-mysql-2.6.0.bz9671.RemoveDummyMysqlDatabase.patch |
- remove strict and warning alert from error log [SME: 10823] |
380 |
- fix forgotten mysqld variables in various scripts [SME: 9438] |
- dedicated php-fpm pool for horde [SME: 10872] |
381 |
- e-smith-mysql-2.6.0-mariadb_forgotten_var.patch |
- apply patches from John H. Bennett III [SME: 10717] |
382 |
e-smith-ntp |
- cvs admin -ko on patch1 |
383 |
- fix wrong link to restart rsyslog [SME: 9690] |
|
384 |
e-smith-proxy |
Web Server |
385 |
- fix disabling smtp proxy via SM doesn't work [SME: 9639] |
|
386 |
- redirect squid syslog messages to /var/log/squid/squid.log [SME: 79] |
e-smith-apache |
387 |
- Allow custom file descriptor limit, and set default to 4096 [SME: 9912] |
- reverting last change [SME: 9375] |
388 |
e-smith-quota |
- add conflict on older ibays, php, horde, proxy, manager rpms |
389 |
- enable quota for groups and users with XFS [SME: 10211] |
- removing mod_access_compat [SME: 9375] |
390 |
e-smith-runit |
- convert httpd 2.2 allow,deny to Require for 2.4 [SME: 9375] |
391 |
- add systemd skip redirect [SME: 9688] |
- use maxsize, not size [SME: 11867] |
392 |
e-smith-test |
- use logrotate.d instead of event action [SME: 11867] |
393 |
- remove reference to smtpd [SME: 9478] |
use size to force log rotate before normal delay |
394 |
- fix servicename syslog to rsyslog [SME: 9691] |
- add modules ldap authnz_ldap and proxy_wstunnel [SME: 11760] |
395 |
- fix mysqld to mariadb [SME: 9438] |
previously provided by webapps-common |
396 |
initscripts |
- fix httpd-e-smith failing to start on reboot in private server-gateway mode [SME: 11596] |
397 |
- use DBUS calls directly instead of calling nmcli (bug #1422820) |
- add possibility to force https on LAN only [SME: 11511] |
398 |
- rhel-import-state: fix broken order of parameters |
usefull for VPN over port 443 |
399 |
- import-state: copy just some attributes |
- prevent httpd to fail if modSSL defined certs does not exist [SME: 10826] |
400 |
- functions: systemctl show now returns an error when unit does not exist |
default on self generated cert |
401 |
- import-state: restore also sensitivity part of SELinux context |
- create-update event [SME: 11123] |
402 |
- network: run after network-pre.target |
- move httpd-e-smith to systemd [SME: 11111] |
403 |
- ifup-eth: fix setting preferred_lft and valid_lft |
changed sigusr1 used in events to reload as defined in the unit file |
404 |
- ipv6: wait for all global IPv6 addresses to leave the "tentative" state |
- give a logger to httpd-e-smith : journald [SME: 1416] |
405 |
- source_config: tell NetworkManger to load ifcfg file even for NM_CONTROLLED=no |
- set default SSLStrictSNIVHostCheck to off [SME: 8693] |
406 |
- ifup-aliases: inherit ARPCHECK from parent device |
- add SNI support for individual certificates per VirtualHosts [SME: 8693] |
407 |
- rhel-dmesg: don't start in containers |
- port 80 and 443 should not be hardcoded [SME: 9192] |
408 |
- ifup-eth: fix typo in error message (#1038776) |
- e-smith-apache removing hardcoded ports [SME: 10966] |
409 |
- sysctl.conf: steal comments about /usr,/etc,... from fedora's sysctl.conf |
- remove php3 and php4 refs [SME: 10867] |
410 |
- rwtab: /var/lib/nfs needs to copy the files |
- disable TLSv1 TLSv1.1 by default [SME: 10459] |
411 |
- functions: improve killing loops |
|
412 |
- ipcalc: detect invalid mask |
Other fixes and updates |
413 |
- ifup: set valid_lft and preferred_lft to forever for static ip |
|
414 |
- service: use systemd mangle for given service |
bglibs |
415 |
- ifup-post: check resolve.conf also with DNS2 |
- initial build for SME10 [SME: 11883] |
416 |
- ifdown-post: remove resolv.conf only in specific cases |
patched selftests.sh to avoid net/resolve_ipv4addr.c test which fails under mock |
417 |
- spec: ghost /var/log/dmesg |
added BuildRequires glibc glibc-static glibc-devel mtools autoconf |
418 |
- network-functions: is_available_wait should wait even in the case that is_available returns 2 |
commented out files for devel /usr/local/bglibs/lib/*.lib and /usr/local/bglibs/lib/*/*.a |
419 |
- autorelabel: turn quota off before relabeling |
as they fails. |
420 |
- autorelabel: call dracut-initramfs-restore before forced reboot |
|
421 |
mod_auth_tkt |
cvm |
422 |
- fix redirection when proxy ssl [SME: 8825] [SME: 9583] |
- build cvm 0.97 for SME10 [SME: 11315] |
423 |
smeserver-release |
|
424 |
- Bump new rpm for sme10 alpha2 |
e-smith-LPRng |
425 |
- Eliminated rpmbuild "bogus date" warnings due to inconsistent weekday, |
- untainting port cleanly [SME: 12106] |
426 |
smeserver-support |
- remove /usr/lib/systemd/system-preset/80-koozali-LPRng.preset [SME: 10958] |
427 |
- exclude samba from centos repo as we have our own with DC support [SME: 10155] |
- Add 'Requires:runit.service' [SME: 11245] |
428 |
- improving link to donation [SME: 9598] |
- Add a fragment for lpd in 49-koozali.preset [SME: 11006] |
429 |
- fix hover color [SME: 9676] |
- Remove init.d/supervise/lpd link [SME: 11006] |
430 |
- Koozali branding of manager [SME: 9676] |
- keep runit service for systemd [SME: 11006] |
431 |
- new images in archive; removed old images from cvs |
- fix update event name [SME: 11007] |
432 |
- updated some css smeserver-support-2.8.0-koozali_manager.patch |
- from service to systemd [SME: 11006] |
433 |
- reverting partly the changes in last patch [SME: 9598] |
- add lpd-update event [SME: 11007] |
434 |
- wrong catch of proxy related url with the http to https changes |
|
435 |
- thank to Charlie Brady for reporting |
e-smith-base |
436 |
- Eliminated rpmbuild "bogus date" warnings due to inconsistent weekday, |
- no new self signed cert when adding/removing non self hosts [SME: 12130] |
437 |
- update links to koozali.org [SME: 9598] |
- fix /dev/log not being recreated [SME: 12073] |
438 |
- Template of os-release [SME: 9580] |
- add rsshusers group to ldap and update it [SME: 11956] |
439 |
smeserver-yum |
- fix symlinks preventing log rotation [SME: 11950] |
440 |
- add rpmfusion free el7 RPM GPG KEY [SME: 10263] |
- remove immark module to reduce messages log activity [SME: 11813] |
441 |
- avoid reboot for smeserver-locale upgrade [SME: 8705] |
- fix logs not rotated before 100M (size maxsize) [SME: 10484] |
442 |
- code by stefano zamboni <zamboni@mind-at-work.it> |
- reduce systemd noise in messages [SME: 11813] |
443 |
- correct service names with plugin to avoid reboot [SME: 8705] |
- fix dhcp address not propagated [SME: 11930] |
444 |
- code by stefano zamboni <zamboni@mind-at-work.it> |
- make rsyslog listen journald which listen /dev/log [SME: 11813] |
445 |
- fix KeyError with plugin to avoid reboot [SME: 8705] |
template for /etc/systemd/journald.conf |
446 |
- code by stefano zamboni <zamboni@mind-at-work.it> |
- properly configure /etc/logrotate.conf [SME: 10484] |
447 |
- remove centos contrib repo [SME: 10156] |
template for /etc/logrotate.conf |
448 |
- added centos SCLo SIG gpg rpm signing key [SME: 10119] |
use of size to limit max size of file and rotate earlier |
449 |
- will allow to install SCL packages directly from smecontribs |
- drop e-smith logrotate actions creating dangling links [SME: 946] |
450 |
- Added smeserver-yum-2.6.0.bz8705.avoidReboot.patch [SME: 8705] |
- make journald log permanent by creating /var/log/journal [SME: 11795] |
451 |
- code by stefano zamboni <zamboni@mind-at-work.it> |
- allow group-modify-unix on update event [SME: 11766] |
452 |
- Avoid to reboot after the installation of a smeserver-* package |
- fix typo in last patch [SME: 11722] |
453 |
- add Remi Collet RPM GPG KEY [SME: 9903] |
- add support for systemd service with instance service@instance.service [SME: 11722] |
454 |
- Rpm updates can be downloaded during the night [SME: 1502] |
- add local domains in self signed cert alt subjects [SME: 11624] |
455 |
- Added smeserver-yum-2.6.0.bz1502.DownloadOnly.patch |
add local hosts in self signed cert alt subjects |
456 |
- Deltarpm is now a setting in the yum panel (disabled by default) |
modSSL property to disable hosts domains addition : AddDomains AddHosts |
457 |
- Added smeserver-yum-2.6.0.bz8834.DeltaRpm.patch [SME: 8834] |
default is enabled when empty |
458 |
|
- fix missing export [SME: 11620] |
459 |
On behalf of the Koozali SME Server development team |
- fix issue with adding new user to the ldap db [SME: 11607] |
460 |
|
- always renew self signed certificate [SME: 11552] |
461 |
|
update key / crt if not signed with the right key size |
462 |
|
default to self signed if custom cert and key are not files or not rigth type |
463 |
|
add perl module to help handle certificates and keys |
464 |
|
TODO: check if both key and cert are related, if not default to self signed |
465 |
|
- fix openssl.conf not generated when openldap field are empty [SME: 11569] |
466 |
|
- fix missing path to systemctl for add-wants [SME: 11537] |
467 |
|
- merge dhcpdmanager custom template fragments with core [SME: 10657] |
468 |
|
- remove templates-custom previously owned by a contrib [SME: 11508] |
469 |
|
they got migrated as part as normal backup restore |
470 |
|
- fix masq failing on initial boot [SME: 11479] |
471 |
|
- removing weekly cron for ddns update, targeted script has been removed [SME: 11470] |
472 |
|
- revert e-smith-service file [SME: 9692] |
473 |
|
- add systemctl wrapper [SME: 11345] |
474 |
|
- clean rsyslog syntax for dhcpd [SME: 11422] |
475 |
|
- cleanup /etc/rc.d and /var/service [SME: 9692] |
476 |
|
- remove klogd references [SME: 11363] |
477 |
|
- restore part of pptp code and move to generik vpn entry [SME: 11374] |
478 |
|
- drop dyndns core support [SME: 11415] |
479 |
|
- fix enabled service not started on reboot [SME: 11355] |
480 |
|
unless a power outage, as long as you reboot, halt or shutdown systemd will |
481 |
|
be in sync |
482 |
|
- fix console::startup run twice [SME: 11358 ] |
483 |
|
- improve run order in systemd-default [SME: 11356] |
484 |
|
- fix uninitialized value during post-install [SME: 11350] |
485 |
|
- fix user with rssh shell need to be member of rsshusers group [SME: 9155] |
486 |
|
- add missing /sbin/e-smith/bootstrap-runlevel7 [SME: 11318] |
487 |
|
- fix typo for isolate [SME: 11246] |
488 |
|
- separate bootstrap-console from run level service launch [SME: 11318] |
489 |
|
- only run isolate if sme-server.target is not active [SME: 11246] |
490 |
|
- update system-preset usr/lib file [SME: 10958] |
491 |
|
- fix loss of httpd basic auth [SME: 11309] |
492 |
|
- fix services starting when they are in Wants= for sme-server.target and preset disabled [SME: 11247] |
493 |
|
- rewrite of manageRAID.pl and add_drive_to_raid for SME10 [SME: 10918] |
494 |
|
- added gdisk as a dependency to support GPT systems |
495 |
|
- fix modSSL key crt and keychain files really exist [SME: 11252] |
496 |
|
- add ldap.init as exception for preset |
497 |
|
- fix init-accounts [SME: 9642] |
498 |
|
- validate modSSL key crt and keychain files really exist [SME: 11252] |
499 |
|
if not we use self generated |
500 |
|
- drop pptpd support [SME: 11250] |
501 |
|
- add bash-completion [SME: 11244] |
502 |
|
- improve local service to systemd [SME: 11119] |
503 |
|
now run rc.local file as part of the event |
504 |
|
|
505 |
|
e-smith-cvm-unix-local |
506 |
|
- fix error compressing log still in use by delaying it [SME: 11968] |
507 |
|
- reverting to release 7 state [SME: 11885] |
508 |
|
- Add yum action to restart post install [SME: 11885] |
509 |
|
- bump requirement for cvm [SME: 11885] |
510 |
|
removing daemontools requirement |
511 |
|
- expand rsyslog.conf [SME: 11807] |
512 |
|
- redirect and rotate log for cvm-unix [SME: 11807] |
513 |
|
fix cvm-pre script permission |
514 |
|
- fix service stopping restarting on crash [SME: 11792] |
515 |
|
- fix typo [SME: 11314] |
516 |
|
- migrate to systemd [SME: 11314] |
517 |
|
- add update event [SME: 11125] |
518 |
|
|
519 |
|
e-smith-devtools |
520 |
|
- remove duplication with Dar backup [SME: 11993] |
521 |
|
- ease backup include and exclude of contribs [SME: 11993] |
522 |
|
- netlogon.bat +x [SME: 11566] |
523 |
|
- add update event [SME: 11126] |
524 |
|
|
525 |
|
e-smith-ibays |
526 |
|
- add missing elements to e-smith-ibays-update event to activate changes [SME: 11774] |
527 |
|
- fix AH01797: client denied by server conf [SME: 11774] |
528 |
|
use new require syntax for httpd 2.4 |
529 |
|
- fix patch for SSLRequireSSL [SME: 8150] |
530 |
|
- force https if auth or dav are enabled [SME: 11407] |
531 |
|
- merge SSL and SSLRequireSSL properties [SME: 8150] |
532 |
|
now SSLRequireSSL will force SSL to the html ibay directory and redirect to https |
533 |
|
- update php properties and folders [SME: 11412] |
534 |
|
- remove last bit of atalk [SME: 668] |
535 |
|
- add update event [SME: 11139] |
536 |
|
- remove hardcoded ports [SME: 10968] |
537 |
|
- remove php3 reference [SME: 10869] |
538 |
|
- fix apache failing if ibay has dynamic content enabled and phpmodule is disabled [SME: 10871] |
539 |
|
- revert patch, wrong rpm [SME: 10871] |
540 |
|
- add support for php-fpm [SME: 10871] |
541 |
|
|
542 |
|
e-smith-lib-compspec |
543 |
|
- fix last dot erased on completion [SME: 11368] |
544 |
|
- error on incorect cmd input [SME: 4661] |
545 |
|
- allow easy access to templates.metadata to expand desired files [SME: 11312] |
546 |
|
- add update event [SME: 11142] |
547 |
|
|
548 |
|
e-smith-ntp |
549 |
|
- dedicated log and logrotate [SME: 12115] |
550 |
|
thanks to bunkobugsy for this patch |
551 |
|
- untainting fields [SME: 12107] |
552 |
|
- fix ntpd crashing with panic_stop [SME: 11298] |
553 |
|
- update override.conf to 50koozali.conf [SME: 11008] |
554 |
|
- adding missing folder /usr/lib/systemd/system/ntpd.service.d [SME: 11008] |
555 |
|
- fix typo in path for new driftfile [SME: 8881] |
556 |
|
- fix systemd-preset fragment [SME: 11008] |
557 |
|
add +x to ExecStartPRe script |
558 |
|
- improve systemd integration [SME: 11008] |
559 |
|
- change driftfile path [SME: 8881] |
560 |
|
- from service to systemd [SME: 11008] |
561 |
|
- add ntpd-update event [SME: 11009] |
562 |
|
- revert last change [SME: 10190] |
563 |
|
on sme10 systemd has ntpd disabled by default |
564 |
|
- revert last change [SME: 10190] |
565 |
|
on sme10 systemd has ntpd disabled by default |
566 |
|
|
567 |
|
e-smith-nutUPS |
568 |
|
- Misspelling in /usr/lib/systemd/system/nut.service file [SME: 11633] |
569 |
|
- fix start ordering nut.service [SME: 11488] |
570 |
|
- fix ExecStartPre path for /usr/lib/tmpfiles.d/nut-run.conf [SME: 11488] |
571 |
|
- fix ExecStartPre path for nut.service [SME: 11488] |
572 |
|
- fix template path for monitor [SME: 9423] |
573 |
|
- Fix preset line endings in 49-koozali.preset [SME: 11215] |
574 |
|
- add update event to avoid reboot [SME: 11146] |
575 |
|
- adapt nut UPS for systemd [SME: 9423] |
576 |
|
|
577 |
|
e-smith-packetfilter |
578 |
|
- restrict VPN networks to their interface [SME: 11640] |
579 |
|
remove remoteVPNSubnet property added VPNif property |
580 |
|
- fix dropin file not expanded on initial installation [SME: 11528] |
581 |
|
- fix noise on logrotate, doing a restart instead of reload [SME: 11451] |
582 |
|
- move ulogd to systemd [SME: 11426] |
583 |
|
- require ulogd 2 [SME: 11426] |
584 |
|
- remove pptpd last references [SME: 11420] |
585 |
|
- remove /usr/lib/systemd/system-preset/80-koozali-packetfilter.preset [SME: 10958] |
586 |
|
- drop pptpd support [SME: 11251] |
587 |
|
- launch masq using systemd unit [SME: 11089] |
588 |
|
- create event to avoid reboot on update [SME: 11122] |
589 |
|
|
590 |
|
e-smith-proxy |
591 |
|
- use httpd 2.4 access control syntax [SME: 11944] |
592 |
|
- fix squid starting before network [SME: 11713] |
593 |
|
also dropin file not expanded on install fixed |
594 |
|
- cleanup in /etc/rc.d and /var/service/squid [SME: 9692] |
595 |
|
|
596 |
|
e-smith-radiusd |
597 |
|
- redirect daemon log to its own file [SME: 11947] |
598 |
|
- workaround upstream missing definition of /var/run/radiusd/tmp [SME: 11859] |
599 |
|
- fix startup informational message Duplicate Auth-Type 'REJECT' [SME: 11736] |
600 |
|
- patch was blank, populate and apply [SME: 11736] |
601 |
|
- fix startup informational message Duplicate Auth-Type 'REJECT' [SME: 11736] |
602 |
|
- add db property PAP-auth [SME: 11735] |
603 |
|
- add/fix PAP-auth patch [SME: 11735] |
604 |
|
- fix WAP-auth patch [SME: 11718] |
605 |
|
- fix LDAP-auth patch [SME: 11719] |
606 |
|
- fix ssl template metadata patch [SME: 11680] |
607 |
|
- remove services2adjust in bootstrap-console-save event, this put systemd in a loop [SME: 11602] |
608 |
|
- ssl pem using template in place of copy [SME: 11602] |
609 |
|
- radiusd needs ldap started before [SME: 11302] |
610 |
|
- add Restart=always [SME: 11113] |
611 |
|
change group of pem file to radiusd |
612 |
|
- create -update event [SME: 11155] |
613 |
|
- move radiusd to systemd {SME: 11113] |
614 |
|
remove noise from spec file |
615 |
|
- fix server restartting with virtual_server error [SME: 10853] |
616 |
|
|
617 |
|
smeserver-audittools |
618 |
|
- display yum repo as seen by yum and db [SME: 10880] |
619 |
|
- add remi-safe in list of newrpms [SME: 11932] |
620 |
|
- fix temp event displayed by events audittool [SME: 11674] |
621 |
|
- fix links to different rpm rported as modified [SME: 11673] |
622 |
|
- add update event [SME: 11161] |
623 |
|
|
624 |
|
smeserver-yum |
625 |
|
- bump version number |
626 |
|
- no reboot for dbus-glib [SME: 12091] |
627 |
|
- rephrase contrib update message [SME: 11543] |
628 |
|
- move mysqld to mariadb in smeserver plugin [SME: 11921] |
629 |
|
- remove force AutoInstallUpdates to disabled [SME: 11961] |
630 |
|
- fix rotate yum.log as not standard location [SME: 11951] |
631 |
|
- remove yum_update_dbs from messages log [SME: 11952] |
632 |
|
- restart cvm-unix on cvm or bglibs update [SME: 11886] |
633 |
|
- remove pop3 and pop3s services from plugin [SME: 11808] |
634 |
|
- fix restarting spamd instead of spamassassin [SME: 11803] |
635 |
|
- Re-word-reboot-required-message.patch [SME: 11790] |
636 |
|
- fix wrong qpsmtpd handling [SME: 11768] |
637 |
|
- add elrepo GPG key [SME: 11625] |
638 |
|
- no reboot needed for systemd-python [SME: 11609] |
639 |
|
- fix services stop on removal [SME: 11510] |
640 |
|
- run navigation-conf when a panel is installed [SME: 11507] |
641 |
|
- migrate back to normal CentOS mirrors after el6 EOL [SME: 11477] |
642 |
|
- version 2 with |
643 |
|
deleting yum{eolversion} if for previous release or not yet eol |
644 |
|
better handling of conditions |
645 |
|
- avoid reboot on removal of smeserver-* rpms [SME: 11458] |
646 |
|
- navigation-conf when a panel is installed |
647 |
|
- fix wrong path for rsyslog.conf [SME: 11364] |
648 |
|
- remove noise in yum process "overriding all signals, forcing restart" [SME: 11372] |
649 |
|
- packages installed logged both in yum.log and message [SME: 11364] |
650 |
|
- set priority to 10 for remi-safe [SME: 11360] |
651 |
|
- fix poor handling of service adjusting and action order [SME: 11300] |
652 |
|
now a temp event is created |
653 |
|
also better logging, better handling of update vs removal |
654 |
|
- make yum dbs service fork [SME: 11243] |
655 |
|
now smeserver.py plugin call the service |
656 |
|
yum-modify can use the service restart |
657 |
|
yum.service is its own service, not called by local.service |
658 |
|
- move yum upate db service to systemd [SME: 11180] |
659 |
|
- fix -update events not runt on package upgrade [SME: 11184] |
660 |
|
lower noise on forced restart |
661 |
|
- fix switch to vault BaseURL for CentOS [SME: 11227] |
662 |
|
- add remi-safe as base repo [SME: 11179] |
663 |
|
- smeserver-yum-update event created [SME: 11168] |
664 |
|
- fix separate action before template, and after service [SME: 11175] |
665 |
|
run all actions with post-upgrade as default event |
666 |
|
- fix some templates not expanded [SME: 11121] |
667 |
|
- fix smeserver.py not executing action because of wrong path [SME: 11047] |
668 |
|
- fix error when key absent of a dict of smeserver plugin at clean stage [SME: 10931] |
669 |
|
- avoid missing template error after removal of a rpm [SME: 10846] |
670 |
|
- restart php-fpm services when needed [SME: 10873] |
671 |
|
- applying patch [SME: 10690] |
672 |
|
- fix NameError: global name 'yum_update_dbs' is not defined [SME: 6940] |
673 |
|
- use yum-cron with autoupdate feature [SME: 10690] |
674 |
|
|
675 |
|
The changelogs are written per package On behalf of the Koozali SME Server development team |
676 |
|
- Compilation of release data is thanks to scripts developed by |
677 |
|
Ian Wells and substantially improved by Jean Phillipe Pialasse |