/[smeserver]/cdrom.image/sme10/README.txt
ViewVC logotype

Diff of /cdrom.image/sme10/README.txt

Parent Directory Parent Directory | Revision Log Revision Log | View Revision Graph Revision Graph | View Patch Patch

Revision 1.2 by unnilennium, Wed May 31 17:36:06 2017 UTC Revision 1.10 by jpp, Mon Mar 22 04:57:48 2021 UTC
# Line 1  Line 1 
1  Koozali SME Server 10 Alpha 2 Release  Koozali SME Server 10 Release Candidate 1 Release Notes "Justine"
2  =====================================  ============================================
3    These are draft only and are in a constant state of update.
4  31 May 2017  
5    19 Mar 2021
6  The Koozali SME Server development team is pleased to announce the release of  
7  SME Server 10 Alpha 3 which will be the next major release of SME Server.  The Koozali SME Server development team is pleased to announce the
8    release of SME Server 10 RC 1 which will be the next major release of
9    SME Server. Code named "Justine"
10    
11  This release is based on CentOS 7. CentOS 7.# has an EOL of 30 June 2024.  This release is based on CentOS 7. CentOS 7.# has an EOL of 30 June 2024.
12    
13  ***************************  **********************************************************
14  Koozali SME Server users should not upgrade production servers to this release  Koozali SME Server users should not upgrade production servers to this
15  but those who can are encouraged to load the alpha to a dedicated test machine  release but those who can are encouraged to load the release to a
16  and take part in the testing phase.  dedicated test machine and take part in the testing phase.
17  ***************************  **********************************************************
18    
19  Some notes on Koozali SME Server 10 can be found at  Some notes on Koozali SME Server 10 can be found at
20  https://wiki.contribs.org/SME_Server_10.0_Development  https://wiki.contribs.org/SME_Server_10.0_Development
21    
22    SME10 Roadmap - RC 1
23    https://wiki.contribs.org/SME10_Roadmap#SME_10_RC_1
24    
25  Bug reports and reports of potential bugs should be raised in the bug  Bug reports and reports of potential bugs should be raised in the bug
26  tracker (and only there, please);  tracker (and only there, please);
27    
28      https://bugs.koozali.org/       https://bugs.koozali.org/
29    
30    Copy of releaase notes may be found here:
31    https://lists.contribs.org/pipermail/updatesannounce/2021-March/
32    
33  Download  Download
34  ========  ========
35  You can download SME Server 10 from  You can download SME Server 10 from
36  https://mirror.koozali.org/smeserver/releases/testing/10/  https://mirror.koozali.org/smeserver/releases/testing/10/
37  or for other methods see https://wiki.koozali.org/SME_Server:Download  or for other methods see:
38    https://wiki.koozali.org/SME_Server:Download
39    
40  Please note it may take up to 48 hours for mirrors to finish syncing,  Please note it may take up to 48 hours for mirrors to finish syncing,
41  during this time you may experience problems.  during this time you may experience problems.
# Line 46  meeting our expenses, such as hosting co Line 55  meeting our expenses, such as hosting co
55    
56  As such, we ask for a donation to offset costs and fund further development.  As such, we ask for a donation to offset costs and fund further development.
57    
58  a) If you are a school, a church, a non-profit organisation or an individual  a) If you are a school, a church, a non-profit organisation or an
59  using SME Server for private purposes, we would appreciate you to contribute  individual using SME Server for private purposes, we would appreciate
60  within your means toward the costs associated with hosting, maintenance and  you to contribute within your means toward the costs associated with
61  development.  hosting, maintenance and development.
62    
63  b) If you are a company or an integrator and you are deploying SME Server in  b) If you are a company or an integrator and you are deploying SME
64  the course of your work to generate revenue, we expect you to make a donation  Server in the course of your work to generate revenue, we expect you to
65  commensurate with the level of revenue you generate and the number of servers  make a donation commensurate with the level of revenue you generate and
66  your have in the field. Please, help the project  the number of servers your have in the field. Please, help the project
67    
68  Please visit https://wiki.koozali.org/Donate to donate.  Please visit https://wiki.koozali.org/Donate to donate.
69    
70  Koozali Inc is happy to supply an invoice for any donations received,  Koozali Inc is happy to supply an invoice for any donations received,
71  simply email treasurer@koozali.org  simply email treasurer at koozali.org
72    
73  Notes  Notes
74  =====  =====
75  In-place upgrades are not supported. It is necessary to backup and then restore.  In-place upgrades are not supported. It is necessary to backup and then
76  (Remember, testing purpose only)  restore. (Remember, testing purpose only),
77    
78    Restore of a sme9 console or workstation backup is now fully supported
79    
80    Single disk install no longer creates a degraded Raid1 array, Two or more disks
81    will be created as a Raid1-6 array, see wiki https://wiki.contribs.org/Raid
82    
83    The spare handling for RAID arrays is now implemented.
84    
85    Support for further Raid configuration on install is now implemented - see wiki
86    
87    New Server-Manager Framework, Mojolicious, is now well on the way to full implementation
88    
89    USB installs are once again fully supported,
90    Note: it is important to use proposed apps to create the boot media
91    See: https://wiki.koozali.org/Install_From_USB
92    
93    Netinstall is once again fully supported
94    
95  The spare handling for RAID arrays is not implemented.  Install to a system supporting a UEFI BIOS is also now fully supported
96    
97  USB installs are now supported, see: https://wiki.koozali.org/Install_From_USB  Console backup, and workstation backup to removable storages is now fully supported.
98    
99  Current installer is still branded CentOS. A kickstart script allows you to go through the graphical installation process. If your disk is not empty, you will need to use the Anaconda interface to format it and partition it. If it is empty all is automatic. You will have to set your root password twice: once during Anaconda installation (you could use a lame password), a second time in the Koozali SME server configuration process.  A plethora of other under the hood changes, too numerous to list
100    
101    The work that has gone into getting SME 10 to this stage has been enormous, an attempt to list
102    and detail the work that has been done in recent months would not do justice to the effort
103    contributed by the following,
104    
105    thank you one and all:
106    
107    Jean Phillipe Pialasse
108    Michel Begue
109    Brian Read
110    Catton Durbrow
111    Chris Sansom-Ninnes
112    Jean-pierre Odion
113    Zsolt Vasarhelyi
114    John Crisp
115    
116    there have also been many others who have done what they can, thank you:
117    
118    The changes that have been implemented to ensure the Koozali Sme Server way is fully implemented
119    have been far reaching, far to many to try and list, suffice to say long live "Justine".
120    
121  Major changes in this release  Major changes in this release
122  =============================  =============================
123  This release is based on CentOS 7  This release is based on CentOS 7.#
124    
125  Changes in this release  Changes in this release
126  =======================  =======================
127  see above  see above and below, to much to list
128    
129  General features  General features
130  ================  ================
131  - Based on CentOS 7.2.1511 and all available updates  - Based on CentOS 7.9.2009 and all available updates
132    
133  Detailed changes in this release  Detailed changes in this release
134  =======================  =======================
135  Only the changes since SME Server 10 Alpha2 are listed, mainly  Only the changes since SME Server 10 Alpha5 are listed, mainly
136  autogenerated from the changelogs.  autogenerated from the changelogs.
137    
138  Packages altered by Centos, Redhat, and Fedora-associated developers are  Packages altered by Centos, Redhat, and Fedora-associated developers are
139  not included.  not included.
140    
141  General features - Based on CentOS 7.2.1511 and all available updates  The changelogs are written per package
142    
143  Backups  SME built or modified packages - ChangeLogs
144    
145    19 March 2021
146    
147    Backups
148  e-smith-backup  e-smith-backup
149  - added lock during backup to avoid multiple instance running [SME: 9127]  - fix dar restore replacing rootdir symlinks by folders [SME: 11424]
150  - code from Stefano Zamboni <zamboni@mind-at-work.it>  - Remove duplicate gunzip call in perform_restore [SME: 11266]
151  - added support back to ext2 and ext3 [SME: 9299]  - Remove debug output of device names
152  - fix removable device detection [SME: 9299]  - Revert BlockDevices.pm and backup call to not filter to removable drives
153  - console restoration can be launched again from console [SME: 9550]  - Replace hal-* calls with BlockDevices [SME: 11319]
154  - fixed bug on the dar catalog when backups are not added in it [SME: 9563]  - add update event [SME: 11124]
155  - Added e-smith-backup-2.6.0.bz9563.UpdateDarCatalogFollowingBackups.patch  - Added /etc/backup-data.d to backup paths [SME: 10245]
156  - Remove the dar exclusion message in the email if there is no exclusion.  - Added error handling to restore using pipe pattern from perform_backup [SME: 3139]
157  - Modified e-smith-backup-2.6.0.Do_Dar_Exclusion.patch [SME: 9633]  - Made reboot optional after console restore
158  - Added two commented files backup.{include,exclude} in /etc/backup-data.d  - Fixed bootstrap restore not activating config changes [SME: 10921]
159  - Modified e-smith-backup-2.6.0.Add_Or_Remove_Path_In_Backup.patch [SME: 9607]  - Manually added ext2 and ext3 to Block Device file system check where ext4 present
160  - Add or remove path in your backup by a file *.include and *.exclude  - updated Block Device discovery to fix recovery from console [SME: 8244]
161  - Added e-smith-backup-2.6.0.Add_Or_Remove_Path_In_Backup.patch [SME: 9607]  - Credit to Catton Durbrow
 - Test if the remote host (cifs/nfs) is up, else save and display a warning.  
 - Added e-smith-backup-2.6.0.bz9090.Testing_the_remote_host_parameters.patch [SME: 9090]  
 - The 'tar backup to desktop' of the backup panel takes consideration of exclusion  
 - Added e-smith-backup-2.6.0.Do_Tar_Exclusion_In_Panel.patch [SME: 9635]  
 - The 'dar workstation backup' of the backup panel takes consideration of exclusion  
 - Added e-smith-backup-2.6.0.Do_Dar_Exclusion.patch [SME: 9633]  
 - The 'tar backup' of the console takes consideration of exclusion and display a page with the exclusion content  
 - e-smith-backup-2.6.0.Do_Tar_Exclusion_In_the_console.patch [SME: 9635]  
162    
163  File Server  File Server
   
164  e-smith-proftpd  e-smith-proftpd
165  - fix typos [SME: 6804]  - cleanup in /etc/rc.d [SME: 9692]
166  - set default as required  - redirect log away from message [SME: 11384]
167  - NB: client must be set as active connection, not passive  - fix circular Conflict with proftpd [SME: 11357]
168  - updated patch for certificate chain  - improve protect from proftpd.service running [SME: 11106]
169  - Thanks to Daniel Berteaud  - protect from proftpd.service running in place of ftp.service [SME: 11106]
170  - Adding TLS support to proftp configuration [SME: 6804]  - remove system-preset file from usr [SME: 10958]
171  - default is enabled but not required, only TLSv1.1 and v1.2  - SSL crt and key to self signed if path does not exist [SME: 11316]
172  e-smith-samba  - add Requires=runit.service [SME: 11245]
173  - fix outlook error code 0x8004011c [SME: 10169]  - execute systemd-reload before service adjust in events [SME: 11228]
174  - when setting up and email account on a win10 computer joined to a domain (with roaming profiles)  - remove S95reset-unsavedflag [SME: 11229]
175  - add systemd skip redirect [SME: 9688]  - Remove ftp from 'init.d/supervise' [SME: 11106] [SME: 11150]
176  - Fix deprecated syntax '~' in rsyslog [SME: 9398]  - Move ftp service to systemd [SME: 11106]
177  - added e-smith-samba-2.6.0.bz9398.DeprecatedRsyslogSyntaxSamba.patch  - Create e-smith-proftpd-update event [SME: 11150]
 proftpd  
 - AllowChrootSymlinks off could cause login failures depending on filesystem  
 permissions: use the IDs of the logging-in user to perform the directory  
 walk, looking for symlinks, to be more consistent with similar checks done  
 during login (#1443507, upstream bug 4306)  
 - Crypt::CrackLib always available now  
 - Update to 1.3.5e  
 - SFTP clients using umac-64@openssh.com digest failed to connect  
 (upstream bug 4287)  
 - SFTP rekeying failure with ProFTPD 1.3.5d, caused by null pointer  
 dereference (upstream bug 4288)  
 - AllowChrootSymlinks off did not check entire DefaultRoot path for symlinks  
 (CVE-2017-7418, upstream bug 4295)  
 - Change shellbangs in shipped perl scripts to use system perl  
 - Drop EL-5 support  
 - Drop BuildRoot: and Group: tags  
 - Drop explicit buildroot cleaning in %install section  
 - Drop explicit %clean section  
 - /etc/pam.d/password-auth always available now  
 - pcre 7.0 or later always available now  
 - Properly allocate (and clear) the UMAC contexts, to fix segfault in mod_sftp  
 (#1420365, upstream bug 4287)  
 - Update to 1.3.5d  
 - Support OpenSSL 1.1.x API (upstream bug 4275)  
 Bug fixes:  
 - SSH rekey during authentication can cause issues with clients  
 (upstream bug 4254)  
 - Recursive SCP uploads of multiple directories not handled properly  
 (upstream bug 4257)  
 - LIST returns different results for file, depending on path syntax  
 (upstream bug 4259)  
 - "AuthAliasOnly on" in server config breaks anonymous logins  
 (upstream bug 4255)  
 - CapabilitiesEngine directive not honored for <IfUser>/<IfGroup> sections  
 (upstream bug 4272)  
 - Memory leak when mod_facl is used (upstream bug 4278)  
 - All FTP logins treated as anonymous logins again (upstream bug 4283,  
 regression in 1.3.5c of upstream bug 3307)  
 - Handle client/server version skew in mod_sql_mysql  
 (https://forums.proftpd.org/smf/index.php?topic=11887.0)  
 - Fix a possible cause of segfaults in mod_sftp (#1337880, upstream bug 4203)  
 - See if we can fix crash in mod_lang  
 - BR: perl-generators for correct dependencies in utils sub-package  
 - Prefer %global over %define  
178    
179  LDAP  e-smith-samba
180    - clean rsyslog syntax for smbd and nmbd [SME: 11422]
181    - fix noise in message log from nmbd and smbd redirected to dedicated logs [SME: 11349]
182    - allow using user-create-profiledir action with temp or package-update events [SME: 11348]
183    - fix log noise for smb.service [SME: 11157]
184    - add Restart=always [SME: 11118]
185    - add Restart=always [SME: 11117]
186    - migrate nmbd to systemd [SME: 11118]
187    - migrate smbd to systemd [SME: 11117]
188    - create general smb.service service
189    - create e-smith-samba-update event [SME: 11157]
190    - Fix mutex locking [SME: 11199]
191    - Fix pid directory [SME: 11198]
192    - Add /etc/krb5.conf as template using templates from smeserver-samba[SME: 11093]
193    - remove win98pwdcache.reg from server-resources [SME: 9060]
194    - set min server and client protocol SMB2 [SME: 10576]
195    - add check so max always greater than min
196    - add port 445 if min server protocol is SMB2 or SMB3 [SME: 10963]
197    
 e-smith-ldap  
 - Disable SSLv3, but keep the possibility to enable it again [SME: 10108]  
 - Better default cipher suite, and honor global suite [SME: 10108]  
 - systemd skip redirect [SME: 9688]  
 - Eliminated rpmbuild "bogus date" warnings due to inconsistent weekday,  
   
 Localisation  
   
 smeserver-locale  
 - apply 2017-04-26 translation patch [SME: 10252]  
 - updated donate patch to correct location https://wiki.koozali.org/Donate [SME: 9595]  
 - applied smeserver-locale-2.6.0-locale-2017-03-03  
 - Added translations smeserver-locale-2.6.0-locale-2016-07-17.patch  
 - fix wrongly converted http to https in  
 - URL starting with http:// or ftp://  
 - fix path to documentations (wiki) [SME: 9595]  
 - convert all koozali url to https  
 - change http://www.smeserver.org\donate to https://wiki.koozali.org/donate [SME: 9595]  
 - Eliminated rpmbuild "bogus date" warnings due to inconsistent weekday,  
 - change contribs.org to koozali.org [SME: 9595]  
198    
199  Mail Server  Mail Server
   
200  e-smith-email  e-smith-email
201  - fix webmail status not displaying correctly in manager [SME: 9594]  - webmail is only SSL [SME: 11443]
202  - More change from smtpd to qpsmtpd in masq templates [SME: 9561]  - create -update event [SME: 11133]
203  - Replace smtpd with qpsmtpd in smtp-auth-proxy [SME: 9554]  - move smtp-auth-proxy to systemd [SME: 11102]
204  e-smith-pop3  - allow creation of pseudonyms with setting of local only [SME: 3802]
205  - Honor ConcurrencyLimit and ConcurrencyLimitPerIP prop for pop3 and pop3s  
 [SME: 10271]  
 e-smith-qmail  
 - Add possibility to exclude users or members of other groups from group  
 email address [SME: 9523]  
 qmail  
 - added documentation [SME: 9705]  
 - added binaries ipmetest et ipmeprint to help configuration  
 - add moreip to avoid loop [SME: 9705]  
 - patch from Scott Gifford  
 - remove qmail-0.0.0.0.patch as it is included  
 - Consider literal <> as null sender [SME: 9884]  
 qpsmtpd  
 - Removed Message-Id validation, as it rejects MS account validation email [SME: 10139]  
 - fix whitelist plugin to support helo with naughty rejecting at mail stage [SME: 10112]  
 - Validate domains found in uribl with Data::Validate::Domain [SME: 9467]  
 - Use eval to fetch dkim policies, prevent fatal errors in case of DNS  
 timeout [SME: 9480]  
 - Remove karma rcpt handling (buggy and doesn't make a lot of sense)  
 [SME: 9462]  
 qpsmtpd-plugins  
 - remove whitelit_soft [SME: 10126]  
206  smeserver-dovecot  smeserver-dovecot
207  - Better default cipher suite, and honor global suite [SME: 10110]  - clean rsyslog syntax for dovecot [SME: 11422]
208    - add Restart=always [SME: 11101]
209    - fix path for event -update [SME: 11101]
210    - cleanup /var/service/dovecot [SME: 11101]
211     -close logger and service from previous runit instance before starting systemd one
212    - add systemd drop-in expand in bootstrap-console-save, console-save, post-install, post-upgrade [SME: 11101]
213    - move service to systemd [SME: 11101]
214    - add imap idle notify interval setting [SME: 10947]
215    - fix typo in enabling TLSv1.2 as default [SME: 10934]
216    - fix typo in 35ssl template [SME: 10934]
217    - fix typo in createlinks [SME: 10932]
218    - revert property names with period in it [SME: 10934]
219    - add property AcceptFullEmail with enabled as default [SME: 9865]
220    
221  smeserver-qpsmtpd  smeserver-qpsmtpd
222  - Turn DMARC reporting off by default [SME: 10303]  - remove /usr/lib/systemd/system-preset/80-koozali-qpsmtpd.preset [SME: 10958]
223  - update patch smeserver-qpsmtpd-2.6.0-smtpd_to_qpsmtpd.patch [SME: 9478]  - modify for clamav 0.103.0 [SME: 11210]
224  - Greeting property was still attached to smtpd in a template  - roll up patches
225  - updated regex for RBL and SBL in smeserver-qpsmtpd-2.6.0-change_rbl_sbl_list_separator.patch  - add Requires=runit.service (qpsmtpd & sqpsmtpd) [SME: 11245]
226  - to take into account list using a subdomain [SME: 10123]  - fix service not enabled [SME: 11107]
227  - Eliminated rpmbuild "bogus date" warnings due to inconsistent weekday,  - remove reset-unsavedflag
228  - Turn SPF and DMARC rejects off by default [SME: 9664]  - Move qpsmtpd & sqpsmtpd services to systemd [SME: 11107]
229  - Fix disabling DMARC reporting [SME: 9206]  - Create smeserver-qpsmtpd-update event [SME: 11164]
230  - Add missing tnef2mime and MaximumDateOffset to qpsmtpd [SME: 9560]  - expand badrcptto_ext when needed [SME: 10638]
231  smeserver-spamassassin  - this avoid user, group or pseudonyms for internal purpose to be reachable
232  - Rewrite spamd run script to add support for --allow-tell [SME: 10137]  - from outside
233    - minimum Protocol TLSv1.0 [SME: 10460]
234    - better ciphers order.
235    
236  Server manager  Server manager
237    e-smith-formmagick
238    - increase CSRF timeout from 120s to 180s [SME: 10902]
239    - added property httpd-admin{csrfTimeout} in second to override
240    - added hability to ovarride the Timeout from panel to panel
241    - add update event [SME: 11136]
242    - add locale for CSRF [SME: 10626]
243    - add CSRF patch [SME: 10626] - thank you to Daniel Berteaud
244    
245  e-smith-manager  e-smith-manager
246  - add a panel to ease reporting bugs [SME: 8783]  - take 2 wrong system mode reported in bugreport [SME: 10448]
247  - Original work from Mats Schuh m.schuh@neckargeo.net  - fix wrong system mode reported in bugreport [SME: 10448]
248  - fix warning uninitialized value in lc [SME: 10209]  - create -update event [SME: 11144]
249  - fix typo in e-smith-manager-2.8.0-bz10167-emptyback.patch  - migrate httpd-admin to systemd [SME: 11110]
250  - avoid internal server error if empty back parameter [SME: 10167]  - removing hardcoded ports [SME: 10967]
251  - return user friendly message  - Add a FollowSymlinks for user-password in password/cgi-bin (perl-suid) [SME: 9677]
252  - fix too short timeout in server-manager [SME: 9921]  - update apache icon path [SME: 9591]
253  - now 30 min as default instead of 5  - add message to indicate EOL after Jun 30 2024 fix [SME: 10170]
254  - possibility to change this and adapt the default 0.66 of timeout remaining to reset it  
 - by default only a session cookie, can activate persistent cookie  
 - sha256 as encryption.  
 - fix bad redirection parameter that might reveal session information to remote site [SME: 9924]  
 - added missing template-begin for tkt.css [SME: 9676]  
 - Update server-manager to Koozali branding [SME: 9676]  
 - We thanks John Crisp for his wonderful work.  
 - change link for donation to koozali.org [SME: 9599]  
 - Fix syntax for removing Indexes options [SME: 9587]  
 - Remove index option for manager's resources [SME: 9587]  
 - fix 307 redirection to http when https is used [SME: 8825] [SME: 9583]  
 - update syntaxe for TKT Auth  
 - bump 8 for typo  
 - Fix a syntax error in server-manager's logout script [SME: 9527]  
 e-smith-starterwebsite  
 - fix can't chownfile index file [SME: 9900]  
255  perl-CGI-FormMagick  perl-CGI-FormMagick
256  - fix uninitialized value $what_to_make in lc [SME: 10210]  - increase default timeout, allow setting from outside [SME: 10902]
257  php  - add timeout [SME: 10626]
258  - bz2: fix improper error handling in bzread() CVE-2016-5399  - update CSRF patch [SME: 10626]
259  - gd: fix integer overflow in _gd2GetHeader() resulting in  - add requires perl(Session::Token) [SME: 10626]
260  heap overflow CVE-2016-5766  - fix add CSRF patch [SME: 1723] - thank you to Daniel Berteaud
 - gd: fix integer overflow in gdImagePaletteToTrueColor()  
 resulting in heap overflow CVE-2016-5767  
 - mbstring: fix double free in _php_mb_regex_ereg_replace_exec  
 CVE-2016-5768  
 - don't set environmental variable based on user supplied Proxy  
 request header CVE-2016-5385  
 - fix segmentation fault in header_register_callback #1344578  
 - curl: add options to enable TLS #1291667  
 - mysqli: fix segfault in mysqli_stmt::bind_result() when  
 link is closed #1096800  
 - fpm: fix incorrectly defined SCRIPT_NAME variable when  
 using Apache #1138563  
 - core: fix segfault when a zend_extension is loaded twice #1289457  
 - openssl: change default_md algo from MD5 to SHA1 #1073388  
 - wddx: fix segfault in php_wddx_serialize_var #1131979  
 - session: fix segfault in session with rfc1867 #1297179  
261    
262  Webmail and Groupware  Webmail and Groupware
263    smeserver-horde
264    - clean rsyslog syntax for horde [SME: 11422]
265    - improved php basedir, with filtering of noise for gpg [SME: 10945]
266    - force SSL for horde [SME: 11443]
267    - fix horde not honoring switch to php-fpm 5.4 [SME: 11433]
268    - update mail settings for the php-pool [SME: 11431]
269    - spamd SpamLearning property migrated to spamassassin SpamLearning [SME: 11376]
270    - Configuration is not up to date, hash to update [SME: 11308]
271    - fix wrong template path for php55, php56 and php [SME: 11255]
272    - fix webmail not accessible after enabling from manager [SME: 11233]
273    - update rsyslog syntax [SME: 11016]
274    - move fragment so syntax is similar to message
275    - remove harcoded ports [SME: 10969]
276    - add gpg to php base dir [SME: 10945]
277    - workaround logging noise caused by libsasl [SME: 10943]
278    - log as admin and not admin@domain for cli tasks [SME: 10910]
279    - fix ingo imap preferences [SME: 10912]
280    - allow httpd-auth for calendar, tasks access using rpc.php ... [SME: 10908]
281    - add smeserver-horde-update event [SME: 10909]
282    - avoid loss of user parameter on Primary Domain change [SME: 1005]
283    - this will also avoid the loss of parameter if we log with a different virtualhost
284    - horde preference is now stored with the SME username without @domain
285    - fix bad regex to strip domain [SME: 10224]
286    - also we can now force Primary domain to use as default email
287    - we can strip heading string from virtualhost domain to create email
288    - default identity email will update as long as no other identity is created for the user
289    - fix typo in php-fpm patch [SME: 10872]
290    - remove php3 references [SME: 10866]
291    - remove strict and warning alert from error log [SME: 10823]
292    - dedicated php-fpm pool for horde [SME: 10872]
293    - apply patches from John H. Bennett III [SME: 10717]
294    - cvs admin -ko on patch1
295    
296    
 Web Server  
   
 e-smith-php  
 - clean daily session and tmp folders [SME: 9626]  
 - updated path for ibays' session and tmp folders to /var/cache  
 - add tmp folder to ibays [SME: 7011]  
 - add session folder to ibays [SME: 9620]  
 - change global session folder from /tmp to /var/lib/php/session/ [SME: 139]  
   
297  Other fixes and updates  Other fixes and updates
   
298  e-smith-base  e-smith-base
299  - Expand route-bond0 when nic bonding is enabled [SME: 10272]  - fix masq failing on initial boot
300  - improve regex to catch local [SME: 9724]  - removing weekly cron for ddns update, targeted script has been removed [SME: 11470]
301  - change smtpd to qpsmtpd for default service access [SME: 9478]  - revert e-smith-service file [SME: 9692]
302  - add translation links for manager to most language variations we support [SME: 11121]  - add systemctl wrapper [SME: 11345]
303  - prevent restoration from being called on regular and post-upgrade reboot [SME: 9550]  - clean rsyslog syntax for dhcpd [SME: 11422]
304  - console restoration can be launched again from console  - cleanup /etc/rc.d and /var/service [SME: 9692]
305  - Use ip route syntax to define routes to local network [SME: 10083]  - remove klogd references [SME: 11363]
306  - Allow /32 masks on the external interface, in which case we don't  - restore part of pptp code and move to generik vpn entry [SME: 11374]
307  check if the gateway is on the correct network) [SME: 9610]  - drop dyndns core support [SME: 11415]
308  - fix config db locale property [SME: 9724]  - fix enabled service not started on reboot [SME: 11355]
309  - adapt e-smith service command to systemd [SME: 9672]  - unless a power outage, as long as you reboot, halt or shutdown systemd will
310  - add systemd skip redirect to e-smith-service [SME: 9688]  - be in sync
311  - fix broken link /etc/init.d/supervise/local link [SME: 9687]  - fix console::startup run twice [SME: 11358 ]
312  - fix mysqld to mariadb [SME: 9438]  - improve run order in systemd-default [SME: 11356]
313  - fix missing path to chkconfig [SME: 9641]  - fix uninitialized value during post-install [SME: 11350]
314  - Fix deprecated syntax '*' in rsyslog [SME: 9398]  - fix user with rssh shell need to be member of rsshusers group [SME: 9155]
315  - Added e-smith-base-5.8.0.bz9398.DeprecatedRsyslogSyntax.patch  - add missing /sbin/e-smith/bootstrap-runlevel7 [SME: 11318]
316  - Set the hostname by hostnamectl [SME: 9631]  - fix typo for isolate [SME: 11246]
317  - Stefano Zamboni <zamboni@mind-at-work.it>  - separate bootstrap-console from run level service launch [SME: 11318]
318  - fix Lang and keyboard layout configured are not used [SME: 9539]  - only run isolate if sme-server.target is not active [SME: 11246]
319  - Fix display of email forward fields since smtpd entry has been merged  - update system-preset usr/lib file [SME: 10958]
320  qpsmtpd [SME: 9552]  - fix loss of httpd basic auth [SME: 11309]
321  e-smith-devtools  - fix services starting when they are in Wants= for sme-server.target and preset disabled [SME: 11247]
322  - added grub2 directories to ignore list [SME: 10325]  - rewrite of manageRAID.pl and add_drive_to_raid for SME10 [SME: 10918]
323  - Quote filenames in genfilelist so filenames containing spaces are correctly  - added gdisk as a dependency to support GPT systems
324  handled [SME: 9750]  - fix modSSL key crt and keychain files really exist [SME: 11252]
325    - add ldap.init as exception for preset
326    - fix init-accounts [SME: 9642]
327    - validate modSSL key crt and keychain files really exist [SME: 11252]
328    - if not we use self generated
329    - drop pptpd support [SME: 11250]
330    - add bash-completion [SME: 11244]
331    - improve local service to systemd [SME: 11119]
332    - now run rc.local file as part of the event
333    - move local service to systemd [SME: 11119]
334    - make it run /etc/rc.d/rc.local
335    - cleaning /var/service/syslog still there
336    - workaround drop-in install section ignored by systemctl preset [SME: 11231]
337    - some cleanup
338    - remove S95reset-unsavedflag [SME: 11229]
339    - add exclusion for lpd [SME: 11006]
340    - execute systemd-reload before service adjust in events [SME: 11228]
341    - fix ExecStart for raidmonitor [SME: 11094]
342    - fix permission for /sbin/e-smith/systemd/mdmonitor-pre [SME: 11094]
343    - Don't ask for confirmation to save changes on first install configuration [SME: 11193]
344    - Fix RAID detection regex for disk redundancy screen [SME: 10918]
345    - add Install part of systemd unit [SME: 11100]
346    - move dhcpd to systemd [SME: 11100]
347    - get dhcpd log out of message [SME: 2408]
348    - also configure logrotate for /var/log/dhcpd/dhcpd.log and /var/log/dhcpd/current
349    - reverte previous changes for service2adjust and util.pm [SME: 11177]
350    - files are owned by e-smith-lib
351    - allow more systemctl controls [SME: 11177]
352    - convert unrecognized signals from service2adjust in events for systemd
353    - handle unsupervised services the same way supervised were in adjust-services
354    - make service-status only log when service disabled and not fail it
355    - add template for /etc/systemd/system-preset/49koozali.preset [SME: 11174]
356    - this will help systemd integration in enabling and disabling services
357    - remove wan link
358    - move raidmonitor to systemd [SME: 11094]
359    - move network service to systemd [SME: 11090]
360    - move wan service to systemd [SME: 11091]
361    - create e-smith-base-update event [SME: 11012]
362    - create sme-server.target [SME: 10957]
363    - make sme-server.target default target
364    - change default target on signal-event post-upgrade, post-install, e-smith-base-update
365    - requires update or smeserver-php and e-smith-runit
366    - add an executable to check if service is enabled in e-smith db
367    - validate submask on remote access panel [SME: 6536]
368    - accept netmask bit and convert it
369    - validate subnet mask on local network panel [SME: 10974]
370    - accept netmask bit and convert it
371    - remove info.txt [SME: 9590]
372    
373    e-smith-dnscache
374    - cleanup in /etc/rc.d/ [SME: 9692]
375    - remove /usr/lib/systemd/system-preset/80-koozali-dnscache.preset [SME: 10958]
376    - add Requires=runit.service (dnscache & dnscache.forwarder) [SME: 11245]
377    - execute systemd-reload before service adjust in events [SME: 11228]
378    - remove S95reset-unsavedflag [SME: 11229]
379    - remove createlink safesymlink in /etc/rc.d/init.d [SME: 11097]
380    - remove rc7.d link [SME: 11097]
381    - fix actions in e-smith-tinydns-update [SME: 11127]
382    - Move dnscache, dnscache.forwarder services to systemd [SME: 11097]
383    - Create e-smith-dnscache-update event [SME: 11127]
384    - Modify run script to allow for loopback commmunications with other DNS
385    - servers on the local machine and DNS forwarding [SME: 9715]
386    
387    e-smith-domains
388    - avoid encoding of utf strings in domain table [SME: 11391]
389    - this will mess with some languages
390    - Create e-smith-domains-update event [SME: 11128]
391    
392  e-smith-grub  e-smith-grub
393  - rebuild for file ownership conflict [SME: 10325]  - fix unable to boot on a non xfs root filesystem [SME: 11365]
394  - fix edition and consol grub terminal not visible because of koozali logo [SME: 9728]  - cleanup remove /boot/grub dir [SME: 11354]
395  - enable quota for groups and users with XFS [SME: 10211]  - Add support for EFI systems [SME: 10998]
396  - Koozali grub splash screen  - add update event [SME: 11137]
397  - Write the full path for the grub Action [SME: 9668]  
 - Added e-smith-grub-2.6.1.bz9668.AddFullPath2GrubAction.patch  
 - New source [SME: 9321]  
 - Adaptation to grub2 [SME: 9321]  
 e-smith-hosts  
 - remove reference to smtpd [SME: 9478]  
 - fix servicename syslog to rsylog [SME: 9691]  
 - Eliminated rpmbuild "bogus date" warnings due to inconsistent weekday,  
 by assuming the date is correct and changing the weekday.  
 - fix mysqld to mariadb [SME: 9438]  
398  e-smith-ibays  e-smith-ibays
399  - fix typo thanks to Stephane de Labrusse [SME: 7011]  - fix patch for SSLRequireSSL [SME: 8150]
400  - ibay to ibays  - force https if auth or dav are enabled [SME: 11407]
401  - as per comment 2 of bug 0600 instead of 0700 for perms [SME: 9621]  - merge SSL and SSLRequireSSL properties [SME: 8150]
402  - as discussed, moving cache and tmp out of ibay folder [SME: 9105] [SME: 9621]  - now SSLRequireSSL will force SSL to the html ibay directory and redirect to https
403  - creating basedir /var/cache/e-smith/files/ibays for tmp and cache  - update php properties and folders [SME: 11412]
404  - create tmp folder in ibays when needed [SME: 9105]  - remove last bit of atalk [SME: 668]
405  - create session folder in ibays when needed [SME: 9621]  - add update event [SME: 11139]
406  - Eliminated rpmbuild "bogus date" warnings due to inconsistent weekday,  - remove hardcoded ports [SME: 10968]
407  e-smith-lib  - remove php3 reference [SME: 10869]
408  - remove reference to smtpd in configuration.conf [SME: 9478]  - fix apache failing if ibay has dynamic content enabled and phpmodule is disabled [SME: 10871]
409  - fix console startup display [SME: 9352]  - revert patch, wrong rpm [SME: 10871]
410  - fix service name syslog to rsyslog [SME: 9691]  - add support for php-fpm [SME: 10871]
411  - fix mysqld to mariadb [SME: 9438]  
412  - Eliminated rpmbuild "bogus date" warnings due to inconsistent weekday,  e-smith-ldap
413  - fix esmith::util::serviceControl to manage systemd service [SME: 9660]  - fix ldap failing to start on initial boot
414  - Added e-smith-lib-2.6.0.bz9660.serviceControlSystemd.patch  
415    e-smith-lib-compspec
416    - allow easy access to templates.metadata to expand desired files [SME: 11312]
417    - add update event [SME: 11142]
418    
419  e-smith-mysql  e-smith-mysql
420  - systemd skip redirect [SME: 9688]  - fix wrong path for set password [SME: 11468]
421  - Corrected a typo in e-smith-mysql-2.6.0.bz9671.RemoveDummyMysqlDatabase.patch  - fix restore of sme9 backup fails to start mysql.init [SME: 11453]
422  - [SME: 9671]  - add property to enable mysqld slow queries log [SME: 455]
423  - fix broken link /etc/init.d/supervise/mariadb [SME: 9686]  - simply use SlowQueries as the amount of second and it is enabled
424  - Remove Dummy database from backup and restoration [SME: 9671]  - remove property to stop logging
425  - Added e-smith-mysql-2.6.0.bz9671.RemoveDummyMysqlDatabase.patch  - more mysqld/mariadb parameter available with properties /templates [SME: 4606]
426  - fix forgotten mysqld variables in various scripts [SME: 9438]  - ease 4 databit characters with innodb [SME: 11404]
427  - e-smith-mysql-2.6.0-mariadb_forgotten_var.patch  - redirect mariadb log from systemd to file [SME: 11425]
428  e-smith-ntp  - fix backup fails in pre-backup in mysqldump [SME: 7827]
429  - fix wrong link to restart rsyslog [SME: 9690]  - expand 10mysql_upgrade and restart mysql.init on e-smith-mysql-update [SME: 11120]
430    - this to make sure mariadb upgrade fully and prevent residual 10mysql_upgrade stay in the way
431    - fix issue with 10mysql_upgrade crashing mariadb [SME: 11120]
432    - also removed noise from spec file
433    - e-smith-update event [SME: 11145]
434    - mariadb systemd integration [SME: 11021]
435    - move set.password and template
436    - create /usr/lib/systemd/system/mariadb.service.d/sme.conf
437    - create /sbin/e-smith/systemd/mariadb-initialize + chmod
438    - cleanup and remove old /var/service/mariadb
439    - mysql.init systemd integration [SME: 11120]
440    - create mysql_init.service
441    
442    e-smith-openssh
443    - clean rsyslog syntax for sshd [SME: 11422]
444    - increase default host key size [SME: 11359]
445    - redirect logging to /var/log/sshd/sshd.log and logrotate [SME: 11256]
446    - add support for denyhost [SME: 10939]
447    - move sshd to systemd [SME: 11109]
448    - create -update event [SME: 11147]
449    - add ed25519 and ecdsa hostkeys [SME: 10940]
450    - add Whitelist to AutoBlock using property sshd ValidFrom [SME: 9893]
451    - update client ciphers to use [SME: 10621]
452    - add ciphers, macs and KexAlgorithms for server [SME: 10937]
453    
454    e-smith-packetfilter
455    - move ulogd to systemd [SME: 11426]
456    - require ulogd 2 [SME: 11426]
457    - remove pptpd last references [SME: 11420]
458    - remove /usr/lib/systemd/system-preset/80-koozali-packetfilter.preset [SME: 10958]
459    - drop pptpd support [SME: 11251]
460    - launch masq using systemd unit [SME: 11089]
461    - create event to avoid reboot on update [SME: 11122]
462    
463  e-smith-proxy  e-smith-proxy
464  - fix disabling smtp proxy via SM doesn't work [SME: 9639]  - cleanup in /etc/rc.d and /var/service/squid [SME: 9692]
465  - redirect squid syslog messages to /var/log/squid/squid.log [SME: 79]  
 - Allow custom file descriptor limit, and set default to 4096 [SME: 9912]  
 e-smith-quota  
 - enable quota for groups and users with XFS [SME: 10211]  
466  e-smith-runit  e-smith-runit
467  - add systemd skip redirect [SME: 9688]  - reverting removal of deamontools [SME: 9692]
468  e-smith-test  - could be needed for legacy support with rc7.d services
469  - remove reference to smtpd [SME: 9478]  - cleanup of /etc/rc.d [SME: 9692]
470  - fix servicename syslog to rsyslog [SME: 9691]  - create e-smith-runit-update event [SME: 11156]
471  - fix mysqld to mariadb [SME: 9438]  - also tidy target wantedby: should run from basic.target
472  initscripts  - fix issue with Before rules in unit file [SME: 11013]
473  - use DBUS calls directly instead of calling nmcli (bug #1422820)  - run before network-pre.target [SME: 11088]
474  - rhel-import-state: fix broken order of parameters  - enable for sme-server.target [SME: 11013]
475  - import-state: copy just some attributes  - e-smith-test
476  - functions: systemctl show now returns an error when unit does not exist  - e-smith-tinydns
477  - import-state: restore also sensitivity part of SELinux context  - cleanup in /etc/rc.d [SME: 9692]
478  - network: run after network-pre.target  - remove /usr/lib/systemd/system-preset/80-koozali-tinydns.preset [SME: 10958]
479  - ifup-eth: fix setting preferred_lft and valid_lft  - Add 'Requires=runit.service' [SME: 11245]
480  - ipv6: wait for all global IPv6 addresses to leave the "tentative" state  - remove S95reset-unsavedflag [SME: 11229]
481  - source_config: tell NetworkManger to load ifcfg file even for NM_CONTROLLED=no  - execute systemd-reload before service adjust in events [SME: 11228]
482  - ifup-aliases: inherit ARPCHECK from parent device  - remove createlink safesymlink in /etc/rc.d/init.d [SME: 11098]
483  - rhel-dmesg: don't start in containers  - remove rc7.d link [SME: 11098]
484  - ifup-eth: fix typo in error message (#1038776)  - fix date in changelog
485  - sysctl.conf: steal comments about /usr,/etc,... from fedora's sysctl.conf  - fix actions in e-smith-tinydns-update [SME: 11159]
486  - rwtab: /var/lib/nfs needs to copy the files  - Move tinydns service to systemd [SME: 11098]
487  - functions: improve killing loops  - Create e-smith-tinydns-update event [SME: 11159]
488  - ipcalc: detect invalid mask  
 - ifup: set valid_lft and preferred_lft to forever for static ip  
 - service: use systemd mangle for given service  
 - ifup-post: check resolve.conf also with DNS2  
 - ifdown-post: remove resolv.conf only in specific cases  
 - spec: ghost /var/log/dmesg  
 - network-functions: is_available_wait should wait even in the case that is_available returns 2  
 - autorelabel: turn quota off before relabeling  
 - autorelabel: call dracut-initramfs-restore before forced reboot  
 mod_auth_tkt  
 - fix redirection when proxy ssl [SME: 8825] [SME: 9583]  
489  smeserver-release  smeserver-release
490  - Bump new rpm for sme10 alpha2  - Bump new rpm for sme10 release candidate 1
491  - Eliminated rpmbuild "bogus date" warnings due to inconsistent weekday,  - updating release number everywhere [SME: 11366]
492  smeserver-support  - Bump release to 1 as buildsys believe 1.alpha5 is newer than 0.beta1 [SME: 11317]
493  - exclude samba from centos repo as we have our own with DC support [SME: 10155]  - Bump new rpm for sme10 beta1 [SME: 11317]
494  - improving link to donation [SME: 9598]  - add update event [SME: 11165]
495  - fix hover color [SME: 9676]  - Bump new rpm for sme10 alpha5
496  - Koozali branding of manager [SME: 9676]  
 - new images in archive; removed old images from cvs  
 - updated some css smeserver-support-2.8.0-koozali_manager.patch  
 - reverting partly the changes in last patch [SME: 9598]  
 - wrong catch of proxy related url with the http to https changes  
 - thank to Charlie Brady for reporting  
 - Eliminated rpmbuild "bogus date" warnings due to inconsistent weekday,  
 - update links to koozali.org [SME: 9598]  
 - Template of os-release [SME: 9580]  
497  smeserver-yum  smeserver-yum
498  - add rpmfusion free el7 RPM GPG KEY [SME: 10263]  - migrate back to normal CentOS mirrors after el6 EOL  [SME: 11477]
499  - avoid reboot for smeserver-locale upgrade [SME: 8705]  - version 2 with
500  - code by stefano zamboni <zamboni@mind-at-work.it>    deleting yum{eolversion} if for previous release or not yet eol
501  - correct service names with plugin to avoid reboot [SME: 8705]    better handling of conditions
502  - code by stefano zamboni <zamboni@mind-at-work.it>  - avoid reboot on removal of smeserver-* rpms [SME: 11458]
503  - fix KeyError with plugin to avoid reboot [SME: 8705]  - navigation-conf when a panel is installed
504  - code by stefano zamboni <zamboni@mind-at-work.it>  - fix wrong path for rsyslog.conf [SME: 11364]
505  - remove centos contrib repo [SME: 10156]  - remove noise in yum process "overriding all signals, forcing restart" [SME: 11372]
506  - added centos SCLo SIG gpg rpm signing key [SME: 10119]  - packages installed logged both in yum.log and message [SME: 11364]
507  - will allow to install SCL packages directly from smecontribs  - set priority to 10 for remi-safe [SME: 11360]
508  - Added smeserver-yum-2.6.0.bz8705.avoidReboot.patch [SME: 8705]  - fix poor handling of service adjusting and action order [SME: 11300]
509  - code by stefano zamboni <zamboni@mind-at-work.it>  - now a temp event is created
510  - Avoid to reboot after the installation of a smeserver-* package  - also better logging, better handling of update vs removal
511  - add Remi Collet RPM GPG KEY [SME: 9903]  - make yum dbs service fork [SME: 11243]
512  - Rpm updates can be downloaded during the night [SME: 1502]  - now smeserver.py plugin call the service
513  - Added smeserver-yum-2.6.0.bz1502.DownloadOnly.patch  - yum-modify can use the service restart
514  - Deltarpm is now a setting in the yum panel (disabled by default)  - yum.service is its own service, not called by local.service
515  - Added smeserver-yum-2.6.0.bz8834.DeltaRpm.patch [SME: 8834]  - move yum upate db service to systemd [SME: 11180]
516    - fix -update events not runt on package upgrade [SME: 11184]
517    - lower noise on forced restart
518    - fix switch to vault BaseURL for CentOS [SME: 11227]
519    - add remi-safe as base repo [SME: 11179]
520    - smeserver-yum-update event created [SME: 11168]
521    - fix separate action before template, and after service [SME: 11175]
522    - run all actions with post-upgrade as default event
523    - fix some templates not expanded [SME: 11121]
524    - fix smeserver.py not executing action because of wrong path [SME: 11047]
525    - fix error when key absent of a dict of smeserver plugin at clean stage [SME: 10931]
526    - avoid missing template error after removal of a rpm [SME: 10846]
527    - restart php-fpm services when needed [SME: 10873]
528    - applying patch [SME: 10690]
529    - fix NameError: global name 'yum_update_dbs' is not defined [SME: 6940]
530    - use yum-cron with autoupdate feature [SME: 10690]
531    
532    These are either not SME modified Packages, or are kernel mods.
533    
534    clamav
535    libprelude
536    sendmail
537    
538    The changelogs are written per package On behalf of the Koozali SME Server development team
539    - Compilation of release data is thanks to scripts developed by Ian Wells and substantially improved by Jean Phillipe Pialasse
540    
541    Terry Fage
542    
 On behalf of the Koozali SME Server development team  


Legend:
Removed lines/characters  
Changed lines/characters
  Added lines/characters

admin@koozali.org
ViewVC Help
Powered by ViewVC 1.2.1 RSS 2.0 feed