1 |
SME Server 7.3 Release Notes |
SME Server 8.0 Beta 7 Release Notes |
2 |
============================ |
=================================== |
3 |
|
|
4 |
January 1 2008 |
DATE TBD |
5 |
|
|
6 |
The SME Server development team is pleased to announce the release of |
The SME Server development team is pleased to announce the release of |
7 |
SME Server 7.3. This release is based on CentOS 4.6 and all packages |
SME Server 8.0beta7 which is based on CentOS 5.6 and will be the next |
8 |
have been updated to the latest releases. |
major release of SME Server. This is the final planned Beta for SME 8. |
9 |
|
|
10 |
|
Bug reports and reports of potential bugs should be raised in the bug |
11 |
All SME Server users should upgrade to this release. |
tracker (and only there, please); |
12 |
|
|
13 |
|
http://bugs.contribs.org/ |
14 |
Bug reports and reports of potential bugs should be raised |
|
15 |
in the bug tracker (and only there, please); |
*************************** |
16 |
|
Testers Please Note the following... |
17 |
http://bugs.contribs.org/ |
|
18 |
|
1. SME Server users should not upgrade production servers to this |
19 |
|
release but those who can are encouraged to load the beta to a |
20 |
About SME Server |
dedicated test machine and take part in the testing phase. |
21 |
================ |
|
22 |
|
2. CentOS 5 has dropped support for i586 and therefore SME Server 8 |
23 |
SME Server is the leading Linux distribution for small and medium |
will not work on i586 hardware. [See bugzilla:2845]. i586 hardware |
24 |
enterprises. SME Server is brought to you by SME Server, Inc. |
means processors before and including Intel Pentium, Pentium MMX; |
25 |
( http://www.smeserver.org/ ), a non-profit corporation that exists to |
AMD K5, K6, K6-II, K6-III and Via C3. i686 architecture processors |
26 |
provide marketing and legal support for SME Server. |
are Intel Pentium Pro, Pentium II, Pentium III; AMD Athlon, |
27 |
|
Athlon XP and later. |
28 |
SME Server is freely available under the GNU General Public License |
|
29 |
and is only possible through the efforts of the SME Server community. |
3. Upgrading from previous releases should only be done on clean |
30 |
However, the availability and quality of SME Server is dependent on |
machines without contribs or other modifications. |
31 |
meeting our expenses, such as hosting costs, server hardware, etc. |
|
32 |
|
4. Testers are now encouraged to test upgrade paths and to start testing |
33 |
As such, we ask for a small donation to offset costs and fund further |
contribs. They are not certain to work so only try on test servers. |
34 |
development. |
Please raise all issues found in the bug tracker. |
35 |
|
|
36 |
Please visit http://www.smeserver.org/donate/ to donate. |
5. Some notes on on SME 8 including help on upgrades can be found at |
37 |
|
http://wiki.contribs.org/SME_Server_8 |
38 |
|
|
39 |
Thanks |
6. Please note it may take up to 48 hours for mirrors to finish syncing, |
40 |
------ |
during this time you may experience problems. |
41 |
The development team would like to thank all of those involved in |
You can download SME8.0 Beta 7 from |
42 |
this release. However, this distribution cannot continue with the |
http://mirror.contribs.org/smeserver/releases/testing/8/iso/i386/ |
43 |
current level of support. More people are required to help with |
or for other methods see http://wiki.contribs.org/SME_Server_8 |
44 |
bug triage and verification testing. |
|
45 |
|
*************************** |
46 |
|
|
47 |
This release contains many new features, all released updates for |
About SME Server |
48 |
SME Server 7.2 and fixes for many reported problems. Upgrades |
================ |
49 |
will be available by CD, the Software Installer and command line. |
|
50 |
|
SME Server is the leading Linux distribution for small and medium |
51 |
|
enterprises. |
52 |
Upgrades |
|
53 |
======== |
SME Server is freely available under the GNU General Public License and |
54 |
|
is only possible through the efforts of the SME Server community. |
55 |
- Always perform a backup prior to major system upgrades |
However, the availability and quality of SME Server is dependent on |
56 |
|
meeting our expenses, such as hosting costs, server hardware, etc. |
57 |
- An upgrade will preserve the existing data |
|
58 |
|
As such, we ask for a small donation to offset costs and fund further |
59 |
|
development. |
60 |
Changes in this release |
|
61 |
======================= |
Please visit http://wiki.contribs.org/Donate to donate. |
62 |
|
|
63 |
|
Thanks and a plea for help |
64 |
Installer Options |
========================== |
65 |
----------------- |
|
66 |
- Using "sme multipart" boot parameter now enables quotas on all LVM's |
The development team would like to thank all of those who have involved |
67 |
see bug 3651 on how to create your quota files |
themselves with this beta release. At this stage in development the role |
68 |
|
of testers is vital; the final release date and the stability and |
69 |
|
quality of the new version depend on full and thorough testing by all |
70 |
Other mail system changes |
levels of users, right from beginners who may be confused by, and draw |
71 |
------------------------- |
the developers attention to, insufficiently transparent system design, |
72 |
- Support for disconnect option in rhsbl plugin |
up to seasoned and skilled users who can probe the system deeply. Bug |
73 |
- Support for disconnect immediately if dnsbl plugin rejects recipient |
triage and verification testing needs lots of community involvement; |
74 |
addresses |
please try to spare some time to this vital aspect of our community's |
75 |
- Newer version of ipsvd to resolve a few Thunderbird issues |
future. |
76 |
- Support for configurable timeouts which by default is set to two minutes |
|
77 |
|
This release, which is based on a major update of the Centos Core, |
78 |
|
contains many new features. Please run Software Installer in Server |
79 |
Console |
Manager regularly during testing to be sure your system reflects the |
80 |
------- |
latest stage of development. |
81 |
- Now able to remove Corporate DNS setting |
|
82 |
- Raid reconstruction now finishes after using "sme nolvm" passed at install |
Major changes in beta 7 |
83 |
time |
======================= |
84 |
|
* Require authentication for all emails, including local. |
85 |
|
* Use ext4 instead of ext3 for filesystems (except for /boot). UNDER DISCUSSION |
86 |
Backups |
* LDAP authentication can be enabled, but is not on by default in this version, |
87 |
------- |
once enabled it cannot be disabled, so experiment with care. |
88 |
- Ability to use console restore with CD or DVD recordable media |
|
89 |
- Remove smbpasswd file prior to restore |
Changes in this release |
90 |
|
======================= |
91 |
|
|
92 |
Localisation |
This section of this README file lists all package changes carried out |
93 |
------------ |
by SME-associated developers since SME Server 8.0 Beta 6. |
94 |
- The fr-fr browser language is now supported |
|
95 |
- Italian translation minor update |
The package changelogs often included earlier changes and changes |
96 |
|
carried out by non-SME-associated developers; these were removed to |
97 |
|
shorten the list. Packages recently altered by Centos, Redhat, and |
98 |
Software Installer |
Fedora-associated developers are not included. |
99 |
------------------ |
|
100 |
- The voxteneo.com and fullnet.co.uk mirrors has been added as a mirror |
Backups |
101 |
location. Many thanks to all of our mirrors |
------- |
102 |
- Removed planetmirror mirror due to being unstable for a number of months |
- Improve how Backup to Workstation handles full remote disks. |
103 |
- Added smecontribs repository to smeserver |
- Localise the choices for 'Select the type of share for backup destination' in |
104 |
|
the Configure Workstation Backup panel |
105 |
|
- Improve the wording of the 'Backup or restore' server-manager panel. |
106 |
Webmail |
Replace term "USB disk" with "removable disk" as this is not restricted |
107 |
------- |
to only USB disks. |
108 |
- Horde, imp, turbo and ingo have been updated to the latest versions |
- Improve wording of workstation backup email regarding the set number. |
109 |
|
- Do not modify the workstation backup location 'SmbShare' during software update |
110 |
|
- Include disk usage in Workstation Backup email. |
111 |
Server manager |
- A new database property, OpenFilesLimit, allows customisation of |
112 |
-------------- |
open_files_limit option in my.cnf. This can allow backups to succeed if a MySQL |
113 |
- Updated wording in Server manager > proxy to be correct when running in |
database has a very large number of tables. |
114 |
serveronly mode |
|
115 |
- Now able to remove settings in the Corporate DNS panel |
File Server |
116 |
- Make qpsmtpd/state visible in the view log files |
----------- |
117 |
- Convert squid timestamp in view log files |
- Change separator character in general Samba configuration file. |
118 |
- Since we moved to session-based login changing admin password does no |
- Changes in Samba's "Recycle VFS exclude" syntax (for ibays). |
119 |
longer invalidate access to server manager |
- Create samba account during event for machine. |
120 |
- Added support if you use port-forwarding with an external dynamic ip |
- Keep uid/gid for computer accounts in synch for Unix/Samba/LDAP. |
121 |
address |
- Fixed syntax error in create-machine-account. |
122 |
|
- Fix samba-group-mapping for users without group membership. |
123 |
|
- Fix cpu critical patch missing ' |
124 |
Other fixes and updates |
- LDAP admin password needs to be loaded in secrets.tdb |
125 |
----------------------- |
|
126 |
- More changes have been made in preparation for migration to CentOS5 |
Localisation |
127 |
- Various samba issues fixed with new samba 3.0.25b package |
------------ |
128 |
- Smartd is disabled by default but has built in templates to enable |
- Latest localisation updates applied. |
129 |
- Import of spamassassin keys are now processed correctly |
|
130 |
- Fixed various log noise issues |
Mail Server |
131 |
- Allow root to be key based login only |
----------- |
132 |
- Increased dnscache forwarder cache size |
- Require SMTP authentication by default when sending to an external address. |
133 |
- Freshclam permissions now corrected |
- Fix TLS security defaults, TLS Ciphers for qpsmtpd can be configured. |
134 |
- Unwanted symlinks in httpd log directory no longer appear |
- Change enabled to transparent for mail proxy. |
135 |
- Added WPAD feature in DHCP |
- Enable authentication for smtp traffic and migrate if necessary. |
136 |
- Fixed various perl issues |
- Fix pseudonym modification for "local network only" accounts. |
137 |
- Using long email address now stops regeneration email every day |
- Add smtp auth into web interface, not just when enabled. |
138 |
|
- Fix require_resolvable_fromhost doesn't work |
139 |
|
- Fix qpsmtpd plugin fatal errors when incoming mail message has no headers. |
140 |
General features |
- Serialize configure_peers to prevent errors. |
141 |
================ |
- Change authentication from passwd/shadow files to the pam database. |
142 |
|
- New feature: Allow for individual configuration for the number of qmail |
143 |
- Based on CentOS 4.6 and all available updates |
logfiles. |
144 |
|
|
145 |
|
Server manager |
146 |
There are a few differnces from previous releases <=7.2 |
-------------- |
147 |
====================================================================== |
- Enhance IP address syntax checking in remote access panel. |
148 |
|
|
149 |
|
Webmail and Groupware |
150 |
After installing for the very first time: |
--------------------- |
151 |
----------------------------------------- |
- Update to Horde 3.3.11, imp 4.3.9, Ingo 1.2.5 & Turba 2.3.5 |
152 |
- First night you should receive an email from cron about sa_updates. |
- Add option to verify from address in webmail if setting up additional |
153 |
- First night you should receive a large email saying a bunch of |
identities. |
154 |
groups/users were removed/added (rkhunter email notification). |
- Turba searches on LDAP address book fixed. |
155 |
- Any time you change users/groups you will receive an email the next day |
|
156 |
about those changes (rkhunter email notification). |
Web Server |
157 |
|
---------- |
158 |
|
- Disable SSLv2 by default. |
159 |
Taking the upgrade path from a 7.x to 7.3 |
- make user 'apache' an alias for user 'www'. |
160 |
----------------------------------------- |
|
161 |
- First night you may receive an email from cron about sa_updates |
Other fixes and updates |
162 |
- First night you may receive a email saying missing passwd/group files |
----------------------- |
163 |
(rkhunter email notification). |
- Use ext4 instead of ext3 for filesystems (except for /boot) |
164 |
|
- Properly handle account with accents in first- or lastname with regards to LDAP. |
165 |
$Id: README.txt,v 1.20 2008/01/01 17:18:13 slords Exp $ |
- Only allow backup to (removable) storage media that are not read only. |
166 |
|
- Improve error handling when trying to install without NIC. |
167 |
|
- Only remove dangling symlinks in weak-updates directories. |
168 |
|
- Fix create user gid parameter. |
169 |
|
- Path for gpasswd command fixed in "init-accounts" script. |
170 |
|
- Fix template-expansion for dhclient.conf. |
171 |
|
- Improve validation (error) message for remote access setup. |
172 |
|
- Change text in hostname and addresses panel for remote host (add FQDN). |
173 |
|
- Fix hostname editing for comments with double speechmarks |
174 |
|
- Trap croak inside Net::IPv4Addr::ipv4_in_network to allow a FQDN to be inserted |
175 |
|
in hostnames and addresses panel in lieu of an IP address. |
176 |
|
- Add validator back for ip or cname entry. |
177 |
|
- All ibay account commands as system accounts in LDAP. |
178 |
|
- Create ibay accounts as system accounts in LDAP. |
179 |
|
- Use cpu commands to manage Ibays accounts if ldap is master. |
180 |
|
- Make cpu calls critical only with ldap{Auth} is enabled. |
181 |
|
- Check slapd.conf syntax before trying to dump the database. |
182 |
|
- Simplify ldap-update call by calling ldif-fix |
183 |
|
- Change script order: ldap-update should be called after domain-group-maps. |
184 |
|
- LDAP ou field is taken from Dept not Department. |
185 |
|
- LDAP chnages: Add rfc2739.schema back in and include in config. |
186 |
|
- Use ldapmodify to load ldif, add -a if no changetype. |
187 |
|
- Remove bogus junk attribute from ldif templates. |
188 |
|
- Change startup order for ldap. |
189 |
|
- ldap should store locked passwords for expired passwords. |
190 |
|
- Correctly strip numbers from sql scripts |
191 |
|
- Enable speedier time synchronisation for suspended VMs, this can be configured |
192 |
|
by a new db key for ntpd, SupportLargeDrift. |
193 |
|
- Obsolete KeepAlive and replace by ClientAliveInterval and ClientAliveCountMax |
194 |
|
to prevent SSH sessions from being timed out by network inactivity. |
195 |
|
- New feature: Default Cipher to blowfish for ssh configuration. |
196 |
|
- Add directive "PersistentPasswd off" to proftpd configuration. |
197 |
|
- Quota panel should allow non-integers but only accept uppercase units. |
198 |
|
- Enable quotas on ext4 filesystems as well. |
199 |
|
- Add ldap as an auth type to radius |
200 |
|
- Radius should use LDAP backend (if LDAP auth is enabled). |
201 |
|
|
202 |
|
General features |
203 |
|
================ |
204 |
|
|
205 |
|
- Based on CentOS 5.6 and all available updates |
206 |
|
|
207 |
|
$Id: README.txt,v 1.7 2010/07/15 07:58:07 wellsi Exp $ |
208 |
|
|