]> git.ipfire.org Git - thirdparty/dhcp.git/blame - RELNOTES
Merging in final change from rt15937, getting rid of space
[thirdparty/dhcp.git] / RELNOTES
CommitLineData
98311e4b
DH
1 Internet Systems Consortium DHCP Distribution
2 Version 3.1 - HEAD
3 March 3, 2005
72c7bd79 4
98311e4b 5 Release Notes
72c7bd79 6
da411127 7 NEW FEATURES
16449d9c 8
3a16098f
DH
9XXX: Note need for care of ATSFP values when upgrading from 3.0.4+ to
103.1.x.
11
6d779c72
TL
12Version 3 of the ISC DHCP Distribution includes the following features
13that are new since version 2.0:
29d5553a 14
da411127
TL
15 - DHCP Failover Protocol support
16 - OMAPI, an API for accessing and modifying the DHCP server and
17 client state.
18 - Conditional behaviour
19 - Storing arbitrary information on leases
20 - Address pools with access control
21 - Client classing
22 - Address allocation restriction by class
23 - Relay agent information option support
24 - Dynamic DNS updates
25 - Many bug fixes, performance enhancements, and minor new DHCP
26 protocol features.
72c7bd79 27
98311e4b
DH
28The main bug fixed here is a bug in the subclass allocation code that
29could result in a memory smash. Any users of the ISC DHCP server who
30are using subclasses should seriously consider upgrading to 3.0.1.
6d779c72
TL
31
32If you are running 3.0 beta 1 and are doing dynamic DNS updates, the
33lease file is no longer forward-compatible to 3.0 final. A script
34has been provided to convert 3.0b1 lease files. This is in
35contrib/3.0b1-lease-convert.
4ff4053b 36
ca4606b5
TL
37For information on how to install, configure and run this software,
38as well as how to find documentation and report bugs, please consult
39the README file.
40
da411127
TL
41The Dynamic DNS Update support is a descendent of an implementation
42done by Lans Carstensen and Brian Dols at Rose-Hulman Institute of
de57e64b
TL
43Technology, Jim Watt at Applied Biosystems, Irina Goble at Integrated
44Measurement Systems, Igor Sharfmesser at Kazakh Telecom, and Brian
45Murrell at BC Tel Advanced Communications. I'd like to express my
46thanks to all of these good people here, both for working on the code
47and for prodding me into improving it.
48
3a16098f
DH
49 Changes since 3.0.4
50
51- A warning that host statements declared within subnet or shared-network
52 scopes are actually global has been added.
53
54- The default minimum lease time (if min-lease-time was not specified)
55 was raised from 0 to 300. 0 is not thought to be sensible, and is
56 known to be damaging.
57
58- Added additional fatal error sanity checks surrounding lease binding
59 state count calculations (free/active counts used for failover pool
60 balancing).
61
62 Changes since 3.0.4rc1
63
64- The dhcp-options.5 manpage was updated to correct indentation errors
65 thanks to a patch from Jean Delvare.
66
67 Changes since 3.0.4b3
68
69- Some manual pages were clarified pursuant to discussion on the dhcp-server
70 mailing list.
98311e4b
DH
71
72 Changes since 3.0 (New Features)
73
74- A workaround for certain STSN servers that send a mangled domain-name
75 option was introduced for dhclient. The client will now accept corrupted
76 server responses, if they contain a valid DHCP_MESSAGE_TYPE (OFFER, ACK,
77 or NAK). The server will continue to not accept corrupt client packets.
78
a55ccdd0
DH
79- Support for 'reserved' (psuedo-static) and BOOTP leases via failover
80 was introduced.
98311e4b
DH
81
82- Support for adding, removing, and managing class and subclass statements
83 via OMAPI.
84
a55ccdd0
DH
85- The failover implementation was updated to comply with revision 12 of
86 the protocol draft.
87
98311e4b
DH
88- 'make install' now creates the initial zero-length dhcpd.leases file if
89 one does not already exist on the system.
90
b43c87ad
DH
91- RFC3942 compliance, site-local option spaces start at 224 now, not 128.
92 ||| THIS NEEDS TO BE SPELLED OUT IN THE NEW FEATURES LIST |||
93
25b988c6
DH
94- The IO system now tracks all local IP addresses, so that the DHCP
95 applications (particularly the dhcrelay) can discern between what frames
96 were tranmsitted to it, and what frames are being carried through it which
97 it should not intercept.
88cd8aca 98
0b17f049
DH
99- The Load Balance Algorithm was misimplemented. The current implementation
100 matches RFC 3074.
101
88cd8aca
DH
102 Changes since 3.0.4b2
103
104- Null-termination sensing for certain clients that unfortunatley require
105 it in DHCPINFORM processing was repaired.
106
107- The host-name option and a few others were moved from "X" format to "t"
108 format to be compatible with new NULL handling functions.
109
110- DHCPINFORM processing is a little more careful about return addressing
111 its responses, or if responding via a relay. The INFORM related
112 messages also log the 'effective client ip address' rather than the
113 client's supplied ciaddr (since some clients produce null ciaddrs).
114
115- The server was inappropriately sending leases to the RESET state in the
116 event that multiple active leases were found to match a singly-identified
117 client. This was changed to RELEASED (by accepting a different, ACTIVE
118 binding, the client is implicitly releasing its lease). This repairs a
119 bug wherein secondary servers in failover pairs detecting this condition
120 move leases to RESET, and primaries refuse to accept that state
121 transition (properly).
122
123- The memset-after-dmalloc() changes made in 3.0.4b1 have been backed out.
124
125 Changes since 3.0.4b1
126
127- Command line parsing in omshell was repaired - it no longer closes
128 STDIN after reading one line.
129
130- The resolver library no longer closes the /etc/resolv.conf file
131 descriptor it opened twice.
132
133- Changes to trailing NULL removal in 't' option-atoms has been rethought,
134 it now includes 'd' (domain name) types, and tries hard not to rewind an
135 option beyond the start of the text field it is un-terminating.
136
137 Changes since 3.0.3
138
139- A DDNS update handling function was misusing the DNS error codes, rather
140 than the internal generic result enumeration. The result is a confusing
141 syslog line, logging the wrong condition.
142
143- The DHCP Server was not checking pool balance in the case where it brought
144 a non-ACTIVE lease out of storage for a client that was returning to use
145 a lease it once had long ago, and had since expired.
146
147- Failover peers no longer bother to look for free leases to allocate when
148 they already found the client's ACTIVE lease. DISCOVERs are load balanced
149 wether freely-allocated or not, unless the server doubts the peer has
150 leases to allocate.
151
152- Fixed a bug in dhcrelay agent addition code that suppressed trailing
153 PAD options - it was suppressing only one trailng PAD option, rather
154 than the entire block of them.
155
3a16098f
DH
156! Fixed some unlikely overlapping-region memcpy() bugs in dhcrelay agent
157 option addition and stripping code. Added a few sanity checks. Although
158 highly improbable, due to requiring the reception of a DHCP datagram well
159 in excess of all known to be used physical MTU limitations, it is possible
160 this may have been used in a stack overflow security vulnerability. Thanks
161 to a patch from infamous42md.
162
163! Added some sanity checks to OMAPI connection/authentication code.
164 Although highly improbable, due to having to deliver in excess of 2^32
165 bytes of data via the OMAPI channel, not to mention requiring dhcpd to
166 be able to malloc() a memory region 2^32 bytes in size, it was possible
167 this might have resulted in a heap overflow security vulnerability.
168 Thanks to a patch from infamous42md.
88cd8aca
DH
169
170- dmalloc() memset()'s the non-debug (data) portion of the allocated
171 memory to zero. Code that memset()'s the result returned by dmalloc() to
172 zero is redundant. These redundancies were removed.
173
174- Some type declaration corrections to u_int16_t were made in common/tr.c
175 (Token Ring support) thanks to a patch from Jason Vas Dias at RedHat.
176
177- A failover bug that was allowing leases that EXPIRED or were RELEASED
178 where tsfp and tstp are identical timestamps to languish in these
179 transitional states has been repaired. As a side effect, lease
180 databases should be kept more consistent overall, not just for these
181 transitional states.
182
183- If the lease db is deleted out from under the daemon, and it moves to rewrite
184 the db, it will go ahead with the operation and move the new db into place
185 once it detects the old db does not exist.
186
187- dhclient now ignores IRDA, SIT, and IEEE1394 network interfaces, as it
188 is either nonsensical or (in the case of IEEE1394) is not known to support
189 these interfaces. Thanks to Marius Gedminas and Andrew Pollock of Debian.
190
191- Some previously undocumented reasons for dhclient-script invoking has
192 been doucmented in the dhclient-script.8 manpage.
193
194- Failover potential expiry calculations (TSTP) have been corrected. Results
195 should be substantially more consistent, and proper given the constraints.
196
197- Adjusted lease state validation checks in potential-conflict, to
198 account for possible clock skew similarly to normal state, and several
199 previously illegal transitions were made legal (ex: active->released).
200
201- An impossible sanity check was removed from omapi/buffer.c, thanks to a
202 patch from 'infamous42md'.
203
204- An OMAPI host/network byte order problem in lease time values has been
205 repaired.
206
207- Several minor bugs, largely relating to treating 8-byte time values as
208 4-byte entities, have been repaired after careful review of the FreeBSD
209 ports collection's patch set. Thanks to the nameless entities who have
210 contributed to the FreeBSD ports.
211
212- When writing a trace file, the file is now created with permissions 0600,
213 to help administrators avoid accidentally publicising sensitive config
214 data.
215
216- The calculation of the maximum size of DHCP packets no longer includes
217 Ethernet framing overhead. The result is that the 'Maximum Message
218 Size' option advertised by clients, or the default value 576, is no
219 longer reduced by 14 bytes, and instead directly reflects the IP level
220 MTU (and the default, minimum allowed IP MTU of 576).
221
222- The special status of RELEASED/EXPIRED/RESET leases when a server
223 is operating in partner-down was fixed. It no longer requires a
224 lease be twice the MCLT beyond STOS to 'reallocate', and the expiry
225 event to turn these into FREE leases without peer acknowledgement
226 (after STOS+MCLT) has been repaired.
227
228- Compilation on older Solaris systems (lacking /usr/include/sys/int_types.h)
229 has been repaired.
230
231- "append"ing a string onto the end of a "t" type option (such as the
232 domain-name field) that had been improperly NULL-terminated by the
233 DHCP server will no longer result in a truncated string containing
234 only the option from the server, and not the expected appended value.
235 Thanks to a patch from Jason Vas Dias at RedHat.
236
237- File handlers on configuration state (config files and lease dbs) should
238 be treated consistently, regardless of wether TRACING is defined or not.
239
240- The linux build environment has had some minor improvements - better
241 sensing of 64-bit pointer sizes (only used for establishing an icmp_id),
242 and corrections to #if operators regarding LINUX_MAJOR should it ever
243 move to 3.[01].x.
244
245- The server now tries harder to survive the condition where it is unable
246 to open a new lease file to rewrite the lease state database.
247
c75473d8
DH
248 Changes since 3.0.3b3
249
250- dhclient.conf documentation for interface {} was updated to reflect recent
251 discussion on the dhcp-hackers mailing list.
252
253- In response to reports that the software does not compile on GCC 4.0.0,
254 -Werror was removed from Makefile.conf for all platforms that used it.
255 We will address the true problem in a future release; this is a temporary
256 workaround.
257
258 Changes since 3.0.3b2
259
260- An error in code changes introduced in 3.0.3b2 was corrected, which caused
261 static BOOTP clients to receive random addresses.
262
263 Changes since 3.0.3b1
264
265- A bug was fixed in BOOTPREQUEST handling code wherein stale references to
266 host records would be left behind on leases that were not allocated to the
267 client currently booting (eg in the case where the host was denied booting).
268
269- The dhcpd.conf.5 manpage was updated to be more clear in regards to
270 multiple host declarations (thanks to Vincent McIntyre). 'Interim' style
271 dynamic updates were also retouched.
272
98311e4b
DH
273 Changes since 3.0.2
274
275- A bug was fixed where a server might load balance a DHCP REQUEST to its
276 peer after already choosing not to load balance the preceeding DISCOVER.
277 The peer cannot allocate the originating server's lease.
278
279- In the case where a secondary server lost its stable storage while the
280 primary was still in communications-interrupted, and came back online,
281 the lease databases would not be fully transferred to the secondary.
282 This was due to the secondary errantly sending an extra UPDREQ message
283 when the primary made its state transition to PARTNER-DOWN known.
284
285- The package will now compile cleanly in gcc 3.3 and 3.4. As a side effect,
286 lease structures will be 9 bytes smaller on all platforms. Thanks to
287 Jason Vas Dias at Redhat.
288
289- Interface discovery code in DISCOVER_UNCONFIGURED mode is now
290 properly restricted to only detecting broadcast interfaces. Thanks
291 to a patch from Jason Vas Dias at RedHat.
292
293- decode_udp_ip_header was changed so that the IP address was copied out
294 to a variable, rather than referenced by a pointer. This enforces 4-byte
295 alignment of the 32-bit IP address value. Thanks to a patch from Dr.
296 Peter Poeml.
297
298- An incorrect log message was corrected thanks to a patch from
299 Dr. Peter Poeml.
300
301- A bug in DDNS was repaired, where if the server's first DDNS action was
302 a DDNS removal rather than a DDNS update, the resolver library's
303 retransmit timer and retry timer was set to the default, implying a
304 15 second timeout interval. Which is a little excessive in a synchronous,
305 single-threaded system. In all cases, ISC DHCP should now hold fast to
306 a 1-second timeout, trying only once.
307
308- The siaddr field was being improperly set to the server-identifier when
309 responding to DHCP messages. RFC2131 clarified the siaddr field as
310 meaning the 'next server in the bootstrap process', eg a tftp server.
311 The siaddr field is now left zeroed unless next-server is configured.
312
313- mockup_lease() could have returned in an error condition (or in the
314 condition where no fixed-address was found matching the shared
315 network) with stale references to a host record. This is probably not
316 a memory leak since host records generally never die anyway.
317
318- A bug was repaired where failover servers would let stale client identifiers
319 persist on leases that were reallocated to new clients not sending an id.
320
321- Binding scopes ("set var = value;") are now removed from leases allocated
322 by failover peers if the lease had expired. This should help reduce the
323 number of stale binding scopes on leases.
324
325- A small memory leak was closed involving client identifiers larger than
326 7 bytes, and failover.
327
328- Configuring a subnet in dhcpd.conf with a subnet mask of 32 bits might
329 cause an internal function to overflow heap. Thanks to Jason Vas Dias
330 at Redhat.
331
332- Some inconsistencies in treating numbers that the lexer parsed as 'NUMBER'
333 or 'NUMBER_OR_NAME' was repaired. Hexadecimal parsing is affected, and
334 should work better.
335
336- In several cases, parse warnings were being issued before the lexical
337 token had been advanced to the token whose value was causing an error...
338 causing parse warnings to claim the problem is on the wrong token.
339
340- Host declarations matching on client identifier for dynamic leases will
341 no longer match fixed-address host declarations (this is now identical
342 to behaviour for host records matching on hardware address).
343
344 Changes since 3.0.2rc3
345
346- A previously undocumented configuration directive, 'local-address',
347 was documented in the dhcpd.conf manpage.
348
349 Changes since 3.0.2rc2
350
351- Two varaibles introduced in 3.0.2b1 were used without being initialized
352 in the case where neither the FILE nor SNAME fields were available for
353 overloading. This was repaired.
354
355- A heretofore believed to be impossible corner case of the option
356 overloading implementation turned out to be possible ("Unable to sort
357 overloaded options after 10 tries."). The implementation was reworked
358 to consider the case of an option so large it would require more than
359 three chunks to fit.
360
361- Many other instances of variables being used without being initialized
362 were repaired.
363
364- An uninitialized variable in omapi_io_destroy() led to the discovery
365 that this function may result in orphaned pointers (and hence, a memory
366 leak).
367
368 Changes since 3.0.2rc1
369
370- allocate_lease() was rewritten to repair a bug in which the server would
371 try to allocate an ABANDONED lease when FREE leases were available.
372
373 Changes since 3.0.2b1
374
375- Some dhcp-eval.5 manpage formatting was repaired.
376
377 Changes since 3.0.1
378
379- A bug was fixed in the server's 'option overloading' implementation,
380 where options loaded into the 'file' and 'sname' packet fields were
381 not aligned precisely as rfc2131 dictates.
382
383- The FreeBSD client script was changed to support the case where a domain
384 name was not provided by the server.
385
386- A memory leak in 'omshell' per each command line parsed was
387 repaired, thanks to a patch from Jarkko Torppa.
388
389- Log functions writing to stderr were adjusted to use the STDERR_FILENO
390 system definition rather than '2'. This is a no-op for 90% of platforms.
391
392- One call to trace_write_packet_iov() counted the number of io vectors
393 incorrectly, causing inconsistent tracefiles. This was fixed.
394
395- Some expression parse failure memory leaks were closed.
396
397- A host byte order problem in tracefiles was repaired.
398
399- Pools configured in DHCPD for failover possessing permission lists that
400 previously were assumed to not include dyanmic bootp clients are now
401 a little more pessimistic. The result is, dhcpd will nag you about just
402 about most pools that possess a 'allow' statement with no 'deny' that
403 would definitely match a dynamic bootp client.
404
405- The 'ddns-update-style' configuration warning bit now insists that
406 the configuration be globally scoped.
407
408- Two memory leaks in dhclient were closed thanks to a patch from Felix
409 Farkas.
410
411- Some minor but excellently pedantic documentation errors were fixed
412 thanks to a patch from Thomas Klausner.
413
414- Bugs in operator precedence in executable statements have been repaired
415 once again. More legal syntaxes should be parsed legally.
416
417- Failing to initialize a tracefile for any reason if a tracefile was
418 specified is now a fatal error. Thanks to a patch from Albert Herranz.
419
420- Corrected a bug in which the number of leases transferred as calculated
421 by the failover primary and sent to peers in POOLRESP responses may be
422 incorrect. This value is not believed to be used by other failover
423 implementations, excepting perhaps as logged information.
424
425- Corrected a bug in which 'dhcp_failover_send_poolresp()' was in fact
426 sending POOLREQ messages instead of POOLRESP mesasges. This message
427 was essentially ignored since failover secondaries effectively do not
428 respond to POOLREQ messages.
429
430- Type definitions for various bitwidths of integers in the sunos5-5
431 build of ISC DHCP have been fixed. It should compile and run more
432 easily when built in 64-bit for this platform.
433
434- "allow known-clients;" is now a legal syntax, to avoid confusion.
435
436- If one dhcp server chooses to 'load balance' a request to its failover
437 peer, it first checks to see if it believes said peer has a free
438 lease to allocate before ignoring the DISCOVER.
439
440- log() was logging a work buffer, rather than the value returned by
441 executing the statements configured by the user. In some cases,
442 the work buffer and the intended results were the same. In some other
443 cases, they were not. This was fixed thanks to a patch from Gunnar
444 Fjone and directconnect.no.
445
446- Compiler warnings for some string type conversions was fixed, thanks
447 to Andreas Gustafsson.
448
449- The netbsd build environments were simplified to one, in which
450 -Wconversion is not used, thanks to Andreas Gustafsson.
451
452- How randomness in the backoff-cutoff dhclient configuration variable
453 is implemented was better documented in the manpage, and the behaviour
454 of dhclient in REQUEST timeout handling was changed to match that of
455 DISCOVER timeout handling.
456
457- Omapi was hardened against clients that pass in null values, thanks
458 to a patch from Mark Jason Dominus.
459
460- A bug was fixed in dhclient that kept it from doing client-side
461 ddns updates. Thanks to a patch from Andreas Gustafsson, which
462 underwent some modification after review by Jason Vas Dias.
463
464- Failover implementations disconnected due to the network between
465 them (rather than one of the two shutting down) will now try to
466 re-establish the failover connection every 5 seconds, rather than
467 to simply try once and give up until one of them is restarted.
468 Thanks to a patch from Ulf Ekberg from Infoblox, and field testing
469 by Greger V. Teigre which led to an enhancement to it.
470
471- A problem that kept DHCP Failover secondaries from tearing down
472 ddns records was repaired. Thanks to a patch from Ulf Ekberg from
473 Infoblox.
474
475- 64bit pointer sizes are detected properly on FreeBSD now.
476
477- A bug was repaired where the DHCP server would leave stale references
478 to host records on leases it once thought about offering to certain
479 clients. The result would be to apply host and 'known' scopes to the
480 wrong clients (possibly denying booting). NOTE: The 'mis-host' patch
481 that was being circulated as a workaround is not the way this bug was
482 fixed. If you were a victim of this bug in 3.0.1, you are cautioned
483 to proceed carefully and see if it fixes your problem.
484
485- A bug was repaired in the server's DHCPINFORM handling, where it
486 tried to divine the client's address from the source packet and
487 would get it wrong. Thanks to Anshuman Singh Rawat.
488
489- A log message was introduced to help illuminate the case where the
490 server was unable to find a lease to assign to any BOOTP client.
491 Thanks to Daniel Baker.
492
493- A minor dhcpd.conf.5 manpage error was fixed.
494
495 Changes since 3.0.1rc14
496
497- The global variable 'cur_time' was centralized and is now uniformly of a
498 type #defined in system-dependent headers. It had previously been defined
499 in one of many places as a 32-bit value, and this causes mayhem on 64-bit
500 big endian systems. It probably wasn't too healthy on little endian
501 systems either.
502
503- A printf format string error introduced in rc14 was repaired.
504
505- AIX system-dependent header file was altered to only define NO_SNPRINTF
506 if the condition used to #ifdef in vsnprintf in AIX' header files
507 is false.
508
509- The Alpha/OSF system-dependent header file was altered to define
510 NO_SNPRINTF on OS revisions older than 4.0G.
511
512- omapip/test.c had string.h added to its includes.
513
514 Changes since 3.0.1rc13
515
516! CAN-2004-0460 - CERT VU#317350: Five stack overflow exploits were closed
517 in logging messages with excessively long hostnames provided by the
518 clients. It is highly probable that these could have been used by
519 attackers to gain arbitrary root access on systems using ISC DHCP 3.0.1
520 release candidates 12 or 13. Special thanks to Gregory Duchemin for
521 both finding and solving the problem.
522
523! CAN-2004-0461 - CERT VU#654390: Once the above was closed, an opening
524 in log_*() functions was evidented, on some specific platforms where
525 vsnprintf() was not believed to be available and calls were wrapped to
526 sprintf() instead. Again, credit goes to Gregory Duchemin for finding
527 the problem. Calls to snprintf() are now linked to a distribution-local
528 snprintf implementation, only in those cases where the architecture is
529 not known to provide one (see includes/cf/[arch].h). If you experience
530 linking problems with snprintf/vsnprintf or 'isc_print_' functions, this
531 is where to look. This vulnerability did not exist in any previously
532 published version of ISC DHCP.
533
534- Compilation on hpux 11.11 was repaired.
535
536- 'The cross-compile bug fix' was backed out.
537
538 Changes since 3.0.1rc12
539
540- Fixed a bug in omapi lease lookup function, to form the hardware
541 address for the hash lookup correctly, thanks to a patch from
542 Richard Hirst.
543
544- Fixed a bug where dhcrelay was sending relayed responses back to the
545 broadcast address, but with the source's unicast mac address. Should
546 now conform to rfc2131 section 4.1.
547
548- Cross-compile bug fix; use $(AR) instead of ar. Thanks to Morten Brorup.
549
550- Fixed a crash bug in dhclient where dhcpd servers that do not provide
551 renewal times results in an FPE. As a side effect, dhclient can now
552 properly handle 0xFFFFFFFF (-1) expiry times supplied by servers. Thanks
553 to a patch from Burt Silverman.
554
555- The 'ping timeout' debugs from rc12 were removed to -DDEBUG only,
556 and reformatted to correct a compilation error on solaris platforms.
557
558- A patch was applied which fixes a case where leases read from the
559 leases database do not properly over-ride previously read leases.
560
561- dhcpctl.3 manpage was tweaked.
562
563 Changes since 3.0.1rc11
564
565- A patch from Steve Campbell was applied with minor modifications to
566 permit reverse dns PTR record updates with values containing spaces.
567
568- A patch from Florian Lohoff was applied with some modifications to
569 dhcrelay. It now discards packets whose hop count exceeds 10 by default,
570 and a command-line option (-c) can be used to set this threshold.
571
572- A failover bug relating to identifying peers by name length instead of
573 by name was fixed.
574
575- Delcaring failover configs within shared-network statements should no
576 longer result in error.
577
578- The -nw command line option to dhclient now works.
579
580- Thanks to a patch from Michael Richardson:
581 - Some problems with long option processing have been fixed.
582 - Some fixes to minires so that updates of KEY records will work.
583
584- contrib/ms2isc was updated by Shu-Min Chang of the Intel Corporation.
585 see contrib/ms2isc/readme.txt for revision notes.
586
587- Dhclient no longer uses shell commands to kill another instance of
588 itself, it sends the signal directly. Thanks to a patch from Martin
589 Blapp.
590
591- The FreeBSD dhclient-script was changed so that a failure to write to
592 /etc/resolv.conf does not prematurely end the script. This keeps dhclient
593 from looping infinitely when this is the case. Thanks to a patch from
594 Martin Blapp.
595
596- A patch from Bill Stephens was applied which resolves a problem with lease
597 expiry times in failover configurations.
598
599- A memory leak in configuration parsing was closed thanks to a patch from
600 Steve G.
601
602- The function which discovers interfaces will now skip non-broadcast or
603 point-to-point interfaces, thanks to a patch from David Brownlee.
604
605- Options not yet known by the dhcpd or dhclient have had their names
606 changed such that they do not contain # symbols, in case they should ever
607 appear in a lease file. An option that might have been named "#144" is
608 now "unknown-144".
609
610- Another patch from Bill Stephens which allows the ping-check timeout to
611 be configured as 'ping-timeout'. Defaults to 1.
612
613 Changes since 3.0.1rc10
614
615- Potential buffer overflows in minires repaired.
616
617- A change to the linux client script to use /bin/bash, since /bin/sh may
618 not be bash.
619
620- Some missing va_end cleanups thanks to a patch from Thomas Klausner.
621
622- A correction of boolean parsing syntax validation - some illegal syntaxes
623 that worked before are now detected and produce errs, some legal syntaxes
624 that errored before will now work properly.
625
626- Some search-and-replace errors that caused some options to change their
627 names was repaired.
628
629- Shu-min Chang of the Intel corporation has contributed a perl script and
630 module that converts the MS NT4 DHCP configuration to a ISC DHCP3
631 configuration file.
632
633- Applied the remainder of the dhcpctl memory leak patch provided by Bill
634 Squier at ReefEdge, Inc. (groo@reefedge.com).
635
636- Missing non-optional failover peer configurations will now result in a soft
637 error rather than a null dereference.
638
639 Changes since 3.0.1rc9
640
641- A format string was corrected to fix compiler warnings.
642
643- A number of spelling corrections were made in the man pages.
644
645- The dhclient.conf.5 man page was changed to refer to do-forward-updates
646 rather than a configuration option that doesn't exist.
647
648- A FreeBSD-specific bug in the interface removal handling was fixed.
649
650- A Linux-specific Token Ring detection problem was fixed.
651
652- Hashes removed from as-yet-unknown agent options, having those options
653 appear in reality before we know about them will no longer produce
654 self-corrupting lease databases.
655
656- dhclient will use the proper port numbers now when using the -g option.
657
658- A order-of-operations bug with 2 match clauses in 1 class statement is
659 fixed thanks to a patch from Andrew Matheson.
660
661- Compilation problems on Solaris were fixed.
662
663- Compilation problems when built with DEBUG or DEBUG_PACKET were repaired.
664
665- A fix to the dhcp ack process which makes certain group options will be
666 included in the first DHCPOFFER message was made thanks to a patch from
667 Ling Gou.
668
669- A few memory leaks were repaired thanks to patches from Bill Squier at
670 ReefEdge, Inc. (groo@reefedge.com).
671
672- A fix for shared-networks that sometimes give clients options for the
673 wrong subnets (in particular, 'option routers') was applied, thanks to
674 Ted Lemon for the patch.
675
676- Omshell's handling of dotted octets as values was changed such that dots
677 one after the other produce zero values in the integer string.
678
679 Changes since 3.0.1rc8
680
681- Fix a format string vulnerability in the server that could lead to a
682 remote root compromise (discovered by NGSEC Research Team, www.ngsec.com).
683
684- Add additional support for NetBSD/sparc64.
685
686- Fix a bug in the command-line parsing of the client. Also, resolve
687 a memory leak.
688
689- Add better support for shells other than bash in the Linux client
690 script.
691
692- Various build fixes for modern versions of FreeBSD and Linux.
693
694- Fix a bad bounds check when printing binding state names.
695
696- Clarify documentation about fixed-address and multiple addresses.
697
698- Fix a typo in the authoritative error message.
699
700- Make a log entry when we can't write a billing class.
701
702- Use conversion targets that are the right size on all architectures.
703
704- Increment the hop count when relaying.
705
706- Log a message when lease state is changed through OMAPI.
707
708- Don't rerun the shared_network when evaluating the pool.
709
710- Fix a reversed test in the parser.
711
712- Change the type of rbuf_max.
713
714- Make FTS_LAST a manifest constant to quiet warnings.
715
716 Changes since 3.0.1rc7
717
718- Fix two compiler warnings that are generated when compiling on Solaris
719 with gcc. These stop the build, even though they weren't actually
720 errors, because we prefer that our builds generate no warnings.
721
722 Changes since 3.0.1rc6
723
724- Don't allow a lease that's in the EXPIRED, RELEASED or RESET state
725 to be renewed.
726
727- Implement lease stealing for cases where the primary has fewer leases
728 than the secondary, as called for by the standard.
729
730- Add a fudge factor to the lease expiry acceptance code, (suggested
731 by Kevin Miller of CMU).
732
733- Fix a bug in permit_list_match that made it much too willing to say
734 that two permit lists matched.
735
736- Unless DEBUG_DNS_UPDATES is defined, print more user-friendly (and
737 also more compact) messages about DNS updates.
738
739- Fix a bug in generating wire-format domain names for the FQDN option.
740
741- Fix a bug where the FQDN option would not be returned if the client
742 requested it, contrary to the standard.
743
744- On Darwin, use the FreeBSD DHCP client script.
745
746- On NetBSD/sparc, don't check for casting warnings.
747
748- Add a flag in the DHCP client to disable updating the client's A
749 record when sending an FQDN option indicating that the client is
750 going to update its A record.
751
752- In the client, don't attempt a DNS update until one second after
753 configuring the new IP address, and if the update times out, keep
754 trying until a response, positive or negative, is received from the
755 DNS server.
756
757- Fix an uninitialized memory bug in the DHCP client.
758
759- Apply some FreeBSD-specific bug fixes suggested by Murray Stokely.
760
761- Fix a bug in ns_parserr(), where it was returning the wrong sort
762 of result code in some cases (suggested by Ben Harris of the
763 NetBSD project).
764
765- Fix a bug in is_identifier(), where it was checking against EOF
766 instead of the END_OF_FILE token (also suggested by Ben Harris).
767
768- Fix a bug where if an option universe contained no options, the
769 DHCP server could dump core (Walter Steiner).
770
771- Fix a bug in the handling of encapsulated options.
772
773- Fix a bug that prevented NWIP suboptions from being processed.
774
775- Delete the FTS_BOOTP and FTS_RESERVED states and implement them
776 as modifier flags to the FTS_ACTIVE state, as called for in the
777 failover protocol standard.
778
779- Fix bugs in the pool merging code that resulted in references and
780 dereferences of null pointers. This bug had no impact unless the
781 POINTER_DEBUG flag was defined.
782
783- In the server, added a do-forward-updates flag that can be used to
784 disable forward updates in all cases, so that sites that want the
785 clients to take sole responsibility for updating their A record can
786 do so.
787
788- Make it possible to disable optimization of PTR record updates.
789
790 Changes since 3.0.1rc5
791
792- Include some new documentation and changes provided by Karl Auer.
793
794- Add a workaround for some Lexmark printers that send a double-NUL-
795 terminated host-name option, which would break DNS updates.
796
797- Fix an off-by-one error in the MAC-address checking code for
798 DHCPRELEASE that was added in 3.0.1rc5.
799
800- Fix a bug where client-specific information was not being discarded
801 from the lease when it expired or was released, resulting in
802 problems if the lease was reallocated to a different client.
803
804- If more than one allocation pool is specified that has the same set
805 of constraints as another allocation pool on the same shared
806 network, merge the two pools.
807
808- Don't print an error in fallback_discard, since this just causes
809 confusion and does not appear to be helping to encourage anyone to
810 fix this bug.
811
812 Changes since 3.0.1rc4
813
814- Fix a bug that would cause the DHCP server to spin if asked to parse
815 a certain kind of incorrect statement.
816
817- Fix a related bug that would prevent an error from being reported in
818 the same case.
819
820- Additional documentation.
821
822- Make sure that the hardware address matches the lease when
823 processing a DHCPRELEASE message.
824
825 Changes since 3.0.1rc3
826
827- A minor bug fix in the arguments to a logging function call.
828- Documentation update for dhcpd.conf.
829
830 Changes since 3.0.1rc2
831
832- Allow the primary to send a POOLREQ message. This isn't what the current
833 failover draft says to do, so we may have to back it out if I can't get the
834 authors to relent, but the scheme for balancing that's specified in the
835 current draft seems needlessly hairy, so I'm floating a trial balloon.
836 The rc1 code did not implement the method described in the draft either.
837
838 Changes since 3.0.1rc1
839
840- Treat NXDOMAIN and NXRRSET as success when we are trying to delete a
841 domain or RRSET. This allows the DHCP server to forget about a name
842 it added to the DNS once it's been removed, even if the DHCP server
843 wasn't the one that removed it.
844
845- Install defaults for failover maximum outstanding updates and maximum
846 silent time. This prevents problems that might occur if these values
847 were not configured.
848
849- Don't do DDNS deletes if ddns-update-style is none.
850
851- Return relay agent information options in DHCPNAK. This prevents DHCPNAK
852 messages from being dropped when the relay agent information option contains
853 routing information.
854
855- Fix a problem where coming up in recover wouldn't result in an update
856 request being sent.
857
858- Add some more chatty messages when we start a recovery update and when it's
859 done.
860
861- Fix a possible problem where some state might have been left around
862 after the peer lost contact and regained contact about how many updates
863 were pending.
864
865- Don't nix a lease update because of a lease conflict. This test has
866 never (as far as I know) prevented a mistake, and it appears to cause
867 problems with failover.
868
869- Add support in rc history code for keeping a selective history, rather
870 than a history of all references and dereferences. This code is only used
871 when extensive additional debugging is enabled.
872
873 Changes since 3.0
874
875- Make allocators for hash tables. As a side effect, this fixes a memory
876 smash in the subclass allocation code.
877
878- Fix a small bug in omshell where if you try to close an object when
879 no object is open, it dumps core.
880
881- Fix an obscure coredump that could occur on shutdown.
882
883- Fix a bug in the recording of host declaration rubouts in the lease file.
884
885- Fix two potential spins in the host deletion code.
886
887- Fix a core dump that would happen if an application tried to update
888 a host object attribute with a null value.
889
890 Changes since 3.0 Release Candidate 12
891
892- Fix a memory leak in the evaluation code.
893
894- Fix an obscure core dump.
895
896- Print a couple of new warnings when parsing the configuration file
897 when crucial information is left out.
898
899- Log "no free leases" as an error.
900
901- Documentation updates.
902
903 Changes since 3.0 Release Candidate 11
904
905- Always return a subnet selection option if one is sent.
906
907- Fix a warning that was being printed because an automatic data
908 structure wasn't zeroed.
909
910- Fix some failover state transitions that were being handled
911 incorrectly.
912
913- When supersede_lease is called on a lease whose end time has already
914 expired, but for which a state transition has not yet been done, do
915 a state transition. This fixes the case where if the secondary
916 allocated a lease to a client and the lease "expired" while the
917 secondary was in partner-down, no expiry event would actually
918 happen, so the lease would remain active until the primary was
919 restarted.
920
921 Changes since 3.0 Release Candidate 10
922
923- Fix a bug that was preventing released leases from changing state
924 in failover-enabled pools.
925
926- Fix a core dump in the client identifier finder code (for host
927 declarations).
928
929- Finish fixing a bug where bogus data would sometimes get logged to
930 the dhclient.leases file because it was opened as descriptor 2.
931
932- Fix the Linux dhclient-script according to suggestions made by
933 several people on the dhcp-client mailing list.
934
935- Log successful DNS updates at LOG_INFO, not LOG_ERROR.
936
937- Print an error message and refuse to run if a failover peer is
938 defined but not referenced by any pools.
939
940- Correct a confusing error message in failover.
941
eaf0b302
TL
942 Changes since 3.0 Release Candidate 9
943
944- Fix a bug in lease allocation for Dynamic BOOTP clients.
945
0db87765
TL
946 Changes since 3.0 Release Candidate 8 Patchlevel 2
947
948- Fix a bug that prevented update-static-leases from working.
949
950- Document failover-state OMAPI object.
951
952- Fix a compilation error on SunOS 4.
953
d758ad8c
TL
954 Changes since 3.0 Release Candidate 8 Patchlevel 1
955
956- Fix a parsing bug that broke dns updates (both interim and ad-hoc).
957 This was introduced in rc8pl1 as an unintended result of the memory
958 leakage fixes that were in pl1.
959
960- Fix a long-standing bug where the server would record that an update
961 had been done for a client with no name, even though no update had
962 been done, and then when the client's lease expired the deletion of
963 that nonexistant record would time out because the name was the null
964 string.
965
966- Clean up the omshell, dhcpctl and omapi man pages a bit.
967
d758ad8c
TL
968 Changes since 3.0 Release Candidate 8
969
970- Fix a bug that could cause the DHCP server to spin if
971 one-lease-per-client was enabled.
972
973- Fix a bug that was causing core dumps on BSD/os in the presence of
974 malformed packets.
975
976- In partner-down state, don't restrict lease lengths to MCLT.
977
978- On the failover secondary, record the MCLT received from the primary
979 so that if we come up without a connection to the primary we don't
980 wind up giving out zero-length leases.
981
982- Fix some compilation problems on BSD/os.
983
984- Fix a bunch of memory leaks.
985
986- Fix a couple of bugs in the option printer.
987
988- Fix an obscure error reporting bug in the dns update code, and also
989 make the message clearer when a key algorithm isn't supported.
990
991- Fix a bug in the tracing code that prevented trace runs that used
992 tcp connections from being played back.
993
994- Add some additional debugging capability for catching memory leaks
995 on exit.
996
997- Make the client release the lease correctly on shutdown.
998
999- Add some configurability to the build system.
1000
1001- Install omshell manual page in man1, not man8.
1002
1003- Craig Gwydir sent in a patch that fixes a long-standing bug in the
1004 DHCP client that could cause core dumps, but that for some reason
1005 hadn't been noticed until now.
1006
1007 Changes since 3.0 Release Candidate 7
1008
1009- Fix a bug in failover where we weren't sending updates after a
1010 transition from communications-interrupted to normal.
1011
1012- Handle expired/released/reset -> free transition according to the
1013 protocol specification (this works - the other way not only wasn't
1014 conformant, but also didn't work).
1015
1016- Add a control object in both client and server that allows either
1017 daemon to be shut down cleanly.
1018
1019- When writing a lease, if we run out of disk space, shut down the
1020 output file and insist on writing a new one before proceeding.
1021
1022- In the server, if the OMAPI listener port is occupied, keep trying
1023 to get it, rather than simply giving up and exiting.
1024
1025- Support fetching variables from leases and also updating and adding
1026 variables to leases via OMAPI.
1027
1028- If two failover peers have wildly different clocks, refuse to start
1029 doing failover.
1030
1031- Fix a bug in the DNS update code that could cause core dumps when
1032 running on alpha processors.
1033
1034- Fixed a bug in ddns updates for static lease entries, thanks to a
1035 patch from Andrey M Linkevitch.
1036
1037- Add support for Darwin/MacOS X
1038
1039- Install omshell (including new documentation).
1040
1041- Support DNS updates in the client (this is a very obscure feature
1042 that most DHCP client users probably will not be able to use).
1043
1044- Somewhat cleaner status logging in the client.
1045
1046- Make OMAPI key naming syntax compatible with the way keys are
1047 actually named (key names are domain names).
1048
1049- Fix a bug in the lease file writer.
1050
1051- Install DHCP ISC headers in a different place than BIND 9 ISC
1052 headers, to avoid causing trouble in BIND 9 builds.
1053
1054- Don't send updates for attributes on an object when the attributes
1055 haven't changed. Support deleting attributes on remote objects.
1056
1057- Fix a number of bugs in omshell, and add the unset and refresh
1058 statements.
1059
1060- Handle disconnects in OMAPI a little bit more intelligently (so that
1061 the caller gets ECONNRESET instead of EINVAL).
1062
1063- Fix a bunch of bugs in the handling of clients that have existing
1064 leases when the try to renew their leases while failover is
1065 operating.
1066
eaf0b302
TL
1067 Changes since 3.0 Release Candidate 6
1068
1069- Fix a core dump that could happen when processing a DHCPREQUEST from
1070 a client that had a host declaration that contained both a
1071 fixed-address declaration and a dhcp-client-identifier option
1072 declaration, if the client identifier was longer than nine bytes.
1073
1074- Fix a memory leak that could happen in certain obscure cases when
1075 using omapi to manipulate leases.
1076
1077- Fix some bugs and omissions in omshell.
1078
1079
1080 Changes since 3.0 Release Candidate 5
1081
1082- Fix a bug in omapi_object_dereference that prevented objects in
1083 chains from having their reference counts decreased on dereference.
1084
1085- Fix a bug in omapi_object_dereference that would prevent object
1086 chains from being freed upon removal of the last reference external
1087 to the chain.
1088
1089- Fix a number of other memory leaks in the OMAPI protocol subsystem.
1090
1091- Add code in the OMAPI protocol handler to trace memory leakage.
1092
1093- Clean up the memory allocation/reference history printer.
1094
98311e4b 1095- Support input of dotted quads and colon-separated hex lists as
eaf0b302
TL
1096 attribute values in omshell.
1097
98311e4b 1098- Fix a typo in the Linux interface discovery code.
eaf0b302
TL
1099
1100- Conditionalize a piece of trace code that wasn't conditional.
1101
1102 Changes since 3.0 Release Candidate 4
1103
1104- Fix a bug that would prevent leases from being abandoned properly on
1105 DHCPDECLINE.
1106
1107- Fix failover peer OMAPI support.
1108
1109- In failover, correctly handle expiration of leases. Previously,
1110 leases would never be reclaimed because they couldn't make the
1111 transition from EXPIRED to FREE.
1112
1113- Fix some broken failover state transitions.
1114
1115- Documentation fixes.
1116
1117- Take out an unnecessary check in DHCP relay agent information option
1118 stashing code that was preventing REBINDING clients from rebinding.
1119
1120- Prevent failover peers from allocating leases in DHCPREQUEST
1121 processing if the lease belongs to the other server.
1122
1123- Record server version in lease file introductory comment.
1124
1125- Correctly report connection errors in OMAPI and failover.
1126
1127- Make authentication signature algorithm name comparisons in OMAPI
1128 case-insensitive.
1129
1130- Fix compile problem on SunOS 4.x
1131
98311e4b 1132- If a signature algorithm is not terminated with '.', terminate it so
eaf0b302
TL
1133 that comparisons between fully-qualified names will work
1134 consistently.
1135
1136- Different SIOCGIFCONF probe code, may "fix" problem on some Linux
1137 systems with the probe not working correctly.
1138
1139- Don't allow user to type omapi key on command line of omshell.
1140
0596b051
TL
1141 Changes since 3.0 Release Candidate 3
1142
1143- Do lease billing on startup in a way that I *think* will finally do
1144 the billing correctly - the previous method could overbill as a
1145 result of duplicate leases.
1146
1147- Document OMAPI server objects.
1148
892fe689
TL
1149 Changes since 3.0 Release Candidate 2 Patchlevel 1
1150
1151- Fix some problems in the DDNS update code. Thanks to Albert
1152 Herranz for figuring out the main problem.
1153
1154- Fix some reference counting errors on host entries that were causing
1155 core dumps.
1156
1157- Fix a byte-swap bug in the token ring code, thanks to Jochen
1158 Friedrich.
1159
1160- Fix a bug in lease billing, thanks to Jonas Bulow.
1161
1162 Changes since 3.0 Release Candidate 2
1163
1164- Change the conditions under which a DHCPRELEASE is actually
1165 committed to be consistent with lease binding states rather than
98311e4b 1166 using the lease end time. This may fix some problems with the
892fe689
TL
1167 billing class code.
1168
1169- Fix a bug where lease updates would fail on Digital Unix (and maybe
1170 others) because malloc was called with a size of zero.
1171
1172- Fix a core dump that happens when the DHCP server can't create its
1173 trace file.
1174
79ea3de8 1175 Changes since 3.0 Release Candidate 1 Patchlevel 1
87784777 1176
79ea3de8
TL
1177- Fix the dhcp_failover_put_message to not attempt to allocate a
1178 zero-length buffer. Some versions of malloc() fail if you try to
1179 allocate a zero-length buffer, and this was causing problems on,
1180 e.g., Digital Unix.
1181
1182- Fix a case where the failover code was printing an error message
1183 when no error had occurred.
1184
1185- Fix a problem where when a server went down and back up again, the
1186 peer would not see a state transition and so would stay in the
1187 non-communicating state.
1188
1189- Be smart about going into recover_wait.
1190
1191- Fix a problem in the failover implementation where peers would fail
1192 to come into sync if interrupted in the RECOVER state. This could
1193 have been the cause of some problems people have reported recently.
1194
1195- Fix a problem with billing classes where they would not be unbilled
1196 when the client lease expired.
1197
1198- If select fails, figure out which descriptor is bad, and cut it out
1199 of the I/O loop. This prevents a potentially nasty spin. I
1200 haven't heard any report it in a while, but it came up consistently
1201 in testing.
1202
1203- Fix a bug in the relay agent where if you specified interfaces on
1204 the command line, it would fail.
1205
1206- Fix a couple of small bugs in the omapi connection object (no known
1207 user impact).
1208
1209- Add the missing 3.0 Beta 1 lease conversion script.
1210
1211- Read dhcp client script hooks if they exist, rather than only if
1212 they're executable.
1213
1214 Changes since 3.0 Release Candidate 1
87784777
TL
1215
1216- Fix a memory smash that happens when fixed-address leases are used.
1217 ANY SITE AT WHICH FIXED-ADDRESS STATEMENTS ARE BEING USED SHOULD
1218 UPGRADE IMMEDIATELY. This has been a long-standing bug - thanks to
1219 Alvise Nobile for discovering it and helping me to find it!
1220
79ea3de8
TL
1221- Fix a small bug in binary-to-ascii, thanks to H. Peter Anvin of
1222 Transmeta.
1223
87784777
TL
1224- There is a known problem with the DHCP server doing failover on
1225 Compaq Alpha systems. This patchlevel is not a release candidate
1226 because of this bug. The bug should be straightforward to fix, so
1227 a new release candidate is expected shortly.
1228
1229- There is a known problem in the DDNS update code that is probably a
1230 bug, and is not, as far as we know, fixed in this patchlevel.
1231
6d779c72
TL
1232 Changes since 3.0 Beta 2 Patchlevel 24
1233
1234- Went over problematic failover state transitions and made them all
1235 work, so that failover should now much less fragile.
1236
1237- Add some dhcpctl and omapi documentation
1238
1239- Fix compile errors when compiling with unusual predefines.
1240
1241- Make Token Ring work on Linux 2.4
1242
1243- Fix the Digital Unix BPF_WORDALIGN bug.
1244
1245- Fix some dhcp client documentation errors.
1246
1247- Update some parts of the README file.
1248
1249- Support GCC on SCO.
1250
de57e64b
TL
1251 Changes since 3.0 Beta 2 Patchlevel 23
1252
1253- Fix a bug in the DNS update code where a status code was not being
1254 checked. This may have been causing core dumps.
1255
1256- When parsing the lease file, if a lease declaration includes a
1257 billing class statement, and the lease already has a billing class,
1258 unbill the old class.
1259
1260- When processing failover transactions, where acks will be deferred,
1261 process the state transition immediately.
1262
1263- Don't try to use the new SIOCGIFCONF buffer size detection code on
1264 Linux 2.0, which doesn't provide this functionality.
1265
1266- Apply a patch suggested by Tuan Uong for a problem in dlpi.c.
1267
1268- Fix a problem in using the which command in the configure script.
1269
1270- Fix a parse error in the client when setting up an omapi listener.
1271
1272- Document the -n and -g flags to the client.
1273
1274- Make sure there is always a stdin and stdout on startup. This
1275 prevents shell scripts from accidentally writing error messages into
1276 configuration files that happen to be opened as stderr.
1277
1278- If an interface is removed, the client will now notice that it is
1279 gone rather than spinning. This has only been tested on NetBSD.
1280
1281- The client will attempt to get an address even if it can't create a
1282 lease file.
1283
1284- Don't overwrite tracefiles.
1285
1286- Fix some memory allocation bugs in failover.
2aa36519 1287
140158d3
TL
1288 Changes since 3.0 Beta 2 Patchlevel 22
1289
1290- Apply some patches suggested by Cyrille Lefevre, who is maintaining
1291 the FreeBSD ISC DHCP Distribution port.
1292
1293- Fix a core dump in DHCPRELEASE.
1294
3a395e60
TL
1295 Changes since 3.0 Beta 2 Patchlevel 21
1296
1297- This time for sure: fix the spin described in the changes for pl20.
1298
fc74dd0c
TL
1299 Changes since 3.0 Beta 2 Patchlevel 20
1300
1301- Fix a problem with Linux detecting large numbers of interfaces (Ben)
1302
1303- Fix a memory smash in the quotify code, which was introduced in
1304 pl19.
1305
1306- Actually fix the spin described in the changes for pl20. The
1307 previous fix only partially fixed the problem - enough to get it
1308 past the regression test.
1309
ed5ee591
TL
1310 Changes since 3.0 Beta 2 Patchlevel 19
1311
1312- Fix a bug that could cause the server to abort if compiled with
1313 POINTER_DEBUG enabled.
1314
1315- Fix a bug that could cause the server to spin when responding to a
1316 DHCPREQUEST.
1317
1318- Apply Joost Mulders' suggested patches for DLPI on x86.
1319
1320- Support NUL characters in quoted strings.
1321
1322- Install unformatted man pages on SunOS.
1323
b3fad8ac
TL
1324 Changes since 3.0 Beta 2 Patchlevel 18
1325
3350f5b7
TL
1326- Allow the server to be placed in partner-down state using OMAPI.
1327 (Damien Neil)
1328
1329- Implement omshell, which can be used to do arbitrary things to the
1330 server (in theory). (Damien Neil)
1331
1332- Fix a case where if a client had two different leases the server could
1333 actually dereference the second one when it hadn't been referenced,
1334 leading to memory corruption and a core dump. (James Brister)
1335
1336- Fix a case where a client could request the address of another client's
1337 lease, but find_lease wouldn't detect that the other client had it, and
1338 would attempt to allocate it to the client, resulting in a lease conflict
1339 message.
1340
1341- Fix a case where a client with more than one client identifier could be
1342 given a lease where the hardware address was correct but the client
1343 identifier was not, resulting in a lease conflict message.
1344
98311e4b 1345- Fix a problem where the server could write out a colon-separated
3350f5b7
TL
1346 hex list as a value for a variable, which would then not parse.
1347 The fix is to always write strings as quoted strings, with any
1348 non-printable characters quoted as octal escape sequences. So
1349 a file written the old way still won't work, but new files written
1350 this way will work.
1351
b3fad8ac
TL
1352- Fix documentation for sending non-standard options.
1353
1354- Use unparsable names for unknown options. WARNING: this will
1355 break any configuration files that use the option-nnn convention.
1356 If you want to continue to use this convention for some options,
1357 please be sure to write a definition, like this:
1358
1359 option option-nnn code nnn = string;
1360
1361 You can use a descriptive name instead of option-nnn if you like.
1362
1363- Fix a problem where we would see a DHCPDISCOVER/DHCPOFFER/
1364 DHCPREQUEST/DHCPACK/DHCPREQUEST/DHCPNAK sequence. This was the
1365 result of a deceptively silly bug in supersede_lease.
1366
1367- Fix client script exit status check, according to a fix supplied by
1368 Hermann Lauer.
1369
1370- Fix an endianness bug in the tracefile support, regarding ICMP
1371 messages.
1372
3350f5b7
TL
1373- Fix a bug in the client where the medium would not work correctly if
1374 it contained quoted strings.
1375
b3fad8ac
TL
1376 ** there was no pl17 **
1377
e6d30fd6
TL
1378 Changes since 3.0 Beta 2 Patchlevel 16
1379
6da9db9d
TL
1380- Add support for transaction tracing. This allows the state of the
1381 DHCP server on startup, and all the subsequent transactions, to be
1382 recorded in a file which can then be played back to reproduce the
1383 behaviour of the DHCP server. This can be used to quickly
1384 reproduce bugs that cause core dumps or corruption, and also for
1385 tracking down memory leaks.
1386
1387- Incorporate some bug fixes provided by Joost Mulders for the DLPI
1388 package which should clear up problems people have been seeing on
1389 Solaris.
1390
1391- Fix bugs in the handling of options stored as linked lists (agent
1392 options, fqdn options and nwip options) that could cause memory
1393 corruption and core dumps.
1394
1395- Fix a bug in DHCPREQUEST handling that resulted in DHCPNAK messages
1396 not being send in some cases when they were needed.
1397
1398- Make the lease structure somewhat more compact.
1399
1400- Make initial failover startup *much* faster. This was researched
1401 and implemented by Damien Neil.
1402
1403- Add a --version flag to all executables, which prints the program
1404 name and version to standard output.
1405
1406- Don't rewrite the lease file every thousand leases.
1407
e6d30fd6
TL
1408- A bug in nit.c for older SunOS machines was fixed by a patch sent in
1409 by Takeshi Hagiwara.
1410
6da9db9d
TL
1411- Fix a memory corruption bug in the DHCP client.
1412
1413- Lots of documentation updates.
1414
1415- Add a feature allowing environment variables to be passed to the
1416 DHCP client script on the DHCP client command line.
1417
1418- Fix client medium support, which had been broken for some time.
1419
1420- Fix a bug in the DHCP client initial startup backoff interval, which
1421 would cause two DHCPDISCOVERS to be sent back-to-back on startup.
1422
1423
af49fdff
TL
1424 Changes since 3.0 Beta 2 Patchlevel 15
1425
1426- Some documentation tweaks.
1427
1428- Maybe fix a problem in the DLPI code.
1429
1430- Fix some error code space inconsistencies in ddns update code.
1431
1432- Support relay agents that intercept unicast DHCP messages to stuff
1433 agent options into them.
1434
1435- Fix a small memory leak in the relay agent option support code.
1436
c5b569f8
TL
1437- Fix a core dump that would occur if a packet was sent with no
1438 options.
1439
754ae3e9
TL
1440 Changes since 3.0 Beta 2 Patchlevel 14
1441
1442- Finish fixing a long-standing bug in the agent options code. This
1443 was causing core dumps and failing to operate correctly - in
1444 particular, agent option stashing wasn't working. Agent option
1445 stashing should now be working, meaning that agent options can be
1446 used in class statements to control address allocation.
1447
1448- Fix up documentation.
1449
1450- Fix a couple of small memory leaks that would have added up
1451 significantly in a high-demand situation.
1452
1453- Add a log-facility configuration parameter.
1454
1455- Fix a compile error on some older operating systems.
1456
1457- Add the ability in the client to execute certain statements before
1458 transmitting packets to the server. Handy for debugging; not much
1459 practical use otherwise.
1460
1461- Don't send faked-out giaddr when renewing or bound - again, useful
1462 for debugging.
1463
2f2e7960
TL
1464 Changes since 3.0 Beta 2 Patchlevel 13
1465
1466- Fixed a problem where the fqdn decoder would sometimes try to store
1467 an option with an (unsigned) negative length, resulting in a core
1468 dump on some systems.
1469
1470- Work around the Win98 DHCP client, which NUL-terminates the FQDN
1471 option.
1472
1473- Work around Win98 and Win2k clients that will claim they want to do
1474 the update even when they don't have any way to do it.
1475
1476- Fix some log messages that can be printed when failover is operating
1477 that were not printing enough information.
1478
1479- It was possible for a DHCPDISCOVER to get an allocation even when
1480 the state machine said the server shouldn't be responding.
1481
1482- Don't load balance DHCPREQUESTs from clients in RENEWING and
1483 REBINDING, since in RENEWING, if we heard it, it's for us, and in
1484 REBINDING, the client wouldn't have got to REBINDING if its primary
1485 were answering.
1486
1487- When we get a bogus state lease binding state transition, don't do
1488 the transition.
1489
1490
66e98927
TL
1491 Changes since 3.0 Beta 2 Patchlevel 12
1492
1493- Fixed a couple of silly compile errors.
1494
a1e2e3d6
TL
1495 Changes since 3.0 Beta 2 Patchlevel 11
1496
1497- Albert Herranz tracked down and fixed a subtle bug in the base64
1498 decoder that would prevent any key with an 'x' in its base64
1499 representation from working correctly.
1500
1501- Thanks to Chris Cheney and Michael Sanders, we have a fix for the
1502 hang that they both spotted in the DHCP server - when
1503 one-lease-per-client was set, the code to release the "other" lease
1504 could spin.
1505
1506- Fix a problem with alignment of the input buffer in bpf in cases
1507 where two packets arrive in the same bpf read.
1508
1509- Fix a problem where the relay agent would crash if you specified an
1510 interface name on the command line.
1511
1512- Add the ability to conditionalize client behaviour based on the
1513 client state.
1514
1515- Add support for the FQDN option, and added support for a new way of
1516 doing ddns updates (ddns update style interim) that allows more than
1517 one DHCP server to update the DNS for the same network(s). This
1518 was implemented by Damien Neil with some additional functionality
1519 added by Ted Lemon.
1520
1521- Damien added a "log" statement, so that the configuration file can
1522 be made to log debugging information and other information.
1523
1524- Fixed a bug that caused option buffers not to be terminated with an
1525 end option.
1526
1527- Fixed a long-standing bug in the support for option spaces where the
1528 options are stored as an ordered list rather than in a hash table,
1529 which could theoretically result in memory pool corruption.
1530
1531- Prevent hardware declarations with no actual hardware address from
1532 being written as something unparsable, and behave correctly in the
1533 face of a null hardware address on input.
1534
1535- Allow key names to be FQDNs, and qualify the algorithm name if it is
1536 specified unqualified.
1537
1538- Modify the DDNS update code so that it never prints the "resolver
1539 failed" message, but instead says *why* the resolver failed.
1540
1541- Officially support the subnet selection option, which now has an
1542 RFC.
1543
1544- Fix a build bug on MacOS X.
1545
1546- Allow administrator to disable ping checking.
1547
1548- Clean up dhcpd.conf documentation and add more information about how
1549 it works.
1550
6c68ec36
TL
1551 Changes since 3.0 Beta 2 Patchlevel 10
1552
1553- Fix a bug introduced during debugging (!) and accidentally committed
1554 to CVS.
1555
9fd337e7
TL
1556 Changes since 3.0 Beta 2 Patchlevel 9
1557
1558- Fix DHCP client handling of vendor encapsulated options.
1559
1560- Fix a bug in the handling of relay agent information options introduced
1561 in patchlevel 9.
1562
1563- Stash agent options on client leases by default, and use the stashed
1564 options at renewal time.
1565
1566- Add the ability to test the client's binding state in the client
1567 configuration language.
1568
1569- Fix a core dump in the DNS update code.
1570
1571- Fix some expression evaluation bugs that were causing updates to be
1572 done when no client hostname was received.
1573
1574- Fix expression evaluation debugging printfs.
1575
1576- Teach pretty_print_option to print options in option spaces other than
1577 the DHCP option space.
1578
1579- Add a warning message if the RHS of a not is not boolean.
1580
1581- Never select for more than a day, because some implementations of
1582 select will just fail if the timeout is too long (!).
1583
1584- Fix a case where a DHCPDISCOVER from an unknown network would be
1585 silently dropped.
1586
1587- Fix a bug where if a client requested an IP address for which a different
1588 client had the lease, the DHCP server would reallocate it anyway.
1589
1590- Fix the DNS update code so that if the client changes its name, the DNS
1591 will be correctly updated.
1592
3922772a
TL
1593 Changes since 3.0 Beta 2 Patchlevel 8
1594
1595- Oops, there was another subtle math error in the header-length
1596 bounds-checking.
1597
1598 Changes since 3.0 Beta 2 Patchlevel 7
848c2547
TL
1599
1600- Oops, forgot to byte-swap udp header length before bounds-checking it.
1601
3922772a 1602 Changes since 3.0 Beta 2 Patchlevel 6
0f6045f8 1603
f8572308
TL
1604- Fix a possible DoS attack where a client could cause the checksummer
1605 to dump core. This was a read, not a write, so it shouldn't be
1606 possible to exploit it any further than that.
1607
1608- Implement client- and server-side support for using the Client FQDN
1609 option.
1610
1611- Support for other option spaces in the client has been added. This
1612 means that it is now possible to define a vendor option space on the
1613 client, request options in that space from the server (which must
1614 define the same option space), and then use those options in the
1615 client. This also allows NWIP and Client FQDN options to be used
1616 meaningfully.
1617
1618- Add object initializer support. This means that objects can now be
1619 initialized to something other than all-zeros when allocated, which
1620 makes, e.g., the interface object support code a little more robust.
1621
1622- Fix an off-by-one bug in the host stuffer. This was causing host
1623 deletes not the work, and may also have been causing OMAPI
1624 connections to get dropped. Thanks to James Brister for tracking
1625 this one down!
1626
1627- Fixed a core dump in the interface discovery code that is triggered
1628 when there is no subnet declaration for an interface, but the server
1629 decides to continue running. Thanks to Shane Kerr for tracking
1630 down and fixing this problem.
1631
1632 Changes since 3.0 Beta 2 Patchlevel 5
1633
0f6045f8
TL
1634- Fix a bug in the recent enhancement to the interface discovery code
1635 to support arbitrary-length interface lists.
1636
1637- Support NUL-terminated DHCP options when initializing client-script
1638 environment.
1639
1640- Fix suffix operator.
1641
1642- Fix NetWare/IP option parsing.
1643
1644- Better error/status checking in dhcpctl initialization and omapi
1645 connection code.
1646
1647- Fix a potential memory smash in dhcpctl code.
1648
1649- Fix SunOS4 and (maybe) Ultrix builds.
1650
1651- Fix a bug where a certain sort of incoming packet could cause a core
1652 dump on Solaris (and probably elsewhere).
1653
1654- Add some more safety checks in error logging code.
1655
1656- Add support for ISC_R_INCOMPLETE in OMAPI protocol connection code.
1657
1658- Fix relay agent so that if an interface is specified on the command
1659 line, the relay agent does not dump core.
1660
1661- Fix class matching so that match if can be combined with match or
1662 spawn with.
1663
1664- Do not allow spurious leases in the lease database to introduce
1665 potentially bogus leases into the in-memory database.
1666
1667- Fix a byte-order problem in the client hardware address type code
1668 for OMAPI.
1669
1670- Be slightly less picky about what sort of hardware addresses OMAPI
1671 can install in host declarations.
1672
801de092
TL
1673 Changes since 3.0 Beta 2 Patchlevel 4
1674
1675- Incorporated Peter Marschall's proposed change to array/record
1676 parsing, which allows things like the slp-agent option to be encoded
1677 correctly. Thanks very much to Peter for taking the initiative to
1678 do this, and for doing such a careful job of it (e.g., updating the
1679 comments)!
1680
1681- Added an encoding for the slp-agent option. :')
1682
6ed7a93d
TL
1683- Fixed SunOS 4 build. Thanks to Robert Elz for responding to my
1684 request for help on this with patches!
1685
1686- Incorporated a change that should fix a problem reported by Philippe
1687 Jumelle where when the network connection between two servers is
1688 lost, they never reconnect.
1689
1690- Fix client script files other than that for NetBSD to actually use
1691 make_resolv_conf as documented in the manual page.
1692
1693- Fix a bug in the packet handling code that could result in a core
1694 dump.
1695
1696- Fix a bug in the bootp code where responses on the local net would
1697 be sent to the wrong MAC address. Thanks to Jerry Schave for
1698 catching this one.
1699
490eb5e7
TL
1700 Changes since 3.0 Beta 2 Patchlevel 3
1701
1702- In the DHCP client, execute client statements prior to using the values
1703 of options, so that the client configuration can overried, e.g., the
1704 lease renewal time.
1705
1706- Fix a reference counting error that would result in very reproducible
1707 failures in updates, as well as occasional core dumps, if a zone was
1708 declared without a key.
1709
1710- Fix some Linux 2.0 compilation problems.
1711
1712- Fix a bug in scope evaluation during execution of "on" statements that
1713 caused values not to be recorded on leases.
1714
1715- If the dhcp-max-message-size option is specified in scope, and the
1716 client didn't send this option, use the one specified in scope to
1717 determine the maximum size of the response.
1718
592d8153
TL
1719 Changes since 3.0 Beta 2 Patchlevel 2
1720
359b023e
TL
1721- Fix a case where spawning subclasses were being allocated
1722 incorrectly, resulting in a core dump.
1723
592d8153
TL
1724- Fix a case where the DHCP server might inappropriately NAK a
1725 RENEWING client.
1726
1727- Fix a place dhcprequest() where static leases could leak.
1728
1729- Include memory.h in omapip_p.h so that we don't get warnings about
1730 using memcmp().
1731
2aa36519
TL
1732 Changes since 3.0 Beta 2 Patchlevel 1
1733
1734- Notice when SIOCFIGCONF returns more data than fit in the buffer -
1735 allocate a larger buffer, and retry. Thanks to Greg Fausak for
1736 pointing this out.
1737
1738- In the server, if no interfaces were configured, report an error and
1739 exit.
1740
1741- Don't ever record a state of 'startup'.
1742
1743- Don't try to evaluate the local failover binding address if none was
1744 specified. Thanks to Joseph Breu for finding this.