]> git.ipfire.org Git - thirdparty/dhcp.git/blame - RELNOTES
- An option definition referencing leak was fixed, which resulted in early
[thirdparty/dhcp.git] / RELNOTES
CommitLineData
98311e4b 1 Internet Systems Consortium DHCP Distribution
663e6621
DH
2 Version 3.1.0a1
3 August 1, 2006
72c7bd79 4
98311e4b 5 Release Notes
72c7bd79 6
da411127 7 NEW FEATURES
16449d9c 8
663e6621
DH
9Version 3.1.x of the ISC DHCP Distribution includes the following major
10new features compared to its 3.0.x derivative:
3a16098f 11
663e6621
DH
12 - Failover protocol 'MAC Address Affinity' to reduce pool churn.
13 - Support for the 'reserved' and 'bootp' failover flags, which
14 means in lay terms that static allocations can be made to
15 clients in which 'on events' can be supported.
16 - Several other failover optimizations and changes.
17 - Management of class and subclass statements via OMAPI.
18 - Many new configuration statement functions.
19 - Initial formal support for VIVCO/VIVSO options.
29d5553a 20
663e6621
DH
21For a full list of new features added in this release, please observe
22the changes list directly following this section.
4ff4053b 23
ca4606b5
TL
24For information on how to install, configure and run this software,
25as well as how to find documentation and report bugs, please consult
26the README file.
27
98311e4b 28
bdddcb7d
DH
29 Changes since 3.1.0a1
30
31- A bug in the FQDN universe that added FQDN codes to the NWIP universe's
32 hash table was repaired.
33
616d67cb
DH
34- The servers now try harder to transmit pending binding updates when
35 entering normal state.
36
37- UPDREQ/UPDREQALL handling was optimized - it no longer dequeues and
38 requeues all pending updates. This should reduce the number of spurious
66c8f734
DH
39 'xid mismatch' log messages.
40
41- An option definition referencing leak was fixed, which resulted in early
42 termination of dhclient upon the renewal event.
616d67cb 43
98311e4b
DH
44 Changes since 3.0 (New Features)
45
46- A workaround for certain STSN servers that send a mangled domain-name
47 option was introduced for dhclient. The client will now accept corrupted
48 server responses, if they contain a valid DHCP_MESSAGE_TYPE (OFFER, ACK,
49 or NAK). The server will continue to not accept corrupt client packets.
50
a55ccdd0
DH
51- Support for 'reserved' (psuedo-static) and BOOTP leases via failover
52 was introduced.
98311e4b
DH
53
54- Support for adding, removing, and managing class and subclass statements
55 via OMAPI.
56
a55ccdd0
DH
57- The failover implementation was updated to comply with revision 12 of
58 the protocol draft.
59
98311e4b
DH
60- 'make install' now creates the initial zero-length dhcpd.leases file if
61 one does not already exist on the system.
62
b43c87ad 63- RFC3942 compliance, site-local option spaces start at 224 now, not 128.
b43c87ad 64
0b17f049
DH
65- The Load Balance Algorithm was misimplemented. The current implementation
66 matches RFC 3074.
67
2727c1cf
DH
68- lcase() and ucase() configuration expressions have been added which adjust
69 their arguments from upper to lower and lower to upper cases respectively.
2714a8ef 70 Thanks to a patch from Albert Herranz.
2727c1cf 71
febbd402
DH
72- The dhclient 'reject ...;' statement, which rejects leases given by named
73 server-identifiers, now permits address ranges to be specified in CIDR
7d7073e7 74 notation. Thanks to a patch from David Boyce.
febbd402 75
ee912528
DH
76- The subnet-mask option is now supplied by default, but at lowest
77 priority. This helps a small minority of clients that provide parameter
78 request lists, but do not list the subnet-mask option because they were
79 designed to interoperate with a server that behaves in this manner.
80
81- The FQDN option is similarly supplied even if it does not appear on the
82 parameter request list, but not to the exclusion of options that do
83 appear at the parameter request list. Up until now it had ultimate
84 priority over the client's parameter request list.
85
f7fdb216 86- Varying option space code and length bit widths (8/16/32) are now
51202707 87 supported. This is a milestone in achieving RFC 3925 "VIVSO" and
f7fdb216
DH
88 DHCPv6 support.
89
5e864416
DH
90- A new common (server or client) option, 'db-time-format local;', has
91 been added which prints the local time in /var/db/dhcpd.leases rather
92 than UTC. Thanks to a patch from Ken Lalonde.
93
b500bd4c
DH
94- Some patches to improve DHCP Server startup speed from Andrew Matheson
95 have been incorporated.
96
2426234f
DH
97- Failover pairs now implement 'MAC Affinity' on leases moving from the
98 active to free states. Leases that belonged to the failover secondary
99 are moved to BACKUP state rather than FREE upon exiting EXPIRED state.
100 If lease rebalancing must move leases, it tries first to move leases
101 that belong to the peer in need.
102
103- The server no longer sends POOLREQ messages unless the pool is severely
104 misbalanced in the peer's favor (see 'man dhcpd.conf' for more details).
105
106- Pool rebalance events no longer happen upon successfully allocating a
107 lease. Instead, they happen on a schedule. See 'man dhcpd.conf' for the
108 min-balance and max-balance statements for more information.
109
334bf491
DH
110- The DHCP Relay Agent Information Option / Link Selection Sub-Option
111 is now supported. (See RFC3527 for details).
112
3004bebf
DH
113- A new DDNS related server option, update-conflict-detection, has been
114 added. If this option is enabled, dhcpd will perform normal DHCID
115 conflict resolution (the default). If this option is disabled, it will
116 instead trust the assigned name implicitly (removing any other bindings
117 on that name). This option has not been made available in dhclient.
118
567e8561
DH
119- In those cases where the DHCP software manufactures an IP header (to
120 transmit via bpf, lpf, etc), the IP TTL the software selects has been
121 increased from 16 to 128. This is intended to match Microsoft Windows
122 DHCP Client behaviour, to increase compatibility.
123
a396d25f
DH
124- 'ignore client-updates;' now has behaviour that is different from
125 'deny client-updates;'. The client's request is not truly ignored,
126 rather it is encouraged. Should this value be configured, the server
127 updates DNS as though client-updates were set to 'deny'. That is, it
128 enters into DNS whatever it is configured to do already, provided it is
129 configured to. Then it sends a response to the client that lets the
130 client believe it is performing client updates (which it will), probably
131 for a different name. In essence, this lets the client do as it will,
132 ignoring this aspect of their request.
133
dba5803b
DH
134- Support for compressed 'domain name list' style DHCP option contents, and
135 in particular the domain search option (#119) was added.
136
41e45067 137- The DHCP LEASEQUERY protocol as defined in RFC4388 is now implemented.
6d103865
SK
138 LEASEQUERY lets you query the DHCP server for information about a lease,
139 using either an IP address, MAC address, or client identifier. Thanks
140 to a patch from Justin Haddad.
141
41e45067
DH
142- DHCPD is now RFC2131 section 4.1 compliant (broadcast to all-ones ip and
143 ethernet mac address) on the SCO platform specifically without any strange
144 ifconfig hacks. Many thanks go to the Kroger Co. for donating the
145 hardware and funding the development.
6d103865 146
b543fea9
DH
147- A new common configuration executable statement, execute(), has been
148 added. This permits dhcpd or dhclient to execute a named external
149 program with command line arguments specified from other configuration
150 language. Thanks to a patch written by Mattias Ronnblom, gotten to us
151 via Robin Breathe.
152
b22de500
DH
153- A new dhcp server option 'adaptive-lease-time-threshold' has been added
154 which causes the server to substantially reduce lease-times if there are
155 few (configured percentage) remaining leases. Thanks to a patch submitted
156 from Christof Chen.
157
96bbe8c5
SK
158- Encapsulated option spaces within encapsulated option spaces is now
159 formally supported.
160
0a73b7b6
SK
161 Changes since 3.0.5rc1
162
901306d5 163- A bug was repaired in fixes to the dhclient, which sought to run the
0a73b7b6
SK
164 dhclient-script with the 'EXPIRE' state should it receive a NAK in
165 response to a REQUEST. The client now iterates the PREINIT state
166 after the EXPIRE state, so that interfaces that might be configured
167 'down' can be brought back 'up' and initialized.
168
87a08ccc
DH
169- DHCPINFORM handling for clients that properly set ciaddr and come to the
170 server via a relay aget has been repaired.
171
6da113fb
DH
172 Changes since 3.0.4
173
174- A warning that host statements declared within subnet or shared-network
175 scopes are actually global has been added.
176
177- The default minimum lease time (if min-lease-time was not specified)
178 was raised from 0 to 300. 0 is not thought to be sensible, and is
179 known to be damaging.
180
181- Added additional fatal error sanity checks surrounding lease binding
182 state count calculations (free/active counts used for failover pool
183 balancing).
184
dcc557db
DH
185- Some time value size fixes in 3.0.4 brought on from FreeBSD /usr/ports were
186 misapplied to server values rather than client values. The server no longer
187 advertises 8-byte lease-time options when on 64-bit platforms.
188
1b2ab55f
DH
189- A bug where leases not in ACTIVE state would get billed to billed classes
190 (classes with lease limitations) was fixed. Non-active leases OFFERed
191 to clients are no longer billed (but billing is checked before offering).
192
e48891e8
DH
193- The dhcpd.conf.5 manpage was updated in regard to the ddns-domainname
194 configuration option - the default configuration and results should be
195 more clear now.
196
6cbc6629
DH
197- If the dhclient were to receive a DHCPNAK while it was in the RENEW
198 state (and consequently, had an active, 'bound' address and related
199 configuration options), it would fail to 'tear down' this information
200 before proceeding into INIT state. dhclient now iterates the dhclient-
201 script with the 'EXPIRE' action to cause these teardowns prior to entering
1d3bfb17 202 INIT state. Thanks to a patch from Chris Zimmerman.
6cbc6629 203
c5fec5fa
DH
204- The omapi.1 manpage had some formatting errors repaired thanks to a patch
205 from Yoshihiko Sarumaru.
206
33e1cb2b
DH
207- A few lines of code that were failover-specific were moved within
208 #if defined() clauses so that compilation without failover could be
209 made possible.
210
2bddf829
DH
211- The log message emitted when the 'leased-address' value was not available
212 in dhcpd.conf "executable statements" has been updated to be more helpful.
213 Manpage information for this value has also been updated.
214
87578987
DH
215- Abandoned or dissociated (err condition) leases now remove any related
216 dynamic dns bindings. Thanks to a patch from Patrick Schoo.
217
e77c575f
DH
218- Attempting to write a new lease file to replace a corrupt (due to
219 encountering non-retryable errors during writing) lease file should
220 no longer result in an infinite recursion.
221
2178df03
DH
222- Host declaration hardware addresses and client identifiers may only be
223 configured once. dhcpd will now fail to load config files that specify
224 multiple identifiers (previous versions would silently over-ride the
225 value with the later configured value).
226
d5341d9b
SK
227- Several option codes that have been allocated since our last release
228 have been named and documented.
229
230- Option names of the form "unknown-123" have been removed from the in-
231 memory hash tables. In order to support options of these names that
232 may appear in dhclient.leases or similar in previous versions, the
233 parser will now find the new option code definition, or mock up a
234 generic option code definition. This should result in a smooth
235 transition from one name to the other, as the new name is used to
236 write new output.
237
6da113fb
DH
238 Changes since 3.0.4rc1
239
240- The dhcp-options.5 manpage was updated to correct indentation errors
241 thanks to a patch from Jean Delvare.
242
243 Changes since 3.0.4b3
244
245- Some manual pages were clarified pursuant to discussion on the dhcp-server
246 mailing list.
247
88cd8aca
DH
248 Changes since 3.0.4b2
249
250- Null-termination sensing for certain clients that unfortunatley require
251 it in DHCPINFORM processing was repaired.
252
253- The host-name option and a few others were moved from "X" format to "t"
254 format to be compatible with new NULL handling functions.
255
256- DHCPINFORM processing is a little more careful about return addressing
257 its responses, or if responding via a relay. The INFORM related
258 messages also log the 'effective client ip address' rather than the
259 client's supplied ciaddr (since some clients produce null ciaddrs).
260
261- The server was inappropriately sending leases to the RESET state in the
262 event that multiple active leases were found to match a singly-identified
263 client. This was changed to RELEASED (by accepting a different, ACTIVE
264 binding, the client is implicitly releasing its lease). This repairs a
265 bug wherein secondary servers in failover pairs detecting this condition
266 move leases to RESET, and primaries refuse to accept that state
267 transition (properly).
268
269- The memset-after-dmalloc() changes made in 3.0.4b1 have been backed out.
270
271 Changes since 3.0.4b1
272
273- Command line parsing in omshell was repaired - it no longer closes
274 STDIN after reading one line.
275
276- The resolver library no longer closes the /etc/resolv.conf file
277 descriptor it opened twice.
278
279- Changes to trailing NULL removal in 't' option-atoms has been rethought,
280 it now includes 'd' (domain name) types, and tries hard not to rewind an
281 option beyond the start of the text field it is un-terminating.
282
283 Changes since 3.0.3
284
285- A DDNS update handling function was misusing the DNS error codes, rather
286 than the internal generic result enumeration. The result is a confusing
287 syslog line, logging the wrong condition.
288
289- The DHCP Server was not checking pool balance in the case where it brought
290 a non-ACTIVE lease out of storage for a client that was returning to use
291 a lease it once had long ago, and had since expired.
292
293- Failover peers no longer bother to look for free leases to allocate when
294 they already found the client's ACTIVE lease. DISCOVERs are load balanced
295 wether freely-allocated or not, unless the server doubts the peer has
296 leases to allocate.
297
298- Fixed a bug in dhcrelay agent addition code that suppressed trailing
299 PAD options - it was suppressing only one trailng PAD option, rather
300 than the entire block of them.
301
3a16098f
DH
302! Fixed some unlikely overlapping-region memcpy() bugs in dhcrelay agent
303 option addition and stripping code. Added a few sanity checks. Although
304 highly improbable, due to requiring the reception of a DHCP datagram well
305 in excess of all known to be used physical MTU limitations, it is possible
306 this may have been used in a stack overflow security vulnerability. Thanks
307 to a patch from infamous42md.
308
309! Added some sanity checks to OMAPI connection/authentication code.
310 Although highly improbable, due to having to deliver in excess of 2^32
311 bytes of data via the OMAPI channel, not to mention requiring dhcpd to
312 be able to malloc() a memory region 2^32 bytes in size, it was possible
313 this might have resulted in a heap overflow security vulnerability.
314 Thanks to a patch from infamous42md.
88cd8aca
DH
315
316- dmalloc() memset()'s the non-debug (data) portion of the allocated
317 memory to zero. Code that memset()'s the result returned by dmalloc() to
318 zero is redundant. These redundancies were removed.
319
320- Some type declaration corrections to u_int16_t were made in common/tr.c
321 (Token Ring support) thanks to a patch from Jason Vas Dias at RedHat.
322
323- A failover bug that was allowing leases that EXPIRED or were RELEASED
324 where tsfp and tstp are identical timestamps to languish in these
325 transitional states has been repaired. As a side effect, lease
326 databases should be kept more consistent overall, not just for these
327 transitional states.
328
329- If the lease db is deleted out from under the daemon, and it moves to rewrite
330 the db, it will go ahead with the operation and move the new db into place
331 once it detects the old db does not exist.
332
333- dhclient now ignores IRDA, SIT, and IEEE1394 network interfaces, as it
334 is either nonsensical or (in the case of IEEE1394) is not known to support
335 these interfaces. Thanks to Marius Gedminas and Andrew Pollock of Debian.
336
337- Some previously undocumented reasons for dhclient-script invoking has
338 been doucmented in the dhclient-script.8 manpage.
339
340- Failover potential expiry calculations (TSTP) have been corrected. Results
341 should be substantially more consistent, and proper given the constraints.
342
343- Adjusted lease state validation checks in potential-conflict, to
344 account for possible clock skew similarly to normal state, and several
345 previously illegal transitions were made legal (ex: active->released).
346
347- An impossible sanity check was removed from omapi/buffer.c, thanks to a
348 patch from 'infamous42md'.
349
350- An OMAPI host/network byte order problem in lease time values has been
351 repaired.
352
353- Several minor bugs, largely relating to treating 8-byte time values as
354 4-byte entities, have been repaired after careful review of the FreeBSD
355 ports collection's patch set. Thanks to the nameless entities who have
356 contributed to the FreeBSD ports.
357
358- When writing a trace file, the file is now created with permissions 0600,
359 to help administrators avoid accidentally publicising sensitive config
360 data.
361
362- The calculation of the maximum size of DHCP packets no longer includes
363 Ethernet framing overhead. The result is that the 'Maximum Message
364 Size' option advertised by clients, or the default value 576, is no
365 longer reduced by 14 bytes, and instead directly reflects the IP level
366 MTU (and the default, minimum allowed IP MTU of 576).
367
368- The special status of RELEASED/EXPIRED/RESET leases when a server
369 is operating in partner-down was fixed. It no longer requires a
370 lease be twice the MCLT beyond STOS to 'reallocate', and the expiry
371 event to turn these into FREE leases without peer acknowledgement
372 (after STOS+MCLT) has been repaired.
373
374- Compilation on older Solaris systems (lacking /usr/include/sys/int_types.h)
375 has been repaired.
376
377- "append"ing a string onto the end of a "t" type option (such as the
378 domain-name field) that had been improperly NULL-terminated by the
379 DHCP server will no longer result in a truncated string containing
380 only the option from the server, and not the expected appended value.
381 Thanks to a patch from Jason Vas Dias at RedHat.
382
383- File handlers on configuration state (config files and lease dbs) should
384 be treated consistently, regardless of wether TRACING is defined or not.
385
386- The linux build environment has had some minor improvements - better
387 sensing of 64-bit pointer sizes (only used for establishing an icmp_id),
388 and corrections to #if operators regarding LINUX_MAJOR should it ever
389 move to 3.[01].x.
390
391- The server now tries harder to survive the condition where it is unable
392 to open a new lease file to rewrite the lease state database.
393
c75473d8
DH
394 Changes since 3.0.3b3
395
396- dhclient.conf documentation for interface {} was updated to reflect recent
397 discussion on the dhcp-hackers mailing list.
398
399- In response to reports that the software does not compile on GCC 4.0.0,
400 -Werror was removed from Makefile.conf for all platforms that used it.
401 We will address the true problem in a future release; this is a temporary
402 workaround.
403
404 Changes since 3.0.3b2
405
406- An error in code changes introduced in 3.0.3b2 was corrected, which caused
407 static BOOTP clients to receive random addresses.
408
409 Changes since 3.0.3b1
410
411- A bug was fixed in BOOTPREQUEST handling code wherein stale references to
412 host records would be left behind on leases that were not allocated to the
413 client currently booting (eg in the case where the host was denied booting).
414
415- The dhcpd.conf.5 manpage was updated to be more clear in regards to
416 multiple host declarations (thanks to Vincent McIntyre). 'Interim' style
417 dynamic updates were also retouched.
418
98311e4b
DH
419 Changes since 3.0.2
420
421- A bug was fixed where a server might load balance a DHCP REQUEST to its
422 peer after already choosing not to load balance the preceeding DISCOVER.
423 The peer cannot allocate the originating server's lease.
424
425- In the case where a secondary server lost its stable storage while the
426 primary was still in communications-interrupted, and came back online,
427 the lease databases would not be fully transferred to the secondary.
428 This was due to the secondary errantly sending an extra UPDREQ message
429 when the primary made its state transition to PARTNER-DOWN known.
430
431- The package will now compile cleanly in gcc 3.3 and 3.4. As a side effect,
432 lease structures will be 9 bytes smaller on all platforms. Thanks to
433 Jason Vas Dias at Redhat.
434
435- Interface discovery code in DISCOVER_UNCONFIGURED mode is now
436 properly restricted to only detecting broadcast interfaces. Thanks
437 to a patch from Jason Vas Dias at RedHat.
438
439- decode_udp_ip_header was changed so that the IP address was copied out
440 to a variable, rather than referenced by a pointer. This enforces 4-byte
441 alignment of the 32-bit IP address value. Thanks to a patch from Dr.
442 Peter Poeml.
443
444- An incorrect log message was corrected thanks to a patch from
445 Dr. Peter Poeml.
446
447- A bug in DDNS was repaired, where if the server's first DDNS action was
448 a DDNS removal rather than a DDNS update, the resolver library's
449 retransmit timer and retry timer was set to the default, implying a
450 15 second timeout interval. Which is a little excessive in a synchronous,
451 single-threaded system. In all cases, ISC DHCP should now hold fast to
452 a 1-second timeout, trying only once.
453
454- The siaddr field was being improperly set to the server-identifier when
455 responding to DHCP messages. RFC2131 clarified the siaddr field as
456 meaning the 'next server in the bootstrap process', eg a tftp server.
457 The siaddr field is now left zeroed unless next-server is configured.
458
459- mockup_lease() could have returned in an error condition (or in the
460 condition where no fixed-address was found matching the shared
461 network) with stale references to a host record. This is probably not
462 a memory leak since host records generally never die anyway.
463
464- A bug was repaired where failover servers would let stale client identifiers
465 persist on leases that were reallocated to new clients not sending an id.
466
467- Binding scopes ("set var = value;") are now removed from leases allocated
468 by failover peers if the lease had expired. This should help reduce the
469 number of stale binding scopes on leases.
470
471- A small memory leak was closed involving client identifiers larger than
472 7 bytes, and failover.
473
474- Configuring a subnet in dhcpd.conf with a subnet mask of 32 bits might
475 cause an internal function to overflow heap. Thanks to Jason Vas Dias
476 at Redhat.
477
478- Some inconsistencies in treating numbers that the lexer parsed as 'NUMBER'
479 or 'NUMBER_OR_NAME' was repaired. Hexadecimal parsing is affected, and
480 should work better.
481
482- In several cases, parse warnings were being issued before the lexical
483 token had been advanced to the token whose value was causing an error...
484 causing parse warnings to claim the problem is on the wrong token.
485
486- Host declarations matching on client identifier for dynamic leases will
487 no longer match fixed-address host declarations (this is now identical
488 to behaviour for host records matching on hardware address).
489
490 Changes since 3.0.2rc3
491
492- A previously undocumented configuration directive, 'local-address',
493 was documented in the dhcpd.conf manpage.
494
495 Changes since 3.0.2rc2
496
497- Two varaibles introduced in 3.0.2b1 were used without being initialized
498 in the case where neither the FILE nor SNAME fields were available for
499 overloading. This was repaired.
500
501- A heretofore believed to be impossible corner case of the option
502 overloading implementation turned out to be possible ("Unable to sort
503 overloaded options after 10 tries."). The implementation was reworked
504 to consider the case of an option so large it would require more than
505 three chunks to fit.
506
507- Many other instances of variables being used without being initialized
508 were repaired.
509
510- An uninitialized variable in omapi_io_destroy() led to the discovery
511 that this function may result in orphaned pointers (and hence, a memory
512 leak).
513
514 Changes since 3.0.2rc1
515
516- allocate_lease() was rewritten to repair a bug in which the server would
517 try to allocate an ABANDONED lease when FREE leases were available.
518
519 Changes since 3.0.2b1
520
521- Some dhcp-eval.5 manpage formatting was repaired.
522
523 Changes since 3.0.1
524
525- A bug was fixed in the server's 'option overloading' implementation,
526 where options loaded into the 'file' and 'sname' packet fields were
527 not aligned precisely as rfc2131 dictates.
528
529- The FreeBSD client script was changed to support the case where a domain
530 name was not provided by the server.
531
532- A memory leak in 'omshell' per each command line parsed was
533 repaired, thanks to a patch from Jarkko Torppa.
534
535- Log functions writing to stderr were adjusted to use the STDERR_FILENO
536 system definition rather than '2'. This is a no-op for 90% of platforms.
537
538- One call to trace_write_packet_iov() counted the number of io vectors
539 incorrectly, causing inconsistent tracefiles. This was fixed.
540
541- Some expression parse failure memory leaks were closed.
542
543- A host byte order problem in tracefiles was repaired.
544
545- Pools configured in DHCPD for failover possessing permission lists that
546 previously were assumed to not include dyanmic bootp clients are now
547 a little more pessimistic. The result is, dhcpd will nag you about just
548 about most pools that possess a 'allow' statement with no 'deny' that
549 would definitely match a dynamic bootp client.
550
551- The 'ddns-update-style' configuration warning bit now insists that
552 the configuration be globally scoped.
553
554- Two memory leaks in dhclient were closed thanks to a patch from Felix
555 Farkas.
556
557- Some minor but excellently pedantic documentation errors were fixed
558 thanks to a patch from Thomas Klausner.
559
560- Bugs in operator precedence in executable statements have been repaired
561 once again. More legal syntaxes should be parsed legally.
562
563- Failing to initialize a tracefile for any reason if a tracefile was
564 specified is now a fatal error. Thanks to a patch from Albert Herranz.
565
566- Corrected a bug in which the number of leases transferred as calculated
567 by the failover primary and sent to peers in POOLRESP responses may be
568 incorrect. This value is not believed to be used by other failover
569 implementations, excepting perhaps as logged information.
570
571- Corrected a bug in which 'dhcp_failover_send_poolresp()' was in fact
572 sending POOLREQ messages instead of POOLRESP mesasges. This message
573 was essentially ignored since failover secondaries effectively do not
574 respond to POOLREQ messages.
575
576- Type definitions for various bitwidths of integers in the sunos5-5
577 build of ISC DHCP have been fixed. It should compile and run more
578 easily when built in 64-bit for this platform.
579
580- "allow known-clients;" is now a legal syntax, to avoid confusion.
581
582- If one dhcp server chooses to 'load balance' a request to its failover
583 peer, it first checks to see if it believes said peer has a free
584 lease to allocate before ignoring the DISCOVER.
585
586- log() was logging a work buffer, rather than the value returned by
587 executing the statements configured by the user. In some cases,
588 the work buffer and the intended results were the same. In some other
589 cases, they were not. This was fixed thanks to a patch from Gunnar
590 Fjone and directconnect.no.
591
592- Compiler warnings for some string type conversions was fixed, thanks
593 to Andreas Gustafsson.
594
595- The netbsd build environments were simplified to one, in which
596 -Wconversion is not used, thanks to Andreas Gustafsson.
597
598- How randomness in the backoff-cutoff dhclient configuration variable
599 is implemented was better documented in the manpage, and the behaviour
600 of dhclient in REQUEST timeout handling was changed to match that of
601 DISCOVER timeout handling.
602
603- Omapi was hardened against clients that pass in null values, thanks
604 to a patch from Mark Jason Dominus.
605
606- A bug was fixed in dhclient that kept it from doing client-side
607 ddns updates. Thanks to a patch from Andreas Gustafsson, which
608 underwent some modification after review by Jason Vas Dias.
609
610- Failover implementations disconnected due to the network between
611 them (rather than one of the two shutting down) will now try to
612 re-establish the failover connection every 5 seconds, rather than
613 to simply try once and give up until one of them is restarted.
614 Thanks to a patch from Ulf Ekberg from Infoblox, and field testing
615 by Greger V. Teigre which led to an enhancement to it.
616
617- A problem that kept DHCP Failover secondaries from tearing down
618 ddns records was repaired. Thanks to a patch from Ulf Ekberg from
619 Infoblox.
620
621- 64bit pointer sizes are detected properly on FreeBSD now.
622
623- A bug was repaired where the DHCP server would leave stale references
624 to host records on leases it once thought about offering to certain
625 clients. The result would be to apply host and 'known' scopes to the
626 wrong clients (possibly denying booting). NOTE: The 'mis-host' patch
627 that was being circulated as a workaround is not the way this bug was
628 fixed. If you were a victim of this bug in 3.0.1, you are cautioned
629 to proceed carefully and see if it fixes your problem.
630
631- A bug was repaired in the server's DHCPINFORM handling, where it
632 tried to divine the client's address from the source packet and
633 would get it wrong. Thanks to Anshuman Singh Rawat.
634
635- A log message was introduced to help illuminate the case where the
636 server was unable to find a lease to assign to any BOOTP client.
637 Thanks to Daniel Baker.
638
639- A minor dhcpd.conf.5 manpage error was fixed.
640
641 Changes since 3.0.1rc14
642
643- The global variable 'cur_time' was centralized and is now uniformly of a
644 type #defined in system-dependent headers. It had previously been defined
645 in one of many places as a 32-bit value, and this causes mayhem on 64-bit
646 big endian systems. It probably wasn't too healthy on little endian
647 systems either.
648
649- A printf format string error introduced in rc14 was repaired.
650
651- AIX system-dependent header file was altered to only define NO_SNPRINTF
652 if the condition used to #ifdef in vsnprintf in AIX' header files
653 is false.
654
655- The Alpha/OSF system-dependent header file was altered to define
656 NO_SNPRINTF on OS revisions older than 4.0G.
657
658- omapip/test.c had string.h added to its includes.
659
660 Changes since 3.0.1rc13
661
662! CAN-2004-0460 - CERT VU#317350: Five stack overflow exploits were closed
663 in logging messages with excessively long hostnames provided by the
664 clients. It is highly probable that these could have been used by
665 attackers to gain arbitrary root access on systems using ISC DHCP 3.0.1
666 release candidates 12 or 13. Special thanks to Gregory Duchemin for
667 both finding and solving the problem.
668
669! CAN-2004-0461 - CERT VU#654390: Once the above was closed, an opening
670 in log_*() functions was evidented, on some specific platforms where
671 vsnprintf() was not believed to be available and calls were wrapped to
672 sprintf() instead. Again, credit goes to Gregory Duchemin for finding
673 the problem. Calls to snprintf() are now linked to a distribution-local
674 snprintf implementation, only in those cases where the architecture is
675 not known to provide one (see includes/cf/[arch].h). If you experience
676 linking problems with snprintf/vsnprintf or 'isc_print_' functions, this
677 is where to look. This vulnerability did not exist in any previously
678 published version of ISC DHCP.
679
680- Compilation on hpux 11.11 was repaired.
681
682- 'The cross-compile bug fix' was backed out.
683
684 Changes since 3.0.1rc12
685
686- Fixed a bug in omapi lease lookup function, to form the hardware
687 address for the hash lookup correctly, thanks to a patch from
688 Richard Hirst.
689
690- Fixed a bug where dhcrelay was sending relayed responses back to the
691 broadcast address, but with the source's unicast mac address. Should
692 now conform to rfc2131 section 4.1.
693
694- Cross-compile bug fix; use $(AR) instead of ar. Thanks to Morten Brorup.
695
696- Fixed a crash bug in dhclient where dhcpd servers that do not provide
697 renewal times results in an FPE. As a side effect, dhclient can now
698 properly handle 0xFFFFFFFF (-1) expiry times supplied by servers. Thanks
699 to a patch from Burt Silverman.
700
701- The 'ping timeout' debugs from rc12 were removed to -DDEBUG only,
702 and reformatted to correct a compilation error on solaris platforms.
703
704- A patch was applied which fixes a case where leases read from the
705 leases database do not properly over-ride previously read leases.
706
707- dhcpctl.3 manpage was tweaked.
708
709 Changes since 3.0.1rc11
710
711- A patch from Steve Campbell was applied with minor modifications to
712 permit reverse dns PTR record updates with values containing spaces.
713
714- A patch from Florian Lohoff was applied with some modifications to
715 dhcrelay. It now discards packets whose hop count exceeds 10 by default,
716 and a command-line option (-c) can be used to set this threshold.
717
718- A failover bug relating to identifying peers by name length instead of
719 by name was fixed.
720
721- Delcaring failover configs within shared-network statements should no
722 longer result in error.
723
724- The -nw command line option to dhclient now works.
725
726- Thanks to a patch from Michael Richardson:
727 - Some problems with long option processing have been fixed.
728 - Some fixes to minires so that updates of KEY records will work.
729
730- contrib/ms2isc was updated by Shu-Min Chang of the Intel Corporation.
731 see contrib/ms2isc/readme.txt for revision notes.
732
733- Dhclient no longer uses shell commands to kill another instance of
734 itself, it sends the signal directly. Thanks to a patch from Martin
735 Blapp.
736
737- The FreeBSD dhclient-script was changed so that a failure to write to
738 /etc/resolv.conf does not prematurely end the script. This keeps dhclient
739 from looping infinitely when this is the case. Thanks to a patch from
740 Martin Blapp.
741
742- A patch from Bill Stephens was applied which resolves a problem with lease
743 expiry times in failover configurations.
744
745- A memory leak in configuration parsing was closed thanks to a patch from
746 Steve G.
747
748- The function which discovers interfaces will now skip non-broadcast or
749 point-to-point interfaces, thanks to a patch from David Brownlee.
750
751- Options not yet known by the dhcpd or dhclient have had their names
752 changed such that they do not contain # symbols, in case they should ever
753 appear in a lease file. An option that might have been named "#144" is
754 now "unknown-144".
755
756- Another patch from Bill Stephens which allows the ping-check timeout to
757 be configured as 'ping-timeout'. Defaults to 1.
758
759 Changes since 3.0.1rc10
760
761- Potential buffer overflows in minires repaired.
762
763- A change to the linux client script to use /bin/bash, since /bin/sh may
764 not be bash.
765
766- Some missing va_end cleanups thanks to a patch from Thomas Klausner.
767
768- A correction of boolean parsing syntax validation - some illegal syntaxes
769 that worked before are now detected and produce errs, some legal syntaxes
770 that errored before will now work properly.
771
772- Some search-and-replace errors that caused some options to change their
773 names was repaired.
774
775- Shu-min Chang of the Intel corporation has contributed a perl script and
776 module that converts the MS NT4 DHCP configuration to a ISC DHCP3
777 configuration file.
778
779- Applied the remainder of the dhcpctl memory leak patch provided by Bill
780 Squier at ReefEdge, Inc. (groo@reefedge.com).
781
782- Missing non-optional failover peer configurations will now result in a soft
783 error rather than a null dereference.
784
785 Changes since 3.0.1rc9
786
787- A format string was corrected to fix compiler warnings.
788
789- A number of spelling corrections were made in the man pages.
790
791- The dhclient.conf.5 man page was changed to refer to do-forward-updates
792 rather than a configuration option that doesn't exist.
793
794- A FreeBSD-specific bug in the interface removal handling was fixed.
795
796- A Linux-specific Token Ring detection problem was fixed.
797
798- Hashes removed from as-yet-unknown agent options, having those options
799 appear in reality before we know about them will no longer produce
800 self-corrupting lease databases.
801
802- dhclient will use the proper port numbers now when using the -g option.
803
804- A order-of-operations bug with 2 match clauses in 1 class statement is
805 fixed thanks to a patch from Andrew Matheson.
806
807- Compilation problems on Solaris were fixed.
808
809- Compilation problems when built with DEBUG or DEBUG_PACKET were repaired.
810
811- A fix to the dhcp ack process which makes certain group options will be
812 included in the first DHCPOFFER message was made thanks to a patch from
813 Ling Gou.
814
815- A few memory leaks were repaired thanks to patches from Bill Squier at
816 ReefEdge, Inc. (groo@reefedge.com).
817
818- A fix for shared-networks that sometimes give clients options for the
819 wrong subnets (in particular, 'option routers') was applied, thanks to
820 Ted Lemon for the patch.
821
822- Omshell's handling of dotted octets as values was changed such that dots
823 one after the other produce zero values in the integer string.
824
825 Changes since 3.0.1rc8
826
827- Fix a format string vulnerability in the server that could lead to a
828 remote root compromise (discovered by NGSEC Research Team, www.ngsec.com).
829
830- Add additional support for NetBSD/sparc64.
831
832- Fix a bug in the command-line parsing of the client. Also, resolve
833 a memory leak.
834
835- Add better support for shells other than bash in the Linux client
836 script.
837
838- Various build fixes for modern versions of FreeBSD and Linux.
839
840- Fix a bad bounds check when printing binding state names.
841
842- Clarify documentation about fixed-address and multiple addresses.
843
844- Fix a typo in the authoritative error message.
845
846- Make a log entry when we can't write a billing class.
847
848- Use conversion targets that are the right size on all architectures.
849
850- Increment the hop count when relaying.
851
852- Log a message when lease state is changed through OMAPI.
853
854- Don't rerun the shared_network when evaluating the pool.
855
856- Fix a reversed test in the parser.
857
858- Change the type of rbuf_max.
859
860- Make FTS_LAST a manifest constant to quiet warnings.
861
862 Changes since 3.0.1rc7
863
864- Fix two compiler warnings that are generated when compiling on Solaris
865 with gcc. These stop the build, even though they weren't actually
866 errors, because we prefer that our builds generate no warnings.
867
868 Changes since 3.0.1rc6
869
870- Don't allow a lease that's in the EXPIRED, RELEASED or RESET state
871 to be renewed.
872
873- Implement lease stealing for cases where the primary has fewer leases
874 than the secondary, as called for by the standard.
875
876- Add a fudge factor to the lease expiry acceptance code, (suggested
877 by Kevin Miller of CMU).
878
879- Fix a bug in permit_list_match that made it much too willing to say
880 that two permit lists matched.
881
882- Unless DEBUG_DNS_UPDATES is defined, print more user-friendly (and
883 also more compact) messages about DNS updates.
884
885- Fix a bug in generating wire-format domain names for the FQDN option.
886
887- Fix a bug where the FQDN option would not be returned if the client
888 requested it, contrary to the standard.
889
890- On Darwin, use the FreeBSD DHCP client script.
891
892- On NetBSD/sparc, don't check for casting warnings.
893
894- Add a flag in the DHCP client to disable updating the client's A
895 record when sending an FQDN option indicating that the client is
896 going to update its A record.
897
898- In the client, don't attempt a DNS update until one second after
899 configuring the new IP address, and if the update times out, keep
900 trying until a response, positive or negative, is received from the
901 DNS server.
902
903- Fix an uninitialized memory bug in the DHCP client.
904
905- Apply some FreeBSD-specific bug fixes suggested by Murray Stokely.
906
907- Fix a bug in ns_parserr(), where it was returning the wrong sort
908 of result code in some cases (suggested by Ben Harris of the
909 NetBSD project).
910
911- Fix a bug in is_identifier(), where it was checking against EOF
912 instead of the END_OF_FILE token (also suggested by Ben Harris).
913
914- Fix a bug where if an option universe contained no options, the
915 DHCP server could dump core (Walter Steiner).
916
917- Fix a bug in the handling of encapsulated options.
918
919- Fix a bug that prevented NWIP suboptions from being processed.
920
921- Delete the FTS_BOOTP and FTS_RESERVED states and implement them
922 as modifier flags to the FTS_ACTIVE state, as called for in the
923 failover protocol standard.
924
925- Fix bugs in the pool merging code that resulted in references and
926 dereferences of null pointers. This bug had no impact unless the
927 POINTER_DEBUG flag was defined.
928
929- In the server, added a do-forward-updates flag that can be used to
930 disable forward updates in all cases, so that sites that want the
931 clients to take sole responsibility for updating their A record can
932 do so.
933
934- Make it possible to disable optimization of PTR record updates.
935
936 Changes since 3.0.1rc5
937
938- Include some new documentation and changes provided by Karl Auer.
939
940- Add a workaround for some Lexmark printers that send a double-NUL-
941 terminated host-name option, which would break DNS updates.
942
943- Fix an off-by-one error in the MAC-address checking code for
944 DHCPRELEASE that was added in 3.0.1rc5.
945
946- Fix a bug where client-specific information was not being discarded
947 from the lease when it expired or was released, resulting in
948 problems if the lease was reallocated to a different client.
949
950- If more than one allocation pool is specified that has the same set
951 of constraints as another allocation pool on the same shared
952 network, merge the two pools.
953
954- Don't print an error in fallback_discard, since this just causes
955 confusion and does not appear to be helping to encourage anyone to
956 fix this bug.
957
958 Changes since 3.0.1rc4
959
960- Fix a bug that would cause the DHCP server to spin if asked to parse
961 a certain kind of incorrect statement.
962
963- Fix a related bug that would prevent an error from being reported in
964 the same case.
965
966- Additional documentation.
967
968- Make sure that the hardware address matches the lease when
969 processing a DHCPRELEASE message.
970
971 Changes since 3.0.1rc3
972
973- A minor bug fix in the arguments to a logging function call.
974- Documentation update for dhcpd.conf.
975
976 Changes since 3.0.1rc2
977
978- Allow the primary to send a POOLREQ message. This isn't what the current
979 failover draft says to do, so we may have to back it out if I can't get the
980 authors to relent, but the scheme for balancing that's specified in the
981 current draft seems needlessly hairy, so I'm floating a trial balloon.
982 The rc1 code did not implement the method described in the draft either.
983
984 Changes since 3.0.1rc1
985
986- Treat NXDOMAIN and NXRRSET as success when we are trying to delete a
987 domain or RRSET. This allows the DHCP server to forget about a name
988 it added to the DNS once it's been removed, even if the DHCP server
989 wasn't the one that removed it.
990
991- Install defaults for failover maximum outstanding updates and maximum
992 silent time. This prevents problems that might occur if these values
993 were not configured.
994
995- Don't do DDNS deletes if ddns-update-style is none.
996
997- Return relay agent information options in DHCPNAK. This prevents DHCPNAK
998 messages from being dropped when the relay agent information option contains
999 routing information.
1000
1001- Fix a problem where coming up in recover wouldn't result in an update
1002 request being sent.
1003
1004- Add some more chatty messages when we start a recovery update and when it's
1005 done.
1006
1007- Fix a possible problem where some state might have been left around
1008 after the peer lost contact and regained contact about how many updates
1009 were pending.
1010
1011- Don't nix a lease update because of a lease conflict. This test has
1012 never (as far as I know) prevented a mistake, and it appears to cause
1013 problems with failover.
1014
1015- Add support in rc history code for keeping a selective history, rather
1016 than a history of all references and dereferences. This code is only used
1017 when extensive additional debugging is enabled.
1018
1019 Changes since 3.0
1020
1021- Make allocators for hash tables. As a side effect, this fixes a memory
1022 smash in the subclass allocation code.
1023
1024- Fix a small bug in omshell where if you try to close an object when
1025 no object is open, it dumps core.
1026
1027- Fix an obscure coredump that could occur on shutdown.
1028
1029- Fix a bug in the recording of host declaration rubouts in the lease file.
1030
1031- Fix two potential spins in the host deletion code.
1032
1033- Fix a core dump that would happen if an application tried to update
1034 a host object attribute with a null value.
1035
1036 Changes since 3.0 Release Candidate 12
1037
1038- Fix a memory leak in the evaluation code.
1039
1040- Fix an obscure core dump.
1041
1042- Print a couple of new warnings when parsing the configuration file
1043 when crucial information is left out.
1044
1045- Log "no free leases" as an error.
1046
1047- Documentation updates.
1048
1049 Changes since 3.0 Release Candidate 11
1050
1051- Always return a subnet selection option if one is sent.
1052
1053- Fix a warning that was being printed because an automatic data
1054 structure wasn't zeroed.
1055
1056- Fix some failover state transitions that were being handled
1057 incorrectly.
1058
1059- When supersede_lease is called on a lease whose end time has already
1060 expired, but for which a state transition has not yet been done, do
1061 a state transition. This fixes the case where if the secondary
1062 allocated a lease to a client and the lease "expired" while the
1063 secondary was in partner-down, no expiry event would actually
1064 happen, so the lease would remain active until the primary was
1065 restarted.
1066
1067 Changes since 3.0 Release Candidate 10
1068
1069- Fix a bug that was preventing released leases from changing state
1070 in failover-enabled pools.
1071
1072- Fix a core dump in the client identifier finder code (for host
1073 declarations).
1074
1075- Finish fixing a bug where bogus data would sometimes get logged to
1076 the dhclient.leases file because it was opened as descriptor 2.
1077
1078- Fix the Linux dhclient-script according to suggestions made by
1079 several people on the dhcp-client mailing list.
1080
1081- Log successful DNS updates at LOG_INFO, not LOG_ERROR.
1082
1083- Print an error message and refuse to run if a failover peer is
1084 defined but not referenced by any pools.
1085
1086- Correct a confusing error message in failover.
1087
eaf0b302
TL
1088 Changes since 3.0 Release Candidate 9
1089
1090- Fix a bug in lease allocation for Dynamic BOOTP clients.
1091
0db87765
TL
1092 Changes since 3.0 Release Candidate 8 Patchlevel 2
1093
1094- Fix a bug that prevented update-static-leases from working.
1095
1096- Document failover-state OMAPI object.
1097
1098- Fix a compilation error on SunOS 4.
1099
d758ad8c
TL
1100 Changes since 3.0 Release Candidate 8 Patchlevel 1
1101
1102- Fix a parsing bug that broke dns updates (both interim and ad-hoc).
1103 This was introduced in rc8pl1 as an unintended result of the memory
1104 leakage fixes that were in pl1.
1105
1106- Fix a long-standing bug where the server would record that an update
1107 had been done for a client with no name, even though no update had
1108 been done, and then when the client's lease expired the deletion of
1109 that nonexistant record would time out because the name was the null
1110 string.
1111
1112- Clean up the omshell, dhcpctl and omapi man pages a bit.
1113
d758ad8c
TL
1114 Changes since 3.0 Release Candidate 8
1115
1116- Fix a bug that could cause the DHCP server to spin if
1117 one-lease-per-client was enabled.
1118
1119- Fix a bug that was causing core dumps on BSD/os in the presence of
1120 malformed packets.
1121
1122- In partner-down state, don't restrict lease lengths to MCLT.
1123
1124- On the failover secondary, record the MCLT received from the primary
1125 so that if we come up without a connection to the primary we don't
1126 wind up giving out zero-length leases.
1127
1128- Fix some compilation problems on BSD/os.
1129
1130- Fix a bunch of memory leaks.
1131
1132- Fix a couple of bugs in the option printer.
1133
1134- Fix an obscure error reporting bug in the dns update code, and also
1135 make the message clearer when a key algorithm isn't supported.
1136
1137- Fix a bug in the tracing code that prevented trace runs that used
1138 tcp connections from being played back.
1139
1140- Add some additional debugging capability for catching memory leaks
1141 on exit.
1142
1143- Make the client release the lease correctly on shutdown.
1144
1145- Add some configurability to the build system.
1146
1147- Install omshell manual page in man1, not man8.
1148
1149- Craig Gwydir sent in a patch that fixes a long-standing bug in the
1150 DHCP client that could cause core dumps, but that for some reason
1151 hadn't been noticed until now.
1152
1153 Changes since 3.0 Release Candidate 7
1154
1155- Fix a bug in failover where we weren't sending updates after a
1156 transition from communications-interrupted to normal.
1157
1158- Handle expired/released/reset -> free transition according to the
1159 protocol specification (this works - the other way not only wasn't
1160 conformant, but also didn't work).
1161
1162- Add a control object in both client and server that allows either
1163 daemon to be shut down cleanly.
1164
1165- When writing a lease, if we run out of disk space, shut down the
1166 output file and insist on writing a new one before proceeding.
1167
1168- In the server, if the OMAPI listener port is occupied, keep trying
1169 to get it, rather than simply giving up and exiting.
1170
1171- Support fetching variables from leases and also updating and adding
1172 variables to leases via OMAPI.
1173
1174- If two failover peers have wildly different clocks, refuse to start
1175 doing failover.
1176
1177- Fix a bug in the DNS update code that could cause core dumps when
1178 running on alpha processors.
1179
1180- Fixed a bug in ddns updates for static lease entries, thanks to a
1181 patch from Andrey M Linkevitch.
1182
1183- Add support for Darwin/MacOS X
1184
1185- Install omshell (including new documentation).
1186
1187- Support DNS updates in the client (this is a very obscure feature
1188 that most DHCP client users probably will not be able to use).
1189
1190- Somewhat cleaner status logging in the client.
1191
1192- Make OMAPI key naming syntax compatible with the way keys are
1193 actually named (key names are domain names).
1194
1195- Fix a bug in the lease file writer.
1196
1197- Install DHCP ISC headers in a different place than BIND 9 ISC
1198 headers, to avoid causing trouble in BIND 9 builds.
1199
1200- Don't send updates for attributes on an object when the attributes
1201 haven't changed. Support deleting attributes on remote objects.
1202
1203- Fix a number of bugs in omshell, and add the unset and refresh
1204 statements.
1205
1206- Handle disconnects in OMAPI a little bit more intelligently (so that
1207 the caller gets ECONNRESET instead of EINVAL).
1208
1209- Fix a bunch of bugs in the handling of clients that have existing
1210 leases when the try to renew their leases while failover is
1211 operating.
1212
eaf0b302
TL
1213 Changes since 3.0 Release Candidate 6
1214
1215- Fix a core dump that could happen when processing a DHCPREQUEST from
1216 a client that had a host declaration that contained both a
1217 fixed-address declaration and a dhcp-client-identifier option
1218 declaration, if the client identifier was longer than nine bytes.
1219
1220- Fix a memory leak that could happen in certain obscure cases when
1221 using omapi to manipulate leases.
1222
1223- Fix some bugs and omissions in omshell.
1224
1225
1226 Changes since 3.0 Release Candidate 5
1227
1228- Fix a bug in omapi_object_dereference that prevented objects in
1229 chains from having their reference counts decreased on dereference.
1230
1231- Fix a bug in omapi_object_dereference that would prevent object
1232 chains from being freed upon removal of the last reference external
1233 to the chain.
1234
1235- Fix a number of other memory leaks in the OMAPI protocol subsystem.
1236
1237- Add code in the OMAPI protocol handler to trace memory leakage.
1238
1239- Clean up the memory allocation/reference history printer.
1240
98311e4b 1241- Support input of dotted quads and colon-separated hex lists as
eaf0b302
TL
1242 attribute values in omshell.
1243
98311e4b 1244- Fix a typo in the Linux interface discovery code.
eaf0b302
TL
1245
1246- Conditionalize a piece of trace code that wasn't conditional.
1247
1248 Changes since 3.0 Release Candidate 4
1249
1250- Fix a bug that would prevent leases from being abandoned properly on
1251 DHCPDECLINE.
1252
1253- Fix failover peer OMAPI support.
1254
1255- In failover, correctly handle expiration of leases. Previously,
1256 leases would never be reclaimed because they couldn't make the
1257 transition from EXPIRED to FREE.
1258
1259- Fix some broken failover state transitions.
1260
1261- Documentation fixes.
1262
1263- Take out an unnecessary check in DHCP relay agent information option
1264 stashing code that was preventing REBINDING clients from rebinding.
1265
1266- Prevent failover peers from allocating leases in DHCPREQUEST
1267 processing if the lease belongs to the other server.
1268
1269- Record server version in lease file introductory comment.
1270
1271- Correctly report connection errors in OMAPI and failover.
1272
1273- Make authentication signature algorithm name comparisons in OMAPI
1274 case-insensitive.
1275
1276- Fix compile problem on SunOS 4.x
1277
98311e4b 1278- If a signature algorithm is not terminated with '.', terminate it so
eaf0b302
TL
1279 that comparisons between fully-qualified names will work
1280 consistently.
1281
1282- Different SIOCGIFCONF probe code, may "fix" problem on some Linux
1283 systems with the probe not working correctly.
1284
1285- Don't allow user to type omapi key on command line of omshell.
1286
0596b051
TL
1287 Changes since 3.0 Release Candidate 3
1288
1289- Do lease billing on startup in a way that I *think* will finally do
1290 the billing correctly - the previous method could overbill as a
1291 result of duplicate leases.
1292
1293- Document OMAPI server objects.
1294
892fe689
TL
1295 Changes since 3.0 Release Candidate 2 Patchlevel 1
1296
1297- Fix some problems in the DDNS update code. Thanks to Albert
1298 Herranz for figuring out the main problem.
1299
1300- Fix some reference counting errors on host entries that were causing
1301 core dumps.
1302
1303- Fix a byte-swap bug in the token ring code, thanks to Jochen
1304 Friedrich.
1305
1306- Fix a bug in lease billing, thanks to Jonas Bulow.
1307
1308 Changes since 3.0 Release Candidate 2
1309
1310- Change the conditions under which a DHCPRELEASE is actually
1311 committed to be consistent with lease binding states rather than
98311e4b 1312 using the lease end time. This may fix some problems with the
892fe689
TL
1313 billing class code.
1314
1315- Fix a bug where lease updates would fail on Digital Unix (and maybe
1316 others) because malloc was called with a size of zero.
1317
1318- Fix a core dump that happens when the DHCP server can't create its
1319 trace file.
1320
79ea3de8 1321 Changes since 3.0 Release Candidate 1 Patchlevel 1
87784777 1322
79ea3de8
TL
1323- Fix the dhcp_failover_put_message to not attempt to allocate a
1324 zero-length buffer. Some versions of malloc() fail if you try to
1325 allocate a zero-length buffer, and this was causing problems on,
1326 e.g., Digital Unix.
1327
1328- Fix a case where the failover code was printing an error message
1329 when no error had occurred.
1330
1331- Fix a problem where when a server went down and back up again, the
1332 peer would not see a state transition and so would stay in the
1333 non-communicating state.
1334
1335- Be smart about going into recover_wait.
1336
1337- Fix a problem in the failover implementation where peers would fail
1338 to come into sync if interrupted in the RECOVER state. This could
1339 have been the cause of some problems people have reported recently.
1340
1341- Fix a problem with billing classes where they would not be unbilled
1342 when the client lease expired.
1343
1344- If select fails, figure out which descriptor is bad, and cut it out
1345 of the I/O loop. This prevents a potentially nasty spin. I
1346 haven't heard any report it in a while, but it came up consistently
1347 in testing.
1348
1349- Fix a bug in the relay agent where if you specified interfaces on
1350 the command line, it would fail.
1351
1352- Fix a couple of small bugs in the omapi connection object (no known
1353 user impact).
1354
1355- Add the missing 3.0 Beta 1 lease conversion script.
1356
1357- Read dhcp client script hooks if they exist, rather than only if
1358 they're executable.
1359
1360 Changes since 3.0 Release Candidate 1
87784777
TL
1361
1362- Fix a memory smash that happens when fixed-address leases are used.
1363 ANY SITE AT WHICH FIXED-ADDRESS STATEMENTS ARE BEING USED SHOULD
1364 UPGRADE IMMEDIATELY. This has been a long-standing bug - thanks to
1365 Alvise Nobile for discovering it and helping me to find it!
1366
79ea3de8
TL
1367- Fix a small bug in binary-to-ascii, thanks to H. Peter Anvin of
1368 Transmeta.
1369
87784777
TL
1370- There is a known problem with the DHCP server doing failover on
1371 Compaq Alpha systems. This patchlevel is not a release candidate
1372 because of this bug. The bug should be straightforward to fix, so
1373 a new release candidate is expected shortly.
1374
1375- There is a known problem in the DDNS update code that is probably a
1376 bug, and is not, as far as we know, fixed in this patchlevel.
1377
6d779c72
TL
1378 Changes since 3.0 Beta 2 Patchlevel 24
1379
1380- Went over problematic failover state transitions and made them all
1381 work, so that failover should now much less fragile.
1382
1383- Add some dhcpctl and omapi documentation
1384
1385- Fix compile errors when compiling with unusual predefines.
1386
1387- Make Token Ring work on Linux 2.4
1388
1389- Fix the Digital Unix BPF_WORDALIGN bug.
1390
1391- Fix some dhcp client documentation errors.
1392
1393- Update some parts of the README file.
1394
1395- Support GCC on SCO.
1396
de57e64b
TL
1397 Changes since 3.0 Beta 2 Patchlevel 23
1398
1399- Fix a bug in the DNS update code where a status code was not being
1400 checked. This may have been causing core dumps.
1401
1402- When parsing the lease file, if a lease declaration includes a
1403 billing class statement, and the lease already has a billing class,
1404 unbill the old class.
1405
1406- When processing failover transactions, where acks will be deferred,
1407 process the state transition immediately.
1408
1409- Don't try to use the new SIOCGIFCONF buffer size detection code on
1410 Linux 2.0, which doesn't provide this functionality.
1411
1412- Apply a patch suggested by Tuan Uong for a problem in dlpi.c.
1413
1414- Fix a problem in using the which command in the configure script.
1415
1416- Fix a parse error in the client when setting up an omapi listener.
1417
1418- Document the -n and -g flags to the client.
1419
1420- Make sure there is always a stdin and stdout on startup. This
1421 prevents shell scripts from accidentally writing error messages into
1422 configuration files that happen to be opened as stderr.
1423
1424- If an interface is removed, the client will now notice that it is
1425 gone rather than spinning. This has only been tested on NetBSD.
1426
1427- The client will attempt to get an address even if it can't create a
1428 lease file.
1429
1430- Don't overwrite tracefiles.
1431
1432- Fix some memory allocation bugs in failover.
2aa36519 1433
140158d3
TL
1434 Changes since 3.0 Beta 2 Patchlevel 22
1435
1436- Apply some patches suggested by Cyrille Lefevre, who is maintaining
1437 the FreeBSD ISC DHCP Distribution port.
1438
1439- Fix a core dump in DHCPRELEASE.
1440
3a395e60
TL
1441 Changes since 3.0 Beta 2 Patchlevel 21
1442
1443- This time for sure: fix the spin described in the changes for pl20.
1444
fc74dd0c
TL
1445 Changes since 3.0 Beta 2 Patchlevel 20
1446
1447- Fix a problem with Linux detecting large numbers of interfaces (Ben)
1448
1449- Fix a memory smash in the quotify code, which was introduced in
1450 pl19.
1451
1452- Actually fix the spin described in the changes for pl20. The
1453 previous fix only partially fixed the problem - enough to get it
1454 past the regression test.
1455
ed5ee591
TL
1456 Changes since 3.0 Beta 2 Patchlevel 19
1457
1458- Fix a bug that could cause the server to abort if compiled with
1459 POINTER_DEBUG enabled.
1460
1461- Fix a bug that could cause the server to spin when responding to a
1462 DHCPREQUEST.
1463
1464- Apply Joost Mulders' suggested patches for DLPI on x86.
1465
1466- Support NUL characters in quoted strings.
1467
1468- Install unformatted man pages on SunOS.
1469
b3fad8ac
TL
1470 Changes since 3.0 Beta 2 Patchlevel 18
1471
3350f5b7
TL
1472- Allow the server to be placed in partner-down state using OMAPI.
1473 (Damien Neil)
1474
1475- Implement omshell, which can be used to do arbitrary things to the
1476 server (in theory). (Damien Neil)
1477
1478- Fix a case where if a client had two different leases the server could
1479 actually dereference the second one when it hadn't been referenced,
1480 leading to memory corruption and a core dump. (James Brister)
1481
1482- Fix a case where a client could request the address of another client's
1483 lease, but find_lease wouldn't detect that the other client had it, and
1484 would attempt to allocate it to the client, resulting in a lease conflict
1485 message.
1486
1487- Fix a case where a client with more than one client identifier could be
1488 given a lease where the hardware address was correct but the client
1489 identifier was not, resulting in a lease conflict message.
1490
98311e4b 1491- Fix a problem where the server could write out a colon-separated
3350f5b7
TL
1492 hex list as a value for a variable, which would then not parse.
1493 The fix is to always write strings as quoted strings, with any
1494 non-printable characters quoted as octal escape sequences. So
1495 a file written the old way still won't work, but new files written
1496 this way will work.
1497
b3fad8ac
TL
1498- Fix documentation for sending non-standard options.
1499
1500- Use unparsable names for unknown options. WARNING: this will
1501 break any configuration files that use the option-nnn convention.
1502 If you want to continue to use this convention for some options,
1503 please be sure to write a definition, like this:
1504
1505 option option-nnn code nnn = string;
1506
1507 You can use a descriptive name instead of option-nnn if you like.
1508
1509- Fix a problem where we would see a DHCPDISCOVER/DHCPOFFER/
1510 DHCPREQUEST/DHCPACK/DHCPREQUEST/DHCPNAK sequence. This was the
1511 result of a deceptively silly bug in supersede_lease.
1512
1513- Fix client script exit status check, according to a fix supplied by
1514 Hermann Lauer.
1515
1516- Fix an endianness bug in the tracefile support, regarding ICMP
1517 messages.
1518
3350f5b7
TL
1519- Fix a bug in the client where the medium would not work correctly if
1520 it contained quoted strings.
1521
b3fad8ac
TL
1522 ** there was no pl17 **
1523
e6d30fd6
TL
1524 Changes since 3.0 Beta 2 Patchlevel 16
1525
6da9db9d
TL
1526- Add support for transaction tracing. This allows the state of the
1527 DHCP server on startup, and all the subsequent transactions, to be
1528 recorded in a file which can then be played back to reproduce the
1529 behaviour of the DHCP server. This can be used to quickly
1530 reproduce bugs that cause core dumps or corruption, and also for
1531 tracking down memory leaks.
1532
1533- Incorporate some bug fixes provided by Joost Mulders for the DLPI
1534 package which should clear up problems people have been seeing on
1535 Solaris.
1536
1537- Fix bugs in the handling of options stored as linked lists (agent
1538 options, fqdn options and nwip options) that could cause memory
1539 corruption and core dumps.
1540
1541- Fix a bug in DHCPREQUEST handling that resulted in DHCPNAK messages
1542 not being send in some cases when they were needed.
1543
1544- Make the lease structure somewhat more compact.
1545
1546- Make initial failover startup *much* faster. This was researched
1547 and implemented by Damien Neil.
1548
1549- Add a --version flag to all executables, which prints the program
1550 name and version to standard output.
1551
1552- Don't rewrite the lease file every thousand leases.
1553
e6d30fd6
TL
1554- A bug in nit.c for older SunOS machines was fixed by a patch sent in
1555 by Takeshi Hagiwara.
1556
6da9db9d
TL
1557- Fix a memory corruption bug in the DHCP client.
1558
1559- Lots of documentation updates.
1560
1561- Add a feature allowing environment variables to be passed to the
1562 DHCP client script on the DHCP client command line.
1563
1564- Fix client medium support, which had been broken for some time.
1565
1566- Fix a bug in the DHCP client initial startup backoff interval, which
1567 would cause two DHCPDISCOVERS to be sent back-to-back on startup.
1568
1569
af49fdff
TL
1570 Changes since 3.0 Beta 2 Patchlevel 15
1571
1572- Some documentation tweaks.
1573
1574- Maybe fix a problem in the DLPI code.
1575
1576- Fix some error code space inconsistencies in ddns update code.
1577
1578- Support relay agents that intercept unicast DHCP messages to stuff
1579 agent options into them.
1580
1581- Fix a small memory leak in the relay agent option support code.
1582
c5b569f8
TL
1583- Fix a core dump that would occur if a packet was sent with no
1584 options.
1585
754ae3e9
TL
1586 Changes since 3.0 Beta 2 Patchlevel 14
1587
1588- Finish fixing a long-standing bug in the agent options code. This
1589 was causing core dumps and failing to operate correctly - in
1590 particular, agent option stashing wasn't working. Agent option
1591 stashing should now be working, meaning that agent options can be
1592 used in class statements to control address allocation.
1593
1594- Fix up documentation.
1595
1596- Fix a couple of small memory leaks that would have added up
1597 significantly in a high-demand situation.
1598
1599- Add a log-facility configuration parameter.
1600
1601- Fix a compile error on some older operating systems.
1602
1603- Add the ability in the client to execute certain statements before
1604 transmitting packets to the server. Handy for debugging; not much
1605 practical use otherwise.
1606
1607- Don't send faked-out giaddr when renewing or bound - again, useful
1608 for debugging.
1609
2f2e7960
TL
1610 Changes since 3.0 Beta 2 Patchlevel 13
1611
1612- Fixed a problem where the fqdn decoder would sometimes try to store
1613 an option with an (unsigned) negative length, resulting in a core
1614 dump on some systems.
1615
1616- Work around the Win98 DHCP client, which NUL-terminates the FQDN
1617 option.
1618
1619- Work around Win98 and Win2k clients that will claim they want to do
1620 the update even when they don't have any way to do it.
1621
1622- Fix some log messages that can be printed when failover is operating
1623 that were not printing enough information.
1624
1625- It was possible for a DHCPDISCOVER to get an allocation even when
1626 the state machine said the server shouldn't be responding.
1627
1628- Don't load balance DHCPREQUESTs from clients in RENEWING and
1629 REBINDING, since in RENEWING, if we heard it, it's for us, and in
1630 REBINDING, the client wouldn't have got to REBINDING if its primary
1631 were answering.
1632
1633- When we get a bogus state lease binding state transition, don't do
1634 the transition.
1635
1636
66e98927
TL
1637 Changes since 3.0 Beta 2 Patchlevel 12
1638
1639- Fixed a couple of silly compile errors.
1640
a1e2e3d6
TL
1641 Changes since 3.0 Beta 2 Patchlevel 11
1642
1643- Albert Herranz tracked down and fixed a subtle bug in the base64
1644 decoder that would prevent any key with an 'x' in its base64
1645 representation from working correctly.
1646
1647- Thanks to Chris Cheney and Michael Sanders, we have a fix for the
1648 hang that they both spotted in the DHCP server - when
1649 one-lease-per-client was set, the code to release the "other" lease
1650 could spin.
1651
1652- Fix a problem with alignment of the input buffer in bpf in cases
1653 where two packets arrive in the same bpf read.
1654
1655- Fix a problem where the relay agent would crash if you specified an
1656 interface name on the command line.
1657
1658- Add the ability to conditionalize client behaviour based on the
1659 client state.
1660
1661- Add support for the FQDN option, and added support for a new way of
1662 doing ddns updates (ddns update style interim) that allows more than
1663 one DHCP server to update the DNS for the same network(s). This
1664 was implemented by Damien Neil with some additional functionality
1665 added by Ted Lemon.
1666
1667- Damien added a "log" statement, so that the configuration file can
1668 be made to log debugging information and other information.
1669
1670- Fixed a bug that caused option buffers not to be terminated with an
1671 end option.
1672
1673- Fixed a long-standing bug in the support for option spaces where the
1674 options are stored as an ordered list rather than in a hash table,
1675 which could theoretically result in memory pool corruption.
1676
1677- Prevent hardware declarations with no actual hardware address from
1678 being written as something unparsable, and behave correctly in the
1679 face of a null hardware address on input.
1680
1681- Allow key names to be FQDNs, and qualify the algorithm name if it is
1682 specified unqualified.
1683
1684- Modify the DDNS update code so that it never prints the "resolver
1685 failed" message, but instead says *why* the resolver failed.
1686
1687- Officially support the subnet selection option, which now has an
1688 RFC.
1689
1690- Fix a build bug on MacOS X.
1691
1692- Allow administrator to disable ping checking.
1693
1694- Clean up dhcpd.conf documentation and add more information about how
1695 it works.
1696
6c68ec36
TL
1697 Changes since 3.0 Beta 2 Patchlevel 10
1698
1699- Fix a bug introduced during debugging (!) and accidentally committed
1700 to CVS.
1701
9fd337e7
TL
1702 Changes since 3.0 Beta 2 Patchlevel 9
1703
1704- Fix DHCP client handling of vendor encapsulated options.
1705
1706- Fix a bug in the handling of relay agent information options introduced
1707 in patchlevel 9.
1708
1709- Stash agent options on client leases by default, and use the stashed
1710 options at renewal time.
1711
1712- Add the ability to test the client's binding state in the client
1713 configuration language.
1714
1715- Fix a core dump in the DNS update code.
1716
1717- Fix some expression evaluation bugs that were causing updates to be
1718 done when no client hostname was received.
1719
1720- Fix expression evaluation debugging printfs.
1721
1722- Teach pretty_print_option to print options in option spaces other than
1723 the DHCP option space.
1724
1725- Add a warning message if the RHS of a not is not boolean.
1726
1727- Never select for more than a day, because some implementations of
1728 select will just fail if the timeout is too long (!).
1729
1730- Fix a case where a DHCPDISCOVER from an unknown network would be
1731 silently dropped.
1732
1733- Fix a bug where if a client requested an IP address for which a different
1734 client had the lease, the DHCP server would reallocate it anyway.
1735
1736- Fix the DNS update code so that if the client changes its name, the DNS
1737 will be correctly updated.
1738
3922772a
TL
1739 Changes since 3.0 Beta 2 Patchlevel 8
1740
1741- Oops, there was another subtle math error in the header-length
1742 bounds-checking.
1743
1744 Changes since 3.0 Beta 2 Patchlevel 7
848c2547
TL
1745
1746- Oops, forgot to byte-swap udp header length before bounds-checking it.
1747
3922772a 1748 Changes since 3.0 Beta 2 Patchlevel 6
0f6045f8 1749
f8572308
TL
1750- Fix a possible DoS attack where a client could cause the checksummer
1751 to dump core. This was a read, not a write, so it shouldn't be
1752 possible to exploit it any further than that.
1753
1754- Implement client- and server-side support for using the Client FQDN
1755 option.
1756
1757- Support for other option spaces in the client has been added. This
1758 means that it is now possible to define a vendor option space on the
1759 client, request options in that space from the server (which must
1760 define the same option space), and then use those options in the
1761 client. This also allows NWIP and Client FQDN options to be used
1762 meaningfully.
1763
1764- Add object initializer support. This means that objects can now be
1765 initialized to something other than all-zeros when allocated, which
1766 makes, e.g., the interface object support code a little more robust.
1767
1768- Fix an off-by-one bug in the host stuffer. This was causing host
1769 deletes not the work, and may also have been causing OMAPI
1770 connections to get dropped. Thanks to James Brister for tracking
1771 this one down!
1772
1773- Fixed a core dump in the interface discovery code that is triggered
1774 when there is no subnet declaration for an interface, but the server
1775 decides to continue running. Thanks to Shane Kerr for tracking
1776 down and fixing this problem.
1777
1778 Changes since 3.0 Beta 2 Patchlevel 5
1779
0f6045f8
TL
1780- Fix a bug in the recent enhancement to the interface discovery code
1781 to support arbitrary-length interface lists.
1782
1783- Support NUL-terminated DHCP options when initializing client-script
1784 environment.
1785
1786- Fix suffix operator.
1787
1788- Fix NetWare/IP option parsing.
1789
1790- Better error/status checking in dhcpctl initialization and omapi
1791 connection code.
1792
1793- Fix a potential memory smash in dhcpctl code.
1794
1795- Fix SunOS4 and (maybe) Ultrix builds.
1796
1797- Fix a bug where a certain sort of incoming packet could cause a core
1798 dump on Solaris (and probably elsewhere).
1799
1800- Add some more safety checks in error logging code.
1801
1802- Add support for ISC_R_INCOMPLETE in OMAPI protocol connection code.
1803
1804- Fix relay agent so that if an interface is specified on the command
1805 line, the relay agent does not dump core.
1806
1807- Fix class matching so that match if can be combined with match or
1808 spawn with.
1809
1810- Do not allow spurious leases in the lease database to introduce
1811 potentially bogus leases into the in-memory database.
1812
1813- Fix a byte-order problem in the client hardware address type code
1814 for OMAPI.
1815
1816- Be slightly less picky about what sort of hardware addresses OMAPI
1817 can install in host declarations.
1818
801de092
TL
1819 Changes since 3.0 Beta 2 Patchlevel 4
1820
1821- Incorporated Peter Marschall's proposed change to array/record
1822 parsing, which allows things like the slp-agent option to be encoded
1823 correctly. Thanks very much to Peter for taking the initiative to
1824 do this, and for doing such a careful job of it (e.g., updating the
1825 comments)!
1826
1827- Added an encoding for the slp-agent option. :')
1828
6ed7a93d
TL
1829- Fixed SunOS 4 build. Thanks to Robert Elz for responding to my
1830 request for help on this with patches!
1831
1832- Incorporated a change that should fix a problem reported by Philippe
1833 Jumelle where when the network connection between two servers is
1834 lost, they never reconnect.
1835
1836- Fix client script files other than that for NetBSD to actually use
1837 make_resolv_conf as documented in the manual page.
1838
1839- Fix a bug in the packet handling code that could result in a core
1840 dump.
1841
1842- Fix a bug in the bootp code where responses on the local net would
1843 be sent to the wrong MAC address. Thanks to Jerry Schave for
1844 catching this one.
1845
490eb5e7
TL
1846 Changes since 3.0 Beta 2 Patchlevel 3
1847
1848- In the DHCP client, execute client statements prior to using the values
1849 of options, so that the client configuration can overried, e.g., the
1850 lease renewal time.
1851
1852- Fix a reference counting error that would result in very reproducible
1853 failures in updates, as well as occasional core dumps, if a zone was
1854 declared without a key.
1855
1856- Fix some Linux 2.0 compilation problems.
1857
1858- Fix a bug in scope evaluation during execution of "on" statements that
1859 caused values not to be recorded on leases.
1860
1861- If the dhcp-max-message-size option is specified in scope, and the
1862 client didn't send this option, use the one specified in scope to
1863 determine the maximum size of the response.
1864
592d8153
TL
1865 Changes since 3.0 Beta 2 Patchlevel 2
1866
359b023e
TL
1867- Fix a case where spawning subclasses were being allocated
1868 incorrectly, resulting in a core dump.
1869
592d8153
TL
1870- Fix a case where the DHCP server might inappropriately NAK a
1871 RENEWING client.
1872
1873- Fix a place dhcprequest() where static leases could leak.
1874
1875- Include memory.h in omapip_p.h so that we don't get warnings about
1876 using memcmp().
1877
2aa36519
TL
1878 Changes since 3.0 Beta 2 Patchlevel 1
1879
1880- Notice when SIOCFIGCONF returns more data than fit in the buffer -
1881 allocate a larger buffer, and retry. Thanks to Greg Fausak for
1882 pointing this out.
1883
1884- In the server, if no interfaces were configured, report an error and
1885 exit.
1886
1887- Don't ever record a state of 'startup'.
1888
1889- Don't try to evaluate the local failover binding address if none was
1890 specified. Thanks to Joseph Breu for finding this.