]> git.ipfire.org Git - thirdparty/lldpd.git/blob - NEWS
client: update LLDP-MED policy L2 priority values to match 802.1Q-2005
[thirdparty/lldpd.git] / NEWS
1 lldpd (0.8.0)
2 * Fix:
3 + Fix a buffer overflow when receiving a too large management
4 address TLV. Unless hardening has been disabled, this overflow
5 cannot be used for arbitrary code execution.
6 + Update LLDP-MED policy L2 priority values to match
7 802.1Q-2005. This may be a breaking change.
8 * Change:
9 + PIE is now disabled by default. It's too difficult to reliably
10 detect if it works. Use --enable-pie to enable it.
11 + Retrieve the permanent MAC address of an interface through
12 ethtool for Linux if /proc/net/bonding is not available.
13 + Running lldpd with "-d" will keep the process in foreground but
14 logs will still go to syslog. To log to the console, add at
15 least one "-d".
16 + Fix minimal kernel version to 2.6.39. Add a runtime warning when
17 this is not the case.
18 + Remove old bridge code (the one using ioctl).
19 + Don't discard down interfaces. Notably, this enables us to keep
20 their specific configuration if any.
21 + For Linux, switch to libnl3. Be aware of the licensing issues in
22 case of static linking.
23 + Introduce the notion of default local port. New interfaces will
24 use it as a base. This allows setting various MED stuff.
25 + Provide an apparmor profile (untested).
26
27 lldpd (0.7.17)
28 * Fix:
29 + Fix an infinite loop when using veth on Linux 4.1+ kernels.
30 + Make CDP advertise the appropriate kernel name as platform,
31 not just "Linux".
32 * Change:
33 + Fix the way libevent configure is called.
34
35 lldpd (0.7.16)
36 * Change:
37 + For Linux, 2.6.32 is now the minimal required kernel. When using
38 an older kernel, use `--enable-oldies`.
39 + For Linux, use netlink to retrieve information about bridges,
40 VLAN and bonds. The code was contributed by Cumulus Networks.
41 * Features:
42 + Use symbol versioning for liblldpctl.so.
43 + Ability to get local chassis information with "show
44 chassis".
45 + The library also has the same ability with the
46 `lldpctl_get_local_chassis()` function. It is also possible to
47 get a chassis atom from a port with `lldpctl_k_port_chassis`
48 key. This is now the preferred way to retrieve chassis related
49 information.
50 * Fix:
51 + Fix build on OS X.
52 + Accept "language" when configuring MED location as a civic address.
53
54 lldpd (0.7.15)
55 * Features:
56 + Optional features can be configured with "auto" to autodetect if
57 they are usable. This is the default value for JSON and XML support.
58 + Ability to send and decode custom/unknown TLV. Thanks to Alexandru
59 Ardelean.
60 * Change:
61 + Modify checksum function. While this should be strictly
62 equivalent, if you notice CDP packets not accepted anymore, this
63 change is the first culprit.
64
65 lldpd (0.7.14)
66 * Features:
67 + Shutdown LLPDU are sent on MSAP change and when lldpd exits.
68 + When an exact IP is provided as a management pattern, use it
69 unconditionally.
70 + Ability to set port ID and description to an arbitrary value,
71 thanks to Alexandru Ardelean.
72 * Fix:
73 + Incorrect boundary check when decoding management address and
74 protocol identity may lead to lldpd crash when processing
75 malformed LLDPDU.
76 + Many edge cases where lldpd was leaving hanging processes after
77 crashing.
78
79 lldpd (0.7.13)
80 * Fix:
81 + Unbreak customization of Unix socket path from command line.
82
83 lldpd (0.7.12)
84 * Features:
85 + Interface pattern, management pattern, system description,
86 system platform and system hostname can be unconfigured to their
87 default values.
88 * Fix:
89 + Don't complain when parsing a commented line.
90 + Correctly persist configuration changes for "system interface
91 promiscuous", "system interface description" "med fast-start
92 enable", "pause" and "resume".
93 + Fix listening on bond devices for old kernels (< 2.6.27).
94
95 lldpd (0.7.11)
96 * Features:
97 + Ship bash and zsh completion.
98 + Abort when some command-line options are repeated.
99 * Fix:
100 + Handle correctly read failures in liblldpctl.
101
102 lldpd (0.7.10)
103 * Features:
104 + Ability to set promiscuous mode to work around bugs of some
105 switches encapsulating LLDP frames inside 802.1Q frames.
106 + JSON support for lldpcli can use json-c instead of jansson,
107 thanks to Michel Stam.
108 * Fix:
109 + Fix checksum computation for Cisco CDP.
110 + Fix ability to disable LLDP.
111 + Fix seccomp sandbox, thanks to Patrick McLean.
112
113 lldpd (0.7.9)
114 * Changes:
115 + Default location for chroot, socket and PID are now configurable
116 in `./configure`. The default location is based on the value of
117 `runstatedir` which in turn may be based on the value of
118 `localstatedir` which defaults to `/usr/local/var`. Therefore,
119 to get the previous locations, lldpd should be configured with
120 `./configure --localstatedir=/var`.
121 * Fixes:
122 + Fix `configure system bond-slave-src-mac-type local`. Also use
123 it as default.
124 * Features:
125 + Add support for shutdown LLDPU.
126 + Ability to configure IP management pattern from lldpcli.
127 + Ability to choose what port ID should be (MAC or interface name).
128
129 lldpd (0.7.8)
130 * Fixes:
131 + Don't hard-code default values for system name, system
132 description and port description. When the field is not present,
133 just don't display it.
134 + Fix lldpcli behaviour when suid.
135 + On OSX, don't use p2p0 interfaces: it would break WLAN.
136 + Fix SNMP support on RHEL.
137 * Features:
138 + Android support
139 + Add the possibility to disable privilege separation (lower
140 memory consumption, lower security, don't do it).
141 + Interfaces can now be whitelisted. For example, *,!eth*,!!eth1
142 is a valid pattern for all interfaces except eth ones, except
143 eth1. Moreover, on exact match, an matching interface
144 circumvents most sanity checks (like VLAN handling).
145 + Ability to override the hostname.
146
147 lldpd (0.7.7)
148 * Features:
149 + Use a locally administered MAC address or an arbitrary one
150 instead of null MAC address for bond devices on Linux. This is
151 configurable through `lldpcli`.
152 + Add support for "team" driver (alternative to bond devices).
153 + Preliminary support for DTrace/systemtap.
154 + Preliminary support for seccomp (for monitor process).
155 + Setup chroot inside lldpd instead of relying on init script.
156 * Fixes:
157 + Various bugs related to fixed point number handling (for
158 coordinates in LLDP-MED)
159 + Fix a regression in how MAC address of an enslaved device is
160 retrieved.
161
162 lldpd (0.7.6)
163 * Features:
164 + Provide a way to build packages for OSX.
165 + Add an option to update interface description with neighbor name.
166 * Fixes:
167 + Compilation fix for OSX 10.6.
168
169 lldpd (0.7.5)
170 * Fixes:
171 + Segfault while tokenizing in lldpcli.
172
173 lldpd (0.7.4)
174 * Fixes:
175 + Segfault in lldpcli.
176 + Memory leak in liblldpctl when using a custom log handler.
177 + Fix some unaligned memory accesses.
178 + Fix frame reception on OpenBSD.
179 * Features:
180 + Allow to configure hold value from lldpcli (and hence the TTL).
181 + Allow to configure pattern for valid interfaces from lldpcli.
182 + Allow to override system description from lldpcli.
183 + Display the neighbor connected as the process title (or the
184 number of connected neighbors).
185
186 lldpd (0.7.3)
187 * Features:
188 + DragonFly BSD support.
189 + Solaris support (incomplete).
190 + LLDP-MED fast start support (thanks to Roopa Prabhu).
191 + Provide global statistics through "show statistics summary"
192 command (thanks to Roopa Prabhu).
193 * Fixes:
194 + Fix IPv4/IPv6 address discovery in Linux.
195
196 lldpd (0.7.2)
197 * Features
198 + lldpd can be configured through /etc/lldpd.conf and
199 /etc/lldpd.d. All commands accepted by lldpcli are accepted.
200 + Lock BPF interfaces before handing them to chrooted process on
201 BSD.
202 + Limit the number of neighbors for each port to 4 (per protocol).
203 + Force CDPv2 protocol with argument `-ccc`.
204 + Provide port statistics through "show statistics" command
205 (thanks to Roopa Prabhu).
206 * Fixes:
207 + Driver whitelisting is done before checking if an interface has
208 a lower interface in Linux.
209 + Expire remote ports and chassis in a timely manner.
210
211 lldpd (0.7.1)
212 * Features
213 + Mac OS X support, sponsored by Xcloud, Mac cloud server hosting
214 provider. http://xcloud.me/
215 + Upstart and systemd support.
216 + Remove Unix socket when there is no process listening.
217
218 lldpd (0.7.0)
219 * Global changes:
220 + FreeBSD support.
221 + OpenBSD support.
222 + NetBSD support.
223 + Detect interface changes.
224 + CLI for lldpctl: lldpcli.
225 * Other features:
226 + Allow to disable LLDP protocol (with `-ll`). In this case, the
227 first enabled protocol will be used when no neighbor is detected.
228 + Allow to filter debug logs using tokens. Add more debug logs.
229 + lldpctl can now output JSON.
230 + Use netlink to gather interface information on Linux.
231 + Don't use ioctl for bridges anymore on Linux. The configure
232 option `--enable-oldies` allow to reenable their uses for
233 systems not supporting sysfs.
234
235 lldpd (0.6.1)
236 * Features:
237 + Provide liblldpctl.so, a library to interface with lldpd. The
238 documentation is provided through Doxygen. See src/lib/lldpctl.h
239 which contains all the exported functions.
240 + Make lldpctl uses liblldpctl.so.
241 + Add a "watch" option to lldpctl to monitor neighbor changes.
242 + Add the possibility to display the current configuration of
243 lldpd with lldpctl. Also add the possibility to reset the
244 current transmit delay.
245
246 lldpd (0.6)
247 * Features:
248 + Allow lldpctl to display hidden ports.
249 + Add a switch to specify interfaces to use to get chassis ID.
250 + Support for multiple management addresses and IPv6 management
251 addresses. Contributed by João Valverde.
252 * Global changes:
253 + Switch to libevent. See README.md for details.
254 + Partial rewrite of the SNMP part. Less code.
255 + Unit tests for SNMP.
256 + Major rewrite of the protocol between lldpd and lldpctl. Less
257 code.
258 * Fixes:
259 + Several small SNMP fixes (discovered by unit tests).
260
261 lldpd (0.5.7)
262 * Fixes:
263 + Configure issue with NetSNMP and some linkers
264 + Fix infinite loop for the receive part: on certain conditions,
265 lldpd will stop sending packets and stop updating local data.
266
267 lldpd (0.5.6)
268 * Features:
269 + Send and receive native VLAN TLV with CDP
270 + Add a whitelist for some drivers (currently: dsa and veth)
271 * Fixes:
272 + Compilation issues with NetSNMP 5.7 (and with earlier versions too)
273 + Small optimization of BPF filter
274
275 lldpd (0.5.5)
276 * Features:
277 + Support for PPVID and PI Dot1 TLV, thanks to Shuah Khan.
278 + Extend whitelist with possibility to blacklist.
279 * Fixes:
280 + Key/value output was incorrect when a dot was present in
281 interface names. This is fixed but it is preferable to use XML
282 output since the parsing is more difficult in this case.
283 + Only grab DMI information once. Only uses DMI for x86 platform.
284 + Padding issues with socket protocol. This introduces a change in
285 the socket protocol!
286 + Fix a segfault when neither /etc/os-release nor lsb_release
287 are available.
288
289 lldpd (0.5.4)
290 * Features:
291 + Get OS information from /etc/os-release if available. Patch from
292 Michael Tremer.
293 + Add a flag to specify which interfaces lldpd should listen to.
294
295 lldpd (0.5.3)
296 * Fixes:
297 + Allow root to change configuration of lldpd when lldpctl has suid set.
298 * Features:
299 + Handle Dot3 POE-MDI TLV (802.3af and 802.3at).
300 + Allow to set Dot3 POE-MDI from lldpctl.
301
302 lldpd (0.5.2)
303 * Features:
304 + More flexible smart mode and new default. Manual page has been updated.
305 + Add a "receive-only" mode with "-r" switch.
306
307 lldpd (0.5.1)
308 * Features:
309 + Allow to force a protocol even when no peer for this protocol is
310 detected.
311 + Add a smart mode that allows to discard bogus port information,
312 for example CDP packets that are flooded through a switch that
313 does not support CDP.
314 + Allow to set LLDP-MED network policy from lldpctl, thanks to a patch from
315 Philipp Kempgen.
316 + Allow to set LLDP-MED POE-MDI from lldpctl.
317 + Add a summary of available options in "lldpd -h" and "lldpctl -h",
318 thanks to a patch from Jorge Boncompte.
319 + Add a new output (keyvalue) for lldpctl.
320 + Listen on VLAN using an appropriate BPF filter, VLAN
321 decapsulation. Older "listen on vlan" feature is discarded. See
322 README for more information on the new feature.
323 + Use output of lsb_release if available for system description.
324
325 * Fixes:
326 + Ignore interface with no queue. It should filter out interfaces
327 like "vnet0" that would fail if we try to send something on them.
328 + Don't check CDP checksums (not really a fix but it appears that
329 Cisco checksum have some difficult corner cases).
330
331 lldpd (0.5.0)
332
333 * Features:
334 + lldpd can now handle several systems on the same port. This
335 modification also allows to speak to a switch using CDP and LLDP
336 for example.
337 + The way that lldpd gathers information for each port has been
338 abstracted. This should allow to support more systems (BSD for
339 examples) or switch cores in the future. Sending/receive support
340 is also abstracted.
341 + Add "-k" switch to avoid to emit too much information on running
342 kernel.
343 + Support of ifAlias with kernel >= 2.6.28
344 + Lot of portability stuff. lldpd can now be compiled on RHEL
345 2.1. Still Linux-only though.
346 + Add an option to specify AgentX socket (-X).
347 + Add some unit tests
348 + lldpctl has been reworked; it is now able to output data in XML
349 format for easier parsing. Patches were provided by Andreas
350 Hofmeister.
351
352 * Bug fixes:
353 + Fix EDP VLAN handling
354 + Silent warnings about bridge stuff.
355 + Copy /etc/localtime into chroot before starting lldpd daemon to
356 ensure correct timestamps for logs.
357
358 lldpd (0.4.1)
359
360 * Fix EDP handling when there is no VLAN
361 * Fix CDP version to not always be 1
362 * Misc fix:
363 + incorrect number of arguments for a LLOG_INFO call
364 + fix SNMP last change in case this change occurs before start time
365
366 lldpd (0.4)
367
368 * Rewrite of packet builder and parser to be able to cope with
369 architecture that cannot do unaligned read. For decoder, we don't
370 cast structures any more since they can be unaligned. For encoder,
371 we use memcpy through the use of macro that build packets step by
372 step.
373
374 lldpd (0.3.2)
375
376 * Fix LLDP-MED support
377
378 lldpd (0.3.1)
379
380 * Misc fixes, including memory leaks
381
382 lldpd (0.3)
383
384 * Initial support of LLDP-MED
385 * Fix for bridge detection (don't send bridge ioctl on random interfaces)
386 * For bonded devices, get the real hardware address. For inactive
387 slaves, transmit using a random MAC address.
388
389 lldpd (0.2.1)
390
391 * Fix a syntax error in manual page
392 * Fix open() calls
393
394 lldpd (0.2)
395
396 * Add privilege separation
397 * Add FDP support
398 * Support CDP encapsulated into native VLAN
399 * Various fixes
400
401 lldpd (0.1)
402
403 * Initial release