+Changes to squid-4.0.25 (11 Jun 2018):
+
+ - Regression Bug 4855: querying private entries for HTCP/ICP
+ - Regression Bug 4852: deny_info %R macro not being expanded
+ - Regression Bug 4847: proxy_auth ACL -i/+i flags not working
+ - Regression Bug 4831: filter chain certificates for validity when loading
+ - Regression fix: Transient reader locking broken in 4.0.24
+ - Bug 4845: NegotiateSsl crash on aborting transaction
+ - Bug 4843 pt1: ext_edirectory_userip_acl refactoring for GCC-8
+ - Bug 4843 pt2: squidclient refactoring for GCC-8
+ - Bug 4829: IPC shared memory leaks when disker queue overflows
+ - Bug 4828: Use feature detection for IPFilter API/ABI checks
+ - Bug 4816: update negotiate_kerberos_auth helper protocol to v3.4
+ - Bug 4811: supply AccessLogEntry (ALE) for more fast ACL checks
+ - Bug 4707: purge tool does not obey --sysconfdir= build option
+ - Bug 4171: checking for log_file_daemon despite disabling logging
+ - Bug 4042: ext_kerberos_ldap_group: add -P principal option
+ - TLS: avoid "ssl_crtd" assertions on reconfiguration
+ - Add timestamps to (most) FATAL messages
+ - Add "--kid role-ID" command line option
+ - ... and many documentation updates
+
Changes to squid-4.0.24 (07 Mar 2018):
- Bug 4822: Build failure (-Wformat) where time_t is not long int
<!doctype linuxdoc system>
<article>
-<title>Squid 4.0.24 release notes</title>
+<title>Squid 4.0.25 release notes</title>
<author>Squid Developers</author>
<abstract>
<toc>
<sect>Notice
-<p>The Squid Team are pleased to announce the release of Squid-4.0.24 for testing.
+<p>The Squid Team are pleased to announce the release of Squid-4.0.25 for testing.
This new release is available for download from <url url="http://www.squid-cache.org/Versions/v4/"> or the
<url url="http://www.squid-cache.org/Download/http-mirrors.html" name="mirrors">.
cache structures creation), as it allows the caller to wait until Squid has
finished.
+<p>The squid binary now accepts a <em>--kid</em> command line option which
+ informs the process which role it is to take on. This aids with debugging
+ SMP issues with specific process types and resolves some SMP forking issues.
+
<sect1>Initial GnuTLS support
<p>Squid can now be built to use GnuTLS in place of OpenSSL for the core
verify the server certificate.
<p>New <em>tls-domain=</em> option to verify the server certificate domain.
+ <tag>logfile_daemon</tag>
+ <p>Now only requires that helper binary exists when daemon: log module
+ is actually being used.
+
<tag>logformat</tag>
<p>New quoting modifier to produce <em>\-escaped</em> output.
<p>New code <em>%ssl::<cert_errors</em> to display server X.509