CHANGES revision f87299dab99bc04b51a6b8cad51b6795db862c0a
18727N/A -*- coding: utf-8 -*-
17229N/AChanges with Apache 2.5.0
17229N/A
17229N/A *) core: Add ap_log_data(), ap_log_rdata(), etc. for logging buffers.
17229N/A [Jeff Trawick]
12705N/A
12679N/A *) ab: Fix potential buffer overflows when processing the T and X
12679N/A command-line options. PR 55360.
12679N/A [Mike Rumph <mike.rumph oracle.com>]
12679N/A
12679N/A *) mod_unique_id: Use output of the PRNG rather than IP address and
12679N/A pid, avoiding sleep() call and possible DNS issues at startup,
12679N/A plus improving randomness for IPv6-only hosts.
12679N/A [Jan Kaluza <jkaluza redhat.com>]
12679N/A
12679N/A *) core: Log a message at TRACE1 when the client aborts a connection.
14320N/A [Eric Covener]
12679N/A
14320N/A *) mod_authnz_ldap: Support primitive LDAP servers that do not accept
14320N/A filters, such as "SDBM-backed LDAP" on z/OS, by allowing a special
12679N/A filter "none" to be specified in AuthLDAPURL. [Eric Covener]
14320N/A
14320N/A *) mod_file_cache: mod_file_cache should be able to serve files that
12679N/A haven't had a Content-Type set via e.g. mod_mime. [Eric Covener]
14340N/A
14320N/A *) core: merge AllowEncodedSlashes from the base configuration into
14320N/A virtual hosts. [Eric Covener]
14320N/A
14320N/A *) mod_headers: Add 'setifempty' command to Header and RequestHeader.
14320N/A [Eric Covener]
14320N/A
14320N/A *) AIX: Install DSO's with "cp" instead of "install" in instdso.sh
14320N/A [Eric Covener]
12679N/A
14320N/A *) mod_ldap: Retry transient LDAP connection errors when they occur
18988N/A during the authorization stage.
18988N/A [Eric Covener]
18988N/A
18988N/A *) mod_ldap: Don't keep retrying if a new LDAP connection times out.
18988N/A [Eric Covener]
18988N/A
18988N/A *) mod_deflate: permit compilation of mod_deflate against a zlib that has
18988N/A been configured with -D Z_PREFIX, which redefines the token "deflate".
18988N/A [Eric Covener]
18988N/A
18988N/A *) mod_socache_shmcb.c: Remove arbitrary restriction on shared memory size
18988N/A previously limited to 64MB. [Jens Låås <jelaas gmail.com>]
18988N/A
18988N/A *) mod_auth_digest: Use the secret when generating nonces in all cases and
18988N/A not only when AuthName is used in .htaccess files (this change may cause
18988N/A problems if used with round robin load balancers). Don't regenerate the
18988N/A secret on graceful restarts. PR 54637 [Stefan Fritsch]
18988N/A
18988N/A *) ab: Add a new -l parameter in order not to check the length of the responses.
18988N/A This can be usefull with dynamic pages.
18988N/A PR9945, PR27888, PR42040 [<ccikrs1 cranbrook edu>]
18988N/A
18988N/A *) mod_logio: new format-specifier %C (combined) which is the sum of received
18988N/A and sent byte counts.
18988N/A PR54015 [Christophe Jaillet]
18988N/A
18988N/A *) core: Remove apr_brigade_flatten(), buffering and duplicated code
18988N/A from the HTTP_IN filter, parse chunks in a single pass with zero copy.
18988N/A Reduce memory usage by 48 bytes per request. [Graham Leggett]
18988N/A
18988N/A *) core: Stop the HTTP_IN filter from attempting to write error buckets
18988N/A to the output filters, which is bogus in the proxy case. Create a
18988N/A clean mapping from APR codes to HTTP status codes, and use it where
18988N/A needed. [Graham Leggett]
18988N/A
18988N/A *) mod_proxy: Ensure network errors detected by the proxy are returned as
18988N/A 504 Gateway Timout as opposed to 502 Bad Gateway, in order to be
18988N/A compliant with RFC2616 14.9.4 Cache Revalidation and Reload Controls.
18988N/A
18988N/A *) mod_dav: mod_dav overrides dav_fs response on PUT failure. PR 35981
18988N/A [Basant Kumar Kukreja <basant.kukreja sun.com>, Alejandro Alvarez
18988N/A <alejandro.alvarez.ayllon cern.ch>]
18988N/A
18988N/A *) core, mod_ssl: Lift the restriction that prevents mod_ssl taking
18988N/A full advantage of the event MPM. Enable the ability for a module
18988N/A to reverse the sense of a poll event from a read to a write or vice
18988N/A versa. [Graham Leggett]
18988N/A
18988N/A *) mod_ldap: LDAP connections used for authentication were not respecting
18988N/A LDAPConnectionPoolTimeout. PR 54587
18988N/A
18988N/A *) core: ap_rgetline_core now pulls from r->proto_input_filters.
18988N/A
18988N/A *) mod_proxy_html: process parsed comments immediately.
18988N/A Fixes bug where parsed comments may be lost. [Nick Kew]
18988N/A
18988N/A *) mod_proxy_html: introduce doctype for HTML 5 [Nick Kew]
18988N/A
18988N/A *) mod_proxy_html: fix typo-bug processing "strict" vs "transitional"
18988N/A HTML/XHTML [Nick Kew]
18988N/A
18988N/A *) core: Add option to add valgrind support. Use it to reduce false positive
18988N/A warnings in mod_ssl. [Stefan Fritsch]
18988N/A
18988N/A *) mod_authn_file, mod_authn_dbd, mod_authn_dbm, mod_authn_socache:
18988N/A Cache the result of the most recent password hash verification for every
18988N/A keep-alive connection. This saves some expensive calculations.
18988N/A [Stefan Fritsch]
18988N/A
18988N/A *) http: Remove support for Request-Range header sent by Navigator 2-3 and
18988N/A MSIE 3. [Stefan Fritsch]
18988N/A
18988N/A *) core, http: Extend HttpProtocol with an option to enforce stricter HTTP
18988N/A conformance or to only log the found problems. [Stefan Fritsch]
12679N/A
14320N/A *) core: Correctly parse an IPv6 literal host specification in an absolute
14320N/A URL in the request line. [Stefan Fritsch]
*) mod_ssl: Add support for OpenSSL configuration commands [Stephen Henson]
*) EventOpt MPM
*) core: Add LogLevelOverride directive that allows to override the
loglevel for clients from certain IPs. This also works for things
like the SSL handshake where <If> LogLevel ... </If> is evaluated
too late. [Stefan Fritsch]
*) core: Add new directive Warning to issue warnings from a configuration
file. Both Warning and Error now generate a timestamped log message.
[Fabien Coelho]
*) ap_expr: Add SERVER_PROTOCOL_VERSION, ..._MAJOR, and ..._MINOR
variables. [Stefan Fritsch]
*) core: New directive RegisterHttpMethod for registering non-standard
HTTP methods. [Stefan Fritsch]
*) core: New directive HttpProtocol which allows to disable HTTP/0.9
support. [Stefan Fritsch]
*) mod_allowhandlers: New module to forbid specific handlers for specific
directories. [Stefan Fritsch]
*) mod_systemd: New module, for integration with systemd on Linux.
[Jan Kaluza <jkaluza redhat.com>]
*) core: Add pre_htaccess hook, allowing mpm-itk
to be used without patches to httpd core. [Jeff Trawick]
*) WinNT MPM: Store pid and generation for each thread in scoreboard
to allow tracking of threads from exiting children via mod_status
or other such mechanisms. [Jeff Trawick]
*) mod_ssl: Catch missing or mismatched client cert/key pairs with
SSLProxyMachineCertificateFile/Path directives. PR 52212.
[Keith Burdis <keith burdis.org>, Joe Orton]
*) The following now respect DefaultRuntimeDir/DEFAULT_REL_RUNTIMEDIR:
- APIs: ap_log_pid(), ap_remove_pid, ap_read_pid()
- core: the scoreboard (ScoreBoardFile), pid file (PidFile), and
mutexes (Mutex)
- mod_cache: thundering herd lock directory
- mod_lbmethod_heartbeat, mod_heartmonitor: heartbeat storage file
- mod_ldap: shared memory cache
- mod_socache_shmcb, mod_socache_dbm: shared memory or dbm for cache
[Jeff Trawick]
*) suexec: Add --enable-suexec-capabilites support on Linux, to use
setuid/setgid capability bits rather than a setuid root binary.
[Joe Orton]
*) suexec: Add support for logging to syslog as an alternative to logging
to a file; configure --without-suexec-logfile --with-suexec-syslog.
[Joe Orton]
*) mod_ssl: Add support for TLS Next Protocol Negotiation. PR 52210.
[Matthew Steele <mdsteele google.com>]
*) cross-compile: allow to provide CC_FOR_BUILD so that gen_test_char will
be compiled by the build compiler instead of the host compiler.
Also set CC_FOR_BUILD to 'cc' when cross-compilation is detected.
PR 51257. [Guenter Knauf]
*) core: In maintainer mode, replace apr_palloc with a version that
initializes the allocated memory with non-zero values, except if
AP_DEBUG_NO_ALLOC_POISON is defined. [Stefan Fritsch]
*) mod_policy: Add a new testing module to help server administrators
enforce a configurable level of protocol compliance on their
servers and application servers behind theirs. [Graham Leggett]
*) mod_firehose: Add a new debugging module able to record traffic
passing through the server in such a way that connections and/or
requests be reconstructed and replayed. [Graham Leggett]
*) mod_noloris
*) APREQ
*) Simple MPM
*) mod_serf
[Apache 2.5.0-dev includes those bug fixes and changes with the
Apache 2.4.xx tree as documented below, except as noted.]
Changes with Apache 2.4.x and later:
*) http://svn.apache.org/viewvc/httpd/httpd/branches/2.4.x/CHANGES?view=markup
Changes with Apache 2.2.x and later:
*) http://svn.apache.org/viewvc/httpd/httpd/branches/2.2.x/CHANGES?view=markup
Changes with Apache 2.0.x and later:
*) http://svn.apache.org/viewvc/httpd/httpd/branches/2.0.x/CHANGES?view=markup