LinuxSir.cn,穿越时空的Linuxsir!

 找回密码
 注册
搜索
热搜: shell linux mysql
查看: 31774|回复: 16

Gentoo Linux平台服务器端软件主站点一览及最新软件下载及新软件发布贴

 关闭 [复制链接]
发表于 2005-4-19 09:23:38 | 显示全部楼层 |阅读模式
因为fei是Web平台的系统管理员,所以对Unix的应用主要是在Server端上--这里收集了最常用的服务器端软件的主站点--以方便大家查找,同时欢迎大家随时补充加入。也希望有人来做如Kde,Gnome,Galeon,Mozilla等桌面软件的主站点。 (其实本贴不只限于Gentoo平台,不过做为本版版主希望本贴能为Gentoo版带来一些人气:)
1.OS方面:Redhat Linux www.redhat.com
Mandrake linux www.mandrakelinux.com
gentoo  linux www.gentoo.org
debian linux www.debian.org
suse www.suse.com
slackware linux www.slackware.com
arch www.archlinux.org
centos http://www.centos.org/
fedora http://fedora.redhat.com
FreeBSD www.freebsd.org
netbsd www.netbsd.org
openbsd www.openbsd.org
Solaris www.sun.com/solaris

2.www server:Apache www.apache.org
aol server www.aolserver.com

3.语言PHP www.php.net Zend www.zend.com
Java www.javasoft.com
Python www.python.org Zope www.zope.org
Perl www.perl.org
Ruby www.ruby-lang.org/en
tcl/tk www.tcl.tk
lua www.lua.org

4.数据库:MySQL www.mysql.com
PostgreSQL www.postgresql.org
Oracle www.oracle.com
sap db www.sapdb.org

5.FTP---wu-ftpd www.wu-ftpd.org
Proftpd www.proftpd.org
Pure-ftpd www.pureftpd.org (如果http上不去-请试试ftp://ftp.pureftpd.org)
ncftpd www.ncftpd.com
vsftpd vsftpd.beasts.org

6.SMTP--Sendmail www.sendmail.org
qmail www.qmail.org
Postfix www.postfix.org
Exim www.exim.org
POP3--qpopper www.qpopper.org

7.IMAP Cyrus-IMAPD http://asg.web.cmu.edu/cyrus/imapd/
UW IMAP http://www.washington.edu/imap/
courierimap http://www.inter7.com/courierimap/ (下载上不去请去http://sourceforge.net/projects/courier/)
webmail squirrelmail http://sourceforge.net/projects/squirrelmail/
CVS--CVS www.cvshome.org  subversion http://subversion.tigris.org
DNS域名解析--BIND http://www.isc.org/products/BIND/ powerDNS http://www.powerdns.com/
DHCP--DHCP http://www.isc.org/products/DHCP/
INN新闻组--INN http://www.isc.org/products/INN/
Proxy代理缓存— Squid www.squid-cache.org
Unix与其他OS互连— Samba www.samba.org
Print CUPS www.cups.org
SSL库 Openssl-- www.openssl.org
Apache SSL模块Mod_ssl www.modssl.org
SSH OpenSSH-- www.openssh.org
LDAP OpenLDAP-- www.openldap.org
流量分析 MRTG www.mrtg.org  日志分析 webalizer http://www.mrunix.net/webalizer/
Ipsec/VPN www.freeswan.org StrongSwAN http://www.strongswan.org Openswan http://www.openswan.org pptpd http://www.poptop.org/ OpenVPN http://openvpn.net/
路由 Zebra www.zebra.org freesco http://www.freesco.org/
集群 LVS www.linuxvirtualserver.org MPICH www-unix.mcs.anl.gov/mpi/mpich/
Radius http://www.freeradius.org
Rsync Rsync -- rsync.samba.org
firewall Iptables www.iptables.org shorewall www.shorewall.net IP Filter http://coombs.anu.edu.au/~avalon/
inetd Xinetd-- www.xinetd.org
Linux Kernel内核-- www.kernel.org
PHPMyadmin -- www.phpmyadmin.org
系统设置 Linuxconf www.solucorp.qc.ca/linuxconf/ webmin www.webmin.com
Servlets/JSP引擎 Tomcat--jakarta.apache.org
Resin -- www.caucho.com
开源应用服务器AS--Jboss -- www.jboss.org
Enhydra -- www.enhydra.org
基本安全工具chkrootkit www.chkrootkit.org nmap http://www.insecure.org/nmap/ Tripwire www.tripwire.org snort www.snort.org  nessus http://www.nessus.org/ GnuPG www.gnupg.org
Bastille www.bastille-linux.org
其他开源软件如GCC,BASH等可见www.gnu.org,如http://ftp.gnu.or ... ceforge/phpmyadmin/
 楼主| 发表于 2005-4-19 09:32:14 | 显示全部楼层

资源共享:最新Server端软件下载及开源墙纸及Unix相关图书

本页动态更新:--尽管对于Gentoo来说一般不用手工去下Source.但相信我这个ftp还是有用的。本站很多朋友的网速可能并不快--很多软件都在国外-而且找起来也不容易-虽然本站做了很多Mirror但找起来也会有些慢,(不过你要是想找些相关软件还是去主站或mirror站-我这都是最常用的)因此fei特在我的一台server上开了集中的匿名下载-(位于网通机房24X7开机)-会包括PHP,Mysql,Postgresql,Apache,Resin.JDK,Tomcat,Oracle等及常用建站软件以及mail server,内核等最新稳定版和beta版--(注意:会以tar.gz的源码包为主,一般不会放rpm和win32的版本,我希望大家都用源码来安装,这样会学到更多--当然因为版权或习惯只有rpm或bin包-比如JDK和ncftpd另算)--随时更新-来满足大家的需要--如大家还有别的软件需要可写到这里-我会尽量下来来满足大家---使新来的朋友和想学的一些新手们得到帮助:)(当然fei自己也是新手--错误在所难免-还请大家指正)- -希望大家支持并提出意见。还有和开源有关的墙纸OpenSourceWallpaper下
(已分类)--大量Unix相关电子书(2G) books下.
ftp地址是
ftp://202.96.64.144/pub
当前的ftp-server是Pure-ftpd1.0.22每用户3个连接。目前已有的软件:看名字就一目了然吧--当前的软件情况apache 1.3.41稳定版2.0.63开发版 2.2.8正式版
php 4.4.8稳定版 5.2.5开发版
mysql 5.0.54产品版 5.1.22开发版
postgresql 8.1.11稳定版 8.2.6开发版
jdk-1.4.2_16稳定版1.5_14开发版
Resin3.0.25稳定版-3.1.4开发版-
File: FreeBSD-6.3-RELEASE-i386-disc1.iso          639718 KB          2008-1-18          9:44:00
File: FreeBSD-6.3-RELEASE-i386-disc2.iso         707116 KB         2008-1-18         11:02:00
Directory: FreeBSD-JDK1.4                 2006-1-21         0:00:00
Directory: FreeBSD-JDK1.5                 2008-1-14         9:05:00
File: Mail-SpamAssassin-3.1.9.tar.bz2         981 KB         2007-6-8         0:00:00
File: Mail-SpamAssassin-3.2.4.tar.bz2         984 KB         2008-1-6         5:24:00
File: NetBSD-i386cd-4.0.iso         247582 KB         2007-12-20         8:44:00
File: OpenBSD42-i386.iso         208548 KB         2007-11-5         6:50:00
Directory: OpenSourceWallpaper                 2005-5-22         0:00:00
Directory: Oracle10g R2-10.2.0.3                 2006-12-1         0:00:00
Directory: Oracle8i-8.1.7.4                 2006-8-28         0:00:00
Directory: Oracle9i-9.2.0.8                 2006-8-28         0:00:00
File: Python-2.4.4.tar.bz2         7967 KB         2006-10-18         0:00:00
File: Python-2.5.1.tar.bz2         9164 KB         2007-4-18         0:00:00
File: README.txt         1 KB         2007-5-2         0:00:00
File: RevolutionOS.rmvb         281807 KB         2005-9-9         0:00:00
File: ZendOptimizer-3.3.0a-freebsd5.4-i386.tar.gz         9100 KB         2007-11-19         6:40:00
File: ZendOptimizer-3.3.0a-freebsd6.0-amd64.tar.gz         9746 KB         2007-11-19         6:41:00
File: ZendOptimizer-3.3.0a-freebsd6.0-i386.tar.gz         9135 KB         2007-11-19         6:42:00
File: ZendOptimizer-3.3.0a-linux-glibc21-i386.tar.gz         9524 KB         2007-11-19         6:37:00
File: ZendOptimizer-3.3.0a-linux-glibc23-x86_64.tar.gz         8821 KB         2007-11-19         6:39:00
File: ZendOptimizer-3.3.0a-openbsd3.4-i386.tar.gz         8021 KB         2007-11-19         10:28:00
File: ZendOptimizer-3.3.0a-sunos5.8-sparc.tar.gz         8955 KB         2007-11-19         10:29:00
File: ZendOptimizer-3.3.0a-sunos5.8-sparc64.tar.gz         7727 KB         2007-11-19         10:30:00
File: ZendOptimizer-3.3.0a-sunos5.9-i386.tar.gz         7877 KB         2007-11-19         10:31:00
File: Zope-2.10.5-final.tgz         7068 KB         2007-10-29         21:47:00
File: Zope-3.3.1.tgz         6440 KB         2007-2-15         0:00:00
File: aolserver-4.0.10-src.tar.gz         586 KB         2005-1-19         0:00:00
File: aolserver-4.5.0-src.tar.gz         701 KB         2006-6-28         0:00:00
File: apache-tomcat-4.1.36-LE-jdk14.tar.gz         7434 KB         2007-4-2         0:00:00
File: apache-tomcat-4.1.36-src.tar.gz         3629 KB         2007-4-2         0:00:00
File: apache-tomcat-4.1.36.tar.gz         9355 KB         2007-4-2         0:00:00
File: apache-tomcat-5.5.25-admin.tar.gz         2307 KB         2007-9-8         1:40:00
File: apache-tomcat-5.5.25-compat.tar.gz         1587 KB         2007-9-8         1:40:00
File: apache-tomcat-5.5.25-deployer.tar.gz         811 KB         2007-9-8         1:40:00
File: apache-tomcat-5.5.25-embed.tar.gz         3226 KB         2007-9-8         1:40:00
File: apache-tomcat-5.5.25-fulldocs.tar.gz         2972 KB         2007-9-8         1:40:00
File: apache-tomcat-5.5.25-src.tar.gz         4987 KB         2007-9-8         1:40:00
File: apache-tomcat-5.5.25.tar.gz         5894 KB         2007-9-8         1:40:00
File: apache-tomcat-6.0.14-deployer.tar.gz         870 KB         2007-8-9         20:35:00
File: apache-tomcat-6.0.14-src.tar.gz         3378 KB         2007-8-9         20:35:00
File: apache-tomcat-6.0.14.tar.gz         5847 KB         2007-8-9         20:35:00
File: apache_1.3.41.tar.bz2         1966 KB         2008-1-11         1:09:00
File: bash-3.2.tar.gz         2471 KB         2006-10-12         0:00:00
File: bash-doc-3.2.tar.gz         2144 KB         2006-10-12         0:00:00
File: bind-9.3.4-P1.tar.gz         5285 KB         2007-6-28         0:00:00
File: bind-9.4.2.tar.gz         6420 KB         2007-11-29         6:31:00
Directory: books                 2007-11-7         16:09:00
File: chkrootkit-0.48.tar.gz         38 KB         2007-12-20         8:13:00
File: courier-0.58.0.tar.bz2         6957 KB         2007-11-24         23:02:00
File: courier-authlib-0.60.2.tar.bz2         2108 KB         2007-10-14         20:21:00
File: courier-imap-4.3.0.tar.bz2         3265 KB         2007-11-24         22:59:00
File: cups-1.2.12-source.tar.bz2         3700 KB         2007-7-13         0:00:00
File: cups-1.3.5-source.tar.bz2         3987 KB         2007-12-18         8:42:00
File: cvs-1.11.22.tar.bz2         2871 KB         2006-6-10         0:00:00
File: cvs-1.12.13.tar.bz2         3820 KB         2005-10-4         0:00:00
File: cyrus-imapd-2.2.13.tar.gz         2061 KB         2007-11-25         9:04:00
File: cyrus-imapd-2.3.11.tar.gz         2222 KB         2008-1-18         14:34:00
File: cyrus-sasl-2.1.22.tar.gz         1572 KB         2006-5-21         0:00:00
File: debian-40r2-etch-amd64-netinst.iso         148314 KB         2008-1-3         8:40:00
File: debian-40r2-etch-i386-netinst.iso         163152 KB         2008-1-3         8:45:00
File: dhcp-3.1.0.tar.gz         779 KB         2007-7-20         0:00:00
File: dhcp-4.0.0.tar.gz         1020 KB         2007-12-20         6:50:00
File: dovecot-1.0.10.tar.gz         1756 KB         2007-12-29         14:10:00
File: exim-4.69.tar.bz2         1621 KB         2008-1-11         8:47:00
File: exim-html-4.69.tar.bz2         768 KB         2008-1-11         8:48:00
File: freeradius-1.1.7.tar.bz2         2015 KB         2007-7-27         6:29:00
File: freeradius-server-2.0.0.tar.bz2         2218 KB         2008-1-11         6:59:00
File: freesco-038.zip         3675 KB         2007-12-12         9:49:00
File: freeswan-2.06.tar.gz         3272 KB         2004-11-22         0:00:00
File: gcc-4.1.2.tar.bz2         38778 KB         2007-2-16         0:00:00
File: gcc-4.2.2.tar.bz2         43110 KB         2007-10-9         6:30:00
File: gentoo-install-amd64-minimal-2007.0.iso         55902 KB         2007-5-9         0:00:00
File: gentoo-install-x86-minimal-2007.0.iso         58536 KB         2007-5-9         0:00:00
File: gentoo-stage3-amd64-2007.0.tar.bz2         117607 KB         2007-5-8         0:00:00
File: gentoo-stage3-x86-2007.0.tar.bz2         105422 KB         2007-5-8         0:00:00
File: glibc-2.6.1.tar.bz2         15398 KB         2007-8-1         4:30:00
File: glibc-2.7.tar.gz         20745 KB         2007-10-20         5:45:00
File: gnupg-1.4.7.tar.bz2         3126 KB         2007-11-19         17:16:00
File: gnupg-2.0.8.tar.bz2         3569 KB         2007-12-23         8:16:00
File: heartbeat-2.0.8.tar.gz         3421 KB         2007-1-12         0:00:00
File: heartbeat-2.1.3.tar.gz         3594 KB         2007-12-22         11:34:00
File: httpd-2.0.63.tar.bz2         4481 KB         2008-1-11         1:09:00
File: httpd-2.2.8.tar.bz2         4687 KB         2008-1-11         1:10:00
File: inn-2.4.3.tar.gz         1829 KB         2006-3-20         0:00:00
File: ip_fil3.4.35.tar.gz         693 KB         2004-11-22         0:00:00
File: ip_fil4.1.28.tar.gz         1024 KB         2007-10-17         15:52:00
File: iptables-1.2.11.tar.bz2         154 KB         2004-6-22         0:00:00
File: iptables-1.3.8.tar.bz2         169 KB         2007-6-25         0:00:00
File: iptables-1.4.0.tar.bz2         178 KB         2007-12-22         20:51:00
File: j2sdk-1.4.2-03-linux-amd64.bin         33201 KB         2005-12-10         0:00:00
File: j2sdk-1_4_2_16-linux-i586.bin         35545 KB         2007-10-3         8:44:00
File: jakarta-tomcat-5.0.30-deployer.tar.gz         1959 KB         2004-11-25         0:00:00
File: jakarta-tomcat-5.0.30-embed.tar.gz         4086 KB         2004-11-25         0:00:00
File: jakarta-tomcat-5.0.30-src.tar.gz         3518 KB         2004-11-25         0:00:00
File: jakarta-tomcat-5.0.30.tar.gz         10589 KB         2004-11-25         0:00:00
File: jakarta-tomcat-connectors-4.1.31-src.tar.gz         1239 KB         2004-9-26         0:00:00
File: jboss-4.2.1.GA.zip         91822 KB         2007-7-17         0:00:00
File: jdk-1_5_0_14-linux-amd64.bin         43003 KB         2007-11-15         10:52:00
File: jdk-1_5_0_14-linux-i586.bin         48486 KB         2007-11-15         10:52:00
File: jdk-6u4-linux-i586.bin         68769 KB         2008-1-12         9:07:00
File: jdk-6u4-linux-x64.bin         62187 KB         2008-1-12         9:07:00
File: lighttpd-1.4.18.tar.gz         785 KB         2007-9-10         4:11:00
File: linux-2.4.36.tar.bz2         30377 KB         2008-1-1         20:21:00
File: linux-2.6.23.14.tar.bz2         44403 KB         2008-1-15         4:54:00
File: lua-5.1.2.tar.gz         210 KB         2007-3-29         0:00:00
File: maildrop-2.0.4.tar.bz2         2233 KB         2007-4-22         0:00:00
File: mailman-2.1.9.tgz         7646 KB         2006-9-13         0:00:00
File: mod_python-2.7.11.tgz         172 KB         2005-2-10         0:00:00
File: mod_python-3.3.1.tgz         438 KB         2007-2-14         0:00:00
File: mod_ssl-2.8.30-1.3.39.tar.gz         802 KB         2007-9-12         13:45:00
File: mrtg-2.14.7.tar.gz         1037 KB         2006-9-6         0:00:00
File: mrtg-2.15.2.tar.gz         1046 KB         2007-4-29         0:00:00
File: mysql-3.23.58.tar.gz         11758 KB         2003-9-15         0:00:00
File: mysql-4.0.30.tar.gz         11210 KB         2007-8-9         14:12:00
File: mysql-4.1.22.tar.gz         17345 KB         2006-11-3         0:00:00
File: mysql-5.0.54.tar.gz         26756 KB         2008-1-3         6:58:00
File: mysql-5.1.22-rc.tar.gz         27991 KB         2007-10-3         16:44:00
File: mysql-5.2.3-falcon-alpha.tar.gz         23172 KB         2007-2-10         0:00:00
File: mysql-6.0.3-alpha.tar.gz         26761 KB         2007-11-22         16:17:00
File: mysql-connector-java-3.1.14.tar.gz         28259 KB         2006-10-19         0:00:00
File: mysql-connector-java-5.0.8.tar.gz         8450 KB         2007-10-5         5:15:00
File: mysql-connector-java-5.1.5.tar.gz         7977 KB         2007-10-6         3:12:00
File: ncftpd-2.8.4-linux-x86-export.tar.gz         928 KB         2007-9-10         18:02:00
File: ncftpd-2.8.4-linux-x86_64-glibc2.3-export.tar.gz         383 KB         2007-9-10         18:02:00
File: netqmail-1.06.tar.gz         255 KB         2007-12-10         23:52:00
File: nmap-4.53.tar.bz2         3073 KB         2008-1-13         7:08:00
File: openldap-2.3.40.tgz         3715 KB         2007-12-28         7:07:00
File: openldap-2.4.7.tgz         4119 KB         2007-12-16         8:17:00
File: openssh-3.9p1.tar.gz         835 KB         2004-8-17         0:00:00
File: openssh-4.7p1.tar.gz         968 KB         2007-9-5         9:38:00
File: openssl-0.9.7m.tar.gz         3227 KB         2007-2-23         0:00:00
File: openssl-0.9.8g.tar.gz         3277 KB         2007-10-19         19:41:00
File: openswan-2.4.9.tar.gz         3647 KB         2007-7-10         0:00:00
File: openvpn-1.6.0.tar.gz         16 KB         2005-2-23         0:00:00
File: openvpn-2.0.9.tar.gz         654 KB         2006-10-1         0:00:00
File: patch-o-matic-20041009.tar.bz2         312 KB         2005-10-22         0:00:00
File: patch-o-matic-ng-20071121.tar.bz2         135 KB         2007-11-22         17:34:00
File: pdns-2.9.21.tar.gz         968 KB         2007-4-21         0:00:00
File: perl-5.10.0.tar.gz         15230 KB         2007-12-19         1:41:00
File: perl-5.8.8.tar.bz2         9887 KB         2006-2-2         0:00:00
File: php-4.4.8.tar.bz2         4440 KB         2008-1-3         22:56:00
File: php-5.2.5.tar.bz2         7591 KB         2007-11-10         4:45:00
File: phpMyAdmin-2.11.4-all-languages.tar.bz2         3015 KB         2008-1-12         20:26:00
File: phpPgAdmin-4.1.3.tar.bz2         605 KB         2007-7-10         0:00:00
File: postfix-2.3.13.tar.gz         2726 KB         2007-11-22         10:44:00
File: postfix-2.4.6.tar.gz         2867 KB         2007-10-18         17:00:00
File: postgresql-8.1.11.tar.bz2         11461 KB         2008-1-7         11:49:00
File: postgresql-8.2.6.tar.bz2         12265 KB         2008-1-7         11:47:00
File: powermail-1.7.tar.gz         311 KB         2003-11-4         0:00:00
File: proftpd-1.2.10.tar.bz2         899 KB         2004-11-21         0:00:00
File: proftpd-1.3.1.tar.bz2         2192 KB         2007-10-6         7:11:00
File: pure-ftpd-1.0.21.tar.bz2         455 KB         2006-2-21         0:00:00
File: qpopper4.0.9.tar.gz         2703 KB         2006-3-22         0:00:00
File: resin-2.1.17-src.tar.gz         1386 KB         2005-12-9         0:00:00
File: resin-2.1.17.tar.gz         2887 KB         2005-12-9         0:00:00
File: resin-3.0.25-src.tar.gz         5347 KB         2007-12-6         2:01:00
File: resin-3.0.25.tar.gz         8011 KB         2007-12-6         2:01:00
File: resin-3.1.4-src.tar.gz         6265 KB         2007-12-5         23:30:00
File: resin-3.1.4.tar.gz         9673 KB         2007-12-5         23:30:00
File: resin-ee-2.1.17-src.tar.gz         3506 KB         2005-12-9         0:00:00
File: resin-ee-2.1.17.tar.gz         4301 KB         2005-12-9         0:00:00
File: resin-pro-3.0.25.tar.gz         9292 KB         2007-12-6         2:01:00
File: resin-pro-3.1.4.tar.gz         10022 KB         2007-12-5         23:30:00
File: rsync-2.6.9.tar.gz         793 KB         2006-11-7         0:00:00
File: rsync-3.0.0pre8.tar.gz         734 KB         2008-1-13         2:53:00
File: ruby-1.8.6-p111.tar.gz         4441 KB         2007-10-4         14:08:00
File: samba-2.2.12.tar.gz         5332 KB         2004-9-30         0:00:00
File: samba-3.0.28.tar.gz         17735 KB         2007-12-11         0:04:00
File: securecrt600.rar         9089 KB         2008-1-18         8:44:00
File: securefx600.rar         8965 KB         2008-1-18         8:44:00
File: sendmail.8.13.8.tar.gz         1964 KB         2006-8-10         0:00:00
File: sendmail.8.14.2.tar.gz         2016 KB         2007-11-2         11:54:00
File: shorewall-3.4.7.tar.bz2         160 KB         2007-11-6         13:21:00
File: shorewall-common-4.0.7.tar.bz2         132 KB         2008-1-18         14:36:00
File: shorewall-docs-html-3.4.7.tar.bz2         2199 KB         2007-11-6         13:24:00
File: shorewall-docs-html-4.0.7.tar.bz2         2286 KB         2008-1-18         14:37:00
File: shorewall-lite-3.4.7.tar.bz2         49 KB         2007-11-6         13:22:00
File: shorewall-lite-4.0.7.tar.bz2         58 KB         2008-1-18         14:37:00
File: shorewall-perl-4.0.7.3.tar.bz2         99 KB         2008-1-18         14:38:00
File: shorewall-shell-4.0.7.2.tar.bz2         76 KB         2008-1-18         14:38:00
File: slackware-12.0-install-d1.iso         653476 KB         2007-7-3         0:00:00
File: slapt-get-0.9.12c-i386-1.tgz         231 KB         2007-10-29         10:00:00
File: snort-2.7.0.1.tar.gz         3815 KB         2007-8-6         22:02:00
File: snort-2.8.0.1.tar.gz         4231 KB         2007-11-28         21:46:00
File: squid-2.6.STABLE18.tar.bz2         1275 KB         2008-1-10         20:35:00
File: squid-3.0.STABLE1.tar.bz2         1775 KB         2007-12-14         8:26:00
File: ssh-3.2.9.1.tar.gz         2217 KB         2004-11-21         0:00:00
File: strongswan-2.8.8.tar.bz2         1676 KB         2007-12-6         21:46:00
File: strongswan-4.1.10.tar.bz2         2164 KB         2007-12-20         5:41:00
File: subversion-1.3.2.tar.bz2         6675 KB         2006-6-1         0:00:00
File: subversion-1.4.6.tar.bz2         4571 KB         2007-12-21         1:29:00
File: tcl8.4.16-src.tar.gz         3556 KB         2007-9-21         20:50:00
File: tcl8.5.0-src.tar.gz         4251 KB         2007-12-20         6:05:00
File: tk8.4.16-src.tar.gz         3267 KB         2007-9-22         2:23:00
File: tk8.5.0-src.tar.gz         3668 KB         2007-12-19         3:26:00
File: tomcat-connectors-1.2.26-src.tar.gz         1409 KB         2007-12-22         0:22:00
File: varnish-1.1.2.tar.gz         571 KB         2007-12-20         22:05:00
File: vim-7.1.tar.bz2         6715 KB         2007-5-12         0:00:00
File: vsftpd-1.2.2.tar.gz         134 KB         2004-11-21         0:00:00
File: vsftpd-2.0.5.tar.gz         153 KB         2006-7-4         0:00:00
File: wget-1.10.2.tar.gz         1185 KB         2005-10-13         0:00:00
File: wu-ftpd-2.6.2.tar.gz         347 KB         2004-11-21         0:00:00
File: xinetd-2.3.14.tar.gz         295 KB         2005-10-25         0:00:00
File: zebra-0.95a.tar.gz         1339 KB         2006-5-9         0:00:00
回复 支持 反对

使用道具 举报

 楼主| 发表于 2005-4-20 09:25:43 | 显示全部楼层
OpenVPN 2.0发布。released on 2005.04.17
经过了29个test版-20个beta版-21个RC版----- http://openvpn.net/release/openvpn-2.0.tar.gz
2005.04.17 -- Version 2.0

* Fixed minor options string typo in options.c.

2005.04.10 -- Version 2.0-rc21

* Change license description from "GPL Version 2 or (at your
option) any later version" to just "GPL Version 2".

2005.04.04 -- Version 2.0-rc20

* Dag Wieers has put together an OpenVPN/LZO binary RPM set with
excellent distro/version coverage for RH/EL/Fedora, though
using his own SPEC. I modified openvpn.spec to follow some of
the same conventions such as putting sample scripts and doc
files in %doc rather than /usr/share/openvpn.
* Minor change to init scripts to run the user-defined script
/etc/openvpn/openvpn-startup (if it exists) before any OpenVPN
configs are started, and to run /etc/openvpn/openvpn-shutdown
after all OpenVPN configs have been stopped. The
openvpn-startup script can be used for stuff like
insmod tun.o, setting up firewall rules, or starting
ethernet bridges.

2005.03.29 -- Version 2.0-rc19

* Omit additions of routes where the network and
gateway are equal and the netmask is 255.255.255.255.
This can come up if you are using both
server/ifconfig-pool and client-config-dir with
ifconfig-push static addresses for some subset of clients
which directly reference the server IP address as the
remote endpoint.

2005.03.28 -- Version 2.0-rc18

* Packaged Windows installer with OpenSSL 0.9.7f.
* Built Windows installer with NSIS 2.06.

2005.03.12 -- Version 2.0-rc17

* "MANAGEMENT: CMD" log file output will now only occur
at --verb 7 or greater.
* Added an optional name/value configuration list to
the openvpn-auth-pam plugin module argument list. See
plugin/auth-pam/README for documentation. This is necessary
in order for openvpn-auth-pam to work with queries generated
by arbitrary PAM modules.
* In both auth-pam and down-root plugins, in the forked process,
a read error on the parent process socket is no longer fatal.
* MandrakeSoft liblzo1 RPM only Provides for a 'liblzo1'.
A conditional test of the vendor has been added to
Require the appropriately named 'lzo' (liblzo1 / lzo).
(Tom Walsh - http://openhardware.net)


2005.02.20 -- Version 2.0-rc16

* Fixed bug introduced in rc13 where Windows service wrapper
would be installed with a startup type of Automatic.
This fix restores the previous behavior of installing
with a startup type of Manual.

2005.02.19 -- Version 2.0-rc15

* Added warning when --keepalive is not used in a server
configuration.
* Don't include OpenSSL md4.h file if we are not building
NTLM proxy support (Waldemar Brodkorb).
* Added easy-rsa/build-key-pkcs12 and
easy-rsa/Windows/build-key-pkcs12.bat scripts
(Mathias Sundman).

2005.02.16 -- Version 2.0-rc14

* Fixed small memory leak that occurs when --crl-verify
is used.
* Upgraded Windows installer and .nsi script to NSIS 2.05
(Mathias Sundman).
* Changed #include backslash usage in cryptoapi.c to use
forward slashes instead (Gisle Vanem).
* Created easy-rsa/revoke-full to handle revocations in
a single step: (a) revoke crt, (b) regenerate CRL, and
(c) verify that revocation succeeded.
* Renamed easy-rsa/Windows/revoke-key to revoke-full so
that both *nix and Windows scripts are equivalent.

2005.02.11 -- Version 2.0-rc13

* Improve human-readability of local/remote options
diff, when inconsistencies are present.
* For Windows easy-rsa, distribute vars.bat.sample and
openssl.cnf.sample, then copy them to their normal
filenames (without the .sample) when init-config.bat
is run. This is to prevent OpenVPN upgrades from
wiping out vars.bat and openssl.cnf edits.
* Modified service wrapper (Windows) to use a
case-insensitive search when scanning for .ovpn files
in \Program Files\OpenVPN\config. Prior versions
required an all-lower-case .ovpn file extension.
* Miscellaneous service wrapper code cleanup.
* If --user/--group is used on Windows, treat it
as a no-op with a warning (this makes it easier to
distribute the same client config file to Windows
and *nix users).
* Warn if --ifconfig-pool-persist is used with
--duplicate-cn.

2005.02.05 -- Version 2.0-rc12

* Removed some debugging code inadvertently included
in rc11 which would print the --auth-user-pass
username/password provided by clients in the server
logfile.
* Client code for cycling through --remote list will
retry the last address which successfully authenticated
before moving on through the list.
* Windows installer will now install sample configuration
files in \Program Files\OpenVPN\sample-configs as well
as generate a start menu shortcut to this directory.
* Minor type change in buffer.[ch] to work around char-type
ambiguity bug. Caused management interface lock-ups on
ARM when building with armv4b-hardhat-linux-gcc 2.95.3.

2005.02.03 -- Version 2.0-rc11

* Windows installer will now install easy-rsa directory
in \Program Files\OpenVPN
* Allow syslog facility to be controlled at compile time,
e.g. -DLOG_OPENVPN=LOG_LOCAL6 (P Kern).
* Changed certain shell scripts in distribution to use
#!/bin/sh rather than #!/bin/bash for better portability.
* If --ifconfig-pool-persist seconds parameter is 0, treat
persist file as an allocation of fixed IP addresses
(previous versions took IP-to-common-name associations
from this list as hints, not mandatory static allocations).
* Fixed bug on *nix where if --auth-user-pass and --log
were used together, the username prompt would be sent to
the log file rather than /dev/tty.
* Spurious text in openvpn.8 detected by doclifter
(Eric S. Raymond).
* Call closelog later on daemon kill so that process
exit message is written to syslog.

2005.01.27 -- Version 2.0-rc10

* When ./configure is run with plugins enabled (the default),
check whether or not dlopen exists in libc before testing
for libdl. This is to fix an issue on FreeBSD and possibly
other OSes which bundle libdl functions in libc.
* On Windows, filter initial WSAEINVAL warning which occurs
on the initial read attempt of an unbound socket.
* The easy-rsa scripts build-key, build-key-pass, and
build-key-server will now chmod the .key file
to 0600. This is in addition to the fact the generated
keys directory has always been similarly protected
(Pete Harlan).

2005.01.23 -- Version 2.0-rc9

* Fixed error "ROUTE: route addition failed using
CreateIpForwardEntry ..." on Windows when --redirect-gateway
is used over a RRAS internet link.
* When using --route-method exe on Windows, include the
gateway parameter on route delete commands (Mathias Sundman).
* Try not to do a hard reset (i.e. SIGHUP) when two
SIGUSR1 signals are received in close succession.
* If the push list tries to grow beyond its buffer capacity,
the resulting error will be non-fatal.
* To increase the push list capacity (must be done on both
client and server), increase TLS_CHANNEL_BUF_SIZE in
common.h (default=1024).

2005.01.15 -- Version 2.0-rc8

* Fixed bug introduced in rc7 where options error
"--auth-user-pass requires --pull" might occur even
if --pull was correctly specified.
* Changed management interface code to bind once
to TCP socket, rather than rebinding after every
client disconnect.
* Added "disable" directive for client-config-dir
files.
* Windows binary install is now distributed with
OpenSSL 0.9.7e.
* Query the management interface for --http-proxy
username/password if authfile is set to "stdin".
* Added current OpenVPN version number to "Unrecognized
option or missing parameter" error message.
* Added "-extensions server" to "openssl req" command
in easy-rsa/build-key-server (Nir Yeffet).

2005.01.10 -- Version 2.0-rc7

* Fixed bug in management interface which could cause
100% CPU utilization in --proto tcp-server mode
on all *nix OSes except for Linux 2.6.
* --ifconfig-push now accepts DNS names as well as
IP addresses.
* Added sanity check errors when --pull or
--auth-user-pass is used in an incorrect mode.
* Updated man page entries for --client-connect and
--ifconfig-push.
* Added "String Types and Remapping" section to man
page to consisely document the way which OpenVPN
may convert certain types of characters in strings
to ('_').
* Modified bridging description in HOWTO to emphasize
the fact that bridging allows Windows file and print
sharing without a WINS server (Charles Duffy).

2004.12.20 -- Version 2.0-rc6

* Improved checking for epoll support in ./configure
to fix false positive on RH9 (Jan Just Keijser).
* Made the "MULTI TCP: I/O wait required blocking in
multi_tcp_action, action=7" error nonfatal and replaced
with "MULTI: Outgoing TUN queue full, dropped packet".
So far the issue only seems to occur on Linux 2.2
in --mode server --proto tcp mode. It occurs when
the TUN/TAP driver locks up and refuses to accept
new packet writes for a second or more.
* Fixed bug where if a --client-config-dir file tried
to include another file using "config", and if that
include failed, OpenVPN would abort with a fatal
error. Now such inclusion failures will be logged
but are no longer fatal.
* Global changes to the way that packet buffer alignment
is handled. Previously we didn't care about alignment
and took care, when handling 16 and 32 bit words
in buffers, to always use alignment-safe transfers.
This approach appears to be inadequate on some
architectures such as alpha. The new approach is
to initialize packet buffers in a way that anticipates
how component structures will be allocated within
them, to maintain correct alignment.
* Added --dhcp-option DISABLE-NBT to disable NetBIOS
over TCP (Jan Just Keijser).
* Added --http-proxy-option directive for controlling
miscellaneous HTTP proxy options.
* Management state will no longer transition to "WAIT"
during TLS renegotiations.

2004.12.16 -- Version 2.0-rc5

* The --client-config-dir option will now try to open
a default file called "DEFAULT" if no file matching
the common name of the incoming client was found.
* The --client-connect script/plugin can now veto client
authentication by returning a failure code.
* The --learn-address script/plugin can now prevent a
client-instance/address association from being learned
by returning a failure code.
* Changed RPM group in .spec file to Applications/Internet.

2004.12.14 -- Version 2.0-rc4

* SuSE only -- Fixed interaction between openvpn.spec and
suse/openvpn.init where the .spec file was writing the
OpenVPN binary to a different location than where the
.init script was referencing it (Stefan Engel).
* Solaris only -- Split Solaris ifconfig command into two
parts (Jan Just Keijser).
* Some cleanup in add_option().
* Better error checking on input dotted quad IP addresses.
* Verify that --push argument is quoted, if there is
more than one.
* More miscellaneous option sanity checks.

2004.12.13 -- Version 2.0-rc3

* On Windows, when --log or --log-append is used,
save the original stderr for username and password
prompts.
* Fixed a bug introduced in the late 2.0 betas where
if a "verb" parameter >= 16 was used, it would be
ignored and the actual verb level would remain at 1.
* Fixed a bug mostly seen on OS X where --management-hold
or --management-query-passwords would cause the management
interface to be unresponsive to incoming client connections.
* Trigger an options error if one of the management-modifying
options is used without "management" itself.

2004.12.12 -- Version 2.0-rc2

* Amplified warnings in documentation about possible
man-in-the-middle attack when clients do not properly
verify server certificate. Changes to easy-rsa README,
FAQ, HOWTO, man page, and sample client config file.
* Added a warning message if --tls-client or --client
is used without also specifying one of either
--ns-cert-type, --tls-remote, or --tls-verify.
* status_open() fixes for MSVC builds (Blaine Fleming).
* Fix attempt of "ntlm.c:55: error: `des_cblock' undeclared"
compiler error which has been reported on some platforms.
* The openvpn.spec file for rpmbuild has several
new build-time options. See comments in the file.
* Plugins are now built and packaged in the RPM and
will be saved in /usr/share/openvpn/plugin/lib.
* Added --management-hold directive to start OpenVPN
in a hibernating state until released by the
management interface. Also added "hold" command
to the management interface.

2004.12.07 -- Version 2.0-rc1

* openvpn.spec workaround for SuSE confusion regarding
/etc/init.d vs. /etc/rc.d/init.d (Stefan Engel).

2004.12.05 -- Version 2.0-beta20

* The ability to read --askpass and --auth-user-pass
passwords from a file has been disabled by default.
To re-enable, use ./configure --enable-password-save.
* Added additional pre-connected states to management
interface. See management/management-notes.txt
for more info.
* State history is now recorded by the management
interface, and the "state" command now works like
the log or echo commands.
* State history and real-time state change notifications
are now prepended with an integer unix timestamp.
* Added --http-proxy-timeout option, previously
the timeout was hardcoded to 5 seconds.

2004.12.02 -- Version 2.0-beta19

* Fixed bug in management interface line termination
where output lines incorrectly contained a \00 char
after the customary \0d \0a.
* Fixed bug introduced in beta18 where Windows version
would segfault on options errors.
* Fixed bug in management interface where an empty
quoted string ("") entered as a parameter would cause
a segfault.
* Fixed bug where --resolv-retry was not working
properly with multiple --remote hosts.
* Added additional ./configure options to reduce
executable size for embedded applications.
See ./configure --help.

2004.11.28 -- Version 2.0-beta18

* Added management interface. See new --management-*
options or the full management interface documentation
in management/management-notes.txt in the tarball.
Management interface inclusion can be disabled by
./configure --disable-management.
* Added two new plugin modules: auth-pam and down-root.
Auth-pam supports pam-based authentication using a
split privilege execution model, while down-root enables
a down script to be executed with root privileges, even
when --user/--group is used to drop root privileges.
See the plugin directory in the tarball for READMEs,
source code, and Makefiles.
* Plugin developers should note that some changes were
made to the plugin interface since beta17. See
openvpn-plugin.h for details.
Plugin interface inclusion can be disabled with
./configure --disable-plugins
* Added easy-rsa/build-key-server script which will
build a certificate with with nsCertType=server.
* Added --ns-cert-type option for verification
of nsCertType field in peer certificate.
* If --fragment n is specified and --mssfix is specified
without a parameter, default --mssfix to n. This restores
the 1.6 behavior when using --mssfix without a parameter.
* Fixed SSL context initialization bug introduced in beta14
where this error might occur on restarts: "Cannot load
certificate chain ... PEM_read_bio:no start line".

2004.11.11 -- Version 2.0-beta17

* Changed default port number to 1194 per IANA official
port number assignment.
* Added --plugin directive which allows compiled
modules to intercept script callbacks. See
plugin folder in tarball for more info.
* Fixed bug introduced in beta12 where --key-method 1
authentications which should have succeeded would fail.
* Ignore SIGUSR1 during DNS resolution.
* Added SuSE support to openvpn.spec (Umberto Nicoletti).
* Fixed --cryptoapicert SUBJ: parsing bug (Peter 'Luna'
Runestig).

2004.11.07 -- Version 2.0-beta16

* Modified sample-scripts/auth-pam.pl to get username
and password from OpenVPN via a file rather than
via environmental variables.
* Added bytes_sent and bytes_received environmental
variables to be set prior to client-disconnect script.
* Changed client virtual IP derivation precedence:
(1) use --ifconfig-push directive from --client-connect
script, (2) use --ifconfig-push directive from
--client-config-dir, and (3) use --ifconfig-pool
address.
* If a --client-config-dir file specifies --ifconfig-push,
it will be visible to the --client-connect-script in
the ifconfig_pool_remote_ip environmental variable.
* For tun-style tunnels, the ifconfig_pool_local_ip
environmental variable will be set, while for
tap-style tunnels, the ifconfig_pool_netmask variable
will be set.
* Added intelligence to autoconf script to test
compiler for the accepted form of zero-length arrays.
* Fixed a bug introduced in beta12 where --ip-win32
netsh would fail if --dev-node was not explicitly
specified.
* --ip-win32 netsh will now work on hidden adapters.
* Fix attempt of "Assertion failed at crypto.c:149".
This assertion has also been reported on 1.x with a
slightly different line number. The fix is twofold:
(1) In previous releases, --mtu-test may trigger this
assertion -- this bug has been fixed. (2) If something
else causes the assertion to be thrown, don't panic,
just output a nonfatal warning to the log and drop
the packet which generated the error.
* Support TAP interfaces on Mac OS X (Waldemar Brodkorb).
* Added --echo directive.
* Added --auth-nocache directive.

2004.10.28 -- Version 2.0-beta15

* Changed environmental variable character classes
so that names must consist of alphanumeric or
underbar chars and values must consist of printable
characters. Illegal chars will be deleted.
Versions prior to 2.0-beta12 were more restrictive
and would map spaces to '.'.
* On Windows, when the TAP adapter fails to
initialize with the correct IP address, output
"Initialization Sequence Completed with Errors"
to the console or log file.
* Added a warning when user/group/chroot is used
without persist-tun and persist-key.
* Added cryptoapi.[ch] to tarball and source zip.
* --tls-remote option now works with common name
prefixes as well as with the full X509 subject
string. This is a useful alternative to using
a CRL on the client.
* common names associated with a static
--ifconfig-push setting will no longer leave
any state in the --ifconfig-pool-persist file.
* Hard TLS errors (TLS handshake failed) will now
trigger either a SIGUSR1 signal by default
or SIGTERM (if --tls-exit is specified). In TCP
mode, all TLS errors are considered to be hard.
In server mode, the signal will be local to the
client instance.
* Added method parameter to --auth-user-pass-verify
directive to select whether username/password
is passed to script via environment or a temporary
file.
* Added --status-version option to control format
of --status file. The --mode server
--status-version 2 format now includes a line
type token, the virtual IP address is shown
in the client list (even in --dev tap mode),
and the integer time_t value is shown anywhere
an ascii-formatted time/date is also shown.
* Added --remap-usr1 directive which can be used
to control whether internally or externally
generated SIGUSR1 signals are remapped to
SIGHUP (restart without persisting state) or
SIGTERM (exit).
* When running as a Windows service (using
--service option), check the exit event before
and after reading one line of input from
stdin, when reading username/password info.
* For developers: Extended the --gremlin function
to better stress-test the new 2.0 features,
added Valgrind support on Linux and Dmalloc
support on Windows.

2004.10.19 -- Version 2.0-beta14

* Fixed a bug introduced in Beta12 that would occur
if you use a --client-connect script without also
defining --tmp-dir.
* Fixed a bug introduced in Beta12 where a learn-address
script might segfault on the delete method.
* Added Crypto API support in Windows version via
the --cryptoapicert option (Peter 'Luna' Runestig).

2004.10.18 -- Version 2.0-beta13

* Fixed an issue introduced in Beta12 where the private
key password would not be prompted for unless --askpass
was explicitly specified in the config.

2004.10.17 -- Version 2.0-beta12

* Added support for username/password-based authentication.
Clients can now authentication themselves with the server
using either a certificate, a username/password, or both.
New directives: --auth-user-pass, --auth-user-pass-verify,
--client-cert-not-required, and --username-as-common-name.
* Added NTLM proxy patch (William Preston).
* Added --ifconfig-pool-linear server flag to allocate
individual tun addresses for clients rather than /30
subnets (won't work with Windows clients).
* Modified --http-proxy code to cache username/password
across restarts.
* Modified --http-proxy code to read username/password
from the console when the auth file is given as "stdin".
* Modified --askpass to take an optional filename argument.
* --persist-tun and --persist-key now work in client mode
and can be pushed to clients as well.
* Added --ifconfig-pool-persist directive, to maintain
ifconfig-pool info in a file which is persistent across
daemon instantiations.
* --user and --group privilege downgrades as well as
--chroot now also work in client mode (the
dowgrade/chroot will be delayed until the initialization
sequence is completed).
* Added --show-engines standalone directive to show
available OpenSSL crypto accelerator engine support.
* --engine directive now accepts an optional engine-ID
parameter to control which engine is used.
* "Connection reset, restarting" log message now shows
which client is being reset.
* Added --dhcp-pre-release directive in Windows version.
* Second parm to --ip-win32 can be "default", e.g.
--ip-win32 dynamic default 60.
* Fixed documentation bug regarding environmental
variable settings for --ifconfig-pool IP addresses.
The correct environmental variable names are:
ifconfig_pool_local_ip and ifconfig_pool_remote_ip.
* ifconfig_pool_local_ip and ifconfig_pool_remote_ip
environmental variables are now passed to the
client-disconnect script.
* In server mode, environmental variables are now scoped
according to the client they are associated with,
to solve the problem of "crosstalk" between different
client's environmental variable sets.
* Added --down-pre flag to cause --down script to be
called before TUN/TAP close (rather than after).
* Added --tls-exit flag which will cause OpenVPN
to exit on any TLS errors.
* Don't push a route to a client if it exactly
matches an iroute (this lets you push routes to
all clients, and OpenVPN will automatically remove
the route from the route push list only for that client
which the route actually belongs to).
* Made '--resolv-retry infinite' the default.
--resolv-retry can be disabled by using a parameter of 0.
* For clients which plan to pull config info from server,
set an initial default ping-restart of 60 seconds.
* Optimized mute code to lessen the load on the processor
when messages are being muted at a higher frequency.
* Made route log messages non-mutable.
* Silence the Linux "No buffer space available" message.
* Added miscellaneous additional option sanity checks.
* Added Windows version of easy-rsa scripts in
easy-rsa/Windows directory (Andrew J. Richardson).
* Added NetBSD route patch (Ed Ravin).
* Added OpenBSD patch for TAP + --redirect-gateway
(Waldemar Brodkorb).
* Directives which prompt for a username and/or password
will now work with --daemon (OpenVPN will prompt
before forking).
* Warn if CRL is from a different issuer than the
issuer of the peer certificate (Bernhard Weisshuhn).
* Changed init script chkconfig parameters to start
OpenVPN daemon(s) before NFS.
* Bug fix attempt of "too many I/O wait events" which occurs
on OSes which prefer select() over poll() such as Mac OS X.
* Added --ccd-exclusive flag. This flag will require, as a
condition of authentication, that a connecting client has
a --client-config-dir file.
* TAP-Win32 open code will attempt to open a free adapter
if --dev-node is not specified (Mathias Sundman).
* Resequenced --nice and --chroot ordering so that --nice
occurs first.
* Added --suppress-timestamps flag (Charles Duffy).
* Source code changes to allow compilation by MSVC
(Peter 'Luna' Runestig).
* Added experimental --fast-io flag which optimizes
TUN/TAP/UDP writes on non-Windows systems.

2004.08.18 -- Version 2.0-beta11

* Added --server, --server-bridge, --client, and
--keepalive helper directives. See client.conf
and server.conf in sample-config-files for sample
configurations which use the new directives.
* On Windows, added --route-method to control
whether IP Helper API or route.exe is used
to add/delete routes.
* On Windows, added a second parameter to
--route-delay to control the maximum time period
to wait for the TAP-Win32 adapter to come up
before adding routes.
* Fixed bug in Windows version where configurations
which omit --ifconfig might fail to recognize when
the TAP adapter is up.
* Proxy connection failures will now retry according
to the --connect-retry parameter.
* Fixed --dev null handling on Windows so that TLS
loopback test described in INSTALL file works
correctly on Windows.
* Added "Initialization Sequence Completed" message
after all initialization steps have been completed
and the VPN can be considered "up".
* Better sanity-checking on --ifconfig-pool parameters.
* Added --tcp-queue-limit option to control
TUN/TAP -> TCP socket overflow.
* --ifconfig-nowarn flag will now silence general
warnings about possible --ifconfig address
conflicts, including the warning about --ifconfig
and --remote addresses being in same /24 subnet.
* Fixed case where server mode did not correctly
identify certain types of ethernet multicast packets
(Marcel de Kogel).
* Added --explicit-exit-notify option (experimental).

2004.08.02 -- Version 2.0-beta10

* Fixed possible reference after free of option strings
after a restart, bug was introduced in beta8.
* Fixed segfault at route.c:919 in the beta9
Windows version that was being caused by indirection
through a NULL pointer.
* Mistakenly built debug version of TAP-Win32 driver
for beta9. Beta10 has correct release build.

2004.07.30 -- Version 2.0-beta9

* Fixed --route issue on Windows that was introduced with
the new beta8 route implementation based on the
IP Helper API.

2004.07.27 -- Version 2.0-beta8

* Added TCP support in server mode.
* Added PKCS #12 support (Mathias Sundman).
* Added patch to make revoke-crt and make-crl work
seamlessly within the easy-rsa environment (Jan Kiszka).
* Modified --mode server ethernet bridge code to forward
special IEEE 802.1d MAC Groups, i.e. 01:80:C2:XX:XX:XX.
* Added --dhcp-renew and --dhcp-release flags to Windows
version. Normally DHCP renewal and release on the TAP
adapter occurs automatically under Windows, however
if you set the TAP-Win32 adapter Media Status property
to "Always Connected", you may need these flags.
* Added --show-net standalone flag to Windows version to
show OpenVPN's view of the system adapter and routing
tables.
* Added --show-net-up flag to Windows version to output
the system routing table and network adapter list to
the log file after the TAP-Win32 adapter has been brought
up and any routes have been added.
* Modified Windows version to add routes using the IP Helper
API rather than by calling route.exe.
* Fixed bug where --route-up script was not being called
if no --route options were specified.
* Added --mute-replay-warnings to suppress packet replay
warnings. This is a common false alarm on WiFi nets.
* Added "def1" flag to --redirect-gateway option to override
the default gateway by using 0.0.0.0/1 and 128.0.0.0/1
rather than 0.0.0.0/0. This has the benefit of overriding
but not wiping out the original default gateway.
(Thanks to Jim Carter for pointing out this idea).
* You can now run OpenVPN with a single config file argument.
For example, you can now say "openvpn config.conf"
rather than "openvpn --config config.conf".
* On Windows, made --route and --route-delay more adaptive
with respect to waiting for interfaces referenced by the
route destination to come up. Routes added by --route
should now be added as soon as the interface comes up,
rather than after an obligatory 10 second delay. The
way this works internally is that --route-delay now
defaults to 0 on Windows. Previous versions would
wait for --route-delay seconds then add the routes.
This version will wait --route-delay seconds and then
test the routing table at one second intervals for the
next 30 seconds and will not add the routes until they
can be added without errors.
* On Windows, don't setsockopt SO_SNDBUF or SO_RCVBUF by
default on TCP/UDP socket in light of reports that this
action can have undesirable global side effects on the
MTU settings of other adapters. These parameters can
still be set, but you need to explicitly specify
--sndbuf and/or --rcvbuf.
* Added --max-clients option to limit the maximum number
of simultaneously connected clients in server mode.
* Added error message to illuminate shell escape gotcha when
single backslashes are used in Windows path names.
* Added optional netmask parm to --ifconfig-pool.
* Fixed bug where http-proxy connect retry attempts were
incorrectly going to the remote OpenVPN server,
not to the HTTP proxy server.

2004.06.29 -- Version 2.0-beta7

* Fixed bug in link_socket_verify_incoming_addr() which
under certain circumstances could have caused --float
behavior even if --float was not specified.
* --tls-auth option now works with --mode server.
All clients and the server should use the same
--tls-auth key when operating in client/server mode.
* Added --engine option to make use of OpenSSL-supported
crypto acceleration hardware.
* Fixed some high verbosity print format size issues
in event.c for 64 bit platforms (Janne Johansson).
* Made failure to open --log or --log-append file
a non-fatal error.

2004.06.23 -- Version 2.0-beta6

* Fixed Windows installer to intelligently put
up a reboot dialog only if tapinstall tells
us that it's really necessary.
* Fixed "Assertion failed at fragment.c:309"
bug when --mode server and --fragment are used
together.
* Ignore HUP, USR1, and USR2 signals during
initialization. Prior versions would abort.
* Fixed bug on OS X: "Assertion failed at event.c:406".
* Added --service option to Windows version, for use
when OpenVPN is being programmatically instantiated
by another process (see man page for info).
* --log and --log-append options now work on Windows.
* Update OpenBSD INSTALL notes (Janne Johansson).
* Enable multicast on tun interface when running on
OpenBSD (Pavlin Radoslavov).
* Fixed recent --test-crypto breakage, where options
such as --cipher were not being parsed correctly.
* Modified options compatibility string by removing
ifconfig substring if it is empty. Incremented
options compatibility string version number to 4.
* Fixed typo in --tls-timeout option parsing
(Mikael Lonnroth).

2004.06.13 -- Version 2.0-beta5

* Fixed rare --mode server crash that could occur
if data was being routed to a client at
high bandwidth at the precise moment that the
client instance object on the server was being
deleted.
* Fixed issue on machines which have epoll.h and
the epoll_create glibc call defined, but which
don't actually implement epoll in the kernel.
OpenVPN will now gracefully fall back to the
poll API in this case.
* Fixed Windows bug which would cause the following
error in a --mode server --dev tap configuration:
"resource limit WSA_MAXIMUM_WAIT_EVENTS has been
exceeded".
* Added CRL (certificate revocation list) management
scripts to easy-rsa directory (Jon Bendtsen).
* Do a better job of getting the ifconfig component
of the options consistency check to work correctly
when --up-delay is used.
* De-inlined some functions which were too complex
to be inlined anyway with gcc.
* If a --dhcp-option option is pushed to a non-windows
client, the option will be saved in the client's
environment before the --up script is called, under
the name "foreign_option_{n}".
* Added --learn-address script (see man page) which
allows for firewall access through the VPN to be
controlled based on the client common name.
* In mode --server mode, when a client connects to
the server, the server will disconnect any
still-active clients which use the same common
name. Use --duplicate-cn flag to revert to
previous behavior of allowing multiple clients
to concurrently connect with the same common name.

2004.06.08 -- Version 2.0-beta4

* Fixed issue with beta3 where Win32 service wrapper
was keying off of old TAP HWID as a dependency. To
ensure that the new service wrapper is correctly
installed, the Windows install script will uninstall
the old wrapper before installing the new one,
causing a reset of service properties.
* Fixed permissions issue on --status output file,
with default access permissions of owner read/write
only (default permissions can be changed of course with
chmod).

2004.06.05 -- Version 2.0-beta3

* More changes to TAP-Win32 driver's INF file which
affects the placement of the driver in the Windows
device namespace. This is done to work around an
apparent bug in Windows when short HWIDs are used,
and will also ease the upgrade from 1.x to 2.0 by
reducing the chances that a reboot will be needed
on upgrade. Like beta2, this upgrade will
delete existing TAP-Win32 interfaces, and reinstall
a single new interface with default properties.
* Major rewrite of I/O event wait layer in the style
of libevent. This is a precursor to TCP support
in --mode server.
* New feature: --status. Outputs a SIGUSR2-like
status summary to a given file, updated once
per n seconds. The status file is comma delimited
for easy machine parsing.
* --ifconfig-pool now remembers common names and
will try to assign a consistent IP to a given
common name. Still to do: persist --ifconfig-pool
memory across restarts by saving state in file.
* Fixed bug in event timer queue which could cause
recurring timer events such as --ping to not
correctly schedule again after firing. This in
turn would cause spurrious ping restarts and possible
connection outages. Thanks to Denis Vlasenko for
tracking this down.
* Possible fix to reported bug where --daemon argument
was not printing to syslog correctly after restart.
* Fixed bug where pulling --route or --dhcp-option
directives from a server would problematically
interact with --persist-tun on the client.
* Updated contrib/multilevel-init.patch (Farkas Levente).
* Added RPM build option to .spec and .spec.in files
to optionally disable LZO inclusion (Ian Pilcher).
* The latest MingW runtime and headers define
'ssize_t', so a patch is needed (Gisle Vanem).

2004.05.14 -- Version 2.0-beta2

* Fixed signal handling bug in --mode server, where
SIGHUP and SIGUSR1 were treated as SIGTERM.
* Changed the TAP-Win32 HWID from "TAP" to "TAPDEV".
Apparently the larger string may work around
a problem where the TAP adapter is sometimes missing
from the network connections panel, especially under
XP SP2. Also note that installing this upgrade will
uninstall any pre-existing TAP-Win32 adapters, and then
install a single new adapter, meaning that old adapter
properties will be lost. Thanks to Md5Chap for solving
this one.
* For --mode server --dev tap, the options --ifconfig and
--ifconfig-pool are now optional. This allows address
assignment via DHCP or use of a TAP VPN without
IP support, as has always been possible with 1.x.
* Fixed bug where --ifconfig may not work correctly on
Linux 2.2.
* Added 'local' flag to --redirect-gateway for use on
networks where both OpenVPN daemons are connected
to a shared subnet, such as wireless.

2004.05.09 -- Version 2.0-beta1

* Unchanged from test29 except for version number
upgrade.

2004.05.08 -- Version 2.0-test29

* Modified --dev-node on Windows to accept a TAP-Win32
GUID name. In addition, --show-adapters will now
display the high-level name and GUID of each adapter.
This is an attempt to work around an issue in Windows
where sometimes the TAP-Win32 adapter installs correctly
but has no icon in the network connections control
panel. In such cases, being able to specify
--dev-node {TAP-GUID} can work around the missing icon.

2004.05.07 -- Version 2.0-test28

* Fixed bug which could cause segfault on program
shutdown if --route and --persist-tun are used
together.

2004.05.06 -- Version 2.0-test27

* Fixed bug in close_instance() which might cause
memory to be accessed after it had already been freed.
* Fixed bug in verify_callback() that might have
caused uninitialized data to be referenced.
* --iroute now allows full CIDR subnet routing.
* In "--mode server --dev tun" usage, source addresses
on VPN packets coming from a particular client must
be associated with that client in the OpenVPN internal
routing table.

2004.04.28 -- Version 2.0-test26

* Optimized broadcast path in multi-client mode.
* Added socket buffer size options --rcvbuf & --sndbuf.
* Configure Linux tun/tap driver to use a more sensible
txqueuelen default. Also allow explicit setting
via --txqueuelen option (Harald Roelle).
* The --remote option now allows the port number
to be specified as the second parameter. If
unspecified, the port number defaults to the
--rport value.
* Multiple --remote options on the client can now be
specified for load balancing and failover. The
--remote-random flag can be used to initially randomize
the --remote list for basic load balancing.
* If a remote DNS name resolves to multiple DNS addresses,
one will be chosen by random as a kind of basic
load-balancing feature if --remote-random is used.
* Added --connect-freq option to control maximum
new connection frequency in multi-client mode.
* In multi-client mode, all syslog messages associated
with a specific client now include a client-ID prefix.
* For Windows, use a gettimeofday() function based
on QueryPerformanceCounter (Derek Burdick).
* Fixed bug in interaction between --key-method 2
and DES ciphers, where dynamic keys would be generated
with bad parity and then be rejected.

2004.04.17 -- Version 2.0-test24

* Reworked multi-client broadcast handling.

2004.04.13 -- Version 2.0-test23

* Fixed bug in --dev tun --client-to-client routing.
* Fixed a potential deadlock in --pull.
* Fixed a problem with select() usage which could
cause a repeating sequence of "select : Invalid
argument (code=22)"

2004.04.11 -- Version 2.0-test22

* Fixed bug where --mode server + --daemon was
prematurely closing syslog connection.
* Added support for --redirect-gateway on Mac OS X
(Jeremy Apple).
* Minor changes to TAP-Win32 driver based on feedback
from the NDISTest tool.

2004.04.11 -- Version 2.0-test21

* Optimizations in multi-client server event loop.

2004.04.10 -- Version 2.0-test20

* --mode server capability now works with either tun
or tap interfaces. When used with tap interfaces,
OpenVPN will internally bridge all client tap
interfaces with the server tap interface.
* Connecting clients can now have a client-specific
configuration on the server, based on the client
common name embedded in the client certificate.
See --client-config-dir and --client-connect.
These options can be used to configure client-specific
routes.
* Added an option --client-to-client that enables
internal client-to-client routing or bridging.
Otherwise, clients will only "see" the server,
not other connected clients.
* Fixed bug in route scheduling which would have caused
--mode server to not work on Windows in test18
and test19 with the sample config file.
* Man page is up to date with all new options.
* OpenVPN 2.0 release notes on web site updated
with tap-style tunnel examples.

2004.04.02 -- Version 2.0-test19

* Fixed bug where routes pushed from server were
not working correctly on Windows clients.
* Added Mac OS X route patch (Jeremy Apple).

2004.03.30 -- Version 2.0-test18

* Minor fixes + Windows self-install modified
to use OpenSSL 0.9.7d.

2004.03.29 -- Version 2.0-test17

* Fixed some bugs related to instance timeout and deletion.
* Extended --push/--pull option to support additional
option classes.

2004.03.28 -- Version 2.0-test16

* Successful test of --mode udp-server, --push,
--pull, and --ifconfig-pool with server on
Linux 2.4 and clients on Linux and Windows.

2004.03.25 -- Version 2.0-test15

* Implemented hash-table lookup of client instances
based either on remote UDP address/port or remote
ifconfig endpoint.
* Implemented a randomized binary tree based
scheduler for scalably scheduling a large number
of client instance events. Uses the treap
data structure and node rotation algorithm
to keep the tree balanced.
* Initial implementation of ifconfig-pool.
* Made --key-method 2 the default.

2004.03.20 -- Version 2.0-test14

* Implemented --push and --pull.

2004.03.20 -- Version 2.0-test13

* Reduced struct tls_multi and --single-session
memory footprint.
* Modified --single-session flag to be used
in multi-client UDP server client instances.

2004.03.19 -- Version 2.0-test12

* Added the key multi-client UDP server options,
--mode, --push, --pull, and --ifconfig-pool.
* Revamped GC (garbage collection) code to not rely
on any global data.
* Modifications to thread.[ch] to allow a more
flexible thread model.

2004.03.16 -- Version 2.0-test11

* Moved all timer code to interval.h, added new file
interval.c.
* Fixed missing include.

2004.03.16 -- Version 2.0-test10

* More TAP-Win32 fixes.
* Initial debugging and testing of multi.[ch].

2004.03.14 -- Version 2.0-test9

* Branch merge with 1.6-rc3
* More point-to-multipoint work in multi.[ch].
* Major TAP-Win32 driver restructuring to use
NdisMRegisterDevice instead of
IoCreateDevice/IoCreateSymbolicLink.
* Changed TAP-Win32 symbolic links to use \DosDevices\Global\
pathname prefix.
* In the majority of cases, TAP-Win32 should now be
able to install and uninstall on Win2K without requiring
a reboot.
* TAP-Win32 MAC address can now be explicitly set in the
adapter advanced properties page.

2004.03.04 -- Version 2.0-test8

* Branch merge with 1.6-rc2.

2004.03.03 -- Version 2.0-test7

* Branch merge with 1.6-rc1.2.

2004.03.02 -- Version 2.0-test6

* Branch merge with 1.6-rc1.

2004.03.02 -- Version 2.0-test5

* Move Socks5 UDP header append/remove to socks.c, and is
called from forward.c.
* Moved verify statics from ssl.c into struct tls_session.
* Wrote multi.[ch] to handle top level of point-to-multipoint
mode.
* Wrote some code to allow a struct link_socket in a child context
to be slaved to the parent context.
* Broke up packet read and process functions in forward.c
(from socket or tuntap) into separate functions for read
and process, so that point-to-point and point-to-multipoint can
share the same code.
* Expand TLS control channel to allow the passing of configuration
commands.
* Wrote mroute.[ch] to handle internal packet routing for
point-to-multipoint mode.

2004.02.22 -- Version 2.0-test3

* Initial work on UDP multi-client server.
* Branch merge of 1.6-beta7

2004.02.14 -- Version 2.0-test2

* Refactorization of openvpn.c into openvpn.[ch]
init.[ch] forward.[ch] forward-inline.h
occ.[ch] occ-inline.h ping.[ch] ping-inline.h
sig.[ch]. Created a master per-tunnel
struct context in openvpn.h.
* Branch merge of 1.6-beta6.2

2003.11.06 -- Version 2.0-test1

* Initial testbed for 2.0.
回复 支持 反对

使用道具 举报

 楼主| 发表于 2005-4-26 09:09:49 | 显示全部楼层

Qpopper 4.0.6于2005年4月25日发布!

上一个版本--大家看看-4.0.5-过了2年了(2003年3月14日)-经过3个Beta版-怕是只有qmail能和它相比。
ftp://ftp.qualcomm.com/eudora/se ... qpopper4.0.6.tar.gz
Changes from 4.0.5 to 4.0.6:
----------------------------
1. Minor fixes for true64.
2. Patch from Uli Zappe to fix SCRAM compilation bugs.
3. Minor fixes for true64.
4. poppassd now runs smbpasswd as user, not root, to avoid exploit
5. Remove -traditional-cpp from the compiler options for Darwin
builds (otherwise build fails)
6. Open stdout and stderr as O_WRONLY instead of O_RDONLY so that
should anything actually be written to them it will show up
7. When configured as --with-pam and required,
include <pam/pam_appl.h> instead of <security/pam_appl.h>
(otherwise build fails)
8. strdup the pw.pw_name field from getpwnam so that it's still
valid by the time genpath is called; also added corresponding
free (without this fix when the bug manifests, clients are
erroneously told there are 0 messages in the mail drop
regardless of the actual number)
9. Add a pam bug workaround at the beginning of main to do a
pam_start and pam_end immediately when the program starts up
in order to avoid bogus authentication failed messages from
pam_authenticate later (only when configured as --with-pam)
[ Thanks to Kyle McKay for changes 5-9 ]
10. Fixed error in configure script for Mac OS / Darwin.
11. Support chained certs for OpenSSL [from Daniel Senie].
12. Fixes to compile better on Linux [from Daniel Senie].
13. X-UIDL header no longer written when Update_status_hdrs is false
[thanks to Helge Oldach]
14. Now calling SSL_shutdown() again if it fails the first time.
15. Now logging TLS errors when compiled with debugging and debug is
enabled (instead of either) [thanks to Maks N. Polunin].
16. Config file now always closed (not just on error).
17. When using pam, Kerberos tickets are now destroyed.
Otherwise dead tickets accumulate in cache directory which runs
out of space quickly on busy server. Problem noted by Rodney
McDuff ITS UQ. (Directory permissions on ticket cache dir need
to be 1777).
18. Always log "Servicing request" (instead of just when debugging is
on). This allows start of pop sessions to be logged always which
is useful for diagnosis of problems.
19. Worked around problem on some systems causing SIGALRM to be masked,
leaving hung pop processes which should have timed out waiting
for a command from the client.
[ Thanks to David Shrimpton for changes 16-19 ]
20. Now defaulting to "EXPIRE NEVER" instead of "EXPIRE 0".
21. Fix core dump on 64-bit Solaris 2.8 [thanks to Kenny Nguyen]
22. Log facility set on command line now applies to daemon as well.
[Thanks to Helge Oldach]
23. '-y' to set log facility on command line now works again.
24. Allow '-V' as synonym for '-v' (to see version).
25. Process user and spool config files as user, not as root (fix
security hole reported by Jens Steube)
26. Added "xtnd_xmit" as a boolean option to permit/deny XTND XMIT
and 'x' as a command-line option to disable it. You should
disable it unless you really need it, and even then it is better
to move to SMTP AUTH.
27. popauth now opens trace file as user, not root (fix security
hole reported by Jens Steube); also umask now set.
28. Fix race crash on FreeBSD (thanks to Martin Haller).
29. Resolve some compiler warnings.
30. Fix check for libcrypt on FreeBSD.
31. Added sample pam configuration file (also installed by 'make
install')
32. Use generic error msg and sleep in more auth failure cases.
33. Added code to use mkstemp() instead of our perfectly safe usage
of tempnam() because some compilers issue overly broad warnings
implying that all uses of tempnam() are unsafe. To bypass,
use '--enable-tempnam' with ./configure.
回复 支持 反对

使用道具 举报

 楼主| 发表于 2005-4-29 09:23:58 | 显示全部楼层

JDK 5.0 Update 3 2005-04-28

Changes in 1.5.0_03

The official version number for is update release is 1.5.0_03-b07. Bug fixes are listed in the following table.
BugId Category Subcategory Description 6207079 hotspot compiler1 Hotspot client compiler overfills CodeBuffer: crashes when deoptimizing.
6207830 hotspot compiler2 JCK: /api/java_net/URI/[Ctor, Components,Create] Tests failing with [-server -Xcomp] in Linux
6208545 hotspot compiler2 The popup menu displays the graphical box but there is no menu items inside the box.
6209737 hotspot compiler2 REGRESSION:Compilation error "local schedule failed (not retryable)" with simple loop
6213473 hotspot jni JCK1.5: JNI call made with exception when -Xcheck:jni is used.
5092850 hotspot jvmti RedefineClasses causes VerifyError
6214132 hotspot jvmti Verifier must treat all versions of class being redefined as equal types
6219495 hotspot jvmti CompiledMethodLoad reports incorrect addresses in the location map
6227583 hotspot runtime_system Solaris-amd64: nsk/regression/b4660518 test exceeds the default 18-page shadow zone size
6206786 java apt apt should return members in source order
6250473 java apt REGRESSION: apt slower in Tiger update train than FCS due to name lookup
4949631 java char_encodings String.getBytes() does not work on some strings larger than 16MB
5101128 java char_encodings (cs) CoderResult.isOverflow() returns false when UTF-16 overflows
5089985 java classes_2d Drawing GeneralPath crashes JVM if antialias is on
4984794 java classes_awt Invisible applet steals focus from HTML form field (MSIE, Sun plug-in only)
5082319 java classes_awt REGRESSION: JComboBox don't respond to arrow keys on linux (has focus listener)
5095117 java classes_awt [Cinnabar17] On X86, suntea login page can't be input
6173972 java classes_awt backspace, arrow keys, and return key not working in java applications
6213128 java classes_awt [Cinnabar25 Linux]SunTea hangs the system
6213128 java classes_awt [Cinnabar25 Linux]SunTea hangs the system
6195099 java classes_lang (ref) test/java/lang/ref/SoftReference/Pin.java fails
6210227 java classes_net REGRESSION: Socket.getLocalAddress() returns address of 0.0.0.0 on outbound TCP
6181598 java classes_nio String constructor with "KSC5601" encoding throws AccessControlException
5100483 java classes_security Kerberos module cannot authentiate with different KDCs/principal names
6219491 java classes_security CertStore.getInstance(String,CertStoreParameters,String) throws NoSuchAlgorithmE
4548788 java classes_swing JTree should toggle for all even-numbered clicks
4656461 java classes_swing Cannot Ctrl-Shift-Click to create disjoint selection interval in list
4897333 java classes_swing XP L&F: JComboBox has wrong rollover effect under Windows XP LookAndFeel
4924758 java classes_swing 1.4 REGRESSION: In Motif L&F JComboBox doesn't react when spacebar is pressed
4994329 java classes_swing GTK: JColorChooser hue spinner doesn't update the selected color
5056403 java classes_swing REGRESSION: JTabbedPane setFocusable(false) and removing tabs
5075526 java classes_swing REGRESSION: ArrayIndexOutOfBoundsException in BasicTabbedPaneUI.getTabBounds()
5077738 java classes_swing Changing system preferences after switching from GTK L&F causes L&F mixup
5102490 java classes_swing Lead Selection index is not shown in JFileChooser on GTK LAF
6209095 java classes_swing Make the demo code more friendly to build
6218309 java classes_text test/java/text/Format/CurrencyFormat.java failed for tr_TR
6180194 java classes_util 142_xx: Missing exception/error messages while using unsynchronized Collection objects concurrently
5104960 java classes_util_i18n New Romanian currency
6206839 java classes_util_i18n New Currency for Madagascar
6213461 java classes_util_i18n Regtest java/util/Currency/ValidateISO4217.java fails after 2005-01-01 due to new Turkish lire
6181784 java debugger Step requests ignored after an exception in debugee
6208676 java install Error 1722 coming during jre1.5.0 installation by Windows user with limited (+elevated) priviledges
6208965 java install Package based installation of tiger update 1 shows J2SDK
6224405 java install REGRESSION: wrong time stamp for plugin dll files on Win98(2nd)
6238128 java install Tiger Update 2 JRE patch bundle creates msvcrt.dll under jre1.5.0_02/bin
6247771 java install REGRESSION: uninstall JDK 5.0u3 does not remove demo dir on windows
6182685 java localization incorrect "group (thousands) separator" in 5.0 sun.text.resources.LocaleElements_sv
6208712 java localization S. Chinese translation for Twi language is wrong
6209342 java localization S.Chinese localization for JDK software
6215109 java localization some of jdk man pages show unnecessary lines in ja locale
6237671 java localization S.Chinese localization for JDK software - part II
5105765 java native_interface REGRESSION: JNI Performance Regression in 1.5.0 -server
6215480 java profiling HPROF: broken when used with HAT, starting with 1.5.0_01, Missing thread dump
5075546 java runtime remove memory barrier on native transitions
6215746 java_plugin applet_spec Disable META-INF/* lookup from codebase in applet/plugin classloader
6234219 java_plugin compatibility Do not set initial focus on an applet during startup if applet is targeted for JDK 1.1/1.2
5080386 java_plugin iexplorer Problem with embedded Internet Explorer using Sun Java
6226589 java_plugin linux Applets hang when using plugin 1.5 in Linux with Mozilla 1.7.x
5023873 java_plugin misc "javaplugin.classloader.cache.enabled=false" does not work
5024379 java_plugin ocx REGRESSION: isActive call from Javascript no longer works in IE
5017051 java_plugin other Applet will not reauthenticate user when returning from another applet
6227551 java_plugin other REGRESSION: Loading applet fails if URL contains %7E
6189594 javawebstart download_engine Java Webstart application startup is too slow
6222350 javawebstart download_engine Regression: updating title or icon in jnlp file will not update shortcuts.
6206216 javawebstart general can't remove old app if vendor change title attribute in jnlp file on windows platform
6227874 javawebstart general javaws apps are put in Add/Remove progrgrams entries for all users
6189106 javawebstart jnlp_file Java Web Start jnlp file caching problem.
6221549 javawebstart jnlp_file TCK-jnlp 1.5: jnlp_file/resources/j2se/index.html#vmArgs hang in some cases.
6231216 jce pkcs11_csp Support wrapping of software keys using RSA-PKCS1
http://java.sun.com/j2se/1.5.0/download.jsp
回复 支持 反对

使用道具 举报

 楼主| 发表于 2005-5-4 14:55:52 | 显示全部楼层
回复 支持 反对

使用道具 举报

 楼主| 发表于 2005-5-5 12:14:04 | 显示全部楼层

Exim 4.51 2005-05-04

ftp://ftp.csx.cam.ac.uk/pub/soft ... 4/exim-4.51.tar.bz2

Exim version 4.51
-----------------

TK/01 Added Yahoo DomainKeys support via libdomainkeys. See
doc/experimental-spec.txt for details. (http://domainkeys.sf.net)

TK/02 Fix ACL "control" statement not being available in MIME ACL.

TK/03 Fix ACL "regex" condition not being available in MIME ACL.

PH/01 Installed a patch from the Sieve maintainer that allows -bf to be used
to test Sieve filters that use "vacation".

PH/02 Installed a slightly modified version of Nikos Mavrogiannopoulos' patch
that changes the way the GnuTLS parameters are stored in the cache file.
The new format can be generated externally. For backward compatibility,
if the data in the cache doesn't make sense, Exim assumes it has read an
old-format file, and it generates new data and writes a new file. This
means that you can't go back to an older release without removing the
file.

PH/03 A redirect router that has both "unseen" and "one_time" set does not
work if there are any delivery delays because "one_time" forces the
parent to be marked "delivered", so its unseen clone is never tried
again. For this reason, Exim now forbids the simultaneous setting of
these two options.

PH/04 Change 4.11/85 fixed an obscure bug concerned with addresses that are
redirected to themselves ("homonym" addresses). Read the long ChangeLog
entry if you want to know the details. The fix, however, neglected to
consider the case when local delivery batching is involved. The test for
"previously delivered" was not happening when checking to see if an
address could be batched with a previous (undelivered) one; under
certain circumstances this could lead to multiple deliveries to the same
address.

PH/05 Renamed the macro SOCKLEN_T as EXIM_SOCKLEN_T because AIX uses SOCKLEN_T
in its include files, and this causes problems building Exim.

PH/06 A number of "verify =" ACL conditions have no options (e.g. verify =
header_syntax) but Exim was just ignoring anything given after a slash.
In particular, this caused confusion with an attempt to use "verify =
reverse_host_lookup/defer_ok". An error is now given when options are
supplied for verify items that do not have them. (Maybe reverse_host_
lookup should have a defer_ok option, but that's a different point.)

PH/07 Increase the size of the buffer for incoming SMTP commands from 512 (as
defined by RFC 821) to 2048, because there were problems with some AUTH
commands, and RFC 1869 says the size should be increased for extended
SMTP commands that take arguments.

PH/08 Added ${dlfunc dynamically loaded function for expansion (code from Tony
Finch).

PH/09 Previously, an attempt to use ${perl when it wasn't compiled gave an
"unknown" error; now it says that the functionality isn't in the binary.

PH/10 Added a nasty fudge to try to recognize and flatten LDAP passwords in
an address' error message when a string expansion fails (syntax or
whatever). Otherwise the password may appear in the log. Following change
PH/42 below, there is no longer a chance of it appearing in a bounce
message.

PH/11 Installed exipick version 20050225.0 from John Jetmore.

PH/12 If the last host in a fallback_hosts list was multihomed, only the first
of its addresses was ever tried. (Bugzilla bug #2.)

PH/13 If "headers_add" in a transport didn't end in a newline, Exim printed
the result incorrectly in the debug output. (It correctly added a newline
to what was transported.)

TF/01 Added $received_time.

PH/14 Modified the default configuration to add an acl_smtp_data ACL, with
commented out examples of how to interface to a virus scanner and to
SpamAssassin. Also added commented examples of av_scanner and
spamd_address settings.

PH/15 Further to TK/02 and TK/03 above, tidied up the tables of what conditions
and controls are allowed in which ACLs. There were a couple of minor
errors. Some of the entries in the conditions table (which is a table of
where they are NOT allowed) were getting very unwieldy; rewrote them as a
negation of where the condition IS allowed.

PH/16 Installed updated OS/os.c-cygwin from the Cygwin maintainer.

PH/17 The API for radiusclient changed at release 0.4.0. Unfortunately, the
header file does not have a version number, so I've had to invent a new
value for RADIUS_LIB_TYPE, namely "RADIUSCLIENTNEW" to request the new
API. The code is untested by me (my Linux distribution still has 0.3.2 of
radiusclient), but it was contributed by a Radius user.

PH/18 Installed Lars Mainka's patch for the support of CRL collections in
files or directories, for OpenSSL.

PH/19 When an Exim process that is running as root has to create an Exim log
file, it does so in a subprocess that runs as exim:exim so as to get the
ownership right at creation (otherwise, other Exim processes might see
the file with the wrong ownership). There was no test for failure of this
fork() call, which would lead to the process getting stuck as it waited
for a non-existent subprocess. Forks do occasionally fail when resources
run out. I reviewed all the other calls to fork(); they all seem to check
for failure.

PH/20 When checking for unexpected SMTP input at connect time (before writing
the banner), Exim was not dealing correctly with a non-positive return
from the read() function. If the client had disconnected by this time,
the result was a log entry for a synchronization error with an empty
string after "input=" when read() returned zero. If read() returned -1
(an event I could not check), uninitialized data bytes were printed.
There were reports of junk text (parts of files, etc) appearing after
"input=".

PH/21 Added acl_not_smtp_mime to allow for MIME scanning for non-SMTP messages.

PH/22 Added support for macro redefinition, and (re)definition in between
driver and ACL definitions.

PH/23 The cyrus_sasl authenticator was expanding server_hostname, but then
forgetting to use the resulting value; it was using the unexpanded value.

PH/24 The cyrus_sasl authenticator was advertising mechanisms for which it
hadn't been configured. The fix is from Juergen Kreileder, who
understands it better than I do:

"Here's what I see happening with three configured cyrus_sasl
authenticators configured (plain, login, cram-md5):

On startup auth_cyrus_sasl_init() gets called for each of these.
This means three calls to sasl_listmech() without a specified mech_list.
=> SASL tests which mechs of all available mechs actually work
=> three warnings about OTP not working
=> the returned list contains: plain, login, cram-md5, digest-md5, ...

With the patch, sasl_listmech() also gets called three times. But now
SASL's mech_list option is set to the server_mech specified in the the
authenticator. Or in other words, the answer from sasl_listmech()
gets limited to just the mech you're testing for (which is different
for each call.)
=> the return list contains just 'plain' or 'login', 'cram-md5' or
nothing depending on the value of ob->server_mech.

I've just tested the patch: Authentication still works fine,
unavailable mechs specified in the exim configuration are still
caught, and the auth.log warnings about OTP are gone."

PH/25 When debugging is enabled, the contents of the command line are added
to the debugging output, even when log_selector=+arguments is not
specified.

PH/26 Change scripts/os-type so that when "uname -s" returns just "GNU", the
answer is "GNU", and only if the return is "GNU/something" is the answer
"Linux".

PH/27 $acl_verify_message is now set immediately after the failure of a
verification in an ACL, and so is available in subsequent modifiers. In
particular, the message can be preserved by coding like this:

warn !verify = sender
set acl_m0 = $acl_verify_message

Previously, $acl_verify_message was set only while expanding "message"
and "log_message" when a very denied access.

PH/28 Modified OS/os.c-Linux with

-#ifndef OS_LOAD_AVERAGE
+#if !defined(OS_LOAD_AVERAGE) && defined(__linux__)

to make Exim compile on kfreebsd-gnu. (I'm totally confused about the
nomenclature these days.)

PH/29 Installed patch from the Sieve maintainer that adds the options
sieve_useraddress and sieve_subaddress to the redirect router.

PH/30 In these circumstances:
. Two addresses routed to the same list of hosts;
. First host does not offer TLS;
. First host accepts first address;
. First host gives temporary error to second address;
. Second host offers TLS and a TLS session is established;
. Second host accepts second address.
Exim incorrectly logged both deliveries with the TLS parameters (cipher
and peerdn, if requested) that were in fact used only for the second
address.

PH/31 When doing a callout as part of verifying an address, Exim was not paying
attention to any local part prefix or suffix that was matched by the
router that accepted the address. It now behaves in the same way as it
does for delivery: the affixes are removed from the local part unless
rcpt_include_affixes is set on the transport.

PH/32 Add the sender address, as F=<...>, to the log line when logging a
timeout during the DATA phase of an incoming message.

PH/33 Sieve envelope tests were broken for match types other than :is. I have
applied a patch sanctioned by the Sieve maintainer.

PH/34 Change 4.50/80 broke Exim in that it could no longer handle cases where
the uid or gid is negative. A case of a negative gid caused this to be
noticed. The fix allows for either to be negative.

PH/35 ACL_WHERE_MIME is now declared unconditionally, to avoid too much code
clutter, but the tables that are indexed by ACL_WHERE_xxx values had been
overlooked.

PH/36 The change PH/12 above was broken. Fixed it.

PH/37 Exim used to check for duplicate addresses in the middle of routing, on
the grounds that routing the same address twice would always produce the
same answer. This might have been true once, but it is certainly no
longer true now. Routing a child address may depend on the previous
routing that produced that child. Some complicated redirection strategies
went wrong when messages had multiple recipients, and made Exim's
behaviour dependent on the order in which the addresses were given.

I have moved the duplicate checking until after the routing is complete.
Exim scans the addresses that are assigned to local and remote
transports, and removes any duplicates. This means that more work will be
done, as duplicates will always all be routed, but duplicates are
presumably rare, so I don't expect this is of any significance.

For deliveries to pipes, files, and autoreplies, the duplicate checking
still happens during the routing process, since they are not going to be
routed further.

PH/38 Installed a patch from Ian Freislich, with the agreement of Tom Kistner.
It corrects a timeout issue with spamd. This is Ian's comment: "The
background is that sometimes spamd either never reads data from a
connection it has accepted, or it never writes response data. The exiscan
spam.[ch] uses a 3600 second timeout on spamd socket reads, further, it
blindly assumes that writes won't block so it may never time out."

PH/39 Allow G after quota size as well as K and M.

PH/40 The value set for $authenticated_id in an authenticator may not contain
binary zeroes or newlines because the value is written to log lines and
to spool files. There was no check on this. Now the value is run through
the string_printing() function so that such characters are converted to
printable escape sequences.

PH/41 $message_linecount is a new variable that contains the total number of
lines in the message. Compare $body_linecount, which is the count for the
body only.

PH/42 Exim no longer gives details of delivery errors for specific addresses in
bounce and delay warning messages, except in certain special cases, which
are as follows:

(a) An SMTP error message from a remote host;
(b) A message specified in a :fail: redirection;
(c) A message specified in a "fail" command in a system filter;
(d) A message specified in a FAIL return from the queryprogram router;
(e) A message specified by the cannot_route_message router option.

In these cases only, Exim does include the error details in bounce and
warning messages. There are also a few cases where bland messages such
as "unrouteable address" or "local delivery error" are given.

PH/43 $value is now also set for the "else" part of a ${run expansion.

PH/44 Applied patch from the Sieve maintainer: "The vacation draft is still
being worked on, but at least Exim now implements the latest version to
play with."

PH/45 In a pipe transport, although a timeout while waiting for the pipe
process to complete was treated as a delivery failure, a timeout while
writing the message to the pipe was logged, but erroneously treated as a
successful delivery. Such timeouts include transport filter timeouts. For
consistency with the overall process timeout, these timeouts are now
treated as errors, giving rise to delivery failures by default. However,
there is now a new Boolean option for the pipe transport called
timeout_defer, which, if set TRUE, converts the failures into defers for
both kinds of timeout. A transport filter timeout is now identified in
the log output.

PH/46 The "scripts/Configure-config.h" script calls "make" at one point. On
systems where "make" and "gmake" are different, calling "gmake" at top
level broke things. I've arranged for the value of $(MAKE) to be passed
from the Makefile to this script so that it can call the same version of
"make".
回复 支持 反对

使用道具 举报

发表于 2005-5-5 16:32:04 | 显示全部楼层
这里不是 linuxforum
那边你那些帖子汇编才壮观呢,在这边可能看的人就少了
回复 支持 反对

使用道具 举报

 楼主| 发表于 2005-5-6 21:38:08 | 显示全部楼层
有新软件发布通知一下而已----需要的话就看一下--提个醒/--何必酸溜溜的说些没用的?不是所有人又去linuxforum又来这里的。不知我这贴子对你有什么影响?如果大家都不需要我大不了以后不在这发就好了。我还省事了。
回复 支持 反对

使用道具 举报

 楼主| 发表于 2005-5-6 21:49:21 | 显示全部楼层

PostGreSQL 8.0.3 2005-05-05

ftp://ftp3.us.postgresql.org/pub ... resql-8.0.3.tar.bz2

Release 8.0.3

Release date: 2005-05-05

This release contains a variety of fixes from 8.0.2, including several
security-related issues.
__________________________________________________________________

Migration to version 8.0.3

A dump/restore is not required for those running 8.0.X. However, it is
one possible way of handling two significant security problems that
have been found in the initial contents of 8.0.X system catalogs. A
dump/initdb/reload sequence using 8.0.3's initdb will automatically
correct these problems.

The larger security problem is that the built-in character set encoding
conversion functions can be invoked from SQL commands by unprivileged
users, but the functions were not designed for such use and are not
secure against malicious choices of arguments. The fix involves
changing the declared parameter list of these functions so that they
can no longer be invoked from SQL commands. (This does not affect their
normal use by the encoding conversion machinery.)

The lesser problem is that the "contrib/tsearch2" module creates
several functions that are misdeclared to return internal when they do
not accept internal arguments. This breaks type safety for all
functions using internal arguments.

It is strongly recommended that all installations repair these errors,
either by initdb or by following the manual repair procedure given
below. The errors at least allow unprivileged database users to crash
their server process, and may allow unprivileged users to gain the
privileges of a database superuser.

If you wish not to do an initdb, perform the same manual repair
procedures shown in the 7.4.8 release notes.
__________________________________________________________________

Changes

* Change encoding function signature to prevent misuse
* Change "contrib/tsearch2" to avoid unsafe use of INTERNAL function
results
* Guard against incorrect second parameter to record_out
* Fix comparisons of TIME WITH TIME ZONE values
The comparison code was wrong in the case where the
--enable-integer-datetimes configuration switch had been used.
NOTE: if you have an index on a TIME WITH TIME ZONE column, it will
need to be "REINDEX"ed after installing this update, because the
fix corrects the sort order of column values.
* Fix EXTRACT(EPOCH) for TIME WITH TIME ZONE values
* Fix mis-display of negative fractional seconds in INTERVAL values
This error only occurred when the --enable-integer-datetimes
configuration switch had been used.
* Fix pg_dump to dump trigger names containing % correctly (Neil)
* Still more 64-bit fixes for "contrib/intagg"
* Prevent incorrect optimization of functions returning RECORD
* Prevent crash on COALESCE(NULL,NULL)
* Fix Borland makefile for libpq
* Fix "contrib/btree_gist" for timetz type (Teodor)
* Make "pg_ctl" check the PID found in "postmaster.pid" to see if it
is still a live process
* Fix "pg_dump"/"pg_restore" problems caused by addition of dump
timestamps
* Fix interaction between materializing holdable cursors and firing
deferred triggers during transaction commit
* Fix memory leak in SQL functions returning pass-by-reference data
types
__________________________________________________________________
回复 支持 反对

使用道具 举报

您需要登录后才可以回帖 登录 | 注册

本版积分规则

快速回复 返回顶部 返回列表