===================================================================
RCS file: /cvsrepo/anoncvs/cvs/www/63.html,v
retrieving revision 1.44
retrieving revision 1.45
diff -c -r1.44 -r1.45
*** www/63.html 2018/03/27 01:03:34 1.44
--- www/63.html 2018/03/27 01:49:19 1.45
***************
*** 134,151 ****
href="https://man.openbsd.org/vioscsi.4">vioscsi(4).
vmd(8) no longer
creates an underlying bridge interface for virtual switches defined in
! vm.conf(5)
vmd(8) receives
switch information (rdomain, etc) from underlying switch interface in
conjunction of settings in vm.conf(5)
! Time Stamp Counter (TSC) support in guest VMs
Support ukvm/Solo5 unikernels in
! vmm(4)
! Handle valid (but uncommon) instruction encodings better
! Better PAE paging support for 32-bit Linux guest VMs
vmd(8) now allows up
! to four network interfaces in each VM
Add paused migration and snapshotting support to vmm(4) for AMD SVM/RVI
hosts.
--- 134,151 ----
href="https://man.openbsd.org/vioscsi.4">vioscsi(4).
vmd(8) no longer
creates an underlying bridge interface for virtual switches defined in
! vm.conf(5).
vmd(8) receives
switch information (rdomain, etc) from underlying switch interface in
conjunction of settings in vm.conf(5).
! Time Stamp Counter (TSC) support in guest VMs.
Support ukvm/Solo5 unikernels in
! vmm(4).
! Handle valid (but uncommon) instruction encodings better.
! Better PAE paging support for 32-bit Linux guest VMs.
vmd(8) now allows up
! to four network interfaces in each VM.
Add paused migration and snapshotting support to vmm(4) for AMD SVM/RVI
hosts.
***************
*** 153,159 ****
pty(4) are now understood by
vmd(8).
Many fixes to vmctl(8)
! and vmd(8) error handling
--- 153,159 ----
pty(4) are now understood by
vmd(8).
Many fixes to vmctl(8)
! and vmd(8) error handling.
***************
*** 210,216 ****
Routing daemons and other userland network improvements:
- bgpctl(8) has a new
! ssv option which outputs rib entries as a single semicolon-seperated
like for selection before output.
- slaacd(8) generates
random but stable IPv6 stateless autoconfiguration addresses according
--- 210,216 ----
- Routing daemons and other userland network improvements:
- bgpctl(8) has a new
! ssv option which outputs rib entries as a single semicolon-separated
like for selection before output.
- slaacd(8) generates
random but stable IPv6 stateless autoconfiguration addresses according
***************
*** 224,230 ****
- ifconfig(8) has a new
staticarp option to make interfaces reply to ARP requests only.
- ipsecctl(8) can now
! collapse flow outputs having the same source or destination
- The -n option in the
netstart(8) no longer
messes with the default route.
--- 224,230 ----
- ifconfig(8) has a new
staticarp option to make interfaces reply to ARP requests only.
- ipsecctl(8) can now
! collapse flow outputs having the same source or destination.
- The -n option in the
netstart(8) no longer
messes with the default route.
***************
*** 246,256 ****
number generator as entropy at startup.
- Put a small random gap at the top of thread stacks, so that attackers
have yet another calculation to perform for their ROP work.
!
- Mitigation for Meltdown vulnerability for Intel brand amd64 CPUs
- OpenBSD/arm64 now uses kernel page table isolation to mitigate
Spectre variant 3 (Meltdown) attacks.
!
- OpenBSD/armv7 and OpenBSD/arm64 now flush the branch target
! cache (BTB) on processors that do speculative execution to
mitigate Spectre variant 2 attacks.
- ...
--- 246,256 ----
number generator as entropy at startup.
- Put a small random gap at the top of thread stacks, so that attackers
have yet another calculation to perform for their ROP work.
!
- Mitigation for Meltdown vulnerability for Intel brand amd64 CPUs.
- OpenBSD/arm64 now uses kernel page table isolation to mitigate
Spectre variant 3 (Meltdown) attacks.
!
- OpenBSD/armv7 and OpenBSD/arm64 now flush the Branch Target
! Cache (BTB) on processors that do speculative execution to
mitigate Spectre variant 2 attacks.
- ...
***************
*** 325,331 ****
to perform fsck(8).
acme-client(1)
autodetects the agreement URL and follows 30x HTTP redirects.
! Added __cxa_thread_atexit() to support modern C++ tool chains
Added EVFILT_DEVICE support to
kqueue(2) for
monitoring changes to
--- 325,331 ----
to perform fsck(8).
acme-client(1)
autodetects the agreement URL and follows 30x HTTP redirects.
! Added __cxa_thread_atexit() to support modern C++ tool chains.
Added EVFILT_DEVICE support to
kqueue(2) for
monitoring changes to
***************
*** 360,366 ****
validates the requested partition size against the size of the largest free
chunk instead of the total free space.
Support for dumping USB transfers via
! bpf(4)
tcpdump(8) can now
understand dumps of USB transfers in the
USBPcap
--- 360,366 ----
validates the requested partition size against the size of the largest free
chunk instead of the total free space.
Support for dumping USB transfers via
! bpf(4).
tcpdump(8) can now
understand dumps of USB transfers in the
USBPcap
***************
*** 443,449 ****
- Fixed a bug in int_x509_param_set_hosts, calling strlen() if name
length provided is 0 to match the OpenSSL behaviour. Issue noticed
! by Christian Heimes <christian@python.org>
- Added support for many OpenSSL 1.0.2 and 1.1 APIs, based on
observations of real-world usage in applications. These are
implemented in parallel with existing OpenSSL 1.0.1 APIs - visibility
--- 443,449 ----
- Fixed a bug in int_x509_param_set_hosts, calling strlen() if name
length provided is 0 to match the OpenSSL behaviour. Issue noticed
! by Christian Heimes <christian@python.org>.
- Added support for many OpenSSL 1.0.2 and 1.1 APIs, based on
observations of real-world usage in applications. These are
implemented in parallel with existing OpenSSL 1.0.1 APIs - visibility