===================================================================
RCS file: /cvsrepo/anoncvs/cvs/www/plus59.html,v
retrieving revision 1.7
retrieving revision 1.8
diff -u -r1.7 -r1.8
--- www/plus59.html 2016/03/03 22:33:31 1.7
+++ www/plus59.html 2016/03/03 23:52:29 1.8
@@ -76,6 +76,88 @@
+
+- Remove the Class 3 Public Primary Certification Authority root certificate from /etc/ssl/cert.pem, per recommendation of Symantec/VeriSign.
+
- In asmc(4), add more temperature keys found in MacBook Airs (6,1 and 7,2) and MacBook Pro (10,2).
+
- Update to unbound 1.5.7.
+
- In mountd(8), fix issues with adding and deleting exports when (re)reading the exports(5) file.
+
- Add UTF-8 support to fmt(1). The -c option is not yet handled.
+
- Do not panic when trying to delete an non-existing route with ART.
+
- In relayd(8), handle the HTTP PATCH request correctly.
+
+
- In tmux(1), allow list-keys and list-commands to be run without a running server.
+
- In acpithinkpad(4), handle the keyboard backlight found on newer Thinkpads.
+
- Add initial 802.11n support to iwm(4).
+
+
- In mailwrapper(8), update the default MTA reference to smtpd(8).
+
- Use pledge(2) in dhcpd(8).
+
- In acpithinkpad(4), support ThinkLight.
+
- In eigrpd(8), introduce a new command to show traffic statistics.
+
+
- In tmux(1):
+
+- Allow prefix and prefix2 to be set to None to disable.
+
- Add the key-table option to set the default key table for a session.
+
+ - In smtpd(8):
+
+- Bump Diffie-Hellman parameterss to 2048.
+
- Allow overriding the default cipher-suite in smtpd.conf(5).
+
- Remove CA from pki and no longer allow specifying a CA with "pki" keyword. Introduce "ca" keyword to smtpd.conf(5) allow specifying a custom CA.
+
+ - On sgi, adjust IPI numbers to get the interrupts working.
+
- Avoid dhclient(8) from hanging during boot when the attempt to configure the address fails without dhclient(8) realizing it.
+
- In asmc(4), enable keyboard backlight support.
+
- In wsconsctl(8), add the keyboard backlight variable.
+
- In wscons(4), add new ioctls to control keyboard backlights.
+
- In smtpd(8), implement senders map.
+
- In ieee80211(9):
+
+- Finish support for receiving 11n A-MPDUs.
+
- Add 11n/HT negotiation fixes.
+
- Makes 11n negotiation with Linux iwlwifi AP succeed.
+
+ - In smtpd(8), prepare for support of wildcard CA and DANE.
+
+
- In fdisk(8), open the disk read-only if none of -i, -e or -u are specified.
+
- Fix a bug where exhausting a tmpfs filesystem leads to kernel panic.
+
- In fdisk(8), add -v to force the display of both GPTs and the MBR.
+
- In libevent, do not print to stderr.
+
- Use pledge(2) in spamlogd(8).
+
- In dhcpd(8), fix a bug where the default-lease-time, max-lease-time, bootp-lease-length statements specified in dhcpd.conf(5) were being ignored.
+
- In nsd(8), disable the database file by default.
+
- Update nsd 4.1.7.
+
- In ehci(4), work around Nvidia EHCI controllers bugs.
+
- In vmctl(8), allow the "id" argument to be a number or a VM name.
+
- In smtpd(8), add -F to run in foreground while logging to syslog.
+
- In makemap(8), add -U, like the sendmail makemap.
+
+
- In ssh(1), do not try to load an SSHv1 private key when compiled without SSHv1 support (bz#2505).
+
- Remove now unused plain DES from the kernel crypto framework, including the crypto accelerator drivers.
+
- Use pledge(2) in dhclient(8).
+
- In bnx(4), mark the start routine as MP-safe.
+
- In ksh(1), fix moving trough and deleting multibyte characters in emacs command-line editing mode.
+
+
- Install the OpenBSD::Pledge Perl module.
+
- Remove plain DES encryption: remove support for DES-CBC encryption in ESP and in IKE main and quick mode from the kernel, isakpmd(8), ipsecctl(8) and iked(8).
+
- In libcrypto, change the counter argument for CRYPTO_chacha_20 to be 64-bits on all platforms. This avoids truncation of the counter on 32-bit platforms.
+
- Do not trigger a KASSERT() if the route we're trying to remove does not exist and we get another matching one instead.
+
- Do not trigger a KASSERT() when destroying/detaching an interface with RTF_CLONED routes attached.
+
+
- In inteldrm(4), enable support for 3840x2160 60Hz SST.
+
- Rework the if_start MP-safe serialisation so it can serialise arbitrary work.
+
- In malloc(3):
+
+- Add random "canaries" to the end of an allocation. This option is enabled with the malloc.conf(5) "C" flag.
+
- When writing junk to freed chunks (current default behavior), check that the junk is still intact when freeing the delayed chunk in order to catch a potential use-after-free.
+
+ - Add xenstore(4), a driver for XenStore, the configuration storage.
+
- Add xspd(4), a driver for the XenSource Platform Device.
+
- Add xen(4).
+
- In iwm(4), avoid synchronization issues with the firmware that might cause association to be aborted or stop the interface from working until reboot.
+
- Rewrite getusershell(3) to avoid the possibility of overflow.
+
- In doas(1), add -a to specify a non-default authentication style.
+
- In vmctl(8), add the "console" subcommand to connect to a specified VM console by id.
- Use pledge(2) in spamd(8).
- In tmux(1), add a hooks infrastructure, basic commands, and a couple of client hooks.