3 * UPD: afpd: Increase default DSI server quantum to 1 MB
4 * UPD: bundled libevent2 is now static
5 * NEW: --with-lockfile=PATH configure option for specifying an
6 alternative path for the netatalk lockfile.
7 * UPD: systemd service file use PIDFile and ExecReload.
9 * UPD: RedHat sysvinit: rm graceful, reimplement reload, add condrestart
10 * FIX: Couldn't create folders on FreeBSD 9.1 ZFS fileystems.
12 * FIX: Fix an issue with user homes when user home directory has not the
13 same name as the username.
15 * UPD: Fix PAM config install, new default installation dir is
16 $sysconfdir/pam.d/. Add configure option --with-pam-confdir
17 to specify alternative path.
18 * NEW: AFP stats about active session via dbus IPC. Client side python
19 program `afpstats`. Requires dbus, dbus-glib any python-dbus.
20 configure option --dbus-sysconf-dir for specifying dbus
21 system security configuration files.
22 New option 'afpstats' (default: no) which determines whether
23 to enable the feature or not.
24 * NEW: dtrace probes, cf include/atalk/afp_dtrace.d for available
26 * UPD: Reload groups when reloading volumes. FR #71.
27 * FIX: Attempt to read read-only ._ rfork results in disconnect.
32 * NEW: afpd: Put file extension type/creator mapping back in which had
34 * NEW: afpd: new option 'ad domain'. From FR #66.
35 * FIX: volumes and home share with symlinks in the path
36 * FIX: Copying packages to a Netatalk share could fail, bug #469
37 * FIX: Reloading volumes from config file was broken. Fixes bug #474.
38 * FIX: Fix _device-info service type registered with dns-sd API
39 * FIX: Fix pathname bug for FCE modified event.
40 * FIX: Remove length limitation of options like "valid users".
42 * FIX: Dont copy our metadata EA in copyfile(). Fixes bug #452.
43 * FIX: Fix an error where catalog search gave incomplete results.
45 * REM: Remove TimeMachine volume used size FCE event.
46 * UPD: Add quoting support to '[in]valid users' option. Fixes bug #472.
47 * FIX: Install working PAM config on Solaris 11. Fixes bug #481.
48 * FIX: Fix a race condition between dbd and the cnid_dbd daemon
49 which could result in users being disconnected from volumes
50 when dbd was scanning their volumes. Fixes bug #477.
51 * FIX: Netatalk didn't start when the last line of the config file
52 afp.conf wasn't terminated by a newline. Fixes bug #476.
53 * NEW: Add a new volumes option 'follow symlinks'. The default setting is
54 false, symlinks are not followed on the server. This is the same
55 behaviour as OS X's AFP server.
56 Setting the option to true causes afpd to follow symlinks on the
57 server. symlinks may point outside of the AFP volume, currently
58 afpd doesn't do any checks for "wide symlinks".
59 * FIX: Automatic AppleDouble conversion to EAs failing for directories.
61 * FIX: dbd failed to convert appledouble files of symlinks.
66 * NEW: afpd: Optional "ldap uuid encoding = string | ms-guid" parameter to
67 afp.conf, allowing for usage of the binary objectGUID fields from
69 * FIX: afpd: Fix a Solaris 10 SPARC sendfilev bug
70 * FIX: afpd: Fix a crash on FreeBSD
71 * FIX: afpd: Fixes open file handle refcounting bug which was reported as
72 being unable to play movies off a Netatalk AFP share.
74 * FIX: afpd: Fix a possible data corruption when reading from and writing
75 to the server simultaniously under load
76 * FIX: Fix possible alignment violations due to bad casts
77 * FIX: dbd: Fix logging
78 * FIX: apple_dump: Extended Attributes AppleDouble support for *BSD
79 * FIX: handling of '/' and ':' in volume name
80 * UPD: Install relevant includes necessary for building programs with
81 installed headers and shared lib libatalk
82 * UPD: libevent configure args to pick up installed version. Removed
83 configure arg --disable-libevent, added configure args
84 --with-libevent-header|lib.
85 * UPD: gentoo initscript: merge from portage netatalk.init,v 1.1
86 * REM: Remove --with-smbsharemodes configure option, it was an
87 empty stub not yet implemented
92 * UPD: afpd: force read only mode if cnid scheme is last
93 * REM: afpd: removed global option "icon"
94 * FIX: CNID path for user homes
99 * UPD: Solaris and friends: Replace initscript with SMF manifest
100 * FIX: Solaris and friends: resource fork handling
105 * UPD: afpd: Performance tuning of read/write AFP operations. New option
106 "afp read locks" (default: no) which disables that the server
107 applies UNIX byte range locks to regions of files in AFP read and
109 * UPD: apple_dump: Extended Attributes AppleDouble support.
110 (*BSD is not supported yet)
112 Changes in 3.0 alpha3
113 =====================
115 * NEW: afpd: Per volume "login message", NetAFP bug ID #18
116 * NEW: afpd: Cross-platform locking (share modes) on Solaris and derivates
117 with Solaris CIFS/SMB server. Uses new Solaris fcntl F_SHARE share
118 reservation locking primitives. Enabled by default, set global
119 "solaris share reservations" option to false to disable it.
120 * NEW: ad: ad set subcommand for changing Mac metadata on the server
121 * UPD: unix charset is UTF8 by default.
122 vol charset is same value as unix charset by default.
123 * UPD: .AppleDesktop/ are stored in $localstatedir/netatalk/CNID
124 (default: /var/netatalk/CNID), databases found in AFP volumes are
126 * FIX: afpd: Server info packet was malformed resulting in broken
127 server names being displayed on clients
128 * FIX: afpd: Byte order detection. Fixes an error where Netatalk on
129 OpenIndiana returned wrong volume size information.
131 Changes in 3.0 alpha2
132 =====================
134 * UPD: afpd: Store '.' as is and '/' as ':' on the server, don't
135 CAP hexencode as "2e" and "2f" respectively
136 * UPD: afdp: Automatic name conversion, renaming files and directories
137 containing CAP sequences to their not enscaped forms
138 * UPD: afpd: Correct handling of user homes and users without homes
139 * UPD: afpd: Perform complete automatic adouble:v2 to adouble:ea conversion
140 as root. Previously only unlinking the adouble:v2 file was done as root
141 * UPD: dbd: -C option removes CAP encoding
142 * UPD: Add graceful option to RedHat init script
143 * UPD: Add --disable-bundled-libevent configure options When set to yes,
144 we rely on a properly installed version on libevent CPPFLAGS and LDFLAGS
145 should be set properly to pick that up
146 * UPD: Run ldconfig on Linux at the end of make install
147 * FIX: afpd: ad cp on appledouble = ea volumes
148 * FIX: dbd: ignore ._ appledouble files
149 * REM: Volumes options "use dots" and "hex encoding"
151 Changes in 3.0 alpha1
152 =====================
154 * NEW: Central configuration file afp.conf which replaces all previous files
155 * NEW: netatalk: service controller starting and restarting afpd and cnid_metad
157 * NEW: afpd: Extended Attributes AppleDouble backend (default)
158 * UPD: CNID databases are stored in $localstatedir/netatalk/CNID
159 (default: /var/netatalk/CNID), databases found in AFP volumes are
161 * UPD: Start scripts and service manifests have been changed to only start
162 the new netatalk service controller process
163 * UPD: afpd: UNIX privileges and use dots enabled by default
164 * UPD: afpd: Support for arbitrary AFP volumes using variable expansion has been
166 * UPD: afpd: afp_voluuid.conf and afp_signature.conf location has been
167 changed to $localstatedir/netatalk/ (default: /var/netatalk/)
168 * UPD: afpd: default server messages dir changed to $localstatedir/netatalk/msg/
169 * UPD: dbd: new option -C for conversion from AppleDouble v2 to ea
170 * REM: AppleTalk support has been removed
171 * REM: afpd: SLP and AFP proxy support have been removed
172 * REM: afpd: legacy file extension to type/creator mapping has been removed
173 * REM: afpd: AppleDouble backends v1, osx and sfm have been removed
178 * FIX: Missing UAM links
179 * FIX: Lockup in AFP logout on Fedora 17
180 * FIX: Reset signal handlers and alarm timer after successfull PAM
181 authentication. Fixes a problem with AFP disconnects caused
182 by pam_smbpass.so messing with our handlers and timer.
183 * FIX: afpd: Fix a possible problem with sendfile on Solaris derived
189 * NEW: afpd: support for mdnsresponder
190 * NEW: afpd: new LDAP config option ldap_uuid_string
191 * UPD: based on Unicode 6.1.0
192 * UPD: experimental systemd service files: always run both afpd and cnid_metad
193 * UPD: afpd: Ensure our umask is not altered by eg pam_umask
194 * UPD: afpd: Use GSS_C_NO_NAME as server principal when Kerberos options -fqdn
195 and -krb5service are not set, from Jamie Gilbertson
196 * UPD: afpd: Changed behaviour for TimeMachine volumes in case there's a problem
197 talking to the CNID daemons. Previously the volume was flagged read-only
198 and an AFP message was sent to the client. As this might result in
199 TimeMachine assuming the backup sparse bundle is damaged, we now just
200 switch the CNID database to an in-memory tdb without the additional stuff.
201 * FIX: afpd: sendfile() on FreeBSD was broken, courtesy of Denis Ahrens
202 * FIX: afpd: Dont use searchdb when doing partial name search
203 * FIX: afpd: Fix a possible bug handling disconnected sessions,
205 * FIX: afpd: Close IPC fds in afpd session child inherited from the afpd
207 * FIX: dbd: Don't remove BerkeleyDB if it's still in use by eg cnid_dbd, fixes
208 bug introduced in 2.2.2
209 * FIX: debian initscript: start avahi-daemon (if available) before atalkd
210 * FIX: Zeroconf could not advertise non-ASCII time machine volume name
215 * NEW: afpd: New option "adminauthuser". Specifying eg "-adminauthuser root"
216 whenever a normal user login fails, afpd tries to authenticate as
217 the specified adminauthuser. If this succeeds, a normal session is
218 created for the original connecting user. Said differently: if you
219 know the password of adminauthuser, you can authenticate as any other
221 * NEW: configure option "--enable-suse-systemd" for openSUSE12.1 and later.
222 "--enable-redhat-systemd" and "--enable-suse-systemd" are same as
224 "--enable-suse" is renamed "--enable-suse-sysv".
225 * NEW: experimental systemd service files in distrib/systemd/
226 * UPD: afpd: Enhanced POSIX ACL mapping semantics, from Laura Mueller
227 * UPD: afpd: Reset options every time a :DEFAULT: line is found in a
229 * UPD: afpd: Convert passwords from legacy encoding (wire format) to host
230 encoding, NetAFP Bug ID #14
231 * UPD: afpd: Don't set ATTRBIT_SHARED flag for directories
232 * UPD: afpd: Use sendfile() on Solaris and FreeBSD for sending data
233 * UPD: afpd: Faster volume used size calculation for "volsizelimit" option,
234 cf man AppleVolume.default for details
235 * FIX: afpd: ACL access checking
236 * FIX: afpd: Fix an error when duplicating files that lacked an AppleDouble
237 file which lead to a possible Finder crash
238 * FIX: afpd: Read-only filesystems lead to afpd processes running as root
239 * FIX: afpd: Fix for filesystem without NFSv4 ACL support on Solaris
240 * FIX: afpd: Fix catsearch bug, NetAFP Bug ID #12
241 * FIX: afpd: Fix dircache bug, NetAFP Bug ID #13
242 * FIX: dbd: Better checking for duplicated or bogus CNIDs from AppleDouble
244 * FIX: dbd: Remove BerkeleyDB database environment after running `dbd`. This
245 is crucial for the automatic BerkeleyDB database upgrade feature which
246 is built into cnid_dbd and dbd.
247 * FIX: Fix compilation error when AppleTalk support is disabled
248 * FIX: Portability fixes
249 * FIX: search of surrogate pair
254 * NEW: afpd: disable continous service feature by default, new option
255 -keepsessions to enable it
256 * NEW: configure option "--enable-redhat-systemd" for Fedora15 and later.
257 "--enable-redhat" is renamed "--enable-redhat-sysv".
258 * UPD: afpd: Enhance ACL support detection for volumes: enable them per volume
260 1) ACL support compiled in, 2) the volume supports ACLs, 3) the new
261 volume option "noacls" is not set for the volume.
262 The previous behaviour was to enable ACL support for a volume if
263 1) it was compiled in and 2) the volume supported ACLs. There was no way
264 to disable ACLs for a volume.
265 * UPD: afpd: add a configurable hold time option to FCE file modification event
266 generation, default is 60 s, new option "fceholdfmod" to change it
267 * UPD: afpd: add support for new NetBSD quota subsystem, Bug ID 3249879
268 * FIX: afpd: increase BerkeleyDB locks and lockobjs
269 * FIX: afpd: create special folder as root
270 * FIX: afpd: fix compilation error if --enable-ddp is used
271 * FIX: afpd: More robust IPC reconnect error handling
272 * FIX: afpd: ACL access checking
273 * FIX: afpd: fix a possible race condition between SIGCHLD handler and
274 new connection attempts
275 * FIX: afpd: fix undefined behaviour when more then ~510 connetions where
277 * FIX: afpd: fix a crash when searching for a UUID that is not a special
278 local UUID and LDAP support is not compiled in
279 * FIX: afpd: .volinfo file not created on first volume access if user in rolist
280 * FIX: afpd: possible crash at startup when registering with Avahi
281 when Avahi is not running
282 * FIX: afpd: return correct user/group type when mapping UUIDs to names
283 * FIX: afpd: for directories add DARWIN_ACE_DELETE ACE
284 if DARWIN_ACE_ADD_SUBDIRECTORY is set
285 * FIX: afpd: afpd crashed when it failed to register with Avahi because eg
286 user service registration is disabled in the Avahi config
287 * FIX: dbd: function checking and removing malformed ad:ea header files failed
288 to chdir back to the original working directory
289 * FIX: cnid_dbd: increase BerkeleyDB locks and lockobjs
290 * FIX: cnid_dbd: implement -d option, deletes CNID db
291 * FIX: dbd: better detection of local (or SMB/NFS) modifications on AFP volumes
292 * FIX: suse: initscript return better status
293 * FIX: Sourcecode distribution: add missing headers
294 * FIX: Solaris 10: missing dirfd replacement function
295 * FIX: case-conversion of surrogate pair
296 * FIX: Compilation error on GNU/kFreeBSD, fixes Bug ID 3392794 and
298 * FIX: Fix Debian Bug#637025
299 * FIX: Multiple *BSD compilation compatibility fixes, Bug ID 3380785
300 * FIX: precompose_w() failed if tail character is decomposed surrogate pair
305 * NEW: afpd: new volume option "nonetids"
306 * NEW: afpd: ACL access check caching
307 * NEW: afpd: FCE event notifications
308 * NEW: afpd: new option "-mimicmodel" for specifying Bonjour model registration
309 * UPD: Support for Berkeley DB 5.1
310 * UPD: case-conversion is based on Unicode 6.0.0
311 * UPD: cnid_metad: allow up to 4096 volumes
312 * UPD: afpd: only forward SIGTERM and SIGUSR1 from parent to childs
313 * UPD: afpd: use internal function instead of popening du -sh in order to
314 calculate the used size of a volume for option "volsizelimit"
315 * UPD: afpd: Add negative UUID caching, enhance local UUID handling
316 * FIX: afpd: configuration reload with SIGHUP
317 * FIX: afpd: crashes in the dircache
318 * FIX: afpd: Correct afp logout vs dsi eof behaviour
319 * FIX: afpd: new catsearch was broken
320 * FIX: afpd: only use volume UUIDs in master afpd
321 * FIX: dbd: Multiple fixes, reliable locking
322 * FIX: ad file suite: fix an error that resulted in CNID database
328 * NEW: afpd: new afpd.conf options "tcprcvbuf" and "tcpsndbuf" to customize
329 the corresponding TCP socket options.
330 * NEW: afpd: new afpd.conf option "nozeroconf" which disabled automatic
331 Zeroconf service registration.
332 * FIX: afpd: generate mersenne primes for DHX2 UAM once at startup,
334 * FIX: afpd: DSI streaming deadlock
335 * FIX: afpd: extended sleep
336 * FIX: afpd: directory cache
337 * FIX: Support for platforms that do not have the *at functions
338 * UPD: afpd: put POSIX write lock on volume files while reading them
343 * FIX: afpd: fix option volsizelimit to return a usefull value for the
344 volume free space using `du -sh` with popen
345 * FIX: afpd: fix idle connection disconnects
346 * FIX: afpd: don't disconnect sessions for clients if boottimes don't match
347 * FIX: afpd: better handling of very long filenames that contain many
348 multibyte UTF-8 glyphs
354 * UPD: afpd: AFP 3.x can't be disabled
359 * FIX: composition of Surrogate Pair
360 * UPD: gentoo,suse,cobalt,tru64: inistscript name is "netatalk", not "atalk"
361 * UPD: gentoo: rc-update install don't hook in the Makefile
366 * UPD: afpd: new option "searchdb" which enables fast catalog searches
368 * UPD: Case-insensitive fast search with the CNID db
369 * UPD: cnid_dbd: afpd now passes the volume path, not the db path when
370 connecting for a volume. cnid_dbd will read the
371 ".AppleDesktop/.volinfo" file of the volume in order to figure
372 out the CNID db path and the volume charset encoding.
377 * NEW: Enhanced CNID "dbd" database for fast name search support.
378 Important: this makes cnidscheme "cdb" incompatible with "dbd".
379 * NEW: afpd: support for fast catalog searches
380 * NEW: ad utility: ad find
381 * UPD: afpd: CNID database versioning check for "cdb" scheme
382 * UPD: cnid_dbd: CNID database versioning and upgrading. Additional
383 CNID database index for fast name searches.
388 * FIX: afpd: various fixes
389 * FIX: Any daemon did not run if atalkd doesn't exist (redhat/debian)
394 * FIX: afpd: fix compilation error when ACL support is not available
395 * FIX: Ensure Appletalk manpages and config files are distributed
400 * NEW: ad utility: ad cp
401 * NEW: ad utility: ad rm
402 * NEW: ad utility: ad mv
403 * NEW: afpd: dynamic directoy and CNID cache (new config option -dircachesize)
404 * NEW: afpd: POSIX 1e ACL support
405 * NEW: afpd: automagic Zeroconf registration with avahi, registering both
406 the service _afpovertcp._tcp and TimeMachine volumes with _adisk._tcp.
407 * UPD: afpd: ACLs usable (though not visible on the client side) without common
408 directory service, by mapping ACLs to UARight
409 * UPD: afpd: performance improvements for ACL access calculations
410 * UPD: AppleTalk is disabled by default at configuration time. If needed
411 use configure switch --enable-ddp.
412 * FIX: afpd: Solaris 10 compatibilty fix: don't use SO_SNDTIMEO/SO_RCVTIMEO,
413 use non-blocking IO and select instead.
414 * FIX: cnid_dbd: Solaris 10 compatibilty fix: don't use SO_SNDTIMEO/SO_RCVTIMEO,
415 use non-blocking IO and select instead.
416 * REM: afile/achfile/apple_cp/apple_mv/apple_rm: use ad
421 * FIX: afpd: Fix for LDAP user cache corruption
422 * FIX: afpd: Fix for not shown ACLs for when filesyem uid or gid
423 couldn't be resolved because (eg deleted users/groups)
424 * FIX: gentoo: cannot set $CNID_CONFIG
425 * FIX: ubuntu: servername was empty
426 * FIX: Solaris: configure script failed to enable DDP module
427 * FIX: AppleDouble buffer overrun by extremely long filename
428 * UPD: afpd: return version info with machine type in DSIGetStatus
429 * UPD: dbd: use on-disk temporary rebuild db instead of in-memory db
430 * UPD: suse: initscript update
435 * UPD: afpd: support newlines in -loginmesg with \n escaping syntax
436 * UPD: afpd: support for changed chmod semantics on ZFS with ACLs
438 * FIX: afpd: fix leaking ressource when moving objects on the server
439 * FIX: afpd: backport Solaris 10 compatibilty fix from 2.2: don't use
440 SO_SNDTIMEO/SO_RCVTIMEO, use non-blocking IO and select instead.
441 * FIX: afpd: misaligned memory access on Sparc in ad_setattr, fixes
443 * FIX: cnid_dbd: backport Solaris 10 compatibilty fix from 2.2: don't
444 use SO_SNDTIMEO/SO_RCVTIMEO, use non-blocking IO and select instead.
449 * FIX: afpd: Downstream fix for FreeBSD PR 148022
450 * FIX: afpd: Fixes for bugs 3074077 and 3074078
451 * FIX: afpd: Better handling of symlinks in combination with ACLs and EAs.
453 * FIX: dbd: Adding a file with the CNID from it's adouble file did
454 not work in case that CNID was already occupied in the database
455 * FIX: macusers: add support for Solaris
456 * NEW: cnid_metad: use a PID lockfile
457 * NEW: afpd: prevent log flooding
458 * UPD: dbd: ignore ".zfs" snapshot directories
459 * UPD: dbd: support interrupting -re mode
464 * FIX: afpd: fix a serious error in networking IO code
465 * FIX: afpd: Solaris 10 compatibilty fix: don't use SO_SNDTIMEO, use
466 non-blocking IO and select instead for writing/sending data.
467 * UPD: Support for BerkeleyDB 5.0.
472 * FIX: afpd: fix for possible crash in case more then one server is
473 configured in afpd.conf.
474 * FIX: afpd: ExtendedAttributes in FreeBSD
475 * FIX: afpd: sharing home folders corrupted the per volume umask.
476 * UPD: afpd: umask for home folders is no longer taken from startup umask.
477 * UPD: afpd: dont and permissions with parent folder when creating new
478 directories on "upriv" volumes.
479 * UPD: afpd: use 'afpserver@fqdn' instead of 'afpserver/fqdn@realm'.
480 Prevents a crash in older GNU GSSAPI libs on eg. CentOS 5.x.
485 * UPD: fallback to a temporary in memory tdb CNID database if the volume
486 database can't be opened now works with the default backend "dbd" too.
487 * FIX: afpd: afp_ldap.conf was missing from tarball. This only effected
489 * FIX: afpd: Check if options->server is set in set_signature, preventing
491 * FIX: afpd: server signature wasn't initialized in some cases
492 * FIX: DESTDIR support: DESTDIR was expanded twice
493 * FIX: Fix for compilation error if header files of an older Netatalk
494 version are installed.
496 Changes in 2.1-release
497 ======================
499 * NEW: afpd: new volume option "volsizelimit" for limitting reported volume
500 size. Useful for limitting TM backup size.
501 * UPD: dbd: -c option for rebuilding volumes which prevents the creation
502 of .AppleDouble stuff, only removes orphaned files.
507 * NEW: afpd: static generated AFP signature stored in afp_signature.conf,
508 cf man 5 afp_signature.conf
509 * NEW: afpd: clustering support: new per volume option "cnidserver".
510 * UPD: afpd: set volume defaults options "upriv" and "usedots" in the
511 volume config file AppleVolumes.default. This will only affect
512 new installations, but not upgrades.
513 * FIX: afpd: prevent security attack guessing valid server accounts. afpd
514 now returns error -5023 for unknown users, as does AppleFileServer.
519 * NEW: afpd: AFP 3.2 support
520 * NEW: afpd: Extended Attributes support using native attributes or
521 using files inside .AppleDouble directories.
522 * NEW: afpd: ACL support with ZFS
523 * NEW: cnid_metad: options -l and -f to configure logging
525 * NEW: AppleDouble compatible UNIX files utility suite `ad ...`.
526 With 2.1 only `ad ls`.
527 * NEW: CNID database maintanance utility dbd
528 * NEW: support BerkeleyDB upgrade. Starting with the next release
529 after 2.1 in case of BerkeleyDB library updates, Netatalk
530 will be able to upgrade the CNID databases.
531 * NEW: afpd: store and read CNIDs to/from AppleDouble files by default.
532 This is used as a cache and as a backup in case the database
533 is deleted or corrupted. It can be disabled with a new volume
534 option "nocnidcache".
535 * NEW: afpd: sending SIGINT to a child afpd process enables debug logging
536 to /tmp/afpd.PID.XXXXXX.
537 * NEW: configure args to download and install a "private" Webmin instance
538 including only basic Webmin modules plus our netatalk.wbm.
539 * NEW: fallback to a temporary in memory tdb CNID database if the volume
540 database can't be opened.
541 * NEW: support for Unicode characters in the range above U+010000 using
542 internal surrogate pairs
543 * NEW: apple_dump: utility to dump AppleSingle and AppleDouble files
544 * NEW: afpldaptest: utility to check afp_ldap.conf.
545 * UPD: atalkd and papd are now disabled by default. AppleTalk is legacy.
546 * UPD: slp advertisement is now disabled by default. server option -slp
548 * UPD: cdb/dbd CNID backend requires BerkeleyDB >= 4.6
549 * UPD: afpd: default CNID backend is "dbd"
550 * UPD: afpd: try to install PAM config that pulls in system|common auth
551 * UPD: afpd: symlink handling: never followed server side, client resolves
552 them, so it's safe to use them now.
553 * UPD: afpd: Comment out all extension->type/creator mappings in
554 AppleVolumes.system. They're unmaintained, possibly wrong and
556 * FIX: rewritten logger
557 * FIX: afpd: UNIX permissions handling
558 * FIX: cnid_dbd: always use BerkeleyDB transactions
559 * FIX: initscripts installation now correctly uses autoconf paths,
560 ie they're installed to --sysconfdir.
561 * FIX: UTF-8 volume name length
562 * FIX: atalkd: workaround for broken Linux 2.6 AT kernel module:
563 Linux 2.6 sends broadcast queries to the first available socket
564 which is in our case the last configured one. atalkd now tries to
566 Note: now a misconfigured or plugged router can broadcast a wrong route !
567 * REM: afpd: removed CNID backends "db3", "hash" and "mtab"
568 * REM: cnid_maint: use dbd
569 * REM: cleanappledouble.pl: use dbd
570 * REM: nu: use `macusers` instead
575 * NEW: afpd: Time Machine support with new volume option "tm".
576 * FIX: papd: Remove variable expansion for BSD printers. Fixes CVE-2008-5718.
577 * FIX: afpd: .AppleDxxx folders were user accessible if option 'usedots'
579 * FIX: afpd: vetoed files/dirs where still accessible
580 * FIX: afpd: cnid_resolve: don't return '..' as a valid name.
581 * FIX: uniconv: -d option wasn't working
586 * REM: remove timeout
587 * NEW: afpd: DHX2 uams using GNU libgcrypt.
588 * NEW: afpd: volume options 'illegalseq', 'perm' and 'invisibledots'
589 'ilegalseq' encode illegal sequence in filename asis, ex "\217-", which is not
590 a valid SHIFT-JIS char, is encoded as U\217 -.
591 'perm' value OR with the client requested permissions. (help with OSX 10.5
592 strange permissions).
593 Make dot files visible by default with 'usedots', use 'invisibledots'
594 for keeping the old behavior, ie for OS9 (OSX hide dot files on its
596 * NEW: afpd: volume options allow_hosts/denied hosts
597 * NEW: afpd: volume options dperm/fperm default directory and file
598 permissions or with server requests.
599 * NEW: afpd: afpd.conf, allow line continuation with \
600 * NEW: afpd: AppleVolumes.default allow line continuation with \
601 * NEW: afpd: Mac greek encoding.
602 * NEW: afpd: CJK encoding.
603 * UPD: afpd: Default UAMs: DHX + DHX2
604 * FIX: afpd: return the right error in createfile and copyfile if the disk
606 * FIX: afpd: resolveid return the same error code than OSX if it's a directory
607 * FIX: afpd: server name check, test for the whole loopback subnet
609 * UPD: afpd: limit comments size to 128 bytes, (workaround for Adobe CS2 bug).
610 * UPD: afpd: no more daemon icon.
611 * UPD: usedots, return an invalide name only for .Applexxx files used by netatalk not
612 all files starting with .apple.
613 * UPD: cnid: increase the number of cnid_dbd slots to 512.
614 * FIX: cnid: dbd detach the daemon from the control terminal.
615 * UPD: cnid: never ending Berkeley API changes...
616 * UPD: cnid: dbd add a timeout when reading data from afpd client.
617 * UPD: cnid: Don't wait five second after the first error when speaking to the dbd
619 * FIX: papd: vars use % not $
620 * FIX: papd: quote chars in popen variables expansion. security fix.
621 * FIX: papd: papd -d didn't write to stderr.
622 * FIX: papd: ps comments don't always use ()
623 * FIX: many compilation errors (solaris, AFS, Tru64, xfs quota...).
628 * NEW: afpd: add a cachecnid option that controls if afpd should
629 use the IDs stored in the AD2 files as cache. Defaults
631 * UPD: afpd: deal with more than 32 groups.
632 * FIX: afpd: several catsearch fixes, based on patch from
634 * FIX: afpd: fix a race when a client very quickly reconnects and
635 tries to kill its old session.
636 * FIX: afpd: OSX style symlink caused problems with Panther clients.
637 * FIX: afpd: old files with default type didn't show the right icon
638 in finder, from Shlomi Yaakobovich, slightly modified.
639 * FIX: cnid_check: disable cnid_check if CNID db was configured with
640 transactions and really bail out after the first error.
641 * FIX: admin-group configure option was broken.
642 * FIX: several problems with IDs cached in AD2 files.
643 * FIX: Ignore BIDI in UTF8 hints from OSX.
644 * FIX: Lots of gcc warning fixes.
645 * FIX: small configure script changes.
651 * NEW: cnid: Add an indexes check and rebuild, optional for dbd
652 (parameter check default no), standalone program cnid_index for
654 * UPD: Enhanced afpd's -v command line switch and added -V for more
656 * UPD: uams_gss: build the principal used by uams_gss.so from afpd's
657 configuration, don't use GSS_C_NT_HOSTBASED_SERVICE
658 * UPD: cnid_dbd: add process id in syslog and small clean up
659 * REM: remove netatalkshorternamelinks.pl cf. SF bug [ 1061396 ]
660 netatalkshorternamelinks.pl broken
661 * FIX: afpd: check for DenyRead on FPCopyFile
662 * FIX: afpd: add missing flush for AD2 Metadata on FPCopyFile, SF bug
663 [ 1055691 ] Word 98 OS 9 Saving an existing file
664 * FIX: afpd: Deal with AFP3 connection and type 2 (non-UTF8) names.
665 reported by Gair Heaton, HI RESOLUTION SYSTEMS
666 * FIX: afpd: Broken 'crlf' option
667 * FIX: afpd: fix SF bug [ 1079622 ] afpd/dhx memory bug,
669 * FIX: afpd: Return an error if we cannot get the db stamp in
671 * FIX: afpd: Fix slp registration with Solaris9 slpd, from
672 hat at fa2.so-net.ne.jp
678 * NEW: --enable-debian configure option. Will install /etc/init.d/atalk
679 to get not in conflict with standard debian /etc/init.d/netatalk.
680 Reads netatalk.conf from $ETCDIR and not from /etc/default/
681 * UPD: Disable logger code by default. Log to syslog instead
682 * UPD: changed netatalk.conf default settings to prevent problems with
683 AppleTalk zone names containing spaces
684 * FIX: insecure tempfile handling bug in etc2ps.sh,
685 found by Trustix, CAN-2004-0974.
686 * REM: remove add_netatalk_printer and netatalk.template from stable
687 branch until fixed. (possible symlink vulnerabilities)
688 * FIX: afpd: set hasBeenInited in default finder info. This bug caused
689 endless finder refreshes with OS9 finder if the noadouble option
690 was used. From TSUBAKIMOTO Hiroya.
691 * FIX: afpd: fix a bug in default CREATOR/TYPE handling. Due to this bug
692 the type/creator mappings in AppleVolumes.system were ignored,
693 causing problems i.e. with OS9 clients.
694 * FIX: AppleVolumes.system: By default don't define a CREATOR/TYPE for a
695 file of unknown type.
696 * FIX: fix two Tru64 UNIX compilation errors,
697 from Burkhard Schmidt bs AT cpfs.mpg.de
698 * FIX: afpd: FPMapId wasn't using UTF8 for groups if requested by client.
703 * UPD: afpd: add an error message if -ipaddr parameter cannot be parsed
704 * UPD: updated documentation
705 * FIX: afpd: fix a file descriptor and memory leak with OSX ._ resource fork
706 * FIX: afpd: Prevent overwriting a file by renaming a file in the same
707 directory to the same name. Won't work with OSX, the dest file gets
708 deleted by OSX first.
709 * FIX: sometimes '0' was used instead of 0 for creator/type
710 * FIX: removed setpgrp check from configure, we don't use it anymore and
711 it doesn't work with cross compile.
712 * FIX: fix for Solaris "make maintainer-clean", from Alexander Barton
713 * FIX: fix username matching bug in afppasswd. from kanai at nadmin dot org
714 * FIX: reworked username check a little. Depending on the UAM, the wrong
715 username _could_ have been selected.
720 * UPD: use 0 0 for default creator/type rather than UNIX TEXT, from
722 * UPD: updated documentation
723 * UPD: change machine type from Macintosh to Netatalk in status reply
724 * FIX: afpd: CopyFile only create a resource fork for destination if source
726 * FIX: afpd: mangling: for utf8 --> max filename length is 255 bytes, else 31.
727 * FIX: cnid_dbd: fix a signed/unsigned, 16/32 bits mismatch. from Burkhard
728 Schmidt, bs at cpfs.mpg.de.
729 * FIX: afpd: After ad_setid don't flush resource fork if it has not been
731 * FIX: NEWS: Fixed ancient NEWS entries. Removed umlauts
732 * FIX: fix macname cache, SF bug 1021642
733 * FIX: revert Makefile change from 2.0-rc1. We have to include BDB_CFLAGS
739 * NEW: new manual page for asip-status.pl
740 * UPD: updated documentation
741 * UPD: uams: link uam_dhx_passwd.so to lcrypt before lcrypto. might help with
743 * UPD: Improved BerkeleyDB detection
744 * UPD: sys/solaris/Makefile.in: enable 'make check', from Alexander Barton
745 * UPD: tcp wrappers detection should work on OpenBSD as well now
746 * UPD: macbin: increase the maximum size of macbinary forks, as suggested by
747 Sourceforge bug ID 829221
748 * UPD: ASP: rework getstatus. use several ASP packets if the client allows
749 it, otherwise just send as much as we can
750 * FIX: FreeBSD 5 build, from Alex Barton (alex at barton.de)
751 * FIX: OSX 10.3 build
752 * FIX: papd: workaround a problem with PJL before Postscript
753 * FIX: afpd: make sure we only disconnect on old session if the users match
754 * FIX: apfd: Quark6 mangled long filenames should work better now
755 * FIX: enhance ADv1 to ADv2 conversion. Fixed a SIGSEGV reported by Mark Baker
756 * FIX: better detection of invalid resource forks
757 * FIX: fix some linking problems on OpenBSD
758 * FIX: afpd: catsearch.c, filedir.c: fix bogus casts, from Olaf Hering
760 * FIX: afpd: don't try to create special folders and .volinfo on read-only
762 * FIX: iconv/unicode enhancements. fixed a sigsegv on conversion error
763 * FIX: configure.in: fix a typo, reported by Joerg Rossdeutscher
764 * FIX: uniconv: enhanced uniconv behaviour
765 * FIX: fixed some Solaris compilation problems
766 * FIX: papd/Makefile.am: add a missing $DESTDIR, from Vlad Agranovsky
767 * FIX: afpd: quota.c: remove a c99 declaration, from Yann Rouillard
768 * FIX: configure.in: Solaris/gcc 3.0 fix, from Yann Rouillard
769 * FIX: afpd: fix a SIGSEGV when sharing home dirs without any options in
771 * FIX: numerous small bugfixes
776 * NEW: atalkd, papd and npb tools now support nbpnames with extended
778 * NEW: integrated CUPS support for papd
779 * NEW: optionally advertise SSH tunneling capabilties
780 * NEW: automatic logfile removal for cnid_metad
781 * NEW: asip-status.pl has been added to netatalk
782 * UPD: updated documentation
783 * UPD: we now require Berkeley DB >= 4.1
784 * UPD: 64bit Linux fixes from Stew Benedict, Mandrakesoft
785 * UPD: remove --enable-sendfile
786 * UPD: more verbose error messages
787 * FIX: better handling for resource forks without read access
788 * FIX: Tru64 build, by Burkhard Schmidt
789 * FIX: MIT Kerberos detection
790 * FIX: varios *BSD compile problems
791 * FIX: compile problem with libiconv, reported by Joe Marcus Clarke
792 * FIX: adv1tov2: make it work with the new structure
793 * FIX: afpd: filenames longer than 127 bytes were not enumerated correctly,
794 reported by Thies C. Arntzen
795 * FIX: afpd: return IP before FQDN in status reply.
796 * FIX: afpd: Mac chooser could crash on a codepage conversion error
797 * FIX: afpd: KerberosV auth with Panther clients, make long AD tickets work,
798 reported by Andrew Smith
799 * FIX: atalkd: could send invalid NBPLKUP replies, e.g with more than 15
800 printers. Reported by Almacha
801 * FIX: papd: fix papd.conf parsing problems with consecutive ':' and missing
802 newline. Reported by Craig White.
803 * FIX: megatron: make megatron work with UTF-8 volumes
804 * FIX: timeout: running timeout with commands which accept arguments,
806 * FIX: uniconv: fix a SEGFAULT, reported by Matthew Geier
807 * FIX: pam detection: PAM_C/LDFLAGS were always empty, from Alexander Barton
808 * FIX: numerous small bugfixes.
813 * NEW: OSX style adouble scheme
814 * NEW: japanese SHIFT_JIS codepage (iconv supplied)
815 * NEW: Solaris kernel module build integrated with configure
816 * NEW: Gentoo start scripts
817 * NEW: cnid_dbd doesn't use transactions by default
818 * FIX: afpd: the volume casefold option was broken
819 * FIX: afpd: update AD2 headers and keep owner on file exchange
820 * FIX: Solaris 9 and FreeBSD 4.9/5.2 compilation
821 * FIX: free space reported with groups quotas on Linux
822 * FIX: OS9/OS X didn't update free space
823 * FIX: finder crash if folder opened got deleted by another process
824 * FIX: randnum UAM wasn't AFP3 ready
825 * FIX: numerous small bugfixes.
827 Changes in 2.0-alpha2
828 =====================
830 * NEW: uniconv tool for converting volume encoding.
831 * NEW: afpd: Make sure getstatus doesn't return loopback address as server IP.
832 * NEW: afpd: Specify USEDOTS with MSWINDOWS implicitely.
833 * NEW: afpd: SRVLOC register with IP address instead of hostname by default,
834 if -fqdn is specified register with FQDN. Added extended character
835 support for SLP, non ASCII characters are escaped Added ZONE to registration.
836 * NEW: atalkd: Make atalkd set interfaces to ALLMULTI on linux by default.
837 * NEW: cnid_metad: Use DB_PRIVATE attribute for dbd backend without transaction.
838 * FIX: afpd: Partial workaround for an OSX client deadlock.
839 * FIX: afpd: Reenumerate folder if db is out of sync in resolveID.
840 * FIX: afpd: Don't modify modification date in copyfile.
841 * FIX: afpd: Variable $v substitution: always use name defined in config files.
842 * FIX: libatalk: Speed optimisation for byte locking was broken on resource fork.
843 * FIX: Solaris 9 compilation.
844 * FIX: Tru64 compilation fixes.
845 * FIX: AFS compilation fixes.
846 * FIX: strncpy bugfix.
847 * FIX: configure, man pages update and small bugfixes.
849 Changes in 2.0-alpha1
850 =====================
852 * NEW: afpd: We now support AFP 3.x, which features long filenames and
854 * NEW: CNID handling completely reworked. We now use per Volume configurable
856 * NEW: Two new daemons, cnid_metad and cnid_dbd to implement the dbd CNID backend.
857 Using Berkeley DB transactions with the CNID database should be safe now.
858 * NEW: The on disk format of the CNID database has changed. We now support 8 byte
859 device and inode numbers and an additinal type field that should make
860 detection of file/directory changes outside of afpd more robust.
861 Changed from HASH to BTREE access which speeds things up in certain cases
862 and reduces database file size.
863 * NEW: Long file name mangling is now implemented using the CNID ID, so no database is
864 required to map names to mangled names. This is the same method Mac OS X uses.
865 * NEW: New format (version 2) for Metadata in AppleDouble files. We record device and
866 inode of the underlying file as well as the CNID. This can be used for recovery
867 and speeds up access to the CNID.
868 * NEW: The old NLS codepage system has been removed. It was replaced by an iconv
869 based conversion system, which provides much more flexibility.
870 * NEW: You can safely use extended characters in volume names and for SIGUSR2 messaging.
871 * NEW: The default volume encoding is UTF-8.
872 * NEW: All documentation is now generated using DocBook. New or completely reworked
873 sections about installing, setting up and upgrading Netatalk replace various
874 README files in the doc directory.
875 * FIX: Protect afpd better against unexpected signals during updates of the CNID
876 database with the cdb backend. This makes database corruption less likely.
877 * FIX: All manpages have been reviewed and should now be up to date.
878 * FIX: Tons of bug fixes since 1.6.4. Please consults the CVS change log for details.
883 * NEW: afpd: Using the mswindows option now implicitly specifies usedots.
885 * UPD: afpd.8: Updated the option documentation.
886 [Thomas Kaiser, Sebastian Rittau]
887 * FIX: configure: Removed broken --with-flock-locks option. [Bjoern Fernhomberg]
888 * FIX: libatalk: Do not log network probe (OSX 10.3). [Didier Gautheron]
889 * FIX: libatalk: Deadlock in signal handlers. [Didier]
890 * FIX: libatalk: Compilation with Linux kernel 2.6 fixed. [Sebastian, Bjoern]
891 * FIX: afpd: Solaris compile issues. [Bjoern]
892 * FIX: afpd: If connection broke in dsi_tickle the child did never die. [Bjoern]
893 * FIX: afpd: Catsearch, fixes a possible segmentation fault. [Bjoern]
894 * FIX: afpd: Compilation issues. [Olaf Hering, Sebastian]
895 * FIX: cnid: Fix compile problems on Tru64. [Burkhard Schmidt]
896 * FIX: megatron: Fixed an uninitialized variable. [Olaf]
897 * FIX: installation: Don't overwrite PAM file if --enable-overwrite configure
898 option is not set. [Sam, Ryan Cleary]
899 * FIX: installation: Fixed BSD installation. [Toru TAKAMIZU]
900 * FIX: docs: Removed ssl-dir/ssl-dirs confusion from doc/INSTALL. [Bjoern]
905 * UPD: afpd: Infrastructural support for an upcoming Kerberos 5 UAM.
907 * UPD: uams_dhx_passwd: Better random seed in Tru64. [Burkhard Schmidt]
908 * FIX: afpd: Bug in AFP connection negotiation stage. [Sam]
909 * FIX: afpd: Catsearch, when Mac and unix name differ, search on attributes.
910 * FIX: afpd: Files could be opened for writing on read-only filesystems.
911 * FIX: afpd: Debugging using SIGUSR1 was broken. [Stefan Muenkner]
912 * FIX: afpd: Segfault after login. [Robby Griffin, Sean Bolton]
913 * FIX: psf: Correct path to etc2ps.sh.
914 * FIX: shell_utils: Don't distribute generated files.
915 * FIX: aecho: -A option didn't work. [Chris Shiels]
916 * FIX: configure: Berkeley DB path detection could be wrong. [Stefan]
917 * FIX: Automake build fixes.
922 * FIX: atalkd: Fixes for reading long configuration file lines. [Dan Wilga]
923 * FIX: afpd: CNID id allocation in a multiuser environment.
924 * FIX: papd: Fix PSSP support when PAM is enabled.
925 * FIX: macusers: Can now cope with IP addresses as well as host names.
926 * FIX: etc2ps.sh: Install correctly.
931 * UPD: Improve --enable-fhs. [Olaf Hering]
932 * UPD: Add BDB 4.1.x support.
933 * UPD: Add more documentation on CNID, as well as list which versions
934 of Berkeley DB are supported.
935 * FIX: Codepage file maccode.koi8-r is now correctly cleaned.
936 * FIX: Fix init script location on SuSE. [Olaf]
937 * FIX: Build fixes. [Olaf, Steven N. Hirsch]
938 * FIX: Various bugs when a user doesn't have access permission to a folder.
939 (Fixes an OSX kernel panic.)
940 * FIX: CNID, folders' DID handling with concurrent access or symlinks.
941 (Fixes an endless loop in afpd.)
946 * FIX: pap looks at the STDOUT file descriptor to see if it's connected to
947 a tty, instead of STDIN.
952 * UPD: Removed --with-catsearch option from configure and enable FPCatSearch
954 * UPD: The dbpath argument does now support variable substitution.
955 * FIX: Build fix for non-GNU-C compilers in libatalk/util/logger.c.
956 * FIX: Two directories with the same name but different case confused the
958 * FIX: The ROOT_PARENT directory could get invalidated.
963 * NEW: Long file name mangling support.
964 * NEW: Improved log file support.
965 * NEW: Server-side find capability ("FPCatSearch")
966 * NEW: Concurrent datastore (CDB) is now the default CNID datastore. This
967 should be heavily tested in a multiuser environment.
968 * NEW: Variable substitution support has been added for the dbpath AppleVolume
970 * UPD: CNID DID handling is now enabled by default.
971 * FIX: Various bug and build fixes as well as code cleanups.
976 * NEW: Allow afpd debugging to be enabled by sending the afpd process
978 * NEW: Allow SLP to be disabled per afpd process by adding a new -noslp flag
980 * FIX: Use server name (if not NULL) for the SLP URL.
981 * FIX: papd: buffer overflow during config file read (Olaf Hering)
986 * FIX: File open read only and then read write (aka pb with Illustrator).
987 * FIX: Problems with unexpected EOF when reading files on a ddp connection
988 Photoshop, old finder.
989 * FIX: --with-nls-dir option does now work
994 * UPD: Extend the --disable-shell-check functionality to ignore users
995 with _no_ shell. Also, send a log message if a user is refused login
996 based on the fact that they have no shell.
997 * UPD: Autoconf updates.
998 * UPD: Tru64 afpd authentication updates.
999 * UPD: As always: lots of minor code cleanups.
1000 * FIX: Problems with Photoshop trying to open image files has been
1002 * FIX: Preserve special permission bits when creating or modifying
1004 * FIX: afp_deleteid() now deletes the specified file and not the parent
1006 * FIX: papd does now announce that it supports binary data to its clients.
1007 * FIX: NetBSD ELF support.
1008 * FIX: acleandir.rc is now installed in the bin directory.
1009 * FIX: megatron does now compile even if compiled with -DDEBUG.
1010 * FIX: Clean up some syslog messages.
1015 * NEW: NetBSD support contributed by David Rankin and NetBSD contributors.
1016 This includes a new configure option --enable-netbsd.
1017 * NEW: Add the -client_polling afpd.conf flag to allow for clients to poll
1018 the server every 10 seconds for open window updates. Currently
1019 this is the only way to get asynchronous directory updates.
1020 * UPD: Use separate macro for AFS configure check.
1021 * UPD: Some Perl scripts are now (partially) auto-generated. This improves
1022 out-of-the-box usage of Netatalk.
1023 * UPD: Solaris Kernel Makefile is now auto-generated. This fixes some path
1024 issues, but isn't perfect, yet. Added some Solaris compatibility
1025 fixes to the Kernel sources, too.
1026 * UPD: CNID DB code sync'd with the current CVS version. NOTE: Using this
1027 code requires you to delete _all_ existing .AppleDB directories in
1028 order to avoid database corruption!
1029 * FIX: The file AppleVolumes.system contained wrong line breaks so that
1030 not all file types were properly recognized.
1031 * FIX: AFS compilation would fail due to a misnamed variable.
1032 * FIX: SLP configure check was wrong so SLP did not compile.
1033 * FIX: Fix the way quotas are handled under certain situations.
1034 * FIX: Do not enable debugging code if debugging option is not set.
1035 * FIX: Some problems with wrongly assigned DIDs were fixed.
1036 * FIX: Various bug fixes and code cleanups.
1041 * NEW: Added a program called cnid_didname_verify that can be used to
1042 verify the consistency of the CNID database.
1043 * NEW: New afpd option: -timeout. Warning: This still doesn't do what it's
1045 * UPD: Code cleanups and compatibility fixes to macusers.
1046 * UPD: AppleVolumes.system was cleaned up.
1047 * FIX: Really fix Tru64 compilation (see last entry).
1048 * FIX: Hand correct error value back to AFP client when deleting files or
1050 * FIX: Leading or trailing spaces are now forbidden on volumes that have
1051 the AFPVOL_MSWINDOWS flag set.
1052 * FIX: Minor code cleanups and warning fixes.
1053 * FIX: Make quota support work on FreeBSD.
1058 * FIX: Compilation on Tru64 systems was broken, since libtool's acinclude.m4
1059 file on the packagers system did not contain the necessary patch.
1060 * FIX: On some systems, atalkd refuses to start, since it couldn't detect
1061 any interfaces. This was caused by an overzealous validity check.
1066 * FIX: contrib/shell_utils/lp2pap.sh was erased when "make clean" was called.
1067 Now we distribute lp2pap.sh.tmpl instead, and lp2pap.sh is automatically
1068 generated during package build.
1069 * FIX: Some platforms (notably Tru64) don't have the snprintf() call, which
1070 was used in etc/afp/afp_config.c. This call was replaced by sprintf()
1071 and prior bounds checking.
1073 Changes from the 1.4b1 release:
1074 ===============================
1076 * Fixed the maximum free/total volume size in afpd.
1078 * Made ~ the default volume in afpd.
1080 * Fixed pid file handling and changed setpgrp() to setpgid() in afpd,
1083 * Added code to afpd to set the Unix file time stamps with utime().
1085 * Fixed a bug in papd's printcap code which limited it to 15 or so
1088 * Fixed papd's handling of piped printers.
1090 * Fixed papd's handling of bad job names.
1092 * Fixed atalkd to send NBP LKUP packets from NBP port.
1094 * Added "sync;sync;sync" to Solaris kinstall to help with streams
1097 * Added nlocalrts to streams ddp.conf. Thanks Thomas Tornblom.
1099 * Fixed signed extension infinite loop in Solaris module.
1101 * Moved all the config files to .../config.
1103 Changes from the 1.3.3 release:
1104 ===============================
1106 * Added code from Sun Microsystems, Inc (OPCOM) for Solaris support.
1109 * Added support for FreeBSD, mostly changes by Mark Dawson and Julian
1112 * All sorts of other stuff.
1114 Changes from the 1.3.1 release:
1115 ===============================
1117 * Added options to psf's filter names to support accounting on HPs.
1118 !!! NOTE: The location of the filters has changed, see the man
1121 * Added code from Alan Cox to support Linux.
1123 * Rewrote papd. Now handles dropped connections better.
1124 Configuration has been modernized. !!! NOTE: The format of the
1125 configuration file has changed, but NOT THE NAME.
1127 * Added Kerberos support to papd.
1129 * atalkd now removes routes on a SIGTERM. Still can't just restart
1130 it, but it's closer.
1132 * Changed atalkd and the kernel driver to remove a hack added to
1133 support sending to 0.255. Now the kernel will allow multiple open
1134 sockets with the same port, so long as the addess associated with
1135 the port is different. atalkd now opens a socket for each port on
1138 * atalkd now rewrites its configuration file. If no configuration
1139 file is given, one will be generated. Permissions on the new
1140 configuration file will be inherited from the old one. If there is
1141 no old one, permissions default to 644. Won't rewrite the file if
1142 the owner doesn't have write permission.
1144 * Removed support for the "AFS Kerberos UAM", in favor of the
1145 "AuthMan UAM". Kerberos support should now be much more
1148 * Fixed a bug in afpd which would cause incorrect group calculations
1151 * Fixed a bug in afpd which causes SimpleText and some other
1152 applications to silently fail to write. There's also a bug in
1153 MacOS, but we can't fix that.
1155 * Fixed a bad interaction with afpd and AFS which would cause file
1156 writes to not propogate between AFS clients.
1158 * !!! CHANGED the name(s) of afpd's config files. The new files are
1159 AppleVolumes.system and AppleVolumes.default. If AppleVolumes.system
1160 exists, it is always read, AppleVolumes.default is only read if the
1161 user has no AppleVolumes file. Included a flag "-u" to indicate
1162 which file has precedence. "-u" user wins, otherwise ".system"
1165 * Rewrote the AppleVolumes parsing code. Now works.
1167 * Added a filename extension mapping to afpd. User always takes
1168 precedence, regardless of the "-u" flag. Code to change the type
1169 of all Unix files contributed by Kee Hinckley <nazgul@utopia.com>.
1171 * afpd now supports both UFS and AFS volumes simultaneously. It also
1172 uses access() to attempt to calculate reasonable Mac permissions
1173 for AFS directories.
1175 * Changed reporting of file times. Files that are written from Unix
1176 now update the Mac's idea of the files modification time. Unix
1177 mtime is now reported instead of ctime.
1179 * Added support for a new UAM to afpd. This requires that client
1180 Macs have MacTCP and AuthMan installed. Should make running afpd
1183 * Removed code so that otherwise valid volumes for which the mounting
1184 user has no permission will appear in the volume selection dialog
1185 on the Mac gray-ed out.
1187 * Added code from Chris Metcalf of MIT to the AppleDouble library
1188 which improves permission inheritance.
1190 * Added code from G. Paul Ziemba of Alantec, Inc to better report
1191 errors in psf. Also changed psf to use syslog for errors that
1192 users aren't interested in.
1194 * Added information to psf's man page to better explain the
1195 interaction between psf, pap, and lpd.
1197 * Make psf/pap/psa do accounting when it's turnes on in
1200 * Changed pap's error message when there is no printer specified on
1201 the command line and no .paprc is found. Also heavily modified
1202 pap's man page to reflect changes in the "new" version of pap,
1203 including moving it from section 8 to section 1.
1205 * Fixed a byte-order bug in pap's sequence numbers. Doubt if pap has
1206 ever worked right on little endian machines!
1208 * Added a flag to pap to optionally close before receiving EOF from
1209 the printer. Off by default. psf calls pap with this option on.
1211 * Added timeouts to the nbp library calls. This means that processes
1212 won't hang when atalkd dies during boot, thus hanging your
1215 Changes from the 1.3 release:
1216 =============================
1218 * Fixed a bug in afpd which would cause APPL mappings to contain both
1219 mac and unix path names. The fixed code will handle the old
1220 (corrupted) database.
1222 * Fixed a *very* serious bug which would cause files to be corrupted
1223 when copying to afpd.
1225 * Fixed a bug in afpd which would cause replies to icon writes to
1226 contain the written icon.
1228 * Filled in the function code switch in afpd. Previously, a hacker
1229 could probably have used afpd to get unauthorized access to a
1230 machine running afpd.
1232 * Fixed a bug in the asp portion of libatalk.a which could cause the
1233 malloc()/free() database to be corrupted.
1235 * Fixed a bug in atalkd's zip query code. With this bug, only the
1236 first N % 255 nets get queried. However, since nets bigger than
1237 255 are usually pretty unstable, the unqueried for nets will
1238 eventually get done, when N drops by one.
1240 * Suppressed a spurious error ("route: No such process") in atalkd.
1242 Changes from the 1.2.1 release:
1243 ===============================
1245 * atalkd is completely rewritten for phase 2 support. atalkd.conf
1246 from previous version will not work!
1248 * afpd now has better AFS support. In particular, the configuration
1249 for AFS was made much easier; a number of Kerberos-related
1250 byte-ordering and time problems were found; clear-text passwords
1251 were added (thanks to geeb@umich.edu).
1253 * afpd now handles Unix permissions much better (thanks to
1256 * There are many, many more changes, but most are small bug fixes.
1258 Changes from the 1.2 release:
1259 =============================
1261 * The Sun support now uses loadable kernel modules (a la VDDRV)
1262 instead of binary patches. As such, it should work on any sunos
1263 greater than 4.1, and is confirmed to work under 4.1.1 and 4.1.2.
1265 * The DEC support no longer requires source. It also runs under
1266 ultrix 4.1 and 4.2. It still requires patching your kernel, but the
1267 patches are limited to those files available to binary-only sites
1268 -- primarily hooks for things like netatalk.
1270 * The etc.rc script now uses changes made to nbprgstr (see below).
1272 * aecho now takes machine names on the command line.
1274 * nbplkup now takes a command line argument specifying the number of
1275 responses to accept. It also takes its defaults from the NBPLKUP
1276 environment variable.
1278 * nbprgstr may be used to register a name at any requested port.
1280 * afpd now logs if an illegal shell is used during login, instead of
1281 silently denying service.
1283 * A bug in afpd which caused position information for the directory
1284 children of the root of a volume to be ignored has been fixed.
1286 * Several typos in afpd which would cause include files necessary to
1287 ultrix to be skipped have been fixed.
1289 * atalkd will no long propagate routes to networks whose zone
1292 * atalkd no longer dumps core if it receives a ZIP GetMyZone request
1293 from a network whose zone it doesn't know. (Since this currently
1294 can only happen from off net, it's not precisely a legal request.)
1296 * pap and papd (optionally) no longer check the connection id in PAP
1297 DATA responses. Both also maintain the function code in non-first-packet
1298 PAP DATA responses. These changes are work-arounds to deal with
1299 certain AppleTalk printer cards, notably the BridgePort LocalTalk
1300 card for HP LJIIISIs.
1302 * pap no longer sends an EOF response to each PAP SENDDATA request,
1305 * A bug in papd which would cause it to return a random value when
1306 printing the procset to a piped printer has been fixed.
1308 * A bug relating to NBP on reverse-endian machines has been fixed.
1310 * atp_rsel() from libatalk now returns a correct value even if it
1311 hasn't recieved anything yet.
1313 * atalk_addr() from libatalk no longer accepts addresses in octal
1314 format, since AppleTalk addresses can have leading zeros. Also it
1315 checks that the separator character is a '.'.
1317 * Pseudo man pages for nbplkup, nbprgstr, and nbpunrgstr, have been
1320 * The example in the psf(8) man page is now correct.
1322 * The man pages for changed commands have been updated.
1324 * The README files for various machine have been updated