/[hydra]/hydra/ChangeLog
ViewVC logotype

Annotation of /hydra/ChangeLog

Parent Directory Parent Directory | Revision Log Revision Log


Revision 1.9 - (hide annotations)
Thu Sep 26 14:52:17 2002 UTC (19 years, 2 months ago) by nmav
Branch: MAIN
CVS Tags: hydra_0_0_2
Changes since 1.8: +1 -1 lines
last changes for 0.0.2

1 nmav 1.9 ** Changes from Boa/0.94.13 to Hydra/0.0.2 - 26/09/2002
2 nmav 1.2 * Added support for SSL 3.0 and TLS 1.0 protocols.
3     * Added support for multiple CPU's by making the server
4     run over a pool of threads.
5     * Changed the file caching code. The mmap() calls are cached until
6     the mmap list table is full.
7     * Added support for HTTP/1.1 ranges.
8 nmav 1.4 * Added support for hostname based virtual hosting.
9 nmav 1.5 Also changed the semantics of Alias, ScriptAlias and Redirect, to
10     take advantage of the host based virtual hosting.
11 nmav 1.3 * Added support for the TCP_CORK tcp option in linux.
12     * Cleaned up the CGI handling (gunzip, indexer are treated as CGIs)
13 nmav 1.5 * Enhanced grammer to handle 3 and 4 argument options.
14 nmav 1.7 * Added support for multiple directory indexes.
15     * Dropped support for gunzip.
16 nmav 1.8 * Use automake to create the distribution.
17 nmav 1.2
18 nmav 1.1 ** Changes from 0.94.12 to 0.94.13
19     * Change many instances of log_error_mesg + exit to DIE macro
20     * Change all instance of log_error_mesg (without exit) to WARN macro
21     * do a much better job of checking return values from malloc and
22     especially strdup.
23     * check results of calling umask and getrlimit
24     * server_s is no longer a global int
25     * check results of fork via switch instead of if (fork())
26     * check for getopt.h and include it if found
27     * remove unused #defines, and add WARN macro, and replace
28     many calls to log_error_mesg(..) with WARN macro
29     * fix bug in get_commonlog_time where time_offset calculation was
30     the opposite of what it should be ('-' and '+' were swapped)
31     * fix compatability bug with old and newer versions of flex/yacc
32     * add check for AC_FUNC_MMAP to configure.in
33     * fix really lame thinko in normalize_path, which would prepend the
34     results of earlier calls to results from later calls
35     * Add MaxConnections, a configuration directive which allows the
36     user to specify the maximum number of connections that Boa will
37     accept concurrently.
38     * add SERVER_ADDR and REQUEST_URI to environment of CGI
39     * handle SIGBUS during writes of data that has been memory mapped
40     * minor optimization in select.c that prevents DEAD requests from
41     being added to the block set
42     * fix bug in CGI environment script_name - closes sf.net bug #576725
43     * make 'status' variable local to requests.c, not local to every file
44     by forgetting to declare 'extern' in globals.h :-|
45     * make getsockname non-fatal, and do it every time because we may
46     need it for the CGI
47     * some minor refactoring optimizations in hash.c
48    
49     ** Changes from 0.94.11 to 0.94.12
50     * Renamed Changelog ChangeLog, and moved up to top-level directory
51     * Next 3 items due in part or whole thanks to
52     Liam Widdowson
53     * when printf'ing a pid type, force to int, because it could be
54     something else on other platforms. Should probably change it to
55     a long, and use that.
56     * backported chroot commandline support from 0.95
57     * backported support for strdup, strstr, alphasort, and scandir
58     from 0.95
59     * Fixed src/Makefile.in -- it didn't remove index_dir.o
60     * backport create_temporary_file from 0.95
61     (instead of using tmpnam)
62     * Allow non-standard date format 31 September 2000 23:59:59 GMT
63     Patch by Landon Curt Noll
64     * Skip whitespace before HTTP/major.minor
65     Adapted patch from Landon Curt Noll
66     * open /dev/null first thing (affects chrooting)
67     * properly handle sigalrm -- use sigalrm_flag and sigalrm_run
68     instead of handling the signal in the signal handler
69     * update manpage slightly
70     * send 400 BAD Request when resource does not start with '/'
71     * add grp.h to boa.h's includes -- remove from boa.c and config.c
72     * removed duplicate header includes from boa.c, config.c, get.c,
73     ip.c, request.c, response.c
74     * factor out creating the server socket and dropping privs
75     into create_server_socket and drop_privs
76     * type all functions in boa.c (except main) as static
77     * set umask after opening /dev/null
78     * tie stdin/stdout to /dev/null before commandline parse
79     * removed old, unused chroot code
80     * move builds_needs_escape earlier in the startup
81     * move fork later in the startup
82     * type all c_set_* as static in config.c
83     * don't bother trying to change uid/gid (or error if the
84     requested uid/gid doesn't exist) if not UID 0
85     * return more appropriate error code when foo.html gives
86     access denied, but foo.html.gz gives some other error
87     (essentially report error associated with foo.html, not foo.html.gz)
88     * send NOT Implemented when an unknown method is attempted
89     * always attempt a 32k read right before close
90     (stopgap until blackhole can be merged)
91     * allow more than 1 space in logline between method, resource,
92     and http version
93     * don't use inline functions
94     * update configure.in so that autoconf 2.50 doesn't complain (as much)
95     * properly use VPATH and srcdir according to autoconf docs
96     * change curly-braces to parentheses in Makefilein
97     * use $^ instead of manually listing the dependencies in Makefile.in
98     * remove tests section in Makefile.in
99     * write tags not TAGS in Makefile.in
100     * Add gethostbyname and inet_aton to function checks
101     * Add code from 0.95 which checks for socket in -lsocket,
102     inet_aton in -lresolv, and gethost{by}name in -lnsl
103     * Also remove broken bc-based "how big is an unsigned int" checks:
104     assume minimum of 32 bits and check in escape.c at runtime.
105     * Added new file: README.chroot.solaris, based on a
106     modified version by Liam Widdowson
107     * Add check_struct_for.m4, which allows us to check a structure
108     for a member (found at http://www.gnu.org/software/ac-archive/
109     authored by Wes Hardaker
110     * Call "aclocal -I ." to rebuild aclocal.m4
111     * Using new check-struct-for-member autoconf macro, check
112     for tm_gmtoff and tm_zone in struct tm -- useful in
113     portability tests for localtime.
114     * Also check sockaddr_in for structure sin_len so we can set
115     it properly.
116     * index_dir.c (which ends up in boa_indexer) can now be compiled
117     with USE_LOCALTIME, and if so, it will report the local time
118     using the timezone name. Otherwise it uses UTC time and UTC
119     timezone designation.
120     * fix buglet in mmap_cache.c which shows up when under
121     heavy load by many different files.
122     Found and squashed by Michal Kara
123     * normalize paths on Aliases, log files, server root, dirmaker
124     This makes sure that paths are 'absolute'
125     * don't generate DOCUMENT_ROOT or SERVER_ROOT,
126     CGIs have no business knowing that information
127     * if CGI, chdir to the cgi's root path
128     Bug found by Matt Callaway
129     * remove ChrootPath and PidFile directives from the parser
130     (they aren't used anyway)
131     * keep track of maximum file descriptor in use to optimize call
132     to select()
133     * apply IPv6 patch from Jari Korva
134     * optimize keep-alive copy data routine
135     * try to use memcpy instead of strcpy/strcat in more places (alias.c)
136     * update .depend file
137     * use fcntl + GET_FL to get a file descriptor's flags, then
138     add or remove only the bits we want to set. This prevents
139     accidentally setting or unsettings bits we don't have anything
140     to do with inadvertantly. (removed, at least temporarily.
141     Show me a system where it is needed -- LRD)
142     * make sure to call FD_ZERO when we handle a restart
143     * in read.c, don't call boa_perror on read failure -- socket is
144     dead or messed up anyway, no reason to try to write to it.
145     * explicit .SUFFIXES in Makefile.in
146     * boa.objdump target added
147     * use @MAKE_SET@ (for when $(MAKE) != "make")
148     * add -Wundef -Wwrite-strings -Wredundant-decls -Winline to GCC_FLAGS
149     * change Paul Phillips' and Larry Doolittle's emails in source
150     * add --disable-debug, --enable-profile, --with-dmalloc, and --with-efence
151     * test for failed-but-return-was-successful setuid:
152     http://www.securityfocus.com/bid/1322
153     * use _exit not exit in CGI child
154     * always place new keepalive request on blocked list, we can't be
155     sure of the state of the active list, and since enqueue places
156     things at the *front* of the list, it doesn't do us much good
157     to place the new request on the active list anyway.
158     * update some Copyright statements for 2002
159     * When comparing the uri to an alias, only compare if
160     the uri length is greater than or equal to the length of the alias
161     * in init_script_alias, make sure to check for document_root before
162     trying to use it
163     * script_name is now just a copy of the request, rather
164     than some complicated variation on the pathname
165     * change the way the CGI environment is handled.
166     Now, it is allocated at request allocation time, and exists
167     throughout the life of the structure.
168     * check memory allocations, etc.. when creating the static
169     CGI environment and when making new CGI environment variables
170     * wait until process_option_end to call unescape_uri, clean_pathname,
171     and translate_uri
172     * remove debian package information
173     * move RedHat packaging information to contrib
174     * remove tests -- they weren't usable anyway
175     * add some new hash routines, and use djb2 (a variant on a
176     hash algorithm popularized by Dan J. Bernstein)
177     * a side-effect of the new hash routines is a bugfix,
178     involving negative return values from hash routines.
179     This has been fixed.
180     * add a routine, show_hash_stats, which is called with other
181     statistical output via sigalarm
182     * remove some duplicate prototypes from config.c
183     * make simple_itoa take an unsigned int
184     * try to make NOBLOCK handling in compat.h compatible with Solaris
185     * make sure to update current_time before calling signal handlers
186     * alter primary loop to make sure that select gets called even
187     when there are requests that are not blocking, and call fdset_update
188     and process_requests (when appropriate) after signal handlers but
189     before select to make sure that blocked requests are still handled
190     by select after a sighup. (Thanks to Karl Olsen)
191     * pull select loop into select.c
192     * poll server socket once per active connection
193     * add send_r_service_unavailable and use it when appropriate
194     * state uptime in seconds at normal program termination
195     * include sys/fcntl.h if it is found by configure
196     * fix POST bug where a content-length < 0 would cause Boa to
197     consume its full share of CPU until killed
198     Bug report by Landon Curt Noll
199     * add CGIPath configuration variable
200     based upon a patch by Landon Curt Noll
201     * add function boa_atoi, which wraps atoi, but does not
202     accept negative values. Additionally, it checks to make sure
203     the converted value and the original value are the same, avoiding
204     issues like "124.3" -> "123" and "123abc" -=> "123".
205     Either a value is an int or it isn't - no middle ground.
206     * use boa_atoi to convert content-length from client.
207     * add new #define - SINGLE_POST_LIMIT_DEFAULT, which defines
208     (in bytes) the *default* single_post_limit.
209     * single_post_limit is now in bytes.
210     * when adding aliases, only "normalize" paths that start
211     with "./" - this is a departure from previous behavior
212     * add "?" to the list of characters that it is safe to leave unescaped
213     * clean up Makefile.in of no-longer-pertinent comments
214     * add send_r_bad_gateway and use it
215     * tie stderr to either cgi_log_fd or devnullfd - either way
216     make sure stderr is a valid filehandle before cgi execution
217     * cgi_env is no longer allocated, it's part of the struct now
218     * fix bug in CgiPath logic
219     * when unable to allocate memory for an environment variable, log it
220     * add clear_common_env, which de-allocates the cgi_common_env stuff
221     [NEVER USE THIS outside of a terminal signal handler!]
222     * don't be so wasteful of memory in normalize_path
223     * adapted fix for alias expansion from Brieuc Jeunhomme
224    
225     ** Changes from 0.94.10.1 to 0.94.11
226     * use LIBS in Makefile.in (which propagates from autoconf)
227     * properly free memory allocated by scandir in index_dir.c
228     * rearrange some header files and includes
229     * on reads and writes, don't check for -1, check for < 0
230     * include fix by William Meadows
231     for escape.c which fixes segfaults due to improper allocation
232     * above fix by William Meadows no longer needed;
233     escape.c and escape.h rewritten by Larry Doolittle -- requires
234     at least 32 bit words, but is correct (jdn's 1st attempt was faulty)
235    
236     ** Changes from 0.94.10 to 0.94.10.1
237     * Actually update the SERVER_VERSION in src/defines.h
238    
239     ** Changes from 0.94.9 to 0.94.10
240     * Fixes escaping rules
241     * Fixes segfault when directory_index is undefined and
242     directory needs to be generated
243     * adds dummy signal handlers for SIGUSR1 and SIGUSR2 (Closes SF #425921)
244     * Update documentation regarding mime.types (Closes Debian #69991)
245     * Make sure documentation builds (Closes Debian #110818)
246    
247     ** Changes from 0.94.8.3 to 0.94.9
248     * src/Makefile.in updated to take CFLAGS, LIBS, and LDFLAGS
249     from autoconf
250     * Update escaping rules with latest RFC
251     * unescape_uri skips fragments and also stop parsing at '?'
252     * Don't accept fd over FD_SETSIZE in request.c:get_request
253     * use backported documentation from 0.95
254     * make sure POST fd gets closed even on client cancel
255     * use backported index_dir.c from 0.95
256     * support subdirectories in ScriptAlias directories
257     * add SinglePostLimit (int, in Kilobytes) to config system
258     * check for ENOSPC on body write
259     * use environment variable TMP (or "/tmp" if not available),
260     and chdir there when boa exits.
261     * add 1-time-only hack to make a 32kB read at the end of a request
262     on POST or PUT
263     * close unused file descriptors (/dev/null in boa.c, and the
264     unused part of the pipes call in cgi.c)
265     * made Makefile.in VPATH happy
266    
267     ** Changes from 0.94.8.2 to 0.94.8.3
268     * Move unescape_uri *before* clean_pathname to prevent
269     encoding of / and .. in pathname
270     * wrap execution of GUNZIP in cgi.c with #ifdef GUNZIP
271     * stop parsing when fragment found in URL ('#')
272    
273     ** Changes from 0.94.8.1 to 0.94.8.2
274     * close pipes[1] in child and generate HTTP_REFERER environment
275     variable in cgi.c
276     * Minor changes to the Debian package
277    
278     ** Changes from 0.94.8 to 0.94.8.1
279     * Change umask call from (umask(0600)) to (umask(~0600))
280    
281     ** Changes from 0.94.7 to 0.94.8
282     * Fix major thinko in temp file permissions
283     * unlink temporary file immediately following creation
284     * implement maximum # of active connections at 10 less than RLIMIT_NOFILE
285     to avoid or eliminate crashes resulting from running out of
286     file descriptors
287     * Fix thinko in POST
288    
289     ** Changes from 0.94.6 to 0.94.7
290     * STDIN and STDOUT are now tied to /dev/null
291     * sets PATH_MAX to 2048 if not defined (for Hurd)
292     * core dumps (should never happen) would be located in /tmp
293     * alter behavior when select gets a EBADF
294     * add translation for the \" char -> &quot;
295     * remove use of sys_errlist. Use perror.
296     * better makedist.sh (still a stupid program though)
297    
298     ** Changes from 0.94.5 to 0.94.6
299     * Removed doc++ commenting
300     * Removed erroneous debugging statments
301     * Move some stuff out of config.c (read_config_file) to boa.c
302     * Altered some of fixup_server_root()
303     * Bug fix in get.c re: automatic gunzip
304     * Added some stubs for chroot code (*not* ready yet)
305    
306     ** Changes from 0.94.4 to 0.94.5
307     * Alteration of most of the comments and such for doc++ use
308     * Fixed buffer overflow in alias.c
309     * Fixed buffer underflow in util.c
310    
311     ** Changes from 0.94.3 to 0.94.4
312     * Better escaping of data to user, both for HTTP headers and HTML body
313     * Proper escaping of output in CGI example perl scripts
314    
315     ** Changes from 0.94.0 to 0.94.2
316     * Fixed obnoxious pipeline bug
317     * Fixed (sorta) a compilation/core bug for *BSD systems
318     Original code by Thomas Neumann
319     * Moved to GPLv2
320     * Changed manpage to section 8
321     * boa.sgml now references a .png file instead of evil .gif
322    
323     ** Changes from 0.93.19.2 to 0.94.0
324     * Added UseGMT to the configuration parser
325     * util.c commonlog now logs in Apache-style commonlog time format
326     * Remove SO_SNDBUF on-start message
327    
328     ** Changes from 0.93.19 to 0.93.19.2
329     * Changed to combined log (from NCSA access_log format) ala Drew Streib
330     * Altered POST cgi code to handle bug in Netscape
331     * SO_SNDBUF changes by Larry
332    
333     ** Changes from 0.93.17.2 to 0.93.19 (all 0.93.18.x changes inclusive)
334     * Update of some copyright statements for 99
335     * Replacement of sprintf with strlen/memcpy or strcpy/strcat
336     wherever possible
337     * Significant rearrangement in alias.c, minor functional differences
338     (some CGI environment variables handled differently)
339     * Removal of die function. Replace with log_err_mesg and exit.
340     * initial IPv6 stubs and support
341     * Move #include "config.h" to top of boa.h where it will do some good
342     * Stubs and functions for strstr and strdup
343     * Seperation of buffer code into it's own file
344     * Significant changes to cgi.c et al (cgi_header.c, etc...)
345     * Speed patches by removal of "extra" calls to time(): Use global variable!
346     * pipelining changes... it works now.
347     * require content-length from clients (ala rfc1945)
348     * alter body_read and body_write to work more efficiently with known content-length
349     * move read(2) part to *after* parsing...
350     * added support for additional header message in send_redirect_temp
351     * change use of NO_ZERO_FILL_LENGTH to offsetof() use
352     * Remove SO_REUSEADDR setting on each client socket, Paul Saab
353     * Avoid SO_SNDBUF setting if possible
354     * Large quantities of otherwise not-insignificant changes
355    
356     ** Changes from 0.93.17.2 to 0.93.17.3
357     * Put on-the-fly directories back in, stripped down from the 0.92 version
358     * Fixed DocumentRoot, ServerAdmin and ServerName null-value handling in
359     CGI environment generation
360     * Fixed argument order in Script* directives (bug introduced in 0.93.17.2)
361     * Got rid of MAX_CGI_VARS because it was not being used consistently, or
362     for that matter, at all, really.
363     * Added some more FASCIST_LOGGING to cgi.c
364     * Minor mmap patch by LRD for request.c
365    
366     ** Changes from 0.93.17.1 to 0.93.17.2
367     * Added "Listen" directive for server bind address, as most recently
368     suggested by David N. Welton
369     * Put virtualhost feature in, was experimental in 0.92q
370    
371     ** Changes from 0.93.16.2 to 0.93.17.1
372     * New config file parser (supposed to be more maintainable) (LRD)
373     * Support for "|command" and ":host:port" syntax for logfiles (untested) (LRD)
374    
375     ** Changes for the 0.93 version **
376     * Huge quantities of changes
377     * keepalive Bugfix in 0.93.16.2 by Jon Nelson
378     report by Craig Silverstein of Google fame.
379     * patch for config.h by Craig Silverstein
380     * fixed "Parent Directory" problem in boa_indexer for title "/"
381     (Debian bug #36165)
382     * More Craig Silverstein
383     modifications, namely:
384     ErrorLog (if omitted, print to stderr)
385     DocumentRoot (if omitted, can only server user-dir files)
386     DirectoryIndex (if omitted, always use DirectoryMaker)
387     MimeTypes (if omitted, don't load -- users can use AddType instead)
388    
389    
390     ** Changes from v0.92o to v0.92p **
391    
392     * Documented misbehavior of CGI, SIGHUP, short aliases, stale dircache.
393     * Documented how to patch signals.c for use on SunOS.
394     * Closed file descriptor leak when redirecting a bare directory URL to
395     one with an appended "/".
396     * Closed potential file descriptor leak if errors encountered generating
397     on-the-fly index.
398     * Cleaned up include file handling to be simultaneously compatible with
399     Linux, SunOS, HP-UX, and AIX.
400     * Supress message body for codes 302, 400, 403, 404, 500, and 501 if
401     incoming request is "HEAD".
402    
403     ** Changes from v0.91 to v0.92o **
404     (0.92o released 27 December, 1996)
405    
406     * Maintenance handover from Paul Phillips to Larry Doolittle
407     * Changed (char)NULL to '\0'
408     * Cleaned up signal handler prototypes in signals.c
409     * Modified handling of CGI environment variable PATH_TRANSLATED,
410     should now work the same as NCSA.
411     * More conservative buffer size in add_cgi_env()
412     * Build argv list for a CGI script according to spec
413     * Speedup process_header_line, eliminate potential memory leak
414     * Occasional spelling fixes and lint removal
415     * Added REMOTE_PORT env var for CGI scripts, to allow easy ident lookups
416     * Changed rfc822 time format
417     * Log timeouts and broken connections
418     * Fix mime suffix handling for filenames with multiple "."s
419     * Initialize conn->time_last, fixes bug with rapid-fire connections
420     * Performance tweak to req_write()
421     * Changed http_version from float to char[8]
422     * Rewrote on-the-fly directory generation; it works now
423     * Added user configurable dircache directory in boa.conf
424     * Fixed "simple" response bugs, including incorrect CGI handling
425     * Keepalive (HTTP/1.1 draft) support, mostly by Jon Nelson
426     * Close data_fd in 304 Not Modified flow of control
427     * Switch socket flags to non-blocking before cgi handoff
428     * Try to handle errno properly in the face of multiple errors
429     * Close fd's of all other transactions before cgi handoff
430     * Move real work for sighup and sigchld out of signal handler
431     * Fix free(req->cgi_env) in request.c
432     * Response message cleanup - better match to HTML-2.0 DTD
433     * Experimental Virtual Host code from Russ Nelson
434     * Expand buffer for escaped URI in init_get()
435     * SIGTERM triggers lame duck mode until all pending transactions complete
436     * Close and unlink temp file for POST in parent process
437    
438     ** Changes from v0.90 to v0.91 **
439    
440     * Cleaned up main while loop
441     * Optimized request line parsing
442     * Added state machine for header reads -- necessary to deal wtih
443     possibility of obtaining header data in multiple reads. This
444     also allows interactive use of server.
445     * Added 500/501 return codes for various conditions
446    
447     ** v0.90 **
448    
449     * Initial release
450    

webmaster@linux.gr
ViewVC Help
Powered by ViewVC 1.1.26