Skip to content

Latest commit

 

History

History
330 lines (229 loc) · 7.37 KB

File metadata and controls

330 lines (229 loc) · 7.37 KB

Changes

v2.23.3-4 (UNRELEASED)

  • Update plugins to 0.5.2

v2.23.3-3 (2026-08-30)

  • Update plugins to 0.5.1

v2.23.3-2 (2026-08-21)

  • Update plugins to 0.4.1

v2.23.3-1 (2026-08-14)

  • Import 2.23.3 changes

v2.23.2-1 (2026-07-28)

  • Add perlHtPasswd utility
  • Accept "false" as value for CRON variables
  • Update to 2.23.2
  • Updates from store:
    • crowdsec-filters: add CVE-2026-63030 detection
    • add linagora-lemonldap-ng-plugin-custom-functions
    • pam-access, twake, json-file: fix for future 3.0.0

v2.23.0-2 (2026-07-01)

  • Update pam-access plugin to 0.3.10
  • Update mail-autodiscover plugin to 0.3.11
  • Force useServerEnv=1
  • Add helm chart

v2.23.0-1 (2026-06-17)

  • Use LLNG 2.23.0
  • Replace patches by Linagora store entries when exist
  • Import Crowdsec filter from 2.23.0
  • Install named Crowdsec scenarii
  • Enable autoLoader plugin
  • Install all plugins from https://linagora.github.io/lemonldap-ng-plugins
    • Version: 0.3.8
  • Default to bootstrap5
  • Add Crowdsec statistics patch
  • Update DBD::Patroni

v2.21.4-5 (2026-06-30)

  • Embed MailAutodiscover (not enabled)
  • Force useServerEnv=1

v2.21.4-4 (2026-05-20)

  • Use cached configuration when available if DB is down
  • Update Patroni driver

v2.21.4-3 (2026-05-16)

  • Rebuild with Debian 13.4

v2.21.4-2 (2026-05-14)

  • Import CVE-2026-8503 fix

v2.21.4-1 (2026-04-20)

  • Update to 2.21.4

v2.21.3-4 (2026-03-13)

  • Rebuild with recents Debian updates (imagemagick)
  • Update Nginx configuration

v2.21.3-3 (2026-03-04)

  • Fix updateConf script when value is multiline
  • Improve Patroni patch
  • Add device-pam
  • Add STRICT_SERVER_NAME
  • Add DBD::Patroni
  • Update Crowdsec plugins
  • Add patch for LocationDetect to use any compatible DB
  • Add externalMenu plugin
  • Fix adminLogout

v2.21.3-2 (2025-11-14)

  • Add Twake app-accounts plugin
  • Import 3478 fix (OIDC)
  • Import Patroni
  • Add non-root images

v2.21.3-1 (2025-09-13)

  • Switch to Debian Trixie
  • Switch to PostgreSQL 17
  • Update to 2.21.3

v2.21.2-3 (2025-09-05)

  • Replace adminLogout (MR 644) by MR 722
  • Patch SessionExplorer for nodes with only one dest
  • Import path to fiw Google authentication (mr 777)
  • Import Crowdsec enhancements (mr 784 787 797)
  • add plugin Twake::Wellknown.pm
  • Import 2.21.3 fix

v2.21.2-2 (2025-07-23)

  • Render mail2f accessible via API
  • Fix Loki export in hiperf

v2.21.2-1 (2025-07-11)

  • Install llng client
  • Launch automatically lokiSender when a loki logger is configured
  • Switch to 2.21.2 (with patch due to freeze)

v2.21.1-1 (2025-06-17)

  • Fix introspection patch
  • Add llng pub/sub server
  • Switch to 2.21.1 (with patch due to freeze)

v2.21.0-2 (2025-04-26)

  • Fix prompt=none
  • Add "aud", "iat" and "nbf" into introspection

v2.21.0-1 (2024-04-11)

  • Add sid in userinfo response
  • Update Apache::Session::Browseable::Redis to 1.3.15
  • Update to LLNG 2.21.0

v2.20.2-3 (2024-03-29)

  • Fix CVE-2025-31510

v2.20.2-2 (2024-03-27)

  • Don't use cache when getting a refresh_token
  • Improve global logout by calling portal
  • Add patch for JWKS refresh
  • Add login_hint management
  • Fix Forwarded-For script
  • Add JSON auditLogger (enabled by default)
  • Set "user" when possible in all auditLogs
  • Add loki logger

v2.20.2-1 (2024-02-02)

  • Add "Last-Modified" header for OIDC metadata
  • Add hook to modify refresh_token
  • Fix offline sessions count
  • Add patch for buggy OIDC providers
  • Close conf files
  • Improve logs
  • allow maintainance mode for portal
  • Update to 2.20.2

v2.20.1-1 (2024-11-19)

  • Update to 2.20.1

v2.20.0-4 (2024-11-14)

  • Fix SAML regression
  • Fix Captcha rule bug
  • Add admin global logout
  • Add oidcServiceMetadataTtl

v2.20.0-3 (2024-10-25)

  • Add ReCaptcha v3

v2.20.0-2 (2024-10-22)

  • Fix upstream regression on Nginx handler

v2.20.0-1 (2024-10-21)

  • Drop "none" from OIDC metadata
  • Update to 2.20.0

v2.19.2-1 (2024-09-07)

  • Update to LLNG 2.19.2

v2.19.1-5 (2024-08-31)

  • Update to Debian 12.7

v2.19.1-5 _(2024-08-29)(

  • Add security patch (CVE-2024-45160)
  • Add _ldapsearch command
  • Add Mauritian Creole translation
  • Add LANGUAGES variable

v2.19.1-4 (2024-08-19)

  • add libconvert-pem-perl package into portal
  • add FORWARDED_BY
  • add AUTHBASIC for manager
  • add --json option to lmConfigEditor
  • add message-broker

v2.19.1-3 (2024-08-18)

  • add TLS_CERT_FILE and TLS_KEY_FILE variables
  • preserve requests in RELAY

v2.19.1-2 (2024-08-14)

  • add RELAY variable
  • add reCaptcha plugin

v2.19.1-1 (2024-07-24)

  • update to 2.19.1

v2.19.0-9 (2024-07-15)

  • add sessions-backup task docker
  • add "backup/restore" commands into session cli
  • add "count" command into session cli
  • update default Redis indexes
  • add patch to ignore crowdsec errors
  • don't override other globalStorageOptions keys
  • drop default Nginx website

v2.19.0-8 (2024-06-20)

  • add yadd/lemonldap-ng-cron-task
  • custom cron string

v2.19.0-7 (2024-05-29)

  • add more debug in Back-Channel-Logout

v2.19.0-6 (2024-05-27)

  • 2024-05-27: fix fixedLogout.patch (v2.19.0-6)

v2.19.0-5 (2024-05-22)

  • add yadd/lemonldap-ng-portal-hiperf

v2.19.0-4 (2024-05-21)

  • add libfcgi-engine-perl, libfcgi-procmanager-maxrequests-perl, FCGI::ProcManager::Dynamic

v2.19.0-3 (2024-05-14)

  • Add introspection patch to allow authenticated public client
  • Add OIDC token exchange (internal and Matrix), not enabled by default

v2.19.0-2 (2024-05-09)

  • Update lemonldap-ng-pg to support external DB init (ducnm0711)
  • More logs

v2.19.0-1 (2024-05-04)

  • Update to 2.19.0
  • use "Overlay" configuration backend

v2.18.2-12 (2024-05-02)

  • drop libredis-fast-perl

v2.18.2-11 (2024-05-01)

  • add FixedRedirectOnLogout plugin

v2.18.2-10 (2024-04-26)

  • add llngUserAttributes tool

v2.18.2-9 (2024-04-18)

  • add IgnorePollers plugin
  • add package libhttp-browserdetect-perl for Lemonldap::NG::Portal::Plugins::LocationDetect
  • add DEFAULT_WEBSITE and PROTECTION env var
  • add docker revision in version string
  • fix cache patch
  • add missing Jitsi/logout method
  • add PGSSLCERT=/tmp/postgres.crt
  • add patch to workaround local cache failures
  • add PG_OPTIONS env var
  • Add Jitsi support
  • OIDC Auth PKCE

v2.18.2 (2024-02-12)

  • Add SERVERNAME
  • Add patch to provide applications scope
  • Add patch to fix OIDC logout when any relyong party failed
  • Add fix-dropcsp.patch
  • Add patches to authenticate via JWT on authn endpoint + ANSSI patch

v2.18.1 (2023-12-26)

  • 2023-12-06: add SAML patch to workaround Forgerock bug
  • 2023-11-28: add crowdec in docs

v2.17.2 (2023-11-20)

  • able to redirect on unauthenticated logout
  • clean reloadUrls list
  • add libdbd-cassandra-perl
  • add patch to fix offline/choice (#3018)
  • add YAML support
  • Build alternative "no-s6" and add related tags
  • force create /run/llng-fastcgi-server
  • improve override system (subkeys)
  • import some little security fixes from 2.18.0
  • add experimental LDAP support for configuration
  • add override system for any Lemonldap-NG configuration key
  • keep old /var/lib/lemonldap-ng/cache
  • Add crowdsec parameters
  • Switch to Bookworm
  • JWT type
  • languages API
  • auth by API
  • Propage env variales to FastCGI server
  • revert + add appgrid.patch
  • add libapache-session-mongodb-perl
  • add switch "oidcDropCspHeaders"
  • add libapache-session-ldap-perl
  • update backlogout patch for 2.0.16+ds-4~bpo11+2
  • force rebuild