X-Git-Url: https://ruderich.org/simon/gitweb/?a=blobdiff_plain;f=NEWS;h=5bf933b2a85f1d405162552ba554e465ce17953d;hb=8bfeaaf5e1ea9576bb18d56553b4214ee8b0e79f;hp=c865bc6a39313ba14c3b57ff49420b6c9f5e8119;hpb=bd9cf8a34561bc99951494fe2c6a8f052df413e5;p=tlsproxy%2Ftlsproxy.git diff --git a/NEWS b/NEWS index c865bc6..5bf933b 100644 --- a/NEWS +++ b/NEWS @@ -3,20 +3,35 @@ NEWS 0.X --- + +- Important: The file proxy-dh.pem is now required. tlsproxy-setup creates it, + but running it will overwrite the existing proxy-*.pem files (which will + invalidate all certificate-*-proxy.pem files). To create only proxy-dh.pem + use: + + certtool --generate-dh-params --sec-param high --outfile proxy-dh.pem + - Add -a option, authentication for tlsproxy via basic digest authentication. +- Use pre-generated Diffie-Hellman parameters in proxy-dh.pem. - Code cleanup. - Better error handling. - Fix compile with recent GnuTLS (e.g. 3.2.3). - Improve (error) logging; log to stderr. +- Add (basic) man pages. - Improve test suite. -- tlsproxy-setup: Increase expiry-date and use larger private key. +- tlsproxy-setup: Increase expiry-date and use larger private key, generate + proxy-dh.pem. + 0.2 --- + - Add -u option, passthrough TLS connections to unknown hostnames. - Add ./configure --disable-ipv6 for IPv4 only machines. - Send HTML with error messages (not only headers). + 0.1 --- + - First release.