FreeBSD 12.1 Release

Introduced The release of FreeBSD 12.1, prepared for amd64, i386, powerpc, powerpc64, powerpcspe, sparc64, armv6, armv7, and aarch64 architectures. Additionally, images have been prepared for virtualization systems (QCOW2, VHD, VMDK, raw) and Amazon EC2 cloud environments.

Key innovations:

  • The core system includes a cryptographic library BearSSL;
  • NAT64 CLAT support (RFC6877) has been added to the network stack, implemented by engineers from Yandex;
  • A trim utility has been added to remove content from Flash blocks using wear leveling algorithms;
  • IPv6 support has been added to bsnmpd;
  • Updated versions of ntpd 4.2.8p13, OpenSSL 1.1.1d, libarchive 3.4.0, LLVM (clang, lld, lldb, compiler-rt, libc++) 8.0.1, bzip2 1.0.8, WPA 2.9, pkg 1.12.0. GNOME 3.28 and KDE 5.16.5 have been updated in the ports;
  • For the i386 architecture, the LLD linker from the LLVM project is activated by default;
  • The kernel logs jail identifiers upon process termination (for processes not in jail, a zero identifier is provided);
  • A redesigned FUSE (File system in USErspace) subsystem has been introduced, allowing the creation of filesystem implementations in user space. The new driver supports the FUSE 7.23 protocol (previously version 7.8, released 11 years ago) and includes code for checking access rights on the kernel side ('-o default_permissions'). VOP_MKNOD, VOP_BMAP, and VOP_ADVLOCK calls have been added, providing the ability to interrupt FUSE operations. Support for unnamed pipes and Unix sockets in fusefs has been added, kqueue can now be used for /dev/fuse, and mount parameters can be updated via 'mount -u'. FUSE exports via NFS have been introduced, RLIMIT_FSIZE tracking has been implemented, and FOPEN_KEEP_CACHE and FUSE_ASYNC_READ flags have been added. Significant performance optimizations and caching improvements have been made;
  • Included is the library libomp (implementation of OpenMP runtime);
  • The list of supported PCI device identifiers has been updated;
  • A cdceem driver has been added, supporting virtual network cards with USB interfaces provided in iLO 5 on HPE Proliant servers;
  • The camcontrol utility has been enhanced with commands to change ATA power consumption modes. The cam subsystem has improved AHCI management and increased compatibility with SES;
  • Warnings about the use of unreliable encryption algorithms when creating partitions via geli have been added;
  • ZFS option 'com.delphix:removing' support has been added to the bootloader;
  • The sysctl net.inet.tcp.rexmit_initial has been added to set the RTO.Initial parameter used in TCP;
  • Support for GRE-in-UDP encapsulation (RFC8086) has been added;
  • The ‘-Werror’ flag in gcc is now disabled by default;
  • The pipefail option has been added to the sh utility, which, when set, incorporates the error code from any application in the call chain into the final return code;
  • The mlx5tool utility has been enhanced with firmware update functions for Mellanox ConnectX-4, ConnectX-5, and ConnectX-6;
  • The posixshmcontrol utility has been introduced;
  • The nvmecontrol utility has a new ‘resv’ command for managing reservation for NVMe;
  • The camcontrol utility now supports block descriptors in the ‘modepage’ command;
  • Two new commands ‘updatesready’ and ‘showconfig’ have been added to the freebsd-update utility;
  • The build modes WITH_PIE and WITH_BIND_NOW have been added;
  • The zfs utility has been enhanced with flags ‘-v’, ‘-n’, and ‘-P’, as well as the ‘send’ command for bookmarks;
  • The bzip2recover utility has been included. Gzip has added support for the xz compression algorithm;
  • Device drivers have been updated, adding support for AMD Ryzen 2 and RTL8188EE;
  • The ctm and timed utilities have been marked as deprecated and will be removed in FreeBSD 13;
  • Starting from FreeBSD 13.0, the CPU type (CPUTYPE) for the i386 architecture will default from 486 to 686 (if needed, builds for i486 and i586 can be manually created).

Source: opennet.ru

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster