xref: /freebsd-13.1/UPDATING (revision d330c24c)
1 Updating Information for FreeBSD stable/13 users.
2
3This file is maintained and copyrighted by M. Warner Losh <[email protected]>.
4See end of file for further details.  For commonly done items, please see the
5COMMON ITEMS: section later in the file.  These instructions assume that you
6basically know what you are doing.  If not, then please consult the FreeBSD
7handbook:
8
9    https://www.freebsd.org/doc/en_US.ISO8859-1/books/handbook/makeworld.html
10
11Items affecting the ports and packages system can be found in
12/usr/ports/UPDATING.  Please read that file before updating system packages
13and/or ports.
14
1520211003:
16	Commit a599f9f7620b deleted the variable called nfs_maxcopyrange
17	from nfscommon.ko, since it no longer needs to be global.  As such,
18	the other nfs modules must be rebuilt from up to date sources.
19	Bump __FreeBSD_version to 1300516 for this.
20
2120210823:
22	As of commit 622809b0868f OpenSSL no longer enables kernel TLS
23	by default.  Users can enable kernel TLS via the "KTLS" SSL
24	option.  This can be enabled globally by using a custom
25	OpenSSL config file via OPENSSL_CONF or via an
26	application-specific configuration option for applications
27	which permit setting SSL options via SSL_CONF_cmd(3).
28
2920210803:
30	Commits 9fb6e613373c and 9ec7dbf46b0a both changed the internal
31	KAPI between the NFS modules.  Bump __FreeBSD_version to 1300514.
32	All NFS modules must be rebuilt from sources.
33
3420210730:
35	Commit b69019c14cd8 removes pf's DIOCGETSTATESNV ioctl.
36	As of be70c7a50d32 it is no longer used by userspace, but it does mean
37	users may not be able to enumerate pf states if they update the kernel
38	past c021ff986e2b without first updating userspace past be70c7a50d32.
39
4020210718:
41	Bump __FreeBSD_version to 1300512 after merging LinuxKPI, OFED,
42	net80211, and driver changes in order to support building
43	Intel wireless iwlwifi drivers.  This is especially needed for
44	drm-kmod which needs updates after this.
45
4620210715:
47	The 20210707 awk update brought in a change in behavior. This has
48	been corrected as of d4d252c49976. Between these dates, if you
49	installed a new awk binary, you may not be able to build a new
50	kernel because the change in behavior affected the genoffset
51	script used to build the kernel. If you did update, the fix is
52	to update your sources past the above hash and do
53		% cd usr.bin/awk
54		% make clean all
55		% sudo -E make install
56	to enable building kernels again.
57
5820210711:
59	Commit 8a04edfdcbd2 changes the default minor version
60	used for NFSv4 mounts to the highest minor version supported
61	by the NFSv4 server.  This default can be overridden by using
62	the "minorversion" mount option.
63	The consensus of a discussion on freebsd-current@ indicated
64	that this would be acceptable to do and would not be considered
65	a POLA violation.
66
6720210710:
68	awk has been updated to the latest one-true-awk version 20210215.
69	This contains a number of minor bug fixes.
70
7120210630:
72        Commit ca179c4d74f2/632e3f2f3a66 changed the package in which
73	the OpenSSL libraries and utilities are packaged.
74        It is recommended for pkgbase user to do:
75        pkg install -f FreeBSD-openssl
76        before pkg upgrade otherwise some dependencies might not be met
77        and pkg will stop working as libssl will not be present anymore
78        on the system.
79
8020210626:
81	Commit 841006678745 changed the internal KAPI between the krpc
82	and nfsd modules.  As such, they must both be rebuilt from
83	sources.
84	__FreeBSD_version is bumped to 1300510.
85
8620210510:
87	Commit 272f39942254 changed the internal KAPI between the
88	nscl.ko and nfscommon.ko modules, so they both need to be
89	rebuilt from sources.
90
9120210429:
92	Commit 5a45802b3c8c changed the internal KAPI between
93	the krpc and NFS.  As such, the krpc, nfscommon and
94	nfscl modules must all be rebuilt from sources.
95	Without this patch, NFSv4.1/4.2 mounts should not
96	be done with the nfscbd(8) daemon running, to avoid
97	needing a working back channel for server->client RPCs.
98
9920210202:
100	Various LinuxKPI functionality was added which conflicts with DRM.
101	Please update your drm-kmod port to after the __FreeBSD_verison 1300139
102	update.
103
10420210122:
105	The stable/13 branch has been created from main.
106
10720210108:
108	PC Card attachments for all devices have been removed. In the case of
109	wi and cmx, the entire drivers were removed because they were only
110	PC Card devices. FreeBSD_version 1300134 should be used for this
111	since it was bumped so recently.
112
11320210107:
114	Transport-independent parts of HID support have been split off the USB
115	code in to separate subsystem.  Kernel configs which include one of
116	ums, ukbd, uhid, atp, wsp, wmt, uaudio, ugold or ucycom drivers should
117	be updated with adding of "device hid" line.
118
11920210105:
120	ncurses installation has been modified to only keep the widechar
121	enabled version.  Incremental build is broken for that change, so it
122	requires a clean build.
123
12420201223:
125	The FreeBSD project has migrated from Subversion to Git. Temporary
126	instructions can be found at
127	https://github.com/bsdimp/freebsd-git-docs/blob/main/src-cvt.md
128	and other documents in that repo.
129
13020201216:
131	The services database has been updated to cover more of the basic
132	services expected in a modern system. The database is big enough
133	that it will cause issues in mergemaster in Releases previous to
134	12.2 and 11.3, or in very old current systems from before r358154.
135
13620201215:
137	Obsolete in-tree GDB 6.1.1 has been removed.  GDB (including kgdb)
138	may be installed from ports or packages.
139
14020201124:
141	ping6 has been merged into ping.  It can now be called as "ping -6".
142	See ping(8) for details.
143
14420201108:
145	Default value of net.add_addr_allfibs has been changed to 0.
146	If you have multi-fib configuration and rely on existence of all
147	interface routes in every fib, you need to set the above sysctl to 1.
14820201030:
149	The internal pre-processor in the calendar(1) program has been
150	extended to support more C pre-processor commands (e.g. #ifdef, #else,
151	and #undef) and to detect unbalanced conditional statements.
152	Error messages have been extended to include the filename and line
153	number if processing stops to help fixing malformed data files.
154
15520201026:
156	All the data files for the calendar(1) program, except calendar.freebsd,
157	have been moved to the deskutils/calendar-data port, much like the
158	jewish calendar entries were moved to deskutils/hebcal years ago. After
159	make delete-old-files, you need to install it to retain full
160	functionality. calendar(1) will issue a reminder for files it can't
161	find.
162
16320200923:
164	LINT files are no longer generated. We now include the relevant NOTES
165	files. Note: This may cause conflicts with updating in some cases.
166	        find sys -name LINT\* -delete
167	is suggested across this commit	to remove the generated	LINT files.
168
169	If you have tried to update with generated files there, the svn
170	command you want to un-auger the tree is
171		cd sys/amd64/conf
172		svn revert -R .
173	and then do the above find from the top level. Substitute 'amd64'
174	above with where the error message indicates a conflict.
175
17620200824:
177	OpenZFS support has been integrated. Do not upgrade root pools until
178	the loader is updated to support zstd. Furthermore, we caution against
179	'zpool upgrade' for the next few weeks. The change should be transparent
180	unless you  want to use new features.
181
182	Not all "NO_CLEAN" build scenarios work across these changes. Many
183	scenarios have been tested and fixed, but rebuilding kernels without
184	rebuilding world may fail.
185
186	The ZFS cache file has moved from /boot to /etc to match the OpenZFS
187	upstream default. A fallback to /boot has been added for mountroot.
188
189	Pool auto import behavior at boot has been moved from the kernel module
190	to an explicit "zpool import -a" in one of the rc scripts enabled by
191	zfs_enable=YES. This means your non-root zpools won't auto import until
192	you upgrade your /etc/rc.d files.
193
19420200824:
195	The resume code now notifies devd with the 'kernel' system
196	rather than the old 'kern' subsystem to be consistent with
197	other use. The old notification will be created as well, but
198	will be removed prior to FreeBSD 14.0.
199
20020200821:
201	r362275 changed the internal API between the kernel RPC and the
202	NFS modules. As such, all the modules must be recompiled from
203	sources.
204
20520200817:
206	r364330 modified the internal API used between the NFS modules.
207	As such, all the NFS modules must be re-compiled from sources.
208
20920200816:
210	Clang, llvm, lld, lldb, compiler-rt, libc++, libunwind and openmp have
211	been upgraded to 11.0.0.  Please see the 20141231 entry below for
212	information about prerequisites and upgrading, if you are not already
213	using clang 3.5.0 or higher.
214
21520200810:
216	r364092 modified the internal ABI used between the kernel NFS
217	modules.  As such, all of these modules need to be rebuilt
218	from sources, so a version bump was done.
219
22020200807:
221	Makefile.inc has been updated to work around the issue documented in
222	20200729. It was a case where the optimization of using symbolic links
223	to point to binaries created a situation where we'd run new binaries
224	with old libraries starting midway through the installworld process.
225
22620200729:
227	r363679 has redefined some undefined behavior in regcomp(3); notably,
228	extraneous escapes of most ordinary characters will no longer be
229	accepted.  An exp-run has identified all of the problems with this in
230	ports, but other non-ports software may need extra escapes removed to
231	continue to function.
232
233	Because of this change, installworld may encounter the following error
234	from rtld: Undefined symbol "regcomp@FBSD_1.6" -- It is imperative that
235	you do not halt installworld. Instead, let it run to completion (whether
236	successful or not) and run installworld once more.
237
23820200627:
239	A new implementation of bc and dc has been imported in r362681. This
240	implementation corrects non-conformant behavior of the previous bc
241	and adds GNU bc compatible options. It offers a number of extensions,
242	is much faster on large values, and has support for message catalogs
243	(a number of languages are already supported, contributions of further
244	languages welcome). The option WITHOUT_GH_BC can be used to build the
245	world with the previous versions of bc and dc.
246
24720200625:
248	r362639 changed the internal API used between the NFS kernel modules.
249	As such, they all need to be rebuilt from sources.
250
25120200613:
252	r362158 changed the arguments for VFS_CHECKEXP().  As such, any
253	out of tree file systems need to be modified and rebuilt.
254	Also, any file systems that are modules must be rebuilt.
255
25620200604:
257	read(2) of a directory fd is now rejected by default.  root may
258	re-enable it for system root only on non-ZFS filesystems with the
259	security.bsd.allow_read_dir sysctl(8) MIB if
260	security.bsd.suser_enabled=1.
261
262	It may be advised to setup aliases for grep to default to `-d skip` if
263	commonly non-recursively grepping a list that includes directories and
264	the potential for the resulting stderr output is not tolerable.  Example
265	aliases are now installed, commented out, in /root/.cshrc and
266	/root/.shrc.
267
26820200523:
269	Clang, llvm, lld, lldb, compiler-rt, libc++, libunwind and openmp have
270	been upgraded to 10.0.1.  Please see the 20141231 entry below for
271	information about prerequisites and upgrading, if you are not already
272	using clang 3.5.0 or higher.
273
27420200512:
275	Support for obsolete compilers has been removed from the build system.
276	Clang 6 and GCC 6.4 are the minimum supported versions.
277
27820200424:
279	closefrom(2) has been moved under COMPAT12, and replaced in libc with a
280	stub that calls close_range(2).  If using a custom kernel configuration,
281	you may want to ensure that the COMPAT_FREEBSD12 option is included, as
282	a slightly older -CURRENT userland and older FreeBSD userlands may not
283	be functional without closefrom(2).
284
28520200414:
286	Upstream DTS from Linux 5.6 was merged and they now have the SID
287	and THS (Secure ID controller and THermal Sensor) node present.
288	The DTB overlays have now been removed from the tree for the H3/H5 and
289	A64 SoCs and the aw_sid and aw_thermal driver have been updated to
290	deal with upstream DTS. If you are using those overlays you need to
291	remove them from loader.conf and update the DTBs on the FAT partition.
292
29320200310:
294	Clang, llvm, lld, lldb, compiler-rt, libc++, libunwind and openmp have
295	been upgraded to 10.0.0.  Please see the 20141231 entry below for
296	information about prerequisites and upgrading, if you are not already
297	using clang 3.5.0 or higher.
298
29920200309:
300	The amd(8) automount daemon has been removed from the source tree.
301	As of FreeBSD 10.1 autofs(5) is the preferred tool for automounting.
302	amd is still available in the sysutils/am-utils port.
303
30420200301:
305	Removed brooktree driver (bktr.4) from the tree.
306
30720200229:
308	The WITH_GPL_DTC option has been removed.  The BSD-licenced device tree
309	compiler in usr.bin/dtc is used on all architectures which use dtc, and
310	the GPL dtc is available (if needed) from the sysutils/dtc port.
311
31220200229:
313	The WITHOUT_LLVM_LIBUNWIND option has been removed.  LLVM's libunwind
314	is used by all supported CPU architectures.
315
31620200229:
317	GCC 4.2.1 has been removed from the tree.  The WITH_GCC,
318	WITH_GCC_BOOTSTRAP, and WITH_GNUCXX options are no longer available.
319	Users who wish to build FreeBSD with GCC must use the external toolchain
320	ports or packages.
321
32220200220:
323	ncurses has been updated to a newer version (6.2-20200215). Given the ABI
324	has changed, users will have to rebuild all the ports that are linked to
325	ncurses.
326
32720200217:
328	The size of struct vnet and the magic cookie have changed.
329	Users need to recompile libkvm and all modules using VIMAGE
330	together with their new kernel.
331
33220200212:
333	Defining the long deprecated NO_CTF, NO_DEBUG_FILES, NO_INSTALLLIB,
334	NO_MAN, NO_PROFILE, and NO_WARNS variables is now an error.  Update
335	your Makefiles and scripts to define MK_<var>=no instead as required.
336
337	One exception to this is that program or library Makefiles should
338	define MAN to empty rather than setting MK_MAN=no.
339
34020200108:
341	Clang/LLVM is now the default compiler and LLD the default
342	linker for riscv64.
343
34420200107:
345	make universe no longer uses GCC 4.2.1 on any architectures.
346	Architectures not supported by in-tree Clang/LLVM require an
347	external toolchain package.
348
34920200104:
350	GCC 4.2.1 is now not built by default, as part of the GCC 4.2.1
351	retirement plan.  Specifically, the GCC, GCC_BOOTSTRAP, and GNUCXX
352	options default to off for all supported CPU architectures.  As a
353	short-term transition aid they may be enabled via WITH_* options.
354	GCC 4.2.1 is expected to be removed from the tree on 2020-03-31.
355
35620200102:
357	Support for armv5 has been disconnected and is being removed. The
358	machine combination MACHINE=arm MACHINE_ARCH=arm is no longer valid.
359	You must now use a MACHINE_ARCH of armv6 or armv7. The default
360	MACHINE_ARCH for MACHINE=arm is now armv7.
361
36220191226:
363	Clang/LLVM is now the default compiler for all powerpc architectures.
364	LLD is now the default linker for powerpc64.  The change for powerpc64
365	also includes a change to the ELFv2 ABI, incompatible with the existing
366	ABI.
367
36820191226:
369	Kernel-loadable random(4) modules are no longer unloadable.
370
37120191222:
372	Clang, llvm, lld, lldb, compiler-rt, libc++, libunwind and openmp have
373	been upgraded to 9.0.1.  Please see the 20141231 entry below for
374	information about prerequisites and upgrading, if you are not already
375	using clang 3.5.0 or higher.
376
37720191212:
378	r355677 has modified the internal interface used between the
379	NFS modules in the kernel. As such, they must all be upgraded
380	simultaneously. I will do a version bump for this.
381
38220191205:
383	The root certificates of the Mozilla CA Certificate Store have been
384	imported into the base system and can be managed with the certctl(8)
385	utility.  If you have installed the security/ca_root_nss port or package
386	with the ETCSYMLINK option (the default), be advised that there may be
387	differences between those included in the port and those included in
388	base due to differences in nss branch used as well as general update
389	frequency.  Note also that certctl(8) cannot manage certs in the
390	format used by the security/ca_root_nss port.
391
39220191120:
393	The amd(8) automount daemon has been disabled by default, and will be
394	removed in the future.  As of FreeBSD 10.1 the autofs(5) is available
395	for automounting.
396
39720191107:
398	The nctgpio and wbwd drivers have been moved to the superio bus.
399	If you have one of these drivers in a kernel configuration, then
400	you should add device superio to it.  If you use one of these drivers
401	as a module and you compile a custom set of modules, then you should
402	add superio to the set.
403
40420191021:
405	KPIs for network drivers to access interface addresses have changed.
406	Users need to recompile NIC driver modules together with kernel.
407
40820191021:
409	The net.link.tap.user_open sysctl no longer prevents user opening of
410	already created /dev/tapNN devices.  Access is still controlled by
411	node permissions, just like tun devices.  The net.link.tap.user_open
412	sysctl is now used only to allow users to perform devfs cloning of
413	tap devices, and the subsequent open may not succeed if the user is not
414	in the appropriate group.  This sysctl may be deprecated/removed
415	completely in the future.
416
41720191009:
418	mips, powerpc, and sparc64 are no longer built as part of
419	universe / tinderbox unless MAKE_OBSOLETE_GCC is defined. If
420	not defined, mips, powerpc, and sparc64 builds will look for
421	the xtoolchain binaries and if installed use them for universe
422	builds. As llvm 9.0 becomes vetted for these architectures, they
423	will be removed from the list.
424
42520191009:
426	Clang, llvm, lld, lldb, compiler-rt, libc++, libunwind and openmp have
427	been upgraded to 9.0.0.  Please see the 20141231 entry below for
428	information about prerequisites and upgrading, if you are not already
429	using clang 3.5.0 or higher.
430
43120191003:
432	The hpt27xx, hptmv, hptnr, and hptrr drivers have been removed from
433	GENERIC.  They are available as modules and can be loaded by adding
434	to /boot/loader.conf hpt27xx_load="YES", hptmv_load="YES",
435	hptnr_load="YES", or hptrr_load="YES", respectively.
436
43720190913:
438	ntpd no longer by default locks its pages in memory, allowing them
439	to be paged out by the kernel. Use rlimit memlock to restore
440	historic BSD behaviour. For example, add "rlimit memlock 32"
441	to ntp.conf to lock up to 32 MB of ntpd address space in memory.
442
44320190823:
444	Several of ping6's options have been renamed for better consistency
445	with ping.  If you use any of -ARWXaghmrtwx, you must update your
446	scripts.  See ping6(8) for details.
447
44820190727:
449	The vfs.fusefs.sync_unmount and vfs.fusefs.init_backgrounded sysctls
450	and the "-o sync_unmount" and "-o init_backgrounded" mount options have
451	been removed from mount_fusefs(8).  You can safely remove them from
452	your scripts, because they had no effect.
453
454	The vfs.fusefs.fix_broken_io, vfs.fusefs.sync_resize,
455	vfs.fusefs.refresh_size, vfs.fusefs.mmap_enable,
456	vfs.fusefs.reclaim_revoked, and vfs.fusefs.data_cache_invalidate
457	sysctls have been removed.  If you felt the need to set any of them to
458	a non-default value, please tell [email protected] why.
459
46020190713:
461	Default permissions on the /var/account/acct file (and copies of it
462	rotated by periodic daily scripts) are changed from 0644 to 0640
463	because the file contains sensitive information that should not be
464	world-readable.  If the /var/account directory must be created by
465	rc.d/accounting, the mode used is now 0750.  Admins who use the
466	accounting feature are encouraged to change the mode of an existing
467	/var/account directory to 0750 or 0700.
468
46920190620:
470	Entropy collection and the /dev/random device are no longer optional
471	components.  The "device random" option has been removed.
472	Implementations of distilling algorithms can still be made loadable
473	with "options RANDOM_LOADABLE" (e.g., random_fortuna.ko).
474
47520190612:
476	Clang, llvm, lld, lldb, compiler-rt, libc++, libunwind and openmp have
477	been upgraded to 8.0.1.  Please see the 20141231 entry below for
478	information about prerequisites and upgrading, if you are not already
479	using clang 3.5.0 or higher.
480
48120190608:
482	A fix was applied to i386 kernel modules to avoid panics with
483	dpcpu or vnet.  Users need to recompile i386 kernel modules
484	having pcpu or vnet sections or they will refuse to load.
485
48620190513:
487	User-wired pages now have their own counter,
488	vm.stats.vm.v_user_wire_count.  The vm.max_wired sysctl was renamed
489	to vm.max_user_wired and changed from an unsigned int to an unsigned
490	long.  bhyve VMs wired with the -S are now subject to the user
491	wiring limit; the vm.max_user_wired sysctl may need to be tuned to
492	avoid running into the limit.
493
49420190507:
495	The IPSEC option has been removed from GENERIC.  Users requiring
496	ipsec(4) must now load the ipsec(4) kernel module.
497
49820190507:
499	The tap(4) driver has been folded into tun(4), and the module has been
500	renamed to tuntap.  You should update any kld_list="if_tap" or
501	kld_list="if_tun" entries in /etc/rc.conf, if_tap_load="YES" or
502	if_tun_load="YES" entries in /boot/loader.conf to load the if_tuntap
503	module instead, and "device tap" or "device tun" entries in kernel
504	config files to select the tuntap device instead.
505
50620190418:
507	The following knobs have been added related to tradeoffs between
508	safe use of the random device and availability in the absence of
509	entropy:
510
511	kern.random.initial_seeding.bypass_before_seeding: tunable; set
512	non-zero to bypass the random device prior to seeding, or zero to
513	block random requests until the random device is initially seeded.
514	For now, set to 1 (unsafe) by default to restore pre-r346250 boot
515	availability properties.
516
517	kern.random.initial_seeding.read_random_bypassed_before_seeding:
518	read-only diagnostic sysctl that is set when bypass is enabled and
519	read_random(9) is bypassed, to enable programmatic handling of this
520	initial condition, if desired.
521
522	kern.random.initial_seeding.arc4random_bypassed_before_seeding:
523	Similar to the above, but for for arc4random(9) initial seeding.
524
525	kern.random.initial_seeding.disable_bypass_warnings: tunable; set
526	non-zero to disable warnings in dmesg when the same conditions are
527	met as for the diagnostic sysctls above.  Defaults to zero, i.e.,
528	produce warnings in dmesg when the conditions are met.
529
53020190416:
531	The loadable random module KPI has changed; the random_infra_init()
532	routine now requires a 3rd function pointer for a bool (*)(void)
533	method that returns true if the random device is seeded (and
534	therefore unblocked).
535
53620190404:
537	r345895 reverts r320698. This implies that an nfsuserd(8) daemon
538	built from head sources between r320757 (July 6, 2017) and
539	r338192 (Aug. 22, 2018) will not work unless the "-use-udpsock"
540	is added to the command line.
541	nfsuserd daemons built from head sources that are post-r338192 are
542	not affected and should continue to work.
543
54420190320:
545	The fuse(4) module has been renamed to fusefs(4) for consistency with
546	other filesystems.  You should update any kld_load="fuse" entries in
547	/etc/rc.conf, fuse_load="YES" entries in /boot/loader.conf, and
548	"options FUSE" entries in kernel config files.
549
55020190304:
551	Clang, llvm, lld, lldb, compiler-rt and libc++ have been upgraded to
552	8.0.0.  Please see the 20141231 entry below for information about
553	prerequisites and upgrading, if you are not already using clang 3.5.0
554	or higher.
555
55620190226:
557	geom_uzip(4) depends on the new module xz.  If geom_uzip is statically
558	compiled into your custom kernel, add 'device xz' statement to the
559	kernel config.
560
56120190219:
562	drm and drm2 have been removed from the tree. Please see
563	https://wiki.freebsd.org/Graphics for the latest information on
564	migrating to the drm ports.
565
56620190131:
567	Iflib is no longer unconditionally compiled into the kernel.  Drivers
568	using iflib and statically compiled into the kernel, now require
569	the 'device iflib' config option.  For the same drivers loaded as
570	modules on kernels not having 'device iflib', the iflib.ko module
571	is loaded automatically.
572
57320190125:
574	The IEEE80211_AMPDU_AGE and AH_SUPPORT_AR5416 kernel configuration
575	options no longer exist since r343219 and r343427 respectively;
576	nothing uses them, so they should be just removed from custom
577	kernel config files.
578
57920181230:
580	r342635 changes the way efibootmgr(8) works by requiring users to add
581	the -b (bootnum) parameter for commands where the bootnum was previously
582	specified with each option. For example 'efibootmgr -B 0001' is now
583	'efibootmgr -B -b 0001'.
584
58520181220:
586	r342286 modifies the NFSv4 server so that it obeys vfs.nfsd.nfs_privport
587	in the same as it is applied to NFSv2 and 3.  This implies that NFSv4
588	servers that have vfs.nfsd.nfs_privport set will only allow mounts
589	from clients using a reserved port#. Since both the FreeBSD and Linux
590	NFSv4 clients use reserved port#s by default, this should not affect
591	most NFSv4 mounts.
592
59320181219:
594	The XLP config has been removed. We can't support 64-bit atomics in this
595	kernel because it is running in 32-bit mode. XLP users must transition
596	to running a 64-bit kernel (XLP64 or XLPN32).
597
598	The mips GXEMUL support has been removed from FreeBSD. MALTA* + qemu is
599	the preferred emulator today and we don't need two different ones.
600
601	The old sibyte / swarm / Broadcom BCM1250 support has been
602	removed from the mips port.
603
60420181211:
605	Clang, llvm, lld, lldb, compiler-rt and libc++ have been upgraded to
606	7.0.1.  Please see the 20141231 entry below for information about
607	prerequisites and upgrading, if you are not already using clang 3.5.0
608	or higher.
609
61020181211:
611	Remove the timed and netdate programs from the base tree.  Setting
612	the time with these daemons has been obsolete for over a decade.
613
61420181126:
615	On amd64, arm64 and armv7 (architectures that install LLVM's ld.lld
616	linker as /usr/bin/ld) GNU ld is no longer installed as ld.bfd, as
617	it produces broken binaries when ifuncs are in use.  Users needing
618	GNU ld should install the binutils port or package.
619
62020181123:
621	The BSD crtbegin and crtend code has been enabled by default. It has
622	had extensive testing on amd64, arm64, and i386. It can be disabled
623	by building a world with -DWITHOUT_BSD_CRTBEGIN.
624
62520181115:
626	The set of CTM commands (ctm, ctm_smail, ctm_rmail, ctm_dequeue)
627	has been converted to a port (misc/ctm) and will be removed from
628	FreeBSD-13.  It is available as a package (ctm) for all supported
629	FreeBSD versions.
630
63120181110:
632	The default newsyslog.conf(5) file has been changed to only include
633	files in /etc/newsyslog.conf.d/ and /usr/local/etc/newsyslog.conf.d/ if
634	the filenames end in '.conf' and do not begin with a '.'.
635
636	You should check the configuration files in these two directories match
637	this naming convention. You can verify which configuration files are
638	being included using the command:
639		$ newsyslog -Nrv
640
64120181015:
642	Ports for the DRM modules have been simplified. Now, amd64 users should
643	just install the drm-kmod port. All others should install
644	drm-legacy-kmod.
645
646	Graphics hardware that's newer than about 2010 usually works with
647	drm-kmod.  For hardware older than 2013, however, some users will need
648	to use drm-legacy-kmod if drm-kmod doesn't work for them. Hardware older
649	than 2008 usually only works in drm-legacy-kmod. The graphics team can
650	only commit to hardware made since 2013 due to the complexity of the
651	market and difficulty to test all the older cards effectively. If you
652	have hardware supported by drm-kmod, you are strongly encouraged to use
653	that as you will get better support.
654
655	Other than KPI chasing, drm-legacy-kmod will not be updated. As outlined
656	elsewhere, the drm and drm2 modules will be eliminated from the src base
657	soon (with a limited exception for arm). Please update to the package
658	asap and report any issues to [email protected].
659
660	Generally, anybody using the drm*-kmod packages should add
661	WITHOUT_DRM_MODULE=t and WITHOUT_DRM2_MODULE=t to avoid nasty
662	cross-threading surprises, especially with automatic driver
663	loading from X11 startup. These will become the defaults in 13-current
664	shortly.
665
66620181012:
667	The ixlv(4) driver has been renamed to iavf(4).  As a consequence,
668	custom kernel and module loading configuration files must be updated
669	accordingly.  Moreover, interfaces previous presented as ixlvN to the
670	system are now exposed as iavfN and network configuration files must
671	be adjusted as necessary.
672
67320181009:
674	OpenSSL has been updated to version 1.1.1.  This update included
675	additional various API changes throughout the base system.  It is
676	important to rebuild third-party software after upgrading.  The value
677	of __FreeBSD_version has been bumped accordingly.
678
67920181006:
680	The legacy DRM modules and drivers have now been added to the loader's
681	module blacklist, in favor of loading them with kld_list in rc.conf(5).
682	The module blacklist may be overridden with the loader.conf(5)
683	'module_blacklist' variable, but loading them via rc.conf(5) is strongly
684	encouraged.
685
68620181002:
687	The cam(4) based nda(4) driver will be used over nvd(4) by default on
688	powerpc64. You may set 'options NVME_USE_NVD=1' in your kernel conf or
689	loader tunable 'hw.nvme.use_nvd=1' if you wish to use the existing
690	driver.  Make sure to edit /boot/etc/kboot.conf and fstab to use the
691	nda device name.
692
69320180913:
694	Reproducible build mode is now on by default, in preparation for
695	FreeBSD 12.0.  This eliminates build metadata such as the user,
696	host, and time from the kernel (and uname), unless the working tree
697	corresponds to a modified checkout from a version control system.
698	The previous behavior can be obtained by setting the /etc/src.conf
699	knob WITHOUT_REPRODUCIBLE_BUILD.
700
70120180826:
702	The Yarrow CSPRNG has been removed from the kernel as it has not been
703	supported by its designers since at least 2003. Fortuna has been the
704	default since FreeBSD-11.
705
70620180822:
707	devctl freeze/thaw have gone into the tree, the rc scripts have been
708	updated to use them and devmatch has been changed.  You should update
709	kernel, userland and rc scripts all at the same time.
710
71120180818:
712	The default interpreter has been switched from 4th to Lua.
713	LOADER_DEFAULT_INTERP, documented in build(7), will override the default
714	interpreter.  If you have custom FORTH code you will need to set
715	LOADER_DEFAULT_INTERP=4th (valid values are 4th, lua or simp) in
716	src.conf for the build.  This will create default hard links between
717	loader and loader_4th instead of loader and loader_lua, the new default.
718	If you are using UEFI it will create the proper hard link to loader.efi.
719
720	bhyve uses userboot.so. It remains 4th-only until some issues are solved
721	regarding coexisting with multiple versions of FreeBSD are resolved.
722
72320180815:
724	ls(1) now respects the COLORTERM environment variable used in other
725	systems and software to indicate that a colored terminal is both
726	supported and desired.  If ls(1) is suddenly emitting colors, they may
727	be disabled again by either removing the unwanted COLORTERM from your
728	environment, or using `ls --color=never`.  The ls(1) specific CLICOLOR
729	may not be observed in a future release.
730
73120180808:
732	The default pager for most commands has been changed to "less".  To
733	restore the old behavior, set PAGER="more" and MANPAGER="more -s" in
734	your environment.
735
73620180731:
737	The jedec_ts(4) driver has been removed. A superset of its functionality
738	is available in the jedec_dimm(4) driver, and the manpage for that
739	driver includes migration instructions. If you have "device jedec_ts"
740	in your kernel configuration file, it must be removed.
741
74220180730:
743	amd64/GENERIC now has EFI runtime services, EFIRT, enabled by default.
744	This should have no effect if the kernel is booted via BIOS/legacy boot.
745	EFIRT may be disabled via a loader tunable, efi.rt.disabled, if a system
746	has a buggy firmware that prevents a successful boot due to use of
747	runtime services.
748
74920180727:
750	Atmel AT91RM9200 and AT91SAM9, Cavium CNS 11xx and XScale
751	support has been removed from the tree. These ports were
752	obsolete and/or known to be broken for many years.
753
75420180723:
755	loader.efi has been augmented to participate more fully in the
756	UEFI boot manager protocol. loader.efi will now look at the
757	BootXXXX environment variable to determine if a specific kernel
758	or root partition was specified. XXXX is derived from BootCurrent.
759	efibootmgr(8) manages these standard UEFI variables.
760
76120180720:
762	zfsloader's functionality has now been folded into loader.
763	zfsloader is no longer necessary once you've updated your
764	boot blocks. For a transition period, we will install a
765	hardlink for zfsloader to loader to allow a smooth transition
766	until the boot blocks can be updated (hard link because old
767	zfs boot blocks don't understand symlinks).
768
76920180719:
770	ARM64 now have efifb support, if you want to have serial console
771	on your arm64 board when an screen is connected and the bootloader
772	setup a frame buffer for us to use, just add :
773	boot_serial=YES
774	boot_multicons=YES
775	in /boot/loader.conf
776	For Raspberry Pi 3 (RPI) users, this is needed even if you don't have
777	an screen connected as the firmware will setup a frame buffer are that
778	u-boot will expose as an EFI frame buffer.
779
78020180719:
781	New uid:gid added, ntpd:ntpd (123:123).  Be sure to run mergemaster
782	or take steps to update /etc/passwd before doing installworld on
783	existing systems.  Do not skip the "mergemaster -Fp" step before
784	installworld, as described in the update procedures near the bottom
785	of this document.  Also, rc.d/ntpd now starts ntpd(8) as user ntpd
786	if the new mac_ntpd(4) policy is available, unless ntpd_flags or
787	the ntp config file contain options that change file/dir locations.
788	When such options (e.g., "statsdir" or "crypto") are used, ntpd can
789	still be run as non-root by setting ntpd_user=ntpd in rc.conf, after
790	taking steps to ensure that all required files/dirs are accessible
791	by the ntpd user.
792
79320180717:
794	Big endian arm support has been removed.
795
79620180711:
797	The static environment setup in kernel configs is no longer mutually
798	exclusive with the loader(8) environment by default.  In order to
799	restore the previous default behavior of disabling the loader(8)
800	environment if a static environment is present, you must specify
801	loader_env.disabled=1 in the static environment.
802
80320180705:
804	The ABI of syscalls used by management tools like sockstat and
805	netstat has been broken to allow 32-bit binaries to work on
806	64-bit kernels without modification.  These programs will need
807	to match the kernel in order to function.  External programs may
808	require minor modifications to accommodate a change of type in
809	structures from pointers to 64-bit virtual addresses.
810
81120180702:
812	On i386 and amd64 atomics are now inlined. Out of tree modules using
813	atomics will need to be rebuilt.
814
81520180701:
816	The '%I' format in the kern.corefile sysctl limits the number of
817	core files that a process can generate to the number stored in the
818	debug.ncores sysctl. The '%I' format is replaced by the single digit
819	index. Previously, if all indexes were taken the kernel would overwrite
820	only a core file with the highest index in a filename.
821	Currently the system will create a new core file if there is a free
822	index or if all slots are taken it will overwrite the oldest one.
823
82420180630:
825	Clang, llvm, lld, lldb, compiler-rt and libc++ have been upgraded to
826	6.0.1.  Please see the 20141231 entry below for information about
827	prerequisites and upgrading, if you are not already using clang 3.5.0
828	or higher.
829
83020180628:
831	r335753 introduced a new quoting method. However, etc/devd/devmatch.conf
832	needed to be changed to work with it. This change was made with r335763
833	and requires a mergemaster / etcupdate / etc to update the installed
834	file.
835
83620180612:
837	r334930 changed the interface between the NFS modules, so they all
838	need to be rebuilt.  r335018 did a __FreeBSD_version bump for this.
839
84020180530:
841	As of r334391 lld is the default amd64 system linker; it is installed
842	as /usr/bin/ld.  Kernel build workarounds (see 20180510 entry) are no
843	longer necessary.
844
84520180530:
846	The kernel / userland interface for devinfo changed, so you'll
847	need a new kernel and userland as a pair for it to work (rebuilding
848	lib/libdevinfo is all that's required). devinfo and devmatch will
849	not work, but everything else will when there's a mismatch.
850
85120180523:
852	The on-disk format for hwpmc callchain records has changed to include
853	threadid corresponding to a given record. This changes the field offsets
854	and thus requires that libpmcstat be rebuilt before using a kernel
855	later than r334108.
856
85720180517:
858	The vxge(4) driver has been removed.  This driver was introduced into
859	HEAD one week before the Exar left the Ethernet market and is not
860	known to be used.  If you have device vxge in your kernel config file
861	it must be removed.
862
86320180510:
864	The amd64 kernel now requires a ld that supports ifunc to produce a
865	working kernel, either lld or a newer binutils. lld is built by default
866	on amd64, and the 'buildkernel' target uses it automatically. However,
867	it is not the default linker, so building the kernel the traditional
868	way requires LD=ld.lld on the command line (or LD=/usr/local/bin/ld for
869	binutils port/package). lld will soon be default, and this requirement
870	will go away.
871
872	NOTE: As of r334391 lld is the default system linker on amd64, and no
873	workaround is necessary.
874
87520180508:
876	The nxge(4) driver has been removed.  This driver was for PCI-X 10g
877	cards made by s2io/Neterion.  The company was acquired by Exar and
878	no longer sells or supports Ethernet products.  If you have device
879	nxge in your kernel config file it must be removed.
880
88120180504:
882	The tz database (tzdb) has been updated to 2018e.  This version more
883	correctly models time stamps in time zones with negative DST such as
884	Europe/Dublin (from 1971 on), Europe/Prague (1946/7), and
885	Africa/Windhoek (1994/2017).  This does not affect the UT offsets, only
886	time zone abbreviations and the tm_isdst flag.
887
88820180502:
889	The ixgb(4) driver has been removed.  This driver was for an early and
890	uncommon legacy PCI 10GbE for a single ASIC, Intel 82597EX. Intel
891	quickly shifted to the long lived ixgbe family.  If you have device
892	ixgb in your kernel config file it must be removed.
893
89420180501:
895	The lmc(4) driver has been removed.  This was a WAN interface
896	card that was already reportedly rare in 2003, and had an ambiguous
897	license.  If you have device lmc in your kernel config file it must
898	be removed.
899
90020180413:
901	Support for Arcnet networks has been removed.  If you have device
902	arcnet or device cm in your kernel config file they must be
903	removed.
904
90520180411:
906	Support for FDDI networks has been removed.  If you have device
907	fddi or device fpa in your kernel config file they must be
908	removed.
909
91020180406:
911	In addition to supporting RFC 3164 formatted messages, the
912	syslogd(8) service is now capable of parsing RFC 5424 formatted
913	log messages. The main benefit of using RFC 5424 is that clients
914	may now send log messages with timestamps containing year numbers,
915	microseconds and time zone offsets.
916
917	Similarly, the syslog(3) C library function has been altered to
918	send RFC 5424 formatted messages to the local system logging
919	daemon. On systems using syslogd(8), this change should have no
920	negative impact, as long as syslogd(8) and the C library are
921	updated at the same time. On systems using a different system
922	logging daemon, it may be necessary to make configuration
923	adjustments, depending on the software used.
924
925	When using syslog-ng, add the 'syslog-protocol' flag to local
926	input sources to enable parsing of RFC 5424 formatted messages:
927
928		source src {
929			unix-dgram("/var/run/log" flags(syslog-protocol));
930		}
931
932	When using rsyslog, disable the 'SysSock.UseSpecialParser' option
933	of the 'imuxsock' module to let messages be processed by the
934	regular RFC 3164/5424 parsing pipeline:
935
936		module(load="imuxsock" SysSock.UseSpecialParser="off")
937
938	Do note that these changes only affect communication between local
939	applications and syslogd(8). The format that syslogd(8) uses to
940	store messages on disk or forward messages to other systems
941	remains unchanged. syslogd(8) still uses RFC 3164 for these
942	purposes. Options to customize this behaviour will be added in the
943	future. Utilities that process log files stored in /var/log are
944	thus expected to continue to function as before.
945
946	__FreeBSD_version has been incremented to 1200061 to denote this
947	change.
948
94920180328:
950	Support for token ring networks has been removed. If you
951	have "device token" in your kernel config you should remove
952	it. No device drivers supported token ring.
953
95420180323:
955	makefs was modified to be able to tag ISO9660 El Torito boot catalog
956	entries as EFI instead of overloading the i386 tag as done previously.
957	The amd64 mkisoimages.sh script used to build amd64 ISO images for
958	release was updated to use this. This may mean that makefs must be
959	updated before "make cdrom" can be run in the release directory. This
960	should be as simple as:
961
962		$ cd $SRCDIR/usr.sbin/makefs
963		$ make depend all install
964
96520180212:
966	FreeBSD boot loader enhanced with Lua scripting. It's purely opt-in for
967	now by building WITH_LOADER_LUA and WITHOUT_FORTH in /etc/src.conf.
968	Co-existence for the transition period will come shortly. Booting is a
969	complex environment and test coverage for Lua-enabled loaders has been
970	thin, so it would be prudent to assume it might not work and make
971	provisions for backup boot methods.
972
97320180211:
974	devmatch functionality has been turned on in devd. It will automatically
975	load drivers for unattached devices. This may cause unexpected drivers
976	to be loaded. Please report any problems to current@ and
977	[email protected].
978
97920180114:
980	Clang, llvm, lld, lldb, compiler-rt and libc++ have been upgraded to
981	6.0.0.  Please see the 20141231 entry below for information about
982	prerequisites and upgrading, if you are not already using clang 3.5.0
983	or higher.
984
98520180110:
986	LLVM's lld linker is now used as the FreeBSD/amd64 bootstrap linker.
987	This means it is used to link the kernel and userland libraries and
988	executables, but is not yet installed as /usr/bin/ld by default.
989
990	To revert to ld.bfd as the bootstrap linker, in /etc/src.conf set
991	WITHOUT_LLD_BOOTSTRAP=yes
992
99320180110:
994	On i386, pmtimer has been removed. Its functionality has been folded
995	into apm. It was a no-op on ACPI in current for a while now (but was
996	still needed on i386 in FreeBSD 11 and earlier). Users may need to
997	remove it from kernel config files.
998
99920180104:
1000	The use of RSS hash from the network card aka flowid has been
1001	disabled by default for lagg(4) as it's currently incompatible with
1002	the lacp and loadbalance protocols.
1003
1004	This can be re-enabled by setting the following in loader.conf:
1005	net.link.lagg.default_use_flowid="1"
1006
100720180102:
1008	The SW_WATCHDOG option is no longer necessary to enable the
1009	hardclock-based software watchdog if no hardware watchdog is
1010	configured. As before, SW_WATCHDOG will cause the software
1011	watchdog to be enabled even if a hardware watchdog is configured.
1012
101320171215:
1014	r326887 fixes the issue described in the 20171214 UPDATING entry.
1015	r326888 flips the switch back to building GELI support always.
1016
101720171214:
1018	r362593 broke ZFS + GELI support for reasons unknown. However,
1019	it also broke ZFS support generally, so GELI has been turned off
1020	by default as the lesser evil in r326857. If you boot off ZFS and/or
1021	GELI, it might not be a good time to update.
1022
102320171125:
1024	PowerPC users must update loader(8) by rebuilding world before
1025	installing a new kernel, as the protocol connecting them has
1026	changed. Without the update, loader metadata will not be passed
1027	successfully to the kernel and users will have to enter their
1028	root partition at the kernel mountroot prompt to continue booting.
1029	Newer versions of loader can boot old kernels without issue.
1030
103120171110:
1032	The LOADER_FIREWIRE_SUPPORT build variable as been renamed to
1033	WITH/OUT_LOADER_FIREWIRE. LOADER_{NO_,}GELI_SUPPORT has been renamed
1034	to WITH/OUT_LOADER_GELI.
1035
103620171106:
1037	The naive and non-compliant support of posix_fallocate(2) in ZFS
1038	has been removed as of r325320.  The system call now returns EINVAL
1039	when used on a ZFS file.  Although the new behavior complies with the
1040	standard, some consumers are not prepared to cope with it.
1041	One known victim is lld prior to r325420.
1042
104320171102:
1044	Building in a FreeBSD src checkout will automatically create object
1045	directories now rather than store files in the current directory if
1046	'make obj' was not ran.  Calling 'make obj' is no longer necessary.
1047	This feature can be disabled by setting WITHOUT_AUTO_OBJ=yes in
1048	/etc/src-env.conf (not /etc/src.conf), or passing the option in the
1049	environment.
1050
105120171101:
1052	The default MAKEOBJDIR has changed from /usr/obj/<srcdir> for native
1053	builds, and /usr/obj/<arch>/<srcdir> for cross-builds, to a unified
1054	/usr/obj/<srcdir>/<arch>.  This behavior can be changed to the old
1055	format by setting WITHOUT_UNIFIED_OBJDIR=yes in /etc/src-env.conf,
1056	the environment, or with -DWITHOUT_UNIFIED_OBJDIR when building.
1057	The UNIFIED_OBJDIR option is a transitional feature that will be
1058	removed for 12.0 release; please migrate to the new format for any
1059	tools by looking up the OBJDIR used by 'make -V .OBJDIR' means rather
1060	than hardcoding paths.
1061
106220171028:
1063	The native-xtools target no longer installs the files by default to the
1064	OBJDIR.  Use the native-xtools-install target with a DESTDIR to install
1065	to ${DESTDIR}/${NXTP} where NXTP defaults to /nxb-bin.
1066
106720171021:
1068	As part of the boot loader infrastructure cleanup, LOADER_*_SUPPORT
1069	options are changing from controlling the build if defined / undefined
1070	to controlling the build with explicit 'yes' or 'no' values. They will
1071	shift to WITH/WITHOUT options to match other options in the system.
1072
107320171010:
1074	libstand has turned into a private library for sys/boot use only.
1075	It is no longer supported as a public interface outside of sys/boot.
1076
107720171005:
1078	The arm port has split armv6 into armv6 and armv7. armv7 is now
1079	a valid TARGET_ARCH/MACHINE_ARCH setting. If you have an armv7 system
1080	and are running a kernel from before r324363, you will need to add
1081	MACHINE_ARCH=armv7 to 'make buildworld' to do a native build.
1082
108320171003:
1084	When building multiple kernels using KERNCONF, non-existent KERNCONF
1085	files will produce an error and buildkernel will fail. Previously
1086	missing KERNCONF files silently failed giving no indication as to
1087	why, only to subsequently discover during installkernel that the
1088	desired kernel was never built in the first place.
1089
109020170912:
1091	The default serial number format for CTL LUNs has changed.  This will
1092	affect users who use /dev/diskid/* device nodes, or whose FibreChannel
1093	or iSCSI clients care about their LUNs' serial numbers.  Users who
1094	require serial number stability should hardcode serial numbers in
1095	/etc/ctl.conf .
1096
109720170912:
1098	For 32-bit arm compiled for hard-float support, soft-floating point
1099	binaries now always get their shared libraries from
1100	LD_SOFT_LIBRARY_PATH (in the past, this was only used if
1101	/usr/libsoft also existed). Only users with a hard-float ld.so, but
1102	soft-float everything else should be affected.
1103
110420170826:
1105	The geli password typed at boot is now hidden.  To restore the previous
1106	behavior, see geli(8) for configuration options.
1107
110820170825:
1109	Move PMTUD blackhole counters to TCPSTATS and remove them from bare
1110	sysctl values.  Minor nit, but requires a rebuild of both world/kernel
1111	to complete.
1112
111320170814:
1114	"make check" behavior (made in ^/head@r295380) has been changed to
1115	execute from a limited sandbox, as opposed to executing from
1116	${TESTSDIR}.
1117
1118	Behavioral changes:
1119	- The "beforecheck" and "aftercheck" targets are now specified.
1120	- ${CHECKDIR} (added in commit noted above) has been removed.
1121	- Legacy behavior can be enabled by setting
1122	  WITHOUT_MAKE_CHECK_USE_SANDBOX in src.conf(5) or the environment.
1123
1124	If the limited sandbox mode is enabled, "make check" will execute
1125	"make distribution", then install, execute the tests, and clean up the
1126	sandbox if successful.
1127
1128	The "make distribution" and "make install" targets are typically run as
1129	root to set appropriate permissions and ownership at installation time.
1130	The end-user should set "WITH_INSTALL_AS_USER" in src.conf(5) or the
1131	environment if executing "make check" with limited sandbox mode using
1132	an unprivileged user.
1133
113420170808:
1135	Since the switch to GPT disk labels, fsck for UFS/FFS has been
1136	unable to automatically find alternate superblocks. As of r322297,
1137	the information needed to find alternate superblocks has been
1138	moved to the end of the area reserved for the boot block.
1139	Filesystems created with a newfs of this vintage or later
1140	will create the recovery information. If you have a filesystem
1141	created prior to this change and wish to have a recovery block
1142	created for your filesystem, you can do so by running fsck in
1143	foreground mode (i.e., do not use the -p or -y options). As it
1144	starts, fsck will ask ``SAVE DATA TO FIND ALTERNATE SUPERBLOCKS''
1145	to which you should answer yes.
1146
114720170728:
1148	As of r321665, an NFSv4 server configuration that services
1149	Kerberos mounts or clients that do not support the uid/gid in
1150	owner/owner_group string capability, must explicitly enable
1151	the nfsuserd daemon by adding nfsuserd_enable="YES" to the
1152	machine's /etc/rc.conf file.
1153
115420170722:
1155	Clang, llvm, lldb, compiler-rt and libc++ have been upgraded to 5.0.0.
1156	Please see the 20141231 entry below for information about prerequisites
1157	and upgrading, if you are not already using clang 3.5.0 or higher.
1158
115920170701:
1160	WITHOUT_RCMDS is now the default. Set WITH_RCMDS if you need the
1161	r-commands (rlogin, rsh, etc.) to be built with the base system.
1162
116320170625:
1164	The FreeBSD/powerpc platform now uses a 64-bit type for time_t.  This is
1165	a very major ABI incompatible change, so users of FreeBSD/powerpc must
1166	be careful when performing source upgrades.  It is best to run
1167	'make installworld' from an alternate root system, either a live
1168	CD/memory stick, or a temporary root partition.  Additionally, all ports
1169	must be recompiled.  powerpc64 is largely unaffected, except in the case
1170	of 32-bit compatibility.  All 32-bit binaries will be affected.
1171
117220170623:
1173	Forward compatibility for the "ino64" project have been committed. This
1174	will allow most new binaries to run on older kernels in a limited
1175	fashion.  This prevents many of the common foot-shooting actions in the
1176	upgrade as well as the limited ability to roll back the kernel across
1177	the ino64 upgrade. Complicated use cases may not work properly, though
1178	enough simpler ones work to allow recovery in most situations.
1179
118020170620:
1181	Switch back to the BSDL dtc (Device Tree Compiler). Set WITH_GPL_DTC
1182	if you require the GPL compiler.
1183
118420170618:
1185	The internal ABI used for communication between the NFS kernel modules
1186	was changed by r320085, so __FreeBSD_version was bumped to
1187	ensure all the NFS related modules are updated together.
1188
118920170617:
1190	The ABI of struct event was changed by extending the data
1191	member to 64bit and adding ext fields.  For upgrade, same
1192	precautions as for the entry 20170523 "ino64" must be
1193	followed.
1194
119520170531:
1196	The GNU roff toolchain has been removed from base. To render manpages
1197	which are not supported by mandoc(1), man(1) can fallback on GNU roff
1198	from ports (and recommends to install it).
1199	To render roff(7) documents, consider using GNU roff from ports or the
1200	heirloom doctools roff toolchain from ports via pkg install groff or
1201	via pkg install heirloom-doctools.
1202
120320170524:
1204	The ath(4) and ath_hal(4) modules now build piecemeal to allow for
1205	smaller runtime footprint builds.  This is useful for embedded systems
1206	which only require one chipset support.
1207
1208	If you load it as a module, make sure this is in /boot/loader.conf:
1209
1210	if_ath_load="YES"
1211
1212	This will load the HAL, all chip/RF backends and if_ath_pci.
1213	If you have if_ath_pci in /boot/loader.conf, ensure it is after
1214	if_ath or it will not load any HAL chipset support.
1215
1216	If you want to selectively load things (eg on ye cheape ARM/MIPS
1217	platforms where RAM is at a premium) you should:
1218
1219	* load ath_hal
1220	* load the chip modules in question
1221	* load ath_rate, ath_dfs
1222	* load ath_main
1223	* load if_ath_pci and/or if_ath_ahb depending upon your particular
1224	  bus bind type - this is where probe/attach is done.
1225
1226	For further comments/feedback, poke adrian@ .
1227
122820170523:
1229	The "ino64" 64-bit inode project has been committed, which extends
1230	a number of types to 64 bits.  Upgrading in place requires care and
1231	adherence to the documented upgrade procedure.
1232
1233	If using a custom kernel configuration ensure that the
1234	COMPAT_FREEBSD11 option is included (as during the upgrade the
1235	system will be running the ino64 kernel with the existing world).
1236
1237	For the safest in-place upgrade begin by removing previous build
1238	artifacts via "rm -rf /usr/obj/*".  Then, carefully follow the full
1239	procedure documented below under the heading "To rebuild everything and
1240	install it on the current system."  Specifically, a reboot is required
1241	after installing the new kernel before installing world. While an
1242	installworld normally works by accident from multiuser after rebooting
1243	the proper kernel, there are many cases where this will fail across this
1244	upgrade and installworld from single user is required.
1245
124620170424:
1247	The NATM framework including the en(4), fatm(4), hatm(4), and
1248	patm(4) devices has been removed.  Consumers should plan a
1249	migration before the end-of-life date for FreeBSD 11.
1250
125120170420:
1252	GNU diff has been replaced by a BSD licensed diff. Some features of GNU
1253	diff has not been implemented, if those are needed a newer version of
1254	GNU diff is available via the diffutils package under the gdiff name.
1255
125620170413:
1257	As of r316810 for ipfilter, keep frags is no longer assumed when
1258	keep state is specified in a rule. r316810 aligns ipfilter with
1259	documentation in man pages separating keep frags from keep state.
1260	This allows keep state to be specified without forcing keep frags
1261	and allows keep frags to be specified independently of keep state.
1262	To maintain previous behaviour, also specify keep frags with
1263	keep state (as documented in ipf.conf.5).
1264
126520170407:
1266	arm64 builds now use the base system LLD 4.0.0 linker by default,
1267	instead of requiring that the aarch64-binutils port or package be
1268	installed. To continue using aarch64-binutils, set
1269	CROSS_BINUTILS_PREFIX=/usr/local/aarch64-freebsd/bin .
1270
127120170405:
1272	The UDP optimization in entry 20160818 that added the sysctl
1273	net.inet.udp.require_l2_bcast has been reverted.  L2 broadcast
1274	packets will no longer be treated as L3 broadcast packets.
1275
127620170331:
1277	Binds and sends to the loopback addresses, IPv6 and IPv4, will now
1278	use any explicitly assigned loopback address available in the jail
1279	instead of using the first assigned address of the jail.
1280
128120170329:
1282	The ctl.ko module no longer implements the iSCSI target frontend:
1283	cfiscsi.ko does instead.
1284
1285	If building cfiscsi.ko as a kernel module, the module can be loaded
1286	via one of the following methods:
1287	- `cfiscsi_load="YES"` in loader.conf(5).
1288	- Add `cfiscsi` to `$kld_list` in rc.conf(5).
1289	- ctladm(8)/ctld(8), when compiled with iSCSI support
1290	  (`WITH_ISCSI=yes` in src.conf(5))
1291
1292	Please see cfiscsi(4) for more details.
1293
129420170316:
1295	The mmcsd.ko module now additionally depends on geom_flashmap.ko.
1296	Also, mmc.ko and mmcsd.ko need to be a matching pair built from the
1297	same source (previously, the dependency of mmcsd.ko on mmc.ko was
1298	missing, but mmcsd.ko now will refuse to load if it is incompatible
1299	with mmc.ko).
1300
130120170315:
1302	The syntax of ipfw(8) named states was changed to avoid ambiguity.
1303	If you have used named states in the firewall rules, you need to modify
1304	them after installworld and before rebooting. Now named states must
1305	be prefixed with colon.
1306
130720170311:
1308	The old drm (sys/dev/drm/) drivers for i915 and radeon have been
1309	removed as the userland we provide cannot use them. The KMS version
1310	(sys/dev/drm2) supports the same hardware.
1311
131220170302:
1313	Clang, llvm, lldb, compiler-rt and libc++ have been upgraded to 4.0.0.
1314	Please see the 20141231 entry below for information about prerequisites
1315	and upgrading, if you are not already using clang 3.5.0 or higher.
1316
131720170221:
1318	The code that provides support for ZFS .zfs/ directory functionality
1319	has been reimplemented.  It's not possible now to create a snapshot
1320	by mkdir under .zfs/snapshot/.  That should be the only user visible
1321	change.
1322
132320170216:
1324	EISA bus support has been removed. The WITH_EISA option is no longer
1325	valid.
1326
132720170215:
1328	MCA bus support has been removed.
1329
133020170127:
1331	The WITH_LLD_AS_LD / WITHOUT_LLD_AS_LD build knobs have been renamed
1332	WITH_LLD_IS_LD / WITHOUT_LLD_IS_LD, for consistency with CLANG_IS_CC.
1333
133420170112:
1335	The EM_MULTIQUEUE kernel configuration option is deprecated now that
1336	the em(4) driver conforms to iflib specifications.
1337
133820170109:
1339	The igb(4), em(4) and lem(4) ethernet drivers are now implemented via
1340	IFLIB.  If you have a custom kernel configuration that excludes em(4)
1341	but you use igb(4), you need to re-add em(4) to your custom
1342	configuration.
1343
134420161217:
1345	Clang, llvm, lldb, compiler-rt and libc++ have been upgraded to 3.9.1.
1346	Please see the 20141231 entry below for information about prerequisites
1347	and upgrading, if you are not already using clang 3.5.0 or higher.
1348
134920161124:
1350	Clang, llvm, lldb, compiler-rt and libc++ have been upgraded to 3.9.0.
1351	Please see the 20141231 entry below for information about prerequisites
1352	and upgrading, if you are not already using clang 3.5.0 or higher.
1353
135420161119:
1355	The layout of the pmap structure has changed for powerpc to put the pmap
1356	statistics at the front for all CPU variations.  libkvm(3) and all tools
1357	that link against it need to be recompiled.
1358
135920161030:
1360	isl(4) and cyapa(4) drivers now require a new driver,
1361	chromebook_platform(4), to work properly on Chromebook-class hardware.
1362	On other types of hardware the drivers may need to be configured using
1363	device hints.  Please see the corresponding manual pages for details.
1364
136520161017:
1366	The urtwn(4) driver was merged into rtwn(4) and now consists of
1367	rtwn(4) main module + rtwn_usb(4) and rtwn_pci(4) bus-specific
1368	parts.
1369	Also, firmware for RTL8188CE was renamed due to possible name
1370	conflict (rtwnrtl8192cU(B) -> rtwnrtl8192cE(B))
1371
137220161015:
1373	GNU rcs has been removed from base.  It is available as packages:
1374	- rcs: Latest GPLv3 GNU rcs version.
1375	- rcs57: Copy of the latest version of GNU rcs (GPLv2) before it was
1376	removed from base.
1377
137820161008:
1379	Use of the cc_cdg, cc_chd, cc_hd, or cc_vegas congestion control
1380	modules now requires that the kernel configuration contain the
1381	TCP_HHOOK option. (This option is included in the GENERIC kernel.)
1382
138320161003:
1384	The WITHOUT_ELFCOPY_AS_OBJCOPY src.conf(5) knob has been retired.
1385	ELF Tool Chain's elfcopy is always installed as /usr/bin/objcopy.
1386
138720160924:
1388	Relocatable object files with the extension of .So have been renamed
1389	to use an extension of .pico instead.  The purpose of this change is
1390	to avoid a name clash with shared libraries on case-insensitive file
1391	systems.  On those file systems, foo.So is the same file as foo.so.
1392
139320160918:
1394	GNU rcs has been turned off by default.  It can (temporarily) be built
1395	again by adding WITH_RCS knob in src.conf.
1396	Otherwise, GNU rcs is available from packages:
1397	- rcs: Latest GPLv3 GNU rcs version.
1398	- rcs57: Copy of the latest version of GNU rcs (GPLv2) from base.
1399
140020160918:
1401	The backup_uses_rcs functionality has been removed from rc.subr.
1402
140320160908:
1404	The queue(3) debugging macro, QUEUE_MACRO_DEBUG, has been split into
1405	two separate components, QUEUE_MACRO_DEBUG_TRACE and
1406	QUEUE_MACRO_DEBUG_TRASH.  Define both for the original
1407	QUEUE_MACRO_DEBUG behavior.
1408
140920160824:
1410	r304787 changed some ioctl interfaces between the iSCSI userspace
1411	programs and the kernel.  ctladm, ctld, iscsictl, and iscsid must be
1412	rebuilt to work with new kernels.  __FreeBSD_version has been bumped
1413	to 1200005.
1414
141520160818:
1416	The UDP receive code has been updated to only treat incoming UDP
1417	packets that were addressed to an L2 broadcast address as L3
1418	broadcast packets.  It is not expected that this will affect any
1419	standards-conforming UDP application.  The new behaviour can be
1420	disabled by setting the sysctl net.inet.udp.require_l2_bcast to
1421	0.
1422
142320160818:
1424	Remove the openbsd_poll system call.
1425	__FreeBSD_version has been bumped because of this.
1426
142720160708:
1428	The stable/11 branch has been created from head@r302406.
1429
143020160622:
1431	The libc stub for the pipe(2) system call has been replaced with
1432	a wrapper that calls the pipe2(2) system call and the pipe(2)
1433	system call is now only implemented by the kernels that include
1434	"options COMPAT_FREEBSD10" in their config file (this is the
1435	default).  Users should ensure that this option is enabled in
1436	their kernel or upgrade userspace to r302092 before upgrading their
1437	kernel.
1438
143920160527:
1440	CAM will now strip leading spaces from SCSI disks' serial numbers.
1441	This will affect users who create UFS filesystems on SCSI disks using
1442	those disk's diskid device nodes.  For example, if /etc/fstab
1443	previously contained a line like
1444	"/dev/diskid/DISK-%20%20%20%20%20%20%20ABCDEFG0123456", you should
1445	change it to "/dev/diskid/DISK-ABCDEFG0123456".  Users of geom
1446	transforms like gmirror may also be affected.  ZFS users should
1447	generally be fine.
1448
144920160523:
1450	The bitstring(3) API has been updated with new functionality and
1451	improved performance.  But it is binary-incompatible with the old API.
1452	Objects built with the new headers may not be linked against objects
1453	built with the old headers.
1454
145520160520:
1456	The brk and sbrk functions have been removed from libc on arm64.
1457	Binutils from ports has been updated to not link to these
1458	functions and should be updated to the latest version before
1459	installing a new libc.
1460
146120160517:
1462	The armv6 port now defaults to hard float ABI. Limited support
1463	for running both hardfloat and soft float on the same system
1464	is available using the libraries installed with -DWITH_LIBSOFT.
1465	This has only been tested as an upgrade path for installworld
1466	and packages may fail or need manual intervention to run. New
1467	packages will be needed.
1468
1469	To update an existing self-hosted armv6hf system, you must add
1470	TARGET_ARCH=armv6 on the make command line for both the build
1471	and the install steps.
1472
147320160510:
1474	Kernel modules compiled outside of a kernel build now default to
1475	installing to /boot/modules instead of /boot/kernel.  Many kernel
1476	modules built this way (such as those in ports) already overrode
1477	KMODDIR explicitly to install into /boot/modules.  However,
1478	manually building and installing a module from /sys/modules will
1479	now install to /boot/modules instead of /boot/kernel.
1480
148120160414:
1482	The CAM I/O scheduler has been committed to the kernel. There should be
1483	no user visible impact. This does enable NCQ Trim on ada SSDs. While the
1484	list of known rogues that claim support for this but actually corrupt
1485	data is believed to be complete, be on the lookout for data
1486	corruption. The known rogue list is believed to be complete:
1487
1488		o Crucial MX100, M550 drives with MU01 firmware.
1489		o Micron M510 and M550 drives with MU01 firmware.
1490		o Micron M500 prior to MU07 firmware
1491		o Samsung 830, 840, and 850 all firmwares
1492		o FCCT M500 all firmwares
1493
1494	Crucial has firmware http://www.crucial.com/usa/en/support-ssd-firmware
1495	with working NCQ TRIM. For Micron branded drives, see your sales rep for
1496	updated firmware. Black listed drives will work correctly because these
1497	drives work correctly so long as no NCQ TRIMs are sent to them. Given
1498	this list is the same as found in Linux, it's believed there are no
1499	other rogues in the market place. All other models from the above
1500	vendors work.
1501
1502	To be safe, if you are at all concerned, you can quirk each of your
1503	drives to prevent NCQ from being sent by setting:
1504		kern.cam.ada.X.quirks="0x2"
1505	in loader.conf. If the drive requires the 4k sector quirk, set the
1506	quirks entry to 0x3.
1507
150820160330:
1509	The FAST_DEPEND build option has been removed and its functionality is
1510	now the one true way.  The old mkdep(1) style of 'make depend' has
1511	been removed.  See 20160311 for further details.
1512
151320160317:
1514	Resource range types have grown from unsigned long to uintmax_t.  All
1515	drivers, and anything using libdevinfo, need to be recompiled.
1516
151720160311:
1518	WITH_FAST_DEPEND is now enabled by default for in-tree and out-of-tree
1519	builds.  It no longer runs mkdep(1) during 'make depend', and the
1520	'make depend' stage can safely be skipped now as it is auto ran
1521	when building 'make all' and will generate all SRCS and DPSRCS before
1522	building anything else.  Dependencies are gathered at compile time with
1523	-MF flags kept in separate .depend files per object file.  Users should
1524	run 'make cleandepend' once if using -DNO_CLEAN to clean out older
1525	stale .depend files.
1526
152720160306:
1528	On amd64, clang 3.8.0 can now insert sections of type AMD64_UNWIND into
1529	kernel modules.  Therefore, if you load any kernel modules at boot time,
1530	please install the boot loaders after you install the kernel, but before
1531	rebooting, e.g.:
1532
1533	make buildworld
1534	make buildkernel KERNCONF=YOUR_KERNEL_HERE
1535	make installkernel KERNCONF=YOUR_KERNEL_HERE
1536	make -C sys/boot install
1537	<reboot in single user>
1538
1539	Then follow the usual steps, described in the General Notes section,
1540	below.
1541
154220160305:
1543	Clang, llvm, lldb and compiler-rt have been upgraded to 3.8.0.  Please
1544	see the 20141231 entry below for information about prerequisites and
1545	upgrading, if you are not already using clang 3.5.0 or higher.
1546
154720160301:
1548	The AIO subsystem is now a standard part of the kernel.  The
1549	VFS_AIO kernel option and aio.ko kernel module have been removed.
1550	Due to stability concerns, asynchronous I/O requests are only
1551	permitted on sockets and raw disks by default.  To enable
1552	asynchronous I/O requests on all file types, set the
1553	vfs.aio.enable_unsafe sysctl to a non-zero value.
1554
155520160226:
1556	The ELF object manipulation tool objcopy is now provided by the
1557	ELF Tool Chain project rather than by GNU binutils. It should be a
1558	drop-in replacement, with the addition of arm64 support. The
1559	(temporary) src.conf knob WITHOUT_ELFCOPY_AS_OBJCOPY knob may be set
1560	to obtain the GNU version if necessary.
1561
156220160129:
1563	Building ZFS pools on top of zvols is prohibited by default.  That
1564	feature has never worked safely; it's always been prone to deadlocks.
1565	Using a zvol as the backing store for a VM guest's virtual disk will
1566	still work, even if the guest is using ZFS.  Legacy behavior can be
1567	restored by setting vfs.zfs.vol.recursive=1.
1568
156920160119:
1570	The NONE and HPN patches has been removed from OpenSSH.  They are
1571	still available in the security/openssh-portable port.
1572
157320160113:
1574	With the addition of ypldap(8), a new _ypldap user is now required
1575	during installworld. "mergemaster -p" can be used to add the user
1576	prior to installworld, as documented in the handbook.
1577
157820151216:
1579	The tftp loader (pxeboot) now uses the option root-path directive. As a
1580	consequence it no longer looks for a pxeboot.4th file on the tftp
1581	server. Instead it uses the regular /boot infrastructure as with the
1582	other loaders.
1583
158420151211:
1585	The code to start recording plug and play data into the modules has
1586	been committed. While the old tools will properly build a new kernel,
1587	a number of warnings about "unknown metadata record 4" will be produced
1588	for an older kldxref. To avoid such warnings, make sure to rebuild
1589	the kernel toolchain (or world). Make sure that you have r292078 or
1590	later when trying to build 292077 or later before rebuilding.
1591
159220151207:
1593	Debug data files are now built by default with 'make buildworld' and
1594	installed with 'make installworld'. This facilitates debugging but
1595	requires more disk space both during the build and for the installed
1596	world. Debug files may be disabled by setting WITHOUT_DEBUG_FILES=yes
1597	in src.conf(5).
1598
159920151130:
1600	r291527 changed the internal interface between the nfsd.ko and
1601	nfscommon.ko modules. As such, they must both be upgraded to-gether.
1602	__FreeBSD_version has been bumped because of this.
1603
160420151108:
1605	Add support for unicode collation strings leads to a change of
1606	order of files listed by ls(1) for example. To get back to the old
1607	behaviour, set LC_COLLATE environment variable to "C".
1608
1609	Databases administrators will need to reindex their databases given
1610	collation results will be different.
1611
1612	Due to a bug in install(1) it is recommended to remove the ancient
1613	locales before running make installworld.
1614
1615	rm -rf /usr/share/locale/*
1616
161720151030:
1618	The OpenSSL has been upgraded to 1.0.2d.  Any binaries requiring
1619	libcrypto.so.7 or libssl.so.7 must be recompiled.
1620
162120151020:
1622	Qlogic 24xx/25xx firmware images were updated from 5.5.0 to 7.3.0.
1623	Kernel modules isp_2400_multi and isp_2500_multi were removed and
1624	should be replaced with isp_2400 and isp_2500 modules respectively.
1625
162620151017:
1627	The build previously allowed using 'make -n' to not recurse into
1628	sub-directories while showing what commands would be executed, and
1629	'make -n -n' to recursively show commands.  Now 'make -n' will recurse
1630	and 'make -N' will not.
1631
163220151012:
1633	If you specify SENDMAIL_MC or SENDMAIL_CF in make.conf, mergemaster
1634	and etcupdate will now use this file. A custom sendmail.cf is now
1635	updated via this mechanism rather than via installworld.  If you had
1636	excluded sendmail.cf in mergemaster.rc or etcupdate.conf, you may
1637	want to remove the exclusion or change it to "always install".
1638	/etc/mail/sendmail.cf is now managed the same way regardless of
1639	whether SENDMAIL_MC/SENDMAIL_CF is used.  If you are not using
1640	SENDMAIL_MC/SENDMAIL_CF there should be no change in behavior.
1641
164220151011:
1643	Compatibility shims for legacy ATA device names have been removed.
1644	It includes ATA_STATIC_ID kernel option, kern.cam.ada.legacy_aliases
1645	and kern.geom.raid.legacy_aliases loader tunables, kern.devalias.*
1646	environment variables, /dev/ad* and /dev/ar* symbolic links.
1647
164820151006:
1649	Clang, llvm, lldb, compiler-rt and libc++ have been upgraded to 3.7.0.
1650	Please see the 20141231 entry below for information about prerequisites
1651	and upgrading, if you are not already using clang 3.5.0 or higher.
1652
165320150924:
1654	Kernel debug files have been moved to /usr/lib/debug/boot/kernel/,
1655	and renamed from .symbols to .debug. This reduces the size requirements
1656	on the boot partition or file system and provides consistency with
1657	userland debug files.
1658
1659	When using the supported kernel installation method the
1660	/usr/lib/debug/boot/kernel directory will be renamed (to kernel.old)
1661	as is done with /boot/kernel.
1662
1663	Developers wishing to maintain the historical behavior of installing
1664	debug files in /boot/kernel/ can set KERN_DEBUGDIR="" in src.conf(5).
1665
166620150827:
1667	The wireless drivers had undergone changes that remove the 'parent
1668	interface' from the ifconfig -l output. The rc.d network scripts
1669	used to check presence of a parent interface in the list, so old
1670	scripts would fail to start wireless networking. Thus, etcupdate(3)
1671	or mergemaster(8) run is required after kernel update, to update your
1672	rc.d scripts in /etc.
1673
167420150827:
1675	pf no longer supports 'scrub fragment crop' or 'scrub fragment drop-ovl'
1676	These configurations are now automatically interpreted as
1677	'scrub fragment reassemble'.
1678
167920150817:
1680	Kernel-loadable modules for the random(4) device are back. To use
1681	them, the kernel must have
1682
1683	device	random
1684	options	RANDOM_LOADABLE
1685
1686	kldload(8) can then be used to load random_fortuna.ko
1687	or random_yarrow.ko. Please note that due to the indirect
1688	function calls that the loadable modules need to provide,
1689	the build-in variants will be slightly more efficient.
1690
1691	The random(4) kernel option RANDOM_DUMMY has been retired due to
1692	unpopularity. It was not all that useful anyway.
1693
169420150813:
1695	The WITHOUT_ELFTOOLCHAIN_TOOLS src.conf(5) knob has been retired.
1696	Control over building the ELF Tool Chain tools is now provided by
1697	the WITHOUT_TOOLCHAIN knob.
1698
169920150810:
1700	The polarity of Pulse Per Second (PPS) capture events with the
1701	uart(4) driver has been corrected.  Prior to this change the PPS
1702	"assert" event corresponded to the trailing edge of a positive PPS
1703	pulse and the "clear" event was the leading edge of the next pulse.
1704
1705	As the width of a PPS pulse in a typical GPS receiver is on the
1706	order of 1 millisecond, most users will not notice any significant
1707	difference with this change.
1708
1709	Anyone who has compensated for the historical polarity reversal by
1710	configuring a negative offset equal to the pulse width will need to
1711	remove that workaround.
1712
171320150809:
1714	The default group assigned to /dev/dri entries has been changed
1715	from 'wheel' to 'video' with the id of '44'. If you want to have
1716	access to the dri devices please add yourself to the video group
1717	with:
1718
1719	# pw groupmod video -m $USER
1720
172120150806:
1722	The menu.rc and loader.rc files will now be replaced during
1723	upgrades. Please migrate local changes to menu.rc.local and
1724	loader.rc.local instead.
1725
172620150805:
1727	GNU Binutils versions of addr2line, c++filt, nm, readelf, size,
1728	strings and strip have been removed. The src.conf(5) knob
1729	WITHOUT_ELFTOOLCHAIN_TOOLS no longer provides the binutils tools.
1730
173120150728:
1732	As ZFS requires more kernel stack pages than is the default on some
1733	architectures e.g. i386, it now warns if KSTACK_PAGES is less than
1734	ZFS_MIN_KSTACK_PAGES (which is 4 at the time of writing).
1735
1736	Please consider using 'options KSTACK_PAGES=X' where X is greater
1737	than or equal to ZFS_MIN_KSTACK_PAGES i.e. 4 in such configurations.
1738
173920150706:
1740	sendmail has been updated to 8.15.2.  Starting with FreeBSD 11.0
1741	and sendmail 8.15, sendmail uses uncompressed IPv6 addresses by
1742	default, i.e., they will not contain "::".  For example, instead
1743	of ::1, it will be 0:0:0:0:0:0:0:1.  This permits a zero subnet
1744	to have a more specific match, such as different map entries for
1745	IPv6:0:0 vs IPv6:0.  This change requires that configuration
1746	data (including maps, files, classes, custom ruleset, etc.) must
1747	use the same format, so make certain such configuration data is
1748	upgrading.  As a very simple check search for patterns like
1749	'IPv6:[0-9a-fA-F:]*::' and 'IPv6::'.  To return to the old
1750	behavior, set the m4 option confUSE_COMPRESSED_IPV6_ADDRESSES or
1751	the cf option UseCompressedIPv6Addresses.
1752
175320150630:
1754	The default kernel entropy-processing algorithm is now
1755	Fortuna, replacing Yarrow.
1756
1757	Assuming you have 'device random' in your kernel config
1758	file, the configurations allow a kernel option to override
1759	this default. You may choose *ONE* of:
1760
1761	options	RANDOM_YARROW	# Legacy /dev/random algorithm.
1762	options	RANDOM_DUMMY	# Blocking-only driver.
1763
1764	If you have neither, you get Fortuna.  For most people,
1765	read no further, Fortuna will give a /dev/random that works
1766	like it always used to, and the difference will be irrelevant.
1767
1768	If you remove 'device random', you get *NO* kernel-processed
1769	entropy at all. This may be acceptable to folks building
1770	embedded systems, but has complications. Carry on reading,
1771	and it is assumed you know what you need.
1772
1773	*PLEASE* read random(4) and random(9) if you are in the
1774	habit of tweaking kernel configs, and/or if you are a member
1775	of the embedded community, wanting specific and not-usual
1776	behaviour from your security subsystems.
1777
1778	NOTE!! If you use RANDOM_DUMMY and/or have no 'device
1779	random', you will NOT have a functioning /dev/random, and
1780	many cryptographic features will not work, including SSH.
1781	You may also find strange behaviour from the random(3) set
1782	of library functions, in particular sranddev(3), srandomdev(3)
1783	and arc4random(3). The reason for this is that the KERN_ARND
1784	sysctl only returns entropy if it thinks it has some to
1785	share, and with RANDOM_DUMMY or no 'device random' this
1786	will never happen.
1787
178820150623:
1789	An additional fix for the issue described in the 20150614 sendmail
1790	entry below has been committed in revision 284717.
1791
179220150616:
1793	FreeBSD's old make (fmake) has been removed from the system. It is
1794	available as the devel/fmake port or via pkg install fmake.
1795
179620150615:
1797	The fix for the issue described in the 20150614 sendmail entry
1798	below has been committed in revision 284436.  The work
1799	around described in that entry is no longer needed unless the
1800	default setting is overridden by a confDH_PARAMETERS configuration
1801	setting of '5' or pointing to a 512 bit DH parameter file.
1802
180320150614:
1804	ALLOW_DEPRECATED_ATF_TOOLS/ATFFILE support has been removed from
1805	atf.test.mk (included from bsd.test.mk). Please upgrade devel/atf
1806	and devel/kyua to version 0.20+ and adjust any calling code to work
1807	with Kyuafile and kyua.
1808
180920150614:
1810	The import of openssl to address the FreeBSD-SA-15:10.openssl
1811	security advisory includes a change which rejects handshakes
1812	with DH parameters below 768 bits.  sendmail releases prior
1813	to 8.15.2 (not yet released), defaulted to a 512 bit
1814	DH parameter setting for client connections.  To work around
1815	this interoperability, sendmail can be configured to use a
1816	2048 bit DH parameter by:
1817
1818	1. Edit /etc/mail/`hostname`.mc
1819	2. If a setting for confDH_PARAMETERS does not exist or
1820	   exists and is set to a string beginning with '5',
1821	   replace it with '2'.
1822	3. If a setting for confDH_PARAMETERS exists and is set to
1823	   a file path, create a new file with:
1824		openssl dhparam -out /path/to/file 2048
1825	4. Rebuild the .cf file:
1826		cd /etc/mail/; make; make install
1827	5. Restart sendmail:
1828		cd /etc/mail/; make restart
1829
1830	A sendmail patch is coming, at which time this file will be
1831	updated.
1832
183320150604:
1834	Generation of legacy formatted entries have been disabled by default
1835	in pwd_mkdb(8), as all base system consumers of the legacy formatted
1836	entries were converted to use the new format by default when the new,
1837	machine independent format have been added and supported since FreeBSD
1838	5.x.
1839
1840	Please see the pwd_mkdb(8) manual page for further details.
1841
184220150525:
1843	Clang and llvm have been upgraded to 3.6.1 release.  Please see the
1844	20141231 entry below for information about prerequisites and upgrading,
1845	if you are not already using 3.5.0 or higher.
1846
184720150521:
1848	TI platform code switched to using vendor DTS files and this update
1849	may break existing systems running on Beaglebone, Beaglebone Black,
1850	and Pandaboard:
1851
1852	- dtb files should be regenerated/reinstalled. Filenames are the
1853	  same but content is different now
1854	- GPIO addressing was changed, now each GPIO bank (32 pins per bank)
1855	  has its own /dev/gpiocX device, e.g. pin 121 on /dev/gpioc0 in old
1856	  addressing scheme is now pin 25 on /dev/gpioc3.
1857	- Pandaboard: /etc/ttys should be updated, serial console device is
1858	  now /dev/ttyu2, not /dev/ttyu0
1859
186020150501:
1861	soelim(1) from gnu/usr.bin/groff has been replaced by usr.bin/soelim.
1862	If you need the GNU extension from groff soelim(1), install groff
1863	from package: pkg install groff, or via ports: textproc/groff.
1864
186520150423:
1866	chmod, chflags, chown and chgrp now affect symlinks in -R mode as
1867	defined in symlink(7); previously symlinks were silently ignored.
1868
186920150415:
1870	The const qualifier has been removed from iconv(3) to comply with
1871	POSIX.  The ports tree is aware of this from r384038 onwards.
1872
187320150416:
1874	Libraries specified by LIBADD in Makefiles must have a corresponding
1875	DPADD_<lib> variable to ensure correct dependencies.  This is now
1876	enforced in src.libnames.mk.
1877
187820150324:
1879	From legacy ata(4) driver was removed support for SATA controllers
1880	supported by more functional drivers ahci(4), siis(4) and mvs(4).
1881	Kernel modules ataahci and ataadaptec were removed completely,
1882	replaced by ahci and mvs modules respectively.
1883
188420150315:
1885	Clang, llvm and lldb have been upgraded to 3.6.0 release.  Please see
1886	the 20141231 entry below for information about prerequisites and
1887	upgrading, if you are not already using 3.5.0 or higher.
1888
188920150307:
1890	The 32-bit PowerPC kernel has been changed to a position-independent
1891	executable. This can only be booted with a version of loader(8)
1892	newer than January 31, 2015, so make sure to update both world and
1893	kernel before rebooting.
1894
189520150217:
1896	If you are running a -CURRENT kernel since r273872 (Oct 30th, 2014),
1897	but before r278950, the RNG was not seeded properly.  Immediately
1898	upgrade the kernel to r278950 or later and regenerate any keys (e.g.
1899	ssh keys or openssl keys) that were generated w/ a kernel from that
1900	range.  This does not affect programs that directly used /dev/random
1901	or /dev/urandom.  All userland uses of arc4random(3) are affected.
1902
190320150210:
1904	The autofs(4) ABI was changed in order to restore binary compatibility
1905	with 10.1-RELEASE.  The automountd(8) daemon needs to be rebuilt to work
1906	with the new kernel.
1907
190820150131:
1909	The powerpc64 kernel has been changed to a position-independent
1910	executable. This can only be booted with a new version of loader(8),
1911	so make sure to update both world and kernel before rebooting.
1912
191320150118:
1914	Clang and llvm have been upgraded to 3.5.1 release.  This is a bugfix
1915	only release, no new features have been added.  Please see the 20141231
1916	entry below for information about prerequisites and upgrading, if you
1917	are not already using 3.5.0.
1918
191920150107:
1920	ELF tools addr2line, elfcopy (strip), nm, size, and strings are now
1921	taken from the ELF Tool Chain project rather than GNU binutils. They
1922	should be drop-in replacements, with the addition of arm64 support.
1923	The WITHOUT_ELFTOOLCHAIN_TOOLS= knob may be used to obtain the
1924	binutils tools, if necessary. See 20150805 for updated information.
1925
192620150105:
1927	The default Unbound configuration now enables remote control
1928	using a local socket.  Users who have already enabled the
1929	local_unbound service should regenerate their configuration
1930	by running "service local_unbound setup" as root.
1931
193220150102:
1933	The GNU texinfo and GNU info pages have been removed.
1934	To be able to view GNU info pages please install texinfo from ports.
1935
193620141231:
1937	Clang, llvm and lldb have been upgraded to 3.5.0 release.
1938
1939	As of this release, a prerequisite for building clang, llvm and lldb is
1940	a C++11 capable compiler and C++11 standard library.  This means that to
1941	be able to successfully build the cross-tools stage of buildworld, with
1942	clang as the bootstrap compiler, your system compiler or cross compiler
1943	should either be clang 3.3 or later, or gcc 4.8 or later, and your
1944	system C++ library should be libc++, or libdstdc++ from gcc 4.8 or
1945	later.
1946
1947	On any standard FreeBSD 10.x or 11.x installation, where clang and
1948	libc++ are on by default (that is, on x86 or arm), this should work out
1949	of the box.
1950
1951	On 9.x installations where clang is enabled by default, e.g. on x86 and
1952	powerpc, libc++ will not be enabled by default, so libc++ should be
1953	built (with clang) and installed first.  If both clang and libc++ are
1954	missing, build clang first, then use it to build libc++.
1955
1956	On 8.x and earlier installations, upgrade to 9.x first, and then follow
1957	the instructions for 9.x above.
1958
1959	Sparc64 and mips users are unaffected, as they still use gcc 4.2.1 by
1960	default, and do not build clang.
1961
1962	Many embedded systems are resource constrained, and will not be able to
1963	build clang in a reasonable time, or in some cases at all.  In those
1964	cases, cross building bootable systems on amd64 is a workaround.
1965
1966	This new version of clang introduces a number of new warnings, of which
1967	the following are most likely to appear:
1968
1969	-Wabsolute-value
1970
1971	This warns in two cases, for both C and C++:
1972	* When the code is trying to take the absolute value of an unsigned
1973	  quantity, which is effectively a no-op, and almost never what was
1974	  intended.  The code should be fixed, if at all possible.  If you are
1975	  sure that the unsigned quantity can be safely cast to signed, without
1976	  loss of information or undefined behavior, you can add an explicit
1977	  cast, or disable the warning.
1978
1979	* When the code is trying to take an absolute value, but the called
1980	  abs() variant is for the wrong type, which can lead to truncation.
1981	  If you want to disable the warning instead of fixing the code, please
1982	  make sure that truncation will not occur, or it might lead to unwanted
1983	  side-effects.
1984
1985	-Wtautological-undefined-compare and
1986	-Wundefined-bool-conversion
1987
1988	These warn when C++ code is trying to compare 'this' against NULL, while
1989	'this' should never be NULL in well-defined C++ code.  However, there is
1990	some legacy (pre C++11) code out there, which actively abuses this
1991	feature, which was less strictly defined in previous C++ versions.
1992
1993	Squid and openjdk do this, for example.  The warning can be turned off
1994	for C++98 and earlier, but compiling the code in C++11 mode might result
1995	in unexpected behavior; for example, the parts of the program that are
1996	unreachable could be optimized away.
1997
199820141222:
1999	The old NFS client and server (kernel options NFSCLIENT, NFSSERVER)
2000	kernel sources have been removed. The .h files remain, since some
2001	utilities include them. This will need to be fixed later.
2002	If "mount -t oldnfs ..." is attempted, it will fail.
2003	If the "-o" option on mountd(8), nfsd(8) or nfsstat(1) is used,
2004	the utilities will report errors.
2005
200620141121:
2007	The handling of LOCAL_LIB_DIRS has been altered to skip addition of
2008	directories to top level SUBDIR variable when their parent
2009	directory is included in LOCAL_DIRS.  Users with build systems with
2010	such hierarchies and without SUBDIR entries in the parent
2011	directory Makefiles should add them or add the directories to
2012	LOCAL_DIRS.
2013
201420141109:
2015	faith(4) and faithd(8) have been removed from the base system. Faith
2016	has been obsolete for a very long time.
2017
201820141104:
2019	vt(4), the new console driver, is enabled by default. It brings
2020	support for Unicode and double-width characters, as well as
2021	support for UEFI and integration with the KMS kernel video
2022	drivers.
2023
2024	You may need to update your console settings in /etc/rc.conf,
2025	most probably the keymap. During boot, /etc/rc.d/syscons will
2026	indicate what you need to do.
2027
2028	vt(4) still has issues and lacks some features compared to
2029	syscons(4). See the wiki for up-to-date information:
2030	  https://wiki.freebsd.org/Newcons
2031
2032	If you want to keep using syscons(4), you can do so by adding
2033	the following line to /boot/loader.conf:
2034	  kern.vty=sc
2035
203620141102:
2037	pjdfstest has been integrated into kyua as an opt-in test suite.
2038	Please see share/doc/pjdfstest/README for more details on how to
2039	execute it.
2040
204120141009:
2042	gperf has been removed from the base system for architectures
2043	that use clang. Ports that require gperf will obtain it from the
2044	devel/gperf port.
2045
204620140923:
2047	pjdfstest has been moved from tools/regression/pjdfstest to
2048	contrib/pjdfstest .
2049
205020140922:
2051	At svn r271982, The default linux compat kernel ABI has been adjusted
2052	to 2.6.18 in support of the linux-c6 compat ports infrastructure
2053	update.  If you wish to continue using the linux-f10 compat ports,
2054	add compat.linux.osrelease=2.6.16 to your local sysctl.conf.  Users are
2055	encouraged to update their linux-compat packages to linux-c6 during
2056	their next update cycle.
2057
205820140729:
2059	The ofwfb driver, used to provide a graphics console on PowerPC when
2060	using vt(4), no longer allows mmap() of all physical memory. This
2061	will prevent Xorg on PowerPC with some ATI graphics cards from
2062	initializing properly unless x11-servers/xorg-server is updated to
2063	1.12.4_8 or newer.
2064
206520140723:
2066	The xdev targets have been converted to using TARGET and
2067	TARGET_ARCH instead of XDEV and XDEV_ARCH.
2068
206920140719:
2070	The default unbound configuration has been modified to address
2071	issues with reverse lookups on networks that use private
2072	address ranges.  If you use the local_unbound service, run
2073	"service local_unbound setup" as root to regenerate your
2074	configuration, then "service local_unbound reload" to load the
2075	new configuration.
2076
207720140709:
2078	The GNU texinfo and GNU info pages are not built and installed
2079	anymore, WITH_INFO knob has been added to allow to built and install
2080	them again.
2081	UPDATE: see 20150102 entry on texinfo's removal
2082
208320140708:
2084	The GNU readline library is now an INTERNALLIB - that is, it is
2085	statically linked into consumers (GDB and variants) in the base
2086	system, and the shared library is no longer installed.  The
2087	devel/readline port is available for third party software that
2088	requires readline.
2089
209020140702:
2091	The Itanium architecture (ia64) has been removed from the list of
2092	known architectures. This is the first step in the removal of the
2093	architecture.
2094
209520140701:
2096	Commit r268115 has added NFSv4.1 server support, merged from
2097	projects/nfsv4.1-server.  Since this includes changes to the
2098	internal interfaces between the NFS related modules, a full
2099	build of the kernel and modules will be necessary.
2100	__FreeBSD_version has been bumped.
2101
210220140629:
2103	The WITHOUT_VT_SUPPORT kernel config knob has been renamed
2104	WITHOUT_VT.  (The other _SUPPORT knobs have a consistent meaning
2105	which differs from the behaviour controlled by this knob.)
2106
210720140619:
2108	Maximal length of the serial number in CTL was increased from 16 to
2109	64 chars, that breaks ABI.  All CTL-related tools, such as ctladm
2110	and ctld, need to be rebuilt to work with a new kernel.
2111
211220140606:
2113	The libatf-c and libatf-c++ major versions were downgraded to 0 and
2114	1 respectively to match the upstream numbers.  They were out of
2115	sync because, when they were originally added to FreeBSD, the
2116	upstream versions were not respected.  These libraries are private
2117	and not yet built by default, so renumbering them should be a
2118	non-issue.  However, unclean source trees will yield broken test
2119	programs once the operator executes "make delete-old-libs" after a
2120	"make installworld".
2121
2122	Additionally, the atf-sh binary was made private by moving it into
2123	/usr/libexec/.  Already-built shell test programs will keep the
2124	path to the old binary so they will break after "make delete-old"
2125	is run.
2126
2127	If you are using WITH_TESTS=yes (not the default), wipe the object
2128	tree and rebuild from scratch to prevent spurious test failures.
2129	This is only needed once: the misnumbered libraries and misplaced
2130	binaries have been added to OptionalObsoleteFiles.inc so they will
2131	be removed during a clean upgrade.
2132
213320140512:
2134	Clang and llvm have been upgraded to 3.4.1 release.
2135
213620140508:
2137	We bogusly installed src.opts.mk in /usr/share/mk. This file should
2138	be removed to avoid issues in the future (and has been added to
2139	ObsoleteFiles.inc).
2140
214120140505:
2142	/etc/src.conf now affects only builds of the FreeBSD src tree. In the
2143	past, it affected all builds that used the bsd.*.mk files. The old
2144	behavior was a bug, but people may have relied upon it. To get this
2145	behavior back, you can .include /etc/src.conf from /etc/make.conf
2146	(which is still global and isn't changed). This also changes the
2147	behavior of incremental builds inside the tree of individual
2148	directories. Set MAKESYSPATH to ".../share/mk" to do that.
2149	Although this has survived make universe and some upgrade scenarios,
2150	other upgrade scenarios may have broken. At least one form of
2151	temporary breakage was fixed with MAKESYSPATH settings for buildworld
2152	as well... In cases where MAKESYSPATH isn't working with this
2153	setting, you'll need to set it to the full path to your tree.
2154
2155	One side effect of all this cleaning up is that bsd.compiler.mk
2156	is no longer implicitly included by bsd.own.mk. If you wish to
2157	use COMPILER_TYPE, you must now explicitly include bsd.compiler.mk
2158	as well.
2159
216020140430:
2161	The lindev device has been removed since /dev/full has been made a
2162	standard device.  __FreeBSD_version has been bumped.
2163
216420140424:
2165	The knob WITHOUT_VI was added to the base system, which controls
2166	building ex(1), vi(1), etc. Older releases of FreeBSD required ex(1)
2167	in order to reorder files share/termcap and didn't build ex(1) as a
2168	build tool, so building/installing with WITH_VI is highly advised for
2169	build hosts for older releases.
2170
2171	This issue has been fixed in stable/9 and stable/10 in r277022 and
2172	r276991, respectively.
2173
217420140418:
2175	The YES_HESIOD knob has been removed. It has been obsolete for
2176	a decade. Please move to using WITH_HESIOD instead or your builds
2177	will silently lack HESIOD.
2178
217920140405:
2180	The uart(4) driver has been changed with respect to its handling
2181	of the low-level console. Previously the uart(4) driver prevented
2182	any process from changing the baudrate or the CLOCAL and HUPCL
2183	control flags. By removing the restrictions, operators can make
2184	changes to the serial console port without having to reboot.
2185	However, when getty(8) is started on the serial device that is
2186	associated with the low-level console, a misconfigured terminal
2187	line in /etc/ttys will now have a real impact.
2188	Before upgrading the kernel, make sure that /etc/ttys has the
2189	serial console device configured as 3wire without baudrate to
2190	preserve the previous behaviour. E.g:
2191	    ttyu0  "/usr/libexec/getty 3wire"  vt100  on  secure
2192
219320140306:
2194	Support for libwrap (TCP wrappers) in rpcbind was disabled by default
2195	to improve performance.  To re-enable it, if needed, run rpcbind
2196	with command line option -W.
2197
219820140226:
2199	Switched back to the GPL dtc compiler due to updates in the upstream
2200	dts files not being supported by the BSDL dtc compiler. You will need
2201	to rebuild your kernel toolchain to pick up the new compiler. Core dumps
2202	may result while building dtb files during a kernel build if you fail
2203	to do so. Set WITHOUT_GPL_DTC if you require the BSDL compiler.
2204
220520140216:
2206	Clang and llvm have been upgraded to 3.4 release.
2207
220820140216:
2209	The nve(4) driver has been removed.  Please use the nfe(4) driver
2210	for NVIDIA nForce MCP Ethernet adapters instead.
2211
221220140212:
2213	An ABI incompatibility crept into the libc++ 3.4 import in r261283.
2214	This could cause certain C++ applications using shared libraries built
2215	against the previous version of libc++ to crash.  The incompatibility
2216	has now been fixed, but any C++ applications or shared libraries built
2217	between r261283 and r261801 should be recompiled.
2218
221920140204:
2220	OpenSSH will now ignore errors caused by kernel lacking of Capsicum
2221	capability mode support.  Please note that enabling the feature in
2222	kernel is still highly recommended.
2223
222420140131:
2225	OpenSSH is now built with sandbox support, and will use sandbox as
2226	the default privilege separation method.  This requires Capsicum
2227	capability mode support in kernel.
2228
222920140128:
2230	The libelf and libdwarf libraries have been updated to newer
2231	versions from upstream. Shared library version numbers for
2232	these two libraries were bumped. Any ports or binaries
2233	requiring these two libraries should be recompiled.
2234	__FreeBSD_version is bumped to 1100006.
2235
223620140110:
2237	If a Makefile in a tests/ directory was auto-generating a Kyuafile
2238	instead of providing an explicit one, this would prevent such
2239	Makefile from providing its own Kyuafile in the future during
2240	NO_CLEAN builds.  This has been fixed in the Makefiles but manual
2241	intervention is needed to clean an objdir if you use NO_CLEAN:
2242	  # find /usr/obj -name Kyuafile | xargs rm -f
2243
224420131213:
2245	The behavior of gss_pseudo_random() for the krb5 mechanism
2246	has changed, for applications requesting a longer random string
2247	than produced by the underlying enctype's pseudo-random() function.
2248	In particular, the random string produced from a session key of
2249	enctype aes256-cts-hmac-sha1-96 or aes256-cts-hmac-sha1-96 will
2250	be different at the 17th octet and later, after this change.
2251	The counter used in the PRF+ construction is now encoded as a
2252	big-endian integer in accordance with RFC 4402.
2253	__FreeBSD_version is bumped to 1100004.
2254
225520131108:
2256	The WITHOUT_ATF build knob has been removed and its functionality
2257	has been subsumed into the more generic WITHOUT_TESTS.  If you were
2258	using the former to disable the build of the ATF libraries, you
2259	should change your settings to use the latter.
2260
226120131025:
2262	The default version of mtree is nmtree which is obtained from
2263	NetBSD.  The output is generally the same, but may vary
2264	slightly.  If you found you need identical output adding
2265	"-F freebsd9" to the command line should do the trick.  For the
2266	time being, the old mtree is available as fmtree.
2267
226820131014:
2269	libbsdyml has been renamed to libyaml and moved to /usr/lib/private.
2270	This will break ports-mgmt/pkg. Rebuild the port, or upgrade to pkg
2271	1.1.4_8 and verify bsdyml not linked in, before running "make
2272	delete-old-libs":
2273	  # make -C /usr/ports/ports-mgmt/pkg build deinstall install clean
2274	  or
2275	  # pkg install pkg; ldd /usr/local/sbin/pkg | grep bsdyml
2276
227720131010:
2278	The stable/10 branch has been created in subversion from head
2279	revision r256279.
2280
2281COMMON ITEMS:
2282
2283	General Notes
2284	-------------
2285	Sometimes, obscure build problems are the result of environment
2286	poisoning.  This can happen because the make utility reads its
2287	environment when searching for values for global variables.  To run
2288	your build attempts in an "environmental clean room", prefix all make
2289	commands with 'env -i '.  See the env(1) manual page for more details.
2290	Occasionally a build failure will occur with "make -j" due to a race
2291	condition.  If this happens try building again without -j, and please
2292	report a bug if it happens consistently.
2293
2294	When upgrading from one major version to another it is generally best to
2295	upgrade to the latest code in the currently installed branch first, then
2296	do an upgrade to the new branch. This is the best-tested upgrade path,
2297	and has the highest probability of being successful.  Please try this
2298	approach if you encounter problems with a major version upgrade.  Since
2299	the stable 4.x branch point, one has generally been able to upgrade from
2300	anywhere in the most recent stable branch to head / current (or even the
2301	last couple of stable branches). See the top of this file when there's
2302	an exception.
2303
2304	The update process will emit an error on an attempt to perform a build
2305	or install from a FreeBSD version below the earliest supported version.
2306	When updating from an older version the update should be performed one
2307	major release at a time, including running `make delete-old` at each
2308	step.
2309
2310	When upgrading a live system, having a root shell around before
2311	installing anything can help undo problems. Not having a root shell
2312	around can lead to problems if pam has changed too much from your
2313	starting point to allow continued authentication after the upgrade.
2314
2315	This file should be read as a log of events. When a later event changes
2316	information of a prior event, the prior event should not be deleted.
2317	Instead, a pointer to the entry with the new information should be
2318	placed in the old entry. Readers of this file should also sanity check
2319	older entries before relying on them blindly. Authors of new entries
2320	should write them with this in mind.
2321
2322	ZFS notes
2323	---------
2324	When upgrading the boot ZFS pool to a new version, always follow
2325	these two steps:
2326
2327	1.) recompile and reinstall the ZFS boot loader and boot block
2328	(this is part of "make buildworld" and "make installworld")
2329
2330	2.) update the ZFS boot block on your boot drive
2331
2332	The following example updates the ZFS boot block on the
2333	freebsd-boot partition of a GPT partitioned drive ada0:
2334	"gpart bootcode -p /boot/gptzfsboot -i $N ada0"
2335	The value $N will typically be 1 (if booting from BIOS) or 2 (if
2336	booting from EFI).
2337
2338	Non-boot pools do not need these updates.
2339
2340	To build a kernel
2341	-----------------
2342	If you are updating from a prior version of FreeBSD (even one just
2343	a few days old), you should follow this procedure.  It is the most
2344	failsafe as it uses a /usr/obj tree with a fresh mini-buildworld,
2345
2346	make kernel-toolchain
2347	make -DALWAYS_CHECK_MAKE buildkernel KERNCONF=YOUR_KERNEL_HERE
2348	make -DALWAYS_CHECK_MAKE installkernel KERNCONF=YOUR_KERNEL_HERE
2349
2350	To test a kernel once
2351	---------------------
2352	If you just want to boot a kernel once (because you are not sure
2353	if it works, or if you want to boot a known bad kernel to provide
2354	debugging information) run
2355	make installkernel KERNCONF=YOUR_KERNEL_HERE KODIR=/boot/testkernel
2356	nextboot -k testkernel
2357
2358	To rebuild everything and install it on the current system.
2359	-----------------------------------------------------------
2360	# Note: sometimes if you are running current you gotta do more than
2361	# is listed here if you are upgrading from a really old current.
2362
2363	<make sure you have good level 0 dumps>
2364	make buildworld
2365	make buildkernel KERNCONF=YOUR_KERNEL_HERE
2366	make installkernel KERNCONF=YOUR_KERNEL_HERE
2367							[1]
2368	<reboot in single user>				[3]
2369	mergemaster -Fp					[5]
2370	make installworld
2371	mergemaster -Fi					[4]
2372	make delete-old					[6]
2373	<reboot>
2374
2375	To cross-install current onto a separate partition
2376	--------------------------------------------------
2377	# In this approach we use a separate partition to hold
2378	# current's root, 'usr', and 'var' directories.   A partition
2379	# holding "/", "/usr" and "/var" should be about 2GB in
2380	# size.
2381
2382	<make sure you have good level 0 dumps>
2383	<boot into -stable>
2384	make buildworld
2385	make buildkernel KERNCONF=YOUR_KERNEL_HERE
2386	<maybe newfs current's root partition>
2387	<mount current's root partition on directory ${CURRENT_ROOT}>
2388	make installworld DESTDIR=${CURRENT_ROOT} -DDB_FROM_SRC
2389	make distribution DESTDIR=${CURRENT_ROOT} # if newfs'd
2390	make installkernel KERNCONF=YOUR_KERNEL_HERE DESTDIR=${CURRENT_ROOT}
2391	cp /etc/fstab ${CURRENT_ROOT}/etc/fstab 		   # if newfs'd
2392	<edit ${CURRENT_ROOT}/etc/fstab to mount "/" from the correct partition>
2393	<reboot into current>
2394	<do a "native" rebuild/install as described in the previous section>
2395	<maybe install compatibility libraries from ports/misc/compat*>
2396	<reboot>
2397
2398
2399	To upgrade in-place from stable to current
2400	----------------------------------------------
2401	<make sure you have good level 0 dumps>
2402	make buildworld					[9]
2403	make buildkernel KERNCONF=YOUR_KERNEL_HERE	[8]
2404	make installkernel KERNCONF=YOUR_KERNEL_HERE
2405							[1]
2406	<reboot in single user>				[3]
2407	mergemaster -Fp					[5]
2408	make installworld
2409	mergemaster -Fi					[4]
2410	make delete-old					[6]
2411	<reboot>
2412
2413	Make sure that you've read the UPDATING file to understand the
2414	tweaks to various things you need.  At this point in the life
2415	cycle of current, things change often and you are on your own
2416	to cope.  The defaults can also change, so please read ALL of
2417	the UPDATING entries.
2418
2419	Also, if you are tracking -current, you must be subscribed to
2420	[email protected].  Make sure that before you update
2421	your sources that you have read and understood all the recent
2422	messages there.  If in doubt, please track -stable which has
2423	much fewer pitfalls.
2424
2425	[1] If you have third party modules, such as vmware, you should disable
2426	them at this point so they don't crash your system on
2427	reboot. Alternatively, you should rebuild all the modules you have in
2428	your system and install them as well.  If you are running -current, you
2429	should seriously consider placing all sources to all the modules for
2430	your system (or symlinks to them) in /usr/local/sys/modules so this
2431	happens automatically. If all your modules come from ports, then adding
2432	the port origin directories to PORTS_MODULES instead is also automatic
2433	and effective, eg:
2434	     PORTS_MODULES+=x11/nvidia-driver
2435
2436	[3] From the bootblocks, boot -s, and then do
2437		fsck -p
2438		mount -u /
2439		mount -a
2440		sh /etc/rc.d/zfs start	# mount zfs filesystem, if needed
2441		cd src			# full path to source
2442		adjkerntz -i		# if CMOS is wall time
2443	Also, when doing a major release upgrade, it is required that you boot
2444	into single user mode to do the installworld.
2445
2446	[4] Note: This step is non-optional.  Failure to do this step
2447	can result in a significant reduction in the functionality of the
2448	system.  Attempting to do it by hand is not recommended and those
2449	that pursue this avenue should read this file carefully, as well
2450	as the archives of freebsd-current and freebsd-hackers mailing lists
2451	for potential gotchas.  The -U option is also useful to consider.
2452	See mergemaster(8) for more information.
2453
2454	[5] Usually this step is a no-op.  However, from time to time
2455	you may need to do this if you get unknown user in the following
2456	step.  It never hurts to do it all the time.  You may need to
2457	install a new mergemaster (cd src/usr.sbin/mergemaster && make
2458	install) after the buildworld before this step if you last updated
2459	from current before 20130425 or from -stable before 20130430.
2460
2461	[6] This only deletes old files and directories. Old libraries
2462	can be deleted by "make delete-old-libs", but you have to make
2463	sure that no program is using those libraries anymore.
2464
2465	[8] The new kernel must be able to run existing binaries used by an
2466	installworld.  When upgrading across major versions, the new kernel's
2467	configuration must include the correct COMPAT_FREEBSD<n> option for
2468	existing binaries (e.g. COMPAT_FREEBSD11 to run 11.x binaries).  Failure
2469	to do so may leave you with a system that is hard to boot to recover. A
2470	GENERIC kernel will include suitable compatibility options to run
2471	binaries from older branches.  Note that the ability to run binaries
2472	from unsupported branches is not guaranteed.
2473
2474	Make sure that you merge any new devices from GENERIC since the
2475	last time you updated your kernel config file. Options also
2476	change over time, so you may need to adjust your custom kernels
2477	for these as well.
2478
2479	[9] If CPUTYPE is defined in your /etc/make.conf, make sure to use the
2480	"?=" instead of the "=" assignment operator, so that buildworld can
2481	override the CPUTYPE if it needs to.
2482
2483	MAKEOBJDIRPREFIX must be defined in an environment variable, and
2484	not on the command line, or in /etc/make.conf.  buildworld will
2485	warn if it is improperly defined.
2486FORMAT:
2487
2488This file contains a list, in reverse chronological order, of major
2489breakages in tracking -current.  It is not guaranteed to be a complete
2490list of such breakages, and only contains entries since September 23, 2011.
2491If you need to see UPDATING entries from before that date, you will need
2492to fetch an UPDATING file from an older FreeBSD release.
2493
2494Copyright information:
2495
2496Copyright 1998-2009 M. Warner Losh <[email protected]>
2497
2498Redistribution, publication, translation and use, with or without
2499modification, in full or in part, in any form or format of this
2500document are permitted without further permission from the author.
2501
2502THIS DOCUMENT IS PROVIDED BY WARNER LOSH ``AS IS'' AND ANY EXPRESS OR
2503IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED
2504WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE
2505DISCLAIMED.  IN NO EVENT SHALL WARNER LOSH BE LIABLE FOR ANY DIRECT,
2506INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES
2507(INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR
2508SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
2509HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
2510STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING
2511IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
2512POSSIBILITY OF SUCH DAMAGE.
2513
2514Contact Warner Losh if you have any questions about your use of
2515this document.
2516
2517$FreeBSD$
2518