17be29291SGlen BarberUpdating Information for users of FreeBSD stable/14. 253dfde79SWarner Losh 3456b5dd8SWarner LoshThis file is maintained and copyrighted by M. Warner Losh <[email protected]>. 4456b5dd8SWarner LoshSee end of file for further details. For commonly done items, please see the 5456b5dd8SWarner LoshCOMMON ITEMS: section later in the file. These instructions assume that you 6456b5dd8SWarner Loshbasically know what you are doing. If not, then please consult the FreeBSD 7e0fb6dc3SRobert Watsonhandbook: 8e0fb6dc3SRobert Watson 9c1a14887SCeri Davies https://docs.freebsd.org/en/books/handbook/cutting-edge/#makeworld 10e72fd46aSWarner Losh 112c724730SWarner LoshItems affecting the ports and packages system can be found in 126dadf78fSGlen Barber/usr/ports/UPDATING. Please read that file before updating system packages 136dadf78fSGlen Barberand/or ports. 142c724730SWarner Losh 15*1eb03b05SPhilip Paeps20250410: 16*1eb03b05SPhilip Paeps 14.2-RELEASE-p3 EN-25:04.tzdata 17*1eb03b05SPhilip Paeps EN-25:05.expat 18*1eb03b05SPhilip Paeps EN-25:06.daemon 19*1eb03b05SPhilip Paeps EN-25:07.openssl 20*1eb03b05SPhilip Paeps EN-25:08.caroot 21*1eb03b05SPhilip Paeps 22*1eb03b05SPhilip Paeps Timezone database information update [EN-25:04.tzdata] 23*1eb03b05SPhilip Paeps 24*1eb03b05SPhilip Paeps Update expat to 2.7.1 [EN-25:05.expat] 25*1eb03b05SPhilip Paeps 26*1eb03b05SPhilip Paeps daemon(8) missing signals [EN-25:06.daemon] 27*1eb03b05SPhilip Paeps 28*1eb03b05SPhilip Paeps Update OpenSSL to 3.0.16 [EN-25:07.openssl] 29*1eb03b05SPhilip Paeps 30*1eb03b05SPhilip Paeps Root certificate bundle update [EN-25:08.caroot] 31*1eb03b05SPhilip Paeps 32ac2cbb46SGordon Tetlow20250221: 33ac2cbb46SGordon Tetlow 14.2-RELEASE-p2 SA-25:05.openssh 34ac2cbb46SGordon Tetlow 35ac2cbb46SGordon Tetlow Multiple vulnerabilities in OpenSSH [SA-25:05.openssh] 36ac2cbb46SGordon Tetlow 37a1e3ff65SMark Johnston20250129: 38a1e3ff65SMark Johnston 14.2-RELEASE-p1 SA-25:02.fs 39a1e3ff65SMark Johnston SA-25:03.etcupdate 40a1e3ff65SMark Johnston SA-25:04.ktrace 41a1e3ff65SMark Johnston EN-25:02.audit 42a1e3ff65SMark Johnston EN-25:03.tzdata 43a1e3ff65SMark Johnston 44a1e3ff65SMark Johnston Buffer overflow in some filesystems via NFS [SA-25:02.fs] 45a1e3ff65SMark Johnston 46a1e3ff65SMark Johnston Unprivileged access to system files [SA-25:03.etcupdate] 47a1e3ff65SMark Johnston 48a1e3ff65SMark Johnston Uninitialized kernel memory disclosure via ktrace(2) [SA-25:04.ktrace] 49a1e3ff65SMark Johnston 50a1e3ff65SMark Johnston System call auditing disabled by DTrace [EN-25:02.audit] 51a1e3ff65SMark Johnston 52a1e3ff65SMark Johnston Timezone database information update [EN-25:03.tzdata] 53a1e3ff65SMark Johnston 54c8918d6cSColin Percival20241203: 55c8918d6cSColin Percival 14.2-RELEASE. 56c8918d6cSColin Percival 5728ff3ab2SDimitry Andric20240419: 5828ff3ab2SDimitry Andric Clang, llvm, lld, lldb, compiler-rt, libc++, libunwind and openmp have 5928ff3ab2SDimitry Andric been upgraded to 18.1.6. It is important that you run `make delete-old` 6028ff3ab2SDimitry Andric as described in the COMMON ITEMS section, otherwise several libc++ 6128ff3ab2SDimitry Andric headers that are obsolete and need to be removed can cause compilation 6228ff3ab2SDimitry Andric errors in C++ programs. 6328ff3ab2SDimitry Andric 64cc32cfabSDimitry Andric20240415: 65cc32cfabSDimitry Andric MFC e0f3dc82727f: If you have an arm64 system that uses ACPI, you will 66cc32cfabSDimitry Andric need to update your loader.efi in the ESP when you update past this 67cc32cfabSDimitry Andric point. Detection of ACPI was moved earlier in the binary so the scripts 68cc32cfabSDimitry Andric could use it, but old binaries don't have this, so we default to 'no 69cc32cfabSDimitry Andric ACPI' in this case. 70cc32cfabSDimitry Andric 71cc32cfabSDimitry Andric20240218: 72cc32cfabSDimitry Andric MFC of 713db49d06de changed 'struct ieee80211vap' internals in net80211. 73cc32cfabSDimitry Andric Given we do not have enough spares and the struct is allocated by 74cc32cfabSDimitry Andric drivers, all wireless drivers have to be recompiled. 75cc32cfabSDimitry Andric __FreeBSD_version is updated to 1400509 to track this change. 76cc32cfabSDimitry Andric 77cc32cfabSDimitry Andric20240207: 78cc32cfabSDimitry Andric sendmail 8.18.1 has been imported and merged. This version enforces 79cc32cfabSDimitry Andric stricter RFC compliance by default, especially with respect to line 80cc32cfabSDimitry Andric endings. This may cause issues with receiving messages from 81cc32cfabSDimitry Andric non-compliant MTAs; please see the first 8.18.1 release note in 82cc32cfabSDimitry Andric contrib/sendmail/RELEASE_NOTES for mitigations. 83cc32cfabSDimitry Andric 84a25531dbSStéphane Rochoy20240202: 85a25531dbSStéphane Rochoy Loader now also read configuration files listed in local_loader_conf_files. 86a25531dbSStéphane Rochoy Files listed here are the last ones read. And /boot/loader.conf.local was 87a25531dbSStéphane Rochoy moved from loader_conf_files to local_loader_conf_files leaving only 88a25531dbSStéphane Rochoy loader.conf and device.hints in loader_conf_files by default. 89a25531dbSStéphane Rochoy 90a25531dbSStéphane Rochoy The following sequencing is applied: 91a25531dbSStéphane Rochoy 92a25531dbSStéphane Rochoy 1. Bootstrap: 93a25531dbSStéphane Rochoy /boot/defaults/loader.conf 94a25531dbSStéphane Rochoy 95a25531dbSStéphane Rochoy 2. Read loader_conf_files files: 96a25531dbSStéphane Rochoy /boot/device.hints 97a25531dbSStéphane Rochoy /boot/loader.conf 98a25531dbSStéphane Rochoy 99a25531dbSStéphane Rochoy 3. Read loader_conf_dirs files: 100a25531dbSStéphane Rochoy /boot/loader.conf.d/*.conf 101a25531dbSStéphane Rochoy 102a25531dbSStéphane Rochoy 4. And finally, rread local_loader_conf_files files: 103a25531dbSStéphane Rochoy /boot/loader.conf.local 104a25531dbSStéphane Rochoy 10515c21f32SRick Macklem20240119: 10615c21f32SRick Macklem Commit d34f4baaf138 changed the internal interface between 10715c21f32SRick Macklem the nfscommon and nfscl modules. As such, both need to be 10815c21f32SRick Macklem rebuilt from sources. Therefore, bump __FreeBSD_version 10915c21f32SRick Macklem to 1400506. 11015c21f32SRick Macklem 111ef38bebcSRick Macklem20231229: 112ef38bebcSRick Macklem Commit 925d9b3abac2 modified the internal API between 113ef38bebcSRick Macklem the nfscommon and nfscl modules. 114ef38bebcSRick Macklem As such, both of these modules need to be rebuilt from 115ef38bebcSRick Macklem sources. Therefore, the __FreeBSD_version has been bumped 116ef38bebcSRick Macklem to 1400503. 117ef38bebcSRick Macklem 118100b825bSRick Macklem20231224: 119100b825bSRick Macklem Commits acc704b36192 and b8e137d8d32d both modified the 120100b825bSRick Macklem internal API between the kgssapi and krpc modules. 121100b825bSRick Macklem As such, both of these modules need to be rebuilt from 122100b825bSRick Macklem sources. 123100b825bSRick Macklem As such, __FreeBSD_version has been bumped to 1400502. 124100b825bSRick Macklem 125cc32cfabSDimitry Andric20231113: 126cc32cfabSDimitry Andric The WITHOUT_LLD_IS_LD option has been removed. When LLD is enabled 127cc32cfabSDimitry Andric it is always installed as /usr/bin/ld. 128cc32cfabSDimitry Andric 1292eab6bc3SDoug Rabson20230924: 130254f85f0SDoug Rabson Enable splitting out pkgbase manpages into separate packages by 131254f85f0SDoug Rabson default. To disable this, set WITHOUT_MANSPLITPKG=yes in src.conf. 132254f85f0SDoug Rabson 133254f85f0SDoug Rabson 134254f85f0SDoug Rabson20230924: 1352eab6bc3SDoug Rabson Move standard include files to the clibs-dev package and move clang 1362eab6bc3SDoug Rabson internal libraries and headers to clang and clang-dev. Upgrading systems 1372eab6bc3SDoug Rabson installed using pkgbase past this change involves extra steps to allow 1382eab6bc3SDoug Rabson for these file moves: 1392eab6bc3SDoug Rabson 1402eab6bc3SDoug Rabson pkg upgrade -y FreeBSD-utilities 1412eab6bc3SDoug Rabson pkg upgrade -y FreeBSD-utilities-dev 1422eab6bc3SDoug Rabson pkg upgrade -y 1432eab6bc3SDoug Rabson 1443efecb71SGlen Barber20230824: 1453efecb71SGlen Barber __FreeBSD_version 1400097 after the branching stable/14 from main. 1465ad05815SWarner Losh 1474722ceb7SEd Maste20230817: 1484722ceb7SEd Maste Serial communication (in boot loaders, kernel, and userland) has 1494722ceb7SEd Maste been changed to default to 115200 bps, in line with common industry 1504722ceb7SEd Maste practice and typcial firmware serial console redirection 1514722ceb7SEd Maste configuration. 1524722ceb7SEd Maste 1534722ceb7SEd Maste Note that the early x86 BIOS bootloader (i.e., boot0sio) does not 154edacf4b4SGraham Perrin support rates above 9600 bps and is not changed. boot0sio users may 1554722ceb7SEd Maste set BOOT_COMCONSOLE_SPEED=9600 to use 9600 for all of the boot 1564722ceb7SEd Maste components, or use the standard boot0 and have the boot2 stage start 1574722ceb7SEd Maste with the serial port at 115200. 1584722ceb7SEd Maste 15937c8ee88SMarius Strobl20230807: 16037c8ee88SMarius Strobl Following the general removal of MIPS support, the ath(4) AHB bus- 16137c8ee88SMarius Strobl frontend has been removed, too, and building of the PCI support is 16237c8ee88SMarius Strobl integrated with the ath(4) main module again. As a result, there's 16337c8ee88SMarius Strobl no longer a need for if_ath_pci_load="YES" in /boot/loader.conf or 16437c8ee88SMarius Strobl "device ath_pci" in the kernel configuration. 16537c8ee88SMarius Strobl 1669051987eSEd Maste20230803: 1679051987eSEd Maste MAXCPU has been increased to 1024 in the amd64 GENERIC kernel config. 1689051987eSEd Maste Out-of-tree kernel modules will need to be rebuilt. 1699051987eSEd Maste 170f475b710SWarner Losh20230724: 171f475b710SWarner Losh CAM has been mechanically updated s/u_int(64|32|16|8)_t/uint\1_t/g 172f475b710SWarner Losh to move to the standard uintXX_t types from the old, traditional 173f475b710SWarner Losh BSD u_intXX_t types. This should be a NOP, but may cause problems 174f475b710SWarner Losh for out of tree changes. The SIMs were not updated since most of 175f475b710SWarner Losh the old u_intXX_t uses weren't due to CAM interfaces. 176f475b710SWarner Losh 177319d2bf4SWarner Losh20230629: 178319d2bf4SWarner Losh The heuristic for detecting old chromebooks with an EC bug that requires 179319d2bf4SWarner Losh atkbdc driver workarounds has changed. There should be no functional 180319d2bf4SWarner Losh change, but if your old chromebook's keyboard stops working, please 181319d2bf4SWarner Losh file a PR and assign it to imp. 182319d2bf4SWarner Losh 183564c5314SEd Maste20230623: 184564c5314SEd Maste OpenSSL has been updated to version 3.0, including changes throughout 185564c5314SEd Maste the base system. It is important to rebuild third-party software 186564c5314SEd Maste after upgrading. 187564c5314SEd Maste 1883a1f834bSDoug Rabson20230619: 1893a1f834bSDoug Rabson To enable pf rdr rules for connections initiated from the host, pf 1903a1f834bSDoug Rabson filter rules can be optionally enabled for packets delivered 1913a1f834bSDoug Rabson locally. This can change the behavior of rules which match packets 1923a1f834bSDoug Rabson delivered to lo0. To enable this feature: 1933a1f834bSDoug Rabson 1943a1f834bSDoug Rabson sysctl net.pf.filter_local=1 1953a1f834bSDoug Rabson service pf restart 1963a1f834bSDoug Rabson 1973a1f834bSDoug Rabson When enabled, its best to ensure that packets delivered locally are not 1983a1f834bSDoug Rabson filtered, e.g. by adding a 'skip on lo' rule. 1993a1f834bSDoug Rabson 20021850106SDag-Erling Smørgrav20230613: 20121850106SDag-Erling Smørgrav Improvements to libtacplus(8) mean that tacplus.conf(5) now 20221850106SDag-Erling Smørgrav follows POSIX shell syntax rules. This may cause TACACS+ 20321850106SDag-Erling Smørgrav authentication to fail if the shared secret contains a single 20421850106SDag-Erling Smørgrav quote, double quote, or backslash character which isn't 20521850106SDag-Erling Smørgrav already properly quoted or escaped. 20621850106SDag-Erling Smørgrav 207bdc81eedSWarner Losh20230612: 208bdc81eedSWarner Losh Belatedly switch the default nvme block device on x86 from nvd to nda. 209bdc81eedSWarner Losh nda created nvd compatibility links by default, so this should be a 210bdc81eedSWarner Losh nop. If this causes problems for your application, set hw.nvme.use_nvd=1 211bdc81eedSWarner Losh in your loader.conf or add `options NVME_USE_NVD=1` to your kernel 212bd76e4c8SWarner Losh config. To disable the nvd compatibility aliases, add 213bd76e4c8SWarner Losh kern.cam.nda.nvd_compat=0 to loader.conf. The default has been nda on 214bd76e4c8SWarner Losh all non-x86 platforms for some time now. If you need to fall back, 215bd76e4c8SWarner Losh please email [email protected] about why. 216bdc81eedSWarner Losh 217814722d2SWarner Losh Encrypted swap partitions need to be changed from nvd to nda if you 218814722d2SWarner Losh migrate, or you need to use the above to switch back to nvd. 219814722d2SWarner Losh 220df53ae0fSColin Percival20230422: 221df53ae0fSColin Percival Remove portsnap(8). Users are encouraged to obtain the ports tree 222df53ae0fSColin Percival using git instead. 223df53ae0fSColin Percival 2240df4d8adSSimon J. Gerraty20230420: 2250df4d8adSSimon J. Gerraty Add jobs.mk to save typing. Enables -j${JOB_MAX} and logging 2260df4d8adSSimon J. Gerraty eg. 2270df4d8adSSimon J. Gerraty make buildworld-jobs 2280df4d8adSSimon J. Gerraty runs 2290df4d8adSSimon J. Gerraty make -j${JOB_MAX} buildworld > ../buildworld.log 2>&1 2300df4d8adSSimon J. Gerraty 2310df4d8adSSimon J. Gerraty where JOB_MAX is derrived from ncpus in local.sys.mk if not set in env. 2320df4d8adSSimon J. Gerraty 233a4f8318aSEmmanuel Vadot20230316: 234a4f8318aSEmmanuel Vadot Video related devices for some arm devices have been renamed. 235a4f8318aSEmmanuel Vadot If you have a custom kernel config and want to use hdmi output on 236a4f8318aSEmmanuel Vadot IMX6 board you need to add "device dwc_hdmi" "device imx6_hdmi" and 237a4f8318aSEmmanuel Vadot "device imx6_ipu" to it. 238a4f8318aSEmmanuel Vadot If you have a custom kernel config and want to use hdmi output on 239a4f8318aSEmmanuel Vadot TI AM335X board you need to add "device tda19988" to it. 240a4f8318aSEmmanuel Vadot If you add "device hdmi" in it you need to remove it as it doesn't 241a4f8318aSEmmanuel Vadot exist anymore. 242a4f8318aSEmmanuel Vadot 2439b70ce71SMichael Paepcke20230221: 2449b70ce71SMichael Paepcke Introduce new kernel options KBD_DELAY1 and KBD_DELAY2. See atkbdc(4) 2459b70ce71SMichael Paepcke for details. 2469b70ce71SMichael Paepcke 24777934b7aSEd Maste20230206: 24877934b7aSEd Maste sshd now defaults to having X11Forwarding disabled, following upstream. 24977934b7aSEd Maste Administrators who wish to enable X11Forwarding should add 25077934b7aSEd Maste `X11Forwarding yes` to /etc/ssh/sshd_config. 25177934b7aSEd Maste 252c92790b3SMichael Paepcke20230204: 253c92790b3SMichael Paepcke Since commit 75d41cb6967 Huawei 3G/4G LTE Mobile Devices do not default 254c92790b3SMichael Paepcke to ECM, but NCM mode and need u3g and ucom modules loaded. See cdce(4). 255c92790b3SMichael Paepcke 2566eaaed42SAlexander V. Chernikov20230130: 2576eaaed42SAlexander V. Chernikov As of commit 7c40e2d5f685, the dependency on netlink(4) has been added 2586eaaed42SAlexander V. Chernikov to the linux_common(4) module. Users relying on linux_common may need 2596eaaed42SAlexander V. Chernikov to complile netlink(4) module if it is not present in their kernel. 260bf2dc42dSWarner Losh 261ac4c695aSEd Maste20230126: 262ac4c695aSEd Maste The WITHOUT_CXX option has been removed. C++ components in the base 263ac4c695aSEd Maste system are now built unconditionally. 264ac4c695aSEd Maste 2654b56afafSBjoern A. Zeeb20230113: 2664b56afafSBjoern A. Zeeb LinuxKPI pci.h changes may require out-of-tree drivers to be recompiled. 2674b56afafSBjoern A. Zeeb Bump _FreeBSD_version to 1400078 to be able to detect this change. 2684b56afafSBjoern A. Zeeb 26986edb11eSEd Maste20221212: 27086edb11eSEd Maste llvm-objump is now always installed as objdump. Previously there was 27186edb11eSEd Maste no /usr/bin/objdump unless the WITH_LLVM_BINUTILS knob was used. 27286edb11eSEd Maste 27386edb11eSEd Maste Some LLVM objdump options have a different output format compared to 27486edb11eSEd Maste GNU objdump; readelf is available for inspecting ELF files, and GNU 27586edb11eSEd Maste objdump is available from the devel/binutils port or package. 27686edb11eSEd Maste 2774d13184aSBaptiste Daroussin20221205: 2784d13184aSBaptiste Daroussin dma(8) has replaced sendmail(8) as the default mta. For people willing 2794d13184aSBaptiste Daroussin to reenable sendmail(8): 2804d13184aSBaptiste Daroussin 2814d13184aSBaptiste Daroussin $ cp /usr/share/examples/sendmail/mailer.conf /etc/mail/mailer.conf 2824d13184aSBaptiste Daroussin 2834d13184aSBaptiste Daroussin and add sendmail_enable="YES" to rc.conf. 2844d13184aSBaptiste Daroussin 28568c3f030SWarner Losh20221204: 28668c3f030SWarner Losh hw.bus.disable_failed_devices has changed from 'false' to 'true' by 28768c3f030SWarner Losh default. Now if newbus succeeds in probing a device, but fails to attach 28868c3f030SWarner Losh the device, we'll disable the device. In the past, we'd keep retrying 28968c3f030SWarner Losh the device on each new driver loaded. To get that behavior now, one 290cc564d23SWarner Losh needs to use devctl to re-enable the device, and reprobe it (or set 29168c3f030SWarner Losh the sysctl/tunable hw.bus.disable_failed_devices=false). 29268c3f030SWarner Losh 2933cf97e91SWarner Losh NOTE: This was reverted 20221205 due to unexpected compatibility issues 2943cf97e91SWarner Losh 29588e858e5SKristof Provost20221122: 29688e858e5SKristof Provost pf no longer accepts 'scrub fragment crop' or 'scrub fragment drop-ovl'. 29788e858e5SKristof Provost These configurations are no longer automatically reinterpreted as 29888e858e5SKristof Provost 'scrub fragment reassemble'. 29988e858e5SKristof Provost 30020a66ab4SEd Maste20221121: 30120a66ab4SEd Maste The WITHOUT_CLANG_IS_CC option has been removed. When Clang is enabled 30220a66ab4SEd Maste it is always installed as /usr/bin/cc (and c++, cpp). 30320a66ab4SEd Maste 3045575454dSEmmanuel Vadot20221026: 3058aa64f30SEd Maste Some programs have been moved into separate packages. It is recommended 3069c363005SEd Maste for pkgbase users to do: 3079c363005SEd Maste 3089c363005SEd Maste pkg install FreeBSD-dhclient FreeBSD-geom FreeBSD-resolvconf \ 3099c363005SEd Maste FreeBSD-devd FreeBSD-devmatch 3109c363005SEd Maste 3119c363005SEd Maste after upgrading to restore all the component that were previously 3129c363005SEd Maste installed. 3135575454dSEmmanuel Vadot 3142e38377fSDag-Erling Smørgrav20221002: 3152e38377fSDag-Erling Smørgrav OPIE has been removed from the base system. If needed, it can 3162e38377fSDag-Erling Smørgrav be installed from ports (security/opie) or packages (opie). 3172e38377fSDag-Erling Smørgrav Otherwise, make sure that your PAM policies do not reference 3182e38377fSDag-Erling Smørgrav pam_opie or pam_opieaccess. 3192e38377fSDag-Erling Smørgrav 3200e981d79SBjoern A. Zeeb20220610: 3210e981d79SBjoern A. Zeeb LinuxKPI pm.h changes require an update to the latest drm-kmod version 3220e981d79SBjoern A. Zeeb before re-compiling to avoid errors. 3230e981d79SBjoern A. Zeeb 3248303b8ffSCy Schubert20211230: 3258303b8ffSCy Schubert The macros provided for the manipulation of CPU sets (e.g. CPU_AND) 3268303b8ffSCy Schubert have been modified to take 2 source arguments instead of only 1. 3278303b8ffSCy Schubert Externally maintained sources that use these macros will have to 3288303b8ffSCy Schubert be adapted. The FreeBSD version has been bumped to 1400046 to 3298303b8ffSCy Schubert reflect this change. 3308303b8ffSCy Schubert 3318303b8ffSCy Schubert20211214: 3328303b8ffSCy Schubert A number of the kernel include files are able to be included by 3338303b8ffSCy Schubert themselves. A test has been added to buildworld to enforce this. 3348303b8ffSCy Schubert 33545b6b376SCy Schubert20211209: 33645b6b376SCy Schubert Remove mips as a recognized target. This starts the decommissioning of 33745b6b376SCy Schubert mips support in FreeBSD. mips related items will be removed wholesale in 33845b6b376SCy Schubert the coming days and weeks. 33945b6b376SCy Schubert 34045b6b376SCy Schubert This broke the NO_CLEAN build for some people. Either do a clean build 34145b6b376SCy Schubert or touch 34245b6b376SCy Schubert lib/clang/include/llvm/Config/Targets.def 34345b6b376SCy Schubert lib/clang/include/llvm/Config/AsmParsers.def 34445b6b376SCy Schubert lib/clang/include/llvm/Config/Disassemblers.def 34545b6b376SCy Schubert lib/clang/include/llvm/Config/AsmPrinters.def 34645b6b376SCy Schubert before the build to force everything to rebuild that needs to. 34745b6b376SCy Schubert 34872d0d523SCy Schubert20211202: 34972d0d523SCy Schubert Unbound support for RFC8375: The special-use domain 'home.arpa' is 35072d0d523SCy Schubert by default blocked. To unblock it use a local-zone nodefault 35172d0d523SCy Schubert statement in unbound.conf: 35272d0d523SCy Schubert local-zone: "home.arpa." nodefault 35372d0d523SCy Schubert 35472d0d523SCy Schubert Or use another type of local-zone to override with your choice. 35572d0d523SCy Schubert 35672d0d523SCy Schubert The reason for this is discussed in Section 6.1 of RFC8375: 35772d0d523SCy Schubert Because 'home.arpa.' is not globally scoped and cannot be secured 35872d0d523SCy Schubert using DNSSEC based on the root domain's trust anchor, there is no way 35972d0d523SCy Schubert to tell, using a standard DNS query, in which homenet scope an answer 36072d0d523SCy Schubert belongs. Consequently, users may experience surprising results with 36172d0d523SCy Schubert such names when roaming to different homenets. 36272d0d523SCy Schubert 363cc32cfabSDimitry Andric20211118: 364cc32cfabSDimitry Andric Mips has been removed from universe builds. It will be removed from the 365cc32cfabSDimitry Andric tree shortly. 366cc32cfabSDimitry Andric 367b8d60729SRandall Stewart20211110: 368d6953863SRandall Stewart Commit b8d60729deef changed the TCP congestion control framework so 369b8d60729SRandall Stewart that any of the included congestion control modules could be 370b8d60729SRandall Stewart the single module built into the kernel. Previously newreno 3719ad859daSGordon Tetlow was automatically built in through direct reference. As of 372b8d60729SRandall Stewart this commit you are required to declare at least one congestion 3739ad859daSGordon Tetlow control module (e.g. 'options CC_NEWRENO') and to also declare a 374b8d60729SRandall Stewart default using the CC_DEFAULT option (e.g. options CC_DEFAULT="newreno\"). 375bde57090SGordon Bergling The GENERIC configuration includes CC_NEWRENO and defines newreno 376b8d60729SRandall Stewart as the default. If no congestion control option is built into the 377b8d60729SRandall Stewart kernel and you are including networking, the kernel compile will 378b8d60729SRandall Stewart fail. Also if no default is declared the kernel compile will fail. 379b8d60729SRandall Stewart 38025b0021dSRick Macklem20211106: 38125b0021dSRick Macklem Commit f0c9847a6c47 changed the arguments for VOP_ALLOCATE. 38225b0021dSRick Macklem The NFS modules must be rebuilt from sources and any out 38325b0021dSRick Macklem of tree file systems that implement their own VOP_ALLOCATE 38425b0021dSRick Macklem may need to be modified. 38525b0021dSRick Macklem 3866aae3517SGleb Smirnoff20211022: 3876aae3517SGleb Smirnoff The synchronous PPP kernel driver sppp(4) has been removed. 3886aae3517SGleb Smirnoff The cp(4) and ce(4) drivers are now always compiled with netgraph(4) 3896aae3517SGleb Smirnoff support, formerly enabled by NETGRAPH_CRONYX option. 3906aae3517SGleb Smirnoff 391d410b585SBaptiste Daroussin20211020: 3926ae38ab4SBaptiste Daroussin sh(1) is now the default shell for the root user. To force root to use 393d410b585SBaptiste Daroussin the csh shell, please run the following command as root: 394d410b585SBaptiste Daroussin 3956ae38ab4SBaptiste Daroussin # chsh -s csh 396d410b585SBaptiste Daroussin 39716f1ee11SBaptiste Daroussin20211004: 39816f1ee11SBaptiste Daroussin Ncurses distribution has been split between libtinfow and libncurses 39916f1ee11SBaptiste Daroussin with libncurses.so becoming a linker (ld) script to seamlessly link 40016f1ee11SBaptiste Daroussin to libtinfow as needed. Bump _FreeBSD_version to 1400035 to reflect 40116f1ee11SBaptiste Daroussin this change. 40216f1ee11SBaptiste Daroussin 4039cce0ef9SKristof Provost20210923: 4049cce0ef9SKristof Provost As of commit 8160a0f62be6, the dummynet module no longer depends on the 4059cce0ef9SKristof Provost ipfw module. Dummynet can now be used by pf as well as ipfw. As such 4069cce0ef9SKristof Provost users who relied on this dependency may need to include ipfw in the 4079cce0ef9SKristof Provost list of modules to load on their systems. 4089cce0ef9SKristof Provost 4099cce0ef9SKristof Provost20210922: 4100e94a306SHans Petter Selasky As of commit 903873ce1560, the mixer(8) utility has got a slightly 41190f6610bSHans Petter Selasky new syntax. Please refer to the mixer(8) manual page for more 4128bc5971bSHans Petter Selasky information. The old mixer utility can be installed from ports: 4138bc5971bSHans Petter Selasky audio/freebsd-13-mixer 4140e94a306SHans Petter Selasky 415ae87a08cSRick Macklem20210911: 416ae87a08cSRick Macklem As of commit 55089ef4f8bb, the global variable nfs_maxcopyrange has 417ae87a08cSRick Macklem been deleted from the nfscommon.ko. As such, nfsd.ko must be built 418ae87a08cSRick Macklem from up to date sources to avoid an undefined reference when 419ae87a08cSRick Macklem being loaded. 420ae87a08cSRick Macklem 421671a35b1SJohn Baldwin20210817: 422671a35b1SJohn Baldwin As of commit 62ca9fc1ad56 OpenSSL no longer enables kernel TLS 423671a35b1SJohn Baldwin by default. Users can enable kernel TLS via the "KTLS" SSL 424671a35b1SJohn Baldwin option. This can be enabled globally by using a custom 425671a35b1SJohn Baldwin OpenSSL config file via OPENSSL_CONF or via an 426671a35b1SJohn Baldwin application-specific configuration option for applications 427671a35b1SJohn Baldwin which permit setting SSL options via SSL_CONF_cmd(3). 428671a35b1SJohn Baldwin 429a3ff18e2SRick Macklem20210811: 430a3ff18e2SRick Macklem Commit 3ad1e1c1ce20 changed the internal KAPI between the NFS 431a3ff18e2SRick Macklem modules. Therefore, all need to be rebuilt from sources. 432a3ff18e2SRick Macklem 43334129003SKristof Provost20210730: 43434129003SKristof Provost Commit b69019c14cd8 removes pf's DIOCGETSTATESNV ioctl. 43534129003SKristof Provost As of be70c7a50d32 it is no longer used by userspace, but it does mean 43634129003SKristof Provost users may not be able to enumerate pf states if they update the kernel 437a191b401SKristof Provost past b69019c14cd8 without first updating userspace past be70c7a50d32. 43834129003SKristof Provost 439728958fbSKristof Provost20210729: 440728958fbSKristof Provost As of commit 01ad0c007964 if_bridge member interfaces can no longer 441728958fbSKristof Provost change their MTU. Changing the MTU of the bridge itself will change the 442728958fbSKristof Provost MTU on all member interfaces instead. 443728958fbSKristof Provost 4447fa21b6dSRick Macklem20210716: 4457fa21b6dSRick Macklem Commit ee29e6f31111 changed the internal KAPI between the nfscommon 4467fa21b6dSRick Macklem and nfsd modules. Therefore, both need to be rebuilt from sources. 4477fa21b6dSRick Macklem Bump __FreeBSD_version to 1400026 for this KAPI change. 4487fa21b6dSRick Macklem 4495ede4fc0SWarner Losh20210715: 4505ede4fc0SWarner Losh The 20210707 awk update brought in a change in behavior. This has 4515ede4fc0SWarner Losh been corrected as of d4d252c49976. Between these dates, if you 4525ede4fc0SWarner Losh installed a new awk binary, you may not be able to build a new 4535ede4fc0SWarner Losh kernel because the change in behavior affected the genoffset 4545ede4fc0SWarner Losh script used to build the kernel. If you did update, the fix is 4555ede4fc0SWarner Losh to update your sources past the above hash and do 4565ede4fc0SWarner Losh % cd usr.bin/awk 4575ede4fc0SWarner Losh % make clean all 4585ede4fc0SWarner Losh % sudo -E make install 4595ede4fc0SWarner Losh to enable building kernels again. 4605ede4fc0SWarner Losh 461bd597b81SRick Macklem20210708: 462bd597b81SRick Macklem Commit 1e0a518d6548 changed the internal KAPI between the NFS 463bd597b81SRick Macklem modules. They all need to be rebuilt from sources. I did not 464bd597b81SRick Macklem bump __FreeBSD_version, since it was bumped recently. 465bd597b81SRick Macklem 4663f7b2317SWarner Losh20210707: 467a65fe39dSWarner Losh awk has been updated to the latest one-true-awk version 20210215. 4683f7b2317SWarner Losh This contains a number of minor bug fixes. 4693f7b2317SWarner Losh 470b49ba74dSRick Macklem20210624: 471b49ba74dSRick Macklem The NFSv4 client now uses the highest minor version of NFSv4 472b49ba74dSRick Macklem supported by the NFSv4 server by default instead of minor version 0, 473b49ba74dSRick Macklem for NFSv4 mounts. 474b49ba74dSRick Macklem The "minorversion" mount option may be used to override this default. 475b49ba74dSRick Macklem 47641dfd8bdSBjoern A. Zeeb20210618: 47741dfd8bdSBjoern A. Zeeb Bump __FreeBSD_version to 1400024 for LinuxKPI changes. 478800e82d1SMaigurs Stalidzans Most notably netdev.h can change now as the (last) dependencies 47941dfd8bdSBjoern A. Zeeb (mlx4/ofed) are now using struct ifnet directly, but also for PCI 48041dfd8bdSBjoern A. Zeeb additions and others. 48141dfd8bdSBjoern A. Zeeb 48241dfd8bdSBjoern A. Zeeb20210618: 48364e6e1e4SCeri Davies The directory "blacklisted" under /usr/share/certs/ has been 48464e6e1e4SCeri Davies renamed to "untrusted". 48564e6e1e4SCeri Davies 4865860696eSRick Macklem20210611: 4877cf9caf2SWarner Losh svnlite has been removed from base. Should you need svn for any reason 4887cf9caf2SWarner Losh please install the svn package or port. 4897cf9caf2SWarner Losh 4907cf9caf2SWarner Losh20210611: 4915860696eSRick Macklem Commit e1a907a25cfa changed the internal KAPI between the krpc 4925860696eSRick Macklem and nfsserver. As such, both modules must be rebuilt from 4935860696eSRick Macklem sources. Bump __FreeBSD_version to 1400022. 4945860696eSRick Macklem 4957cf9caf2SWarner Losh20210610: 4967cf9caf2SWarner Losh The an(4) driver has been removed from FreeBSD. 4977cf9caf2SWarner Losh 498b3823943SWarner Losh20210608: 499f530cce5SEd Maste The vendor/openzfs branch was renamed to vendor/openzfs/legacy to 500b3823943SWarner Losh start tracking OpenZFS upstream more closely. Please see 501b3823943SWarner Loshhttps://lists.freebsd.org/archives/freebsd-current/2021-June/000153.html 502b3823943SWarner Losh for details on how to correct any errors that might result. The 503b3823943SWarner Losh short version is that you need to remove the old branch locally: 504b3823943SWarner Losh git update-ref -d refs/remotes/freebsd/vendor/openzfs 505b3823943SWarner Losh (assuming your upstream origin is named 'freebsd'). 506b3823943SWarner Losh 507d72cd275SBjoern A. Zeeb20210525: 508d72cd275SBjoern A. Zeeb Commits 17accc08ae15 and de102f870501 add new files to LinuxKPI 509d72cd275SBjoern A. Zeeb which break drm-kmod. In addition various other additions where 510bde57090SGordon Bergling committed. Bump __FreeBSD_version to 1400015 to be able to 511bde57090SGordon Bergling detect this. 512d72cd275SBjoern A. Zeeb 5131c2ab28fSEmmanuel Vadot20210513: 5141c2ab28fSEmmanuel Vadot Commit ca179c4d74f2 changed the package in which the OpenSSL 5151c2ab28fSEmmanuel Vadot libraries and utilities are packaged. 51628ce2012SEmmanuel Vadot It is recommended for pkgbase user to do: 5171c2ab28fSEmmanuel Vadot pkg install -f FreeBSD-openssl 5181c2ab28fSEmmanuel Vadot before pkg upgrade otherwise some dependencies might not be met 5191c2ab28fSEmmanuel Vadot and pkg will stop working as libssl will not be present anymore 5201c2ab28fSEmmanuel Vadot on the system. 5211c2ab28fSEmmanuel Vadot 52201bad87aSRick Macklem20210426: 52301bad87aSRick Macklem Commit 875977314881 changed the internal KAPI between 52401bad87aSRick Macklem the nfsd and nfscommon modules. As such these modules 52501bad87aSRick Macklem need to be rebuilt from sources. 52601bad87aSRick Macklem Without this patch in your NFSv4.1/4.2 server, enabling 52701bad87aSRick Macklem delegations by setting vfs.nfsd.issue_delegations non-zero 52801bad87aSRick Macklem is not recommended. 52901bad87aSRick Macklem 53068b7d9b5SRick Macklem20210411: 53168b7d9b5SRick Macklem Commit 7763814fc9c2 changed the internal KAPI between 53268b7d9b5SRick Macklem the krpc and NFS. As such, the krpc, nfscommon and 53368b7d9b5SRick Macklem nfscl modules must all be rebuilt from sources. 534d647d0d4SRick Macklem Without this patch, NFSv4.1/4.2 mounts should not 535d647d0d4SRick Macklem be done with the nfscbd(8) daemon running, to avoid 536d647d0d4SRick Macklem needing a working back channel for server->client RPCs. 53768b7d9b5SRick Macklem 5382b98ea2eSRick Macklem20210330: 5392b98ea2eSRick Macklem Commit 01ae8969a9ee fixed the NFSv4.1/4.2 server so that it 5402b98ea2eSRick Macklem handles binding of the back channel as required by RFC5661. 5412b98ea2eSRick Macklem Until this patch is in your server, avoid use of the "nconnects" 5422b98ea2eSRick Macklem mount option for Linux NFSv4.1/4.2 mounts. 5432b98ea2eSRick Macklem 544ba7ede0bSEd Maste20210225: 545ba7ede0bSEd Maste For 64-bit architectures the base system is now built with Position 546ba7ede0bSEd Maste Independent Executable (PIE) support enabled by default. It may be 547ba7ede0bSEd Maste disabled using the WITHOUT_PIE knob. A clean build is required. 548ba7ede0bSEd Maste 549d386f3a3SBjoern A. Zeeb20210128: 550d386f3a3SBjoern A. Zeeb Various LinuxKPI functionality was added which conflicts with DRM. 551bde57090SGordon Bergling Please update your drm-kmod port to after the __FreeBSD_version 1400003 552d386f3a3SBjoern A. Zeeb update. 553d386f3a3SBjoern A. Zeeb 55417101a25SAlexander Leidinger20210108: 55517101a25SAlexander Leidinger PC Card attachments for all devices have been removed. In the case of 55617101a25SAlexander Leidinger wi and cmx, the entire drivers were removed because they were only 55717101a25SAlexander Leidinger PC Card devices. FreeBSD_version 1300134 should be used for this 55817101a25SAlexander Leidinger since it was bumped so recently. 55917101a25SAlexander Leidinger 56017101a25SAlexander Leidinger20210107: 56117101a25SAlexander Leidinger Transport-independent parts of HID support have been split off the USB 56217101a25SAlexander Leidinger code in to separate subsystem. Kernel configs which include one of 56317101a25SAlexander Leidinger ums, ukbd, uhid, atp, wsp, wmt, uaudio, ugold or ucycom drivers should 56417101a25SAlexander Leidinger be updated with adding of "device hid" line. 56517101a25SAlexander Leidinger 56617101a25SAlexander Leidinger20210105: 56717101a25SAlexander Leidinger ncurses installation has been modified to only keep the widechar 56817101a25SAlexander Leidinger enabled version. Incremental build is broken for that change, so it 56917101a25SAlexander Leidinger requires a clean build. 57017101a25SAlexander Leidinger 57117101a25SAlexander Leidinger20201223: 57217101a25SAlexander Leidinger The FreeBSD project has migrated from Subversion to Git. Temporary 57317101a25SAlexander Leidinger instructions can be found at 57417101a25SAlexander Leidinger https://github.com/bsdimp/freebsd-git-docs/blob/main/src-cvt.md 57517101a25SAlexander Leidinger and other documents in that repo. 57617101a25SAlexander Leidinger 57717101a25SAlexander Leidinger20201216: 57817101a25SAlexander Leidinger The services database has been updated to cover more of the basic 57917101a25SAlexander Leidinger services expected in a modern system. The database is big enough 58017101a25SAlexander Leidinger that it will cause issues in mergemaster in Releases previous to 58117101a25SAlexander Leidinger 12.2 and 11.3, or in very old current systems from before r358154. 58217101a25SAlexander Leidinger 58317101a25SAlexander Leidinger20201215: 58417101a25SAlexander Leidinger Obsolete in-tree GDB 6.1.1 has been removed. GDB (including kgdb) 58517101a25SAlexander Leidinger may be installed from ports or packages. 58617101a25SAlexander Leidinger 58717101a25SAlexander Leidinger20201124: 58817101a25SAlexander Leidinger ping6 has been merged into ping. It can now be called as "ping -6". 58917101a25SAlexander Leidinger See ping(8) for details. 59017101a25SAlexander Leidinger 59117101a25SAlexander Leidinger20201108: 59217101a25SAlexander Leidinger Default value of net.add_addr_allfibs has been changed to 0. 59317101a25SAlexander Leidinger If you have multi-fib configuration and rely on existence of all 59417101a25SAlexander Leidinger interface routes in every fib, you need to set the above sysctl to 1. 59517101a25SAlexander Leidinger 59617101a25SAlexander Leidinger20201030: 59717101a25SAlexander Leidinger The internal pre-processor in the calendar(1) program has been 59817101a25SAlexander Leidinger extended to support more C pre-processor commands (e.g. #ifdef, #else, 59917101a25SAlexander Leidinger and #undef) and to detect unbalanced conditional statements. 60017101a25SAlexander Leidinger Error messages have been extended to include the filename and line 60117101a25SAlexander Leidinger number if processing stops to help fixing malformed data files. 60217101a25SAlexander Leidinger 60317101a25SAlexander Leidinger20201026: 60417101a25SAlexander Leidinger All the data files for the calendar(1) program, except calendar.freebsd, 60517101a25SAlexander Leidinger have been moved to the deskutils/calendar-data port, much like the 60617101a25SAlexander Leidinger jewish calendar entries were moved to deskutils/hebcal years ago. After 60717101a25SAlexander Leidinger make delete-old-files, you need to install it to retain full 60817101a25SAlexander Leidinger functionality. calendar(1) will issue a reminder for files it can't 60917101a25SAlexander Leidinger find. 61017101a25SAlexander Leidinger 61117101a25SAlexander Leidinger20200923: 61217101a25SAlexander Leidinger LINT files are no longer generated. We now include the relevant NOTES 61317101a25SAlexander Leidinger files. Note: This may cause conflicts with updating in some cases. 61417101a25SAlexander Leidinger find sys -name LINT\* -delete 61517101a25SAlexander Leidinger is suggested across this commit to remove the generated LINT files. 61617101a25SAlexander Leidinger 61717101a25SAlexander Leidinger If you have tried to update with generated files there, the svn 61817101a25SAlexander Leidinger command you want to un-auger the tree is 61917101a25SAlexander Leidinger cd sys/amd64/conf 62017101a25SAlexander Leidinger svn revert -R . 62117101a25SAlexander Leidinger and then do the above find from the top level. Substitute 'amd64' 62217101a25SAlexander Leidinger above with where the error message indicates a conflict. 62317101a25SAlexander Leidinger 62417101a25SAlexander Leidinger20200824: 62517101a25SAlexander Leidinger OpenZFS support has been integrated. Do not upgrade root pools until 62617101a25SAlexander Leidinger the loader is updated to support zstd. Furthermore, we caution against 62717101a25SAlexander Leidinger 'zpool upgrade' for the next few weeks. The change should be transparent 62817101a25SAlexander Leidinger unless you want to use new features. 62917101a25SAlexander Leidinger 63017101a25SAlexander Leidinger Not all "NO_CLEAN" build scenarios work across these changes. Many 63117101a25SAlexander Leidinger scenarios have been tested and fixed, but rebuilding kernels without 63217101a25SAlexander Leidinger rebuilding world may fail. 63317101a25SAlexander Leidinger 63417101a25SAlexander Leidinger The ZFS cache file has moved from /boot to /etc to match the OpenZFS 63517101a25SAlexander Leidinger upstream default. A fallback to /boot has been added for mountroot. 63617101a25SAlexander Leidinger 63717101a25SAlexander Leidinger Pool auto import behavior at boot has been moved from the kernel module 63817101a25SAlexander Leidinger to an explicit "zpool import -a" in one of the rc scripts enabled by 63917101a25SAlexander Leidinger zfs_enable=YES. This means your non-root zpools won't auto import until 64017101a25SAlexander Leidinger you upgrade your /etc/rc.d files. 64117101a25SAlexander Leidinger 64217101a25SAlexander Leidinger20200824: 64317101a25SAlexander Leidinger The resume code now notifies devd with the 'kernel' system 64417101a25SAlexander Leidinger rather than the old 'kern' subsystem to be consistent with 64517101a25SAlexander Leidinger other use. The old notification will be created as well, but 64617101a25SAlexander Leidinger will be removed prior to FreeBSD 14.0. 64717101a25SAlexander Leidinger 64817101a25SAlexander Leidinger20200821: 64917101a25SAlexander Leidinger r362275 changed the internal API between the kernel RPC and the 65017101a25SAlexander Leidinger NFS modules. As such, all the modules must be recompiled from 65117101a25SAlexander Leidinger sources. 65217101a25SAlexander Leidinger 65317101a25SAlexander Leidinger20200817: 65417101a25SAlexander Leidinger r364330 modified the internal API used between the NFS modules. 65517101a25SAlexander Leidinger As such, all the NFS modules must be re-compiled from sources. 65617101a25SAlexander Leidinger 65717101a25SAlexander Leidinger20200816: 65817101a25SAlexander Leidinger Clang, llvm, lld, lldb, compiler-rt, libc++, libunwind and openmp have 65917101a25SAlexander Leidinger been upgraded to 11.0.0. Please see the 20141231 entry below for 66017101a25SAlexander Leidinger information about prerequisites and upgrading, if you are not already 66117101a25SAlexander Leidinger using clang 3.5.0 or higher. 66217101a25SAlexander Leidinger 66317101a25SAlexander Leidinger20200810: 66417101a25SAlexander Leidinger r364092 modified the internal ABI used between the kernel NFS 66517101a25SAlexander Leidinger modules. As such, all of these modules need to be rebuilt 66617101a25SAlexander Leidinger from sources, so a version bump was done. 66717101a25SAlexander Leidinger 66817101a25SAlexander Leidinger20200807: 66917101a25SAlexander Leidinger Makefile.inc has been updated to work around the issue documented in 67017101a25SAlexander Leidinger 20200729. It was a case where the optimization of using symbolic links 67117101a25SAlexander Leidinger to point to binaries created a situation where we'd run new binaries 67217101a25SAlexander Leidinger with old libraries starting midway through the installworld process. 67317101a25SAlexander Leidinger 67417101a25SAlexander Leidinger20200729: 67517101a25SAlexander Leidinger r363679 has redefined some undefined behavior in regcomp(3); notably, 67617101a25SAlexander Leidinger extraneous escapes of most ordinary characters will no longer be 67717101a25SAlexander Leidinger accepted. An exp-run has identified all of the problems with this in 67817101a25SAlexander Leidinger ports, but other non-ports software may need extra escapes removed to 67917101a25SAlexander Leidinger continue to function. 68017101a25SAlexander Leidinger 68117101a25SAlexander Leidinger Because of this change, installworld may encounter the following error 68217101a25SAlexander Leidinger from rtld: Undefined symbol "regcomp@FBSD_1.6" -- It is imperative that 68317101a25SAlexander Leidinger you do not halt installworld. Instead, let it run to completion (whether 68417101a25SAlexander Leidinger successful or not) and run installworld once more. 68517101a25SAlexander Leidinger 68617101a25SAlexander Leidinger20200627: 68717101a25SAlexander Leidinger A new implementation of bc and dc has been imported in r362681. This 68817101a25SAlexander Leidinger implementation corrects non-conformant behavior of the previous bc 68917101a25SAlexander Leidinger and adds GNU bc compatible options. It offers a number of extensions, 69017101a25SAlexander Leidinger is much faster on large values, and has support for message catalogs 69117101a25SAlexander Leidinger (a number of languages are already supported, contributions of further 69217101a25SAlexander Leidinger languages welcome). The option WITHOUT_GH_BC can be used to build the 69317101a25SAlexander Leidinger world with the previous versions of bc and dc. 69417101a25SAlexander Leidinger 69517101a25SAlexander Leidinger20200625: 69617101a25SAlexander Leidinger r362639 changed the internal API used between the NFS kernel modules. 69717101a25SAlexander Leidinger As such, they all need to be rebuilt from sources. 69817101a25SAlexander Leidinger 69917101a25SAlexander Leidinger20200613: 70017101a25SAlexander Leidinger r362158 changed the arguments for VFS_CHECKEXP(). As such, any 70117101a25SAlexander Leidinger out of tree file systems need to be modified and rebuilt. 70217101a25SAlexander Leidinger Also, any file systems that are modules must be rebuilt. 70317101a25SAlexander Leidinger 70417101a25SAlexander Leidinger20200604: 70517101a25SAlexander Leidinger read(2) of a directory fd is now rejected by default. root may 70617101a25SAlexander Leidinger re-enable it for system root only on non-ZFS filesystems with the 70717101a25SAlexander Leidinger security.bsd.allow_read_dir sysctl(8) MIB if 70817101a25SAlexander Leidinger security.bsd.suser_enabled=1. 70917101a25SAlexander Leidinger 71017101a25SAlexander Leidinger It may be advised to setup aliases for grep to default to `-d skip` if 71117101a25SAlexander Leidinger commonly non-recursively grepping a list that includes directories and 71217101a25SAlexander Leidinger the potential for the resulting stderr output is not tolerable. Example 71317101a25SAlexander Leidinger aliases are now installed, commented out, in /root/.cshrc and 71417101a25SAlexander Leidinger /root/.shrc. 71517101a25SAlexander Leidinger 71617101a25SAlexander Leidinger20200523: 71717101a25SAlexander Leidinger Clang, llvm, lld, lldb, compiler-rt, libc++, libunwind and openmp have 71817101a25SAlexander Leidinger been upgraded to 10.0.1. Please see the 20141231 entry below for 71917101a25SAlexander Leidinger information about prerequisites and upgrading, if you are not already 72017101a25SAlexander Leidinger using clang 3.5.0 or higher. 72117101a25SAlexander Leidinger 72217101a25SAlexander Leidinger20200512: 72317101a25SAlexander Leidinger Support for obsolete compilers has been removed from the build system. 72417101a25SAlexander Leidinger Clang 6 and GCC 6.4 are the minimum supported versions. 72517101a25SAlexander Leidinger 72617101a25SAlexander Leidinger20200424: 72717101a25SAlexander Leidinger closefrom(2) has been moved under COMPAT12, and replaced in libc with a 72817101a25SAlexander Leidinger stub that calls close_range(2). If using a custom kernel configuration, 72917101a25SAlexander Leidinger you may want to ensure that the COMPAT_FREEBSD12 option is included, as 73017101a25SAlexander Leidinger a slightly older -CURRENT userland and older FreeBSD userlands may not 73117101a25SAlexander Leidinger be functional without closefrom(2). 73217101a25SAlexander Leidinger 73317101a25SAlexander Leidinger20200414: 73417101a25SAlexander Leidinger Upstream DTS from Linux 5.6 was merged and they now have the SID 73517101a25SAlexander Leidinger and THS (Secure ID controller and THermal Sensor) node present. 73617101a25SAlexander Leidinger The DTB overlays have now been removed from the tree for the H3/H5 and 73717101a25SAlexander Leidinger A64 SoCs and the aw_sid and aw_thermal driver have been updated to 73817101a25SAlexander Leidinger deal with upstream DTS. If you are using those overlays you need to 73917101a25SAlexander Leidinger remove them from loader.conf and update the DTBs on the FAT partition. 74017101a25SAlexander Leidinger 74117101a25SAlexander Leidinger20200310: 74217101a25SAlexander Leidinger Clang, llvm, lld, lldb, compiler-rt, libc++, libunwind and openmp have 74317101a25SAlexander Leidinger been upgraded to 10.0.0. Please see the 20141231 entry below for 74417101a25SAlexander Leidinger information about prerequisites and upgrading, if you are not already 74517101a25SAlexander Leidinger using clang 3.5.0 or higher. 74617101a25SAlexander Leidinger 74717101a25SAlexander Leidinger20200309: 74817101a25SAlexander Leidinger The amd(8) automount daemon has been removed from the source tree. 74917101a25SAlexander Leidinger As of FreeBSD 10.1 autofs(5) is the preferred tool for automounting. 75017101a25SAlexander Leidinger amd is still available in the sysutils/am-utils port. 75117101a25SAlexander Leidinger 75217101a25SAlexander Leidinger20200301: 75317101a25SAlexander Leidinger Removed brooktree driver (bktr.4) from the tree. 75417101a25SAlexander Leidinger 75517101a25SAlexander Leidinger20200229: 75617101a25SAlexander Leidinger The WITH_GPL_DTC option has been removed. The BSD-licenced device tree 75717101a25SAlexander Leidinger compiler in usr.bin/dtc is used on all architectures which use dtc, and 75817101a25SAlexander Leidinger the GPL dtc is available (if needed) from the sysutils/dtc port. 75917101a25SAlexander Leidinger 76017101a25SAlexander Leidinger20200229: 76117101a25SAlexander Leidinger The WITHOUT_LLVM_LIBUNWIND option has been removed. LLVM's libunwind 76217101a25SAlexander Leidinger is used by all supported CPU architectures. 76317101a25SAlexander Leidinger 76417101a25SAlexander Leidinger20200229: 76517101a25SAlexander Leidinger GCC 4.2.1 has been removed from the tree. The WITH_GCC, 76617101a25SAlexander Leidinger WITH_GCC_BOOTSTRAP, and WITH_GNUCXX options are no longer available. 76717101a25SAlexander Leidinger Users who wish to build FreeBSD with GCC must use the external toolchain 76817101a25SAlexander Leidinger ports or packages. 76917101a25SAlexander Leidinger 77017101a25SAlexander Leidinger20200220: 77117101a25SAlexander Leidinger ncurses has been updated to a newer version (6.2-20200215). Given the ABI 77217101a25SAlexander Leidinger has changed, users will have to rebuild all the ports that are linked to 77317101a25SAlexander Leidinger ncurses. 77417101a25SAlexander Leidinger 77517101a25SAlexander Leidinger20200217: 77617101a25SAlexander Leidinger The size of struct vnet and the magic cookie have changed. 77717101a25SAlexander Leidinger Users need to recompile libkvm and all modules using VIMAGE 77817101a25SAlexander Leidinger together with their new kernel. 77917101a25SAlexander Leidinger 78017101a25SAlexander Leidinger20200212: 78117101a25SAlexander Leidinger Defining the long deprecated NO_CTF, NO_DEBUG_FILES, NO_INSTALLLIB, 78217101a25SAlexander Leidinger NO_MAN, NO_PROFILE, and NO_WARNS variables is now an error. Update 78317101a25SAlexander Leidinger your Makefiles and scripts to define MK_<var>=no instead as required. 78417101a25SAlexander Leidinger 78517101a25SAlexander Leidinger One exception to this is that program or library Makefiles should 78617101a25SAlexander Leidinger define MAN to empty rather than setting MK_MAN=no. 78717101a25SAlexander Leidinger 78817101a25SAlexander Leidinger20200108: 78917101a25SAlexander Leidinger Clang/LLVM is now the default compiler and LLD the default 79017101a25SAlexander Leidinger linker for riscv64. 79117101a25SAlexander Leidinger 79217101a25SAlexander Leidinger20200107: 79317101a25SAlexander Leidinger make universe no longer uses GCC 4.2.1 on any architectures. 79417101a25SAlexander Leidinger Architectures not supported by in-tree Clang/LLVM require an 79517101a25SAlexander Leidinger external toolchain package. 79617101a25SAlexander Leidinger 79717101a25SAlexander Leidinger20200104: 79817101a25SAlexander Leidinger GCC 4.2.1 is now not built by default, as part of the GCC 4.2.1 79917101a25SAlexander Leidinger retirement plan. Specifically, the GCC, GCC_BOOTSTRAP, and GNUCXX 80017101a25SAlexander Leidinger options default to off for all supported CPU architectures. As a 80117101a25SAlexander Leidinger short-term transition aid they may be enabled via WITH_* options. 80217101a25SAlexander Leidinger GCC 4.2.1 is expected to be removed from the tree on 2020-03-31. 80317101a25SAlexander Leidinger 80417101a25SAlexander Leidinger20200102: 80517101a25SAlexander Leidinger Support for armv5 has been disconnected and is being removed. The 80617101a25SAlexander Leidinger machine combination MACHINE=arm MACHINE_ARCH=arm is no longer valid. 80717101a25SAlexander Leidinger You must now use a MACHINE_ARCH of armv6 or armv7. The default 80817101a25SAlexander Leidinger MACHINE_ARCH for MACHINE=arm is now armv7. 80917101a25SAlexander Leidinger 81017101a25SAlexander Leidinger20191226: 81117101a25SAlexander Leidinger Clang/LLVM is now the default compiler for all powerpc architectures. 81217101a25SAlexander Leidinger LLD is now the default linker for powerpc64. The change for powerpc64 81317101a25SAlexander Leidinger also includes a change to the ELFv2 ABI, incompatible with the existing 81417101a25SAlexander Leidinger ABI. 81517101a25SAlexander Leidinger 81617101a25SAlexander Leidinger20191226: 81717101a25SAlexander Leidinger Kernel-loadable random(4) modules are no longer unloadable. 81817101a25SAlexander Leidinger 81917101a25SAlexander Leidinger20191222: 82017101a25SAlexander Leidinger Clang, llvm, lld, lldb, compiler-rt, libc++, libunwind and openmp have 82117101a25SAlexander Leidinger been upgraded to 9.0.1. Please see the 20141231 entry below for 82217101a25SAlexander Leidinger information about prerequisites and upgrading, if you are not already 82317101a25SAlexander Leidinger using clang 3.5.0 or higher. 82417101a25SAlexander Leidinger 82517101a25SAlexander Leidinger20191212: 82617101a25SAlexander Leidinger r355677 has modified the internal interface used between the 82717101a25SAlexander Leidinger NFS modules in the kernel. As such, they must all be upgraded 82817101a25SAlexander Leidinger simultaneously. I will do a version bump for this. 82917101a25SAlexander Leidinger 83017101a25SAlexander Leidinger20191205: 83117101a25SAlexander Leidinger The root certificates of the Mozilla CA Certificate Store have been 83217101a25SAlexander Leidinger imported into the base system and can be managed with the certctl(8) 83317101a25SAlexander Leidinger utility. If you have installed the security/ca_root_nss port or package 83417101a25SAlexander Leidinger with the ETCSYMLINK option (the default), be advised that there may be 83517101a25SAlexander Leidinger differences between those included in the port and those included in 83617101a25SAlexander Leidinger base due to differences in nss branch used as well as general update 83717101a25SAlexander Leidinger frequency. Note also that certctl(8) cannot manage certs in the 83817101a25SAlexander Leidinger format used by the security/ca_root_nss port. 83917101a25SAlexander Leidinger 84017101a25SAlexander Leidinger20191120: 84117101a25SAlexander Leidinger The amd(8) automount daemon has been disabled by default, and will be 84217101a25SAlexander Leidinger removed in the future. As of FreeBSD 10.1 the autofs(5) is available 84317101a25SAlexander Leidinger for automounting. 84417101a25SAlexander Leidinger 84517101a25SAlexander Leidinger20191107: 84617101a25SAlexander Leidinger The nctgpio and wbwd drivers have been moved to the superio bus. 84717101a25SAlexander Leidinger If you have one of these drivers in a kernel configuration, then 84817101a25SAlexander Leidinger you should add device superio to it. If you use one of these drivers 84917101a25SAlexander Leidinger as a module and you compile a custom set of modules, then you should 85017101a25SAlexander Leidinger add superio to the set. 85117101a25SAlexander Leidinger 85217101a25SAlexander Leidinger20191021: 85317101a25SAlexander Leidinger KPIs for network drivers to access interface addresses have changed. 85417101a25SAlexander Leidinger Users need to recompile NIC driver modules together with kernel. 85517101a25SAlexander Leidinger 85617101a25SAlexander Leidinger20191021: 85717101a25SAlexander Leidinger The net.link.tap.user_open sysctl no longer prevents user opening of 85817101a25SAlexander Leidinger already created /dev/tapNN devices. Access is still controlled by 85917101a25SAlexander Leidinger node permissions, just like tun devices. The net.link.tap.user_open 86017101a25SAlexander Leidinger sysctl is now used only to allow users to perform devfs cloning of 86117101a25SAlexander Leidinger tap devices, and the subsequent open may not succeed if the user is not 86217101a25SAlexander Leidinger in the appropriate group. This sysctl may be deprecated/removed 86317101a25SAlexander Leidinger completely in the future. 86417101a25SAlexander Leidinger 86517101a25SAlexander Leidinger20191009: 86617101a25SAlexander Leidinger mips, powerpc, and sparc64 are no longer built as part of 86717101a25SAlexander Leidinger universe / tinderbox unless MAKE_OBSOLETE_GCC is defined. If 86817101a25SAlexander Leidinger not defined, mips, powerpc, and sparc64 builds will look for 86917101a25SAlexander Leidinger the xtoolchain binaries and if installed use them for universe 87017101a25SAlexander Leidinger builds. As llvm 9.0 becomes vetted for these architectures, they 87117101a25SAlexander Leidinger will be removed from the list. 87217101a25SAlexander Leidinger 87317101a25SAlexander Leidinger20191009: 87417101a25SAlexander Leidinger Clang, llvm, lld, lldb, compiler-rt, libc++, libunwind and openmp have 87517101a25SAlexander Leidinger been upgraded to 9.0.0. Please see the 20141231 entry below for 87617101a25SAlexander Leidinger information about prerequisites and upgrading, if you are not already 87717101a25SAlexander Leidinger using clang 3.5.0 or higher. 87817101a25SAlexander Leidinger 87917101a25SAlexander Leidinger20191003: 88017101a25SAlexander Leidinger The hpt27xx, hptmv, hptnr, and hptrr drivers have been removed from 88117101a25SAlexander Leidinger GENERIC. They are available as modules and can be loaded by adding 88217101a25SAlexander Leidinger to /boot/loader.conf hpt27xx_load="YES", hptmv_load="YES", 88317101a25SAlexander Leidinger hptnr_load="YES", or hptrr_load="YES", respectively. 88417101a25SAlexander Leidinger 88517101a25SAlexander Leidinger20190913: 88617101a25SAlexander Leidinger ntpd no longer by default locks its pages in memory, allowing them 88717101a25SAlexander Leidinger to be paged out by the kernel. Use rlimit memlock to restore 88817101a25SAlexander Leidinger historic BSD behaviour. For example, add "rlimit memlock 32" 88917101a25SAlexander Leidinger to ntp.conf to lock up to 32 MB of ntpd address space in memory. 89017101a25SAlexander Leidinger 89117101a25SAlexander Leidinger20190823: 89217101a25SAlexander Leidinger Several of ping6's options have been renamed for better consistency 89317101a25SAlexander Leidinger with ping. If you use any of -ARWXaghmrtwx, you must update your 89417101a25SAlexander Leidinger scripts. See ping6(8) for details. 89517101a25SAlexander Leidinger 89617101a25SAlexander Leidinger20190727: 89717101a25SAlexander Leidinger The vfs.fusefs.sync_unmount and vfs.fusefs.init_backgrounded sysctls 89817101a25SAlexander Leidinger and the "-o sync_unmount" and "-o init_backgrounded" mount options have 89917101a25SAlexander Leidinger been removed from mount_fusefs(8). You can safely remove them from 90017101a25SAlexander Leidinger your scripts, because they had no effect. 90117101a25SAlexander Leidinger 90217101a25SAlexander Leidinger The vfs.fusefs.fix_broken_io, vfs.fusefs.sync_resize, 90317101a25SAlexander Leidinger vfs.fusefs.refresh_size, vfs.fusefs.mmap_enable, 90417101a25SAlexander Leidinger vfs.fusefs.reclaim_revoked, and vfs.fusefs.data_cache_invalidate 90517101a25SAlexander Leidinger sysctls have been removed. If you felt the need to set any of them to 90617101a25SAlexander Leidinger a non-default value, please tell [email protected] why. 90717101a25SAlexander Leidinger 90817101a25SAlexander Leidinger20190713: 90917101a25SAlexander Leidinger Default permissions on the /var/account/acct file (and copies of it 91017101a25SAlexander Leidinger rotated by periodic daily scripts) are changed from 0644 to 0640 91117101a25SAlexander Leidinger because the file contains sensitive information that should not be 91217101a25SAlexander Leidinger world-readable. If the /var/account directory must be created by 91317101a25SAlexander Leidinger rc.d/accounting, the mode used is now 0750. Admins who use the 91417101a25SAlexander Leidinger accounting feature are encouraged to change the mode of an existing 91517101a25SAlexander Leidinger /var/account directory to 0750 or 0700. 91617101a25SAlexander Leidinger 91717101a25SAlexander Leidinger20190620: 91817101a25SAlexander Leidinger Entropy collection and the /dev/random device are no longer optional 91917101a25SAlexander Leidinger components. The "device random" option has been removed. 92017101a25SAlexander Leidinger Implementations of distilling algorithms can still be made loadable 92117101a25SAlexander Leidinger with "options RANDOM_LOADABLE" (e.g., random_fortuna.ko). 92217101a25SAlexander Leidinger 92317101a25SAlexander Leidinger20190612: 92417101a25SAlexander Leidinger Clang, llvm, lld, lldb, compiler-rt, libc++, libunwind and openmp have 92517101a25SAlexander Leidinger been upgraded to 8.0.1. Please see the 20141231 entry below for 92617101a25SAlexander Leidinger information about prerequisites and upgrading, if you are not already 92717101a25SAlexander Leidinger using clang 3.5.0 or higher. 92817101a25SAlexander Leidinger 92917101a25SAlexander Leidinger20190608: 93017101a25SAlexander Leidinger A fix was applied to i386 kernel modules to avoid panics with 93117101a25SAlexander Leidinger dpcpu or vnet. Users need to recompile i386 kernel modules 93217101a25SAlexander Leidinger having pcpu or vnet sections or they will refuse to load. 93317101a25SAlexander Leidinger 93417101a25SAlexander Leidinger20190513: 93517101a25SAlexander Leidinger User-wired pages now have their own counter, 93617101a25SAlexander Leidinger vm.stats.vm.v_user_wire_count. The vm.max_wired sysctl was renamed 93717101a25SAlexander Leidinger to vm.max_user_wired and changed from an unsigned int to an unsigned 93817101a25SAlexander Leidinger long. bhyve VMs wired with the -S are now subject to the user 93917101a25SAlexander Leidinger wiring limit; the vm.max_user_wired sysctl may need to be tuned to 94017101a25SAlexander Leidinger avoid running into the limit. 94117101a25SAlexander Leidinger 94217101a25SAlexander Leidinger20190507: 94317101a25SAlexander Leidinger The IPSEC option has been removed from GENERIC. Users requiring 94417101a25SAlexander Leidinger ipsec(4) must now load the ipsec(4) kernel module. 94517101a25SAlexander Leidinger 94617101a25SAlexander Leidinger20190507: 94717101a25SAlexander Leidinger The tap(4) driver has been folded into tun(4), and the module has been 94817101a25SAlexander Leidinger renamed to tuntap. You should update any kld_list="if_tap" or 94917101a25SAlexander Leidinger kld_list="if_tun" entries in /etc/rc.conf, if_tap_load="YES" or 95017101a25SAlexander Leidinger if_tun_load="YES" entries in /boot/loader.conf to load the if_tuntap 95117101a25SAlexander Leidinger module instead, and "device tap" or "device tun" entries in kernel 95217101a25SAlexander Leidinger config files to select the tuntap device instead. 95317101a25SAlexander Leidinger 95417101a25SAlexander Leidinger20190418: 95517101a25SAlexander Leidinger The following knobs have been added related to tradeoffs between 95617101a25SAlexander Leidinger safe use of the random device and availability in the absence of 95717101a25SAlexander Leidinger entropy: 95817101a25SAlexander Leidinger 95917101a25SAlexander Leidinger kern.random.initial_seeding.bypass_before_seeding: tunable; set 96017101a25SAlexander Leidinger non-zero to bypass the random device prior to seeding, or zero to 96117101a25SAlexander Leidinger block random requests until the random device is initially seeded. 96217101a25SAlexander Leidinger For now, set to 1 (unsafe) by default to restore pre-r346250 boot 96317101a25SAlexander Leidinger availability properties. 96417101a25SAlexander Leidinger 96517101a25SAlexander Leidinger kern.random.initial_seeding.read_random_bypassed_before_seeding: 96617101a25SAlexander Leidinger read-only diagnostic sysctl that is set when bypass is enabled and 96717101a25SAlexander Leidinger read_random(9) is bypassed, to enable programmatic handling of this 96817101a25SAlexander Leidinger initial condition, if desired. 96917101a25SAlexander Leidinger 97017101a25SAlexander Leidinger kern.random.initial_seeding.arc4random_bypassed_before_seeding: 97117101a25SAlexander Leidinger Similar to the above, but for arc4random(9) initial seeding. 97217101a25SAlexander Leidinger 97317101a25SAlexander Leidinger kern.random.initial_seeding.disable_bypass_warnings: tunable; set 97417101a25SAlexander Leidinger non-zero to disable warnings in dmesg when the same conditions are 97517101a25SAlexander Leidinger met as for the diagnostic sysctls above. Defaults to zero, i.e., 97617101a25SAlexander Leidinger produce warnings in dmesg when the conditions are met. 97717101a25SAlexander Leidinger 97817101a25SAlexander Leidinger20190416: 97917101a25SAlexander Leidinger The loadable random module KPI has changed; the random_infra_init() 98017101a25SAlexander Leidinger routine now requires a 3rd function pointer for a bool (*)(void) 98117101a25SAlexander Leidinger method that returns true if the random device is seeded (and 98217101a25SAlexander Leidinger therefore unblocked). 98317101a25SAlexander Leidinger 98417101a25SAlexander Leidinger20190404: 98517101a25SAlexander Leidinger r345895 reverts r320698. This implies that an nfsuserd(8) daemon 98617101a25SAlexander Leidinger built from head sources between r320757 (July 6, 2017) and 98717101a25SAlexander Leidinger r338192 (Aug. 22, 2018) will not work unless the "-use-udpsock" 98817101a25SAlexander Leidinger is added to the command line. 98917101a25SAlexander Leidinger nfsuserd daemons built from head sources that are post-r338192 are 99017101a25SAlexander Leidinger not affected and should continue to work. 99117101a25SAlexander Leidinger 99217101a25SAlexander Leidinger20190320: 99317101a25SAlexander Leidinger The fuse(4) module has been renamed to fusefs(4) for consistency with 99417101a25SAlexander Leidinger other filesystems. You should update any kld_load="fuse" entries in 99517101a25SAlexander Leidinger /etc/rc.conf, fuse_load="YES" entries in /boot/loader.conf, and 99617101a25SAlexander Leidinger "options FUSE" entries in kernel config files. 99717101a25SAlexander Leidinger 99817101a25SAlexander Leidinger20190304: 99917101a25SAlexander Leidinger Clang, llvm, lld, lldb, compiler-rt and libc++ have been upgraded to 100017101a25SAlexander Leidinger 8.0.0. Please see the 20141231 entry below for information about 100117101a25SAlexander Leidinger prerequisites and upgrading, if you are not already using clang 3.5.0 100217101a25SAlexander Leidinger or higher. 100317101a25SAlexander Leidinger 100417101a25SAlexander Leidinger20190226: 100517101a25SAlexander Leidinger geom_uzip(4) depends on the new module xz. If geom_uzip is statically 100617101a25SAlexander Leidinger compiled into your custom kernel, add 'device xz' statement to the 100717101a25SAlexander Leidinger kernel config. 100817101a25SAlexander Leidinger 100917101a25SAlexander Leidinger20190219: 101017101a25SAlexander Leidinger drm and drm2 have been removed from the tree. Please see 101117101a25SAlexander Leidinger https://wiki.freebsd.org/Graphics for the latest information on 101217101a25SAlexander Leidinger migrating to the drm ports. 101317101a25SAlexander Leidinger 101417101a25SAlexander Leidinger20190131: 101517101a25SAlexander Leidinger Iflib is no longer unconditionally compiled into the kernel. Drivers 101617101a25SAlexander Leidinger using iflib and statically compiled into the kernel, now require 101717101a25SAlexander Leidinger the 'device iflib' config option. For the same drivers loaded as 101817101a25SAlexander Leidinger modules on kernels not having 'device iflib', the iflib.ko module 101917101a25SAlexander Leidinger is loaded automatically. 102017101a25SAlexander Leidinger 102117101a25SAlexander Leidinger20190125: 102217101a25SAlexander Leidinger The IEEE80211_AMPDU_AGE and AH_SUPPORT_AR5416 kernel configuration 102317101a25SAlexander Leidinger options no longer exist since r343219 and r343427 respectively; 102417101a25SAlexander Leidinger nothing uses them, so they should be just removed from custom 102517101a25SAlexander Leidinger kernel config files. 102617101a25SAlexander Leidinger 102717101a25SAlexander Leidinger20181230: 102817101a25SAlexander Leidinger r342635 changes the way efibootmgr(8) works by requiring users to add 102917101a25SAlexander Leidinger the -b (bootnum) parameter for commands where the bootnum was previously 103017101a25SAlexander Leidinger specified with each option. For example 'efibootmgr -B 0001' is now 103117101a25SAlexander Leidinger 'efibootmgr -B -b 0001'. 103217101a25SAlexander Leidinger 103317101a25SAlexander Leidinger20181220: 103417101a25SAlexander Leidinger r342286 modifies the NFSv4 server so that it obeys vfs.nfsd.nfs_privport 103517101a25SAlexander Leidinger in the same as it is applied to NFSv2 and 3. This implies that NFSv4 103617101a25SAlexander Leidinger servers that have vfs.nfsd.nfs_privport set will only allow mounts 103717101a25SAlexander Leidinger from clients using a reserved port. Since both the FreeBSD and Linux 103817101a25SAlexander Leidinger NFSv4 clients use reserved ports by default, this should not affect 103917101a25SAlexander Leidinger most NFSv4 mounts. 104017101a25SAlexander Leidinger 104117101a25SAlexander Leidinger20181219: 104217101a25SAlexander Leidinger The XLP config has been removed. We can't support 64-bit atomics in this 104317101a25SAlexander Leidinger kernel because it is running in 32-bit mode. XLP users must transition 104417101a25SAlexander Leidinger to running a 64-bit kernel (XLP64 or XLPN32). 104517101a25SAlexander Leidinger 104617101a25SAlexander Leidinger The mips GXEMUL support has been removed from FreeBSD. MALTA* + qemu is 104717101a25SAlexander Leidinger the preferred emulator today and we don't need two different ones. 104817101a25SAlexander Leidinger 104917101a25SAlexander Leidinger The old sibyte / swarm / Broadcom BCM1250 support has been 105017101a25SAlexander Leidinger removed from the mips port. 105117101a25SAlexander Leidinger 105217101a25SAlexander Leidinger20181211: 105317101a25SAlexander Leidinger Clang, llvm, lld, lldb, compiler-rt and libc++ have been upgraded to 105417101a25SAlexander Leidinger 7.0.1. Please see the 20141231 entry below for information about 105517101a25SAlexander Leidinger prerequisites and upgrading, if you are not already using clang 3.5.0 105617101a25SAlexander Leidinger or higher. 105717101a25SAlexander Leidinger 105817101a25SAlexander Leidinger20181211: 105917101a25SAlexander Leidinger Remove the timed and netdate programs from the base tree. Setting 106017101a25SAlexander Leidinger the time with these daemons has been obsolete for over a decade. 106117101a25SAlexander Leidinger 106217101a25SAlexander Leidinger20181126: 106317101a25SAlexander Leidinger On amd64, arm64 and armv7 (architectures that install LLVM's ld.lld 106417101a25SAlexander Leidinger linker as /usr/bin/ld) GNU ld is no longer installed as ld.bfd, as 106517101a25SAlexander Leidinger it produces broken binaries when ifuncs are in use. Users needing 106617101a25SAlexander Leidinger GNU ld should install the binutils port or package. 106717101a25SAlexander Leidinger 106817101a25SAlexander Leidinger20181123: 106917101a25SAlexander Leidinger The BSD crtbegin and crtend code has been enabled by default. It has 107017101a25SAlexander Leidinger had extensive testing on amd64, arm64, and i386. It can be disabled 107117101a25SAlexander Leidinger by building a world with -DWITHOUT_BSD_CRTBEGIN. 107217101a25SAlexander Leidinger 107317101a25SAlexander Leidinger20181115: 107417101a25SAlexander Leidinger The set of CTM commands (ctm, ctm_smail, ctm_rmail, ctm_dequeue) 107517101a25SAlexander Leidinger has been converted to a port (misc/ctm) and will be removed from 107617101a25SAlexander Leidinger FreeBSD-13. It is available as a package (ctm) for all supported 107717101a25SAlexander Leidinger FreeBSD versions. 107817101a25SAlexander Leidinger 107917101a25SAlexander Leidinger20181110: 108017101a25SAlexander Leidinger The default newsyslog.conf(5) file has been changed to only include 108117101a25SAlexander Leidinger files in /etc/newsyslog.conf.d/ and /usr/local/etc/newsyslog.conf.d/ if 108217101a25SAlexander Leidinger the filenames end in '.conf' and do not begin with a '.'. 108317101a25SAlexander Leidinger 108417101a25SAlexander Leidinger You should check the configuration files in these two directories match 108517101a25SAlexander Leidinger this naming convention. You can verify which configuration files are 108617101a25SAlexander Leidinger being included using the command: 108717101a25SAlexander Leidinger $ newsyslog -Nrv 108817101a25SAlexander Leidinger 108917101a25SAlexander Leidinger20181015: 109017101a25SAlexander Leidinger Ports for the DRM modules have been simplified. Now, amd64 users should 109117101a25SAlexander Leidinger just install the drm-kmod port. All others should install 109217101a25SAlexander Leidinger drm-legacy-kmod. 109317101a25SAlexander Leidinger 109417101a25SAlexander Leidinger Graphics hardware that's newer than about 2010 usually works with 109517101a25SAlexander Leidinger drm-kmod. For hardware older than 2013, however, some users will need 109617101a25SAlexander Leidinger to use drm-legacy-kmod if drm-kmod doesn't work for them. Hardware older 109717101a25SAlexander Leidinger than 2008 usually only works in drm-legacy-kmod. The graphics team can 109817101a25SAlexander Leidinger only commit to hardware made since 2013 due to the complexity of the 109917101a25SAlexander Leidinger market and difficulty to test all the older cards effectively. If you 110017101a25SAlexander Leidinger have hardware supported by drm-kmod, you are strongly encouraged to use 110117101a25SAlexander Leidinger that as you will get better support. 110217101a25SAlexander Leidinger 110317101a25SAlexander Leidinger Other than KPI chasing, drm-legacy-kmod will not be updated. As outlined 110417101a25SAlexander Leidinger elsewhere, the drm and drm2 modules will be eliminated from the src base 110517101a25SAlexander Leidinger soon (with a limited exception for arm). Please update to the package 110617101a25SAlexander Leidinger asap and report any issues to [email protected]. 110717101a25SAlexander Leidinger 110817101a25SAlexander Leidinger Generally, anybody using the drm*-kmod packages should add 110917101a25SAlexander Leidinger WITHOUT_DRM_MODULE=t and WITHOUT_DRM2_MODULE=t to avoid nasty 111017101a25SAlexander Leidinger cross-threading surprises, especially with automatic driver 111117101a25SAlexander Leidinger loading from X11 startup. These will become the defaults in 13-current 111217101a25SAlexander Leidinger shortly. 111317101a25SAlexander Leidinger 111417101a25SAlexander Leidinger20181012: 111517101a25SAlexander Leidinger The ixlv(4) driver has been renamed to iavf(4). As a consequence, 111617101a25SAlexander Leidinger custom kernel and module loading configuration files must be updated 111717101a25SAlexander Leidinger accordingly. Moreover, interfaces previous presented as ixlvN to the 111817101a25SAlexander Leidinger system are now exposed as iavfN and network configuration files must 111917101a25SAlexander Leidinger be adjusted as necessary. 112017101a25SAlexander Leidinger 112117101a25SAlexander Leidinger20181009: 112217101a25SAlexander Leidinger OpenSSL has been updated to version 1.1.1. This update included 112317101a25SAlexander Leidinger additional various API changes throughout the base system. It is 112417101a25SAlexander Leidinger important to rebuild third-party software after upgrading. The value 112517101a25SAlexander Leidinger of __FreeBSD_version has been bumped accordingly. 112617101a25SAlexander Leidinger 112717101a25SAlexander Leidinger20181006: 112817101a25SAlexander Leidinger The legacy DRM modules and drivers have now been added to the loader's 112917101a25SAlexander Leidinger module blacklist, in favor of loading them with kld_list in rc.conf(5). 113017101a25SAlexander Leidinger The module blacklist may be overridden with the loader.conf(5) 113117101a25SAlexander Leidinger 'module_blacklist' variable, but loading them via rc.conf(5) is strongly 113217101a25SAlexander Leidinger encouraged. 113317101a25SAlexander Leidinger 113417101a25SAlexander Leidinger20181002: 113517101a25SAlexander Leidinger The cam(4) based nda(4) driver will be used over nvd(4) by default on 113617101a25SAlexander Leidinger powerpc64. You may set 'options NVME_USE_NVD=1' in your kernel conf or 113717101a25SAlexander Leidinger loader tunable 'hw.nvme.use_nvd=1' if you wish to use the existing 113817101a25SAlexander Leidinger driver. Make sure to edit /boot/etc/kboot.conf and fstab to use the 113917101a25SAlexander Leidinger nda device name. 114017101a25SAlexander Leidinger 114117101a25SAlexander Leidinger20180913: 114217101a25SAlexander Leidinger Reproducible build mode is now on by default, in preparation for 114317101a25SAlexander Leidinger FreeBSD 12.0. This eliminates build metadata such as the user, 114417101a25SAlexander Leidinger host, and time from the kernel (and uname), unless the working tree 114517101a25SAlexander Leidinger corresponds to a modified checkout from a version control system. 114617101a25SAlexander Leidinger The previous behavior can be obtained by setting the /etc/src.conf 114717101a25SAlexander Leidinger knob WITHOUT_REPRODUCIBLE_BUILD. 114817101a25SAlexander Leidinger 114917101a25SAlexander Leidinger20180826: 115017101a25SAlexander Leidinger The Yarrow CSPRNG has been removed from the kernel as it has not been 115117101a25SAlexander Leidinger supported by its designers since at least 2003. Fortuna has been the 115217101a25SAlexander Leidinger default since FreeBSD-11. 115317101a25SAlexander Leidinger 115417101a25SAlexander Leidinger20180822: 115517101a25SAlexander Leidinger devctl freeze/thaw have gone into the tree, the rc scripts have been 115617101a25SAlexander Leidinger updated to use them and devmatch has been changed. You should update 115717101a25SAlexander Leidinger kernel, userland and rc scripts all at the same time. 115817101a25SAlexander Leidinger 115917101a25SAlexander Leidinger20180818: 116017101a25SAlexander Leidinger The default interpreter has been switched from 4th to Lua. 116117101a25SAlexander Leidinger LOADER_DEFAULT_INTERP, documented in build(7), will override the default 116217101a25SAlexander Leidinger interpreter. If you have custom FORTH code you will need to set 116317101a25SAlexander Leidinger LOADER_DEFAULT_INTERP=4th (valid values are 4th, lua or simp) in 116417101a25SAlexander Leidinger src.conf for the build. This will create default hard links between 116517101a25SAlexander Leidinger loader and loader_4th instead of loader and loader_lua, the new default. 116617101a25SAlexander Leidinger If you are using UEFI it will create the proper hard link to loader.efi. 116717101a25SAlexander Leidinger 116817101a25SAlexander Leidinger bhyve uses userboot.so. It remains 4th-only until some issues are solved 116917101a25SAlexander Leidinger regarding coexisting with multiple versions of FreeBSD are resolved. 117017101a25SAlexander Leidinger 117117101a25SAlexander Leidinger20180815: 117217101a25SAlexander Leidinger ls(1) now respects the COLORTERM environment variable used in other 117317101a25SAlexander Leidinger systems and software to indicate that a colored terminal is both 117417101a25SAlexander Leidinger supported and desired. If ls(1) is suddenly emitting colors, they may 117517101a25SAlexander Leidinger be disabled again by either removing the unwanted COLORTERM from your 117617101a25SAlexander Leidinger environment, or using `ls --color=never`. The ls(1) specific CLICOLOR 117717101a25SAlexander Leidinger may not be observed in a future release. 117817101a25SAlexander Leidinger 117917101a25SAlexander Leidinger20180808: 118017101a25SAlexander Leidinger The default pager for most commands has been changed to "less". To 118117101a25SAlexander Leidinger restore the old behavior, set PAGER="more" and MANPAGER="more -s" in 118217101a25SAlexander Leidinger your environment. 118317101a25SAlexander Leidinger 118417101a25SAlexander Leidinger20180731: 118517101a25SAlexander Leidinger The jedec_ts(4) driver has been removed. A superset of its functionality 118617101a25SAlexander Leidinger is available in the jedec_dimm(4) driver, and the manpage for that 118717101a25SAlexander Leidinger driver includes migration instructions. If you have "device jedec_ts" 118817101a25SAlexander Leidinger in your kernel configuration file, it must be removed. 118917101a25SAlexander Leidinger 119017101a25SAlexander Leidinger20180730: 119117101a25SAlexander Leidinger amd64/GENERIC now has EFI runtime services, EFIRT, enabled by default. 119217101a25SAlexander Leidinger This should have no effect if the kernel is booted via BIOS/legacy boot. 119317101a25SAlexander Leidinger EFIRT may be disabled via a loader tunable, efi.rt.disabled, if a system 119417101a25SAlexander Leidinger has a buggy firmware that prevents a successful boot due to use of 119517101a25SAlexander Leidinger runtime services. 119617101a25SAlexander Leidinger 119717101a25SAlexander Leidinger20180727: 119817101a25SAlexander Leidinger Atmel AT91RM9200 and AT91SAM9, Cavium CNS 11xx and XScale 119917101a25SAlexander Leidinger support has been removed from the tree. These ports were 120017101a25SAlexander Leidinger obsolete and/or known to be broken for many years. 120117101a25SAlexander Leidinger 120217101a25SAlexander Leidinger20180723: 120317101a25SAlexander Leidinger loader.efi has been augmented to participate more fully in the 120417101a25SAlexander Leidinger UEFI boot manager protocol. loader.efi will now look at the 120517101a25SAlexander Leidinger BootXXXX environment variable to determine if a specific kernel 120617101a25SAlexander Leidinger or root partition was specified. XXXX is derived from BootCurrent. 120717101a25SAlexander Leidinger efibootmgr(8) manages these standard UEFI variables. 120817101a25SAlexander Leidinger 120917101a25SAlexander Leidinger20180720: 121017101a25SAlexander Leidinger zfsloader's functionality has now been folded into loader. 121117101a25SAlexander Leidinger zfsloader is no longer necessary once you've updated your 121217101a25SAlexander Leidinger boot blocks. For a transition period, we will install a 121317101a25SAlexander Leidinger hardlink for zfsloader to loader to allow a smooth transition 121417101a25SAlexander Leidinger until the boot blocks can be updated (hard link because old 121517101a25SAlexander Leidinger zfs boot blocks don't understand symlinks). 121617101a25SAlexander Leidinger 121717101a25SAlexander Leidinger20180719: 121817101a25SAlexander Leidinger ARM64 now have efifb support, if you want to have serial console 121917101a25SAlexander Leidinger on your arm64 board when an screen is connected and the bootloader 122017101a25SAlexander Leidinger setup a frame buffer for us to use, just add : 122117101a25SAlexander Leidinger boot_serial=YES 122217101a25SAlexander Leidinger boot_multicons=YES 122317101a25SAlexander Leidinger in /boot/loader.conf 122417101a25SAlexander Leidinger For Raspberry Pi 3 (RPI) users, this is needed even if you don't have 122517101a25SAlexander Leidinger an screen connected as the firmware will setup a frame buffer are that 122617101a25SAlexander Leidinger u-boot will expose as an EFI frame buffer. 122717101a25SAlexander Leidinger 122817101a25SAlexander Leidinger20180719: 122917101a25SAlexander Leidinger New uid:gid added, ntpd:ntpd (123:123). Be sure to run mergemaster 123017101a25SAlexander Leidinger or take steps to update /etc/passwd before doing installworld on 123117101a25SAlexander Leidinger existing systems. Do not skip the "mergemaster -Fp" step before 123217101a25SAlexander Leidinger installworld, as described in the update procedures near the bottom 123317101a25SAlexander Leidinger of this document. Also, rc.d/ntpd now starts ntpd(8) as user ntpd 123417101a25SAlexander Leidinger if the new mac_ntpd(4) policy is available, unless ntpd_flags or 123517101a25SAlexander Leidinger the ntp config file contain options that change file/dir locations. 123617101a25SAlexander Leidinger When such options (e.g., "statsdir" or "crypto") are used, ntpd can 123717101a25SAlexander Leidinger still be run as non-root by setting ntpd_user=ntpd in rc.conf, after 123817101a25SAlexander Leidinger taking steps to ensure that all required files/dirs are accessible 123917101a25SAlexander Leidinger by the ntpd user. 124017101a25SAlexander Leidinger 124117101a25SAlexander Leidinger20180717: 124217101a25SAlexander Leidinger Big endian arm support has been removed. 124317101a25SAlexander Leidinger 124417101a25SAlexander Leidinger20180711: 124517101a25SAlexander Leidinger The static environment setup in kernel configs is no longer mutually 124617101a25SAlexander Leidinger exclusive with the loader(8) environment by default. In order to 124717101a25SAlexander Leidinger restore the previous default behavior of disabling the loader(8) 124817101a25SAlexander Leidinger environment if a static environment is present, you must specify 124917101a25SAlexander Leidinger loader_env.disabled=1 in the static environment. 125017101a25SAlexander Leidinger 125117101a25SAlexander Leidinger20180705: 125217101a25SAlexander Leidinger The ABI of syscalls used by management tools like sockstat and 125317101a25SAlexander Leidinger netstat has been broken to allow 32-bit binaries to work on 125417101a25SAlexander Leidinger 64-bit kernels without modification. These programs will need 125517101a25SAlexander Leidinger to match the kernel in order to function. External programs may 125617101a25SAlexander Leidinger require minor modifications to accommodate a change of type in 125717101a25SAlexander Leidinger structures from pointers to 64-bit virtual addresses. 125817101a25SAlexander Leidinger 125917101a25SAlexander Leidinger20180702: 126017101a25SAlexander Leidinger On i386 and amd64 atomics are now inlined. Out of tree modules using 126117101a25SAlexander Leidinger atomics will need to be rebuilt. 126217101a25SAlexander Leidinger 126317101a25SAlexander Leidinger20180701: 126417101a25SAlexander Leidinger The '%I' format in the kern.corefile sysctl limits the number of 126517101a25SAlexander Leidinger core files that a process can generate to the number stored in the 126617101a25SAlexander Leidinger debug.ncores sysctl. The '%I' format is replaced by the single digit 126717101a25SAlexander Leidinger index. Previously, if all indexes were taken the kernel would overwrite 126817101a25SAlexander Leidinger only a core file with the highest index in a filename. 126917101a25SAlexander Leidinger Currently the system will create a new core file if there is a free 127017101a25SAlexander Leidinger index or if all slots are taken it will overwrite the oldest one. 127117101a25SAlexander Leidinger 127217101a25SAlexander Leidinger20180630: 127317101a25SAlexander Leidinger Clang, llvm, lld, lldb, compiler-rt and libc++ have been upgraded to 127417101a25SAlexander Leidinger 6.0.1. Please see the 20141231 entry below for information about 127517101a25SAlexander Leidinger prerequisites and upgrading, if you are not already using clang 3.5.0 127617101a25SAlexander Leidinger or higher. 127717101a25SAlexander Leidinger 127817101a25SAlexander Leidinger20180628: 127917101a25SAlexander Leidinger r335753 introduced a new quoting method. However, etc/devd/devmatch.conf 128017101a25SAlexander Leidinger needed to be changed to work with it. This change was made with r335763 128117101a25SAlexander Leidinger and requires a mergemaster / etcupdate / etc to update the installed 128217101a25SAlexander Leidinger file. 128317101a25SAlexander Leidinger 128417101a25SAlexander Leidinger20180612: 128517101a25SAlexander Leidinger r334930 changed the interface between the NFS modules, so they all 128617101a25SAlexander Leidinger need to be rebuilt. r335018 did a __FreeBSD_version bump for this. 128717101a25SAlexander Leidinger 128817101a25SAlexander Leidinger20180530: 128917101a25SAlexander Leidinger As of r334391 lld is the default amd64 system linker; it is installed 129017101a25SAlexander Leidinger as /usr/bin/ld. Kernel build workarounds (see 20180510 entry) are no 129117101a25SAlexander Leidinger longer necessary. 129217101a25SAlexander Leidinger 129317101a25SAlexander Leidinger20180530: 129417101a25SAlexander Leidinger The kernel / userland interface for devinfo changed, so you'll 129517101a25SAlexander Leidinger need a new kernel and userland as a pair for it to work (rebuilding 129617101a25SAlexander Leidinger lib/libdevinfo is all that's required). devinfo and devmatch will 129717101a25SAlexander Leidinger not work, but everything else will when there's a mismatch. 129817101a25SAlexander Leidinger 129917101a25SAlexander Leidinger20180523: 130017101a25SAlexander Leidinger The on-disk format for hwpmc callchain records has changed to include 130117101a25SAlexander Leidinger threadid corresponding to a given record. This changes the field offsets 130217101a25SAlexander Leidinger and thus requires that libpmcstat be rebuilt before using a kernel 130317101a25SAlexander Leidinger later than r334108. 130417101a25SAlexander Leidinger 130517101a25SAlexander Leidinger20180517: 130617101a25SAlexander Leidinger The vxge(4) driver has been removed. This driver was introduced into 130717101a25SAlexander Leidinger HEAD one week before the Exar left the Ethernet market and is not 130817101a25SAlexander Leidinger known to be used. If you have device vxge in your kernel config file 130917101a25SAlexander Leidinger it must be removed. 131017101a25SAlexander Leidinger 131117101a25SAlexander Leidinger20180510: 131217101a25SAlexander Leidinger The amd64 kernel now requires a ld that supports ifunc to produce a 131317101a25SAlexander Leidinger working kernel, either lld or a newer binutils. lld is built by default 131417101a25SAlexander Leidinger on amd64, and the 'buildkernel' target uses it automatically. However, 131517101a25SAlexander Leidinger it is not the default linker, so building the kernel the traditional 131617101a25SAlexander Leidinger way requires LD=ld.lld on the command line (or LD=/usr/local/bin/ld for 131717101a25SAlexander Leidinger binutils port/package). lld will soon be default, and this requirement 131817101a25SAlexander Leidinger will go away. 131917101a25SAlexander Leidinger 132017101a25SAlexander Leidinger NOTE: As of r334391 lld is the default system linker on amd64, and no 132117101a25SAlexander Leidinger workaround is necessary. 132217101a25SAlexander Leidinger 132317101a25SAlexander Leidinger20180508: 132417101a25SAlexander Leidinger The nxge(4) driver has been removed. This driver was for PCI-X 10g 132517101a25SAlexander Leidinger cards made by s2io/Neterion. The company was acquired by Exar and 132617101a25SAlexander Leidinger no longer sells or supports Ethernet products. If you have device 132717101a25SAlexander Leidinger nxge in your kernel config file it must be removed. 132817101a25SAlexander Leidinger 132917101a25SAlexander Leidinger20180504: 133017101a25SAlexander Leidinger The tz database (tzdb) has been updated to 2018e. This version more 133117101a25SAlexander Leidinger correctly models time stamps in time zones with negative DST such as 133217101a25SAlexander Leidinger Europe/Dublin (from 1971 on), Europe/Prague (1946/7), and 133317101a25SAlexander Leidinger Africa/Windhoek (1994/2017). This does not affect the UT offsets, only 133417101a25SAlexander Leidinger time zone abbreviations and the tm_isdst flag. 133517101a25SAlexander Leidinger 133617101a25SAlexander Leidinger20180502: 133717101a25SAlexander Leidinger The ixgb(4) driver has been removed. This driver was for an early and 133817101a25SAlexander Leidinger uncommon legacy PCI 10GbE for a single ASIC, Intel 82597EX. Intel 133917101a25SAlexander Leidinger quickly shifted to the long lived ixgbe family. If you have device 134017101a25SAlexander Leidinger ixgb in your kernel config file it must be removed. 134117101a25SAlexander Leidinger 134217101a25SAlexander Leidinger20180501: 134317101a25SAlexander Leidinger The lmc(4) driver has been removed. This was a WAN interface 134417101a25SAlexander Leidinger card that was already reportedly rare in 2003, and had an ambiguous 134517101a25SAlexander Leidinger license. If you have device lmc in your kernel config file it must 134617101a25SAlexander Leidinger be removed. 134717101a25SAlexander Leidinger 134817101a25SAlexander Leidinger20180413: 134917101a25SAlexander Leidinger Support for Arcnet networks has been removed. If you have device 135017101a25SAlexander Leidinger arcnet or device cm in your kernel config file they must be 135117101a25SAlexander Leidinger removed. 135217101a25SAlexander Leidinger 135317101a25SAlexander Leidinger20180411: 135417101a25SAlexander Leidinger Support for FDDI networks has been removed. If you have device 135517101a25SAlexander Leidinger fddi or device fpa in your kernel config file they must be 135617101a25SAlexander Leidinger removed. 135717101a25SAlexander Leidinger 135817101a25SAlexander Leidinger20180406: 135917101a25SAlexander Leidinger In addition to supporting RFC 3164 formatted messages, the 136017101a25SAlexander Leidinger syslogd(8) service is now capable of parsing RFC 5424 formatted 136117101a25SAlexander Leidinger log messages. The main benefit of using RFC 5424 is that clients 136217101a25SAlexander Leidinger may now send log messages with timestamps containing year numbers, 136317101a25SAlexander Leidinger microseconds and time zone offsets. 136417101a25SAlexander Leidinger 136517101a25SAlexander Leidinger Similarly, the syslog(3) C library function has been altered to 136617101a25SAlexander Leidinger send RFC 5424 formatted messages to the local system logging 136717101a25SAlexander Leidinger daemon. On systems using syslogd(8), this change should have no 136817101a25SAlexander Leidinger negative impact, as long as syslogd(8) and the C library are 136917101a25SAlexander Leidinger updated at the same time. On systems using a different system 137017101a25SAlexander Leidinger logging daemon, it may be necessary to make configuration 137117101a25SAlexander Leidinger adjustments, depending on the software used. 137217101a25SAlexander Leidinger 137317101a25SAlexander Leidinger When using syslog-ng, add the 'syslog-protocol' flag to local 137417101a25SAlexander Leidinger input sources to enable parsing of RFC 5424 formatted messages: 137517101a25SAlexander Leidinger 137617101a25SAlexander Leidinger source src { 137717101a25SAlexander Leidinger unix-dgram("/var/run/log" flags(syslog-protocol)); 137817101a25SAlexander Leidinger } 137917101a25SAlexander Leidinger 138017101a25SAlexander Leidinger When using rsyslog, disable the 'SysSock.UseSpecialParser' option 138117101a25SAlexander Leidinger of the 'imuxsock' module to let messages be processed by the 138217101a25SAlexander Leidinger regular RFC 3164/5424 parsing pipeline: 138317101a25SAlexander Leidinger 138417101a25SAlexander Leidinger module(load="imuxsock" SysSock.UseSpecialParser="off") 138517101a25SAlexander Leidinger 138617101a25SAlexander Leidinger Do note that these changes only affect communication between local 138717101a25SAlexander Leidinger applications and syslogd(8). The format that syslogd(8) uses to 138817101a25SAlexander Leidinger store messages on disk or forward messages to other systems 138917101a25SAlexander Leidinger remains unchanged. syslogd(8) still uses RFC 3164 for these 139017101a25SAlexander Leidinger purposes. Options to customize this behaviour will be added in the 139117101a25SAlexander Leidinger future. Utilities that process log files stored in /var/log are 139217101a25SAlexander Leidinger thus expected to continue to function as before. 139317101a25SAlexander Leidinger 139417101a25SAlexander Leidinger __FreeBSD_version has been incremented to 1200061 to denote this 139517101a25SAlexander Leidinger change. 139617101a25SAlexander Leidinger 139717101a25SAlexander Leidinger20180328: 139817101a25SAlexander Leidinger Support for token ring networks has been removed. If you 139917101a25SAlexander Leidinger have "device token" in your kernel config you should remove 140017101a25SAlexander Leidinger it. No device drivers supported token ring. 140117101a25SAlexander Leidinger 140217101a25SAlexander Leidinger20180323: 140317101a25SAlexander Leidinger makefs was modified to be able to tag ISO9660 El Torito boot catalog 140417101a25SAlexander Leidinger entries as EFI instead of overloading the i386 tag as done previously. 140517101a25SAlexander Leidinger The amd64 mkisoimages.sh script used to build amd64 ISO images for 140617101a25SAlexander Leidinger release was updated to use this. This may mean that makefs must be 140717101a25SAlexander Leidinger updated before "make cdrom" can be run in the release directory. This 140817101a25SAlexander Leidinger should be as simple as: 140917101a25SAlexander Leidinger 141017101a25SAlexander Leidinger $ cd $SRCDIR/usr.sbin/makefs 141117101a25SAlexander Leidinger $ make depend all install 141217101a25SAlexander Leidinger 141317101a25SAlexander Leidinger20180212: 141417101a25SAlexander Leidinger FreeBSD boot loader enhanced with Lua scripting. It's purely opt-in for 141517101a25SAlexander Leidinger now by building WITH_LOADER_LUA and WITHOUT_FORTH in /etc/src.conf. 141617101a25SAlexander Leidinger Co-existence for the transition period will come shortly. Booting is a 141717101a25SAlexander Leidinger complex environment and test coverage for Lua-enabled loaders has been 141817101a25SAlexander Leidinger thin, so it would be prudent to assume it might not work and make 141917101a25SAlexander Leidinger provisions for backup boot methods. 142017101a25SAlexander Leidinger 142117101a25SAlexander Leidinger20180211: 142217101a25SAlexander Leidinger devmatch functionality has been turned on in devd. It will automatically 142317101a25SAlexander Leidinger load drivers for unattached devices. This may cause unexpected drivers 142417101a25SAlexander Leidinger to be loaded. Please report any problems to current@ and 142517101a25SAlexander Leidinger [email protected]. 142617101a25SAlexander Leidinger 142717101a25SAlexander Leidinger20180114: 142817101a25SAlexander Leidinger Clang, llvm, lld, lldb, compiler-rt and libc++ have been upgraded to 142917101a25SAlexander Leidinger 6.0.0. Please see the 20141231 entry below for information about 143017101a25SAlexander Leidinger prerequisites and upgrading, if you are not already using clang 3.5.0 143117101a25SAlexander Leidinger or higher. 143217101a25SAlexander Leidinger 143317101a25SAlexander Leidinger20180110: 143417101a25SAlexander Leidinger LLVM's lld linker is now used as the FreeBSD/amd64 bootstrap linker. 143517101a25SAlexander Leidinger This means it is used to link the kernel and userland libraries and 143617101a25SAlexander Leidinger executables, but is not yet installed as /usr/bin/ld by default. 143717101a25SAlexander Leidinger 143817101a25SAlexander Leidinger To revert to ld.bfd as the bootstrap linker, in /etc/src.conf set 143917101a25SAlexander Leidinger WITHOUT_LLD_BOOTSTRAP=yes 144017101a25SAlexander Leidinger 144117101a25SAlexander Leidinger20180110: 144217101a25SAlexander Leidinger On i386, pmtimer has been removed. Its functionality has been folded 144317101a25SAlexander Leidinger into apm. It was a no-op on ACPI in current for a while now (but was 144417101a25SAlexander Leidinger still needed on i386 in FreeBSD 11 and earlier). Users may need to 144517101a25SAlexander Leidinger remove it from kernel config files. 144617101a25SAlexander Leidinger 144717101a25SAlexander Leidinger20180104: 144817101a25SAlexander Leidinger The use of RSS hash from the network card aka flowid has been 144917101a25SAlexander Leidinger disabled by default for lagg(4) as it's currently incompatible with 145017101a25SAlexander Leidinger the lacp and loadbalance protocols. 145117101a25SAlexander Leidinger 145217101a25SAlexander Leidinger This can be re-enabled by setting the following in loader.conf: 145317101a25SAlexander Leidinger net.link.lagg.default_use_flowid="1" 145417101a25SAlexander Leidinger 145517101a25SAlexander Leidinger20180102: 145617101a25SAlexander Leidinger The SW_WATCHDOG option is no longer necessary to enable the 145717101a25SAlexander Leidinger hardclock-based software watchdog if no hardware watchdog is 145817101a25SAlexander Leidinger configured. As before, SW_WATCHDOG will cause the software 145917101a25SAlexander Leidinger watchdog to be enabled even if a hardware watchdog is configured. 146017101a25SAlexander Leidinger 146117101a25SAlexander Leidinger20171215: 146217101a25SAlexander Leidinger r326887 fixes the issue described in the 20171214 UPDATING entry. 146317101a25SAlexander Leidinger r326888 flips the switch back to building GELI support always. 146417101a25SAlexander Leidinger 146517101a25SAlexander Leidinger20171214: 146617101a25SAlexander Leidinger r362593 broke ZFS + GELI support for reasons unknown. However, 146717101a25SAlexander Leidinger it also broke ZFS support generally, so GELI has been turned off 146817101a25SAlexander Leidinger by default as the lesser evil in r326857. If you boot off ZFS and/or 146917101a25SAlexander Leidinger GELI, it might not be a good time to update. 147017101a25SAlexander Leidinger 147117101a25SAlexander Leidinger20171125: 147217101a25SAlexander Leidinger PowerPC users must update loader(8) by rebuilding world before 147317101a25SAlexander Leidinger installing a new kernel, as the protocol connecting them has 147417101a25SAlexander Leidinger changed. Without the update, loader metadata will not be passed 147517101a25SAlexander Leidinger successfully to the kernel and users will have to enter their 147617101a25SAlexander Leidinger root partition at the kernel mountroot prompt to continue booting. 147717101a25SAlexander Leidinger Newer versions of loader can boot old kernels without issue. 147817101a25SAlexander Leidinger 147917101a25SAlexander Leidinger20171110: 148017101a25SAlexander Leidinger The LOADER_FIREWIRE_SUPPORT build variable has been renamed to 148117101a25SAlexander Leidinger WITH/OUT_LOADER_FIREWIRE. LOADER_{NO_,}GELI_SUPPORT has been renamed 148217101a25SAlexander Leidinger to WITH/OUT_LOADER_GELI. 148317101a25SAlexander Leidinger 148417101a25SAlexander Leidinger20171106: 148517101a25SAlexander Leidinger The naive and non-compliant support of posix_fallocate(2) in ZFS 148617101a25SAlexander Leidinger has been removed as of r325320. The system call now returns EINVAL 148717101a25SAlexander Leidinger when used on a ZFS file. Although the new behavior complies with the 148817101a25SAlexander Leidinger standard, some consumers are not prepared to cope with it. 148917101a25SAlexander Leidinger One known victim is lld prior to r325420. 149017101a25SAlexander Leidinger 149117101a25SAlexander Leidinger20171102: 149217101a25SAlexander Leidinger Building in a FreeBSD src checkout will automatically create object 149317101a25SAlexander Leidinger directories now rather than store files in the current directory if 149417101a25SAlexander Leidinger 'make obj' was not ran. Calling 'make obj' is no longer necessary. 149517101a25SAlexander Leidinger This feature can be disabled by setting WITHOUT_AUTO_OBJ=yes in 149617101a25SAlexander Leidinger /etc/src-env.conf (not /etc/src.conf), or passing the option in the 149717101a25SAlexander Leidinger environment. 149817101a25SAlexander Leidinger 149917101a25SAlexander Leidinger20171101: 150017101a25SAlexander Leidinger The default MAKEOBJDIR has changed from /usr/obj/<srcdir> for native 150117101a25SAlexander Leidinger builds, and /usr/obj/<arch>/<srcdir> for cross-builds, to a unified 150217101a25SAlexander Leidinger /usr/obj/<srcdir>/<arch>. This behavior can be changed to the old 150317101a25SAlexander Leidinger format by setting WITHOUT_UNIFIED_OBJDIR=yes in /etc/src-env.conf, 150417101a25SAlexander Leidinger the environment, or with -DWITHOUT_UNIFIED_OBJDIR when building. 150517101a25SAlexander Leidinger The UNIFIED_OBJDIR option is a transitional feature that will be 150617101a25SAlexander Leidinger removed for 12.0 release; please migrate to the new format for any 150717101a25SAlexander Leidinger tools by looking up the OBJDIR used by 'make -V .OBJDIR' means rather 150817101a25SAlexander Leidinger than hardcoding paths. 150917101a25SAlexander Leidinger 151017101a25SAlexander Leidinger20171028: 151117101a25SAlexander Leidinger The native-xtools target no longer installs the files by default to the 151217101a25SAlexander Leidinger OBJDIR. Use the native-xtools-install target with a DESTDIR to install 151317101a25SAlexander Leidinger to ${DESTDIR}/${NXTP} where NXTP defaults to /nxb-bin. 151417101a25SAlexander Leidinger 151517101a25SAlexander Leidinger20171021: 151617101a25SAlexander Leidinger As part of the boot loader infrastructure cleanup, LOADER_*_SUPPORT 151717101a25SAlexander Leidinger options are changing from controlling the build if defined / undefined 151817101a25SAlexander Leidinger to controlling the build with explicit 'yes' or 'no' values. They will 151917101a25SAlexander Leidinger shift to WITH/WITHOUT options to match other options in the system. 152017101a25SAlexander Leidinger 152117101a25SAlexander Leidinger20171010: 152217101a25SAlexander Leidinger libstand has turned into a private library for sys/boot use only. 152317101a25SAlexander Leidinger It is no longer supported as a public interface outside of sys/boot. 152417101a25SAlexander Leidinger 152517101a25SAlexander Leidinger20171005: 152617101a25SAlexander Leidinger The arm port has split armv6 into armv6 and armv7. armv7 is now 152717101a25SAlexander Leidinger a valid TARGET_ARCH/MACHINE_ARCH setting. If you have an armv7 system 152817101a25SAlexander Leidinger and are running a kernel from before r324363, you will need to add 152917101a25SAlexander Leidinger MACHINE_ARCH=armv7 to 'make buildworld' to do a native build. 153017101a25SAlexander Leidinger 153117101a25SAlexander Leidinger20171003: 153217101a25SAlexander Leidinger When building multiple kernels using KERNCONF, non-existent KERNCONF 153317101a25SAlexander Leidinger files will produce an error and buildkernel will fail. Previously 153417101a25SAlexander Leidinger missing KERNCONF files silently failed giving no indication as to 153517101a25SAlexander Leidinger why, only to subsequently discover during installkernel that the 153617101a25SAlexander Leidinger desired kernel was never built in the first place. 153717101a25SAlexander Leidinger 153817101a25SAlexander Leidinger20170912: 153917101a25SAlexander Leidinger The default serial number format for CTL LUNs has changed. This will 154017101a25SAlexander Leidinger affect users who use /dev/diskid/* device nodes, or whose FibreChannel 154117101a25SAlexander Leidinger or iSCSI clients care about their LUNs' serial numbers. Users who 154217101a25SAlexander Leidinger require serial number stability should hardcode serial numbers in 154317101a25SAlexander Leidinger /etc/ctl.conf . 154417101a25SAlexander Leidinger 154517101a25SAlexander Leidinger20170912: 154617101a25SAlexander Leidinger For 32-bit arm compiled for hard-float support, soft-floating point 154717101a25SAlexander Leidinger binaries now always get their shared libraries from 154817101a25SAlexander Leidinger LD_SOFT_LIBRARY_PATH (in the past, this was only used if 154917101a25SAlexander Leidinger /usr/libsoft also existed). Only users with a hard-float ld.so, but 155017101a25SAlexander Leidinger soft-float everything else should be affected. 155117101a25SAlexander Leidinger 155217101a25SAlexander Leidinger20170826: 155317101a25SAlexander Leidinger The geli password typed at boot is now hidden. To restore the previous 155417101a25SAlexander Leidinger behavior, see geli(8) for configuration options. 155517101a25SAlexander Leidinger 155617101a25SAlexander Leidinger20170825: 155717101a25SAlexander Leidinger Move PMTUD blackhole counters to TCPSTATS and remove them from bare 155817101a25SAlexander Leidinger sysctl values. Minor nit, but requires a rebuild of both world/kernel 155917101a25SAlexander Leidinger to complete. 156017101a25SAlexander Leidinger 156117101a25SAlexander Leidinger20170814: 156217101a25SAlexander Leidinger "make check" behavior (made in ^/head@r295380) has been changed to 156317101a25SAlexander Leidinger execute from a limited sandbox, as opposed to executing from 156417101a25SAlexander Leidinger ${TESTSDIR}. 156517101a25SAlexander Leidinger 156617101a25SAlexander Leidinger Behavioral changes: 156717101a25SAlexander Leidinger - The "beforecheck" and "aftercheck" targets are now specified. 156817101a25SAlexander Leidinger - ${CHECKDIR} (added in commit noted above) has been removed. 156917101a25SAlexander Leidinger - Legacy behavior can be enabled by setting 157017101a25SAlexander Leidinger WITHOUT_MAKE_CHECK_USE_SANDBOX in src.conf(5) or the environment. 157117101a25SAlexander Leidinger 157217101a25SAlexander Leidinger If the limited sandbox mode is enabled, "make check" will execute 157317101a25SAlexander Leidinger "make distribution", then install, execute the tests, and clean up the 157417101a25SAlexander Leidinger sandbox if successful. 157517101a25SAlexander Leidinger 157617101a25SAlexander Leidinger The "make distribution" and "make install" targets are typically run as 157717101a25SAlexander Leidinger root to set appropriate permissions and ownership at installation time. 157817101a25SAlexander Leidinger The end-user should set "WITH_INSTALL_AS_USER" in src.conf(5) or the 157917101a25SAlexander Leidinger environment if executing "make check" with limited sandbox mode using 158017101a25SAlexander Leidinger an unprivileged user. 158117101a25SAlexander Leidinger 158217101a25SAlexander Leidinger20170808: 158317101a25SAlexander Leidinger Since the switch to GPT disk labels, fsck for UFS/FFS has been 158417101a25SAlexander Leidinger unable to automatically find alternate superblocks. As of r322297, 158517101a25SAlexander Leidinger the information needed to find alternate superblocks has been 158617101a25SAlexander Leidinger moved to the end of the area reserved for the boot block. 158717101a25SAlexander Leidinger Filesystems created with a newfs of this vintage or later 158817101a25SAlexander Leidinger will create the recovery information. If you have a filesystem 158917101a25SAlexander Leidinger created prior to this change and wish to have a recovery block 159017101a25SAlexander Leidinger created for your filesystem, you can do so by running fsck in 159117101a25SAlexander Leidinger foreground mode (i.e., do not use the -p or -y options). As it 159217101a25SAlexander Leidinger starts, fsck will ask ``SAVE DATA TO FIND ALTERNATE SUPERBLOCKS'' 159317101a25SAlexander Leidinger to which you should answer yes. 159417101a25SAlexander Leidinger 159517101a25SAlexander Leidinger20170728: 159617101a25SAlexander Leidinger As of r321665, an NFSv4 server configuration that services 159717101a25SAlexander Leidinger Kerberos mounts or clients that do not support the uid/gid in 159817101a25SAlexander Leidinger owner/owner_group string capability, must explicitly enable 159917101a25SAlexander Leidinger the nfsuserd daemon by adding nfsuserd_enable="YES" to the 160017101a25SAlexander Leidinger machine's /etc/rc.conf file. 160117101a25SAlexander Leidinger 160217101a25SAlexander Leidinger20170722: 160317101a25SAlexander Leidinger Clang, llvm, lldb, compiler-rt and libc++ have been upgraded to 5.0.0. 160417101a25SAlexander Leidinger Please see the 20141231 entry below for information about prerequisites 160517101a25SAlexander Leidinger and upgrading, if you are not already using clang 3.5.0 or higher. 160617101a25SAlexander Leidinger 160717101a25SAlexander Leidinger20170701: 160817101a25SAlexander Leidinger WITHOUT_RCMDS is now the default. Set WITH_RCMDS if you need the 160917101a25SAlexander Leidinger r-commands (rlogin, rsh, etc.) to be built with the base system. 161017101a25SAlexander Leidinger 161117101a25SAlexander Leidinger20170625: 161217101a25SAlexander Leidinger The FreeBSD/powerpc platform now uses a 64-bit type for time_t. This is 161317101a25SAlexander Leidinger a very major ABI incompatible change, so users of FreeBSD/powerpc must 161417101a25SAlexander Leidinger be careful when performing source upgrades. It is best to run 161517101a25SAlexander Leidinger 'make installworld' from an alternate root system, either a live 161617101a25SAlexander Leidinger CD/memory stick, or a temporary root partition. Additionally, all ports 161717101a25SAlexander Leidinger must be recompiled. powerpc64 is largely unaffected, except in the case 161817101a25SAlexander Leidinger of 32-bit compatibility. All 32-bit binaries will be affected. 161917101a25SAlexander Leidinger 162017101a25SAlexander Leidinger20170623: 162117101a25SAlexander Leidinger Forward compatibility for the "ino64" project have been committed. This 162217101a25SAlexander Leidinger will allow most new binaries to run on older kernels in a limited 162317101a25SAlexander Leidinger fashion. This prevents many of the common foot-shooting actions in the 162417101a25SAlexander Leidinger upgrade as well as the limited ability to roll back the kernel across 162517101a25SAlexander Leidinger the ino64 upgrade. Complicated use cases may not work properly, though 162617101a25SAlexander Leidinger enough simpler ones work to allow recovery in most situations. 162717101a25SAlexander Leidinger 162817101a25SAlexander Leidinger20170620: 162917101a25SAlexander Leidinger Switch back to the BSDL dtc (Device Tree Compiler). Set WITH_GPL_DTC 163017101a25SAlexander Leidinger if you require the GPL compiler. 163117101a25SAlexander Leidinger 163217101a25SAlexander Leidinger20170618: 163317101a25SAlexander Leidinger The internal ABI used for communication between the NFS kernel modules 163417101a25SAlexander Leidinger was changed by r320085, so __FreeBSD_version was bumped to 163517101a25SAlexander Leidinger ensure all the NFS related modules are updated together. 163617101a25SAlexander Leidinger 163717101a25SAlexander Leidinger20170617: 163817101a25SAlexander Leidinger The ABI of struct event was changed by extending the data 163917101a25SAlexander Leidinger member to 64bit and adding ext fields. For upgrade, same 164017101a25SAlexander Leidinger precautions as for the entry 20170523 "ino64" must be 164117101a25SAlexander Leidinger followed. 164217101a25SAlexander Leidinger 164317101a25SAlexander Leidinger20170531: 164417101a25SAlexander Leidinger The GNU roff toolchain has been removed from base. To render manpages 164517101a25SAlexander Leidinger which are not supported by mandoc(1), man(1) can fallback on GNU roff 164617101a25SAlexander Leidinger from ports (and recommends to install it). 164717101a25SAlexander Leidinger To render roff(7) documents, consider using GNU roff from ports or the 164817101a25SAlexander Leidinger heirloom doctools roff toolchain from ports via pkg install groff or 164917101a25SAlexander Leidinger via pkg install heirloom-doctools. 165017101a25SAlexander Leidinger 165117101a25SAlexander Leidinger20170524: 165217101a25SAlexander Leidinger The ath(4) and ath_hal(4) modules now build piecemeal to allow for 165317101a25SAlexander Leidinger smaller runtime footprint builds. This is useful for embedded systems 165417101a25SAlexander Leidinger which only require one chipset support. 165517101a25SAlexander Leidinger 165617101a25SAlexander Leidinger If you load it as a module, make sure this is in /boot/loader.conf: 165717101a25SAlexander Leidinger 165817101a25SAlexander Leidinger if_ath_load="YES" 165917101a25SAlexander Leidinger 166017101a25SAlexander Leidinger This will load the HAL, all chip/RF backends and if_ath_pci. 166117101a25SAlexander Leidinger If you have if_ath_pci in /boot/loader.conf, ensure it is after 166217101a25SAlexander Leidinger if_ath or it will not load any HAL chipset support. 166317101a25SAlexander Leidinger 166417101a25SAlexander Leidinger If you want to selectively load things (eg on cheaper ARM/MIPS 166517101a25SAlexander Leidinger platforms where RAM is at a premium) you should: 166617101a25SAlexander Leidinger 166717101a25SAlexander Leidinger * load ath_hal 166817101a25SAlexander Leidinger * load the chip modules in question 166917101a25SAlexander Leidinger * load ath_rate, ath_dfs 167017101a25SAlexander Leidinger * load ath_main 167117101a25SAlexander Leidinger * load if_ath_pci and/or if_ath_ahb depending upon your particular 167217101a25SAlexander Leidinger bus bind type - this is where probe/attach is done. 167317101a25SAlexander Leidinger 167417101a25SAlexander Leidinger For further comments/feedback, poke adrian@ . 167517101a25SAlexander Leidinger 167617101a25SAlexander Leidinger20170523: 167717101a25SAlexander Leidinger The "ino64" 64-bit inode project has been committed, which extends 167817101a25SAlexander Leidinger a number of types to 64 bits. Upgrading in place requires care and 167917101a25SAlexander Leidinger adherence to the documented upgrade procedure. 168017101a25SAlexander Leidinger 168117101a25SAlexander Leidinger If using a custom kernel configuration ensure that the 168217101a25SAlexander Leidinger COMPAT_FREEBSD11 option is included (as during the upgrade the 168317101a25SAlexander Leidinger system will be running the ino64 kernel with the existing world). 168417101a25SAlexander Leidinger 168517101a25SAlexander Leidinger For the safest in-place upgrade begin by removing previous build 168617101a25SAlexander Leidinger artifacts via "rm -rf /usr/obj/*". Then, carefully follow the full 168717101a25SAlexander Leidinger procedure documented below under the heading "To rebuild everything and 168817101a25SAlexander Leidinger install it on the current system." Specifically, a reboot is required 168917101a25SAlexander Leidinger after installing the new kernel before installing world. While an 169017101a25SAlexander Leidinger installworld normally works by accident from multiuser after rebooting 169117101a25SAlexander Leidinger the proper kernel, there are many cases where this will fail across this 169217101a25SAlexander Leidinger upgrade and installworld from single user is required. 169317101a25SAlexander Leidinger 169417101a25SAlexander Leidinger20170424: 169517101a25SAlexander Leidinger The NATM framework including the en(4), fatm(4), hatm(4), and 169617101a25SAlexander Leidinger patm(4) devices has been removed. Consumers should plan a 169717101a25SAlexander Leidinger migration before the end-of-life date for FreeBSD 11. 169817101a25SAlexander Leidinger 169917101a25SAlexander Leidinger20170420: 170017101a25SAlexander Leidinger GNU diff has been replaced by a BSD licensed diff. Some features of GNU 170117101a25SAlexander Leidinger diff has not been implemented, if those are needed a newer version of 170217101a25SAlexander Leidinger GNU diff is available via the diffutils package under the gdiff name. 170317101a25SAlexander Leidinger 170417101a25SAlexander Leidinger20170413: 170517101a25SAlexander Leidinger As of r316810 for ipfilter, keep frags is no longer assumed when 170617101a25SAlexander Leidinger keep state is specified in a rule. r316810 aligns ipfilter with 170717101a25SAlexander Leidinger documentation in man pages separating keep frags from keep state. 170817101a25SAlexander Leidinger This allows keep state to be specified without forcing keep frags 170917101a25SAlexander Leidinger and allows keep frags to be specified independently of keep state. 171017101a25SAlexander Leidinger To maintain previous behaviour, also specify keep frags with 171117101a25SAlexander Leidinger keep state (as documented in ipf.conf.5). 171217101a25SAlexander Leidinger 171317101a25SAlexander Leidinger20170407: 171417101a25SAlexander Leidinger arm64 builds now use the base system LLD 4.0.0 linker by default, 171517101a25SAlexander Leidinger instead of requiring that the aarch64-binutils port or package be 171617101a25SAlexander Leidinger installed. To continue using aarch64-binutils, set 171717101a25SAlexander Leidinger CROSS_BINUTILS_PREFIX=/usr/local/aarch64-freebsd/bin . 171817101a25SAlexander Leidinger 171917101a25SAlexander Leidinger20170405: 172017101a25SAlexander Leidinger The UDP optimization in entry 20160818 that added the sysctl 172117101a25SAlexander Leidinger net.inet.udp.require_l2_bcast has been reverted. L2 broadcast 172217101a25SAlexander Leidinger packets will no longer be treated as L3 broadcast packets. 172317101a25SAlexander Leidinger 172417101a25SAlexander Leidinger20170331: 172517101a25SAlexander Leidinger Binds and sends to the loopback addresses, IPv6 and IPv4, will now 172617101a25SAlexander Leidinger use any explicitly assigned loopback address available in the jail 172717101a25SAlexander Leidinger instead of using the first assigned address of the jail. 172817101a25SAlexander Leidinger 172917101a25SAlexander Leidinger20170329: 173017101a25SAlexander Leidinger The ctl.ko module no longer implements the iSCSI target frontend: 173117101a25SAlexander Leidinger cfiscsi.ko does instead. 173217101a25SAlexander Leidinger 173317101a25SAlexander Leidinger If building cfiscsi.ko as a kernel module, the module can be loaded 173417101a25SAlexander Leidinger via one of the following methods: 173517101a25SAlexander Leidinger - `cfiscsi_load="YES"` in loader.conf(5). 173617101a25SAlexander Leidinger - Add `cfiscsi` to `$kld_list` in rc.conf(5). 173717101a25SAlexander Leidinger - ctladm(8)/ctld(8), when compiled with iSCSI support 173817101a25SAlexander Leidinger (`WITH_ISCSI=yes` in src.conf(5)) 173917101a25SAlexander Leidinger 174017101a25SAlexander Leidinger Please see cfiscsi(4) for more details. 174117101a25SAlexander Leidinger 174217101a25SAlexander Leidinger20170316: 174317101a25SAlexander Leidinger The mmcsd.ko module now additionally depends on geom_flashmap.ko. 174417101a25SAlexander Leidinger Also, mmc.ko and mmcsd.ko need to be a matching pair built from the 174517101a25SAlexander Leidinger same source (previously, the dependency of mmcsd.ko on mmc.ko was 174617101a25SAlexander Leidinger missing, but mmcsd.ko now will refuse to load if it is incompatible 174717101a25SAlexander Leidinger with mmc.ko). 174817101a25SAlexander Leidinger 174917101a25SAlexander Leidinger20170315: 175017101a25SAlexander Leidinger The syntax of ipfw(8) named states was changed to avoid ambiguity. 175117101a25SAlexander Leidinger If you have used named states in the firewall rules, you need to modify 175217101a25SAlexander Leidinger them after installworld and before rebooting. Now named states must 175317101a25SAlexander Leidinger be prefixed with colon. 175417101a25SAlexander Leidinger 175517101a25SAlexander Leidinger20170311: 175617101a25SAlexander Leidinger The old drm (sys/dev/drm/) drivers for i915 and radeon have been 175717101a25SAlexander Leidinger removed as the userland we provide cannot use them. The KMS version 175817101a25SAlexander Leidinger (sys/dev/drm2) supports the same hardware. 175917101a25SAlexander Leidinger 176017101a25SAlexander Leidinger20170302: 176117101a25SAlexander Leidinger Clang, llvm, lldb, compiler-rt and libc++ have been upgraded to 4.0.0. 176217101a25SAlexander Leidinger Please see the 20141231 entry below for information about prerequisites 176317101a25SAlexander Leidinger and upgrading, if you are not already using clang 3.5.0 or higher. 176417101a25SAlexander Leidinger 176517101a25SAlexander Leidinger20170221: 176617101a25SAlexander Leidinger The code that provides support for ZFS .zfs/ directory functionality 176717101a25SAlexander Leidinger has been reimplemented. It's not possible now to create a snapshot 176817101a25SAlexander Leidinger by mkdir under .zfs/snapshot/. That should be the only user visible 176917101a25SAlexander Leidinger change. 177017101a25SAlexander Leidinger 177117101a25SAlexander Leidinger20170216: 177217101a25SAlexander Leidinger EISA bus support has been removed. The WITH_EISA option is no longer 177317101a25SAlexander Leidinger valid. 177417101a25SAlexander Leidinger 177517101a25SAlexander Leidinger20170215: 177617101a25SAlexander Leidinger MCA bus support has been removed. 177717101a25SAlexander Leidinger 177817101a25SAlexander Leidinger20170127: 177917101a25SAlexander Leidinger The WITH_LLD_AS_LD / WITHOUT_LLD_AS_LD build knobs have been renamed 178017101a25SAlexander Leidinger WITH_LLD_IS_LD / WITHOUT_LLD_IS_LD, for consistency with CLANG_IS_CC. 178117101a25SAlexander Leidinger 178217101a25SAlexander Leidinger20170112: 178317101a25SAlexander Leidinger The EM_MULTIQUEUE kernel configuration option is deprecated now that 178417101a25SAlexander Leidinger the em(4) driver conforms to iflib specifications. 178517101a25SAlexander Leidinger 178617101a25SAlexander Leidinger20170109: 178717101a25SAlexander Leidinger The igb(4), em(4) and lem(4) ethernet drivers are now implemented via 178817101a25SAlexander Leidinger IFLIB. If you have a custom kernel configuration that excludes em(4) 178917101a25SAlexander Leidinger but you use igb(4), you need to re-add em(4) to your custom 179017101a25SAlexander Leidinger configuration. 179117101a25SAlexander Leidinger 179217101a25SAlexander Leidinger20161217: 179317101a25SAlexander Leidinger Clang, llvm, lldb, compiler-rt and libc++ have been upgraded to 3.9.1. 179417101a25SAlexander Leidinger Please see the 20141231 entry below for information about prerequisites 179517101a25SAlexander Leidinger and upgrading, if you are not already using clang 3.5.0 or higher. 179617101a25SAlexander Leidinger 179717101a25SAlexander Leidinger20161124: 179817101a25SAlexander Leidinger Clang, llvm, lldb, compiler-rt and libc++ have been upgraded to 3.9.0. 179917101a25SAlexander Leidinger Please see the 20141231 entry below for information about prerequisites 180017101a25SAlexander Leidinger and upgrading, if you are not already using clang 3.5.0 or higher. 180117101a25SAlexander Leidinger 180217101a25SAlexander Leidinger20161119: 180317101a25SAlexander Leidinger The layout of the pmap structure has changed for powerpc to put the pmap 180417101a25SAlexander Leidinger statistics at the front for all CPU variations. libkvm(3) and all tools 180517101a25SAlexander Leidinger that link against it need to be recompiled. 180617101a25SAlexander Leidinger 180717101a25SAlexander Leidinger20161030: 180817101a25SAlexander Leidinger isl(4) and cyapa(4) drivers now require a new driver, 180917101a25SAlexander Leidinger chromebook_platform(4), to work properly on Chromebook-class hardware. 181017101a25SAlexander Leidinger On other types of hardware the drivers may need to be configured using 181117101a25SAlexander Leidinger device hints. Please see the corresponding manual pages for details. 181217101a25SAlexander Leidinger 181317101a25SAlexander Leidinger20161017: 181417101a25SAlexander Leidinger The urtwn(4) driver was merged into rtwn(4) and now consists of 181517101a25SAlexander Leidinger rtwn(4) main module + rtwn_usb(4) and rtwn_pci(4) bus-specific 181617101a25SAlexander Leidinger parts. 181717101a25SAlexander Leidinger Also, firmware for RTL8188CE was renamed due to possible name 181817101a25SAlexander Leidinger conflict (rtwnrtl8192cU(B) -> rtwnrtl8192cE(B)) 181917101a25SAlexander Leidinger 182017101a25SAlexander Leidinger20161015: 182117101a25SAlexander Leidinger GNU rcs has been removed from base. It is available as packages: 182217101a25SAlexander Leidinger - rcs: Latest GPLv3 GNU rcs version. 182317101a25SAlexander Leidinger - rcs57: Copy of the latest version of GNU rcs (GPLv2) before it was 182417101a25SAlexander Leidinger removed from base. 182517101a25SAlexander Leidinger 182617101a25SAlexander Leidinger20161008: 182717101a25SAlexander Leidinger Use of the cc_cdg, cc_chd, cc_hd, or cc_vegas congestion control 182817101a25SAlexander Leidinger modules now requires that the kernel configuration contain the 182917101a25SAlexander Leidinger TCP_HHOOK option. (This option is included in the GENERIC kernel.) 183017101a25SAlexander Leidinger 183117101a25SAlexander Leidinger20161003: 183217101a25SAlexander Leidinger The WITHOUT_ELFCOPY_AS_OBJCOPY src.conf(5) knob has been retired. 183317101a25SAlexander Leidinger ELF Tool Chain's elfcopy is always installed as /usr/bin/objcopy. 183417101a25SAlexander Leidinger 183517101a25SAlexander Leidinger20160924: 183617101a25SAlexander Leidinger Relocatable object files with the extension of .So have been renamed 183717101a25SAlexander Leidinger to use an extension of .pico instead. The purpose of this change is 183817101a25SAlexander Leidinger to avoid a name clash with shared libraries on case-insensitive file 183917101a25SAlexander Leidinger systems. On those file systems, foo.So is the same file as foo.so. 184017101a25SAlexander Leidinger 184117101a25SAlexander Leidinger20160918: 184217101a25SAlexander Leidinger GNU rcs has been turned off by default. It can (temporarily) be built 184317101a25SAlexander Leidinger again by adding WITH_RCS knob in src.conf. 184417101a25SAlexander Leidinger Otherwise, GNU rcs is available from packages: 184517101a25SAlexander Leidinger - rcs: Latest GPLv3 GNU rcs version. 184617101a25SAlexander Leidinger - rcs57: Copy of the latest version of GNU rcs (GPLv2) from base. 184717101a25SAlexander Leidinger 184817101a25SAlexander Leidinger20160918: 184917101a25SAlexander Leidinger The backup_uses_rcs functionality has been removed from rc.subr. 185017101a25SAlexander Leidinger 185117101a25SAlexander Leidinger20160908: 185217101a25SAlexander Leidinger The queue(3) debugging macro, QUEUE_MACRO_DEBUG, has been split into 185317101a25SAlexander Leidinger two separate components, QUEUE_MACRO_DEBUG_TRACE and 185417101a25SAlexander Leidinger QUEUE_MACRO_DEBUG_TRASH. Define both for the original 185517101a25SAlexander Leidinger QUEUE_MACRO_DEBUG behavior. 185617101a25SAlexander Leidinger 185717101a25SAlexander Leidinger20160824: 185817101a25SAlexander Leidinger r304787 changed some ioctl interfaces between the iSCSI userspace 185917101a25SAlexander Leidinger programs and the kernel. ctladm, ctld, iscsictl, and iscsid must be 186017101a25SAlexander Leidinger rebuilt to work with new kernels. __FreeBSD_version has been bumped 186117101a25SAlexander Leidinger to 1200005. 186217101a25SAlexander Leidinger 186317101a25SAlexander Leidinger20160818: 186417101a25SAlexander Leidinger The UDP receive code has been updated to only treat incoming UDP 186517101a25SAlexander Leidinger packets that were addressed to an L2 broadcast address as L3 186617101a25SAlexander Leidinger broadcast packets. It is not expected that this will affect any 186717101a25SAlexander Leidinger standards-conforming UDP application. The new behaviour can be 186817101a25SAlexander Leidinger disabled by setting the sysctl net.inet.udp.require_l2_bcast to 186917101a25SAlexander Leidinger 0. 187017101a25SAlexander Leidinger 187117101a25SAlexander Leidinger20160818: 187217101a25SAlexander Leidinger Remove the openbsd_poll system call. 187317101a25SAlexander Leidinger __FreeBSD_version has been bumped because of this. 187417101a25SAlexander Leidinger 187517101a25SAlexander Leidinger20160708: 187617101a25SAlexander Leidinger The stable/11 branch has been created from head@r302406. 187717101a25SAlexander Leidinger 187862adb1e9SWarner LoshAfter branch N is created, entries older than the N-2 branch point are removed 1879e8c1bd72SWarner Loshfrom this file. After stable/14 is branched and current becomes FreeBSD 15, 1880e8c1bd72SWarner Loshentries older than stable/12 branch point will be removed from current's 1881e8c1bd72SWarner LoshUPDATING file. 188217101a25SAlexander Leidinger 1883dc0dbf5cSWarner LoshCOMMON ITEMS: 1884dc0dbf5cSWarner Losh 1885a24eff53SWarner Losh General Notes 1886a24eff53SWarner Losh ------------- 18875780f3baSWarner Losh Sometimes, obscure build problems are the result of environment 18885780f3baSWarner Losh poisoning. This can happen because the make utility reads its 1889456b5dd8SWarner Losh environment when searching for values for global variables. To run 1890456b5dd8SWarner Losh your build attempts in an "environmental clean room", prefix all make 1891456b5dd8SWarner Losh commands with 'env -i '. See the env(1) manual page for more details. 189216ae8351SEd Maste Occasionally a build failure will occur with "make -j" due to a race 189316ae8351SEd Maste condition. If this happens try building again without -j, and please 189416ae8351SEd Maste report a bug if it happens consistently. 18955780f3baSWarner Losh 18965ad05815SWarner Losh When upgrading from one major version to another it is generally best to 18975ad05815SWarner Losh upgrade to the latest code in the currently installed branch first, then 18985ad05815SWarner Losh do an upgrade to the new branch. This is the best-tested upgrade path, 18995ad05815SWarner Losh and has the highest probability of being successful. Please try this 19005ad05815SWarner Losh approach if you encounter problems with a major version upgrade. Since 190144c1484aSJens Schweikhardt the stable 4.x branch point, one has generally been able to upgrade from 19025ad05815SWarner Losh anywhere in the most recent stable branch to head / current (or even the 19035ad05815SWarner Losh last couple of stable branches). See the top of this file when there's 19045ad05815SWarner Losh an exception. 1905081ff8acSDoug Barton 190656cd269eSEd Maste The update process will emit an error on an attempt to perform a build 190756cd269eSEd Maste or install from a FreeBSD version below the earliest supported version. 190856cd269eSEd Maste When updating from an older version the update should be performed one 190956cd269eSEd Maste major release at a time, including running `make delete-old` at each 191056cd269eSEd Maste step. 191156cd269eSEd Maste 19126eeab389SWarner Losh When upgrading a live system, having a root shell around before 1913da0e842aSWarner Losh installing anything can help undo problems. Not having a root shell 1914da0e842aSWarner Losh around can lead to problems if pam has changed too much from your 1915da0e842aSWarner Losh starting point to allow continued authentication after the upgrade. 1916da0e842aSWarner Losh 19179c80b8aaSWarner Losh This file should be read as a log of events. When a later event changes 19189c80b8aaSWarner Losh information of a prior event, the prior event should not be deleted. 19199c80b8aaSWarner Losh Instead, a pointer to the entry with the new information should be 19209c80b8aaSWarner Losh placed in the old entry. Readers of this file should also sanity check 19219c80b8aaSWarner Losh older entries before relying on them blindly. Authors of new entries 19229c80b8aaSWarner Losh should write them with this in mind. 19239c80b8aaSWarner Losh 19248fc25799SMartin Matuska ZFS notes 19258fc25799SMartin Matuska --------- 19260cd61266SWarner Losh When upgrading the boot ZFS pool to a new version (via zpool upgrade), 19270cd61266SWarner Losh always follow these three steps: 19288fc25799SMartin Matuska 19290cd61266SWarner Losh 1) recompile and reinstall the ZFS boot loader and boot block 19308fc25799SMartin Matuska (this is part of "make buildworld" and "make installworld") 19318fc25799SMartin Matuska 19320cd61266SWarner Losh 2) update the ZFS boot block on your boot drive (only required when 19330cd61266SWarner Losh doing a zpool upgrade): 19348fc25799SMartin Matuska 19350cd61266SWarner Losh When booting on x86 via BIOS, use the following to update the ZFS boot 19360cd61266SWarner Losh block on the freebsd-boot partition of a GPT partitioned drive ada0: 19370cd61266SWarner Losh gpart bootcode -p /boot/gptzfsboot -i $N ada0 19380cd61266SWarner Losh The value $N will typically be 1. For EFI booting, see EFI notes. 19390cd61266SWarner Losh 19400cd61266SWarner Losh 3) zpool upgrade the root pool. New bootblocks will work with old 19410cd61266SWarner Losh pools, but not vice versa, so they need to be updated before any 19420cd61266SWarner Losh zpool upgrade. 19438fc25799SMartin Matuska 19448fc25799SMartin Matuska Non-boot pools do not need these updates. 19458fc25799SMartin Matuska 19460cd61266SWarner Losh EFI notes 19470cd61266SWarner Losh --------- 19480cd61266SWarner Losh 19490cd61266SWarner Losh There are two locations the boot loader can be installed into. The 19500cd61266SWarner Losh current location (and the default) is \efi\freebsd\loader.efi and using 19510cd61266SWarner Losh efibootmgr(8) to configure it. The old location, that must be used on 19520cd61266SWarner Losh deficient systems that don't honor efibootmgr(8) protocols, is the 19530cd61266SWarner Losh fallback location of \EFI\BOOT\BOOTxxx.EFI. Generally, you will copy 19540cd61266SWarner Losh /boot/loader.efi to this location, but on systems installed a long time 19550cd61266SWarner Losh ago the ESP may be too small and /boot/boot1.efi may be needed unless 19560cd61266SWarner Losh the ESP has been expanded in the meantime. 19570cd61266SWarner Losh 19580cd61266SWarner Losh Recent systems will have the ESP mounted on /boot/efi, but older ones 19590cd61266SWarner Losh may not have it mounted at all, or mounted in a different 19600cd61266SWarner Losh location. Older arm SD images with MBR used /boot/msdos as the 19610cd61266SWarner Losh mountpoint. The ESP is a MSDOS filesystem. 19620cd61266SWarner Losh 19630cd61266SWarner Losh The EFI boot loader rarely needs to be updated. For ZFS booting, 19640cd61266SWarner Losh however, you must update loader.efi before you do 'zpool upgrade' the 19650cd61266SWarner Losh root zpool, otherwise the old loader.efi may reject the upgraded zpool 19660cd61266SWarner Losh since it does not automatically understand some new features. 19670cd61266SWarner Losh 19680cd61266SWarner Losh See loader.efi(8) and uefi(8) for more details. 19690cd61266SWarner Losh 1970dc0dbf5cSWarner Losh To build a kernel 1971dc0dbf5cSWarner Losh ----------------- 1972ba01eb20SWarner Losh If you are updating from a prior version of FreeBSD (even one just 19731cf0ef11SDavid E. O'Brien a few days old), you should follow this procedure. It is the most 19741cf0ef11SDavid E. O'Brien failsafe as it uses a /usr/obj tree with a fresh mini-buildworld, 19751cf0ef11SDavid E. O'Brien 19761cf0ef11SDavid E. O'Brien make kernel-toolchain 1977282e0f01SRuslan Ermilov make -DALWAYS_CHECK_MAKE buildkernel KERNCONF=YOUR_KERNEL_HERE 1978282e0f01SRuslan Ermilov make -DALWAYS_CHECK_MAKE installkernel KERNCONF=YOUR_KERNEL_HERE 1979dc0dbf5cSWarner Losh 1980ef4ee388SAlexander Ziaee If you are running kernel modules from ports, see FOOTNOTE [1]. 1981ef4ee388SAlexander Ziaee 19822e937dd6SAlexander Leidinger To test a kernel once 19832e937dd6SAlexander Leidinger --------------------- 19842e937dd6SAlexander Leidinger If you just want to boot a kernel once (because you are not sure 19852e937dd6SAlexander Leidinger if it works, or if you want to boot a known bad kernel to provide 19862e937dd6SAlexander Leidinger debugging information) run 19872e937dd6SAlexander Leidinger make installkernel KERNCONF=YOUR_KERNEL_HERE KODIR=/boot/testkernel 19882e937dd6SAlexander Leidinger nextboot -k testkernel 19892e937dd6SAlexander Leidinger 1990ba01eb20SWarner Losh To rebuild everything and install it on the current system. 1991ba01eb20SWarner Losh ----------------------------------------------------------- 199263cb445eSWarner Losh # Note: sometimes if you are running current you gotta do more than 199363cb445eSWarner Losh # is listed here if you are upgrading from a really old current. 199463cb445eSWarner Losh 1995f643de42SWarner Losh <make sure you have good level 0 dumps> 199663cb445eSWarner Losh make buildworld 1997e5f5a852SEitan Adler make buildkernel KERNCONF=YOUR_KERNEL_HERE 1998ef4ee388SAlexander Ziaee make installkernel KERNCONF=YOUR_KERNEL_HERE [1] 199963cb445eSWarner Losh <reboot in single user> [3] 2000e641c29aSDries Michiels etcupdate -p [5] 200163cb445eSWarner Losh make installworld 2002e641c29aSDries Michiels etcupdate -B [4] 200394877c06SAlexander Leidinger make delete-old [6] 200463cb445eSWarner Losh <reboot> 200563cb445eSWarner Losh 2006f27b1fceSJoseph Koshy To cross-install current onto a separate partition 2007f27b1fceSJoseph Koshy -------------------------------------------------- 2008f27b1fceSJoseph Koshy # In this approach we use a separate partition to hold 2009f27b1fceSJoseph Koshy # current's root, 'usr', and 'var' directories. A partition 2010f27b1fceSJoseph Koshy # holding "/", "/usr" and "/var" should be about 2GB in 2011f27b1fceSJoseph Koshy # size. 2012f27b1fceSJoseph Koshy 2013f27b1fceSJoseph Koshy <make sure you have good level 0 dumps> 2014f27b1fceSJoseph Koshy <boot into -stable> 2015f27b1fceSJoseph Koshy make buildworld 2016ef4ee388SAlexander Ziaee make buildkernel KERNCONF=YOUR_KERNEL_HERE [1] 2017f27b1fceSJoseph Koshy <maybe newfs current's root partition> 2018f27b1fceSJoseph Koshy <mount current's root partition on directory ${CURRENT_ROOT}> 2019af34024aSJohn-Mark Gurney make installworld DESTDIR=${CURRENT_ROOT} -DDB_FROM_SRC 20202d5cde04SRuslan Ermilov make distribution DESTDIR=${CURRENT_ROOT} # if newfs'd 20213ecf3bddSRuslan Ermilov make installkernel KERNCONF=YOUR_KERNEL_HERE DESTDIR=${CURRENT_ROOT} 2022f27b1fceSJoseph Koshy cp /etc/fstab ${CURRENT_ROOT}/etc/fstab # if newfs'd 2023f27b1fceSJoseph Koshy <edit ${CURRENT_ROOT}/etc/fstab to mount "/" from the correct partition> 2024f27b1fceSJoseph Koshy <reboot into current> 2025f27b1fceSJoseph Koshy <do a "native" rebuild/install as described in the previous section> 2026737d990aSXin LI <maybe install compatibility libraries from ports/misc/compat*> 2027f27b1fceSJoseph Koshy <reboot> 2028f27b1fceSJoseph Koshy 2029f27b1fceSJoseph Koshy 203015974d55SGavin Atkinson To upgrade in-place from stable to current 2031f27b1fceSJoseph Koshy ---------------------------------------------- 2032f643de42SWarner Losh <make sure you have good level 0 dumps> 203321c075eaSWarner Losh make buildworld [9] 2034779f392bSJohn Baldwin make buildkernel KERNCONF=YOUR_KERNEL_HERE [8] 2035ef4ee388SAlexander Ziaee make installkernel KERNCONF=YOUR_KERNEL_HERE [1] 2036fc8c157fSWarner Losh <reboot in single user> [3] 2037e641c29aSDries Michiels etcupdate -p [5] 2038ba26da8eSWarner Losh make installworld 2039e641c29aSDries Michiels etcupdate -B [4] 204094877c06SAlexander Leidinger make delete-old [6] 2041ba26da8eSWarner Losh <reboot> 2042ba26da8eSWarner Losh 2043fdb9f54dSWarner Losh Make sure that you've read the UPDATING file to understand the 2044fdb9f54dSWarner Losh tweaks to various things you need. At this point in the life 2045fdb9f54dSWarner Losh cycle of current, things change often and you are on your own 2046fdb9f54dSWarner Losh to cope. The defaults can also change, so please read ALL of 2047fdb9f54dSWarner Losh the UPDATING entries. 2048ba26da8eSWarner Losh 20491dece4a9SWarner Losh Also, if you are tracking -current, you must be subscribed to 20501dece4a9SWarner Losh [email protected]. Make sure that before you update 20511dece4a9SWarner Losh your sources that you have read and understood all the recent 20521dece4a9SWarner Losh messages there. If in doubt, please track -stable which has 20531dece4a9SWarner Losh much fewer pitfalls. 20541dece4a9SWarner Losh 2055ef4ee388SAlexander ZiaeeFOOTNOTES: 2056ef4ee388SAlexander Ziaee 2057ef4ee388SAlexander Ziaee [1] If you have third party modules, such as drm-kmod or vmware, you 2058ef4ee388SAlexander Ziaee should disable them at this point so they don't crash your system on 2059d2799054SWarner Losh reboot. Alternatively, you should rebuild all the modules you have in 2060d2799054SWarner Losh your system and install them as well. If you are running -current, you 2061d2799054SWarner Losh should seriously consider placing all sources to all the modules for 2062d2799054SWarner Losh your system (or symlinks to them) in /usr/local/sys/modules so this 2063d2799054SWarner Losh happens automatically. If all your modules come from ports, then adding 2064d2799054SWarner Losh the port origin directories to PORTS_MODULES instead is also automatic 2065d2799054SWarner Losh and effective, eg: 2066d2799054SWarner Losh PORTS_MODULES+=x11/nvidia-driver 2067134d2e86SWarner Losh 2068ee6e1fc3SWarner Losh [3] From the bootblocks, boot -s, and then do 2069ee6e1fc3SWarner Losh fsck -p 2070ee6e1fc3SWarner Losh mount -u / 2071ee6e1fc3SWarner Losh mount -a 20728ed2d94aSWarner Losh sh /etc/rc.d/zfs start # mount zfs filesystem, if needed 20738ed2d94aSWarner Losh cd src # full path to source 207447d0d01fSWarner Losh adjkerntz -i # if CMOS is wall time 2075d2799054SWarner Losh Also, when doing a major release upgrade, it is required that you boot 2076d2799054SWarner Losh into single user mode to do the installworld. 2077ee6e1fc3SWarner Losh 2078a6cd4f9dSWarner Losh [4] Note: This step is non-optional. Failure to do this step 2079a6cd4f9dSWarner Losh can result in a significant reduction in the functionality of the 2080a6cd4f9dSWarner Losh system. Attempting to do it by hand is not recommended and those 2081a6cd4f9dSWarner Losh that pursue this avenue should read this file carefully, as well 2082a6cd4f9dSWarner Losh as the archives of freebsd-current and freebsd-hackers mailing lists 2083e641c29aSDries Michiels for potential gotchas. See etcupdate(8) for more information. 2084a6cd4f9dSWarner Losh 208544c1484aSJens Schweikhardt [5] Usually this step is a no-op. However, from time to time 2086835284beSWarner Losh you may need to do this if you get unknown user in the following 2087e641c29aSDries Michiels step. 2088835284beSWarner Losh 208994877c06SAlexander Leidinger [6] This only deletes old files and directories. Old libraries 209094877c06SAlexander Leidinger can be deleted by "make delete-old-libs", but you have to make 209194877c06SAlexander Leidinger sure that no program is using those libraries anymore. 209294877c06SAlexander Leidinger 2093ed651a74SWarner Losh [8] The new kernel must be able to run existing binaries used by an 2094ed651a74SWarner Losh installworld. When upgrading across major versions, the new kernel's 2095ed651a74SWarner Losh configuration must include the correct COMPAT_FREEBSD<n> option for 2096ed651a74SWarner Losh existing binaries (e.g. COMPAT_FREEBSD11 to run 11.x binaries). Failure 2097ed651a74SWarner Losh to do so may leave you with a system that is hard to boot to recover. A 2098ed651a74SWarner Losh GENERIC kernel will include suitable compatibility options to run 2099ed651a74SWarner Losh binaries from older branches. Note that the ability to run binaries 2100ed651a74SWarner Losh from unsupported branches is not guaranteed. 2101c74fe6afSWarner Losh 2102e5dc5f61SWarner Losh Make sure that you merge any new devices from GENERIC since the 21038ed2d94aSWarner Losh last time you updated your kernel config file. Options also 21048ed2d94aSWarner Losh change over time, so you may need to adjust your custom kernels 21058ed2d94aSWarner Losh for these as well. 2106e5dc5f61SWarner Losh 2107e5f5a852SEitan Adler [9] If CPUTYPE is defined in your /etc/make.conf, make sure to use the 2108e5dc5f61SWarner Losh "?=" instead of the "=" assignment operator, so that buildworld can 2109e5dc5f61SWarner Losh override the CPUTYPE if it needs to. 2110e5dc5f61SWarner Losh 2111e5dc5f61SWarner Losh MAKEOBJDIRPREFIX must be defined in an environment variable, and 2112e5dc5f61SWarner Losh not on the command line, or in /etc/make.conf. buildworld will 2113e5dc5f61SWarner Losh warn if it is improperly defined. 2114dc0dbf5cSWarner LoshFORMAT: 2115dc0dbf5cSWarner Losh 2116f699bbbbSMark OvensThis file contains a list, in reverse chronological order, of major 2117630f2154SGlen Barberbreakages in tracking -current. It is not guaranteed to be a complete 21189c80b8aaSWarner Loshlist of such breakages, and only contains entries since September 23, 2011. 2119630f2154SGlen BarberIf you need to see UPDATING entries from before that date, you will need 2120630f2154SGlen Barberto fetch an UPDATING file from an older FreeBSD release. 21211fc1a0dcSWarner Losh 2122e72fd46aSWarner LoshCopyright information: 2123e72fd46aSWarner Losh 2124f86e6000SWarner LoshCopyright 1998-2009 M. Warner Losh <[email protected]> 2125e72fd46aSWarner Losh 2126772730c7SWarner LoshRedistribution, publication, translation and use, with or without 2127772730c7SWarner Loshmodification, in full or in part, in any form or format of this 21289698f2c0SWarner Loshdocument are permitted without further permission from the author. 2129e72fd46aSWarner Losh 2130e72fd46aSWarner LoshTHIS DOCUMENT IS PROVIDED BY WARNER LOSH ``AS IS'' AND ANY EXPRESS OR 2131e72fd46aSWarner LoshIMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED 2132e72fd46aSWarner LoshWARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE 2133e72fd46aSWarner LoshDISCLAIMED. IN NO EVENT SHALL WARNER LOSH BE LIABLE FOR ANY DIRECT, 2134e72fd46aSWarner LoshINDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES 2135e72fd46aSWarner Losh(INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR 2136e72fd46aSWarner LoshSERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 2137e72fd46aSWarner LoshHOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, 2138e72fd46aSWarner LoshSTRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING 2139e72fd46aSWarner LoshIN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE 2140e72fd46aSWarner LoshPOSSIBILITY OF SUCH DAMAGE. 2141e72fd46aSWarner Losh 214222306abcSWarner LoshContact Warner Losh if you have any questions about your use of 2143772730c7SWarner Loshthis document. 2144