1Updating Information for users of FreeBSD stable/14. 2 3This file is maintained and copyrighted by M. Warner Losh <[email protected]>. 4See end of file for further details. For commonly done items, please see the 5COMMON ITEMS: section later in the file. These instructions assume that you 6basically know what you are doing. If not, then please consult the FreeBSD 7handbook: 8 9 https://docs.freebsd.org/en/books/handbook/cutting-edge/#makeworld 10 11Items affecting the ports and packages system can be found in 12/usr/ports/UPDATING. Please read that file before updating system packages 13and/or ports. 14 1520240218: 16 MFC of 713db49d06de changed 'struct ieee80211vap' internals in net80211. 17 Given we do not have enough spares and the struct is allocated by 18 drivers, all wireless drivers have to be recompiled. 19 __FreeBSD_version is updated to 1400509 to track this change. 20 2120240207: 22 sendmail 8.18.1 has been imported and merged. This version enforces 23 stricter RFC compliance by default, especially with respect to line 24 endings. This may cause issues with receiving messages from 25 non-compliant MTAs; please see the first 8.18.1 release note in 26 contrib/sendmail/RELEASE_NOTES for mitigations. 27 2820240119: 29 Commit d34f4baaf138 changed the internal interface between 30 the nfscommon and nfscl modules. As such, both need to be 31 rebuilt from sources. Therefore, bump __FreeBSD_version 32 to 1400506. 33 3420231229: 35 Commit 925d9b3abac2 modified the internal API between 36 the nfscommon and nfscl modules. 37 As such, both of these modules need to be rebuilt from 38 sources. Therefore, the __FreeBSD_version has been bumped 39 to 1400503. 40 4120231224: 42 Commits acc704b36192 and b8e137d8d32d both modified the 43 internal API between the kgssapi and krpc modules. 44 As such, both of these modules need to be rebuilt from 45 sources. 46 As such, __FreeBSD_version has been bumped to 1400502. 47 4820230924: 49 Enable splitting out pkgbase manpages into separate packages by 50 default. To disable this, set WITHOUT_MANSPLITPKG=yes in src.conf. 51 52 5320230924: 54 Move standard include files to the clibs-dev package and move clang 55 internal libraries and headers to clang and clang-dev. Upgrading systems 56 installed using pkgbase past this change involves extra steps to allow 57 for these file moves: 58 59 pkg upgrade -y FreeBSD-utilities 60 pkg upgrade -y FreeBSD-utilities-dev 61 pkg upgrade -y 62 6320230824: 64 __FreeBSD_version 1400097 after the branching stable/14 from main. 65 6620230817: 67 Serial communication (in boot loaders, kernel, and userland) has 68 been changed to default to 115200 bps, in line with common industry 69 practice and typcial firmware serial console redirection 70 configuration. 71 72 Note that the early x86 BIOS bootloader (i.e., boot0sio) does not 73 support rates above 9600 bps and is not changed. boot0sio users may 74 set BOOT_COMCONSOLE_SPEED=9600 to use 9600 for all of the boot 75 components, or use the standard boot0 and have the boot2 stage start 76 with the serial port at 115200. 77 7820230807: 79 Following the general removal of MIPS support, the ath(4) AHB bus- 80 frontend has been removed, too, and building of the PCI support is 81 integrated with the ath(4) main module again. As a result, there's 82 no longer a need for if_ath_pci_load="YES" in /boot/loader.conf or 83 "device ath_pci" in the kernel configuration. 84 8520230803: 86 MAXCPU has been increased to 1024 in the amd64 GENERIC kernel config. 87 Out-of-tree kernel modules will need to be rebuilt. 88 8920230724: 90 CAM has been mechanically updated s/u_int(64|32|16|8)_t/uint\1_t/g 91 to move to the standard uintXX_t types from the old, traditional 92 BSD u_intXX_t types. This should be a NOP, but may cause problems 93 for out of tree changes. The SIMs were not updated since most of 94 the old u_intXX_t uses weren't due to CAM interfaces. 95 9620230629: 97 The heuristic for detecting old chromebooks with an EC bug that requires 98 atkbdc driver workarounds has changed. There should be no functional 99 change, but if your old chromebook's keyboard stops working, please 100 file a PR and assign it to imp. 101 10220230623: 103 OpenSSL has been updated to version 3.0, including changes throughout 104 the base system. It is important to rebuild third-party software 105 after upgrading. 106 10720230619: 108 To enable pf rdr rules for connections initiated from the host, pf 109 filter rules can be optionally enabled for packets delivered 110 locally. This can change the behavior of rules which match packets 111 delivered to lo0. To enable this feature: 112 113 sysctl net.pf.filter_local=1 114 service pf restart 115 116 When enabled, its best to ensure that packets delivered locally are not 117 filtered, e.g. by adding a 'skip on lo' rule. 118 11920230613: 120 Improvements to libtacplus(8) mean that tacplus.conf(5) now 121 follows POSIX shell syntax rules. This may cause TACACS+ 122 authentication to fail if the shared secret contains a single 123 quote, double quote, or backslash character which isn't 124 already properly quoted or escaped. 125 12620230612: 127 Belatedly switch the default nvme block device on x86 from nvd to nda. 128 nda created nvd compatibility links by default, so this should be a 129 nop. If this causes problems for your application, set hw.nvme.use_nvd=1 130 in your loader.conf or add `options NVME_USE_NVD=1` to your kernel 131 config. To disable the nvd compatibility aliases, add 132 kern.cam.nda.nvd_compat=0 to loader.conf. The default has been nda on 133 all non-x86 platforms for some time now. If you need to fall back, 134 please email [email protected] about why. 135 136 Encrypted swap partitions need to be changed from nvd to nda if you 137 migrate, or you need to use the above to switch back to nvd. 138 13920230422: 140 Remove portsnap(8). Users are encouraged to obtain the ports tree 141 using git instead. 142 14320230420: 144 Add jobs.mk to save typing. Enables -j${JOB_MAX} and logging 145 eg. 146 make buildworld-jobs 147 runs 148 make -j${JOB_MAX} buildworld > ../buildworld.log 2>&1 149 150 where JOB_MAX is derrived from ncpus in local.sys.mk if not set in env. 151 15220230316: 153 Video related devices for some arm devices have been renamed. 154 If you have a custom kernel config and want to use hdmi output on 155 IMX6 board you need to add "device dwc_hdmi" "device imx6_hdmi" and 156 "device imx6_ipu" to it. 157 If you have a custom kernel config and want to use hdmi output on 158 TI AM335X board you need to add "device tda19988" to it. 159 If you add "device hdmi" in it you need to remove it as it doesn't 160 exist anymore. 161 16220230221: 163 Introduce new kernel options KBD_DELAY1 and KBD_DELAY2. See atkbdc(4) 164 for details. 165 16620230206: 167 sshd now defaults to having X11Forwarding disabled, following upstream. 168 Administrators who wish to enable X11Forwarding should add 169 `X11Forwarding yes` to /etc/ssh/sshd_config. 170 17120230204: 172 Since commit 75d41cb6967 Huawei 3G/4G LTE Mobile Devices do not default 173 to ECM, but NCM mode and need u3g and ucom modules loaded. See cdce(4). 174 17520230130: 176 As of commit 7c40e2d5f685, the dependency on netlink(4) has been added 177 to the linux_common(4) module. Users relying on linux_common may need 178 to complile netlink(4) module if it is not present in their kernel. 179 18020230126: 181 The WITHOUT_CXX option has been removed. C++ components in the base 182 system are now built unconditionally. 183 18420230113: 185 LinuxKPI pci.h changes may require out-of-tree drivers to be recompiled. 186 Bump _FreeBSD_version to 1400078 to be able to detect this change. 187 18820221212: 189 llvm-objump is now always installed as objdump. Previously there was 190 no /usr/bin/objdump unless the WITH_LLVM_BINUTILS knob was used. 191 192 Some LLVM objdump options have a different output format compared to 193 GNU objdump; readelf is available for inspecting ELF files, and GNU 194 objdump is available from the devel/binutils port or package. 195 19620221205: 197 dma(8) has replaced sendmail(8) as the default mta. For people willing 198 to reenable sendmail(8): 199 200 $ cp /usr/share/examples/sendmail/mailer.conf /etc/mail/mailer.conf 201 202 and add sendmail_enable="YES" to rc.conf. 203 20420221204: 205 hw.bus.disable_failed_devices has changed from 'false' to 'true' by 206 default. Now if newbus succeeds in probing a device, but fails to attach 207 the device, we'll disable the device. In the past, we'd keep retrying 208 the device on each new driver loaded. To get that behavior now, one 209 needs to use devctl to re-enable the device, and reprobe it (or set 210 the sysctl/tunable hw.bus.disable_failed_devices=false). 211 212 NOTE: This was reverted 20221205 due to unexpected compatibility issues 213 21420221122: 215 pf no longer accepts 'scrub fragment crop' or 'scrub fragment drop-ovl'. 216 These configurations are no longer automatically reinterpreted as 217 'scrub fragment reassemble'. 218 21920221121: 220 The WITHOUT_CLANG_IS_CC option has been removed. When Clang is enabled 221 it is always installed as /usr/bin/cc (and c++, cpp). 222 22320221026: 224 Some programs have been moved into separate packages. It is recommended 225 for pkgbase users to do: 226 227 pkg install FreeBSD-dhclient FreeBSD-geom FreeBSD-resolvconf \ 228 FreeBSD-devd FreeBSD-devmatch 229 230 after upgrading to restore all the component that were previously 231 installed. 232 23320221002: 234 OPIE has been removed from the base system. If needed, it can 235 be installed from ports (security/opie) or packages (opie). 236 Otherwise, make sure that your PAM policies do not reference 237 pam_opie or pam_opieaccess. 238 23920220610: 240 LinuxKPI pm.h changes require an update to the latest drm-kmod version 241 before re-compiling to avoid errors. 242 24320211230: 244 The macros provided for the manipulation of CPU sets (e.g. CPU_AND) 245 have been modified to take 2 source arguments instead of only 1. 246 Externally maintained sources that use these macros will have to 247 be adapted. The FreeBSD version has been bumped to 1400046 to 248 reflect this change. 249 25020211214: 251 A number of the kernel include files are able to be included by 252 themselves. A test has been added to buildworld to enforce this. 253 25420211209: 255 Remove mips as a recognized target. This starts the decommissioning of 256 mips support in FreeBSD. mips related items will be removed wholesale in 257 the coming days and weeks. 258 259 This broke the NO_CLEAN build for some people. Either do a clean build 260 or touch 261 lib/clang/include/llvm/Config/Targets.def 262 lib/clang/include/llvm/Config/AsmParsers.def 263 lib/clang/include/llvm/Config/Disassemblers.def 264 lib/clang/include/llvm/Config/AsmPrinters.def 265 before the build to force everything to rebuild that needs to. 266 26720211202: 268 Unbound support for RFC8375: The special-use domain 'home.arpa' is 269 by default blocked. To unblock it use a local-zone nodefault 270 statement in unbound.conf: 271 local-zone: "home.arpa." nodefault 272 273 Or use another type of local-zone to override with your choice. 274 275 The reason for this is discussed in Section 6.1 of RFC8375: 276 Because 'home.arpa.' is not globally scoped and cannot be secured 277 using DNSSEC based on the root domain's trust anchor, there is no way 278 to tell, using a standard DNS query, in which homenet scope an answer 279 belongs. Consequently, users may experience surprising results with 280 such names when roaming to different homenets. 281 28220211110: 283 Commit b8d60729deef changed the TCP congestion control framework so 284 that any of the included congestion control modules could be 285 the single module built into the kernel. Previously newreno 286 was automatically built in through direct reference. As of 287 this commit you are required to declare at least one congestion 288 control module (e.g. 'options CC_NEWRENO') and to also declare a 289 default using the CC_DEFAULT option (e.g. options CC_DEFAULT="newreno\"). 290 The GENERIC configuration includes CC_NEWRENO and defines newreno 291 as the default. If no congestion control option is built into the 292 kernel and you are including networking, the kernel compile will 293 fail. Also if no default is declared the kernel compile will fail. 294 29520211118: 296 Mips has been removed from universe builds. It will be removed from the 297 tree shortly. 298 29920211106: 300 Commit f0c9847a6c47 changed the arguments for VOP_ALLOCATE. 301 The NFS modules must be rebuilt from sources and any out 302 of tree file systems that implement their own VOP_ALLOCATE 303 may need to be modified. 304 30520211022: 306 The synchronous PPP kernel driver sppp(4) has been removed. 307 The cp(4) and ce(4) drivers are now always compiled with netgraph(4) 308 support, formerly enabled by NETGRAPH_CRONYX option. 309 31020211020: 311 sh(1) is now the default shell for the root user. To force root to use 312 the csh shell, please run the following command as root: 313 314 # chsh -s csh 315 31620211004: 317 Ncurses distribution has been split between libtinfow and libncurses 318 with libncurses.so becoming a linker (ld) script to seamlessly link 319 to libtinfow as needed. Bump _FreeBSD_version to 1400035 to reflect 320 this change. 321 32220210923: 323 As of commit 8160a0f62be6, the dummynet module no longer depends on the 324 ipfw module. Dummynet can now be used by pf as well as ipfw. As such 325 users who relied on this dependency may need to include ipfw in the 326 list of modules to load on their systems. 327 32820210922: 329 As of commit 903873ce1560, the mixer(8) utility has got a slightly 330 new syntax. Please refer to the mixer(8) manual page for more 331 information. The old mixer utility can be installed from ports: 332 audio/freebsd-13-mixer 333 33420210911: 335 As of commit 55089ef4f8bb, the global variable nfs_maxcopyrange has 336 been deleted from the nfscommon.ko. As such, nfsd.ko must be built 337 from up to date sources to avoid an undefined reference when 338 being loaded. 339 34020210817: 341 As of commit 62ca9fc1ad56 OpenSSL no longer enables kernel TLS 342 by default. Users can enable kernel TLS via the "KTLS" SSL 343 option. This can be enabled globally by using a custom 344 OpenSSL config file via OPENSSL_CONF or via an 345 application-specific configuration option for applications 346 which permit setting SSL options via SSL_CONF_cmd(3). 347 34820210811: 349 Commit 3ad1e1c1ce20 changed the internal KAPI between the NFS 350 modules. Therefore, all need to be rebuilt from sources. 351 35220210730: 353 Commit b69019c14cd8 removes pf's DIOCGETSTATESNV ioctl. 354 As of be70c7a50d32 it is no longer used by userspace, but it does mean 355 users may not be able to enumerate pf states if they update the kernel 356 past b69019c14cd8 without first updating userspace past be70c7a50d32. 357 35820210729: 359 As of commit 01ad0c007964 if_bridge member interfaces can no longer 360 change their MTU. Changing the MTU of the bridge itself will change the 361 MTU on all member interfaces instead. 362 36320210716: 364 Commit ee29e6f31111 changed the internal KAPI between the nfscommon 365 and nfsd modules. Therefore, both need to be rebuilt from sources. 366 Bump __FreeBSD_version to 1400026 for this KAPI change. 367 36820210715: 369 The 20210707 awk update brought in a change in behavior. This has 370 been corrected as of d4d252c49976. Between these dates, if you 371 installed a new awk binary, you may not be able to build a new 372 kernel because the change in behavior affected the genoffset 373 script used to build the kernel. If you did update, the fix is 374 to update your sources past the above hash and do 375 % cd usr.bin/awk 376 % make clean all 377 % sudo -E make install 378 to enable building kernels again. 379 38020210708: 381 Commit 1e0a518d6548 changed the internal KAPI between the NFS 382 modules. They all need to be rebuilt from sources. I did not 383 bump __FreeBSD_version, since it was bumped recently. 384 38520210707: 386 awk has been updated to the latest one-true-awk version 20210215. 387 This contains a number of minor bug fixes. 388 38920210624: 390 The NFSv4 client now uses the highest minor version of NFSv4 391 supported by the NFSv4 server by default instead of minor version 0, 392 for NFSv4 mounts. 393 The "minorversion" mount option may be used to override this default. 394 39520210618: 396 Bump __FreeBSD_version to 1400024 for LinuxKPI changes. 397 Most notably netdev.h can change now as the (last) dependencies 398 (mlx4/ofed) are now using struct ifnet directly, but also for PCI 399 additions and others. 400 40120210618: 402 The directory "blacklisted" under /usr/share/certs/ has been 403 renamed to "untrusted". 404 40520210611: 406 svnlite has been removed from base. Should you need svn for any reason 407 please install the svn package or port. 408 40920210611: 410 Commit e1a907a25cfa changed the internal KAPI between the krpc 411 and nfsserver. As such, both modules must be rebuilt from 412 sources. Bump __FreeBSD_version to 1400022. 413 41420210610: 415 The an(4) driver has been removed from FreeBSD. 416 41720210608: 418 The vendor/openzfs branch was renamed to vendor/openzfs/legacy to 419 start tracking OpenZFS upstream more closely. Please see 420https://lists.freebsd.org/archives/freebsd-current/2021-June/000153.html 421 for details on how to correct any errors that might result. The 422 short version is that you need to remove the old branch locally: 423 git update-ref -d refs/remotes/freebsd/vendor/openzfs 424 (assuming your upstream origin is named 'freebsd'). 425 42620210525: 427 Commits 17accc08ae15 and de102f870501 add new files to LinuxKPI 428 which break drm-kmod. In addition various other additions where 429 committed. Bump __FreeBSD_version to 1400015 to be able to 430 detect this. 431 43220210513: 433 Commit ca179c4d74f2 changed the package in which the OpenSSL 434 libraries and utilities are packaged. 435 It is recommended for pkgbase user to do: 436 pkg install -f FreeBSD-openssl 437 before pkg upgrade otherwise some dependencies might not be met 438 and pkg will stop working as libssl will not be present anymore 439 on the system. 440 44120210426: 442 Commit 875977314881 changed the internal KAPI between 443 the nfsd and nfscommon modules. As such these modules 444 need to be rebuilt from sources. 445 Without this patch in your NFSv4.1/4.2 server, enabling 446 delegations by setting vfs.nfsd.issue_delegations non-zero 447 is not recommended. 448 44920210411: 450 Commit 7763814fc9c2 changed the internal KAPI between 451 the krpc and NFS. As such, the krpc, nfscommon and 452 nfscl modules must all be rebuilt from sources. 453 Without this patch, NFSv4.1/4.2 mounts should not 454 be done with the nfscbd(8) daemon running, to avoid 455 needing a working back channel for server->client RPCs. 456 45720210330: 458 Commit 01ae8969a9ee fixed the NFSv4.1/4.2 server so that it 459 handles binding of the back channel as required by RFC5661. 460 Until this patch is in your server, avoid use of the "nconnects" 461 mount option for Linux NFSv4.1/4.2 mounts. 462 46320210225: 464 For 64-bit architectures the base system is now built with Position 465 Independent Executable (PIE) support enabled by default. It may be 466 disabled using the WITHOUT_PIE knob. A clean build is required. 467 46820210128: 469 Various LinuxKPI functionality was added which conflicts with DRM. 470 Please update your drm-kmod port to after the __FreeBSD_version 1400003 471 update. 472 47320210108: 474 PC Card attachments for all devices have been removed. In the case of 475 wi and cmx, the entire drivers were removed because they were only 476 PC Card devices. FreeBSD_version 1300134 should be used for this 477 since it was bumped so recently. 478 47920210107: 480 Transport-independent parts of HID support have been split off the USB 481 code in to separate subsystem. Kernel configs which include one of 482 ums, ukbd, uhid, atp, wsp, wmt, uaudio, ugold or ucycom drivers should 483 be updated with adding of "device hid" line. 484 48520210105: 486 ncurses installation has been modified to only keep the widechar 487 enabled version. Incremental build is broken for that change, so it 488 requires a clean build. 489 49020201223: 491 The FreeBSD project has migrated from Subversion to Git. Temporary 492 instructions can be found at 493 https://github.com/bsdimp/freebsd-git-docs/blob/main/src-cvt.md 494 and other documents in that repo. 495 49620201216: 497 The services database has been updated to cover more of the basic 498 services expected in a modern system. The database is big enough 499 that it will cause issues in mergemaster in Releases previous to 500 12.2 and 11.3, or in very old current systems from before r358154. 501 50220201215: 503 Obsolete in-tree GDB 6.1.1 has been removed. GDB (including kgdb) 504 may be installed from ports or packages. 505 50620201124: 507 ping6 has been merged into ping. It can now be called as "ping -6". 508 See ping(8) for details. 509 51020201108: 511 Default value of net.add_addr_allfibs has been changed to 0. 512 If you have multi-fib configuration and rely on existence of all 513 interface routes in every fib, you need to set the above sysctl to 1. 514 51520201030: 516 The internal pre-processor in the calendar(1) program has been 517 extended to support more C pre-processor commands (e.g. #ifdef, #else, 518 and #undef) and to detect unbalanced conditional statements. 519 Error messages have been extended to include the filename and line 520 number if processing stops to help fixing malformed data files. 521 52220201026: 523 All the data files for the calendar(1) program, except calendar.freebsd, 524 have been moved to the deskutils/calendar-data port, much like the 525 jewish calendar entries were moved to deskutils/hebcal years ago. After 526 make delete-old-files, you need to install it to retain full 527 functionality. calendar(1) will issue a reminder for files it can't 528 find. 529 53020200923: 531 LINT files are no longer generated. We now include the relevant NOTES 532 files. Note: This may cause conflicts with updating in some cases. 533 find sys -name LINT\* -delete 534 is suggested across this commit to remove the generated LINT files. 535 536 If you have tried to update with generated files there, the svn 537 command you want to un-auger the tree is 538 cd sys/amd64/conf 539 svn revert -R . 540 and then do the above find from the top level. Substitute 'amd64' 541 above with where the error message indicates a conflict. 542 54320200824: 544 OpenZFS support has been integrated. Do not upgrade root pools until 545 the loader is updated to support zstd. Furthermore, we caution against 546 'zpool upgrade' for the next few weeks. The change should be transparent 547 unless you want to use new features. 548 549 Not all "NO_CLEAN" build scenarios work across these changes. Many 550 scenarios have been tested and fixed, but rebuilding kernels without 551 rebuilding world may fail. 552 553 The ZFS cache file has moved from /boot to /etc to match the OpenZFS 554 upstream default. A fallback to /boot has been added for mountroot. 555 556 Pool auto import behavior at boot has been moved from the kernel module 557 to an explicit "zpool import -a" in one of the rc scripts enabled by 558 zfs_enable=YES. This means your non-root zpools won't auto import until 559 you upgrade your /etc/rc.d files. 560 56120200824: 562 The resume code now notifies devd with the 'kernel' system 563 rather than the old 'kern' subsystem to be consistent with 564 other use. The old notification will be created as well, but 565 will be removed prior to FreeBSD 14.0. 566 56720200821: 568 r362275 changed the internal API between the kernel RPC and the 569 NFS modules. As such, all the modules must be recompiled from 570 sources. 571 57220200817: 573 r364330 modified the internal API used between the NFS modules. 574 As such, all the NFS modules must be re-compiled from sources. 575 57620200816: 577 Clang, llvm, lld, lldb, compiler-rt, libc++, libunwind and openmp have 578 been upgraded to 11.0.0. Please see the 20141231 entry below for 579 information about prerequisites and upgrading, if you are not already 580 using clang 3.5.0 or higher. 581 58220200810: 583 r364092 modified the internal ABI used between the kernel NFS 584 modules. As such, all of these modules need to be rebuilt 585 from sources, so a version bump was done. 586 58720200807: 588 Makefile.inc has been updated to work around the issue documented in 589 20200729. It was a case where the optimization of using symbolic links 590 to point to binaries created a situation where we'd run new binaries 591 with old libraries starting midway through the installworld process. 592 59320200729: 594 r363679 has redefined some undefined behavior in regcomp(3); notably, 595 extraneous escapes of most ordinary characters will no longer be 596 accepted. An exp-run has identified all of the problems with this in 597 ports, but other non-ports software may need extra escapes removed to 598 continue to function. 599 600 Because of this change, installworld may encounter the following error 601 from rtld: Undefined symbol "regcomp@FBSD_1.6" -- It is imperative that 602 you do not halt installworld. Instead, let it run to completion (whether 603 successful or not) and run installworld once more. 604 60520200627: 606 A new implementation of bc and dc has been imported in r362681. This 607 implementation corrects non-conformant behavior of the previous bc 608 and adds GNU bc compatible options. It offers a number of extensions, 609 is much faster on large values, and has support for message catalogs 610 (a number of languages are already supported, contributions of further 611 languages welcome). The option WITHOUT_GH_BC can be used to build the 612 world with the previous versions of bc and dc. 613 61420200625: 615 r362639 changed the internal API used between the NFS kernel modules. 616 As such, they all need to be rebuilt from sources. 617 61820200613: 619 r362158 changed the arguments for VFS_CHECKEXP(). As such, any 620 out of tree file systems need to be modified and rebuilt. 621 Also, any file systems that are modules must be rebuilt. 622 62320200604: 624 read(2) of a directory fd is now rejected by default. root may 625 re-enable it for system root only on non-ZFS filesystems with the 626 security.bsd.allow_read_dir sysctl(8) MIB if 627 security.bsd.suser_enabled=1. 628 629 It may be advised to setup aliases for grep to default to `-d skip` if 630 commonly non-recursively grepping a list that includes directories and 631 the potential for the resulting stderr output is not tolerable. Example 632 aliases are now installed, commented out, in /root/.cshrc and 633 /root/.shrc. 634 63520200523: 636 Clang, llvm, lld, lldb, compiler-rt, libc++, libunwind and openmp have 637 been upgraded to 10.0.1. Please see the 20141231 entry below for 638 information about prerequisites and upgrading, if you are not already 639 using clang 3.5.0 or higher. 640 64120200512: 642 Support for obsolete compilers has been removed from the build system. 643 Clang 6 and GCC 6.4 are the minimum supported versions. 644 64520200424: 646 closefrom(2) has been moved under COMPAT12, and replaced in libc with a 647 stub that calls close_range(2). If using a custom kernel configuration, 648 you may want to ensure that the COMPAT_FREEBSD12 option is included, as 649 a slightly older -CURRENT userland and older FreeBSD userlands may not 650 be functional without closefrom(2). 651 65220200414: 653 Upstream DTS from Linux 5.6 was merged and they now have the SID 654 and THS (Secure ID controller and THermal Sensor) node present. 655 The DTB overlays have now been removed from the tree for the H3/H5 and 656 A64 SoCs and the aw_sid and aw_thermal driver have been updated to 657 deal with upstream DTS. If you are using those overlays you need to 658 remove them from loader.conf and update the DTBs on the FAT partition. 659 66020200310: 661 Clang, llvm, lld, lldb, compiler-rt, libc++, libunwind and openmp have 662 been upgraded to 10.0.0. Please see the 20141231 entry below for 663 information about prerequisites and upgrading, if you are not already 664 using clang 3.5.0 or higher. 665 66620200309: 667 The amd(8) automount daemon has been removed from the source tree. 668 As of FreeBSD 10.1 autofs(5) is the preferred tool for automounting. 669 amd is still available in the sysutils/am-utils port. 670 67120200301: 672 Removed brooktree driver (bktr.4) from the tree. 673 67420200229: 675 The WITH_GPL_DTC option has been removed. The BSD-licenced device tree 676 compiler in usr.bin/dtc is used on all architectures which use dtc, and 677 the GPL dtc is available (if needed) from the sysutils/dtc port. 678 67920200229: 680 The WITHOUT_LLVM_LIBUNWIND option has been removed. LLVM's libunwind 681 is used by all supported CPU architectures. 682 68320200229: 684 GCC 4.2.1 has been removed from the tree. The WITH_GCC, 685 WITH_GCC_BOOTSTRAP, and WITH_GNUCXX options are no longer available. 686 Users who wish to build FreeBSD with GCC must use the external toolchain 687 ports or packages. 688 68920200220: 690 ncurses has been updated to a newer version (6.2-20200215). Given the ABI 691 has changed, users will have to rebuild all the ports that are linked to 692 ncurses. 693 69420200217: 695 The size of struct vnet and the magic cookie have changed. 696 Users need to recompile libkvm and all modules using VIMAGE 697 together with their new kernel. 698 69920200212: 700 Defining the long deprecated NO_CTF, NO_DEBUG_FILES, NO_INSTALLLIB, 701 NO_MAN, NO_PROFILE, and NO_WARNS variables is now an error. Update 702 your Makefiles and scripts to define MK_<var>=no instead as required. 703 704 One exception to this is that program or library Makefiles should 705 define MAN to empty rather than setting MK_MAN=no. 706 70720200108: 708 Clang/LLVM is now the default compiler and LLD the default 709 linker for riscv64. 710 71120200107: 712 make universe no longer uses GCC 4.2.1 on any architectures. 713 Architectures not supported by in-tree Clang/LLVM require an 714 external toolchain package. 715 71620200104: 717 GCC 4.2.1 is now not built by default, as part of the GCC 4.2.1 718 retirement plan. Specifically, the GCC, GCC_BOOTSTRAP, and GNUCXX 719 options default to off for all supported CPU architectures. As a 720 short-term transition aid they may be enabled via WITH_* options. 721 GCC 4.2.1 is expected to be removed from the tree on 2020-03-31. 722 72320200102: 724 Support for armv5 has been disconnected and is being removed. The 725 machine combination MACHINE=arm MACHINE_ARCH=arm is no longer valid. 726 You must now use a MACHINE_ARCH of armv6 or armv7. The default 727 MACHINE_ARCH for MACHINE=arm is now armv7. 728 72920191226: 730 Clang/LLVM is now the default compiler for all powerpc architectures. 731 LLD is now the default linker for powerpc64. The change for powerpc64 732 also includes a change to the ELFv2 ABI, incompatible with the existing 733 ABI. 734 73520191226: 736 Kernel-loadable random(4) modules are no longer unloadable. 737 73820191222: 739 Clang, llvm, lld, lldb, compiler-rt, libc++, libunwind and openmp have 740 been upgraded to 9.0.1. Please see the 20141231 entry below for 741 information about prerequisites and upgrading, if you are not already 742 using clang 3.5.0 or higher. 743 74420191212: 745 r355677 has modified the internal interface used between the 746 NFS modules in the kernel. As such, they must all be upgraded 747 simultaneously. I will do a version bump for this. 748 74920191205: 750 The root certificates of the Mozilla CA Certificate Store have been 751 imported into the base system and can be managed with the certctl(8) 752 utility. If you have installed the security/ca_root_nss port or package 753 with the ETCSYMLINK option (the default), be advised that there may be 754 differences between those included in the port and those included in 755 base due to differences in nss branch used as well as general update 756 frequency. Note also that certctl(8) cannot manage certs in the 757 format used by the security/ca_root_nss port. 758 75920191120: 760 The amd(8) automount daemon has been disabled by default, and will be 761 removed in the future. As of FreeBSD 10.1 the autofs(5) is available 762 for automounting. 763 76420191107: 765 The nctgpio and wbwd drivers have been moved to the superio bus. 766 If you have one of these drivers in a kernel configuration, then 767 you should add device superio to it. If you use one of these drivers 768 as a module and you compile a custom set of modules, then you should 769 add superio to the set. 770 77120191021: 772 KPIs for network drivers to access interface addresses have changed. 773 Users need to recompile NIC driver modules together with kernel. 774 77520191021: 776 The net.link.tap.user_open sysctl no longer prevents user opening of 777 already created /dev/tapNN devices. Access is still controlled by 778 node permissions, just like tun devices. The net.link.tap.user_open 779 sysctl is now used only to allow users to perform devfs cloning of 780 tap devices, and the subsequent open may not succeed if the user is not 781 in the appropriate group. This sysctl may be deprecated/removed 782 completely in the future. 783 78420191009: 785 mips, powerpc, and sparc64 are no longer built as part of 786 universe / tinderbox unless MAKE_OBSOLETE_GCC is defined. If 787 not defined, mips, powerpc, and sparc64 builds will look for 788 the xtoolchain binaries and if installed use them for universe 789 builds. As llvm 9.0 becomes vetted for these architectures, they 790 will be removed from the list. 791 79220191009: 793 Clang, llvm, lld, lldb, compiler-rt, libc++, libunwind and openmp have 794 been upgraded to 9.0.0. Please see the 20141231 entry below for 795 information about prerequisites and upgrading, if you are not already 796 using clang 3.5.0 or higher. 797 79820191003: 799 The hpt27xx, hptmv, hptnr, and hptrr drivers have been removed from 800 GENERIC. They are available as modules and can be loaded by adding 801 to /boot/loader.conf hpt27xx_load="YES", hptmv_load="YES", 802 hptnr_load="YES", or hptrr_load="YES", respectively. 803 80420190913: 805 ntpd no longer by default locks its pages in memory, allowing them 806 to be paged out by the kernel. Use rlimit memlock to restore 807 historic BSD behaviour. For example, add "rlimit memlock 32" 808 to ntp.conf to lock up to 32 MB of ntpd address space in memory. 809 81020190823: 811 Several of ping6's options have been renamed for better consistency 812 with ping. If you use any of -ARWXaghmrtwx, you must update your 813 scripts. See ping6(8) for details. 814 81520190727: 816 The vfs.fusefs.sync_unmount and vfs.fusefs.init_backgrounded sysctls 817 and the "-o sync_unmount" and "-o init_backgrounded" mount options have 818 been removed from mount_fusefs(8). You can safely remove them from 819 your scripts, because they had no effect. 820 821 The vfs.fusefs.fix_broken_io, vfs.fusefs.sync_resize, 822 vfs.fusefs.refresh_size, vfs.fusefs.mmap_enable, 823 vfs.fusefs.reclaim_revoked, and vfs.fusefs.data_cache_invalidate 824 sysctls have been removed. If you felt the need to set any of them to 825 a non-default value, please tell [email protected] why. 826 82720190713: 828 Default permissions on the /var/account/acct file (and copies of it 829 rotated by periodic daily scripts) are changed from 0644 to 0640 830 because the file contains sensitive information that should not be 831 world-readable. If the /var/account directory must be created by 832 rc.d/accounting, the mode used is now 0750. Admins who use the 833 accounting feature are encouraged to change the mode of an existing 834 /var/account directory to 0750 or 0700. 835 83620190620: 837 Entropy collection and the /dev/random device are no longer optional 838 components. The "device random" option has been removed. 839 Implementations of distilling algorithms can still be made loadable 840 with "options RANDOM_LOADABLE" (e.g., random_fortuna.ko). 841 84220190612: 843 Clang, llvm, lld, lldb, compiler-rt, libc++, libunwind and openmp have 844 been upgraded to 8.0.1. Please see the 20141231 entry below for 845 information about prerequisites and upgrading, if you are not already 846 using clang 3.5.0 or higher. 847 84820190608: 849 A fix was applied to i386 kernel modules to avoid panics with 850 dpcpu or vnet. Users need to recompile i386 kernel modules 851 having pcpu or vnet sections or they will refuse to load. 852 85320190513: 854 User-wired pages now have their own counter, 855 vm.stats.vm.v_user_wire_count. The vm.max_wired sysctl was renamed 856 to vm.max_user_wired and changed from an unsigned int to an unsigned 857 long. bhyve VMs wired with the -S are now subject to the user 858 wiring limit; the vm.max_user_wired sysctl may need to be tuned to 859 avoid running into the limit. 860 86120190507: 862 The IPSEC option has been removed from GENERIC. Users requiring 863 ipsec(4) must now load the ipsec(4) kernel module. 864 86520190507: 866 The tap(4) driver has been folded into tun(4), and the module has been 867 renamed to tuntap. You should update any kld_list="if_tap" or 868 kld_list="if_tun" entries in /etc/rc.conf, if_tap_load="YES" or 869 if_tun_load="YES" entries in /boot/loader.conf to load the if_tuntap 870 module instead, and "device tap" or "device tun" entries in kernel 871 config files to select the tuntap device instead. 872 87320190418: 874 The following knobs have been added related to tradeoffs between 875 safe use of the random device and availability in the absence of 876 entropy: 877 878 kern.random.initial_seeding.bypass_before_seeding: tunable; set 879 non-zero to bypass the random device prior to seeding, or zero to 880 block random requests until the random device is initially seeded. 881 For now, set to 1 (unsafe) by default to restore pre-r346250 boot 882 availability properties. 883 884 kern.random.initial_seeding.read_random_bypassed_before_seeding: 885 read-only diagnostic sysctl that is set when bypass is enabled and 886 read_random(9) is bypassed, to enable programmatic handling of this 887 initial condition, if desired. 888 889 kern.random.initial_seeding.arc4random_bypassed_before_seeding: 890 Similar to the above, but for arc4random(9) initial seeding. 891 892 kern.random.initial_seeding.disable_bypass_warnings: tunable; set 893 non-zero to disable warnings in dmesg when the same conditions are 894 met as for the diagnostic sysctls above. Defaults to zero, i.e., 895 produce warnings in dmesg when the conditions are met. 896 89720190416: 898 The loadable random module KPI has changed; the random_infra_init() 899 routine now requires a 3rd function pointer for a bool (*)(void) 900 method that returns true if the random device is seeded (and 901 therefore unblocked). 902 90320190404: 904 r345895 reverts r320698. This implies that an nfsuserd(8) daemon 905 built from head sources between r320757 (July 6, 2017) and 906 r338192 (Aug. 22, 2018) will not work unless the "-use-udpsock" 907 is added to the command line. 908 nfsuserd daemons built from head sources that are post-r338192 are 909 not affected and should continue to work. 910 91120190320: 912 The fuse(4) module has been renamed to fusefs(4) for consistency with 913 other filesystems. You should update any kld_load="fuse" entries in 914 /etc/rc.conf, fuse_load="YES" entries in /boot/loader.conf, and 915 "options FUSE" entries in kernel config files. 916 91720190304: 918 Clang, llvm, lld, lldb, compiler-rt and libc++ have been upgraded to 919 8.0.0. Please see the 20141231 entry below for information about 920 prerequisites and upgrading, if you are not already using clang 3.5.0 921 or higher. 922 92320190226: 924 geom_uzip(4) depends on the new module xz. If geom_uzip is statically 925 compiled into your custom kernel, add 'device xz' statement to the 926 kernel config. 927 92820190219: 929 drm and drm2 have been removed from the tree. Please see 930 https://wiki.freebsd.org/Graphics for the latest information on 931 migrating to the drm ports. 932 93320190131: 934 Iflib is no longer unconditionally compiled into the kernel. Drivers 935 using iflib and statically compiled into the kernel, now require 936 the 'device iflib' config option. For the same drivers loaded as 937 modules on kernels not having 'device iflib', the iflib.ko module 938 is loaded automatically. 939 94020190125: 941 The IEEE80211_AMPDU_AGE and AH_SUPPORT_AR5416 kernel configuration 942 options no longer exist since r343219 and r343427 respectively; 943 nothing uses them, so they should be just removed from custom 944 kernel config files. 945 94620181230: 947 r342635 changes the way efibootmgr(8) works by requiring users to add 948 the -b (bootnum) parameter for commands where the bootnum was previously 949 specified with each option. For example 'efibootmgr -B 0001' is now 950 'efibootmgr -B -b 0001'. 951 95220181220: 953 r342286 modifies the NFSv4 server so that it obeys vfs.nfsd.nfs_privport 954 in the same as it is applied to NFSv2 and 3. This implies that NFSv4 955 servers that have vfs.nfsd.nfs_privport set will only allow mounts 956 from clients using a reserved port. Since both the FreeBSD and Linux 957 NFSv4 clients use reserved ports by default, this should not affect 958 most NFSv4 mounts. 959 96020181219: 961 The XLP config has been removed. We can't support 64-bit atomics in this 962 kernel because it is running in 32-bit mode. XLP users must transition 963 to running a 64-bit kernel (XLP64 or XLPN32). 964 965 The mips GXEMUL support has been removed from FreeBSD. MALTA* + qemu is 966 the preferred emulator today and we don't need two different ones. 967 968 The old sibyte / swarm / Broadcom BCM1250 support has been 969 removed from the mips port. 970 97120181211: 972 Clang, llvm, lld, lldb, compiler-rt and libc++ have been upgraded to 973 7.0.1. Please see the 20141231 entry below for information about 974 prerequisites and upgrading, if you are not already using clang 3.5.0 975 or higher. 976 97720181211: 978 Remove the timed and netdate programs from the base tree. Setting 979 the time with these daemons has been obsolete for over a decade. 980 98120181126: 982 On amd64, arm64 and armv7 (architectures that install LLVM's ld.lld 983 linker as /usr/bin/ld) GNU ld is no longer installed as ld.bfd, as 984 it produces broken binaries when ifuncs are in use. Users needing 985 GNU ld should install the binutils port or package. 986 98720181123: 988 The BSD crtbegin and crtend code has been enabled by default. It has 989 had extensive testing on amd64, arm64, and i386. It can be disabled 990 by building a world with -DWITHOUT_BSD_CRTBEGIN. 991 99220181115: 993 The set of CTM commands (ctm, ctm_smail, ctm_rmail, ctm_dequeue) 994 has been converted to a port (misc/ctm) and will be removed from 995 FreeBSD-13. It is available as a package (ctm) for all supported 996 FreeBSD versions. 997 99820181110: 999 The default newsyslog.conf(5) file has been changed to only include 1000 files in /etc/newsyslog.conf.d/ and /usr/local/etc/newsyslog.conf.d/ if 1001 the filenames end in '.conf' and do not begin with a '.'. 1002 1003 You should check the configuration files in these two directories match 1004 this naming convention. You can verify which configuration files are 1005 being included using the command: 1006 $ newsyslog -Nrv 1007 100820181015: 1009 Ports for the DRM modules have been simplified. Now, amd64 users should 1010 just install the drm-kmod port. All others should install 1011 drm-legacy-kmod. 1012 1013 Graphics hardware that's newer than about 2010 usually works with 1014 drm-kmod. For hardware older than 2013, however, some users will need 1015 to use drm-legacy-kmod if drm-kmod doesn't work for them. Hardware older 1016 than 2008 usually only works in drm-legacy-kmod. The graphics team can 1017 only commit to hardware made since 2013 due to the complexity of the 1018 market and difficulty to test all the older cards effectively. If you 1019 have hardware supported by drm-kmod, you are strongly encouraged to use 1020 that as you will get better support. 1021 1022 Other than KPI chasing, drm-legacy-kmod will not be updated. As outlined 1023 elsewhere, the drm and drm2 modules will be eliminated from the src base 1024 soon (with a limited exception for arm). Please update to the package 1025 asap and report any issues to [email protected]. 1026 1027 Generally, anybody using the drm*-kmod packages should add 1028 WITHOUT_DRM_MODULE=t and WITHOUT_DRM2_MODULE=t to avoid nasty 1029 cross-threading surprises, especially with automatic driver 1030 loading from X11 startup. These will become the defaults in 13-current 1031 shortly. 1032 103320181012: 1034 The ixlv(4) driver has been renamed to iavf(4). As a consequence, 1035 custom kernel and module loading configuration files must be updated 1036 accordingly. Moreover, interfaces previous presented as ixlvN to the 1037 system are now exposed as iavfN and network configuration files must 1038 be adjusted as necessary. 1039 104020181009: 1041 OpenSSL has been updated to version 1.1.1. This update included 1042 additional various API changes throughout the base system. It is 1043 important to rebuild third-party software after upgrading. The value 1044 of __FreeBSD_version has been bumped accordingly. 1045 104620181006: 1047 The legacy DRM modules and drivers have now been added to the loader's 1048 module blacklist, in favor of loading them with kld_list in rc.conf(5). 1049 The module blacklist may be overridden with the loader.conf(5) 1050 'module_blacklist' variable, but loading them via rc.conf(5) is strongly 1051 encouraged. 1052 105320181002: 1054 The cam(4) based nda(4) driver will be used over nvd(4) by default on 1055 powerpc64. You may set 'options NVME_USE_NVD=1' in your kernel conf or 1056 loader tunable 'hw.nvme.use_nvd=1' if you wish to use the existing 1057 driver. Make sure to edit /boot/etc/kboot.conf and fstab to use the 1058 nda device name. 1059 106020180913: 1061 Reproducible build mode is now on by default, in preparation for 1062 FreeBSD 12.0. This eliminates build metadata such as the user, 1063 host, and time from the kernel (and uname), unless the working tree 1064 corresponds to a modified checkout from a version control system. 1065 The previous behavior can be obtained by setting the /etc/src.conf 1066 knob WITHOUT_REPRODUCIBLE_BUILD. 1067 106820180826: 1069 The Yarrow CSPRNG has been removed from the kernel as it has not been 1070 supported by its designers since at least 2003. Fortuna has been the 1071 default since FreeBSD-11. 1072 107320180822: 1074 devctl freeze/thaw have gone into the tree, the rc scripts have been 1075 updated to use them and devmatch has been changed. You should update 1076 kernel, userland and rc scripts all at the same time. 1077 107820180818: 1079 The default interpreter has been switched from 4th to Lua. 1080 LOADER_DEFAULT_INTERP, documented in build(7), will override the default 1081 interpreter. If you have custom FORTH code you will need to set 1082 LOADER_DEFAULT_INTERP=4th (valid values are 4th, lua or simp) in 1083 src.conf for the build. This will create default hard links between 1084 loader and loader_4th instead of loader and loader_lua, the new default. 1085 If you are using UEFI it will create the proper hard link to loader.efi. 1086 1087 bhyve uses userboot.so. It remains 4th-only until some issues are solved 1088 regarding coexisting with multiple versions of FreeBSD are resolved. 1089 109020180815: 1091 ls(1) now respects the COLORTERM environment variable used in other 1092 systems and software to indicate that a colored terminal is both 1093 supported and desired. If ls(1) is suddenly emitting colors, they may 1094 be disabled again by either removing the unwanted COLORTERM from your 1095 environment, or using `ls --color=never`. The ls(1) specific CLICOLOR 1096 may not be observed in a future release. 1097 109820180808: 1099 The default pager for most commands has been changed to "less". To 1100 restore the old behavior, set PAGER="more" and MANPAGER="more -s" in 1101 your environment. 1102 110320180731: 1104 The jedec_ts(4) driver has been removed. A superset of its functionality 1105 is available in the jedec_dimm(4) driver, and the manpage for that 1106 driver includes migration instructions. If you have "device jedec_ts" 1107 in your kernel configuration file, it must be removed. 1108 110920180730: 1110 amd64/GENERIC now has EFI runtime services, EFIRT, enabled by default. 1111 This should have no effect if the kernel is booted via BIOS/legacy boot. 1112 EFIRT may be disabled via a loader tunable, efi.rt.disabled, if a system 1113 has a buggy firmware that prevents a successful boot due to use of 1114 runtime services. 1115 111620180727: 1117 Atmel AT91RM9200 and AT91SAM9, Cavium CNS 11xx and XScale 1118 support has been removed from the tree. These ports were 1119 obsolete and/or known to be broken for many years. 1120 112120180723: 1122 loader.efi has been augmented to participate more fully in the 1123 UEFI boot manager protocol. loader.efi will now look at the 1124 BootXXXX environment variable to determine if a specific kernel 1125 or root partition was specified. XXXX is derived from BootCurrent. 1126 efibootmgr(8) manages these standard UEFI variables. 1127 112820180720: 1129 zfsloader's functionality has now been folded into loader. 1130 zfsloader is no longer necessary once you've updated your 1131 boot blocks. For a transition period, we will install a 1132 hardlink for zfsloader to loader to allow a smooth transition 1133 until the boot blocks can be updated (hard link because old 1134 zfs boot blocks don't understand symlinks). 1135 113620180719: 1137 ARM64 now have efifb support, if you want to have serial console 1138 on your arm64 board when an screen is connected and the bootloader 1139 setup a frame buffer for us to use, just add : 1140 boot_serial=YES 1141 boot_multicons=YES 1142 in /boot/loader.conf 1143 For Raspberry Pi 3 (RPI) users, this is needed even if you don't have 1144 an screen connected as the firmware will setup a frame buffer are that 1145 u-boot will expose as an EFI frame buffer. 1146 114720180719: 1148 New uid:gid added, ntpd:ntpd (123:123). Be sure to run mergemaster 1149 or take steps to update /etc/passwd before doing installworld on 1150 existing systems. Do not skip the "mergemaster -Fp" step before 1151 installworld, as described in the update procedures near the bottom 1152 of this document. Also, rc.d/ntpd now starts ntpd(8) as user ntpd 1153 if the new mac_ntpd(4) policy is available, unless ntpd_flags or 1154 the ntp config file contain options that change file/dir locations. 1155 When such options (e.g., "statsdir" or "crypto") are used, ntpd can 1156 still be run as non-root by setting ntpd_user=ntpd in rc.conf, after 1157 taking steps to ensure that all required files/dirs are accessible 1158 by the ntpd user. 1159 116020180717: 1161 Big endian arm support has been removed. 1162 116320180711: 1164 The static environment setup in kernel configs is no longer mutually 1165 exclusive with the loader(8) environment by default. In order to 1166 restore the previous default behavior of disabling the loader(8) 1167 environment if a static environment is present, you must specify 1168 loader_env.disabled=1 in the static environment. 1169 117020180705: 1171 The ABI of syscalls used by management tools like sockstat and 1172 netstat has been broken to allow 32-bit binaries to work on 1173 64-bit kernels without modification. These programs will need 1174 to match the kernel in order to function. External programs may 1175 require minor modifications to accommodate a change of type in 1176 structures from pointers to 64-bit virtual addresses. 1177 117820180702: 1179 On i386 and amd64 atomics are now inlined. Out of tree modules using 1180 atomics will need to be rebuilt. 1181 118220180701: 1183 The '%I' format in the kern.corefile sysctl limits the number of 1184 core files that a process can generate to the number stored in the 1185 debug.ncores sysctl. The '%I' format is replaced by the single digit 1186 index. Previously, if all indexes were taken the kernel would overwrite 1187 only a core file with the highest index in a filename. 1188 Currently the system will create a new core file if there is a free 1189 index or if all slots are taken it will overwrite the oldest one. 1190 119120180630: 1192 Clang, llvm, lld, lldb, compiler-rt and libc++ have been upgraded to 1193 6.0.1. Please see the 20141231 entry below for information about 1194 prerequisites and upgrading, if you are not already using clang 3.5.0 1195 or higher. 1196 119720180628: 1198 r335753 introduced a new quoting method. However, etc/devd/devmatch.conf 1199 needed to be changed to work with it. This change was made with r335763 1200 and requires a mergemaster / etcupdate / etc to update the installed 1201 file. 1202 120320180612: 1204 r334930 changed the interface between the NFS modules, so they all 1205 need to be rebuilt. r335018 did a __FreeBSD_version bump for this. 1206 120720180530: 1208 As of r334391 lld is the default amd64 system linker; it is installed 1209 as /usr/bin/ld. Kernel build workarounds (see 20180510 entry) are no 1210 longer necessary. 1211 121220180530: 1213 The kernel / userland interface for devinfo changed, so you'll 1214 need a new kernel and userland as a pair for it to work (rebuilding 1215 lib/libdevinfo is all that's required). devinfo and devmatch will 1216 not work, but everything else will when there's a mismatch. 1217 121820180523: 1219 The on-disk format for hwpmc callchain records has changed to include 1220 threadid corresponding to a given record. This changes the field offsets 1221 and thus requires that libpmcstat be rebuilt before using a kernel 1222 later than r334108. 1223 122420180517: 1225 The vxge(4) driver has been removed. This driver was introduced into 1226 HEAD one week before the Exar left the Ethernet market and is not 1227 known to be used. If you have device vxge in your kernel config file 1228 it must be removed. 1229 123020180510: 1231 The amd64 kernel now requires a ld that supports ifunc to produce a 1232 working kernel, either lld or a newer binutils. lld is built by default 1233 on amd64, and the 'buildkernel' target uses it automatically. However, 1234 it is not the default linker, so building the kernel the traditional 1235 way requires LD=ld.lld on the command line (or LD=/usr/local/bin/ld for 1236 binutils port/package). lld will soon be default, and this requirement 1237 will go away. 1238 1239 NOTE: As of r334391 lld is the default system linker on amd64, and no 1240 workaround is necessary. 1241 124220180508: 1243 The nxge(4) driver has been removed. This driver was for PCI-X 10g 1244 cards made by s2io/Neterion. The company was acquired by Exar and 1245 no longer sells or supports Ethernet products. If you have device 1246 nxge in your kernel config file it must be removed. 1247 124820180504: 1249 The tz database (tzdb) has been updated to 2018e. This version more 1250 correctly models time stamps in time zones with negative DST such as 1251 Europe/Dublin (from 1971 on), Europe/Prague (1946/7), and 1252 Africa/Windhoek (1994/2017). This does not affect the UT offsets, only 1253 time zone abbreviations and the tm_isdst flag. 1254 125520180502: 1256 The ixgb(4) driver has been removed. This driver was for an early and 1257 uncommon legacy PCI 10GbE for a single ASIC, Intel 82597EX. Intel 1258 quickly shifted to the long lived ixgbe family. If you have device 1259 ixgb in your kernel config file it must be removed. 1260 126120180501: 1262 The lmc(4) driver has been removed. This was a WAN interface 1263 card that was already reportedly rare in 2003, and had an ambiguous 1264 license. If you have device lmc in your kernel config file it must 1265 be removed. 1266 126720180413: 1268 Support for Arcnet networks has been removed. If you have device 1269 arcnet or device cm in your kernel config file they must be 1270 removed. 1271 127220180411: 1273 Support for FDDI networks has been removed. If you have device 1274 fddi or device fpa in your kernel config file they must be 1275 removed. 1276 127720180406: 1278 In addition to supporting RFC 3164 formatted messages, the 1279 syslogd(8) service is now capable of parsing RFC 5424 formatted 1280 log messages. The main benefit of using RFC 5424 is that clients 1281 may now send log messages with timestamps containing year numbers, 1282 microseconds and time zone offsets. 1283 1284 Similarly, the syslog(3) C library function has been altered to 1285 send RFC 5424 formatted messages to the local system logging 1286 daemon. On systems using syslogd(8), this change should have no 1287 negative impact, as long as syslogd(8) and the C library are 1288 updated at the same time. On systems using a different system 1289 logging daemon, it may be necessary to make configuration 1290 adjustments, depending on the software used. 1291 1292 When using syslog-ng, add the 'syslog-protocol' flag to local 1293 input sources to enable parsing of RFC 5424 formatted messages: 1294 1295 source src { 1296 unix-dgram("/var/run/log" flags(syslog-protocol)); 1297 } 1298 1299 When using rsyslog, disable the 'SysSock.UseSpecialParser' option 1300 of the 'imuxsock' module to let messages be processed by the 1301 regular RFC 3164/5424 parsing pipeline: 1302 1303 module(load="imuxsock" SysSock.UseSpecialParser="off") 1304 1305 Do note that these changes only affect communication between local 1306 applications and syslogd(8). The format that syslogd(8) uses to 1307 store messages on disk or forward messages to other systems 1308 remains unchanged. syslogd(8) still uses RFC 3164 for these 1309 purposes. Options to customize this behaviour will be added in the 1310 future. Utilities that process log files stored in /var/log are 1311 thus expected to continue to function as before. 1312 1313 __FreeBSD_version has been incremented to 1200061 to denote this 1314 change. 1315 131620180328: 1317 Support for token ring networks has been removed. If you 1318 have "device token" in your kernel config you should remove 1319 it. No device drivers supported token ring. 1320 132120180323: 1322 makefs was modified to be able to tag ISO9660 El Torito boot catalog 1323 entries as EFI instead of overloading the i386 tag as done previously. 1324 The amd64 mkisoimages.sh script used to build amd64 ISO images for 1325 release was updated to use this. This may mean that makefs must be 1326 updated before "make cdrom" can be run in the release directory. This 1327 should be as simple as: 1328 1329 $ cd $SRCDIR/usr.sbin/makefs 1330 $ make depend all install 1331 133220180212: 1333 FreeBSD boot loader enhanced with Lua scripting. It's purely opt-in for 1334 now by building WITH_LOADER_LUA and WITHOUT_FORTH in /etc/src.conf. 1335 Co-existence for the transition period will come shortly. Booting is a 1336 complex environment and test coverage for Lua-enabled loaders has been 1337 thin, so it would be prudent to assume it might not work and make 1338 provisions for backup boot methods. 1339 134020180211: 1341 devmatch functionality has been turned on in devd. It will automatically 1342 load drivers for unattached devices. This may cause unexpected drivers 1343 to be loaded. Please report any problems to current@ and 1344 [email protected]. 1345 134620180114: 1347 Clang, llvm, lld, lldb, compiler-rt and libc++ have been upgraded to 1348 6.0.0. Please see the 20141231 entry below for information about 1349 prerequisites and upgrading, if you are not already using clang 3.5.0 1350 or higher. 1351 135220180110: 1353 LLVM's lld linker is now used as the FreeBSD/amd64 bootstrap linker. 1354 This means it is used to link the kernel and userland libraries and 1355 executables, but is not yet installed as /usr/bin/ld by default. 1356 1357 To revert to ld.bfd as the bootstrap linker, in /etc/src.conf set 1358 WITHOUT_LLD_BOOTSTRAP=yes 1359 136020180110: 1361 On i386, pmtimer has been removed. Its functionality has been folded 1362 into apm. It was a no-op on ACPI in current for a while now (but was 1363 still needed on i386 in FreeBSD 11 and earlier). Users may need to 1364 remove it from kernel config files. 1365 136620180104: 1367 The use of RSS hash from the network card aka flowid has been 1368 disabled by default for lagg(4) as it's currently incompatible with 1369 the lacp and loadbalance protocols. 1370 1371 This can be re-enabled by setting the following in loader.conf: 1372 net.link.lagg.default_use_flowid="1" 1373 137420180102: 1375 The SW_WATCHDOG option is no longer necessary to enable the 1376 hardclock-based software watchdog if no hardware watchdog is 1377 configured. As before, SW_WATCHDOG will cause the software 1378 watchdog to be enabled even if a hardware watchdog is configured. 1379 138020171215: 1381 r326887 fixes the issue described in the 20171214 UPDATING entry. 1382 r326888 flips the switch back to building GELI support always. 1383 138420171214: 1385 r362593 broke ZFS + GELI support for reasons unknown. However, 1386 it also broke ZFS support generally, so GELI has been turned off 1387 by default as the lesser evil in r326857. If you boot off ZFS and/or 1388 GELI, it might not be a good time to update. 1389 139020171125: 1391 PowerPC users must update loader(8) by rebuilding world before 1392 installing a new kernel, as the protocol connecting them has 1393 changed. Without the update, loader metadata will not be passed 1394 successfully to the kernel and users will have to enter their 1395 root partition at the kernel mountroot prompt to continue booting. 1396 Newer versions of loader can boot old kernels without issue. 1397 139820171110: 1399 The LOADER_FIREWIRE_SUPPORT build variable has been renamed to 1400 WITH/OUT_LOADER_FIREWIRE. LOADER_{NO_,}GELI_SUPPORT has been renamed 1401 to WITH/OUT_LOADER_GELI. 1402 140320171106: 1404 The naive and non-compliant support of posix_fallocate(2) in ZFS 1405 has been removed as of r325320. The system call now returns EINVAL 1406 when used on a ZFS file. Although the new behavior complies with the 1407 standard, some consumers are not prepared to cope with it. 1408 One known victim is lld prior to r325420. 1409 141020171102: 1411 Building in a FreeBSD src checkout will automatically create object 1412 directories now rather than store files in the current directory if 1413 'make obj' was not ran. Calling 'make obj' is no longer necessary. 1414 This feature can be disabled by setting WITHOUT_AUTO_OBJ=yes in 1415 /etc/src-env.conf (not /etc/src.conf), or passing the option in the 1416 environment. 1417 141820171101: 1419 The default MAKEOBJDIR has changed from /usr/obj/<srcdir> for native 1420 builds, and /usr/obj/<arch>/<srcdir> for cross-builds, to a unified 1421 /usr/obj/<srcdir>/<arch>. This behavior can be changed to the old 1422 format by setting WITHOUT_UNIFIED_OBJDIR=yes in /etc/src-env.conf, 1423 the environment, or with -DWITHOUT_UNIFIED_OBJDIR when building. 1424 The UNIFIED_OBJDIR option is a transitional feature that will be 1425 removed for 12.0 release; please migrate to the new format for any 1426 tools by looking up the OBJDIR used by 'make -V .OBJDIR' means rather 1427 than hardcoding paths. 1428 142920171028: 1430 The native-xtools target no longer installs the files by default to the 1431 OBJDIR. Use the native-xtools-install target with a DESTDIR to install 1432 to ${DESTDIR}/${NXTP} where NXTP defaults to /nxb-bin. 1433 143420171021: 1435 As part of the boot loader infrastructure cleanup, LOADER_*_SUPPORT 1436 options are changing from controlling the build if defined / undefined 1437 to controlling the build with explicit 'yes' or 'no' values. They will 1438 shift to WITH/WITHOUT options to match other options in the system. 1439 144020171010: 1441 libstand has turned into a private library for sys/boot use only. 1442 It is no longer supported as a public interface outside of sys/boot. 1443 144420171005: 1445 The arm port has split armv6 into armv6 and armv7. armv7 is now 1446 a valid TARGET_ARCH/MACHINE_ARCH setting. If you have an armv7 system 1447 and are running a kernel from before r324363, you will need to add 1448 MACHINE_ARCH=armv7 to 'make buildworld' to do a native build. 1449 145020171003: 1451 When building multiple kernels using KERNCONF, non-existent KERNCONF 1452 files will produce an error and buildkernel will fail. Previously 1453 missing KERNCONF files silently failed giving no indication as to 1454 why, only to subsequently discover during installkernel that the 1455 desired kernel was never built in the first place. 1456 145720170912: 1458 The default serial number format for CTL LUNs has changed. This will 1459 affect users who use /dev/diskid/* device nodes, or whose FibreChannel 1460 or iSCSI clients care about their LUNs' serial numbers. Users who 1461 require serial number stability should hardcode serial numbers in 1462 /etc/ctl.conf . 1463 146420170912: 1465 For 32-bit arm compiled for hard-float support, soft-floating point 1466 binaries now always get their shared libraries from 1467 LD_SOFT_LIBRARY_PATH (in the past, this was only used if 1468 /usr/libsoft also existed). Only users with a hard-float ld.so, but 1469 soft-float everything else should be affected. 1470 147120170826: 1472 The geli password typed at boot is now hidden. To restore the previous 1473 behavior, see geli(8) for configuration options. 1474 147520170825: 1476 Move PMTUD blackhole counters to TCPSTATS and remove them from bare 1477 sysctl values. Minor nit, but requires a rebuild of both world/kernel 1478 to complete. 1479 148020170814: 1481 "make check" behavior (made in ^/head@r295380) has been changed to 1482 execute from a limited sandbox, as opposed to executing from 1483 ${TESTSDIR}. 1484 1485 Behavioral changes: 1486 - The "beforecheck" and "aftercheck" targets are now specified. 1487 - ${CHECKDIR} (added in commit noted above) has been removed. 1488 - Legacy behavior can be enabled by setting 1489 WITHOUT_MAKE_CHECK_USE_SANDBOX in src.conf(5) or the environment. 1490 1491 If the limited sandbox mode is enabled, "make check" will execute 1492 "make distribution", then install, execute the tests, and clean up the 1493 sandbox if successful. 1494 1495 The "make distribution" and "make install" targets are typically run as 1496 root to set appropriate permissions and ownership at installation time. 1497 The end-user should set "WITH_INSTALL_AS_USER" in src.conf(5) or the 1498 environment if executing "make check" with limited sandbox mode using 1499 an unprivileged user. 1500 150120170808: 1502 Since the switch to GPT disk labels, fsck for UFS/FFS has been 1503 unable to automatically find alternate superblocks. As of r322297, 1504 the information needed to find alternate superblocks has been 1505 moved to the end of the area reserved for the boot block. 1506 Filesystems created with a newfs of this vintage or later 1507 will create the recovery information. If you have a filesystem 1508 created prior to this change and wish to have a recovery block 1509 created for your filesystem, you can do so by running fsck in 1510 foreground mode (i.e., do not use the -p or -y options). As it 1511 starts, fsck will ask ``SAVE DATA TO FIND ALTERNATE SUPERBLOCKS'' 1512 to which you should answer yes. 1513 151420170728: 1515 As of r321665, an NFSv4 server configuration that services 1516 Kerberos mounts or clients that do not support the uid/gid in 1517 owner/owner_group string capability, must explicitly enable 1518 the nfsuserd daemon by adding nfsuserd_enable="YES" to the 1519 machine's /etc/rc.conf file. 1520 152120170722: 1522 Clang, llvm, lldb, compiler-rt and libc++ have been upgraded to 5.0.0. 1523 Please see the 20141231 entry below for information about prerequisites 1524 and upgrading, if you are not already using clang 3.5.0 or higher. 1525 152620170701: 1527 WITHOUT_RCMDS is now the default. Set WITH_RCMDS if you need the 1528 r-commands (rlogin, rsh, etc.) to be built with the base system. 1529 153020170625: 1531 The FreeBSD/powerpc platform now uses a 64-bit type for time_t. This is 1532 a very major ABI incompatible change, so users of FreeBSD/powerpc must 1533 be careful when performing source upgrades. It is best to run 1534 'make installworld' from an alternate root system, either a live 1535 CD/memory stick, or a temporary root partition. Additionally, all ports 1536 must be recompiled. powerpc64 is largely unaffected, except in the case 1537 of 32-bit compatibility. All 32-bit binaries will be affected. 1538 153920170623: 1540 Forward compatibility for the "ino64" project have been committed. This 1541 will allow most new binaries to run on older kernels in a limited 1542 fashion. This prevents many of the common foot-shooting actions in the 1543 upgrade as well as the limited ability to roll back the kernel across 1544 the ino64 upgrade. Complicated use cases may not work properly, though 1545 enough simpler ones work to allow recovery in most situations. 1546 154720170620: 1548 Switch back to the BSDL dtc (Device Tree Compiler). Set WITH_GPL_DTC 1549 if you require the GPL compiler. 1550 155120170618: 1552 The internal ABI used for communication between the NFS kernel modules 1553 was changed by r320085, so __FreeBSD_version was bumped to 1554 ensure all the NFS related modules are updated together. 1555 155620170617: 1557 The ABI of struct event was changed by extending the data 1558 member to 64bit and adding ext fields. For upgrade, same 1559 precautions as for the entry 20170523 "ino64" must be 1560 followed. 1561 156220170531: 1563 The GNU roff toolchain has been removed from base. To render manpages 1564 which are not supported by mandoc(1), man(1) can fallback on GNU roff 1565 from ports (and recommends to install it). 1566 To render roff(7) documents, consider using GNU roff from ports or the 1567 heirloom doctools roff toolchain from ports via pkg install groff or 1568 via pkg install heirloom-doctools. 1569 157020170524: 1571 The ath(4) and ath_hal(4) modules now build piecemeal to allow for 1572 smaller runtime footprint builds. This is useful for embedded systems 1573 which only require one chipset support. 1574 1575 If you load it as a module, make sure this is in /boot/loader.conf: 1576 1577 if_ath_load="YES" 1578 1579 This will load the HAL, all chip/RF backends and if_ath_pci. 1580 If you have if_ath_pci in /boot/loader.conf, ensure it is after 1581 if_ath or it will not load any HAL chipset support. 1582 1583 If you want to selectively load things (eg on cheaper ARM/MIPS 1584 platforms where RAM is at a premium) you should: 1585 1586 * load ath_hal 1587 * load the chip modules in question 1588 * load ath_rate, ath_dfs 1589 * load ath_main 1590 * load if_ath_pci and/or if_ath_ahb depending upon your particular 1591 bus bind type - this is where probe/attach is done. 1592 1593 For further comments/feedback, poke adrian@ . 1594 159520170523: 1596 The "ino64" 64-bit inode project has been committed, which extends 1597 a number of types to 64 bits. Upgrading in place requires care and 1598 adherence to the documented upgrade procedure. 1599 1600 If using a custom kernel configuration ensure that the 1601 COMPAT_FREEBSD11 option is included (as during the upgrade the 1602 system will be running the ino64 kernel with the existing world). 1603 1604 For the safest in-place upgrade begin by removing previous build 1605 artifacts via "rm -rf /usr/obj/*". Then, carefully follow the full 1606 procedure documented below under the heading "To rebuild everything and 1607 install it on the current system." Specifically, a reboot is required 1608 after installing the new kernel before installing world. While an 1609 installworld normally works by accident from multiuser after rebooting 1610 the proper kernel, there are many cases where this will fail across this 1611 upgrade and installworld from single user is required. 1612 161320170424: 1614 The NATM framework including the en(4), fatm(4), hatm(4), and 1615 patm(4) devices has been removed. Consumers should plan a 1616 migration before the end-of-life date for FreeBSD 11. 1617 161820170420: 1619 GNU diff has been replaced by a BSD licensed diff. Some features of GNU 1620 diff has not been implemented, if those are needed a newer version of 1621 GNU diff is available via the diffutils package under the gdiff name. 1622 162320170413: 1624 As of r316810 for ipfilter, keep frags is no longer assumed when 1625 keep state is specified in a rule. r316810 aligns ipfilter with 1626 documentation in man pages separating keep frags from keep state. 1627 This allows keep state to be specified without forcing keep frags 1628 and allows keep frags to be specified independently of keep state. 1629 To maintain previous behaviour, also specify keep frags with 1630 keep state (as documented in ipf.conf.5). 1631 163220170407: 1633 arm64 builds now use the base system LLD 4.0.0 linker by default, 1634 instead of requiring that the aarch64-binutils port or package be 1635 installed. To continue using aarch64-binutils, set 1636 CROSS_BINUTILS_PREFIX=/usr/local/aarch64-freebsd/bin . 1637 163820170405: 1639 The UDP optimization in entry 20160818 that added the sysctl 1640 net.inet.udp.require_l2_bcast has been reverted. L2 broadcast 1641 packets will no longer be treated as L3 broadcast packets. 1642 164320170331: 1644 Binds and sends to the loopback addresses, IPv6 and IPv4, will now 1645 use any explicitly assigned loopback address available in the jail 1646 instead of using the first assigned address of the jail. 1647 164820170329: 1649 The ctl.ko module no longer implements the iSCSI target frontend: 1650 cfiscsi.ko does instead. 1651 1652 If building cfiscsi.ko as a kernel module, the module can be loaded 1653 via one of the following methods: 1654 - `cfiscsi_load="YES"` in loader.conf(5). 1655 - Add `cfiscsi` to `$kld_list` in rc.conf(5). 1656 - ctladm(8)/ctld(8), when compiled with iSCSI support 1657 (`WITH_ISCSI=yes` in src.conf(5)) 1658 1659 Please see cfiscsi(4) for more details. 1660 166120170316: 1662 The mmcsd.ko module now additionally depends on geom_flashmap.ko. 1663 Also, mmc.ko and mmcsd.ko need to be a matching pair built from the 1664 same source (previously, the dependency of mmcsd.ko on mmc.ko was 1665 missing, but mmcsd.ko now will refuse to load if it is incompatible 1666 with mmc.ko). 1667 166820170315: 1669 The syntax of ipfw(8) named states was changed to avoid ambiguity. 1670 If you have used named states in the firewall rules, you need to modify 1671 them after installworld and before rebooting. Now named states must 1672 be prefixed with colon. 1673 167420170311: 1675 The old drm (sys/dev/drm/) drivers for i915 and radeon have been 1676 removed as the userland we provide cannot use them. The KMS version 1677 (sys/dev/drm2) supports the same hardware. 1678 167920170302: 1680 Clang, llvm, lldb, compiler-rt and libc++ have been upgraded to 4.0.0. 1681 Please see the 20141231 entry below for information about prerequisites 1682 and upgrading, if you are not already using clang 3.5.0 or higher. 1683 168420170221: 1685 The code that provides support for ZFS .zfs/ directory functionality 1686 has been reimplemented. It's not possible now to create a snapshot 1687 by mkdir under .zfs/snapshot/. That should be the only user visible 1688 change. 1689 169020170216: 1691 EISA bus support has been removed. The WITH_EISA option is no longer 1692 valid. 1693 169420170215: 1695 MCA bus support has been removed. 1696 169720170127: 1698 The WITH_LLD_AS_LD / WITHOUT_LLD_AS_LD build knobs have been renamed 1699 WITH_LLD_IS_LD / WITHOUT_LLD_IS_LD, for consistency with CLANG_IS_CC. 1700 170120170112: 1702 The EM_MULTIQUEUE kernel configuration option is deprecated now that 1703 the em(4) driver conforms to iflib specifications. 1704 170520170109: 1706 The igb(4), em(4) and lem(4) ethernet drivers are now implemented via 1707 IFLIB. If you have a custom kernel configuration that excludes em(4) 1708 but you use igb(4), you need to re-add em(4) to your custom 1709 configuration. 1710 171120161217: 1712 Clang, llvm, lldb, compiler-rt and libc++ have been upgraded to 3.9.1. 1713 Please see the 20141231 entry below for information about prerequisites 1714 and upgrading, if you are not already using clang 3.5.0 or higher. 1715 171620161124: 1717 Clang, llvm, lldb, compiler-rt and libc++ have been upgraded to 3.9.0. 1718 Please see the 20141231 entry below for information about prerequisites 1719 and upgrading, if you are not already using clang 3.5.0 or higher. 1720 172120161119: 1722 The layout of the pmap structure has changed for powerpc to put the pmap 1723 statistics at the front for all CPU variations. libkvm(3) and all tools 1724 that link against it need to be recompiled. 1725 172620161030: 1727 isl(4) and cyapa(4) drivers now require a new driver, 1728 chromebook_platform(4), to work properly on Chromebook-class hardware. 1729 On other types of hardware the drivers may need to be configured using 1730 device hints. Please see the corresponding manual pages for details. 1731 173220161017: 1733 The urtwn(4) driver was merged into rtwn(4) and now consists of 1734 rtwn(4) main module + rtwn_usb(4) and rtwn_pci(4) bus-specific 1735 parts. 1736 Also, firmware for RTL8188CE was renamed due to possible name 1737 conflict (rtwnrtl8192cU(B) -> rtwnrtl8192cE(B)) 1738 173920161015: 1740 GNU rcs has been removed from base. It is available as packages: 1741 - rcs: Latest GPLv3 GNU rcs version. 1742 - rcs57: Copy of the latest version of GNU rcs (GPLv2) before it was 1743 removed from base. 1744 174520161008: 1746 Use of the cc_cdg, cc_chd, cc_hd, or cc_vegas congestion control 1747 modules now requires that the kernel configuration contain the 1748 TCP_HHOOK option. (This option is included in the GENERIC kernel.) 1749 175020161003: 1751 The WITHOUT_ELFCOPY_AS_OBJCOPY src.conf(5) knob has been retired. 1752 ELF Tool Chain's elfcopy is always installed as /usr/bin/objcopy. 1753 175420160924: 1755 Relocatable object files with the extension of .So have been renamed 1756 to use an extension of .pico instead. The purpose of this change is 1757 to avoid a name clash with shared libraries on case-insensitive file 1758 systems. On those file systems, foo.So is the same file as foo.so. 1759 176020160918: 1761 GNU rcs has been turned off by default. It can (temporarily) be built 1762 again by adding WITH_RCS knob in src.conf. 1763 Otherwise, GNU rcs is available from packages: 1764 - rcs: Latest GPLv3 GNU rcs version. 1765 - rcs57: Copy of the latest version of GNU rcs (GPLv2) from base. 1766 176720160918: 1768 The backup_uses_rcs functionality has been removed from rc.subr. 1769 177020160908: 1771 The queue(3) debugging macro, QUEUE_MACRO_DEBUG, has been split into 1772 two separate components, QUEUE_MACRO_DEBUG_TRACE and 1773 QUEUE_MACRO_DEBUG_TRASH. Define both for the original 1774 QUEUE_MACRO_DEBUG behavior. 1775 177620160824: 1777 r304787 changed some ioctl interfaces between the iSCSI userspace 1778 programs and the kernel. ctladm, ctld, iscsictl, and iscsid must be 1779 rebuilt to work with new kernels. __FreeBSD_version has been bumped 1780 to 1200005. 1781 178220160818: 1783 The UDP receive code has been updated to only treat incoming UDP 1784 packets that were addressed to an L2 broadcast address as L3 1785 broadcast packets. It is not expected that this will affect any 1786 standards-conforming UDP application. The new behaviour can be 1787 disabled by setting the sysctl net.inet.udp.require_l2_bcast to 1788 0. 1789 179020160818: 1791 Remove the openbsd_poll system call. 1792 __FreeBSD_version has been bumped because of this. 1793 179420160708: 1795 The stable/11 branch has been created from head@r302406. 1796 1797After branch N is created, entries older than the N-2 branch point are removed 1798from this file. After stable/14 is branched and current becomes FreeBSD 15, 1799entries older than stable/12 branch point will be removed from current's 1800UPDATING file. 1801 1802COMMON ITEMS: 1803 1804 General Notes 1805 ------------- 1806 Sometimes, obscure build problems are the result of environment 1807 poisoning. This can happen because the make utility reads its 1808 environment when searching for values for global variables. To run 1809 your build attempts in an "environmental clean room", prefix all make 1810 commands with 'env -i '. See the env(1) manual page for more details. 1811 Occasionally a build failure will occur with "make -j" due to a race 1812 condition. If this happens try building again without -j, and please 1813 report a bug if it happens consistently. 1814 1815 When upgrading from one major version to another it is generally best to 1816 upgrade to the latest code in the currently installed branch first, then 1817 do an upgrade to the new branch. This is the best-tested upgrade path, 1818 and has the highest probability of being successful. Please try this 1819 approach if you encounter problems with a major version upgrade. Since 1820 the stable 4.x branch point, one has generally been able to upgrade from 1821 anywhere in the most recent stable branch to head / current (or even the 1822 last couple of stable branches). See the top of this file when there's 1823 an exception. 1824 1825 The update process will emit an error on an attempt to perform a build 1826 or install from a FreeBSD version below the earliest supported version. 1827 When updating from an older version the update should be performed one 1828 major release at a time, including running `make delete-old` at each 1829 step. 1830 1831 When upgrading a live system, having a root shell around before 1832 installing anything can help undo problems. Not having a root shell 1833 around can lead to problems if pam has changed too much from your 1834 starting point to allow continued authentication after the upgrade. 1835 1836 This file should be read as a log of events. When a later event changes 1837 information of a prior event, the prior event should not be deleted. 1838 Instead, a pointer to the entry with the new information should be 1839 placed in the old entry. Readers of this file should also sanity check 1840 older entries before relying on them blindly. Authors of new entries 1841 should write them with this in mind. 1842 1843 ZFS notes 1844 --------- 1845 When upgrading the boot ZFS pool to a new version (via zpool upgrade), 1846 always follow these three steps: 1847 1848 1) recompile and reinstall the ZFS boot loader and boot block 1849 (this is part of "make buildworld" and "make installworld") 1850 1851 2) update the ZFS boot block on your boot drive (only required when 1852 doing a zpool upgrade): 1853 1854 When booting on x86 via BIOS, use the following to update the ZFS boot 1855 block on the freebsd-boot partition of a GPT partitioned drive ada0: 1856 gpart bootcode -p /boot/gptzfsboot -i $N ada0 1857 The value $N will typically be 1. For EFI booting, see EFI notes. 1858 1859 3) zpool upgrade the root pool. New bootblocks will work with old 1860 pools, but not vice versa, so they need to be updated before any 1861 zpool upgrade. 1862 1863 Non-boot pools do not need these updates. 1864 1865 EFI notes 1866 --------- 1867 1868 There are two locations the boot loader can be installed into. The 1869 current location (and the default) is \efi\freebsd\loader.efi and using 1870 efibootmgr(8) to configure it. The old location, that must be used on 1871 deficient systems that don't honor efibootmgr(8) protocols, is the 1872 fallback location of \EFI\BOOT\BOOTxxx.EFI. Generally, you will copy 1873 /boot/loader.efi to this location, but on systems installed a long time 1874 ago the ESP may be too small and /boot/boot1.efi may be needed unless 1875 the ESP has been expanded in the meantime. 1876 1877 Recent systems will have the ESP mounted on /boot/efi, but older ones 1878 may not have it mounted at all, or mounted in a different 1879 location. Older arm SD images with MBR used /boot/msdos as the 1880 mountpoint. The ESP is a MSDOS filesystem. 1881 1882 The EFI boot loader rarely needs to be updated. For ZFS booting, 1883 however, you must update loader.efi before you do 'zpool upgrade' the 1884 root zpool, otherwise the old loader.efi may reject the upgraded zpool 1885 since it does not automatically understand some new features. 1886 1887 See loader.efi(8) and uefi(8) for more details. 1888 1889 To build a kernel 1890 ----------------- 1891 If you are updating from a prior version of FreeBSD (even one just 1892 a few days old), you should follow this procedure. It is the most 1893 failsafe as it uses a /usr/obj tree with a fresh mini-buildworld, 1894 1895 make kernel-toolchain 1896 make -DALWAYS_CHECK_MAKE buildkernel KERNCONF=YOUR_KERNEL_HERE 1897 make -DALWAYS_CHECK_MAKE installkernel KERNCONF=YOUR_KERNEL_HERE 1898 1899 To test a kernel once 1900 --------------------- 1901 If you just want to boot a kernel once (because you are not sure 1902 if it works, or if you want to boot a known bad kernel to provide 1903 debugging information) run 1904 make installkernel KERNCONF=YOUR_KERNEL_HERE KODIR=/boot/testkernel 1905 nextboot -k testkernel 1906 1907 To rebuild everything and install it on the current system. 1908 ----------------------------------------------------------- 1909 # Note: sometimes if you are running current you gotta do more than 1910 # is listed here if you are upgrading from a really old current. 1911 1912 <make sure you have good level 0 dumps> 1913 make buildworld 1914 make buildkernel KERNCONF=YOUR_KERNEL_HERE 1915 make installkernel KERNCONF=YOUR_KERNEL_HERE 1916 [1] 1917 <reboot in single user> [3] 1918 etcupdate -p [5] 1919 make installworld 1920 etcupdate -B [4] 1921 make delete-old [6] 1922 <reboot> 1923 1924 To cross-install current onto a separate partition 1925 -------------------------------------------------- 1926 # In this approach we use a separate partition to hold 1927 # current's root, 'usr', and 'var' directories. A partition 1928 # holding "/", "/usr" and "/var" should be about 2GB in 1929 # size. 1930 1931 <make sure you have good level 0 dumps> 1932 <boot into -stable> 1933 make buildworld 1934 make buildkernel KERNCONF=YOUR_KERNEL_HERE 1935 <maybe newfs current's root partition> 1936 <mount current's root partition on directory ${CURRENT_ROOT}> 1937 make installworld DESTDIR=${CURRENT_ROOT} -DDB_FROM_SRC 1938 make distribution DESTDIR=${CURRENT_ROOT} # if newfs'd 1939 make installkernel KERNCONF=YOUR_KERNEL_HERE DESTDIR=${CURRENT_ROOT} 1940 cp /etc/fstab ${CURRENT_ROOT}/etc/fstab # if newfs'd 1941 <edit ${CURRENT_ROOT}/etc/fstab to mount "/" from the correct partition> 1942 <reboot into current> 1943 <do a "native" rebuild/install as described in the previous section> 1944 <maybe install compatibility libraries from ports/misc/compat*> 1945 <reboot> 1946 1947 1948 To upgrade in-place from stable to current 1949 ---------------------------------------------- 1950 <make sure you have good level 0 dumps> 1951 make buildworld [9] 1952 make buildkernel KERNCONF=YOUR_KERNEL_HERE [8] 1953 make installkernel KERNCONF=YOUR_KERNEL_HERE 1954 [1] 1955 <reboot in single user> [3] 1956 etcupdate -p [5] 1957 make installworld 1958 etcupdate -B [4] 1959 make delete-old [6] 1960 <reboot> 1961 1962 Make sure that you've read the UPDATING file to understand the 1963 tweaks to various things you need. At this point in the life 1964 cycle of current, things change often and you are on your own 1965 to cope. The defaults can also change, so please read ALL of 1966 the UPDATING entries. 1967 1968 Also, if you are tracking -current, you must be subscribed to 1969 [email protected]. Make sure that before you update 1970 your sources that you have read and understood all the recent 1971 messages there. If in doubt, please track -stable which has 1972 much fewer pitfalls. 1973 1974 [1] If you have third party modules, such as vmware, you should disable 1975 them at this point so they don't crash your system on 1976 reboot. Alternatively, you should rebuild all the modules you have in 1977 your system and install them as well. If you are running -current, you 1978 should seriously consider placing all sources to all the modules for 1979 your system (or symlinks to them) in /usr/local/sys/modules so this 1980 happens automatically. If all your modules come from ports, then adding 1981 the port origin directories to PORTS_MODULES instead is also automatic 1982 and effective, eg: 1983 PORTS_MODULES+=x11/nvidia-driver 1984 1985 [3] From the bootblocks, boot -s, and then do 1986 fsck -p 1987 mount -u / 1988 mount -a 1989 sh /etc/rc.d/zfs start # mount zfs filesystem, if needed 1990 cd src # full path to source 1991 adjkerntz -i # if CMOS is wall time 1992 Also, when doing a major release upgrade, it is required that you boot 1993 into single user mode to do the installworld. 1994 1995 [4] Note: This step is non-optional. Failure to do this step 1996 can result in a significant reduction in the functionality of the 1997 system. Attempting to do it by hand is not recommended and those 1998 that pursue this avenue should read this file carefully, as well 1999 as the archives of freebsd-current and freebsd-hackers mailing lists 2000 for potential gotchas. See etcupdate(8) for more information. 2001 2002 [5] Usually this step is a no-op. However, from time to time 2003 you may need to do this if you get unknown user in the following 2004 step. 2005 2006 [6] This only deletes old files and directories. Old libraries 2007 can be deleted by "make delete-old-libs", but you have to make 2008 sure that no program is using those libraries anymore. 2009 2010 [8] The new kernel must be able to run existing binaries used by an 2011 installworld. When upgrading across major versions, the new kernel's 2012 configuration must include the correct COMPAT_FREEBSD<n> option for 2013 existing binaries (e.g. COMPAT_FREEBSD11 to run 11.x binaries). Failure 2014 to do so may leave you with a system that is hard to boot to recover. A 2015 GENERIC kernel will include suitable compatibility options to run 2016 binaries from older branches. Note that the ability to run binaries 2017 from unsupported branches is not guaranteed. 2018 2019 Make sure that you merge any new devices from GENERIC since the 2020 last time you updated your kernel config file. Options also 2021 change over time, so you may need to adjust your custom kernels 2022 for these as well. 2023 2024 [9] If CPUTYPE is defined in your /etc/make.conf, make sure to use the 2025 "?=" instead of the "=" assignment operator, so that buildworld can 2026 override the CPUTYPE if it needs to. 2027 2028 MAKEOBJDIRPREFIX must be defined in an environment variable, and 2029 not on the command line, or in /etc/make.conf. buildworld will 2030 warn if it is improperly defined. 2031FORMAT: 2032 2033This file contains a list, in reverse chronological order, of major 2034breakages in tracking -current. It is not guaranteed to be a complete 2035list of such breakages, and only contains entries since September 23, 2011. 2036If you need to see UPDATING entries from before that date, you will need 2037to fetch an UPDATING file from an older FreeBSD release. 2038 2039Copyright information: 2040 2041Copyright 1998-2009 M. Warner Losh <[email protected]> 2042 2043Redistribution, publication, translation and use, with or without 2044modification, in full or in part, in any form or format of this 2045document are permitted without further permission from the author. 2046 2047THIS DOCUMENT IS PROVIDED BY WARNER LOSH ``AS IS'' AND ANY EXPRESS OR 2048IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED 2049WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE 2050DISCLAIMED. IN NO EVENT SHALL WARNER LOSH BE LIABLE FOR ANY DIRECT, 2051INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES 2052(INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR 2053SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 2054HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, 2055STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING 2056IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE 2057POSSIBILITY OF SUCH DAMAGE. 2058 2059Contact Warner Losh if you have any questions about your use of 2060this document. 2061