4 See also this page @ref{Новости, on russian}.
11 Merkle Tree-based Hashing with BLAKE3 (MTH) is used instead of BLAKE2b.
12 Because of that, there are backward @strong{incompatible} changes of
13 encrypted files (everything laying in the spool directory) and
14 @file{.meta} files of chunked transfer.
16 Current implementation is far from being optimal: it lacks
17 parallelizable calculations and has higher memory consumption: nearly
18 512 KiB for each 1 GiB of file's data. Future performance and memory
19 size optimizations should not lead to packet's format change. But it is
20 still several times faster than BLAKE2b.
23 Resumed online downloads, because of MTH, require reading only of the
24 preceding part of file, not the whole one as was before.
27 @command{nncp-hash} utility appeared for calculating file's MTH hash.
30 BLAKE2 KDF and XOF functions are replaced with BLAKE3 in encrypted
31 packets. Lowering number of used primitives. Also, its encrypted
32 packet's header is used as an associated data during encryption.
35 MultiCast Discovery uses
36 @verb{|ff02::4e4e:4350|} address instead of @verb{|ff02::1|}.
39 @command{nncp-cfgenc} mistakenly asked passphrase three times during encryption.
42 @command{nncp-stat} reports about partly downloaded packets.
50 @section Release 6.6.0
54 @command{nncp-daemon}, @command{nncp-call} and @command{nncp-caller}
55 commands wait for all background checksummers completion after
56 connection is finished.
59 Added possibility of address determining through multicast announcement
60 in local area network, so called MCD (MultiCast Discovery).
65 @section Release 6.5.0
69 Fixed segfault in @command{nncp-daemon} when SP handshake did not succeed.
72 Fixed possible bad return code ignoring in automatic tosser.
75 Fixed race during file descriptors closing when online protocol call is
76 finished, that could lead to write error of received packet fragment.
79 Kill all packet transmission progress bars in @command{nncp-daemon},
80 @command{nncp-call} and @command{nncp-caller} when call is finished.
85 @section Release 6.4.0
89 Fixed possible race in online protocol, that lead to panic.
94 @section Release 6.3.0
98 Fixed possible panic while showing progress during online protocol.
103 @section Release 6.2.1
107 Three places in logs contained excess @code{%s}.
112 @section Release 6.2.0
116 Returned @command{nncp-caller}'s @option{-autotoss*} options workability.
119 Yet another logging refactoring and simplification.
120 Should be no visible differences to the end user.
125 @section Release 6.1.0
129 Optimization: most commands do not keep opened file descriptors now.
130 Previously you can exceed maximal number of opened files if you have got
131 many packets in the spool directory.
134 Optimization: do not close file descriptor of the file we download
135 online. Previously each chunk lead to expensive open/close calls.
138 Online downloaded files are saved with @file{.nock} (non-checksummed)
139 suffix, waiting either for @command{nncp-check}, or online daemons to
140 perform integrity check.
143 Optimization: files, that are not resumed, are checksummed immediately
144 during the online download, skipping @file{.nock}-intermediate step.
147 Ability to store encrypted packet's header in @file{.hdr} file, close to
148 the packet itself. That can greatly increase performance of packets
149 listing on filesystems with big block's size.
154 @section Release 6.0.0
158 Log uses human readable and easy machine parseable
159 @url{https://www.gnu.org/software/recutils/, recfile} format for the
160 records, instead of structured RFC 3339 lines. Old logs are not readable
161 by @command{nncp-log} anymore.
164 @option{-autotoss*} option workability with @command{nncp-daemon}'s
165 @option{-inetd} mode.
168 Call's @option{when-tx-exists} allows to make a call only when outbound
169 packets exists. Combined with seconds-aware cron expression that can be
170 used as some kind of auto dialler.
173 @command{nncp-cronexpr} command allows you to check validity and
174 expectations of specified cron expression.
179 @section Release 5.6.0
183 @option{-autotoss*} option runs tosser not after the call, but every
184 second while it is active.
187 @option{autotoss}, @option{autotoss-doseen},
188 @option{autotoss-nofile}, @option{autotoss-nofreq},
189 @option{autotoss-noexec}, @option{autotoss-notrns} options available in
190 @option{calls} configuration section. You can configure per-call
191 automatic tosser options.
194 Use vendoring, instead of @env{GOPATH} overriding during tarball
195 installation, because current minimal Go's version is 1.12 and it
201 @section Release 5.5.1
205 Respect for @env{BINDIR}, @env{INFODIR} and @env{DOCDIR} environment
206 variables in @file{config} during installation.
211 @section Release 5.5.0
215 Bugfixes in @command{nncp-call(er)}/@command{nncp-daemon},
216 @command{nncp-bundle} and @command{nncp-stat}.
219 @command{nncp-rm} has @option{-dryrun} and @option{-older} options now.
222 @command{nncp-exec} has @option{-use-tmp} and @option{-nocompress}
223 options now. Uncompressed packets are not compatible with previous NNCP
227 @command{nncp-call}, @command{nncp-caller} and @command{nncp-daemon} commands
228 have @option{-autotoss*} options for running tosser after call is ended.
231 Updated dependencies. Minimal required Go version is 1.12.
236 @section Release 5.4.1
240 Fixed @code{SENDMAIL} variable usage during the build.
245 @section Release 5.4.0
249 Updated dependencies.
252 Build system is moved from Makefiles to @url{http://cr.yp.to/redo.html, redo}.
253 This should not influence package maintainers, because minimal @command{redo}
254 implementation is included in tarball.
259 @section Release 5.3.3
263 More various error checks.
266 Updated dependencies.
271 @section Release 5.3.2
275 Fixed incorrect logic of @option{onlinedeadline} timeout, where
276 connection won't take into account incoming packets events and will
277 forcefully disconnect.
282 @section Release 5.3.1
286 Fixed @option{onlinedeadline} workability with call addresses that use
287 external commands (@verb{#"|somecmd"#}).
290 @command{nncp-stat} has @option{-pkt} option displaying information
291 about each packet in the spool.
296 @section Release 5.3.0
300 Progress messages contain prefix, describing the running action.
303 Fixed not occurring handshake messages padding.
306 Finish all SP protocol related goroutines, less memory leak.
309 SP protocol generates less socket write calls, thus generating less TCP
313 Check @option{onlinedeadline} and @option{maxonlinetime} options every
314 second, independently from socket reads (up to 10 seconds).
317 Once per minute, if no other traffic exists, PING packets are sent in
318 SP-connection. That allows faster determining of connection unworkability.
321 @command{nncp-toss} uses lock-file to prevent simultaneous tossing.
326 @section Release 5.2.1
330 Fixed SP protocol error handling, sometimes causing program panic.
335 @section Release 5.2.0
339 Most commands by default show oneline operations progress.
340 @option{-progress}, @option{-noprogress} command line options,
341 @option{noprogress} configuration file option appeared.
344 Fixed incorrect @command{nncp-check} command return code, that returned
345 bad code when everything is good.
348 Free disk space check during @command{nncp-bundle -rx} call.
353 @section Release 5.1.2
357 @strong{Critical} vulnerability: remote peers authentication could lead
358 to incorrect identification of remote side, allowing foreign encrypted
362 Bugfix: private and public Noise keys were swapped in newly created
363 configuration files, that lead to inability to authenticate online peers.
366 Explicit directories fsync-ing for guaranteed files renaming.
371 @section Release 5.1.1
375 Fixed workability of @command{nncp-file} with @option{-chunked 0} option.
380 @section Release 5.1.0
384 @command{nncp-file} can send directories, automatically creating pax
388 Free disk space is checked during outbound packets creation.
391 @option{freq}, @option{freqminsize}, @option{freqchunked} configuration
392 file options replaced with the structure:
393 @option{freq: @{path: ..., minsize: ..., chunked: ...@}}.
396 Added @option{freq.maxsize} configuration file option, forbidding of
397 freq sending larger than specified size.
400 Ability to notify about successfully executed commands (exec) with
401 @option{notify.exec} configuration file option.
406 @section Release 5.0.0
410 @strong{Incompatible} configuration file format change: YAML is
411 replaced with Hjson, due to its simplicity, without noticeable lack
412 of either functionality or convenience.
415 @strong{Incompatible} plain packet format changes. Older versions are
416 not supported. @code{zlib} compression is replaced with
417 @code{Zstandard}, due to its speed and efficiency, despite library
418 version is not mature enough.
421 Ability to call remote nodes via pipe call of external command, not only
425 @command{nncp-cfgnew} generates configuration file with many
426 comments. @option{-nocomments} option can be used for an old
430 Duplicate filenames have @file{.CTR} suffix, instead of @file{CTR}, to
431 avoid possible collisions with @file{.nncp.chunkCTR}.
434 Ability to override process umask through configuration file option.
437 Files and directories are created with 666/777 permissions by default,
438 allowing control with @command{umask}.
441 Updated dependencies.
444 Full usage of go modules for dependencies management
445 (@code{go.cypherpunks.ru/nncp/v5} namespace is used).
448 Forbid any later GNU GPL version autousage
449 (project's licence now is GNU GPLv3-only).
456 @item Workability on GNU/Linux systems and Go 1.10 is fixed.
464 @strong{Incompatible} encrypted and eblob packet format change: AEAD
465 encryption mode with 128 KiB blocks is used now, because previously
466 @command{nncp-toss} did not verify encrypted packet's MAC before feeding
467 decrypted data to external command. Older versions are not supported.
470 Available free space checking before copying in @command{nncp-xfer},
471 @command{nncp-daemon}, @command{nncp-call(er)}.
474 @command{nncp-call} has ability only to list packets on remote node,
475 without their transmission.
478 @command{nncp-call} has ability to transfer only specified packets.
481 Workability of @option{xxrate} preference in @option{calls}
482 configuration file section.
485 Dependant libraries are updated.
491 Begin using of @code{go.mod} subsystem.
498 @item @command{nncp-daemon} can be run as @command{inetd}-service.
506 @command{nncp-daemon}, @command{nncp-call}, @command{nncp-caller} check
507 if @file{.seen} exists and treat it like file was already downloaded.
508 Possibly it was transferred out-of-bound and remote side needs to be
512 If higher priority packet is spooled, then @command{nncp-daemon} will
513 queue its sending first, interrupting lower priority transmissions.
516 Simple packet rate limiter added to online-related tools
517 (@command{nncp-daemon}, @command{nncp-call}, @command{nncp-caller}).
520 Ability to specify niceness with symbolic notation:
521 @verb{|NORMAL|}, @verb{|BULK+10|}, @verb{|PRIORITY-5|}, etc.
524 Changed default niceness levels:
525 for @command{nncp-exec} from 64 to 96,
526 for @command{nncp-freq} from 64 to 160,
527 for @command{nncp-file} from 196 to 224.
535 @strong{Incompatible} @emph{bundle} archive format changes and
536 @command{nncp-bundle} workability with Go 1.10+. Bundles must be
537 valid tar archives, but Go 1.9 made them invalid because of long paths
538 inside. NNCP accidentally was dependant on that bug. Explicit adding of
539 @file{NNCP/} directory in archive restores workability with valid tar
547 Ability to disable relaying at all using @verb{|-via -|} command line option.
555 @strong{Incompatible} plain packet format changes. Older versions are
559 Ability to queue remote command execution, by configuring @option{exec}
560 option in configuration file and using @command{nncp-exec} command:
563 @command{nncp-mail} command is replaced with more flexible
564 @command{nncp-exec}. Instead of @verb{|nncp-mail NODE RECIPIENT|}
565 you must use @verb{|nncp-exec NODE sendmail RECIPIENT|}.
567 @option{sendmail} configuration file option is replaced with
568 @option{exec}. @verb{|sendmail: [...]|} must be replaced with
569 @verb{|exec: sendmail: [...]|}.
573 Ability to override @option{via} configuration option for destination
574 node via @option{-via} command line option for following commands:
575 @command{nncp-file}, @command{nncp-freq}, @command{nncp-exec}.
578 Chunked files, having size less than specified chunk size, will be sent
579 as an ordinary single file.
582 Exec commands are invoked with additional @env{NNCP_NICE} and
583 @env{NNCP_SELF} environment variables.
586 Files, that are sent as a reply to freq, have niceness level taken from
587 the freq packet. You can set desired niceness during @command{nncp-freq}
588 invocation using @option{-replynice} option.
591 @command{nncp-toss} command can ignore specified packet types during
592 processing: @option{-nofile}, @option{-nofreq}, @option{-noexec},
596 @command{nncp-file} command uses
597 @option{FreqMinSize}/@option{FreqChunked} configuration file options
598 for @option{-minsize}/@option{-chunked} by default. You can turn this
599 off by specifying zero value.
608 @strong{Incompatible} encrypted/eblob packet format changes. Older
609 versions are not supported.
612 Twofish encryption algorithm is replaced with ChaCha20. It is much more
613 faster. One cryptographic primitive less.
616 HKDF-BLAKE2b-256 KDF algorithm is replaced with BLAKE2Xb XOF. Yet
617 another cryptographic primitive less (assuming that BLAKE2X is nearly
618 identical to BLAKE2).
627 @strong{Incompatible} encrypted packet format changes. Older versions
631 @command{nncp-bundle} command can either create stream of encrypted
632 packets, or digest it. It is useful when dealing with
633 @code{stdin}/@code{stdout} based transmission methods (like writing to
634 CD-ROM without intermediate prepared ISO image and working with tape
638 @command{nncp-toss} is able to create @file{.seen} files preventing
639 duplicate packets receiving.
642 Single background checksum verifier worker is allowed in
643 @command{nncp-call}. This is helpful when thousands of small inbound
644 packets could create many goroutines.
647 Ability to override path to spool directory and logfile through either
648 command line argument, or environment variable.
651 @command{nncp-rm} is able to delete outbound/inbound, @file{.seen},
652 @file{.part}, @file{.lock} and temporary files.
657 @section Release 0.12
659 @item Sendmail command is called with @env{NNCP_SENDER} environment variable.
663 @section Release 0.11
665 @item @command{nncp-stat}'s command output is sorted by node name.
669 @section Release 0.10
672 @command{nncp-freq}'s @file{DST} argument is optional now. Last
673 @file{SRC} path's element will be used by default.
680 Fix @option{-rx}/@option{-tx} arguments processing in
681 @command{nncp-call} command. They were ignored.
688 Little bugfix in @command{nncp-file} command, where @option{-minsize}
689 option for unchunked transfer was not in KiBs, but in bytes.
697 Ability to feed @command{nncp-file} from @code{stdin}, that uses an
698 encrypted temporary file for that.
701 Chunked files transmission appeared with corresponding
702 @command{nncp-reass} command and @option{freqchunked} configuration file
703 entry. Useful for transferring big files over small storage devices.
706 @option{freqminsize} configuration file option, analogue to
707 @option{-minsize} one.
710 @command{nncp-xfer}'s @option{-force} option is renamed to
711 @option{-mkdir} for clarity.
714 @option{-minsize} option is specified in KiBs, not bytes, for
718 @command{nncp-newcfg} command is renamed to @command{nncp-cfgnew},
719 and @command{nncp-mincfg} to @command{nncp-cfgmin} -- now they have
720 common prefix and are grouped together for convenience.
723 @command{nncp-cfgenc} command appeared, allowing configuration file
724 encryption/decryption, for keeping it safe without any either OpenPGP or
728 Cryptographic libraries (dependencies) are updated.
735 @item Small @command{nncp-rm} command appeared.
736 @item Cryptographic libraries (dependencies) are updated.
743 Trivial small fix in default niceness level of @command{nncp-file}
744 and @command{nncp-freq} commands.
752 Small fix in @command{nncp-call}, @command{nncp-caller},
753 @command{nncp-daemon}: they can segmentation fail sometimes (no data is
757 @command{nncp-newnode} renamed to @command{nncp-newcfg} -- it is shorter
758 and more convenient to use.
761 @command{nncp-mincfg} command appeared: helper allowing to create
762 minimalistic stripped down configuration file without private keys, that
763 is useful during @command{nncp-xfer} usage.
770 @item Fixed compatibility with Go 1.6.
778 @strong{Incompatible} packet's format change (magic number is changed
779 too): size field is encrypted and is not send in plaintext anymore.
782 @option{-minsize} option gives ability to automatically pad outgoing
783 packets to specified minimal size.
786 @command{nncp-daemon} and @command{nncp-call}/@command{nncp-caller}
787 always check new @emph{tx} packets appearance in the background while
788 connected. Remote side is immediately notified.
791 @option{-onlinedeadline} option gives ability to configure timeout of
792 inactivity of online connection, when it could be disconnected. It could
793 be used to keep connection alive for a long time.
796 @option{-maxonlinetime} option gives ability to set maximal allowable
797 online connection aliveness time.
800 @command{nncp-caller} command appeared: cron-ed TCP daemon caller.
803 @command{nncp-pkt} command can decompress the data.