4 See also this page @ref{Новости, on russian}.
11 Fixed workability of @command{nncp-file} and @command{nncp-exec}
12 commands, that use temporary file (stdin and @option{-use-tmp}).
15 Fixed invalid @file{.hdr} generation when transitional packets are used.
18 @option{-all} option appeared in @command{nncp-rm} command, applying to
19 all the nodes at once.
22 @command{nncp-pkt} can parse @file{.hdr} files.
25 Multicasting areas feature appeared. Implemented merely by an additional
26 plain packet type with @command{nncp-toss}, @command{nncp-file} and
27 @command{nncp-exec} commands modification.
32 @section Release 7.0.0
36 Minimal required Go version 1.13.
39 Merkle Tree-based Hashing with BLAKE3 (MTH) is used instead of BLAKE2b.
40 Because of that, there are backward @strong{incompatible} changes of
41 encrypted files (everything laying in the spool directory) and
42 @file{.meta} files of chunked transfer.
44 Current implementation is far from being optimal: it lacks
45 parallelizable calculations and has higher memory consumption: nearly
46 512 KiB for each 1 GiB of file's data. Future performance and memory
47 size optimizations should not lead to packet's format change. But it is
48 still several times faster than BLAKE2b.
51 Resumed online downloads, because of MTH, require reading only of the
52 preceding part of file, not the whole one as was before.
55 @command{nncp-hash} utility appeared for calculating file's MTH hash.
58 BLAKE2 KDF and XOF functions are replaced with BLAKE3 in encrypted
59 packets. Lowering number of used primitives. Also, its encrypted
60 packet's header is used as an associated data during encryption.
63 MultiCast Discovery uses
64 @verb{|ff02::4e4e:4350|} address instead of @verb{|ff02::1|}.
67 @command{nncp-cfgenc} mistakenly asked passphrase three times during encryption.
70 @command{nncp-stat} reports about partly downloaded packets.
78 @section Release 6.6.0
82 @command{nncp-daemon}, @command{nncp-call} and @command{nncp-caller}
83 commands wait for all background checksummers completion after
84 connection is finished.
87 Added possibility of address determining through multicast announcement
88 in local area network, so called MCD (MultiCast Discovery).
93 @section Release 6.5.0
97 Fixed segfault in @command{nncp-daemon} when SP handshake did not succeed.
100 Fixed possible bad return code ignoring in automatic tosser.
103 Fixed race during file descriptors closing when online protocol call is
104 finished, that could lead to write error of received packet fragment.
107 Kill all packet transmission progress bars in @command{nncp-daemon},
108 @command{nncp-call} and @command{nncp-caller} when call is finished.
113 @section Release 6.4.0
117 Fixed possible race in online protocol, that lead to panic.
122 @section Release 6.3.0
126 Fixed possible panic while showing progress during online protocol.
131 @section Release 6.2.1
135 Three places in logs contained excess @code{%s}.
140 @section Release 6.2.0
144 Returned @command{nncp-caller}'s @option{-autotoss*} options workability.
147 Yet another logging refactoring and simplification.
148 Should be no visible differences to the end user.
153 @section Release 6.1.0
157 Optimization: most commands do not keep opened file descriptors now.
158 Previously you can exceed maximal number of opened files if you have got
159 many packets in the spool directory.
162 Optimization: do not close file descriptor of the file we download
163 online. Previously each chunk lead to expensive open/close calls.
166 Online downloaded files are saved with @file{.nock} (non-checksummed)
167 suffix, waiting either for @command{nncp-check}, or online daemons to
168 perform integrity check.
171 Optimization: files, that are not resumed, are checksummed immediately
172 during the online download, skipping @file{.nock}-intermediate step.
175 Ability to store encrypted packet's header in @file{.hdr} file, close to
176 the packet itself. That can greatly increase performance of packets
177 listing on filesystems with big block's size.
182 @section Release 6.0.0
186 Log uses human readable and easy machine parseable
187 @url{https://www.gnu.org/software/recutils/, recfile} format for the
188 records, instead of structured RFC 3339 lines. Old logs are not readable
189 by @command{nncp-log} anymore.
192 @option{-autotoss*} option workability with @command{nncp-daemon}'s
193 @option{-inetd} mode.
196 Call's @option{when-tx-exists} allows to make a call only when outbound
197 packets exists. Combined with seconds-aware cron expression that can be
198 used as some kind of auto dialler.
201 @command{nncp-cronexpr} command allows you to check validity and
202 expectations of specified cron expression.
207 @section Release 5.6.0
211 @option{-autotoss*} option runs tosser not after the call, but every
212 second while it is active.
215 @option{autotoss}, @option{autotoss-doseen},
216 @option{autotoss-nofile}, @option{autotoss-nofreq},
217 @option{autotoss-noexec}, @option{autotoss-notrns} options available in
218 @option{calls} configuration section. You can configure per-call
219 automatic tosser options.
222 Use vendoring, instead of @env{GOPATH} overriding during tarball
223 installation, because current minimal Go's version is 1.12 and it
229 @section Release 5.5.1
233 Respect for @env{BINDIR}, @env{INFODIR} and @env{DOCDIR} environment
234 variables in @file{config} during installation.
239 @section Release 5.5.0
243 Bugfixes in @command{nncp-call(er)}/@command{nncp-daemon},
244 @command{nncp-bundle} and @command{nncp-stat}.
247 @command{nncp-rm} has @option{-dryrun} and @option{-older} options now.
250 @command{nncp-exec} has @option{-use-tmp} and @option{-nocompress}
251 options now. Uncompressed packets are not compatible with previous NNCP
255 @command{nncp-call}, @command{nncp-caller} and @command{nncp-daemon} commands
256 have @option{-autotoss*} options for running tosser after call is ended.
259 Updated dependencies. Minimal required Go version is 1.12.
264 @section Release 5.4.1
268 Fixed @code{SENDMAIL} variable usage during the build.
273 @section Release 5.4.0
277 Updated dependencies.
280 Build system is moved from Makefiles to @url{http://cr.yp.to/redo.html, redo}.
281 This should not influence package maintainers, because minimal @command{redo}
282 implementation is included in tarball.
287 @section Release 5.3.3
291 More various error checks.
294 Updated dependencies.
299 @section Release 5.3.2
303 Fixed incorrect logic of @option{onlinedeadline} timeout, where
304 connection won't take into account incoming packets events and will
305 forcefully disconnect.
310 @section Release 5.3.1
314 Fixed @option{onlinedeadline} workability with call addresses that use
315 external commands (@verb{#"|somecmd"#}).
318 @command{nncp-stat} has @option{-pkt} option displaying information
319 about each packet in the spool.
324 @section Release 5.3.0
328 Progress messages contain prefix, describing the running action.
331 Fixed not occurring handshake messages padding.
334 Finish all SP protocol related goroutines, less memory leak.
337 SP protocol generates less socket write calls, thus generating less TCP
341 Check @option{onlinedeadline} and @option{maxonlinetime} options every
342 second, independently from socket reads (up to 10 seconds).
345 Once per minute, if no other traffic exists, PING packets are sent in
346 SP-connection. That allows faster determining of connection unworkability.
349 @command{nncp-toss} uses lock-file to prevent simultaneous tossing.
354 @section Release 5.2.1
358 Fixed SP protocol error handling, sometimes causing program panic.
363 @section Release 5.2.0
367 Most commands by default show oneline operations progress.
368 @option{-progress}, @option{-noprogress} command line options,
369 @option{noprogress} configuration file option appeared.
372 Fixed incorrect @command{nncp-check} command return code, that returned
373 bad code when everything is good.
376 Free disk space check during @command{nncp-bundle -rx} call.
381 @section Release 5.1.2
385 @strong{Critical} vulnerability: remote peers authentication could lead
386 to incorrect identification of remote side, allowing foreign encrypted
390 Bugfix: private and public Noise keys were swapped in newly created
391 configuration files, that lead to inability to authenticate online peers.
394 Explicit directories fsync-ing for guaranteed files renaming.
399 @section Release 5.1.1
403 Fixed workability of @command{nncp-file} with @option{-chunked 0} option.
408 @section Release 5.1.0
412 @command{nncp-file} can send directories, automatically creating pax
416 Free disk space is checked during outbound packets creation.
419 @option{freq}, @option{freqminsize}, @option{freqchunked} configuration
420 file options replaced with the structure:
421 @option{freq: @{path: ..., minsize: ..., chunked: ...@}}.
424 Added @option{freq.maxsize} configuration file option, forbidding of
425 freq sending larger than specified size.
428 Ability to notify about successfully executed commands (exec) with
429 @option{notify.exec} configuration file option.
434 @section Release 5.0.0
438 @strong{Incompatible} configuration file format change: YAML is
439 replaced with Hjson, due to its simplicity, without noticeable lack
440 of either functionality or convenience.
443 @strong{Incompatible} plain packet format changes. Older versions are
444 not supported. @code{zlib} compression is replaced with
445 @code{Zstandard}, due to its speed and efficiency, despite library
446 version is not mature enough.
449 Ability to call remote nodes via pipe call of external command, not only
453 @command{nncp-cfgnew} generates configuration file with many
454 comments. @option{-nocomments} option can be used for an old
458 Duplicate filenames have @file{.CTR} suffix, instead of @file{CTR}, to
459 avoid possible collisions with @file{.nncp.chunkCTR}.
462 Ability to override process umask through configuration file option.
465 Files and directories are created with 666/777 permissions by default,
466 allowing control with @command{umask}.
469 Updated dependencies.
472 Full usage of go modules for dependencies management
473 (@code{go.cypherpunks.ru/nncp/v5} namespace is used).
476 Forbid any later GNU GPL version autousage
477 (project's licence now is GNU GPLv3-only).
484 @item Workability on GNU/Linux systems and Go 1.10 is fixed.
492 @strong{Incompatible} encrypted and eblob packet format change: AEAD
493 encryption mode with 128 KiB blocks is used now, because previously
494 @command{nncp-toss} did not verify encrypted packet's MAC before feeding
495 decrypted data to external command. Older versions are not supported.
498 Available free space checking before copying in @command{nncp-xfer},
499 @command{nncp-daemon}, @command{nncp-call(er)}.
502 @command{nncp-call} has ability only to list packets on remote node,
503 without their transmission.
506 @command{nncp-call} has ability to transfer only specified packets.
509 Workability of @option{xxrate} preference in @option{calls}
510 configuration file section.
513 Dependant libraries are updated.
519 Begin using of @code{go.mod} subsystem.
526 @item @command{nncp-daemon} can be run as @command{inetd}-service.
534 @command{nncp-daemon}, @command{nncp-call}, @command{nncp-caller} check
535 if @file{.seen} exists and treat it like file was already downloaded.
536 Possibly it was transferred out-of-bound and remote side needs to be
540 If higher priority packet is spooled, then @command{nncp-daemon} will
541 queue its sending first, interrupting lower priority transmissions.
544 Simple packet rate limiter added to online-related tools
545 (@command{nncp-daemon}, @command{nncp-call}, @command{nncp-caller}).
548 Ability to specify niceness with symbolic notation:
549 @verb{|NORMAL|}, @verb{|BULK+10|}, @verb{|PRIORITY-5|}, etc.
552 Changed default niceness levels:
553 for @command{nncp-exec} from 64 to 96,
554 for @command{nncp-freq} from 64 to 160,
555 for @command{nncp-file} from 196 to 224.
563 @strong{Incompatible} @emph{bundle} archive format changes and
564 @command{nncp-bundle} workability with Go 1.10+. Bundles must be
565 valid tar archives, but Go 1.9 made them invalid because of long paths
566 inside. NNCP accidentally was dependant on that bug. Explicit adding of
567 @file{NNCP/} directory in archive restores workability with valid tar
575 Ability to disable relaying at all using @verb{|-via -|} command line option.
583 @strong{Incompatible} plain packet format changes. Older versions are
587 Ability to queue remote command execution, by configuring @option{exec}
588 option in configuration file and using @command{nncp-exec} command:
591 @command{nncp-mail} command is replaced with more flexible
592 @command{nncp-exec}. Instead of @verb{|nncp-mail NODE RECIPIENT|}
593 you must use @verb{|nncp-exec NODE sendmail RECIPIENT|}.
595 @option{sendmail} configuration file option is replaced with
596 @option{exec}. @verb{|sendmail: [...]|} must be replaced with
597 @verb{|exec: sendmail: [...]|}.
601 Ability to override @option{via} configuration option for destination
602 node via @option{-via} command line option for following commands:
603 @command{nncp-file}, @command{nncp-freq}, @command{nncp-exec}.
606 Chunked files, having size less than specified chunk size, will be sent
607 as an ordinary single file.
610 Exec commands are invoked with additional @env{NNCP_NICE} and
611 @env{NNCP_SELF} environment variables.
614 Files, that are sent as a reply to freq, have niceness level taken from
615 the freq packet. You can set desired niceness during @command{nncp-freq}
616 invocation using @option{-replynice} option.
619 @command{nncp-toss} command can ignore specified packet types during
620 processing: @option{-nofile}, @option{-nofreq}, @option{-noexec},
624 @command{nncp-file} command uses
625 @option{FreqMinSize}/@option{FreqChunked} configuration file options
626 for @option{-minsize}/@option{-chunked} by default. You can turn this
627 off by specifying zero value.
636 @strong{Incompatible} encrypted/eblob packet format changes. Older
637 versions are not supported.
640 Twofish encryption algorithm is replaced with ChaCha20. It is much more
641 faster. One cryptographic primitive less.
644 HKDF-BLAKE2b-256 KDF algorithm is replaced with BLAKE2Xb XOF. Yet
645 another cryptographic primitive less (assuming that BLAKE2X is nearly
646 identical to BLAKE2).
655 @strong{Incompatible} encrypted packet format changes. Older versions
659 @command{nncp-bundle} command can either create stream of encrypted
660 packets, or digest it. It is useful when dealing with
661 @code{stdin}/@code{stdout} based transmission methods (like writing to
662 CD-ROM without intermediate prepared ISO image and working with tape
666 @command{nncp-toss} is able to create @file{.seen} files preventing
667 duplicate packets receiving.
670 Single background checksum verifier worker is allowed in
671 @command{nncp-call}. This is helpful when thousands of small inbound
672 packets could create many goroutines.
675 Ability to override path to spool directory and logfile through either
676 command line argument, or environment variable.
679 @command{nncp-rm} is able to delete outbound/inbound, @file{.seen},
680 @file{.part}, @file{.lock} and temporary files.
685 @section Release 0.12
687 @item Sendmail command is called with @env{NNCP_SENDER} environment variable.
691 @section Release 0.11
693 @item @command{nncp-stat}'s command output is sorted by node name.
697 @section Release 0.10
700 @command{nncp-freq}'s @file{DST} argument is optional now. Last
701 @file{SRC} path's element will be used by default.
708 Fix @option{-rx}/@option{-tx} arguments processing in
709 @command{nncp-call} command. They were ignored.
716 Little bugfix in @command{nncp-file} command, where @option{-minsize}
717 option for unchunked transfer was not in KiBs, but in bytes.
725 Ability to feed @command{nncp-file} from @code{stdin}, that uses an
726 encrypted temporary file for that.
729 Chunked files transmission appeared with corresponding
730 @command{nncp-reass} command and @option{freqchunked} configuration file
731 entry. Useful for transferring big files over small storage devices.
734 @option{freqminsize} configuration file option, analogue to
735 @option{-minsize} one.
738 @command{nncp-xfer}'s @option{-force} option is renamed to
739 @option{-mkdir} for clarity.
742 @option{-minsize} option is specified in KiBs, not bytes, for
746 @command{nncp-newcfg} command is renamed to @command{nncp-cfgnew},
747 and @command{nncp-mincfg} to @command{nncp-cfgmin} -- now they have
748 common prefix and are grouped together for convenience.
751 @command{nncp-cfgenc} command appeared, allowing configuration file
752 encryption/decryption, for keeping it safe without any either OpenPGP or
756 Cryptographic libraries (dependencies) are updated.
763 @item Small @command{nncp-rm} command appeared.
764 @item Cryptographic libraries (dependencies) are updated.
771 Trivial small fix in default niceness level of @command{nncp-file}
772 and @command{nncp-freq} commands.
780 Small fix in @command{nncp-call}, @command{nncp-caller},
781 @command{nncp-daemon}: they can segmentation fail sometimes (no data is
785 @command{nncp-newnode} renamed to @command{nncp-newcfg} -- it is shorter
786 and more convenient to use.
789 @command{nncp-mincfg} command appeared: helper allowing to create
790 minimalistic stripped down configuration file without private keys, that
791 is useful during @command{nncp-xfer} usage.
798 @item Fixed compatibility with Go 1.6.
806 @strong{Incompatible} packet's format change (magic number is changed
807 too): size field is encrypted and is not send in plaintext anymore.
810 @option{-minsize} option gives ability to automatically pad outgoing
811 packets to specified minimal size.
814 @command{nncp-daemon} and @command{nncp-call}/@command{nncp-caller}
815 always check new @emph{tx} packets appearance in the background while
816 connected. Remote side is immediately notified.
819 @option{-onlinedeadline} option gives ability to configure timeout of
820 inactivity of online connection, when it could be disconnected. It could
821 be used to keep connection alive for a long time.
824 @option{-maxonlinetime} option gives ability to set maximal allowable
825 online connection aliveness time.
828 @command{nncp-caller} command appeared: cron-ed TCP daemon caller.
831 @command{nncp-pkt} command can decompress the data.