Added
-
Experimental: nebula clients can be configured to act as relays for other nebula clients.
Primarily useful when stubborn NATs make a direct tunnel impossible. (#678) -
Configuration option to report manually specified
ip:port
s to lighthouses. (#650) -
Windows arm64 build. (#638)
-
punchy
and mostlighthouse
config options now support hot reloading. (#649)
Changed
-
Build against go 1.18. (#656)
-
Promoted
routines
config from experimental to supported feature. (#702) -
Dependencies updated. (#664)
Fixed
-
Packets destined for the same host that sent it will be returned on MacOS.
This matches the default behavior of other operating systems. (#501) -
unsafe_route
configuration will no longer crash on Windows. (#648) -
A few panics that were introduced in 1.5.x. (#657, #658, #675)
Security
- You can set
listen.send_recv_error
to control the conditions in which
recv_error
messages are sent. Sending these messages can expose the fact
that Nebula is running on a host, but it speeds up re-handshaking. (#670)
Removed
x509
config stanza support has been removed. (#685)