non-noisy when a race steals the message being considered.
JH/05 If main configuration option tls_certificate is unset, generate a
- selfsigned certificate for inbound TLS connections.
+ self-signed certificate for inbound TLS connections.
JH/06 Bug 165: hide more cases of password exposure - this time in expansions
in rewrites and routers.
JH/24 Bug 1832: Log EHLO response on getting conn-close response for HELO.
-JH/25 Decoding ACL controls is now done using a binary search; the sourcecode
+JH/25 Decoding ACL controls is now done using a binary search; the source code
takes up less space and should be simpler to maintain. Merge the ACL
condition decode tables also, with similar effect.
are not in the system include path.
JH/31 Fix longstanding bug with aborted TLS server connection handling. Under
- GnuTLS, when a sennsion startup failed (eg because the client disconnected)
+ GnuTLS, when a session startup failed (eg because the client disconnected)
Exim did stdio operations after fclose. This was exposed by a recent
change which nulled out the file handle after the fclose.
-
Exim version 4.87
N can be 224, 256 (default), 384, 512.
With GnuTLS 3.5.0 or later, only.
- 5. Facility for named queues: A commandline argument can specify
+ 5. Facility for named queues: A command-line argument can specify
the queue name for a queue operation, and an ACL modifier can set
the queue to be used for a message. A $queue_name variable gives
visibility.
banner immediately after the SYN,ACK segment rather then waiting for
another ACK - so saving up to one roundtrip time. Because it requires
previous communication with the peer (we save a cookie from it) this
- will only become active on frequently-contected destinations.
+ will only become active on frequently-contacted destinations.
Version 4.87
synonym of the latter). Add support in base64 for certificates.
8. New main configuration option "bounce_return_linesize_limit" to
- avoid oversize bodies in bounces. The dafault value matches RFC
+ avoid oversize bodies in bounces. The default value matches RFC
limits.
9. New $initial_cwd expansion variable.
5. Assorted options on malware= and spam= scanners.
- 6. A commandline option to write a comment into the logfile.
+ 6. A command-line option to write a comment into the logfile.
7. If built with EXPERIMENTAL_SOCKS feature enabled, the smtp transport can
be configured to make connections via socks5 proxies.
------------
1. If built with EXPERIMENTAL_DANE feature enabled, Exim will follow the
- DANE smtp draft to assess a secure chain of trust of the certificate
+ DANE SMTP draft to assess a secure chain of trust of the certificate
used to establish the TLS connection based on a TLSA record in the
domain of the sender.
16. New authenticated_sender logging option, adding to log field "A".
17. New expansion variables $router_name and $transport_name. Useful
- particularly for debug_print as -bt commandline option does not
+ particularly for debug_print as -bt command-line option does not
require privilege whereas -d does.
18. If built with EXPERIMENTAL_PRDR, per-recipient data responses per a
that might affect a running system.
+Exim version 4.88
+-----------------
+
+ * The "demime" ACL condition, deprecated for the past 10 years, has
+ now been removed.
+
+ * Old GnuTLS configuration options "gnutls_require_kx", "gnutls_require_mac",
+ and "gnutls_require_protocols" have now been removed. (Inoperative from
+ 4.80, per below; logging warnings since 4.83, again per below).
+
+
Exim version 4.83
-----------------