| Index | index by Group | index by Distribution | index by Vendor | index by creation date | index by Name | Mirrors | Help | Search |
| Name: NetworkManager-pppoe | Distribution: openSUSE Tumbleweed |
| Version: 1.58.1 | Vendor: openSUSE |
| Release: 1.1 | Build date: Thu Oct 1 11:39:37 2026 |
| Group: Productivity/Networking/System | Build host: reproducible |
| Size: 113104 | Source RPM: NetworkManager-1.58.1-1.1.src.rpm |
| Packager: https://bugs.opensuse.org | |
| Url: https://networkmanager.dev/ | |
| Summary: NetworkManager plugin for ADSL connections | |
NetworkManager plugin for ADSL connections. This package is needed to configure PPPoE interfaces
GPL-2.0-or-later AND LGPL-2.1-or-later
* Thu Oct 01 2026 Dominique Leuenberger <dimstar@opensuse.org>
- Disable 464XLAT Customer-side Translator (CLAT) support on %ix86:
+ Introduce bcond_with/withot bpf build condition, based on arch
+ Pass -Dclat=false to meson when bpf is disabled
+ Only conditionally BuildRequire libbpf and cross-bpf-gcc
* Wed Sep 30 2026 Dominique Leuenberger <dimstar@opensuse.org>
- Update version dependencies according to meson.build.
* Thu Sep 24 2026 Dominique Leuenberger <dimstar@opensuse.org>
- Update to version 1.58.1:
+ Overview of changes since NetworkManager-1.58.0:
- For private connections (the ones that specify a user in the
"connection.permissions" property), the 802.1X "ca-path" and
"phase2-ca-path" properties are no longer accepted and
activation fails, as the daemon would otherwise let the owner
of the profile choose the CA trust store used to validate the
authentication server. Such profiles must clear those
properties and use "ca-cert" or "system-ca-certs" instead.
- Fix IPv4 forwarding not enabled on modem data interfaces.
- Log a warning when ignoring DHCPv4 option 3 (Router) due to
the presence of option 121/249 (Classless Static Routes)
results in no gateway.
- Set the parent interface by name for NBFT VLAN connections in
the initrd generator to avoid race conditions at boot.
- Perform the connectivity check also when the interface only
has an IPv4 link-scope default route.
- Ignore unspecified addresses as DNS nameservers from RDNSS
and DHCPv6, and skip invalid nameservers when configuring
systemd-resolved.
- Fix auto-connect to SAE (WPA3) networks with key-mgmt=wpa-psk
profiles.
- Fix DNS server port number not forwarded to systemd-resolved
for DNS URIs.
- Fix normalization of Bluetooth NAP connections.
- Fix multiple crashes. NetworkManager-1.58
+ General:
- Unify the versioning to use everywhere the scheme with the
- rcX or -dev suffixes when appropriate. This affects, for
example, the URL and filename of the release tarball and the
version reported by nmcli and the daemon. As an exception,
the C API will continue to use the 90+ scheme for RC
versions.
- Install the systemd units in the initramfs using a systemd
generator.
+ Core:
- Connection profiles with manual IP addressing and with
gateways that are not directly reachable will generate a
warning on activation and when they are added/modified via
nmcli and nmtui. NetworkManager currently adds on-link routes
for them automatically, but this will change in the future.
To fix the warning, users should add addresses or routes
whose subnets cover these gateways. A gateway (either the
default gateway or the next-hop of a route) is considered
directly reachable if it falls within the subnet of a direct
route (a route without a next hop) or of a prefix route from
a static address.
- Use an internal implementation of the ping functionality when
the "connection.gateway-ping-timeout" or
"connection.ip-ping-addresses" properties are set, instead of
relying on the "ping" tool.
- Add support for CLAT (464XLAT) using a BPF program,
controlled by the "ipv4.clat" property. CLAT is still
disabled by default for now.
- Change the default value of the ipv4.dhcp-ipv6-only-preferred
property to a new value "auto" which automatically enables
the option when CLAT is enabled ("yes" or "auto") in the
connection profile.
- Allow persisting the managed state across reboots from the
D-Bus API and nmcli. time as a change to the managed state
from the D-Bus API and nmcli.
- IPv6 interfaces that receive PD via DHCPv6 are considered
healthy without a non-temporary address. The delegated prefix
can be used via an interface configured with "ipv6.method:
shared"
- Fix reapply not honoring the ipv6.ignore-auto-dns,
ipv6.ignore-auto-routes and ipv6.never-default properties
when DHCPv6 was not restarted (for example when the IPv6 DNS
came from a DHCPv6 lease), so that DHCPv6-provided DNS and
routes are now correctly suppressed on reapply without a
connection restart.
+ Connectivity:
- A new "check-connectivity" configuration option is available
to disable the connectivity check for selected interfaces.
- Restrict the connectivity check to use the DNS servers
defined on the same link. If the link has no DNS servers, the
connectivity check will use any servers available in the
system.
- Fix stale global connectivity state with connectivity
checking enabled: NetworkManager could report limited
connectivity while another device had full connectivity, or
keep reporting limited after a device regained internet
access.
+ DHCP:
- The internal DHCPv4 client now ignores option 3 (Router) if
the lease contains option 121 (Classless Static Route), as
recommended by RFC 3442.
- Fix an out-of-bounds read in the internal DHCPv4 client that
an on-link attacker could trigger with a malformed UDP
packet, crashing NetworkManager.
- Validate hostnames and MUD URLs before pasting them into the
dhclient configuration file, rejecting characters that could
alter the config syntax (CVE-2026-10805).
+ Wi-Fi:
- The "band" property of Wi-fi connections now accepts the
"6GHz" value.
- The powersave property now functions with the iwd backend.
- WIFI connections using wpa-psk respect the setting
connection.auth-retry and only prompt for new secrets during
the last authentication attempt before failing.
- Accept 64 hex-character PSK in WPS credentials which are
returned by some access points.
- When wpa_supplicant reports a WPA3-SAE password mismatch,
prompt the user for the password again instead of failing,
matching the WPA-PSK behavior.
+ Nmtui / nmcli:
- Show the Wi-Fi band of APs in the scan results from nmcli.
- New <Select...> button in nmtui that allows users to chose
from list of available devices when creating connection
profiles for physical interfaces (Ethernet, Wi-Fi, etc.).
- Allow configuring all bond options in nmtui by introducing a
"other options" field, which covers options not already
covered by a dedicated input field.
- Nmtui now offers a "Show password" checkbox in the dialog
that prompts for secrets when activating a connection,
matching the connection editor.
- The nmtui connection lists ("nmtui connect" and "nmtui edit")
support a vim-style "/" search that filters the list to
matching entries as you type.
- The "Activate a connection" screen in nmtui now has a "Rescan
Wi-Fi" button that scans for nearby Wi-Fi networks on demand.
- Nmtui can now share a Wi-Fi connection as a QR code via the
"Share QR..." button in the "Edit a connection" view,
mirroring "nmcli device wifi show-password".
- Nmcli "connection show" now labels the ports column "PORT"
instead of "SLAVE" (the "SLAVE" field name is still accepted
as an alias), and adds the BRIDGE.PORTS, TEAM.PORTS and
GENERAL.CONTROLLER-PATH fields.
- Nmtui now redraws its forms when the terminal is resized,
instead of leaving them off-center or clipped until the form
is reopened.
- Nmcli "device wifi show-password" no longer prints a QR code
when the Wi-Fi password cannot be read due to insufficient
privileges; it prints a warning instead.
+ VPN:
- Introduce a libnm function that can be used by VPN plugins to
check user permissions on certificate and keys.
- Fix VPN connections with "ipv4.dns-search" or
"ipv6.dns-search" set ignoring the search domains pushed by
the VPN; the manually configured and VPN-provided search
domains are now merged.
+ Security:
- For private connections (the ones that specify a user in the
"connection.permissions" property), verify that the user can
access the 802.1X certificates and keys set in the
connection.
- Add a "polkit_noauth_group" build option to install a polkit
rule that lets admin users in the given group (typically
"sudo" or "wheel") make system-wide connection changes from a
local console without entering a password. It is empty
(disabled) by default and is discouraged.
+ Deprecations and removals:
- The support for Wireless Extensions is deprecated and will be
removed in a future release. Wireless Extensions are now
disabled by default.
- Remove the modify_system build option that allowed setting up
the polkit permissions to allow non-admin users to create
system-wide connection. That configuration is discouraged
because it can be used to bypass filesystem permissions.
- Drop support for dhclient as a DHCP backend, which has been
deprecated since NetworkManager-1.50.
- Fix a bug that makes broadband connections auto-connect
getting blocked if the connection tries to reconnect when
modem status is
- Drop 2308.patch: fixed upstream.
- Drop 2312.patch: fixed upstream.
- Drop 2462.patch: fixed upstream.
- Drop NetworkManager-CVE-2026-19685.patch: fixed upstream.
- Drop NetworkManager-CVE-2026-10805.patch: fixed upstream.
- Rebase nm-add-CAP_SYS_ADMIN-permission.patch.
- Drop -Ddhclient=%{_sbindir}/dhclient meson parameter: dhclient
has been deprecated since NM 1.50. Use internal dhcp client.
- Add pkgconfig(libbpf), cross-bpf-gcc16, and bpftool
BuildRequires: new depencencies for CLAT (Customer-side
translator) support.
* Wed Sep 02 2026 Jonathan Kang <songchuan.kang@suse.com>
- Add NetworkManager-CVE-2026-10805.patch: dhclient: reject unsafe
characters in URLs and hostnames (bsc#1267696, CVE-2026-10805,
glfd#NetworkManager/NetworkManager!2426).
- Add NetworkManager-CVE-2026-19685.patch: core: 802.1x: reject
ca-path for private connections (bsc#1276764, CVE-2026-19685,
glfd#NetworkManager/NetworkManager!2513).
* Tue Jul 28 2026 Jonathan Kang <songchuan.kang@suse.com>
- Add 2462.patch: nm-initrd-generator: set parent for NBFT
vlan connection
(bsc#1259025, glfd#NetworkManager/NetworkManager!2462).
- Add NetworkManager-initrd-generator-ip-hcn.patch: handle "ip=hcn"
option in nm-initrd-generator, it generates an empty connection
(PED-14534).
* Tue Jun 30 2026 Jonathan Kang <songchuan.kang@suse.com>
- Modify nfs: Exit gracefully if /etc/fstab is missing
(bsc#1185815).
* Tue Jun 16 2026 Bjørn Lie <bjorn.lie@gmail.com>
- Drop initrd specific services, following debians workaround.
* Sun May 17 2026 Bjørn Lie <bjorn.lie@gmail.com>
- Update to version 1.56.1:
+ Add support for GENEVE interface.
+ Allow persisting the managed state across reboots from nmcli
and the D-Bus API.
+ Allow changing the device's administrative state in the kernel
at the same time as a change to the managed state from nmcli
and the D-Bus API.
* Mon Apr 27 2026 Jan Fooken <jan.fooken@suse.com>
- Backport upstream fix for bsc#1246627 to enable and respect the
connection.auth-retry option for WPA-PSK secured connections:
* Add patch 2308.patch from
https://gitlab.freedesktop.org/NetworkManager/NetworkManager/-/merge_requests/2308
* Mon Mar 23 2026 Dominique Leuenberger <dimstar@opensuse.org>
- Migrate to xz compression and manual service run
* Wed Mar 04 2026 Bjørn Lie <bjorn.lie@gmail.com>
- Update to version 1.56.0:
+ Unify the versioning to use everywhere the scheme with the -rcX
or -dev suffixes when appropriate. This affects, for example,
the URL and filename of the release tarball and the version
reported by nmcli and the daemon. As an exception, the C API
will continue to use the 90+ scheme for RC versions.
+ nmcli now supports viewing and managing WireGuard peers.
+ Support reapplying the "sriov.vfs" property as long as
"sriov.total-vfs" is not changed.
+ Support reapplying "bond-port.vlans".
+ Accept hostnames longer than 64 characters from DNS lookup.
+ Make that global-dns configuration overwrites DNS searches and
options from connections, instead of merging all together.
+ Add support for a new rd.net.dhcp.client-id option in
nm-initrd-generator.
+ Add gsm device-uid setting to restrict the devices the
connection applies to.
+ Support configuring the HSR protocol version via the
"hsr.protocol-version" property.
+ Fix a bug that makes broadband connections auto-connect getting
blocked if the connection tries to reconnect when modem status
is "disconnecting" / "disconnected".
+ Treat modem connection not having an operator code available as
a recoverable error.
+ Add support for configuring systemd-resolved's DNSSEC option
per-connection via the "connection.dnssec" connection property.
+ Support configuring the HSR interlink port via the
"hsr.interlink" property.
+ Fix some connection properties not being applied to vpn
connections (connection.mdns, connection.llmnr,
connection.dns-over-tls, connection.mptcp-flags,
ipv6.ip6-privacy)
+ Update n-acd to always compile with eBPF enabled, as support
for eBPF is now detected at run time.
+ Add new MPTCP 'laminar' endpoint type, and set it by default
alongside the 'subflow' one.
+ For private connections (the ones that specify a user in the
"connection.permissions" property), verify that the user can
access the 802.1X certificates and keys set in the connection.
+ Introduce a libnm function that can be used by VPN plugins to
check user permissions on certificate and keys.
* Wed Dec 31 2025 Jonathan Kang <songchuan.kang@suse.com>
- Use tmpfiles to create /var/lib/NetworkManager/ (PED-14769).
* Mon Dec 29 2025 Dominique Leuenberger <dimstar@opensuse.org>
- Update to version 1.56 RC2:
+ For private connections (the ones that specify a user in the
"connection.permissions" property), verify that the user can
access the 802.1X certificates and keys set in the connection
+ Introduce a libnm function that can be used by VPN plugins to
check user permissions on certificate and keys.
+ Add new MPTCP 'laminar' endpoint type, and set it by default
alongside the 'subflow' one.
* Mon Dec 29 2025 Bjørn Lie <bjorn.lie@gmail.com>
- Update to version 1.56 RC1:
+ nmcli now supports viewing and managing WireGuard peers.
+ Support reapplying the "sriov.vfs" property as long as
"sriov.total-vfs" is not changed.
+ Support reapplying "bond-port.vlans".
+ Accept hostnames longer than 64 characters from DNS lookup.
+ Make that global-dns configuration overwrites DNS searches and
options from connections, instead of merging all together.
+ Add support for a new rd.net.dhcp.client-id option in
nm-initrd-generator.
+ Add gsm device-uid setting to restrict the devices the
connection applies to.
+ Support configuring the HSR protocol version via the
"hsr.protocol-version" property.
+ Fix a bug that makes broadband connections auto-connect getting
blocked if the connection tries to reconnect when modem status
is "disconnecting" / "disconnected".
+ Treat modem connection not having an operator code available
as a recoverable error.
+ Add support for configuring systemd-resolved's DNSSEC option
per-connection via the "connection.dnssec" connection property.
+ Support configuring the HSR interlink port via the
"hsr.interlink" property.
+ Fix some connection properties not being applied to vpn
connections (connection.mdns, connection.llmnr,
connection.dns-over-tls, connection.mptcp-flags,
ipv6.ip6-privacy)
+ Update n-acd to always compile with eBPF enabled, as support
for eBPF is now detected at run time.
- Drop 2298.patch: Fixed/applied upstream.
- Rebase patches with quilt.
* Mon Dec 29 2025 Dominique Leuenberger <dimstar@opensuse.org>
- Update to version 1.54.3:
+ For private connections (the ones that specify a user in the
"connection.permissions" property), verify that the user can
access the 802.1X certificates and keys set in the connection.
+ Introduce a libnm function that can be used by VPN plugins to
check user permissions on certificate and keys.
- Changes from version 1.54.2:
+ Support reapplying the "sriov.vfs" property as long as
"sriov.total-vfs" is not changed.
+ Support configuring the HSR protocol version via the
"hsr.protocol-version" property.
+ Support configuring the HSR interlink port via the
"hsr.interlink" property.
- Rebase 2298.patch
* Tue Nov 25 2025 Antonio Feijoo <antonio.feijoo@suse.com>
- Add patch 2312.patch to fix upstream issue
https://gitlab.freedesktop.org/NetworkManager/NetworkManager/-/issues/1814,
already fixed upstream for the next release via
https://gitlab.freedesktop.org/NetworkManager/NetworkManager/-/merge_requests/2312
* Fri Oct 31 2025 Johannes Segitz <jsegitz@suse.com>
- Add patch 2298.patch to fix issue with SELinux labeling. Is already
upstream via
https://gitlab.freedesktop.org/NetworkManager/NetworkManager/-/merge_requests/2298
and can be removed next release (bsc#1248136)
* Sat Sep 27 2025 Dominique Leuenberger <dimstar@opensuse.org>
- Update to version 1.55.4:
+ Support reapplying the "sriov.vfs" property as long as
"sriov.total-vfs" is not changed.
* Sat Sep 27 2025 Dominique Leuenberger <dimstar@opensuse.org>
- Update to version 1.55.3:
+ This is a snapshot of NetworkManager development. The API is
subject to change and not guaranteed to be compatible with
the later release.
+ nmcli now supports viewing and managing WireGuard peers.
* Sat Sep 27 2025 Bjørn Lie <bjorn.lie@gmail.com>
- Update to version 1.54.1:
+ Make that global-dns configuration overwrites DNS searches and
options from connections, instead of merging all together.
+ Add support for a new rd.net.dhcp.client-id option in
nm-initrd-generator.
+ Minor bug fixes.
* Mon Sep 22 2025 Jonathan Kang <songchuan.kang@suse.com>
- Move dispatcher.d/pre-up.d/90-nm-cloud-setup.sh to cloud-setup
subpackage(bsc#1250086).
* Thu Aug 07 2025 Bjørn Lie <bjorn.lie@gmail.com>
- Update to version 1.54.0:
+ Add support for configuring per-device IPv4 forwarding via the
"ipv4.forwarding" connection property.
+ Add a new "prefix-delegation" setting containing a "subnet-id"
property that specifies the subnet to choose on the downstream
interface when using IPv6 prefix delegation.
+ Support OCI baremetal in nm-cloud-setup
+ When activating a WireGuard connection to an IPv6 endpoint, now
NetworkManager creates firewall rules to ensure that the
incoming packets are not dropped by kernel reverse path
filtering.
+ Add support for configuring the loopback interface in nmtui.
+ Most of the properties of ovs-bridge and ovs-port connections
can now be reapplied at runtime without bringing the connection
down.
+ Add a new "sriov.preserve-on-down" property that controls
whether NetworkManager preserves the SR-IOV parameters set on
the device when the connection is deactivated, or whether it
resets them to their default value.
+ Introduce a new "ovs-dpdk.lsc-interrupt" property to configure
the Link State Change (LSC) detection mode for OVS DPDK
interfaces.
+ The initrd-generator now can parse the NVMe Boot Firmware Table
(NBFT) to configure networking during early boot.
+ Add systemd services to provide networking in the initrd.
- Drop 2069.patch: Fixed in an alternative way upstream.
- Drop NetworkManager-accept-localhost-if-static.patch:
Fixed upstream.
- Rebase patches with quilt.
- Add pkgconfig(libnvme) BuildRequires: New dependency.
* Thu Aug 07 2025 Bjørn Lie <bjorn.lie@gmail.com>
- Update to version 1.52.1:
+ Fail early if we cannot get current FEC (Forward Error
Correction) value.
+ Allow reapplying ovs-bridge and ovs-port properties.
+ When activating a WireGuard connection to an IPv6 endpoint, now
NetworkManager creates firewall rules to ensure that the
incoming packets are not dropped by kernel reverse path
filtering.
* Thu Jun 12 2025 Jonathan Kang <songchuan.kang@suse.com>
- Add NetworkManager-accept-localhost-if-static.patch:
policy: accept localhost hostnames if static
(bsc#1257366, glfd#NetworkManager/NetworkManager/commit/152d71a1).
* Wed Jun 11 2025 Thomas Blume <thomas.blume@suse.com>
- document static ip setup on boot (bsc#1244072)
add 0001-man-document-static-ip-setup-differences-to-dracut-n.patch
* Mon May 26 2025 Callum Farmer <gmbr3@opensuse.org>
- Stop relying on the UsrMerge symlinks and ensure we look directly
in /usr:
+ Use _firmwaredir for kernel_firmware_dir
+ Use /usr/sbin/modprobe (was /sbin/modprobe)
* Wed Apr 09 2025 Jonathan Kang <songchuan.kang@suse.com>
- Remove '-Dhostname_persist=suse' compile option, as it's not
needed anymore. The behaviours of this option are mainly:
1. stores hostname in /etc/HOSTNAME instead of /etc/hostname.
2. checks DHCLIENT_SET_HOSTNAME value in /etc/sysconfig/netowrk/dhcp
to know whether the hostname is valid.
These are not desired haviours anymore.
* Tue Mar 11 2025 Dominique Leuenberger <dimstar@opensuse.org>
- Add 2069.patch: Fix build against girepository-2.0 (pygobject
3.52).
* Fri Feb 28 2025 Bjørn Lie <bjorn.lie@gmail.com>
- Update to version 1.52.0:
+ Store interactive history in `$XDG_CACHE_HOME/nmcli-history`
instead of `~/.nmcli-history`
+ Add new ipv4.link-local=fallback to set an IPv4 link-local
address when no other IPv4 is set.
+ Remove support for building with Autotools
+ Add IPVLAN interface support
+ Allow to manually configure the authentication of LTE's initial
EPS Bearer.
+ Add support for the "IPv6-only preferred" DHCPv4 option (RFC
8925), used to indicate that a host supports an IPv6-only mode
and is willing to forgo obtaining an IPv4 address if the
network provides IPv6 connectivity.
+ Support automatically adding routes to DNS servers via the
ipv4.routed-dns and ipv6.routed-dns properties; when enabled,
each name server is reached only via the device that specifies
it.
+ Support OCI in nm-cloud-setup
+ Added support for ethtool FEC mode
+ Add new ipv4.shared-dhcp-range and ipv4.shared-dhcp-lease-time,
which allows you to customize the DHCP range and lease time
offered by DHCP server in `shared` connection method.
+ DNS servers can now be specified with a URI-like syntax which
supports DNS over TLS name servers.
+ The initrd-generator understands the "rd.net.dns" option to
configure global name servers.
+ Drop support for the "dhcpcanon" DHCP client.
+ global-dns configuration section now has 2 additional keys:
"resolve-mode" and "certification-authority".
+ Dnsconfd plugin can now be used for configuration of
system-wide DNS caching resolver. If dnsconfd plugin is enabled
and ipvX.routed-dns is set to -1 then adding routes is by
default enabled.
+ Add "shared" method to the IPv6 configuration options in nmtui.
+ Fix a bug that prevented the activation of bond and bridge's
ports in some cases.
+ Fix a bug that prevented the activation of OVS interfaces in
some cases.
+ Fix MTPCP endpoint creation for IPv4 with DAD and IPv6
tentative addresses.
+ Fix some VPN routes not being added to the table specified in
ipv4/6.routing-table. This fix allow to use policy routing to
mitigate Tunnelvision attacks.
- Stop passing dhcpcanon=no to meson setup, no longer recognized,
nor needed.
* Fri Feb 28 2025 Bjørn Lie <bjorn.lie@gmail.com>
- Update to version 1.50.3:
+ Wait configuring MPTCP endpoints until DAD has completed.
+ Properly autoconnect OVS ports at boot.
+ Allow configuring "shared" IPv6 method in nmtui.
- Changes from version 1.50.2:
+ Fix potential crash when the property "ipv4.dhcp-send-release"
is enabled.
+ Support routing rules for VPN connections.
+ Place the route to the VPN gateway into the table defined by
the "ipv{4,6}.route-table" properties-
+ Fix error handling rp_filter when kernel don't support MPTCP.
+ Fix configuration of VLAN QoS mappings.
- Changes from version 1.50.1:
+ nmcli: fix handling of connection.down-on-poweroff property
+ sriov: only validate sriov capacity when enabled
+ wwan: fix crash with IPv4 and method=auto
+ dns: fix deleting internal global DNS configuration
+ wifi: fix list corruption when scanning with explicit SSID
+ bonding: steer IGMP queries to the active bond balance-slb
primary port
+ Remove routes added by NM on reapply
+ Never retry ACD on NOARP interfaces
+ Support IPv6 EUI64 link-local address for ipv6 tunnels
* Thu Jan 23 2025 Jonathan Kang <songchuan.kang@suse.com>
- Add config-server subpackage (bsc#1224868).
* Thu Oct 03 2024 Bjørn Lie <bjorn.lie@gmail.com>
- Update to version 1.50.0:
+ The support for "dhclient" has been deprecated, not built
unless explicitely enabled, and will be removed in a future
release. The internal DHCP client should be used instead and
has been the default since version 1.20 (1.12 when built with
meson).
+ Support matching a OVS system interface by MAC address.
+ Add a timeout option to connectivity checking.
+ Support configuring veth interfaces in nmtui.
+ When looking up the system hostname from the reverse DNS lookup
of addresses configured on interfaces, NetworkManager now takes
into account the content of /etc/hosts.
+ Revert to using sysctl ipv6.conf.default for ip6-privacy.
+ Allow specifying a system OVS interface by MAC address.
+ ndisc: Support multiple gateways for a single network.
+ wifi: Support configuring channel-width in AP mode.
+ keyfile: Stop writing offensive terms into keyfiles.
+ Support reapplying the VLANs on bridge ports.
+ Fix crash caused by malformed LLDP package if debug log is
enabled.
+ Retry hostname resolution when it fails.
- Drop NetworkManager-dont-enforce-ip-cleanup-on-device-deactivating.patch:
Fixed upstream.
- Rebase patches with quilt.
* Mon Aug 26 2024 Bjørn Lie <bjorn.lie@gmail.com>
- Update to version 1.48.10:
+ nmcli/edit: fix memory leak in extract_setting_and_property
+ autotools: fix another filename that was renamed
+ gitlab: fix helper scripts to support DNF5
+ CI: update the imported templates_sha
+ autotools: fix filename that was renamed
+ format: run nm-code-format
+ policy: retry hostname resolution when it fails
+ platform: add small backoff time before resync
+ bridge: reapply port VLANs only when necessary
+ platform: add nmp_utils_bridge_normalized_vlans_equal()
+ platform: support reading bridge VLANs
+ device: support reapplying bridge-port VLANs
+ bridge: change the signature for
nm_platform_link_set_bridge_vlans()
+ platform: add define for IFLA_BOND_SLAVE_PRIO
+ lldp: fix multiple access to argument in logging macro
+ lldp: fix crash dereferencing NULL pointer during debug logging
+ policy: unblock the autoconnect for children when parent is
available
* Thu Aug 22 2024 Jonathan Kang <songchuan.kang@suse.com>
- Add NetworkManager-dont-enforce-ip-cleanup-on-device-deactivating.patch:
device: don't enforce IP cleanup on deactivating state
(bsc#1228154, glfd#NetworkManager/NetworkManager!2016).
* Fri Aug 09 2024 Bjørn Lie <bjorn.lie@gmail.com>
- Update to version 1.48.8:
+ ovs: fix triggering stage3 activation without DHCP client
initialized
+ config: parse autoconnect-ports value on config
+ ndisc: preserve router preferences
* Mon Jul 29 2024 Jonathan Kang <songchuan.kang@suse.com>
- Add NetworkManager-dont-renew-bridge-dhcp-if-no-mac-on-wakeup.patch:
manager: don't renew dhcp lease when software devices' MAC is empty
(bsc#1225498, glfd#NetworkManager/NetworkManager#1587).
* Fri Jul 26 2024 Bjørn Lie <bjorn.lie@gmail.com>
- Update to version 1.48.6:
+ activation: Allow changing controller of exposed active
connection
+ ovs: wait for the link to be ready before activating
+ policy: assert that the auto-activate list is empty on dispose
* Fri Jul 05 2024 Bjørn Lie <bjorn.lie@gmail.com>
- Update to version 1.48.4:
+ Support matching a OVS system interface by MAC address.
+ When looking up the system hostname from the reverse DNS lookup
of addresses configured on interfaces, NetworkManager now takes
into account the content of /etc/hosts.
* Mon Jun 24 2024 Dominique Leuenberger <dimstar@opensuse.org>
- Update to version 1.48.2:
+ Support matching a OVS system interface by MAC address.
+ Fix port reactivation when the controller is reactivating.
+ Save connection timestamps when shutting down, so that the
right connection autoactivates after restart.
+ Fix handling of VPN secrets for 2-factor authentication.
* Wed Jun 05 2024 Dominique Leuenberger <dimstar@opensuse.org>
- Update to version 1.48.0:
+ Building with autotools is now deprecated and will be
completely removed in the next development cycle.
+ Support changing the OpenSSL ciphers for 802.1X authentication
via connection property "802-1x.openssl-ciphers".
+ The reason why a device is unmanaged is now properly set in the
"StateReason" property of the "Device" D-Bus object. The
property is visible in nmcli via "nmcli -f all device show
$DEV".
+ Deprecated 802-11-wireless and 802-11-wired property
'mac-address-blacklist' and introduced the
'mac-address-denylist' property.
+ Properly restore in-memory connection profiles during the
rollback of a checkpoint.
+ Fix detection of 6 GHz band capability for WiFi devices.
+ Allow IPv6 SLAAC and static IPv6 DNS server assignment for
modem broadband when IPv6 device address was not explicitly
passed on by ModemManager.
+ Fix a performance issue that was leading to 100% CPU usage by
NetworkManager if external programs were doing a big amount of
routes updates.
+ Patch-level development releases (i.e. 1.48.1-dev) won't be
used anymore.
- Changes from version 1.46
+ Support dynamic value "${NETWORK_SSID}" for
connection.stable-id to generate the stable ID based on the
Wi-Fi's SSID.
+ Support new value "wifi.cloned-mac-address=stable-ssid" for
randomizing the MAC address based on the Wi-Fi network.
+ Change internal ABI of NMSetting types and NMSimpleConnection.
+ Honor udev property ID_NET_AUTO_LINK_LOCAL_ONLY=1 for enabling
link local addresses on default wired connection.
+ Honor udev property ID_NET_MANAGED_BY to only manage an
interface when set to "org.freedesktop.NetworkManager".
+ D-Bus methods StartFind() and StopFind() on interface
"org.freedesktop.NetworkManager.Device.WifiP2P" now require the
"org.freedesktop.NetworkManager.wifi.scan" Polkit permission.
+ Drop build support with Python2. Python3 is now required.
+ nmcli: limit number of printed addresses/routes in `nmcli`
overview to 10.
+ Limit number of exported IP addresses/routes on D-Bus to 100 to
reduce performance cost. Also, D-Bus updates for
addresses/routes are now rate limited to 3 per second.
+ cloud-setup: enable more sandboxing options in systemd service
file.
+ nmcli: show WiFi bandwidth.
+ Internal improvements and bugfixes.
+ Man page now show the format and accepted values of all
properties.
+ Added the 'dns-change' dispatcher event.
+ Show WiFi devices capability to work on the 6GHz band.
+ Allow to set dhcp-client-id to none.
+ Support configuring ethtool channels property to configure NIC
multiqueue.
+ Don't attempt to use IPv6 if it's disabled in kernel.
+ Fix handling of OVS interfaces with netdev datapath and cloned
MAC.
+ Support for old systemd has been droped, at least systemd v200
is required.
+ Support Ethtool EEE (Energy Efficient Ethernet) settings.
+ Add options to prevent edns0 and trust-ad being automatically
added to DNS configuration.
+ Implement fwmark property for IP tunnels.
+ Add support to HSR/PRP interfaces.
+ Deprecated connection.* properties master, slave-type,
autoconnect-slaves
+ Allow configuring static routes also when addresses is empty.
+ VPN: accept pref-src for IPv6 routes from VPN plugins.
+ nmcli: show global metered state.
+ Support modifying the DSCP header field for DHCP packets, and
change the default to CS0.
+ Enable IPv4 DAD (Duplicate Address Detection) by default.
+ vpn: support 2FA authentication from VPN plugins.
+ nmtui: allow adding a bond as bridge port.
+ sriov: add support to configure the NIC's eswitch settings via
Devlink.
+ ndisc: fix IPv6 address lifetimes computation.
+ Support the MACsec offload mode.
+ Support creating generic devices via external "device-handler"
dispatcher.
+ Documentation improvements.
+ Many internal improvements and bug fixes.
- Drop nm-runstatedir.patch: no longer needed.
* Thu May 09 2024 Jonathan Kang <songchuan.kang@suse.com>
- Don't recommend ModemManager for the main package, as it's only
needed by NetworkManager-wwan subpackage(bsc#1100395).
* Fri Apr 19 2024 Dominique Leuenberger <dimstar@opensuse.org>
- Update to version 1.44.4:
+ Add the 'dns-change' dispatcher event.
+ Various fixed related to IPv4 duplicate address detection.
+ Fix support for OVS netdev datapath
+ Fix handling of IPv6 hop limit
* Sun Dec 03 2023 Yifan Jiang <yfjiang@suse.com>
- Add python3.6-in-sle.patch: SLE still takes python 3.6 as primary
system, the patch allows meson to find python 3.6 in SLE.
* Tue Nov 28 2023 Dominique Leuenberger <dimstar@opensuse.org>
- Use %patch -p N instead of deprecated %patchN.
* Tue Oct 03 2023 Bjørn Lie <bjorn.lie@gmail.com>
- Update to version 1.44.2:
+ Better log IPv4 Address Conflict Detection (ACD) conflicts
+ Remove the upper limit of 65535 for PIDs read from the PID file
+ Allow missing default gateway with oFono
+ Honor the CLICOLOR_FORCE environment variable
+ Fix generating connection with IPv6 method disabled vs ignored
+ Fix possible segmentation fault when doing a checkpoint
rollback
+ Documentation improvements
- Switch to source services, use explicit released tag.
* Wed Aug 09 2023 Bjørn Lie <bjorn.lie@gmail.com>
- Update to version 1.44.0:
+ Introduce a new "link" setting that holds properties related to
the kernel link such as "tx-queue-length", "gso-max-size",
"gso-max-segments", "gro-max-size".
+ Support sending a DHCPv6 prefix delegation hint via the
"ipv6.dhcp-pd-hint" connection property.
+ Support new bond options: "arp_missed_max", "lacp_active",
"ns_ip6_target".
+ Add new "initial-eps-bearer-configure" and
"initial-eps-bearer-apn" properties in the GSM setting.
+ Setting "connection.stable-id=default${CONNECTION}" changed
behavior to be identical to the built-in default value when the
stable-id is not set.
+ Add a "[keyfile].rename" option to NetworkManager.conf to force
renaming profiles on disk when their name changes.
+ The ifcfg-rh plugin is deprecated; it will only receive
bugfixes and no new features. A warning is emitted the log when
a connection in ifcfg-rh format is found.
+ To automatically migrate existing ifcfg-rh connections to the
keyfile format, a new configuration option
"main.migrate-ifcfg-rh" is provided. Migration is disabled by
default, but the default value can be changed at build time via
"--with-config-migrate-ifcfg-rh-default=yes".
+ When configuring hostnames in non-public TLD (like
"example.local"), use the TLD as default search domain instead
of the full hostname.
+ Always apply DNS options from the [global-dns] configuration
section
+ The NetworkManager daemon now acquires the D-Bus name only
after populating the D-Bus tree. This can add a delay during
startup but it is required to avoid race conditions with other
services depending on NM.
+ Add a "version-id" argument to the Update2() D-Bus call to
guard against concurrent modifications of profiles.
+ Don't use tentative IPv6 addresses to resolve the system
hostname via DNS.
+ Track the number of autoconnect retries left for each device
and connection. Previously it was tracked only per connection
and this lead to unexpected behaviors in case of multiconnect
profiles.
+ Set VLAN filtering options on bridge via netlink instead of
sysfs.
+ nm-cloud-setup now supports IMDSv2 on Amazon EC2.
+ nmtui now allows to enable or disable Wi-Fi and WWAN radios.
+ Honor ignore-carrier=no for bond/bridge/team devices.
+ Add version mismatch warning when running nmcli commands.
- Rebase patches with quilt.
* Thu Jun 29 2023 Bjørn Lie <bjorn.lie@gmail.com>
- Update to version 1.42.8:
+ Add support for ppp 2.5.0.
+ Fix nft rules for balance-slb bonding.
+ Support port priority for bonding.
+ Fix regression handling the PKEY_ID for infiniband profiles in
ifcfg-rh format.
+ Fix race in nm-cloud-setup that caused partial configuration
and loss of connectivity with multiple interfaces.
+ Don't touch "net.ipv6.conf.$IFACE.forwarding" unless explicitly
required for IPv6 sharing.
+ Various bugfixes related to team, Wi-Fi P2P, IPv6LL.
+ Automatically unblock autoconnect of profiles during reapply.
* Wed May 31 2023 Luciano Santos <luc14n0@opensuse.org>
- Update https://www.gnome.org/projects/NetworkManager/ URL tag to
NM's newest home page: https://networkmanager.dev/, and main
package summary to: standard Linux network configuration tool
suite.
* Sat May 13 2023 Callum Farmer <gmbr3@opensuse.org>
- Add nm-runstatedir.patch: to correct rundir from /var/run to /run
for systemd FHS compatibility
* Thu Apr 20 2023 Bjørn Lie <bjorn.lie@gmail.com>
- Update to version 1.42.6:
+ Emit the dhcp-change dispatcher event also after a lease
renewal.
+ Fix assertion failure on DHCP renewal.
+ Add support for EC2 IMDSv2 in nm-cloud-setup.
+ Allow setting tunnel flags for ip6gre & ip6gretap connection
profiles.
+ Improve the Wi-Fi hotspot functionality.
+ Fix setting the Wi-Fi roaming policy based on the number of
seen BSSIDs.
+ Support the "no-aaaa" resolv.conf option.
+ Some oFono fixes.
* Thu Mar 09 2023 Bjørn Lie <bjorn.lie@gmail.com>
- Update to version 1.42.4:
+ Fix a possible crash when [global-dns] is used and improve the
documentation.
+ Documentation improvements.
* Mon Mar 06 2023 Jonathan Kang <songchuan.kang@suse.com>
- Changes from version 1.38.6 (bsc#1208631):
+ Fix honoring DNS priority.
+ Decline DHCPv6 lease when DAD fails.
+ Various bugfixes.
* Thu Feb 23 2023 Bjørn Lie <bjorn.lie@gmail.com>
- Update to version 1.42.2:
+ Add build option to set the mobile-broadband-provider-info
database path.
+ Add new "ipv[46].replace-local-rule" setting to control whether
to remove the local route rule that is automatically generated.
+ Add the DHCPv6 IAID to the lease information exposed in /run
and on D-Bus.
+ Fix assuming team connections at boot.
+ Fix race condition when setting the MAC address of an OVS
interface.
+ Fix constructing the IPv4 name servers variable passed to
dispatcher scripts.
+ Don't use tentative IPv6 address to resolve the system hostname
via DNS.
+ Deprecate the "Master" property of the NMActiveConnection D-Bus
object in favor of the new "Controller" property.
- Drop 1539.patch: Fixed upstream.
- Refresh patch with quilt:
+ 0001-Coerce-connectivity-LIMITED-to-NONE-when-device-is-d.patch
* Mon Feb 20 2023 Dominique Leuenberger <dimstar@opensuse.org>
- Add 1539.patch: Fix constructing the IPv4 nameserver variable
(boo#1208371).
* Mon Feb 13 2023 Bjørn Lie <bjorn.lie@gmail.com>
- Pass session_tracking=systemd and
session_tracking_consolekit=false to meson, no longer build
support for consolekit as session tracker.
* Fri Feb 10 2023 Bjørn Lie <bjorn.lie@gmail.com>
- Update to version 1.42.0:
+ Added support for source load balancing for Ethernet Bonds.
+ Allow specifying vhost name (SNI) for a manually DNS-over-TLS
server. Only works with systemd-resolved plugin.
+ Connections can now be activated on a loopback interface.
+ Added support of IPv4 ECMP routes. The ECMP routes will get
merged.
* Fri Jan 27 2023 Bjørn Lie <bjorn.lie@gmail.com>
- Update to version 1.40.12:
+ Make sure "external-ids" stays up to date in Open vSwitch
database on a connection reapply.
+ Retry if a netlink sockets runs out of buffer space before
we're able to read results of a link change.
+ Fix a possible race involving concurrent invocation of iptables
in IPv4 shared mode.
+ Other various fixes.
* Wed Jan 11 2023 Bjørn Lie <bjorn.lie@gmail.com>
- Update to version 1.40.10:
+ Fix the evaluation of the autoconnect retries.
+ nm-cloud-setup now preserves addresses added externally.
+ Ensure that dnsmasq is stopped after changing the dns backend
and restarting the service.
+ Fix honoring an explicit DHCPv6 DUID with dhclient.
+ Other various fixes.
/usr/lib64/NetworkManager/1.58.1/libnm-device-plugin-adsl.so /usr/lib64/NetworkManager/1.58.1/libnm-ppp-plugin.so /usr/lib64/pppd/2.5.2 /usr/lib64/pppd/2.5.2/nm-pppd-plugin.so
Generated by rpm2html 1.8.1
Fabrice Bellet, Sat Oct 3 23:49:12 2026