{"id":399,"date":"2017-05-02T11:37:04","date_gmt":"2017-05-02T10:37:04","guid":{"rendered":"http:\/\/www.igaware.com\/blog\/?p=399"},"modified":"2017-05-02T11:37:04","modified_gmt":"2017-05-02T10:37:04","slug":"igaware-version-13-2-11-1-released-igaware-linuxsbs","status":"publish","type":"post","link":"https:\/\/www.igaware.com\/blog\/igaware-version-13-2-11-1-released-igaware-linuxsbs\/","title":{"rendered":"Igaware Version 13.2.11-1 released #Igaware #linuxsbs"},"content":{"rendered":"<p>New in Version 13.2.11-1\u00a0 [ Mar 31 2017]<br \/>\n=======================================<\/p>\n<p>* New Features and Improvements *<\/p>\n<ul>\n<li>Updated the cryptography libraries ( openssl) to the lastest version for security reasons.<\/li>\n<li>Updated the Zarafa supporting libraries. This provides speed improvements.<\/li>\n<li>Added HTTP v2 support to the Apache web server. This provides bandwidth reduction and speed improvements.<\/li>\n<li>Improved the speed of the Apache web server. Moved the scoreboard file to shared memory.<\/li>\n<li>Added HTTP v2 support to the Apache web server.<\/li>\n<li>Updated Nmap to version 7.40. Nmap is a utility for network exploration and security auditing.<\/li>\n<li>The FTP server now has a built-in ls command. This allows directory listings for Shares.<\/li>\n<li>Updated the XML library (libxml2) to version 2.9.<\/li>\n<li>Updated NTFS related programs to the latest version. Mainly used for NTFS filesystem backups.<\/li>\n<li>Added the option &#8211; &#8220;Force use of high security SSL ciphers&#8221;\u00a0 &#8211; for the Zarafa (POP\/ IMAP) gateway.<\/li>\n<li>Disabled the &#8220;ADS Realm&#8221; field if the Igaware server is already provisioned as an Active Directory server.<\/li>\n<\/ul>\n<p>* Fixes *<\/p>\n<ul>\n<li>Squashed a bug with the new version of Zarafa. When sending to a mal-formed email address the bounce message would contain foreign characters for the failed recipient.<\/li>\n<li>SSL VPN. Fixed a typo in the config file.<\/li>\n<li>Added a one-off call to z-push-admin -a fixstate. This is to fix and\/or upgrade the z-push ( active-sync) profiles.<\/li>\n<li>Allow selected boxes to use an older version of PHP. This is until Horde is upgraded.<\/li>\n<li>Failed local email delivery will now be queued instead of being delivered to the users default mail folder.<\/li>\n<li>Set backend for z-push to BackendZarafa if Kopano is not being used.<\/li>\n<li>Fixed the firewall init&#8217; script for the fail2ban server.<\/li>\n<li>Fixed a bug with the Health status for the PPPOE network watchdog.<\/li>\n<li>Squashed a bug with the Letsencryt.org certificate renewal.<\/li>\n<\/ul>\n<p>New in Version 13.2.10-3\u00a0 [ Mar 22 2017]<br \/>\n========================================<\/p>\n<p>* New Features and Improvements *<\/p>\n<ul>\n<li>Fixed z-push ( active-sync) state data for 13.2.10-3<\/li>\n<li>Several features and fixes addedd for 13.2.10-2<\/li>\n<li>Updated the Linux kernel to version 4.4.36-64.<\/li>\n<li>Installed fail2ban to block remote access from persistent &#8220;script kiddies&#8221;.<\/li>\n<li>Updated the Zarafa system to the latest version of 7.2.5. This fixes a memory leak that slowed the server down over several weeks.<\/li>\n<li>Re-compiled Zarafa 7.2 with new Gsoap, tcmalloc and vmime libraries. This removes a memory leak.<\/li>\n<li>Major update for PHP software to v5.5 from v5.3<\/li>\n<li>Added &#8220;Don&#8217;t allow insecure plain-text login for POP or IMAP&#8221; option for Zarafa IMAP\/ POP.<\/li>\n<li>Added a &#8220;RELAY:&#8221; option to the &#8220;SMTP Relay&#8221; page for the user entered domain list. The &#8220;Relay&#8221; host will be able to relay through the mail server. This will never normally be required.<\/li>\n<li>Updated the tcpdump program ( network packet tracing) to the latest version.<\/li>\n<li>Updated the libpcap network libraries.<\/li>\n<li>Added a charset alias for glibc iconv. \/usr\/lib\/gconv\/gconv-modules &#8211; added &#8220;alias\u00a0\u00a0 KS_C_5601-1987\/\/EUC-KR\/\/&#8221;. This is to handle Korean character sets in MIME Email.<\/li>\n<li>Removed the libiconv libraries. Was causing confusion and is not required &#8211; support is in glibc.<\/li>\n<li>Recompiled all binaries relying on the old libiconv libraries &#8211; rsync, clamav, lm_sensors, Zarafa.<\/li>\n<li>Updated the hard disk untility program &#8211; hdparm &#8211; to the latest version.<\/li>\n<li>Re-compiled gperf-tools ( tcmalloc) to create new .la ( libtool linker) files. To reference new compiler libstd++ file location<\/li>\n<li>Added a &#8220;within subnet&#8221; sanity check to the WAN gateway address.<\/li>\n<li>Updated the &#8220;checkin&#8221; web page with the real hardware product data, up-time and RAM information.<\/li>\n<li>Updated the hardware sensors ( for temperature and fan speed). Installed IPMITOOLS for sensors.<\/li>\n<li>Updated Zarafa Search with a new configuration\u00a0 file.<\/li>\n<li>Modified &#8220;default email domain&#8221; in Email=&gt; General to include forwarded domains.<\/li>\n<li>Installed new self-signed SSL certificates for sendmail . You should use the letsencrypt certificates, if possible.<\/li>\n<li>Updated the FTP server software.<\/li>\n<li>Updated the IMAP\/POP email server software.<\/li>\n<li>Updated the Fing network scanning software to v3.0<\/li>\n<li>Update the Z-Push active-sync software to v2.3<\/li>\n<li>Updated the cifs-utils software used to mount remote SMB shares for backup.( mount.cifs)<\/li>\n<li>The incoming SMTP mail server now also listens on port 587.<\/li>\n<li>Updated the Nmap network scaning software to v7.<\/li>\n<li>Updated System_Daemon php scripts<\/li>\n<li>Changed default dhcp lease time to 3 days from 1 month<\/li>\n<li>Updated\u00a0 the DHCP server software to the latest version.<\/li>\n<li>Removed root user access for FTP server.<\/li>\n<\/ul>\n<p>* Fixes *<\/p>\n<ul>\n<li>Fixed ifup-aliases. Now ignores the main WAN ip and does not duplicate it.<\/li>\n<li>Fixed Zarafa for Korean charset display problem.<\/li>\n<li>Patched the GSOAP libraries with Zarafa patches ( memory leak) . Compiled as shared libraries. Looks like previously it was static.<\/li>\n<li>Fixed some console system status health scripts. Now stores time of last fail. Reboot status now shows all reboots in history.<\/li>\n<li>Brain-dead Zarafa servers issue a kill(0,) which sends a kill to all process group members. Kills init.d script and affects console_health. Added trap &#8221; SIGTERM to init.d script for Zarafa.<\/li>\n<li>Removed the loading of SIP VOIP helper modules on all machines. (rmmod sip helper modules in rsyncittemp)<\/li>\n<li>Fixed the email alias user list for file share access. For ADS users use the sAMAccountName as the key for write-read access list.<\/li>\n<li>Changed the sendmail MTA CA certificate bundle to ca-bundle ( STARTLS can now verify incoming SSL connections)<\/li>\n<li>NOTE: ASMedia Technology Inc. ASM1083\/1085 PCIe to PCI Bridge\u00a0 causes lost interrupt and poll mode for bad performance !!!<\/li>\n<li>Make sure that the Realtek r8168 driver is installed if the card is a 8168 chipset. The Linux default r8169 will not work at gigabit speeds !!<\/li>\n<li>DHCP server config &#8211; don&#8217;t allow &#8220;\/&#8221; in machine names.<\/li>\n<li>Fixed display issues with &#8220;Lan Devices&#8221; pages. Did not remember interfaces option and defaulted back to LAN if LAN2 was selected.<\/li>\n<li>Enabled LOOSE_PROVISIONING for Z-push ( active-sync). Android update requires it.<\/li>\n<li>Permissions and owner of mail spool file are now checked and set for users.<\/li>\n<li>Fixed a problem with Zarafa Out of Office.<\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>New in Version 13.2.11-1\u00a0 [ Mar 31 2017] ======================================= * New Features and Improvements * Updated the cryptography libraries ( openssl) to the lastest version for security reasons. Updated the Zarafa supporting libraries. This provides speed improvements. Added HTTP v2 &hellip; <a href=\"https:\/\/www.igaware.com\/blog\/igaware-version-13-2-11-1-released-igaware-linuxsbs\/\">Continue reading <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":3,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"spay_email":"","footnotes":"","jetpack_publicize_message":"","jetpack_is_tweetstorm":false},"categories":[4,13],"tags":[],"class_list":["post-399","post","type-post","status-publish","format-standard","hentry","category-linux-small-business-server","category-system-updates"],"jetpack_featured_media_url":"","jetpack_publicize_connections":[],"jetpack_shortlink":"https:\/\/wp.me\/p3QVqI-6r","_links":{"self":[{"href":"https:\/\/www.igaware.com\/blog\/wp-json\/wp\/v2\/posts\/399","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.igaware.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.igaware.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.igaware.com\/blog\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/www.igaware.com\/blog\/wp-json\/wp\/v2\/comments?post=399"}],"version-history":[{"count":1,"href":"https:\/\/www.igaware.com\/blog\/wp-json\/wp\/v2\/posts\/399\/revisions"}],"predecessor-version":[{"id":400,"href":"https:\/\/www.igaware.com\/blog\/wp-json\/wp\/v2\/posts\/399\/revisions\/400"}],"wp:attachment":[{"href":"https:\/\/www.igaware.com\/blog\/wp-json\/wp\/v2\/media?parent=399"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.igaware.com\/blog\/wp-json\/wp\/v2\/categories?post=399"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.igaware.com\/blog\/wp-json\/wp\/v2\/tags?post=399"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}