xref: /freebsd/UPDATING (revision a6deeaa2fb3b28a61ae56a85f2275f67fcf23262)
1Updating Information for users of FreeBSD-CURRENT.
2
3This file is maintained and copyrighted by M. Warner Losh <imp@freebsd.org>.
4See end of file for further details.  For commonly done items, please see the
5COMMON ITEMS: section later in the file.  These instructions assume that you
6basically know what you are doing.  If not, then please consult the FreeBSD
7handbook:
8
9    https://docs.freebsd.org/en/books/handbook/cutting-edge/#makeworld
10
11Items affecting the ports and packages system can be found in
12/usr/ports/UPDATING.  Please read that file before updating system packages
13and/or ports.
14
15NOTE TO PEOPLE WHO THINK THAT FreeBSD 16.x IS SLOW:
16	FreeBSD 16.x has many debugging features turned on, in both the kernel
17	and userland.  These features attempt to detect incorrect use of
18	system primitives, and encourage loud failure through extra sanity
19	checking and fail stop semantics.  They also substantially impact
20	system performance.  If you want to do performance measurement,
21	benchmarking, and optimization, you'll want to turn them off.  This
22	includes various WITNESS- related kernel options, INVARIANTS, malloc
23	debugging flags in userland, and various verbose features in the
24	kernel.  Many developers choose to disable these features on build
25	machines to maximize performance.  (To completely disable malloc
26	debugging, define WITH_MALLOC_PRODUCTION in /etc/src.conf and rebuild
27	world, or to merely disable the most expensive debugging functionality
28	at runtime, run "ln -s 'abort:false,junk:false' /etc/malloc.conf".)
29
3020260919:
31	less(1) has been updated to version 710, which removes the obsolete
32	lesskey(1) utility.  It is no longer built or installed, and the
33	manual page describing the lesskey file format has moved from
34	lesskey(1) to lesskey(5).
35
36	No separate compilation step is needed any more: less(1) has been
37	able to read plain-text lesskey files directly since version 590,
38	imported into FreeBSD in 2021.  Keep your key bindings in the
39	plain-text ~/.lesskey (or the file named by $LESSKEYIN) rather than
40	compiling them into the binary ~/.less; system-wide bindings belong
41	in /etc/syslesskey (or $LESSKEYIN_SYSTEM) rather than /etc/sysless.
42	If both forms are present, the plain-text one is used and the binary
43	one is ignored.
44
45	Existing binary lesskey files are still read, so nothing stops
46	working immediately, but they can no longer be generated or
47	regenerated.  Binary files produced by lesskey from less 240 or
48	older are no longer supported at all and must be rewritten in the
49	plain-text format.
50
5120260916:
52	mfiutil(8)/mrsasutil(8) now display and parse the Exx:Syy drive
53	location notation using the controller's enclosure device ID (EID)
54	instead of its firmware-internal enclosure position index, aligning
55	with Broadcom's storcli/MegaCli tooling.  This changes the numeric
56	value of "xx" for enclosures where the two differ; scripts relying
57	on the previous numbering should be updated to use "show drives"
58	output or storcli's EID column.
59
6020260914:
61	The size of multiple embedded structs have changed and may lead to
62	problems (pci_error_handlers in pci_driver, dev_pm_info in struct device).
63	Bump __FreeBSD_version to 1600026 to allow these LinuxKPI changes to
64	be detcted.
65
6620260414:
67	sysrc(8) has been moved from the "bsdconfig" package to the "rc"
68	package and no longer depends on bsdconfig at runtime.  For pkgbase
69	users, sysrc is now part of set-minimal instead of set-optional.
70
7120260902:
72	struct if_rxd_info now carries a receive timestamp.  iflib drivers
73	must be rebuilt.  __FreeBSD_version has been bumped to 1600022.
74
7520260827:
76	<sys/videoio.h> now provides the V4L2 cropping, control menu and
77	overlay definitions.  __FreeBSD_version has been bumped to 1600021
78	for ports that need to detect them.
79
8020260826:
81	bhyve(8) users who explicitly set the eui64 option for an NVMe
82	device may need to update their configuration.  Due to an incorrect
83	byte-order conversion, bhyve previously presented manually
84	configured EUI-64 values to the guest with their bytes reversed.
85	To preserve the identifier previously visible to the guest,
86	byte-reverse the value in the eui64 option.  Automatically
87	generated EUI-64 values, used when the option is omitted,
88	are unaffected.
89
9020260814:
91	libusb version has been upgraded to 1.0.27 compatible version.
92	All of the missing parts have been implemented.
93
9420260812:
95	The new video(4) framework has landed. <sys/videoio.h> is now provided
96	as the API for communicating with it. __FreeBSD_version has been bumped
97	to 1600020 for ports that need to detect this changeover.
98
9920260728:
100	The Intel 82576 and I350 Virtual Function devices have been split from
101	the igb(4) driver into the igbv driver.  Interfaces previously exposed
102	as igbN are now exposed as igbvN.  Network configuration files must be
103	updated accordingly.
104
10520260727:
106	The wait_for_pids() function in rc.subr, used by rc scripts
107	when stopping or restarting a service, has been modified to
108	use pwait(1)'s new -r option, which requires kernel support.
109	When upgrading across this change, you should install a new
110	kernel first, then reboot, then install a new world, run
111	etcupdate, and reboot again.  Otherwise, you may find that
112	rc.subr is unable to stop services because the running kernel
113	does not provide the support that the updated pwait(1) needs.
114	Alternatively, if you deem it safe, you may use fastboot(8) to
115	reboot without shutting down services first.
116
11720260620:
118	On powerpc64le, long double is now IEEE 754 binary128 (quad
119	precision, 113-bit mantissa) instead of 64-bit double.  This is an
120	ABI-incompatible change with no symbol versioning: all C and C++
121	code that passes, returns, or stores long double (or long double
122	complex) -- including printf/scanf "%Lf", strtold, and the libm
123	*l() routines -- must be rebuilt against the new world.  Mixing old
124	and new objects that exchange long double values will silently
125	corrupt data.  Rebuild all installed ports and any out-of-tree
126	software after upgrading.  Big-endian powerpc and powerpc64 are
127	unaffected and keep 64-bit long double.
128
12920260521:
130	Audio devices are now created with GID 43 / audio. You will need to add
131	users who need access to audio devices to this group.
132
13320260512:
134	"bsdinstall script" will now do a pkgbase installation by default.  To
135	revert to the legacy distset installation, set "DISTRIBUTIONS" in
136	your installerconfig.
137
13820260412:
139	The /etc/rc.d/NETWORKING script no longer provides the legacy
140	NETWORK alias. Third-party or local RC scripts that still use
141	"REQUIRE: NETWORK" shall be updated to use "REQUIRE: NETWORKING"
142	instead.
143
14420260129:
145	The "net.inet6.ip6.use_stableaddr" sysctl is now on by default.
146	This changes the default algorithm to choose IPv6 SLAAC autogenerated
147	addresses from embedding the interface hardware address to using
148	SHA256-HMAC hash as described in RFC 7217 to derive an opaque but
149	stable Address.  If you are using autoconfigured IPv6 addresses at
150	reboot they will be different after this change, but constant
151	thereafter, please update your DNS records if any.
152
15320260106:
154	Zstd has moved to the new "zstd" package.  If you have set-minimal
155	installed, this package will be installed automatically, otherwise
156	you might want to install it manually.  This change only affects
157	pkgbase users.
158
15920251222:
160	Commit 9f49f436a9ec changed the internal KAPI between the NFS
161	modules. As such, nfscommon, nfscl and nfsd must all be rebuilt
162	from sources.
163
16420251212:
165	Timeouts for SCSI bus probing have been drastically reduced. They are
166	now tuneables that can be set in the boot loader should you have a
167	device that requires a longer-than-standards imply timeout but
168	none-the-less works.
169
170	kern.cam.tur_timeout		(default was 60s, now 1s)
171	kern.cam.inquiry_timeout	(default was 60s, now 1s)
172	kern.cam.reportluns_timeout	(default is 60s)
173	kern.cam.modesense_timeout	(default was 60s, now 1s)
174
17520251115:
176	The FreeBSD-base repository is now defined in /etc/pkg/FreeBSD.conf,
177	disabled by default.  In -CURRENT and -STABLE this points at nightly
178	builds on pkg.freebsd.org; for BETA/RC/RELEASE builds it points at
179	release engineering builds on pkgbase.freebsd.org.
180
181	Users of pkgbase will need to replace any existing definition of the
182	FreeBSD-base repository in /usr/local/etc/pkg/repos/ with a single
183	line "FreeBSD-base: { enabled: yes }".
184
18520251110:
186	OpenPAM (including libpam and the PAM modules) has moved to the new
187	"pam" package.  The pam-lib subpackage, which includes libpam, will
188	be automatically installed when required.
189
190	If you have set-minimal(-jail) installed, the pam base package which
191	contains the PAM modules will also be automatically installed.
192	If you don't, you MUST manually install the FreeBSD-pam package if you
193	need to authenticate users, otherwise you won't be able to log in.
194
195	This change only affects pkgbase users.
196
19720251105:
198	pf(4) now supports nat64 via the af-to keyword.
199
20020251102:
201	Commit e5aa60d06958 changed the internal KAPI between
202	the NFS modules.  As such, they all need to be rebuilt
203	from sources.  __FreeBSD_version was bumped to 1600004 for this.
204
20520251025:
206	flua(1) has moved to the new FreeBSD-flua package.  If you use flua,
207	you may want to install this package if it's not otherwise installed
208	as a dependency of something else.  This change only affects pkgbase
209	users.
210
21120251021:
212	Bump __FreeBSD_version to 1600002 for LinuxKPI.  An embedded struct
213	has changed size and might possibly be an issue otherwise.
214
21520251016:
216	With the migration to OpenZFS in FreeBSD 13.x a number of ZFS sysctls
217	moved to new locations, but backwards compatibility aliases were
218	provided.  These aliases will be removed in the near future.  Please
219	update /etc/sysctl.conf to reference the new OIDs.  For example,
220
221	        vfs.zfs.min_auto_ashift=12
222
223	needs to be changed to
224
225	        vfs.zfs.vdev.min_auto_ashift=12
226
22720251015:
228	The "FreeBSD-unbound" package is renamed to "FreeBSD-local-unbound".
229	If you have set-optional or set-base installed, the new package will
230	be installed automatically, otherwise you should manually install the
231	new package and remove the old one.
232
233	This change only affects pkgbase users.
234
23520251012:
236	Blacklist has been renamed upstream to Blocklist.  If you have it
237	configured, rename all configuration files, firewall anchors or
238	sentinel files to reflect the new nomenclature.  Old setups will
239	continue to work emitting a warning.
240
24120251002:
242	Audio-related utilities including mixer(8) and virtual_oss(8) have
243	moved to the new FreeBSD-sound package.  If you have set-optional or
244	set-base installed this package will be installed automatically,
245	otherwise you should install it manually if you need these utilities.
246
24720250929:
248	Both drm-kmod and nividia-drm ports had to be updated to either no
249	longer conflict on LinuxKPI vs. native PCI changes and/or to keep
250	working after some LinuxKPI PCI adjustments which were previously
251	hidden behind native PCI.
252	Bump __FreeBSD_version 1600001 so users will pick up updated packages.
253
25420250929:
255	The deprecated ftpd(8) has been removed.  Users who still need ftpd
256	can install the ftp/freebsd-ftpd port.  pkgbase users should remove
257	the orphaned FreeBSD-ftpd package.
258
25920250923:
260	Several changes which affect pkgbase users (only):
261
262	powerd has been moved to a new FreeBSD-powerd package.  If you have
263	FreeBSD-set-minimal installed, the new package will be installed
264	automatically, otherwise you may want to install it by hand.
265
266	libpmc and related utilities (/usr/sbin/pmc*) have moved to the new
267	FreeBSD-pmc package.  If you use these, you may want to install the
268	package.
269
270	The libbz2 package has been renamed to bzip2, and /usr/bin/bzip2 has
271	been moved to the new package.  If you have set-minimal installed,
272	the new package will be added automatically, otherwise you may want
273	to manually install it.
274
275	This only affects pkgbase users.
276
27720250918:
278	mandoc (including /usr/bin/man) has been moved to a new package,
279	FreeBSD-mandoc.  If you have the minimal set installed, this package
280	will be installed automatically, otherwise you may want to install it.
281
282	Kyua has been moved to the FreeBSD-kyua package, and ATF has been moved
283	to the FreeBSD-atf* packages.  If you have FreeBSD-tests installed,
284	these packages will be installed automatically, otherwise you should
285	manually install them if you need these tools.
286
287	This only affects pkgbase users.
288
28920250912:
290	If SRCCONF is unset and a file named src.conf is present at
291	the top of the source tree, it will now be used instead of
292	/etc/src.conf.
293
29420250907:
295	The MANSPLITPKG knob has been turned off by default, so pkgbase builds
296	will no longer generate "-man" subpackages; instead the manpages will
297	be shipped in the packages they belong to.  If you want to continue
298	building split man packages, set WITH_MANSPLITPKG=1.
299
30020250905:
301	FreeBSD 16.0-CURRENT.
302
30320250903:
304	The BLOAT_KERNEL_WITH_EXTERR kernel config option has been renamed to
305	EXTERR_STRINGS.
306
30720250827:
308	The names of pkg repositories defined in /etc/pkg/FreeBSD.conf have
309	changed: "FreeBSD" is now "FreeBSD-ports", and "FreeBSD-kmods" is now
310	"FreeBSD-ports-kmods".  Users with /usr/local/etc/pkg/repos files
311	which override these will need to adjust their configuration to match
312	the new names.
313
31420250823:
315	The set of pkgbase packages for Kerberos and OpenSSL has changed.
316	After updating past 250e77d4f0a5, you should check 'pkg orphans'
317	and remove any orphaned packages, then examine the output of
318	'pkg install -r base -g FreeBSD-openssl\* FreeBSD-kerberos\*'
319	and install any new packages you need.
320
32120250823:
322	To restore bridge(4)'s ABI compatibility with ifconfig from 14.x or
323	earlier, the size of struct ifbreq has changed, so you must update
324	the kernel and /sbin/ifconfig at the same time or you will not be
325	able to add interfaces to bridge.  This is particularly important
326	if you require bridge for network access during boot, in which case
327	you should install the new kernel and the new /sbin/ifconfig prior
328	to rebooting.
329
33020250820:
331	The WITHOUT_GSSAPI src.conf knob has been removed.  This was already
332	a no-op for MIT Kerberos, so this only affects builds which set
333	WITHOUT_MITKRB5=1, in which case you now always get libgssapi.
334
335	Also, Heimdal's compile_et and libcom_err are now controlled by
336	WITHOUT_KERBEROS, not WITHOUT_KERBEROS_SUPPORT.  This matches
337	the behaviour of the MIT Kerberos versions.
338
33920250820:
340	Commits 08c7dd2fbe4f and a4197ea47777 have changed the ABI between
341	libvmmapi and the vmm device. If using a custom kernel configuration,
342	please ensure that the COMPAT_FREEBSD14 option is included so older
343	versions of libvmmapi continue working as expected.
344
34520250819:
346	The CLEAN option has been switched back from default-on to default-off.
347	This reverts the 20250808 change below, which had reverted the 20240729
348	change before it.  Note that some src.conf(5) options are known to break
349	ABI or compatibility in ways that may require a clean build initially
350	when switched.
351
35220250816:
353	Sendmail's libmilter has been moved to its own package.  If you want
354	to compile applications that use libmilter, you should install the
355	FreeBSD-libmilter* packages.
356
357	If you only have FreeBSD-sendmail installed for applications that
358	require libmilter, you can now remove it.
359
36020250815:
361	The behavior of the getgroups(2), setgroups(2), and initgroups(3)
362	interfaces has changed, and their version numbers have been incremented.
363	To keep existing binaries and libraries working, ensure that
364	COMPAT_FREEBSD14 is included in your kernel configuration.
365	Alternatively, rebuild and reinstall applications that use these
366	interfaces.
367
36820250815:
369	jemalloc 5.3.0 has been committed to the tree.
370
37120250815:
372	The removal of Secure RPC DES authentication noted in 20250810
373	has been reverted.  (However, it is still non-functional.)
374
37520250813:
376	Commit cce64f2e6851 changed the internal KAPI between the NFS
377	modules.  As such, all of them need to be rebuilt from sources.
378	__FreeBSD_version has been bumped to 1500060 already today,
379	 so I will not bump it again for this.
380
38120250813:
382	The gpiobus_attach_bus() function has been removed. Drivers should now
383	use the gpiobus_add_bus() function instead. The difference being that
384	gpiobus_add_bus() doesn't call bus_attach_children(), calling it will
385	be the responsibility of the caller now.
386
38720250810:
388	Support for Secure RPC DES authentication has been removed.
389	The keyserv(8) daemon was already removed, but support for it in libc
390	has also been removed, so if you somehow still had keyserv installed,
391	it will now stop working.  There is no workaround for this.  Removing
392	DES is considered a feature.
393
39420250808:
395	The CLEAN option has been switched back from default-off to
396	default-on.  This reverts the 20240729 change below.
397
39820250807:
399	routed(8) and route6d(8) have moved to the FreeBSD-rip package.
400	If you use either of these, you should install the new package.
401
40220250806:
403	if_epair(4) now uses ether_gen_addr(9) to generate a stable MAC
404	address.
405	To keep using the random address, set the loader tunable
406	net.link.epair.ether_gen_addr=0.
407
40820250804:
409	bsdconfig (including sysrc(8)) has moved to the new bsdconfig
410	package.  If you use pkgbase and wish to use bsdconfig, you should
411	install FreeBSD-bsdconfig.
412
41320250730:
414	The usbhid(4) USB HID driver is now enabled by default, and will be
415	used in preference to other USB HID drivers like ukbd(4), ums(4), and
416	uhid(4).  Work on a FIDO/U2F driver and moused(8) is in progress.
417	The default is being switched now so that we can find and fix any
418	additional issues prior to FreeBSD 15.0.
419
420	To revert to the previous USB HID driver behavior, set the loader
421	tunable hw.usb.usbhid.enable=0.
422
42320250727:
424	bmake (i.e., /usr/bin/make and /usr/share/mk) has moved to a new
425	package, FreeBSD-bmake.  If you use pkgbase and you need make, you
426	should install this package.
427
42820250726:
429	amd64 kernel configurations must contain "options SMP".
430
43120250725:
432	gssd(8) has been moved to a new package, FreeBSD-gssd.  If you use
433	pkgbase and you need gssd, you should install this package.
434
43520250724:
436	The Kerberos packages which are built when WITH_MITKRB5 is enabled
437	have been renamed from FreeBSD-krb5* to FreeBSD-kerberos*.  This
438	affects pkgbase users who manually enabled WITH_MITKRB5, *or* use
439	the default value of WITH_MITKRB5 and updated past c7da9fb90b0b
440	(20250721) which made WITH_MITKRB5 the default.
441
442	In either case, if you have FreeBSD-krb5* packages installed, you
443	should remove them and (re)install the equivalent FreeBSD-kerberos*
444	packages instead.
445
44620250721:
447	WITH_MITKRB5 is now enabled by default. MIT KRB5 has replaced
448	Heimdal in base. Ports that use USES=gssapi must be rebuilt.
449	A clean buildworld is required.
450
45120250719:
452	Commits 392a82b225 and c00baac0ab both changed the
453	internal API between the NFS modules.  As such, all
454	these modules need to be rebuilt from sources.
455	__FreeBSD_version was bumped to 1500053 for this.
456
45720250710:
458	The shar(1) utility has been removed from base.  The
459	sysutils/freebsd-shar port was created to maintain this version of
460	shar(1) past its removal from base.
461
46220250704:
463	LinuxKPI device.h and acpi changes effecting drivers and drm-kmod.
464	Bump __FreeBSD_version 1500050 to be able to detect these changes.
465
46620250630:
467	Commits 171f66b0c2ca and 8e2a90ac8089 changed the internal
468	api between nfscommon.ko and the other nfs modules.
469	Bump __FreeBSD_version to 1500049 for this.
470	All NFS related modules must be rebuilt from up-to-date
471	sources.
472
47320250625:
474	"make delete-old" will now remove the Forth bootloader entirely
475	if the system is built with WITHOUT_FORTH.
476
47720250614:
478	MIT KRB5 (MIT Kerberos5) has been imported into 15-CURRENT. To
479	and install MIT KRB5, add WITH_MITKRB5=yes to /etc/src.conf. This
480	will build and install MIT KRB5 1.21.3. And it will remove Heimdal
481	1.5.2 when delete-old and delete-old-libs are run. To revert back
482	simply buildworld/installworld again with delete-old-libs and
483	delete-old.
484
485	At the moment we only know of a couple of ports that might be
486	affected. Adjusting libmap.conf does not circumvent runtime issues.
487	The few affected ports must be rebuilt. A successful exp-run will be
488	run before MIT KRB5 becomes default.
489
490	Those using the KDC in FreeBSD base may wish to wait. The Heimdal
491	HDB is incompatible with the MIT KRB5 KDC. The migration procedure
492	is a little involved.
493
49420250603:
495	LinuxKPI dma-mapping.h were pulled into the tree from drm-kmod.
496	Bump _FreeBSD_version to 1500045 to be able to detect this change.
497
49820250527:
499	pf changed extension header handling. It now treats AH headers on IPv4 just
500	like AH headers on IPv6 and skips over them, allowing filtering on the inner
501	protocol.
502
50320250527:
504	pf now blocks IPv6 packets with a hop-by-hop or destination options header by
505	default. Such packets can be passed by adding "allow-opts" to the rule. IPv6
506	options are now handled just like their IPv4 counterparts.
507
50820250527:
509	The CAM target layer userland, i.e. ctld(8), ctladm(8) and ctlstat(8),
510	has moved to the new FreeBSD-ctl package.  If you use pkgbase and you
511	need the CAM Target Layer, you should install the new package.
512
513	Development-related tools (e.g. ar and nm) have moved to the new
514	"FreeBSD-toolchain" package, which subsumes and obsoletes the
515	existing "FreeBSD-elftoolchain" package.  If you use pkgbase and
516	need to compile software, you should install the new package and
517	ensure the old FreeBSD-elftoolchain* packages are completely removed.
518
51920250521:
520	Commit e64fe5ad3a23 removed in6_maxmtu and its setter in6_setmaxmtu().
521	in6_maxmtu is used to store the max IPv6 MTU of all interfaces,
522	however it does not have any in-tree consumers since the introduction
523	from the KAME project. The removal should have little impact, and the
524	max IPv6 MTU can be easily retrieved by iterating over all the attached
525	interface if 3rd party modules need it.
526
52720250515:
528	Commit 772258c89f28 changed the internal API between the nfscommon
529	and nfscl modules.  Both need to be built from updated sources.
530
53120250513:
532	The bridge(4) sysctl net.link.bridge.member_ifaddrs now defaults to 0,
533	meaning that interfaces added to a bridge may not have IP addresses
534	assigned.  Refer to bridge(4) for more information.
535
53620250507:
537	UMASS quirks and auto-quirk probing has been overhauled. CAM now won't
538	send SYNCHRONIZE CACHE unless MODE PAGE 8 is present and valid. This
539	should allow more devices to work (since the auto quirk code was updated
540	in 14 and broke several e-readers and the like). Please send imp@freebsd.org
541	any regression reports.
542
54320250504:
544	Commit 9419e086e1a3 changed the internal API between the nfscommon
545	and nfscl modules.  Both need to be built from updated sources.
546
54720250412:
548	LinuxKPI alloc routines were changed to return physically contiguous
549	memory where expected. These changes may require out-of-tree drivers
550	to be recompiled.
551	Bump __FreeBSD_version to 1500037 to be able to detect this change.
552
55320250409:
554	Intel iwlwifi firmware has been removed from the src repository.
555	Before updating their system, users of iwlwifi(4) or iwx(4) must
556	install the appropriate firmware for their chipset using fwget(8) or
557	building it from ports.
558
55920250314:
560	We now use LLVM's binary utilities (nm, objcopy, etc.) by default.
561	The WITHOUT_LLVM_BINUTILS src.conf(5) knob can be used to revert to
562	ELF Tool Chain tools if desired.
563
56420250303:
565	Commit 4a77657cbc01 changed the ABI between ipfw(8) and ipfw(4).
566	Please note that the old ipfw(8) binary will not work with the new
567	ipfw(4) module. Therefore, it is recommended to disable ipfw during
568	the upgrade, otherwise the host system may become inaccessible because
569	ipfw rules cannot be installed with the old binary.
570
57120250214:
572	Commit 4517fbfd4251 modified the internal API between the
573	nfscommon and nfscl modules.  As such, both of these modules
574	need to be rebuilt from sources.
575
57620250201:
577	The NFS related daemons, that provide RPC services to the kernel:
578	gssd(8), rpcbind(8), rpc.tlsservd(8) and rpc.tlsclntd(8), now use a
579	different transport - netlink(4) socket instead of unix(4).  Users of
580	NFS need to upgrade both kernel and world (binaries and libc) at once.
581	Also, any revision between 88cd1e17a7d8 and 99e5a70046da should be
582	avoided.
583
58420250129:
585	Defer the January 19, 2038 date limit in UFS1 filesystems to
586	February 7, 2106. This affects only UFS1 format filesystems.
587	See commit message 1111a44301da for details.
588
58920250127:
590	The Allwinner a10_timer driver has been renamed to aw_driver. If you
591	have a custom kernel configuration including the line 'device
592	a10_timer', it must be adjusted to 'device aw_timer'. The same applies
593	for device exclusions with 'nodevice'.
594
59520250106:
596	A new SOC_ROCKCHIP options appeared, so if you have a custom kernel configuration
597	targeting Rockchip SoC you need to add it so shared and mandatory drivers for
598	this SoC family will be selected.
599	Also a new rk8xx device was added, this select the base driver for Rockchip PMIC.
600
60120241223:
602	The layout of NFS file handles for the tarfs, tmpfs, cd9660, and ext2fs
603	file systems has changed.  An NFS server that exports any of these file
604	systems will need its clients to unmount and remount the exports.
605
60620241216:
607	The iwm(4) firmwares are no longer compiled as kernel modules but instead
608	shipped as raw files. For pkgbase users if you use iwm(4) you will need
609	to install the FreeBSD-firmware-iwm package.
610
61120241124:
612	The OpenBSD derived bc and dc implementations and the WITHOUT_GH_BC
613	option that allowed building them instead of the advanced version
614	imported more than 4 years ago have been removed.
615
61620241107:
617	The ng_ubt(4) driver now requires firmwares to be loaded on Realtek
618	adaptors with rtlbtfw(8) utility. It no longer attaches to devices
619	standing in bootloader mode. Firmware files are available in the
620	comms/rtlbt-firmware port.
621
62220241025:
623	The support for the rc_fast_and_loose variable has been removed from
624	rc.subr(8). Users setting rc_fast_and_loose on their systems are
625	advised to make sure their customizations to rc service scripts
626	do not depend on having a single shell environment shared across
627	all the rc service scripts during booting and shutdown.
628
62920241013:
630	The ciss driver was updated to cope better with hotplug events that
631	caused it to panic before, and to support more than 48 drives attached
632	to the card. These changes were made w/o benefit of hardware for testing
633	and ciss(4) users should be on the lookout for regressions.
634
63520240729:
636	The build now defaults to WITHOUT_CLEAN - i.e., no automatic clean
637	is performed at the beginning of buildworld or buildkernel.  The
638	WITH_CLEAN src.conf(5) knob can be used to restore the previous
639	behaviour.
640
641	If you encounter incremental build issues, please report them to the
642	freebsd-current mailing list so that a special-case dependency can be
643	added, if necessary.
644
64520240715:
646	We now lean more heavily on ACPI enumeration for some traditional
647	devices. uart has moved from isa to acpi so the hints act as wiring
648	instead of device enumeration. Hints for parallel port, floppy, etc
649	have been removed.  Before upgrading, grep your dmesg for lines like:
650		uart1: non-PNP ISA device will be removed from GENERIC in FreeBSD 15.
651	to see if you need to start including hints for the device on isa
652	in your loader.conf or device.hints file. APU1 (but not APU2) boards
653	are known to be affected, but there may be others.
654
65520240712:
656	Support for armv6 has been disconnected and is being removed.
657
65820240617:
659	ifconfig now treats IPv4 addresses without a width or mask as an error.
660	Specify the desired mask or width along with the IP address on the
661	ifconfig command line and in rc.conf.
662
66320240428:
664	OpenBSM auditing runtime (auditd, etc.) has been moved into the new
665	package FreeBSD-audit.  If you use OpenBSM auditing and pkgbase, you
666	should install FreeBSD-audit.
667
66820240424:
669	cron, lpr, and ntpd have been moved from FreeBSD-utilities into their
670	own packages.  If you use pkgbase, you should install the relevant
671	packages: FreeBSD-cron, FreeBSD-lp, or FreeBSD-ntp.
672
67320240406:
674	Clang, llvm, lld, lldb, compiler-rt, libc++, libunwind and openmp have
675	been upgraded to 18.1.6. It is important that you run `make delete-old`
676	as described in the COMMON ITEMS section, otherwise several libc++
677	headers that are obsolete and need to be removed can cause compilation
678	errors in C++ programs.
679
68020240205:
681	For dynamically linked programs, system calls are now made from
682	libsys rather than libc.  No change in linkage is required as
683	libsys is an auxiliary filter for libc.  People building custom
684	images must ensure that libsys.so.7 is included.
685
68620240202:
687	Loader now also read configuration files listed in local_loader_conf_files.
688	Files listed here are the last ones read. And /boot/loader.conf.local was
689	moved from loader_conf_files to local_loader_conf_files leaving only
690	loader.conf and device.hints in loader_conf_files by default.
691
692	The following sequencing is applied:
693
694	1. Bootstrap:
695	    /boot/defaults/loader.conf
696
697	2. Read loader_conf_files files:
698	    /boot/device.hints
699	    /boot/loader.conf
700
701	3. Read loader_conf_dirs files:
702	    /boot/loader.conf.d/*.conf
703
704	4. And finally, rread local_loader_conf_files files:
705	    /boot/loader.conf.local
706
70720240201:
708	sendmail 8.18.1 has been imported and merged.  This version enforces
709	stricter RFC compliance by default, especially with respect to line
710	endings.  This may cause issues with receiving messages from
711	non-compliant MTAs; please see the first 8.18.1 release note in
712	contrib/sendmail/RELEASE_NOTES for mitigations.
713
71420240111:
715	Commit cc760de2183f changed the internal interface between
716	the nfscommon and nfscl modules.  As such, both need to be
717	rebuilt from sources.  Therefore, __FreeBSD_version was
718	bumped to 1500010.
719
72020231120:
721	If you have an arm64 system that uses ACPI, you will need to update your
722	loader.efi in the ESP when you update past this point.  Detection of ACPI
723	was moved earlier in the binary so the scripts could use it, but old
724	binaries don't have this, so we default to 'no ACPI' in this case. You can
725	undisable ACPI by doing
726		OK unset hint.acpi.0.disabled
727	This can also be used to recover any other system that was updated in the
728	small window where amd64 was also broken.
729
73020231113:
731	The WITHOUT_LLD_IS_LD option has been removed.  When LLD is enabled
732	it is always installed as /usr/bin/ld.
733
73420231027:
735	Forward compatibility (running the new code on old kernels) for the
736	"ino64" project have been removed. The need for it has passed long ago.
737
73820231018:
739	Commit 57ce37f9dcd0 changed the internal KAPI between the
740	nfscommon and nfscl modules.  Both must be rebuilt from sources.
741
74220231010:
743	dialog(1) has been replaced in base by bsddialog(1), while most of the
744	time replacing a dialog(1) call by a bsddialog(1) call works out of the
745	box, bsddialog(1) is not considered as a drop-in replacement for
746	dialog(1).
747
748	If you do depend on dialog(1) functionality, please install cdialog
749	from ports:
750
751	pkg install cdialog
752
75320230927:
754	The EARLY_AP_STARTUP kernel option is mandatory on x86.  The option
755	has been added to DEFAULTS, so it should automatically be included in
756	custom kernel configurations without any additional change.
757
75820230922:
759	A new loader tunable net.pf.default_to_drop allows pf(4)’s default
760	behaviour to be changed from pass to drop. Previously this required
761	recompiling the kernel with the option PF_DEFAULT_TO_DROP.
762
76320230914:
764	Enable splitting out pkgbase manpages into separate packages by
765	default. To disable this, set WITHOUT_MANSPLITPKG=yes in src.conf.
766
76720230911:
768	Move standard include files to the clibs-dev package and move clang
769	internal libraries and headers to clang and clang-dev. Upgrading systems
770	installed using pkgbase past this change involves extra steps to allow
771	for these file moves:
772
773		pkg upgrade -y FreeBSD-utilities
774		pkg upgrade -y FreeBSD-utilities-dev
775		pkg upgrade -y
776
77720230909:
778	Enable vnet sysctl variables to be loader tunable. SYSCTLs which
779	belongs to VNETs can be initialized during early boot or module
780	loading if they are marked with CTLFLAG_TUN and there are
781	corresponding kernel environment variables.
782
78320230901:
784	The WITH_INIT_ALL_PATTERN and WITH_INIT_ALL_ZERO build options have
785	been replaced by INIT_ALL=pattern and INIT_ALL=zero respectively.
786
78720230824:
788	FreeBSD 15.0-CURRENT.
789
79020230817:
791	Serial communication (in boot loaders, kernel, and userland) has
792	been changed to default to 115200 bps, in line with common industry
793	practice and typical firmware serial console redirection
794	configuration.
795
796	Note that the early x86 BIOS bootloader (i.e., boot0sio) does not
797	support rates above 9600 bps and is not changed. boot0sio users may
798	set BOOT_COMCONSOLE_SPEED=9600 to use 9600 for all of the boot
799	components, or use the standard boot0 and have the boot2 stage start
800	with the serial port at 115200.
801
80220230807:
803	Following the general removal of MIPS support, the ath(4) AHB bus-
804	frontend has been removed, too, and building of the PCI support is
805	integrated with the ath(4) main module again. As a result, there's
806	no longer a need for if_ath_pci_load="YES" in /boot/loader.conf or
807	"device ath_pci" in the kernel configuration.
808
80920230803:
810	MAXCPU has been increased to 1024 in the amd64 GENERIC kernel config.
811	Out-of-tree kernel modules will need to be rebuilt.
812
81320230724:
814	CAM has been mechanically updated s/u_int(64|32|16|8)_t/uint\1_t/g
815	to move to the standard uintXX_t types from the old, traditional
816	BSD u_intXX_t types. This should be a NOP, but may cause problems
817	for out of tree changes. The SIMs were not updated since most of
818	the old u_intXX_t uses weren't due to CAM interfaces.
819
82020230713:
821	stable/14 branch created.
822
82320230629:
824	The heuristic for detecting old chromebooks with an EC bug that requires
825	atkbdc driver workarounds has changed. There should be no functional
826	change, but if your old chromebook's keyboard stops working, please
827	file a PR and assign it to imp.
828
82920230623:
830	OpenSSL has been updated to version 3.0, including changes throughout
831	the base system.  It is important to rebuild third-party software
832	after upgrading.
833
83420230619:
835	To enable pf rdr rules for connections initiated from the host, pf
836	filter rules can be optionally enabled for packets delivered
837	locally. This can change the behavior of rules which match packets
838	delivered to lo0. To enable this feature:
839
840		sysctl net.pf.filter_local=1
841		service pf restart
842
843	When enabled, its best to ensure that packets delivered locally are not
844	filtered, e.g. by adding a 'skip on lo' rule.
845
84620230613:
847	Improvements to libtacplus(8) mean that tacplus.conf(5) now
848	follows POSIX shell syntax rules. This may cause TACACS+
849	authentication to fail if the shared secret contains a single
850	quote, double quote, or backslash character which isn't
851	already properly quoted or escaped.
852
85320230612:
854	Belatedly switch the default nvme block device on x86 from nvd to nda.
855	nda created nvd compatibility links by default, so this should be a
856	nop. If this causes problems for your application, set hw.nvme.use_nvd=1
857	in your loader.conf or add `options NVME_USE_NVD=1` to your kernel
858	config. To disable the nvd compatibility aliases, add
859	kern.cam.nda.nvd_compat=0 to loader.conf.  The default has been nda on
860	all non-x86 platforms for some time now. If you need to fall back,
861	please email imp@freebsd.org about why.
862
863	Encrypted swap partitions need to be changed from nvd to nda if you
864	migrate, or you need to use the above to switch back to nvd.
865
86620230422:
867	Remove portsnap(8).  Users are encouraged to obtain the ports tree
868	using git instead.
869
87020230420:
871	Add jobs.mk to save typing. Enables -j${JOB_MAX} and logging
872	eg.
873		make buildworld-jobs
874	runs
875		make -j${JOB_MAX} buildworld > ../buildworld.log 2>&1
876
877	where JOB_MAX is derived from ncpus in local.sys.mk if not set in env.
878
87920230316:
880	Video related devices for some arm devices have been renamed.
881	If you have a custom kernel config and want to use hdmi output on
882	IMX6 board you need to add "device dwc_hdmi" "device imx6_hdmi" and
883	"device imx6_ipu" to it.
884	If you have a custom kernel config and want to use hdmi output on
885	TI AM335X board you need to add "device tda19988" to it.
886	If you add "device hdmi" in it you need to remove it as it doesn't
887	exist anymore.
888
88920230221:
890	Introduce new kernel options KBD_DELAY1 and KBD_DELAY2. See atkbdc(4)
891	for details.
892
89320230206:
894	sshd now defaults to having X11Forwarding disabled, following upstream.
895	Administrators who wish to enable X11Forwarding should add
896	`X11Forwarding yes` to /etc/ssh/sshd_config.
897
89820230204:
899	Since commit 75d41cb6967 Huawei 3G/4G LTE Mobile Devices do not default
900	to ECM, but NCM mode and need u3g and ucom modules loaded. See cdce(4).
901
90220230130:
903	As of commit 7c40e2d5f685, the dependency on netlink(4) has been added
904	to the linux_common(4) module. Users relying on linux_common may need
905	to compile netlink(4) module if it is not present in their kernel.
906
90720230126:
908	The WITHOUT_CXX option has been removed. C++ components in the base
909	system are now built unconditionally.
910
91120230113:
912	LinuxKPI pci.h changes may require out-of-tree drivers to be recompiled.
913	Bump _FreeBSD_version to 1400078 to be able to detect this change.
914
91520221212:
916	llvm-objdump is now always installed as objdump.  Previously there was
917	no /usr/bin/objdump unless the WITH_LLVM_BINUTILS knob was used.
918
919	Some LLVM objdump options have a different output format compared to
920	GNU objdump; readelf is available for inspecting ELF files, and GNU
921	objdump is available from the devel/binutils port or package.
922
92320221205:
924	dma(8) has replaced sendmail(8) as the default mta.  For people willing
925	to re-enable sendmail(8):
926
927	$ cp /usr/share/examples/sendmail/mailer.conf /etc/mail/mailer.conf
928
929	and add sendmail_enable="YES" to rc.conf.
930
93120221204:
932	hw.bus.disable_failed_devices has changed from 'false' to 'true' by
933	default. Now if newbus succeeds in probing a device, but fails to attach
934	the device, we'll disable the device. In the past, we'd keep retrying
935	the device on each new driver loaded. To get that behavior now, one
936	needs to use devctl to re-enable the device, and reprobe it (or set
937	the sysctl/tunable hw.bus.disable_failed_devices=false).
938
939	NOTE: This was reverted 20221205 due to unexpected compatibility issues
940
94120221122:
942	pf no longer accepts 'scrub fragment crop' or 'scrub fragment drop-ovl'.
943	These configurations are no longer automatically reinterpreted as
944	'scrub fragment reassemble'.
945
94620221121:
947	The WITHOUT_CLANG_IS_CC option has been removed.  When Clang is enabled
948	it is always installed as /usr/bin/cc (and c++, cpp).
949
95020221026:
951	Some programs have been moved into separate packages. It is recommended
952	for pkgbase users to do:
953
954	pkg install FreeBSD-dhclient FreeBSD-geom FreeBSD-resolvconf \
955	  FreeBSD-devd FreeBSD-devmatch
956
957	after upgrading to restore all the component that were previously
958	installed.
959
96020221002:
961	OPIE has been removed from the base system.  If needed, it can
962	be installed from ports (security/opie) or packages (opie).
963	Otherwise, make sure that your PAM policies do not reference
964	pam_opie or pam_opieaccess.
965
96620220610:
967	LinuxKPI pm.h changes require an update to the latest drm-kmod version
968	before re-compiling to avoid errors.
969
97020211230:
971	The macros provided for the manipulation of CPU sets (e.g. CPU_AND)
972	have been modified to take 2 source arguments instead of only 1.
973	Externally maintained sources that use these macros will have to
974	be adapted. The FreeBSD version has been bumped to 1400046 to
975	reflect this change.
976
97720211214:
978	A number of the kernel include files are able to be included by
979	themselves.  A test has been added to buildworld to enforce this.
980
98120211209:
982	Remove mips as a recognized target. This starts the decommissioning of
983	mips support in FreeBSD. mips related items will be removed wholesale in
984	the coming days and weeks.
985
986	This broke the NO_CLEAN build for some people. Either do a clean build
987	or touch
988		lib/clang/include/llvm/Config/Targets.def
989		lib/clang/include/llvm/Config/AsmParsers.def
990		lib/clang/include/llvm/Config/Disassemblers.def
991		lib/clang/include/llvm/Config/AsmPrinters.def
992	before the build to force everything to rebuild that needs to.
993
99420211202:
995	Unbound support for RFC8375: The special-use domain 'home.arpa' is
996	by default blocked. To unblock it use a local-zone nodefault
997	statement in unbound.conf:
998		local-zone: "home.arpa." nodefault
999
1000	Or use another type of local-zone to override with your choice.
1001
1002	The reason for this is discussed in Section 6.1 of RFC8375:
1003	Because 'home.arpa.' is not globally scoped and cannot be secured
1004	using DNSSEC based on the root domain's trust anchor, there is no way
1005	to tell, using a standard DNS query, in which homenet scope an answer
1006	belongs.  Consequently, users may experience surprising results with
1007	such names when roaming to different homenets.
1008
100920211118:
1010	Mips has been removed from universe builds. It will be removed from the
1011	tree shortly.
1012
101320211110:
1014	Commit b8d60729deef changed the TCP congestion control framework so
1015	that any of the included congestion control modules could be
1016	the single module built into the kernel. Previously newreno
1017	was automatically built in through direct reference. As of
1018	this commit you are required to declare at least one congestion
1019	control module (e.g. 'options CC_NEWRENO') and to also declare a
1020	default using the CC_DEFAULT option (e.g. options CC_DEFAULT="newreno\").
1021	The GENERIC configuration includes CC_NEWRENO and defines newreno
1022	as the default. If no congestion control option is built into the
1023	kernel and you are including networking, the kernel compile will
1024	fail. Also if no default is declared the kernel compile will fail.
1025
102620211106:
1027	Commit f0c9847a6c47 changed the arguments for VOP_ALLOCATE.
1028	The NFS modules must be rebuilt from sources and any out
1029	of tree file systems that implement their own VOP_ALLOCATE
1030	may need to be modified.
1031
103220211022:
1033	The synchronous PPP kernel driver sppp(4) has been removed.
1034	The cp(4) and ce(4) drivers are now always compiled with netgraph(4)
1035	support, formerly enabled by NETGRAPH_CRONYX option.
1036
103720211020:
1038	sh(1) is now the default shell for the root user.  To force root to use
1039	the csh shell, please run the following command as root:
1040
1041	# chsh -s csh
1042
104320211004:
1044	Ncurses distribution has been split between libtinfow and libncurses
1045	with libncurses.so becoming a linker (ld) script to seamlessly link
1046	to libtinfow as needed. Bump _FreeBSD_version to 1400035 to reflect
1047	this change.
1048
104920210923:
1050	As of commit 8160a0f62be6, the dummynet module no longer depends on the
1051	ipfw module. Dummynet can now be used by pf as well as ipfw. As such
1052	users who relied on this dependency may need to include ipfw in the
1053	list of modules to load on their systems.
1054
105520210922:
1056	As of commit 903873ce1560, the mixer(8) utility has got a slightly
1057	new syntax. Please refer to the mixer(8) manual page for more
1058	information. The old mixer utility can be installed from ports:
1059	audio/freebsd-13-mixer
1060
106120210911:
1062	As of commit 55089ef4f8bb, the global variable nfs_maxcopyrange has
1063	been deleted from the nfscommon.ko.  As such, nfsd.ko must be built
1064	from up to date sources to avoid an undefined reference when
1065	being loaded.
1066
106720210817:
1068	As of commit 62ca9fc1ad56 OpenSSL no longer enables kernel TLS
1069	by default.  Users can enable kernel TLS via the "KTLS" SSL
1070	option.  This can be enabled globally by using a custom
1071	OpenSSL config file via OPENSSL_CONF or via an
1072	application-specific configuration option for applications
1073	which permit setting SSL options via SSL_CONF_cmd(3).
1074
107520210811:
1076	Commit 3ad1e1c1ce20 changed the internal KAPI between the NFS
1077	modules. Therefore, all need to be rebuilt from sources.
1078
107920210730:
1080	Commit b69019c14cd8 removes pf's DIOCGETSTATESNV ioctl.
1081	As of be70c7a50d32 it is no longer used by userspace, but it does mean
1082	users may not be able to enumerate pf states if they update the kernel
1083	past b69019c14cd8 without first updating userspace past be70c7a50d32.
1084
108520210729:
1086	As of commit 01ad0c007964 if_bridge member interfaces can no longer
1087	change their MTU. Changing the MTU of the bridge itself will change the
1088	MTU on all member interfaces instead.
1089
109020210716:
1091	Commit ee29e6f31111 changed the internal KAPI between the nfscommon
1092	and nfsd modules. Therefore, both need to be rebuilt from sources.
1093	Bump __FreeBSD_version to 1400026 for this KAPI change.
1094
109520210715:
1096	The 20210707 awk update brought in a change in behavior. This has
1097	been corrected as of d4d252c49976. Between these dates, if you
1098	installed a new awk binary, you may not be able to build a new
1099	kernel because the change in behavior affected the genoffset
1100	script used to build the kernel. If you did update, the fix is
1101	to update your sources past the above hash and do
1102		% cd usr.bin/awk
1103		% make clean all
1104		% sudo -E make install
1105	to enable building kernels again.
1106
110720210708:
1108	Commit 1e0a518d6548 changed the internal KAPI between the NFS
1109	modules. They all need to be rebuilt from sources.  I did not
1110	bump __FreeBSD_version, since it was bumped recently.
1111
111220210707:
1113	awk has been updated to the latest one-true-awk version 20210215.
1114	This contains a number of minor bug fixes.
1115
111620210624:
1117	The NFSv4 client now uses the highest minor version of NFSv4
1118	supported by the NFSv4 server by default instead of minor version 0,
1119	for NFSv4 mounts.
1120	The "minorversion" mount option may be used to override this default.
1121
112220210618:
1123	Bump __FreeBSD_version to 1400024 for LinuxKPI changes.
1124	Most notably netdev.h can change now as the (last) dependencies
1125	(mlx4/ofed) are now using struct ifnet directly, but also for PCI
1126	additions and others.
1127
112820210618:
1129	The directory "blacklisted" under /usr/share/certs/ has been
1130	renamed to "untrusted".
1131
113220210611:
1133	svnlite has been removed from base. Should you need svn for any reason
1134	please install the svn package or port.
1135
113620210611:
1137	Commit e1a907a25cfa changed the internal KAPI between the krpc
1138	and nfsserver.  As such, both modules must be rebuilt from
1139	sources.  Bump __FreeBSD_version to 1400022.
1140
114120210610:
1142	The an(4) driver has been removed from FreeBSD.
1143
114420210608:
1145	The vendor/openzfs branch was renamed to vendor/openzfs/legacy to
1146	start tracking OpenZFS upstream more closely. Please see
1147https://lists.freebsd.org/archives/freebsd-current/2021-June/000153.html
1148	for details on how to correct any errors that might result. The
1149	short version is that you need to remove the old branch locally:
1150	    git update-ref -d refs/remotes/freebsd/vendor/openzfs
1151	(assuming your upstream origin is named 'freebsd').
1152
115320210525:
1154	Commits 17accc08ae15 and de102f870501 add new files to LinuxKPI
1155	which break drm-kmod.  In addition various other additions where
1156	committed. Bump __FreeBSD_version to 1400015 to be able to
1157	detect this.
1158
115920210513:
1160	Commit ca179c4d74f2 changed the package in which the OpenSSL
1161	libraries and utilities are packaged.
1162	It is recommended for pkgbase user to do:
1163	pkg install -f FreeBSD-openssl
1164	before pkg upgrade otherwise some dependencies might not be met
1165	and pkg will stop working as libssl will not be present anymore
1166	on the system.
1167
116820210426:
1169	Commit 875977314881 changed the internal KAPI between
1170	the nfsd and nfscommon modules.  As such these modules
1171	need to be rebuilt from sources.
1172	Without this patch in your NFSv4.1/4.2 server, enabling
1173	delegations by setting vfs.nfsd.issue_delegations non-zero
1174	is not recommended.
1175
117620210411:
1177	Commit 7763814fc9c2 changed the internal KAPI between
1178	the krpc and NFS.  As such, the krpc, nfscommon and
1179	nfscl modules must all be rebuilt from sources.
1180	Without this patch, NFSv4.1/4.2 mounts should not
1181	be done with the nfscbd(8) daemon running, to avoid
1182	needing a working back channel for server->client RPCs.
1183
118420210330:
1185	Commit 01ae8969a9ee fixed the NFSv4.1/4.2 server so that it
1186	handles binding of the back channel as required by RFC5661.
1187	Until this patch is in your server, avoid use of the "nconnects"
1188	mount option for Linux NFSv4.1/4.2 mounts.
1189
119020210225:
1191	For 64-bit architectures the base system is now built with Position
1192	Independent Executable (PIE) support enabled by default.  It may be
1193	disabled using the WITHOUT_PIE knob.  A clean build is required.
1194
119520210128:
1196	Various LinuxKPI functionality was added which conflicts with DRM.
1197	Please update your drm-kmod port to after the __FreeBSD_version 1400003
1198	update.
1199
120020210121:
1201	stable/13 branch created.
1202
120320210108:
1204	PC Card attachments for all devices have been removed. In the case of
1205	wi and cmx, the entire drivers were removed because they were only
1206	PC Card devices. FreeBSD_version 1300134 should be used for this
1207	since it was bumped so recently.
1208
120920210107:
1210	Transport-independent parts of HID support have been split off the USB
1211	code in to separate subsystem.  Kernel configs which include one of
1212	ums, ukbd, uhid, atp, wsp, wmt, uaudio, ugold or ucycom drivers should
1213	be updated with adding of "device hid" line.
1214
121520210105:
1216	ncurses installation has been modified to only keep the widechar
1217	enabled version.  Incremental build is broken for that change, so it
1218	requires a clean build.
1219
122020201223:
1221	The FreeBSD project has migrated from Subversion to Git. Temporary
1222	instructions can be found at
1223	https://github.com/bsdimp/freebsd-git-docs/blob/main/src-cvt.md
1224	and other documents in that repo.
1225
122620201216:
1227	The services database has been updated to cover more of the basic
1228	services expected in a modern system. The database is big enough
1229	that it will cause issues in mergemaster in Releases previous to
1230	12.2 and 11.3, or in very old current systems from before r358154.
1231
123220201215:
1233	Obsolete in-tree GDB 6.1.1 has been removed.  GDB (including kgdb)
1234	may be installed from ports or packages.
1235
123620201124:
1237	ping6 has been merged into ping.  It can now be called as "ping -6".
1238	See ping(8) for details.
1239
124020201108:
1241	Default value of net.add_addr_allfibs has been changed to 0.
1242	If you have multi-fib configuration and rely on existence of all
1243	interface routes in every fib, you need to set the above sysctl to 1.
1244
124520201030:
1246	The internal pre-processor in the calendar(1) program has been
1247	extended to support more C pre-processor commands (e.g. #ifdef, #else,
1248	and #undef) and to detect unbalanced conditional statements.
1249	Error messages have been extended to include the filename and line
1250	number if processing stops to help fixing malformed data files.
1251
125220201026:
1253	All the data files for the calendar(1) program, except calendar.freebsd,
1254	have been moved to the deskutils/calendar-data port, much like the
1255	jewish calendar entries were moved to deskutils/hebcal years ago. After
1256	make delete-old-files, you need to install it to retain full
1257	functionality. calendar(1) will issue a reminder for files it can't
1258	find.
1259
126020200923:
1261	LINT files are no longer generated. We now include the relevant NOTES
1262	files. Note: This may cause conflicts with updating in some cases.
1263	        find sys -name LINT\* -delete
1264	is suggested across this commit	to remove the generated	LINT files.
1265
1266	If you have tried to update with generated files there, the svn
1267	command you want to un-auger the tree is
1268		cd sys/amd64/conf
1269		svn revert -R .
1270	and then do the above find from the top level. Substitute 'amd64'
1271	above with where the error message indicates a conflict.
1272
127320200824:
1274	OpenZFS support has been integrated. Do not upgrade root pools until
1275	the loader is updated to support zstd. Furthermore, we caution against
1276	'zpool upgrade' for the next few weeks. The change should be transparent
1277	unless you  want to use new features.
1278
1279	Not all "NO_CLEAN" build scenarios work across these changes. Many
1280	scenarios have been tested and fixed, but rebuilding kernels without
1281	rebuilding world may fail.
1282
1283	The ZFS cache file has moved from /boot to /etc to match the OpenZFS
1284	upstream default. A fallback to /boot has been added for mountroot.
1285
1286	Pool auto import behavior at boot has been moved from the kernel module
1287	to an explicit "zpool import -a" in one of the rc scripts enabled by
1288	zfs_enable=YES. This means your non-root zpools won't auto import until
1289	you upgrade your /etc/rc.d files.
1290
129120200824:
1292	The resume code now notifies devd with the 'kernel' system
1293	rather than the old 'kern' subsystem to be consistent with
1294	other use. The old notification will be created as well, but
1295	will be removed prior to FreeBSD 14.0.
1296
129720200821:
1298	r362275 changed the internal API between the kernel RPC and the
1299	NFS modules. As such, all the modules must be recompiled from
1300	sources.
1301
130220200817:
1303	r364330 modified the internal API used between the NFS modules.
1304	As such, all the NFS modules must be re-compiled from sources.
1305
130620200816:
1307	Clang, llvm, lld, lldb, compiler-rt, libc++, libunwind and openmp have
1308	been upgraded to 11.0.0.  Please see the 20141231 entry below for
1309	information about prerequisites and upgrading, if you are not already
1310	using clang 3.5.0 or higher.
1311
131220200810:
1313	r364092 modified the internal ABI used between the kernel NFS
1314	modules.  As such, all of these modules need to be rebuilt
1315	from sources, so a version bump was done.
1316
131720200807:
1318	Makefile.inc has been updated to work around the issue documented in
1319	20200729. It was a case where the optimization of using symbolic links
1320	to point to binaries created a situation where we'd run new binaries
1321	with old libraries starting midway through the installworld process.
1322
132320200729:
1324	r363679 has redefined some undefined behavior in regcomp(3); notably,
1325	extraneous escapes of most ordinary characters will no longer be
1326	accepted.  An exp-run has identified all of the problems with this in
1327	ports, but other non-ports software may need extra escapes removed to
1328	continue to function.
1329
1330	Because of this change, installworld may encounter the following error
1331	from rtld: Undefined symbol "regcomp@FBSD_1.6" -- It is imperative that
1332	you do not halt installworld. Instead, let it run to completion (whether
1333	successful or not) and run installworld once more.
1334
133520200627:
1336	A new implementation of bc and dc has been imported in r362681. This
1337	implementation corrects non-conformant behavior of the previous bc
1338	and adds GNU bc compatible options. It offers a number of extensions,
1339	is much faster on large values, and has support for message catalogs
1340	(a number of languages are already supported, contributions of further
1341	languages welcome). The option WITHOUT_GH_BC can be used to build the
1342	world with the previous versions of bc and dc.
1343
134420200625:
1345	r362639 changed the internal API used between the NFS kernel modules.
1346	As such, they all need to be rebuilt from sources.
1347
134820200613:
1349	r362158 changed the arguments for VFS_CHECKEXP().  As such, any
1350	out of tree file systems need to be modified and rebuilt.
1351	Also, any file systems that are modules must be rebuilt.
1352
135320200604:
1354	read(2) of a directory fd is now rejected by default.  root may
1355	re-enable it for system root only on non-ZFS filesystems with the
1356	security.bsd.allow_read_dir sysctl(8) MIB if
1357	security.bsd.suser_enabled=1.
1358
1359	It may be advised to setup aliases for grep to default to `-d skip` if
1360	commonly non-recursively grepping a list that includes directories and
1361	the potential for the resulting stderr output is not tolerable.  Example
1362	aliases are now installed, commented out, in /root/.cshrc and
1363	/root/.shrc.
1364
136520200523:
1366	Clang, llvm, lld, lldb, compiler-rt, libc++, libunwind and openmp have
1367	been upgraded to 10.0.1.  Please see the 20141231 entry below for
1368	information about prerequisites and upgrading, if you are not already
1369	using clang 3.5.0 or higher.
1370
137120200512:
1372	Support for obsolete compilers has been removed from the build system.
1373	Clang 6 and GCC 6.4 are the minimum supported versions.
1374
137520200424:
1376	closefrom(2) has been moved under COMPAT12, and replaced in libc with a
1377	stub that calls close_range(2).  If using a custom kernel configuration,
1378	you may want to ensure that the COMPAT_FREEBSD12 option is included, as
1379	a slightly older -CURRENT userland and older FreeBSD userlands may not
1380	be functional without closefrom(2).
1381
138220200414:
1383	Upstream DTS from Linux 5.6 was merged and they now have the SID
1384	and THS (Secure ID controller and THermal Sensor) node present.
1385	The DTB overlays have now been removed from the tree for the H3/H5 and
1386	A64 SoCs and the aw_sid and aw_thermal driver have been updated to
1387	deal with upstream DTS. If you are using those overlays you need to
1388	remove them from loader.conf and update the DTBs on the FAT partition.
1389
139020200310:
1391	Clang, llvm, lld, lldb, compiler-rt, libc++, libunwind and openmp have
1392	been upgraded to 10.0.0.  Please see the 20141231 entry below for
1393	information about prerequisites and upgrading, if you are not already
1394	using clang 3.5.0 or higher.
1395
139620200309:
1397	The amd(8) automount daemon has been removed from the source tree.
1398	As of FreeBSD 10.1 autofs(5) is the preferred tool for automounting.
1399	amd is still available in the sysutils/am-utils port.
1400
140120200301:
1402	Removed brooktree driver (bktr.4) from the tree.
1403
140420200229:
1405	The WITH_GPL_DTC option has been removed.  The BSD-licenced device tree
1406	compiler in usr.bin/dtc is used on all architectures which use dtc, and
1407	the GPL dtc is available (if needed) from the sysutils/dtc port.
1408
140920200229:
1410	The WITHOUT_LLVM_LIBUNWIND option has been removed.  LLVM's libunwind
1411	is used by all supported CPU architectures.
1412
141320200229:
1414	GCC 4.2.1 has been removed from the tree.  The WITH_GCC,
1415	WITH_GCC_BOOTSTRAP, and WITH_GNUCXX options are no longer available.
1416	Users who wish to build FreeBSD with GCC must use the external toolchain
1417	ports or packages.
1418
141920200220:
1420	ncurses has been updated to a newer version (6.2-20200215). Given the ABI
1421	has changed, users will have to rebuild all the ports that are linked to
1422	ncurses.
1423
142420200217:
1425	The size of struct vnet and the magic cookie have changed.
1426	Users need to recompile libkvm and all modules using VIMAGE
1427	together with their new kernel.
1428
142920200212:
1430	Defining the long deprecated NO_CTF, NO_DEBUG_FILES, NO_INSTALLLIB,
1431	NO_MAN, NO_PROFILE, and NO_WARNS variables is now an error.  Update
1432	your Makefiles and scripts to define MK_<var>=no instead as required.
1433
1434	One exception to this is that program or library Makefiles should
1435	define MAN to empty rather than setting MK_MAN=no.
1436
143720200108:
1438	Clang/LLVM is now the default compiler and LLD the default
1439	linker for riscv64.
1440
144120200107:
1442	make universe no longer uses GCC 4.2.1 on any architectures.
1443	Architectures not supported by in-tree Clang/LLVM require an
1444	external toolchain package.
1445
144620200104:
1447	GCC 4.2.1 is now not built by default, as part of the GCC 4.2.1
1448	retirement plan.  Specifically, the GCC, GCC_BOOTSTRAP, and GNUCXX
1449	options default to off for all supported CPU architectures.  As a
1450	short-term transition aid they may be enabled via WITH_* options.
1451	GCC 4.2.1 is expected to be removed from the tree on 2020-03-31.
1452
145320200102:
1454	Support for armv5 has been disconnected and is being removed. The
1455	machine combination MACHINE=arm MACHINE_ARCH=arm is no longer valid.
1456	You must now use a MACHINE_ARCH of armv6 or armv7. The default
1457	MACHINE_ARCH for MACHINE=arm is now armv7.
1458
145920191226:
1460	Clang/LLVM is now the default compiler for all powerpc architectures.
1461	LLD is now the default linker for powerpc64.  The change for powerpc64
1462	also includes a change to the ELFv2 ABI, incompatible with the existing
1463	ABI.
1464
146520191226:
1466	Kernel-loadable random(4) modules are no longer unloadable.
1467
146820191222:
1469	Clang, llvm, lld, lldb, compiler-rt, libc++, libunwind and openmp have
1470	been upgraded to 9.0.1.  Please see the 20141231 entry below for
1471	information about prerequisites and upgrading, if you are not already
1472	using clang 3.5.0 or higher.
1473
147420191212:
1475	r355677 has modified the internal interface used between the
1476	NFS modules in the kernel. As such, they must all be upgraded
1477	simultaneously. I will do a version bump for this.
1478
147920191205:
1480	The root certificates of the Mozilla CA Certificate Store have been
1481	imported into the base system and can be managed with the certctl(8)
1482	utility.  If you have installed the security/ca_root_nss port or package
1483	with the ETCSYMLINK option (the default), be advised that there may be
1484	differences between those included in the port and those included in
1485	base due to differences in nss branch used as well as general update
1486	frequency.  Note also that certctl(8) cannot manage certs in the
1487	format used by the security/ca_root_nss port.
1488
148920191120:
1490	The amd(8) automount daemon has been disabled by default, and will be
1491	removed in the future.  As of FreeBSD 10.1 the autofs(5) is available
1492	for automounting.
1493
149420191107:
1495	The nctgpio and wbwd drivers have been moved to the superio bus.
1496	If you have one of these drivers in a kernel configuration, then
1497	you should add device superio to it.  If you use one of these drivers
1498	as a module and you compile a custom set of modules, then you should
1499	add superio to the set.
1500
150120191021:
1502	KPIs for network drivers to access interface addresses have changed.
1503	Users need to recompile NIC driver modules together with kernel.
1504
150520191021:
1506	The net.link.tap.user_open sysctl no longer prevents user opening of
1507	already created /dev/tapNN devices.  Access is still controlled by
1508	node permissions, just like tun devices.  The net.link.tap.user_open
1509	sysctl is now used only to allow users to perform devfs cloning of
1510	tap devices, and the subsequent open may not succeed if the user is not
1511	in the appropriate group.  This sysctl may be deprecated/removed
1512	completely in the future.
1513
151420191009:
1515	mips, powerpc, and sparc64 are no longer built as part of
1516	universe / tinderbox unless MAKE_OBSOLETE_GCC is defined. If
1517	not defined, mips, powerpc, and sparc64 builds will look for
1518	the xtoolchain binaries and if installed use them for universe
1519	builds. As llvm 9.0 becomes vetted for these architectures, they
1520	will be removed from the list.
1521
152220191009:
1523	Clang, llvm, lld, lldb, compiler-rt, libc++, libunwind and openmp have
1524	been upgraded to 9.0.0.  Please see the 20141231 entry below for
1525	information about prerequisites and upgrading, if you are not already
1526	using clang 3.5.0 or higher.
1527
152820191003:
1529	The hpt27xx, hptmv, hptnr, and hptrr drivers have been removed from
1530	GENERIC.  They are available as modules and can be loaded by adding
1531	to /boot/loader.conf hpt27xx_load="YES", hptmv_load="YES",
1532	hptnr_load="YES", or hptrr_load="YES", respectively.
1533
153420190913:
1535	ntpd no longer by default locks its pages in memory, allowing them
1536	to be paged out by the kernel. Use rlimit memlock to restore
1537	historic BSD behaviour. For example, add "rlimit memlock 32"
1538	to ntp.conf to lock up to 32 MB of ntpd address space in memory.
1539
154020190823:
1541	Several of ping6's options have been renamed for better consistency
1542	with ping.  If you use any of -ARWXaghmrtwx, you must update your
1543	scripts.  See ping6(8) for details.
1544
154520190727:
1546	The vfs.fusefs.sync_unmount and vfs.fusefs.init_backgrounded sysctls
1547	and the "-o sync_unmount" and "-o init_backgrounded" mount options have
1548	been removed from mount_fusefs(8).  You can safely remove them from
1549	your scripts, because they had no effect.
1550
1551	The vfs.fusefs.fix_broken_io, vfs.fusefs.sync_resize,
1552	vfs.fusefs.refresh_size, vfs.fusefs.mmap_enable,
1553	vfs.fusefs.reclaim_revoked, and vfs.fusefs.data_cache_invalidate
1554	sysctls have been removed.  If you felt the need to set any of them to
1555	a non-default value, please tell asomers@FreeBSD.org why.
1556
155720190713:
1558	Default permissions on the /var/account/acct file (and copies of it
1559	rotated by periodic daily scripts) are changed from 0644 to 0640
1560	because the file contains sensitive information that should not be
1561	world-readable.  If the /var/account directory must be created by
1562	rc.d/accounting, the mode used is now 0750.  Admins who use the
1563	accounting feature are encouraged to change the mode of an existing
1564	/var/account directory to 0750 or 0700.
1565
156620190620:
1567	Entropy collection and the /dev/random device are no longer optional
1568	components.  The "device random" option has been removed.
1569	Implementations of distilling algorithms can still be made loadable
1570	with "options RANDOM_LOADABLE" (e.g., random_fortuna.ko).
1571
157220190612:
1573	Clang, llvm, lld, lldb, compiler-rt, libc++, libunwind and openmp have
1574	been upgraded to 8.0.1.  Please see the 20141231 entry below for
1575	information about prerequisites and upgrading, if you are not already
1576	using clang 3.5.0 or higher.
1577
157820190608:
1579	A fix was applied to i386 kernel modules to avoid panics with
1580	dpcpu or vnet.  Users need to recompile i386 kernel modules
1581	having pcpu or vnet sections or they will refuse to load.
1582
158320190513:
1584	User-wired pages now have their own counter,
1585	vm.stats.vm.v_user_wire_count.  The vm.max_wired sysctl was renamed
1586	to vm.max_user_wired and changed from an unsigned int to an unsigned
1587	long.  bhyve VMs wired with the -S are now subject to the user
1588	wiring limit; the vm.max_user_wired sysctl may need to be tuned to
1589	avoid running into the limit.
1590
159120190507:
1592	The IPSEC option has been removed from GENERIC.  Users requiring
1593	ipsec(4) must now load the ipsec(4) kernel module.
1594
159520190507:
1596	The tap(4) driver has been folded into tun(4), and the module has been
1597	renamed to tuntap.  You should update any kld_list="if_tap" or
1598	kld_list="if_tun" entries in /etc/rc.conf, if_tap_load="YES" or
1599	if_tun_load="YES" entries in /boot/loader.conf to load the if_tuntap
1600	module instead, and "device tap" or "device tun" entries in kernel
1601	config files to select the tuntap device instead.
1602
160320190418:
1604	The following knobs have been added related to tradeoffs between
1605	safe use of the random device and availability in the absence of
1606	entropy:
1607
1608	kern.random.initial_seeding.bypass_before_seeding: tunable; set
1609	non-zero to bypass the random device prior to seeding, or zero to
1610	block random requests until the random device is initially seeded.
1611	For now, set to 1 (unsafe) by default to restore pre-r346250 boot
1612	availability properties.
1613
1614	kern.random.initial_seeding.read_random_bypassed_before_seeding:
1615	read-only diagnostic sysctl that is set when bypass is enabled and
1616	read_random(9) is bypassed, to enable programmatic handling of this
1617	initial condition, if desired.
1618
1619	kern.random.initial_seeding.arc4random_bypassed_before_seeding:
1620	Similar to the above, but for arc4random(9) initial seeding.
1621
1622	kern.random.initial_seeding.disable_bypass_warnings: tunable; set
1623	non-zero to disable warnings in dmesg when the same conditions are
1624	met as for the diagnostic sysctls above.  Defaults to zero, i.e.,
1625	produce warnings in dmesg when the conditions are met.
1626
162720190416:
1628	The loadable random module KPI has changed; the random_infra_init()
1629	routine now requires a 3rd function pointer for a bool (*)(void)
1630	method that returns true if the random device is seeded (and
1631	therefore unblocked).
1632
163320190404:
1634	r345895 reverts r320698. This implies that an nfsuserd(8) daemon
1635	built from head sources between r320757 (July 6, 2017) and
1636	r338192 (Aug. 22, 2018) will not work unless the "-use-udpsock"
1637	is added to the command line.
1638	nfsuserd daemons built from head sources that are post-r338192 are
1639	not affected and should continue to work.
1640
164120190320:
1642	The fuse(4) module has been renamed to fusefs(4) for consistency with
1643	other filesystems.  You should update any kld_load="fuse" entries in
1644	/etc/rc.conf, fuse_load="YES" entries in /boot/loader.conf, and
1645	"options FUSE" entries in kernel config files.
1646
164720190304:
1648	Clang, llvm, lld, lldb, compiler-rt and libc++ have been upgraded to
1649	8.0.0.  Please see the 20141231 entry below for information about
1650	prerequisites and upgrading, if you are not already using clang 3.5.0
1651	or higher.
1652
165320190226:
1654	geom_uzip(4) depends on the new module xz.  If geom_uzip is statically
1655	compiled into your custom kernel, add 'device xz' statement to the
1656	kernel config.
1657
165820190219:
1659	drm and drm2 have been removed from the tree. Please see
1660	https://wiki.freebsd.org/Graphics for the latest information on
1661	migrating to the drm ports.
1662
166320190131:
1664	Iflib is no longer unconditionally compiled into the kernel.  Drivers
1665	using iflib and statically compiled into the kernel, now require
1666	the 'device iflib' config option.  For the same drivers loaded as
1667	modules on kernels not having 'device iflib', the iflib.ko module
1668	is loaded automatically.
1669
167020190125:
1671	The IEEE80211_AMPDU_AGE and AH_SUPPORT_AR5416 kernel configuration
1672	options no longer exist since r343219 and r343427 respectively;
1673	nothing uses them, so they should be just removed from custom
1674	kernel config files.
1675
167620181230:
1677	r342635 changes the way efibootmgr(8) works by requiring users to add
1678	the -b (bootnum) parameter for commands where the bootnum was previously
1679	specified with each option. For example 'efibootmgr -B 0001' is now
1680	'efibootmgr -B -b 0001'.
1681
168220181220:
1683	r342286 modifies the NFSv4 server so that it obeys vfs.nfsd.nfs_privport
1684	in the same as it is applied to NFSv2 and 3.  This implies that NFSv4
1685	servers that have vfs.nfsd.nfs_privport set will only allow mounts
1686	from clients using a reserved port. Since both the FreeBSD and Linux
1687	NFSv4 clients use reserved ports by default, this should not affect
1688	most NFSv4 mounts.
1689
169020181219:
1691	The XLP config has been removed. We can't support 64-bit atomics in this
1692	kernel because it is running in 32-bit mode. XLP users must transition
1693	to running a 64-bit kernel (XLP64 or XLPN32).
1694
1695	The mips GXEMUL support has been removed from FreeBSD. MALTA* + qemu is
1696	the preferred emulator today and we don't need two different ones.
1697
1698	The old sibyte / swarm / Broadcom BCM1250 support has been
1699	removed from the mips port.
1700
170120181211:
1702	Clang, llvm, lld, lldb, compiler-rt and libc++ have been upgraded to
1703	7.0.1.  Please see the 20141231 entry below for information about
1704	prerequisites and upgrading, if you are not already using clang 3.5.0
1705	or higher.
1706
170720181211:
1708	Remove the timed and netdate programs from the base tree.  Setting
1709	the time with these daemons has been obsolete for over a decade.
1710
171120181126:
1712	On amd64, arm64 and armv7 (architectures that install LLVM's ld.lld
1713	linker as /usr/bin/ld) GNU ld is no longer installed as ld.bfd, as
1714	it produces broken binaries when ifuncs are in use.  Users needing
1715	GNU ld should install the binutils port or package.
1716
171720181123:
1718	The BSD crtbegin and crtend code has been enabled by default. It has
1719	had extensive testing on amd64, arm64, and i386. It can be disabled
1720	by building a world with -DWITHOUT_BSD_CRTBEGIN.
1721
172220181115:
1723	The set of CTM commands (ctm, ctm_smail, ctm_rmail, ctm_dequeue)
1724	has been converted to a port (misc/ctm) and will be removed from
1725	FreeBSD-13.  It is available as a package (ctm) for all supported
1726	FreeBSD versions.
1727
172820181110:
1729	The default newsyslog.conf(5) file has been changed to only include
1730	files in /etc/newsyslog.conf.d/ and /usr/local/etc/newsyslog.conf.d/ if
1731	the filenames end in '.conf' and do not begin with a '.'.
1732
1733	You should check the configuration files in these two directories match
1734	this naming convention. You can verify which configuration files are
1735	being included using the command:
1736		$ newsyslog -Nrv
1737
173820181019:
1739	Stable/12 was branched created.
1740
174120181015:
1742	Ports for the DRM modules have been simplified. Now, amd64 users should
1743	just install the drm-kmod port. All others should install
1744	drm-legacy-kmod.
1745
1746	Graphics hardware that's newer than about 2010 usually works with
1747	drm-kmod.  For hardware older than 2013, however, some users will need
1748	to use drm-legacy-kmod if drm-kmod doesn't work for them. Hardware older
1749	than 2008 usually only works in drm-legacy-kmod. The graphics team can
1750	only commit to hardware made since 2013 due to the complexity of the
1751	market and difficulty to test all the older cards effectively. If you
1752	have hardware supported by drm-kmod, you are strongly encouraged to use
1753	that as you will get better support.
1754
1755	Other than KPI chasing, drm-legacy-kmod will not be updated. As outlined
1756	elsewhere, the drm and drm2 modules will be eliminated from the src base
1757	soon (with a limited exception for arm). Please update to the package
1758	asap and report any issues to x11@freebsd.org.
1759
1760	Generally, anybody using the drm*-kmod packages should add
1761	WITHOUT_DRM_MODULE=t and WITHOUT_DRM2_MODULE=t to avoid nasty
1762	cross-threading surprises, especially with automatic driver
1763	loading from X11 startup. These will become the defaults in 13-current
1764	shortly.
1765
176620181012:
1767	The ixlv(4) driver has been renamed to iavf(4).  As a consequence,
1768	custom kernel and module loading configuration files must be updated
1769	accordingly.  Moreover, interfaces previous presented as ixlvN to the
1770	system are now exposed as iavfN and network configuration files must
1771	be adjusted as necessary.
1772
177320181009:
1774	OpenSSL has been updated to version 1.1.1.  This update included
1775	additional various API changes throughout the base system.  It is
1776	important to rebuild third-party software after upgrading.  The value
1777	of __FreeBSD_version has been bumped accordingly.
1778
177920181006:
1780	The legacy DRM modules and drivers have now been added to the loader's
1781	module blacklist, in favor of loading them with kld_list in rc.conf(5).
1782	The module blacklist may be overridden with the loader.conf(5)
1783	'module_blacklist' variable, but loading them via rc.conf(5) is strongly
1784	encouraged.
1785
178620181002:
1787	The cam(4) based nda(4) driver will be used over nvd(4) by default on
1788	powerpc64. You may set 'options NVME_USE_NVD=1' in your kernel conf or
1789	loader tunable 'hw.nvme.use_nvd=1' if you wish to use the existing
1790	driver.  Make sure to edit /boot/etc/kboot.conf and fstab to use the
1791	nda device name.
1792
179320180913:
1794	Reproducible build mode is now on by default, in preparation for
1795	FreeBSD 12.0.  This eliminates build metadata such as the user,
1796	host, and time from the kernel (and uname), unless the working tree
1797	corresponds to a modified checkout from a version control system.
1798	The previous behavior can be obtained by setting the /etc/src.conf
1799	knob WITHOUT_REPRODUCIBLE_BUILD.
1800
180120180826:
1802	The Yarrow CSPRNG has been removed from the kernel as it has not been
1803	supported by its designers since at least 2003. Fortuna has been the
1804	default since FreeBSD-11.
1805
180620180822:
1807	devctl freeze/thaw have gone into the tree, the rc scripts have been
1808	updated to use them and devmatch has been changed.  You should update
1809	kernel, userland and rc scripts all at the same time.
1810
181120180818:
1812	The default interpreter has been switched from 4th to Lua.
1813	LOADER_DEFAULT_INTERP, documented in build(7), will override the default
1814	interpreter.  If you have custom FORTH code you will need to set
1815	LOADER_DEFAULT_INTERP=4th (valid values are 4th, lua or simp) in
1816	src.conf for the build.  This will create default hard links between
1817	loader and loader_4th instead of loader and loader_lua, the new default.
1818	If you are using UEFI it will create the proper hard link to loader.efi.
1819
1820	bhyve uses userboot.so. It remains 4th-only until some issues are solved
1821	regarding coexisting with multiple versions of FreeBSD are resolved.
1822
182320180815:
1824	ls(1) now respects the COLORTERM environment variable used in other
1825	systems and software to indicate that a colored terminal is both
1826	supported and desired.  If ls(1) is suddenly emitting colors, they may
1827	be disabled again by either removing the unwanted COLORTERM from your
1828	environment, or using `ls --color=never`.  The ls(1) specific CLICOLOR
1829	may not be observed in a future release.
1830
183120180808:
1832	The default pager for most commands has been changed to "less".  To
1833	restore the old behavior, set PAGER="more" and MANPAGER="more -s" in
1834	your environment.
1835
183620180731:
1837	The jedec_ts(4) driver has been removed. A superset of its functionality
1838	is available in the jedec_dimm(4) driver, and the manpage for that
1839	driver includes migration instructions. If you have "device jedec_ts"
1840	in your kernel configuration file, it must be removed.
1841
184220180730:
1843	amd64/GENERIC now has EFI runtime services, EFIRT, enabled by default.
1844	This should have no effect if the kernel is booted via BIOS/legacy boot.
1845	EFIRT may be disabled via a loader tunable, efi.rt.disabled, if a system
1846	has a buggy firmware that prevents a successful boot due to use of
1847	runtime services.
1848
184920180727:
1850	Atmel AT91RM9200 and AT91SAM9, Cavium CNS 11xx and XScale
1851	support has been removed from the tree. These ports were
1852	obsolete and/or known to be broken for many years.
1853
185420180723:
1855	loader.efi has been augmented to participate more fully in the
1856	UEFI boot manager protocol. loader.efi will now look at the
1857	BootXXXX environment variable to determine if a specific kernel
1858	or root partition was specified. XXXX is derived from BootCurrent.
1859	efibootmgr(8) manages these standard UEFI variables.
1860
186120180720:
1862	zfsloader's functionality has now been folded into loader.
1863	zfsloader is no longer necessary once you've updated your
1864	boot blocks. For a transition period, we will install a
1865	hardlink for zfsloader to loader to allow a smooth transition
1866	until the boot blocks can be updated (hard link because old
1867	zfs boot blocks don't understand symlinks).
1868
186920180719:
1870	ARM64 now have efifb support, if you want to have serial console
1871	on your arm64 board when an screen is connected and the bootloader
1872	setup a frame buffer for us to use, just add :
1873	boot_serial=YES
1874	boot_multicons=YES
1875	in /boot/loader.conf
1876	For Raspberry Pi 3 (RPI) users, this is needed even if you don't have
1877	an screen connected as the firmware will setup a frame buffer are that
1878	u-boot will expose as an EFI frame buffer.
1879
188020180719:
1881	New uid:gid added, ntpd:ntpd (123:123).  Be sure to run mergemaster
1882	or take steps to update /etc/passwd before doing installworld on
1883	existing systems.  Do not skip the "mergemaster -Fp" step before
1884	installworld, as described in the update procedures near the bottom
1885	of this document.  Also, rc.d/ntpd now starts ntpd(8) as user ntpd
1886	if the new mac_ntpd(4) policy is available, unless ntpd_flags or
1887	the ntp config file contain options that change file/dir locations.
1888	When such options (e.g., "statsdir" or "crypto") are used, ntpd can
1889	still be run as non-root by setting ntpd_user=ntpd in rc.conf, after
1890	taking steps to ensure that all required files/dirs are accessible
1891	by the ntpd user.
1892
189320180717:
1894	Big endian arm support has been removed.
1895
189620180711:
1897	The static environment setup in kernel configs is no longer mutually
1898	exclusive with the loader(8) environment by default.  In order to
1899	restore the previous default behavior of disabling the loader(8)
1900	environment if a static environment is present, you must specify
1901	loader_env.disabled=1 in the static environment.
1902
190320180705:
1904	The ABI of syscalls used by management tools like sockstat and
1905	netstat has been broken to allow 32-bit binaries to work on
1906	64-bit kernels without modification.  These programs will need
1907	to match the kernel in order to function.  External programs may
1908	require minor modifications to accommodate a change of type in
1909	structures from pointers to 64-bit virtual addresses.
1910
191120180702:
1912	On i386 and amd64 atomics are now inlined. Out of tree modules using
1913	atomics will need to be rebuilt.
1914
191520180701:
1916	The '%I' format in the kern.corefile sysctl limits the number of
1917	core files that a process can generate to the number stored in the
1918	debug.ncores sysctl. The '%I' format is replaced by the single digit
1919	index. Previously, if all indexes were taken the kernel would overwrite
1920	only a core file with the highest index in a filename.
1921	Currently the system will create a new core file if there is a free
1922	index or if all slots are taken it will overwrite the oldest one.
1923
192420180630:
1925	Clang, llvm, lld, lldb, compiler-rt and libc++ have been upgraded to
1926	6.0.1.  Please see the 20141231 entry below for information about
1927	prerequisites and upgrading, if you are not already using clang 3.5.0
1928	or higher.
1929
193020180628:
1931	r335753 introduced a new quoting method. However, etc/devd/devmatch.conf
1932	needed to be changed to work with it. This change was made with r335763
1933	and requires a mergemaster / etcupdate / etc to update the installed
1934	file.
1935
193620180612:
1937	r334930 changed the interface between the NFS modules, so they all
1938	need to be rebuilt.  r335018 did a __FreeBSD_version bump for this.
1939
194020180530:
1941	As of r334391 lld is the default amd64 system linker; it is installed
1942	as /usr/bin/ld.  Kernel build workarounds (see 20180510 entry) are no
1943	longer necessary.
1944
194520180530:
1946	The kernel / userland interface for devinfo changed, so you'll
1947	need a new kernel and userland as a pair for it to work (rebuilding
1948	lib/libdevinfo is all that's required). devinfo and devmatch will
1949	not work, but everything else will when there's a mismatch.
1950
195120180523:
1952	The on-disk format for hwpmc callchain records has changed to include
1953	threadid corresponding to a given record. This changes the field offsets
1954	and thus requires that libpmcstat be rebuilt before using a kernel
1955	later than r334108.
1956
195720180517:
1958	The vxge(4) driver has been removed.  This driver was introduced into
1959	HEAD one week before the Exar left the Ethernet market and is not
1960	known to be used.  If you have device vxge in your kernel config file
1961	it must be removed.
1962
196320180510:
1964	The amd64 kernel now requires a ld that supports ifunc to produce a
1965	working kernel, either lld or a newer binutils. lld is built by default
1966	on amd64, and the 'buildkernel' target uses it automatically. However,
1967	it is not the default linker, so building the kernel the traditional
1968	way requires LD=ld.lld on the command line (or LD=/usr/local/bin/ld for
1969	binutils port/package). lld will soon be default, and this requirement
1970	will go away.
1971
1972	NOTE: As of r334391 lld is the default system linker on amd64, and no
1973	workaround is necessary.
1974
197520180508:
1976	The nxge(4) driver has been removed.  This driver was for PCI-X 10g
1977	cards made by s2io/Neterion.  The company was acquired by Exar and
1978	no longer sells or supports Ethernet products.  If you have device
1979	nxge in your kernel config file it must be removed.
1980
198120180504:
1982	The tz database (tzdb) has been updated to 2018e.  This version more
1983	correctly models time stamps in time zones with negative DST such as
1984	Europe/Dublin (from 1971 on), Europe/Prague (1946/7), and
1985	Africa/Windhoek (1994/2017).  This does not affect the UT offsets, only
1986	time zone abbreviations and the tm_isdst flag.
1987
198820180502:
1989	The ixgb(4) driver has been removed.  This driver was for an early and
1990	uncommon legacy PCI 10GbE for a single ASIC, Intel 82597EX. Intel
1991	quickly shifted to the long lived ixgbe family.  If you have device
1992	ixgb in your kernel config file it must be removed.
1993
199420180501:
1995	The lmc(4) driver has been removed.  This was a WAN interface
1996	card that was already reportedly rare in 2003, and had an ambiguous
1997	license.  If you have device lmc in your kernel config file it must
1998	be removed.
1999
200020180413:
2001	Support for Arcnet networks has been removed.  If you have device
2002	arcnet or device cm in your kernel config file they must be
2003	removed.
2004
200520180411:
2006	Support for FDDI networks has been removed.  If you have device
2007	fddi or device fpa in your kernel config file they must be
2008	removed.
2009
201020180406:
2011	In addition to supporting RFC 3164 formatted messages, the
2012	syslogd(8) service is now capable of parsing RFC 5424 formatted
2013	log messages. The main benefit of using RFC 5424 is that clients
2014	may now send log messages with timestamps containing year numbers,
2015	microseconds and time zone offsets.
2016
2017	Similarly, the syslog(3) C library function has been altered to
2018	send RFC 5424 formatted messages to the local system logging
2019	daemon. On systems using syslogd(8), this change should have no
2020	negative impact, as long as syslogd(8) and the C library are
2021	updated at the same time. On systems using a different system
2022	logging daemon, it may be necessary to make configuration
2023	adjustments, depending on the software used.
2024
2025	When using syslog-ng, add the 'syslog-protocol' flag to local
2026	input sources to enable parsing of RFC 5424 formatted messages:
2027
2028		source src {
2029			unix-dgram("/var/run/log" flags(syslog-protocol));
2030		}
2031
2032	When using rsyslog, disable the 'SysSock.UseSpecialParser' option
2033	of the 'imuxsock' module to let messages be processed by the
2034	regular RFC 3164/5424 parsing pipeline:
2035
2036		module(load="imuxsock" SysSock.UseSpecialParser="off")
2037
2038	Do note that these changes only affect communication between local
2039	applications and syslogd(8). The format that syslogd(8) uses to
2040	store messages on disk or forward messages to other systems
2041	remains unchanged. syslogd(8) still uses RFC 3164 for these
2042	purposes. Options to customize this behaviour will be added in the
2043	future. Utilities that process log files stored in /var/log are
2044	thus expected to continue to function as before.
2045
2046	__FreeBSD_version has been incremented to 1200061 to denote this
2047	change.
2048
204920180328:
2050	Support for token ring networks has been removed. If you
2051	have "device token" in your kernel config you should remove
2052	it. No device drivers supported token ring.
2053
205420180323:
2055	makefs was modified to be able to tag ISO9660 El Torito boot catalog
2056	entries as EFI instead of overloading the i386 tag as done previously.
2057	The amd64 mkisoimages.sh script used to build amd64 ISO images for
2058	release was updated to use this. This may mean that makefs must be
2059	updated before "make cdrom" can be run in the release directory. This
2060	should be as simple as:
2061
2062		$ cd $SRCDIR/usr.sbin/makefs
2063		$ make depend all install
2064
206520180212:
2066	FreeBSD boot loader enhanced with Lua scripting. It's purely opt-in for
2067	now by building WITH_LOADER_LUA and WITHOUT_FORTH in /etc/src.conf.
2068	Co-existence for the transition period will come shortly. Booting is a
2069	complex environment and test coverage for Lua-enabled loaders has been
2070	thin, so it would be prudent to assume it might not work and make
2071	provisions for backup boot methods.
2072
207320180211:
2074	devmatch functionality has been turned on in devd. It will automatically
2075	load drivers for unattached devices. This may cause unexpected drivers
2076	to be loaded. Please report any problems to current@ and
2077	imp@freebsd.org.
2078
207920180114:
2080	Clang, llvm, lld, lldb, compiler-rt and libc++ have been upgraded to
2081	6.0.0.  Please see the 20141231 entry below for information about
2082	prerequisites and upgrading, if you are not already using clang 3.5.0
2083	or higher.
2084
208520180110:
2086	LLVM's lld linker is now used as the FreeBSD/amd64 bootstrap linker.
2087	This means it is used to link the kernel and userland libraries and
2088	executables, but is not yet installed as /usr/bin/ld by default.
2089
2090	To revert to ld.bfd as the bootstrap linker, in /etc/src.conf set
2091	WITHOUT_LLD_BOOTSTRAP=yes
2092
209320180110:
2094	On i386, pmtimer has been removed. Its functionality has been folded
2095	into apm. It was a no-op on ACPI in current for a while now (but was
2096	still needed on i386 in FreeBSD 11 and earlier). Users may need to
2097	remove it from kernel config files.
2098
209920180104:
2100	The use of RSS hash from the network card aka flowid has been
2101	disabled by default for lagg(4) as it's currently incompatible with
2102	the lacp and loadbalance protocols.
2103
2104	This can be re-enabled by setting the following in loader.conf:
2105	net.link.lagg.default_use_flowid="1"
2106
210720180102:
2108	The SW_WATCHDOG option is no longer necessary to enable the
2109	hardclock-based software watchdog if no hardware watchdog is
2110	configured. As before, SW_WATCHDOG will cause the software
2111	watchdog to be enabled even if a hardware watchdog is configured.
2112
211320171215:
2114	r326887 fixes the issue described in the 20171214 UPDATING entry.
2115	r326888 flips the switch back to building GELI support always.
2116
211720171214:
2118	r362593 broke ZFS + GELI support for reasons unknown. However,
2119	it also broke ZFS support generally, so GELI has been turned off
2120	by default as the lesser evil in r326857. If you boot off ZFS and/or
2121	GELI, it might not be a good time to update.
2122
212320171125:
2124	PowerPC users must update loader(8) by rebuilding world before
2125	installing a new kernel, as the protocol connecting them has
2126	changed. Without the update, loader metadata will not be passed
2127	successfully to the kernel and users will have to enter their
2128	root partition at the kernel mountroot prompt to continue booting.
2129	Newer versions of loader can boot old kernels without issue.
2130
213120171110:
2132	The LOADER_FIREWIRE_SUPPORT build variable has been renamed to
2133	WITH/OUT_LOADER_FIREWIRE. LOADER_{NO_,}GELI_SUPPORT has been renamed
2134	to WITH/OUT_LOADER_GELI.
2135
213620171106:
2137	The naive and non-compliant support of posix_fallocate(2) in ZFS
2138	has been removed as of r325320.  The system call now returns EINVAL
2139	when used on a ZFS file.  Although the new behavior complies with the
2140	standard, some consumers are not prepared to cope with it.
2141	One known victim is lld prior to r325420.
2142
214320171102:
2144	Building in a FreeBSD src checkout will automatically create object
2145	directories now rather than store files in the current directory if
2146	'make obj' was not ran.  Calling 'make obj' is no longer necessary.
2147	This feature can be disabled by setting WITHOUT_AUTO_OBJ=yes in
2148	/etc/src-env.conf (not /etc/src.conf), or passing the option in the
2149	environment.
2150
215120171101:
2152	The default MAKEOBJDIR has changed from /usr/obj/<srcdir> for native
2153	builds, and /usr/obj/<arch>/<srcdir> for cross-builds, to a unified
2154	/usr/obj/<srcdir>/<arch>.  This behavior can be changed to the old
2155	format by setting WITHOUT_UNIFIED_OBJDIR=yes in /etc/src-env.conf,
2156	the environment, or with -DWITHOUT_UNIFIED_OBJDIR when building.
2157	The UNIFIED_OBJDIR option is a transitional feature that will be
2158	removed for 12.0 release; please migrate to the new format for any
2159	tools by looking up the OBJDIR used by 'make -V .OBJDIR' means rather
2160	than hardcoding paths.
2161
216220171028:
2163	The native-xtools target no longer installs the files by default to the
2164	OBJDIR.  Use the native-xtools-install target with a DESTDIR to install
2165	to ${DESTDIR}/${NXTP} where NXTP defaults to /nxb-bin.
2166
216720171021:
2168	As part of the boot loader infrastructure cleanup, LOADER_*_SUPPORT
2169	options are changing from controlling the build if defined / undefined
2170	to controlling the build with explicit 'yes' or 'no' values. They will
2171	shift to WITH/WITHOUT options to match other options in the system.
2172
217320171010:
2174	libstand has turned into a private library for sys/boot use only.
2175	It is no longer supported as a public interface outside of sys/boot.
2176
217720171005:
2178	The arm port has split armv6 into armv6 and armv7. armv7 is now
2179	a valid TARGET_ARCH/MACHINE_ARCH setting. If you have an armv7 system
2180	and are running a kernel from before r324363, you will need to add
2181	MACHINE_ARCH=armv7 to 'make buildworld' to do a native build.
2182
218320171003:
2184	When building multiple kernels using KERNCONF, non-existent KERNCONF
2185	files will produce an error and buildkernel will fail. Previously
2186	missing KERNCONF files silently failed giving no indication as to
2187	why, only to subsequently discover during installkernel that the
2188	desired kernel was never built in the first place.
2189
219020170912:
2191	The default serial number format for CTL LUNs has changed.  This will
2192	affect users who use /dev/diskid/* device nodes, or whose FibreChannel
2193	or iSCSI clients care about their LUNs' serial numbers.  Users who
2194	require serial number stability should hardcode serial numbers in
2195	/etc/ctl.conf .
2196
219720170912:
2198	For 32-bit arm compiled for hard-float support, soft-floating point
2199	binaries now always get their shared libraries from
2200	LD_SOFT_LIBRARY_PATH (in the past, this was only used if
2201	/usr/libsoft also existed). Only users with a hard-float ld.so, but
2202	soft-float everything else should be affected.
2203
220420170826:
2205	The geli password typed at boot is now hidden.  To restore the previous
2206	behavior, see geli(8) for configuration options.
2207
220820170825:
2209	Move PMTUD blackhole counters to TCPSTATS and remove them from bare
2210	sysctl values.  Minor nit, but requires a rebuild of both world/kernel
2211	to complete.
2212
221320170814:
2214	"make check" behavior (made in ^/head@r295380) has been changed to
2215	execute from a limited sandbox, as opposed to executing from
2216	${TESTSDIR}.
2217
2218	Behavioral changes:
2219	- The "beforecheck" and "aftercheck" targets are now specified.
2220	- ${CHECKDIR} (added in commit noted above) has been removed.
2221	- Legacy behavior can be enabled by setting
2222	  WITHOUT_MAKE_CHECK_USE_SANDBOX in src.conf(5) or the environment.
2223
2224	If the limited sandbox mode is enabled, "make check" will execute
2225	"make distribution", then install, execute the tests, and clean up the
2226	sandbox if successful.
2227
2228	The "make distribution" and "make install" targets are typically run as
2229	root to set appropriate permissions and ownership at installation time.
2230	The end-user should set "WITH_INSTALL_AS_USER" in src.conf(5) or the
2231	environment if executing "make check" with limited sandbox mode using
2232	an unprivileged user.
2233
223420170808:
2235	Since the switch to GPT disk labels, fsck for UFS/FFS has been
2236	unable to automatically find alternate superblocks. As of r322297,
2237	the information needed to find alternate superblocks has been
2238	moved to the end of the area reserved for the boot block.
2239	Filesystems created with a newfs of this vintage or later
2240	will create the recovery information. If you have a filesystem
2241	created prior to this change and wish to have a recovery block
2242	created for your filesystem, you can do so by running fsck in
2243	foreground mode (i.e., do not use the -p or -y options). As it
2244	starts, fsck will ask ``SAVE DATA TO FIND ALTERNATE SUPERBLOCKS''
2245	to which you should answer yes.
2246
224720170728:
2248	As of r321665, an NFSv4 server configuration that services
2249	Kerberos mounts or clients that do not support the uid/gid in
2250	owner/owner_group string capability, must explicitly enable
2251	the nfsuserd daemon by adding nfsuserd_enable="YES" to the
2252	machine's /etc/rc.conf file.
2253
225420170722:
2255	Clang, llvm, lldb, compiler-rt and libc++ have been upgraded to 5.0.0.
2256	Please see the 20141231 entry below for information about prerequisites
2257	and upgrading, if you are not already using clang 3.5.0 or higher.
2258
225920170701:
2260	WITHOUT_RCMDS is now the default. Set WITH_RCMDS if you need the
2261	r-commands (rlogin, rsh, etc.) to be built with the base system.
2262
226320170625:
2264	The FreeBSD/powerpc platform now uses a 64-bit type for time_t.  This is
2265	a very major ABI incompatible change, so users of FreeBSD/powerpc must
2266	be careful when performing source upgrades.  It is best to run
2267	'make installworld' from an alternate root system, either a live
2268	CD/memory stick, or a temporary root partition.  Additionally, all ports
2269	must be recompiled.  powerpc64 is largely unaffected, except in the case
2270	of 32-bit compatibility.  All 32-bit binaries will be affected.
2271
227220170623:
2273	Forward compatibility for the "ino64" project have been committed. This
2274	will allow most new binaries to run on older kernels in a limited
2275	fashion.  This prevents many of the common foot-shooting actions in the
2276	upgrade as well as the limited ability to roll back the kernel across
2277	the ino64 upgrade. Complicated use cases may not work properly, though
2278	enough simpler ones work to allow recovery in most situations.
2279
228020170620:
2281	Switch back to the BSDL dtc (Device Tree Compiler). Set WITH_GPL_DTC
2282	if you require the GPL compiler.
2283
228420170619:
2285	Forward compatibility for the "ino64" project have been committed. This
2286	will allow most new binaries to run on older kernels in a limited
2287	fashion.  This prevents many of the common foot-shooting actions in the
2288	upgrade as well as the limited ability to roll back the kernel across
2289	the ino64 upgrade. Complicated use cases may not work properly, though
2290	enough simpler ones work to allow recovery in most situations.
2291
229220170618:
2293	The internal ABI used for communication between the NFS kernel modules
2294	was changed by r320085, so __FreeBSD_version was bumped to
2295	ensure all the NFS related modules are updated together.
2296
229720170617:
2298	The ABI of struct event was changed by extending the data
2299	member to 64bit and adding ext fields.  For upgrade, same
2300	precautions as for the entry 20170523 "ino64" must be
2301	followed.
2302
230320170531:
2304	The GNU roff toolchain has been removed from base. To render manpages
2305	which are not supported by mandoc(1), man(1) can fallback on GNU roff
2306	from ports (and recommends to install it).
2307	To render roff(7) documents, consider using GNU roff from ports or the
2308	heirloom doctools roff toolchain from ports via pkg install groff or
2309	via pkg install heirloom-doctools.
2310
231120170524:
2312	The ath(4) and ath_hal(4) modules now build piecemeal to allow for
2313	smaller runtime footprint builds.  This is useful for embedded systems
2314	which only require one chipset support.
2315
2316	If you load it as a module, make sure this is in /boot/loader.conf:
2317
2318	if_ath_load="YES"
2319
2320	This will load the HAL, all chip/RF backends and if_ath_pci.
2321	If you have if_ath_pci in /boot/loader.conf, ensure it is after
2322	if_ath or it will not load any HAL chipset support.
2323
2324	If you want to selectively load things (eg on cheaper ARM/MIPS
2325	platforms where RAM is at a premium) you should:
2326
2327	* load ath_hal
2328	* load the chip modules in question
2329	* load ath_rate, ath_dfs
2330	* load ath_main
2331	* load if_ath_pci and/or if_ath_ahb depending upon your particular
2332	  bus bind type - this is where probe/attach is done.
2333
2334	For further comments/feedback, poke adrian@ .
2335
233620170523:
2337	The "ino64" 64-bit inode project has been committed, which extends
2338	a number of types to 64 bits.  Upgrading in place requires care and
2339	adherence to the documented upgrade procedure.
2340
2341	If using a custom kernel configuration ensure that the
2342	COMPAT_FREEBSD11 option is included (as during the upgrade the
2343	system will be running the ino64 kernel with the existing world).
2344
2345	For the safest in-place upgrade begin by removing previous build
2346	artifacts via "rm -rf /usr/obj/*".  Then, carefully follow the full
2347	procedure documented below under the heading "To rebuild everything and
2348	install it on the current system."  Specifically, a reboot is required
2349	after installing the new kernel before installing world. While an
2350	installworld normally works by accident from multiuser after rebooting
2351	the proper kernel, there are many cases where this will fail across this
2352	upgrade and installworld from single user is required.
2353
235420170424:
2355	The NATM framework including the en(4), fatm(4), hatm(4), and
2356	patm(4) devices has been removed.  Consumers should plan a
2357	migration before the end-of-life date for FreeBSD 11.
2358
235920170420:
2360	GNU diff has been replaced by a BSD licensed diff. Some features of GNU
2361	diff has not been implemented, if those are needed a newer version of
2362	GNU diff is available via the diffutils package under the gdiff name.
2363
236420170413:
2365	As of r316810 for ipfilter, keep frags is no longer assumed when
2366	keep state is specified in a rule. r316810 aligns ipfilter with
2367	documentation in man pages separating keep frags from keep state.
2368	This allows keep state to be specified without forcing keep frags
2369	and allows keep frags to be specified independently of keep state.
2370	To maintain previous behaviour, also specify keep frags with
2371	keep state (as documented in ipf.conf.5).
2372
237320170407:
2374	arm64 builds now use the base system LLD 4.0.0 linker by default,
2375	instead of requiring that the aarch64-binutils port or package be
2376	installed. To continue using aarch64-binutils, set
2377	CROSS_BINUTILS_PREFIX=/usr/local/aarch64-freebsd/bin .
2378
237920170405:
2380	The UDP optimization in entry 20160818 that added the sysctl
2381	net.inet.udp.require_l2_bcast has been reverted.  L2 broadcast
2382	packets will no longer be treated as L3 broadcast packets.
2383
238420170331:
2385	Binds and sends to the loopback addresses, IPv6 and IPv4, will now
2386	use any explicitly assigned loopback address available in the jail
2387	instead of using the first assigned address of the jail.
2388
238920170329:
2390	The ctl.ko module no longer implements the iSCSI target frontend:
2391	cfiscsi.ko does instead.
2392
2393	If building cfiscsi.ko as a kernel module, the module can be loaded
2394	via one of the following methods:
2395	- `cfiscsi_load="YES"` in loader.conf(5).
2396	- Add `cfiscsi` to `$kld_list` in rc.conf(5).
2397	- ctladm(8)/ctld(8), when compiled with iSCSI support
2398	  (`WITH_ISCSI=yes` in src.conf(5))
2399
2400	Please see cfiscsi(4) for more details.
2401
240220170316:
2403	The mmcsd.ko module now additionally depends on geom_flashmap.ko.
2404	Also, mmc.ko and mmcsd.ko need to be a matching pair built from the
2405	same source (previously, the dependency of mmcsd.ko on mmc.ko was
2406	missing, but mmcsd.ko now will refuse to load if it is incompatible
2407	with mmc.ko).
2408
240920170315:
2410	The syntax of ipfw(8) named states was changed to avoid ambiguity.
2411	If you have used named states in the firewall rules, you need to modify
2412	them after installworld and before rebooting. Now named states must
2413	be prefixed with colon.
2414
241520170311:
2416	The old drm (sys/dev/drm/) drivers for i915 and radeon have been
2417	removed as the userland we provide cannot use them. The KMS version
2418	(sys/dev/drm2) supports the same hardware.
2419
242020170302:
2421	Clang, llvm, lldb, compiler-rt and libc++ have been upgraded to 4.0.0.
2422	Please see the 20141231 entry below for information about prerequisites
2423	and upgrading, if you are not already using clang 3.5.0 or higher.
2424
242520170221:
2426	The code that provides support for ZFS .zfs/ directory functionality
2427	has been reimplemented.  It's not possible now to create a snapshot
2428	by mkdir under .zfs/snapshot/.  That should be the only user visible
2429	change.
2430
243120170216:
2432	EISA bus support has been removed. The WITH_EISA option is no longer
2433	valid.
2434
243520170215:
2436	MCA bus support has been removed.
2437
243820170127:
2439	The WITH_LLD_AS_LD / WITHOUT_LLD_AS_LD build knobs have been renamed
2440	WITH_LLD_IS_LD / WITHOUT_LLD_IS_LD, for consistency with CLANG_IS_CC.
2441
244220170112:
2443	The EM_MULTIQUEUE kernel configuration option is deprecated now that
2444	the em(4) driver conforms to iflib specifications.
2445
244620170109:
2447	The igb(4), em(4) and lem(4) ethernet drivers are now implemented via
2448	IFLIB.  If you have a custom kernel configuration that excludes em(4)
2449	but you use igb(4), you need to re-add em(4) to your custom
2450	configuration.
2451
245220161217:
2453	Clang, llvm, lldb, compiler-rt and libc++ have been upgraded to 3.9.1.
2454	Please see the 20141231 entry below for information about prerequisites
2455	and upgrading, if you are not already using clang 3.5.0 or higher.
2456
245720161124:
2458	Clang, llvm, lldb, compiler-rt and libc++ have been upgraded to 3.9.0.
2459	Please see the 20141231 entry below for information about prerequisites
2460	and upgrading, if you are not already using clang 3.5.0 or higher.
2461
246220161119:
2463	The layout of the pmap structure has changed for powerpc to put the pmap
2464	statistics at the front for all CPU variations.  libkvm(3) and all tools
2465	that link against it need to be recompiled.
2466
246720161030:
2468	isl(4) and cyapa(4) drivers now require a new driver,
2469	chromebook_platform(4), to work properly on Chromebook-class hardware.
2470	On other types of hardware the drivers may need to be configured using
2471	device hints.  Please see the corresponding manual pages for details.
2472
247320161017:
2474	The urtwn(4) driver was merged into rtwn(4) and now consists of
2475	rtwn(4) main module + rtwn_usb(4) and rtwn_pci(4) bus-specific
2476	parts.
2477	Also, firmware for RTL8188CE was renamed due to possible name
2478	conflict (rtwnrtl8192cU(B) -> rtwnrtl8192cE(B))
2479
248020161015:
2481	GNU rcs has been removed from base.  It is available as packages:
2482	- rcs: Latest GPLv3 GNU rcs version.
2483	- rcs57: Copy of the latest version of GNU rcs (GPLv2) before it was
2484	removed from base.
2485
248620161008:
2487	Use of the cc_cdg, cc_chd, cc_hd, or cc_vegas congestion control
2488	modules now requires that the kernel configuration contain the
2489	TCP_HHOOK option. (This option is included in the GENERIC kernel.)
2490
249120161003:
2492	The WITHOUT_ELFCOPY_AS_OBJCOPY src.conf(5) knob has been retired.
2493	ELF Tool Chain's elfcopy is always installed as /usr/bin/objcopy.
2494
249520160924:
2496	Relocatable object files with the extension of .So have been renamed
2497	to use an extension of .pico instead.  The purpose of this change is
2498	to avoid a name clash with shared libraries on case-insensitive file
2499	systems.  On those file systems, foo.So is the same file as foo.so.
2500
250120160918:
2502	GNU rcs has been turned off by default.  It can (temporarily) be built
2503	again by adding WITH_RCS knob in src.conf.
2504	Otherwise, GNU rcs is available from packages:
2505	- rcs: Latest GPLv3 GNU rcs version.
2506	- rcs57: Copy of the latest version of GNU rcs (GPLv2) from base.
2507
250820160918:
2509	The backup_uses_rcs functionality has been removed from rc.subr.
2510
251120160908:
2512	The queue(3) debugging macro, QUEUE_MACRO_DEBUG, has been split into
2513	two separate components, QUEUE_MACRO_DEBUG_TRACE and
2514	QUEUE_MACRO_DEBUG_TRASH.  Define both for the original
2515	QUEUE_MACRO_DEBUG behavior.
2516
251720160824:
2518	r304787 changed some ioctl interfaces between the iSCSI userspace
2519	programs and the kernel.  ctladm, ctld, iscsictl, and iscsid must be
2520	rebuilt to work with new kernels.  __FreeBSD_version has been bumped
2521	to 1200005.
2522
252320160818:
2524	The UDP receive code has been updated to only treat incoming UDP
2525	packets that were addressed to an L2 broadcast address as L3
2526	broadcast packets.  It is not expected that this will affect any
2527	standards-conforming UDP application.  The new behaviour can be
2528	disabled by setting the sysctl net.inet.udp.require_l2_bcast to
2529	0.
2530
253120160818:
2532	Remove the openbsd_poll system call.
2533	__FreeBSD_version has been bumped because of this.
2534
253520160708:
2536	The stable/11 branch has been created from head@r302406.
2537
2538After branch N is created, entries older than the N-2 branch point are removed
2539from this file. After stable/14 is branched and current becomes FreeBSD 15,
2540entries older than stable/12 branch point will be removed from current's
2541UPDATING file.
2542
2543COMMON ITEMS:
2544
2545	General Notes
2546	-------------
2547	Sometimes, obscure build problems are the result of environment
2548	poisoning.  This can happen because the make utility reads its
2549	environment when searching for values for global variables.  To run
2550	your build attempts in an "environmental clean room", prefix all make
2551	commands with 'env -i '.  See the env(1) manual page for more details.
2552	Occasionally a build failure will occur with "make -j" due to a race
2553	condition.  If this happens try building again without -j, and please
2554	report a bug if it happens consistently.
2555
2556	When upgrading from one major version to another it is generally best to
2557	upgrade to the latest code in the currently installed branch first, then
2558	do an upgrade to the new branch. This is the best-tested upgrade path,
2559	and has the highest probability of being successful.  Please try this
2560	approach if you encounter problems with a major version upgrade.  Since
2561	the stable 4.x branch point, one has generally been able to upgrade from
2562	anywhere in the most recent stable branch to head / current (or even the
2563	last couple of stable branches). See the top of this file when there's
2564	an exception.
2565
2566	The update process will emit an error on an attempt to perform a build
2567	or install from a FreeBSD version below the earliest supported version.
2568	When updating from an older version the update should be performed one
2569	major release at a time, including running `make delete-old` at each
2570	step.
2571
2572	When upgrading a live system, having a root shell around before
2573	installing anything can help undo problems. Not having a root shell
2574	around can lead to problems if pam has changed too much from your
2575	starting point to allow continued authentication after the upgrade.
2576
2577	This file should be read as a log of events. When a later event changes
2578	information of a prior event, the prior event should not be deleted.
2579	Instead, a pointer to the entry with the new information should be
2580	placed in the old entry. Readers of this file should also sanity check
2581	older entries before relying on them blindly. Authors of new entries
2582	should write them with this in mind.
2583
2584	ZFS notes
2585	---------
2586	When upgrading the boot ZFS pool to a new version (via zpool upgrade),
2587	always follow these three steps:
2588
2589	1) recompile and reinstall the ZFS boot loader and boot block
2590	(this is part of "make buildworld" and "make installworld")
2591
2592	2) update the ZFS boot block on your boot drive (only required when
2593	doing a zpool upgrade):
2594
2595	When booting on x86 via BIOS, use the following to update the ZFS boot
2596	block on the freebsd-boot partition of a GPT partitioned drive ada0:
2597		gpart bootcode -p /boot/gptzfsboot -i $N ada0
2598	The value $N will typically be 1.  For EFI booting, see EFI notes.
2599
2600	3) zpool upgrade the root pool. New bootblocks will work with old
2601	pools, but not vice versa, so they need to be updated before any
2602	zpool upgrade.
2603
2604	Non-boot pools do not need these updates.
2605
2606	EFI notes
2607	---------
2608
2609	There are two locations the boot loader can be installed into. The
2610	current location (and the default) is \efi\freebsd\loader.efi and using
2611	efibootmgr(8) to configure it. The old location, that must be used on
2612	deficient systems that don't honor efibootmgr(8) protocols, is the
2613	fallback location of \EFI\BOOT\BOOTxxx.EFI. Generally, you will copy
2614	/boot/loader.efi to this location, but on systems installed a long time
2615	ago the ESP may be too small and /boot/boot1.efi may be needed unless
2616	the ESP has been expanded in the meantime.
2617
2618	Recent systems will have the ESP mounted on /boot/efi, but older ones
2619	may not have it mounted at all, or mounted in a different
2620	location. Older arm SD images with MBR used /boot/msdos as the
2621	mountpoint. The ESP is a MSDOS filesystem.
2622
2623	The EFI boot loader rarely needs to be updated. For ZFS booting,
2624	however, you must update loader.efi before you do 'zpool upgrade' the
2625	root zpool, otherwise the old loader.efi may reject the upgraded zpool
2626	since it does not automatically understand some new features.
2627
2628	See loader.efi(8) and uefi(8) for more details.
2629
2630	To build a kernel
2631	-----------------
2632	If you are updating from a prior version of FreeBSD (even one just
2633	a few days old), you should follow this procedure.  It is the most
2634	failsafe as it uses a /usr/obj tree with a fresh mini-buildworld,
2635
2636	make kernel-toolchain
2637	make -DALWAYS_CHECK_MAKE buildkernel KERNCONF=YOUR_KERNEL_HERE
2638	make -DALWAYS_CHECK_MAKE installkernel KERNCONF=YOUR_KERNEL_HERE
2639
2640	If you are running kernel modules from ports, see FOOTNOTE [1].
2641
2642	To test a kernel once
2643	---------------------
2644	If you just want to boot a kernel once (because you are not sure
2645	if it works, or if you want to boot a known bad kernel to provide
2646	debugging information) run
2647	make installkernel KERNCONF=YOUR_KERNEL_HERE KODIR=/boot/testkernel
2648	nextboot -k testkernel
2649
2650	To rebuild everything and install it on the current system.
2651	-----------------------------------------------------------
2652	# Note: sometimes if you are running current you gotta do more than
2653	# is listed here if you are upgrading from a really old current.
2654
2655	<make sure you have good level 0 dumps>		[2]
2656	make buildworld
2657	<make sure any needed PORTS_MODULES are set>	[1]
2658	make buildkernel KERNCONF=YOUR_KERNEL_HERE
2659	make installkernel KERNCONF=YOUR_KERNEL_HERE
2660	<reboot in single user>				[3]
2661	etcupdate -p					[5]
2662	make installworld
2663	etcupdate					[4]
2664	make delete-old					[6]
2665	<reboot>
2666
2667	To cross-install current onto a separate partition
2668	--------------------------------------------------
2669	# In this approach we use a separate partition to hold
2670	# current's root, 'usr', and 'var' directories.   A partition
2671	# holding "/", "/usr" and "/var" should be about 2GB in
2672	# size.
2673
2674	<make sure you have good level 0 dumps>
2675	<boot into -stable>
2676	make buildworld
2677	make buildkernel KERNCONF=YOUR_KERNEL_HERE	[1]
2678	<maybe newfs current's root partition>
2679	<mount current's root partition on directory ${CURRENT_ROOT}>
2680	make installworld DESTDIR=${CURRENT_ROOT} -DDB_FROM_SRC
2681	make distribution DESTDIR=${CURRENT_ROOT} # if newfs'd
2682	make installkernel KERNCONF=YOUR_KERNEL_HERE DESTDIR=${CURRENT_ROOT}
2683	cp /etc/fstab ${CURRENT_ROOT}/etc/fstab 		   # if newfs'd
2684	<edit ${CURRENT_ROOT}/etc/fstab to mount "/" from the correct partition>
2685	<reboot into current>
2686	<do a "native" rebuild/install as described in the previous section>
2687	<maybe install compatibility libraries from ports/misc/compat*>
2688	<reboot>
2689
2690
2691	To upgrade in-place from stable to current
2692	----------------------------------------------
2693	<make sure you have good level 0 dumps>		[2]
2694	make buildworld					[9]
2695	<make sure any needed PORTS_MODULES are set>	[1]
2696	make buildkernel KERNCONF=YOUR_KERNEL_HERE	[8]
2697	make installkernel KERNCONF=YOUR_KERNEL_HERE
2698	<reboot in single user>				[3]
2699	etcupdate -p					[5]
2700	make installworld
2701	etcupdate					[4]
2702	make delete-old					[6]
2703	<reboot>
2704
2705	Make sure that you've read the UPDATING file to understand the
2706	tweaks to various things you need.  At this point in the life
2707	cycle of current, things change often and you are on your own
2708	to cope.  The defaults can also change, so please read ALL of
2709	the UPDATING entries.
2710
2711	Also, if you are tracking -current, you must be subscribed to
2712	freebsd-current@freebsd.org.  Make sure that before you update
2713	your sources that you have read and understood all the recent
2714	messages there.  If in doubt, please track -stable which has
2715	much fewer pitfalls.
2716
2717FOOTNOTES:
2718
2719	[1] If you have third party modules, such as drm-kmod or vmware, you
2720	should disable them at this point so they don't crash your system on
2721	reboot. Alternatively, you should rebuild all the modules you have in
2722	your system and install them as well.  If you are running -current, you
2723	should seriously consider placing all sources to all the modules for
2724	your system (or symlinks to them) in /usr/local/sys/modules so this
2725	happens automatically. If all your modules come from ports, then adding
2726	the port origin directories to PORTS_MODULES instead is also automatic
2727	and effective, eg:
2728	     PORTS_MODULES+=graphics/drm-kmod graphics/nvidia-drm-kmod
2729
2730	[2] To make complete dumps on zfs(4), use bectl(8), which
2731	creates bootable snapshots of configurable depth that are
2732	selectable via the bootloader. For ufs(4), use dump(8) and
2733	restore(8).
2734
2735	[3] From the bootblocks, boot -s, and then do
2736		fsck -p
2737		mount -u /
2738		mount -a
2739		sh /etc/rc.d/zfs start	# mount zfs filesystem, if needed
2740		cd src			# full path to source
2741		adjkerntz -i		# if CMOS is wall time
2742	Also, when doing a major release upgrade, it is required that you boot
2743	into single user mode to do the installworld.
2744
2745	[4] Note: This step is non-optional.  Failure to do this step
2746	can result in a significant reduction in the functionality of the
2747	system.  Attempting to do it by hand is not recommended and those
2748	that pursue this avenue should read this file carefully, as well
2749	as the archives of freebsd-current and freebsd-hackers mailing lists
2750	for potential gotchas.  See etcupdate(8) for more information.
2751
2752	[5] Usually this step is a no-op.  However, from time to time
2753	you may need to do this if you get unknown user in the following
2754	step.
2755
2756	[6] This only deletes old files and directories. Old libraries
2757	can be deleted by "make delete-old-libs", but you have to make
2758	sure that no program is using those libraries anymore.
2759
2760	[8] The new kernel must be able to run existing binaries used by an
2761	installworld.  When upgrading across major versions, the new kernel's
2762	configuration must include the correct COMPAT_FREEBSD<n> option for
2763	existing binaries (e.g. COMPAT_FREEBSD11 to run 11.x binaries).  Failure
2764	to do so may leave you with a system that is hard to boot to recover. A
2765	GENERIC kernel will include suitable compatibility options to run
2766	binaries from older branches.  Note that the ability to run binaries
2767	from unsupported branches is not guaranteed.
2768
2769	Make sure that you merge any new devices from GENERIC since the
2770	last time you updated your kernel config file. Options also
2771	change over time, so you may need to adjust your custom kernels
2772	for these as well.
2773
2774	[9] If CPUTYPE is defined in your /etc/make.conf, make sure to use the
2775	"?=" instead of the "=" assignment operator, so that buildworld can
2776	override the CPUTYPE if it needs to.
2777
2778	MAKEOBJDIRPREFIX must be defined in an environment variable, and
2779	not on the command line, or in /etc/make.conf.  buildworld will
2780	warn if it is improperly defined.
2781FORMAT:
2782
2783This file contains a list, in reverse chronological order, of major
2784breakages in tracking -current.  It is not guaranteed to be a complete
2785list of such breakages, and only contains entries since September 23, 2011.
2786If you need to see UPDATING entries from before that date, you will need
2787to fetch an UPDATING file from an older FreeBSD release.
2788
2789Copyright information:
2790
2791Copyright 1998-2009 M. Warner Losh <imp@FreeBSD.org>
2792
2793Redistribution, publication, translation and use, with or without
2794modification, in full or in part, in any form or format of this
2795document are permitted without further permission from the author.
2796
2797THIS DOCUMENT IS PROVIDED BY WARNER LOSH ``AS IS'' AND ANY EXPRESS OR
2798IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED
2799WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE
2800DISCLAIMED.  IN NO EVENT SHALL WARNER LOSH BE LIABLE FOR ANY DIRECT,
2801INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES
2802(INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR
2803SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
2804HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
2805STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING
2806IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
2807POSSIBILITY OF SUCH DAMAGE.
2808
2809Contact Warner Losh if you have any questions about your use of
2810this document.
2811