Faucet

Latest version: v1.10.11

Safety actively analyzes 682404 Python packages for vulnerabilities to keep your Python projects secure.

Scan your dependencies

Page 14 of 24

1.8.26

Not secure
* Correct handling when 802.1x nfv port changes state
* Add documentation for experimental 802.1x feature
* Fix raspbian builds when using newer versions of pi-gen
* Fix output of check_faucet_config script to print all datapaths
* Fix packet fuzzer crash on startup
* Fix various crashes on bad configuration options
* Fix comparisons of internal VLAN objects which should make warm reloads safer
* Fix gauge doesn't properly set of_port_curr_speed and of_port_max_speed when a new datapath connects

1.8.25

Not secure
* Ryu 4.29
* Fix for could not apply BGP routes for VLANs in global router
* Fix incorrect ARP/ND reply to non-connected subnet
* Fix unnecessary cold start due to non deterministic ValveTableConfig attribute representation.
* Grafana and Prometheus upgrade
* Fix 802.1x unauthenticated traffic not blocked.

1.8.24

Not secure
* Fix stacked switch notifying controller of packets on VLAN that is not expressed that switch.
* Fix hardcoded ports in FaucetUntaggedHostPermanentLearnTest
* Upgrade to Chewie 0.0.9

1.8.23

Not secure
* Fix LACP flooding corner cases
* Fix setting useless pop_vlan action where all tagged ports on a VLAN are down
* Workaround LACP packets have appended nuls.
* Configurable workaround for OFA not resetting idle timer on rule refresh (idle_dst)
* Configurable workaround for OFA not sending packet out to all listed ports (multi_out)
* Faster learning for proactive learning (learn connected source host)
* More config-time checks for L2/L3 learning timers.

1.8.22

Not secure
* Experimental LACP active support (set ``lacp_active: True`` on ports with lacp enabled) - supported only to another FAUCET currently.
* FAUCET could occasionally falsely detect that a config change had occurred due to dict ordering.
* Experimental infrastructure for OpenFlow metadata and output ACL tables (not complete yet)
* Stricter length checks for control plane (and fix ICMPv4 echo not replied to)
* When ``multi_out: False`` set disable multiple outputs in packet out message.

1.8.21

Not secure
* Don't refresh eth_dst rules if a non-hairpinned host didn't move ports (reduced maintenance flowmods)
* Implement Generic hardware type (relative table IDs, no TFM, barriers)
* Decreased L2 cache updates (reduced maintenance flowmods)
* Controller flood requests use same packet with multiple output ports (reduced packet outs for nexthop resolution)
* Avoid unnecessary regeneration of Prometheus learned_macs.
* Add Prometheus variable faucet_service_secs for background services runtime.
* Upgrade docker base image to alpine 3.8.1

Page 14 of 24

© 2024 Safety CLI Cybersecurity Inc. All Rights Reserved.