X-Git-Url: http://git.samba.org/samba.git/?a=blobdiff_plain;f=WHATSNEW.txt;h=7a7a88d4152be3502d33bb4d2f8f774083745e7c;hb=c84254d23d62d57be8ebdd24659c426210ca0213;hp=2f2f2f61c9820b55580dfb7a5d8534d16defb47e;hpb=f0df2426c0a6428ec1f7b9ede57adfa95e8d8382;p=amitay%2Fsamba.git diff --git a/WHATSNEW.txt b/WHATSNEW.txt index 2f2f2f61c98..7a7a88d4152 100644 --- a/WHATSNEW.txt +++ b/WHATSNEW.txt @@ -1,12 +1,12 @@ Release Announcements ===================== -This is the first preview release of Samba 4.8. This is *not* +This is the first preview release of Samba 4.10. This is *not* intended for production environments and is designed for testing purposes only. Please report any defects via the Samba bug reporting system at https://bugzilla.samba.org/. -Samba 4.8 will be the next version of the Samba suite. +Samba 4.10 will be the next version of the Samba suite. UPGRADING @@ -16,24 +16,26 @@ UPGRADING NEW FEATURES/CHANGES ==================== -Using x86_64 Accelerated AES Crypto Instructions -================================================ +GPO Improvements +---------------- -Samba on x86_64 can now be configured to use the Intel accelerated AES -instruction set, which has the potential to make SMB3 signing and -encryption much faster on client and server. To enable this, configure -Samba using the new option --accel-aes=intelaesni. +A new 'samba-tool gpo export' command has been added that can export a +set of Group Policy Objects from a domain in a generalised XML format. -This is a temporary solution that is being included to allow users -to enjoy the benefits of Intel accelerated AES on the x86_64 platform, -but the longer-term solution will be to move Samba to a fully supported -external crypto library. +A corresponding 'samba-tool gpo restore' command has been added to +rebuild the Group Policy Objects from the XML after generalization. +(The administrator needs to correct the values of XML entities between +the backup and restore to account for the change in domain). -The third_party/aesni-intel code will be removed from Samba as soon as -external crypto library performance reaches parity. +kdc prefork +----------- + +The KDC now supports the pre-fork process model and worker processes will be +forked for the KDC when the pre-fork process model is selected for samba. + +REMOVED FEATURES +================ -The default is to build without setting --accel-aes, which uses the -existing Samba software AES implementation. smb.conf changes ================ @@ -41,33 +43,11 @@ smb.conf changes Parameter Name Description Default -------------- ----------- ------- -NT4-style replication based net commands removed -================================================ - -The following commands and sub-commands have been removed from the -"net" utility: - -net rpc samdump -net rpc vampire ldif - -Also, replicating from a real NT4 domain with "net rpc vampire" and -"net rpc vampire keytab" has been removed. - -The NT4-based commands were accidentially broken in 2013, and nobody -noticed the breakage. So instead of fixing them including tests (which -would have meant writing a server for the protocols, which we don't -have) we decided to remove them. - -For the same reason, the "samsync", "samdeltas" and "database_redo" -commands have been removed from rpcclient. - -"net rpc vampire keytab" from Active Directory domains continues to be -supported. KNOWN ISSUES ============ -https://wiki.samba.org/index.php/Release_Planning_for_Samba_4.8#Release_blocking_bugs +https://wiki.samba.org/index.php/Release_Planning_for_Samba_4.10#Release_blocking_bugs #######################################