Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump github.com/slackhq/nebula from 1.6.1 to 1.9.3 #1876

Open
wants to merge 3 commits into
base: master
Choose a base branch
from

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Jun 10, 2024

Bumps github.com/slackhq/nebula from 1.6.1 to 1.9.3.

Release notes

Sourced from github.com/slackhq/nebula's releases.

Release v1.9.3

Fixed

  • Initialize messageCounter to 2 instead of verifying later. (#1156)

Release v1.9.2

Fixed

  • Ensure messageCounter is set before handshake is complete. (#1154)

Release v1.9.1

Fixed

  • Fixed a potential deadlock in GetOrHandshake. (#1151)

Release v1.9.0

Deprecated

  • This release adds a new setting default_local_cidr_any that defaults to true to match previous behavior, but will default to false in the next release (1.10). When set to false, local_cidr is matched correctly for firewall rules on hosts acting as unsafe routers, and should be set for any firewall rules you want to allow unsafe route hosts to access. See the issue and example config for more details. (#1071, #1099)

Added

  • Nebula now has an official Docker image nebulaoss/nebula that is distroless and contains just the nebula and nebula-cert binaries. You can find it here: https://hub.docker.com/r/nebulaoss/nebula (#1037)

  • Experimental binaries for loong64 are now provided. (#1003)

  • Added example service script for OpenRC. (#711)

  • The SSH daemon now supports inlined host keys. (#1054)

  • The SSH daemon now supports certificates with sshd.trusted_cas. (#1098)

Changed

... (truncated)

Changelog

Sourced from github.com/slackhq/nebula's changelog.

[1.9.3] - 2024-06-06

Fixed

  • Initialize messageCounter to 2 instead of verifying later. (#1156)

[1.9.2] - 2024-06-03

Fixed

  • Ensure messageCounter is set before handshake is complete. (#1154)

[1.9.1] - 2024-05-29

Fixed

  • Fixed a potential deadlock in GetOrHandshake. (#1151)

[1.9.0] - 2024-05-07

Deprecated

  • This release adds a new setting default_local_cidr_any that defaults to true to match previous behavior, but will default to false in the next release (1.10). When set to false, local_cidr is matched correctly for firewall rules on hosts acting as unsafe routers, and should be set for any firewall rules you want to allow unsafe route hosts to access. See the issue and example config for more details. (#1071, #1099)

Added

  • Nebula now has an official Docker image nebulaoss/nebula that is distroless and contains just the nebula and nebula-cert binaries. You can find it here: https://hub.docker.com/r/nebulaoss/nebula (#1037)

  • Experimental binaries for loong64 are now provided. (#1003)

  • Added example service script for OpenRC. (#711)

  • The SSH daemon now supports inlined host keys. (#1054)

  • The SSH daemon now supports certificates with sshd.trusted_cas. (#1098)

Changed

... (truncated)

Commits

Most Recent Ignore Conditions Applied to This Pull Request
Dependency Name Ignore Conditions
github.com/slackhq/nebula [>= 1.7.a, < 1.8]

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [github.com/slackhq/nebula](https://github.com/slackhq/nebula) from 1.6.1 to 1.9.3.
- [Release notes](https://github.com/slackhq/nebula/releases)
- [Changelog](https://github.com/slackhq/nebula/blob/master/CHANGELOG.md)
- [Commits](slackhq/nebula@v1.6.1...v1.9.3)

---
updated-dependencies:
- dependency-name: github.com/slackhq/nebula
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file go Pull requests that update Go code labels Jun 10, 2024
@github-actions github-actions bot added the needs triage Waiting for discussion / prioritization by team label Jun 10, 2024
@github-actions github-actions bot enabled auto-merge June 10, 2024 15:19
@dopey
Copy link
Contributor

dopey commented Jun 11, 2024

I think this requires go1.22

@hslatman
Copy link
Member

I think this requires go1.22

Yeah, I think so too. Also see https://github.com/slackhq/nebula/blob/master/go.mod#L3-L5.

Besides that, I also must finish #1662, as it broke the build before.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file go Pull requests that update Go code needs triage Waiting for discussion / prioritization by team
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

2 participants