[{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/292467218","assets_url":"https://api.github.com/repos/NLnetLabs/krill/releases/292467218/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/krill/releases/292467218/assets{?name,label}","html_url":"https://github.com/NLnetLabs/krill/releases/tag/v0.16.0","id":292467218,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCZ13eM4RbrIS","tag_name":"v0.16.0","target_commitish":"main","name":"0.16.0 ‘Früher war mehr Lametta’","draft":false,"immutable":false,"prerelease":false,"created_at":"2026-03-03T10:30:44Z","updated_at":"2026-03-03T10:32:52Z","published_at":"2026-03-03T10:32:52Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/krill/tarball/v0.16.0","zipball_url":"https://api.github.com/repos/NLnetLabs/krill/zipball/v0.16.0","body":"Breaking changes\r\n\r\n* Reverted the use of Roto API for the ROA analysis to downloading RISwhois route origin data and optimized the way this data is stored in memory.\r\n\r\n  Removed the `bgp_api_enabled`, `bgp_api_uri`, and `bgp_api_cache_duration` fields and added `bgp_riswhois_enabled`, `bgp_riswhois_v4_uri`, `bgp_riswhois_v6_uri`, and `bgp_riswhois_refresh_duration` fields, all of which are optional. ([#1329]\r\n* Krill will now refuse to start if the config file contains unknown options. ([#1322])\r\n\r\nNew\r\n\r\n* A local `krillc` can now talk to the server via a Unix socket. In this case it will use the name of the local user for authentication purposes. By default, only the `root` user is allowed with the `admin` role, but both allowed users and what role they are mapped to can be configure. ([#1322])\r\n* Added a `krillc parents refresh` command to allow refreshing the parents of a single CA rather than having to do a bulk refresh which can take a very long time if there are many CAs. ([#1353])\r\n\r\nBug fixes\r\n\r\n* Fixed an issue  with the new BGP API code which false returns missing announcement info. ([#1326])\r\n* Fixed an issue where deleting children or parents of a CA fails before a successful communication with the remote CA. ([#1331])\r\n* Fixed an error message when trying to delete a CA which does not have any parents, children, or repositories despite actually removing the CA. ([#1331])\r\n* Start sweeping the authenticator cache upon daemon startup. This merely reduces memory consumption of the cache. Expired authentication tokens were not used either way. ([#1337])\r\n* Fixed a bug introduced in 0.15.0 where CAs do to not clear fulfilled certification requests causing them to re-request a certificate every time they contact their parent. ([#1345])\r\n* Do not re-try syncing with a parent of a CA when that parent isn’t known. ([#1349])\r\n* Fixed un-suspending child CAs: rather then re-publishing the previously revoked certificate, a new certificate is now issued. ([#1341])\r\n\r\nOther changes\r\n\r\n* The default config files don’t serve as config documentation any more. Rather, there is now a `krill.conf.5` manual page. This manual page is also included in the Krill manual. ([#1322])\r\n* The cryptography library used by the rustls TLS implementation has been switched to aws-lc-rs. This has some consequences for packaging:\r\n* Dropped packaging for Ubuntu 20.04 (Focal Fossa). ([#1359])\r\n\r\n[#1322]: https://github.com/NLnetLabs/krill/pull/1322\r\n[#1326]: https://github.com/NLnetLabs/krill/pull/1326\r\n[#1329]: https://github.com/NLnetLabs/krill/pull/1329\r\n[#1331]: https://github.com/NLnetLabs/krill/pull/1331\r\n[#1337]: https://github.com/NLnetLabs/krill/pull/1337\r\n[#1341]: https://github.com/NLnetLabs/krill/pull/1341\r\n[#1344]: https://github.com/NLnetLabs/krill/pull/1344\r\n[#1349]: https://github.com/NLnetLabs/krill/pull/1349\r\n[#1353]: https://github.com/NLnetLabs/krill/pull/1353\r\n[#1359]: https://github.com/NLnetLabs/krill/pull/1359\r\n","reactions":{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/292467218/reactions","total_count":1,"+1":1,"-1":0,"laugh":0,"hooray":0,"confused":0,"heart":0,"rocket":0,"eyes":0}},{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/288257450","assets_url":"https://api.github.com/repos/NLnetLabs/krill/releases/288257450/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/krill/releases/288257450/assets{?name,label}","html_url":"https://github.com/NLnetLabs/krill/releases/tag/v0.16.0-rc1","id":288257450,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCZ13eM4RLnWq","tag_name":"v0.16.0-rc1","target_commitish":"main","name":"0.16.0-rc1","draft":false,"immutable":false,"prerelease":true,"created_at":"2026-02-19T15:02:12Z","updated_at":"2026-02-19T15:04:21Z","published_at":"2026-02-19T15:04:21Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/krill/tarball/v0.16.0-rc1","zipball_url":"https://api.github.com/repos/NLnetLabs/krill/zipball/v0.16.0-rc1","body":"Breaking changes\r\n\r\n* Reverted the use of Roto API for the ROA analysis to downloading RISwhois route origin data and optimized the way this data is stored in memory.\r\n\r\n  Removed the `bgp_api_enabled`, `bgp_api_uri`, and `bgp_api_cache_duration` fields and added `bgp_riswhois_enabled`, `bgp_riswhois_v4_uri`, `bgp_riswhois_v6_uri`, and `bgp_riswhois_refresh_duration` fields, all of which are optional. ([#1329]\r\n* Krill will now refuse to start if the config file contains unknown options. ([#1322])\r\n\r\nNew\r\n\r\n* A local `krillc` can now talk to the server via a Unix socket. In this case it will use the name of the local user for authentication purposes. By default, only the `root` user is allowed with the `admin` role, but both allowed users and what role they are mapped to can be configure. ([#1322])\r\n* Added a `krillc parents refresh` command to allow refreshing the parents of a single CA rather than having to do a bulk refresh which can take a very long time if there are many CAs. ([#1353])\r\n\r\nBug fixes\r\n\r\n* Fixed an issue  with the new BGP API code which false returns missing announcement info. ([#1326])\r\n* Fixed an issue where deleting children or parents of a CA fails before a successful communication with the remote CA. ([#1331])\r\n* Fixed an error message when trying to delete a CA which does not have any parents, children, or repositories despite actually removing the CA. ([#1331])\r\n* Start sweeping the authenticator cache upon daemon startup. This merely reduces memory consumption of the cache. Expired authentication tokens were not used either way. ([#1337])\r\n* Fixed a bug introduced in 0.15.0 where CAs do to not clear fulfilled certification requests causing them to re-request a certificate every time they contact their parent. ([#1345])\r\n* Do not re-try syncing with a parent of a CA when that parent isn’t known. ([#1349])\r\n* Fixed un-suspending child CAs: rather then re-publishing the previously revoked certificate, a new certificate is now issued. ([#1341])\r\n\r\nOther changes\r\n\r\n* The default config files don’t serve as config documentation any more. Rather, there is now a `krill.conf.5` manual page. This manual page is also included in the Krill manual. ([#1322])\r\n* The cryptography library used by the rustls TLS implementation has been switched to aws-lc-rs. This has some consequences for packaging:\r\n* Dropped packaging for Ubuntu 20.04 (Focal Fossa). ([#1359])\r\n\r\n[#1322]: https://github.com/NLnetLabs/krill/pull/1322\r\n[#1326]: https://github.com/NLnetLabs/krill/pull/1326\r\n[#1329]: https://github.com/NLnetLabs/krill/pull/1329\r\n[#1331]: https://github.com/NLnetLabs/krill/pull/1331\r\n[#1337]: https://github.com/NLnetLabs/krill/pull/1337\r\n[#1341]: https://github.com/NLnetLabs/krill/pull/1341\r\n[#1344]: https://github.com/NLnetLabs/krill/pull/1344\r\n[#1349]: https://github.com/NLnetLabs/krill/pull/1349\r\n[#1353]: https://github.com/NLnetLabs/krill/pull/1353\r\n[#1359]: https://github.com/NLnetLabs/krill/pull/1359\r\n","reactions":{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/288257450/reactions","total_count":1,"+1":1,"-1":0,"laugh":0,"hooray":0,"confused":0,"heart":0,"rocket":0,"eyes":0}},{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/277939577","assets_url":"https://api.github.com/repos/NLnetLabs/krill/releases/277939577/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/krill/releases/277939577/assets{?name,label}","html_url":"https://github.com/NLnetLabs/krill/releases/tag/v0.15.1","id":277939577,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCZ13eM4QkQV5","tag_name":"v0.15.1","target_commitish":"main","name":"0.15.1 ‘Contains Adult Language’","draft":false,"immutable":false,"prerelease":false,"created_at":"2026-01-19T13:44:36Z","updated_at":"2026-01-19T14:04:39Z","published_at":"2026-01-19T14:04:39Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/krill/tarball/v0.15.1","zipball_url":"https://api.github.com/repos/NLnetLabs/krill/zipball/v0.15.1","body":"Bug fixes\r\n\r\n* Fixed a bug introduced in 0.15.0 where CAs do to not clear fulfilled\r\n  certification requests causing them to re-request a certificate every\r\n  time they contact their parent. ([#1345])\r\n\r\nOther changes\r\n\r\n* Updated dependencies.\r\n\r\n[#1345]: https://github.com/NLnetLabs/krill/pull/1345\r\n[#1346]: https://github.com/NLnetLabs/krill/pull/1346\r\n","reactions":{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/277939577/reactions","total_count":1,"+1":1,"-1":0,"laugh":0,"hooray":0,"confused":0,"heart":0,"rocket":0,"eyes":0}},{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/239332662","assets_url":"https://api.github.com/repos/NLnetLabs/krill/releases/239332662/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/krill/releases/239332662/assets{?name,label}","html_url":"https://github.com/NLnetLabs/krill/releases/tag/v0.15.0","id":239332662,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCZ13eM4OQ-02","tag_name":"v0.15.0","target_commitish":"main","name":"0.15.0 ‘But I Digress’","draft":false,"immutable":false,"prerelease":false,"created_at":"2025-08-12T11:43:27Z","updated_at":"2025-08-12T11:45:51Z","published_at":"2025-08-12T11:45:51Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/krill/tarball/v0.15.0","zipball_url":"https://api.github.com/repos/NLnetLabs/krill/zipball/v0.15.0","body":"Breaking Changes\r\n\r\n* Refactored command line options processing for all binaries. As a result, options for both `krillc` and `krillta` have slightly changed. For `krillc`, the `--server`, `--token`, `--format`, and `--api` options are now before the first subcommand (since they affect all commands). For `krillta`, those options are now after `krillta proxy` but before the next subcommand, while `--format` is now after `krillta signer`. ([#1228])\r\n* Removed support for RTA in `krillc`. Support is currently still present in the Krill server, though behind a (non-default) feature flag. ([#1228])\r\n* Changed how authorization works with OpenID Connect and configuration files. Custom profiles have been replaced with a straightforward mapping from access permission to roles and assigning roles to users. For configuration file-based authentication, the file format has slightly changed but the current format is still accepted. If you are using OpenID Connect, you will have to update your configuration. Please, see the manual for details. ([#1232])\r\n* Replaced downloading of RISwhois file for ROA analysis with calls to the [Roto API](https://github.com/NLnetLabs/roto-api). This can be controlled via new configuration settings `bgp_api_enabled`, `bgp_api_uri`, and `bgp_api_cache_seconds`. ([#1233], [#1266])\r\n\r\nNew\r\n\r\n* Added a command to re-initialize the trust anchor signer with different timing values or TAL URLs. ([#1255])\r\n* Disables the protection against early re-issuance for CA certificates that have the full resource set, typically TA certificates. ([#1281])\r\n\r\nBug Fixes\r\n\r\n* Fixed a potential infinite recursion in PKCS11 error handling. ([#1215])\r\n* Open ID connect: Re-initialize the connection after 60s to pick up configuration changes at the provider. ([#1226])\r\n* Fixed the naming of the trust anchor timing configuration. It was expected to be `timing_config` for the config used by Krill and `ta_timing` if used by the Krill TA signer. It is now `ta_timing` in both cases while `timing_config` is accepted as an alias in both cases. ([#1241])\r\n* Improve performance by using buffered reading and writing in the store. ([#1300], [#1301])\r\n\r\nOther changes\r\n\r\n* Refactored Prometheus metrics generation which resulted in a slightly different formatting but should still be syntactically correct. ([#1249])\r\n* Upgraded the bundled Krill UI to [release 0.9.0](https://github.com/NLnetLabs/krill-ui/releases/tag/v0.9.0). ([#1295])\r\n* Added packaging support for Ubuntu Noble, RHEL 10, Debian Trixie; removed packaging support for Ubuntu Xenial and Bionic, and Debian Stretch. ([#1239], [#1297], [#1308])\r\n* The minimum supported Rust version is now 1.85. ([#1288])\r\n\r\n[#1215]: https://github.com/NLnetLabs/krill/pull/1215\r\n[#1226]: https://github.com/NLnetLabs/krill/pull/1226\r\n[#1228]: https://github.com/NLnetLabs/krill/pull/1228\r\n[#1232]: https://github.com/NLnetLabs/krill/pull/1232\r\n[#1233]: https://github.com/NLnetLabs/krill/pull/1233\r\n[#1239]: https://github.com/NLnetLabs/krill/pull/1239\r\n[#1241]: https://github.com/NLnetLabs/krill/pull/1241\r\n[#1249]: https://github.com/NLnetLabs/krill/pull/1249\r\n[#1255]: https://github.com/NLnetLabs/krill/pull/1255\r\n[#1266]: https://github.com/NLnetLabs/krill/pull/1266\r\n[#1281]: https://github.com/NLnetLabs/krill/pull/1281\r\n[#1288]: https://github.com/NLnetLabs/krill/pull/1288\r\n[#1295]: https://github.com/NLnetLabs/krill/pull/1295\r\n[#1297]: https://github.com/NLnetLabs/krill/pull/1297\r\n[#1300]: https://github.com/NLnetLabs/krill/pull/1300\r\n[#1301]: https://github.com/NLnetLabs/krill/pull/1301\r\n[#1308]: https://github.com/NLnetLabs/krill/pull/1308\r\n","reactions":{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/239332662/reactions","total_count":1,"+1":1,"-1":0,"laugh":0,"hooray":0,"confused":0,"heart":0,"rocket":0,"eyes":0}},{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/239016253","assets_url":"https://api.github.com/repos/NLnetLabs/krill/releases/239016253/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/krill/releases/239016253/assets{?name,label}","html_url":"https://github.com/NLnetLabs/krill/releases/tag/v0.15.0-rc6","id":239016253,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCZ13eM4OPxk9","tag_name":"v0.15.0-rc6","target_commitish":"main","name":"0.15.0-rc6","draft":false,"immutable":false,"prerelease":true,"created_at":"2025-08-11T13:04:03Z","updated_at":"2025-08-11T13:04:52Z","published_at":"2025-08-11T13:04:52Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/krill/tarball/v0.15.0-rc6","zipball_url":"https://api.github.com/repos/NLnetLabs/krill/zipball/v0.15.0-rc6","body":"This RC was only made to properly test upgrading Debian packages. It does not include any functional changes.\r\n\r\nOther changes\r\n\r\n* Do not include systemd unit files in krillta and krillup deb packages. ([#1313])\r\n\r\n[#1313]: https://github.com/NLnetLabs/krill/pull/1313\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/237589170","assets_url":"https://api.github.com/repos/NLnetLabs/krill/releases/237589170/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/krill/releases/237589170/assets{?name,label}","html_url":"https://github.com/NLnetLabs/krill/releases/tag/v0.15.0-rc5","id":237589170,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCZ13eM4OKVKy","tag_name":"v0.15.0-rc5","target_commitish":"main","name":"0.15.0-rc5","draft":false,"immutable":false,"prerelease":true,"created_at":"2025-08-05T08:40:04Z","updated_at":"2025-08-05T08:41:02Z","published_at":"2025-08-05T08:41:02Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/krill/tarball/v0.15.0-rc5","zipball_url":"https://api.github.com/repos/NLnetLabs/krill/zipball/v0.15.0-rc5","body":"Bug fixes\r\n\r\n* Improved the message printed when the TA proxy’s signer request does not contain any actual requests. ([#1305])\r\n* Fixed various migration issues. ([#1306], [#1307], [#1309])\r\n\r\nOther changes\r\n\r\n* Add packaging for Debian 13. ([#1308])\r\n* Updated dependencies. ([#1311])\r\n\r\n[#1305]: https://github.com/NLnetLabs/krill/pull/1305\r\n[#1306]: https://github.com/NLnetLabs/krill/pull/1306\r\n[#1307]: https://github.com/NLnetLabs/krill/pull/1307\r\n[#1308]: https://github.com/NLnetLabs/krill/pull/1308\r\n[#1309]: https://github.com/NLnetLabs/krill/pull/1309\r\n[#1311]: https://github.com/NLnetLabs/krill/pull/1311\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/227993638","assets_url":"https://api.github.com/repos/NLnetLabs/krill/releases/227993638/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/krill/releases/227993638/assets{?name,label}","html_url":"https://github.com/NLnetLabs/krill/releases/tag/v0.15.0-rc4","id":227993638,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCZ13eM4Nlugm","tag_name":"v0.15.0-rc4","target_commitish":"main","name":"0.15.0-rc4","draft":false,"immutable":false,"prerelease":true,"created_at":"2025-06-26T11:59:55Z","updated_at":"2025-06-26T12:00:46Z","published_at":"2025-06-26T12:00:46Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/krill/tarball/v0.15.0-rc4","zipball_url":"https://api.github.com/repos/NLnetLabs/krill/zipball/v0.15.0-rc4","body":"Bug fixes\r\n\r\n* Improve performance by using buffered reading and writing in the store.\r\n  ([#1300], [#1301])\r\n\r\nOther changes\r\n\r\n* Updated dependencies.\r\n\r\n[#1300]: https://github.com/NLnetLabs/krill/pull/1300\r\n[#1301]: https://github.com/NLnetLabs/krill/pull/1301\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/226126878","assets_url":"https://api.github.com/repos/NLnetLabs/krill/releases/226126878/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/krill/releases/226126878/assets{?name,label}","html_url":"https://github.com/NLnetLabs/krill/releases/tag/v0.15.0-rc3","id":226126878,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCZ13eM4Nemwe","tag_name":"v0.15.0-rc3","target_commitish":"main","name":"0.15.0-rc3","draft":false,"immutable":false,"prerelease":true,"created_at":"2025-06-18T10:42:32Z","updated_at":"2025-06-18T10:48:11Z","published_at":"2025-06-18T10:48:11Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/krill/tarball/v0.15.0-rc3","zipball_url":"https://api.github.com/repos/NLnetLabs/krill/zipball/v0.15.0-rc3","body":"Other changes\r\n\r\n* Upgraded the bundled Krill UI to [release 0.9.0](https://github.com/NLnetLabs/krill-ui/releases/tag/v0.9.0). ([#1295])\r\n* Added packaging support for RHEL 10-alikes. ([#1297])\r\n\r\n[#1295]: https://github.com/NLnetLabs/krill/pull/1295\r\n[#1297]: https://github.com/NLnetLabs/krill/pull/1297\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/225190022","assets_url":"https://api.github.com/repos/NLnetLabs/krill/releases/225190022/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/krill/releases/225190022/assets{?name,label}","html_url":"https://github.com/NLnetLabs/krill/releases/tag/v0.15.0-rc2","id":225190022,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCZ13eM4NbCCG","tag_name":"v0.15.0-rc2","target_commitish":"main","name":"0.15.0-rc2","draft":false,"immutable":false,"prerelease":true,"created_at":"2025-06-13T14:32:50Z","updated_at":"2025-06-13T14:33:43Z","published_at":"2025-06-13T14:33:43Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/krill/tarball/v0.15.0-rc2","zipball_url":"https://api.github.com/repos/NLnetLabs/krill/zipball/v0.15.0-rc2","body":"Bug fixes\r\n\r\n* Fix Krill refusing to start if the now unnecessary “refresh announcements info” task is still present by adding it back as a dummy task. ([#1292])\r\n* Fix redirect of `/` to `/ui` and allow additional segments on the `/ui` path in the HTTP server. ([#1293])\r\n\r\n\r\n[#1292]: https://github.com/NLnetLabs/krill/pull/1292\r\n[#1293]: https://github.com/NLnetLabs/krill/pull/1293\r\n\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/225157104","assets_url":"https://api.github.com/repos/NLnetLabs/krill/releases/225157104/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/krill/releases/225157104/assets{?name,label}","html_url":"https://github.com/NLnetLabs/krill/releases/tag/v0.15.0-rc1","id":225157104,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCZ13eM4Na5_w","tag_name":"v0.15.0-rc1","target_commitish":"main","name":"0.15.0-rc1","draft":false,"immutable":false,"prerelease":true,"created_at":"2025-06-13T12:35:37Z","updated_at":"2025-06-13T12:37:22Z","published_at":"2025-06-13T12:37:22Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/krill/tarball/v0.15.0-rc1","zipball_url":"https://api.github.com/repos/NLnetLabs/krill/zipball/v0.15.0-rc1","body":"Breaking Changes\r\n\r\n* Refactored command line options processing for all binaries. As a result, options for both `krillc` and `krillta` have slightly changed. For `krillc`, the `--server`, `--token`, `--format`, and `--api` options are now before the first subcommand (since they affect all commands). For `krillta`, those options are now after `krillta proxy` but before the next subcommand, while `--format` is now after `krillta signer`. ([#1228])\r\n* Removed support for RTA in `krillc`. Support is currently still present in the Krill server, though behind a (non-default) feature flag. ([#1228])\r\n* Changed how authorization works with OpenID Connect and configuration files. Custom profiles have been replaced with a straightforward mapping from access permission to roles and assigning roles to users. For configuration file-based authentication, the file format has slightly changed but the current format is still accepted. If you are using OpenID Connect, you will have to update your configuration. Please, see the manual for details. ([#1232])\r\n* Replaced downloading of RISwhois file for ROA analysis with calls to the [Roto API](https://github.com/NLnetLabs/roto-api). This can be controlled via new configuration settings `bgp_api_enabled`, `bgp_api_uri`, and `bgp_api_cache_seconds`. ([#1233], [#1266])\r\n\r\nNew\r\n\r\n* Added a command to re-initialize the trust anchor signer with different timing values or TAL URLs. ([#1255])\r\n* Disables the protection against early re-issuance for CA certificates that have the full resource set, typically TA certificates. ([#1281])\r\n\r\nBug Fixes\r\n\r\n* Fixed a potential infinite recursion in PKCS11 error handling. ([#1215])\r\n* Open ID connect: Re-initialize the connection after 60s to pick up configuration changes at the provider. ([#1226])\r\n* Fixed the naming of the trust anchor timing configuration. It was expected to be `timing_config` for the config used by Krill and `ta_timing` if used by the Krill TA signer. It is now `ta_timing` in both cases while `timing_config` is accepted as an alias in both cases. ([#1241])\r\n\r\nOther changes\r\n\r\n* Refactored Prometheus metrics generation which resulted in a slightly different formatting but should still be syntactically correct. ([#1249])\r\n* Added packaging support for Ubuntu Noble; removed packaging support for Ubuntu Xenial and Bionic, and Debian Stretch. ([#1239])\r\n* The minimum supported Rust version is now 1.85. ([#1288])\r\n\r\n[#1215]: https://github.com/NLnetLabs/krill/pull/1215\r\n[#1226]: https://github.com/NLnetLabs/krill/pull/1226\r\n[#1228]: https://github.com/NLnetLabs/krill/pull/1228\r\n[#1232]: https://github.com/NLnetLabs/krill/pull/1232\r\n[#1233]: https://github.com/NLnetLabs/krill/pull/1233\r\n[#1239]: https://github.com/NLnetLabs/krill/pull/1239\r\n[#1241]: https://github.com/NLnetLabs/krill/pull/1241\r\n[#1249]: https://github.com/NLnetLabs/krill/pull/1249\r\n[#1255]: https://github.com/NLnetLabs/krill/pull/1255\r\n[#1266]: https://github.com/NLnetLabs/krill/pull/1266\r\n[#1281]: https://github.com/NLnetLabs/krill/pull/1281\r\n[#1288]: https://github.com/NLnetLabs/krill/pull/1288\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/217586145","assets_url":"https://api.github.com/repos/NLnetLabs/krill/releases/217586145/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/krill/releases/217586145/assets{?name,label}","html_url":"https://github.com/NLnetLabs/krill/releases/tag/v0.14.7-rc1","id":217586145,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCZ13eM4M-Bnh","tag_name":"v0.14.7-rc1","target_commitish":"main","name":"0.14.7-rc1","draft":false,"immutable":false,"prerelease":true,"created_at":"2025-05-09T12:14:53Z","updated_at":"2025-05-09T12:16:00Z","published_at":"2025-05-09T12:16:00Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/krill/tarball/v0.14.7-rc1","zipball_url":"https://api.github.com/repos/NLnetLabs/krill/zipball/v0.14.7-rc1","body":"Other changes\r\n\r\n* Updates the bundled version of Krill UI to 0.9.0. ([#1271])\r\n\r\n[#1271]: https://github.com/NLnetLabs/krill/pull/1271\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/211019258","assets_url":"https://api.github.com/repos/NLnetLabs/krill/releases/211019258/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/krill/releases/211019258/assets{?name,label}","html_url":"https://github.com/NLnetLabs/krill/releases/tag/v0.14.6","id":211019258,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCZ13eM4Mk-X6","tag_name":"v0.14.6","target_commitish":"main","name":"0.14.6 ‘Roll Initiative!’","draft":false,"immutable":false,"prerelease":false,"created_at":"2025-04-08T13:11:21Z","updated_at":"2025-04-08T13:12:54Z","published_at":"2025-04-08T13:12:54Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/krill/tarball/v0.14.6","zipball_url":"https://api.github.com/repos/NLnetLabs/krill/zipball/v0.14.6","body":"Bug fixes\r\n\r\n* Fixed the naming of the trust anchor timing configuration. It was\r\n  expected to be `timing_config` for the config used by Krill and\r\n  `ta_timing` if used by the Krill TA signer. It is now `ta_timing` in\r\n  both cases while `timing_config` is accepted as an alias in both cases.\r\n  ([#1242])\r\n\r\nOther changes\r\n\r\n* The minimum supported Rust version is now 1.81. ([#1260])\r\n\r\n[#1242]: https://github.com/NLnetLabs/krill/pull/1242\r\n[#1260]: https://github.com/NLnetLabs/krill/pull/1260\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/208460419","assets_url":"https://api.github.com/repos/NLnetLabs/krill/releases/208460419/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/krill/releases/208460419/assets{?name,label}","html_url":"https://github.com/NLnetLabs/krill/releases/tag/v0.14.6-rc1","id":208460419,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCZ13eM4MbNqD","tag_name":"v0.14.6-rc1","target_commitish":"main","name":"0.14.6-rc1","draft":false,"immutable":false,"prerelease":true,"created_at":"2025-03-26T16:32:44Z","updated_at":"2025-03-26T16:34:13Z","published_at":"2025-03-26T16:34:13Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/krill/tarball/v0.14.6-rc1","zipball_url":"https://api.github.com/repos/NLnetLabs/krill/zipball/v0.14.6-rc1","body":"Bug fixes\r\n\r\n* Fixed the naming of the trust anchor timing configuration. It was expected to be `timing_config` for the config used by Krill and `ta_timing` if used by the Krill TA signer. It is now `ta_timing` in both cases while `timing_config` is accepted as an alias in both cases. ([#1242])\r\n\r\nOther changes\r\n\r\n* The minimum supported Rust version is now 1.81. ([#1260])\r\n\r\n[#1242]: https://github.com/NLnetLabs/krill/pull/1242\r\n[#1260]: https://github.com/NLnetLabs/krill/pull/1260\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/162797931","assets_url":"https://api.github.com/repos/NLnetLabs/krill/releases/162797931/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/krill/releases/162797931/assets{?name,label}","html_url":"https://github.com/NLnetLabs/krill/releases/tag/v0.14.5","id":162797931,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCZ13eM4JtBlr","tag_name":"v0.14.5","target_commitish":"main","name":"0.14.5 ‘Who dis? New Phone’","draft":false,"immutable":false,"prerelease":false,"created_at":"2024-06-27T14:42:54Z","updated_at":"2024-06-27T14:44:08Z","published_at":"2024-06-27T14:44:08Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/krill/tarball/v0.14.5","zipball_url":"https://api.github.com/repos/NLnetLabs/krill/zipball/v0.14.5","body":"New\r\n\r\n* Allow overriding the initial manifest number when initializing the TA signer, either by specifying `--initial_manifest_number` in the CLI or by including `ta_mft_nr_override: #nr` in the `ImportTa` JSON. ([#1178])\r\n* Allow overriding the TA manifest number when signing a TA proxy request by specifying `--ta_mft_number_override` in the CLI. ([#1178])\r\n\r\nBug fixes\r\n\r\n* Prevent empty RRDP delta lists to be produced. ([#1181])\r\n* Correctly encode empty revocation lists in CRLs. (via [rpki-rs#295])\r\n* Allow read access to the RIS dump while downloading a new dump. ([#1179])\r\n* Don’t apply “child revoke key” command if the resource class does not exist. ([#1208])\r\n\r\nOther changes\r\n\r\n* The minimum supported Rust version is now 1.70.0. ([#1198])\r\n\r\n[#1178]: https://github.com/NLnetLabs/krill/pull/1178\r\n[#1179]: https://github.com/NLnetLabs/krill/pull/1179\r\n[#1181]: https://github.com/NLnetLabs/krill/pull/1181\r\n[#1198]: https://github.com/NLnetLabs/krill/pull/1198\r\n[#1208]: https://github.com/NLnetLabs/krill/pull/1208\r\n[rpki-rs#295]: https://github.com/NLnetLabs/rpki-rs/pull/295\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/162784600","assets_url":"https://api.github.com/repos/NLnetLabs/krill/releases/162784600/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/krill/releases/162784600/assets{?name,label}","html_url":"https://github.com/NLnetLabs/krill/releases/tag/v0.13.2","id":162784600,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCZ13eM4Js-VY","tag_name":"v0.13.2","target_commitish":"main","name":"0.13.2 ’Be kind, rewind’","draft":false,"immutable":false,"prerelease":false,"created_at":"2024-06-27T13:45:35Z","updated_at":"2024-06-27T13:47:08Z","published_at":"2024-06-27T13:47:08Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/krill/tarball/v0.13.2","zipball_url":"https://api.github.com/repos/NLnetLabs/krill/zipball/v0.13.2","body":"Bug fixes\r\n\r\n* Updated the locked version of the h2 crate to 0.3.26 to fix [RUSTSEC-2024-0332]. ([#1206])\r\n* Don’t apply “child revoke key” command if the resource class does not exist. ([#1207])\r\n\r\n[#1206]: https://github.com/NLnetLabs/krill/pull/1206\r\n[#1207]: https://github.com/NLnetLabs/krill/pull/1207\r\n[RUSTSEC-2024-0332]: https://rustsec.org/advisories/RUSTSEC-2024-0332\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/161653912","assets_url":"https://api.github.com/repos/NLnetLabs/krill/releases/161653912/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/krill/releases/161653912/assets{?name,label}","html_url":"https://github.com/NLnetLabs/krill/releases/tag/v0.14.5-rc1","id":161653912,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCZ13eM4JoqSY","tag_name":"v0.14.5-rc1","target_commitish":"main","name":"0.14.5-rc1","draft":false,"immutable":false,"prerelease":true,"created_at":"2024-06-21T11:37:55Z","updated_at":"2024-06-21T11:39:08Z","published_at":"2024-06-21T11:39:08Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/krill/tarball/v0.14.5-rc1","zipball_url":"https://api.github.com/repos/NLnetLabs/krill/zipball/v0.14.5-rc1","body":"New\r\n\r\n* Allow overriding the initial manifest number when initializing the TA\r\n  signer, either by specifying `--initial_manifest_number` in the CLI or by\r\n  including `ta_mft_nr_override: #nr` in the `ImportTa` JSON. ([#1178])\r\n* Allow overriding the TA manifest number when signing a TA proxy request by\r\n  specifying `--ta_mft_number_override` in the CLI. ([#1178])\r\n\r\nBug fixes\r\n\r\n* Prevent empty RRDP delta lists to be produced. ([#1181])\r\n* Correctly encode empty revocation lists in CRLs. (via [rpki-rs#295])\r\n* Allow read access to the RIS dump while downloading a new dump.\r\n  ([#1179])\r\n* Don’t apply “child revoke key” command if the resource class does not\r\n  exist. ([#1208])\r\n\r\nOther changes\r\n\r\n* The minimum supported Rust version is now 1.70.0. ([#1198])\r\n\r\n[#1178]: https://github.com/NLnetLabs/krill/pull/1178\r\n[#1179]: https://github.com/NLnetLabs/krill/pull/1179\r\n[#1181]: https://github.com/NLnetLabs/krill/pull/1181\r\n[#1198]: https://github.com/NLnetLabs/krill/pull/1198\r\n[#1208]: https://github.com/NLnetLabs/krill/pull/1208\r\n[rpki-rs#295]: https://github.com/NLnetLabs/rpki-rs/pull/295\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/161631854","assets_url":"https://api.github.com/repos/NLnetLabs/krill/releases/161631854/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/krill/releases/161631854/assets{?name,label}","html_url":"https://github.com/NLnetLabs/krill/releases/tag/v0.13.2-rc1","id":161631854,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCZ13eM4Jok5u","tag_name":"v0.13.2-rc1","target_commitish":"main","name":"0.13.2-rc1","draft":false,"immutable":false,"prerelease":true,"created_at":"2024-06-21T09:39:01Z","updated_at":"2024-06-21T09:40:03Z","published_at":"2024-06-21T09:40:03Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/krill/tarball/v0.13.2-rc1","zipball_url":"https://api.github.com/repos/NLnetLabs/krill/zipball/v0.13.2-rc1","body":"Bug fixes\r\n\r\n* Updated the locked version of the h2 crate to 0.3.26 to fix [RUSTSEC-2024-0332]. ([#1206])\r\n* Don’t apply “child revoke key” command if the resource class does not exist. ([#1207])\r\n\r\n[#1206]: https://github.com/NLnetLabs/krill/pull/1206\r\n[#1207]: https://github.com/NLnetLabs/krill/pull/1207\r\n[RUSTSEC-2024-0332]: https://rustsec.org/advisories/RUSTSEC-2024-0332\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/133820294","assets_url":"https://api.github.com/repos/NLnetLabs/krill/releases/133820294/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/krill/releases/133820294/assets{?name,label}","html_url":"https://github.com/NLnetLabs/krill/releases/tag/v0.14.4","id":133820294,"author":{"login":"ximon18","id":3304436,"node_id":"MDQ6VXNlcjMzMDQ0MzY=","avatar_url":"https://avatars.githubusercontent.com/u/3304436?v=4","gravatar_id":"","url":"https://api.github.com/users/ximon18","html_url":"https://github.com/ximon18","followers_url":"https://api.github.com/users/ximon18/followers","following_url":"https://api.github.com/users/ximon18/following{/other_user}","gists_url":"https://api.github.com/users/ximon18/gists{/gist_id}","starred_url":"https://api.github.com/users/ximon18/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/ximon18/subscriptions","organizations_url":"https://api.github.com/users/ximon18/orgs","repos_url":"https://api.github.com/users/ximon18/repos","events_url":"https://api.github.com/users/ximon18/events{/privacy}","received_events_url":"https://api.github.com/users/ximon18/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCZ13eM4H-e-G","tag_name":"v0.14.4","target_commitish":"main","name":"0.14.4 ‘A Flock of Krill’","draft":false,"immutable":false,"prerelease":false,"created_at":"2023-12-13T21:52:21Z","updated_at":"2024-06-17T10:33:42Z","published_at":"2023-12-13T22:10:57Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/krill/tarball/v0.14.4","zipball_url":"https://api.github.com/repos/NLnetLabs/krill/zipball/v0.14.4","body":"This release fixes the following issues:\r\n\r\n- Krill should not freeze if lockfiles were not deleted properly #1171 (since Krill 0.14.0)\r\n- Don't warn about yanked dependencies when installing Krill via Cargo #1173"},{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/132807302","assets_url":"https://api.github.com/repos/NLnetLabs/krill/releases/132807302/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/krill/releases/132807302/assets{?name,label}","html_url":"https://github.com/NLnetLabs/krill/releases/tag/v0.14.3","id":132807302,"author":{"login":"ximon18","id":3304436,"node_id":"MDQ6VXNlcjMzMDQ0MzY=","avatar_url":"https://avatars.githubusercontent.com/u/3304436?v=4","gravatar_id":"","url":"https://api.github.com/users/ximon18","html_url":"https://github.com/ximon18","followers_url":"https://api.github.com/users/ximon18/followers","following_url":"https://api.github.com/users/ximon18/following{/other_user}","gists_url":"https://api.github.com/users/ximon18/gists{/gist_id}","starred_url":"https://api.github.com/users/ximon18/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/ximon18/subscriptions","organizations_url":"https://api.github.com/users/ximon18/orgs","repos_url":"https://api.github.com/users/ximon18/repos","events_url":"https://api.github.com/users/ximon18/events{/privacy}","received_events_url":"https://api.github.com/users/ximon18/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCZ13eM4H6nqG","tag_name":"v0.14.3","target_commitish":"main","name":"0.14.3 ‘Temp’","draft":false,"immutable":false,"prerelease":false,"created_at":"2023-12-06T08:55:57Z","updated_at":"2024-06-17T10:34:00Z","published_at":"2023-12-06T09:22:28Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/krill/tarball/v0.14.3","zipball_url":"https://api.github.com/repos/NLnetLabs/krill/zipball/v0.14.3","body":"This release fixes a number of issues found in 0.14.0 through 0.14.2:\r\n\r\n- Use rpki-rs 0.18.0 to support builds on more platforms #1166\r\n- Fix aspa migration issues #1163\r\n- Depend on kvx 0.9.2 to ensure temp files are used properly #1160\r\n\r\nMost importantly, Krill will now use temp files for *all* data that it stores to avoid issues with half-written files in case the disk is full, or the server is rebooted in the middle of writing. This issue was introduced in release 0.14.0, and we recommend that all users upgrade to this version to avoid issues.\r\n\r\nThis release also includes:\r\n- Updated German UI translations NLnetLabs/krill-ui#51\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/128125610","assets_url":"https://api.github.com/repos/NLnetLabs/krill/releases/128125610/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/krill/releases/128125610/assets{?name,label}","html_url":"https://github.com/NLnetLabs/krill/releases/tag/v0.14.2","id":128125610,"author":{"login":"timbru","id":1336219,"node_id":"MDQ6VXNlcjEzMzYyMTk=","avatar_url":"https://avatars.githubusercontent.com/u/1336219?v=4","gravatar_id":"","url":"https://api.github.com/users/timbru","html_url":"https://github.com/timbru","followers_url":"https://api.github.com/users/timbru/followers","following_url":"https://api.github.com/users/timbru/following{/other_user}","gists_url":"https://api.github.com/users/timbru/gists{/gist_id}","starred_url":"https://api.github.com/users/timbru/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/timbru/subscriptions","organizations_url":"https://api.github.com/users/timbru/orgs","repos_url":"https://api.github.com/users/timbru/repos","events_url":"https://api.github.com/users/timbru/events{/privacy}","received_events_url":"https://api.github.com/users/timbru/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCZ13eM4Howqq","tag_name":"v0.14.2","target_commitish":"main","name":"0.14.2 ‘Extra, Extra, Extra!’","draft":false,"immutable":false,"prerelease":false,"created_at":"2023-11-06T12:17:14Z","updated_at":"2024-06-17T10:34:15Z","published_at":"2023-11-06T12:20:58Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/krill/tarball/v0.14.2","zipball_url":"https://api.github.com/repos/NLnetLabs/krill/zipball/v0.14.2","body":"This release fixes a bug in the migration code, not fully fixed in 0.14.1, where 'surplus' archived data should be skipped (#1147). There is no need to upgrade to this version if you already upgraded to 0.14.0 or 0.14.1.\r\n\r\nRelease 0.14.0 'ASPA' adds support for the updated ASPA v1 profile (issue #1080). Any existing ASPA objects will be re-issued automatically. Updated documentation can be found [here](https://krill.docs.nlnetlabs.nl/en/stable/manage-aspas.html).\r\n\r\nIn addition, the following small features and fixes were done:\r\n- Show delete ROA button when no BGP preview is available #1139\r\n- Add traditional and simplified Chinese translations #1075\r\n- Let the testbed automatically renew the TA manifest and CRL #1095 (see below)\r\n- Show the delete icon for AS0 ROA when there is another existing announcement #1109\r\n\r\nThe main effort in this release was spent on less user-visible improvements in how Krill stores its data. This will help improve robustness today and pave the way for introducing support for Krill clustering using a database back-end in a future release.\r\n\r\nFor now, these issues have been done:\r\n- Improve transactionality of changes (e.g. #1076-1078, #1085, #1108, #1090)\r\n- Remove no longer needed 'always_recover_data' function #1086\r\n- Improve upgrade failed error: tell users to downgrade #1042\r\n- Crash Krill if the task scheduler encounters a fatal error. #1132\r\n\r\nYou can find the full list of issues [here](https://github.com/NLnetLabs/krill/projects/25): \r\n\r\nFinally, regarding issue #1095. If you were running 0.13.1 as a testbed, you might have symlinked the \"signer\" directory to \"ta_signer\" to support a manual workaround for re-signing the trust anchor CRL and manifest. If you did, you may need to delete any surplus files and directories under \"data/ta_signer\" other than the \" ta \" directory."},{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/127851552","assets_url":"https://api.github.com/repos/NLnetLabs/krill/releases/127851552/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/krill/releases/127851552/assets{?name,label}","html_url":"https://github.com/NLnetLabs/krill/releases/tag/v0.14.1","id":127851552,"author":{"login":"timbru","id":1336219,"node_id":"MDQ6VXNlcjEzMzYyMTk=","avatar_url":"https://avatars.githubusercontent.com/u/1336219?v=4","gravatar_id":"","url":"https://api.github.com/users/timbru","html_url":"https://github.com/timbru","followers_url":"https://api.github.com/users/timbru/followers","following_url":"https://api.github.com/users/timbru/following{/other_user}","gists_url":"https://api.github.com/users/timbru/gists{/gist_id}","starred_url":"https://api.github.com/users/timbru/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/timbru/subscriptions","organizations_url":"https://api.github.com/users/timbru/orgs","repos_url":"https://api.github.com/users/timbru/repos","events_url":"https://api.github.com/users/timbru/events{/privacy}","received_events_url":"https://api.github.com/users/timbru/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCZ13eM4Hntwg","tag_name":"v0.14.1","target_commitish":"main","name":"0.14.1 ‘Extra, Extra!’","draft":false,"immutable":false,"prerelease":false,"created_at":"2023-11-03T10:57:31Z","updated_at":"2024-06-17T10:34:31Z","published_at":"2023-11-03T11:00:07Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/krill/tarball/v0.14.1","zipball_url":"https://api.github.com/repos/NLnetLabs/krill/zipball/v0.14.1","body":"This release fixes a bug in the migration code where 'surplus' directories for archived events should be skipped (#1147).\r\n\r\nRelease 0.14.0 'ASPA' adds support for the updated ASPA v1 profile (issue #1080). Any existing ASPA objects will be re-issued automatically. Updated documentation can be found [here](https://krill.docs.nlnetlabs.nl/en/stable/manage-aspas.html).\r\n\r\nIn addition, the following small features and fixes were done:\r\n- Show delete ROA button when no BGP preview is available #1139\r\n- Add traditional and simplified Chinese translations #1075\r\n- Let the testbed automatically renew the TA manifest and CRL #1095 (see below)\r\n- Show the delete icon for AS0 ROA when there is another existing announcement #1109\r\n\r\nThe main effort in this release was spent on less user-visible improvements in how Krill stores its data. This will help improve robustness today and pave the way for introducing support for Krill clustering using a database back-end in a future release.\r\n\r\nFor now, these issues have been done:\r\n- Improve transactionality of changes (e.g. #1076-1078, #1085, #1108, #1090)\r\n- Remove no longer needed 'always_recover_data' function #1086\r\n- Improve upgrade failed error: tell users to downgrade #1042\r\n- Crash Krill if the task scheduler encounters a fatal error. #1132\r\n\r\nYou can find the full list of issues [here](https://github.com/NLnetLabs/krill/projects/25): \r\n\r\nFinally, regarding issue #1095. If you were running 0.13.1 as a testbed, you might have symlinked the \"signer\" directory to \"ta_signer\" to support a manual workaround for re-signing the trust anchor CRL and manifest. If you did, you may need to delete any surplus files and directories under \"data/ta_signer\" other than the \" ta \" directory."},{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/127672233","assets_url":"https://api.github.com/repos/NLnetLabs/krill/releases/127672233/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/krill/releases/127672233/assets{?name,label}","html_url":"https://github.com/NLnetLabs/krill/releases/tag/v0.14.0","id":127672233,"author":{"login":"timbru","id":1336219,"node_id":"MDQ6VXNlcjEzMzYyMTk=","avatar_url":"https://avatars.githubusercontent.com/u/1336219?v=4","gravatar_id":"","url":"https://api.github.com/users/timbru","html_url":"https://github.com/timbru","followers_url":"https://api.github.com/users/timbru/followers","following_url":"https://api.github.com/users/timbru/following{/other_user}","gists_url":"https://api.github.com/users/timbru/gists{/gist_id}","starred_url":"https://api.github.com/users/timbru/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/timbru/subscriptions","organizations_url":"https://api.github.com/users/timbru/orgs","repos_url":"https://api.github.com/users/timbru/repos","events_url":"https://api.github.com/users/timbru/events{/privacy}","received_events_url":"https://api.github.com/users/timbru/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCZ13eM4HnB-p","tag_name":"v0.14.0","target_commitish":"main","name":"0.14.0 ‘ASPA’","draft":false,"immutable":false,"prerelease":false,"created_at":"2023-10-31T10:53:21Z","updated_at":"2024-06-17T10:34:48Z","published_at":"2023-11-02T11:01:59Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/krill/tarball/v0.14.0","zipball_url":"https://api.github.com/repos/NLnetLabs/krill/zipball/v0.14.0","body":"This release adds support for the updated ASPA v1 profile (issue #1080). Any existing ASPA objects will be re-issued automatically. Updated documentation can be found [here](https://krill.docs.nlnetlabs.nl/en/stable/manage-aspas.html).\r\n\r\nIn addition, the following small features and fixes were done:\r\n- Show delete ROA button when no BGP preview is available #1139\r\n- Add traditional and simplified Chinese translations #1075\r\n- Let the testbed automatically renew the TA manifest and CRL #1095 (see below)\r\n- Show the delete icon for AS0 ROA when there is another existing announcement #1109\r\n\r\nThe main effort in this release was spent on less user-visible improvements in how Krill stores its data. This will help improve robustness today and pave the way for introducing support for Krill clustering using a database back-end in a future release.\r\n\r\nFor now, these issues have been done:\r\n- Improve transactionality of changes (e.g. #1076-1078, #1085, #1108, #1090)\r\n- Remove no longer needed 'always_recover_data' function #1086\r\n- Improve upgrade failed error: tell users to downgrade #1042\r\n- Crash Krill if the task scheduler encounters a fatal error. #1132\r\n\r\nYou can find the full list of issues [here](https://github.com/NLnetLabs/krill/projects/25): \r\n\r\nFinally, regarding issue #1095. If you were running 0.13.1 as a testbed, you might have symlinked the \"signer\" directory to \"ta_signer\" to support a manual workaround for re-signing the trust anchor CRL and manifest. If you did, you may need to delete any surplus files and directories under \"data/ta_signer\" other than the \" ta \" directory."},{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/126214333","assets_url":"https://api.github.com/repos/NLnetLabs/krill/releases/126214333/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/krill/releases/126214333/assets{?name,label}","html_url":"https://github.com/NLnetLabs/krill/releases/tag/v0.14.0-rc3","id":126214333,"author":{"login":"timbru","id":1336219,"node_id":"MDQ6VXNlcjEzMzYyMTk=","avatar_url":"https://avatars.githubusercontent.com/u/1336219?v=4","gravatar_id":"","url":"https://api.github.com/users/timbru","html_url":"https://github.com/timbru","followers_url":"https://api.github.com/users/timbru/followers","following_url":"https://api.github.com/users/timbru/following{/other_user}","gists_url":"https://api.github.com/users/timbru/gists{/gist_id}","starred_url":"https://api.github.com/users/timbru/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/timbru/subscriptions","organizations_url":"https://api.github.com/users/timbru/orgs","repos_url":"https://api.github.com/users/timbru/repos","events_url":"https://api.github.com/users/timbru/events{/privacy}","received_events_url":"https://api.github.com/users/timbru/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCZ13eM4HheC9","tag_name":"v0.14.0-rc3","target_commitish":"main","name":"","draft":false,"immutable":false,"prerelease":true,"created_at":"2023-10-23T10:00:46Z","updated_at":"2023-10-23T10:09:36Z","published_at":"2023-10-23T10:09:36Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/krill/tarball/v0.14.0-rc3","zipball_url":"https://api.github.com/repos/NLnetLabs/krill/zipball/v0.14.0-rc3","body":"This is the third release candidate for the coming 0.14.0 release. We invite all interested users to test this version, but please do not upgrade your production environment until 0.14.0 has been released.\r\n\r\nThis release adds support for the updated ASPA v1 profile (issue #1080). Existing ASPA objects will be re-issued when migrating from 0.13.1 or lower to this version. NOTE: you cannot upgrade from 0.14.0-rc1 or 0.14.0-rc2 to this release if you have existing ASPA objects.\r\n\r\nIn addition, this release introduces the following small features and fixes:\r\n- Add traditional and simplified Chinese translations #1075\r\n- Let the testbed automatically renew the TA manifest and CRL #1095\r\n- Show the delete icon for AS0 ROA when there is another existing announcement #1109\r\n- Show delete ROA button when no BGP preview is available #1139 (fixed in 0.14.0-rc2)\r\n\r\nBut, we spent the main effort in this release on improving how Krill stores its data. This will help improve robustness today and pave the way for introducing support for Krill clustering using a database back-end in a future release. For now, these issues were done:\r\n\r\n- Improve transactionality of changes (e.g. #1076-1078, #1085, #1108, #1090)\r\n- Remove no longer needed 'always_recover_data' function #1086\r\n- Improve upgrade failed error: tell users to downgrade #1042\r\n- Crash Krill if the task scheduler encounters a fatal error. #1132\r\n- Add support for importing delegated child CAs #1133\r\n\r\nNote that this release still uses the now outdated ASPA object syntax. We plan to make another focused release to address this immediately after 0.14.0 is released. See issue #1080.\r\n\r\nNote that if you were running 0.13.1 as a testbed, you may have symlinked the \"signer\" directory to \"ta_signer\" to support a manual workaround for re-signing the trust anchor CRL and manifest (issue #1095). If you did, you may need to delete any surplus files and directories under \"/var/lib/krill/data/ta_signer\" other than the \" ta \" directory."},{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/125556758","assets_url":"https://api.github.com/repos/NLnetLabs/krill/releases/125556758/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/krill/releases/125556758/assets{?name,label}","html_url":"https://github.com/NLnetLabs/krill/releases/tag/v0.14.0-rc2","id":125556758,"author":{"login":"timbru","id":1336219,"node_id":"MDQ6VXNlcjEzMzYyMTk=","avatar_url":"https://avatars.githubusercontent.com/u/1336219?v=4","gravatar_id":"","url":"https://api.github.com/users/timbru","html_url":"https://github.com/timbru","followers_url":"https://api.github.com/users/timbru/followers","following_url":"https://api.github.com/users/timbru/following{/other_user}","gists_url":"https://api.github.com/users/timbru/gists{/gist_id}","starred_url":"https://api.github.com/users/timbru/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/timbru/subscriptions","organizations_url":"https://api.github.com/users/timbru/orgs","repos_url":"https://api.github.com/users/timbru/repos","events_url":"https://api.github.com/users/timbru/events{/privacy}","received_events_url":"https://api.github.com/users/timbru/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCZ13eM4He9gW","tag_name":"v0.14.0-rc2","target_commitish":"main","name":"","draft":false,"immutable":false,"prerelease":true,"created_at":"2023-10-18T07:33:04Z","updated_at":"2023-10-18T07:35:33Z","published_at":"2023-10-18T07:35:33Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/krill/tarball/v0.14.0-rc2","zipball_url":"https://api.github.com/repos/NLnetLabs/krill/zipball/v0.14.0-rc2","body":"This is the second release candidate for the coming 0.14.0 release. We invite all interested users to test this version, but please do not upgrade your production environment until 0.14.0 has been released.\r\n\r\nThis release introduces the following small features and fixes:\r\n\r\n- Add traditional and simplified Chinese translations #1075\r\n- Let the testbed automatically renew the TA manifest and CRL #1095\r\n- Show the delete icon for AS0 ROA when there is another existing announcement #1109\r\n- Show delete ROA button when no BGP preview is available #1139 (fixed in 0.14.0-rc2)\r\n\r\nBut, we spent the main effort in this release on improving how Krill stores its data. This will help improve robustness today and pave the way for introducing support for Krill clustering using a database back-end in a future release. For now, these issues were done:\r\n\r\n- Improve transactionality of changes (e.g. #1076-1078, #1085, #1108, #1090)\r\n- Remove no longer needed 'always_recover_data' function #1086\r\n- Improve upgrade failed error: tell users to downgrade #1042\r\n- Crash Krill if the task scheduler encounters a fatal error. #1132\r\n- Add support for importing delegated child CAs #1133\r\n\r\nNote that this release still uses the now outdated ASPA object syntax. We plan to make another focused release to address this immediately after 0.14.0 is released. See issue #1080.\r\n\r\nNote that if you were running 0.13.1 as a testbed, you may have symlinked the \"signer\" directory to \"ta_signer\" to support a manual workaround for re-signing the trust anchor CRL and manifest (issue #1095). If you did, you may need to delete any surplus files and directories under \"/var/lib/krill/data/ta_signer\" other than the \" ta \" directory."},{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/105705855","assets_url":"https://api.github.com/repos/NLnetLabs/krill/releases/105705855/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/krill/releases/105705855/assets{?name,label}","html_url":"https://github.com/NLnetLabs/krill/releases/tag/v0.13.1","id":105705855,"author":{"login":"timbru","id":1336219,"node_id":"MDQ6VXNlcjEzMzYyMTk=","avatar_url":"https://avatars.githubusercontent.com/u/1336219?v=4","gravatar_id":"","url":"https://api.github.com/users/timbru","html_url":"https://github.com/timbru","followers_url":"https://api.github.com/users/timbru/followers","following_url":"https://api.github.com/users/timbru/following{/other_user}","gists_url":"https://api.github.com/users/timbru/gists{/gist_id}","starred_url":"https://api.github.com/users/timbru/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/timbru/subscriptions","organizations_url":"https://api.github.com/users/timbru/orgs","repos_url":"https://api.github.com/users/timbru/repos","events_url":"https://api.github.com/users/timbru/events{/privacy}","received_events_url":"https://api.github.com/users/timbru/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCZ13eM4GTPF_","tag_name":"v0.13.1","target_commitish":"main","name":"0.13.1 ‘Scrollbars!’","draft":false,"immutable":false,"prerelease":false,"created_at":"2023-06-01T14:27:08Z","updated_at":"2024-06-17T10:35:08Z","published_at":"2023-06-01T15:31:54Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/krill/tarball/v0.13.1","zipball_url":"https://api.github.com/repos/NLnetLabs/krill/zipball/v0.13.1","body":"The Krill UI includes a CA selection dropdown in case you have multiple CAs. This dropdown used to have a scrollbar, which accidentally got lost in the UI overhaul we did in version 0.13.0. This is now fixed (#1071)"},{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/103826796","assets_url":"https://api.github.com/repos/NLnetLabs/krill/releases/103826796/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/krill/releases/103826796/assets{?name,label}","html_url":"https://github.com/NLnetLabs/krill/releases/tag/v0.13.0","id":103826796,"author":{"login":"timbru","id":1336219,"node_id":"MDQ6VXNlcjEzMzYyMTk=","avatar_url":"https://avatars.githubusercontent.com/u/1336219?v=4","gravatar_id":"","url":"https://api.github.com/users/timbru","html_url":"https://github.com/timbru","followers_url":"https://api.github.com/users/timbru/followers","following_url":"https://api.github.com/users/timbru/following{/other_user}","gists_url":"https://api.github.com/users/timbru/gists{/gist_id}","starred_url":"https://api.github.com/users/timbru/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/timbru/subscriptions","organizations_url":"https://api.github.com/users/timbru/orgs","repos_url":"https://api.github.com/users/timbru/repos","events_url":"https://api.github.com/users/timbru/events{/privacy}","received_events_url":"https://api.github.com/users/timbru/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCZ13eM4GMEVs","tag_name":"v0.13.0","target_commitish":"main","name":"0.13.0 ‘DRY’","draft":false,"immutable":false,"prerelease":false,"created_at":"2023-05-22T14:12:21Z","updated_at":"2024-06-17T10:35:26Z","published_at":"2023-05-22T14:46:48Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/krill/tarball/v0.13.0","zipball_url":"https://api.github.com/repos/NLnetLabs/krill/zipball/v0.13.0","body":"### Summary\r\n\r\nThis release contains an important fix for an issue affecting v0.12.x Publication Servers (see PR #1023). It is recommended that affected installations are upgraded as soon as possible.\r\n\r\nThe user interface was completely re-implemented in this release resulting in a smaller browser footprint. Functionality is mostly unchanged, except that users can now have an optional comment with each of their ROA configurations. These comments are not part of published ROA objects - they are meant for local bookkeeping only.\r\n\r\nASPA objects are now supported through the CLI by default. We hope to add UI support later this year.\r\n\r\nKrill can now be used as a full RPKI Trust Anchor, using a detached (possibly offline) signer for Trust Anchor key operations.\r\n\r\n### Publication Server\r\n\r\nKrill 0.12.x Publication servers suffer from an issue where multiple entries for the same URI, but with different hashes can appear in a single RRDP snapshot.\r\n\r\nThis problem was solved by removing published objects data duplication in the Krill architecture and ensuring that the URI rather than an object's hash is used as its primary key internally. More information can be found in pull request #1023.\r\n\r\nWe recommend that existing 0.12.x Publication Server installations are upgraded to this version.\r\n\r\n### Updated User Interface\r\n\r\nA lot of changes were introduced in this release. For most users the following improvements will be most visible and relevant:\r\n- Updated UI to new and smaller code base (#995)\r\n- Allow ROA comments in UI (#995)\r\n\r\nThe new krill-ui project has its own repository where issues can be tracked:\r\nhttps://github.com/NLnetLabs/krill-ui\r\n\r\n### ASPA Support\r\n\r\nASPA support is now enabled in the CLI (#1031). We hope to add UI support later this year.\r\n\r\nWe added a number of new restrictions:\r\n- Krill MUST NOT create only a single AFI ASPA (#1063)\r\n- ASPA object MUST NOT allow the customer AS in the provider AS list (#1058)\r\n\r\nYou can read more about ASPA support here:\r\nhttps://krill.docs.nlnetlabs.nl/en/0.13.0/manage-aspas.html\r\n\r\n### API Changes\r\n\r\nWe removed the repository next update time from the stats and metrics output. It was inaccurate (usually 8 hours off), and not very informative. More useful metrics are still provided: last exchange and last successful exchange. If these times differ, then there is an issue that may need attention.\r\n\r\n### Krill as a Trust Anchor\r\n\r\nA lot of work has been done to support using Krill as a Trust Anchor. If you are not an RIR, then you will not need to run your own RPKI TA for normal RPKI operations. That said, some users may want to operate their own TA outside of the TAs provided by the RIRs for testing, study or research reasons. Or perhaps even to manage private use address space.\r\n\r\nYou can read more about this here:\r\nhttps://krill.docs.nlnetlabs.nl/en/0.13.0/trust-anchor.html\r\n\r\nImplemented issues:\r\n- Support offline TA (#976)\r\n- Support initialising offline TA with existing key (#979)\r\n- Bulk import/configure CAs with ROAs (#968, #969) \r\n- Support migration of existing TAs (#978)\r\n- Use new TA for embedded (test) TA (#977)\r\n\r\n### Other Changes\r\n\r\nPublication Server Improvements:\r\n- Remove published object data duplication (#1023)\r\n- Delete repository files by URI (#991)\r\n\r\nMiscellaneous improvements and fixes:\r\n- Log for which child / parent / publisher CMS validation failed (#1027)\r\n- Permit setting CKA_PRIVATE to CK_FALSE on PKCS#11 RSA public keys (#1019)\r\n- Ensure that the CSR uses a trailing slash for id-ad-caRepository (#1030)\r\n- Accept id-cert with path len constraints (#966)\r\n- Publication Server should check uri, not hash, in publish elements (#981)\r\n\r\nThe overview of all issues for this release can be found here:\r\nhttps://github.com/NLnetLabs/krill/projects/24"},{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/94648993","assets_url":"https://api.github.com/repos/NLnetLabs/krill/releases/94648993/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/krill/releases/94648993/assets{?name,label}","html_url":"https://github.com/NLnetLabs/krill/releases/tag/v0.12.3","id":94648993,"author":{"login":"timbru","id":1336219,"node_id":"MDQ6VXNlcjEzMzYyMTk=","avatar_url":"https://avatars.githubusercontent.com/u/1336219?v=4","gravatar_id":"","url":"https://api.github.com/users/timbru","html_url":"https://github.com/timbru","followers_url":"https://api.github.com/users/timbru/followers","following_url":"https://api.github.com/users/timbru/following{/other_user}","gists_url":"https://api.github.com/users/timbru/gists{/gist_id}","starred_url":"https://api.github.com/users/timbru/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/timbru/subscriptions","organizations_url":"https://api.github.com/users/timbru/orgs","repos_url":"https://api.github.com/users/timbru/repos","events_url":"https://api.github.com/users/timbru/events{/privacy}","received_events_url":"https://api.github.com/users/timbru/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCZ13eM4FpDqh","tag_name":"v0.12.3","target_commitish":"main","name":"Sakura","draft":false,"immutable":false,"prerelease":false,"created_at":"2023-03-06T14:25:21Z","updated_at":"2023-03-06T15:14:11Z","published_at":"2023-03-06T15:13:18Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/krill/tarball/v0.12.3","zipball_url":"https://api.github.com/repos/NLnetLabs/krill/zipball/v0.12.3","body":"This release contains a feature that enables Publication Server operators to remove unwanted, surplus, files from their repository. This feature was cherry picked from the upcoming major release branch so that Publication Server operators can use this without delay.\r\n\r\nNote that if you do not use Krill to operate a Publication Server, then there is no need to upgrade to this version now.\r\n\r\nFor more details see: https://github.com/NLnetLabs/krill/pull/1022"},{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/93149151","assets_url":"https://api.github.com/repos/NLnetLabs/krill/releases/93149151/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/krill/releases/93149151/assets{?name,label}","html_url":"https://github.com/NLnetLabs/krill/releases/tag/v0.12.2","id":93149151,"author":{"login":"timbru","id":1336219,"node_id":"MDQ6VXNlcjEzMzYyMTk=","avatar_url":"https://avatars.githubusercontent.com/u/1336219?v=4","gravatar_id":"","url":"https://api.github.com/users/timbru","html_url":"https://github.com/timbru","followers_url":"https://api.github.com/users/timbru/followers","following_url":"https://api.github.com/users/timbru/following{/other_user}","gists_url":"https://api.github.com/users/timbru/gists{/gist_id}","starred_url":"https://api.github.com/users/timbru/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/timbru/subscriptions","organizations_url":"https://api.github.com/users/timbru/orgs","repos_url":"https://api.github.com/users/timbru/repos","events_url":"https://api.github.com/users/timbru/events{/privacy}","received_events_url":"https://api.github.com/users/timbru/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCZ13eM4FjVff","tag_name":"v0.12.2","target_commitish":"main","name":"Dijkstra","draft":false,"immutable":false,"prerelease":false,"created_at":"2023-02-21T10:56:07Z","updated_at":"2023-02-21T11:52:08Z","published_at":"2023-02-21T11:52:08Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/krill/tarball/v0.12.2","zipball_url":"https://api.github.com/repos/NLnetLabs/krill/zipball/v0.12.2","body":"This release fixes a locking issue that can affect a Krill Publication Server with a large number of concurrent publishers. See PR #1007.\r\n\r\nIf you only use Krill as an RPKI Certificate Authority and publish elsewhere, e.g. in an RPKI Publication Server provided by your RIR or NIR, then there is no need to update to this release."},{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/89258068","assets_url":"https://api.github.com/repos/NLnetLabs/krill/releases/89258068/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/krill/releases/89258068/assets{?name,label}","html_url":"https://github.com/NLnetLabs/krill/releases/tag/v0.12.1","id":89258068,"author":{"login":"timbru","id":1336219,"node_id":"MDQ6VXNlcjEzMzYyMTk=","avatar_url":"https://avatars.githubusercontent.com/u/1336219?v=4","gravatar_id":"","url":"https://api.github.com/users/timbru","html_url":"https://github.com/timbru","followers_url":"https://api.github.com/users/timbru/followers","following_url":"https://api.github.com/users/timbru/following{/other_user}","gists_url":"https://api.github.com/users/timbru/gists{/gist_id}","starred_url":"https://api.github.com/users/timbru/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/timbru/subscriptions","organizations_url":"https://api.github.com/users/timbru/orgs","repos_url":"https://api.github.com/users/timbru/repos","events_url":"https://api.github.com/users/timbru/events{/privacy}","received_events_url":"https://api.github.com/users/timbru/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCZ13eM4FUfhU","tag_name":"v0.12.1","target_commitish":"main","name":"Safety Belts","draft":false,"immutable":false,"prerelease":false,"created_at":"2023-01-17T14:42:40Z","updated_at":"2023-01-17T20:23:39Z","published_at":"2023-01-17T15:44:38Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/krill/tarball/v0.12.1","zipball_url":"https://api.github.com/repos/NLnetLabs/krill/zipball/v0.12.1","body":"This release introduces two fixes for the Krill Publication Server. If you only use Krill as an RPKI Certificate Authority and publish elsewhere, e.g. in an RPKI Publication Server provided by your RIR or NIR, then there is no need to update to this release.\r\n\r\nFirstly, this release fixes [CVE-2023-0158](https://nlnetlabs.nl/downloads/krill/CVE-2023-0158.txt)\r\n\r\nThis CVE describes an exposure where remote attackers could cause Krill to crash if it is used as an RPKI Publication Server and if its \"/rrdp\" endpoint is accessible over the public internet. Note that servers are not affected if the advice in [our documentation](https://krill.docs.nlnetlabs.nl/en/stable/publication-server.html#synchronise-repository-data) was followed and a separate web server is used to serve the RRDP data.\r\n\r\nSecondly, locking was added in this release to ensure that updates to the repository content are always applied sequentially. This fixes a concurrency issue introduced in Krill 0.12.0 that could result in rejecting an update from a publishing CA. In such cases the affected update would not be visible for RPKI validators, until a later publication attempt would be successful.\r\n\r\nWe advise that users upgrade to this version of Krill if they use it as their RPKI Publication Server. We also continue to recommend that a separate web server is used for serving the RRDP data.\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/krill/releases/81557498","assets_url":"https://api.github.com/repos/NLnetLabs/krill/releases/81557498/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/krill/releases/81557498/assets{?name,label}","html_url":"https://github.com/NLnetLabs/krill/releases/tag/v0.12.0","id":81557498,"author":{"login":"timbru","id":1336219,"node_id":"MDQ6VXNlcjEzMzYyMTk=","avatar_url":"https://avatars.githubusercontent.com/u/1336219?v=4","gravatar_id":"","url":"https://api.github.com/users/timbru","html_url":"https://github.com/timbru","followers_url":"https://api.github.com/users/timbru/followers","following_url":"https://api.github.com/users/timbru/following{/other_user}","gists_url":"https://api.github.com/users/timbru/gists{/gist_id}","starred_url":"https://api.github.com/users/timbru/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/timbru/subscriptions","organizations_url":"https://api.github.com/users/timbru/orgs","repos_url":"https://api.github.com/users/timbru/repos","events_url":"https://api.github.com/users/timbru/events{/privacy}","received_events_url":"https://api.github.com/users/timbru/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCZ13eM4E3Hf6","tag_name":"v0.12.0","target_commitish":"main","name":"Crickets","draft":false,"immutable":false,"prerelease":false,"created_at":"2022-10-31T14:17:52Z","updated_at":"2022-10-31T14:20:23Z","published_at":"2022-10-31T14:20:23Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/krill/tarball/v0.12.0","zipball_url":"https://api.github.com/repos/NLnetLabs/krill/zipball/v0.12.0","body":"This release vastly reduces the CPU usage by Publication Servers for big RPKI repositories.\r\n\r\nIn addition to this we added a small feature, and fixed an interop issue:\r\n\r\n- Listen on IPv4+IPv6 #955\r\n- Fix rfc6492 interop (AKI format) #948\r\n\r\nUpgrade instructions this release are [here](https://krill.docs.nlnetlabs.nl/en/stable/upgrade.html#v0-12-0)\r\n\r\nThe overview of all issues for this release can be found [here](https://github.com/NLnetLabs/krill/projects/23)\r\n\r\nFull documentation can be found [here](https://krill.docs.nlnetlabs.nl/)"}]