[{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/335946121","assets_url":"https://api.github.com/repos/NLnetLabs/routinator/releases/335946121/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/routinator/releases/335946121/assets{?name,label}","html_url":"https://github.com/NLnetLabs/routinator/releases/tag/v0.15.2","id":335946121,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCH2k984UBiGJ","tag_name":"v0.15.2","target_commitish":"main","name":"0.15.2 ‘Irgendwas ist immer’","draft":false,"immutable":false,"prerelease":false,"created_at":"2026-06-08T12:42:03Z","updated_at":"2026-06-08T12:43:48Z","published_at":"2026-06-08T12:43:48Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/routinator/tarball/v0.15.2","zipball_url":"https://api.github.com/repos/NLnetLabs/routinator/zipball/v0.15.2","body":"This release fixes a number of vulnerabilities and security issues identified by a security audit performed by [X41 D-Sec] and financed by [Sovereign Tech Agency].\r\n\r\n**We advise all users to upgrade at their earliest convenience.**\r\n\r\nSecurity fixes\r\n\r\n* Changed how transient errors when accepting incoming HTTP and RTR connections are handled: instead of exiting, a warning is printed and the error is ignored. ([#1099])\r\n\r\n  This issue was assigned [CVE-2026-49232].\r\n\r\n* Extended the check for illegal path components in rsync URIs to also include the authority and module parts. (via [rpki-rs#370])\r\n\r\n  This fixes a path traversal vulnerability that has been assigned [CVE-2026-49233].\r\n\r\n* Fixed a panic when parsing certain AS numbers from strings. (via [rpki-rs#373])\r\n\r\n  This fixes a vulnerability that has been assigned [CVE-2026-49234].\r\n\r\n* Upgraded quick-xml to at least 0.39.4 to fix a regression in XML parsing that may lead a panic on certain crated XML files. (via [rpki-rs#372])\r\n\r\n  This fixes a vulnerability that has been assigned [CVE-2026-49235].\r\n\r\nImprovements\r\n\r\n* Restricted trust anchor certificates downloaded via HTTP to the size given via the `max_object_size` config option. ([#1090])\r\n* The `-e` and `--rsh` options will now be rejected in the `rsync-args` config option. Similarly, Routinator will not start if the equivalent evironment variable `RSYNC_RSH` is set. ([#1091])\r\n\r\nBug fixes\r\n\r\n* Set an RTR listener socket received via systemd to non-blocking. This fixes a panic in Tokio. ([#1081] by [@MaxHearnden])\r\n* Fixed the `--rrdp-tcp-keepalive` to be a command line option rather than a command line argument. ([1085])\r\n\r\nOther changes\r\n\r\n* Support for Ubuntu Resolute Raccoon (26.04). ([#1095])\r\n\r\n[#1090]: https://github.com/NLnetLabs/routinator/pull/1090\r\n[#1091]: https://github.com/NLnetLabs/routinator/pull/1091\r\n[#1081]: https://github.com/NLnetLabs/routinator/pull/1081\r\n[#1085]: https://github.com/NLnetLabs/routinator/pull/1085\r\n[#1095]: https://github.com/NLnetLabs/routinator/pull/1095\r\n[@MaxHearnden]: https://github.com/MaxHearnden\r\n[rpki-rs#370]: https://github.com/NLnetLabs/rpki-rs/pull/370\r\n[rpki-rs#372]: https://github.com/NLnetLabs/rpki-rs/pull/372\r\n[rpki-rs#373]: https://github.com/NLnetLabs/rpki-rs/pull/373\r\n[CVE-2026-49232]: https://nlnetlabs.nl/downloads/routinator/CVE-2026-49232.txt\r\n[CVE-2026-49233]: https://nlnetlabs.nl/downloads/routinator/CVE-2026-49233.txt\r\n[CVE-2026-49234]: https://nlnetlabs.nl/downloads/routinator/CVE-2026-49234.txt\r\n[CVE-2026-49235]: https://nlnetlabs.nl/downloads/routinator/CVE-2026-49235.txt\r\n[X41 D-Sec]: https://www.x41-dsec.de/\r\n[Sovereign Tech Agency]: https://www.sovereign.tech/\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/252689881","assets_url":"https://api.github.com/repos/NLnetLabs/routinator/releases/252689881/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/routinator/releases/252689881/assets{?name,label}","html_url":"https://github.com/NLnetLabs/routinator/releases/tag/v0.15.1","id":252689881,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCH2k984PD73Z","tag_name":"v0.15.1","target_commitish":"main","name":"0.15.1 ‘Ain’t No Country Club Either’","draft":false,"immutable":false,"prerelease":false,"created_at":"2025-10-07T12:06:49Z","updated_at":"2025-10-07T12:08:12Z","published_at":"2025-10-07T12:08:12Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/routinator/tarball/v0.15.1","zipball_url":"https://api.github.com/repos/NLnetLabs/routinator/zipball/v0.15.1","body":"Bug fixes\r\n\r\n* Abort the optimistic initial run if there are no stored TA certificates for a TAL instead of succeeding with an empty data set. ([#1071])\r\n* Undo `PrivateUsers` restriction in systemd unit files to allow user to run Routinator on privileged ports. ([#1068])\r\n\r\n[#1068]: https://github.com/NLnetLabs/routinator/pull/1068\r\n[#1071]: https://github.com/NLnetLabs/routinator/pull/1071\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/251092522","assets_url":"https://api.github.com/repos/NLnetLabs/routinator/releases/251092522/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/routinator/releases/251092522/assets{?name,label}","html_url":"https://github.com/NLnetLabs/routinator/releases/tag/v0.15.0","id":251092522,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCH2k984O914q","tag_name":"v0.15.0","target_commitish":"main","name":"0.15.0 ‘This Ain’t No Disco’","draft":false,"immutable":false,"prerelease":false,"created_at":"2025-09-30T11:50:43Z","updated_at":"2025-09-30T11:52:40Z","published_at":"2025-09-30T11:52:40Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/routinator/tarball/v0.15.0","zipball_url":"https://api.github.com/repos/NLnetLabs/routinator/zipball/v0.15.0","body":"Breaking changes\r\n\r\n* Removed the `rrdp-keep-responses` feature. We suggest the use of an HTTP proxy such as [mitmproxy] instead.\r\n\r\n  This once and for all fixes [CVE-2023-39916] which returned again in release 0.14.0. ([#1055])\r\n* Messages about issues with repositories and publication points are now logged separately and by default are only visible in the status HTTP server endpoints. The new `log-repository-issues` option can be used to have these messages also written to the log. ([#1054])\r\n* Changed how server mode deals with broken or missing local exception files. Previously, Routinator would just stop updating until they are fixed, leading to updates being stalled if the operator misses the error messages. Now it will log a warning and keep using the previous set of local exceptions. When starting, it will exit with an error message if there are broken or missing local exception files. ([#1060])\r\n* Changed the RRDP timeouts: introduced a new config variable `rrdp-read-timeout` that provides a timeout for individual network operations (primarily: read from the server). Its default is 10 seconds. This timeout is also used for connecting of no specific value is given, significantly speeding up validation runs.\r\n\r\n  In addition, the RRDP timeout was increased from 300 to 600 seconds to better deal with slow transmission of large snapshots of some repositories. ([#1061])\r\n\r\nNew\r\n\r\n* Added a quick initial run after starting the server which only uses stored data and aborts if any required data hasn’t been requested before to deal with configuration changes. This will shorten the wait time for an initial data set when restarting Routinator. ([#1057])\r\n* Added support for SLURM v2 as output format which includes ASPA payload. ([#1021])\r\n* Changed refresh behaviour to better cope with short-lived objects. By default, Routinator will now wait for the time defined by `refresh` even if objects expire earlier. The new `min-refresh` option can be used to specify a short minimum refresh time if objects expire before the refresh time. If this value is set to 0, the old behaviour is restored. ([#1027])\r\n* The order in which manifest entries are processed is now randomized. ([#1041])\r\n* Reduced the overhead of storing RRDP snapshot downloads, significantly improving the snapshot update times. ([#1035])\r\n* The `dump` command now prints the source directories of the data it dumps. ([#1045])\r\n* Added a `--update-after` option to the `vrps` subcommand that skips updating the local cache if the last successful validation run was known to be less than a given number of minutes ago. ([#1049])\r\n* Error responses for API-related HTTP endpoints now contain JSON bodies. ([#1050])\r\n* The `/validity` HTTP server endpoint now accepts POST requests with a JSON body containing multiple routes to be checked all at once. ([#1053])\r\n* Better protect against corrupted stored publication points by double checking cached manifest properties against the actual manifest and discard the stored publication point if they mismatch.\r\n\r\n  This fixes an issue where an accidentally or maliciously manipulated locally stored manifest could block update of a legitimate new manifest which was reported by Zizhi Shang, Zhechao Lin, Jiahao Cao, Yangyang Wang, Mingwei Xu of the Institute for Network Sciences and Cyberspace (INSC), Tsinghua University.\r\n\r\nBug fixes\r\n\r\n* Fixed a crash if certain invalid character appear in a manifest file name by limiting the name to the rules defined in [RFC9286]. This issue was reported by  Niklas Vogel of Goethe University Frankfurt and ATHENE. ([rpki-rs#342])\r\n* Re-implemented RRDP client metrics based on the much simpler model used by RTRTR to fix recurring errors in the metrics. ([#1039])\r\n* Changed the message logged when an RRDP update times out to actually say that. ([#1052])\r\n\r\nOther changes\r\n\r\n* Improved performance of file system operations on validate subcommand. ([#1043] by [@kawaemon])\r\n* Add package.homepage to Cargo.toml ([#1024])\r\n* Added building packages for RHEL 10 and Debian 13. ([#1034], [#1047])\r\n* Added building packages for ARMv6 and ARM64 for Debian Bookworm. ([#1036])\r\n* Added additional restrictions to the systemd unit files used in the various binary packages. ([#1056])\r\n* Upgrades various dependencies. ([#1004], [#1005], [#1006])\r\n\r\n[#1004]: https://github.com/NLnetLabs/routinator/pull/1004\r\n[#1005]: https://github.com/NLnetLabs/routinator/pull/1005\r\n[#1006]: https://github.com/NLnetLabs/routinator/pull/1006\r\n[#1014]: https://github.com/NLnetLabs/routinator/pull/1014\r\n[#1021]: https://github.com/NLnetLabs/routinator/pull/1021\r\n[#1024]: https://github.com/NLnetLabs/routinator/pull/1024\r\n[#1027]: https://github.com/NLnetLabs/routinator/pull/1027\r\n[#1034]: https://github.com/NLnetLabs/routinator/pull/1034\r\n[#1035]: https://github.com/NLnetLabs/routinator/pull/1035\r\n[#1036]: https://github.com/NLnetLabs/routinator/pull/1036\r\n[#1039]: https://github.com/NLnetLabs/routinator/pull/1039\r\n[#1041]: https://github.com/NLnetLabs/routinator/pull/1041\r\n[#1043]: https://github.com/NLnetLabs/routinator/pull/1043\r\n[#1045]: https://github.com/NLnetLabs/routinator/pull/1045\r\n[#1047]: https://github.com/NLnetLabs/routinator/pull/1047\r\n[#1049]: https://github.com/NLnetLabs/routinator/pull/1049\r\n[#1052]: https://github.com/NLnetLabs/routinator/pull/1052\r\n[#1053]: https://github.com/NLnetLabs/routinator/pull/1053\r\n[#1055]: https://github.com/NLnetLabs/routinator/pull/1055\r\n[#1056]: https://github.com/NLnetLabs/routinator/pull/1056\r\n[#1057]: https://github.com/NLnetLabs/routinator/pull/1057\r\n[#1060]: https://github.com/NLnetLabs/routinator/pull/1060\r\n[#1061]: https://github.com/NLnetLabs/routinator/pull/1061\r\n[rpki-rs#342]: https://github.com/NLnetLabs/rpki-rs/pull/342\r\n[@kawaemon]: https://github.com/kawaemon\r\n[mitmproxy]: https://www.mitmproxy.org/\r\n[RFC9286]: https://tools.ietf.org/html/rfc9286\r\n[CVE-2023-39916]: https://nlnetlabs.nl/downloads/routinator/CVE-2023-39916.txt\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/248289872","assets_url":"https://api.github.com/repos/NLnetLabs/routinator/releases/248289872/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/routinator/releases/248289872/assets{?name,label}","html_url":"https://github.com/NLnetLabs/routinator/releases/tag/v0.15.0-rc1","id":248289872,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCH2k984OzJpQ","tag_name":"v0.15.0-rc1","target_commitish":"main","name":"0.15.0-rc1","draft":false,"immutable":false,"prerelease":true,"created_at":"2025-09-18T12:33:45Z","updated_at":"2025-09-18T12:36:28Z","published_at":"2025-09-18T12:36:28Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/routinator/tarball/v0.15.0-rc1","zipball_url":"https://api.github.com/repos/NLnetLabs/routinator/zipball/v0.15.0-rc1","body":"Breaking changes\r\n\r\n* Removed the `rrdp-keep-responses` feature. We suggest the use of an HTTP proxy such as [mitmproxy] instead. ([#1055])\r\n* Messages about issues with repositories and publication points are now logged separately and by default are only visible in the status HTTP server endpoints. The new `log-repository-issues` option can be used to have these messages also written to the log. ([#1054])\r\n* Changed how server mode deals with broken or missing local exception files. Previously, Routinator would just stop updating until they are fixed, leading to updates being stalled if the operator misses the error messages. Now it will log a warning and keep using the previous set of local exceptions. When starting, it will exit with an error message if there are broken or missing local exception files. ([#1060])\r\n* Changed the RRDP timeouts: introduced a new config variable `rrdp-read-timeout` that provides a timeout for individual network operations (primarily: read from the server). Its default is 10 seconds. This timeout is also used for connecting of no specific value is given, significantly speeding up validation runs.\r\n\r\n  In addition, the RRDP timeout was increased from 300 to 600 seconds to better deal with slow transmission of large snapshots of some repositories. ([#1061])\r\n\r\nNew\r\n\r\n* Added a quick initial run after starting the server which only uses stored data and aborts if any required data hasn’t been requested before to deal with configuration changes. This will shorten the wait time for an initial data set when restarting Routinator. ([#1057])\r\n* Added support for SLURM v2 as output format which includes ASPA payload. ([#1021])\r\n* Changed refresh behaviour to better cope with short-lived objects. By default, Routinator will now wait for the time defined by `refresh` even if objects expire earlier. The new `min-refresh` option can be used to specify a short minimum refresh time if objects expire before the refresh time. If this value is set to 0, the old behaviour is restored. ([#1027])\r\n* The order in which manifest entries are processed is now randomized. ([#1041])\r\n* Reduced the overhead of storing RRDP snapshot downloads, significantly improving the snapshot update times. ([#1035])\r\n* The `dump` command now prints the source directories of the data it dumps. ([#1045])\r\n* Added a `--update-after` option to the `vrps` subcommand that skips updating the local cache if the last successful validation run was known to be less than a given number of minutes ago. ([#1049])\r\n* Error responses for API-related HTTP endpoints now contain JSON bodies. ([#1050])\r\n* The `/validity` HTTP server endpoint now accepts POST requests with a JSON body containing multiple routes to be checked all at once. ([#1053])\r\n* Better protect against corrupted stored publication points by double checking cached manifest properties against the actual manifest and discard the stored publication point if they mismatch.\r\n\r\n  This fixes an issue where an accidentally or maliciously manipulated locally stored manifest could block update of a legitimate new manifest which was reported by Zizhi Shang, Zhechao Lin, Jiahao Cao, Yangyang Wang, Mingwei Xu of the Institute for Network Sciences and Cyberspace (INSC), Tsinghua University.\r\n\r\nBug fixes\r\n\r\n* Fixed a crash if certain invalid character appear in a manifest file name by limiting the name to the rules defined in [RFC9286]. This issue was reported by  Niklas Vogel of Goethe University Frankfurt and ATHENE. ([rpki-rs#342])\r\n* Re-implemented RRDP client metrics based on the much simpler model used by RTRTR to fix recurring errors in the metrics. ([#1039])\r\n* Changed the message logged when an RRDP update times out to actually say that. ([#1052])\r\n\r\nOther changes\r\n\r\n* Improved performance of file system operations on validate subcommand. ([#1043] by [@kawaemon])\r\n* Add package.homepage to Cargo.toml ([#1024])\r\n* Added building packages for RHEL 10 and Debian 13. ([#1034], [#1047])\r\n* Added building packages for ARMv6 and ARM64 for Debian Bookworm. ([#1036])\r\n* Added additional restrictions to the systemd unit files used in the various binary packages. ([#1056])\r\n* Upgrades various dependencies. ([#1004], [#1005], [#1006])\r\n\r\n[#1004]: https://github.com/NLnetLabs/routinator/pull/1004\r\n[#1005]: https://github.com/NLnetLabs/routinator/pull/1005\r\n[#1006]: https://github.com/NLnetLabs/routinator/pull/1006\r\n[#1014]: https://github.com/NLnetLabs/routinator/pull/1014\r\n[#1021]: https://github.com/NLnetLabs/routinator/pull/1021\r\n[#1024]: https://github.com/NLnetLabs/routinator/pull/1024\r\n[#1027]: https://github.com/NLnetLabs/routinator/pull/1027\r\n[#1034]: https://github.com/NLnetLabs/routinator/pull/1034\r\n[#1035]: https://github.com/NLnetLabs/routinator/pull/1035\r\n[#1036]: https://github.com/NLnetLabs/routinator/pull/1036\r\n[#1039]: https://github.com/NLnetLabs/routinator/pull/1039\r\n[#1041]: https://github.com/NLnetLabs/routinator/pull/1041\r\n[#1043]: https://github.com/NLnetLabs/routinator/pull/1043\r\n[#1045]: https://github.com/NLnetLabs/routinator/pull/1045\r\n[#1047]: https://github.com/NLnetLabs/routinator/pull/1047\r\n[#1049]: https://github.com/NLnetLabs/routinator/pull/1049\r\n[#1052]: https://github.com/NLnetLabs/routinator/pull/1052\r\n[#1053]: https://github.com/NLnetLabs/routinator/pull/1053\r\n[#1055]: https://github.com/NLnetLabs/routinator/pull/1055\r\n[#1056]: https://github.com/NLnetLabs/routinator/pull/1056\r\n[#1057]: https://github.com/NLnetLabs/routinator/pull/1057\r\n[#1060]: https://github.com/NLnetLabs/routinator/pull/1060\r\n[#1061]: https://github.com/NLnetLabs/routinator/pull/1061\r\n[rpki-rs#342]: https://github.com/NLnetLabs/rpki-rs/pull/342\r\n[@kawaemon]: https://github.com/kawaemon\r\n[mitmproxy]: https://www.mitmproxy.org/\r\n[RFC9286]: https://tools.ietf.org/html/rfc9286\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/203637044","assets_url":"https://api.github.com/repos/NLnetLabs/routinator/releases/203637044/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/routinator/releases/203637044/assets{?name,label}","html_url":"https://github.com/NLnetLabs/routinator/releases/tag/v0.14.2","id":203637044,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCH2k984MI0E0","tag_name":"v0.14.2","target_commitish":"main","name":"0.14.2 ’Roll Initiative!’","draft":false,"immutable":false,"prerelease":false,"created_at":"2025-03-04T15:57:10Z","updated_at":"2025-03-04T15:59:50Z","published_at":"2025-03-04T15:59:50Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/routinator/tarball/v0.14.2","zipball_url":"https://api.github.com/repos/NLnetLabs/routinator/zipball/v0.14.2","body":"This release fixes an issue in the bundled UI that caused it to retrieve data from our own test instance rather than the actual Routinator instance. Users of the bundled UI should upgrade.\r\n\r\nOther changes\r\n\r\n* Upgrades the bundled Routinator UI to release [0.4.5][routinator-ui v0.4.5]. ([#1014])\r\n\r\n[#1015]: https://github.com/NLnetLabs/routinator/pull/1015\r\n[routinator-ui v0.4.5]: https://github.com/NLnetLabs/routinator-ui/releases/tag/v0.4.5\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/203621921","assets_url":"https://api.github.com/repos/NLnetLabs/routinator/releases/203621921/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/routinator/releases/203621921/assets{?name,label}","html_url":"https://github.com/NLnetLabs/routinator/releases/tag/v0.14.2-rc1","id":203621921,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCH2k984MIwYh","tag_name":"v0.14.2-rc1","target_commitish":"main","name":"0.14.2-rc1","draft":false,"immutable":false,"prerelease":true,"created_at":"2025-03-04T15:02:54Z","updated_at":"2025-03-04T15:03:58Z","published_at":"2025-03-04T15:03:58Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/routinator/tarball/v0.14.2-rc1","zipball_url":"https://api.github.com/repos/NLnetLabs/routinator/zipball/v0.14.2-rc1","body":"Other changes\r\n\r\n* Upgrades the bundled Routinator UI to release [0.4.5][routinator-ui v0.4.5]. ([#1014])\r\n\r\n[#1015]: https://github.com/NLnetLabs/routinator/pull/1015\r\n[routinator-ui v0.4.5]: https://github.com/NLnetLabs/routinator-ui/releases/tag/v0.4.5\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/196121996","assets_url":"https://api.github.com/repos/NLnetLabs/routinator/releases/196121996/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/routinator/releases/196121996/assets{?name,label}","html_url":"https://github.com/NLnetLabs/routinator/releases/tag/v0.14.1","id":196121996,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCH2k984LsJWM","tag_name":"v0.14.1","target_commitish":"main","name":"0.14.1 ‘Black Cats and Voodoo Dolls’","draft":false,"immutable":false,"prerelease":false,"created_at":"2025-01-22T15:41:02Z","updated_at":"2025-01-22T15:44:48Z","published_at":"2025-01-22T15:44:48Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/routinator/tarball/v0.14.1","zipball_url":"https://api.github.com/repos/NLnetLabs/routinator/zipball/v0.14.1","body":"This release fixes a crash when the file names listed in a manifest contain illegal characters. We recommend all users to upgrade to this version.\r\n\r\nNew\r\n\r\n* ASPA support is now always compiled in and available if `enable-aspa` is set. The `aspa` Cargo feature has been removed. ([#990])\r\n* If merging mutliple ASPA objects for a single customer ASN results in more than 16,380 provider ASNs, the ASPA is dropped. (Note that ASPA objects with more than 16,380 provider ASNs are already rejected during parsing.) ([#996])\r\n* New `archive-stats` command that shows some statistics of an RRDP archive. ([#982])\r\n* Re-enabled the use of GZIP compression in HTTP request sent by the RRDP collector. Measures to deal with exploding data have been implemented in [rpki-rs#319]. ([#997])\r\n\r\nBug fixes\r\n\r\n* Fixed an issue with checking the file names in manifests that let to a crash when non-ASCII characters are used. ([rpki-rs#320], reported by Haya Schulmann and Niklas Vogel of Goethe University Frankfurt/ATHENE Center and assigned [CVE-2025-0638])\r\n* The validation HTTP endpoints now accept prefixes with non-zero host bits. ([#987])\r\n* Removed duplicate `rtr_client_reset_queries` in HTTP metrics. ([#992] by [@sleinen])\r\n* Improved disk space consumption of the new RRDP archives by re-using empty space when updating an object and padding all objects to a multiple of 256 bytes. ([#982])\r\n\r\nOther changes\r\n\r\n* The minimum supported Rust version is now 1.74. ([#999])\r\n* Added packaging support for Ubuntu 24.04 and removed support for Debian Stretch 9, Ubuntu Xenial 16.04, Ubuntu Bionic 18.04, and Centos 7 ([#980], [#994])\r\n* Upgraded the bundled routinator-ui to release [ui-0.4.3][0.4.3].\r\n\r\n[#980]: https://github.com/NLnetLabs/routinator/pull/980\r\n[#982]: https://github.com/NLnetLabs/routinator/pull/982\r\n[#987]: https://github.com/NLnetLabs/routinator/pull/987\r\n[#990]: https://github.com/NLnetLabs/routinator/pull/990\r\n[#992]: https://github.com/NLnetLabs/routinator/pull/992\r\n[#994]: https://github.com/NLnetLabs/routinator/pull/994\r\n[#996]: https://github.com/NLnetLabs/routinator/pull/996\r\n[#997]: https://github.com/NLnetLabs/routinator/pull/997\r\n[#999]: https://github.com/NLnetLabs/routinator/pull/999\r\n[@sleinen]: https://github.com/sleinen\r\n[rpki-rs#319]: https://github.com/NLnetLabs/rpki-rs/pull/319\r\n[rpki-rs#320]: https://github.com/NLnetLabs/rpki-rs/pull/320\r\n[ui-0.4.3]: https://github.com/NLnetLabs/routinator-ui/releases/tag/v0.4.3\r\n[CVE-2025-0638]: https://www.nlnetlabs.nl/downloads/routinator/CVE-2025-0638.txt\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/161448558","assets_url":"https://api.github.com/repos/NLnetLabs/routinator/releases/161448558/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/routinator/releases/161448558/assets{?name,label}","html_url":"https://github.com/NLnetLabs/routinator/releases/tag/v0.14.0","id":161448558,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCH2k984Jn4Ju","tag_name":"v0.14.0","target_commitish":"main","name":"0.14.0 ‘You Must Gather Your Party Before Venturing Forth’","draft":false,"immutable":false,"prerelease":false,"created_at":"2024-06-20T10:22:00Z","updated_at":"2024-06-20T10:31:23Z","published_at":"2024-06-20T10:31:23Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/routinator/tarball/v0.14.0","zipball_url":"https://api.github.com/repos/NLnetLabs/routinator/zipball/v0.14.0","body":"Breaking changes\r\n\r\n* Keep the content of an RRDP repository in a single file rather than as individual files under a directory. ([#886])\r\n* Switched to the all-new version 0.4 of the Routinator UI. This also changes the way we import the UI into Routinator by simply including the built assets which means downloads are not necessary during the build process any more. ([#952])\r\n* Changed the `summary` output format to have all lines end in a semicolon. ([#907])\r\n* Changed the options used for `rsync`. The options `-rtO --delete` are now always used. The options set in the `rsync-args` are added or, if that is not used, `-z` and `--no-motd`, as well as `--contimeout=10` if it is supported by the rsync command, and `--max-size` if the `max-object-size` option has not been set to 0. ([#962])\r\n\r\nNew\r\n\r\n* The `chain_validity` value in the `jsonext` format now considers the validity of the manifest’s EE certificates. A new `stale` value shows the time when any of the publication points along the way will become stale. ([#945])\r\n* If a collected manifest has a lower manifest number or an older thisUpdate field than a stored manifest for the same CA, the collected manifest is ignored and the stored publication point is used instead. This implements a requirement added in [RFC 9286]. ([#946], [#954])\r\n* The number of delta entries in a RRDP notification file is now limited to 500 by default. If there are more entries, the deltas are ignored and the snapshot is used. The limit can be changed through the new `rrdp-max-delta-list-len` configuration value. ([#961])\r\n* The RRDP collector now falls back to a snapshot update if the hash of a delta listed in the notification file has changed from the previous update. This implements [draft-ietf-sidrops-rrdp-desynchronization-00]. ([#951])\r\n* The RRDP collector now enforces that all URIs referred to or redirected to by an RRDP server have the same origin as the rpkiNotify URI in the CA certificate. ([#953])\r\n* The config file used is now printed for some commands. This should help with avoiding confusion when running Routinator as different users. ([#959])\r\n\r\nBug fixes\r\n\r\n* Fixed an issue where the refresh time was calculated as zero under certain conditions until the dataset was updated. ([#940])\r\n* Add the current RRDP serial number to the RRDP server metrics when a Not Modified response is received so that Prometheus shows a constant value.\r\n\r\n[#886]: https://github.com/NLnetLabs/routinator/pull/886\r\n[#907]: https://github.com/NLnetLabs/routinator/pull/907\r\n[#940]: https://github.com/NLnetLabs/routinator/pull/940\r\n[#942]: https://github.com/NLnetLabs/routinator/pull/942\r\n[#945]: https://github.com/NLnetLabs/routinator/pull/945\r\n[#946]: https://github.com/NLnetLabs/routinator/pull/946\r\n[#951]: https://github.com/NLnetLabs/routinator/pull/951\r\n[#952]: https://github.com/NLnetLabs/routinator/pull/952\r\n[#953]: https://github.com/NLnetLabs/routinator/pull/953\r\n[#954]: https://github.com/NLnetLabs/routinator/pull/954\r\n[#959]: https://github.com/NLnetLabs/routinator/pull/959\r\n[#961]: https://github.com/NLnetLabs/routinator/pull/961\r\n[#962]: https://github.com/NLnetLabs/routinator/pull/962\r\n[RFC 9286]: https://tools.ietf.org/html/rfc9286\r\n[draft-ietf-sidrops-rrdp-desynchronization-00]: https://datatracker.ietf.org/doc/draft-ietf-sidrops-rrdp-desynchronization/\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/160883532","assets_url":"https://api.github.com/repos/NLnetLabs/routinator/releases/160883532/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/routinator/releases/160883532/assets{?name,label}","html_url":"https://github.com/NLnetLabs/routinator/releases/tag/v0.14.0-rc3","id":160883532,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCH2k984JluNM","tag_name":"v0.14.0-rc3","target_commitish":"main","name":"0.14.0-rc3","draft":false,"immutable":false,"prerelease":true,"created_at":"2024-06-17T15:12:37Z","updated_at":"2024-06-17T15:13:34Z","published_at":"2024-06-17T15:13:34Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/routinator/tarball/v0.14.0-rc3","zipball_url":"https://api.github.com/repos/NLnetLabs/routinator/zipball/v0.14.0-rc3","body":"Bug fixes\r\n\r\n* Updated the bundled Routinator UI to version 0.4.1. This fixes internal linking some more. ([#967])\r\n\r\n[#967]: https://github.com/NLnetLabs/routinator/pull/967\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/160256209","assets_url":"https://api.github.com/repos/NLnetLabs/routinator/releases/160256209/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/routinator/releases/160256209/assets{?name,label}","html_url":"https://github.com/NLnetLabs/routinator/releases/tag/v0.14.0-rc2","id":160256209,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCH2k984JjVDR","tag_name":"v0.14.0-rc2","target_commitish":"main","name":"0.14.0-rc2","draft":false,"immutable":false,"prerelease":true,"created_at":"2024-06-13T10:09:14Z","updated_at":"2024-06-13T10:10:08Z","published_at":"2024-06-13T10:10:08Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/routinator/tarball/v0.14.0-rc2","zipball_url":"https://api.github.com/repos/NLnetLabs/routinator/zipball/v0.14.0-rc2","body":"Bug fixes\r\n\r\n* Updated the bundled Routinator UI to version 0.4.1. This fixes internal linking. ([#965])\r\n\r\n[#965]: https://github.com/NLnetLabs/routinator/pull/965\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/159698461","assets_url":"https://api.github.com/repos/NLnetLabs/routinator/releases/159698461/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/routinator/releases/159698461/assets{?name,label}","html_url":"https://github.com/NLnetLabs/routinator/releases/tag/v0.14.0-rc1","id":159698461,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCH2k984JhM4d","tag_name":"v0.14.0-rc1","target_commitish":"main","name":"0.14.0-rc1","draft":false,"immutable":false,"prerelease":true,"created_at":"2024-06-10T15:26:38Z","updated_at":"2024-06-13T09:42:18Z","published_at":"2024-06-10T15:34:55Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/routinator/tarball/v0.14.0-rc1","zipball_url":"https://api.github.com/repos/NLnetLabs/routinator/zipball/v0.14.0-rc1","body":"Breaking changes\r\n\r\n* Keep the content of an RRDP repository in a single file rather than as individual files under a directory. ([#886])\r\n* Switched to the all-new version 0.4 of the Routinator UI. This also changes the way we import the UI into Routinator by simply including the built assets which means downloads are not necessary during the build process any more. ([#952])\r\n* Changed the `summary` output format to have all lines end in a semicolon. ([#907])\r\n* Changed the options used for `rsync`. The options `-rtO --delete` are now always used. The options set in the `rsync-args` are added or, if that is not used, `-z` and `--no-motd`, as well as `--contimeout=10` if it is supported by the rsync command, and `--max-size` if the `max-object-size` option has not been set to 0. ([#962])\r\n\r\nNew\r\n\r\n* The `chain_validity` value in the `jsonext` format now considers the validity of the manifest’s EE certificates. A new `stale` value shows the time when any of the publication points along the way will become stale. ([#945])\r\n* If a collected manifest has a lower manifest number or an older thisUpdate field than a stored manifest for the same CA, the collected manifest is ignored and the stored publication point is used instead. This implements a requirement added in [RFC 9286]. ([#946], [#954])\r\n* The number of delta entries in a RRDP notification file is now limited to 500 by default. If there are more entries, the deltas are ignored and the snapshot is used. The limit can be changed through the new `rrdp-max-delta-list-len` configuration value. ([#961])\r\n* The RRDP collector now falls back to a snapshot update if the hash of a delta listed in the notification file has changed from the previous update. This implements [draft-ietf-sidrops-rrdp-desynchronization-00]. ([#951])\r\n* The RRDP collector now enforces that all URIs referred to or redirected to by an RRDP server have the same origin as the rpkiNotify URI in the CA certificate. ([#953])\r\n* The config file used is now printed for some commands. This should help with avoiding confusion when running Routinator as different users. ([#959])\r\n\r\nBug fixes\r\n\r\n* Fixed an issue where the refresh time was calculated as zero under certain conditions until the dataset was updated. ([#940])\r\n* Add the current RRDP serial number to the RRDP server metrics when a Not Modified response is received so that Prometheus shows a constant value.\r\n\r\n[#886]: https://github.com/NLnetLabs/routinator/pull/886\r\n[#907]: https://github.com/NLnetLabs/routinator/pull/907\r\n[#940]: https://github.com/NLnetLabs/routinator/pull/940\r\n[#942]: https://github.com/NLnetLabs/routinator/pull/942\r\n[#945]: https://github.com/NLnetLabs/routinator/pull/945\r\n[#946]: https://github.com/NLnetLabs/routinator/pull/946\r\n[#951]: https://github.com/NLnetLabs/routinator/pull/951\r\n[#952]: https://github.com/NLnetLabs/routinator/pull/952\r\n[#953]: https://github.com/NLnetLabs/routinator/pull/953\r\n[#954]: https://github.com/NLnetLabs/routinator/pull/954\r\n[#959]: https://github.com/NLnetLabs/routinator/pull/959\r\n[#961]: https://github.com/NLnetLabs/routinator/pull/961\r\n[#962]: https://github.com/NLnetLabs/routinator/pull/962\r\n[RFC 9286]: https://tools.ietf.org/html/rfc9286\r\n[draft-ietf-sidrops-rrdp-desynchronization-00]: https://datatracker.ietf.org/doc/draft-ietf-sidrops-rrdp-desynchronization/\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/143623695","assets_url":"https://api.github.com/repos/NLnetLabs/routinator/releases/143623695/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/routinator/releases/143623695/assets{?name,label}","html_url":"https://github.com/NLnetLabs/routinator/releases/tag/v0.13.2","id":143623695,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCH2k984Ij4YP","tag_name":"v0.13.2","target_commitish":"main","name":"0.13.2 ‘Existential Funk’","draft":false,"immutable":false,"prerelease":false,"created_at":"2024-02-26T13:17:14Z","updated_at":"2024-02-26T13:19:49Z","published_at":"2024-02-26T13:19:49Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/routinator/tarball/v0.13.2","zipball_url":"https://api.github.com/repos/NLnetLabs/routinator/zipball/v0.13.2","body":"Bug Fixes\r\n\r\n* Fix the RTR listener so that Routinator won’t exit if an incoming RTR\r\n  connection is closed again too quickly. ([#937], reported by Yohei\r\n  Nishimura, Atsushi Enomoto, Ruka Miyachi; Internet Multifeed Co., Japan.\r\n  Assigned [CVE-2024-1622].)\r\n\r\n[#937]: https://github.com/NLnetLabs/routinator/pull/937\r\n[CVE-2024-1622]: https://www.nlnetlabs.nl/downloads/routinator/CVE-2024-1622.txt"},{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/138324778","assets_url":"https://api.github.com/repos/NLnetLabs/routinator/releases/138324778/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/routinator/releases/138324778/assets{?name,label}","html_url":"https://github.com/NLnetLabs/routinator/releases/tag/v0.13.1","id":138324778,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCH2k984IPqsq","tag_name":"v0.13.1","target_commitish":"main","name":"0.13.1 ‘Aziz, Light!’","draft":false,"immutable":false,"prerelease":false,"created_at":"2024-01-24T12:46:16Z","updated_at":"2024-01-24T12:47:30Z","published_at":"2024-01-24T12:47:30Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/routinator/tarball/v0.13.1","zipball_url":"https://api.github.com/repos/NLnetLabs/routinator/zipball/v0.13.1","body":"New\r\n\r\n* Added support for private keys marked as “EC PRIVATE KEY“ in the PEM files for TLS server configuration. ([#921])\r\n* The rsync collector now logs stderr output of the rsync command directly instead of collecting it and logging it in one go after the commend returned. ([#290])\r\n\r\nBug Fixes\r\n\r\n* The `dump` command will now succeed even if certain directories or files in the repository cache are missing. ([#916])\r\n* A more meaningful message is now printed when decoding RPKI objects fails. It will still not give much detail but at least it isn’t confusing any more. ([#917])\r\n\r\nOther changes\r\n\r\n* Updated the `nlnetlabs-testbed` TAL to the current location and key. ([#922])\r\n\r\n[#916]: https://github.com/NLnetLabs/routinator/pull/916\r\n[#917]: https://github.com/NLnetLabs/routinator/pull/917\r\n[#920]: https://github.com/NLnetLabs/routinator/pull/920\r\n[#921]: https://github.com/NLnetLabs/routinator/pull/921\r\n[#922]: https://github.com/NLnetLabs/routinator/pull/922\r\n","reactions":{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/138324778/reactions","total_count":1,"+1":0,"-1":0,"laugh":0,"hooray":1,"confused":0,"heart":0,"rocket":0,"eyes":0}},{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/137366948","assets_url":"https://api.github.com/repos/NLnetLabs/routinator/releases/137366948/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/routinator/releases/137366948/assets{?name,label}","html_url":"https://github.com/NLnetLabs/routinator/releases/tag/v0.13.1-rc1","id":137366948,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCH2k984IMA2k","tag_name":"v0.13.1-rc1","target_commitish":"main","name":"0.13.1-rc1","draft":false,"immutable":false,"prerelease":true,"created_at":"2024-01-17T11:10:06Z","updated_at":"2024-01-17T12:28:45Z","published_at":"2024-01-17T11:11:20Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/routinator/tarball/v0.13.1-rc1","zipball_url":"https://api.github.com/repos/NLnetLabs/routinator/zipball/v0.13.1-rc1","body":"New\r\n\r\n* Added support for private keys marked as “EC PRIVATE KEY“ in the PEM files for TLS server configuration. ([#921])\r\n* The rsync collector now logs stderr output of the rsync command directly instead of collecting it and logging it in one go after the commend returned. ([#290])\r\n\r\nBug Fixes\r\n\r\n* The `dump` command will now succeed even if certain directories or files in the repository cache are missing. ([#916])\r\n* A more meaningful message is now printed when decoding RPKI objects fails. It will still not give much detail but at least it isn’t confusing any more. ([#917])\r\n* The RTR server now returns the expected protocol version in the version negotiation error message rather than the requested version. ([rpki-rs #280])\r\n* The RTR server does not accept protocol version 2 for now to avoid sending illegal ASPA PDUs. This is a workaround until the final format of the PDU is specified. ([rpki-rs #281])\r\n\r\n\r\nOther changes\r\n\r\n* Updated the `nlnetlabs-testbed` TAL to the current location and key. ([#922])\r\n\r\n[#916]: https://github.com/NLnetLabs/routinator/pull/916\r\n[#917]: https://github.com/NLnetLabs/routinator/pull/917\r\n[#920]: https://github.com/NLnetLabs/routinator/pull/920\r\n[#921]: https://github.com/NLnetLabs/routinator/pull/921\r\n[#922]: https://github.com/NLnetLabs/routinator/pull/922\r\n[rpki-rs #280]: https://github.com/NLnetLabs/rpki-rs/pull/280\r\n[rpki-rs #281]: https://github.com/NLnetLabs/rpki-rs/pull/281"},{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/122042004","assets_url":"https://api.github.com/repos/NLnetLabs/routinator/releases/122042004/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/routinator/releases/122042004/assets{?name,label}","html_url":"https://github.com/NLnetLabs/routinator/releases/tag/v0.13.0","id":122042004,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCH2k984HRjaU","tag_name":"v0.13.0","target_commitish":"main","name":"0.13.0 ‘Should Have Started This in a Screen’","draft":false,"immutable":false,"prerelease":false,"created_at":"2023-09-21T13:03:15Z","updated_at":"2023-09-21T13:05:02Z","published_at":"2023-09-21T13:05:02Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/routinator/tarball/v0.13.0","zipball_url":"https://api.github.com/repos/NLnetLabs/routinator/zipball/v0.13.0","body":"New\r\n\r\n* Added support for ASPA. Processing needs to be enabled via the new option `enable-aspa` which is only available if the `aspa` feature is explicitly selected during compilation. This is due to the specification still changing. The implementation currently conforms with [draft-ietf-sidrops-aspa-profile-15].  ([#847], [#873], [#874], [#878])\r\n* Added support for version 2 of the RTR protocol. This primarly means support for the ASPA payload type. ([#847])\r\n* Sending SIGUSR2 to Routinator will re-open a log file if logging to a file is enabled. ([#859])\r\n* The HTTP server provides a new endpoint `/json-delta/notify` that can be used to wait for updated data similar to the RTR Notify PDU. ([#863])\r\n* Added support for filtering and adding router keys via local exception files. ([#865])\r\n* The `vrps` command and the HTTP payload output endpoints now allow excluding specific payload types for output. ([#866])\r\n* Added a new member `payload` to the output of the `/api/v1/status` endpoint that gives an overall summary of the produced payload. ([#867])\r\n* Added new members `generated` and `generatedTime` to the JSON object produced by the `/json-delta` endpoint. ([#868])\r\n\r\nBreaking Changes\r\n\r\n* A new field `aspa` was added to the jsonext format. See the manual page for more information. ([#847])\r\n* A number of ASPA-related fields have been added to all metrics and status formats. ([#847])\r\n* Renamed functions and attributes that refer to standalone end entity certificates to refer to router certificates so they don’t get confused with the end entity certificates included with signed objects. ([#854])\r\n* Renamed the JSON member in the HTTP status API from `validEECerts` to `validRouterCerts`. The old name is still available but may be removed in the future. ([#854])\r\n* The regular `json` output format now includes router key and ASPA output. Since both are disabled by default, the format will still be compatible by default. ([#866])\r\n* The minimal required Rust version has been increased to 1.70. ([#847], [#853], [#869], [#879])\r\n\r\nBug Fixes\r\n\r\n* Fixed a bug in the RTR server where it would include router key PDUs even if the negotiated protocol version was 0. (via [rpki-rs #250])\r\n* Restored the ability to parse ASNs in JSON input to the `validity` command as string or number. ([#861])\r\n* Update bcder to at least 0.7.3 to fix various decoding issues that could lead to a panic when processing invalid RPKI objects.\r\n* Check the request URI when generating a path for storing a copy of a RRDP response with the `rrdp-keep-responses` option to avoid path traversal. ([#894]. Found by Haya Shulman, Donika Mirdita and Niklas Vogel. Assigned CVE-2023-39916.)\r\n\r\nOther Changes\r\n\r\n* The log message for missing manifest now include the URI of the CA certificate for which the manifest is missing. ([#864])\r\n* Binary packages are now also built for Debian _bookworm._ ([#881])\r\n\r\n[#847]: https://github.com/NLnetLabs/routinator/pull/847\r\n[#853]: https://github.com/NLnetLabs/routinator/pull/853\r\n[#854]: https://github.com/NLnetLabs/routinator/pull/854\r\n[#859]: https://github.com/NLnetLabs/routinator/pull/859\r\n[#861]: https://github.com/NLnetLabs/routinator/pull/861\r\n[#863]: https://github.com/NLnetLabs/routinator/pull/863\r\n[#864]: https://github.com/NLnetLabs/routinator/pull/864\r\n[#865]: https://github.com/NLnetLabs/routinator/pull/865\r\n[#866]: https://github.com/NLnetLabs/routinator/pull/866\r\n[#867]: https://github.com/NLnetLabs/routinator/pull/867\r\n[#868]: https://github.com/NLnetLabs/routinator/pull/868\r\n[#869]: https://github.com/NLnetLabs/routinator/pull/869\r\n[#873]: https://github.com/NLnetLabs/routinator/pull/873\r\n[#874]: https://github.com/NLnetLabs/routinator/pull/874\r\n[#878]: https://github.com/NLnetLabs/routinator/pull/878\r\n[#879]: https://github.com/NLnetLabs/routinator/pull/879\r\n[#881]: https://github.com/NLnetLabs/routinator/pull/881\r\n[#894]: https://github.com/NLnetLabs/routinator/pull/894\r\n[rpki-rs #250]: https://github.com/NLnetLabs/rpki-rs/pull/250\r\n[draft-ietf-sidrops-aspa-profile-15]: https://datatracker.ietf.org/doc/draft-ietf-sidrops-aspa-profile/15/\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/120997368","assets_url":"https://api.github.com/repos/NLnetLabs/routinator/releases/120997368/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/routinator/releases/120997368/assets{?name,label}","html_url":"https://github.com/NLnetLabs/routinator/releases/tag/v0.13.0-rc2","id":120997368,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCH2k984HNkX4","tag_name":"v0.13.0-rc2","target_commitish":"main","name":"0.13.0-rc2","draft":false,"immutable":false,"prerelease":true,"created_at":"2023-09-13T16:26:26Z","updated_at":"2023-09-13T16:28:05Z","published_at":"2023-09-13T16:28:05Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/routinator/tarball/v0.13.0-rc2","zipball_url":"https://api.github.com/repos/NLnetLabs/routinator/zipball/v0.13.0-rc2","body":"Bug Fixes\r\n\r\n* Fixed various decoding issues that could lead to a panic when processing invalid RPKI objects. (via bcder release 0.7.3. Found by Haya Shulman, Donika Mirdita and Niklas Vogel. Assigned CVE-2023-39915)\r\n* Check the request URI when generating a path for storing a copy of a RRDP response with the `rrdp-keep-responses` option to avoid path traversal. ([#892]. Found by Haya Shulman, Donika Mirdita and Niklas Vogel. Assigned CVE-2023-39916.)\r\n\r\n[#894]: https://github.com/NLnetLabs/routinator/pull/894\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/120965292","assets_url":"https://api.github.com/repos/NLnetLabs/routinator/releases/120965292/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/routinator/releases/120965292/assets{?name,label}","html_url":"https://github.com/NLnetLabs/routinator/releases/tag/v0.12.2","id":120965292,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCH2k984HNcis","tag_name":"v0.12.2","target_commitish":"main","name":"0.12.2 ‘Brutti, sporchi e cattivi’","draft":false,"immutable":false,"prerelease":false,"created_at":"2023-09-13T13:20:49Z","updated_at":"2023-09-13T13:22:51Z","published_at":"2023-09-13T13:22:51Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/routinator/tarball/v0.12.2","zipball_url":"https://api.github.com/repos/NLnetLabs/routinator/zipball/v0.12.2","body":"Bug Fixes\r\n\r\n* Fixed various decoding issues that could lead to a panic when processing invalid RPKI objects. ([#891], via bcder release 0.7.3. Found by Haya Shulman, Donika Mirdita and Niklas Vogel. Assigned CVE-2023-39915)\r\n* Check the request URI when generating a path for storing a copy of a RRDP response with the `rrdp-keep-responses` option to avoid path traversal. ([#892]. Found by Haya Shulman, Donika Mirdita and Niklas Vogel. Assigned CVE-2023-39916.)\r\n\r\n[#891]: https://github.com/NLnetLabs/routinator/pull/891\r\n[#892]: https://github.com/NLnetLabs/routinator/pull/892\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/112125823","assets_url":"https://api.github.com/repos/NLnetLabs/routinator/releases/112125823/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/routinator/releases/112125823/assets{?name,label}","html_url":"https://github.com/NLnetLabs/routinator/releases/tag/v0.13.0-rc1","id":112125823,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCH2k984Grud_","tag_name":"v0.13.0-rc1","target_commitish":"main","name":"0.13.1-rc1","draft":false,"immutable":false,"prerelease":true,"created_at":"2023-07-13T14:39:58Z","updated_at":"2023-07-13T14:42:07Z","published_at":"2023-07-13T14:42:07Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/routinator/tarball/v0.13.0-rc1","zipball_url":"https://api.github.com/repos/NLnetLabs/routinator/zipball/v0.13.0-rc1","body":"New\r\n\r\n* Added support for ASPA. Processing needs to be enabled via the new option `enable-aspa` which is only available if the `aspa` feature is explicitly selected during compilation. This is due to the specification still changing. The implementation currently conforms with [draft-ietf-sidrops-aspa-profile-15].  ([#847], [#873], [#874], [#878])\r\n* Added support for version 2 of the RTR protocol. This primarly means support for the ASPA payload type. ([#847])\r\n* Sending SIGUSR2 to Routinator will re-open a log file if logging to a file is enabled. ([#859])\r\n* The HTTP server provides a new endpoint `/json-delta/notify` that can be used to wait for updated data similar to the RTR Notify PDU. ([#863])\r\n* Added support for filtering and adding router keys via local exception files. ([#865])\r\n* The `vrps` command and the HTTP payload output endpoints now allow excluding specific payload types for output. ([#866])\r\n* Added a new member `payload` to the output of the `/api/v1/status` endpoint that gives an overall summary of the produced payload. ([#867])\r\n* Added new members `generated` and `generatedTime` to the JSON object produced by the `/json-delta` endpoint. ([#868])\r\n\r\nBreaking Changes\r\n\r\n* A new field `aspa` was added to the jsonext format. See the manual page for more information. ([#847])\r\n* A number of ASPA-related fields have been added to all metrics and status formats. ([#847])\r\n* Renamed functions and attributes that refer to standalone end entity certificates to refer to router certificates so they don’t get confused with the end entity certificates included with signed objects. ([#854])\r\n* Renamed the JSON member in the HTTP status API from `validEECerts` to `validRouterCerts`. The old name is still available but may be removed in the future. ([#854])\r\n* The regular `json` output format now includes router key and ASPA output. Since both are disabled by default, the format will still be compatible by default. ([#866])\r\n* The minimal required Rust version has been increased to 1.70.  ([#847], [#853], [#869], [#879])\r\n\r\nBug Fixes\r\n\r\n* Fixed a bug in the RTR server where it would include router key PDUs even if the negotiated protocol version was 0. (via [rpki-rs #250])\r\n* Restored the ability to parse ASNs in JSON input to the `validity` command as string or number. ([#861])\r\n\r\nOther Changes\r\n\r\n* The log message for missing manifest now include the URI of the CA certificate for which the manifest is missing. ([#864])\r\n* Binary packages are now also built for Debian _bookworm._ ([#881])\r\n\r\n[#847]: https://github.com/NLnetLabs/routinator/pull/847\r\n[#853]: https://github.com/NLnetLabs/routinator/pull/853\r\n[#854]: https://github.com/NLnetLabs/routinator/pull/854\r\n[#859]: https://github.com/NLnetLabs/routinator/pull/859\r\n[#861]: https://github.com/NLnetLabs/routinator/pull/861\r\n[#863]: https://github.com/NLnetLabs/routinator/pull/863\r\n[#864]: https://github.com/NLnetLabs/routinator/pull/864\r\n[#865]: https://github.com/NLnetLabs/routinator/pull/865\r\n[#866]: https://github.com/NLnetLabs/routinator/pull/866\r\n[#867]: https://github.com/NLnetLabs/routinator/pull/867\r\n[#868]: https://github.com/NLnetLabs/routinator/pull/868\r\n[#869]: https://github.com/NLnetLabs/routinator/pull/869\r\n[#873]: https://github.com/NLnetLabs/routinator/pull/873\r\n[#874]: https://github.com/NLnetLabs/routinator/pull/874\r\n[#878]: https://github.com/NLnetLabs/routinator/pull/878\r\n[#879]: https://github.com/NLnetLabs/routinator/pull/879\r\n[#881]: https://github.com/NLnetLabs/routinator/pull/881\r\n[rpki-rs #250]: https://github.com/NLnetLabs/rpki-rs/pull/250\r\n[draft-ietf-sidrops-aspa-profile-15]: https://datatracker.ietf.org/doc/draft-ietf-sidrops-aspa-profile/15/\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/87876478","assets_url":"https://api.github.com/repos/NLnetLabs/routinator/releases/87876478/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/routinator/releases/87876478/assets{?name,label}","html_url":"https://github.com/NLnetLabs/routinator/releases/tag/v0.12.1","id":87876478,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCH2k984FPON-","tag_name":"v0.12.1","target_commitish":"main","name":"0.12.1 ‘Plan uw reis in de app’","draft":false,"immutable":false,"prerelease":false,"created_at":"2023-01-04T11:11:57Z","updated_at":"2023-01-04T11:14:28Z","published_at":"2023-01-04T11:14:28Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/routinator/tarball/v0.12.1","zipball_url":"https://api.github.com/repos/NLnetLabs/routinator/zipball/v0.12.1","body":"Bug Fixes\r\n\r\n* Actually use the `extra-tals-dir` config file option. ([#821])\r\n* Allow private keys prefixed both with `BEGIN PRIVATE KEY` and `BEGIN RSA PRIVATE KEY` in the files referred to by `http-tls-key` and `rtr-tls-key` configuration options. ([#831], [#832])\r\n* On Unix, if chroot is requested but no working directory is explicitly provided, set the working directory to the chroot directory. ([#823])\r\n* Fixed the error messages printed when the `http-tls-key` or `http-tls-cert` options are required but missing. They now refer to HTTP and not, as previously, to RTR. ([#824] by [@SanderDelden])\r\n\r\nOther Changes\r\n\r\n* Switch the packaging workflow to use [Ploutos]. ([#816])\r\n\r\n[#816]: https://github.com/NLnetLabs/routinator/pull/816\r\n[#821]: https://github.com/NLnetLabs/routinator/pull/821\r\n[#823]: https://github.com/NLnetLabs/routinator/pull/823\r\n[#824]: https://github.com/NLnetLabs/routinator/pull/824\r\n[#831]: https://github.com/NLnetLabs/routinator/pull/831\r\n[#832]: https://github.com/NLnetLabs/routinator/pull/831\r\n[@SanderDelden]: https://github.com/SanderDelden\r\n[Ploutos]: https://github.com/NLnetLabs/ploutos/\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/85864389","assets_url":"https://api.github.com/repos/NLnetLabs/routinator/releases/85864389/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/routinator/releases/85864389/assets{?name,label}","html_url":"https://github.com/NLnetLabs/routinator/releases/tag/v0.12.1-rc2","id":85864389,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCH2k984FHi_F","tag_name":"v0.12.1-rc2","target_commitish":"main","name":"0.12.1-rc2","draft":false,"immutable":false,"prerelease":true,"created_at":"2022-12-13T13:07:06Z","updated_at":"2022-12-13T13:08:18Z","published_at":"2022-12-13T13:08:18Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/routinator/tarball/v0.12.1-rc2","zipball_url":"https://api.github.com/repos/NLnetLabs/routinator/zipball/v0.12.1-rc2","body":"Bug Fixes\r\n\r\n* Allow private keys prefixed both with `BEGIN PRIVATE KEY` and `BEGIN RSA PRIVATE KEY` in the files referred to by `http-tls-key` and `rtr-tls-key` configuration options. ([#831], [#832])\r\n\r\n[#831]: https://github.com/NLnetLabs/routinator/pull/831\r\n[#832]: https://github.com/NLnetLabs/routinator/pull/831\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/85002787","assets_url":"https://api.github.com/repos/NLnetLabs/routinator/releases/85002787/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/routinator/releases/85002787/assets{?name,label}","html_url":"https://github.com/NLnetLabs/routinator/releases/tag/v0.12.1-rc1","id":85002787,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCH2k984FEQoj","tag_name":"v0.12.1-rc1","target_commitish":"main","name":"0.12.1-rc1","draft":false,"immutable":false,"prerelease":true,"created_at":"2022-12-05T14:56:43Z","updated_at":"2022-12-05T14:58:20Z","published_at":"2022-12-05T14:58:20Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/routinator/tarball/v0.12.1-rc1","zipball_url":"https://api.github.com/repos/NLnetLabs/routinator/zipball/v0.12.1-rc1","body":"Bug Fixes\r\n\r\n* Actually use the `extra-tals-dir` config file option. ([#821])\r\n* On Unix, if chroot is requested but no working directory is explicitly provided, set the working directory to the chroot directory. ([#823])\r\n* Fixed the error messages printed when the `http-tls-key` or `http-tls-cert` options are required but missing. They now refer to HTTP and not, as previously, to RTR. ([#824] by [@SanderDelden])\r\n\r\nOther Changes\r\n\r\n* Switch the packaging workflow to use [Ploutos]. ([#816])\r\n\r\n[#816]: https://github.com/NLnetLabs/routinator/pull/816\r\n[#821]: https://github.com/NLnetLabs/routinator/pull/821\r\n[#823]: https://github.com/NLnetLabs/routinator/pull/823\r\n[#824]: https://github.com/NLnetLabs/routinator/pull/824\r\n[@SanderDelden]: https://github.com/SanderDelden\r\n[Ploutos]: https://github.com/NLnetLabs/ploutos/\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/82669493","assets_url":"https://api.github.com/repos/NLnetLabs/routinator/releases/82669493/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/routinator/releases/82669493/assets{?name,label}","html_url":"https://github.com/NLnetLabs/routinator/releases/tag/v0.12.0","id":82669493,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCH2k984E7W-1","tag_name":"v0.12.0","target_commitish":"main","name":"0.12.0 ‘Brutalism and Gardening’","draft":false,"immutable":false,"prerelease":false,"created_at":"2022-11-10T12:09:57Z","updated_at":"2022-11-10T12:12:18Z","published_at":"2022-11-10T12:12:18Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/routinator/tarball/v0.12.0","zipball_url":"https://api.github.com/repos/NLnetLabs/routinator/zipball/v0.12.0","body":"Breaking Changes\r\n\r\n* Restructured the TAL configuration in response to the dropped requirement to opt into the ARIN TAL.\r\n\r\n  Routinator will now use the bundled RIR TALs directly unless told otherwise by the new `--no-rir-tals` command  line and config option. The additional bundled TALs can be added via the new `--tal` command line and config option. Additionally, the TAL directory can still be used via the `--extra-tals-dir` option. The `tal-dir` option has been removed but will still be accepted – and ignored – in the config file only. \r\n\r\n  The `init` command has been removed. ([#796])\r\n* Changed the default configuration option for `unsafe-vrps` to `accept` and removed all logging or mentioning of unsafe VRPs in this case.  ([#761])\r\n* Setting the `rsync-timeout` option to 0 now disables the rsync timeout.  ([#798])\r\n* Refactored error handling. Routinator now logs the reason why an object failed verification or was otherwise rejected. ([#755])\r\n* Removed the deprecated `rrdp-disable-gzip` configuration option.  ([#769])\r\n\r\nNew\r\n\r\n* The new `limit-v4-len` and `limit-v6-len` command line and config file options allow limiting the length of IPv4 and IPv6 prefixes, respectively, to be included in the VRP data set. ([#810])\r\n* The new `rrdp-fallback` command line and config file option allows specifying the circumstances under which a failed RRDP fetch should result in using rsync instead. Supported polices are `never` for never falling back to using rsync, `stale` for the current behavior of falling back when RRDP has failed for some time, and `new` to only fall back for repositories where RRDP has never worked before. ([#799])\r\n* In the extended `jsonext` output format, the information for VRPs and router keys derived from RPKI data has gained a new member `\"tal\"` that shows the name of the TAL this object was published under. ([#765])\r\n* The log output to files, stderr, and the `/log` HTTP endpoint now includes the log level of the message to make it more clear how important the message really is. ([#797])\r\n* The RTR client metrics have been extended by three new values allowing to track the time since last cache reset and the number of reset and serial queries. Like all RTR client metrics, these new values are only available if enable explicitly via the `rtr-client-metrics` config option.  ([#800])\r\n* TCP keepalive is now enabled for RRDP connections. The keepalive duration can be configured via the new command line and config file option `rrdp-tcp-keepalive`. ([#801])\r\n\r\nBug Fixes\r\n\r\n* Fixed an issue in error handling in the RRDP collector that causes Routinator to exit if it encountered malformed Base 64 in RRDP snapshot and delta files. (Found by Donika Mirdita and Haya Shulman. Assigned [CVE-2022-3029].) ([#784])\r\n* Fixed an issue where RRDP snapshots and deltas with a status code other than 200 OK were accepted and processed. ([#802])\r\n* Changed how Routinator deals with files in the store that cannot be parsed. These will now be ignored and the publication point stored in them considered not available. ([#803])\r\n* When piping output from the `vrps` command into something else, a broken pipe will not lead to an error message any more. ([#807])\r\n* Fixed various issues with the calculation of RTR metrics. ([#811])\r\n\r\nOther Changes\r\n\r\n* The minimal required Rust version has been increased to 1.60. ([#792])\r\n* The default Docker image now listens on both port 8323 and 9556 for HTTP requests. ([#809])\r\n\r\n[#755]: https://github.com/NLnetLabs/routinator/pull/755\r\n[#761]: https://github.com/NLnetLabs/routinator/pull/761\r\n[#765]: https://github.com/NLnetLabs/routinator/pull/765\r\n[#769]: https://github.com/NLnetLabs/routinator/pull/769\r\n[#783]: https://github.com/NLnetLabs/routinator/pull/784\r\n[#792]: https://github.com/NLnetLabs/routinator/pull/792\r\n[#796]: https://github.com/NLnetLabs/routinator/pull/796\r\n[#797]: https://github.com/NLnetLabs/routinator/pull/797\r\n[#798]: https://github.com/NLnetLabs/routinator/pull/798\r\n[#799]: https://github.com/NLnetLabs/routinator/pull/799\r\n[#800]: https://github.com/NLnetLabs/routinator/pull/800\r\n[#801]: https://github.com/NLnetLabs/routinator/pull/801\r\n[#802]: https://github.com/NLnetLabs/routinator/pull/802\r\n[#803]: https://github.com/NLnetLabs/routinator/pull/803\r\n[#807]: https://github.com/NLnetLabs/routinator/pull/807\r\n[#809]: https://github.com/NLnetLabs/routinator/pull/809\r\n[#810]: https://github.com/NLnetLabs/routinator/pull/810\r\n[#811]: https://github.com/NLnetLabs/routinator/pull/811\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/81821435","assets_url":"https://api.github.com/repos/NLnetLabs/routinator/releases/81821435/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/routinator/releases/81821435/assets{?name,label}","html_url":"https://github.com/NLnetLabs/routinator/releases/tag/v0.12.0-rc1","id":81821435,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCH2k984E4H77","tag_name":"v0.12.0-rc1","target_commitish":"main","name":"0.12.0-rc1","draft":false,"immutable":false,"prerelease":true,"created_at":"2022-11-02T13:54:46Z","updated_at":"2022-11-02T13:56:45Z","published_at":"2022-11-02T13:56:45Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/routinator/tarball/v0.12.0-rc1","zipball_url":"https://api.github.com/repos/NLnetLabs/routinator/zipball/v0.12.0-rc1","body":"Breaking Changes\r\n\r\n* Restructured the TAL configuration in response to the dropped requirement to opt into the ARIN TAL.\r\n\r\n  Routinator will now use the bundled RIR TALs directly unless told otherwise by the new `--no-rir-tals` command  line and config option. The additional bundled TALs can be added via the new `--tal` command line and config option. Additionally, the TAL directory can still be used via the `--extra-tals-dir` option. The `tal-dir` option has been removed but will still be accepted – and ignored – in the config file only. \r\n\r\n  The `init` command has been removed. ([#796])\r\n* Changed the default configuration option for `unsafe-vrps` to `accept` and removed all logging or mentioning of unsafe VRPs in this case.  ([#761])\r\n* Setting the `rsync-timeout` option to 0 now disables the rsync timeout.  ([#798])\r\n* Refactored error handling. Routinator now logs the reason why an object failed verification or was otherwise rejected. ([#755])\r\n* Removed the deprecated `rrdp-disable-gzip` configuration option.  ([#769])\r\n\r\nNew\r\n\r\n* The new `limit-v4-len` and `limit-v6-len` command line and config file options allow limiting the length of IPv4 and IPv6 prefixes, respectively, to be included in the VRP data set. ([#810])\r\n* The new `rrdp-fallback` command line and config file option allows specifying the circumstances under which a failed RRDP fetch should result in using rsync instead. Supported polices are `never` for never falling back to using rsync, `stale` for the current behavior of falling back when RRDP has failed for some time, and `new` to only fall back for repositories where RRDP has never worked before. ([#799])\r\n* In the extended `jsonext` output format, the information for VRPs and router keys derived from RPKI data has gained a new member `\"tal\"` that shows the name of the TAL this object was published under. ([#765])\r\n* The log output to files, stderr, and the `/log` HTTP endpoint now includes the log level of the message to make it more clear how important the message really is. ([#797])\r\n* The RTR client metrics have been extended by three new values allowing to track the time since last cache reset and the number of reset and serial queries. Like all RTR client metrics, these new values are only available if enable explicitly via the `rtr-client-metrics` config option.  ([#800])\r\n* TCP keepalive is now enabled for RRDP connections. The keepalive duration can be configured via the new command line and config file option `rrdp-tcp-keepalive`. ([#801])\r\n\r\nBug Fixes\r\n\r\n* Fixed an issue in error handling in the RRDP collector that causes Routinator to exit if it encountered malformed Base 64 in RRDP snapshot and delta files. (Found by Donika Mirdita and Haya Shulman. Assigned [CVE-2022-3029].) ([#784])\r\n* Fixed an issue where RRDP snapshots and deltas with a status code other than 200 OK were accepted and processed. ([#802])\r\n* Changed how Routinator deals with files in the store that cannot be parsed. These will now be ignored and the publication point stored in them considered not available. ([#803])\r\n* When piping output from the `vrps` command into something else, a broken pipe will not lead to an error message any more. ([#807])\r\n* Fixed various issues with the calculation of RTR metrics. ([#811])\r\n\r\nOther Changes\r\n\r\n* The minimal required Rust version has been increased to 1.60. ([#792])\r\n* The default Docker image now listens on both port 8323 and 9556 for HTTP requests. ([#809])\r\n\r\n[#755]: https://github.com/NLnetLabs/routinator/pull/755\r\n[#761]: https://github.com/NLnetLabs/routinator/pull/761\r\n[#765]: https://github.com/NLnetLabs/routinator/pull/765\r\n[#769]: https://github.com/NLnetLabs/routinator/pull/769\r\n[#783]: https://github.com/NLnetLabs/routinator/pull/784\r\n[#792]: https://github.com/NLnetLabs/routinator/pull/792\r\n[#796]: https://github.com/NLnetLabs/routinator/pull/796\r\n[#797]: https://github.com/NLnetLabs/routinator/pull/797\r\n[#798]: https://github.com/NLnetLabs/routinator/pull/798\r\n[#799]: https://github.com/NLnetLabs/routinator/pull/799\r\n[#800]: https://github.com/NLnetLabs/routinator/pull/800\r\n[#801]: https://github.com/NLnetLabs/routinator/pull/801\r\n[#802]: https://github.com/NLnetLabs/routinator/pull/802\r\n[#803]: https://github.com/NLnetLabs/routinator/pull/803\r\n[#807]: https://github.com/NLnetLabs/routinator/pull/807\r\n[#809]: https://github.com/NLnetLabs/routinator/pull/809\r\n[#810]: https://github.com/NLnetLabs/routinator/pull/810\r\n[#811]: https://github.com/NLnetLabs/routinator/pull/811\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/76997701","assets_url":"https://api.github.com/repos/NLnetLabs/routinator/releases/76997701/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/routinator/releases/76997701/assets{?name,label}","html_url":"https://github.com/NLnetLabs/routinator/releases/tag/v0.11.3","id":76997701,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCH2k984EluRF","tag_name":"v0.11.3","target_commitish":"main","name":"0.11.3","draft":false,"immutable":false,"prerelease":false,"created_at":"2022-09-13T12:00:29Z","updated_at":"2022-09-13T12:15:06Z","published_at":"2022-09-13T12:02:46Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/routinator/tarball/v0.11.3","zipball_url":"https://api.github.com/repos/NLnetLabs/routinator/zipball/v0.11.3","body":"**This is an important security release. All users of Routinator 0.9.0 up to 0.11.2 are encouraged to upgrade at their earliest convenience.**\r\n\r\nBug Fixes\r\n\r\n* Fixes an issue in error handling in the RRDP collector that causes\r\n  Routinator to exit if it encountered malformed Base 64 in RRDP snapshot\r\n  and delta files. (Found by Donika Mirdita and Haya Shulman. Assigned\r\n  [CVE-2022-3029].) ([#781])\r\n\r\n[#781]: https://github.com/NLnetLabs/routinator/pull/781\r\n[CVE-2022-3029]: https://nlnetlabs.nl/downloads/routinator/CVE-2022-3029.txt\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/64833821","assets_url":"https://api.github.com/repos/NLnetLabs/routinator/releases/64833821/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/routinator/releases/64833821/assets{?name,label}","html_url":"https://github.com/NLnetLabs/routinator/releases/tag/v0.11.2","id":64833821,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCH2k984D3Ukd","tag_name":"v0.11.2","target_commitish":"main","name":"0.11.2","draft":false,"immutable":false,"prerelease":false,"created_at":"2022-04-20T11:30:18Z","updated_at":"2022-04-20T11:31:09Z","published_at":"2022-04-20T11:31:09Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/routinator/tarball/v0.11.2","zipball_url":"https://api.github.com/repos/NLnetLabs/routinator/zipball/v0.11.2","body":"Bug Fixes\r\n\r\n* Fixes an issue that caused the RTR server to possibly skip over some withdrawn VRPs in response to a serial query. (Found by Jay Borkenhagen, [#747])\r\n\r\n[#747]: https://github.com/NLnetLabs/routinator/pull/747\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/63847106","assets_url":"https://api.github.com/repos/NLnetLabs/routinator/releases/63847106/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/routinator/releases/63847106/assets{?name,label}","html_url":"https://github.com/NLnetLabs/routinator/releases/tag/v0.11.1","id":63847106,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCH2k984DzjrC","tag_name":"v0.11.1","target_commitish":"main","name":"0.11.1","draft":false,"immutable":false,"prerelease":false,"created_at":"2022-04-07T11:07:56Z","updated_at":"2022-04-07T11:23:07Z","published_at":"2022-04-07T11:08:57Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/routinator/tarball/v0.11.1","zipball_url":"https://api.github.com/repos/NLnetLabs/routinator/zipball/v0.11.1","body":"New\r\n\r\n* The `dump` command now also copies the stored trust anchor certificates. The certificates are named in the same way as they are internally using the hash over their URI. Please consult the [manual][dump-manual] for details. ([#740])\r\n\r\nBug Fixes\r\n\r\n* The `dump` command now removes the internal header before copying the objects retained by the RRDP collector, i.e., the files copied into the `rrdp` sub-directory now contain the actual DER encoded data only. ([#735])\r\n* Correctly set the idle time for TCP keepalives on incoming RTR connections on systems that support it. ([#736])\r\n* Fix an encoding error in the `/delta-json` output. ([#737])\r\n* Truncate the PID file before writing the current PID to it. ([#738])\r\n* Exit with a status of 1 if an error happened. ([#739])\r\n\r\n[#735]: https://github.com/NLnetLabs/routinator/pull/735\r\n[#736]: https://github.com/NLnetLabs/routinator/pull/736\r\n[#737]: https://github.com/NLnetLabs/routinator/pull/737\r\n[#738]: https://github.com/NLnetLabs/routinator/pull/738\r\n[#739]: https://github.com/NLnetLabs/routinator/pull/739\r\n[#740]: https://github.com/NLnetLabs/routinator/pull/740\r\n[dump-manual]: https://routinator.docs.nlnetlabs.nl/en/v0.11.1/dump.html\r\n","reactions":{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/63847106/reactions","total_count":1,"+1":0,"-1":0,"laugh":0,"hooray":1,"confused":0,"heart":0,"rocket":0,"eyes":0}},{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/63518710","assets_url":"https://api.github.com/repos/NLnetLabs/routinator/releases/63518710/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/routinator/releases/63518710/assets{?name,label}","html_url":"https://github.com/NLnetLabs/routinator/releases/tag/v0.11.1-rc1","id":63518710,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCH2k984DyTf2","tag_name":"v0.11.1-rc1","target_commitish":"main","name":"0.11.1-rc1","draft":false,"immutable":false,"prerelease":true,"created_at":"2022-04-04T12:43:37Z","updated_at":"2022-04-04T12:44:49Z","published_at":"2022-04-04T12:44:49Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/routinator/tarball/v0.11.1-rc1","zipball_url":"https://api.github.com/repos/NLnetLabs/routinator/zipball/v0.11.1-rc1","body":"New\r\n\r\n* The `dump` command now also copies the stored trust anchor certificates. The certificates are named in the same way as they are internally using the hash over their URI. Please consult the [manual][dump-manual] for details. ([#740])\r\n\r\nBug Fixes\r\n\r\n* The `dump` command now removes the internal header before copying the objects retained by the RRDP collector, i.e., the files copied into the `rrdp` sub-directory now contain the actual DER encoded data only. ([#735])\r\n* Correctly set the idle time for TCP keepalives on incoming RTR connections on systems that support it. ([#736])\r\n* Fix an encoding error in the `/delta-json` output. ([#737])\r\n* Truncate the PID file before writing the current PID to it. ([#738])\r\n* Exit with a status of 1 if an error happened. ([#739])\r\n\r\n[#735]: https://github.com/NLnetLabs/routinator/pull/735\r\n[#736]: https://github.com/NLnetLabs/routinator/pull/736\r\n[#737]: https://github.com/NLnetLabs/routinator/pull/737\r\n[#738]: https://github.com/NLnetLabs/routinator/pull/738\r\n[#739]: https://github.com/NLnetLabs/routinator/pull/739\r\n[#740]: https://github.com/NLnetLabs/routinator/pull/740\r\n[dump-manual]: https://routinator.docs.nlnetlabs.nl/en/v0.11.1-rc1/dump.html\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/60598425","assets_url":"https://api.github.com/repos/NLnetLabs/routinator/releases/60598425/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/routinator/releases/60598425/assets{?name,label}","html_url":"https://github.com/NLnetLabs/routinator/releases/tag/v0.11.0","id":60598425,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCH2k984DnKiZ","tag_name":"v0.11.0","target_commitish":"main","name":"0.11.0","draft":false,"immutable":false,"prerelease":false,"created_at":"2022-02-28T11:15:14Z","updated_at":"2022-02-28T11:18:27Z","published_at":"2022-02-28T11:18:27Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/routinator/tarball/v0.11.0","zipball_url":"https://api.github.com/repos/NLnetLabs/routinator/zipball/v0.11.0","body":"Breaking Changes\r\n\r\n* The minimal supported Rust version is now 1.52. ([#681])\r\n\r\nNew\r\n\r\n* Add TLS support to the RTR and HTTP servers. ([#677])\r\n* Add support for BGPsec router keys. This needs to be explicitly enabled via the new `enable-bgpsec` command line and config file option.  ([#693])\r\n* Reject so-called premature manifests, i.e., manifests that have an issue time before the current time. This is a new requirement in [draft-ietf-sidrops-6486bis]. ([#681], [#690])\r\n* Add a new output format `slurm` that produces a JSON file formatted according to [RFC 8416] with the validated payload included in the locally added assertions. ([#702])\r\n* Make the (standard) JSON payload output available under `/api/v1/origins` with the same URL parameters.([#707])\r\n* Add a new URI parameter `include=more-specifics` to all HTTP payload output paths to include all route origins for prefixes that are more specifics of the selected prefixes. ([#707])\r\n* Add a new option `--more-specifics` to the `vrps` command to include all route origins for prefixes that are more specifics of the selected prefixes.  ([#714])\r\n* Accept and process HEAD requests for all HTTP paths. ([#707])\r\n\r\nBug Fixes\r\n\r\n* Encountering stray files at the top level of the rsync cache directory will not cause Routinator to exit any more. Instead, it will just delete those files. ([#675])\r\n* Don’t exit when a directory to be deleted doesn’t exist. In particular, this fixes an error in the `dump` command. ([#682])\r\n* Count all valid CRLs for metrics generation during a validation run.  ([#683])\r\n* Don’t claim filtering of unsafe VRPs when the policy is `warn`. (Only the log message was wrong, no VRPs were filtered in this case.) ([#699])\r\n* Use a TCP listener socket for the RTR server passed in via systemd socket activation if configured. This was already implemented but got lost a few versions ago. ([#709])\r\n* Enable TCP keepalive on RTR connections when configured. This, too, was already implemented but got lost a few versions ago. ([#710])\r\n\r\nOther Changes\r\n\r\n* Update the NLnet Labs RPKI testbed TAL to the one used by the new server. ([#637])\r\n\r\n[#637]: https://github.com/NLnetLabs/routinator/pull/637\r\n[#675]: https://github.com/NLnetLabs/routinator/pull/675\r\n[#677]: https://github.com/NLnetLabs/routinator/pull/677\r\n[#681]: https://github.com/NLnetLabs/routinator/pull/681\r\n[#682]: https://github.com/NLnetLabs/routinator/pull/682\r\n[#683]: https://github.com/NLnetLabs/routinator/pull/683\r\n[#690]: https://github.com/NLnetLabs/routinator/pull/690\r\n[#693]: https://github.com/NLnetLabs/routinator/pull/693\r\n[#699]: https://github.com/NLnetLabs/routinator/pull/699\r\n[#702]: https://github.com/NLnetLabs/routinator/pull/702\r\n[#709]: https://github.com/NLnetLabs/routinator/pull/709\r\n[#707]: https://github.com/NLnetLabs/routinator/pull/707\r\n[#710]: https://github.com/NLnetLabs/routinator/pull/710\r\n[#714]: https://github.com/NLnetLabs/routinator/pull/714\r\n[draft-ietf-sidrops-6486bis]: https://datatracker.ietf.org/doc/draft-ietf-sidrops-6486bis/\r\n[RFC 8416]: https://tools.ietf.org/html/rfc8416\r\n\r\n","reactions":{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/60598425/reactions","total_count":2,"+1":0,"-1":0,"laugh":0,"hooray":2,"confused":0,"heart":0,"rocket":0,"eyes":0}},{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/60054181","assets_url":"https://api.github.com/repos/NLnetLabs/routinator/releases/60054181/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/routinator/releases/60054181/assets{?name,label}","html_url":"https://github.com/NLnetLabs/routinator/releases/tag/v0.11.0-rc2","id":60054181,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCH2k984DlFql","tag_name":"v0.11.0-rc2","target_commitish":"main","name":"0.11.0-rc2","draft":false,"immutable":false,"prerelease":true,"created_at":"2022-02-21T14:46:16Z","updated_at":"2022-02-21T14:47:31Z","published_at":"2022-02-21T14:47:31Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/routinator/tarball/v0.11.0-rc2","zipball_url":"https://api.github.com/repos/NLnetLabs/routinator/zipball/v0.11.0-rc2","body":"Bug Fixes\r\n\r\n* Change the content type of the `/log` endpoint back to `text/plain`. ([#719])\r\n* Improve the way timed out `rsync` processes are killed in an attempt to avoid them becoming zombies. ([#720])\r\n\r\n[#719]: https://github.com/NLnetLabs/routinator/pull/719\r\n[#720]: https://github.com/NLnetLabs/routinator/pull/720\r\n"},{"url":"https://api.github.com/repos/NLnetLabs/routinator/releases/59219640","assets_url":"https://api.github.com/repos/NLnetLabs/routinator/releases/59219640/assets","upload_url":"https://uploads.github.com/repos/NLnetLabs/routinator/releases/59219640/assets{?name,label}","html_url":"https://github.com/NLnetLabs/routinator/releases/tag/v0.11.0-rc1","id":59219640,"author":{"login":"partim","id":1318494,"node_id":"MDQ6VXNlcjEzMTg0OTQ=","avatar_url":"https://avatars.githubusercontent.com/u/1318494?v=4","gravatar_id":"","url":"https://api.github.com/users/partim","html_url":"https://github.com/partim","followers_url":"https://api.github.com/users/partim/followers","following_url":"https://api.github.com/users/partim/following{/other_user}","gists_url":"https://api.github.com/users/partim/gists{/gist_id}","starred_url":"https://api.github.com/users/partim/starred{/owner}{/repo}","subscriptions_url":"https://api.github.com/users/partim/subscriptions","organizations_url":"https://api.github.com/users/partim/orgs","repos_url":"https://api.github.com/users/partim/repos","events_url":"https://api.github.com/users/partim/events{/privacy}","received_events_url":"https://api.github.com/users/partim/received_events","type":"User","user_view_type":"public","site_admin":false},"node_id":"RE_kwDOCH2k984Dh564","tag_name":"v0.11.0-rc1","target_commitish":"main","name":"0.11.0-rc1","draft":false,"immutable":false,"prerelease":true,"created_at":"2022-02-10T10:49:28Z","updated_at":"2022-02-10T10:50:58Z","published_at":"2022-02-10T10:50:58Z","assets":[],"tarball_url":"https://api.github.com/repos/NLnetLabs/routinator/tarball/v0.11.0-rc1","zipball_url":"https://api.github.com/repos/NLnetLabs/routinator/zipball/v0.11.0-rc1","body":"Breaking Changes\r\n\r\n* The minimal supported Rust version is now 1.52. ([#681])\r\n\r\nNew\r\n\r\n* Add TLS support to the RTR and HTTP servers. ([#677])\r\n* Add support for BGPsec router keys. This needs to be explicitly enabled via the new `enable-bgpsec` command line and config file option.  ([#693])\r\n* Reject so-called premature manifests, i.e., manifests that have an issue time before the current time. This is a new requirement in [draft-ietf-sidrops-6486bis]. ([#681], [#690])\r\n* Add a new output format `slurm` that produces a JSON file formatted according to [RFC 8416] with the validated payload included in the locally added assertions. ([#702])\r\n* Make the (standard) JSON payload output available under `/api/v1/origins` with the same URL parameters.([#707])\r\n* Add a new URI parameter `include=more-specifics` to all HTTP payload output paths to include all route origins for prefixes that are more specifics of the selected prefixes. ([#707])\r\n* Add a new option `--more-specifics` to the `vrps` command to include all route origins for prefixes that are more specifics of the selected prefixes.  ([#714])\r\n* Accept and process HEAD requests for all HTTP paths. ([#707])\r\n\r\nBug Fixes\r\n\r\n* Encountering stray files at the top level of the rsync cache directory will not cause Routinator to exit any more. Instead, it will just delete those files. ([#675])\r\n* Don’t exit when a directory to be deleted doesn’t exist. In particular, this fixes an error in the `dump` command. ([#682])\r\n* Count all valid CRLs for metrics generation during a validation run.  ([#683])\r\n* Don’t claim filtering of unsafe VRPs when the policy is `warn`. (Only the log message was wrong, no VRPs were filtered in this case.) ([#699])\r\n* Use a TCP listener socket for the RTR server passed in via systemd socket activation if configured. This was already implemented but got lost a few versions ago. ([#709])\r\n* Enable TCP keepalive on RTR connections when configured. This, too, was already implemented but got lost a few versions ago. ([#710])\r\n\r\nOther Changes\r\n\r\n* Update the NLnet Labs RPKI testbed TAL to the one used by the new server. ([#637])\r\n\r\n[#637]: https://github.com/NLnetLabs/routinator/pull/637\r\n[#675]: https://github.com/NLnetLabs/routinator/pull/675\r\n[#677]: https://github.com/NLnetLabs/routinator/pull/677\r\n[#681]: https://github.com/NLnetLabs/routinator/pull/681\r\n[#682]: https://github.com/NLnetLabs/routinator/pull/682\r\n[#683]: https://github.com/NLnetLabs/routinator/pull/683\r\n[#690]: https://github.com/NLnetLabs/routinator/pull/690\r\n[#693]: https://github.com/NLnetLabs/routinator/pull/693\r\n[#699]: https://github.com/NLnetLabs/routinator/pull/699\r\n[#702]: https://github.com/NLnetLabs/routinator/pull/702\r\n[#709]: https://github.com/NLnetLabs/routinator/pull/709\r\n[#707]: https://github.com/NLnetLabs/routinator/pull/707\r\n[#710]: https://github.com/NLnetLabs/routinator/pull/710\r\n[#714]: https://github.com/NLnetLabs/routinator/pull/714\r\n[draft-ietf-sidrops-6486bis]: https://datatracker.ietf.org/doc/draft-ietf-sidrops-6486bis/\r\n[RFC 8416]: https://tools.ietf.org/html/rfc8416\r\n"}]