CHANGES:
IMPROVEMENTS:
BUG FIXES:
log_requests_level. [GH-24057]SECURITY:
CHANGES:
FEATURES:
IMPROVEMENTS:
BUG FIXES:
detect_deadlocks. [GH-23902]SECURITY:
CHANGES:
FEATURES:
IMPROVEMENTS:
BUG FIXES:
detect_deadlocks. [GH-23902]SECURITY:
CHANGES:
FEATURES:
IMPROVEMENTS:
BUG FIXES:
detect_deadlocks. [GH-23902]CHANGES:
IMPROVEMENTS:
tls-server-name arg for plugin registration [GH-23549]authenticate_from_environment variable to "true" and "false" string literals, too. [GH-22996]BUG FIXES:
CHANGES:
IMPROVEMENTS:
tls-server-name arg for plugin registration [GH-23549]BUG FIXES:
CHANGES:
IMPROVEMENTS:
tls-server-name arg for plugin registration [GH-23549]BUG FIXES:
SECURITY:
CHANGES:
data_path will include full data path of secret, including name. [GH-22487]EventSender interface method is now SendEvent instead of Send. [GH-22487]vault.rollback.attempt.{MOUNT_POINT} and vault.route.rollback.{MOUNT_POINT} metrics with vault.rollback.attempt and vault.route.rollback metrics by default. Added a telemetry configuration add_mount_point_rollback_metrics which, when set to true, causes vault to emit the metrics with mount points in their names. [GH-22400]FEATURES:
IMPROVEMENTS:
use_sts_region_from_client which allows for using dynamic regional sts endpoints based on Authorization header when using IAM-based authentication. [GH-21960]-dev-tls-san flag to configure subject alternative names for the certificate generated when using -dev-tls. [GH-22657]vault.policy.configured.count. [GH-21010]-output-policy recognition of some non-standard sudo paths [GH-21772]sys/raw/ and sys/leases/lookup/ to match prevailing conventions [GH-21760]CreateOperation to be defined without an ExistenceCheck, thereby fixing misleading x-vault-createSupported in OpenAPI [GH-18492]service_account_json parameter when reading DB connection details [GH-23256]pending_permits, active_permits, and pool_size. [GH-21742]DEPRECATIONS:
BUG FIXES:
auth/token/create fields to avoid incorrect warnings about ignored parameters [GH-18556]AWS_ROLE_ARN, AWS_WEB_IDENTITY_TOKEN_FILE, and AWS_ROLE_SESSION_NAME. [GH-21951]-field flag is provided during a vault write. [GH-21546]table. [GH-22818]identity/mfa/method/* APIs [GH-20879]vault plugin runtime list can successfully list plugin runtimes with GET [GH-23171]no managed key found with uuid. [GH-21316]default_critical_options and default_extension if left unchanged. [GH-21739]max_versions default for secret metadata unintentionally overriding kv engine defaults [GH-22394]CHANGES:
IMPROVEMENTS:
BUG FIXES:
CHANGES:
IMPROVEMENTS:
BUG FIXES:
SECURITY:
CHANGES:
data_path will include full data path of secret, including name. [GH-22487]EventSender interface method is now SendEvent instead of Send. [GH-22487]vault.rollback.attempt.{MOUNT_POINT} and vault.route.rollback.{MOUNT_POINT} metrics with vault.rollback.attempt and vault.route.rollback metrics by default. Added a telemetry configuration add_mount_point_rollback_metrics which, when set to true, causes vault to emit the metrics with mount points in their names. [GH-22400]FEATURES:
IMPROVEMENTS:
use_sts_region_from_client which allows for using dynamic regional sts endpoints based on Authorization header when using IAM-based authentication. [GH-21960]-dev-tls-san flag to configure subject alternative names for the certificate generated when using -dev-tls. [GH-22657]vault.policy.configured.count. [GH-21010]-output-policy recognition of some non-standard sudo paths [GH-21772]sys/raw/ and sys/leases/lookup/ to match prevailing conventions [GH-21760]CreateOperation to be defined without an ExistenceCheck, thereby fixing misleading x-vault-createSupported in OpenAPI [GH-18492]pending_permits, active_permits, and pool_size. [GH-21742]BUG FIXES:
auth/token/create fields to avoid incorrect warnings about ignored parameters [GH-18556]AWS_ROLE_ARN, AWS_WEB_IDENTITY_TOKEN_FILE, and AWS_ROLE_SESSION_NAME. [GH-21951]-field flag is provided during a vault write. [GH-21546]table. [GH-22818]identity/mfa/method/* APIs [GH-20879]no managed key found with uuid. [GH-21316]default_critical_options and default_extension if left unchanged. [GH-21739]max_versions default for secret metadata unintentionally overriding kv engine defaults [GH-22394]SECURITY:
CHANGES:
FEATURES:
IMPROVEMENTS:
BUG FIXES:
table. [GH-22818]SECURITY:
CHANGES:
FEATURES:
IMPROVEMENTS:
BUG FIXES:
table. [GH-22818]SECURITY:
IMPROVEMENTS:
BUG FIXES:
table. [GH-22818]CHANGES:
IMPROVEMENTS:
BUG FIXES:
max_versions default for secret metadata unintentionally overriding kv engine defaults [GH-22394]CHANGES:
IMPROVEMENTS:
BUG FIXES:
max_versions default for secret metadata unintentionally overriding kv engine defaults [GH-22394]CHANGES:
IMPROVEMENTS:
BUG FIXES:
max_versions default for secret metadata unintentionally overriding kv engine defaults [GH-22394]CHANGES:
IMPROVEMENTS:
BUG FIXES:
auth/token/create fields to avoid incorrect warnings about ignored parameters [GH-18556]AWS_ROLE_ARN, AWS_WEB_IDENTITY_TOKEN_FILE, and AWS_ROLE_SESSION_NAME. [GH-21951]no managed key found with uuid. [GH-21316]default_critical_options and default_extension if left unchanged. [GH-21739]CHANGES:
IMPROVEMENTS:
vault.policy.configured.count. [GH-21010]BUG FIXES:
no managed key found with uuid. [GH-21316]default_critical_options and default_extension if left unchanged. [GH-21739]CHANGES:
IMPROVEMENTS:
BUG FIXES:
no managed key found with uuid. [GH-21316]default_critical_options and default_extension if left unchanged. [GH-21739]