Faucet

Latest version: v1.10.11

Safety actively analyzes 626118 Python packages for vulnerabilities to keep your Python projects secure.

Scan your dependencies

Page 23 of 24

1.6.8

Not secure
* IPv6 L3 pipeline cleanup (no longer need ip_proto, icmpv6_type matches in eth_src table).
* Handle IPv6 NA with different source/target IP.
* BGP routes not re-inserted when dataplane restarts.
* LACP tests flakey and could cause loopback - log LACP changes and block when LACP down.
* Tests verify hard_timeout present on eth_src.
* Experimental simple loop mitigation.
* Ryu 4.18

1.6.7

Not secure
* Add unit tests for gauge
* Add a python console script for running FCTL
* Update gNMI tester with Set/Capabilities and Mock Target
* Actually delete dead FIB routes
* Add packaging scripts for new FAUCET VM

1.6.6

Not secure
Fix critical problems with 1.6.5 (do not use 1.6.5).

* Fix a performance regression in from 1.6.5 (__hash__ on Conf objects expensive).
* Fix strict check of LACP packets (might reply to a LACP request even if LACP disabled)
* Fix unnecessary multiple parse of Ethernet header.
* Fix non dyn learn ban counters on port and vlan.
* Fix setting of hard timeout on eth_dst (should be idle)
* Fix incorrect ACL reference when ACL only changes.
* Fix unnecessary query of both route managers.
* Implement cProfiling of controller (disabled by default).

1.6.5

Not secure
*Experimental passive LACP support (for LACP interop testing only, currently does not aggregate or provide redundancy, and works only on untagged ports)
* Experimental fctl tool for querying controller state from CLI.
* Docker images built with Alpine Linux (drastically smaller - approx 170M versus 800M)
* Upgrade Ryu to 4.17
* Allow pushing of 0x88a8 VLAN tags
* Further strict eth_type checks before sending a packet to route managers.
* Fix state change of mirror ports not handled
* Don't even try to flood to down ports (can get EPERM on packet out Aruba)
* Test suites run against OVS 2.7.3.
* Test suites can use an http_proxy.
* Test suite diagnostic improvements (sanity checks describe switch ports and minimum speed/status, and workaround ptys leak in mininet which also caused tshark to crash), and are much quieter.
* Test suite doesn't allocate a TCP port to OVS switches anymore (unnecessary), and allocate fewer test TCP ports overall.
* Reduce size of test container (remove unused mininet dependencies)
* Unit tests for Gauge

1.6.4

Not secure
* FAUCET should log a helpful message if "hardware" is misconfigured rather than stop.
* Enable testing of experimental group failover.

1.6.3

Not secure
* Both FAUCET and Gauge now export PBR version as label on variable faucet_pbr_version
* Fix host_cache being dropped unnecessarily on a port-ACL-only change
* Basic FAUCET Prometheus metrics default to 0 rather than undefined
* New experimental fast failover group support in ACLs
* Further test reliability fixes.

OVS 2.8.0 has not been tested, it has a bug that crashes when a ptcp connection is configured. An OVS fix is forthcoming.

Page 23 of 24

© 2024 Safety CLI Cybersecurity Inc. All Rights Reserved.