haproxy.git
2 years ago[PATCH] BUG/MINOR: tcpcheck: Update .health threshold of agent inside an agent-check
Christopher Faulet [Fri, 12 Mar 2021 08:06:07 +0000 (09:06 +0100)]
[PATCH] BUG/MINOR: tcpcheck: Update .health threshold of agent inside an agent-check

If an agent-check is configured for a server, When the response is parsed,
the .health threshold of the agent must be updated on up/down/stopped/fail
command and not the threshold of the health-check. Otherwise, the
agent-check will compete with the health-check and may mark a DOWN server as
UP.

This patch should fix the issue #1176. It must be backported as far as 2.2.

(cherry picked from commit 24ec9434271345857b42cc5bd9c6b497ab01a7e4)
Signed-off-by: Christopher Faulet <cfaulet@haproxy.com>
(cherry picked from commit 789bbdc88d7ffe8f520532efb18148ea52ede4ca)
Signed-off-by: Christopher Faulet <cfaulet@haproxy.com>
Gbp-Pq: Name 0001-BUG-MINOR-tcpcheck-Update-.health-threshold-of-agent.patch

2 years agoAdd documentation field to the systemd unit
Debian HAProxy Maintainers [Sun, 25 Mar 2018 09:31:50 +0000 (11:31 +0200)]
Add documentation field to the systemd unit

Forwarded: no
Last-Update: 2014-01-03

Gbp-Pq: Name haproxy.service-add-documentation.patch

2 years agoStart after rsyslog.service
Apollon Oikonomopoulos [Sun, 25 Mar 2018 09:31:50 +0000 (11:31 +0200)]
Start after rsyslog.service

As HAProxy is running chrooted by default, we rely on an additional syslog
socket created by rsyslog inside the chroot for logging. As this socket cannot
trigger syslog activation, we explicitly order HAProxy after rsyslog.service.
Note that we are not using syslog.service here, since the additional socket is
rsyslog-specific.
Forwarded: no
Last-Update: 2017-12-01

Gbp-Pq: Name haproxy.service-start-after-syslog.patch

2 years agoUse dpkg-buildflags to build halog
Apollon Oikonomopoulos [Tue, 2 Jul 2013 12:24:59 +0000 (15:24 +0300)]
Use dpkg-buildflags to build halog

Forwarded: no
Last-Update: 2013-07-02

Gbp-Pq: Name 0002-Use-dpkg-buildflags-to-build-halog.patch

2 years agohaproxy (2.2.9-2+deb11u4) bullseye-security; urgency=high
Salvatore Bonaccorso [Sat, 11 Feb 2023 10:40:49 +0000 (10:40 +0000)]
haproxy (2.2.9-2+deb11u4) bullseye-security; urgency=high

  * Non-maintainer upload by the Security Team.
  * BUG/MEDIUM: mux-h2: Refuse interim responses with end-stream flag set
    (CVE-2023-0056)
  * BUG/CRITICAL: http: properly reject empty http header field names
    (CVE-2023-25725)

[dgit import unpatched haproxy 2.2.9-2+deb11u4]

2 years agoImport haproxy_2.2.9-2+deb11u4.debian.tar.xz
Salvatore Bonaccorso [Sat, 11 Feb 2023 10:40:49 +0000 (10:40 +0000)]
Import haproxy_2.2.9-2+deb11u4.debian.tar.xz

[dgit import tarball haproxy 2.2.9-2+deb11u4 haproxy_2.2.9-2+deb11u4.debian.tar.xz]

4 years agoImport haproxy_2.2.9.orig.tar.gz
Vincent Bernat [Sat, 6 Feb 2021 17:52:20 +0000 (17:52 +0000)]
Import haproxy_2.2.9.orig.tar.gz

[dgit import orig haproxy_2.2.9.orig.tar.gz]