NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
Go modules · #165 by repository stars
Last release today
08 Oct 2026
Ships on a steady schedule
a new release about every 1 weeks
Nearly every release is documented
notes for 31 of 31 stable releases
Nothing withdrawn
no release was ever pulled
7 years old
316 releases · first in 2019
Nothing published for this version
See the v1.11.2 milestone for a complete list of changes.
See the v1.11.2 milestone for a complete list of changes.
AF_INET, so the IPv6 MTU on everytun.mtu and the stack could hand Nebulatun.mtu under 1280 now refuses to start,bind() on netlink route sockets inside the app sandbox, so local address discoveryOne column per quarter.
See the v1.11.1 milestone for a complete list of changes.
See the v1.11.1 milestone for a complete list of changes.
proto: any rule allows them. If you carry one of these protocols over theproto: any rule covers it before upgrading, it may have been passing only through thisgithub.com/cyberdelia/go-metrics-graphite, which has been unmaintained for over tennebula-cert ca from running out of memory on 32bit systems when generating encrypted private keys. (#1834)ErrDumpInterrupted when listing tun addresses on Linux, so a transient interrupted netlink dumpNothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
See the v1.11.0 milestone for a complete list of changes.
See the v1.11.0 milestone for a complete list of changes.
slog. Log output changes: levels are upper caselevel=INFO), trace prints as level=DEBUG-4, timestamps are always RFC3339Nano and logging.timestamp_format*slog.Logger. (#1672, #1734, #1621)firewall.inbound_action and firewall.outbound_action (used to set reject vs. drop policy) were each beingtun.windows_bypass_wdf and listen.windows_bypass_wdf to false to leave WDF in charge. (#1710)private network category instead of whatever Windows decided,Public. This makes the host firewall less restrictive on the overlay. Settun.network_category to unset to keep the old behavior. (#1710)sshd.sandbox_dir, which defaults to$TMP/nebula-debug. Relative paths resolve inside it and absolute paths outside it are rejected, so anythingstart-cpu-profile, save-heap-profile, or save-mutex-profile with a path elsewhere needs the- in nebula-cert to read from stdin or write to stdout. (#1714)config.yml and config.yaml in service and command line modes. (#1717)listen.rebind_on_network_change (default true, not reloadable). (#1816)NODATA instead of NXDOMAIN from the DNS server for a name that exists but has no record of theAAAA first (busybox/Alpine) fall through to A. (#1668)Control is now safe to stop and wait on from any lifecycle state, and a new Control.Wait blocks until nebularemote_allow_list IPv4 rules to 4-in-6 mapped addresses. (#1786)closetunnel packets. (#1638)Disestablished, which silently dropped every send until dead tunnel detection forced a re-handshake. (#1805)Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Your coding agent can read these notes before it upgrades. Set up the MCP server →