changes.rst 6.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162
  1. .. _important_notes:
  2. Important notes 2.x
  3. ===================
  4. This section provides information about security and corruption issues.
  5. (nothing to see here yet)
  6. .. _changelog:
  7. Change Log 2.x
  8. ==============
  9. Version 2.0.0a2 (not released yet)
  10. ----------------------------------
  11. Please note:
  12. This is an alpha release, only for testing - do not use for production repos.
  13. Compatibility notes:
  14. - this is a major "breaking" release that is not compatible with existing repos.
  15. We tried to put all the necessary "breaking" changes into this release, so we
  16. hopefully do not need another breaking release in the near future. The changes
  17. were necessary for improved security, improved speed, unblocking future
  18. improvements, getting rid of legacy crap / design limitations, having less and
  19. simpler code to maintain.
  20. You can use "borg transfer" to transfer archives from borg 1.1/1.2 repos to
  21. a new borg 2.0 repo, but it will need some time and space.
  22. - command line syntax was changed, scripts and wrappers will need changes:
  23. - you will usually either export BORG_REPO=<MYREPO> into your environment or
  24. call borg like: borg -r <MYREPO> command (-r ... usually omitted for brevity)
  25. - the scp-style REPO syntax was removed, please use ssh://..., #6697
  26. - differently than with borg 1.x you ONLY give the repo there, never a ::archive.
  27. - the archive name is either given as a positional parameter, like:
  28. - borg create myarchive2 /some/path
  29. - borg diff myarchive1 myarchive2
  30. - or, if the command makes sense for an arbitrary amount of archives, archives
  31. can be selected using a glob pattern, like:
  32. - borg delete -a 'myarchive*'
  33. - borg recreate -a 'myarchive*'
  34. - some borg 1.x commands that supported working on a repo AND on an archive
  35. were split into 2 commands, some others were renamed:
  36. - borg 2 repo commands:
  37. - borg rcreate # "repo create", was: borg init
  38. - borg rlist # "repo list"
  39. - borg rinfo # "repo info"
  40. - borg rdelete # "repo delete"
  41. - borg 2 archive commands:
  42. - borg create ARCHIVE ...
  43. - borg list ARCHIVE
  44. - borg info -a ARCH_GLOB
  45. - borg delete -a ARCH_GLOB
  46. - borg diff ARCH1 ARCH2
  47. - borg extract ARCHIVE ...
  48. - borg recreate -a ARCH_GLOB ...
  49. - borg rename OLDNAME NEWNAME
  50. - borg mount -a ARCH_GLOB mountpoint ...
  51. For more details, please consult the docs or --help option output.
  52. Changes:
  53. - split repo and archive name into separate args, #948
  54. - use -r or --repo or BORG_REPO env var to give the repository
  55. - use --other-repo or BORG_OTHER_REPO to give another repo (e.g. borg transfer)
  56. - use positional argument for archive name or `-a ARCH_GLOB`
  57. - remove support for scp-style repo specification, use ssh://...
  58. - simplify stats output: repo ops -> repo stats, archive ops -> archive stats
  59. - repository index: add payload size (==csize) and flags to NSIndex entries
  60. - repository index: set/query flags, iteration over flagged items (NSIndex)
  61. - repository: sync write file in get_fd
  62. - stats: deduplicated size now, was deduplicated compressed size in borg 1.x
  63. - remove csize support at most places in the code (chunks index, stats, get_size,
  64. Item.chunks)
  65. - replace problematic/ugly hardlink_master approach of borg 1.x by:
  66. - symmetric hlid (all hardlinks pointing to same inode have same hlid)
  67. - all archived hardlinked regular files have a chunks list
  68. - borg init --other-repo=OTHER_REPO: reuse key material from OTHER_REPO, #6554
  69. - borg transfer:
  70. - efficiently copy archives from borg 1.1/1.2 repo to new repo. uses
  71. deduplication and does not decompress/recompress file content data.
  72. - does some cleanups / fixes / conversions:
  73. - disallow None value for .user/group/chunks/chunks_healthy
  74. - cleanup msgpack related str/bytes mess, use new msgpack spec, #968
  75. - obfuscation: fix byte order for size, #6701
  76. - compression: use the 2 bytes for type and level, #6698
  77. - use version 2 for new archives
  78. - convert timestamps int/bigint -> msgpack.Timestamp, see #2323
  79. - all hardlinks have chunks, maybe chunks_healty, hlid
  80. - remove the zlib type bytes hack
  81. - make sure items with chunks have precomputed size
  82. - clean item of attic 0.13 'acl' bug remnants
  83. - crypto: see 1.3.0a1 log entry
  84. Version 1.3.0a1 (2022-04-15)
  85. ----------------------------
  86. Although this was released as 1.3.0a1, it can be also seen as 2.0.0a1 as it was
  87. later decided to do breaking changes and thus the major release number had to
  88. be increased (thus, there will not be a 1.3.0 release, but 2.0.0).
  89. New features:
  90. - init: new --encryption=(repokey|keyfile)-[blake2-](aes-ocb|chacha20-poly1305)
  91. - New, better, faster crypto (see encryption-aead diagram in the docs), #6463.
  92. - New AEAD cipher suites: AES-OCB and CHACHA20-POLY1305.
  93. - Session keys are derived via HKDF from random session id and master key.
  94. - Nonces/MessageIVs are counters starting from 0 for each session.
  95. - AAD: chunk id, key type, messageIV, sessionID are now authenticated also.
  96. - Solves the potential AES-CTR mode counter management issues of the legacy crypto.
  97. - init: --key-algorithm=argon2 (new default KDF, older pbkdf2 also still available)
  98. borg key change-passphrase / change-location keeps the key algorithm unchanged.
  99. - key change-algorithm: to upgrade existing keys to argon2 or downgrade to pbkdf2.
  100. We recommend you to upgrade unless you have to keep the key compatible with older versions of borg.
  101. - key change-location: usable for repokey <-> keyfile location change
  102. - benchmark cpu: display benchmarks of cpu bound stuff
  103. - export-tar: new --tar-format=PAX (default: GNU)
  104. - import-tar/export-tar: can use PAX format for ctime and atime support
  105. - import-tar/export-tar: --tar-format=BORG: roundtrip ALL item metadata, #5830
  106. - repository: create and use version 2 repos only for now
  107. - repository: implement PUT2: header crc32, overall xxh64, #1704
  108. Other changes:
  109. - require python >= 3.9, #6315
  110. - simplify libs setup, #6482
  111. - unbundle most bundled 3rd party code, use libs, #6316
  112. - use libdeflate.crc32 (Linux and all others) or zlib.crc32 (macOS)
  113. - repository: code cleanups / simplifications
  114. - internal crypto api: speedups / cleanups / refactorings / modernisation
  115. - remove "borg upgrade" support for "attic backup" repos
  116. - remove PassphraseKey code and borg key migrate-to-repokey command
  117. - OpenBSD: build borg with OpenSSL (not: LibreSSL), #6474
  118. - remove support for LibreSSL, #6474
  119. - remove support for OpenSSL < 1.1.1