<?xml version="1.0" encoding="windows-1252"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/">
	<channel>
		<title>n00b Unlimited - Forum</title>
		<link>https://n00bunlimited.net/</link>
		<description>Forum Description</description>
		<language>en</language>
		<lastBuildDate>Thu, 18 Jun 2026 13:18:27 GMT</lastBuildDate>
		<generator>vBulletin</generator>
		<ttl>60</ttl>
		<image>
			<url>https://n00bunlimited.net/images/misc/rss.png</url>
			<title>n00b Unlimited - Forum</title>
			<link>https://n00bunlimited.net/</link>
		</image>
		<item>
			<title>IPFire 2.29 - Core Update 203 is available for testing</title>
			<link>https://n00bunlimited.net/home/forum/site-news/ipfire/80483-ipfire-2-29-core-update-203-is-available-for-testing</link>
			<pubDate>Wed, 10 Jun 2026 09:40:21 GMT</pubDate>
			<description><![CDATA[This is the release announcement for IPFire 2.29 &#8211; Core Update 203, which is now available for testing. 
 
This is a substantial update, and its...]]></description>
			<content:encoded><![CDATA[<br />
<br />
This is the release announcement for IPFire 2.29 &#8211; Core Update 203, which is now available for testing.<br />
<br />
This is a substantial update, and its centrepiece is a fundamental change to how IPFire handles DNS: we have replaced Unbound with Knot Resolver, giving us a more flexible foundation and a range of new capabilities, from a DNS Firewall to encrypted upstream forwarding. Alongside it, the WiFi access point gains support for the 6 GHz band, and there are the usual security fixes and package updates throughout. Because these changes reach into a core part of the system, we would especially value your help in testing this release before it reaches everyone.<br />
<br />
<b>DNS: Moving from Unbound to Knot Resolver</b><br /><br />With this release, IPFire replaces its DNS Resolver with Knot Resolver.<br />
<br />
This is a significant change under the hood, and not one we made lightly. Unbound has served IPFire well for many years and remains an excellent resolver. But DNS has quietly become one of the most important parts of the modern network. It is no longer only about turning names into addresses &#8212; it increasingly carries the information other protocols rely on to connect quickly, securely and privately, from encrypted transport to the records clients use to establish encrypted connections. To keep building on top of DNS, we needed a resolver we can extend and integrate deeply with the rest of IPFire. Knot Resolver's modular, scriptable architecture gives us exactly that foundation.<br />
<br />
What this brings you today:<ul><li><b>Encrypted upstream forwarding (DNS over TLS)</b> &#8212; queries to your chosen upstream resolvers can now be sent over TLS, so they can't be read or tampered with in transit.</li>
<li><b>DNS Firewall</b> &#8212; block malware, advertising and whole categories of unwanted domains at the DNS layer.</li>
<li><b>Encrypted zone data (over TLS)</b> &#8212; the DNS Firewall's filtering and policy zones are now pulled over an encrypted connection by zone-sync, a new tool we built in C. Updates are transferred incrementally and can no longer be read or tampered with in transit.</li>
<li><b>SafeSearch</b> &#8212; enforce safe search across the major search engines and YouTube for your whole network.</li>
<li><b>Conditional forwarding</b> &#8212; send queries for specific zones to specific servers. (Note the change below.)</li>
<li><b>Local overrides</b> &#8212; define your own DNS records for local hostnames.</li>
<li><b>DHCP integration</b> &#8212; a custom module makes hostnames from DHCP leases resolvable in DNS, replacing the old Unbound DHCP Leases Bridge with no loss of function.</li>
</ul><br />
Under the hood:<ul><li><b>Persistent Cache</b> &#8212; the cache now survives restarts, so resolution stays fast after a reboot and there's less load on upstream servers.</li>
<li><b>Shared state across multiple workers</b> &#8212; Knot Resolver uses several worker processes that share one cache and state, making efficient use of multiple CPU cores without fragmenting the cache.</li>
</ul><br />
Please note:<br />
<br />
Forwarded zones can no longer be specified as fully-qualified domain names. You now need to replace any entries on the DNS Forwarding page that use FQDNs with IP addresses.<br />
<br />
A note on what went into this release: Replacing the DNS resolver is a large piece of work we have undertaken, and it was far from a drop-in replacement. Alongside integrating Knot Resolver itself, we wrote a good deal of new code &#8212; including custom modules for DHCP and filtering, and zone-sync, a tool we built in C to keep the DNS Firewall's data current over an encrypted connection. Work like this is slow, detailed and largely invisible, and it is only possible because IPFire is supported by the people who rely on it. If this release is useful to you and you would like to see more of it, <a href="https://www.ipfire.org/donate" target="_blank">please consider making a donation</a> &#8212; it is what lets us keep building.<br />
<br />
<b>WiFi: Support for the 6 GHz Band</b><br /><br />The IPFire WiFi access point now supports the 6 GHz band, opening up the spectrum introduced with WiFi 6E and WiFi 7.<br />
<br />
Why this matters:<ul><li><b>More room, less interference</b> &#8212; the 6 GHz band is new and largely empty. Without decades of legacy devices crowding it, wireless clients get cleaner airtime and more stable connections, even in busy neighbourhoods.</li>
<li><b>Wider channels, higher throughput</b> &#8212; the additional spectrum leaves room for many more wide (80 and 160 MHz) channels, so you can run faster connections without them overlapping and interfering with one another.</li>
<li><b>No radar detection, no interruptions</b> &#8212; unlike parts of the 5 GHz band, the 6 GHz band does not require radar detection (DFS). The access point starts up immediately and can never be forced off its channel by a radar event, so there are no sudden dropouts.</li>
</ul><br />
We have also fixed a bug that prevented the access point from starting when a 40 MHz channel width was combined with a manually selected channel.<br />
<br />
<b>Misc.</b><br /><br /><ul><li>AWS: IPFire can now retrieve EC2 instance metadata using IMDSv2, the token-based and more secure version of the metadata service that AWS now recommends and increasingly enforces by default. This means IPFire runs correctly on instances configured to require IMDSv2, while IMDSv1 remains supported for existing deployments.</li>
<li>The microcode for some Intel processors has been updated to version 20260512 to address a vulnerability filed as <a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01420.html" target="_blank">INTEL-SA-01420</a></li>
<li>A bug with Perl failing to properly encode/decode UTF-8 strings has been fixed so that the web UI will show translations with non-ASCII characters properly again</li>
<li>OpenVPN: The icon to download the configuration has been replaced by a clearer version; and for Roadwarrior clients with a static IP address allocation, the name of the subnet is now shown next to the connection.</li>
<li>sysklogd will now listen on localhost again, which is useful for chrooted processes that want to log messages</li>
<li>Updated packages: BIND 9.20.23, Boost 1.90.0, coreutils 9.11, btrfs-progs 7.0, e2fsprogs 1.47.4, elfutils 0.195, expat 2.8.1, fcron 3.4.1, fontconfig 2.18.1, gdb 17.2, gnupg 2.5.20, GRUB 2.14, grub-btrfs 4.14, iana-etc 20260511, krb5 1.22.2, less 702, libedit 20260512-3.1, libksba 1.8.0, libloc 0.9.19, libunistring 1.4.2, libusb 1.0.30, LuaJIT 2.1.707c12b, LVM2 2.03.41, meson 1.11.1, nettle 4.0, OpenVPN 2.7.4, rrdtool 1.10.3, SQLite 3.53.1, strongswan 6.0.7 (<a href="https://cve.mitre.org/cgi-bin/cvename.cgi?name=2026-47895" target="_blank">CVE-2026-47895</a>), util-linux 2.42, vim 9.2.0526, which 2.25, xfsprogs 7.0.1, zone-sync 0.0.2</li>
</ul><br />
<b>Add-Ons</b><br /><br /><ul><li>Updated packages: dnsdist 2.0.6, ntfs-3g 2026.2.25, Postfix 3.11.3, rsync 3.4.3, samba 4.24.2, spice 0.16.0, spice-protocol 0.14.5, tmux 3.6b, tshark 4.6.6</li>
<li>Zabbix Agent: Fixes for OpenVPN 2.7 status parsing and ping error handling have been applied</li>
</ul><br />
<b>Testing and Feedback</b><br /><br />As always, please help us make this release as solid as it can be. If you are able, install Core Update 203 on a test system, put it through its paces &#8212; particularly around DNS resolution, the DNS Firewall and WiFi &#8212; and report anything unexpected on our <a href="https://bugzilla.ipfire.org" target="_blank">bug tracker</a>.<br />
<br />
Your testing and your reports are what let us release with confidence, and we are grateful to everyone who takes the time.<br />
<br />
Thank you for helping us build IPFire.<br />
<br />
<br />
<a href="https://www.ipfire.org/blog/ipfire-2-29-core-update-203-is-available-for-testing" target="_blank">More...</a>]]></content:encoded>
			<category domain="https://n00bunlimited.net/home/forum/site-news/ipfire">Ipfire</category>
			<dc:creator>siosios</dc:creator>
			<guid isPermaLink="true">https://n00bunlimited.net/home/forum/site-news/ipfire/80483-ipfire-2-29-core-update-203-is-available-for-testing</guid>
		</item>
		<item>
			<title>IPFire 2.29 - Core Update 202 released</title>
			<link>https://n00bunlimited.net/home/forum/site-news/ipfire/80482-ipfire-2-29-core-update-202-released</link>
			<pubDate>Tue, 26 May 2026 14:04:47 GMT</pubDate>
			<description>In this release, IPFire 2.29 - Core Update 202, we are fixing the most prominent kernel vulnerabilities of the last few weeks. OpenVPN has been...</description>
			<content:encoded><![CDATA[<br />
<br />
In this release, IPFire 2.29 - Core Update 202, we are fixing the most prominent kernel vulnerabilities of the last few weeks. OpenVPN has been updated to version 2.7 which brings support for Data Channel Offloading massively upgrading throughput for your OpenVPN tunnels. As usual, this release contains a large number of package updates with various more security fixes.<br />
<br />
We would like to encourage to install this update as soon as possible to be protected against the unusually large amount of vulnerabilities that have been discovered recently in the Linux kernel as well as lots of other software components. Ensure to reboot your IPFire system afterwards.<br />
<br />
<b>Linux Kernel Security Vulnerabilities</b><br /><br />In this release, the IPFire kernel has been rebased on Linux 6.18.32 which most notably fixes a couple of prominent security vulnerabilities:<ul><li>Dirty Frag &#8212; ESP/IPsec (<a href="https://cve.mitre.org/cgi-bin/cvename.cgi?name=2026-43284" target="_blank">CVE-2026-43284</a>) &#8212; A local privilege escalation flaw disclosed on May 7, 2026 in the kernel module providing support for ESP, one of the protocols used for IPsec, allowing an unprivileged local user to escalate to root.</li>
<li>Copy Fail (<a href="https://cve.mitre.org/cgi-bin/cvename.cgi?name=2026-31431" target="_blank">CVE-2026-31431</a>) &#8212; A logic flaw in the Linux kernel's cryptographic subsystem, specifically within the algif_aead module of the AF_ALG interface, disclosed April 29, 2026, that lets any unprivileged local user gain root via a tiny exploit on essentially every distribution shipping kernels built since 2017.</li>
</ul><br />
<br />
<br />
While these vulnerabilities are serious for Linux systems in general, IPFire is by design not exposed to the most common attack paths. Both flaws require an unprivileged local user with shell access to the system, and IPFire does not provide unprivileged shell accounts on the firewall - only the administrator has access to the console, and there are no other users logged in. That said, defence in depth matters, and we always recommend keeping systems up to date regardless of whether a known attack path applies, because the next vulnerability may well take a different shape.<br />
<br />
<b>OpenVPN 2.7</b><br /><br />IPFire is now shipping OpenVPN 2.7 which has been released earlier this year. Over the last couple of updates, we have already rolled out changes that allow a smooth transition. The highlight of this release is support for Data Channel Offloading (DCO) to the kernel. Instead of passing any packets to the OpenVPN daemon for encryption and decryption, the kernel can encrypt or decrypt packets itself which will massively boost throughput. We have observed throughput to jump from 1 GBit/s to 10 GBit/s per tunnel with reduced jitter and less CPU utilisation due to the kernel's better use of the hardware's crypto acceleration.<br />
<br />
<b>Misc.</b><br /><br /><ul><li>Firewall: Multiple ports in a comma-separated list are now being applied properly (<a href="https://bugzilla.ipfire.org/show_bug.cgi?id=13959" target="_blank">#13959</a>)</li>
<li>Intrusion Prevention System: The IPS is no longer logging any stats which have used a lot of disk space on some systems. The updater automatically removes any log files freeing the disk space. The remaining log files are now being rotated daily instead of weekly.</li>
<li>The IPFire DNS Proxy is now permitted outbound access without any additional firewall rules</li>
<li>IPsec: Due to a typo in a script, some automatically generated firewall rules were not removed after a tunnel was shut down. This did not have any other implications than a growing table of redundant rules.</li>
<li>In glibc, a crafted DNS response can trick gethostbyaddr/gethostbyaddr_r into treating a non-answer section as a valid answer, violating the DNS spec. The result is an out-of-bounds read and bogus hostnames returned to callers &#8212; risky for anything that uses reverse DNS in logging or access decisions (GLIBC-SA-2026-0005).</li>
<li>Updated packages: abseil-cpp 20260107.1, Apache2 2.4.67, autoconf 2.73, BIND 9.20.22, btrfs-progs 6.19.1, cURL 8.20.0, ethtool 7.0, expat 2.8.0, freetype 2.14.3, glib 2.88.1, GnuTLS 3.8.13, groff 1.24.1, harfbuzz 14.2.0, hwdata 0.406, iana-etc 20260409, intel-microcode 20260227, inotify-tools 4.25.9.0, iproute2 7.0.0, ipset 7.24, Knot 3.5.4, libarchive 3.8.7, libcap 2.78, libcap-ng 0.9.3, libedit 20251016-3.1, libgcrypt 1.12.2, libinih 62, libjpeg 3.1.4.1, libpng 1.6.58,  libsodium 1.0.22, liburcu 0.15.6, libxml2 2.15.3, lmdb 0.9.35, LVM2 2.03.40, man-pages 6.18, mdadm 4.6, oath-toolkit 2.6.14, OpenSSH 10.3p1, OpenSSL 3.6.2, OpenVPN 2.7.3, pango 1.57.1, parted 3.7, pciutils 3.15.0, python3-yaml 6.0.3, sed 4.10, SQLite 3.53.0, strongSwan 6.0.6, Suricata 8.0.5, systemd 260.1, texinfo 7.3, tzdata 2026b, Unbound 1.25.1, usb-modeswitch-data 20251207, wireguard-tools 1.0.20260223, XZ 5.8.3</li>
<li>IP Blocklist: Links to the BOGON and BOGON_FULL lists have been updated</li>
</ul><br />
<b>Add-Ons</b><br /><br /><ul><li>Samba: A security researcher working under the pseudonym valent1 has reported two security vulnerabilities in this add-on which are patched in this release:<ul><li>Missing input validation during the join operation allowed authenticated attackers to run arbitrary shell commands as a non-privileged user (CVE pending)</li>
<li>Inappropriate shell command escaping allowed attackers to gain root privileges from a shell using the sambactrl helper binary (CVE pending)</li>
</ul></li>
<li>Who Is Online? valent1 reported a now fixed XSS vulnerability for authenticated users (CVE pending)</li>
<li>Updated packages: arpwatch 3.9, dnsdist 2.0.5, ffmpeg 8.1, FRR 10.6.0, htop 3.5.1, iperf3 3.21, Git 2.54.0, HAProxy 3.2.15, keepalived 2.3.4, libid3tag 0.16.4, libmicrohttpd 1.0.5, libmpc 1.4.1, libpciaccess 0.19, libvirt 12.3.0, lldpd 1.0.21, mympd 25.0.1, nano 9.0, ncat 7.99, nfs 2.9.1, nmap 7.99, Postfix 3.11.1, rsync 3.4.2, Samba 4.24.1, Tor 0.4.9.7, transmission 4.1.1, tshark 4.6.5, Zabbix Agent 7.0.24 (LTS) + Monitoring for D-Bus &amp; LLDP</li>
</ul><br />
<hr /><br />
We want to urge you to upgrade your systems, so you aren't vulnerable to the Dirty Frag, Copy Fail, Fragnesia vulnerabilities. Thanks to everyone for giving feedback for the testing release and reporting any problems to Bugzilla.<br />
<br />
If you would like to thank the developers &amp; support their work, <a href="https://www.ipfire.org/donate" target="_blank">please donate</a>, to keep the project moving fast!<br />
<br />
<br />
<a href="https://www.ipfire.org/blog/ipfire-2-29-core-update-202-released" target="_blank">More...</a>]]></content:encoded>
			<category domain="https://n00bunlimited.net/home/forum/site-news/ipfire">Ipfire</category>
			<dc:creator>siosios</dc:creator>
			<guid isPermaLink="true">https://n00bunlimited.net/home/forum/site-news/ipfire/80482-ipfire-2-29-core-update-202-released</guid>
		</item>
		<item>
			<title>Team Fortress 2 Update Released</title>
			<link>https://n00bunlimited.net/home/forum/site-news/steam-news/80481-team-fortress-2-update-released</link>
			<pubDate>Mon, 25 May 2026 16:16:24 GMT</pubDate>
			<description>An update to Team Fortress 2 has been released. The update will be applied automatically when you restart Team Fortress 2. The major changes include:...</description>
			<content:encoded><![CDATA[An update to Team Fortress 2 has been released. The update will be applied automatically when you restart Team Fortress 2. The major changes include:<ul><li>Fixed crash related to wearables leaking when weapons are dropped (community fix from Sean McGeehan)</li>
</ul><br />
<br />
An update to Team Fortress 2 has been released. The update will be applied automatically when you restart Team Fortress 2. The major changes include:<ul><li>Fixed crash related to wearables leaking when weapons are dropped (community fix from Sean McGeehan)</li>
</ul><br />
<br />
<a href="https://store.steampowered.com/news/271749/" target="_blank">More...</a>]]></content:encoded>
			<category domain="https://n00bunlimited.net/home/forum/site-news/steam-news">Steam News</category>
			<dc:creator>siosios</dc:creator>
			<guid isPermaLink="true">https://n00bunlimited.net/home/forum/site-news/steam-news/80481-team-fortress-2-update-released</guid>
		</item>
		<item>
			<title>Team Fortress 2 Update Released</title>
			<link>https://n00bunlimited.net/home/forum/site-news/steam-news/80480-team-fortress-2-update-released</link>
			<pubDate>Fri, 22 May 2026 22:40:44 GMT</pubDate>
			<description>An update to Team Fortress 2 has been released. The update will be applied automatically when you restart Team Fortress 2. The major changes include:...</description>
			<content:encoded><![CDATA[An update to Team Fortress 2 has been released. The update will be applied automatically when you restart Team Fortress 2. The major changes include:<ul><li>Fixed crash related to KeyValues</li>
<li>Fixed Mk.II Botkiller eyes not glowing in the dark (community fix from Whurrhurr)</li>
<li>Fixed Halloween spell attribute text being grayed out during full moons (community fix from FrozenDragon)</li>
<li>Fixed attachments on dropped weapons having broken textures for certain war paints and skins (community fix from Piogre)</li>
<li>Fixed automatic &quot;Control Point Lost&quot; lines not playing (community fix from robbilookatme)</li>
<li>Fixed spacing issues for item descriptions (community fix from DiskIntegrity)</li>
<li>Fixed many cases where Spy disguises were broken (community fix from Sean McGeehan)</li>
<li>Fixed The Fancy Spellbook's large backpack icon not matching the small version</li>
<li>Updated VScript to allow set damage for force calc (community fix from doclic)</li>
<li>Updated the Snow Merc to count as an assister in the death notice</li>
<li>Updated the prop for Taunt: Dead Mann's Drink to fix a problem with LODs</li>
<li>Updated the Die Regime-Panzerung to add a 'No Bullets' style</li>
<li>Updated/Added some tournament medals</li>
<li>Updated the Mann of the Hour<ul><li>Restored missing rim mask</li>
<li>Made shapekeys for a few problematic face flexes</li>
<li>Replaced incorrect normal map</li>
<li>Altered hair mesh to ensure compatibility with Voodoo-Cursed Scout Soul</li>
<li>Updated backpack icon to represent above changes</li>
</ul></li>
<li>Updated koth_demolition<ul><li>Fixed some lighting issues with the pipes next to the control point</li>
<li>Replaced some textures in the radio rooms</li>
<li>Added a clipbrush on the radio rooms to avoid players getting stuck when going in the air (thanks Big Wiggy)</li>
<li>Reworked the nobuild on the crane platform to allow Engineers to build on the concrete area (thanks Uncle Dane)</li>
<li>Fixed a leftover prop being inside a wall</li>
<li>Fixed a texture in the jumppad using the wrong cubemap</li>
<li>Made the catwalk behind the office building a bit bigger</li>
<li>Added a clipbrush to the pipes on the furnace rooms so players can climb up to the barrels</li>
</ul></li>
<li>Updated plr_hacksaw and plr_hacksaw_event<ul><li>Removed attic balconies overlooking the capture zone</li>
<li>Moved a small pickup location into the attic</li>
<li>Fixed clipping errors</li>
</ul></li>
<li>Updated cp_process_final<ul><li>Fixed various collision issues across the map<ul><li>Most of these involved changing existing collision from player_clip to bullet_block to prevent splash damage from getting caught on small pieces of level geometry</li>
<li>Some of these involved closing off open areas where explosions could vanish</li>
<li>Some of these involved making collision areas more clear by including new geometry to better indicate what would collide and what wouldn't</li>
</ul></li>
<li>Increased skybox height across the map to be consistent with other 5CP maps</li>
<li>Changed the small prop pipes at last to be nonsolid, but still block stickies<ul><li>Players should be able to cleanly walk and jump along these pipes without getting stuck</li>
<li>Additionally, rockets and other explosions should collide cleanly through the pipes so they don't block splash damage</li>
<li>Stickies will adhere to the pipes as expected, rather than clipping through and being hidden by the pipe model</li>
</ul></li>
<li>Changed the level geometry around the large pipes on the ground near the last control point. They are now enclosed in glass and have a layer of bullet block so that collision is correct.</li>
<li>Increased the height of numerous doors across the entire map. Players should be able to jump normally through the door without hitting their heads.</li>
<li>Removed some rocks near the angled ramp at 2nd and replaced them with crates</li>
<li>Added angled player clipping underneath some of the large awnings at middle to prevent players from getting stuck under the awnings</li>
<li>Made exterior fences more consistent with the bounding of the level</li>
<li>Changed some metal textures to better match the mirrored symmetry of the level</li>
<li>Added some additional detail behind the starting spawn room</li>
<li>Cleaned up the displacements in the middle and second to better handle splash damage, and reduced the amount of grass poking through concrete</li>
<li>Replaced some small pipes at the 2nd spire to make a more consistent platform</li>
<li>Made many existing light props nonsolid to prevent movement issues<ul><li>Most were already nonsolid, but this should make most props consistent</li>
</ul></li>
</ul></li>
<li>Updated cp_metalworks<ul><li>Fixed various collision issues across the map<ul><li>Most of these involved changing existing collision from player_clip to bullet_block to prevent splash damage from getting caught on small pieces of level geometry</li>
</ul></li>
<li>Changed the level geometry at last to have more consistent collision<ul><li>While there are small gaps and holes in the windows/doors of the new bunker and the stack of wood/chickenwire, they are covered with bullet block to prevent collision issues</li>
</ul></li>
<li>Changed the way shadows work on certain walls throughout the map to prevent shadows leaking through</li>
<li>Redesigned the second forward spawn for both teams. The spawn has now moved back and into a larger hut structure in the yard before the second control point.</li>
<li>Increased the door size of the first forward spawn</li>
<li>The various small door brushes throughout the map have been turned into func_brushes and have had collision turned off so they don't catch splash</li>
<li>Made adjustments to the truck ramp at middle. The ramp is now a displacement, which should catch splash damage correctly and allow player to walk up to the wall cleanly.</li>
<li>Changed the collision around the very tall light poles throughout the map. Players should no longer get caught on them while in midair (but they still can't land on top of them).</li>
<li>Fixed a section of displacement where players could get stuck in the ground</li>
<li>Slight visual tweaks throughout the level</li>
</ul></li>
</ul><br />
<br />
An update to Team Fortress 2 has been released. The update will be applied automatically when you restart Team Fortress 2. The major changes include:<ul><li>Fixed crash related to KeyValues</li>
<li>Fixed Mk.II Botkiller eyes not glowing in the dark (community fix from Whurrhurr)</li>
<li>Fixed Halloween spell attribute text being grayed out during full moons (community fix from FrozenDragon)</li>
<li>Fixed attachments on dropped weapons having broken textures for certain war paints and skins (community fix from Piogre)</li>
<li>Fixed automatic &quot;Control Point Lost&quot; lines not playing (community fix from robbilookatme)</li>
<li>Fixed spacing issues for item descriptions (community fix from DiskIntegrity)</li>
<li>Fixed many cases where Spy disguises were broken (community fix from Sean McGeehan)</li>
<li>Fixed The Fancy Spellbook's large backpack icon not matching the small version</li>
<li>Updated VScript to allow set damage for force calc (community fix from doclic)</li>
<li>Updated the Snow Merc to count as an assister in the death notice</li>
<li>Updated the prop for Taunt: Dead Mann's Drink to fix a problem with LODs</li>
<li>Updated the Die Regime-Panzerung to add a 'No Bullets' style</li>
<li>Updated/Added some tournament medals</li>
<li>Updated the Mann of the Hour<ul><li>Restored missing rim mask</li>
<li>Made shapekeys for a few problematic face flexes</li>
<li>Replaced incorrect normal map</li>
<li>Altered hair mesh to ensure compatibility with Voodoo-Cursed Scout Soul</li>
<li>Updated backpack icon to represent above changes</li>
</ul></li>
<li>Updated koth_demolition<ul><li>Fixed some lighting issues with the pipes next to the control point</li>
<li>Replaced some textures in the radio rooms</li>
<li>Added a clipbrush on the radio rooms to avoid players getting stuck when going in the air (thanks Big Wiggy)</li>
<li>Reworked the nobuild on the crane platform to allow Engineers to build on the concrete area (thanks Uncle Dane)</li>
<li>Fixed a leftover prop being inside a wall</li>
<li>Fixed a texture in the jumppad using the wrong cubemap</li>
<li>Made the catwalk behind the office building a bit bigger</li>
<li>Added a clipbrush to the pipes on the furnace rooms so players can climb up to the barrels</li>
</ul></li>
<li>Updated plr_hacksaw and plr_hacksaw_event<ul><li>Removed attic balconies overlooking the capture zone</li>
<li>Moved a small pickup location into the attic</li>
<li>Fixed clipping errors</li>
</ul></li>
<li>Updated cp_process_final<ul><li>Fixed various collision issues across the map<ul><li>Most of these involved changing existing collision from player_clip to bullet_block to prevent splash damage from getting caught on small pieces of level geometry</li>
<li>Some of these involved closing off open areas where explosions could vanish</li>
<li>Some of these involved making collision areas more clear by including new geometry to better indicate what would collide and what wouldn't</li>
</ul></li>
<li>Increased skybox height across the map to be consistent with other 5CP maps</li>
<li>Changed the small prop pipes at last to be nonsolid, but still block stickies<ul><li>Players should be able to cleanly walk and jump along these pipes without getting stuck</li>
<li>Additionally, rockets and other explosions should collide cleanly through the pipes so they don't block splash damage</li>
<li>Stickies will adhere to the pipes as expected, rather than clipping through and being hidden by the pipe model</li>
</ul></li>
<li>Changed the level geometry around the large pipes on the ground near the last control point. They are now enclosed in glass and have a layer of bullet block so that collision is correct.</li>
<li>Increased the height of numerous doors across the entire map. Players should be able to jump normally through the door without hitting their heads.</li>
<li>Removed some rocks near the angled ramp at 2nd and replaced them with crates</li>
<li>Added angled player clipping underneath some of the large awnings at middle to prevent players from getting stuck under the awnings</li>
<li>Made exterior fences more consistent with the bounding of the level</li>
<li>Changed some metal textures to better match the mirrored symmetry of the level</li>
<li>Added some additional detail behind the starting spawn room</li>
<li>Cleaned up the displacements in the middle and second to better handle splash damage, and reduced the amount of grass poking through concrete</li>
<li>Replaced some small pipes at the 2nd spire to make a more consistent platform</li>
<li>Made many existing light props nonsolid to prevent movement issues<ul><li>Most were already nonsolid, but this should make most props consistent</li>
</ul></li>
</ul></li>
<li>Updated cp_metalworks<ul><li>Fixed various collision issues across the map<ul><li>Most of these involved changing existing collision from player_clip to bullet_block to prevent splash damage from getting caught on small pieces of level geometry</li>
</ul></li>
<li>Changed the level geometry at last to have more consistent collision<ul><li>While there are small gaps and holes in the windows/doors of the new bunker and the stack of wood/chickenwire, they are covered with bullet block to prevent collision issues</li>
</ul></li>
<li>Changed the way shadows work on certain walls throughout the map to prevent shadows leaking through</li>
<li>Redesigned the second forward spawn for both teams. The spawn has now moved back and into a larger hut structure in the yard before the second control point.</li>
<li>Increased the door size of the first forward spawn</li>
<li>The various small door brushes throughout the map have been turned into func_brushes and have had collision turned off so they don't catch splash</li>
<li>Made adjustments to the truck ramp at middle. The ramp is now a displacement, which should catch splash damage correctly and allow player to walk up to the wall cleanly.</li>
<li>Changed the collision around the very tall light poles throughout the map. Players should no longer get caught on them while in midair (but they still can't land on top of them).</li>
<li>Fixed a section of displacement where players could get stuck in the ground</li>
<li>Slight visual tweaks throughout the level</li>
</ul></li>
</ul><br />
<br />
<a href="https://store.steampowered.com/news/271650/" target="_blank">More...</a>]]></content:encoded>
			<category domain="https://n00bunlimited.net/home/forum/site-news/steam-news">Steam News</category>
			<dc:creator>siosios</dc:creator>
			<guid isPermaLink="true">https://n00bunlimited.net/home/forum/site-news/steam-news/80480-team-fortress-2-update-released</guid>
		</item>
		<item>
			<title>IPFire 2.29 - Core Update 202 is available for testing</title>
			<link>https://n00bunlimited.net/home/forum/site-news/ipfire/80479-ipfire-2-29-core-update-202-is-available-for-testing</link>
			<pubDate>Mon, 11 May 2026 08:21:15 GMT</pubDate>
			<description>Today we are proud to present the next challenger stepping into the ring: IPFire 2.29 Core Update 202! In this corner, a brand-new Linux 6.18 kernel....</description>
			<content:encoded><![CDATA[<br />
<br />
Today we are proud to present the next challenger stepping into the ring: IPFire 2.29 Core Update 202! In this corner, a brand-new Linux 6.18 kernel. In the other corner, OpenVPN 2.7 with kernel-accelerated Data Channel Offload, delivering up to 10 Gigabit per second per tunnel. Add to that a long list of important security fixes, package updates, and bug fixes - and you have a release that is ready for testing. So power up your test systems, and let's get readyyyy to upgraaaade!<br />
<br />
<b>Linux Kernel Security Vulnerabilities</b><br /><br />In this release, the IPFire kernel has been rebased on Linux 6.18.28 which most notably fixes a couple of prominent security vulnerabilities:<ul><li>Dirty Frag &#8212; ESP/IPsec (<a href="https://cve.mitre.org/cgi-bin/cvename.cgi?name=2026-43284" target="_blank">CVE-2026-43284</a>) &#8212; A local privilege escalation flaw disclosed on May 7, 2026 in the kernel module providing support for ESP, one of the protocols used for IPsec, allowing an unprivileged local user to escalate to root.</li>
<li>Copy Fail (<a href="https://cve.mitre.org/cgi-bin/cvename.cgi?name=2026-31431" target="_blank">CVE-2026-31431</a>) &#8212; A logic flaw in the Linux kernel's cryptographic subsystem, specifically within the algif_aead module of the AF_ALG interface, disclosed April 29, 2026, that lets any unprivileged local user gain root via a tiny exploit on essentially every distribution shipping kernels built since 2017.</li>
</ul><br />
While these vulnerabilities are serious for Linux systems in general, IPFire is by design not exposed to the most common attack paths. Both flaws require an unprivileged local user with shell access to the system, and IPFire does not provide unprivileged shell accounts on the firewall - only the administrator has access to the console, and there are no other users logged in. That said, defence in depth matters, and we always recommend keeping systems up to date regardless of whether a known attack path applies, because the next vulnerability may well take a different shape.<br />
<br />
<b>OpenVPN 2.7</b><br /><br />IPFire is now shipping OpenVPN 2.7 which has been released earlier this year. Over the last couple of updates, we have already rolled out changes that allow a smooth transition. The highlight of this release is support for Data Channel Offloading (DCO) to the kernel. Instead of passing any packets to the OpenVPN daemon for encryption and decryption, the kernel can encrypt or decrypt packets itself which will massively boost throughput. We have observed throughput to jump from 1 GBit/s to 10 GBit/s per tunnel with reduced jitter and less CPU utilisation due to the kernel's better use of the hardware's crypto acceleration.<br />
<br />
<b>Misc.</b><br /><br /><ul><li>Firewall: Multiple ports in a comma-separated list are now being applied properly (<a href="https://bugzilla.ipfire.org/show_bug.cgi?id=13959" target="_blank">#13959</a>)</li>
<li>Intrusion Prevention System: The IPS is no longer logging any stats which have used a lot of disk space on some systems. The updater automatically removes any log files freeing the disk space. The remaining log files are now being rotated daily instead of weekly.</li>
<li>The IPFire DNS Proxy is now permitted outbound access without any additional firewall rules</li>
<li>IPsec: Due to a typo in a script, some automatically generated firewall rules were not removed after a tunnel was shut down. This did not have any other implications than a growing table of redundant rules.</li>
<li>In glibc, a crafted DNS response can trick gethostbyaddr/gethostbyaddr_r into treating a non-answer section as a valid answer, violating the DNS spec. The result is an out-of-bounds read and bogus hostnames returned to callers &#8212; risky for anything that uses reverse DNS in logging or access decisions (GLIBC-SA-2026-0005).</li>
<li>Updated packages: abseil-cpp 20260107.1, Apache2 2.4.67, autoconf 2.73, BIND 9.20.22, btrfs-progs 6.19.1, cURL 8.20.0, ethtool 7.0, expat 2.8.0, freetype 2.14.3, glib 2.88.1, GnuTLS 3.8.13, groff 1.24.1, harfbuzz 14.2.0, hwdata 0.406, iana-etc 20260409, intel-microcode 20260227, inotify-tools 4.25.9.0, iproute2 7.0.0, ipset 7.24, Knot 3.5.4, libarchive 3.8.7, libcap 2.78, libcap-ng 0.9.3, libedit 20251016-3.1, libgcrypt 1.12.2, libinih 62, libjpeg 3.1.4.1, libpng 1.6.58,  libsodium 1.0.22, liburcu 0.15.6, libxml2 2.15.3, lmdb 0.9.35, LVM2 2.03.40, man-pages 6.18, mdadm 4.6, oath-toolkit 2.6.14, OpenSSH 10.3p1, OpenSSL 3.6.2, OpenVPN 2.7.3, pango 1.57.1, parted 3.7, pciutils 3.15.0, python3-yaml 6.0.3, sed 4.10, SQLite 3.53.0, strongSwan 6.0.6, Suricata 8.0.4, systemd 260.1, texinfo 7.3, tzdata 2026b, Unbound 1.25.0, usb-modeswitch-data 20251207, wireguard-tools 1.0.20260223, XZ 5.8.3</li>
<li>IP Blocklist: Links to the BOGON and BOGON_FULL lists have been updated</li>
</ul><br />
<b>Add-Ons</b><br /><br /><ul><li>Updated packages: arpwatch 3.9, dnsdist 2.0.5, ffmpeg 8.1, FRR 10.6.0, htop 3.5.1, iperf3 3.21, Git 2.54.0, HAProxy 3.2.15, keepalived 2.3.4, libid3tag 0.16.4, libmicrohttpd 1.0.5, libmpc 1.4.1, libpciaccess 0.19, libvirt 12.3.0, lldpd 1.0.21, mympd 25.0.1, nano 9.0, ncat 7.99, nfs 2.9.1, nmap 7.99, Postfix 3.11.1, rsync 3.4.2, Samba 4.24.1, Tor 0.4.9.7, transmission 4.1.1, tshark 4.6.5, Zabbix Agent 7.0.24 (LTS) + Monitoring for D-Bus &amp; LLDP</li>
</ul><br />
<hr /><br />
As always, this update would not be possible without the hard work of the IPFire developers, the wider open-source community whose projects we ship, and everyone who tests, reports bugs, and contributes patches. If you would like to support the continued development of IPFire, please <a href="https://www.ipfire.org/donate" target="_blank">donate</a> - every contribution helps us keep the project independent and moving forward.<br />
<br />
Happy testing!<br />
<br />
<br />
<a href="https://www.ipfire.org/blog/ipfire-2-29-core-update-202-is-available-for-testing" target="_blank">More...</a>]]></content:encoded>
			<category domain="https://n00bunlimited.net/home/forum/site-news/ipfire">Ipfire</category>
			<dc:creator>siosios</dc:creator>
			<guid isPermaLink="true">https://n00bunlimited.net/home/forum/site-news/ipfire/80479-ipfire-2-29-core-update-202-is-available-for-testing</guid>
		</item>
		<item>
			<title>Left 4 Dead - Update</title>
			<link>https://n00bunlimited.net/home/forum/site-news/steam-news/80478-left-4-dead-update</link>
			<pubDate>Wed, 06 May 2026 18:43:54 GMT</pubDate>
			<description>An update has been released for Left 4 Dead: 
 
- Fixed several exploits that could be used to crash servers or remote players. 
 
An update has been...</description>
			<content:encoded><![CDATA[An update has been released for Left 4 Dead:<br />
<br />
- Fixed several exploits that could be used to crash servers or remote players.<br />
<br />
An update has been released for Left 4 Dead:<br />
<br />
- Fixed several exploits that could be used to crash servers or remote players.<br />
<br />
<a href="https://store.steampowered.com/news/270398/" target="_blank">More...</a>]]></content:encoded>
			<category domain="https://n00bunlimited.net/home/forum/site-news/steam-news">Steam News</category>
			<dc:creator>siosios</dc:creator>
			<guid isPermaLink="true">https://n00bunlimited.net/home/forum/site-news/steam-news/80478-left-4-dead-update</guid>
		</item>
		<item>
			<title>IPFire 2.29 - Core Update 201 released - with DNS Firewall</title>
			<link>https://n00bunlimited.net/home/forum/site-news/ipfire/80477-ipfire-2-29-core-update-201-released-with-dns-firewall</link>
			<pubDate>Tue, 28 Apr 2026 08:30:21 GMT</pubDate>
			<description><![CDATA[We are pleased to announce the release of IPFire 2.29 &#8212; Core Update 201, and with it, the most significant expansion of IPFire's capabilities in...]]></description>
			<content:encoded><![CDATA[<br />
<br />
We are pleased to announce the release of <b>IPFire 2.29 &#8212; Core Update 201</b>, and with it, the most significant expansion of IPFire's capabilities in years. This release delivers the long-awaited DNS Firewall, a feature that transforms how IPFire protects the networks it sits in front of &#8212; along with a major toolchain rebase, a wide range of package updates, and improvements across the entire system.<br />
<br />
For many of you, this is the release you have been waiting for. For the rest of you &#8212; once you see what it does, it will be.<br />
<br />
<b>Hello DNS Firewall</b><br /><br />The wait is over. One of the most requested features in IPFire's history is finally here, and it fundamentally changes what your firewall is capable of. The DNS Firewall transforms IPFire from a network gatekeeper into an active threat eliminator &#8212; blocking malware, phishing, advertising, and unwanted content before a single byte of malicious data ever touches your network. <br />
<br />
For full details, see the <a href="https://www.ipfire.org/docs/configuration/firewall/dns" target="_blank">DNS Firewall documentation</a> and the <a href="https://www.ipfire.org/docs/roadmap/dns-firewall" target="_blank">DNS Firewall roadmap page</a>.<br />
<br />
<b>How it works</b><br /><br />Every device on your network resolves domain names through IPFire's DNS proxy. The DNS Firewall sits inside that pipeline and evaluates every query against <a href="https://www.ipfire.org/dbl" target="_blank">IPFire DBL</a> &#8212; our own curated, continuously updated domain blocklist &#8212; before a response ever reaches the client. Blocked domains receive an NXDOMAIN response: to the client, the domain simply does not exist. No connection is attempted, no content is fetched, and no trace of the request leaves your network.<br />
<br />
As a first to offer this to a large user-base, blocklist updates are delivered via IXFR &#8212; incremental DNS zone transfers directly into the DNS proxy &#8212; meaning your lists are refreshed within the hour, automatically, with no manual intervention and minimal bandwidth overhead.<br />
<br />
<b>Goodbye URL Filter. Goodbye Pi-hole.</b><br /><br />If you have been running the URL Filter, you already understand the frustration: clients need explicit proxy configuration, HTTPS inspection is a minefield, and the entire approach was designed for a web that no longer exists. If you have been running a Pi-hole alongside IPFire to compensate, you have been maintaining a second device, a second software stack, and a second security boundary &#8212; all to do something your firewall should have been doing all along.<br />
<br />
The DNS Firewall replaces both. It requires no client configuration, no additional hardware, and no compromises. Your firewall is already the single point through which all DNS traffic flows &#8212; it has always been the right place for this.<br />
<br />
<b>Miscellaneous Improvements</b><br /><br /><ul><li><b>Intrusion Prevention System</b> It is now possible to configure different recipients for daily, weekly, and monthly IDS reports &#8212; useful for teams where different people are responsible for different reporting cadences.</li>
<li><b>RISC-V</b> <a href="https://n00bunlimited.net//users/arne_f" target="_blank">Arne.F</a> has updated the kernel configuration on the <a href="https://nightly.ipfire.org/next/latest/riscv64/" target="_blank">experimental build for RISC-V devices</a>.</li>
<li><b>Network Installer</b> The installer now allocates more disk space when booting from the network, accommodating the increased size of the ISO download.</li>
<li><b>Rust Cleanup</b> <a href="https://n00bunlimited.net//users/stevee" target="_blank">Stefan Schantl</a> has removed Rust packages that were no longer needed in the distribution, reducing build overhead and attack surface.</li>
<li><b>Web Proxy Firewall Rules</b> Rules are now created with the --wait flag, preventing race conditions during rule insertion.</li>
<li><b>Toolchain Update</b> IPFire has been rebased on the latest versions of glibc 2.43 and GNU binutils 2.46.0. These are the fundamental libraries and binary tools that underpin all userspace components inside IPFire. Keeping them current ensures better hardware support, improved security hardening, and a solid foundation for all packages built on top of them.</li>
<li>The following packages have been updated in this release: asciidoctor 2.0.26, BIND 9.20.20, binutils 2.46.0, ccache 4.12.3, conntrack-tools 1.4.9, coreutils 9.10, dejagnu 1.6.3, expat 2.7.4, fuse 3.18.1, gettext 1.0, glibc 2.43, harfbuzz 12.3.2, hwdata 0.404, intel-microcode 20260210, iptables 1.8.12, jansson 2.15.0, krb5 1.22.1, less 692, libgcrypt 1.12.0, libnetfilter_conntrack 1.1.1, libpng 1.6.55, libtalloc 2.4.4, libuv 1.52.0, libxcrypt 4.5.2, m4 1.4.21, ncurses 6.6, OpenVPN 2.6.19, OpenSSL 3.6.1, p11-kit 0.26.2, PAM 1.7.2, procps 4.0.6, Ruby 4.0.1, suricata-reporter 0.7, vim 9.1.2147, wireless-regdb 2026.02.04, xfsprogs 6.18.0, zlib-ng 2.3.3</li>
</ul><br />
<b>Add-ons</b><br /><br /><ul><li><b>Wireless Access Point</b><ul><li>The description for the Neighbourhood Scan was previously inverted and has been corrected.</li>
<li><a href="https://n00bunlimited.net//users/bonnietwin" target="_blank">Adolf Belka</a> has contributed a Dutch translation for this package.</li>
</ul></li>
<li>Updated Add-on Packages: ddrescue 1.30, fping 5.5, Git 2.53.0, minicom 2.11, nano 8.7.1, nfs 2.8.5, Postfix 3.10.7, Samba 4.23.5, tshark 4.6.4</li>
<li>The 7zip package has been removed from the add-on collection. The upstream project is no longer maintained, and continuing to ship unmaintained software is not consistent with IPFire's security posture.</li>
</ul><br />
<hr /><br />
This release is the product of years of work &#8212; from building IPFire DBL into a category-rich, continuously maintained blocklist, to engineering IXFR-based delivery straight into the DNS proxy, to the countless smaller improvements that make it all tie together. Our thanks go to every developer, tester, and community member who helped get us here, and in particular to those who ran the testing release and sent us the feedback that made this stable release possible.<br />
<br />
Please install this update through Pakfire as usual. As with every Core Update, we recommend rebooting after installation to ensure all components are running the new versions.<br />
<br />
If you find a problem, please report it on the <a href="https://community.ipfire.org" target="_blank">IPFire community forum</a> or the <a href="https://bugzilla.ipfire.org" target="_blank">bug tracker</a>. And if IPFire is useful to you, <a href="https://www.ipfire.org/donate" target="_blank">please consider supporting the project</a> &#8212; it is what keeps releases like this one possible.<br />
<br />
<br />
<a href="https://www.ipfire.org/blog/ipfire-2-29-core-update-201-released-with-dns-firewall" target="_blank">More...</a>]]></content:encoded>
			<category domain="https://n00bunlimited.net/home/forum/site-news/ipfire">Ipfire</category>
			<dc:creator>siosios</dc:creator>
			<guid isPermaLink="true">https://n00bunlimited.net/home/forum/site-news/ipfire/80477-ipfire-2-29-core-update-201-released-with-dns-firewall</guid>
		</item>
		<item>
			<title>IPFire 2.29 - Core Update 201 is available for testing</title>
			<link>https://n00bunlimited.net/home/forum/site-news/ipfire/80476-ipfire-2-29-core-update-201-is-available-for-testing</link>
			<pubDate>Thu, 12 Mar 2026 11:13:02 GMT</pubDate>
			<description>We are pleased to announce a new testing release of IPFire! It brings you our DNS firewall - a feature that so many of you have been waiting for -...</description>
			<content:encoded><![CDATA[<br />
<br />
We are pleased to announce a new testing release of IPFire! It brings you our DNS firewall - a feature that so many of you have been waiting for - together with a large toolchain rebase, a wide range of updated package and the usual bunch of various improvements across the entire system.<br />
<br />
<b>Hello DNS Firewall</b><br /><br />The wait is over. One of the most requested features in IPFire's history is finally here, and it fundamentally changes what your firewall is capable of. The DNS Firewall transforms IPFire from a network gatekeeper into an active threat eliminator &#8212; blocking malware, phishing, advertising, and unwanted content before a single byte of malicious data ever touches your network. <br />
<br />
For full details, see the <a href="https://www.ipfire.org/docs/configuration/firewall/dns" target="_blank">DNS Firewall documentation</a> and the <a href="https://www.ipfire.org/docs/roadmap/dns-firewall" target="_blank">DNS Firewall roadmap page</a>.<br />
<br />
<b>How it works</b><br /><br />Every device on your network resolves domain names through IPFire's DNS proxy. The DNS Firewall sits inside that pipeline and evaluates every query against <a href="https://www.ipfire.org/dbl" target="_blank">IPFire DBL</a> &#8212; our own curated, continuously updated domain blocklist &#8212; before a response ever reaches the client. Blocked domains receive an NXDOMAIN response: to the client, the domain simply does not exist. No connection is attempted, no content is fetched, and no trace of the request leaves your network.<br />
<br />
As a first to offer this to a large user-base, blocklist updates are delivered via IXFR &#8212; incremental DNS zone transfers directly into the DNS proxy &#8212; meaning your lists are refreshed within the hour, automatically, with no manual intervention and minimal bandwidth overhead.<br />
<br />
<b>Goodbye URL Filter. Goodbye Pi-hole.</b><br /><br />If you have been running the URL Filter, you already understand the frustration: clients need explicit proxy configuration, HTTPS inspection is a minefield, and the entire approach was designed for a web that no longer exists. If you have been running a Pi-hole alongside IPFire to compensate, you have been maintaining a second device, a second software stack, and a second security boundary &#8212; all to do something your firewall should have been doing all along.<br />
<br />
The DNS Firewall replaces both. It requires no client configuration, no additional hardware, and no compromises. Your firewall is already the single point through which all DNS traffic flows &#8212; it has always been the right place for this.<br />
<br />
<b>Miscellaneous Improvements</b><br /><br /><ul><li><b>Intrusion Prevention System</b> It is now possible to configure different recipients for daily, weekly, and monthly IDS reports &#8212; useful for teams where different people are responsible for different reporting cadences.</li>
<li><b>RISC-V</b> <a href="https://n00bunlimited.net//users/arne_f" target="_blank">Arne.F</a> has updated the kernel configuration on the <a href="https://nightly.ipfire.org/next/latest/riscv64/" target="_blank">experimental build for RISC-V devices</a>.</li>
<li><b>Network Installer</b> The installer now allocates more disk space when booting from the network, accommodating the increased size of the ISO download.</li>
<li><b>Rust Cleanup</b> <a href="https://n00bunlimited.net//users/stevee" target="_blank">Stefan Schantl</a> has removed Rust packages that were no longer needed in the distribution, reducing build overhead and attack surface.</li>
<li><b>Web Proxy Firewall Rules</b> Rules are now created with the --wait flag, preventing race conditions during rule insertion.</li>
<li><b>Toolchain Update</b> IPFire has been rebased on the latest versions of glibc 2.43 and GNU binutils 2.46.0. These are the fundamental libraries and binary tools that underpin all userspace components inside IPFire. Keeping them current ensures better hardware support, improved security hardening, and a solid foundation for all packages built on top of them.</li>
<li>The following packages have been updated in this release: asciidoctor 2.0.26, BIND 9.20.20, binutils 2.46.0, ccache 4.12.3, conntrack-tools 1.4.9, coreutils 9.10, dejagnu 1.6.3, expat 2.7.4, fuse 3.18.1, gettext 1.0, glibc 2.43, harfbuzz 12.3.2, hwdata 0.404, intel-microcode 20260210, iptables 1.8.12, jansson 2.15.0, krb5 1.22.1, less 692, libgcrypt 1.12.0, libnetfilter_conntrack 1.1.1, libpng 1.6.55, libtalloc 2.4.4, libuv 1.52.0, libxcrypt 4.5.2, m4 1.4.21, ncurses 6.6, OpenVPN 2.6.19, OpenSSL 3.6.1, p11-kit 0.26.2, PAM 1.7.2, procps 4.0.6, Ruby 4.0.1, suricata-reporter 0.7, vim 9.1.2147, wireless-regdb 2026.02.04, xfsprogs 6.18.0, zlib-ng 2.3.3</li>
</ul><br />
<b>Add-ons</b><br /><br /><ul><li><b>Wireless Access Point</b><ul><li>The description for the Neighbourhood Scan was previously inverted and has been corrected.</li>
<li><a href="https://n00bunlimited.net//users/bonnietwin" target="_blank">Adolf Belka</a> has contributed a Dutch translation for this package.</li>
</ul></li>
<li>Updated Add-on Packages: ddrescue 1.30, fping 5.5, Git 2.53.0, minicom 2.11, nano 8.7.1, nfs 2.8.5, Postfix 3.10.7, Samba 4.23.5, tshark 4.6.4</li>
<li>The 7zip package has been removed from the add-on collection. The upstream project is no longer maintained, and continuing to ship unmaintained software is not consistent with IPFire's security posture.</li>
</ul><br />
<hr /><br />
This is a <b>testing release</b>. We encourage all users who are able to run non-production hardware to give it a try and report any issues, particularly around the new DNS Firewall feature. Your feedback at this stage directly shapes the quality of the stable release.<br />
<br />
Please report issues on the <a href="https://community.ipfire.org/" target="_blank">IPFire community forum</a> or the bug tracker.<br />
<br />
<br />
<a href="https://www.ipfire.org/blog/ipfire-2-29-core-update-201-is-available-for-testing" target="_blank">More...</a>]]></content:encoded>
			<category domain="https://n00bunlimited.net/home/forum/site-news/ipfire">Ipfire</category>
			<dc:creator>siosios</dc:creator>
			<guid isPermaLink="true">https://n00bunlimited.net/home/forum/site-news/ipfire/80476-ipfire-2-29-core-update-201-is-available-for-testing</guid>
		</item>
		<item>
			<title>Team Fortress 2 Update Released</title>
			<link>https://n00bunlimited.net/home/forum/site-news/steam-news/80475-team-fortress-2-update-released</link>
			<pubDate>Wed, 11 Mar 2026 19:40:08 GMT</pubDate>
			<description>An update to Team Fortress 2 has been released. The update will be applied automatically when you restart Team Fortress 2. The major changes include:...</description>
			<content:encoded><![CDATA[An update to Team Fortress 2 has been released. The update will be applied automatically when you restart Team Fortress 2. The major changes include:<ul><li>Fixed client crash related to material proxies</li>
<li>Fixed Scout.NegativeVocalization04 sounds in Mann vs. Machine not playing because of a typo in the volume (community fix from That Hat Guy)</li>
<li>Fixed The Spy-cicle not using its icicle lightwarp (community fix from BreavyTF2)</li>
<li>Updated material for cp_coldfront to fix compression issue</li>
<li>Updated the prop for Taunt: Heartbreaker to fix a missing material</li>
<li>Updated koth_demolition<ul><li>Fixed a player clip on the helipad allowing players to stand outside the playable area (thanks Midnite)</li>
<li>Fixed some player clip pixel walks on some doors</li>
<li>Fixed a blockbullets floating above BLU spawn (thanks True_Boredom)</li>
</ul></li>
</ul><br />
<br />
An update to Team Fortress 2 has been released. The update will be applied automatically when you restart Team Fortress 2. The major changes include:<ul><li>Fixed client crash related to material proxies</li>
<li>Fixed Scout.NegativeVocalization04 sounds in Mann vs. Machine not playing because of a typo in the volume (community fix from That Hat Guy)</li>
<li>Fixed The Spy-cicle not using its icicle lightwarp (community fix from BreavyTF2)</li>
<li>Updated material for cp_coldfront to fix compression issue</li>
<li>Updated the prop for Taunt: Heartbreaker to fix a missing material</li>
<li>Updated koth_demolition<ul><li>Fixed a player clip on the helipad allowing players to stand outside the playable area (thanks Midnite)</li>
<li>Fixed some player clip pixel walks on some doors</li>
<li>Fixed a blockbullets floating above BLU spawn (thanks True_Boredom)</li>
</ul></li>
</ul><br />
<br />
<a href="https://store.steampowered.com/news/265516/" target="_blank">More...</a>]]></content:encoded>
			<category domain="https://n00bunlimited.net/home/forum/site-news/steam-news">Steam News</category>
			<dc:creator>siosios</dc:creator>
			<guid isPermaLink="true">https://n00bunlimited.net/home/forum/site-news/steam-news/80475-team-fortress-2-update-released</guid>
		</item>
	</channel>
</rss>
