1- # v0.12.1
1+ # v0.13.0 - 24 July 2020
2+
3+ ## New Feature
4+
5+ - (#137 ) RASP: add noSQL Injection protection support for the Go MongoDB driver
6+ ` go.mongodb.org/mongo-driver/mongo ` . This protection can be configured at
7+ < https://my.sqreen.com/application/goto/modules/rasp/details/nosql_injection > .
8+
9+ ## Internal Changes
10+
11+ - (#138 ) Health-check the HTTPS connectivity to the new backend API
12+ ` ingestion.sqreen.com ` before using it. Fallback to the usual
13+ ` back.sqreen.com ` in case of a connection issue. Therefore, the agent can take
14+ up to 30 seconds to connect to Sqreen if the health-check timeouts. Please
15+ make sure to add this new firewall and proxy configurations.
16+
17+ - (#136 ) Add support to attach multiple security protections per hook point.
18+
19+ ## Fixes
20+
21+ - (#140 ) Fix the In-App WAF metadata PII scrubbing to also match substrings.
22+
23+
24+ # v0.12.1 - 13 July 2020
225
326## Fixes
427
1942- (eeb1dca) Avoid copying the metadata returned by the In-App WAF.
2043
2144
22- # v0.12.0
45+ # v0.12.0 - 6 July 2020
2346
2447## New Features
2548
5376- (794d6e2) Allow port numbers in the ` X-Forwarded-For ` header.
5477
5578
56- # v0.11.0
79+ # v0.11.0 - 19 June 2020
5780
5881## New Features
5982
90113- (#114 ) Add Goroutine Local Storage (GLS) support through static instrumentation of the Go runtime.
91114
92115
93- # v0.10.1
116+ # v0.10.1 - 5 June 2020
94117
95118## Fix
96119
97120- (#116 ) Fix the instrumentation tool ignoring vendored packages, leading to
98121 missing hook points in the agent.
99122
100- # v0.10.0
123+ # v0.10.0 - 20 May 2020
101124
102125## New Features
103126
136159
137160- Document PII scrubbing configuration at < https://docs.sqreen.com/go/configuration/#personally-identifiable-information-scrubbing > .
138161
139- # v0.9.1
162+ # v0.9.1 - 31 March 2020
140163
141164## Fixes
142165
150173- (#101 ) Prevent starting the agent when the instrumentation tool and agent
151174 versions are not the same.
152175
153- # v0.9.0
176+ # v0.9.0 - 19 February 2020
154177
155178This new major version says farewell to the ` beta ` and adds SQL-injection
156179run time protection thanks the first building blocks of [ RASP] [ RASP-Wikipedia ]
@@ -233,7 +256,7 @@ Because we now want a stable public API, find below the breaking changes:
233256 compiled as a Go module. This is also shown by the dashboard when the list
234257 of dependencies is empty.
235258
236- # v0.1.0-beta.10
259+ # v0.1.0-beta.10 - 24 January 2020
237260
238261## Breaking Change
239262
@@ -264,7 +287,7 @@ Because we now want a stable public API, find below the breaking changes:
264287- (#92 ) Vendoring using ` go mod vendor ` could lead to compilation errors due to
265288 missing files.
266289
267- # v0.1.0-beta.9
290+ # v0.1.0-beta.9 - 19 December 2019
268291
269292## New Features
270293
@@ -283,7 +306,7 @@ Because we now want a stable public API, find below the breaking changes:
283306- The In-App WAF has been intensively optimized so that large requests can no longer impact
284307 its execution time. (#83 )
285308
286- # v0.1.0-beta.8
309+ # v0.1.0-beta.8 - 15 October 2019
287310
288311## Internal Changes
289312
@@ -292,7 +315,7 @@ Because we now want a stable public API, find below the breaking changes:
292315 - Ignore WAF timeout errors and add more context when reporting an error (#80 ).
293316 - Update the libsqreen to v0.4.0 to add support for the ` @pm ` operator.
294317
295- # v0.1.0-beta.7
318+ # v0.1.0-beta.7 - 26 September 2019
296319
297320## Breaking Changes
298321
@@ -319,7 +342,7 @@ Because we now want a stable public API, find below the breaking changes:
319342- Fix a compilation error on 32-bit target architectures.
320343
321344
322- # v0.1.0-beta.6
345+ # v0.1.0-beta.6 - 25 July 2019
323346
324347## New Features
325348
@@ -354,7 +377,7 @@ Because we now want a stable public API, find below the breaking changes:
354377 log-level.
355378
356379
357- # v0.1.0-beta.5
380+ # v0.1.0-beta.5 - 23 May 2019
358381
359382## New Features
360383
@@ -380,7 +403,7 @@ Because we now want a stable public API, find below the breaking changes:
380403 processing loop.
381404
382405
383- # v0.1.0-beta.4
406+ # v0.1.0-beta.4 - 16 April 2019
384407
385408This release adds the ability to block IP addresses or users into your Go web
386409services by adding support for [ Security Automation] according to your
@@ -440,7 +463,7 @@ Note that redirecting users or IP addresses is not supported yet.
440463- Avoid performing multiple times commands within the same command batch. (51 )
441464
442465
443- # v0.1.0 -beta.3
466+ # v0.1.0 -beta.3 - 22 March 2019
444467
445468## New Features
446469
@@ -477,15 +500,15 @@ Note that redirecting users or IP addresses is not supported yet.
477500 self-managing the initializations. (#28 )
478501
479502
480- # v0.1.0 -beta.2
503+ # v0.1.0 -beta.2 - 14 February 2019
481504
482505## New feature
483506
484507- Add a new ` Identify()` method allowing to explicitly associate a user to the
485508current request. As soon as we add the support for the security reponses, it
486509will allow to block users (#26 ).
487510
488- # v0.1.0 -beta.1
511+ # v0.1.0 -beta.1 - 7 February 2019
489512
490513This version is a new major version towards the v0.1.0 as it proposes a new and
491514stable SDK API , that now will only be updated upon user feedback. So please,
0 commit comments