Releases: wallarm/ingress
5.0.2+upstream4.9.0
- fixed installation fails without AAS subscription
- fixed export attack delay metric
5.0.1+upstream4.9.0
- The supplementary Ruby code used in the node was replaced with Golang
4.10.9+upstream4.9.0
- Fixed the Tarantool reconnect issue for API Abuse Prevention
- Fixed issues exporting malicious behavior patterns detected by the API Abuse Prevention module to API Sessions
- Fixed the CVE-2024-6345 vulnerability
4.10.8+upstream4.9.0
-
Fixed a memory leak in the API Discovery module
-
Upgraded the controller to Go 1.21.12
-
Fixed the vulnerabilities:
4.10.7+upstream4.9.0
- Fixed the
syncnode
issueCould not update (TypeError): no implicit conversion of nil into String
that sometimes appeared when registering a node in Wallarm Cloud using a node token - Optimized OpenAPI data type detection by the API Discovery module
- Upgraded the controller to Go 1.21.11 for the CVE-2024-24790 fix
4.10.6+upstream4.9.0
-
Added the
controller.wallarm.container_name.extraEnvs
chart values to allow passing additional environment variables to Docker containers utilized by the solution -
Enhanced OpenAPI data type detection by the API Discovery module
-
Introduced the
wallarm_http_v2_stream_max_len
directive to control the maximum length of HTTP/2 streams, helping prevent excessive memory consumption in long-lived gRPC connectionsTo apply this directive during Ingress controller deployment, include it in the
controller.config.http-snippet
,server-snippet
, orlocation-snippet
values. Alternatively, use thenginx.ingress.kubernetes.io/server-snippet
Ingress annotation. -
Resolved a memory leak issue where memory continued to be consumed after an overlimit attack was triggered, even when no further attack checks were conducted
4.10.5+upstream4.9.0
- Fixed the API Abuse Prevention module logging issues
4.10.4+upstream4.9.0
- Added support for applying limits on GraphQL requests
- API specifications enforcement
- New APIFW v0.7.2
4.8.9+upstream4.9.0
Fixed performance issue
4.10.3+upstream4.9.0
- Update of appstructure package
- Improved node sync logic