Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

build(deps): Bump github.com/libp2p/go-libp2p from 0.12.0 to 0.14.2 #411

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Jun 11, 2021

Bumps github.com/libp2p/go-libp2p from 0.12.0 to 0.14.2.

Release notes

Sourced from github.com/libp2p/go-libp2p's releases.

Release v0.14.2

This is an optional bug-fix release fixing a bug in the mock-network testing framework. This bug did not affect libp2p itself.

Bug: Identifying a connection would sometimes fail because identify would run before both peers "knew" about the connection.

Release v0.14.1

This release fixes a spec-breaking change to yamux (libp2p/go-libp2p-yamux#36) that could reliably lead to random stream resets.

The bug was introduced in go-libp2p 0.14.0.

Release v0.14.0

We're happy to announce go-libp2p 0.14.0. This release introduces a few long awaited features, fixes a few bugs, and includes progress towards NAT hole punching.

Custom DNS Resolvers

You can now pass a custom DNS resolver through the MultiaddrResolver option. This can be used to add support for DoH, custom TLDs (e.g., .eth), etc.

TCP Simultaneous Open

Adds initial support for TCP Simultaneous Open. If two peers open a TCP connection to each other at the same time using the same set of ports, they'll end up with a single TCP connection. Previously, go-libp2p would treat this as an error and disconnect. Now the connection succeeds. In the next libp2p release, this will be used to enable hole-punching for NAT traversal.

Improved Stream Multiplexer (Yamux) Performance

Yamux now uses variable sized receive windows to improve performance on high-latency, high-bandwidth connections.

Optimized Noise Read Throughput

The Noise security transport now buffers reads, reducing syscalls and significantly improving throughput.

Changelog

... (truncated)

Commits
  • 779acf9 Merge pull request #1116 from libp2p/fix/mocknet-conn-race
  • d82385e Deterministic lock order
  • 8c97572 Update go-libp2p in examples to fix CI
  • 79cc9a4 Fix race in adding connections to connsByPeer
  • c53e682 Merge pull request #1114 from libp2p/web3-bot/sync
  • 39b92d7 update .github/workflows/go-check.yml
  • a7f7b5a update .github/workflows/go-test.yml
  • b2a79f3 update .github/workflows/automerge.yml
  • f0d89c2 Merge pull request #1113 from libp2p/chore/update-yamux
  • dadeeea chore: update yamux to v0.5.4
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [github.com/libp2p/go-libp2p](https://github.com/libp2p/go-libp2p) from 0.12.0 to 0.14.2.
- [Release notes](https://github.com/libp2p/go-libp2p/releases)
- [Commits](libp2p/go-libp2p@v0.12.0...v0.14.2)

---
updated-dependencies:
- dependency-name: github.com/libp2p/go-libp2p
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added the T:dependencies Type: Pull requests that update a dependency file label Jun 11, 2021
@liamsi
Copy link
Member

liamsi commented Jun 11, 2021

that is actually surprising as the version of ipfs we are using uses a version in between 0.12.0 and 0.14.2 🤔

https://github.com/ipfs/go-ipfs/blob/ce693d7e81e0206b3afbce30333c21a36a9f094b/go.mod#L64

@liamsi liamsi closed this Jun 11, 2021
@dependabot @github
Copy link
Contributor Author

dependabot bot commented on behalf of github Jun 11, 2021

OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting @dependabot ignore this major version or @dependabot ignore this minor version. You can also ignore all major, minor, or patch releases for a dependency by adding an ignore condition with the desired update_types to your config file.

If you change your mind, just re-open this PR and I'll resolve any conflicts on it.

@dependabot dependabot bot deleted the dependabot/go_modules/github.com/libp2p/go-libp2p-0.14.2 branch June 11, 2021 22:57
evan-forbes pushed a commit that referenced this pull request Jun 9, 2023
* docs: Fix version compatibility notice in readme

Signed-off-by: Thane Thomson <[email protected]>

* Fix grammar

Signed-off-by: Thane Thomson <[email protected]>

---------

Signed-off-by: Thane Thomson <[email protected]>
(cherry picked from commit 1481f33)

Co-authored-by: Thane Thomson <[email protected]>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
T:dependencies Type: Pull requests that update a dependency file
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant