Zum Inhalt springen

Cloudflare One Updates & Release Notes

319 Einträge aus 1 Quelle. Zuletzt aktualisiert:

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Cloudflare One Client für macOS 2026.8.2100.0 (GA)

Das GA-Release des Cloudflare One Client für macOS blockiert Verkehr zu Split-Tunnel-Ausnahmen beim Verbinden nicht mehr kurzzeitig, unterstützt Nicht-RFC-1918-Netze bei uneingeschränkter LAN-Einbindung, verbindet schneller bei geringerem Speicherverbrauch und bringt weitere Verbesserungen bei Reauthentifizierung, MTU- und DNS-Handling sowie eine neue MDM-Einstellung für IPv4-Präferenz im Proxy-Modus.

A new GA release for the macOS Cloudflare One Client is now available on the stable releases downloads page.

This release includes the following highlights:

  • Traffic to split tunnel excluded resources is no longer briefly blocked while the client is connecting or reconnecting. The client now keeps its learned split tunnel configuration across reconnects.
  • Support for routing non-RFC 1918 local IPv4 networks through the tunnel when unrestricted LAN inclusion is enabled by policy or MDM.
  • Faster connects and lower memory use. The hosts file is now read once and shared across the client’s DNS resolvers instead of being reloaded by each one.

Additional changes and improvements

  • Improved reauthentication reliability and fixed an issue where a reauthentication could force a new registration.
  • Improved client reaction to the current network lowering its MTU.
  • Improved DNS reliability on networks with lower MTUs by clamping the TCP maximum segment size (MSS) for DNS-over-HTTPS connections sent through the tunnel.
  • Individual DNS-over-HTTPS queries now time out instead of hanging when the upstream server stops responding.
  • Improved API reliability by retrying requests dropped when reusing pooled connections.
  • Added an MDM setting to prefer IPv4 when resolving hostnames in proxy mode. The setting is off by default. …

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Cloudflare One Client für Windows 2026.8.2100.0 (GA)

Das GA-Release des Cloudflare One Client für Windows blockiert Verkehr zu Split-Tunnel-Ausnahmen beim Verbinden nicht mehr kurzzeitig, unterstützt Nicht-RFC-1918-Netze bei uneingeschränkter LAN-Einbindung, geht besser mit sehr großen Hosts-Dateien um, stellt Tunnel schneller wieder her und startet den Client-Dienst bei Systementsperrung per geplanter Aufgabe automatisch, falls er nicht läuft.

A new GA release for the Windows Cloudflare One Client is now available on the stable releases downloads page.

This release includes the following highlights:

  • Traffic to split tunnel excluded resources is no longer briefly blocked while the client is connecting or reconnecting. The client now keeps its learned split tunnel configuration across tunnel reconnections.
  • Support for routing non-RFC 1918 local IPv4 networks through the tunnel when unrestricted LAN inclusion is enabled by policy or MDM.
  • Improved connection reliability on devices with very large hosts files. The client now detects a large hosts file, allows more time for its initial DNS check, and shows a banner letting the user know that connecting may take longer.
  • Faster tunnel reconnections and lower memory use. The hosts file is now read once and shared across the client’s DNS resolvers instead of being reloaded by each one.
  • A service recovery mechanism, backed by a Windows scheduled task, now starts the client service on system unlock if it is not already running. This is enabled by default.

Additional changes and improvements

  • Improved reauthentication reliability and fixed an issue where a reauthentication could force a new registration.
  • Improved client reaction to the current network lowering its MTU. …

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Cloudflare One Client für Linux 2026.8.2100.0 (GA)

Das GA-Release des Cloudflare One Client für Linux blockiert Verkehr zu Split-Tunnel-Ausnahmen beim Verbinden nicht mehr kurzzeitig, unterstützt Nicht-RFC-1918-Netze bei uneingeschränkter LAN-Einbindung, stellt Tunnel schneller wieder her, bietet eine neue MDM-Einstellung für IPv4-Präferenz im Proxy-Modus und verbessert Reauthentifizierung, MTU-Handling und DNS-Zuverlässigkeit.

A new GA release for the Linux Cloudflare One Client is now available on the stable releases downloads page.

This release includes the following highlights:

  • Traffic to split tunnel excluded resources is no longer briefly blocked while the client is connecting or reconnecting. The client now keeps its learned split tunnel configuration across reconnects.
  • Support for routing non-RFC 1918 local IPv4 networks through the tunnel when unrestricted LAN inclusion is enabled by policy or MDM.
  • Faster tunnel reconnections and lower memory use. The hosts file is now read once and shared across the client’s DNS resolvers instead of being reloaded by each one.
  • Added an MDM setting to prefer IPv4 when resolving hostnames in proxy mode. The setting is off by default.

Additional changes and improvements

  • Improved reauthentication reliability and fixed an issue where a reauthentication could force a new registration.
  • Improved client reaction to the current network lowering its MTU.
  • Improved DNS reliability on networks with lower MTUs by clamping the TCP maximum segment size (MSS) for DNS-over-HTTPS connections sent through the tunnel.
  • Individual DNS-over-HTTPS queries now time out instead of hanging when the upstream server stops responding.
  • Improved API reliability by retrying requests dropped when reusing pooled connections. …

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Cloudflare Organizations ist allgemein verfügbar

Cloudflare Organizations ist jetzt für Enterprise-Kunden und MSSP/Distributor-Partner allgemein verfügbar und bietet einen übergeordneten Container zur zentralen Verwaltung von Accounts, Mitgliedern, Analysen und gemeinsamen Richtlinien, während Organization Roles weiterhin in der Beta bleibt.

Cloudflare Organizations is now generally available for Enterprise customers and MSSP/Distributor partners.

Organizations provides a top-level container for centrally managing accounts, members, analytics, and shared policies. Organization Super Administrators receive implicit access to every account in their Organization without requiring separate account memberships.

Enterprise customers can manage accounts in a single-tier Organization. MSSP/Distributor partners can use nested sub-organizations to manage customer accounts.

Organization Roles remains in beta, and current product limitations still apply.

For more information, refer to Cloudflare Organizations and current limitations.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

BGP über IPsec- und GRE-Tunnel jetzt allgemein verfügbar

BGP-Peering über IPsec- und GRE-Tunnel ist für Cloudflare WAN und Magic Transit allgemein verfügbar und für Produktivumgebungen nutzbar, sodass Routen dynamisch statt über manuell gepflegte statische Routen ausgetauscht werden.

BGP peering over IPsec and GRE tunnels is generally available for Cloudflare WAN and Magic Transit. You can use it for production workloads.

BGP peering exchanges routes dynamically between your devices and your Cloudflare virtual network routing table. You no longer need to update static routes manually as your network changes.

BGP over IPsec and GRE tunnels is available to all accounts that use Unified Routing. No enablement is required. BGP over CNI remains in closed beta.

For configuration details, refer to:

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

CASB: Benutzerdefinierte Finding-Typen für organisationsspezifische Risiken

Cloudflare CASB unterstützt jetzt benutzerdefinierte Finding-Typen, für die sich eigene Erkennungslogik in Rego schreiben und auf bestimmte Anbieter, Asset-Klassen und Integrationen eingrenzen lässt.

Cloudflare CASB now supports custom finding types, giving security teams full control over the security conditions CASB detects across their SaaS and cloud integrations.

In addition to CASB's library of standard finding types, you can now write your own detection logic using Rego ↗︎, the open-source policy language from Open Policy Agent (OPA). Use custom finding types to match your organization's own thresholds and exceptions, such as flagging admin accounts without two-factor authentication, and get higher-confidence findings to act on.

Create a custom finding type with a name, severity, scope, and Rego detection logic

Key capabilities

  • Write your own detection logic — Define exactly what CASB flags using Rego expressions evaluated against asset data from your connected integrations.
  • Target any supported provider and asset class — Scope a custom finding type to a provider (such as Google Workspace or Microsoft 365) and asset class (such as users, files, or groups), and apply it to all integrations for that provider or a selected subset. …

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Access: Neue Einstellung für strikte Service-Token-Authentifizierung

Die neue Einstellung „strict service token authentication“ sorgt dafür, dass Access bei Anfragen mit Service Tokens einheitlich 401/403 statt 302 zurückgibt, nur Service-Auth-Policies berücksichtigt und kein CF_Authorization-Cookie ausstellt, und ist für ab dem 5. Oktober 2026 erstellte Organisationen standardmäßig aktiv.

The strict service token authentication setting applies consistent behavior to requests made with service tokens. When the setting is on for a Zero Trust organization, Access handles requests with service token headers as follows:

  • If authentication or authorization fails, Access always returns 401 or 403 instead of redirecting the client to the login page with 302.
  • Only Service Auth policies can authorize the request. Access ignores Allow policies and any CF_Authorization cookie sent with the request.
  • Access does not return a CF_Authorization cookie to the client after successful authentication. Subsequent requests should continue to use service token headers.
  • Failed requests for recognized service tokens appear in Access authentication logs.

Zero Trust organizations created on or after October 5, 2026 have strict service token authentication turned on by default and cannot turn it off. Cloudflare recommends that existing organizations turn it on as well.

Organizations created before October 5, 2026 can configure the setting in the dashboard or through the API.

  1. In the Cloudflare dashboard ↗︎, go to Zero Trust > Access controls > Access settings.

    Go to Access settings ↗ …

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Access for Infrastructure: Vereinfachte Berechtigungen zum Taggen von Targets

Zum Taggen von Targets mit Access for Infrastructure über die API genügt jetzt die Token-Berechtigung „Zero Trust Write“, während „Tag Write“ dafür nicht mehr nötig ist.

You can now tag targets using only the Zero Trust Write API token permission. Previously, tagging targets through the API required both Zero Trust Write and Tag Write permissions on the API token.

This change applies to inline target tagging through the Infrastructure Access Targets API. Tagging resources through the general Resource Tagging API still requires the Tag Admin, Tag Write, or equivalent role.

For more information, refer to Tag targets.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Cloudflare One Client für Windows 2026.8.2033.1 (Beta)

Das Beta-Release 2026.8.2033.1 des Cloudflare One Client für Windows bringt Fehlerbehebungen und Verbesserungen, etwa bei Reauthentifizierung, MTU-Handling, DNS-Zuverlässigkeit und Dienstwiederherstellung.

A new Beta release for the Windows Cloudflare One Client is now available on the beta releases downloads page.

This beta release includes the following changes and improvements:

  • Fixed an issue that could briefly block traffic to split tunnel excluded resources while the client was connecting or reconnecting.
  • Improved reauthentication reliability and fixed an issue where a reauthentication could force a new registration.
  • Improved client reaction to the current network lowering its MTU.
  • Added support for routing non-RFC 1918 local IPv4 networks through the WARP tunnel when unrestricted LAN inclusion is enabled by policy or MDM.
  • Improved DNS reliability on networks with lower MTUs by clamping the TCP maximum segment size (MSS) for DNS-over-HTTPS connections sent through the tunnel.
  • Improved API reliability by retrying requests dropped when reusing pooled connections.
  • The client no longer requires the Windows WLAN AutoConfig service to be running.
  • Implemented a service recovery mechanism backed by Windows scheduler task to start WARP service on system unlock if not already started.
  • Fixed slow captive portal checks causing the client service to become unresponsive or restart while connecting.
  • Fixed a race when switching tunnel protocols during key rotation that could prevent WireGuard from connecting. …

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Rollenbasierte Zugriffskontrolle für Browser-Isolation-Richtlinien

Isolation-Richtlinien für Browser Isolation unterstützen jetzt rollenbasierte Zugriffskontrolle über die Gateway-Rollen, einschließlich der Rolle „Zero Trust HTTP Policies Admin“ und ressourcenspezifischer Rollen.

Isolation policies support role-based access control (RBAC). Because isolation policies are Gateway HTTP policies with the Isolate action, Gateway's account-level and resource-scoped roles apply to them directly.

Use the Zero Trust HTTP Policies Admin account-level role to grant access to all HTTP policies in the account. You can also assign a resource-scoped role to let a team member manage a specific isolation policy without exposing other Gateway resources.

Policy settings such as copy/paste, file download/upload, keyboard, and printing are part of the policy object and follow the same permissions.

For setup instructions, refer to Granular permissions for Gateway.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Cloudflare One Client für Windows 2026.8.2028.1 (Beta)

Das Beta-Release 2026.8.2028.1 des Cloudflare One Client für Windows bringt Fehlerbehebungen und Verbesserungen, etwa bei Reauthentifizierung, MTU-Handling, DNS-Zuverlässigkeit und Dienstwiederherstellung.

A new Beta release for the Windows Cloudflare One Client is now available on the beta releases downloads page.

This beta release includes the following changes and improvements:

  • Fixed an issue that could briefly block traffic to split tunnel excluded resources while the client was connecting or reconnecting.
  • Improved reauthentication reliability and fixed an issue where a reauthentication could force a new registration.
  • Improved client reaction to the current network lowering its MTU.
  • Added support for routing non-RFC 1918 local IPv4 networks through the WARP tunnel when unrestricted LAN inclusion is enabled by policy or MDM.
  • Improved DNS reliability on networks with lower MTUs by clamping the TCP maximum segment size (MSS) for DNS-over-HTTPS connections sent through the tunnel.
  • Improved API reliability by retrying requests dropped when reusing pooled connections.
  • The client no longer requires the Windows WLAN AutoConfig service to be running.
  • Implemented a service recovery mechanism backed by Windows scheduler task to start WARP service on system unlock if not already started.
  • Fixed slow captive portal checks causing the client service to become unresponsive or restart while connecting.
  • Fixed a race when switching tunnel protocols during key rotation that could prevent WireGuard from connecting. …

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Cloudflare One Client für macOS 2026.8.2028.1 (Beta)

Das Beta-Release 2026.8.2028.1 des Cloudflare One Client für macOS bringt Fehlerbehebungen und Verbesserungen, etwa bei Reauthentifizierung, MTU-Handling, DNS-Zuverlässigkeit, Extra Logging und Remote-Diagnose.

A new Beta release for the macOS Cloudflare One Client is now available on the beta releases downloads page.

This beta release includes the following changes and improvements:

  • Fixed an issue that could briefly block traffic to split tunnel excluded resources while the client was connecting or reconnecting.
  • Improved reauthentication reliability and fixed an issue where a reauthentication could force a new registration.
  • Improved client reaction to the current network lowering its MTU.
  • Added support for routing non-RFC 1918 local IPv4 networks through the WARP tunnel when unrestricted LAN inclusion is enabled by policy or MDM.
  • Improved DNS reliability on networks with lower MTUs by clamping the TCP maximum segment size (MSS) for DNS-over-HTTPS connections sent through the tunnel.
  • Improved API reliability by retrying requests dropped when reusing pooled connections.
  • Fixed Extra Logging failing to capture packets across all interfaces.
  • Fixed an issue that could prevent remote diagnostics from completing.
  • Fixed DNS connectivity checks failing on IPv6-only networks.
  • Fixed the client service exiting when its route-monitoring socket was closed after sleep or wake.
  • Fixed DNS enforcement checks making the client service unresponsive on systems with large routing tables. …

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Mesh, Workers VPC und Tunnel-Replikate in Netzwerk-Logs erkennen

Gateway-Netzwerk-Logs und Zero Trust Network Session Logs kennzeichnen jetzt Traffic von Cloudflare Mesh und Workers VPC eigenständig und zeigen, welches Cloudflare Tunnel und welches cloudflared-Replikat eine Sitzung empfangen hat.

You can now tell a person on a laptop apart from a Mesh node or an AI agent running on Workers, without matching on connector email addresses or Mesh IP ranges — and see exactly which Cloudflare Tunnel and cloudflared replica received each session.

Gateway network logs and Zero Trust Network Session Logs now identify two new kinds of traffic:

  • Mesh — Traffic sent from or delivered to a Cloudflare Mesh node. Previously, Mesh nodes were logged the same way as devices running the Cloudflare One Client, because Mesh nodes run the client in headless mode.
  • Workers VPC — Traffic sent by a Worker through a Workers VPC binding. Previously, Workers VPC sessions were not recorded in Network Session Logs.

Viewing Mesh and Workers VPC traffic in Gateway network logs

Gateway network logs

…

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Managed Rulesets jetzt in Unified Routing unterstützt

Managed Rulesets der Cloudflare Advanced Network Firewall werden jetzt für Konten im Unified-Routing-Modus unterstützt.

Cloudflare Advanced Network Firewall Managed Rulesets are now supported for accounts using Unified Routing mode.

For the full list of feature availability, refer to Check feature availability before upgrading.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

MCP server portals sind jetzt allgemein verfügbar

MCP server portals sind für alle Cloudflare-Kunden allgemein verfügbar und bieten einen zentralen Endpunkt für freigegebene MCP-Server, mit seit der offenen Beta ergänzten Funktionen wie Gateway-Routing, Code-Mode-Policies, statischen OAuth-Zugangsdaten, Sitzungsverwaltung und Service-Token-Authentifizierung.

MCP server portals are now generally available to all Cloudflare customers. A portal gives users one endpoint for approved Model Context Protocol (MCP) servers. Cloudflare Access logs tool, prompt, and resource activity.

Since the open beta, MCP server portals have added:

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Selektor „Traffic Destination“ in Gateway-Richtlinien

Gateway-HTTP- und Netzwerk-Richtlinien enthalten jetzt einen Selektor „Traffic Destination“, mit dem sich Regeln gezielt auf Austrittswege wie Internet, Cloudflare WAN, Cloudflare Tunnel, Cloudflare One Client oder Mesh ausrichten lassen.

Gateway HTTP and Network policies now include a Traffic Destination selector that identifies how traffic exits Cloudflare. This allows administrators to write policies that target specific off-ramp methods - for example, applying different rules to traffic destined for the public Internet compared to traffic routed through Cloudflare Tunnel or Cloudflare WAN.

Available traffic destination values

UI name

API value

Description

Internet

internet

Traffic to the public Internet

Cloudflare WAN

cloudflare_wan

Traffic through a Cloudflare WAN connection

Cloudflare Tunnel

cloudflare_tunnel

Traffic to a private origin through Cloudflare Tunnel

Cloudflare One Client

device_client

Traffic to another device running the Cloudflare One Client

Mesh

mesh

Traffic through a Cloudflare Mesh node

The selector uses the net.offramp.type API field in both HTTP and Network policies.

UI name

API example

Traffic Destination …

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Mesh-Teilnehmer mit geführter Einrichtung hinzufügen

Cloudflare Mesh bietet im Dashboard über „Add participant“ eine geführte Einrichtung für Mesh-Nodes (Linux, Kubernetes, Docker Compose, Docker CLI) und Client-Geräte.

Cloudflare Mesh now makes it faster to add and manage participants from the dashboard. Select Add participant from Networking > Mesh to deploy a Mesh node or find the information needed to connect a client device.

Adding a Cloudflare Mesh node through the guided dashboard workflow

The updated dashboard includes the following improvements:

  • More Mesh node deployment options — Install a node on Linux, Kubernetes, Docker Compose, or Docker CLI. The dashboard provides requirements, commands, configuration, and links for each method. Refer to Run Mesh in Docker / Kubernetes for container deployment details.
  • Client device installation guidance — Access platform-specific Cloudflare One Client installers, mobile QR codes, and your Cloudflare One organization name. Use the organization name to log in from the client after installation. …

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Inaktive Access-Service-Tokens automatisch verwalten

Administratoren können inaktive Access-Service-Tokens nach einem Zeitraum von 30 bis 365 Tagen automatisch deaktivieren oder löschen lassen.

Cloudflare Access administrators can now automatically disable or delete inactive service tokens. Administrators can set an inactivity period from 30 to 365 days and choose what Access does when a token reaches that limit.

To be eligible for cleanup, a token must be older than the configured period, must not have successfully authenticated during that period, and must not be directly referenced by an Access policy rule. Cleanup runs gradually in the background, so eligible tokens may not be disabled or deleted immediately.

For configuration instructions, refer to Manage inactive service tokens.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Private MCP-Server-Unterstützung für MCP server portals

MCP server portals können sich nun über Cloudflare Gateway mit MCP-Servern verbinden, die nur im privaten Netzwerk erreichbar sind, ohne diese ins öffentliche Internet freizugeben.

MCP server portals can now connect to MCP servers available only on your private network. The portal uses Cloudflare Gateway to reach private hostnames and IP addresses without exposing the MCP server to the public Internet.

Connect the server network to Cloudflare with Cloudflare Tunnel, Cloudflare Mesh, or another Cloudflare One connector. Configure a private hostname or CIDR route, then turn on Route traffic through Cloudflare Gateway when you add the server. OAuth authorization server endpoints, such as the authorization and token endpoints, must be accessible on the public Internet. If Cloudflare automatically registers the OAuth client through Dynamic Client Registration (DCR), the registration endpoint must also be accessible on the public Internet. …

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Cloudflare One Client für macOS 2026.8.1755.1 (Beta)

Das Beta-Release 2026.8.1755.1 des Cloudflare One Client für macOS bringt Fehlerbehebungen und Verbesserungen, etwa bei Reauthentifizierung, MTU-Handling, DNS-Zuverlässigkeit, Extra Logging und Remote-Diagnose.

A new Beta release for the macOS Cloudflare One Client is now available on the beta releases downloads page.

This beta release includes the following changes and improvements:

  • Fixed an issue that could briefly block traffic to split tunnel excluded resources while the client was connecting or reconnecting.
  • Improved reauthentication reliability and fixed an issue where a reauthentication could force a new registration.
  • Improved client reaction to the current network lowering its MTU.
  • Added support for routing non-RFC 1918 local IPv4 networks through the WARP tunnel when unrestricted LAN inclusion is enabled by policy or MDM.
  • Improved DNS reliability on networks with lower MTUs by clamping the TCP maximum segment size (MSS) for DNS-over-HTTPS connections sent through the tunnel.
  • Improved API reliability by retrying requests dropped when reusing pooled connections.
  • Fixed Extra Logging failing to capture packets across all interfaces.
  • Fixed an issue that could prevent remote diagnostics from completing.
  • Fixed DNS connectivity checks failing on IPv6-only networks.
  • Fixed the client service exiting when its route-monitoring socket was closed after sleep or wake.
  • Fixed DNS enforcement checks making the client service unresponsive on systems with large routing tables. …

Originalquelle(öffnet in neuem Tab)Problem melden