Skip to content

Latest commit

 

History

History
303 lines (281 loc) · 20.9 KB

deprecated.rst

File metadata and controls

303 lines (281 loc) · 20.9 KB

Deprecated

As of release 1.3.0, Envoy will follow a Breaking Change Policy.

The following features have been DEPRECATED and will be removed in the specified release cycle. A logged warning is expected for each deprecated item that is in deprecation window. Deprecated items below are listed in chronological order.

1.14.0 (April 8, 2020)

  • The previous behavior for upstream connection pool circuit breaking described here has been deprecated in favor of the new behavior described :ref:`here <arch_overview_circuit_break>`.

  • Access Logger, Listener Filter, HTTP Filter, Network Filter, Stats Sink, and Tracer names have been deprecated in favor of the extension name from the envoy build system. Disable the runtime feature "envoy.deprecated_features.allow_deprecated_extension_names" to disallow the deprecated names. Use of these extension names generates a log message and increments the "deprecated_feature_use" metric in stats.

    Canonical Names

    Deprecated Names

    envoy.access_loggers.file

    envoy.file_access_log

    envoy.access_loggers.http_grpc

    envoy.http_grpc_access_log

    envoy.access_loggers.tcp_grpc

    envoy.tcp_grpc_access_log

    envoy.filters.http.buffer

    envoy.buffer

    envoy.filters.http.cors

    envoy.cors

    envoy.filters.http.csrf

    envoy.csrf

    envoy.filters.http.dynamo

    envoy.http_dynamo_filter

    envoy.filters.http.ext_authz

    envoy.ext_authz

    envoy.filters.http.fault

    envoy.fault

    envoy.filters.http.grpc_http1_bridge

    envoy.grpc_http1_bridge

    envoy.filters.http.grpc_json_transcoder

    envoy.grpc_json_transcoder

    envoy.filters.http.grpc_web

    envoy.grpc_web

    envoy.filters.http.gzip

    envoy.gzip

    envoy.filters.http.health_check

    envoy.health_check

    envoy.filters.http.ip_tagging

    envoy.ip_tagging

    envoy.filters.http.lua

    envoy.lua

    envoy.filters.http.ratelimit

    envoy.rate_limit

    envoy.filters.http.router

    envoy.router

    envoy.filters.http.squash

    envoy.squash

    envoy.filters.listener.http_inspector

    envoy.listener.http_inspector

    envoy.filters.listener.original_dst

    envoy.listener.original_dst

    envoy.filters.listener.original_src

    envoy.listener.original_src

    envoy.filters.listener.proxy_protocol

    envoy.listener.proxy_protocol

    envoy.filters.listener.tls_inspector

    envoy.listener.tls_inspector

    envoy.filters.network.client_ssl_auth

    envoy.client_ssl_auth

    envoy.filters.network.echo

    envoy.echo

    envoy.filters.network.ext_authz

    envoy.ext_authz

    envoy.filters.network.http_connection_manager

    envoy.http_connection_manager

    envoy.filters.network.mongo_proxy

    envoy.mongo_proxy

    envoy.filters.network.ratelimit

    envoy.ratelimit

    envoy.filters.network.redis_proxy

    envoy.redis_proxy

    envoy.filters.network.tcp_proxy

    envoy.tcp_proxy

    envoy.stat_sinks.dog_statsd

    envoy.dog_statsd

    envoy.stat_sinks.metrics_service

    envoy.metrics_service

    envoy.stat_sinks.statsd

    envoy.statsd

    envoy.tracers.dynamic_ot

    envoy.dynamic.ot

    envoy.tracers.lightstep

    envoy.lightstep

    envoy.tracers.zipkin

    envoy.zipkin

    Note

    Some renamed filters produce metadata using their filter name as the metadata namespace:

    • Mongo Proxy Filter
    • Zookeeper Filter

    The metadata generated by these filters may be consumed by the following extensions, whose configurations may need to be adjusted to use the new names.

    • Access Loggers
    • HTTP and Network Ext Authz filters
    • HTTP and Network RBAC filters
    • Tracers
  • The previous behavior of auto ignoring case in headers matching: :ref:`allowed_headers <envoy_api_field_config.filter.http.ext_authz.v2.AuthorizationRequest.allowed_headers>`, :ref:`allowed_upstream_headers <envoy_api_field_config.filter.http.ext_authz.v2.AuthorizationResponse.allowed_upstream_headers>`, and :ref:`allowed_client_headers <envoy_api_field_config.filter.http.ext_authz.v2.AuthorizationResponse.allowed_client_headers>` of HTTP-based ext_authz has been deprecated in favor of explicitly setting the :ref:`ignore_case <envoy_api_field_type.matcher.StringMatcher.ignore_case>` field.

  • The header_fields, custom_header_fields, and additional_headers fields for the route checker tool have been deprecated in favor of request_header_fields, response_header_fields, additional_request_headers, and additional_response_headers.

  • The content_length, content_type, disable_on_etag_header and remove_accept_encoding_header fields in :ref:`HTTP Gzip filter config <envoy_api_msg_config.filter.http.gzip.v2.Gzip>` have been deprecated in favor of compressor.

  • The statistics counter header_gzip in :ref:`HTTP Gzip filter <config_http_filters_gzip>` has been deprecated in favor of header_compressor_used.

  • Support for the undocumented HTTP/1.1 :no-chunks pseudo-header has been removed. If an extension was using this it can achieve the same behavior via the new http1StreamEncoderOptions() API.

  • The grpc_stats filter behavior of by default creating a new stat for every message type seen is deprecated. The default will switch to only creating a fixed set of stats. The previous behavior can be enabled by enabling :ref:`stats_for_all_methods <envoy_api_field_config.filter.http.grpc_stats.v2alpha.FilterConfig.stats_for_all_methods>`, and the previous default can be enabled until the end of the deprecation period by enabling runtime feature envoy.deprecated_features.grpc_stats_filter_enable_stats_for_all_methods_by_default.

  • The :ref:`source_ip <envoy_api_field_config.rbac.v2.Principal.source_ip>` field in RBAC has been deprecated in favor of :ref:`direct_remote_ip <envoy_api_field_config.rbac.v2.Principal.direct_remote_ip>` and :ref:`remote_ip <envoy_api_field_config.rbac.v2.Principal.remote_ip>`.

1.13.0 (January 20, 2020)

1.12.0 (October 31, 2019)

1.11.2 (October 8, 2019)

1.11.0 (July 11, 2019)

1.10.0 (Apr 5, 2019)

1.9.0 (Dec 20, 2018)

  • Order of execution of the network write filter chain has been reversed. Prior to this release cycle it was incorrect, see #4599. In the 1.9.0 release cycle we introduced bugfix_reverse_write_filter_order in lds.proto to temporarily support both old and new behaviors. Note this boolean field is deprecated.
  • Order of execution of the HTTP encoder filter chain has been reversed. Prior to this release cycle it was incorrect, see #4599. In the 1.9.0 release cycle we introduced bugfix_reverse_encode_order in http_connection_manager.proto to temporarily support both old and new behaviors. Note this boolean field is deprecated.
  • Use of the v1 REST_LEGACY ApiConfigSource is deprecated.
  • Use of std::hash in the ring hash load balancer is deprecated.
  • Use of rate_limit_service configuration in the bootstrap configuration is deprecated.
  • Use of runtime_key in RequestMirrorPolicy, found in route.proto is deprecated. Set the runtime_fraction field instead.
  • Use of buffer filter max_request_time is deprecated in favor of the request timeout found in HttpConnectionManager

1.8.0 (Oct 4, 2018)

  • Use of the v1 API (including *.deprecated_v1 fields in the v2 API) is deprecated. See envoy-announce email.
  • Use of the legacy ratelimit.proto is deprecated, in favor of the proto defined in date-plane-api Prior to 1.8.0, Envoy can use either proto to send client requests to a ratelimit server with the use of the use_data_plane_proto boolean flag in the ratelimit configuration. However, when using the deprecated client a warning is logged.
  • Use of the --v2-config-only flag.
  • Use of both use_websocket and websocket_config in route.proto is deprecated. Please use the new upgrade_configs in the HttpConnectionManager instead.
  • Use of the integer percent field in FaultDelay and in FaultAbort is deprecated in favor of the new FractionalPercent based percentage field.
  • Setting hosts via hosts field in Cluster is deprecated. Use load_assignment instead.
  • Use of response_headers_to_* and request_headers_to_add are deprecated at the RouteAction level. Please use the configuration options at the Route level.
  • Use of runtime in RouteMatch, found in route.proto. Set the runtime_fraction field instead.
  • Use of the string user field in Authenticated in rbac.proto is deprecated in favor of the new StringMatcher based principal_name field.

1.7.0 (Jun 21, 2018)

  • Admin mutations should be sent as POSTs rather than GETs. HTTP GETs will result in an error status code and will not have their intended effect. Prior to 1.7, GETs can be used for admin mutations, but a warning is logged.
  • Rate limit service configuration via the cluster_name field is deprecated. Use grpc_service instead.
  • gRPC service configuration via the cluster_names field in ApiConfigSource is deprecated. Use grpc_services instead. Prior to 1.7, a warning is logged.
  • Redis health checker configuration via the redis_health_check field in HealthCheck is deprecated. Use custom_health_check with name envoy.health_checkers.redis instead. Prior to 1.7, redis_health_check can be used, but warning is logged.
  • SAN is replaced by URI in the x-forwarded-client-cert header.
  • The endpoint field in the http health check filter is deprecated in favor of the headers field where one can specify HeaderMatch objects to match on.
  • The sni_domains field in the filter chain match was deprecated/renamed to server_names.

1.6.0 (March 20, 2018)

  • DOWNSTREAM_ADDRESS log formatter is deprecated. Use DOWNSTREAM_REMOTE_ADDRESS_WITHOUT_PORT instead.
  • CLIENT_IP header formatter is deprecated. Use DOWNSTREAM_REMOTE_ADDRESS_WITHOUT_PORT instead.
  • 'use_original_dst' field in the v2 LDS API is deprecated. Use listener filters and filter chain matching instead.
  • value and regex fields in the HeaderMatcher message is deprecated. Use the exact_match or regex_match oneof instead.

1.5.0 (Dec 4, 2017)

  • The outlier detection ejections_total stats counter has been deprecated and not replaced. Monitor the individual ejections_detected_* counters for the detectors of interest, or ejections_enforced_total for the total number of ejections that actually occurred.
  • The outlier detection ejections_consecutive_5xx stats counter has been deprecated in favour of ejections_detected_consecutive_5xx and ejections_enforced_consecutive_5xx.
  • The outlier detection ejections_success_rate stats counter has been deprecated in favour of ejections_detected_success_rate and ejections_enforced_success_rate.

1.4.0 (Aug 24, 2017)

  • Config option statsd_local_udp_port has been deprecated and has been replaced with statsd_udp_ip_address.
  • HttpFilterConfigFactory filter API has been deprecated in favor of NamedHttpFilterConfigFactory.
  • Config option http_codec_options has been deprecated and has been replaced with http2_settings.
  • The following log macros have been deprecated: log_trace, log_debug, conn_log, conn_log_info, conn_log_debug, conn_log_trace, stream_log, stream_log_info, stream_log_debug, stream_log_trace. For replacements, please see logger.h.
  • The connectionId() and ssl() callbacks of StreamFilterCallbacks have been deprecated and replaced with a more general connection() callback, which, when not returning a nullptr, can be used to get the connection id and SSL connection from the returned Connection object pointer.
  • The protobuf stub gRPC support via Grpc::RpcChannelImpl is now replaced with Grpc::AsyncClientImpl. This no longer uses protoc generated stubs but instead utilizes C++ template generation of the RPC stubs. Grpc::AsyncClientImpl supports streaming, in addition to the previous unary, RPCs.
  • The direction of network and HTTP filters in the configuration will be ignored from 1.4.0 and later removed from the configuration in the v2 APIs. Filter direction is now implied at the C++ type level. The type() methods on the NamedNetworkFilterConfigFactory and NamedHttpFilterConfigFactory interfaces have been removed to reflect this.