Skip to content

v0.5.5

Choose a tag to compare

@github-actions github-actions released this 30 Sep 09:53
· 4 commits to main since this release

What changed

Fixed

  • An acknowledgement address with no port is now called out, with the
    fix.
    With web.ack_base_url set to http:// plus a name and no port,
    every Acknowledge button and link goes to port 80. If acknowledgements are
    answered somewhere else, such as an ack-only listener on port 50001, not
    one of them works. Nothing said so: each setting looked right on its own,
    and Setup marked the step as close to done. Found on a real site by the new
    channel test, as a phone that could not connect.

    Setup now marks the step as to-do and gives the address to set, port
    included. The same sentence is printed at every start, and pressing Send
    a test
    on a channel shows it at once, instead of fifteen minutes of a
    button that times out. https:// addresses with no port are left alone,
    because that is port 443 with a TLS proxy in front, which is the
    recommended setup. So is an address with a port typed on purpose.

Verifying this release

Every binary is signed. Verification instructions, including how to
rebuild from source and compare hashes, are in
docs/RELEASING.md.

Linux / macOS — cosign (keyless, no key to trust in advance):

cosign verify-blob notifymatrix-linux-amd64 \
  --bundle notifymatrix-linux-amd64.sigstore.json \
  --certificate-identity-regexp '^https://github\.com/suburbazine/Unifi-Notification-Matrix/' \
  --certificate-oidc-issuer https://token.actions.githubusercontent.com

Download the .sigstore.json next to the binary; it carries the
signature, the certificate and the transparency-log proof. Keep
--certificate-identity-regexp — without it cosign verifies a
signature from anyone.

Build provenance (any platform):

gh attestation verify notifymatrix-linux-amd64 --repo suburbazine/Unifi-Notification-Matrix

Windows: the .exe is Authenticode-signed and timestamped.
Right-click → Properties → Digital Signatures, or:

Get-AuthenticodeSignature .\notifymatrix-windows-amd64.exe

This is source-available software under the
PolyForm Noncommercial License 1.0.0. Commercial use
requires a licence: licensing@xtremission.com

Full Changelog: v0.5.4...v0.5.5