Release notes — 1.1.0
Released 2026-07-22 with DNS Conduit 1.1.0.
Client ACLs and CIDR data sources
- Optional top-level
acls:and per-listeneracls:(omit = inherit / admit-all) for host-managed client IP allow/deny/tag using named CIDR views — see Client ACLs. data_sourcestype: cidr(IPv4 + IPv6 longest-prefix) with Rhailookup_ipand rules selectorclient_cidr.- Built-in
conduit_acl_decisions_total(Prometheus + OTLP) and optionallogging.query_accessACL denial levels / sampling. conduitctl acl check(live viaCheckAcl, or offline--file) dry-runs effective ACL policy for an IP as pretty JSON — no metrics or denial-log side effects.- Documentation:
data_sources:config, CSV / CIDR file formats, and load-safety limits now have a dedicated Data sources page shared by ACLs and Rhai; the Rhai Lookups page now focuses on thelookup()/lookup_ip()calling surface.
All changes in this release (automated pull request list).