paulrutter commented on PR #433: URL: https://github.com/apache/felix-dev/pull/433#issuecomment-6033036698
## Artifacts that would need releasing If this PR and #552 both land, these are the modules with production code changes. All versions are bumped in the branch. | artifact | released today | would release | |---|---|---| | `org.apache.felix.framework` | 7.0.5 | **8.0.0** | | `org.apache.felix.main` | 7.0.5 | **8.0.0** | | `org.apache.felix.scr` | 2.2.18 | **2.3.0** | | `org.apache.felix.webconsole` | 5.0.18 | **5.1.0** | | `org.apache.felix.gogo.runtime` | 1.1.6 | **1.2.0** | | `org.apache.felix.configadmin` | 1.9.26 | **1.10.0** | `framework` and `main` go major because the execution environment changes — `Require-Capability: osgi.ee` moves from `JavaSE 1.8` to `JavaSE 11` — and the OSGi security layer is removed. The rest are minor: code changes, no removed API. `configadmin` is minor rather than patch because `UpdateThread.terminate()` replaces `Thread.stop()` (which has thrown `UnsupportedOperationException` since Java 20) with `interrupt()`, so shutdown behaviour changes; and `ConfigAdminSecurityTest` is now excluded above JDK 17, since it sets `org.osgi.framework.security` and so needs `-Djava.security.manager=allow`, which is itself a fatal startup error from Java 24 on ([JEP 486](https://openjdk.org/jeps/486)). The changed class is in the non-exported `org.apache.felix.cm.impl`, so no exported API moves. **`org.apache.felix.framework.security` is deleted, not released.** It is a currently published artifact that would cease to exist — worth calling out explicitly in a release vote. ### Changed but deliberately not released - `framework.tck` — `tck.bndrun` only; not a published artifact - `http/jetty`, `http/jetty12` — test-only (`AbstractJettyTestSupport`) - `bundlerepository`, `connect`, `resolver`, `log.extension`, `examples/*`, `gogo/jline`, `gogo-parent`, remaining `http/*` — pom-only parent and plugin fixes so the modules build on a current JDK, no code change ### On plurl #552 vendors the plurl sources under `org.apache.felix.framework.plurl` because plurl is not on Maven Central yet (no tags, no releases upstream). The package is private, so once a release appears it becomes a `provided` dependency embedded with `Private-Package` — invisible outside the bundle, and no re-release needed on that account. -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. To unsubscribe, e-mail: [email protected] For queries about this service, please contact Infrastructure at: [email protected]
