PUQ Mautic

00. Changelog

v2.3.0 — September 2026

Major release — AmneziaWG anti-censorship stealth WireGuard protocol, strict protocol package validation, reactive multi-tab network interface, and expanded REST API.


AmneziaWG Protocol Support (Anti-Censorship & DPI Bypass)

Full integration of AmneziaWG — a modified WireGuard protocol engineered to evade Deep Packet Inspection (DPI) and strict firewall censorship:


Protocol Package Validation & Safety

Prevents enabling VPN protocols whose underlying system packages are not installed:


Reactive Multi-Tab Network Interface

Seamless AJAX experience when managing networks with multiple VPN protocols:


REST API & OpenAPI 3.0.3 Expansion



v2.1.1 — March 2026

Patch release — client bandwidth fix and OpenVPN session stability improvements.


Client Bandwidth Fix

Fixed an issue where per-client bandwidth limits were ignored during client creation:


OpenVPN Session Stability

Client operations (add, edit, delete) no longer restart the OpenVPN server, preserving all active sessions:


Documentation



v2.1.0 — March 2026

Feature release — DNS-based ad blocking for all VPN clients, plus stability improvements.


DNS Ad Blocking

Built-in ad and tracker blocking via bind9 Response Policy Zone (RPZ):

Metric Value
Default blocked domains ~130,000+
With all lists enabled ~250,000+
Update frequency Every 24 hours
Supported formats hosts, domain-per-line, wildcard, adblock filter

New API endpoints:

Method Endpoint Description
GET /dns/adblock Get ad blocking configuration
PUT /dns/adblock Enable/disable, toggle lists
POST /dns/adblock/update Force update block lists
POST /dns/adblock/lists Add custom block list
DELETE /dns/adblock/lists/{name} Delete custom list
GET /dns/adblock/whitelist List whitelisted domains
POST /dns/adblock/whitelist Add domain to whitelist
DELETE /dns/adblock/whitelist/{name} Remove from whitelist

DNS Page Redesign

The DNS configuration page now uses a tabbed layout:


OpenVPN Startup Fix

Fixed a race condition where OpenVPN clients could lose internet connectivity after server restart:


Other Improvements



v2.0.0 — March 2026

Major release — complete rewrite with new architecture, third VPN protocol, and dozens of new features.


New Architecture: Network → Client → Protocol

The core data model has been redesigned from the ground up:

This architecture allows running multiple isolated VPN networks on a single server, each with completely different configurations.


OpenVPN Support

PUQVPNCP now supports three VPN protocols simultaneously:

Protocol New in v2.0
WireGuard Updated — now per-network
OpenVPN New — full support with PKI, certificates, custom config
IKEv2/IPsec Updated — now per-network

OpenVPN features include:


Upstream WireGuard Tunnels

Route network traffic through external WireGuard VPN servers:


Diagnostics & Environment Integrity

New real-time diagnostics system for monitoring server health:


Per-Network Firewall

Each network now has its own firewall chain set:


Role-Based Access Control (RBAC)

Fine-grained permission system replacing the old single-admin model:


Traffic Control & Bandwidth

Per-network and per-client bandwidth management:


Network Peering

Allow communication between VPN networks on the same server:


Self-service configuration links for all three protocols:


REST API Expansion

The API has been completely rewritten and expanded:

Metric v1.x v2.0
Endpoints ~30 148+
Documentation None OpenAPI 3.0
Authentication Single hash Bearer tokens + RBAC
Swagger UI No Yes (/api_docs)

New API areas: Networks, Clients, OpenVPN, Upstreams, Peering, Firewall, Diagnostics, Permission Groups, System Users, Profile management.


UI & Theme


Other Improvements


Migration from v1.x

PUQVPNCP v2.0 is a ground-up rewrite and is not directly upgradeable from v1.x. Key differences:

Aspect v1.x v2.0
Architecture Account → WireGuard Server Network → Client → Protocol
Protocols WireGuard + IKEv2 WireGuard + OpenVPN + IKEv2
Auth Single admin + API hash Multi-user + RBAC + API tokens
Firewall Global rules Per-network chains
API ~30 endpoints, no docs 148+ endpoints, OpenAPI 3.0
UI jQuery + page reloads Bootstrap 5 + AJAX

For migration assistance, see Troubleshooting or contact PUQ Support.



Revision #26
Created 23 November 2022 07:14:48 by Ruslan
Updated 28 September 2026 18:58:30 by Ruslan