Skip to main content

Pantheon release notes

Your destination for staying informed about our latest innovations and product updates.
Subscribe to RSS feed
April 25, 2024

With the latest 1.4.0 release of the Pantheon MU Plugin, we have updated the default cache max-age used to one week. Previously, the default value was 10 minutes. This change is intended to improve the performance by increasingly the likelihood that an unexpired cached copy of a page is present within the CDN. Often such increases in max-age settings carry the risk that site visitors see stale content that should be replaced by newly published posts. Pantheon greatly mitigates this risk with The Pantheon Advanced Page Cache plugin. This plugin granularly clears cached responses using post IDs and other metadata. We highly recommend using the Pantheon Advanced Page Cache plugin to ensure that your site is performing optimally.

This change does not change the max age for existing sites that have already saved their max age (formerly displayed as TTL) value.

You can modify this new default value using a filter built into the MU Plugin. For more information refer to our WordPress Cache Plugin Configuration.

Included in this release are some changes to the Site Health page in the WordPress admin dashboard. We have removed recommended Site Health tests that were previously recommending things that were not possible on Pantheon's read-only filesystem and we have added new tests that check your Redis object cache configuration. If Redis is not enabled for a site, you will see a recommendation in the Site Health page, and you will see new recommendations if Redis is active but you are not using an object caching plugin like Object Cache Pro.

Finally, 1.4.0 adds a filter that allows you to skip cache control headers for specific requests. This is useful if you have a specific page that you do not want to cache. For more information refer to our GitHub repository documentation. Special thanks to Eric Caron for contributing the suggestion that became the pantheon_skip_cache_control filter.

April 24, 2024

The latest version of Solr Search for WordPress, version 2.5.3, became available as of April 24, 2024.

Highlights

  • Bug fixes: Fixed an issue identified by a user (offshorealert on WordPress.org) that prevented tax_query arguments from being parsed correctly by Solr.

You can upgrade to Solr Search for WordPress 2.5.3 from your WordPress dashboard on your Pantheon development environment to get this update.

April 24, 2024

Following our announcement of the New Relic PHP agent update on the platform, we are now recommending PHP 8.3 for WordPress & Drupal applications on the platform. PHP 8.1 and 8.2 are still marked as "recommended" as well because it is common for plugins and modules in the ecosystem of still have incompatibilities or other issues with newer versions of PHP.

Try out your site with a newer version of PHP by updating your pantheon.yml file in a Dev or Multidev environment. Depending on your application's usage of modules/plugins, you may want to wait for full compatibility of your software before upgrading to PHP 8.3. By spinning up a Multidev and testing your site with PHP 8.3, you can determine if your site is ready for the upgrade.

Drupal added support for PHP 8.3 with version 10.2. Drupal 11.0 also supports PHP 8.3. See the full Drupal PHP compatibility chart.

WordPress added "beta support" for PHP 8.3 with WordPress 6.4. See the full WordPress PHP compatibility chart.

April 17, 2024

Pantheon is updating our platform access control, requiring the use of SSH keys starting April 30, 2024. Connecting to and interacting with remote Pantheon environments via your Pantheon dashboard credentials will be disabled.

You'll still login to the Pantheon dashboard in the browser with your username/password or Single Sign-On, but connecting to and interacting with a given Pantheon site environment will require an SSH key.

This applies when connecting to Pantheon containers from the terminal (Git, SFTP, rsync, Drush, WP-CLI) as well as local applications like SFTP clients (Filezilla and Cyberduck).

We are making this change to maintain a secure and reliable platform. Learn how to configure your SFTP client with SSH keys in our documentation.

April 17, 2024

The Pantheon Customer Support page within the dashboard now supports the ability to search support tickets by both ticket ID number and subject line. You can locate the ticket you need and review updates from our support team easily.

April 16, 2024

On April 26th, 2024 Pantheon will begin consolidating the channels in our Community Slack instance and convert members to single-channel guests of the #general channel. All other public channels will be archived.

In many cases, the benefits of separate channels come with substantial and increasing monetary costs as well as downsides for participants. Pantheon is unique in our level of support for both WordPress and Drupal. We want a free-flowing exchange of ideas between those communities. Steering conversions to separate #wordpress and #drupal channels as we have in the past works against that benefit.

Some other channels have specific corresponding GitHub repositories that are suited to the tracking of complex topics or bug reports rather than discussion in the #general channel

  • Our Decoupled Kit repo which holds much of our integration code used to connect WordPress and Drupal to Next.js and Gatsby can track questions or bug reports that often surfaced in the #front-end-frameworks channel.
  • The #search channel often held discussion that corresponds to our Drupal module and WordPress plugin that provide search functionality.
  • The #secrets-management channel exists to discuss Pantheon's new Secrets Management functionality that is currently in Early Access and has a waiting list for more customers. In many instances, the issue queue for the Terminus plugin required to use this feature is the appropriate place to hold questions.

FAQs

What is Changing in Community Slack?

Pantheon will be consolidating the channels in Community Slack and transitioning all members to single-channel guests in the #general channel. All other public channels will be archived. This transition will be completed between April 26th and April 30th.

How Will This Change Alter the Experience for Existing Community Members?

Starting Tuesday, April 30th, all Community Slack Members will receive a notification that their account has been transitioned to a "single-channel guest" account. Community members do not need to take any action. Once this process is finalized, they will only be granted access to the #general channel in Community Slack.

When Can I Expect This Change to Take Place?

We'll post a final message in every channel on April 25th as a heads-up before we begin archiving channels. On April 26th, we'll begin the archiving process. At this time all channels will be archived except for #general.

Will the General Channel Become Too Noisy?

The #general channel is already the most active channel by far. We anticipate that this change will approximately double the volume of posts and threads in the #general channel. However, we don't foresee this increase overwhelming ongoing conversations, especially since discussions often occur within threads.

Will I Be Able to Search Through All of The Slack History?

After all community members have been transitioned to single-channel guests in the #general channel, they will have limited access, only able to search the history of that channel. However, Pantheon employees will retain access to conversations in archived channels and can access that history as needed.

Will I Still Have the Ability to Send Direct Messages to Other Members?

Yes, you'll still be able to send direct messages to other users within Community Slack.

Given There Is No Longer a Dedicated Channel for Submitting Product Feedback and Feature Requests, Where Do I Submit This?

We welcome all product feedback and suggestions! Please continue to share those with our team in the #general channel, and we will make sure your feedback gets passed along to the appropriate teams. As always, if you see product feedback you like, give it a thumbs up! This helps us gauge the demand for specific products or features.

Additionally, we'll explore automations and integrations to ensure that threads discussing specific topics, such as product feedback, are comprehensively captured with minimal effort.

Will There Be Guidelines or Best Practices for Using the Consolidated Channel Effectively?

To maintain organization within the consolidated Slack channel, we encourage the use of threaded conversations to keep discussions organized. Our team will continue to monitor this channel regularly to ensure discussions stay on topic and address any issues promptly. In the near future, we will look into leveraging automations and integrations to streamline processes and ensure that relevant information is captured and organized efficiently.

If My Question Goes Unanswered in Slack, Where Else Can I Seek Additional Support?

We are committed to supporting you every step of the way! Join us for Office Hours every Wednesday at 2 pm ET / 11 am PT, where one of our Pantheon experts will be available to assist you with any questions you may have. If there's a particular topic you're eager to learn more about let us know, and we'll arrange a Topic-specific Zoom Office Hours session.We believe that scheduling video calls for topics such as Terminus or Upstreams will enable us to share the expertise of power users more effectively. To request topic-specific office hours, simply email us at community@pantheon.io.

For urgent issues, please open a chat or submit a support ticket.

How Will Conversations Cross-Link Between Slack and Other Places Like Github?

While there are several automated tools we are considering, Pantheon staff will first proactively monitor discussions in the consolidated #general channel, and when appropriate, find or create relevant issues in GitHub repos or elsewhere and share those links in discussion threads. When the topic of discussion is a bug or a feature request related to an open source tool, our product and engineering team can more effectively respond to issues and tickets than they can to one or more Slack threads.

Will There Be Opportunities for Feedback or Suggestions Regarding the Consolidated Channel?

Absolutely! As we look to improve the functionality and experience here in Community Slack we welcome all feedback and suggestions. You can share your thoughts with our team by emailing community@pantheon.io or by attending regularly scheduled Office Hours on Zoom (Wednesday at 2 pm ET / 11 am PT)

Have you considered other tools like Discord or GitHub Discussions?

As we have reviewed the norms among similar companies and communities we have seen a few changes since our Pantheon Community Slack was created in 2016. First, we remember that the creation of our Community Slack in 2016 very quickly drew the attention and activity that had previously gone into our "Power Users Google Group," which generated many messages every day in the pre-Slack era.

Pantheon Community Slack has been a vibrant space because practically everyone there was already in other Slacks. That does not appear to be true for Discord. While Discord's functionality overlaps heavily with Slack, the population of users does not. The social norms of the larger communities we operate in (web development agencies, WordPress, Drupal, Higher Education) meant that a very high percentage of Pantheon users were already in at least one Slack workspace (if not a dozen). We could expect people to join another workspace in the Slack app they already had installed on their computers. We wouldn't expect traction asking people to download a new app like Discord for the first time.

On the other hand, many of our most active community members do have GitHub accounts. For the immediate future, we are steering discussions toward GitHub's long-standing convention of Issues which are meant for tracking specific topics that often lead to specific changes within a specific code repository.

In the years since we at Pantheon developed many of our tools and practices, GitHub has added more community-centric tools like Discussions for conversations that may not start with the specificity implied by Issues. We see many of our peer companies using GitHub Discussions and will evaluate if and how Pantheon could leverage this tool to more effectively serve our community.

April 15, 2024

An update is now available for the WordPress (Composer Managed) upstream to resolve a particular log message that started appearing after our WP-CLI wrapper update in February.

This update adds a new file to the /config directory, application.pantheon.php. In order to accomodate this new file, a line has been added to config/application.php to load the config/application.pantheon.php file. If you have made modifications to your config/application.php, it's possible you may run into conflicts with this update. If this is the case, you can manually resolve by running the following command:

For more help or assistance about managing potential merge conflicts, refer to our documentation on auto-resolving via the dashboard or manually resolving via the command line.

Technical Details

The application.pantheon.php file curently contains code to check for a defined WP_HOME value in the site's .env file. If the value is undefined or no .env file is being used, values for WP_HOME and WP_SITEURL are defined. This can be overridden by either adding values to the site's .env file or adding putenv( 'WP_HOME=https://example.com' ); and putenv( 'WP_SITEURL=https://example.com' ); to your application.php file.

Why the change?

Roots Bedrock makes heavy use of environment variables. We made an intentional decision to not rely on .env files in order to reduce overall complexity. This left WP_HOME and WP_SITEURL undefined in the application.php file except in local development with Lando. In most cases, WordPress is intelligent enough to use the database values for home and siteurl for normal interactions, however, this caused problems with WP-CLI operations. The addition of a new application.pantheon.php file allows us to define those values if they are not already while still allowing them to be overridden for more complex environments.

April 15, 2024

PHP 8.1.28, 8.2.18, and 8.3.6 were released on the platform. They contain the latest bug fixes and security releases for PHP.

Updates include patches for the following CVEs ( Common Vulnerabilities and Exposures):

  • CVE-2024-1874 "Command injection via array-ish $command parameter of proc_open even if bypass_shell option enabled on Windows"
  • CVE-2024-2756 "__Host-/__Secure- cookie bypass due to partial CVE-2022-31629 fix"
  • CVE-2024-3096 "password_verify can erroneously return true, opening ATO risk"
  • CVE-2024-2757 "mb_encode_mimeheader runs endlessly for some inputs" (PHP 8.3 only)

As a reminder, PHP 8.0 reached End-of-Life on 26 November 2023. For the best performance and security, Pantheon recommends running PHP 8.2 and above.