What shipped in each version is in the
release notes; this is what's ahead.
v0.0.4 — candidates
Bridged guest networking: a Linux host puts its guests on the operator's
own network — taps on a named bridge, the site's DHCP addresses the guests,
the agent discovers the result
Public gateway: route inbound traffic to guest services through eitri,
building on published ports
A PAT is enough: an opt-in eitri-managed tenant CA signs short-lived SSH
certificates, so a bare token can reach its VMs—BYO CAs stay first-class,
and a tenant that wants eitri holding no signing power keeps that
Remote MCP: a hosted endpoint (api.eitri.sh/mcp) any client can connect
to—streamable HTTP, per-tenant auth, TLS at the edge; its identity story
is the managed tenant CA above