Just one little bit about 0.7.2:
since this release masquerading is off by default for IPv6. To get back to the old behaviour you have to manually insert one rich rule in the external zone:
firewall-cmd --permanent --zone=external --add-rich-rule="rule family=ipv6 masquerade"
…that actually cost me about one day to realize that this was the root cause of my network troubles after upgrading my firewall from 15.0 to 15.1…