Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | main/bind: upgrade to 9.11.1_p2 | Natanael Copa | 2017-07-06 | 1 | -2/+2 |
| | |||||
* | main/bind: security upgrade to 9.11.1_p1 (CVE-2017-3140) | Natanael Copa | 2017-06-16 | 1 | -2/+2 |
| | | | | fixes #7437 | ||||
* | main/bind: upgrade to 9.11.1 | Natanael Copa | 2017-06-14 | 1 | -3/+3 |
| | |||||
* | main/bind: rebuild against libressl 2.5 | Natanael Copa | 2017-04-18 | 1 | -1/+1 |
| | |||||
* | main/bind: security upgrade to 9.11.0_p5 - fixes #7141 | Sergey Lukin | 2017-04-14 | 1 | -2/+6 |
| | | | | | | CVE-2017-3136: An error handling synthesized records could cause an assertion failure when using DNS64 with "break-dnssec yes;" CVE-2017-3137: A response packet can cause a resolver to terminate when processing an answer containing a CNAME or DNAME CVE-2017-3138: named exits with a REQUIRE assertion failure if it receives a null command string on its control channel | ||||
* | main/bind: security upgrade to 9.11.0_p3 (CVE-2017-3135) | Natanael Copa | 2017-02-09 | 1 | -21/+3 |
| | | | | fixes #6828 | ||||
* | main/bind: dont create homedir for bind user | Natanael Copa | 2017-01-24 | 1 | -1/+1 |
| | | | | | We dont want copy the content of /etc/skel to /etc/bind ref #6725 | ||||
* | main/bind: Upgrade to 9.11.0-P2. | Przemyslaw Pawelczyk | 2017-01-17 | 1 | -4/+4 |
| | | | | | | | | | | | | | | https://www.isc.org/downloads/bind/bind-9-11-new-features/ https://deepthought.isc.org/article/AA-01446/0/BIND-9.11.0-P2-Release-Notes.html https://kb.isc.org/article/AA-00913/74/BIND-9-Security-Vulnerability-Matrix.html Release notes mention addressing issue described in: CVE-2016-9778: An error handling certain queries using the nxdomain-redirect feature could cause a REQUIRE assertion failure in db.c but it's not present in 9.10.x, so it's not a security upgrade. | ||||
* | main/bind: security upgrade to 9.10.4_p5 - fixes #6675 | Sergei Lukin | 2017-01-13 | 1 | -8/+15 |
| | | | | | | CVE-2016-9131: A malformed response to an ANY query can cause an assertion failure during recursion CVE-2016-9147: An error handling a query response containing inconsistent DNSSEC information could cause an assertion failure CVE-2016-9444: An unusually-formed DS record response could cause an assertion failure | ||||
* | main/bind: security upgrade to 9.10.4_p4 (CVE-2016-8864) | Natanael Copa | 2016-11-02 | 1 | -5/+5 |
| | |||||
* | main/bind: rebuild against libressl | Natanael Copa | 2016-10-10 | 1 | -2/+2 |
| | |||||
* | main/bind: security upgrade to 9.10.4_p3 (CVE-2016-2776) | Natanael Copa | 2016-09-28 | 1 | -4/+4 |
| | | | | fixes #6223 | ||||
* | main/bind: security upgrade to 9.10.4_p2 (CVE-2016-2775) | Natanael Copa | 2016-07-25 | 1 | -5/+5 |
| | | | | fixes #5951 | ||||
* | main/bind: rebuild with libxml2. Fixes #5711 | Francesco Colista | 2016-06-27 | 1 | -3/+3 |
| | |||||
* | main/bind: upgrade to 9.10.4_p1 | Natanael Copa | 2016-05-27 | 1 | -5/+5 |
| | |||||
* | main/bind: upgrade to 9.10.4 | Natanael Copa | 2016-05-16 | 1 | -5/+5 |
| | |||||
* | main/[various]: bump pkgrel for pre-install fixes | Przemyslaw Pawelczyk | 2016-04-25 | 1 | -1/+1 |
| | |||||
* | main/bind: security upgrade to 9.10.3_p4 ↵ | Natanael Copa | 2016-03-10 | 1 | -5/+5 |
| | | | | | | (CVE-2016-1285,CVE-2016-1286,CVE-2016-2088) fixes #5243 | ||||
* | main/bind: remove /var/log/named | Kaarle Ritvanen | 2016-02-04 | 1 | -2/+1 |
| | | | | not used by default configuration | ||||
* | main/bind: security upgrade to 9.10.3_p3 (CVE-2015-8704,CVE-2015-8705) | Natanael Copa | 2016-01-20 | 1 | -4/+4 |
| | |||||
* | main/bind: security upgrade to 9.10.3_p2 (CVE-2015-8461,CVE-2015-8000) | Natanael Copa | 2015-12-16 | 1 | -5/+5 |
| | | | | fixes #4956 | ||||
* | main/bind: move dnssec to -tools subpackage | Sören Tempel | 2015-11-16 | 1 | -7/+21 |
| | |||||
* | main/bind: upgrade to 9.10.3 | Natanael Copa | 2015-09-17 | 1 | -4/+4 |
| | |||||
* | Do not delete *.la files manually | Bartłomiej Piotrowski | 2015-09-10 | 1 | -1/+0 |
| | | | | | Since abuild v2.22.0, these are removed automatically unless 'libtool' option has been specified. | ||||
* | main/bind: upgrade to 9.10.2_p4 | Natanael Copa | 2015-09-07 | 1 | -5/+5 |
| | |||||
* | main/bind: user libcap for capabilities | Natanael Copa | 2015-08-13 | 1 | -2/+2 |
| | |||||
* | main/bind: upgrade to 9.10.2_p3 | Natanael Copa | 2015-07-29 | 1 | -4/+4 |
| | |||||
* | main/bind: security upgrade to 9.10.2_p2 (CVE-2015-4620) | Natanael Copa | 2015-07-08 | 1 | -5/+5 |
| | |||||
* | main/bind: enable caps | Natanael Copa | 2015-06-23 | 1 | -2/+2 |
| | | | | | | | | | Neeed for -u option with multithread: named: -u with Linux threads not supported: no capabilities support or capabilities disabled at build time ref #4281 | ||||
* | main/bind: upgrade to 9.10.2_p1 | Natanael Copa | 2015-06-12 | 1 | -5/+5 |
| | |||||
* | main/*: replace all sbin/runscript with sbin/openrc-run | Natanael Copa | 2015-04-28 | 1 | -4/+4 |
| | |||||
* | main/bind: upgrade to 9.10.2 | Natanael Copa | 2015-03-11 | 1 | -5/+5 |
| | |||||
* | main/bind: enable threads | Natanael Copa | 2015-03-11 | 1 | -2/+2 |
| | |||||
* | main/bind: enable filter AAAA | Natanael Copa | 2015-03-11 | 1 | -1/+2 |
| | | | | ref #3955 | ||||
* | main/bind: upgrade to 9.10.1_p2 | Carlo Landmeter | 2015-02-23 | 1 | -5/+5 |
| | |||||
* | main/bind: upgrade to 9.10.1_p1 | Natanael Copa | 2014-12-09 | 1 | -5/+5 |
| | |||||
* | main/bind: rebuild against krb5-1.13 | Natanael Copa | 2014-11-10 | 1 | -1/+1 |
| | |||||
* | bind: Modify default config to be more secure | Hugo Landau | 2014-10-16 | 1 | -10/+16 |
| | | | | | | | | | | | | | | | | | | | | | By default BIND will happily serve as both an authoritative nameserver and recursive resolver, but this is no longer a recommended or desirable configuration. The previous default configuration did not draw attention to this fact and the issues involved. Users are now made to rename one of two sample configuration files, named.conf.authoritative or named.conf.recursive. Comments inside either file advise DNS administrators of the most prevalent security issues. This ensures that users setting up an authoritative nameserver do not unwittingly also operate a resolver. In the previous default configuration, BIND would happily perform recursive resolution for localhost, which means that the local machine may receive non-authoritative data from what is supposed to be an authoritative nameserver. Both default configurations disable zone transfers by default, as BIND defaults to enabling them for any host (!). | ||||
* | main/bind: upgrade to 9.10.1 | Natanael Copa | 2014-09-23 | 1 | -5/+5 |
| | |||||
* | main/bind: remove duplicate depend function | Natanael Copa | 2014-06-19 | 1 | -4/+4 |
| | |||||
* | main/bind: upgrade to 9.10.0_p2 | Natanael Copa | 2014-06-12 | 1 | -4/+4 |
| | |||||
* | main/bind: upgrade to 9.10.0_p1 | Natanael Copa | 2014-05-22 | 1 | -4/+4 |
| | |||||
* | main/bind: upgrade to 9.10.0 | Natanael Copa | 2014-05-01 | 1 | -4/+4 |
| | |||||
* | main/bind: upgrade to 9.9.5 | Natanael Copa | 2014-02-03 | 1 | -4/+4 |
| | |||||
* | main/bind: security upgrade to 9.9.4_p2 (CVE-2014-0591) | Natanael Copa | 2014-01-15 | 1 | -5/+5 |
| | | | | ref #2604 | ||||
* | main/bind: specify license | Fabian Affolter | 2013-12-03 | 1 | -8/+7 |
| | |||||
* | main/bind: upgrade to 9.9.4_p1 | Natanael Copa | 2013-11-07 | 1 | -4/+4 |
| | |||||
* | main/bind: upgrade to 9.9.4 | Natanael Copa | 2013-09-24 | 1 | -5/+5 |
| | |||||
* | main/bind: use /sbin/nologin as shell | Natanael Copa | 2013-09-04 | 1 | -1/+1 |
| | |||||
* | main/bind: use /sbin/nologin as shell | Natanael Copa | 2013-09-03 | 1 | -1/+1 |
| |