| Commit message (Collapse) | Author | Age | Files | Lines |
| |
|
| |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
several important fixes, including a remote (although unlikely) exploit.
See the CHANGES file for details.
All users of BIND 9 are highly encouraged to upgrade to this version.
Changes to the port include:
1. Remove ISC patch to 9.3.0 that addressed the remote exploit
2. Change to OPTIONS, and thereby
3. --enable-threads is now the default. Users report that the new thread
code in 9.3.x works significantly better than the old on all versions of
FreeBSD.
4. Add a temporary shim for the old PORT_REPLACES_BASE_BIND9 option.
The OPTIONS framework requires knobs to start with WITH_ or WITHOUT_
5. Remove patch that shoehorned named.conf.5 into the right place,
it has been fixed in the code.
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
Name: BIND: Self Check Failing [Added 2005.25.01]
Versions affected: BIND 9.3.0
Severity: LOW
Exploitable: Remotely
Type: Denial of Service
Description:
An incorrect assumption in the validator (authvalidated) can result in a
REQUIRE (internal consistancy) test failing and named exiting.
Workarounds:
Turn off dnssec validation (off by default) at the options/view level.
dnssec-enable no;
Active Exploits: None known
Bump PORTREVISION accordingly.
It should be noted that the vast majority of users would not have
DNSSEC enabled, and therefore are not vulnerable to this bug.
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
significant updates, not the least of which is the new and improved
DNSSEC code based on the latest standards (including DS).
Various updates to the port, including:
1. Download the PGP signature
2. If running on ${OSVERSION} >= 503000, configure with threads
3. Update pkg-descr re IPv6 RRs
4. Update pkg-message to reflect a world with 6-current
There is also a patch to correct a man page installation error.
This problem should be fixed in the next release.
Approved by: portmgr (marcus)
|
| |
|
| |
|
|
|
|
|
|
|
|
| |
The 9.2.3 code has many many bugs fixed from 9.2.2, check CHANGES
for more information.
The rc4 code has the delegation-only options. Check the ARM for
information on how to enable it.
|
|
|
|
|
|
|
| |
new features compared to 9.2.1, only bug fixes. Users of BIND 9 are
highly encouraged to upgrade.
* Switch to Makefile COMMENT
|
|
|
|
|
|
|
|
|
| |
is widely considered to be more stable than 9.2.1. I would have preferred
a -REL version, but better is better.
* Clean up the Makefile a little
* Just say no to threads
* Add the PORT_REPLACES_BASE magic, similar to the bind8 port
|
| |
|
|
|
|
| |
see /usr/local/share/doc/bind9/CHANGES after installation for details.
|
|
|
|
|
|
|
|
|
|
| |
are fixed in this version, however BIND 9 is still recommended only
for early adopters, and those that have time to closely monitor
their name service.
* Change PORTNAME to bind9 so that 'pkg_add -r bind' does the right thing
* Use the local version of openssl, and disable threads on all but
the most recent -current. Thread support is still considered experimental.
|
| |
|
|
|
|
| |
some IXFR problems.
|
|
|
|
|
| |
it is highly recommended that all users of BIND 9 upgrade to this
maintenance release.
|
|
|
|
| |
bind 9, upgrade to this version.
|
| |
|
| |
|
| |
|
| |
|
| |
|
| |
|
|
|
|
| |
use BIND 9 this upgrade is highly recommended.
|
|
|
|
| |
Requested by: Joong Hyun Kim <better@ns1.betterbox.net>
|
|
|
|
|
| |
PR: ports/22941
Submitted by: Leif Neland, leifn@neland.dk
|
|
|
|
|
|
| |
of other neat things like that. Sorry for the delay.
Repo-copy by: asami
|
|
|
|
|
| |
The history is safe, so just "cvs add" the files back when bind9 is
ready to be committed.
|
| |
|
|
|
|
|
| |
Many people submitted patches for this one, and a combination of them
were used.
|
|
|
|
|
| |
Submitted by: ust@cert.siemens.de
PR: ports/12875
|
|
|
|
| |
Requested By: a bazillion people both on mailing lists and #FreeBSD.
|
| |
|
|
|
|
| |
PR: ports/11784
|
|
|
|
|
| |
Submitted by: Brad Hendrickse <bradh@uunet.co.za>
PR: ports/10861
|
|
|
|
| |
Submitted by: Studded@dal.net
|
|
PR: ports/4118
|