Revisions of bind

buildservice-autocommit accepted request 861029 from Josef Möllers's avatar Josef Möllers (jmoellers) (revision 307)
baserev update by copy to link target
Josef Möllers's avatar Josef Möllers (jmoellers) accepted request 859291 from Dirk Mueller's avatar Dirk Mueller (dirkmueller) (revision 306)
- update to 9.16.10:
  New Features:
  * NSEC3 support was added to KASP. A new option for dnssec-policy,
  nsec3param, can be used to set the desired NSEC3 parameters. NSEC3 salt
  collisions are automatically prevented during resalting. [GL #1620]
  * A new configuration option, stale-refresh-time, has been introduced. It allows
  a stale RRset to be served directly from cache for a period of time after a
  failed lookup, before a new attempt to refresh it is made. [GL #2066]
  Feature Changes:
  * The default value of max-recursion-queries was increased from 75 to 100.
  Since the queries sent towards root and TLD servers are now included in the
  count (as a result of the fix for CVE-2020-8616), max-recursion-queries has
  a higher chance of being exceeded by non-attack queries, which is the main
  reason for increasing its default value. [GL #2305]
  The default value of nocookie-udp-size was restored back to 4096 bytes. Since
  max-udp-size is the upper bound for nocookie-udp-size, this change relieves the
  operator from having to change nocookie-udp-size together with max-udp-size in
  order to increase the default EDNS buffer size limit. nocookie-udp-size can
  still be set to a value lower than max-udp-size, if desired. [GL #2250]
  Bug Fixes:
  Handling of missing DNS COOKIE responses over UDP was tightened by falling
  back to TCP. [GL #2275]
  The CNAME synthesized from a DNAME was incorrectly followed when the QTYPE was
  CNAME or ANY. [GL #2280]
  Building with native PKCS#11 support for AEP Keyper has been broken since BIND
  9.16.6. This has been fixed. [GL #2315]
  named could crash with an assertion failure if a TCP connection were closed
  while a request was still being processed. [GL #2227]
  named acting as a resolver could incorrectly treat signed zones with no DS
  record at the parent as bogus. Such zones should be treated as insecure. This
buildservice-autocommit accepted request 853298 from Marcus Meissner's avatar Marcus Meissner (msmeissn) (revision 305)
baserev update by copy to link target
buildservice-autocommit accepted request 843228 from Josef Möllers's avatar Josef Möllers (jmoellers) (revision 303)
baserev update by copy to link target
buildservice-autocommit accepted request 835837 from Josef Möllers's avatar Josef Möllers (jmoellers) (revision 301)
baserev update by copy to link target
Reinhard Max's avatar Reinhard Max (rmax) committed (revision 297)
- Put libns into a separate subpackage to avoid file conflicts
  in the libisc subpackage due to different sonums (bsc#1176092).
buildservice-autocommit accepted request 830242 from Reinhard Max's avatar Reinhard Max (rmax) (revision 296)
baserev update by copy to link target
Reinhard Max's avatar Reinhard Max (rmax) accepted request 830239 from Dominique Leuenberger's avatar Dominique Leuenberger (dimstar) (revision 295)
- Require /sbin/start_daemon: both init scripts, the one used in
  systemd context as well as legacy sysv, make use of start_daemon.
buildservice-autocommit accepted request 827215 from Josef Möllers's avatar Josef Möllers (jmoellers) (revision 293)
baserev update by copy to link target
buildservice-autocommit accepted request 822229 from Josef Möllers's avatar Josef Möllers (jmoellers) (revision 291)
baserev update by copy to link target
Displaying revisions 81 - 100 of 388
openSUSE Build Service is sponsored by