diff --git a/bind-9.20.2.tar.xz b/bind-9.20.2.tar.xz deleted file mode 100644 index 8256b6b..0000000 --- a/bind-9.20.2.tar.xz +++ /dev/null @@ -1,3 +0,0 @@ -version https://git-lfs.github.com/spec/v1 -oid sha256:a31dba2aaa1b371902dd0474eb3963f47b7ffed2bd9ece7da4834e23210d6067 -size 5865060 diff --git a/bind-9.20.2.tar.xz.asc b/bind-9.20.2.tar.xz.asc deleted file mode 100644 index 9b7f05d..0000000 --- a/bind-9.20.2.tar.xz.asc +++ /dev/null @@ -1,16 +0,0 @@ ------BEGIN PGP SIGNATURE----- - -iQIzBAABCgAdFiEE2ZzOr4eXRwFPA41jGC4jV5Ri76oFAmbgCJsACgkQGC4jV5Ri -76qSZxAAk5KO9HWrXNVyJyzlCm2Menw76TH1l1UlG+lb7FuCON7kQQxk08z+UwfK -VCKBcErL0Fw8bIgcL6J8Z18cu0GBigPFIeUz8o+AlebbqRA/Jww2ww8/MnqhGuEJ -arFZbjX3tJl9CnCwSYiKxJE0BM0mUuiqYMYbdSZf5ETQ7s+7fkzZcsb3gCnLJLLz -SHtzavzxPGT3+DhXAnJFY8i8Lu9CsOcy6+MCYjQpXcOPG3IU73B9yj9ttBZuoErF -gyH8MCfAWxmkKBv2fK2CB71qhoVyl8lulK1U+223Nmp8DQ/CCMvC6sGPcn/TIZlL -ah8KKjW7p9AuVXFYWrXvNFG5nBs4HfZ1pyo22c3nAnG4Y99alPozq5SYJmQpVsRG -/LOJNsjdLO9XKDq/lvyLs1d6wZjIZenPrzeAmLcN+Dtu1+KWT3inbXCrFKR9hffa -bvG12KK4jVaO7nUHybOo/RXL5x0T1YYIL9JkMwVEnARC0K7txkR5ukRTKnM0dOqq -i99JZdqpJEP+3Ormgvn+Z4WW+WT6+xhMG/F7B5TH1cIJKrz8O7rFyg+nZzLd4C8l -8UivpXFwzl6MHots8aAcBrKZxOqBq6ncJXKsLqasWJLUYvmH8dQ3kgj6VenzMCVH -yQJg+UMxCcbrekVE8zhIe61FAYpOJfWhk0kWEiq7H0smWnfe86Y= -=p5Z3 ------END PGP SIGNATURE----- diff --git a/bind-9.20.3.tar.xz b/bind-9.20.3.tar.xz new file mode 100644 index 0000000..06a4568 --- /dev/null +++ b/bind-9.20.3.tar.xz @@ -0,0 +1,3 @@ +version https://git-lfs.github.com/spec/v1 +oid sha256:f90c2da1621299f56a2e6585a6fe459ec3efd6f2fdf84a8fbf31b40be7698a73 +size 5664328 diff --git a/bind-9.20.3.tar.xz.asc b/bind-9.20.3.tar.xz.asc new file mode 100644 index 0000000..c90bc90 --- /dev/null +++ b/bind-9.20.3.tar.xz.asc @@ -0,0 +1,16 @@ +-----BEGIN PGP SIGNATURE----- + +iQIzBAABCgAdFiEEcGtsKGIOdvkdEfffUQpkKgbFLOwFAmcFmzcACgkQUQpkKgbF +LOy7HA//bEjc3SPdNiCQgodOj4w+7o4hmcnbxb7HWJcmV1kNlwHFB9ZzoQzVdFGI +C9/+O3WMjk8EeLUYyip+ZMU6KEb55DwqSGX+TNPl+UiVZmIfCEmZ657KXhflcPjc +xYEg2XzL8u2MuKLglEB8FK23zdki13bre/GcdfqMtHowZiln60KaPYR1VeS28m14 +4p4VzDfLSq2vrlzpLiT7KlSds2mHDfWWxXDNwFIPZ5vlvtLyzbozRQ9X8p1wseO7 +3jjUPMGNNcx0EYZQ88KbTtv2eLxrYK8NRU4M47iXpP5/AYAzsq1gD+7mYNxLeIv+ +hbL5X7hxLl5OMNU47tHM/xgRcrGppeDSeKEihr/+1Z9JPL3Zq+oS6XwlzH1KmxQ6 +6mi6Z1SgAQNlfrFC11fxSokS7C/lWIOmXKa19tdHbsAw/kU9Onk6gh1D4BVTbKfJ +dbEl7/rJB14Er9+C6N3DB28HwgtlDC+ZLX79OqY9GN67LWHUkbGoKB7REkVQ0vMq +JzU9L+R+8sJQXvgqj/Ei9KRA08QxdetTTtigA75yGzyn2HWgDl1CTfFIYCEDZr9T +AJdim31gFlqIq1M8OwcynsthZswlFFwvHDpKuS9/AqXVaK1KSkpYfb+8gLl/l+bA +dcMFEckN7J60Qhqx/BAyBk/6vZ3F6FBmotKMctq9rpvCf1coM/E= +=vNN/ +-----END PGP SIGNATURE----- diff --git a/bind.changes b/bind.changes index 77ca5d3..9666b49 100644 --- a/bind.changes +++ b/bind.changes @@ -1,3 +1,83 @@ +------------------------------------------------------------------- +Mon Oct 21 08:42:47 UTC 2024 - Jorik Cronenberg + +- Update to release 9.20.3 + New Features: + * Log query response status to the query log. + * Log a query response summary using the new responses category. + Logging can be controlled via the responselog option and via + rndc responselog. + * Added WALLET type. + * Add the new record type WALLET (262). This provides a mapping + from a domain name to a cryptographic currency wallet. Multiple + mappings can exist if multiple records exist. + + Feature Changes: + * Set logging category for notify/xfer-in-related messages. + * Some notify and xfer-in-related log messages were logged at the + “general” category level instead of their own category. This + has been fixed. + * Allow IXFR-to-AXFR fallback on DNS_R_TOOMANYRECORDS. + * This change allows fallback from an IXFR failure to AXFR when + the reason is DNS_R_TOOMANYRECORDS. + + Bug Fixes: + * Fix a statistics channel counter bug when “forward only” zones + are used. + * When resolving a zone with a “forward only” policy, and finding + out that all the forwarders were marked as “bad”, the + “ServerQuota” counter of the statistics channel was incorrectly + increased. This has been fixed. + * Fix a bug in the static-stub implementation. + * Static-stub addresses and addresses from other sources were + being mixed together, resulting in static-stub queries going to + addresses not specified in the configuration, or alternatively, + static-stub addresses being used instead of the correct server + addresses. + * Don’t allow statistics-channels if libxml2 and libjson-c are + not configured. + * When BIND 9 is not configured with the libxml2 and libjson-c + libraries, the use of the statistics-channels option is a fatal + error. + * Separate DNSSEC validation from long-running tasks. + * Split CPU-intensive and long-running tasks into separate + threadpools in a way that the long-running tasks - like RPZ, + catalog zone processing, or zone file operations - don’t block + CPU-intensive operations like DNSSEC validations. + * Fix an assertion failure when processing access control lists. + * The named process could terminate unexpectedly when processing + ACLs. This has been fixed. + * Fix a bug in Offline KSK using a ZSK with an unlimited + lifetime. + * If the ZSK had an unlimited lifetime, the timing metadata + Inactive and Delete could not be found and were treated as an + error, preventing the zone from being signed. This has been + fixed. + * Limit the outgoing UDP send queue size. + * If the operating system UDP queue got full and the outgoing UDP + sending started to be delayed, BIND 9 could exhibit memory + spikes as it tried to enqueue all the outgoing UDP messages. It + now tries to deliver the outgoing UDP messages synchronously; + if that fails, it drops the outgoing DNS message that would get + queued up and then timeout on the client side. + * Do not set SO_INCOMING_CPU. + * Remove the SO_INCOMING_CPU setting as kernel scheduling + performs better without constraints. + * Fix the rndc dumpdb command’s error reporting. + * The rndc dumpdb command was not reporting errors that occurred + when named started up the database dump process. This has been + fixed. + * Fix long-running incoming transfers. + * Incoming transfers that took longer than 30 seconds would stop + reading from the TCP stream and the incoming transfer would be + indefinitely stuck, causing BIND 9 to hang during shutdown. + * This has been fixed, and the max-transfer-time-in and + max-transfer-idle-in timeouts are now honored. + * Fix an assertion failure when receiving DNS responses over TCP. + * When matching the received Query ID in the TCP connection, an + invalid Query ID could cause an assertion failure. This has + been fixed. + ------------------------------------------------------------------- Thu Sep 19 08:57:57 UTC 2024 - Jorik Cronenberg diff --git a/bind.spec b/bind.spec index e607953..cfeb0a8 100644 --- a/bind.spec +++ b/bind.spec @@ -56,7 +56,7 @@ %define _fillupdir %{_localstatedir}/adm/fillup-templates %endif Name: bind -Version: 9.20.2 +Version: 9.20.3 Release: 0 Summary: Domain Name System (DNS) Server (named) License: MPL-2.0