Accepting request 1135978 from server:dns
OBS-URL: https://build.opensuse.org/request/show/1135978 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/unbound?expand=0&rev=63
This commit is contained in:
commit
e446e4ff93
@ -1,3 +1,84 @@
|
|||||||
|
-------------------------------------------------------------------
|
||||||
|
Fri Nov 17 09:50:18 UTC 2023 - Pedro Monreal <pmonreal@suse.com>
|
||||||
|
|
||||||
|
- Update to 1.19.0:
|
||||||
|
* Features:
|
||||||
|
- Fix #850: [FR] Ability to use specific database in Redis, with
|
||||||
|
new redis-logical-db configuration option.
|
||||||
|
- Merge #944: Disable EDNS DO. Disable the EDNS DO flag in upstream
|
||||||
|
requests. This can be helpful for devices that cannot handle
|
||||||
|
DNSSEC information. But it should not be enabled otherwise, because
|
||||||
|
that would stop DNSSEC validation. The DNSSEC validation would not
|
||||||
|
work for Unbound itself, and also not for downstream users. Default
|
||||||
|
is no. The option is disable-edns-do: no
|
||||||
|
- Expose the script filename in the Python module environment 'mod_env'
|
||||||
|
instead of the config_file structure which includes the linked list
|
||||||
|
of scripts in a multi Python module setup; fixes #79.
|
||||||
|
- Expose the configured listening and outgoing interfaces, if any, as
|
||||||
|
a list of strings in the Python 'config_file' class instead of the
|
||||||
|
current Swig object proxy; fixes #79.
|
||||||
|
- Mailing list patches from Daniel Gröber for DNS64 fallback to plain
|
||||||
|
AAAA when no A record exists for synthesis, and minor DNS64 code
|
||||||
|
refactoring for better readability.
|
||||||
|
- Merge #951: Cachedb no store. The cachedb-no-store: yes option is
|
||||||
|
used to stop cachedb from writing messages to the backend storage.
|
||||||
|
It reads messages when data is available from the backend.
|
||||||
|
The default is no.
|
||||||
|
* Bug Fixes:
|
||||||
|
- Fix for version generation race condition that ignored changes.
|
||||||
|
- Fix #942: 1.18.0 libunbound DNS regression when built without OpenSSL.
|
||||||
|
- Fix for WKS call to getservbyname that creates allocation on exit in
|
||||||
|
unit test by testing numbers first and testing from the services list later.
|
||||||
|
- Fix autoconf 2.69 warnings in configure.
|
||||||
|
- Fix #927: unbound 1.18.0 make test error. Fix make test without SHA1.
|
||||||
|
- Merge #931: Prevent warnings from -Wmissing-prototypes.
|
||||||
|
- Fix to scrub resource records of type A and AAAA that have an
|
||||||
|
inappropriate size. They are removed from responses.
|
||||||
|
- Fix to move msgparse_rrset_remove_rr code to util/msgparse.c.
|
||||||
|
- Fix to add EDE text when RRs have been removed due to length.
|
||||||
|
- Fix to set ede match in unit test for rr length removal.
|
||||||
|
- Fix to print EDE text in readable form in output logs.
|
||||||
|
- Fix send of udp retries when ENOBUFS is returned. It stops looping
|
||||||
|
and also waits for the condition to go away. Reported by Florian Obser.
|
||||||
|
- Fix authority zone answers for obscured DNAMEs and delegations.
|
||||||
|
- Merge #936: Check for c99 with autoconf versions prior to 2.70.
|
||||||
|
- Fix to remove two c99 notations.
|
||||||
|
- Fix rpz tcp-only action with rpz triggers nsdname and nsip.
|
||||||
|
- Fix misplaced comment.
|
||||||
|
- Merge #881: Generalise the proxy protocol code.
|
||||||
|
- Fix #946: Forwarder returns servfail on upstream response noerror no data.
|
||||||
|
- Fix edns subnet so that queries with a source prefix of zero cause the
|
||||||
|
recursor send no edns subnet option to the upstream.
|
||||||
|
- Fix that printout of EDNS options shows the EDNS cookie option by name.
|
||||||
|
- Fix infinite loop when reading multiple lines of input on a broken remote
|
||||||
|
control socket. Addesses #947 and #948.
|
||||||
|
- Fix #949: "could not create control compt".
|
||||||
|
- Fix that cachedb does not warn when serve-expired is disabled about use
|
||||||
|
of serve-expired-reply-ttl and serve-expired-client-timeout.
|
||||||
|
- Fix for #949: Fix pythonmod/ubmodule-tst.py for Python 3.x.
|
||||||
|
- Better fix for infinite loop when reading multiple lines of input on a
|
||||||
|
broken remote control socket, by treating a zero byte line the same as
|
||||||
|
transmission end. Addesses #947 and #948.
|
||||||
|
- For multi Python module setups, clean previously parsed module functions
|
||||||
|
in __main__'s dictionary, if any, so that only current module functions
|
||||||
|
are registered.
|
||||||
|
- Fix #954: Inconsistent RPZ handling for A record returned along with CNAME.
|
||||||
|
- Fixes for the DNS64 patches.
|
||||||
|
- Update the dns64_lookup.rpl test for the DNS64 fallback patch.
|
||||||
|
- Merge #955 from buevsan: fix ipset wrong behavior.
|
||||||
|
- Update testdata/ipset.tdir test for ipset fix.
|
||||||
|
- Fix to print detailed errors when an SSL IO routine fails via SSL_get_error.
|
||||||
|
- Clearer configure text for missing protobuf-c development libraries.
|
||||||
|
- autoconf.
|
||||||
|
- Merge #930 from Stuart Henderson: add void to log_ident_revert_to_default
|
||||||
|
declaration.
|
||||||
|
- Fix #941: dnscrypt doesn't work after upgrade to 1.18 with suggestion by
|
||||||
|
dukeartem to also fix the udp_ancil with dnscrypt.
|
||||||
|
- Fix SSL compile failure for definition in log_crypto_err_io_code_arg.
|
||||||
|
- Fix SSL compile failure for other missing definitions in log_crypto_err_io_code_arg.
|
||||||
|
- Fix compilation without openssl, remove unused function warning.
|
||||||
|
- Mention flex and bison in README.md when building from repository source.
|
||||||
|
|
||||||
-------------------------------------------------------------------
|
-------------------------------------------------------------------
|
||||||
Thu Sep 7 08:03:33 UTC 2023 - Pedro Monreal <pmonreal@suse.com>
|
Thu Sep 7 08:03:33 UTC 2023 - Pedro Monreal <pmonreal@suse.com>
|
||||||
|
|
||||||
|
@ -22,7 +22,7 @@
|
|||||||
%bcond_without hardened_build
|
%bcond_without hardened_build
|
||||||
#
|
#
|
||||||
Name: libunbound-devel-mini
|
Name: libunbound-devel-mini
|
||||||
Version: 1.18.0
|
Version: 1.19.0
|
||||||
#!BcntSyncTag: unbound
|
#!BcntSyncTag: unbound
|
||||||
Release: 0
|
Release: 0
|
||||||
Summary: Just a devel package for build loops
|
Summary: Just a devel package for build loops
|
||||||
|
@ -1,3 +0,0 @@
|
|||||||
version https://git-lfs.github.com/spec/v1
|
|
||||||
oid sha256:3da95490a85cff6420f26fae0b84a49f5112df1bf1b7fc34f8724f02082cb712
|
|
||||||
size 6315297
|
|
@ -1,16 +0,0 @@
|
|||||||
-----BEGIN PGP SIGNATURE-----
|
|
||||||
|
|
||||||
iQIzBAABCAAdFiEE7fqj8spObrBWga+On28cLX4EX40FAmTu91gACgkQn28cLX4E
|
|
||||||
X40hGg//TtnNy+MiXJbt//5tEmW9NFFL6BEmD4B9WN+Mm7HFJpOaMiOobM/mWCmD
|
|
||||||
kRDrx7HGJ5tDwOxCdHytsWq73OvJuMtyV7uUzGe1QFDyU7OiIgM0ZgPA4zp+/PDh
|
|
||||||
3oZjNlLb1IlXwZE3VtgxR0IVjKeWgDrnB5Ir1iYk55Q1aWI5tdDDDmjT/m/5fjuh
|
|
||||||
FTaMuy6W/J3K/EW0IyjSy1GUPi14lSpmjXUhJdY3hqr+lZ9Z9eXyUyezS0S3c8i+
|
|
||||||
c4t01ZC5NZ7RjNgGd9Hx/WDnf8V0KSrb1qk/QfgysVSKLneDzwAAGWrGnt/CN8LO
|
|
||||||
wPRou7u7vkZqbKNTTU6LZtWX6bmFRFZZDjgRwtPHH47SM8Sj4wqDyexW5dZYeepM
|
|
||||||
cNbIo+Jf4JOm+BhJqWFU/fLETi2HKSNGa8uaMn6sFxboFGw87JPeKoC0YZiXTw8B
|
|
||||||
5qWl+2elzScxckMFKdK91iI01mCVV5WoZUyPAl/Xrw5ecoK3v/2aAAuYee4KTQNh
|
|
||||||
tVvACJkIBE8rWGVXDa8ihPNi8HPd8NHthOKhFoMvidBgDui7eA/+4LlEt4qYi7Zd
|
|
||||||
TJQJ4Tz+2ibtw9pnHJDHbtupiIC4cCcUuBQPgdlribXacPGh7YeEO9QWCNX8duAM
|
|
||||||
cU3Y4wFCw1QV4PtuRy9E6d+V5Uc7oX5+OixtDvOXu6o/WFrwYqo=
|
|
||||||
=FPbs
|
|
||||||
-----END PGP SIGNATURE-----
|
|
3
unbound-1.19.0.tar.gz
Normal file
3
unbound-1.19.0.tar.gz
Normal file
@ -0,0 +1,3 @@
|
|||||||
|
version https://git-lfs.github.com/spec/v1
|
||||||
|
oid sha256:a97532468854c61c2de48ca4170de854fd3bc95c8043bb0cfb0fe26605966624
|
||||||
|
size 6336113
|
16
unbound-1.19.0.tar.gz.asc
Normal file
16
unbound-1.19.0.tar.gz.asc
Normal file
@ -0,0 +1,16 @@
|
|||||||
|
-----BEGIN PGP SIGNATURE-----
|
||||||
|
|
||||||
|
iQIzBAABCAAdFiEE7fqj8spObrBWga+On28cLX4EX40FAmVLTw8ACgkQn28cLX4E
|
||||||
|
X431nQ//SskLEQLtcBZbVSwDwAekENU5GSG8WnfAoTO7XduAMkeRMT0P9sgaGDog
|
||||||
|
VF4bj1OhZ7lReYf64m5Uu1/8IIXArlkn3NViCQOBj60cKE9Q0/adc0mk+03SHc+M
|
||||||
|
TlG+LLN7Weg8VKao9fjftcto3CJ1VbkXBbwByzhVuvvAlSkUU5rnB0tMYras6mDl
|
||||||
|
y39KUpInbQEhOMPsdov5pvkYxzLeoWpu+uM3Jy5asWG531bBO5TELpJTay3dRRyL
|
||||||
|
NNCV+KQJazobWf01X7TkdAEd5f2xKf7NEawTuJFe8weIVG3kpJ8a86i1TUa6HXAR
|
||||||
|
5HqCTGrVOXeNEBvY7Xya48Sbf1ae0ti1BcKmkUlhuWE8l6eXomZl14RtBSpdQYsF
|
||||||
|
cWNOTg4pK1mstEyCk2sSpcdNpMX2tRDbsgmff9ookPtE3hdh1MVY54H0E/MzCRIm
|
||||||
|
J5hu+UPuu4HJxlxozxrs+g0GbyDq8420p74M/pkQDAekSoCp1X8+yce/Izl1tBy8
|
||||||
|
LCu8Izjky+6wLfx2+5FDPGusfqaQvNnQFXL710yagaVQULXT/PSyqnRGTNNynLmm
|
||||||
|
xXJFQC+Nf4Ud72ma63gVTUC7SslAcYIUz6Ozo/7U6BXXnCu1S2W3ThGHBp4Wjlc8
|
||||||
|
ZpLtQh6CFUIt5eDdVaj31+vaPWlShIY2THexl+ZPAXJjuUwzyf0=
|
||||||
|
=Gtql
|
||||||
|
-----END PGP SIGNATURE-----
|
@ -1,3 +1,84 @@
|
|||||||
|
-------------------------------------------------------------------
|
||||||
|
Fri Nov 17 09:50:18 UTC 2023 - Pedro Monreal <pmonreal@suse.com>
|
||||||
|
|
||||||
|
- Update to 1.19.0:
|
||||||
|
* Features:
|
||||||
|
- Fix #850: [FR] Ability to use specific database in Redis, with
|
||||||
|
new redis-logical-db configuration option.
|
||||||
|
- Merge #944: Disable EDNS DO. Disable the EDNS DO flag in upstream
|
||||||
|
requests. This can be helpful for devices that cannot handle
|
||||||
|
DNSSEC information. But it should not be enabled otherwise, because
|
||||||
|
that would stop DNSSEC validation. The DNSSEC validation would not
|
||||||
|
work for Unbound itself, and also not for downstream users. Default
|
||||||
|
is no. The option is disable-edns-do: no
|
||||||
|
- Expose the script filename in the Python module environment 'mod_env'
|
||||||
|
instead of the config_file structure which includes the linked list
|
||||||
|
of scripts in a multi Python module setup; fixes #79.
|
||||||
|
- Expose the configured listening and outgoing interfaces, if any, as
|
||||||
|
a list of strings in the Python 'config_file' class instead of the
|
||||||
|
current Swig object proxy; fixes #79.
|
||||||
|
- Mailing list patches from Daniel Gröber for DNS64 fallback to plain
|
||||||
|
AAAA when no A record exists for synthesis, and minor DNS64 code
|
||||||
|
refactoring for better readability.
|
||||||
|
- Merge #951: Cachedb no store. The cachedb-no-store: yes option is
|
||||||
|
used to stop cachedb from writing messages to the backend storage.
|
||||||
|
It reads messages when data is available from the backend.
|
||||||
|
The default is no.
|
||||||
|
* Bug Fixes:
|
||||||
|
- Fix for version generation race condition that ignored changes.
|
||||||
|
- Fix #942: 1.18.0 libunbound DNS regression when built without OpenSSL.
|
||||||
|
- Fix for WKS call to getservbyname that creates allocation on exit in
|
||||||
|
unit test by testing numbers first and testing from the services list later.
|
||||||
|
- Fix autoconf 2.69 warnings in configure.
|
||||||
|
- Fix #927: unbound 1.18.0 make test error. Fix make test without SHA1.
|
||||||
|
- Merge #931: Prevent warnings from -Wmissing-prototypes.
|
||||||
|
- Fix to scrub resource records of type A and AAAA that have an
|
||||||
|
inappropriate size. They are removed from responses.
|
||||||
|
- Fix to move msgparse_rrset_remove_rr code to util/msgparse.c.
|
||||||
|
- Fix to add EDE text when RRs have been removed due to length.
|
||||||
|
- Fix to set ede match in unit test for rr length removal.
|
||||||
|
- Fix to print EDE text in readable form in output logs.
|
||||||
|
- Fix send of udp retries when ENOBUFS is returned. It stops looping
|
||||||
|
and also waits for the condition to go away. Reported by Florian Obser.
|
||||||
|
- Fix authority zone answers for obscured DNAMEs and delegations.
|
||||||
|
- Merge #936: Check for c99 with autoconf versions prior to 2.70.
|
||||||
|
- Fix to remove two c99 notations.
|
||||||
|
- Fix rpz tcp-only action with rpz triggers nsdname and nsip.
|
||||||
|
- Fix misplaced comment.
|
||||||
|
- Merge #881: Generalise the proxy protocol code.
|
||||||
|
- Fix #946: Forwarder returns servfail on upstream response noerror no data.
|
||||||
|
- Fix edns subnet so that queries with a source prefix of zero cause the
|
||||||
|
recursor send no edns subnet option to the upstream.
|
||||||
|
- Fix that printout of EDNS options shows the EDNS cookie option by name.
|
||||||
|
- Fix infinite loop when reading multiple lines of input on a broken remote
|
||||||
|
control socket. Addesses #947 and #948.
|
||||||
|
- Fix #949: "could not create control compt".
|
||||||
|
- Fix that cachedb does not warn when serve-expired is disabled about use
|
||||||
|
of serve-expired-reply-ttl and serve-expired-client-timeout.
|
||||||
|
- Fix for #949: Fix pythonmod/ubmodule-tst.py for Python 3.x.
|
||||||
|
- Better fix for infinite loop when reading multiple lines of input on a
|
||||||
|
broken remote control socket, by treating a zero byte line the same as
|
||||||
|
transmission end. Addesses #947 and #948.
|
||||||
|
- For multi Python module setups, clean previously parsed module functions
|
||||||
|
in __main__'s dictionary, if any, so that only current module functions
|
||||||
|
are registered.
|
||||||
|
- Fix #954: Inconsistent RPZ handling for A record returned along with CNAME.
|
||||||
|
- Fixes for the DNS64 patches.
|
||||||
|
- Update the dns64_lookup.rpl test for the DNS64 fallback patch.
|
||||||
|
- Merge #955 from buevsan: fix ipset wrong behavior.
|
||||||
|
- Update testdata/ipset.tdir test for ipset fix.
|
||||||
|
- Fix to print detailed errors when an SSL IO routine fails via SSL_get_error.
|
||||||
|
- Clearer configure text for missing protobuf-c development libraries.
|
||||||
|
- autoconf.
|
||||||
|
- Merge #930 from Stuart Henderson: add void to log_ident_revert_to_default
|
||||||
|
declaration.
|
||||||
|
- Fix #941: dnscrypt doesn't work after upgrade to 1.18 with suggestion by
|
||||||
|
dukeartem to also fix the udp_ancil with dnscrypt.
|
||||||
|
- Fix SSL compile failure for definition in log_crypto_err_io_code_arg.
|
||||||
|
- Fix SSL compile failure for other missing definitions in log_crypto_err_io_code_arg.
|
||||||
|
- Fix compilation without openssl, remove unused function warning.
|
||||||
|
- Mention flex and bison in README.md when building from repository source.
|
||||||
|
|
||||||
-------------------------------------------------------------------
|
-------------------------------------------------------------------
|
||||||
Thu Sep 7 08:03:33 UTC 2023 - Pedro Monreal <pmonreal@suse.com>
|
Thu Sep 7 08:03:33 UTC 2023 - Pedro Monreal <pmonreal@suse.com>
|
||||||
|
|
||||||
|
@ -33,7 +33,7 @@
|
|||||||
%define piddir /run
|
%define piddir /run
|
||||||
|
|
||||||
Name: unbound
|
Name: unbound
|
||||||
Version: 1.18.0
|
Version: 1.19.0
|
||||||
Release: 0
|
Release: 0
|
||||||
BuildRequires: flex
|
BuildRequires: flex
|
||||||
BuildRequires: ldns-devel >= %{ldns_version}
|
BuildRequires: ldns-devel >= %{ldns_version}
|
||||||
|
Loading…
x
Reference in New Issue
Block a user