900526
#
900526
# Red Hat BIND package .spec file
900526
#
900526
900526
#%%global PATCHVER P2
900526
#%%global PREVER rc2
900526
#%%global VERSION %{version}%{PREVER}
900526
%global VERSION %{version}
900526
#%%global VERSION %{version}-%{PATCHVER}
900526
900526
%{?!SDB:       %global SDB       1}
900526
%{?!test:      %global test      0}
900526
%{?!bind_uid:  %global bind_uid  25}
900526
%{?!bind_gid:  %global bind_gid  25}
900526
%{?!GSSTSIG:   %global GSSTSIG   1}
900526
%{?!PKCS11:    %global PKCS11    1}
900526
%{?!DEVEL:     %global DEVEL     1}
900526
%global        bind_dir          /var/named
900526
%global        chroot_prefix     %{bind_dir}/chroot
2c0af7
%global        selinuxbooleans   named_write_master_zones=1
900526
%if %{SDB}
900526
%global        chroot_sdb_prefix %{bind_dir}/chroot_sdb
900526
%endif
900526
#
900526
Summary:  The Berkeley Internet Name Domain (BIND) DNS (Domain Name System) server
900526
Name:     bind
900526
License:  ISC
900526
Version:  9.9.4
2c0af7
Release:  72%{?PATCHVER}%{?PREVER}%{?dist}
900526
Epoch:    32
900526
Url:      http://www.isc.org/products/BIND/
900526
Buildroot:%{_tmppath}/%{name}-%{version}-%{release}-root-%(%{__id_u} -n)
900526
Group:    System Environment/Daemons
900526
#
900526
Source:   https://ftp.isc.org/isc/bind9/%{VERSION}/bind-%{VERSION}.tar.gz
900526
Source1:  named.sysconfig
900526
Source3:  named.logrotate
900526
Source7:  bind-9.3.1rc1-sdb_tools-Makefile.in
900526
Source8:  dnszone.schema
900526
Source12: README.sdb_pgsql
900526
Source25: named.conf.sample
2c0af7
Source26: named.conf
2c0af7
Source28: config-16.tar.bz2
900526
# Up-to-date bind.keys from upstream
900526
# Fetch a new one from page https://www.isc.org/bind-keys
900526
Source29: bind.keys
900526
Source30: ldap2zone.c
900526
Source31: ldap2zone.1
900526
Source32: named-sdb.8
900526
Source33: zonetodb.1
900526
Source34: zone2sqlite.1
900526
Source35: bind.tmpfiles.d
900526
Source36: trusted-key.key
900526
Source37: named.service
900526
Source38: named-chroot.service
900526
Source39: named-sdb.service
900526
Source40: named-sdb-chroot.service
900526
Source41: setup-named-chroot.sh
900526
Source42: generate-rndc-key.sh
900526
Source43: named.rwtab
900526
Source44: named-chroot-setup.service
900526
Source45: named-sdb-chroot-setup.service
900526
Source46: named-setup-rndc.service
900526
Source47: named-pkcs11.service
900526
# added due to GeoIP functionality tests
900526
# patch tool does not support binary patches
900526
Source48: geoip-testing-data.tar.xz
900526
900526
# Common patches
900526
Patch5:  bind-nonexec.patch
900526
Patch10: bind-9.5-PIE.patch
900526
Patch16: bind-9.3.2-redhat_doc.patch
900526
Patch72: bind-9.5-dlz-64bit.patch
900526
Patch87: bind-9.5-parallel-build.patch
900526
Patch101:bind-96-old-api.patch
900526
Patch102:bind-95-rh452060.patch
900526
Patch106:bind93-rh490837.patch
900526
Patch109:bind97-rh478718.patch
900526
Patch110:bind97-rh570851.patch
900526
Patch111:bind97-exportlib.patch
900526
Patch112:bind97-rh645544.patch
900526
Patch119:bind97-rh693982.patch
900526
Patch123:bind98-rh735103.patch
c88997
Patch124:bind93-rh726120.patch
900526
# FIXME: This disables dlzexternal, which I will enable later again
900526
# Make tests on all architectures and disable it
900526
Patch127:bind99-forward.patch
900526
Patch130:bind-9.9.1-P2-dlz-libdb.patch
900526
Patch131:bind-9.9.1-P2-multlib-conflict.patch
900526
Patch133:bind99-rh640538.patch
900526
Patch134:bind97-rh669163.patch
900526
Patch137:bind99-rrl.patch
900526
# Install dns/update.h header for bind-dyndb-ldap plugin
900526
Patch138:bind-9.9.3-include-update-h.patch
900526
Patch139:bind99-ISC-Bugs-34738.patch
900526
Patch140:bind99-ISC-Bugs-34870-v3.patch
900526
Patch141:bind99-ISC-Bugs-35073.patch
900526
Patch142:bind99-ISC-Bugs-35080.patch
900526
Patch143:bind99-CVE-2014-0591.patch
900526
Patch144:bind99-rh1067424.patch
900526
Patch145:bind99-rh1072379.patch
900526
Patch146:bind99-rh1098959.patch
900526
Patch147:bind99-CVE-2014-8500.patch
900526
Patch148:bind99-CVE-2015-1349.patch
900526
Patch149:bind99-rh1215687-limits.patch
900526
Patch154:bind99-rh1215164.patch
900526
Patch155:bind99-rh1214827.patch
900526
Patch156:bind99-CVE-2015-4620.patch
900526
Patch157:bind99-CVE-2015-5477.patch
900526
Patch158:bind-99-socket-maxevents.patch
900526
Patch159:bind99-CVE-2015-5722.patch
900526
Patch160:bind99-CVE-2015-8000.patch
900526
Patch161:bind99-CVE-2015-8704.patch
900526
Patch162:bind99-CVE-2016-1285-CVE-2016-1286.patch
900526
Patch163:bind99-rh1291185.patch
900526
Patch164:bind99-rh1259514.patch
900526
Patch165:bind99-rh1306610.patch
900526
Patch166:bind99-rh1220594-geoip.patch
900526
Patch167:bind99-automatic-interface-scanning-rh1294506.patch
900526
# commit 51bcc28543ce205f7af238ef2f3889ef020a0961 ISC 4467
900526
patch168:bind99-CVE-2016-2776.patch
900526
# commit bbb7c613b3e41495db627909660334695b48e60b ISC 4489
900526
patch169:bind99-CVE-2016-8864.patch
900526
# commit d372472f604d45f85b3bbae5d6f523fb561a8823 ISC 4508
900526
patch170:bind99-CVE-2016-9131.patch
900526
# commit a14b7f0187315767a1fa855f116fe937a7b402e3 ISC 4510
900526
patch171:bind99-CVE-2016-9147.patch
900526
# commit 69cb8ebf157183d9c36a9813f945348dd81b521f ISC 4517
900526
Patch172:bind99-CVE-2016-9444.patch
900526
# commit 2c74ad28efe5710ad04562c6f9902bc48d3be0ed ISC 4530
900526
Patch173:bind99-rt43779.patch
900526
# commit 062b04898be720ed0855efc192847fcbc667b3e1 ISC 4406
900526
Patch174:bind99-CVE-2016-2775.patch
900526
# ISC 4557
900526
Patch175:bind99-CVE-2017-3135.patch
900526
# ISC 4558
900526
Patch176:bind99-rt44318.patch
900526
# commit c550e75ade4ceb4ece96f660292799519a5c3183 ISC 4567
900526
Patch177:bind99-rh1392362.patch
900526
# commit 1f3ac11cb4ecfab52f517ebf78493b0f05318be2
900526
Patch178:bind99-coverity-fixes2.patch
900526
# ISC 4575
900526
Patch179:bind99-CVE-2017-3136.patch
900526
# ISC 4578
900526
Patch180:bind99-CVE-2017-3137.patch
900526
# commit 5e746ab61ed8158f784b86111fef95581a08b7dd ISC 3905
900526
Patch181:bind99-rh1416304.patch
900526
# ISC 4643
c88997
Patch182: bind99-CVE-2017-3142+3143.patch
c88997
# commit e3894cd3a92be79a64072835008ec589b17c601a
c88997
Patch183: bind99-rh1472862.patch
c88997
# commit 2fc1b8102d4bf02162012c27ab95e98a7438bd8f ISC 4647
c88997
Patch184: bind99-rh1476013.patch
c88997
# commit 51aed1827453f40ee56b165d45c5d58d96838d94
c88997
Patch185: bind99-rh1470637-tests.patch
c88997
# commit 51b00c6c783ccf5dca86119ff8f4f8b994298ca4 ISC 4712
c88997
Patch186: bind99-rh1470637.patch
c88997
# commit 6a3fa181d1253db5191139e20231512eebaddeeb ISC 3745
c88997
Patch187: bind99-rh1464850.patch
c88997
# commit 871f3c8beeb2134b17414ec167b90a57adb8e122 ISC 3980
c88997
Patch188: bind99-rh1464850-2.patch
c88997
# commit 4eb998928b9aef0ceda42d7529980d658138698a ISC 3525
c88997
Patch189: bind99-rh1501531.patch
20aab1
# ISC 4858
c88997
Patch190: bind99-CVE-2017-3145.patch
2c0af7
Patch191: bind99-rh1510008.patch
2c0af7
Patch192: bind99-nta.patch
2c0af7
Patch193: bind99-rh1510008-2.patch
2c0af7
Patch194: bind99-fips.patch
2c0af7
Patch195: bind99-fips-tests.patch
2c0af7
# commit c3fbf330bc014f0470371e8da590d14a1d62977e ISC 4377
2c0af7
Patch196: bind99-rh1549130.patch
2c0af7
# commit cb735b3f902d4bb5f6e30328d5828d38efa63573
2c0af7
Patch197: bind99-rh1549130-2.patch
2c0af7
Patch198: bind99-CVE-2018-5740.patch
900526
900526
# Native PKCS#11 functionality from 9.10
900526
Patch150:bind-9.9-allow_external_dnskey.patch
900526
Patch151:bind-9.9-native-pkcs11.patch
900526
Patch152:bind-9.9-dist-native-pkcs11.patch
900526
Patch153:bind99-coverity-fixes.patch
900526
900526
# SDB patches
900526
Patch11: bind-9.3.2b2-sdbsrc.patch
900526
Patch12: bind-9.5-sdb.patch
900526
Patch62: bind-9.5-sdb-sqlite-bld.patch
900526
900526
# needs inpection
900526
Patch17: bind-9.3.2b1-fix_sdb_ldap.patch
900526
Patch104: bind99-dyndb.patch
900526
900526
# IDN paches
900526
Patch73: bind-9.5-libidn.patch
900526
Patch83: bind-9.5-libidn2.patch
900526
Patch85: bind-9.5-libidn3.patch
900526
Patch94: bind95-rh461409.patch
900526
Patch135:bind99-libidn4.patch
900526
900526
#
900526
Requires(preun):  systemd
900526
Requires(postun): systemd
900526
Requires:       coreutils
900526
Requires:       systemd-units
900526
Requires(post): grep, systemd
2c0af7
Requires(post): shadow-utils
2c0af7
Requires(post): glibc-common
900526
Requires(pre):  shadow-utils
900526
Requires:       bind-libs = %{epoch}:%{version}-%{release}
900526
Obsoletes:      bind-config < 30:9.3.2-34.fc6
900526
Provides:       bind-config = 30:9.3.2-34.fc6
900526
Obsoletes:      caching-nameserver < 31:9.4.1-7.fc8
900526
Provides:       caching-nameserver = 31:9.4.1-7.fc8
900526
Obsoletes:      dnssec-conf < 1.27-2
900526
Provides:       dnssec-conf = 1.27-1
2c0af7
Requires:       python-ply
2c0af7
Provides:       python-isc = %{epoch}:%{version}-%{release}
2c0af7
Provides:       python-bind = %{epoch}:%{version}-%{release}
2c0af7
# selinux_set_booleans requires
2c0af7
Requires(post):      policycoreutils-python, libselinux-utils, selinux-policy
2c0af7
Requires(postun):    policycoreutils-python, libselinux-utils, selinux-policy
2c0af7
Requires(posttrans): policycoreutils-python, libselinux-utils, selinux-policy
900526
BuildRequires:  openssl-devel, libtool, autoconf, pkgconfig, libcap-devel
900526
BuildRequires:  libidn-devel, libxml2-devel, GeoIP-devel
900526
BuildRequires:  systemd-units
2c0af7
BuildRequires:  python-ply
2c0af7
BuildRequires:  selinux-policy
900526
%if %{SDB}
900526
BuildRequires:  openldap-devel, postgresql-devel, sqlite-devel, mysql-devel
900526
BuildRequires:  libdb-devel
900526
%endif
900526
%if %{test}
900526
BuildRequires:  net-tools
900526
%endif
900526
%if %{GSSTSIG}
900526
BuildRequires:  krb5-devel
900526
%endif
900526
# Needed to regenerate dig.1 manpage
900526
BuildRequires: docbook-style-xsl, libxslt
900526
900526
%description
900526
BIND (Berkeley Internet Name Domain) is an implementation of the DNS
900526
(Domain Name System) protocols. BIND includes a DNS server (named),
900526
which resolves host names to IP addresses; a resolver library
900526
(routines for applications to use when interfacing with DNS); and
900526
tools for verifying that the DNS server is operating properly.
900526
900526
%if %{PKCS11}
900526
%package pkcs11
900526
Summary: Bind with native PKCS#11 functionality for crypto
900526
Group:   System Environment/Daemons
900526
Requires: bind = %{epoch}:%{version}-%{release}
900526
Requires: bind-libs = %{epoch}:%{version}-%{release}
900526
Requires: bind-pkcs11-libs = %{epoch}:%{version}-%{release}
900526
900526
%description pkcs11
900526
This is a version of BIND server built with native PKCS#11 functionality.
900526
It is important to have SoftHSM v2+ installed and some token initialized.
900526
For other supported HSM modules please check the BIND documentation.
900526
This version of BIND binary is supported only in setup with the IPA server.
900526
900526
%package pkcs11-utils
900526
Summary: Bind tools with native PKCS#11 for using DNSSEC
900526
Group:   System Environment/Daemons
900526
Requires: bind-pkcs11-libs = %{epoch}:%{version}-%{release}
900526
900526
%description pkcs11-utils
900526
This is a set of PKCS#11 utilities that when used together create rsa
900526
keys in a PKCS11 keystore. Also utilities for working with DNSSEC
900526
compiled with native PKCS#11 functionality are included.
900526
900526
%package pkcs11-libs
900526
Summary: Bind libraries compiled with native PKCS#11
900526
Group:   System Environment/Daemons
900526
Requires: bind-license = %{epoch}:%{version}-%{release}
900526
Requires: bind-libs = %{epoch}:%{version}-%{release}
900526
900526
%description pkcs11-libs
900526
This is a set of BIND libraries (dns, isc) compiled with native PKCS#11
900526
functionality.
900526
900526
%package pkcs11-devel
900526
Summary: Development files for Bind libraries compiled with native PKCS#11
900526
Group:   System Environment/Daemons
900526
Requires: bind-pkcs11-libs = %{epoch}:%{version}-%{release}
900526
900526
%description pkcs11-devel
900526
This a set of development files for BIND libraries (dns, isc) compiled
900526
with native PKCS#11 functionality.
900526
%endif
900526
900526
%if %{SDB}
900526
%package sdb
900526
Summary: BIND server with database backends and DLZ support
900526
Group:   System Environment/Daemons
900526
Requires: bind
900526
Requires: bind-libs = %{epoch}:%{version}-%{release}
900526
Requires: systemd-units
900526
900526
%description sdb
900526
BIND (Berkeley Internet Name Domain) is an implementation of the DNS
900526
(Domain Name System) protocols. BIND includes a DNS server (named-sdb)
900526
which has compiled-in SDB (Simplified Database Backend) which includes
900526
support for using alternative Zone Databases stored in an LDAP server
900526
(ldapdb), a postgreSQL database (pgsqldb), an sqlite database (sqlitedb),
900526
or in the filesystem (dirdb), in addition to the standard in-memory RBT
900526
(Red Black Tree) zone database. It also includes support for DLZ
900526
(Dynamic Loadable Zones)
900526
%endif
900526
900526
%package libs-lite
900526
Summary:  Libraries for working with the DNS protocol
900526
Group:    Applications/System
900526
Obsoletes:bind-libbind-devel < 31:9.3.3-4.fc7
900526
Provides: bind-libbind-devel = 31:9.3.3-4.fc7
900526
Requires: bind-license = %{epoch}:%{version}-%{release}
900526
900526
%description libs-lite
900526
Contains lite version of BIND suite libraries which are used by various
900526
programs to work with DNS protocol.
900526
900526
%package libs
900526
Summary: Libraries used by the BIND DNS packages
900526
Group:    Applications/System
900526
Requires: bind-license = %{epoch}:%{version}-%{release}
900526
900526
%description libs
900526
Contains heavyweight version of BIND suite libraries used by both named DNS
900526
server and utilities in bind-utils package.
900526
900526
%package license
900526
Summary:  License of the BIND DNS suite
900526
Group:    Applications/System
900526
BuildArch:noarch
900526
900526
%description license
900526
Contains license of the BIND DNS suite.
900526
900526
%package utils
900526
Summary: Utilities for querying DNS name servers
900526
Group:   Applications/System
900526
Requires: bind-libs = %{epoch}:%{version}-%{release}
900526
900526
%description utils
900526
Bind-utils contains a collection of utilities for querying DNS (Domain
900526
Name System) name servers to find out information about Internet
900526
hosts. These tools will provide you with the IP addresses for given
900526
host names, as well as other information about registered domains and
900526
network addresses.
900526
900526
You should install bind-utils if you need to get information from DNS name
900526
servers.
900526
900526
%if %{DEVEL}
900526
%package devel
900526
Summary:  Header files and libraries needed for BIND DNS development
900526
Group:    Development/Libraries
900526
Obsoletes:bind-libbind-devel < 31:9.3.3-4.fc7
900526
Provides: bind-libbind-devel = 31:9.3.3-4.fc7
900526
Requires: bind-libs = %{epoch}:%{version}-%{release}
900526
900526
%description devel
900526
The bind-devel package contains full version of the header files and libraries
900526
required for development with ISC BIND 9
900526
%endif
900526
900526
%package lite-devel
900526
Summary:  Lite version of header files and libraries needed for BIND DNS development
900526
Group:    Development/Libraries
900526
Requires: bind-libs-lite = %{epoch}:%{version}-%{release}
900526
900526
%description lite-devel
900526
The bind-lite-devel package contains lite version of the header
900526
files and libraries required for development with ISC BIND 9
900526
900526
%package chroot
900526
Summary:        A chroot runtime environment for the ISC BIND DNS server, named(8)
900526
Group:          System Environment/Daemons
900526
Prefix:         %{chroot_prefix}
900526
Requires(post): grep
900526
Requires(preun):grep
900526
Requires:       bind = %{epoch}:%{version}-%{release}
900526
Requires:       systemd-units
900526
900526
%description chroot
900526
This package contains a tree of files which can be used as a
900526
chroot(2) jail for the named(8) program from the BIND package.
900526
Based on the code from Jan "Yenya" Kasprzak <kas@fi.muni.cz>
900526
900526
%if %{SDB}
900526
%package sdb-chroot
900526
Summary:        A chroot runtime environment for the ISC BIND DNS server, named-sdb(8)
900526
Group:          System Environment/Daemons
900526
Prefix:         %{chroot_prefix}
900526
Requires:       bind-sdb
900526
Requires:       systemd-units
900526
900526
%description sdb-chroot
900526
This package contains a tree of files which can be used as a
900526
chroot(2) jail for the named-sdb(8) program from the BIND package.
900526
Based on the code from Jan "Yenya" Kasprzak <kas@fi.muni.cz>
900526
%endif
900526
900526
900526
%prep
900526
%setup -q -n %{name}-%{VERSION}
900526
900526
# Common patches
900526
%patch5 -p1 -b .nonexec
900526
%patch10 -p1 -b .PIE
900526
%patch16 -p1 -b .redhat_doc
900526
%ifnarch alpha ia64
900526
%patch72 -p1 -b .64bit
900526
%endif
900526
%patch73 -p1 -b .libidn
900526
%patch83 -p1 -b .libidn2
900526
%patch85 -p1 -b .libidn3
900526
%patch87 -p1 -b .parallel
900526
%patch94 -p1 -b .rh461409
900526
900526
%patch102 -p1 -b .rh452060
900526
%patch106 -p0 -b .rh490837
900526
%patch109 -p1 -b .rh478718
900526
%patch110 -p1 -b .rh570851
900526
%patch111 -p1 -b .exportlib
900526
%patch112 -p1 -b .rh645544
900526
%patch119 -p1 -b .rh693982
900526
%patch123 -p1 -b .rh735103
c88997
%patch124 -p1 -b .rh726120
900526
%patch127 -p1 -b .forward
900526
%patch130 -p1 -b .libdb
900526
%patch131 -p1 -b .multlib-conflict
900526
%patch137 -p1 -b .rrl
900526
%patch138 -p1 -b .update
900526
%patch139 -p1 -b .journal
900526
%patch140 -p1 -b .send_buffers
900526
%patch141 -p1 -b .leak_35073
900526
%patch142 -p1 -b .rbt_crash
900526
%patch143 -p1 -b .CVE-2014-059
900526
%patch144 -p1 -b .rh1067424
900526
%patch145 -p1 -b .rh1072379
900526
%patch146 -p1 -b .rh1098959
900526
%patch147 -p1 -b .CVE-2014-8500
900526
%patch148 -p1 -b .CVE-2015-1349
900526
%patch149 -p1 -b .rh1215687-limits
900526
900526
%patch150 -p1 -b .external_key
900526
%patch151 -p1 -b .native_pkcs11
900526
# http://cov01.lab.eng.brq.redhat.com/covscanhub/waiving/9377/
900526
%patch153 -p1 -b .coverity_9377
900526
%patch154 -p1 -b .rh1215164
900526
%patch155 -p1 -b .nsupdate_realm
900526
%patch156 -p1 -b .CVE-2015-4620
900526
%patch157 -p1 -b .CVE-2015-5477
900526
%patch158 -p1 -b .sock-maxevents
900526
%patch159 -p1 -b .CVE-2015-5722
900526
%patch160 -p1 -b .CVE-2015-8000
900526
%patch161 -p1 -b .CVE-2015-8704
900526
%patch162 -p1 -b .CVE-2016-1285-CVE-2016-1286
900526
%patch163 -p1 -b .rh1291185
900526
%patch164 -p1 -b .rh1259514
900526
%patch165 -p1 -b .rh1306610-caa
900526
%patch104 -p1 -b .dyndb
900526
900526
# GeoIP support
900526
%patch166 -p1 -b .rh1220594-geoip
900526
# extract the binary testing data
900526
tar -xf %{SOURCE48} -C bin/tests/system/geoip/data
900526
900526
%patch167 -p1 -b .rh1294506
900526
%patch168 -p1 -b .CVE-2016-2776
900526
%patch169 -p1 -b .CVE-2016-8864
900526
%patch170 -p1 -b .CVE-2016-9131
900526
%patch171 -p1 -b .CVE-2016-9147
900526
%patch172 -p1 -b .CVE-2016-9444
900526
%patch173 -p1 -b .rt43779
900526
%patch174 -p1 -b .CVE-2016-2775
900526
%patch175 -p1 -b .CVE-2017-3135
900526
%patch176 -p1 -b .rt44318
900526
%patch177 -p1 -b .rh1392362
900526
%patch178 -p1 -b .coverity2
900526
%patch179 -p1 -b .CVE-2017-3136
900526
%patch180 -p1 -b .CVE-2017-3137
900526
%patch181 -p1 -b .rh1416304
900526
%patch182 -p1 -b .CVE-2017-3142+3143
c88997
%patch183 -p1 -b .rh1472862
c88997
%patch184 -p1 -b .rh1476013
c88997
%patch185 -p1 -b .rh1470637-tests
c88997
%patch186 -p1 -b .rh1470637
c88997
%patch187 -p1 -b .rh1464850
c88997
%patch188 -p1 -b .rh1464850
c88997
%patch189 -p1 -b .rh1501531
c88997
%patch190 -p1 -b .CVE-2017-3145
2c0af7
%patch191 -p1 -b .dnssec-keymgr
2c0af7
%patch192 -p1 -b .rh1452091
2c0af7
%patch193 -p1 -b .dnssec-keymgr-2
2c0af7
%patch194 -p1 -b .fips
2c0af7
%patch195 -p1 -b .fips-tests
2c0af7
%patch196 -p1 -b .rh1549130
2c0af7
%patch197 -p1 -b .rh1549130-2
2c0af7
%patch198 -p1 -b .CVE-2018-5740
900526
900526
# Override upstream builtin keys
900526
cp -fp %{SOURCE29} bind.keys
900526
900526
%if %{PKCS11}
900526
cp -r bin/named{,-pkcs11}
900526
cp -r bin/dnssec{,-pkcs11}
900526
cp -r lib/isc{,-pkcs11}
900526
cp -r lib/dns{,-pkcs11}
900526
cp -r lib/export/isc{,-pkcs11}
900526
cp -r lib/export/dns{,-pkcs11}
900526
%patch152 -p1 -b .dist_pkcs11
900526
%endif
900526
900526
%if %{SDB}
900526
%patch101 -p1 -b .old-api
900526
mkdir bin/named-sdb
900526
cp -r bin/named/* bin/named-sdb
900526
%patch11 -p1 -b .sdbsrc
900526
# SDB ldap
900526
cp -fp contrib/sdb/ldap/ldapdb.[ch] bin/named-sdb
900526
# SDB postgreSQL
900526
cp -fp contrib/sdb/pgsql/pgsqldb.[ch] bin/named-sdb
900526
# SDB sqlite
900526
cp -fp contrib/sdb/sqlite/sqlitedb.[ch] bin/named-sdb
900526
# SDB Berkeley DB - needs to be ported to DB4!
900526
#cp -fp contrib/sdb/bdb/bdb.[ch] bin/named_sdb
900526
# SDB dir
900526
cp -fp contrib/sdb/dir/dirdb.[ch] bin/named-sdb
900526
# SDB tools
900526
mkdir -p bin/sdb_tools
900526
cp -fp %{SOURCE30} bin/sdb_tools/ldap2zone.c
900526
cp -fp %{SOURCE7} bin/sdb_tools/Makefile.in
900526
#cp -fp contrib/sdb/bdb/zone2bdb.c bin/sdb_tools
900526
cp -fp contrib/sdb/ldap/{zone2ldap.1,zone2ldap.c} bin/sdb_tools
900526
cp -fp contrib/sdb/pgsql/zonetodb.c bin/sdb_tools
900526
cp -fp contrib/sdb/sqlite/zone2sqlite.c bin/sdb_tools
900526
%patch12 -p1 -b .sdb
900526
%endif
900526
%if %{SDB}
900526
%patch17 -p1 -b .fix_sdb_ldap
900526
%endif
900526
%if %{SDB}
900526
%patch62 -p1 -b .sdb-sqlite-bld
900526
%endif
900526
%patch133 -p1 -b .rh640538
900526
%patch134 -p1 -b .rh669163
900526
%patch135 -p1 -b .libidn4
900526
900526
# Sparc and s390 arches need to use -fPIE
900526
%ifarch sparcv9 sparc64 s390 s390x
900526
for i in bin/named{,-sdb}/{,unix}/Makefile.in; do
900526
  sed -i 's|fpie|fPIE|g' $i
900526
done
900526
%endif
900526
900526
:;
900526
900526
%build
900526
export CFLAGS="$CFLAGS $RPM_OPT_FLAGS"
900526
export CPPFLAGS="$CPPFLAGS -DDIG_SIGCHASE"
900526
export STD_CDEFINES="$CPPFLAGS"
900526
900526
sed -i -e \
900526
's/RELEASEVER=\(.*\)/RELEASEVER=\1-RedHat-%{version}-%{release}/' \
900526
version
900526
900526
libtoolize -c -f; aclocal -I libtool.m4 --force; autoconf -f
900526
900526
%configure \
900526
  --with-libtool \
900526
  --localstatedir=/var \
900526
  --enable-threads \
900526
  --with-geoip \
900526
  --enable-ipv6 \
900526
  --enable-filter-aaaa \
900526
  --enable-rrl \
900526
  --with-pic \
900526
  --disable-static \
900526
  --disable-openssl-version-check \
900526
  --enable-exportlib \
900526
  --with-export-libdir=%{_libdir} \
900526
  --with-export-includedir=%{_includedir} \
900526
  --includedir=%{_includedir}/bind9 \
900526
%if %{PKCS11}
900526
  --enable-native-pkcs11 \
900526
  --with-pkcs11=%{_libdir}/pkcs11/libsofthsm2.so \
900526
%endif
900526
%if %{SDB}
900526
  --with-dlopen=yes \
900526
  --with-dlz-ldap=yes \
900526
  --with-dlz-postgres=yes \
900526
  --with-dlz-mysql=yes \
900526
  --with-dlz-filesystem=yes \
900526
  --with-dlz-bdb=yes \
900526
%endif
900526
%if %{GSSTSIG}
900526
  --with-gssapi=yes \
900526
  --disable-isc-spnego \
900526
%endif
900526
  --enable-fixed-rrset \
c88997
  --with-tuning=large \
900526
  --with-docbook-xsl=%{_datadir}/sgml/docbook/xsl-stylesheets \
900526
;
900526
make %{?_smp_mflags}
900526
900526
# Regenerate dig.1 manpage
900526
pushd bin/dig
900526
make man
900526
popd
900526
pushd bin/python
900526
make man
900526
popd
900526
900526
%if %{test}
900526
%check
900526
if [ "`whoami`" = 'root' ]; then
900526
  set -e
900526
  chmod -R a+rwX .
900526
  pushd bin/tests
900526
  pushd system
900526
  ./ifconfig.sh up
900526
  popd
900526
  make test
900526
  e=$?
900526
  pushd system
900526
  ./ifconfig.sh down
900526
  popd
900526
  popd
900526
  if [ "$e" -ne 0 ]; then
900526
    echo "ERROR: this build of BIND failed 'make test'. Aborting."
900526
    exit $e;
900526
  fi;
900526
else
900526
  echo 'only root can run the tests (they require an ifconfig).'
900526
%endif
900526
900526
%install
900526
rm -rf ${RPM_BUILD_ROOT}
900526
900526
# Build directory hierarchy
900526
mkdir -p ${RPM_BUILD_ROOT}/etc/logrotate.d
900526
mkdir -p ${RPM_BUILD_ROOT}%{_libdir}/bind
900526
mkdir -p ${RPM_BUILD_ROOT}/var/named/{slaves,data,dynamic}
900526
mkdir -p ${RPM_BUILD_ROOT}%{_mandir}/{man1,man5,man8}
900526
mkdir -p ${RPM_BUILD_ROOT}/run/named
900526
mkdir -p ${RPM_BUILD_ROOT}/var/log
900526
900526
#chroot
900526
mkdir -p ${RPM_BUILD_ROOT}/%{chroot_prefix}/{dev,etc,var,run/named}
900526
mkdir -p ${RPM_BUILD_ROOT}/%{chroot_prefix}/var/{log,named,tmp}
900526
900526
# create symlink as it is on real filesystem
900526
pushd ${RPM_BUILD_ROOT}/%{chroot_prefix}/var
900526
ln -s ../run run
900526
popd
900526
900526
mkdir -p ${RPM_BUILD_ROOT}/%{chroot_prefix}/etc/{pki/dnssec-keys,named}
900526
mkdir -p ${RPM_BUILD_ROOT}/%{chroot_prefix}/%{_libdir}/bind
900526
# these are required to prevent them being erased during upgrade of previous
900526
touch ${RPM_BUILD_ROOT}/%{chroot_prefix}/dev/null
900526
touch ${RPM_BUILD_ROOT}/%{chroot_prefix}/dev/random
900526
touch ${RPM_BUILD_ROOT}/%{chroot_prefix}/dev/zero
900526
touch ${RPM_BUILD_ROOT}/%{chroot_prefix}/etc/named.conf
900526
#end chroot
900526
900526
#sdb-chroot
900526
%if %{SDB}
900526
mkdir -p ${RPM_BUILD_ROOT}/%{chroot_sdb_prefix}/{dev,etc,var,run/named}
900526
mkdir -p ${RPM_BUILD_ROOT}/%{chroot_sdb_prefix}/var/{log,named,tmp}
900526
900526
# create symlink as it is on real filesystem
900526
pushd ${RPM_BUILD_ROOT}/%{chroot_sdb_prefix}/var
900526
ln -s ../run run
900526
popd
900526
900526
mkdir -p ${RPM_BUILD_ROOT}/%{chroot_sdb_prefix}/etc/{pki/dnssec-keys,named}
900526
mkdir -p ${RPM_BUILD_ROOT}/%{chroot_sdb_prefix}/%{_libdir}/bind
900526
# these are required to prevent them being erased during upgrade of previous
900526
touch ${RPM_BUILD_ROOT}/%{chroot_sdb_prefix}/dev/null
900526
touch ${RPM_BUILD_ROOT}/%{chroot_sdb_prefix}/dev/random
900526
touch ${RPM_BUILD_ROOT}/%{chroot_sdb_prefix}/dev/zero
900526
touch ${RPM_BUILD_ROOT}/%{chroot_sdb_prefix}/etc/named.conf
900526
%endif
900526
#end sdb-chroot
900526
900526
make DESTDIR=${RPM_BUILD_ROOT} install
900526
900526
# Remove unwanted files
900526
rm -f ${RPM_BUILD_ROOT}/etc/bind.keys
900526
900526
# Systemd unit files
900526
mkdir -p ${RPM_BUILD_ROOT}%{_unitdir}
900526
install -m 644 %{SOURCE37} ${RPM_BUILD_ROOT}%{_unitdir}
900526
install -m 644 %{SOURCE38} ${RPM_BUILD_ROOT}%{_unitdir}
900526
install -m 644 %{SOURCE44} ${RPM_BUILD_ROOT}%{_unitdir}
900526
install -m 644 %{SOURCE46} ${RPM_BUILD_ROOT}%{_unitdir}
900526
900526
%if %{SDB}
900526
install -m 644 %{SOURCE39} ${RPM_BUILD_ROOT}%{_unitdir}
900526
install -m 644 %{SOURCE40} ${RPM_BUILD_ROOT}%{_unitdir}
900526
install -m 644 %{SOURCE45} ${RPM_BUILD_ROOT}%{_unitdir}
900526
%endif
900526
%if %{PKCS11}
900526
install -m 644 %{SOURCE47} ${RPM_BUILD_ROOT}%{_unitdir}
900526
%endif
900526
900526
mkdir -p ${RPM_BUILD_ROOT}%{_libexecdir}
900526
install -m 755 %{SOURCE41} ${RPM_BUILD_ROOT}%{_libexecdir}/setup-named-chroot.sh
900526
install -m 755 %{SOURCE42} ${RPM_BUILD_ROOT}%{_libexecdir}/generate-rndc-key.sh
900526
900526
install -m 644 %SOURCE3 ${RPM_BUILD_ROOT}/etc/logrotate.d/named
900526
mkdir -p ${RPM_BUILD_ROOT}%{_sysconfdir}/sysconfig
900526
install -m 644 %{SOURCE1} ${RPM_BUILD_ROOT}%{_sysconfdir}/sysconfig/named
900526
%if %{SDB}
900526
mkdir -p ${RPM_BUILD_ROOT}/etc/openldap/schema
900526
install -m 644 %{SOURCE8} ${RPM_BUILD_ROOT}/etc/openldap/schema/dnszone.schema
900526
install -m 644 %{SOURCE12} contrib/sdb/pgsql/
900526
%endif
900526
900526
# Install isc/errno2result.h header
900526
install -m 644 lib/isc/unix/errno2result.h ${RPM_BUILD_ROOT}%{_includedir}/isc
900526
900526
# Files required to run test-suite outside of build tree:
900526
cp -fp config.h ${RPM_BUILD_ROOT}/%{_includedir}/bind9
900526
cp -fp lib/dns/include/dns/forward.h ${RPM_BUILD_ROOT}/%{_includedir}/dns
900526
cp -fp lib/isc/unix/include/isc/keyboard.h ${RPM_BUILD_ROOT}/%{_includedir}/isc
900526
900526
# Remove libtool .la files:
900526
find ${RPM_BUILD_ROOT}/%{_libdir} -name '*.la' -exec '/bin/rm' '-f' '{}' ';';
900526
900526
# Remove -devel files out of buildroot if not needed
900526
%if !%{DEVEL}
900526
rm -f ${RPM_BUILD_ROOT}/%{_libdir}/bind9/*so
900526
rm -rf ${RPM_BUILD_ROOT}/%{_includedir}/bind9
900526
rm -f ${RPM_BUILD_ROOT}/%{_mandir}/man1/isc-config.sh.1*
900526
rm -f ${RPM_BUILD_ROOT}/%{_mandir}/man3/lwres*
900526
rm -f ${RPM_BUILD_ROOT}/%{_bindir}/isc-config.sh
900526
%endif
900526
900526
# SDB manpages
900526
%if %{SDB}
900526
install -m 644 %{SOURCE31} ${RPM_BUILD_ROOT}%{_mandir}/man1/ldap2zone.1
900526
install -m 644 %{SOURCE32} ${RPM_BUILD_ROOT}%{_mandir}/man8/named-sdb.8
900526
install -m 644 %{SOURCE33} ${RPM_BUILD_ROOT}%{_mandir}/man1/zonetodb.1
900526
install -m 644 %{SOURCE34} ${RPM_BUILD_ROOT}%{_mandir}/man1/zone2sqlite.1
900526
%endif
900526
900526
# PKCS11 versions manpages
900526
%if %{PKCS11}
900526
pushd ${RPM_BUILD_ROOT}%{_mandir}/man8
900526
ln -s named.8.gz named-pkcs11.8.gz
900526
ln -s dnssec-checkds.8.gz dnssec-checkds-pkcs11.8.gz
900526
ln -s dnssec-coverage.8.gz dnssec-coverage-pkcs11.8.gz
900526
ln -s dnssec-dsfromkey.8.gz dnssec-dsfromkey-pkcs11.8.gz
900526
ln -s dnssec-keyfromlabel.8.gz dnssec-keyfromlabel-pkcs11.8.gz
900526
ln -s dnssec-keygen.8.gz dnssec-keygen-pkcs11.8.gz
900526
ln -s dnssec-revoke.8.gz dnssec-revoke-pkcs11.8.gz
900526
ln -s dnssec-settime.8.gz dnssec-settime-pkcs11.8.gz
900526
ln -s dnssec-signzone.8.gz dnssec-signzone-pkcs11.8.gz
900526
ln -s dnssec-verify.8.gz dnssec-verify-pkcs11.8.gz
c88997
ln -s dnssec-importkey.8.gz dnssec-importkey-pkcs11.8.gz
900526
popd
900526
%endif
900526
900526
# Ghost config files:
900526
touch ${RPM_BUILD_ROOT}%{_localstatedir}/log/named.log
900526
900526
# configuration files:
900526
tar -C ${RPM_BUILD_ROOT} -xjf %{SOURCE28}
900526
touch ${RPM_BUILD_ROOT}/etc/rndc.key
900526
touch ${RPM_BUILD_ROOT}/etc/rndc.conf
900526
mkdir ${RPM_BUILD_ROOT}/etc/named
2c0af7
install -m 640 %{SOURCE26} ${RPM_BUILD_ROOT}%{_sysconfdir}/named.conf
900526
install -m 644 bind.keys ${RPM_BUILD_ROOT}/etc/named.iscdlv.key
900526
install -m 644 %{SOURCE36} ${RPM_BUILD_ROOT}/etc/trusted-key.key
900526
900526
# sample bind configuration files for %%doc:
900526
mkdir -p sample/etc sample/var/named/{data,slaves}
900526
install -m 644 %{SOURCE25} sample/etc/named.conf
900526
# Copy default configuration to %%doc to make it usable from system-config-bind
2c0af7
install -m 644 %{SOURCE26} named.conf.default
900526
install -m 644 ${RPM_BUILD_ROOT}/etc/named.rfc1912.zones sample/etc/named.rfc1912.zones
900526
install -m 644 ${RPM_BUILD_ROOT}/var/named/{named.ca,named.localhost,named.loopback,named.empty}  sample/var/named
900526
for f in my.internal.zone.db slaves/my.slave.internal.zone.db slaves/my.ddns.internal.zone.db my.external.zone.db; do 
900526
  echo '@ in soa localhost. root 1 3H 15M 1W 1D
900526
  ns localhost.' > sample/var/named/$f; 
900526
done
900526
:;
900526
900526
mkdir -p ${RPM_BUILD_ROOT}%{_tmpfilesdir}
900526
install -m 644 %{SOURCE35} ${RPM_BUILD_ROOT}%{_tmpfilesdir}/named.conf
900526
900526
mkdir -p ${RPM_BUILD_ROOT}%{_sysconfdir}/rwtab.d
900526
install -m 644 %{SOURCE43} ${RPM_BUILD_ROOT}%{_sysconfdir}/rwtab.d/named
900526
900526
%pre
900526
if [ "$1" -eq 1 ]; then
900526
  /usr/sbin/groupadd -g %{bind_gid} -f -r named >/dev/null 2>&1 || :;
2c0af7
  /usr/sbin/useradd  -u %{bind_uid} -r -N -M -g named -s /bin/false -d /var/named -c Named named >/dev/null 2>&1 || :;
900526
fi;
900526
:;
900526
900526
%post
900526
/sbin/ldconfig
900526
if [ "$1" -eq 1 ]; then
900526
  # Initial installation
900526
  [ -x /sbin/restorecon ] && /sbin/restorecon /etc/rndc.* /etc/named.* >/dev/null 2>&1 ;
900526
  # rndc.key has to have correct perms and ownership, CVE-2007-6283
900526
  [ -e /etc/rndc.key ] && chown root:named /etc/rndc.key
900526
  [ -e /etc/rndc.key ] && chmod 0640 /etc/rndc.key
2c0af7
else
2c0af7
  # Upgrade, use invalid shell
2c0af7
  if getent passwd named | grep ':/sbin/nologin$' >/dev/null; then
2c0af7
    usermod -s /bin/false named
2c0af7
  fi
900526
fi
2c0af7
%systemd_post named.service
900526
:;
900526
900526
%preun
900526
# Package removal, not upgrade
900526
%systemd_preun named.service
900526
900526
%postun
900526
/sbin/ldconfig
900526
%systemd_postun_with_restart named.service
2c0af7
# Unset on both upgrade and install. Boolean would be unset from now
2c0af7
# until %posttrans on upgrade. Write requests might fail during update.
2c0af7
(export LC_ALL=C; %{selinux_unset_booleans %{selinuxbooleans}})
2c0af7
2c0af7
%posttrans
2c0af7
# selinux-policy-targeted is required for following macro to work.
2c0af7
# This package should not depend on it explicitly, but anaconda ensures
2c0af7
# it is installed. Run after all packages are installed.
2c0af7
(export LC_ALL=C; %{selinux_set_booleans %{selinuxbooleans}})
900526
900526
%if %{SDB}
900526
%post sdb
900526
# Initial installation 
900526
%systemd_post named-sdb.service
900526
900526
%preun sdb
900526
# Package removal, not upgrade
900526
%systemd_preun named-sdb.service
900526
900526
%postun sdb
900526
# Package upgrade, not uninstall
900526
%systemd_postun_with_restart named-sdb.service
900526
%endif
900526
900526
%if %{PKCS11}
900526
%post pkcs11
900526
# Initial installation
900526
%systemd_post named-pkcs11.service
900526
900526
%preun pkcs11
900526
# Package removal, not upgrade
900526
%systemd_preun named-pkcs11.service
900526
900526
%postun pkcs11
900526
# Package upgrade, not uninstall
900526
%systemd_postun_with_restart named-pkcs11.service
900526
%endif
900526
900526
%triggerpostun -n bind -- bind <= 32:9.5.0-20.b1
900526
if [ "$1" -gt 0 ]; then
900526
  [ -e /etc/rndc.key ] && chown root:named /etc/rndc.key
900526
  [ -e /etc/rndc.key ] && chmod 0640 /etc/rndc.key
900526
fi
900526
:;
900526
900526
%triggerun -- bind < 32:9.9.0-0.6.rc1
900526
/sbin/chkconfig --del named >/dev/null 2>&1 || :
900526
/bin/systemctl try-restart named.service >/dev/null 2>&1 || :
900526
900526
%post libs -p /sbin/ldconfig
900526
900526
%postun libs -p /sbin/ldconfig
900526
900526
%post libs-lite -p /sbin/ldconfig
900526
900526
%postun libs-lite -p /sbin/ldconfig
900526
900526
%pre chroot
900526
# updating
900526
if [ "$1" -gt 1 ]; then
900526
    # if %%{chroot_prefix}/var/run is a directory, remove it
900526
    # fix for Bug #1091341
900526
    if [ -d %{chroot_prefix}/var/run ]; then
900526
        rm -rf %{chroot_prefix}/var/run
900526
    fi
900526
fi
900526
900526
%post chroot
900526
%systemd_post named-chroot.service
900526
if [ "$1" -gt 0 ]; then
900526
  [ -e %{chroot_prefix}/dev/random ] || \
900526
    /bin/mknod %{chroot_prefix}/dev/random c 1 8
900526
  [ -e %{chroot_prefix}/dev/zero ] || \
900526
    /bin/mknod %{chroot_prefix}/dev/zero c 1 5
900526
  [ -e %{chroot_prefix}/dev/null ] || \
900526
    /bin/mknod %{chroot_prefix}/dev/null c 1 3
900526
fi;
900526
:;
900526
900526
%posttrans chroot
900526
if [ -x /usr/sbin/selinuxenabled ] && /usr/sbin/selinuxenabled; then
900526
  [ -x /sbin/restorecon ] && /sbin/restorecon %{chroot_prefix}/dev/* > /dev/null 2>&1;
900526
fi;
900526
:;
900526
900526
%preun chroot
900526
%systemd_preun named-chroot.service 
900526
if [ "$1" -eq 0 ]; then
900526
  # Package removal, not upgrade
900526
  rm -f %{chroot_prefix}/dev/{random,zero,null}
900526
fi
900526
:;
900526
900526
%postun chroot
900526
# Package upgrade, not uninstall
900526
%systemd_postun_with_restart named-chroot.service
900526
900526
900526
%if %{SDB}
900526
900526
%post sdb-chroot
900526
%systemd_post named-sdb-chroot.service
900526
if [ "$1" -gt 0 ]; then
900526
  [ -e %{chroot_sdb_prefix}/dev/random ] || \
900526
    /bin/mknod %{chroot_sdb_prefix}/dev/random c 1 8
900526
  [ -e %{chroot_sdb_prefix}/dev/zero ] || \
900526
    /bin/mknod %{chroot_sdb_prefix}/dev/zero c 1 5
900526
  [ -e %{chroot_sdb_prefix}/dev/null ] || \
900526
    /bin/mknod %{chroot_sdb_prefix}/dev/null c 1 3
900526
fi;
900526
:;
900526
900526
%posttrans sdb-chroot
900526
if [ -x /usr/sbin/selinuxenabled ] && /usr/sbin/selinuxenabled; then
900526
  [ -x /sbin/restorecon ] && /sbin/restorecon %{chroot_sdb_prefix}/dev/* > /dev/null 2>&1;
900526
fi;
900526
:;
900526
900526
%preun sdb-chroot
900526
%systemd_preun named-sdb-chroot.service 
900526
if [ "$1" -eq 0 ]; then
900526
  # Package removal, not upgrade
900526
  rm -f %{chroot_sdb_prefix}/dev/{random,zero,null}
900526
fi
900526
:;
900526
900526
%postun sdb-chroot
900526
# Package upgrade, not uninstall
900526
%systemd_postun_with_restart named-sdb-chroot.service
900526
900526
%endif
900526
900526
%clean
900526
rm -rf ${RPM_BUILD_ROOT}
900526
:;
900526
900526
%files
900526
%defattr(-,root,root,-)
900526
%{_libdir}/bind
900526
%config(noreplace) %verify(not md5 size mtime) %{_sysconfdir}/sysconfig/named
900526
%config(noreplace) %attr(0644,root,named) %{_sysconfdir}/named.iscdlv.key
900526
%config(noreplace) %attr(0644,root,named) %{_sysconfdir}/named.root.key
900526
%{_tmpfilesdir}/named.conf
900526
%{_sysconfdir}/rwtab.d/named
900526
%{_unitdir}/named.service
900526
%{_unitdir}/named-setup-rndc.service
900526
%{_sbindir}/arpaname
900526
%{_sbindir}/ddns-confgen
900526
%{_sbindir}/genrandom
900526
%{_sbindir}/named-journalprint
900526
%{_sbindir}/nsec3hash
900526
%{_sbindir}/dnssec*
900526
%exclude %{_sbindir}/dnssec*pkcs11
900526
%{_sbindir}/named-check*
900526
%{_sbindir}/lwresd
900526
%{_sbindir}/named
900526
%{_sbindir}/rndc*
900526
%{_sbindir}/named-compilezone
900526
%{_sbindir}/isc-hmac-fixup
900526
%{_libexecdir}/generate-rndc-key.sh
2c0af7
%{python_sitelib}/isc/
2c0af7
%{python_sitelib}/*.egg-info
900526
%{_mandir}/man1/arpaname.1*
900526
%{_mandir}/man5/named.conf.5*
900526
%{_mandir}/man5/rndc.conf.5*
900526
%{_mandir}/man8/rndc.8*
900526
%{_mandir}/man8/named.8*
900526
%{_mandir}/man8/lwresd.8*
900526
%{_mandir}/man8/dnssec*.8*
900526
%exclude %{_mandir}/man8/dnssec*-pkcs11.8*
900526
%{_mandir}/man8/named-checkconf.8*
900526
%{_mandir}/man8/named-checkzone.8*
900526
%{_mandir}/man8/named-compilezone.8*
900526
%{_mandir}/man8/rndc-confgen.8*
900526
%{_mandir}/man8/ddns-confgen.8*
900526
%{_mandir}/man8/genrandom.8*
900526
%{_mandir}/man8/named-journalprint.8*
900526
%{_mandir}/man8/nsec3hash.8*
900526
%{_mandir}/man8/isc-hmac-fixup.8*
900526
%doc CHANGES README named.conf.default
900526
%doc doc/arm/*html doc/arm/*pdf
900526
%doc sample/
900526
900526
# Hide configuration
900526
%defattr(0640,root,named,0750)
900526
%dir %{_sysconfdir}/named
900526
%config(noreplace) %verify(not link) %{_sysconfdir}/named.conf
900526
%config(noreplace) %verify(not link) %{_sysconfdir}/named.rfc1912.zones
2c0af7
%defattr(0660,root,named,01770)
2c0af7
%dir %{_localstatedir}/named
900526
%defattr(0660,named,named,0770)
900526
%dir %{_localstatedir}/named/slaves
900526
%dir %{_localstatedir}/named/data
900526
%dir %{_localstatedir}/named/dynamic
900526
%ghost %{_localstatedir}/log/named.log
900526
%defattr(0640,root,named,0750)
2c0af7
%config %verify(not link) %{_localstatedir}/named/named.ca
2c0af7
%config %verify(not link) %{_localstatedir}/named/named.localhost
2c0af7
%config %verify(not link) %{_localstatedir}/named/named.loopback
2c0af7
%config %verify(not link) %{_localstatedir}/named/named.empty
900526
%ghost %config(noreplace) %{_sysconfdir}/rndc.key
900526
# ^- rndc.key now created on first install only if it does not exist
900526
# %%verify(not size,not md5) %%config(noreplace) %%attr(0640,root,named) /etc/rndc.conf
900526
# ^- Let the named internal default rndc.conf be used -
900526
#    rndc.conf not required unless it differs from default.
900526
%ghost %config(noreplace) %{_sysconfdir}/rndc.conf
900526
# ^- The default rndc.conf which uses rndc.key is in named's default internal config -
900526
#    so rndc.conf is not necessary.
900526
%config(noreplace) %{_sysconfdir}/logrotate.d/named
900526
%defattr(-,named,named,-)
900526
%dir /run/named
900526
900526
%if %{SDB}
900526
%files sdb
900526
%defattr(-,root,root,-)
900526
%{_unitdir}/named-sdb.service
900526
%{_mandir}/man1/zone2ldap.1*
900526
%{_mandir}/man1/ldap2zone.1*
900526
%{_mandir}/man1/zonetodb.1*
900526
%{_mandir}/man1/zone2sqlite.1*
900526
%{_mandir}/man8/named-sdb.8*
900526
%doc contrib/sdb/ldap/README.ldap contrib/sdb/ldap/INSTALL.ldap contrib/sdb/pgsql/README.sdb_pgsql
900526
%dir %{_sysconfdir}/openldap/schema
900526
%config(noreplace) %{_sysconfdir}/openldap/schema/dnszone.schema
900526
%{_sbindir}/named-sdb
900526
%{_sbindir}/zone2ldap
900526
%{_sbindir}/ldap2zone
900526
%{_sbindir}/zonetodb
900526
%{_sbindir}/zone2sqlite
900526
%endif
900526
900526
%files libs
900526
%defattr(-,root,root,-)
900526
%{_libdir}/*so.*
900526
%exclude %{_libdir}/*export.so.*
900526
%exclude %{_libdir}/*pkcs11.so.*
900526
%exclude %{_libdir}/*pkcs11-export.so.*
900526
900526
%files libs-lite
900526
%defattr(-,root,root,-)
900526
%{_libdir}/*export.so.*
900526
%exclude %{_libdir}/*pkcs11-export.so.*
900526
900526
%files license
900526
%defattr(-,root,root,-)
900526
%doc COPYRIGHT
900526
900526
%files utils
900526
%defattr(-,root,root,-)
900526
%{_bindir}/dig
900526
%{_bindir}/host
900526
%{_bindir}/nslookup
900526
%{_bindir}/nsupdate
900526
%{_mandir}/man1/host.1*
900526
%{_mandir}/man1/nsupdate.1*
900526
%{_mandir}/man1/dig.1*
900526
%{_mandir}/man1/nslookup.1*
900526
%{_sysconfdir}/trusted-key.key
900526
900526
%if %{DEVEL}
900526
%files devel
900526
%defattr(-,root,root,-)
900526
%{_libdir}/*so
900526
%exclude %{_libdir}/*export.so
900526
%exclude %{_libdir}/*pkcs11.so
900526
%exclude %{_libdir}/*pkcs11-export.so
900526
%{_includedir}/bind9
900526
%exclude %{_includedir}/bind9/pkcs11
900526
%exclude %{_includedir}/bind9/pk11
900526
%{_mandir}/man1/isc-config.sh.1*
900526
%{_mandir}/man3/lwres*
900526
%{_bindir}/isc-config.sh
900526
%endif
900526
900526
%files lite-devel
900526
%defattr(-,root,root,-)
900526
%{_libdir}/*export.so
900526
%exclude %{_libdir}/*pkcs11-export.so
900526
%{_includedir}/dns
900526
%{_includedir}/dst
900526
%{_includedir}/irs
900526
%{_includedir}/isc
900526
%{_includedir}/isccfg
900526
900526
%files chroot
900526
%defattr(-,root,root,-)
900526
%{_unitdir}/named-chroot.service
900526
%{_unitdir}/named-chroot-setup.service
900526
%{_libexecdir}/setup-named-chroot.sh
900526
%ghost %{chroot_prefix}/dev/null
900526
%ghost %{chroot_prefix}/dev/random
900526
%ghost %{chroot_prefix}/dev/zero
900526
%defattr(0640,root,named,0750)
900526
%dir %{chroot_prefix}
900526
%dir %{chroot_prefix}/dev
900526
%dir %{chroot_prefix}/etc
900526
%dir %{chroot_prefix}/etc/named
900526
%dir %{chroot_prefix}/etc/pki
900526
%dir %{chroot_prefix}/etc/pki/dnssec-keys
900526
%dir %{chroot_prefix}/var
900526
%dir %{chroot_prefix}/run
900526
%ghost %config(noreplace) %{chroot_prefix}/etc/named.conf
900526
%defattr(-,root,root,-)
900526
%dir %{chroot_prefix}/usr
900526
%dir %{chroot_prefix}/%{_libdir}
900526
%dir %{chroot_prefix}/%{_libdir}/bind
2c0af7
%defattr(0660,root,named,01770)
2c0af7
%dir %{chroot_prefix}/var/named
900526
%defattr(0660,named,named,0770)
900526
%dir %{chroot_prefix}/var/tmp
900526
%dir %{chroot_prefix}/var/log
900526
%defattr(-,named,named,-)
900526
%dir %{chroot_prefix}/run/named
900526
%{chroot_prefix}/var/run
900526
900526
%if %{SDB}
900526
%files sdb-chroot
900526
%defattr(-,root,root,-)
900526
%{_unitdir}/named-sdb-chroot.service
900526
%{_unitdir}/named-sdb-chroot-setup.service
900526
%{_libexecdir}/setup-named-chroot.sh
900526
%ghost %{chroot_sdb_prefix}/dev/null
900526
%ghost %{chroot_sdb_prefix}/dev/random
900526
%ghost %{chroot_sdb_prefix}/dev/zero
900526
%defattr(0640,root,named,0750)
900526
%dir %{chroot_sdb_prefix}
900526
%dir %{chroot_sdb_prefix}/dev
900526
%dir %{chroot_sdb_prefix}/etc
900526
%dir %{chroot_sdb_prefix}/etc/named
900526
%dir %{chroot_sdb_prefix}/etc/pki
900526
%dir %{chroot_sdb_prefix}/etc/pki/dnssec-keys
900526
%dir %{chroot_sdb_prefix}/var
900526
%dir %{chroot_sdb_prefix}/run
900526
%ghost %config(noreplace) %{chroot_sdb_prefix}/etc/named.conf
2c0af7
%defattr(0660,root,named,01770)
2c0af7
%dir %{chroot_sdb_prefix}/var/named
900526
%defattr(-,root,root,-)
900526
%dir %{chroot_sdb_prefix}/usr
900526
%dir %{chroot_sdb_prefix}/%{_libdir}
900526
%dir %{chroot_sdb_prefix}/%{_libdir}/bind
900526
%defattr(0660,named,named,0770)
900526
%dir %{chroot_sdb_prefix}/var/tmp
900526
%dir %{chroot_sdb_prefix}/var/log
900526
%defattr(-,named,named,-)
900526
%dir %{chroot_sdb_prefix}/run/named
900526
%{chroot_sdb_prefix}/var/run
900526
%endif
900526
900526
%if %{PKCS11}
900526
%files pkcs11
900526
%defattr(-,root,root,-)
900526
%{_sbindir}/named-pkcs11
900526
%{_unitdir}/named-pkcs11.service
900526
%{_mandir}/man8/named-pkcs11.8*
900526
900526
%files pkcs11-utils
900526
%defattr(-,root,root,-)
900526
%{_sbindir}/dnssec*pkcs11
900526
%{_sbindir}/pkcs11-destroy
900526
%{_sbindir}/pkcs11-keygen
900526
%{_sbindir}/pkcs11-list
900526
%{_sbindir}/pkcs11-tokens
900526
%{_mandir}/man8/pkcs11*.8*
900526
%{_mandir}/man8/dnssec*-pkcs11.8*
900526
900526
%files pkcs11-libs
900526
%defattr(-,root,root,-)
900526
%{_libdir}/*pkcs11.so.*
900526
%{_libdir}/*pkcs11-export.so.*
900526
900526
%files pkcs11-devel
900526
%defattr(-,root,root,-)
900526
%{_includedir}/bind9/pk11
900526
%{_includedir}/bind9/pkcs11
900526
%{_libdir}/*pkcs11.so
900526
%{_libdir}/*pkcs11-export.so
900526
900526
%endif
900526
900526
%changelog
2c0af7
* Thu Sep 20 2018 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-72
2c0af7
- Fix automatic selinux boolean named_write_master_zones (#1569466)
2c0af7
- Allow starting named with readonly home again
2c0af7
2c0af7
* Wed Aug 08 2018 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-71
24f315
- Fix CVE-2018-5740
24f315
2c0af7
* Sun Jun 24 2018 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-70
2c0af7
- Fix compiler warnings
2c0af7
2c0af7
* Thu Jun 21 2018 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-69
2c0af7
- Refetch always records with TTL 0 (#1549130)
2c0af7
2c0af7
* Thu Jun 21 2018 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-68
2c0af7
- Detect and disable MD5 functions in FIPS 140-2 mode (#1519306)
2c0af7
2c0af7
* Thu Jun 14 2018 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-67
2c0af7
- Move change of dns_view_t to the end (#1452091)
2c0af7
2c0af7
* Fri Jun 01 2018 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-66
2c0af7
- Correct recursing file name (#1435883)
2c0af7
- Use python binary again, install all modules (#1510008)
2c0af7
2c0af7
* Thu May 31 2018 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-65
2c0af7
- Add rndc secroots and recursing output files into data (#1435883)
2c0af7
2c0af7
* Mon May 28 2018 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-64
2c0af7
- Backported negative trust anchors (#1452091)
2c0af7
2c0af7
* Mon May 28 2018 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-63
2c0af7
- Make named home writeable (#1569466)
2c0af7
- Change named shell to /bin/false
2c0af7
2c0af7
* Tue May 22 2018 Martin Sehnoutka <msehnout@redhat.com> - 32:9.9.4-62
2c0af7
- Resolves: #1510008 - add support for dnssec-keymgr
2c0af7
c88997
* Tue Jan 16 2018 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-61
20aab1
- Fix CVE-2017-3145
20aab1
c88997
* Tue Dec 05 2017 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-60
c88997
- Fix regression caused by bug #1470637
c88997
c88997
* Mon Nov 13 2017 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-59
c88997
- Support for additional signing algorithms in rndc (#1501531)
c88997
- New autogenerated rndc keys will use hmac-sha256 algorithm
c88997
c88997
* Tue Oct 31 2017 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-58
c88997
- Fix multilib regression in headers
c88997
c88997
* Mon Oct 30 2017 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-57
c88997
- Add with-tunning=large support (#rh1464850)
c88997
c88997
* Thu Oct 19 2017 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-56
c88997
- Fix named-chroot restart leak (#1503646)
c88997
c88997
* Thu Oct 12 2017 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-55
c88997
- Handle dig timeouts the same way as upstream (#1470637)
c88997
c88997
* Wed Oct 11 2017 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-54
c88997
- Do not use next search domain on timeout from dig (#1470637)
c88997
c88997
* Tue Aug 01 2017 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-53
c88997
- Fixed TSIG validation of AXFR and IXFR (#1476013)
c88997
c88997
* Fri Jul 07 2017 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-52
c88997
- Add missing manual for dnssec-importkey (#1472862)
900526
900526
* Thu Jun 29 2017 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-51
900526
- Fix CVE-2017-3142 and CVE-2017-3143
900526
900526
* Mon May 22 2017 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-50
900526
- Update root servers and trust anchor (#1452635)
900526
900526
* Thu Apr 20 2017 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-49
900526
- Address deadlock between view.c and adb.c (#1416304)
900526
900526
* Tue Apr 11 2017 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-48
900526
- Fix CVE-2017-3136 (ISC change 4575)
900526
- Fix CVE-2017-3137 (ISC change 4578)
900526
900526
* Wed Mar 29 2017 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-47
900526
- Simplify change of used config file, point to KB article (#1271315)
900526
900526
* Tue Mar 28 2017 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-46
900526
- Make comment how to use different config file (#1271315)
900526
900526
* Thu Mar 16 2017 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-45
900526
- Install again dns/dlz.h skipped in rebase
900526
- Fixed coverity warnings on reenabled test dlzexternal
900526
900526
* Tue Mar 14 2017 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-44
900526
- Backported new upstream dyndb interface, removed dynamic_db (#1393886)
900526
900526
* Mon Feb 27 2017 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-43
900526
- Do not warn on WKS patch (#1392362)
900526
900526
* Tue Feb 21 2017 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-42
900526
- Support WKS records in chroot
900526
900526
* Wed Feb 08 2017 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-41
900526
- Fix CVE-2017-3135 (ISC change 4557)
900526
- Fix and test caching CNAME before DNAME (ISC change 4558)
900526
900526
* Fri Jan 20 2017 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-40
900526
- Fix possible infinite loop in start_lookup (CVE-2016-2775)
900526
- Do not change lib permissions in chroot (#1392531)
900526
900526
* Mon Jan 09 2017 Petr Menšík <pemensik@redhat.com> - 32:9.9.4-39
900526
- Fix CVE-2016-9131 (ISC change 4508)
900526
- Fix CVE-2016-9147 (ISC change 4510)
900526
- Fix regression introduced by CVE-2016-8864 (ISC change 4530)
900526
- Fix CVE-2016-9444 (ISC change 4517)
900526
900526
* Mon Oct 31 2016 Tomas Hozza <thozza@redhat.com> - 32:9.9.4-38
900526
- Fix CVE-2016-8864
900526
900526
* Fri Sep 23 2016 Tomas Hozza <thozza@redhat.com> - 32:9.9.4-37
900526
- Fix CVE-2016-2776
900526
900526
* Wed May 11 2016 Tomas Hozza <thozza@redhat.com> - 32:9.9.4-36
900526
- Added automatic interface scan functionality (#1294506)
900526
- Removed NetworkManager dispatcher script since it is not needed any more (#1294506)
900526
900526
* Wed Apr 13 2016 Tomas Hozza <thozza@redhat.com> - 32:9.9.4-35
900526
- Added GeoIP support (#1220594)
900526
900526
* Fri Apr 01 2016 Tomas Hozza <thozza@redhat.com> - 32:9.9.4-34
900526
- Added support for CAA records (#1306610)
900526
- Use HTTPS URL instead of FTP for upstream sources (#1319280)
900526
900526
* Tue Mar 22 2016 Tomas Hozza <thozza@redhat.com> - 32:9.9.4-33
900526
- Fix excessive queries caused by DS chasing with stub zones when DNSSEC is not used (#1291185)
900526
- Fix error in internal test suite (#1259514)
900526
- Fix named-checkconf call in *-chroot.service files (#1278082)
900526
- Fix incorrect path in BIND sample configuration and added comment to default configuration (#1247502)
900526
900526
* Tue Mar 08 2016 Tomas Hozza <thozza@redhat.com> - 32:9.9.4-32
900526
- Fix CVE-2016-1285 and CVE-2016-1286
900526
900526
* Mon Jan 18 2016 Tomas Hozza <thozza@redhat.com> - 32:9.9.4-31
900526
- Fix CVE-2015-8704
900526
900526
* Mon Dec 14 2015 Tomas Hozza <thozza@redhat.com> - 32:9.9.4-30
900526
- Fix CVE-2015-8000
900526
900526
* Wed Sep 02 2015 Tomas Hozza <thozza@redhat.com> - 32:9.9.4-29
900526
- Fix CVE-2015-5722
900526
900526
* Wed Aug 05 2015 Tomas Hozza <thozza@redhat.com> - 32:9.9.4-28
900526
- Increase ISC_SOCKET_MAXEVENTS to 2048 (#1235609)
900526
900526
* Tue Jul 28 2015 Tomas Hozza <thozza@redhat.com> - 32:9.9.4-27
900526
- Fix CVE-2015-5477
900526
900526
* Wed Jul 08 2015 Tomas Hozza <thozza@redhat.com> - 32:9.9.4-26
900526
- Fix CVE-2015-4620
900526
900526
* Tue Jul 07 2015 Tomas Hozza <thozza@redhat.com> - 32:9.9.4-25
900526
- Fixed nsupdate realm auto-detection (#1214827)
900526
900526
* Mon Jun 29 2015 Tomas Hozza <thozza@redhat.com> - 32:9.9.4-24
900526
- Reintroduce the DISABLE_ZONE_CHECKING into /etc/sysconfig/named (#1236475)
900526
900526
* Mon Jun 01 2015 Tomas Hozza <thozza@redhat.com> - 32:9.9.4-23
900526
- Don't copy /etc/localtime on -chroot package installation (#1186773)
900526
- Fix SPF resource records check to comply with RFC7208 (#1215164)
900526
- Don't use ISC's DLV by default (#1223336)
900526
900526
* Fri May 22 2015 Tomas Hozza <thozza@redhat.com> - 32:9.9.4-22
900526
- Add version specific requires on bind for bind-pkcs11 (Related: #1097753)
900526
- Resolve issues found by static analysis (Related: #1097753)
900526
900526
* Thu May 21 2015 Tomas Hozza <thozza@redhat.com> - 32:9.9.4-21
900526
- Added native PKCS#11 functionality (#1097753)
900526
900526
* Wed May 20 2015 Tomas Hozza <thozza@redhat.com> - 32:9.9.4-20
900526
- DNS resolution failure in high load environment with SERVFAIL and "out of memory/success" in the log (#1221180)
900526
900526
* Thu May 14 2015 Tomas Hozza <thozza@redhat.com> - 32:9.9.4-19
900526
- Install config for tmpfiles under %%{_tmpfilesdir} (#1180976)
900526
- Fixed systemctl path in logrotate configuration (#1164264)
900526
- remove information about system-config-bind from named.8 man page (#1152066)
900526
900526
* Mon Mar 02 2015 Tomas Hozza <thozza@redhat.com> - 32:9.9.4-18.1
900526
- Fix CVE-2015-1349
900526
900526
* Wed Dec 10 2014 Tomas Hozza <thozza@redhat.com> - 32:9.9.4-18
900526
- Fix CVE-2014-8500 (#1171976)
900526
900526
* Thu Sep 18 2014 Tomas Hozza <thozza@redhat.com> - 32:9.9.4-17
900526
- Fix error in dyndb API that can cause named to freeze on shutdown (#1142150)
900526
- Fix error in triggerun scriptlet (#1143033)
900526
- Remove /var/named/chroot/var/run on bind-chroot update if it is a directory (#1091341)
900526
900526
* Thu Aug 21 2014 Tomas Hozza <thozza@redhat.com> - 32:9.9.4-16
900526
- Add versioned requires on bind-libs to bind-utils and bind-sdb
900526
900526
* Wed Aug 20 2014 Tomas Hozza <thozza@redhat.com> - 32:9.9.4-15
900526
- Use /dev/urandom when generating rndc.key file (#1107568)
900526
- Allow authentication using TSIG in allow-notify configuration statement (#1067424)
900526
- Fix race condition when destroying a resolver fetch object (#1072379)
900526
- Increase defaults for lwresd workers and make workers and client objects number configurable (#1098959)
900526
- Configure BIND with --with-dlopen=yes to support dynamically loadable DLZ drivers (#1096688)
900526
900526
* Fri Jan 24 2014 Daniel Mach <dmach@redhat.com> - 32:9.9.4-14
900526
- Mass rebuild 2014-01-24
900526
900526
* Wed Jan 15 2014 Honza Horak <hhorak@redhat.com> - 32:9.9.4-13
900526
- Rebuild for mariadb-libs
900526
  Related: #1045013
900526
900526
* Tue Jan 14 2014 Tomas Hozza <thozza@redhat.com> 32:9.9.4-12
900526
- Fix CVE-2014-0591
900526
900526
* Mon Jan 06 2014 Tomas Hozza <thozza@redhat.com> 32:9.9.4-11
900526
- Build against libdb instead of libdb4 (#1044990)
900526
900526
* Fri Dec 27 2013 Daniel Mach <dmach@redhat.com> - 32:9.9.4-10
900526
- Mass rebuild 2013-12-27
900526
900526
* Wed Dec 18 2013 Tomas Hozza <thozza@redhat.com> 32:9.9.4-9
900526
- Fix crash in rbtdb after two sucessive getoriginnode() calls (#1044026)
900526
900526
* Tue Dec 17 2013 Tomas Hozza <thozza@redhat.com> 32:9.9.4-8
900526
- Split chroot package for named and named-sdb
900526
- Extract setting-up/destroying of chroot to a separate systemd service (#1004300)
900526
900526
* Thu Dec 05 2013 Tomas Hozza <thozza@redhat.com> 32:9.9.4-7
900526
- Create symlink /var/named/chroot/var/run -> /var/named/chroot/run (#1024384)
900526
- Added session-keyfile statement into default named.conf since we use /run/named (#1024384)
900526
900526
* Thu Nov 28 2013 Tomas Hozza <thozza@redhat.com> 32:9.9.4-6
900526
- Fixed memory leak in nsupdate if 'realm' was used multiple times (#1034824)
900526
900526
* Tue Nov 12 2013 Tomas Hozza <thozza@redhat.com> 32:9.9.4-5
900526
- Install configuration for rwtab and fix chroot setup script (#1028189)
900526
- use --enable-filter-aaaa when building bind to enable filter-aaaa-on-v4 option (#1025245)
900526
900526
* Thu Oct 31 2013 Tomas Hozza <thozza@redhat.com> 32:9.9.4-4
900526
- Correct the patch for #1020683
900526
900526
* Tue Oct 29 2013 Tomas Hozza <thozza@redhat.com> 32:9.9.4-3
900526
- Fix race condition on send buffers in dighost.c (#1020683)
900526
900526
* Tue Oct 08 2013 Tomas Hozza <thozza@redhat.com> 32:9.9.4-2
900526
- install isc/errno2result.h header (#1015165)
900526
900526
* Mon Sep 23 2013 Tomas Hozza <thozza@redhat.com> 32:9.9.4-1
900526
- update to 9.9.4 (#1010200)
900526
- drop merged patches
900526
- modify patches to fit on new version
900526
900526
* Tue Sep 10 2013 Tomas Hozza <thozza@redhat.com> 32:9.9.3-8.P2
900526
- Fix [ISC-Bugs #34738] dns_journal_open() returns a pointer to stack
900526
900526
* Fri Aug 16 2013 Tomas Hozza <thozza@redhat.com> 32:9.9.3-7.P2
900526
- Don't generate rndc.key if there exists rndc.conf
900526
900526
* Fri Aug 16 2013 Tomas Hozza <thozza@redhat.com> 32:9.9.3-6.P2
900526
- don't install named-sdb.service if SDB macro is defined to zero
900526
900526
* Sun Jul 28 2013 Tomas Hozza <thozza@redhat.com> 32:9.9.3-5.P2
900526
- update to 9.9.3-P2 (fix for CVE-2013-4854)
900526
- update RRL patch to 9.9.3-P2-rl.13207.22
900526
- Fix script for setting up chroot so it unmounts everything successfully
900526
900526
* Wed Jul 10 2013 Tomas Hozza <thozza@redhat.com> 32:9.9.3-4.P1
900526
- Fix dates in Changelog
900526
900526
* Wed Jun 05 2013 Tomas Hozza <thozza@redhat.com> 32:9.9.3-3.P1
900526
- update to 9.9.3-P1 (fix for CVE-2013-3919)
900526
- update RRL patch to 9.9.3-P1-rl.156.01
900526
900526
* Mon Jun 03 2013 Tomas Hozza <thozza@redhat.com> 32:9.9.3-2
900526
- bump release to prevent update path issues
900526
900526
* Mon Jun 03 2013 Tomas Hozza <thozza@redhat.com> 32:9.9.3-1
900526
- update to 9.9.3
900526
- install dns/update.h header
900526
- update RRL patch to the latest version 9.9.3-rl.150.20
900526
900526
* Fri May 17 2013 Tomas Hozza <thozza@redhat.com> 32:9.9.3-0.7.rc2
900526
- Fix segfault in host/nslookup (#878139)
900526
900526
* Mon May 13 2013 Tomas Hozza <thozza@redhat.com> 32:9.9.3-0.6.rc2
900526
- update to 9.9.3rc2
900526
- part of bind97-exportlib.patch not needed any more
900526
- bind-9.9.1-P2-multlib-conflict.patch modified to reflect latest source
900526
- rl-9.9.3rc1.patch -> rl-9.9.3rc2.patch
900526
- bind99-opts.patch merged
900526
900526
* Fri May 03 2013 Tomas Hozza <thozza@redhat.com> 32:9.9.3-0.5.rc1
900526
- Include recursion Warning in named.conf and named.conf.sample (#740894)
900526
- Include managed-keys-directory statement in named.conf.sample (#948026)
900526
900526
* Thu May 02 2013 Tomas Hozza <thozza@redhat.com> 32:9.9.3-0.4.rc1
900526
- Fix zone2sqlite to quote table names when creating/dropping/inserting (#919417)
900526
900526
* Fri Apr 19 2013 Adam Tkac <atkac redhat com> 32:9.9.3-0.3.rc1
900526
- fix crash in nsupdate when processing "-r" parameter (#949544)
900526
900526
* Tue Apr 16 2013 Adam Tkac <atkac redhat com> 32:9.9.3-0.2.rc1
900526
- ship dns/rrl.h in -devel subpkg
900526
900526
* Tue Apr 16 2013 Adam Tkac <atkac redhat com> 32:9.9.3-0.1.rc1
900526
- update to 9.9.3rc1
900526
- bind-96-libtool2.patch has been merged
900526
- fix bind tmpfiles.d for named.pid /run migration (#920713)
900526
900526
* Wed Mar 27 2013 Tomas Hozza <thozza@redhat.com> 32:9.9.2-12.P2
900526
- New upstream patch version fixing CVE-2013-2266 (#928032)
900526
900526
* Tue Mar 19 2013 Adam Tkac <atkac redhat com> 32:9.9.2-11.P1
900526
- move pidfile to /run/named/named.pid
900526
900526
* Wed Mar 06 2013 Tomas Hozza <thozza@redhat.com> 32:9.9.2-10.P1
900526
- Fix Makefile.in to include header added by rate limiting patch (#918330)
900526
900526
* Tue Mar 05 2013 Adam Tkac <atkac redhat com> 32:9.9.2-9.P1
900526
- drop some developer-only documentation and move ARM to %%docdir
900526
900526
* Mon Feb 18 2013 Adam Tkac <atkac redhat com> 32:9.9.2-8.P1
900526
- include rate limiting patch
900526
900526
* Tue Jan 29 2013 Tomas Hozza <thozza@redhat.com> 32:9.9.2-7.P1
900526
- Corrected IP addresses in named.ca (#901741)
900526
- mount/umount /var/named in setup-named-chroot.sh as the last one (#904666)
900526
900526
* Thu Dec 20 2012 Adam Tkac <atkac redhat com> 32:9.9.2-6.P1
900526
- generate /etc/rndc.key during named service startup if doesn't exist
900526
- increase startup timeout in systemd units to 90sec (default)
900526
- fix IDN related statement in dig.1 manpage
900526
900526
* Wed Dec 05 2012 Tomas Hozza <thozza@redhat.com> 32:9.9.2-5.P1
900526
- update to bind-9.9.2-P1
900526
900526
* Mon Nov 12 2012 Adam Tkac <atkac redhat com> 32:9.9.2-4
900526
- document dig exit codes in manpage
900526
- ignore empty "search" options in resolv.conf
900526
900526
* Mon Nov 12 2012 Adam Tkac <atkac redhat com> 32:9.9.2-3
900526
- drop PKCS11 support on rhel
900526
900526
* Thu Oct 11 2012 Adam Tkac <atkac redhat com> 32:9.9.2-2
900526
- install isc/stat.h
900526
900526
* Thu Oct 11 2012 Adam Tkac <atkac redhat com> 32:9.9.2-1
900526
- update to 9.9.2
900526
- bind97-rh714049.patch has been dropped
900526
- patches merged
900526
  - bind98-rh816164.patch
900526
900526
* Thu Sep 13 2012 Adam Tkac <atkac redhat com> 32:9.9.1-10.P3
900526
- update to bind-9.9.1-P3
900526
900526
* Wed Aug 22 2012 Tomas Hozza <thozza@redhat.com> 32:9.9.1-9.P2
900526
- fixed SPEC file so it comply with new systemd-rpm macros guidelines (#850045)
900526
- changed %%define macros to %%global and fixed several rpmlint warnings
900526
900526
* Wed Aug 08 2012 Tomas Hozza <thozza@redhat.com> 32:9.9.1-8.P2
900526
- Changed PrivateTmp to "false" in *-chroot.service unit files (#825869)
900526
900526
* Wed Aug 01 2012 Tomas Hozza <thozza@redhat.com> 32:9.9.1-7.P2
900526
- Fixed bind-devel multilib conflict (#478718)
900526
900526
* Mon Jul 30 2012 Tomas Hozza <thozza@redhat.com> 32:9.9.1-6.P2
900526
- Fixed bad path to systemctl in /etc/NetworkManager/dispatcher.d/13-named (#844047)
900526
- Fixed path to libdb.so in config.dlz.in
900526
900526
* Thu Jul 26 2012 Adam Tkac <atkac redhat com> 32:9.9.1-5.P2
900526
- update to 9.9.1-P2
900526
900526
* Wed Jul 18 2012 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 32:9.9.1-4.P1
900526
- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild
900526
900526
* Wed Jul 11 2012 Ville Skyttä <ville.skytta@iki.fi> - 32:9.9.1-3.P1
900526
- Avoid shell invocation and dep for -libs-lite %%postun.
900526
900526
* Mon Jun 04 2012 Adam Tkac <atkac redhat com> 32:9.9.1-2.P1
900526
- update to 9.9.1-P1 (CVE-2012-1667)
900526
900526
* Thu May 24 2012 Adam Tkac <atkac redhat com> 32:9.9.1-1
900526
- update to 9.9.1
900526
- bind99-coverity.patch merged
900526
- bind-9.5-overflow.patch merged
900526
900526
* Mon May 07 2012 Adam Tkac <atkac redhat com> 32:9.9.0-6
900526
- nslookup: return non-zero exit code when fail to get answer (#816164)
900526
900526
* Thu Apr 26 2012 Adam Tkac <atkac redhat com> 32:9.9.0-5
900526
- initscript: don't umount /var/named when didn't mount it
900526
900526
* Tue Apr 24 2012 Adam Tkac <atkac redhat com> 32:9.9.0-4
900526
- apply all non-SDB patches before SDB ones (#804475)
900526
- enable Berkeley DB DLZ backend (#804478)
900526
900526
* Thu Apr 12 2012 Adam Tkac <atkac redhat com> 32:9.9.0-3
900526
- bind97-rh699951.patch is no longer needed (different fix is in 9.9.0)
900526
900526
* Mon Mar 26 2012 Adam Tkac <atkac redhat com> 32:9.9.0-2
900526
- remove unneeded bind99-v6only.patch
900526
900526
* Mon Mar 05 2012 Adam Tkac <atkac redhat com> 32:9.9.0-1
900526
- update to 9.9.0
900526
- load dynamic DBs later (and update dyndb patch)
900526
- fix memory leak in named during processing of rndc command
900526
- don't call `rndc-confgen -a` in "post" section
900526
- fix some packaging bugs in bind-chroot
900526
900526
* Wed Feb 15 2012 Adam Tkac <atkac redhat com> 32:9.9.0-0.8.rc2
900526
- build with "--enable-fixed-rrset"
900526
900526
* Wed Feb 01 2012 Adam Tkac <atkac redhat com> 32:9.9.0-0.7.rc2
900526
- update to 9.9.0rc2
900526
- doc/rfc and doc/draft are no longer shipped in tarball
900526
900526
* Mon Jan 30 2012 Adam Tkac <atkac redhat com> 32:9.9.0-0.6.rc1
900526
- retire initscript in favour of systemd unit files (#719419)
900526
900526
* Thu Jan 12 2012 Adam Tkac <atkac redhat com> 32:9.9.0-0.5.rc1
900526
- update to 9.9.0rc1
900526
900526
* Wed Dec 07 2011 Adam Tkac <atkac redhat com> 32:9.9.0-0.4.b2
900526
- ship dns/forward.h in -devel subpkg
900526
900526
* Tue Nov 22 2011 Adam Tkac <atkac redhat com> 32:9.9.0-0.3.b2
900526
- update to 9.9.0b2 (CVE-2011-4313)
900526
- patches merged
900526
  - bind97-rh700097.patch
900526
  - bind99-cinfo.patch
900526
900526
* Mon Nov 14 2011 Adam Tkac <atkac redhat com> 32:9.9.0-0.2.b1
900526
- ship dns/clientinfo.h in bind-devel
900526
900526
* Fri Nov 11 2011 Adam Tkac <atkac redhat com> 32:9.9.0-0.1.b1
900526
- update to 9.9.0b1
900526
- bind98-dlz_buildfix.patch merged
900526
900526
* Fri Oct 28 2011 Adam Tkac <atkac redhat com> 32:9.8.1-4
900526
- nslookup failed to resolve name in certain cases
900526
900526
* Mon Sep 26 2011 Adam Tkac <atkac redhat com> 32:9.8.1-3
900526
- remove deps filter, it is no longer needed (#739663)
900526
900526
* Fri Sep 09 2011 Adam Tkac <atkac redhat com> 32:9.8.1-2
900526
- fix logrotate config file (#725256)
900526
900526
* Wed Sep 07 2011 Adam Tkac <atkac redhat com> 32:9.8.1-1
900526
- update to 9.8.1
900526
- ship /etc/trusted-key.key (needed by dig)
900526
- use select instead of epoll in export libs (#735103)
900526
900526
* Wed Aug 31 2011 Adam Tkac <atkac redhat com> 32:9.8.1-0.3.rc1
900526
- fix DLZ related compilation issues
900526
- make /etc/named.{root,iscdlv}.key world-readable
900526
- add bind-libs versioned requires to bind pkg
900526
900526
* Wed Aug 31 2011 Adam Tkac <atkac redhat com> 32:9.8.1-0.2.rc1
900526
- fix rare race condition in request.c
900526
- print "the working directory is not writable" as debug message
900526
- re-add configtest target to initscript
900526
- initscript: sybsys name is always named, not named-sdb
900526
- nsupdate returned zero when target zone didn't exist (#700097)
900526
- nsupdate could have failed if server has multiple IPs and the first
900526
  was unreachable (#714049)
900526
900526
* Wed Aug 31 2011 Adam Tkac <atkac redhat com> 32:9.8.1-0.1.rc1
900526
- update to 9.8.1rc1
900526
- patches merged
900526
  - bind97-rh674334.patch
900526
  - bind97-cleanup.patch
900526
  - bind98-includes.patch
900526
900526
* Wed Aug 03 2011 Adam Tkac <atkac redhat com> 32:9.8.0-9.P4
900526
- improve patch for #725741
900526
900526
* Tue Jul 26 2011 Adam Tkac <atkac redhat com> 32:9.8.0-8.P4
900526
- named could have crashed during reload when dyndb module is used (#725741)
900526
900526
* Tue Jul 05 2011 Adam Tkac <atkac redhat com> 32:9.8.0-7.P4
900526
- update to 9.8.0-P4
900526
  - bind98-libdns-export.patch merged
900526
900526
* Thu Jun 02 2011 Adam Tkac <atkac redhat com> 32:9.8.0-6.P2
900526
- update the dyndb patch
900526
900526
* Fri May 27 2011 Adam Tkac <atkac redhat com> 32:9.8.0-5.P2
900526
- fix compilation of libdns-export.so
900526
900526
* Fri May 27 2011 Adam Tkac <atkac redhat com> 32:9.8.0-4.P2
900526
- update to 9.8.0-P2 (CVE-2011-1910)
900526
900526
* Fri May 06 2011 Adam Tkac <atkac redhat com> 32:9.8.0-3.P1
900526
- update to 9.8.0-P1 (CVE-2011-1907)
900526
900526
* Wed Mar 23 2011 Dan Horák <dan@danny.cz> - 32:9.8.0-2
900526
- rebuilt for mysql 5.5.10 (soname bump in libmysqlclient)
900526
900526
* Thu Mar 03 2011 Adam Tkac <atkac redhat com> 32:9.8.0-1
900526
- update to 9.8.0
900526
- bind97-rh665971.patch merged
900526
900526
* Thu Mar 03 2011 Adam Tkac <atkac redhat com> 32:9.8.0-0.4.rc1
900526
- revert previous change (integration with libnmserver)
900526
900526
* Tue Feb 22 2011 Adam Tkac <atkac redhat com> 32:9.8.0-0.3.rc1
900526
- integrate named with libnmserver library
900526
900526
* Tue Feb 22 2011 Adam Tkac <atkac redhat com> 32:9.8.0-0.2.rc1
900526
- include dns/rpz.h in -devel subpkg
900526
900526
* Mon Feb 21 2011 Adam Tkac <atkac redhat com> 32:9.8.0-0.1.rc1
900526
- update to 9.8.0rc1
900526
900526
* Fri Feb 18 2011 Adam Tkac <atkac redhat com> 32:9.7.3-1
900526
- update to 9.7.3
900526
- fix dig +trace on dualstack systems (#674334)
900526
- fix linkage order when building on system with older BIND (#665971)
900526
- reduce number of gcc warnings
900526
900526
* Mon Feb 07 2011 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 32:9.7.3-0.6.rc1
900526
- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild
900526
900526
* Tue Jan 25 2011 Adam Tkac <atkac redhat com> 32:9.7.3-0.5.rc1
900526
- update to 9.7.3rc1
900526
  - bind97-krb5-self.patch merged
900526
900526
* Wed Jan 12 2011 Adam Tkac <atkac redhat com> 32:9.7.3-0.4.b1
900526
- fix typo in initscript
900526
900526
* Thu Jan 06 2011 Adam Tkac <atkac redhat com> 32:9.7.3-0.3.b1
900526
- fix "service named status" when used with named-sdb
900526
- don't check MD5, size and mtime of sysconfig/named
900526
900526
* Wed Jan 05 2011 Adam Tkac <atkac redhat com> 32:9.7.3-0.2.b1
900526
- add new option DISABLE_ZONE_CHECKING to sysconfig/named
900526
900526
* Wed Jan 05 2011 Adam Tkac <atkac redhat com> 32:9.7.3-0.1.b1
900526
- update to 9.7.3b1
900526
900526
* Wed Jan 05 2011 Adam Tkac <atkac redhat com> 32:9.7.2-10.P3
900526
- initscript should terminate only the correct "named" process (#622785)
900526
900526
* Mon Dec 20 2010 Adam Tkac <atkac redhat com> 32:9.7.2-9.P3
900526
- fix "krb5-self" update-policy rule processing
900526
900526
* Thu Dec 02 2010 Adam Tkac <atkac redhat com> 32:9.7.2-8.P3
900526
- update to 9.7.2-P3
900526
900526
* Mon Nov 29 2010 Jan Görig <jgorig redhat com> 32:9.7.2-7.P2
900526
- added tmpfiles.d support (#656550)
900526
- removed old PID checking in initscript
900526
900526
* Mon Nov 08 2010 Adam Tkac <atkac redhat com> 32:9.7.2-6.P2
900526
- don't emit various informational messages by default (#645544)
900526
900526
* Wed Oct 20 2010 Adam Tkac <atkac redhat com> 32:9.7.2-5.P2
900526
- move BIND9 internal libs back to %%{_libdir}
900526
- add "-export" suffix to public libraries (-lite subpkg)
900526
900526
* Thu Oct 07 2010 Adam Tkac <atkac redhat com> 32:9.7.2-4.P2
900526
- ship -devel subpkg for internal libs, dnsperf needs it
900526
900526
* Thu Oct 07 2010 Adam Tkac <atkac redhat com> 32:9.7.2-3.P2
900526
- new bind-libs-lite and bind-lite-devel subpkgs which contain
900526
  public version of BIND 9 libraries
900526
- don't ship devel files for internal version of BIND 9 libraries
900526
900526
* Wed Sep 29 2010 Adam Tkac <atkac redhat com> 32:9.7.2-2.P2
900526
- update to 9.7.2-P2
900526
900526
* Thu Sep 16 2010 Adam Tkac <atkac redhat com> 32:9.7.2-1
900526
- update to 9.7.2
900526
900526
* Fri Aug 27 2010 Adam Tkac <atkac redhat com> 32:9.7.2-0.3.rc1
900526
- update to 9.7.2rc1
900526
900526
* Tue Aug 10 2010 Adam Tkac <atkac redhat com> 32:9.7.2-0.2.b1
900526
- host: handle "debug", "attempts" and "timeout" options in resolv.conf well
900526
900526
* Tue Aug 03 2010 Adam Tkac <atkac redhat com> 32:9.7.2-0.1.b1
900526
- update to 9.7.2b1
900526
- patches merged
900526
  - bind97-rh507429.patch
900526
900526
* Mon Jul 19 2010 Adam Tkac <atkac redhat com> 32:9.7.1-5.P2
900526
- supply root zone DNSKEY in default configuration
900526
900526
* Mon Jul 19 2010 Adam Tkac <atkac redhat com> 32:9.7.1-4.P2
900526
- update to 9.7.1-P2 (CVE-2010-0213)
900526
900526
* Mon Jul 12 2010 Adam Tkac <atkac redhat com> 32:9.7.1-3.P1
900526
- remove outdated Copyright.caching-nameserver file
900526
- remove rfc1912.txt, it is already located in %%doc/rfc directory
900526
- move COPYRIGHT to the bind-libs subpkg
900526
- add COPYRIGHT to the -pkcs11 subpkg
900526
900526
* Fri Jul 09 2010 Adam Tkac <atkac redhat com> 32:9.7.1-2.P1
900526
- update to 9.7.1-P1
900526
900526
* Mon Jun 28 2010 Adam Tkac <atkac redhat com> 32:9.7.1-1
900526
- update to 9.7.1
900526
- improve the "dnssec-conf" trigger
900526
900526
* Wed Jun 09 2010 Adam Tkac <atkac redhat com> 32:9.7.1-0.2.rc1
900526
- update to 9.7.1rc1
900526
- patches merged
900526
  - bind97-keysdir.patch
900526
900526
* Mon May 31 2010 Adam Tkac <atkac redhat com> 32:9.7.1-0.1.b1
900526
- update to 9.7.1b1
900526
- make /var/named/dynamic as a default directory for managed DNSSEC keys
900526
- add patch to get "managed-keys-directory" option working
900526
- patches merged
900526
  - bind97-managed-keyfile.patch
900526
  - bind97-rh554316.patch
900526
900526
* Fri May 21 2010 Adam Tkac <atkac redhat com> 32:9.7.0-11.P2
900526
- update dnssec-conf Obsoletes/Provides
900526
900526
* Thu May 20 2010 Adam Tkac <atkac redhat com> 32:9.7.0-10.P2
900526
- update to 9.7.0-P2
900526
900526
* Fri Mar 26 2010 Adam Tkac <atkac redhat com> 32:9.7.0-9.P1
900526
- added lost patch for #554316 (occasional crash in keytable.c)
900526
900526
* Fri Mar 26 2010 Adam Tkac <atkac redhat com> 32:9.7.0-8.P1
900526
- active query might be destroyed in resume_dslookup() which triggered REQUIRE
900526
  failure (#507429)
900526
900526
* Mon Mar 22 2010 Adam Tkac <atkac redhat com> 32:9.7.0-7.P1
900526
- install SDB related manpages only when build with SDB
900526
900526
* Fri Mar 19 2010 Adam Tkac <atkac redhat com> 32:9.7.0-6.P1
900526
- update to 9.7.0-P1
900526
900526
* Tue Mar 16 2010 Jan Görig <jgorig redhat com> 32:9.7.0-5
900526
- bind-sdb now requires bind
900526
900526
* Mon Mar 15 2010 Jan Görig <jgorig redhat com> 32:9.7.0-4
900526
- add man-pages ldap2zone.1 zonetodb.1 zone2sqlite.1 named-sdb.8 (#525655)
900526
900526
* Mon Mar 01 2010 Adam Tkac <atkac redhat com> 32:9.7.0-3
900526
- fix multilib issue (#478718) [jgorig]
900526
900526
* Mon Mar 01 2010 Adam Tkac <atkac redhat com> 32:9.7.0-2
900526
- improve automatic DNSSEC reconfiguration trigger
900526
- initscript now returns 2 in case that action doesn't exist (#523435)
900526
- enable/disable chroot when bind-chroot is installed/uninstalled
900526
900526
* Wed Feb 17 2010 Adam Tkac <atkac redhat com> 32:9.7.0-1
900526
- update to 9.7.0 final
900526
900526
* Mon Feb 15 2010 Adam Tkac <atkac redhat com> 32:9.7.0-0.14.rc2
900526
- obsolete dnssec-conf
900526
- automatically update configuration from old dnssec-conf based
900526
- improve default configuration; enable DLV by default
900526
- remove obsolete triggerpostun from bind-libs subpackage
900526
900526
* Thu Jan 28 2010 Adam Tkac <atkac redhat com> 32:9.7.0-0.13.rc2
900526
- update to 9.7.0rc2
900526
900526
* Wed Jan 27 2010 Adam Tkac <atkac redhat com> 32:9.7.0-0.12.rc1
900526
- initscript LSB related fixes (#523435)
900526
900526
* Wed Jan 27 2010 Adam Tkac <atkac redhat com> 32:9.7.0-0.11.rc1
900526
- revert the "DEBUG" feature (#510283), it causes too many problems (#545128)
900526
900526
* Tue Dec 15 2009 Adam Tkac <atkac redhat com> 32:9.7.0-0.10.rc1
900526
- update to 9.7.0rc1
900526
- bind97-headers.patch merged
900526
- update default configuration
900526
900526
* Tue Dec 01 2009 Adam Tkac <atkac redhat com> 32:9.7.0-0.9.b3
900526
- update to 9.7.0b3
900526
900526
* Thu Nov 26 2009 Adam Tkac <atkac redhat com> 32:9.7.0-0.8.b2
900526
- install isc/namespace.h header
900526
900526
* Fri Nov 06 2009 Adam Tkac <atkac redhat com> 32:9.7.0-0.7.b2
900526
- update to 9.7.0b2
900526
900526
* Tue Nov 03 2009 Adam Tkac <atkac redhat com> 32:9.7.0-0.6.b1
900526
- update to 9.7.0b1
900526
- add bind-pkcs11 subpackage to support PKCS11 compatible keystores for DNSSEC
900526
  keys
900526
900526
* Thu Oct 08 2009 Adam Tkac <atkac redhat com> 32:9.7.0-0.5.a3
900526
- don't package named-bootconf utility, it is very outdated and unneeded
900526
900526
* Mon Sep 21 2009 Adam Tkac <atkac redhat com> 32:9.7.0-0.4.a3
900526
- determine file size via `stat` instead of `ls` (#523682)
900526
900526
* Wed Sep 16 2009 Adam Tkac <atkac redhat com> 32:9.7.0-0.3.a3
900526
- update to 9.7.0a3
900526
900526
* Tue Sep 15 2009 Adam Tkac <atkac redhat com> 32:9.7.0-0.2.a2
900526
- improve chroot related documentation (#507795)
900526
- add NetworkManager dispatcher script to reload named when network interface is
900526
  activated/deactivated (#490275)
900526
- don't set/unset named_write_master_zones SELinux boolean every time in
900526
  initscript, modify it only when it's actually needed
900526
900526
* Tue Sep 15 2009 Adam Tkac <atkac redhat com> 32:9.7.0-0.1.a2
900526
- update to 9.7.0a2
900526
- merged patches
900526
  - bind-96-db_unregister.patch
900526
  - bind96-rh507469.patch
900526
900526
* Tue Sep 01 2009 Adam Tkac <atkac redhat com> 32:9.6.1-9.P1
900526
- next attempt to fix the postun trigger (#520385)
900526
- remove obsolete bind-9.3.1rc1-fix_libbind_includedir.patch
900526
900526
* Fri Aug 21 2009 Tomas Mraz <tmraz@redhat.com> - 32:9.6.1-8.P1
900526
- rebuilt with new openssl
900526
900526
* Tue Aug 04 2009 Martin Nagy <mnagy redhat com> 32:9.6.1-7.P1
900526
- update the patch for dynamic loading of database backends
900526
900526
* Wed Jul 29 2009 Adam Tkac <atkac redhat com> 32:9.6.1-6.P1
900526
- 9.6.1-P1 release (CVE-2009-0696)
900526
- fix postun trigger (#513016, hopefully)
900526
900526
* Fri Jul 24 2009 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 32:9.6.1-5
900526
- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild
900526
900526
* Mon Jul 20 2009 Adam Tkac <atkac redhat com> 32:9.6.1-4
900526
- remove useless bind-9.3.3rc2-rndckey.patch
900526
900526
* Mon Jul 13 2009 Adam Tkac <atkac redhat com> 32:9.6.1-3
900526
- fix broken symlinks in bind-libs (#509635)
900526
- fix typos in /etc/sysconfig/named (#509650)
900526
- add DEBUG option to /etc/sysconfig/named (#510283)
900526
900526
* Wed Jun 24 2009 Adam Tkac <atkac redhat com> 32:9.6.1-2
900526
- improved "chroot automount" patches (#504596)
900526
- host should fail if specified server doesn't respond (#507469)
900526
900526
* Wed Jun 17 2009 Adam Tkac <atkac redhat com> 32:9.6.1-1
900526
- 9.6.1 release
900526
- simplify chroot maintenance. Important files and directories are mounted into
900526
  chroot (see /etc/sysconfig/named for more info, #504596)
900526
- fix doc/named.conf.default perms
900526
900526
* Wed May 27 2009 Adam Tkac <atkac redhat com> 32:9.6.1-0.4.rc1
900526
- 9.6.1rc1 release
900526
900526
* Wed Apr 29 2009 Martin Nagy <mnagy redhat com> 32:9.6.1-0.3.b1
900526
- update the patch for dynamic loading of database backends
900526
- create %%{_libdir}/bind directory
900526
- copy default named.conf to doc directory, shared with s-c-bind (atkac)
900526
900526
* Fri Apr 24 2009 Martin Nagy <mnagy redhat com> 32:9.6.1-0.2.b1
900526
- update the patch for dynamic loading of database backends
900526
- fix dns_db_unregister()
900526
- useradd now takes "-N" instead of "-n" (atkac, #495726)
900526
- print nicer error msg when zone file is actually a directory (atkac, #490837)
900526
900526
* Mon Mar 30 2009 Adam Tkac <atkac redhat com> 32:9.6.1-0.1.b1
900526
- 9.6.1b1 release
900526
- patches merged
900526
  - bind-96-isc_header.patch
900526
  - bind-95-rh469440.patch
900526
  - bind-96-realloc.patch
900526
  - bind9-fedora-0001.diff
900526
- use -version-number instead of -version-info libtool param
900526
900526
* Mon Mar 23 2009 Adam Tkac <atkac redhat com> 32:9.6.0-11.1.P1
900526
- logrotate configuration file now points to /var/named/data/named.run by
900526
  default (#489986)
900526
900526
* Tue Mar 17 2009 Adam Tkac <atkac redhat com> 32:9.6.0-11.P1
900526
- fall back to insecure mode when no supported DNSSEC algorithm is found
900526
  instead of SERVFAIL
900526
- don't fall back to non-EDNS0 queries when DO bit is set
900526
900526
* Tue Mar 10 2009 Adam Tkac <atkac redhat com> 32:9.6.0-10.P1
900526
- enable DNSSEC only if it is enabled in sysconfig/dnssec
900526
900526
* Mon Mar 09 2009 Adam Tkac <atkac redhat com> 32:9.6.0-9.P1
900526
- add DNSSEC support to initscript, enabled it per default
900526
- add requires dnssec-conf
900526
900526
* Mon Mar 09 2009 Adam Tkac <atkac redhat com> 32:9.6.0-8.P1
900526
- fire away libbind, it is now separate package
900526
900526
* Wed Mar 04 2009 Adam Tkac <atkac redhat com> 32:9.6.0-7.P1
900526
- fixed some read buffer overflows (upstream)
900526
900526
* Mon Feb 23 2009 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> 32:9.6.0-6.P1
900526
- Rebuilt for https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild
900526
900526
* Thu Feb 12 2009 Martin Nagy <mnagy redhat com> 32:9.6.0-5.P1
900526
- update the patch for dynamic loading of database backends
900526
- include iterated_hash.h
900526
900526
* Sat Jan 24 2009 Caolán McNamara <caolanm@redhat.com> 32:9.6.0-4.P1
900526
- rebuild for dependencies
900526
900526
* Wed Jan 21 2009 Adam Tkac <atkac redhat com> 32:9.6.0-3.P1
900526
- rebuild against new openssl
900526
900526
* Thu Jan 08 2009 Adam Tkac <atkac redhat com> 32:9.6.0-2.P1
900526
- 9.6.0-P1 release (CVE-2009-0025)
900526
900526
* Mon Jan 05 2009 Adam Tkac <atkac redhat com> 32:9.6.0-1
900526
- Happy new year
900526
- 9.6.0 release
900526
900526
* Thu Dec 18 2008 Adam Tkac <atkac redhat com> 32:9.6.0-0.7.rc2
900526
- 9.6.0rc2 release
900526
- bind-96-rh475120.patch merged
900526
900526
* Tue Dec 16 2008 Martin Nagy <mnagy redhat com> 32:9.6.0-0.6.rc1
900526
- add patch for dynamic loading of database backends
900526
900526
* Tue Dec 09 2008 Adam Tkac <atkac redhat com> 32:9.6.0-0.5.1.rc1
900526
- allow to reuse address for non-random query-source ports (#475120)
900526
900526
* Wed Dec 03 2008 Adam Tkac <atkac redhat com> 32:9.6.0-0.5.rc1
900526
- 9.6.0rc1 release
900526
- patches merged
900526
  - bind-9.2.0rc3-varrun.patch
900526
  - bind-95-sdlz-include.patch
900526
  - bind-96-libxml2.patch
900526
- fixed rare use-after-free problem in host utility (#452060)
900526
- enabled chase of DNSSEC signature chains in dig
900526
900526
* Mon Dec 01 2008 Adam Tkac <atkac redhat com> 32:9.6.0-0.4.1.b1
900526
- improved sample config file (#473586)
900526
900526
* Wed Nov 26 2008 Adam Tkac <atkac redhat com> 32:9.6.0-0.4.b1
900526
- reverted previous change, koji doesn't like it
900526
900526
* Wed Nov 26 2008 Adam Tkac <atkac redhat com> 32:9.6.0-0.3.b1
900526
- build bind-chroot as noarch
900526
900526
* Mon Nov 24 2008 Adam Tkac <atkac redhat com> 32:9.6.0-0.2.1.b1
900526
- updates due libtool 2.2.6
900526
- don't pass -DLDAP_DEPRECATED to cpp, handle it directly in sources
900526
900526
* Tue Nov 11 2008 Adam Tkac <atkac redhat com> 32:9.6.0-0.2.b1
900526
- make statistics http server working, patch backported from 9.6 HEAD
900526
900526
* Mon Nov 10 2008 Adam Tkac <atkac redhat com> 32:9.6.0-0.1.b1
900526
- 9.6.0b1 release
900526
- don't build ODBC and Berkeley DB DLZ drivers
900526
- end of bind-chroot-admin script, copy config files to chroot manually
900526
- /proc doesn't have to be mounted to chroot
900526
- temporary use libbind from 9.5 series, noone has been released for 9.6 yet
900526
900526
* Mon Nov 03 2008 Adam Tkac <atkac redhat com> 32:9.5.1-0.8.4.b2
900526
- dig/host: use only IPv4 addresses when -4 option is specified (#469440)
900526
900526
* Thu Oct 30 2008 Adam Tkac <atkac redhat com> 32:9.5.1-0.8.2.b2
900526
- removed unneeded bind-9.4.1-ldap-api.patch
900526
900526
* Thu Oct 30 2008 Adam Tkac <atkac redhat com> 32:9.5.1-0.8.1.b2
900526
- ship dns/{s,}dlz.h and isc/radix.h in bind-devel
900526
900526
* Tue Oct 07 2008 Adam Tkac <atkac redhat com> 32:9.5.1-0.8.b2
900526
- removed bind-9.4.0-dnssec-directory.patch, it is wrong
900526
900526
* Wed Sep 24 2008 Adam Tkac <atkac redhat com> 32:9.5.1-0.7.b2
900526
- 9.5.1b2 release
900526
- patches merged
900526
  - bind95-rh454783.patch
900526
  - bind-9.5-edns.patch
900526
  - bind95-rh450995.patch
900526
  - bind95-rh457175.patch
900526
900526
* Wed Sep 17 2008 Adam Tkac <atkac redhat com> 32:9.5.1-0.6.b1
900526
- IDN output strings didn't honour locale settings (#461409)
900526
900526
* Tue Aug 05 2008 Adam Tkac <atkac redhat com> 32:9.5.1-0.5.b1
900526
- disable transfer stats on DLZ zones (#454783)
900526
900526
* Mon Aug 04 2008 Adam Tkac <atkac redhat com> 32:9.5.1-0.4.b1
900526
- add forgotten patch for #457175
900526
- build with -O2
900526
900526
* Thu Jul 31 2008 Adam Tkac <atkac redhat com> 32:9.5.1-0.3.b1
900526
- static libraries are no longer supported
900526
- IP acls weren't merged correctly (#457175)
900526
- use fPIE on sparcv9/sparc64 (Dennis Gilmore)
900526
- add sparc64 to list of 64bit arches in spec (Dennis Gilmore)
900526
900526
* Mon Jul 21 2008 Adam Tkac <atkac redhat com> 32:9.5.1-0.2.b1
900526
- updated patches due new rpm (--fuzz=0 patch parameter)
900526
900526
* Mon Jul 14 2008 Adam Tkac <atkac redhat com> 32:9.5.1-0.1.1.b1
900526
- use %%patch0 for Patch0 (#455061)
900526
- correct source address (#455118)
900526
900526
* Tue Jul 08 2008 Adam Tkac <atkac redhat com> 32:9.5.1-0.1.b1
900526
- 9.5.1b1 release (CVE-2008-1447)
900526
- dropped bind-9.5-recv-race.patch because upstream doesn't want it
900526
900526
* Mon Jun 30 2008 Adam Tkac <atkac redhat com> 32:9.5.0-37.1
900526
- update default named.conf statements (#452708)
900526
900526
* Thu Jun 26 2008 Adam Tkac <atkac redhat com> 32:9.5.0-37
900526
- some compat changes to fix building on RHEL4
900526
900526
* Mon Jun 23 2008 Adam Tkac <atkac redhat com> 32:9.5.0-36.3
900526
- fixed typo in %%posttrans script
900526
900526
* Wed Jun 18 2008 Adam Tkac <atkac redhat com> 32:9.5.0-36.2
900526
- parse inner acls correctly (#450995)
900526
900526
* Mon Jun 02 2008 Adam Tkac <atkac redhat com> 32:9.5.0-36.1
900526
- removed dns-keygen utility in favour of rndc-confgen -a (#449287)
900526
- some minor sample fixes (#449274)
900526
900526
* Thu May 29 2008 Adam Tkac <atkac redhat com> 32:9.5.0-36
900526
- updated to 9.5.0 final
900526
- use getifaddrs to find available interfaces
900526
900526
* Mon May 26 2008 Adam Tkac <atkac redhat com> 32:9.5.0-35.rc1
900526
- make /var/run/named writable by named (#448277)
900526
- fixed one non-utf8 file
900526
900526
* Thu May 22 2008 Adam Tkac <atkac redhat com> 32:9.5.0-34.rc1
900526
- fixes needed to pass package review (#225614)
900526
900526
* Wed May 21 2008 Adam Tkac <atkac redhat com> 32:9.5.0-33.1.rc1
900526
- bind-chroot now depends on bind (#446477)
900526
900526
* Wed May 14 2008 Adam Tkac <atkac redhat com> 32:9.5.0-33.rc1
900526
- updated to 9.5.0rc1
900526
- merged patches
900526
  - bind-9.5-libcap.patch
900526
- make binaries readable by others (#427826)
900526
900526
* Tue May 13 2008 Adam Tkac <atkac redhat com> 32:9.5.0-32.b3
900526
- reverted "any" patch, upstream says not needed
900526
- log EDNS failure only when we really switch to plain EDNS (#275091)
900526
- detect configuration file better
900526
900526
* Tue May 06 2008 Adam Tkac <atkac redhat com> 32:9.5.0-31.1.b3
900526
- addresses 0.0.0.0 and ::0 really match any (#275091, comment #28)
900526
900526
* Mon May 05 2008 Adam Tkac <atkac redhat com> 32:9.5.0-31.b3
900526
- readded bind-9.5-libcap.patch
900526
- added bind-9.5-recv-race.patch from F8 branch (#400461)
900526
900526
* Wed Apr 23 2008 Adam Tkac <atkac redhat com> 32:9.5.0-30.1.b3
900526
- build Berkeley DB DLZ backend
900526
900526
* Mon Apr 21 2008 Adam Tkac <atkac redhat com> 32:9.5.0-30.b3
900526
- 9.5.0b3 release
900526
- dropped patches (upstream)
900526
  - bind-9.5-transfer-segv.patch
900526
  - bind-9.5-mudflap.patch
900526
  - bind-9.5.0-generate-xml.patch
900526
  - bind-9.5-libcap.patch
900526
900526
* Wed Apr 02 2008 Adam Tkac <atkac redhat com> 32:9.5.0-29.3.b2
900526
- fixed named.conf.sample file (#437569)
900526
900526
* Fri Mar 14 2008 Adam Tkac <atkac redhat com> 32:9.5.0-29.2.b2
900526
- fixed URLs
900526
900526
* Mon Feb 25 2008 Adam Tkac <atkac redhat com> 32:9.5.0-29.1.b2
900526
- BuildRequires cleanup
900526
900526
* Sun Feb 24 2008 Adam Tkac <atkac redhat com> 32:9.5.0-29.b2
900526
- rebuild without mudflap (#434159)
900526
900526
* Wed Feb 20 2008 Adam Tkac <atkac redhat com> 32:9.5.0-28.b2
900526
- port named to use libcap library, enable threads (#433102)
900526
- removed some unneeded Requires
900526
900526
* Tue Feb 19 2008 Adam Tkac <atkac redhat com> 32:9.5.0-27.b2
900526
- removed conditional build with libefence (use -fmudflapth instead)
900526
- fixed building of DLZ stuff (#432497)
900526
- do not build Berkeley DB DLZ backend
900526
- temporary build with --disable-linux-caps and without threads (#433102)
900526
- update named.ca file to affect IPv6 changes in root zone
900526
900526
* Mon Feb 11 2008 Adam Tkac <atkac redhat com> 32:9.5.0-26.b2
900526
- build with -D_GNU_SOURCE (#431734)
900526
- improved fix for #253537, posttrans script is now used
900526
- improved fix for #400461
900526
- 9.5.0b2
900526
  - bind-9.3.2b1-PIE.patch replaced by bind-9.5-PIE.patch
900526
    - only named, named-sdb and lwresd are PIE
900526
  - bind-9.5-sdb.patch has been updated
900526
  - bind-9.5-libidn.patch has been updated
900526
  - bind-9.4.0-sdb-sqlite-bld.patch replaced by bind-9.5-sdb-sqlite-bld.patch
900526
  - removed bind-9.5-gssapi-header.patch (upstream)
900526
  - removed bind-9.5-CVE-2008-0122.patch (upstream)
900526
- removed bind-9.2.2-nsl.patch
900526
- improved sdb_tools Makefile.in
900526
900526
* Mon Feb 04 2008 Adam Tkac <atkac redhat com> 32:9.5.0-25.b1
900526
- fixed segfault during sending notifies (#400461)
900526
- rebuild with gcc 4.3 series
900526
900526
* Tue Jan 22 2008 Adam Tkac <atkac redhat com> 32:9.5.0-24.b1
900526
- removed bind-9.3.2-prctl_set_dumpable.patch (upstream)
900526
- allow parallel building of libdns library
900526
- CVE-2008-0122
900526
900526
* Thu Dec 27 2007 Adam Tkac <atkac redhat com> 32:9.5.0-23.b1
900526
- fixed initscript wait loop (#426382)
900526
- removed dependency on policycoreutils and libselinux (#426515)
900526
900526
* Thu Dec 20 2007 Adam Tkac <atkac redhat com> 32:9.5.0-22.b1
900526
- fixed regression caused by libidn2 patch (#426348)
900526
900526
* Wed Dec 19 2007 Adam Tkac <atkac redhat com> 32:9.5.0-21.b1
900526
- fixed typo in post section (CVE-2007-6283)
900526
900526
* Wed Dec 19 2007 Adam Tkac <atkac redhat com> 32:9.5.0-20.b1
900526
- removed obsoleted triggers
900526
- CVE-2007-6283
900526
900526
* Wed Dec 12 2007 Adam Tkac <atkac redhat com> 32:9.5.0-19.2.b1
900526
- added dst/gssapi.h to -devel subpackage (#419091)
900526
- improved fix for (#417431)
900526
900526
* Mon Dec 10 2007 Adam Tkac <atkac redhat com> 32:9.5.0-19.1.b1
900526
- fixed shutdown with initscript when rndc doesn't work (#417431)
900526
- fixed IDN patch (#412241)
900526
900526
* Thu Dec 06 2007 Adam Tkac <atkac redhat com> 32:9.5.0-19.b1
900526
- 9.5.0b1 (#405281, #392491)
900526
900526
* Thu Dec 06 2007 Release Engineering <rel-eng at fedoraproject dot org> 32:9.5.0-18.6.a7
900526
- Rebuild for deps
900526
900526
* Wed Dec 05 2007 Adam Tkac <atkac redhat com> 32:9.5.0-18.5.a7
900526
- build with -O0
900526
900526
* Mon Dec 03 2007 Adam Tkac <atkac redhat com> 32:9.5.0-18.4.a7
900526
- bind-9.5-random_ports.patch was removed because upstream doesn't
900526
  like it. query-source{,v6} options are sufficient (#391931)
900526
- bind-chroot-admin called restorecon on /proc filesystem (#405281)
900526
900526
* Mon Nov 26 2007 Adam Tkac <atkac redhat com> 32:9.5.0-18.3.a7
900526
- removed edns patch to keep compatibility with vanilla bind
900526
  (#275091, comment #20)
900526
900526
* Wed Nov 21 2007 Adam Tkac <atkac redhat com> 32:9.5.0-18.2.a7
900526
- use system port selector instead ISC's (#391931)
900526
900526
* Mon Nov 19 2007 Adam Tkac <atkac redhat com> 32:9.5.0-18.a7
900526
- removed statement from initscript which passes -D to named
900526
900526
* Thu Nov 15 2007 Adam Tkac <atkac redhat com> 32:9.5.0-17.a7
900526
- 9.5.0a7
900526
- dropped patches (upstream)
900526
  - bind-9.5-update.patch
900526
  - bind-9.5-pool_badfree.patch
900526
  - bind-9.5-_res_errno.patch
900526
900526
* Thu Nov 15 2007 Adam Tkac <atkac redhat com> 32:9.5.0-16.5.a6
900526
- added bind-sdb again, contains SDB modules and DLZ modules
900526
- bind-9.3.1rc1-sdb.patch replaced by bind-9.5-sdb.patch
900526
900526
* Mon Nov 12 2007 Adam Tkac <atkac redhat com> 32:9.5.0-16.4.a6
900526
- removed Requires: openldap, postgresql, mysql, db4, unixODBC
900526
- new L.ROOT-SERVERS.NET address
900526
900526
* Mon Oct 29 2007 Adam Tkac <atkac redhat com> 32:9.5.0-16.3.a6
900526
- completely disable DBUS
900526
900526
* Fri Oct 26 2007 Adam Tkac <atkac redhat com> 32:9.5.0-16.2.a6
900526
- minor cleanup in bind-chroot-admin
900526
900526
* Thu Oct 25 2007 Adam Tkac <atkac redhat com> 32:9.5.0-16.1.a6
900526
- fixed typo in initscript
900526
900526
* Tue Oct 23 2007 Adam Tkac <atkac redhat com> 32:9.5.0-16.a6
900526
- disabled DBUS (dhcdbd doesn't exist & #339191)
900526
900526
* Thu Oct 18 2007 Adam Tkac <atkac redhat com> 32:9.5.0-15.1.a6
900526
- fixed missing va_end () functions (#336601)
900526
- fixed memory leak when dbus initialization fails
900526
900526
* Tue Oct 16 2007 Adam Tkac <atkac redhat com> 32:9.5.0-15.a6
900526
- corrected named.5 SDB statement (#326051)
900526
900526
* Mon Sep 24 2007 Adam Tkac <atkac redhat com> 32:9.5.0-14.a6
900526
- added edns patch again (#275091)
900526
900526
* Mon Sep 24 2007 Adam Tkac <atkac redhat com> 32:9.5.0-13.a6
900526
- removed bind-9.3.3-edns.patch patch (see #275091 for reasons)
900526
900526
* Thu Sep 20 2007 Adam Tkac <atkac redhat com> 32:9.5.0-12.4.a6
900526
- build with O2
900526
- removed "autotools" patch
900526
- bugfixing in bind-chroot-admin (#279901)
900526
900526
* Thu Sep 06 2007 Adam Tkac <atkac redhat com> 32:9.5.0-12.a6
900526
- bind-9.5-2119_revert.patch and bind-9.5-fix_h_errno.patch are
900526
  obsoleted by upstream bind-9.5-_res_errno.patch
900526
900526
* Wed Sep 05 2007 Adam Tkac <atkac redhat com> 32:9.5.0-11.9.a6
900526
- fixed wrong resolver's dispatch pool cleanup (#275011, patch from 
900526
  tmraz redhat com)
900526
900526
* Wed Sep 05 2007 Adam Tkac <atkac redhat com> 32:9.5.0-11.3.a6
900526
- initscript failure message is now printed correctly (#277981,
900526
  Quentin Armitage (quentin armitage org uk) )
900526
900526
* Mon Sep 03 2007 Adam Tkac <atkac redhat com> 32:9.5.0-11.2.a6
900526
- temporary revert ISC 2119 change and add "libbind-errno" patch
900526
  (#254501) again
900526
900526
* Thu Aug 23 2007 Adam Tkac <atkac redhat com> 32:9.5.0-11.1.a6
900526
- removed end dots from Summary sections (skasal@redhat.com)
900526
- fixed wrong file creation by autotools patch (skasal@redhat.com)
900526
900526
* Thu Aug 23 2007 Adam Tkac <atkac redhat com> 32:9.5.0-11.a6
900526
- start using --disable-isc-spnego configure option
900526
  - remove bind-9.5-spnego-memory_management.patch (source isn't
900526
    compiled)
900526
900526
* Wed Aug 22 2007 Adam Tkac <atkac redhat com> 32:9.5.0-10.2.a6
900526
- added new initscript option KEYTAB_FILE which specified where
900526
  is located kerberos .keytab file for named service
900526
- obsolete temporary bind-9.5-spnego-memory_management.patch by
900526
  bind-9.5-gssapictx-free.patch which conforms BIND coding standards
900526
  (#251853)
900526
900526
* Tue Aug 21 2007 Adam Tkac <atkac redhat com> 32:9.5.0-10.a6
900526
- dropped direct dependency to /etc/openldap/schema directory
900526
- changed hardcoded paths to macros
900526
- fired away code which configure LDAP server
900526
900526
* Tue Aug 14 2007 Adam Tkac <atkac redhat com> 32:9.5.0-9.1.a6
900526
- named could crash with SRV record UPDATE (#251336)
900526
900526
* Mon Aug 13 2007 Adam Tkac <atkac redhat com> 32:9.5.0-9.a6
900526
- disable 64bit dlz driver patch on alpha and ia64 (#251298)
900526
- remove wrong malloc functions from lib/dns/spnego.c (#251853)
900526
900526
* Mon Aug 06 2007 Adam Tkac <atkac redhat com> 32:9.5.0-8.2.a6
900526
- changed licence from BSD-like to ISC
900526
900526
* Tue Jul 31 2007 Adam Tkac <atkac redhat com> 32:9.5.0-8.1.a6
900526
- disabled named on all runlevels by default
900526
900526
* Mon Jul 30 2007 Adam Tkac <atkac redhat com> 32:9.5.0-8.a6
900526
- minor next improvements on autotools patch
900526
- dig and host utilities now using libidn instead idnkit for
900526
  IDN support
900526
900526
* Wed Jul 25 2007 Warren Togami <wtogami@redhat.com> 32:9.5.0-7.a6
900526
- binutils/gcc bug rebuild (#249435)
900526
900526
* Tue Jul 24 2007 Adam Tkac <atkac redhat com> 32:9.5.0-6.a6
900526
- updated to 9.5.0a6 which contains fixes for CVE-2007-2925 and
900526
  CVE-2007-2926
900526
- fixed building on 64bits
900526
900526
* Mon Jul 23 2007 Adam Tkac <atkac redhat com> 31:9.5.0a5-5
900526
- integrated "autotools" patch for testing purposes (upstream will
900526
  accept it in future, for easier building)
900526
900526
* Mon Jul 23 2007 Adam Tkac <atkac redhat com> 31:9.5.0a5-4.1
900526
- fixed DLZ drivers building on 64bit systems
900526
900526
* Fri Jul 20 2007 Adam Tkac <atkac redhat com> 31:9.5.0a5-4
900526
- fixed relation between logrotated and chroot-ed named
900526
900526
* Wed Jul 18 2007 Adam Tkac <atkac redhat com> 31:9.5.0a5-3.9
900526
- removed bind-sdb package (default named has compiled SDB backend now)
900526
- integrated DLZ (Dynamically loadable zones) drivers
900526
- integrated GSS-TSIG support (RFC 3645)
900526
- build with -O0 (many new features, potential core dumps will be more useful)
900526
900526
* Tue Jul 17 2007 Adam Tkac <atkac redhat com> 31:9.5.0a5-3.2
900526
- initscript should be ready for parallel booting (#246878)
900526
900526
* Tue Jul 17 2007 Adam Tkac <atkac redhat com> 31:9.5.0a5-3
900526
- handle integer overflow in isc_time_secondsastimet function gracefully (#247856)
900526
900526
* Mon Jul 16 2007 Adam Tkac <atkac redhat com> 31:9.5.0a5-2.2
900526
- moved chroot configfiles into chroot subpackage (#248306)
900526
900526
* Mon Jul 02 2007 Adam Tkac <atkac redhat com> 31:9.5.0a5-2
900526
- minor changes in default configuration
900526
- fix h_errno assigment during resolver initialization (unbounded recursion, #245857)
900526
- removed wrong patch to #150288
900526
900526
* Tue Jun 19 2007 Adam Tkac <atkac redhat com> 31:9.5.0a5-1
900526
- updated to latest upstream
900526
900526
* Wed Jun 13 2007 Adam Tkac <atkac redhat com> 31:9.4.1-7
900526
- marked caching-nameserver as obsolete (#244604)
900526
- fixed typo in initscript (causes that named doesn't detect NetworkManager
900526
  correctly)
900526
- next cleanup in configuration - moved configfiles into config.tar
900526
- removed delay between start & stop in restart function in named.init
900526
900526
* Tue Jun 12 2007 Adam Tkac <atkac redhat com> 31:9.4.1-6
900526
- major changes in initscript. Could be LSB compatible now
900526
- removed caching-nameserver subpackage. Move configs from this
900526
  package to main bind package as default configuration and major
900526
  configuration cleanup
900526
900526
* Mon Jun 04 2007 Adam Tkac <atkac redhat com> 31:9.4.1-5
900526
- very minor compatibility change in bind-chroot-admin (line 215)
900526
- enabled IDN support by default and don't distribute IDN libraries
900526
- specfile cleanup
900526
- add dynamic directory to /var/named. This directory will be primarily used for
900526
  dynamic DNS zones. ENABLE_ZONE_WRITE and SELinux's named_write_master_zones no longer exist
900526
900526
* Thu May 24 2007 Adam Tkac <atkac redhat com> 31:9.4.1-4
900526
- removed ldap-api patch and start using deprecated API
900526
- fixed minor problem in bind-chroot-admin script (#241103)
900526
900526
* Tue May 22 2007 Adam Tkac <atkac redhat com> 31:9.4.1-3
900526
- fixed bind-chroot-admin dynamic DNS handling (#239149)
900526
- updated zone-freeze patch to latest upstream
900526
- ldap sdb has been rewriten to latest api (#239802)
900526
900526
* Mon May 07 2007 Adam Tkac <atkac redhat com> 31:9.4.1-2.fc7
900526
- test build on new build system
900526
900526
* Wed May 02 2007 Adam Tkac <atkac redhat com> 31:9.4.1-1.fc7
900526
- updated to 9.4.1 which contains fix to CVE-2007-2241
900526
900526
* Fri Apr 27 2007 Adam Tkac <atkac redhat com> 31:9.4.0-8.fc7
900526
- improved "zone freeze patch" - if multiple zone with same name exists
900526
  no zone is freezed
900526
- minor cleanup in caching-nameserver's config file
900526
- fixed race-condition in dbus code (#235809)
900526
- added forgotten restorecon statement in bind-chroot-admin
900526
900526
* Tue Apr 17 2007 Adam Tkac <atkac redhat com> 31:9.4.0-7.fc7
900526
- removed DEBUGINFO option because with this option (default) was bind
900526
  builded with -O0 and without this flag no debuginfo package was produced.
900526
  (I want faster bind => -O2 + debuginfo)
900526
- fixed zone finding (#236426)
900526
900526
* Mon Apr 16 2007 Adam Tkac <atkac redhat com> 31:9.4.0-6.fc7
900526
- added idn support (still under development with upstream, disabled by default)
900526
900526
* Wed Apr 11 2007 Adam Tkac <atkac redhat com> 31:9.4.0-5.fc7
900526
- dnssec-signzone utility now doesn't ignore -d parameter
900526
900526
* Tue Apr 10 2007 Adam Tkac <atkac redhat com> 31:9.4.0-4.fc7
900526
- removed query-source[-v6] options from caching-nameserver config
900526
  (#209954, increase security)
900526
- throw away idn. It won't be ready in fc7
900526
900526
* Tue Mar 13 2007 Adam Tkac <atkac redhat com> 31:9.4.0-3.fc7
900526
- prepared bind to merge review
900526
- added experimental idn support to bind-utils utils (not enabled by default yet)
900526
- change chroot policy in caching-nameserver post section
900526
- fixed bug in bind-chroot-admin - rootdir function is called properly now
900526
900526
* Mon Mar 12 2007 Adam Tkac <atkac redhat com> 31:9.4.0-2.fc7
900526
- added experimental SQLite support (written by John Boyd <jaboydjr@netwalk.com>)
900526
- moved bind-chroot-admin script to chroot package
900526
- bind-9.3.2-redhat_doc.patch is always applied (#231738)
900526
900526
* Tue Mar 06 2007 Adam Tkac <atkac@redhat.com> 31:9.4.0-1.fc7
900526
- updated to 9.4.0
900526
- bind-chroot-admin now sets EAs correctly (#213926)
900526
- throw away next_server_on_referral and no_servfail_stops patches (fixed in 9.4.0)
900526
900526
* Thu Feb 15 2007 Adam Tkac <atkac@redhat.com> 31:9.3.4-7.fc7
900526
- minor cleanup in bind-chroot-admin script
900526
900526
* Fri Feb 09 2007 Adam Tkac <atkac@redhat.com> 31:9.3.4-6.fc7
900526
- fixed broken bind-chroot-admin script (#227995)
900526
900526
* Wed Feb 07 2007 Adam Tkac <atkac@redhat.com> 31:9.3.4-5.fc7
900526
- bind-chroot-admin now uses correct chroot path (#227600)
900526
900526
* Mon Feb 05 2007 Adam Tkac <atkac@redhat.com> 31:9.3.4-4.fc7
900526
- fixed conflict between bind-sdb and ldap
900526
- removed duplicated bind directory in bind-libs
900526
900526
* Thu Feb 01 2007 Adam Tkac <atkac@redhat.com> 31:9.3.4-3.fc7
900526
- fixed building without libbind
900526
- fixed post section (selinux commands is now in if-endif statement)
900526
- prever macro has been removed from version
900526
900526
* Mon Jan 29 2007 Adam Tkac <atkac@redhat.com> 31:9.3.4-2.fc7
900526
- redirected output from bind-chroot prep and %%preun stages to /dev/null
900526
900526
* Thu Jan 25 2007 Adam Tkac <atkac@redhat.com> 31:9.3.4-1.fc7
900526
- updated to version 9.3.4 which contains security bugfixes
900526
900526
* Tue Jan 23 2007 Adam Tkac <atkac@redhat.com> 31:9.3.3-5.fc7
900526
- package bind-libbind-devel has been marked as obsolete
900526
900526
* Mon Jan 22 2007 Adam Tkac <atkac@redhat.com> 31:9.3.3-4.fc7
900526
- package bind-libbind-devel has beed removed (libs has been moved to bind-devel & bind-libs)
900526
- Resolves: #214208
900526
900526
* Tue Jan 16 2007 Martin Stransky <stransky@redhat.com> - 31:9.3.3-3
900526
- fixed a multi-lib issue
900526
- Resolves: rhbz#222717
900526
900526
* Thu Jan 4 2007 Martin Stransky <stransky@redhat.com> - 31:9.3.3-2
900526
- added namedGetForwarders written in shell (#176100),
900526
  created by Baris Cicek <baris@nerd.com.tr>.
900526
900526
* Sun Dec 10 2006 Martin Stransky <stransky@redhat.com> - 31:9.3.3-1
900526
- update to 9.3.3 final
900526
- fix for #219069: file included twice in src.rpm
900526
900526
* Wed Dec 6 2006 Martin Stransky <stransky@redhat.com> - 31:9.3.3-0.1.rc3
900526
- added back an interval to restart
900526
- renamed package, it should meet the N-V-R criteria
900526
- fix for #216185: bind-chroot-admin able to change root mode 750
900526
- added fix from #215997: incorrect permissions on dnszone.schema
900526
- added a notice to init script when /etc/named.conf doesn't exist (#216075)
900526
900526
* Mon Oct 30 2006 Martin Stransky <stransky@redhat.com> - 30:9.3.3-6
900526
- fix for #200465: named-checkzone and co. cannot be run as non-root user
900526
- fix for #212348: chroot'd named causes df permission denied error
900526
- fix for #211249, #211083 - problems with stopping named
900526
- fix for #212549: init script does not unmount /proc filesystem
900526
- fix for #211282: EDNS is globally enabled, crashing CheckPoint FW-1,
900526
    added edns-enable options to named configuration file which can suppress
900526
    EDNS in queries to DNS servers (see /usr/share/doc/bind-9.3.3/misc/options)
900526
- fix for #212961: bind-chroot doesn't clean up its mess on %%preun
900526
- update to 9.3.3rc3, removed already merged patches
900526
900526
* Fri Oct 13 2006 Martin Stransky <stransky@redhat.com> - 30:9.3.3-5
900526
- fix for #209359: bind-libs from compatlayer CD will not 
900526
  install on ia64
900526
900526
* Tue Oct 10 2006 Martin Stransky <stransky@redhat.com> - 30:9.3.3-4
900526
- added fix for #210096: warning: group named does not exist - using root
900526
900526
* Thu Oct  5 2006 Martin Stransky <stransky@redhat.com> - 30:9.3.3-3
900526
- added fix from #209400 - Bind Init Script does not create 
900526
  the PID file always, created by Jeff Means
900526
- added timeout to stop section of init script. 
900526
  The default is 100 sec. and can be adjusted by NAMED_SHUTDOWN_TIMEOUT
900526
  shell variable.
900526
900526
* Mon Oct  2 2006 Martin Stransky <stransky@redhat.com> - 30:9.3.3-2
900526
- removed chcon from %%post script, replaced by restorecon 
900526
  (Bug 202547, comment no. 37)
900526
900526
* Fri Sep 15 2006 Martin Stransky <stransky@redhat.com> - 30:9.3.3-1
900526
- updated to the latest upstream (9.3.3rc2)
900526
900526
* Wed Sep  6 2006 Martin Stransky <stransky@redhat.com> - 30:9.3.2-41
900526
- added upstream patch for correct SIG handling - CVE-2006-4095
900526
900526
* Tue Sep  5 2006 Martin Stransky <stransky@redhat.com> - 30:9.3.2-40
900526
- suppressed messages from bind-chroot-admin
900526
- cleared notes about bind-config
900526
900526
* Tue Aug 22 2006 Martin Stransky <stransky@redhat.com> - 30:9.3.2-39
900526
- added fix for #203522 - "bind-chroot-admin -e" command fails
900526
900526
* Mon Aug 21 2006 Martin Stransky <stransky@redhat.com> - 30:9.3.2-38
900526
- fix for #203194 - tmpfile usage
900526
900526
* Thu Aug 17 2006 Martin Stransky <stransky@redhat.com> - 30:9.3.2-37
900526
- fix for #202542 - /usr/sbin/bind-chroot-admin: No such file or directory
900526
- fix for #202547 - file_contexts: invalid context
900526
900526
* Fri Aug 11 2006 Martin Stransky <stransky@redhat.com> - 30:9.3.2-36
900526
- added Provides: bind-config
900526
900526
* Fri Aug 11 2006 Martin Stransky <stransky@redhat.com> - 30:9.3.2-35
900526
- fix bug 197493: renaming subpackage bind-config to caching-nameserver
900526
900526
* Mon Jul 24 2006 Jason Vas Dias <jvdias@redhat.com> - 30:9.3.2-34
900526
- fix bug 199876: make '%%exclude libbbind.*' conditional on %%{LIBBIND}
900526
900526
* Mon Jul 24 2006 Florian La Roche <laroche@redhat.com> - 30:9.3.2-33
900526
- fix #195881, perms are not packaged correctly
900526
900526
* Fri Jul 21 2006 Jason Vas Dias <jvdias@redhat.com> - 30:9.3.2-32
900526
- fix addenda to bug 189789: 
900526
  determination of selinux enabled was still not 100% correct in bind-chroot-admin
900526
- fix addenda to bug 196398:
900526
  make named.init test for NetworkManager being enabled AFTER testing for -D absence;
900526
  named.init now supports a 'DISABLE_NAMED_DBUS' /etc/sysconfig/named setting to disable
900526
  auto-enable of named dbus support if NetworkManager enabled.
900526
900526
* Wed Jul 19 2006 Jason Vas Dias <jvdias@redhat.com> - 30:9.3.2-30
900526
- fix bug 196398 - Enable -D option automatically in initscript
900526
  if NetworkManager enabled in any runlevel.
900526
- fix namedGetForwarders for new dbus
900526
- fix bug 195881 - libbind.so should be owned by bind-libbind-devel
900526
900526
* Wed Jul 19 2006 Matthias Clasen <mclasen@redhat.com> - 30:9.3.2-28.FC6
900526
- Rebuild against new dbus
900526
900526
* Wed Jul 12 2006 Jason Vas Dias <jvdias@redhat.com> - 30:9.3.2-27.FC6
900526
- rebuild with fixed glibc-kernheaders
900526
900526
* Wed Jul 12 2006 Jesse Keating <jkeating@redhat.com> - 30:9.3.2-26.FC6.1
900526
- rebuild
900526
900526
* Wed Jun 14 2006 Jason Vas Dias <jvdias@redhat.com> - 30:9.3.2-26.FC6
900526
- fix bugs 191093, 189789
900526
- backport selected fixes from upstream bind9 'v9_3_3b1' CVS version:
900526
  ( see http://www.isc.org/sw/bind9.3.php "Fixes" ): 
900526
  o change 2024 / bug 16027:
900526
    named emitted spurious "zone serial unchanged" messages on reload
900526
  o change 2013 / bug 15941:
900526
    handle unexpected TSIGs on unsigned AXFR/IXFR responses more gracefully
900526
  o change 2009 / bug 15808: coverity fixes
900526
  o change 1997 / bug 15818: 
900526
    named was failing to replace negative cache entries when a positive one
900526
    for the type was learnt
900526
  o change 1994 / bug 15694: OpenSSL 0.9.8 support
900526
  o change 1991 / bug 15813:
900526
    The configuration data, once read, should be treated as readonly.
900526
  o misc. validator fixes 
900526
  o misc. resolver fixes
900526
  o misc. dns fixes
900526
  o misc. isc fixes
900526
  o misc. libbind fixes
900526
  o misc. isccfg fix
900526
  o misc. lwres fix
900526
  o misc. named fixes
900526
  o misc. dig fixes
900526
  o misc. nsupdate fix
900526
  o misc. tests fixes
900526
900526
* Wed Jun  7 2006 Jeremy Katz <katzj@redhat.com> - 30:9.3.2-24.FC6
900526
- and actually put the devel symlinks in the right subpackage
900526
900526
* Thu May 25 2006 Jeremy Katz <katzj@redhat.com> - 30:9.3.2-23.FC6
900526
- rebuild for -devel deps
900526
900526
* Tue Apr 18 2006 Jason Vas Dias <jvdias@redhat.com> - 30:9.3.2-22
900526
- apply upstream patch for ncache_adderesult segfault bug 173961 addenda
900526
- fix bug 188382: rpm --verify permissions inconsistencies
900526
- fix bug 189186: use /sbin/service instead of initscript
900526
- rebuild for new gcc, glibc-kernheaders
900526
900526
* Tue Apr 04 2006 Jason Vas Dias <jvdias@redhat.com> - 30:9.3.2-20
900526
- fix resolver.c ncache_adderesult segfault reported in addenda to bug 173961 
900526
  (upstream bugs #15642, #15528 ?)
900526
- allow named ability to generate core dumps after setuid (upstream bug #15753)
900526
900526
* Mon Apr 03 2006 Jason Vas Dias <jvdias@redhat.com> - 30:9.3.2-18
900526
- fix bug 187529: make bind-chroot-admin deal with subdirectories properly
900526
900526
* Thu Mar 30 2006 Jason Vas Dias <jvdias@redhat.com> - 30:9.3.2-16
900526
- fix bug 187286: 
900526
     prevent host(1) printing duplicate 'is an alias for' messages
900526
     for the default AAAA and MX lookups as well as for the A lookup
900526
     (it now uses the CNAME returned for the A lookup for the AAAA and MX lookups).
900526
     This is upstream bug #15702 fixed in the unreleased bind-9.3.3
900526
- fix bug 187333: fix SOURCE24 and SOURCE25 transposition
900526
900526
* Wed Mar 29 2006 Jason Vas Dias <jvdias@redhat.com> - 30:9.3.2-14
900526
- fix bug 186577: remove -L/usr/lib from libbind.pc and more .spec file cleanup
900526
- add '%%doc' sample configuration files in /usr/share/doc/bind*/sample
900526
- rebuild with new gcc and glibc
900526
900526
* Wed Mar 22 2006 Jason Vas Dias <jvdias@redhat.com> - 30:9.3.2-12
900526
- fix typo in initscript
900526
- fix Requires(post): policycoreutils in sub-packages
900526
900526
* Mon Mar 20 2006 Jason Vas Dias <jvdias@redhat.com> - 30.9.3.2-10
900526
- fix bug 185969: more .spec file cleanup
900526
900526
* Wed Mar 08 2006 Jason Vas Dias <jvdias@redhat.com> - 30.9.3.2-8
900526
- Do not allow package to be installed if named:25 userid creation fails
900526
- Give libbind a pkg-config file
900526
- remove restorecon from bind-chroot-admin (not required).
900526
- fix named.caching-nameserver.conf (listen-on-v6 port 53 { ::1 };)
900526
900526
* Tue Mar 07 2006 Jason Vas Dias <jvdias@redhat.com> - 30:9.3.2-7
900526
- fix issues with bind-chroot-admin
900526
900526
* Mon Mar 06 2006 Jason Vas Dias <jvdias@redhat.com> - 30:9.3.2-6
900526
- replace caching-nameserver with bind-config sub-package
900526
- fix bug 177595: handle case where $ROOTDIR is a link in initscript
900526
- fix bug 177001: bind-config creates symlinks OK now
900526
- fix bug 176388: named.conf is now never replaced by any RPM
900526
- fix bug 176248: remove unecessary creation of rpmsave links
900526
- fix bug 174925: no replacement of named.conf
900526
- fix bug 173963: existing named.conf never modified
900526
- major .spec file cleanup
900526
900526
* Fri Feb 10 2006 Jesse Keating <jkeating@redhat.com> - 30:9.3.2-4.1
900526
- bump again for double-long bug on ppc(64)
900526
900526
* Tue Feb 07 2006 Jason Vas Dias <jvdias@redhat.com> - 30:9.3.2-4
900526
- regenerate redhat_doc patch for non-DBUS builds
900526
- allow dbus builds to work with dbus version < 0.6 (bz #179816)
900526
900526
* Tue Feb 07 2006 Florian La Roche <laroche@redhat.com> 30:9.3.2-3
900526
- try supporting without dbus support
900526
900526
* Mon Feb 06 2006 Jason Vas Dias <jvdias@redhat.com> - 30:9.3.2-2.1
900526
- Rebuild for new gcc, glibc, glibc-kernheaders
900526
900526
* Mon Jan 16 2006 Jason Vas Dias <jvdias@redhat.com> - 30:9.3.2-2
900526
- fix bug 177854: temporary fix for broken kernel-2.6.15-1854+
900526
  /proc/net/if_inet6 format
900526
900526
* Wed Dec 21 2005 Jason Vas Dias <jvdias@redhat.com> - 30:9.3.2-1
900526
- Upgrade to 9.3.2, released today
900526
900526
* Tue Dec 20 2005 Jason Vas Dias <jvdias@redhat.com> - 28:9.3.2rc1-2
900526
- fix bug 176100: do not Require: perl just for namedGetForwarders !
900526
900526
* Fri Dec 09 2005 Jesse Keating <jkeating@redhat.com>
900526
- rebuilt
900526
900526
* Fri Dec 02 2005 Jason Vas Dias <jvdias@redhat.com> - 28:9.3.2rc-1
900526
- Upgrade to upstream version 9.3.2rc1
900526
- fix namedSetForwarders -> namedGetForwarders SOURCE14 typo
900526
900526
* Thu Dec 01 2005 Jason Vas Dias <jvdias@redhat.com> - 24:9.3.1-26
900526
- rebuild for new dbus 0.6 dependency; remove use of
900526
  DBUS_NAME_FLAG_PROHIBIT_REPLACEMENT
900526
900526
* Wed Nov 23 2005 Jason Vas Dias <jvdias@redhat.com> - 24:9.3.1-24
900526
- allow D-BUS support to work in bind-chroot environment:
900526
  workaround latest selinux policy by mounting /var/run/dbus/
900526
  under chroot instead of /var/run/dbus/system-bus-socket
900526
900526
* Sun Nov 13 2005 Jason Vas Dias <jvdias@redhat.com> - 24:9.3.1-22
900526
- fix bug 172632 - remove .la files
900526
- ship namedGetForwarders and namedSetForwarders scripts
900526
- fix detection of -D option in chroot
900526
900526
* Tue Nov  8 2005 Tomas Mraz <tmraz@redhat.com> - 24:9.3.1-21
900526
- rebuilt with new openssl
900526
900526
* Wed Oct 19 2005 Jason Vas Dias <jvdias@redhat.com> - 24.9.3.1-20
900526
- Allow the -D enable D-BUS option to be used within bind-chroot .
900526
- fix bug 171226: supply some documentation for pgsql SDB .
900526
900526
* Thu Oct 06 2005 Jason Vas Dias <jvdias@redhat.com> - 24:9.3.1-18
900526
- fix bug 169969: do NOT call dbus_svc_dispatch() in dbus_mgr_init_dbus() -
900526
      task->state != task_ready and will cause Abort in task.c if process
900526
      is waiting for NameOwnerChanged to do a SetForwarders
900526
900526
* Wed Oct 05 2005 Jason Vas Dias <jvdias@redhat.com> - 24:9.3.1-16
900526
- Fix reconnecting to dbus-daemon after it stops & restarts .
900526
900526
* Tue Sep 27 2005 Jason Vas Dias <jvdias@redhat.com> - 24:9.3.1-14
900526
- When forwarder nameservers are changed with D-BUS, flush the cache.
900526
900526
* Mon Sep 26 2005 Jason Vas Dias <jvdias@redhat.com> - 24:9.3.1-12
900526
- fix bug 168302: use %%{__cc} for compiling dns-keygen
900526
- fix bug 167682: bind-chroot directory permissions
900526
- fix issues with -D dbus option when dbus service not running or disabled
900526
900526
* Tue Aug 30 2005 Jason Vas Dias <jvdias@redhat.com> - 24:9.3.1-12
900526
- fix bug 167062: named should be started after syslogd by default
900526
900526
* Mon Aug 22 2005 Jason Vas Dias <jvdias@redhat.com> - 24:9.3.1-11
900526
- fix bug 166227: host: don't do default AAAA and MX lookups with '-t a' option
900526
900526
* Tue Aug 16 2005 Jason Vas Dias <jvdias@redhat.com> - 24:9.3.1-10
900526
- Build with D-BUS patch by default; D-BUS support enabled with named -D option
900526
- Enable D-BUS for named_sdb also
900526
- fix sdb pgsql's zonetodb.c: must use isc_hash_create() before dns_db_create()
900526
- update fix for bug 160914 : test for RD=1 and ARCOUNT=0 also before trying next server
900526
- fix named.init script to handle named_sdb properly
900526
- fix named.init script checkconfig() to handle named '-c' option
900526
  and make configtest, test, check configcheck synonyms
900526
900526
* Tue Jul 19 2005 Jason Vas Dias <jvdias@redhat.com> - 24:9.3.1-8
900526
- fix named.init script bugs 163598, 163409, 151852(addendum)
900526
900526
* Tue Jul 12 2005 Jason Vas Dias <jvdias@redhat.com> - 24:9.3.1-7
900526
- fix bug 160914: resolver utilities should try next server on empty referral
900526
                  (now that glibc bug 162625 is fixed)
900526
                  host and nslookup now by default try next server on SERVFAIL
900526
                  (host now has '-s' option to disable, and nslookup given
900526
                   '[no]fail' option similar to dig's [no]fail option).
900526
- rebuild and re-test with new glibc & gcc (all tests passed).
900526
900526
* Tue May 31 2005 Jason Vas Dias <jvdias@redhat.com> - 24:9.3.1-6
900526
- fix bug 157950: dig / host / nslookup should reject invalid resolv.conf
900526
                  files and not use uninitialized garbage nameserver values
900526
                  (ISC bug 14841 raised).
900526
900526
* Mon May 23 2005 Jason Vas Dias <jvdias@redhat.com> - 24:9.3.1-4_FC4
900526
- Fix SDB LDAP
900526
900526
* Mon May 16 2005 Jason Vas Dias <jvdias@redhat.com> - 24:9.3.1-4
900526
- Fix bug 157601: give named.init a configtest function
900526
- Fix bug 156797: named.init should check SELinux booleans.local before booleans
900526
- Fix bug 154335: if no controls in named.conf, stop named with -TERM sig, not rndc
900526
- Fix bug 155848: add NOTES section to named.8 man-page with info on all Red Hat
900526
                  BIND quirks and SELinux DDNS / slave zone file configuration
900526
- D-BUS patches NOT applied until dhcdbd is in FC
900526
900526
* Sun May 15 2005 Jason Vas Dias <jvdias@redhat.com> - 24:9.3.1-4_dbus
900526
- Enhancement to allow dynamic forwarder table management and
900526
- DHCP forwarder auto-configuration with D-BUS
900526
900526
* Thu Apr 14 2005 Jason Vas Dias <jvdias@redhat.com> - 24:9.3.1-2_FC4
900526
- Rebuild for bind-sdb libpq.so.3 dependency
900526
- fix bug 150981: don't install libbind man-pages if no libbind
900526
- fix bug 151852: mount proc on $ROOTDIR/proc to allow sysconf(...)
900526
  to work and correct number of CPUs to be determined
900526
900526
* Fri Mar 11 2005 Jason Vas Dias <jvdias@redhat.com> - 24:9.3.1-1_FC4
900526
- Upgrade to ISC BIND 9.3.1 (final release) released today.
900526
900526
* Wed Mar  9 2005 Jason Vas Dias <jvdias@redhat.com> - 22.9.3.1rc1-5
900526
- fix bug 150288: h_errno not being accessed / set correctly in libbind
900526
- add libbind man-pages from bind-8.4.6
900526
900526
* Mon Mar  7 2005 Jason Vas Dias <jvdias@redhat.com> - 22:9.3.1rc1-4
900526
- Rebuild with gcc4 / glibc-2.3.4-14.
900526
900526
* Tue Mar  1 2005 Nalin Dahyabhai <nalin@redhat.com> - 22:9.3.1rc1-3
900526
- configure with --with-pic to get PIC libraries
900526
900526
* Sun Feb 20 2005 Jason Vas Dias <jvdias@redhat.com> - 22:9.3.1rc1-2
900526
- fix bug 149183: don't use getifaddrs() .
900526
900526
* Wed Feb 16 2005 Jason Vas Dias <jvdias@redhat.com> - 22:9.3.1rc1-1
900526
- Upgrade to 9.3.1rc1
900526
- Add Simplified Database Backend (SDB) sub-package ( bind-sdb )
900526
-     add named_sdb - ldap + pgsql + dir database backend support with
900526
-     'ENABLE_SDB' named.sysconfig option
900526
- Add BIND resolver library & includes sub-package ( libbind-devel)
900526
- fix bug 147824 / 147073 / 145664: ENABLE_ZONE_WRITE in named.init
900526
- fix bug 146084 : shutup restorecon
900526
900526
* Tue Jan 11 2005 Jason Vas Dias <jvdias@redhat.com> - 22:9.3.0-2
900526
- Fix bug 143438: named.init will now make correct ownership of $ROOTDIR/var/named
900526
-                 based on 'named_write_master_zones' SELinux boolean.
900526
- Fix bug 143744: dig & nsupdate IPv6 timeout  (dup of 140528)
900526
900526
* Mon Nov 29 2004 Jason Vas Dias <jvdias@redhat.com> - 9.3.0-1
900526
- Upgrade BIND to 9.3.0 in Rawhide / FC4 (bugs 134529, 133654...)
900526
900526
* Mon Nov 29 2004 Jason Vas Dias <jvdias@redhat.com> - 20:9.2.4-4
900526
- Fix bugs 140528 and 141113:
900526
- 2 second timeouts when IPv6 not configured and root nameserver's
900526
- AAAA addresses are queried
900526
900526
* Mon Oct 18 2004 Jason Vas Dias <jvdias@redhat.com> - 20:9.2.4-2
900526
- Fix bug 136243: bind-chroot %%post must run restorecon -R %%{prefix}
900526
- Fix bug 135175: named.init must return non-zero if named is not run
900526
- Fix bug 134060: bind-chroot %%post must use mktemp, not /tmp/named
900526
- Fix bug 133423: bind-chroot %%files entries should have been %%dirs
900526
900526
* Thu Sep 23 2004 Jason Vas Dias <jvdias@redhat.com> - 20:9.2.4-1
900526
- BIND 9.2.4 (final release) released - source code actually
900526
- identical to 9.2.4rc8, with only version number change.
900526
900526
* Mon Sep 20 2004 Jason Vas Dias <jvdias@redhat.com> - 10:9.2.4rc8-14
900526
- Upgrade to upstream bind-9.2.4rc8 .
900526
- Progress: Finally! Hooray! ISC bind now distributes:
900526
- o named.conf(5) and nslookup(8) manpages
900526
-    'bind-manpages.bz2' source can now disappear
900526
-    (could this have something to do with ISC bug I raised about this?)
900526
- o 'deprecation_msg' global has vanished
900526
-     bind-9.2.3rc3-deprecation_msg_shut_up.diff.bz2 can disappear
900526
900526
* Mon Sep 20 2004 Jason Vas Dias <jvdias@redhat.com> - 10:9.2.4rc8-14
900526
- Fix bug 106572/132385: copy /etc/localtime to chroot on start
900526
900526
* Fri Sep 10 2004 Jason Vas Dias <jvdias@redhat.com> - 10:9.2.4rc7-12_EL3
900526
- Fix bug 132303: if ROOTDIR line was replaced after upgrade from
900526
- bind-chroot-9.2.2-21, restart named
900526
900526
* Wed Sep 8  2004 Jason Vas Dias <jvdias@redhat.com> - 10:9.2.4rc7-11_EL3
900526
- Fix bug 131803: replace ROOTDIR line removed by broken
900526
- bind-chroot 9.2.2-21's '%%postun'; added %%triggerpostun for bind-chroot
900526
900526
* Tue Sep 7  2004 Jason Vas Dias <jvdias@redhat.com> - 10:9.2.4rc7-10_EL3
900526
- Fix bugs 130121 & 130981 for RHEL-3
900526
900526
* Mon Aug 30 2004 Jason Vas Dias <jvdias@redhat.com> - 10:9.2.4rc7-10
900526
- Fix bug 130121: add '%%ghost' entries for files included in previous
900526
- bind-chroot & not in current - ie. named.conf, rndc.key, dev/* -
900526
- that RPM removed after upgrade .
900526
900526
* Thu Aug 26 2004 Jason Vas Dias <jvdias@redhat.com>
900526
- Fix bug 130981: add '-t' option to named-checkconf invocation in
900526
- named.init if chroot installed.
900526
900526
* Wed Aug 25 2004 Jason Vas Dias <jvdias@redhat.com>
900526
- Remove resolver(5) manpage now in man-pages (bug 130792);
900526
- Don't create /dev/ entries in bind-chroot if already there (bug 127556);
900526
- fix bind-devel Requires (bug 130919)
900526
- Set default location for dumpdb & stats files to /var/named/data
900526
900526
* Tue Aug 24 2004 Jason Vas Dias <jvdias@redhat.com>
900526
- Fix devel Requires for bug 130738 & fix version
900526
900526
* Tue Aug 24 2004 Jason Vas Dias <jvdias@redhat.com>
900526
- Fix errors on clean install if named group does not exist
900526
- (bug 130777)
900526
900526
* Thu Aug 19 2004 Jason Vas Dias <jvdias@redhat.com>
900526
- Upgrade to bind-9.2.4rc7; applied initscript fix
900526
- for bug 102035.
900526
900526
* Mon Aug  9 2004 Jason Vas Dias <jvdias@redhat.com>
900526
- Fixed bug 129289: bind-chroot install / deinstall
900526
- on install, existing config files 'safe_replace'd
900526
- with links to chroot copies; on uninstall, moved back.
900526
900526
* Fri Aug  6 2004 Jason Vas Dias <jvdias@redhat.com>
900526
- Fixed bug 129258: "${prefix}/var/tmp" typo in spec
900526
900526
* Wed Jul 28 2004 Jason Vas Dias <jvdias@redhat.com>
900526
- Fixed bug 127124 : 'Requires: kernel >= 2.4'
900526
- causes problems with Linux VServers
900526
900526
* Tue Jul 27 2004 Jason Vas Dias <jvdias@redhat.com>
900526
- Fixed bug 127555 : chroot tar missing var/named/slaves
900526
900526
* Fri Jul 16 2004 Jason Vas Dias <jvdias@redhat.com>
900526
- Upgraded to ISC version 9.2.4rc6
900526
900526
* Fri Jul 16 2004 Jason Vas Dias <jvdias@redhat.com>
900526
- Fixed named.init generation of error messages on
900526
- 'service named stop' and 'service named reload'
900526
- as per bug 127775
900526
900526
* Wed Jun 23 2004 Daniel Walsh <dwalsh@redhat.com> 9.2.3-19
900526
- Bump for rhel 3.0  U3
900526
900526
* Wed Jun 23 2004 Daniel Walsh <dwalsh@redhat.com> 9.2.3-18
900526
- remove disable-linux-caps
900526
900526
* Wed Jun 16 2004 Daniel Walsh <dwalsh@redhat.com> 9.2.3-17
900526
- Update RHEL3 to latest bind
900526
900526
* Tue Jun 15 2004 Elliot Lee <sopwith@redhat.com>
900526
- rebuilt
900526
900526
* Tue Jun 8 2004 Daniel Walsh <dwalsh@redhat.com> 9.2.3-15
900526
- Remove device files from chroot,  Named uses the system one
900526
900526
* Fri Mar 26 2004 Daniel Walsh <dwalsh@redhat.com> 9.2.3-14
900526
- Move RFC to devel package
900526
900526
* Fri Mar 26 2004 Daniel Walsh <dwalsh@redhat.com> 9.2.3-13
900526
- Fix location of restorecon
900526
900526
* Thu Mar 25 2004 Daniel Walsh <dwalsh@redhat.com> 9.2.3-12
900526
- Tighten security on config files.  Should be owned by root
900526
900526
* Thu Mar 25 2004 Daniel Walsh <dwalsh@redhat.com> 9.2.3-11
900526
- Update key patch to include conf-keygen
900526
900526
* Tue Mar 23 2004 Daniel Walsh <dwalsh@redhat.com> 9.2.3-10
900526
- fix chroot to only happen once.
900526
- fix init script to do kill insteall of killall
900526
900526
* Mon Mar 15 2004 Daniel Walsh <dwalsh@redhat.com> 9.2.3-9
900526
- Add fix for SELinux security context
900526
900526
* Tue Mar 02 2004 Elliot Lee <sopwith@redhat.com>
900526
- rebuilt
900526
900526
* Sat Feb 28 2004 Florian La Roche <Florian.LaRoche@redhat.de>
900526
- run ldconfig for libs subrpm
900526
900526
* Mon Feb 23 2004 Tim Waugh <twaugh@redhat.com>
900526
- Use ':' instead of '.' as separator for chown.
900526
900526
* Tue Feb 17 2004 Daniel Walsh <dwalsh@redhat.com> 9.2.3-7
900526
- Add COPYRIGHT
900526
900526
* Fri Feb 13 2004 Elliot Lee <sopwith@redhat.com>
900526
- rebuilt
900526
900526
* Tue Dec 30 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.3-5
900526
- Add defattr to libs
900526
900526
* Mon Dec 29 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.3-4
900526
- Break out library package
900526
900526
* Mon Dec 22 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.3-3
900526
- Fix condrestart
900526
900526
* Wed Nov 12 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.3-2
900526
- Move libisc and libdns to bind from bind-util
900526
900526
* Tue Nov 11 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.3-1
900526
- Move to 9.2.3
900526
900526
* Mon Oct 27 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.2.P3-10
900526
- Add PIE support
900526
900526
* Fri Oct 17 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.2.P3-9
900526
- Add /var/named/slaves directory
900526
900526
* Sun Oct 12 2003 Florian La Roche <Florian.LaRoche@redhat.de>
900526
- do not link against libnsl, not needed for Linux
900526
900526
* Wed Oct 8 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.2.P3-6
900526
- Fix local time in log file
900526
900526
* Tue Oct 7 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.2.P3-5
900526
- Try again
900526
900526
* Mon Oct 6 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.2.P3-4
900526
- Fix handling of chroot -/dev/random
900526
900526
* Thu Oct 2 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.2.P3-3
900526
- Stop hammering stuff on update of chroot environment
900526
900526
* Mon Sep 29 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.2.P3-2
900526
- Fix chroot directory to grab all subdirectories
900526
900526
* Wed Sep 24 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.2.P3-1
900526
- New patch to support for "delegation-only"
900526
900526
* Wed Sep 17 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.2-23
900526
- patch support for "delegation-only"
900526
900526
* Wed Jul 30 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.2-22
900526
- Update to build on RHL
900526
900526
* Wed Jul 30 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.2-21
900526
- Install libraries as exec so debug info will be pulled
900526
900526
* Sat Jul 19 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.2-20
900526
- Remove BSDCOMPAT (BZ 99454)
900526
900526
* Tue Jul 15 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.2-19
900526
- Update to build on RHL
900526
900526
* Tue Jul 15 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.2-18
900526
- Change protections on /var/named and /var/chroot/named
900526
900526
* Tue Jun 17 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.2-17
900526
- Update to build on RHL
900526
900526
* Tue Jun 17 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.2-16
900526
- Update to build on RHEL
900526
900526
* Wed Jun 04 2003 Elliot Lee <sopwith@redhat.com>
900526
- rebuilt
900526
900526
* Tue Apr 22 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.2-14
900526
- Update to build on RHEL
900526
900526
* Tue Apr 22 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.2-13
900526
- Fix config description of named.conf in chroot
900526
- Change named.init script to check for existence of /etc/sysconfig/network
900526
900526
* Fri Apr 18 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.2-12
900526
- Update to build on RHEL
900526
900526
* Fri Apr 18 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.2-11
900526
- Update to build on RHEL
900526
900526
* Fri Apr 18 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.2-10
900526
- Fix echo OK on starting/stopping service
900526
900526
* Fri Mar 28 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.2-9
900526
- Update to build on RHEL
900526
900526
* Fri Mar 28 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.2-8
900526
- Fix echo on startup
900526
900526
* Tue Mar 25 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.2-7
900526
- Fix problems with chroot environment
900526
- Eliminate posix threads
900526
900526
* Mon Mar 24 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.2-6
900526
- Fix build problems
900526
900526
* Fri Mar 14 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.2-5
900526
- Fix build on beehive
900526
900526
* Thu Mar 13 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.2-4
900526
- build bind-chroot kit
900526
900526
* Tue Mar 11 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.2-3
900526
- Change configure to use proper threads model
900526
900526
* Fri Mar 7 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.2-2
900526
- update to 9.2.2
900526
900526
* Tue Mar 4 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.2-1
900526
- update to 9.2.2
900526
900526
* Fri Jan 24 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.1-16
900526
- Put a sleep in restart to make sure stop completes
900526
900526
* Wed Jan 22 2003 Tim Powers <timp@redhat.com>
900526
- rebuilt
900526
900526
* Tue Jan 7 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.1-14
900526
- Separate /etc/rndc.key to separate file
900526
900526
* Tue Jan 7 2003 Nalin Dahyabhai <nalin@redhat.com> 9.2.1-13
900526
- Use openssl's pkgconfig data, if available, at build-time.
900526
900526
* Mon Jan 6 2003 Daniel Walsh <dwalsh@redhat.com> 9.2.1-12
900526
- Fix log rotate to use service named reload
900526
- Change service named reload to give success/failure message [73770]
900526
- Fix File checking [75710]
900526
- Begin change to automatically run in CHROOT environment
900526
900526
* Tue Dec 24 2002 Daniel Walsh <dwalsh@redhat.com> 9.2.1-10
900526
- Fix startup script to work like all others.
900526
900526
* Mon Dec 16 2002 Daniel Walsh <dwalsh@redhat.com> 9.2.1-9
900526
- Fix configure to build on x86_64 platforms
900526
900526
* Wed Aug 07 2002 Karsten Hopp <karsten@redhat.de>
900526
- fix #70583,  doesn't build on IA64
900526
900526
* Tue Jul 30 2002 Karsten Hopp <karsten@redhat.de> 9.2.1-8
900526
- bind-utils shouldn't require bind
900526
900526
* Mon Jul 22 2002 Karsten Hopp <karsten@redhat.de> 9.2.1-7
900526
- fix name of pidfine in logrotate script (#68842)
900526
- fix owner of logfile in logrotate script (#41391)
900526
- fix nslookup and named.conf man pages (output on stderr)
900526
  (#63553, #63560, #63561, #54889, #57457)
900526
- add rfc1912 (#50005)
900526
- gzip all rfc's
900526
- fix typo in keygen.c (#54870)
900526
- added missing manpages (#64065)
900526
- shutdown named properly with rndc stop (#62492)
900526
- /sbin/nologin instead of /bin/false (#68607)
900526
- move nsupdate to bind-utils (where the manpage already was) (#66209, #66381)
900526
- don't kill initscript when rndc fails (reload)    (#58750)
900526
900526
900526
* Mon Jun 24 2002 Bernhard Rosenkraenzer <bero@redhat.com> 9.2.1-5
900526
- Fix #65975
900526
900526
* Fri Jun 21 2002 Tim Powers <timp@redhat.com>
900526
- automated rebuild
900526
900526
* Thu May 23 2002 Tim Powers <timp@redhat.com>
900526
- automated rebuild
900526
900526
* Thu May  9 2002 Bernhard Rosenkraenzer <bero@redhat.com> 9.2.1-2
900526
- Move libisccc, lib isccfg and liblwres from bind-utils to bind,
900526
  they're not required if you aren't running a nameserver.
900526
900526
* Fri May 03 2002 Florian La Roche <Florian.LaRoche@redhat.de>
900526
- update to 9.2.1 release
900526
900526
* Thu Mar 14 2002 Bernhard Rosenkraenzer <bero@redhat.com> 9.2.0-8
900526
- Merge 30+ bug fixes from 9.2.1rc1 code
900526
900526
* Mon Mar 11 2002 Bernhard Rosenkraenzer <bero@redhat.com> 9.2.0-7
900526
- Don't exit if /etc/named.conf doesn't exist if we're running
900526
  chroot (#60868)
900526
- Revert Elliot's changes, we do require specific glibc/glibc-kernheaders
900526
  versions or bug #58335 will be back. "It compiles, therefore it works"
900526
  isn't always true.
900526
900526
* Thu Feb 28 2002 Elliot Lee <sopwith@redhat.com> 9.2.0-6
900526
- Fix BuildRequires (we don't need specific glibc/glibc-kernheaders
900526
versions).
900526
- Use _smp_mflags
900526
900526
* Wed Feb 20 2002 Bernhard Rosenkraenzer <bero@redhat.com> 9.2.0-4
900526
- rebuild, require recent autoconf, automake (#58335)
900526
900526
* Fri Jan 25 2002 Tim Powers <timp@redhat.com>
900526
- rebuild against new libssl
900526
900526
* Wed Jan 09 2002 Tim Powers <timp@redhat.com>
900526
- automated rebuild
900526
900526
* Tue Nov 27 2001 Bernhard Rosenkraenzer <bero@redhat.com> 9.2.0-1
900526
- 9.2.0
900526
900526
* Thu Nov 22 2001 Bernhard Rosenkraenzer <bero@redhat.com> 9.2.0-0.rc10.2
900526
- 9.2.0rc10
900526
900526
* Mon Nov  5 2001 Bernhard Rosenkraenzer <bero@redhat.com> 9.2.0-0.rc8.2
900526
- Fix up rndc.conf (#55574)
900526
900526
* Thu Oct 25 2001 Bernhard Rosenkraenzer <bero@redhat.com> 9.2.0-0.rc8.1
900526
- rc8
900526
- Enforce --enable-threads
900526
900526
* Mon Oct 22 2001 Bernhard Rosenkraenzer <bero@redhat.com> 9.2.0-0.rc7.1
900526
- 9.2.0rc7
900526
- Use rndc status for "service named status", it's supposed to actually
900526
  work in 9.2.x.
900526
900526
* Wed Oct  3 2001 Bernhard Rosenkraenzer <bero@redhat.com> 9.2.0-0.rc5.1
900526
- 9.2.0rc5
900526
- Fix rpm --rebuild with ancient libtool versions (#53938, #54257)
900526
900526
* Tue Sep 25 2001 Bernhard Rosenkraenzer <bero@redhat.com> 9.2.0-0.rc4.1
900526
- 9.2.0rc4
900526
900526
* Fri Sep 14 2001 Bernhard Rosenkraenzer <bero@redhat.com> 9.2.0-0.rc3.1
900526
- 9.2.0rc3
900526
- remove ttl patch, I don't think we need this for 8.0.
900526
- remove dig.1.bz2 from the bind8-manpages tar file, 9.2 has a new dig man page
900526
- add lwres* man pages to -devel
900526
900526
* Mon Sep  3 2001 Bernhard Rosenkraenzer <bero@redhat.com> 9.1.3-4
900526
- Make sure /etc/rndc.conf isn't world-readable even after the
900526
  %%post script inserted a random key (#53009)
900526
900526
* Thu Jul 19 2001 Bernhard Rosenkraenzer <bero@redhat.com> 9.1.3-3
900526
- Add build dependencies (#49368)
900526
- Make sure running service named start several times doesn't create
900526
  useless processes (#47596)
900526
- Work around the named parent process returning 0 even if the config
900526
  file is broken (it's parsed later by the child processes) (#45484)
900526
900526
* Mon Jul 16 2001 Bernhard Rosenkraenzer <bero@redhat.com> 9.1.3-2
900526
- Don't use rndc status, it's not yet implemented (#48839)
900526
900526
* Sun Jul 08 2001 Florian La Roche <Florian.LaRoche@redhat.de>
900526
- update to 9.1.3 release
900526
900526
* Tue Jul  3 2001 Bernhard Rosenkraenzer <bero@redhat.com> 9.1.3-0.rc3.1
900526
- Fix up rndc configuration and improve security (#46586)
900526
900526
* Tue Jun 26 2001 Bernhard Rosenkraenzer <bero@redhat.com> 9.1.3-0.rc2.2
900526
- Sync with caching-nameserver-7.1-6
900526
900526
* Mon Jun 25 2001 Bernhard Rosenkraenzer <bero@redhat.com> 9.1.3-0.rc2.1
900526
- Update to rc2
900526
900526
* Fri Jun  1 2001 Bernhard Rosenkraenzer <bero@redhat.com> 9.1.3-0.rc1.3
900526
- Remove resolv.conf(5) man page, it's now in man-pages
900526
900526
* Thu May 31 2001 Bernhard Rosenkraenzer <bero@redhat.com> 9.1.3-0.rc1.2
900526
- Add named.conf man page from bind 8.x (outdated, but better than nothing,
900526
  #42732)
900526
- Rename the rndc key (#42895)
900526
- Add dnssec* man pages
900526
900526
* Mon May 28 2001 Bernhard Rosenkraenzer <bero@redhat.com> 9.1.3-0.rc1.1
900526
- 9.1.3rc1
900526
- s/Copyright/License/
900526
900526
* Mon May  7 2001 Bernhard Rosenkraenzer <bero@redhat.com> 9.1.2-1
900526
- 9.1.2 final. No changes between 9.1.2-0.rc1.1 and this one, except for
900526
  the version number, though.
900526
900526
* Thu May  3 2001 Bernhard Rosenkraenzer <bero@redhat.com> 9.1.2-0.rc1.1
900526
- 9.1.2rc1
900526
900526
* Thu Mar 29 2001 Bernhard Rosenkraenzer <bero@redhat.com> 9.1.1-1
900526
- 9.1.1
900526
900526
* Thu Mar 15 2001 Bernhard Rosenkraenzer <bero@redhat.com> 9.1.0-10
900526
- Merge fixes from 9.1.1rc5
900526
900526
* Sun Mar 11 2001 Bernhard Rosenkraenzer <bero@redhat.com> 9.1.0-9
900526
- Work around bind 8 -> bind 9 migration problem when using buggy zone files:
900526
  accept zones without a TTL, but spew out a big fat warning. (#31393)
900526
900526
* Thu Mar  8 2001 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- Add fixes from rc4
900526
900526
* Fri Mar  2 2001 Nalin Dahyabhai <nalin@redhat.com>
900526
- rebuild in new environment
900526
900526
* Thu Mar  1 2001 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- killall -HUP named if rndc reload fails (#30113)
900526
900526
* Tue Feb 27 2001 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- Merge some fixes from 9.1.1rc3
900526
900526
* Tue Feb 20 2001 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- Don't use the standard rndc key from the documentation, instead, create a random one
900526
  at installation time (#26358)
900526
- Make /etc/rndc.conf readable by user named only, it contains secret keys
900526
900526
* Tue Feb 20 2001 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- 9.1.1 probably won't be out in time, revert to 9.1.0 and apply fixes
900526
  from 9.1.1rc2
900526
- bind requires bind-utils (#28317)
900526
900526
* Tue Feb 13 2001 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- Update to rc2, fixes 2 more bugs
900526
- Fix build with glibc >= 2.2.1-7
900526
900526
* Thu Feb  8 2001 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- Update to 9.1.1rc1; fixes 17 bugs (14 of them affecting us;
900526
  1 was fixed in a Red Hat patch already, 2 others are portability
900526
  improvements)
900526
900526
* Wed Feb  7 2001 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- Remove initscripts 5.54 requirement (#26489)
900526
900526
* Mon Jan 29 2001 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- Add named-checkconf, named-checkzone (#25170)
900526
900526
* Mon Jan 29 2001 Trond Eivind Glomsrod <teg@redhat.com>
900526
- use echo, not gprintf
900526
900526
* Wed Jan 24 2001 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- Fix problems with $GENERATE
900526
  Patch from Daniel Roesen <droesen@entire-systems.com>
900526
  Bug #24890
900526
900526
* Thu Jan 18 2001 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- 9.1.0 final
900526
900526
* Sat Jan 13 2001 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- 9.1.0rc1
900526
- i18nify init script
900526
- bzip2 source to save space
900526
900526
* Thu Jan 11 2001 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- Fix %%postun script
900526
900526
* Tue Jan  9 2001 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- 9.1.0b3
900526
900526
* Mon Jan  8 2001 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- Add named.conf man page from bind8 (#23503)
900526
900526
* Sun Jan  7 2001 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- Make /etc/rndc.conf and /etc/sysconfig/named noreplace
900526
- Make devel require bind = %%{version} rather than just bind
900526
900526
* Sun Jan  7 2001 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- Fix init script for real
900526
900526
* Sat Jan  6 2001 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- Fix init script when ROOTDIR is not set
900526
900526
* Thu Jan  4 2001 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- Add hooks for setting up named to run chroot (RFE #23246)
900526
- Fix up requirements
900526
900526
* Fri Dec 29 2000 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- 9.1.0b2
900526
900526
* Wed Dec 20 2000 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- Move run files to /var/run/named/ - /var/run isn't writable
900526
  by the user we're running as. (Bug #20665)
900526
900526
* Tue Dec 19 2000 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- Fix reverse lookups (#22272)
900526
- Run ldconfig in %%post utils
900526
900526
* Tue Dec 12 2000 Karsten Hopp <karsten@redhat.de>
900526
- fixed logrotate script (wrong path to kill)
900526
- include header files in -devel package
900526
- bugzilla #22049, #19147, 21606
900526
900526
* Fri Dec  8 2000 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- 9.1.0b1 (9.1.0 is in our timeframe and less buggy)
900526
900526
* Mon Nov 13 2000 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- 9.0.1
900526
900526
* Mon Oct 30 2000 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- Fix initscript (Bug #19956)
900526
- Add sample rndc.conf (Bug #19956)
900526
- Fix build with tar 1.13.18
900526
900526
* Tue Oct 10 2000 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- Add some missing man pages (taken from bind8) (Bug #18794)
900526
900526
* Sun Sep 17 2000 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- 9.0.0 final
900526
900526
* Wed Aug 30 2000 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- rc5
900526
- fix up nslookup
900526
900526
* Thu Aug 24 2000 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- rc4
900526
900526
* Thu Jul 13 2000 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- 9.0.0rc1
900526
900526
* Wed Jul 12 2000 Prospector <bugzilla@redhat.com>
900526
- automatic rebuild
900526
900526
* Sun Jul  9 2000 Florian La Roche <Florian.LaRoche@redhat.de>
900526
- add "exit 0" for uninstall case
900526
900526
* Fri Jul  7 2000 Florian La Roche <Florian.LaRoche@redhat.de>
900526
- add prereq init.d and cleanup install section
900526
900526
* Fri Jun 30 2000 Trond Eivind Glomsrod <teg@redhat.com>
900526
- fix the init script
900526
900526
* Wed Jun 28 2000 Nalin Dahyabhai <nalin@redhat.com>
900526
- make libbind.a and nslookup.help readable again by setting INSTALL_LIB to ""
900526
900526
* Mon Jun 26 2000 Bernhard Rosenkranzer <bero@redhat.com>
900526
- Fix up the initscript (Bug #13033)
900526
- Fix build with current glibc (Bug #12755)
900526
- /etc/rc.d/init.d -> /etc/init.d
900526
- use %%{_mandir} rather than /usr/share/man
900526
900526
* Mon Jun 19 2000 Bill Nottingham <notting@redhat.com>
900526
- fix conflict with man-pages
900526
- remove compatibilty chkconfig links
900526
- initscript munging
900526
900526
* Wed Jun 14 2000 Nalin Dahyabhai <nalin@redhat.com>
900526
- modify logrotate setup to use PID file
900526
- temporarily disable optimization by unsetting $RPM_OPT_FLAGS at build-time
900526
- actually bump the release this time
900526
900526
* Sun Jun  4 2000 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- FHS compliance
900526
900526
* Mon Apr 17 2000 Nalin Dahyabhai <nalin@redhat.com>
900526
- clean up restart patch
900526
900526
* Mon Apr 10 2000 Nalin Dahyabhai <nalin@redhat.com>
900526
- provide /var/named (fix for bugs #9847, #10205)
900526
- preserve args when restarted via ndc(8) (bug #10227)
900526
- make resolv.conf(5) a link to resolver(5) (bug #10245)
900526
- fix SYSTYPE bug in all makefiles
900526
- move creation of named user from %%post into %%pre
900526
900526
* Mon Feb 28 2000 Bernhard Rosenkranzer <bero@redhat.com>
900526
- Fix TTL (patch from ISC, Bug #9820)
900526
900526
* Wed Feb 16 2000 Bernhard Rosenkranzer <bero@redhat.com>
900526
- fix typo in spec (it's %%post, without a leading blank) introduced in -6
900526
- change SYSTYPE to linux
900526
900526
* Fri Feb 11 2000 Bill Nottingham <notting@redhat.com>
900526
- pick a standard < 100 uid/gid for named
900526
900526
* Fri Feb 04 2000 Elliot Lee <sopwith@redhat.com>
900526
- Pass named a '-u named' parameter by default, and add/remove user.
900526
900526
* Thu Feb  3 2000 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- fix host mx bug (Bug #9021)
900526
900526
* Mon Jan 31 2000 Cristian Gafton <gafton@redhat.com>
900526
- rebuild to fix dependencies
900526
- man pages are compressed
900526
900526
* Wed Jan 19 2000 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- It's /usr/bin/killall, not /usr/sbin/killall (Bug #8063)
900526
900526
* Mon Jan 17 2000 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- Fix up location of named-bootconf.pl and make it executable
900526
  (Bug #8028)
900526
- bind-devel requires bind
900526
900526
* Mon Nov 15 1999 Bernhard Rosenkraenzer <bero@redhat.com>
900526
- update to 8.2.2-P5
900526
900526
* Wed Nov 10 1999 Bill Nottingham <notting@redhat.com>
900526
- update to 8.2.2-P3
900526
900526
* Tue Oct 12 1999 Cristian Gafton <gafton@redhat.com>
900526
- add patch to stop a cache only server from complaining about lame servers
900526
  on every request.
900526
900526
* Fri Sep 24 1999 Preston Brown <pbrown@redhat.com>
900526
- use real stop and start in named.init for restart, not ndc restart, it has
900526
  problems when named has changed during a package update... (# 4890)
900526
900526
* Fri Sep 10 1999 Bill Nottingham <notting@redhat.com>
900526
- chkconfig --del in %%preun, not %%postun
900526
900526
* Mon Aug 16 1999 Bill Nottingham <notting@redhat.com>
900526
- initscript munging
900526
900526
* Mon Jul 26 1999 Bill Nottingham <notting@redhat.com>
900526
- fix installed chkconfig links to match init file
900526
900526
* Sat Jul  3 1999 Jeff Johnson <jbj@redhat.com>
900526
- conflict with new (in man-1.24) man pages (#3876,#3877).
900526
900526
* Tue Jun 29 1999 Bill Nottingham <notting@redhat.com>
900526
- fix named.logrotate (wrong %%SOURCE)
900526
900526
* Fri Jun 25 1999 Jeff Johnson <jbj@redhat.com>
900526
- update to 8.2.1.
900526
- add named.logrotate (#3571).
900526
- hack around egcs-1.1.2 -m486 bug (#3413, #3485).
900526
- vet file list.
900526
900526
* Fri Jun 18 1999 Bill Nottingham <notting@redhat.com>
900526
- don't run by default
900526
900526
* Sun May 30 1999 Jeff Johnson <jbj@redhat.com>
900526
- nslookup fixes (#2463).
900526
- missing files (#3152).
900526
900526
* Sat May  1 1999 Stepan Kasal <kasal@math.cas.cz>
900526
- nslookup patched:
900526
  to count numRecords properly
900526
  to fix subsequent calls to ls -d
900526
  to parse "view" and "finger" commands properly
900526
  the view hack updated for bind-8 (using sed)
900526
900526
* Wed Mar 31 1999 Bill Nottingham <notting@redhat.com>
900526
- add ISC patch
900526
- add quick hack to make host not crash
900526
- add more docs
900526
900526
* Fri Mar 26 1999 Cristian Gafton <gafton@redhat.com>
900526
- add probing information in the init file to keep linuxconf happy
900526
- dont strip libbind
900526
900526
* Sun Mar 21 1999 Cristian Gafton <gafton@redhat.com>
900526
- auto rebuild in the new build environment (release 3)
900526
900526
* Wed Mar 17 1999 Preston Brown <pbrown@redhat.com>
900526
- removed 'done' output at named shutdown.
900526
900526
* Tue Mar 16 1999 Cristian Gafton <gafton@redhat.com>
900526
- version 8.2
900526
900526
* Wed Dec 30 1998 Cristian Gafton <gafton@redhat.com>
900526
- patch to use the __FDS_BITS macro
900526
- build for glibc 2.1
900526
900526
* Wed Sep 23 1998 Jeff Johnson <jbj@redhat.com>
900526
- change named.restart to /usr/sbin/ndc restart
900526
900526
* Sat Sep 19 1998 Jeff Johnson <jbj@redhat.com>
900526
- install man pages correctly.
900526
- change K10named to K45named.
900526
900526
* Wed Aug 12 1998 Jeff Johnson <jbj@redhat.com>
900526
- don't start if /etc/named.conf doesn't exist.
900526
900526
* Sat Aug  8 1998 Jeff Johnson <jbj@redhat.com>
900526
- autmagically create /etc/named.conf from /etc/named.boot in %%post
900526
- remove echo in %%post
900526
900526
* Wed Jun 10 1998 Jeff Johnson <jbj@redhat.com>
900526
- merge in 5.1 mods
900526
900526
* Sun Apr 12 1998 Manuel J. Galan <manolow@step.es>
900526
- Several essential modifications to build and install correctly.
900526
- Modified 'ndc' to avoid deprecated use of '-'
900526
900526
* Mon Dec 22 1997 Scott Lampert <fortunato@heavymetal.org>
900526
- Used buildroot
900526
- patched bin/named/ns_udp.c to use <libelf/nlist.h> for include
900526
  on Redhat 5.0 instead of <nlist.h>