153 Commits

Author SHA1 Message Date
Carlo Landmeter
28ff75244c main/bind: add debug symbols subpkg 2021-07-14 12:33:09 +00:00
Ariadne Conill
8cae76b892 main/{bind,dhcp}: fix secfixes data for CVE-2019-6470 2021-06-22 06:50:20 -06:00
J0WI
a4ef46ffaf main/bind: upgrade to 9.16.18 2021-06-19 16:49:48 +02:00
J0WI
98054c4225 main/bind: upgrade to 9.16.17 2021-06-18 15:02:36 +00:00
Roman Shaposhnik
988c4057d6 main/*: bulk update of config.sub
Required for riscv64 needs

Signed-off-by: Roman Shaposhnik <rvs@zededa.com>
2021-06-05 17:32:41 +00:00
J0WI
0dcc21e82b main/bind: upgrade to 9.16.16 2021-06-01 17:04:31 +02:00
Ariadne Conill
abbb1276ce main/bind: security upgrade to 9.16.15 (CVE-2021-25214, CVE-2021-25215, CVE-2021-25216) 2021-04-29 04:25:22 -06:00
J0WI
d89d1a231c main/bind: patch CVE-2020-8625 2021-04-06 21:58:08 +00:00
Natanael Copa
2166baf552 main/bind: rebuild against python 3.9 2021-04-05 18:18:02 +00:00
Leo
eeb2a97c30 main/bind: upgrade to 9.16.11 2021-01-21 06:54:05 +00:00
Leo
1118fff73b main/*: update Maintainer and Contributor fields for clandmeter 2021-01-12 22:16:11 +00:00
Daniel Néri
6a6f23c2c7 main/bind: disable backtrace on abort (fix build on armv7) 2021-01-09 13:07:42 +00:00
Daniel Néri
be9505c58e main/bind: upgrade to 9.16.10 2021-01-09 13:07:42 +00:00
Justin Berthault
831e45c25b main/bind: upgrade to 9.16.8 2020-10-24 10:12:05 +00:00
Daniel Néri
cdd5390dfa main/bind: upgrade to 9.16.7 2020-09-18 18:58:07 +00:00
Daniel Néri
552c94635b main/bind: security upgrade to 9.16.6 2020-08-28 14:51:00 +00:00
J0WI
9fd4335a39 main/bind: security upgrade to 9.16.5 2020-07-26 17:02:30 +00:00
Leo
f415ad5b8b main/bind: upgrade to 9.14.12
see #11558
2020-05-20 17:08:32 +00:00
Natanael Copa
ac8d8e2e0a main/bind: fix build
add the dependencies of subpackages to makedepends so those gets built
before bind.

fixes #11462
2020-05-05 11:23:15 +00:00
Leo
79b55a4a4f main/*: rebuild for json-c-0.14 2020-04-23 11:11:07 -03:00
TBK
e126a58133
main/bind: rebuild against krb5 1.18 2020-03-23 14:33:48 +01:00
Leo
85f2bc39b0 main/bind: upgrade to 9.14.8
fixes CVE-2019-6477

ref #10970
2019-11-21 11:47:38 +01:00
Natanael Copa
5521fa7636 main/bind: rebuild against python 3.8 2019-11-05 15:35:40 +00:00
Ventz Petkov
500e546a09 main/bind security upgrade to 9.14.7 (CVE-2019-6475, CVE-2019-6476)
fixes #10891
2019-11-05 15:33:49 +00:00
Kevin Daudt
e24741492b main/bind: depend on bind-tools
The install script needs to call rndc-confgen to generate a key which is
required for reloading to work.

955e379151 (main/bind: add support for "reload", 2019-10-19) added
support for reload, but that causes an issues when installing bind,
because rndc-confgen is in the bind-tools subpackage, which is not
available if you just install bind.

Fix this by having bind depend on bind-tools.

Fixes #10935
2019-11-04 19:05:21 +00:00
Nico Schottelius
955e379151 main/bind: add support for "reload"
- Implement function in init script
- Generate key on post-install

Closes !540
2019-11-02 13:39:25 +00:00
tcely
0c67cd1eba Orphan my packages
In my experience, this project does not encourage contribution.
The people involved with merging have ignored improvements,
rewritten commits and history wholesale, and engaged in
squabbles over petty things rather than helping to improve
the packages.

These gatekeepers are adverse to large amounts of changes, large
numbers of commits and often request changes to the commit
histories without giving explanation.

Many times inconsistent suggestions and fixation on nits have
caused entire patch sets to be closed without any progress on
the package at all.

The style "rules" that are so often the sole focus of reviews
lately are a mistake.
https://gist.github.com/tcely/8ef31809f04a494a27ad79d49afdf167

Given all of this and the conversation below, I consider all of
my efforts toward improving this project to have been wasted.
Hopefully, this will serve as a warning of what others might
expect before they experience similar demoralizing responses.

2019-10-18 11:31:35 <tcely> If your only contribution to a review is to suggest breaking a package I'm maintaining, please don't waste everyone's time!
2019-10-18 12:15:47 <ncopa> tcely: url?
2019-10-18 12:26:56 <tcely> ncopa: !327
2019-10-18 12:29:22 <_ikke_> tcely: No need to be passive aggressive about this
2019-10-18 12:30:20 <_ikke_> tcely: being a maintainer of a package does not mean that you can do whatever you want
2019-10-18 12:30:52 <tcely> _ikke_: I'm fully willing to be direct. This is a stupid upgrade. Stop looking for useless things to argue about it is not a helpful review!
2019-10-18 12:31:19 <_ikke_> tcely: the problem is that there are so many changes in these stupid ugprades
2019-10-18 12:31:35 <_ikke_> if they were stupid upgrades, they would have been long applied
2019-10-18 12:33:10 <tcely> That last statement is false. If you disagree with changes, you need to do the work yourself. Stop shitting all over work you didn't have to think through for petty nonsense.
2019-10-18 12:42:28 <ncopa> can we please calm down
2019-10-18 13:17:46 <ncopa> tcely: i agree with _ikke_ that your commits are not always self explanatory, and a bit confusing to understand
2019-10-18 13:18:13 <ncopa> it may be good to have more explanations in the commit message to help people that are not as smart as you
2019-10-18 13:19:10 <ncopa> there seems also to be a disagreement on the coding style e.g $var vs ${var}
2019-10-18 13:19:43 <ncopa> i think consistence is better than the "perfect" coding style
2019-10-18 13:20:51 <ncopa> and we have landed on $var rather than ${var}
2019-10-18 13:21:46 <ncopa> and we expect maintainers to respect that
2019-10-18 13:25:51 <tcely> Duly noted. You want total control and slave labor with no room for improvement. I'll stop wasting my time.
2019-10-24 12:14:06 +00:00
tcely
12c1369b8a main/bind: add previous ISC signing key
Without this TOFU unknown entry, a release signed with the older key
prompts for a trust decision. Avoiding the prompt is desirable.

Also, format GPG details so they are easier to check manually.

Used:
$ gpg --verify bind-*.asc bind-*.tar.gz
$ awk \
    '/gpgfingerprints=/,/(^|[^=])["'\'']$/ {print;}' \
    APKBUILD
2019-08-23 11:25:26 +00:00
tcely
5627cdca88 main/bind: downloads.isc.org
Closes GH-9961
2019-08-08 20:37:50 +00:00
Leonardo Arena
5f63a5fe52 main/bind: security upgrade to 9.14.4 (CVE-2019-6471)
Fixes #10626
2019-08-08 09:59:03 +00:00
Natanael Copa
91fb4f69e2 main/bind: split dnssec-tools and py3-bind
move python modules and dnssec-tools to separate subpackages so we avoid
install python3 by default.

py3-bind may be useful separately for python scripts so lets separate
out that as well.
2019-05-02 11:18:56 +00:00
tcely
40322d1605 main/bind: become maintainer 2019-04-30 12:38:37 +00:00
tcely
4a3cd5e69c main/bind: security upgrade to 9.14.1
- CVE-2019-6467
- CVE-2018-5743

fixes #10367
2019-04-30 12:38:37 +00:00
tcely
36c06fdc08 main/bind: upgrade to 9.14.0 2019-04-30 12:38:37 +00:00
Sören Tempel
f715fbc7a7 main/bind: clear depends for libs subpackage
Otherwise the dev and tools subpackages install dns-root-hints (since
both depend on the libs subpackage) even though they shouldn't need it.

Discussion: Unfortunately, abuild doesn't have a depends_libs variable
thus we need to define a custom libs function to clear the dependency.
This approach is also used by other abuilds, e.g. testing/boinc.

See also: 4badc1aa803f5dd0f67d2df3004acc3f990ba23f
2019-04-09 18:21:10 +02:00
Henrik Riomar
62bda4345a main/bind: fix slow start
named-checkconf needs entropy to start, or else it will take
up to a minute to start at boot.
2019-04-08 17:24:49 +00:00
tcely
9be9f906a4 main/bind: remove unrecognized configure flag 2019-04-08 17:24:49 +00:00
tcely
6a7a502048 main/bind: security upgrade to 9.12.3-P4
- CVE-2019-6465
- CVE-2018-5745
- CVE-2018-5744
2019-04-08 17:24:49 +00:00
tcely
86587d7b8f main/bind: add and use -dnssec-root subpackage 2019-04-08 17:24:49 +00:00
tcely
4badc1aa80 main/bind: use dns-root-hints 2019-04-08 17:24:49 +00:00
tcely
8b82b5d5fc main/bind: named.ca cleanup white-space warnings 2019-02-06 10:05:59 +00:00
tcely
ad413784a2 main/bind: upgrade named.ca to 2018111402 2019-02-06 10:05:59 +00:00
tcely
621d11e236 main/bind: upgrade to 9.12.3-P1
https://kb.isc.org/docs/dnssec-key-deletion-may-create-broken-nsec-and-nsec3-chains-and-unnecessary-rrsigs
2019-02-06 10:05:59 +00:00
Taner Tas
51978afa8a main/bind: Upgrade to 9.12.3
* Add "--disable-isc-spnego" to use gss-spnego instead.

fixes #9462
2018-11-29 14:47:56 +00:00
Natanael Copa
67599e100e main/bind: rebuild against openssl 1.1 2018-11-07 16:46:08 +00:00
tcely
5b89784c2f main/bind: add secfixes comment 2018-08-28 13:57:56 +00:00
Taner Tas
68d39a1b32 main/bind: Upgrade to 9.12.2-P1, enable DLZ and kerberos
* Enable DLZ (Dynamically Loadable Zones) support with file system, ldap, stub backends
* Enable GSSAPI/Kerberos support
* Re-arrange configure options
2018-08-16 11:52:22 +00:00
Jakub Jirutka
f676af6ec9 main/bind: security upgrade to 9.12.1_p2 2018-05-22 00:25:04 +02:00
Natanael Copa
6128fdbb8f main/[various]: properly rebuild against json-c-0.13 2018-04-19 15:03:59 +00:00
Natanael Copa
4613de7cea main/bind: rebuild against json-c-0.13 2018-04-19 10:12:15 +00:00