| Commit message (Collapse) | Author | Age | Files | Lines |
|
|
|
| |
FreeBSD versions: 5.3 and up, 6.x, 7.x, 8-CURRENT
|
|
|
|
| |
MAKE_ENV
|
|
|
|
| |
Approved by: maintainer implicit
|
|
|
|
| |
Approved by: araujo (mentor)
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
- Change default OpenLDAP version to 2.4
- Remove OpenLDAP 2.2 support, the port has been gone for some time now
- Add -DDEPRECATED to CFLAGS for all OpenLDAP using ports
PR: ports/123602, ports/124115, ports/125605
Submitted by: delphij, Jens Rehsack <rehsack@web.de>,
Yuri Pankov <yuri.pankov@gmail.com>
- Remove USE_GTK, it's no longer used
PR: ports/123528
Submitted by: mezz
- Use PATCH_WRKSRC instead of WRKSRC in do-patch target
PR: ports/124169
Submitted by: Max Brazhnikov <makc@issp.ac.ru>
- Remove USE_XPM, it's been replaced by USE_XORG+=xpm
PR: ports/124506
Submitted by: Alex Kozlov <spam@rm-rf.kiev.ua>
- Minor fixups for bsd.port.mk
PR: ports/122675
Submitted by: linimon
- Remove stale comment about USE_GETOPT_LONG
PR: ports/124521
Submitted by: Alex Kozlov <spam@rm-rf.kiev.ua>
- Correct comment about default fetch arguments
PR: ports/125334
Submitted by: Gary Palmer <freebsd-gnats@in-addr.com>
|
|
|
|
|
|
|
|
|
| |
- fix plist
- use SF macro while here
- bump PORTREVISION
Prompted by: QA Tindy run
Approved by: maintainer timeout on BotMail
|
|
|
|
|
| |
PR: 125774
Submitted by: Martin Jackson <mhjacks@swbell.net>
|
|
|
|
| |
Approved by: maintainer implicit
|
|
|
|
|
| |
PR: ports/125612
Submitted by: rscheckelhoff@fourcalorieservers.com (maintainer)
|
|
|
|
|
|
|
|
| |
DNSSEC validation.
This is off by default, so no PORTREVISION bump.
Submitted by: Andrei V. Lavreniyuk <andy.lavr@reactor-xg.kiev.ua>
|
| |
|
|
|
|
|
| |
Add the logic for the THREADS OPTION to be on for 7-RELEASE and above
(and off otherwise) that I'm using in dns/bind95
|
|
|
|
|
|
| |
properly tested for, so it would not report the error in some cases.
Thanks to marck@FreeBSD and mark@ISC for tracking this one down.
|
| |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
of the UDP query-source ports. The server will still use the same query
port for the life of the process, so users for whom the issue of cache
poisoning is highly significant may wish to periodically restart their
server using /etc/rc.d/named restart, or other suitable method.
In order to take advantage of this randomization users MUST have an
appropriate firewall configuration to allow UDP queries to be sent and
answers to be received on random ports; and users MUST NOT specify a
port number using the query-source[-v6] option.
The avoid-v[46]-udp-ports options exist for users who wish to eliminate
certain port numbers from being chosen by named for this purpose. See
the ARM Chatper 6 for more information.
Also please note, this issue applies only to UDP query ports. A random
ephemeral port is always chosen for TCP queries.
This issue applies primarily to name servers whose main purpose is to
resolve random queries (sometimes referred to as "caching" servers, or
more properly as "resolving" servers), although even an "authoritative"
name server will make some queries, primarily at startup time.
This update addresses issues raised in:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1447
http://www.kb.cert.org/vuls/id/800113
http://tools.ietf.org/html/draft-ietf-dnsext-forgery-resilience
|
|
|
|
|
| |
PR: 125364
Submitted by: Sten Spans <sten@blinkenlights.nl> (maintainer)
|
|
|
|
|
|
| |
1. To take bind95 into account
2. s/bind9-sdb-ldap/bind9-sdb-mysql/
3. Delete references to BIND 8
|
| |
|
|
|
|
| |
Add README.idnkit to PORTDOCS
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
Some of the important features of BIND 9 are:
DNS Security: DNSSEC (signed zones), TSIG (signed DNS requests)
IP version 6: Answers DNS queries on IPv6 sockets, IPv6 resource records (AAAA)
Experimental IPv6 Resolver Library
DNS Protocol Enhancements: IXFR, DDNS, Notify, EDNS0
Improved standards conformance
Views: One server process can provide multiple "views" of the DNS namespace,
e.g. an "inside" view to certain clients, and an "outside" view to others.
Multiprocessor Support, including working threads in this version
BIND 9.5 has a number of new features over previous versions, including:
GSS-TSIG support (RFC 3645), DHCID support
Experimental http server and statistics support for named via xml
More detailed statistics counters, compatible with the ones supported in BIND 8
Faster ACL processing
Efficient LRU cache cleaning mechanism.
NSID support (RFC 5001).
|
|
|
|
| |
Submitted by: Philip M. Gollucci <pgollucci@p6m7g8.com> (the new maintainer)
|
|
|
|
|
| |
PR: 125071
Submitted by: Ralf van der Enden <tremere@cainites.net> (maintainer)
|
|
|
|
| |
Pointyhat by: itetcu@
|
|
|
|
|
| |
PR: ports/125005
Submitted by: Ralf van der Enden <tremere cainites.net> (maintainer)
|
|
|
|
|
|
| |
(original site was too busy)
Submitted by: pav at FreeBSD.org
|
|
|
|
| |
Approved by: mentor (implicit)
|
|
|
|
|
| |
PR: ports/124749
Submitted by: Zhen REN <bg1tpt at gmail.com> (maintainer of rrdtool)
|
| |
|
|
|
|
| |
Approved by: maintainer implicit
|
|
|
|
| |
Approved by: maintainer implicit
|
|
|
|
|
|
|
| |
Rink Springer also asked me if he could maintain his own ports. Change
maitainership of games/sudsol, net/freedbd and net/kissd to Rink.
Approved by: philip (mentor), rink
|
| |
|
|
|
|
|
|
|
|
|
| |
<joe@joeholden.co.uk>
(reason: 553 5.3.5 system config error)
----- Transcript of session follows -----
553 5.3.5 127.0.0.1. config error: mail loops back to me (MX problem?)
554 5.3.5 Local configuration error
|
|
|
|
|
|
|
|
| |
- fix configure script so that WITHOUT_LIBEVENT works
- install some docs
PR: ports/123853
Submitted by: Tomoyuki Sakurai <cherry at trombik.org>
|
|
|
|
|
|
|
|
| |
update to 2.3.1 from 2.3.0
PR: ports/123669
Submitted by: Wen Heping <wenheping@gmail.com>
Approved by: maintainer timeout
|
| |
|
|
|
|
|
|
| |
- bump PORTREVISION
Approved by: maintainer timeout
|
|
|
|
|
|
|
|
| |
Bump PORTREVISION.
PR: ports/124163
Submitted by: Ralf van der Enden <tremere@cainites.net> (maintainer)
Approved by: garga (mentor, implicit)
|
|
|
|
|
|
|
|
|
|
| |
The affected ports are the ones with gettext as a run-dependency
according to ports/INDEX-7 (5007 of them) and the ones with USE_GETTEXT
in Makefile (29 of them).
PR: ports/124340
Submitted by: edwin@
Approved by: portmgr (pav)
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
automake 1.10 -> 1.10.1
gettext 0.16.1 -> 0.17
libtool 1.5.24 -> 1.5.26
m4 1.4.9 -> 1.4.11
Please see ports/UPDATING entry 20080605 for further information.
PR: 123450
Tested by: Full -exp package building run
Thanks to: linimon, pav
Approved by: portmgr
|
|
|
|
|
|
|
|
|
|
|
| |
to root server addresses, and a fix for the vulnerability mentioned
here: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-0122
Users of BIND 9.3.x are strongly encouraged to upgrade to this
version. Also, the 9.3.x branch is now in maintenance-only mode.
Users are encouraged to investigate BIND 9.4.x or perhaps 9.5.x.
http://www.isc.org/index.pl?/sw/bind/versions_and_support.php
|
|
|
|
| |
that /etc/rc.d/named will handle everything for them.
|
|
|
|
|
|
| |
PR: ports/124095
Submitted by: Nils Vogels <nivo+kw+ports.bfa274@is-root.com> (maintainer)
Approved by: garga (mentor, implicit)
|
| |
|
|
|
|
|
|
| |
problem with defaults in bsd.port.mk
Noticed by: linimon@
|
|
|
|
|
|
|
|
|
|
| |
According to http://cr.yp.to/distributors.html djbdns is
put into the public domain, therefore the port doesn't need
to be RESTRICTED.
PR: ports/122864
Submitted by: Björn Jonare <rksah@bredband.net>
Approved by: maintainer timeout
|
|
|
|
|
|
| |
and asynchronous DNS queries.
WWW: http://www.corpit.ru/mjt/udns.html
|
| |
|
|
|
|
| |
Reported by: W.C.A. Wijngaards <wouter at nlnetlabs.nl>
|
| |
|
|
|
|
|
|
| |
PR: ports/123583
Submitted by: Mark Foster <mark@foster.cc> (maintainer)
Approved by: mentor (implicit)
|
| |
|
|
|
|
|
|
|
|
|
|
|
|
| |
backends. Current backends include MySQL, PostgreSQL, bind, etc.
License: GPL V2
WWW: http://www.powerdns.com/
PR: ports/122948
Submitted by: Ralf van der Enden <tremere@cainites.net>
Approved by: thierry (mentor)
|
| |
|
|
|
|
| |
pid file. place it to PREFIX/etc/unbound as an author do.
|
|
|
|
|
|
|
| |
Net::DNS::Async is a fire-and-forget asynchronous DNS helper.
PR: ports/123382
Submitted by: Sahil Tandon <sahil at tandon.net>
|
|
|
|
|
| |
PR: 123322
Submitted by: Sten Spans <sten@blinkenlights.nl> (maintainer)
|
|
|
|
| |
Changes: http://search.cpan.org/dist/Data-Validate-Domain/Changes
|
|
|
|
| |
Changes: http://search.cpan.org/dist/Net-Domain-ExpireDate/Changes
|
|
|
|
| |
Discussed with: bsam
|
| |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
Unbound is designed as a set of modular components, so that also
DNSSEC (secure DNS) validation and stub-resolvers (that do not run as
a server, but are linked into an application) are easily possible.
Goals:
* A validating recursive DNS resolver.
* Code diversity in the DNS resolver monoculture.
* Drop-in replacement for BIND apart from config.
* DNSSEC support.
* Fully RFC compliant.
* High performance
o even with validation.
* Used as
o stub resolver.
o full caching name server.
o resolver library.
* Elegant design of validator, resolver, cache modules.
o provide the ability to pick and choose modules.
* Robust.
* In C, open source: The BSD license.
* Smallest as possible component that does the job.
* Stub-zones can be configured (local data or AS112 zones).
Non-goals:
* An authoritative name server.
* Too many Features.
WWW: http://unbound.net
|
| |
|
| |
|
| |
|
|
|
|
|
|
|
| |
- Use ETCDIR
PR: ports/122834
Submitted by: Alexander Logvinov <ports at logvinov.com> (maintainer)
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
- Remove USE_XLIB/USE_X_PREFIX/USE_XPM in favor of USE_XORG
- Remove X11BASE support in favor of LOCALBASE or PREFIX
- Use USE_LDCONFIG instead of INSTALLS_SHLIB
- Remove unneeded USE_GCC 3.4+
Thanks to all Helpers:
Dmitry Marakasov, Chess Griffin, beech@, dinoex, rafan, gahr,
ehaupt, nox, itetcu, flz, pav
PR: 116263
Tested on: pointyhat
Approved by: portmgr (pav)
|
|
|
|
|
|
|
|
|
| |
${MASTER_SITE_PERL_CPAN} to CPAN.
PR: ports/122674
Submitted by: Philip M. Gollucci <pgollucci@p6m7g8.com>
Reworked by: araujo (myself)
Approved by: portmgr (pav)
|
|
|
|
| |
Changes: http://search.cpan.org/dist/Net-Nslookup/Changes
|
|
|
|
| |
Changes: http://search.cpan.org/dist/Net-Nslookup/Changes
|
|
|
|
|
|
| |
PR: ports/122360
Submitted by: Sten Spans <sten at blinkenlights.nl> (maintainer)
Security: http://doc.powerdns.com/powerdns-advisory-2008-01.html
|
| |
|
|
|
|
|
| |
- Add trailing slash for INSTALL_* destinations
- Make DATADIR really configurable
|
|
|
|
|
| |
quotes in OPTIONS, but the bug in make's handing of .for loops
has been hiding this bug. make(1) from HEAD made this bug visible.
|
| |
|
| |
|
|
|
|
|
| |
PR: ports/121926
Submitted by: Steven Kreuzer <skreuzer@exit2shell.com>
|
|
|
|
| |
Approved by: maintainer implicit
|
| |
|
|
|
|
|
|
|
|
|
| |
- fix dependency
- bump PORTREVISION
PR: 121206
Submitted by: leeym
Approved by: maintainer timeout
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
Fix rt.cpan.org #30316 Security issue with Net::DNS Resolver.
Net/DNS/RR/A.pm in Net::DNS 0.60 build 654 allows remote attackers
to cause a denial of service (program "croak") via a crafted DNS
response (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6341). Packet
parsing routines are now enclosed in eval blocks to trap exception
and avoid premature termination of user program.
Used ideas from:
PR: ports/120702
Submitted by: Felippe de Meirelles Motta <lippemail@gmail.com>
|
|
|
|
|
|
|
|
| |
where the portname does not match the projects hostname.
PR: ports/121453 (related)
Submitted by: Edwin Groothuis <edwin@mavetju.org>
Reviewed by: pav@
|
|
|
|
| |
Changes: http://search.cpan.org/dist/POE-Component-Server-DNS/Changes
|
|
|
|
| |
Changes: http://search.cpan.org/dist/Net-DNS-ToolKit/Changes
|
|
|
|
|
|
|
|
| |
- Update MAINTAINER address
PR: ports/120847
Submitted by: Felippe de Meirelles Motta <lippemail@gmail.com>
Approved by: maintainer
|
|
|
|
|
|
| |
PR: ports/120806
Submitted by: Felippe de Meirelles Motta <lippemail@gmail.com>
Approved by: Jin-Shan Tseng <tjs@cdpa.nsysu.edu.tw> (maintainer)
|
| |
|
|
|
|
|
|
| |
PR: 120364
Submitted by: Felippe de Meirelles Motta <lippemail@gmail.com>
Approved by: maintainer
|
|
|
|
|
|
|
|
|
|
|
|
| |
- Use SF macro. [1]
- Added new OPTIONS. [1]
- Fixed and changed pkg-install to FILESDIR. [1]
- Change maintainer mail address. [2]
PR: ports/120136
Submitted by: Felippe de Meirelles Motta <lippemail@gmail.com> [1]
Approved by: Natanael Copa <ncopa@users.sourceforge.net> (maintainer) [2]
stas (mentor, implicit)
|
|
|
|
|
|
| |
took the IPv6 address even if you used the -4 option.
- Fix false lame server issues with domains which have the
higher domain in it (command.com for example).
|
|
|
|
|
|
|
|
| |
- Update maintainer mail adress
PR: ports/120108
Submitted by: Felippe de Meirelles Motta <lippemail@gmail.com>
Approved by: maintainer
|
|
|
|
|
|
|
| |
A resolvconf compatible framework for managing /etc/resolv.conf.
PR: ports/119171
Submitted by: Roy Marples <roy@marples.name> (maintainer)
|
|
|
|
|
|
|
| |
responses.
It is designed to be used in conjunction with an existing recursive DNS resolver
in order to protect networks against DNS rebinding attacks.
|
| |
|
|
|
|
|
|
|
|
|
|
| |
interrogation success for a list of IP addresses against a list of DNSBL's.
The module is used to implement the reproting script dnsblstat.
WWW: http://search.cpan.org/dist/Net-DNSBL-Statistics/
PR: ports/119424
Submitted by: Jin-Shan Tseng <tjs at cdpa.nsysu.edu.tw>
|
|
|
|
|
|
|
|
|
| |
- Drop Maintainership
PR: 119470
Submitted by: Mark D. Foster <mark@foster.cc>
Approved by: Alex Kapranoff <alex@kapranoff.ru>
Security: http://www.vuxml.org/freebsd/f358de71-bf64-11dc-928b-0016179b2dd5.html
|
| |
|
|
|
|
|
|
|
|
|
|
| |
Actually, the maintainer submits the rc script which uses 'name=noip2'.
After some discussion with him, I changed it to use noip in order to
match its port name, but forget to properly set $command.
Pointy hat to: rafan
Reported by: Andrea Venturoli <ml at netfence.it>
Approved by: maintainer (implicit)
|
|
|
|
|
|
| |
PR: ports/119443
Submitted by: Philippe Audeoud <jadawin tuxaco.net>
Approved by: Mark D. Foster <mark@foster.cc> (maintainer)
|
|
|
|
|
|
|
|
| |
PLIST_SUB, so deleting them will not change the package. Therefore
no PORTREVISION bump.
PR: ports/119458
Submitted by: Philippe Audeoud <jadawin@tuxaco.net>
|
|
|
|
|
|
|
|
| |
directly frobbing packets or calling Net::DNS::RR->new_from_data()
(which you should not be doing anyway) then you should read the changelog
carefully and review/test your code before committing to this version.
2. Remove support for old Perl.
|
|
|
|
| |
Changes:
|
|
|
|
|
| |
PR: ports/119135
Submitted by: Kay Abendroth <kay.abendroth at raxion.net> (maintainer)
|
|
|
|
|
| |
PR: ports/119029
Submitted by: Dima Panov
|
|
|
|
|
|
| |
PR: ports/119249
Submitted by: Philippe Audeoud <jadawin tuxaco.net>
Approved by: Andy Greenwood <greenwood.andy gmail.com> (maintainer)
|
| |
|
|
|
|
|
|
|
|
|
|
|
| |
* updated noip2.c: added SkipHeaders() instead of the magic 6 line pass
* Changed to ip1.dynupdate.no-ip.com for ip retrieval
* added fclose() for stdin, stdout & stderr to child
* made Force_Update work on 30 day intervals
* added version number into shared mem and -S display
PR: 118989
Submitted by: Kay Abendroth <kay.abendroth@raxion.net> (maintainer)
|
|
|
|
| |
Changes: http://search.cpan.org/dist/Net-Domain-TLD/Changes
|
| |
|
|
|
|
|
| |
PR: 118791
Submitted by: Pietro Cerutti <gahr@gahr.ch>
|
|
|
|
|
| |
PR: 118059
Submitted by: Olafur Osvaldsson <oli@isnic.is> (maintainer)
|
|
|
|
| |
Submitted by: pav@
|
|
|
|
|
|
| |
from well-known mailgraph package.
WWW: http://www.linux.it/~md/software/
|
| |
|
| |
|
|
|
|
|
|
|
|
|
| |
- Add tip in pkg-message
- Provide sample config in %%ETCDIR%%
- BUMP port revision
PR: ports/118089
Submitted by: olli hauer <ohauer at gmx.de>
|
|
|
|
|
| |
Pointy hat number N:M (where M = many) goes to: dougb
Approved by: portmgr (erwin)
|
|
|
|
|
|
|
|
|
|
|
| |
http://www.isc.org/index.pl?/sw/bind/bind8-eol.php
Therefore, per the previous announcement, remove the ports for BIND 8.
This includes the chinese/bind8 slave port, and mail/smc-milter which
has a dependency on libbind_r.a from BIND 8.x. The latter has been
unmaintained since 2005, and is 3 versions behind.
Approved by: portmgr (linimon)
|
|
|
|
|
|
| |
file for more details.
Approved by: portmgr (erwin)
|
|
|
|
|
|
|
| |
http://blog.icann.org/?p=227
Bump PORTREVISION.
Approved by: portmgr (linimon)
|
|
|
|
|
|
| |
PR: ports/117446
Submitted by: Philippe Audeoud <jadawin tuxaco.net>
Approved by: radek raadradd.com (maintainer)
|
|
|
|
|
|
|
|
| |
- Utilize PORTDOCS
PR: 117399
Submitted by: leeym
Approved by: maintainer
|
| |
|
| |
|
|
|
|
|
| |
PR: 117029
Submitted by: Olafur Gudmundsson <ogud@ogud.com>
|
| |
|
|
|
|
|
|
|
|
| |
perl unconditonally, or conditionally. To be able to conditionalize the
inclusion of bsd.perl.mk, they now need to be defined before the inclusion
of bsd.port.pre.mk.
Hat: portmgr
|
|
|
|
|
| |
Inspired by: Jason Harris <jharris@widomaker.com>
Howto: http://twiki.cenkes.org/Cenkes/SortingCategoryMakefiles
|
| |
|
| |
|
| |
|
| |
|
|
|
|
|
| |
PR: ports/116639
Submitted by: aDe
|
|
|
|
|
| |
PR: 116418
Submitted by: Mark Foster <mark@foster.cc> (maintainer)
|
|
|
|
|
| |
PR: 116180
Submitted by: Olafur Osvaldsson <oli@isnic.is> (maintainer)
|
|
|
|
| |
Submitted by: Alex Samorukov <samm@os2.kiev.ua>
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
I don't think this port has any specific to do with gcc-3.4
compiler; building with the gcc-4.2.0 (and the latest 4.2.1)
is fine here.
I also have added a few patch files, for hard-coded
/etc/inadyn.conf, although a sample config
/usr/local/etc/inadyn.conf.sample and an rc script to
automate daemonization also need to added. But are not
mandatory.
PR: ports/115699
Submitted by: Balwinder S Dheeman <bdheeman@yahoo.com>
|
|
|
|
|
| |
- OPTIONSify
- If does not exist, install a conf file from the sample
|
|
|
|
|
|
|
|
| |
Drop support for antique perl.
Work done by: gabor
Sponsored by: Google Summer of Code 2007
Hat: portmgr
|
| |
|
|
|
|
|
|
|
| |
- reset maintainer
PR: ports/116146
Submitted by: Jin-Shan Tseng <tjs_AT_cdpa dot nsysu dot edu dot tw>
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
- Bump PORTREVISION
[1] Notes:
powerdns-recursor 3.1.4 doesn't support multiline txt records, which
are used by various dns information systems. 3.1.5 does have support
for this. A backport of the code changes is relatively risk-free, and has been
requested by users and port maintainers.
http://www.nabble.com/recursor-unable-to-resolve-asn.routeviews.org-data-t4252567.html
PR: 116029
Submitted by: Sten Spans <sten@blinkenlights.nl> (Maintainer)
|
|
|
|
|
|
|
|
|
| |
PR: ports/115163
Submitted by: Aleksey Ovcharenko <aleksey.ovcharenko at gmail.com>
Patch by: sumbitter, mm [1]
Approved by: Hugo Meiland <hugo at chem.leidenuniv.nl> (maintainer)
[1] fixed patch approved by maintainer timeout (14+ days)
|
|
|
|
| |
Approved by: maintainer implicit
|
|
|
|
|
|
|
| |
for us.
2. Tighten the list of master sites way down since almost all mirrors
have dropped BIND 8.
|
|
|
|
|
| |
PR: ports/115833
Submitted by: Radim Kolar SF.NET <hsn@sendmail.cz>
|
|
|
|
|
| |
Use DISTVERSION in place of DISTNAME where possible.
Remove perl 5.005 shims.
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
in the tooth BIND 8. As of today (27 August 2007) ISC has announced
that BIND 8 is officially End of Life (EOL) and therefore it's time
to say good-bye.
Please see http://www.isc.org/sw/bind/bind8-eol.php for details on the
reasoning behind the EOL status, the latest security issues, and a
migration guide to help you move toward BIND 9.4.x.
bind8 (BIND 8.3.7) is marked FORBIDDEN due to the predictable query ID
bug (see above) which will not be fixed for this version.
bind84 is marked DEPRECATED, and will be upgraded to 8.4.7-P1 when it
is available.
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
daemon.
multi_dnsbl is a DNS emulator daemon that increases the efficacy of DNSBL
look-ups in a mail system. multi_dnsbl may be used as a stand-alone DNSBL or as
a plug-in for a standard BIND 9 installation. multi_dnsbl shares a common
configuration file format with the Mail::SpamCannibal sc_BLcheck.pl script so
that DNSBL's can be maintained in a common configuration file for an entire
mail installation.
Because DNSBL usefulness is dependent on the nature and source of spam sent to
a specific site and because sometimes DNSBL's may provide intermittant service,
multi_dnsbl interrogates them sorted in the order of greatest successful hits.
DNSBL's that do not respond within the configured timeout period are not
interrogated at all after 6 consecutive failures, and thereafter will be
retried not more often than once every hour until they come back online. This
eliminates the need to place DNSBL's in a particular order in your MTA's config
file or periodically monitor the DNSBL statistics and/or update the MTA config
file.
WWW: http://search.cpan.org/~miker/Net-DNSBL-MultiDaemon-0.18/MultiDaemon.pm
PR: ports/115639
Submitted by: Andrew Greenwood <greenwood.andy at gmail.com>
|
| |
|
|
|
|
|
|
|
| |
PR: ports/115297
Submitted by: rafan
Approved by: farrokhi (maintainer)
Obtained from: http://hugo.vulcano.cl/development/adns-cc
|
|
|
|
|
| |
PR: ports/115324
Submitted by: Felippe de Meirelles Motta <lippe@freebsdbrasil.com.br>
|
|
|
|
| |
Notified by: sat
|
|
|
|
|
|
| |
PR: ports/115497
Submitted by: clsung
Approved by: maintainer (Jin-Shan Tseng)
|
| |
|
|
|
|
|
|
|
|
| |
- Update WWW
- Pass maintainership to submitter
PR: ports/115267
Submitted by: Stefan Pauly <stefan at fh-mainz.de>
|
| |
|
|
|
|
|
| |
2. --no-online-tests works now, so stop building them.
3. Remove support for prehistoric Perl.
|
|
|
|
|
|
|
| |
fully chrooted DESTDIR, which does not need such any more.
Sponsored by: Google Summer of Code 2007
Approved by: portmgr (pav)
|
|
|
|
|
|
|
|
|
|
| |
- Add significantly better support in bsd.python.mk for working with
Python Eggs and the easy_install system
Tested by: pointyhat runs
Approved by: pav (portmgr)
Most work by: perky
Thanks to: pav
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
1. The default access control lists (acls) are not being
correctly set. If not set anyone can make recursive queries
and/or query the cache contents.
See also:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2925
2. The DNS query id generation is vulnerable to cryptographic
analysis which provides a 1 in 8 chance of guessing the next
query id for 50% of the query ids. This can be used to perform
cache poisoning by an attacker.
This bug only affects outgoing queries, generated by BIND 9 to
answer questions as a resolver, or when it is looking up data
for internal uses, such as when sending NOTIFYs to slave name
servers.
All users are encouraged to upgrade.
See also:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2926
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
The DNS query id generation is vulnerable to cryptographic
analysis which provides a 1 in 8 chance of guessing the next
query id for 50% of the query ids. This can be used to perform
cache poisoning by an attacker.
This bug only affects outgoing queries, generated by BIND 9 to
answer questions as a resolver, or when it is looking up data
for internal uses, such as when sending NOTIFYs to slave name
servers.
All users are encouraged to upgrade.
See also:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2926
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
supports them. This is determined by running ``configure --help'' in
do-configure target and set the shell variable _LATE_CONFIGURE_ARGS
which is then passed to CONFIGURE_ARGS.
- Remove --mandir and --infodir in ports' Makefile where applicable
Few ports use REINPLACE_CMD to achieve the same effect, remove them too.
- Correct some manual pages location from PREFIX/man to MANPREFIX/man
- Define INFO_PATH where necessary
- Document that .info files are installed in a subdirectory relative to
PREFIX/INFO_PATH and slightly change add-plist-info to use INFO_PATH and
subdirectory detection.
PR: ports/111470
Approved by: portmgr
Discussed with: stas (Mk/*), gerald (info related stuffs)
Tested by: pointyhat exp run
|
| |
|
|
|
|
|
| |
No objection from: ports@, maintainers
Approved by: portmgr (pav)
|
|
|
|
| |
Approved by: maintainer implicit
|
| |
|
|
|
|
|
|
|
| |
edit and write RFC1033 style DNS Zones.
PR: ports/114271
Submitted by: Chris St Denis (<chris at ctgameinfo.com>)
|
|
|
|
|
|
|
|
|
|
|
|
| |
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-3377
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-3409
... as well as rudimentary support for IPSECKEY.
See /usr/local/share/doc/p5-Net-DNS/Changes for more details.
Prodded by: Several, including ...
PR: ports/114230
Submitted by: Hirohisa Yamaguchi <umq@ueo.co.jp>
|
|
|
|
| |
Reported by: pointhat (logs)
|
|
|
|
| |
Changes: http://search.cpan.org/src/NEELY/Data-Validate-Domain-0.08/Changes
|
|
|
|
|
|
|
|
|
|
|
|
| |
- maradns.sh and zoneserver.sh now use PID file
- change default MaraDNS UID from 99 to bind(53)
- change default maraDNS GID from 99 to bind(53)
- change default duende logger process UID from 66 to nobody(65534)
- create empty etc/logger directory
PR: ports/113235
Submitted by: Simun Mikecin <numisemis@yahoo.com>
Approved by: Alex Kapranoff <alex@kapranoff.ru> (maintainer)
|
|
|
|
|
| |
Approved by: maintainer timeout (security, 1 day), so (simon)
Security: http://www.vuxml.org/freebsd/70ae62b0-16b0-11dc-b803-0016179b2dd5.html
|
| |
|
| |
|
|
|
|
| |
Hat: portmgr
|
|
|
|
|
| |
Submitted by: pointhat via kris
Sten Spans <sten@blinkenlights.nl> (maintainer)
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
Supports adding, removing, and modifying enteries.
The attributes it can handle are TTL, A record, C name, AAAA
record, and MX record. Outside of TTL, multiple attributes
for each type record.
WWW: http://vvelox.net/projects/ldnsm/
PR: ports/112191
Submitted by: Zane C. Bowers
|
| |
|
| |
|
|
|
|
|
| |
PR: 111915
Submitted by: Sten Spans <sten@blinkenlights.nl> (maintainer)
|
|
|
|
|
| |
PR: 112768
Submitted by: Alex Kapranoff <alex@kapranoff.ru> (maintainer)
|
|
|
|
|
| |
- Set X11BASE to ${LOCALBASE} for recent ${OSVERSION}.
- Bump PORTREVISION for ports intalling files in ${X11BASE}.
|
| |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
cap is a network capture utility designed specifically for DNS
traffic. It produces binary data in pcap(3) format, either on
standard output (by default) or in successive dump files (if the d
command line option is given.) This utility is similar to tcpdump(1),
but has finer grained packet recognition tailored to DNS transactions
and protocol options. dnscap is expected to be used for gathering
continuous research or audit traces.
SYNOPSIS
dnscap [-avf6] [-i if ...] [-l vlan ...] [-p port] [-m [quire]] [-h [ir]]
[-q host ...] [-r host ...] [-d base [-k cmd]] [-t lim] [-c lim]
WWW: http://public.oarci.net/tools/dnscap
|
|
|
|
| |
Approved by: maintainer implicit
|
|
|
|
|
|
|
|
| |
2172. [bug] query_addsoa() was being called with a non zone db.
[RT #16834]
If you are running BIND 9.4.0 (either pre-release or final),
you are advised to upgrade as soon as possible to BIND 9.4.1.
|
| |
|
|
|
|
| |
Submitted by: Pietro Celentano <pcelentano@tiscalinet.it>
|
|
|
|
|
|
|
|
|
|
| |
- Add patch from SVN to support DNSSEC records
- Update examples (config and table creation files)
- For the complete changelog see http://doc.powerdns.com/changelog.html
PR: ports/112055
Submitted by: maintainer (Ralf van der Enden)
Reviewed by: maintainer
|
|
|
|
|
| |
PR: 112080
Submitted by: miwi
|
|
|
|
| |
- Update WWW
|
|
|
|
|
|
| |
PR: 111765
Submitted by: Volker Theile<votdev@gmx.de>
Approved by: maintainer
|
|
|
|
|
| |
PR: 111733
Submitted by: Olafur Osvaldsson <oli@isnic.is> (maintainer)
|
|
|
|
|
| |
PR: ports/111360
Submitted by: novel
|
| |
|
|
|
|
| |
Bump PORTREVISION.
|
|
|
|
| |
Approved by: garga (mentor)
|
|
|
|
| |
is coming.
|
|
|
|
| |
Suggested by: skv
|
|
|
|
|
|
|
| |
PR: ports/110568
Submitted by: Ed Schouten <ed@fxq.nl> (maintainer)
- While here, modernize USE_RC_SUBR and kill FreeBSD 4.X bits
|
|
|
|
|
| |
PR: ports/105529
Submitted by: laszlof
|
|
|
|
|
|
| |
PR: ports/110546
Submitted by: Anish Mistry <amistry@am-productions.biz>
Approved by: Ralf van der Enden <Ralf.vdEnden@wldelft.nl> (maintainer)
|
|
|
|
|
| |
PR: 110671
Submitted by: Olafur Osvaldsson <oli@isnic.is> (maintainer)
|
|
|
|
|
|
| |
PR: ports/109963
Submitted by: clsung
Approved by: maintainer (Jin-Shan Tseng)
|
|
|
|
|
|
| |
PR: 109873
Submitted by: miwi
Approved by: maintainer
|
|
|
|
| |
Hat: portmgr
|
|
|
|
|
|
|
|
| |
contains a bugfix for recovering from permanently lost database connections
- Fix build on gcc 4.x
PR: ports/109273
Submitted by: Ralf van der Enden <tremere at cainites.net> (maintainer)
|
|
|
|
|
|
|
|
|
| |
- Update pkg-descr
PR: ports/109297
Submitted by: David Sze <dsze@alumni.uwaterloo.ca>
Approved by: Jason DiCioccio <jd@ods.org> (maintainer),
erwin (mentor, implicit)
|
|
|
|
|
| |
PR: 109533
Submitted by: Kay Abendroth <kay.abendroth@raxion.net> (maintainer)
|
| |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
It uses POE::Component::Client::DNS to handle resolving when configured as
'forward_only' and Net::DNS::Resolver::Recurse wrapped by
POE::Component::Generic to perform recursion.
One may add handlers to massage and manipulate responses to particular queries
which is vaguely modelled after Net::DNS::Nameserver.
WWW: http://search.cpan.org/dist/POE-Component-Server-DNS/
PR: ports/109449
Submitted by: Jin-Shan Tseng <tjs at cdpa.nsysu.edu.tw>
Approved by: erwin (mentor, implicit)
|
|
|
|
|
|
|
| |
- Fixed a typo in pkg-descr
PR: ports/109340
Submitted by: Alex Kapranoff <alex at kapranoff.ru> (maintainer)
|
|
|
|
|
|
| |
PR: ports/109298
Submitted by: Torfinn Ingolfsen <torfinn.ingolfsen@broadpark.no>
Approved by: Radek Kozlowski (maintainer, implicit)
|
|
|
|
| |
Approved by: RadosÅaw Kozlowski <radek@raadradd.com>
|
|
|
|
| |
Approved by: erwin (mentor, implicit)
|
|
|
|
| |
Approved by: maintainer (implicit)
|
|
|
|
|
| |
PR: 108471
Submitted by: Li-Wen Hsu <lwhsu@lwhsu.org>
|
| |
|
|
|
|
|
|
| |
- Release maintainership
Reported by: portscout [1]
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
descendant class that allows a virtual DNS to be emulated
instead of querying the real DNS. A set of static DNS
records may be supplied, or arbitrary code may be specified
as a means for retrieving DNS records, or even generating
them on the fly.
WWW: http://search.cpan.org/dist/Net-DNS-Resolver-Programmable/
- Koen Martens
gmc@sonologic.nl
PR: ports/108997
Submitted by: Koen Martens <gmc at sonologic.nl>
|
|
|
|
| |
Approved by: maintainer (implicit)
|
|
|
|
|
|
|
|
| |
- Add ipv6 to CATEGORIES
PR: ports/108860
Submitted by: rafan
Approved by: Mark Foster <mark at foster.cc> (maintainer)
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
- Prepare Makefile for upcoming new stable release of OpenDBX library (which
bumps library number from .1 to .2).
- Add stupidity fix for config location to pdns.in (moved the config but
forgot to edit rc.d script).
- Also changed location of config directory in pdns.conf.
- Bump port-revision.
PR: ports/108685
Submitted by: Ralf van der Enden <tremere@cainites.net> (maintainer)
Obtained from: www.linuxnetworks.de [1]
|
|
|
|
|
|
| |
- Remove IGNORE on FreeBSD 4.x, it's no longer need.
Submitted by: Sten Spans <sten@blinkenlights.nl> (maintainer)
|
|
|
|
|
|
| |
Changes: http://search.cpan.org/src/RCAPUTO/POE-Component-Client-DNS-1.00/CHANGES
PR: ports/108280
Submitted by: mat
|
|
|
|
|
|
| |
- Bump PORTREVISION
Approved by: bms (maintainer)
|
|
|
|
|
|
| |
- Bump PORTREVISION
Approved by: maintainer
|
| |
|
|
|
|
|
|
|
|
|
| |
coexist
PR: ports/103861
Submitted by: alepulver
Tested by: pointyhat
With hat: portmgr
|
|
|
|
|
|
|
|
| |
- Fix plist
PR: ports/108182
Submitted by: Tobias Roth <ports@fsck.ch>
Approved by: Ralf van der Enden <tremere@cainites.net> (maintainer)
|
| |
|
|
|
|
|
|
|
|
|
| |
was supposed to work is useless, because if we can't trust the distfile from
the remote machine, we can't trust the signature from the same machine either.
Our MD5 and SHA256 are good for checking both the sanity and the
trustiness of distfiles.
Approved by: portmgr (erwin), erwin (mentor)
|
| |
|
| |
|
|
|
|
|
| |
PR: ports/108329
Submitted by: Olafur Osvaldsson <oli at isnic.is> (maintainer)
|
|
|
|
| |
Submitted by: pav
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
following security issues. All users of BIND are encouraged to upgrade
to this version.
2126. [security] Serialise validation of type ANY responses. [RT #16555]
2124. [security] It was possible to dereference a freed fetch
context. [RT #16584]
2089. [security] Raise the minimum safe OpenSSL versions to
OpenSSL 0.9.7l and OpenSSL 0.9.8d. Versions
prior to these have known security flaws which
are (potentially) exploitable in named. [RT #16391]
2088. [security] Change the default RSA exponent from 3 to 65537.
[RT #16391]
2066. [security] Handle SIG queries gracefully. [RT #16300]
1941. [bug] ncache_adderesult() should set eresult even if no
rdataset is passed to it. [RT #15642]
|
|
|
|
|
|
|
| |
to work with the 5.X binaries such as p4 on 6.X after importing the
BIND9's resolver.
Requested by: bms
|
| |
|
|
|
|
| |
Approved by: maintainer (implicit)
|
| |
|
|
|
|
| |
the BSD NSS interface does not yet support dynamic getnameinfo().
|
|
|
|
|
|
| |
hostnames via Avahi's implementation of Multicast DNS.
With help from: flameeyes at gentoo dot org
|
|
|
|
|
|
|
| |
- Run under unpriviledged user by default
PR: ports/108062
Submitted by: Sten Spans <sten@blinkenlights.nl> (maintainer)
|
|
|
|
|
|
|
|
|
|
| |
- Add support for OpenDBX backend
- OPTIONify
- Bump PORTREVISION
PR: ports/96891
Submitted by: Ralf van der Enden <tremere@cainites.net> (maintainer)
Approved by: erwin (mentor)
|
|
|
|
|
|
| |
PR: ports/107845
Submitted by: Li-Wen Hsu <lwhsu@lwhsu.org>
Approved by: maintainer
|
|
|
|
|
|
| |
PR: 106008
Submitted by: Janos Mohacsi <janos.mohacsi@bsd.hu>
Approved by: maintainer timeout
|
|
|
|
| |
- Mark BROKEN for FreeBSD 4
|
| |
|