aboutsummaryrefslogtreecommitdiff
path: root/dns
Commit message (Collapse)AuthorAgeFilesLines
* Update dnsmasq rc.d script again (sorry for the churn with portrev. 1)Matthias Andree2011-02-223-16/+69
| | | | | | | | | | | | | | | | | | | | | | | | - Start before named, to unbreak named_wait if /etc/resolv.conf points to dnsmasq (when named is the resolver that dnsmasq forwards to). Is also more robust/maintenance friendly if other scripts depend on "named". - Track if the configuration has changed since start, and upgrade reload to restart by default in that case (can be disabled with dnsmasq_restart="NO" in /etc/rc.conf[.local]), to work around dnsmasq shortcoming - Add a "logstats" action to the rcscript, and document it. - Document the "reload" action and the new dnsmasq_restart variable. - Properly quote variable expansions. - Enhance pkg-message to point to the rcfile for feature documentation. - Bump PORTREVISION to 2. Notes: svn path=/head/; revision=269514
* Change rc.d file to ensure proper startup order:Matthias Andree2011-02-222-3/+13
| | | | | | | | | | - depend on named, in case dnsmasq uses named as resolver - start before ntpdate and rpcbase (which require named). Bump PORTREVISION. Notes: svn path=/head/; revision=269506
* Upgrade to new upstream release 2.57.Matthias Andree2011-02-213-22/+24
| | | | | | | | | | | | | | | | | | | | | | | Remove support for FreeBSD releases 6.X. Allow build with IDN but without NLS (this requires that dns/libidn is also built WITHOUT_NLS) to expose an upstream change. Useful for embedded devices. Warn user if this is requested but libidn needs NLS libraries because in that case dnsmasq inherits the NLS dependencies from libidn. Remove files/patch-aa, it was a preview patch from a 2.57 test release, fixing a regression in 2.56 that caused hex constants to be rejected in the configuratino if they contained the '*' wildcard. Further upstream changes: - use own header for DNS protocol, rather than using arpa/nameser.h - correct ctype.h function argument casts (isdigit(), isxdigit(), etc.) - Accept extra empty arguments on command line to avoid libvirt breakage. Notes: svn path=/head/; revision=269426
* - Update to 1.9.2Martin Wilke2011-02-193-15/+31
| | | | | | | | | PR: 154535 Submitted by: Ruslan Mahmatkhanov <cvs-src@yandex.ru> Approved by: maintainer Notes: svn path=/head/; revision=269347
* Expand NLS/IDN comment.Matthias Andree2011-02-161-1/+2
| | | | Notes: svn path=/head/; revision=269246
* Update pkg-descr and add author attribution since it's a full quote.Matthias Andree2011-02-161-12/+11
| | | | Notes: svn path=/head/; revision=269245
* Fix regression in config parser.Matthias Andree2011-02-162-0/+12
| | | | | | | http://lists.thekelleys.org.uk/pipermail/dnsmasq-discuss/2011q1/004750.html Notes: svn path=/head/; revision=269241
* Update to new upstream release 2.56.Matthias Andree2011-02-152-6/+7
| | | | | | | | | | Replace uni-paderborn.de master site by MASTER_SITE_LOCAL. Add LICENSE=GPLv2. Changelog: http://www.thekelleys.org.uk/dnsmasq/CHANGELOG Notes: svn path=/head/; revision=269214
* Update to 9.8.0rc1, the latest from ISC:Doug Barton2011-02-152-6/+6
| | | | | | | | | | | | | | * The ADB hash table stores informations about which authoritative servers to query about particular domains. Previous versions of BIND had the hash table size as a fixed value. On a busy recursive server, this could lead to hash table collisions in the ADB cache, resulting in degraded response time to queries. Bind 9.8 now has a dynamically scalable ADB hash table, which helps a busy server to avoid hash table collisions and maintain a consistent query response time. Notes: svn path=/head/; revision=269174
* Update to 9.7.3, the latest from ISC:Doug Barton2011-02-152-6/+6
| | | | | | | | | | | | | | | | | * Zones may be dynamically added and removed with the "rndc addzone" and "rndc delzone" commands. These dynamically added zones are written to a per-view configuration file. Do not rely on the configuration file name nor contents as this will change in a future release. This is an experimental feature at this time. * A new command "rndc secroots" was added to dump a combined summary of the currently managed keys combined with statically configured trust anchors. * Added support to load new keys into managed zones without signing immediately with "rndc loadkeys". Added support to link keys with "dnssec-keygen -S" and "dnssec-settime -S". Notes: svn path=/head/; revision=269173
* - Update to 1.0.1Wen Heping2011-02-132-5/+5
| | | | Notes: svn path=/head/; revision=269046
* Update to BIND 9.6.3, the latest from ISC on the 9.6 branch.Doug Barton2011-02-052-6/+6
| | | | | | | | | | | | | | | | | | | All 9.6 users with DNSSEC validation enabled should upgrade to this version, or the latest version in the 9.7 branch, prior to 2011-03-31 in order to avoid validation failures for names in .COM as described here: https://www.isc.org/announcement/bind-9-dnssec-validation-fails-new-ds-record In addition the fixes for this and other bugs, there are also the following: * Various fixes to kerberos support, including GSS-TSIG * Various fixes to avoid leaking memory, and to problems that could prevent a clean shutdown of named Feature safe: yes Notes: svn path=/head/; revision=268619
* - Update to 1.4.06Bernhard Froehlich2011-01-312-4/+3
| | | | | | | | | | | - Remove MD5 checksum Submitted by: n j <nino80 at gmail dot com> Security: 8015600f-2c80-11e0-9cc1-00163e5bf4f9 Feature safe: yes Notes: svn path=/head/; revision=268473
* Remove expired ports:Rene Ladan2011-01-295-61/+0
| | | | | | | | | | | | 2011-01-24 dns/staticcharge: abandoned by author 2011-01-21 shells/bash3-static: Use shells/bash or shells/bash-static instead shells/bash3 is still used by devel/quilt Feature safe: yes Notes: svn path=/head/; revision=268402
* - Update to 1.6.8Pav Lucistnik2011-01-263-3/+13
| | | | | | | | | PR: ports/154269 Submitted by: Jaap Akkerhuis <jaap@NLnetLabs.nl> (maintainer) Feature safe: yes Notes: svn path=/head/; revision=268256
* - Update to 3.2.7Pav Lucistnik2011-01-262-4/+3
| | | | | | | | | PR: ports/154264 Submitted by: Jaap Akkerhuis <jaap@nlnetlabs.nl> (maintainer) Feature safe: yes Notes: svn path=/head/; revision=268254
* - Update to 1.6.8Pav Lucistnik2011-01-263-16/+43
| | | | | | | | | PR: ports/154268 Submitted by: Jaap Akkerhuis <jaap@NLnetLabs.nl> (maintainer) Feature safe: yes Notes: svn path=/head/; revision=268253
* Add LICENSE and remove MD5 sums.Emanuel Haupt2011-01-254-2/+4
| | | | | | | Feature safe: yes Notes: svn path=/head/; revision=268229
* - Update to 1.4.8Sergey Matveychuk2011-01-242-3/+3
| | | | | | | Feature safe: yes Notes: svn path=/head/; revision=268174
* Update to 9.8.0b1, which in addition to DNS64 support also hasDoug Barton2011-01-222-6/+6
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | the following new features: * BIND now supports a new zone type, static-stub. This allows the administrator of a recursive nameserver to force queries for a particular zone to go to IP addresses of the administrator's choosing, on a per zone basis, both globally or per view. * BIND now supports Response Policy Zones, a way of expressing "reputation" in real time via specially constructed DNS zones. See the draft specification here: http://ftp.isc.org/isc/dnsrpz/isc-tn-2010-1.txt * Dynamically Loadable Zones (DLZ) now support dynamic updates. Contributed by Andrew Tridgell of the Samba Project. * Added a "dlopen" DLZ driver, allowing the creation of external DLZ drivers that can be loaded as shared objects at runtime rather than having to be linked with named at compile time. Currently this is switched on via a compile-time option, "configure --with-dlz-dlopen". Note: the syntax for configuring DLZ zones is likely to be refined in future releases. Contributed by Andrew Tridgell of the Samba Project. * numerous GSS-TSIG improvements * There is a new update-policy match type "external". This allows named to decide whether to allow a dynamic update by checking with an external daemon. Contributed by Andrew Tridgell of the Samba Project. * many other improvements Feature safe: yes Notes: svn path=/head/; revision=268106
* - Update to 1.2.0Pav Lucistnik2011-01-193-49/+13
| | | | | | | | | PR: ports/154026 Submitted by: Jaap Akkerhuis <jaap@NLnetLabs.nl> (maintainer) Feature safe: yes Notes: svn path=/head/; revision=267990
* Mark DEPRECATED and set an EXPIRATION_DATETilman Keskinoz2011-01-101-0/+2
| | | | | | | | PR: 153737 Submitted by: Mahlon E. Smith Notes: svn path=/head/; revision=267604
* Update to 0.10.Anton Berezin2011-01-102-5/+4
| | | | | | | Changes: http://search.cpan.org/dist/Data-Validate-Domain/Changes Notes: svn path=/head/; revision=267591
* - Update to 20110107Frederic Culot2011-01-092-4/+3
| | | | | | | | | | Changes: http://dns.measurement-factory.com/tools/dnstop/src/CHANGES PR: ports/153806 Submitted by: Mark Foster <mark AT foster.cc> (maintainer) Approved by: sahil@/wen@ (mentors, implicit) Notes: svn path=/head/; revision=267536
* The actual EOL date is 2011-05-31, as clarified inDoug Barton2011-01-081-1/+1
| | | | | | | https://lists.isc.org/pipermail/bind-users/2011-January/082285.html Notes: svn path=/head/; revision=267501
* Remove dns/bind95 which entered EOL 2010-09Doug Barton2011-01-017-547/+0
| | | | Notes: svn path=/head/; revision=267244
* Garbage-collect expired ports:Rene Ladan2010-12-315-96/+0
| | | | | | | | | | | | | | | | | | | | | | | | | | 2010-12-30 databases/p5-sqlrelay: broken and upstream disapeared 2010-12-30 devel/php-dbg2: No upstream support 2010-12-30 dns/fourcdns: upstream has disapeared 2010-12-31 emulators/win4bsd: Development has ceased and distfile is no longer available 2010-12-31 french/mozilla-flp: www/seamonkey port is deprecated. Consider using the www/firefox-i18n. 2010-12-31 french/xtel: Minitel services will be discontinued at the end of 2010. 2010-12-30 ftp/ftpq: upstream has disapeared 2010-12-30 graphics/paintlib: does not compile with new tiff and no more maintained upstream 2010-12-30 graphics/g3dviewer: does not build with gcc 4.2, upstream disapeared 2010-12-30 lang/scriba: Does not compile with gcc 4.2+, looks like abandonware 2010-12-30 math/rascal: Broken on every arch since 2008, looks like an abandonware 2010-12-31 net-mgmt/nrg: Project has vanished. Use cacti instead. 2010-12-31 security/hostsentry: Project is dead. 2010-12-31 sysutils/kcube: Project has vanished 2010-12-31 www/cybercalendar: has been unmaintained since 2001 and is unusable with dates after 2010 (see ports/150974) 2010-12-31 www/flock: Flock 3 moves from Firefox to Chromium 2010-12-31 www/linux-flock: Flock 3 moves from Firefox to Chromium 2010-12-30 x11-clocks/xtu: Looks like abandonware Leave java/tya in for now, as it has outstanding PRs. Notes: svn path=/head/; revision=267233
* - DISTNAME= ${PORTNAME}-${PORTVERSION} is the default and not needed.Philip M. Gollucci2010-12-291-1/+0
| | | | | | | | | | PR: ports/153292 Submitted by: myself (pgollucci) Tested by: -exp run by pav Approved by: portmgr (pav) Notes: svn path=/head/; revision=267133
* Over to submitter of last update.Mark Linimon2010-12-281-1/+1
| | | | Notes: svn path=/head/; revision=267056
* Reset krion@FreeBSD.org due to 6 months of inactivity and maintainer-Mark Linimon2010-12-281-1/+1
| | | | | | | | | timeouts. Hat: portmgr Notes: svn path=/head/; revision=267047
* - Update to 1.2.8.31Frederic Culot2010-12-269-261/+20
| | | | | | | | | PR: ports/153446 Submitted by: Hung-Yi Chen <gaod at hychen.org> (maintainer) Approved by: sahil@/wen@ (mentors, implicit) Notes: svn path=/head/; revision=266910
* Sync to final (for now) bsd.autotools.mkAde Lovett2010-12-223-5/+9
| | | | Notes: svn path=/head/; revision=266737
* - change maintainer to submitter (NLnetNLabs)Olli Hauer2010-12-201-4/+7
| | | | | | | | | | | | | - patch includes fix for PR ports/153165 port dns/ldns fails to build with config (EXAMPLES=on and GOST=off) - bump PORTREVISION PR: ports/153228 ports/153165 Submitted by: Jaap Akkerhuis <jaap _at_ NLnetLabs.nl> (new maintainer) Approved by: Konstantin Saurbier <konstantin _at_ saurbier.net> (old maintainer) Notes: svn path=/head/; revision=266667
* Update to c-ares-1.7.4 and fix a bashism in the configure script.Peter Pentchev2010-12-195-12/+29
| | | | Notes: svn path=/head/; revision=266592
* We need _all_ the fixes from ../bind97Doug Barton2010-12-181-0/+1
| | | | Notes: svn path=/head/; revision=266547
* We need the fixes from bind97 for the perl problem here, not bind96Doug Barton2010-12-181-3/+7
| | | | Notes: svn path=/head/; revision=266544
* CONFLICTS for bind98Doug Barton2010-12-182-2/+2
| | | | Notes: svn path=/head/; revision=266535
* Continue BIND cleanup:Doug Barton2010-12-181-1/+4
| | | | | | | | | | DEPRECATED= Past EOL EXPIRATION_DATE= 2011-01-01 While I'm here, update CONFLICTS for bind98. Notes: svn path=/head/; revision=266534
* Give people fair warning:Doug Barton2010-12-181-1/+4
| | | | | | | | | | DEPRECATED= Reaches EOL May 2011 EXPIRATION_DATE= 2011-04-30 While I'm here update CONFLICTS for bind98 Notes: svn path=/head/; revision=266533
* Add a -devel port for 9.8.0a1, which will allow people to experimentDoug Barton2010-12-175-0/+537
| | | | | | | | | | | | | | | | | | | | | | | | | | | | with DNS64. Once 9.8.0 is released officially the -devel tag will be removed. BIND version 9 is a major rewrite of nearly all aspects of the underlying BIND architecture. Some of the important features of BIND 9 are: DNS Security: DNSSEC (signed zones), TSIG (signed DNS requests) IP version 6: Answers DNS queries on IPv6 sockets, IPv6 resource records (AAAA) Experimental IPv6 Resolver Library DNS Protocol Enhancements: IXFR, DDNS, Notify, EDNS0 Improved standards conformance Views: One server process can provide multiple "views" of the DNS namespace, e.g. an "inside" view to certain clients, and an "outside" view to others. Multiprocessor Support BIND 9.8 includes a number of changes from BIND 9.7 and earlier releases, including: Preliminary DNS64 support (AAAA synthesis only initially) See the CHANGES file for more information on features. WWW: https://www.isc.org/software/bind Notes: svn path=/head/; revision=266530
* - Update to 1.6.7Frederic Culot2010-12-162-4/+3
| | | | | | | | | PR: ports/153192 Submitted by: Jaap Akkerhuis <jaap at NLnetLabs.nl> Approved by: sahil@/wen@ (mentors, implicit) Notes: svn path=/head/; revision=266447
* - Pass to perl@Philip M. Gollucci2010-12-121-1/+1
| | | | Notes: svn path=/head/; revision=266143
* - @comment cleanup in p5-* pkg-plistPhilip M. Gollucci2010-12-121-1/+0
| | | | Notes: svn path=/head/; revision=266099
* - Add databases/sqlite3 to BUILD_DEPENDS (minimal version required 3.4.2)Nicola Vitale2010-12-112-2/+3
| | | | | | | | | | | - Bump PORTREVISION - Remove MD5 checksum from distinfo PR: ports/152542 Submitted by: Jaap Akkerhuis <jaap@NLnetLabs.nl> (maintainer) Notes: svn path=/head/; revision=266076
* Update to 1.6.7Beech Rintoul2010-12-102-6/+11
| | | | | | | | | | PR: ports/152578 Submitted by: Jaap Akkerhuis (jaap@NLnetLabs.nl) Approved by: Konstantin Saurbier (konstantin@saurbier.net) (maintainer) itetcu (mentor) (implicit) Notes: svn path=/head/; revision=266007
* With portmgr hat, reassign some ports from clsung to perl, since clsungMark Linimon2010-12-071-1/+1
| | | | | | | is apparently having some trouble with email. Notes: svn path=/head/; revision=265814
* Sync to new bsd.autotools.mkAde Lovett2010-12-049-9/+9
| | | | Notes: svn path=/head/; revision=265663
* Update to version 9.4-ESV-R4, the latest from ISC, which addressesDoug Barton2010-12-032-24/+11
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | the following security vulnerability. For more information regarding these issues please see: http://www.isc.org/announcement/guidance-regarding-dec-1st-2010-security-advisories Key algorithm rollover http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3614 Affects resolver operators who are validating with DNSSEC, and querying zones which are in a key rollover period. The bug will cause answers to incorrectly be marked as insecure. For the port: 1. Add CONFLICT for the ../bind-tools port 2. Remove CONFLICT for the removed ../bind9 port 3. Remove OPTION for threads on < RELENG_7 4. Remove MD5 from distinfo 5. Switch to pkg-install to create the symlinks to /etc/namedb/ as requested in [1] PR: ports/151635 [1] Submitted by: Benjamin Lee <ben@b1c1l1.com> [1] Notes: svn path=/head/; revision=265652
* Update to version 9.6-ESV-R3, the latest from ISC, which addressesDoug Barton2010-12-032-20/+10
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | the following security vulnerabilities. For more information regarding these issues please see: http://www.isc.org/announcement/guidance-regarding-dec-1st-2010-security-advisories 1. Cache incorrectly allows ncache and rrsig for the same type http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3613 Affects resolver operators whose servers are open to potential attackers. Triggering the bug will cause the server to crash. This bug applies even if you do not have DNSSEC enabled. 2. Using "allow-query" in the "options" or "view" statements to restrict access to authoritative zones has no effect. http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3615 Affects authoritative server operators who wish to generally restrict queries to their authoritative zones, and are running 9.6.2-P2 or any version of 9.7.x. The bug will allow unauthorized end users to receive answers to queries they should not. For the port: 1. Add CONFLICT for the ../bind-tools port 2. Remove CONFLICT for the removed ../bind9 port 3. Remove OPTION for threads on < RELENG_7 4. Switch to pkg-install to create the symlinks to /etc/namedb/ as requested in [1] PR: ports/151635 [1] Submitted by: Benjamin Lee <ben@b1c1l1.com> [1] Notes: svn path=/head/; revision=265651
* Actually remove the MD5, oopsDoug Barton2010-12-031-2/+0
| | | | Notes: svn path=/head/; revision=265650