2010年5月20日

[installer 2371] unbound-1.4.4

unbound-1.4.4 出ていました。

☆ unbound-1.4.4
http://unbound.net/
http://unbound.net/downloads/unbound-1.4.4.tar.gz

http://www.unbound.net/download.html より:

Unbound 1.4.4
Download: unbound-1.4.4.tar.gz
SHA1 checksum: 2cb4c34ece87e43c9acc8da85d2ea1c8ea1ffe66
SHA256 checksum: 0ed08d9a60670730f906a571cbd0ed8b5b78deca9417161b5df8296d77ad7f5f
Date: 22 April, 2010

Features

o Experimental ECC-GOST algorithm support, needs openssl-1.0.0 and
currently needs ldns from svn trunk. Uses ECC-GOST algorithm number
12 (assigned by IANA). As the RFC is written, we intend to make it
optional, because a dependency on openssl-1.0.0 is hard across
distributions right now.
o unbound-host disables use-syslog from config file so that the config
file for the main server can be used more easily.
o Include less in config.h and include per code file for ldns, ssl.

Bug Fixes
o [bugzilla: 305 ]
pkt_dname_tolower could read beyond end of buffer or get into an
endless loop, if 0x20 was enabled, and buffers are small or
particular broken packets are received.
o Fix chain of trust with CNAME at an intermediate step, for the DS
processing proof.
o Fix validation of queries with wildcard names (*.example).
o Fix EDNS probe for .de DNSSEC testbed failure, where the infra cache
timeout coincided with a server update, the current EDNS backoff is
less sensitive, and does not cache the backoff unless the backoff
actually works and the domain is not expecting DNSSEC.
o unbound control flushed items are not counted when flushed again.
o iana portlist updated.
o [bugzilla: 301 ]
unbound-checkconf could not parse interface '0.0.0.0@xxxxx', even
though unbound itself worked fine.
o Fixed random numbers for port, interface and server
selection. Removed very small bias.
o Refer to the listing in unbound-control man page in the extended
statistics entry in the unbound.conf man page.
o Fix interface-automatic for OpenBSD: msg.controllen was too small,
also assertions on ancillary data buffer.
o check for IP_SENDSRCADDR for interface-automatic or IP_PKTINFO.
o for NSEC3 check if signatures are cached.
o Reordered configure checks so fork and -lnsl -lsocket checks are
earlier, and thus later checks benefit from and do not hinder them.
o ldns tarball updated.
o Fix python use when multithreaded.
o Fix solaris python compile.
o spelling fix in validation error involving cnames.

----
こがよういちろう


投稿者 xml-rpc : 2010年5月20日 16:01
役に立ちました?:
過去のフィードバック 平均:(0) 総合:(0) 投票回数:(0)
本記事へのTrackback: http://hoop.euqset.org/blog/mt-tb2006.cgi/95884
トラックバック
コメント
コメントする




画像の中に見える文字を入力してください。