Fedora 21 Update: dnssec-trigger-0.12-19.fc21

updates at fedoraproject.org updates at fedoraproject.org
Thu Mar 26 22:04:58 UTC 2015


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2015-3843
2015-03-14 05:06:24
--------------------------------------------------------------------------------

Name        : dnssec-trigger
Product     : Fedora 21
Version     : 0.12
Release     : 19.fc21
URL         : http://www.nlnetlabs.nl/downloads/dnssec-trigger/
Summary     : NetworkManager plugin to update/reconfigure DNSSEC resolving
Description :
dnssec-trigger reconfigures the local unbound DNS server. This unbound DNS
server performs DNSSEC validation, but dnssec-trigger will signal it to
use the DHCP obtained forwarders if possible, and fallback to doing its
own AUTH queries if that fails, and if that fails prompt the user via
dnssec-trigger-applet the option to go with insecure DNS only.

--------------------------------------------------------------------------------
Update Information:

several bugs fixed
--------------------------------------------------------------------------------
ChangeLog:

* Fri Mar 13 2015 Tomas Hozza <thozza at redhat.com> - 0.12-19
- Fix typo in the dnssec-trigger-script (#1187371)
- Use Python3 by default
* Mon Jan 26 2015 Pavel Šimerda <psimerda at redhat.com> - 0.12-18
- Resolves: #1185796, #1130502, #1105685, #1128310 – update
* Tue Jan 20 2015 Pavel Šimerda <psimerda at redhat.com> - 0.12-17
- Resolves: #1183975 - systemd cgroup check fails
* Tue Jan 20 2015 Pavel Šimerda <psimerda at redhat.com> - 0.12-16
- Resolves: #1165126, #1125267, #1089766, #1112248, #824219 - update
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1187371 - [abrt] dnssec-trigger: dnssec-trigger-script:60:Config:NameError: name 'TRUE' is not defined
        https://bugzilla.redhat.com/show_bug.cgi?id=1187371
  [ 2 ] Bug #1130502 - search domains are not tried out for name resolution with dnssec-trigger
        https://bugzilla.redhat.com/show_bug.cgi?id=1130502
  [ 3 ] Bug #1128310 - in-addr.arpa queries for private IP ranges doesn't work if fallback servers are used
        https://bugzilla.redhat.com/show_bug.cgi?id=1128310
  [ 4 ] Bug #1165126 - dnssec-trigger: publish the list of nameservers trusted for DNSSEC validation
        https://bugzilla.redhat.com/show_bug.cgi?id=1165126
  [ 5 ] Bug #1089766 - option to prefer VPN DNS servers over default connection ones
        https://bugzilla.redhat.com/show_bug.cgi?id=1089766
  [ 6 ] Bug #824219 - dnssec: unbound fails to validate wildcard records when dnssec-trigger uses a broken bind as forwarder
        https://bugzilla.redhat.com/show_bug.cgi?id=824219
  [ 7 ] Bug #1185796 - fix switching between secure and insecure forward zones
        https://bugzilla.redhat.com/show_bug.cgi?id=1185796
  [ 8 ] Bug #1105685 - privacy: add an option to /etc/dnssec.conf to avoid flushing positive answers
        https://bugzilla.redhat.com/show_bug.cgi?id=1105685
  [ 9 ] Bug #1183975 - [abrt] dnssec-trigger: subprocess.py:1327:_execute_child:OSError: [Errno 2] No such file or directory
        https://bugzilla.redhat.com/show_bug.cgi?id=1183975
  [ 10 ] Bug #1125267 - turn /etc/resolv.conf into a symlink to dnssec-trigger's temporary file
        https://bugzilla.redhat.com/show_bug.cgi?id=1125267
  [ 11 ] Bug #1112248 - dnssec-trigger-script fails to configure unbound on dnssec-triggerd restart
        https://bugzilla.redhat.com/show_bug.cgi?id=1112248
--------------------------------------------------------------------------------

This update can be installed with the "yum" update program.  Use
su -c 'yum update dnssec-trigger' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------


More information about the package-announce mailing list