Name: | bind-pkcs11 |
---|---|
Epoch: | 32 |
Version: | 9.9.4 |
Release: | 29.el7 |
Architecture: | x86_64 |
Group: | System Environment/Daemons |
Size: | 587579 |
License: | ISC |
RPM: | bind-pkcs11-9.9.4-29.el7.x86_64.rpm |
Source RPM: | bind-9.9.4-29.el7.src.rpm |
Build Date: | Fri Nov 20 2015 |
Build Host: | x86-ol7-builder-04.us.oracle.com |
Vendor: | Oracle America |
URL: | http://www.isc.org/products/BIND/ |
Summary: | Bind with native PKCS#11 functionality for crypto |
Description: | This is a version of BIND server built with native PKCS#11 functionality. It is important to have SoftHSM v2+ installed and some token initialized. For other supported HSM modules please check the BIND documentation. This version of BIND binary is supported only in setup with the IPA server. |
- Fix CVE-2015-5722
- Increase ISC_SOCKET_MAXEVENTS to 2048 (#1235609)
- Fix CVE-2015-5477
- Fix CVE-2015-4620
- Fixed nsupdate realm auto-detection (#1214827)
- Reintroduce the DISABLE_ZONE_CHECKING into /etc/sysconfig/named (#1236475)
- Don't copy /etc/localtime on -chroot package installation (#1186773) - Fix SPF resource records check to comply with RFC7208 (#1215164) - Don't use ISC's DLV by default (#1223336)
- Add version specific requires on bind for bind-pkcs11 (Related: #1097753) - Resolve issues found by static analysis (Related: #1097753)
- Added native PKCS#11 functionality (#1097753)
- DNS resolution failure in high load environment with SERVFAIL and "out of memory/success" in the log (#1221180)