Thu Dec 5 12:56:14 2013 UTC ()
OpenDNSSEC 1.4.3:

Updates:
* SUPPORT-72: Improve logging when failed to increment serial in case of
  key rollover and serial value "keep" [OPENDNSSEC-461].
* OPENDNSSEC-106: Add 'ods-enforcerd -p <policy>' option. This prompts
  the enforcer to run once and only process the specified policy
  and associated zones.
* OPENDNSSEC-330: NSEC3PARAM TTL can now be optionally configured in kasp.xml.
  Default value remains PT0S.
* OPENDNSSEC-390: ods-ksmutil: Add an option to the 'ods-ksmutil key ds-seen'
  command so the user can choose not to notify the enforcer.
* OPENDNSSEC-430: ods-ksmutil: Improve 'zone add' - Zone add command could
  warn if a specified zone file or adapter file does not exits.
* OPENDNSSEC-431: ods-ksmutil: Improve 'zone add' - Support default <input>
  and <output> values for DNS adapters.
* OPENDNSSEC-454: ods-ksmutil: Add option for 'ods-ksmutil key import'
  to check if there is a matching key in the repository before import.

Bugfixes:
* OPENDNSSEC-435: Signer Engine: Fix a serious memory leak in signature cleanup.
* OPENDNSSEC-463: Signer Engine: Duration PT0S is now printed correctly.
* OPENDNSSEC-466: Signer Engine: Created bad TSIG signature when falling back
  to AXFR.
* OPENDNSSEC-467: Signer Engine: After ods-signer clear, signer should not use
  inbound serial.


(pettai)
diff -r1.5 -r1.6 pkgsrc/security/opendnssec/MESSAGE
diff -r1.38 -r1.39 pkgsrc/security/opendnssec/Makefile
diff -r1.22 -r1.23 pkgsrc/security/opendnssec/distinfo

cvs diff -r1.5 -r1.6 pkgsrc/security/opendnssec/MESSAGE (expand / switch to unified diff)

--- pkgsrc/security/opendnssec/MESSAGE 2013/09/17 12:34:45 1.5
+++ pkgsrc/security/opendnssec/MESSAGE 2013/12/05 12:56:14 1.6
@@ -1,10 +1,10 @@ @@ -1,10 +1,10 @@
1=========================================================================== 1===========================================================================
2$NetBSD: MESSAGE,v 1.5 2013/09/17 12:34:45 pettai Exp $ 2$NetBSD: MESSAGE,v 1.6 2013/12/05 12:56:14 pettai Exp $
3 3
4For latest information about configuring OpenDNSSEC, see: 4For latest information about configuring OpenDNSSEC, see:
5https://wiki.opendnssec.org/display/DOCS/OpenDNSSEC+Documentation+Home 5https://wiki.opendnssec.org/display/DOCS/OpenDNSSEC+Documentation+Home
6 6
7If you are upgrading OpenDNSSEC inbetween major releases (eg. 1.3 -> 1.4),  7If you are upgrading OpenDNSSEC inbetween major releases (eg. 1.3 -> 1.4),
8have a look at the included share/doc/opendnssec/MIGRATION file 8have a look at the included share/doc/opendnssec/MIGRATION file
9 9
10=========================================================================== 10===========================================================================

cvs diff -r1.38 -r1.39 pkgsrc/security/opendnssec/Makefile (expand / switch to unified diff)

--- pkgsrc/security/opendnssec/Makefile 2013/12/04 17:03:02 1.38
+++ pkgsrc/security/opendnssec/Makefile 2013/12/05 12:56:14 1.39
@@ -1,18 +1,17 @@ @@ -1,18 +1,17 @@
1# $NetBSD: Makefile,v 1.38 2013/12/04 17:03:02 jperkin Exp $ 1# $NetBSD: Makefile,v 1.39 2013/12/05 12:56:14 pettai Exp $
2# 2#
3 3
4DISTNAME= opendnssec-1.4.2 4DISTNAME= opendnssec-1.4.3
5PKGREVISION= 1 
6CATEGORIES= security net 5CATEGORIES= security net
7MASTER_SITES= http://www.opendnssec.org/files/source/ 6MASTER_SITES= http://www.opendnssec.org/files/source/
8 7
9MAINTAINER= pettai@NetBSD.org 8MAINTAINER= pettai@NetBSD.org
10HOMEPAGE= http://www.opendnssec.org/ 9HOMEPAGE= http://www.opendnssec.org/
11COMMENT= OSS for a fast and easy DNSSEC deployment 10COMMENT= OSS for a fast and easy DNSSEC deployment
12LICENSE= 2-clause-bsd 11LICENSE= 2-clause-bsd
13 12
14DEPENDS+= ldns>=1.6.13:../../net/ldns 13DEPENDS+= ldns>=1.6.13:../../net/ldns
15BUILD_DEPENDS+= CUnit-[0-9]*:../../devel/cunit 14BUILD_DEPENDS+= CUnit-[0-9]*:../../devel/cunit
16 15
17BUILD_DEFS+= VARBASE 16BUILD_DEFS+= VARBASE
18 17

cvs diff -r1.22 -r1.23 pkgsrc/security/opendnssec/distinfo (expand / switch to unified diff)

--- pkgsrc/security/opendnssec/distinfo 2013/09/13 21:59:51 1.22
+++ pkgsrc/security/opendnssec/distinfo 2013/12/05 12:56:14 1.23
@@ -1,8 +1,8 @@ @@ -1,8 +1,8 @@
1$NetBSD: distinfo,v 1.22 2013/09/13 21:59:51 pettai Exp $ 1$NetBSD: distinfo,v 1.23 2013/12/05 12:56:14 pettai Exp $
2 2
3SHA1 (opendnssec-1.4.2.tar.gz) = 82991f3110820ec0b12608fd3175bb70252a6f2b 3SHA1 (opendnssec-1.4.3.tar.gz) = 9e985fc42ce679c930bbdbc1a38ad5ff1ca4c61a
4RMD160 (opendnssec-1.4.2.tar.gz) = 8f97b5867d16d9888e1ad3d2a936c3f81e2b1816 4RMD160 (opendnssec-1.4.3.tar.gz) = aa754d8a9428320ff1c4ca71ff3e120573e26011
5Size (opendnssec-1.4.2.tar.gz) = 991161 bytes 5Size (opendnssec-1.4.3.tar.gz) = 1012398 bytes
6SHA1 (patch-aa) = 104e077af6c368cbb5fc3034d58b2f2249fcf991 6SHA1 (patch-aa) = 104e077af6c368cbb5fc3034d58b2f2249fcf991
7SHA1 (patch-enforcer_utils_Makefile.am) = bee7cb4f3cfe5aae96c5726a115eb8b6587288dd 7SHA1 (patch-enforcer_utils_Makefile.am) = bee7cb4f3cfe5aae96c5726a115eb8b6587288dd
8SHA1 (patch-enforcer_utils_Makefile.in) = da9fce97e631bb81607851f9758b206ea975b052 8SHA1 (patch-enforcer_utils_Makefile.in) = da9fce97e631bb81607851f9758b206ea975b052