From Fedora Project Wiki
No edit summary
No edit summary
Line 54: Line 54:
* Support to DNS over TLS and DNS over HTTPS servers. Both authoritative and resolver modes.
* Support to DNS over TLS and DNS over HTTPS servers. Both authoritative and resolver modes.
* Reworked internal connection handling using libuv
* Reworked internal connection handling using libuv
* RNDC channel does not support unix sockets [[https://gitlab.isc.org/isc-projects/bind9/-/issues/1759]]
* RNDC channel does not support unix sockets [https://gitlab.isc.org/isc-projects/bind9/-/issues/1759]
* Zone transfers over [[DNS over TLS| https://datatracker.ietf.org/doc/html/rfc9103.html]] were added, both incoming and outgoing.
* Zone transfers over [https://datatracker.ietf.org/doc/html/rfc9103.html DNS over TLS] were added, both incoming and outgoing.
* dig is now able to send queries using DNS over TLS
* dig is now able to send queries using DNS over TLS
* dig is now able to send queries using DNS over HTTPS
* dig is now able to send queries using DNS over HTTPS

Revision as of 15:54, 11 July 2022


Change BIND 9.18

Summary

Owner


Current status

  • Targeted release: Fedora Linux 37
  • Last updated: 2022-07-11
  • FESCo issue: <will be assigned by the Wrangler>
  • Tracker bug: <will be assigned by the Wrangler>
  • Release notes tracker: <will be assigned by the Wrangler>

Detailed Description

ISC BIND9 will be upgraded to new major release version 9.18.x. It introduces new features and changes. It will also remove some packages provided before.

Feedback

Benefit to Fedora

The most recent major release will be provided, with some notable features:

  • Support to DNS over TLS and DNS over HTTPS servers. Both authoritative and resolver modes.
  • Reworked internal connection handling using libuv
  • RNDC channel does not support unix sockets [1]
  • Zone transfers over DNS over TLS were added, both incoming and outgoing.
  • dig is now able to send queries using DNS over TLS
  • dig is now able to send queries using DNS over HTTPS


Scope

  • Proposal owners:

The update required update of bind-dyndb-ldap package (part of Freeipa suite), but otherwise it is isolated change.

  • Other developers:

Any developers

  • Policies and guidelines: N/A (not needed for this Change)
  • Trademark approval: N/A (not needed for this Change)
  • Alignment with Objectives:

Upgrade/compatibility impact

How To Test

User Experience

Dependencies

Contingency Plan

  • Contingency mechanism: (What to do? Who will do it?) N/A (not a System Wide Change)
  • Contingency deadline: N/A (not a System Wide Change)
  • Blocks release? N/A (not a System Wide Change), Yes/No


Documentation

- Upstream [release notes](https://bind9.readthedocs.io/en/v9_18_4/notes.html#notes-for-bind-9-18-0)

N/A (not a System Wide Change)

Release Notes