bind 9.9.6 - Trusty 14.04.5 LTS
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
bind9 (Ubuntu) |
Won't Fix
|
Undecided
|
Unassigned |
Bug Description
Hi all,
may is possibile to upgrade bind9 package in Ubuntu "Trusty" 14.04.5 LTS to 9.9.6 version or higher that support DNS CAA?
Repo Version on my Ubuntu Server is:
# cat /etc/issue.net
Ubuntu 14.04.5 LTS
# lsb_release -rd
Description: Ubuntu 14.04.5 LTS
Release: 14.04
# named -v
BIND 9.9.5-3ubuntu0.
# apt-cache policy bind9
bind9:
Installed: 1:9.9.5.
Candidate: 1:9.9.5.
Version table:
*** 1:9.9.5.
500 http://
500 http://
100 /var/lib/
1:9.9.5.dfsg-3 0
500 http://
# dpkg -s bind9
Package: bind9
Status: install ok installed
Priority: optional
Section: net
Installed-Size: 951
Maintainer: Ubuntu Developers <email address hidden>
Architecture: amd64
Version: 1:9.9.5.
Replaces: apparmor-profiles (<< 2.1+1075-0ubuntu4), bind, bind9utils (<< 1:9.9.3.dfsg.P2-3), dnsutils (<< 1:9.1.0-3)
Depends: libbind9-90 (= 1:9.9.5.
Suggests: dnsutils, bind9-doc, resolvconf, ufw
Conflicts: apparmor-profiles (<< 2.1+1075-0ubuntu4), bind
Conffiles:
/etc/init.d/bind9 727ca4fa85681b1
/etc/apparmor.
/etc/apparmor.
/etc/network/
/etc/network/
/etc/ufw/
/etc/ppp/
/etc/ppp/
/etc/bind/db.0 8aba258068c8c60
/etc/bind/db.local e5d27ead2d23892
/etc/bind/db.root b3b07a2944d29d1
/etc/bind/
/etc/bind/db.empty 4e7a0ebff9a8936
/etc/bind/
/etc/bind/
/etc/bind/
/etc/bind/db.127 64f5cf50e8d8192
/etc/bind/
/etc/bind/db.255 8aba258068c8c60
Description: Internet Domain Name Server
The Berkeley Internet Name Domain (BIND) implements an Internet domain
name server. BIND is the most widely-used name server software on the
Internet, and is supported by the Internet Software Consortium, www.isc.org.
.
This package provides the server and related configuration files.
Original-
# apt-cache showpkg bind9
Package: bind9
Versions:
1:9.9.5.
Description Language:
Description Language: en
Description Language: en_GB
1:9.9.5.dfsg-3 (/var/lib/
Description Language:
Description Language: en
Description Language: en_GB
Reverse Depends:
maas-dns,bind9
dnsutils:
bind9utils:
bind9:i386,bind9
collectd-
samba,bind9
samba,bind9 1:9.5.1
maas-dns,bind9
dnsutils,bind9 1:9.1.0-3
bind9utils,bind9 1:9.9.5.dfsg-1
dnsutils:
bind9utils:
bind9:i386,bind9
zentyal-dns,bind9
ldap2zone,bind9
ldap2dns,bind9
ikiwiki-
gadmin-bind,bind9 9.3.2
dnssec-
dlz-ldap-
dhis-
dhis-
collectd-
cobbler,bind9
bindgraph,bind9
autodns-
samba,bind9
samba,bind9 1:9.5.1
maas-dns,bind9
dnsutils,bind9 1:9.1.0-3
bind9utils,bind9 1:9.9.5.dfsg-1
Dependencies:
1:9.9.5.
1:9.9.5.dfsg-3 - libbind9-90 (5 1:9.9.5.dfsg-3) libc6 (2 2.14) libcap2 (2 2.10) libdns100 (5 1:9.9.5.dfsg-3) libisc95 (5 1:9.9.5.dfsg-3) libisccc90 (5 1:9.9.5.dfsg-3) libisccfg90 (5 1:9.9.5.dfsg-3) liblwres90 (5 1:9.9.5.dfsg-3) libxml2 (2 2.7.4) debconf (18 0.5) debconf-2.0 (0 (null)) init-system-helpers (2 1.13~) netbase (0 (null)) adduser (0 (null)) lsb-base (2 3.2-14) bind9utils (5 1:9.9.5.dfsg-3) net-tools (0 (null)) dnsutils (0 (null)) bind9-doc (0 (null)) resolvconf (0 (null)) ufw (0 (null)) apparmor-profiles (3 2.1+1075-0ubuntu4) apparmor-
Provides:
1:9.9.5.
1:9.9.5.dfsg-3 -
Reverse Provides:
that no support DNS CAA.
ISC Release Notes in 9.9.6 version introduced DNS CAA support:
https:/
"Support for CAA record types, as described in RFC 6844 "DNS
Certification Authority Authorization (CAA) Resource Record",
was added. [RT#36625] [RT #36737]"
Thx and Regards.
If you need a fix for the bug in previous versions of Ubuntu, then the relevant procedure is documented here:
https:/ /wiki.ubuntu. com/StableRelea seUpdates
However, I am not sure this bug would qualify under that policy, although I am not on the SRU team and cannot make that decision.