[Bug 255615] dns/opendnssec2: Update to 2.1.9

bugzilla-noreply at freebsd.org bugzilla-noreply at freebsd.org
Wed May 5 11:43:25 UTC 2021


https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=255615

Jaap Akkerhuis <jaap at NLnetLabs.nl> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
 Attachment #224690|                            |maintainer-approval+
              Flags|                            |

--- Comment #1 from Jaap Akkerhuis <jaap at NLnetLabs.nl> ---
Created attachment 224690
  --> https://bugs.freebsd.org/bugzilla/attachment.cgi?id=224690&action=edit
Patch to update

This release contains two changes that avoid some problems with certain HSM
configuration, one of them is SoftHSMv2 in database back-end mode.
This can lead to temporarily not being able to sign zones, hence upgrading is
really recommended.
It does not occur on all systems and configurations though.

Issues

OPENDNSSEC-955: Prevent concurrency between certain valid PKCS#11 HSM
operations to avoid some keys to be (transiently) unavailable.
OPENDNSSEC-956: Harden signing procedure to still sign zones for which there
are unused keys specified in the zone which are unavailable.

-- 
You are receiving this mail because:
You are the assignee for the bug.


More information about the freebsd-ports-bugs mailing list