unbound-devel-1.16.2-5.el8_9.6 > 6 6_6 3!pQp)Tξ7]mtZ`fA ]mtZ`Gz#ى$ǡ |MqHL;W 76پ{W&0O ~9זw9B}l ғPn5r/X)Nt( 4=o5t%*8Hjp%(ic,͠2E0Z1qB֐ղ1>wO"&x_;neC" G,D.+sͻ%eM2z!5SV\'0i@35pECe4|-ZÄ7[ 0 jmNɖZ:HA1vDȶ7McvOD]#y@oz6}t([B2ԐW,[Z[cI0MrV~|"X 6KPVߺ6->p<?d ! \  .4<## # T# #  #  # H# #  #T   (89:7Gp#H#I#XY\#]p#^bCdoetfwlyt#u #vw,#x#yDX\bCunbound-devel1.16.25.el8_9.6Development package that includes the unbound header filesThe devel package contains the unbound library and the include filesford1-prod-a64build004.svc.aws.rockylinux.orgKojiRockyBSDinfrastructure@rockylinux.orgUnspecifiedhttps://www.unbound.net/linuxaarch64++x6******************************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.so.2.7.18rootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootunbound-1.16.2-5.el8_9.6.src.rpmpkgconfig(libunbound)unbound-develunbound-devel(aarch-64)@@@@    /usr/bin/pkg-configlibunbound.so.2()(64bit)openssl-develpkgconfigpkgconfig(libevent)pkgconfig(python3)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)unbound-libs(aarch-64)3.0.4-14.6.0-14.0-15.2-11.16.2-5.el8_9.64.14.3f Df De@e @eBeN@cJcJcEZbL@bc@bbb1@`@`lM@_N7^ϧ^˳@^@^H]][`O@[U@[O+[I[CN@[<[:[3|@[3|@[0@ZUZUZa@ZI@Z`@ZZ_@Z_@Z$Z}@Ze@Z6\@YY@Y{Y*@Y@Y3Y@YyYX@YK@Y?Y9<@YXg@XXXXj@Xj@XZnXWXW_@W@W~D@WbW^@WVVV@VjVEV9@V @U@U6@UUUUU~@Ud`@US$U/@UTfT@T@T@TxcTxcTuTl@T"@S@SSP@Sb7@S!RRe@R:@RC@R@QB@QQکQ@Q@Q@QQu&@Qq1Qm=@Qg@Qb@Q5@Q#@PqP@Pb@PE@P6@P@P @LLLk@Lk@LLK@K8@K@KK}+KC)J@J@J@JF@JlE@J<@J<@JJIIV@II2Il@IsImIa@Ia@I= @I3I/@I%Q@I#I#Ih@HH@H!@H@H@H}H4H4HH$Petr Menšík - 1.16.2-5.6Petr Menšík - 1.16.2-5.5Petr Menšík - 1.16.2-5.4Petr Menšík - 1.16.2-5.3Tomas Korbar - 1.16.2-5.2Tomas Korbar - 1.16.2-5.1Petr Menšík - 1.16.2-5Petr Menšík - 1.16.2-4Petr Menšík - 1.16.2-3Petr Menšík - 1.16.2-2Petr Menšík - 1.16.2-1Petr Menšík - 1.16.0-2Petr Menšík - 1.16.0-1Richard Lescak - 1.7.3-18Artem Egorenkov - 1.7.3-17Artem Egorenkov - 1.7.3-16Anna Khaitovich - 1.7.3-15Anna Khaitovich - 1.7.3-14Anna Khaitovich - 1.7.3-13Anna Khaitovich - 1.7.3-12Artem Egorenkov - 1.7.3-11Tomas Korbar - 1.7.3-10Tomas Korbar - 1.7.3-9Petr Menšík - 1.7.3-8Petr Menšík - 1.7.3-7Petr Menšík - 1.7.3-6Fedora Release Engineering - 1.7.3-5Petr Menšík - 1.7.3-4Petr Menšík - 1.7.3-3Miro Hrončok - 1.7.3-2Petr Menšík - 1.7.3-1Petr Menšík - 1.7.2-3Tomas Hozza - 1.7.0-6Petr Menšík - 1.7.0-5Paul Wouters - 1.7.0-4Paul Wouters - 1.7.0-3Paul Wouters - 1.7.0-2Paul Wouters - 1.7.0-1Petr Menšík - 1.6.8-6Petr Menšík - 1.6.8-5Petr Menšík - 1.6.8-4Filipe Rosset - 1.6.8-3Igor Gnatenko - 1.6.8-2Paul Wouters - 1.6.8-1Zbigniew Jędrzejewski-Szmek - 1.6.7-2Paul Wouters - 1.6.7-1Petr Menšík - 1.6.6-3Paul Wouters - 1.6.6-2Paul Wouters - 1.6.6-1Paul Wouters - 1.6.4-4Fedora Release Engineering - 1.6.4-3Fedora Release Engineering - 1.6.4-2Paul Wouters - 1.6.4-1Paul Wouters - 1.6.4-0.rc2Paul Wouters - 1.6.3-1Paul Wouters - 1.6.2-2Paul Wouters - 1.6.2-1Paul Wouters - 1.6.0-6Fedora Release Engineering - 1.6.0-5Paul Wouters - 1.6.0-4Paul Wouters - 1.6.0-3Paul Wouters - 1.6.0-2Kevin Fenzi - 1.6.0-1Miro Hrončok - 1.5.10-3Ilya Evseev - 1.5.10-2Paul Wouters - 1.5.10-1Fedora Release Engineering - 1.5.9-4Paul Wouters - 1.5.9-3Paul Wouters - 1.5.9-2Paul Wouters - 1.5.9-1Toshio Kuratomi - 1.5.8-2Paul Wouters - 1.5.8-1Fedora Release Engineering - 1.5.7-3Tomas Hozza - 1.5.7-2Paul Wouters - 1.5.7-1Tomas Hozza - 1.5.6-1Robert Kuska - 1.5.5-2Tomas Hozza - 1.5.5-1Tomas Hozza - 1.5.4-5Tomas Hozza - 1.5.4-4Tomas Hozza - 1.5.4-3Tomas Hozza - 1.5.4-2Paul Wouters - 1.5.4-1Tomas Hozza - 1.5.3-8Tomas Hozza - 1.5.3-7Tomas Hozza - 1.5.3-6Tomas Hozza - 1.5.3-5Paul Wouters - 1.5.3-4Tomas Hozza - 1.5.3-3Tomas Hozza - 1.5.3-2Paul Wouters - 1.5.3-1Paul Wouters - 1.5.1-4Paul Wouters - 1.5.1-3Paul Wouters - 1.5.1-2Paul Wouters - 1.5.1-1Tomas Hozza - 1.5.1-0.1.rc1Marcin Juszkiewicz - 1.5.0-3Tomas Hozza - 1.5.0-2Tomas Hozza - 1.5.0-1Pavel Šimerda - 1.4.22-6Kevin Fenzi - 1.4.22-5Fedora Release Engineering - 1.4.22-4Fedora Release Engineering - 1.4.22-3Paul Wouters - 1.4.22-2Paul Wouters - 1.4.22-1Tomas Hozza - 1.4.21-3Tomas Hozza - 1.4.21-2Paul Wouters - 1.4.21-1Tomas Hozza - 1.4.20-19Paul Wouters - 1.4.20-18Fedora Release Engineering - 1.4.20-17Tomas Hozza - 1.4.20-16Paul Wouters - 1.4.20-15Tomas Hozza - 1.4.20-14Paul Wouters - 1.4.20-13Paul Wouters - 1.4.20-12Paul Wouters - 1.4.20-10Paul Wouters - 1.4.20-8Paul Wouters - 1.4.20-7Paul Wouters - 1.4.20-6Paul Wouters - 1.4.20-5Paul Wouters - 1.4.20-4Adam Tkac - 1.4.19-5Fedora Release Engineering - 1.4.19-4Paul Wouters - 1.4.19-3Paul Wouters - 1.4.18-6Paul Wouters - 1.4.18-5Paul Wouters - 1.4.18-3Paul Wouters - 1.4.18-2Paul Wouters - 1.4.18-1Paul Wouters - 1.4.17-5Fedora Release Engineering - 1.4.17-4Paul Wouters - 1.4.17-3Adam Tkac - 1.4.17-2Paul Wouters - 1.4.17-1Paul Wouters - 1.4.16-3 Paul Wouters - 1.4.16-2Paul Wouters - 1.4.16-1Paul Wouters - 1.4.15-2Paul Wouters - 1.4.15-1Fedora Release Engineering - 1.4.14-2Paul Wouters - 1.4.14-1Paul Wouters - 1.4.13-1Tom Callaway - 1.4.12-4Paul Wouters - 1.4.12-3Paul Wouters - 1.4.12-2Paul Wouters - 1.4.12-1Paul Wouters - 1.4.11-1Paul Wouters - 1.4.10-1Paul Wouters - 1.4.9-3Paul Wouters - 1.4.9-2Paul Wouters - 1.4.9-1Paul Wouters - 1.4.8-2Paul Wouters - 1.4.8-1Paul Wouters - 1.4.5-4Paul Wouters - 1.4.5-3Paul Wouters - 1.4.5-2Paul Wouters - 1.4.5-1Paul Wouters - 1.4.4-2Paul Wouters - 1.4.4-1Paul Wouters - 1.4.3-1Paul Wouters - 1.4.2-1Paul Wouters - 1.4.1-5Paul Wouters - 1.4.1-3Paul Wouters - 1.4.1-2Paul Wouters - 1.4.1-1Paul Wouters - 1.3.4-2Paul Wouters - 1.3.4-1Tomas Mraz - 1.3.3-2Paul Wouters - 1.3.3-1Fedora Release Engineering - 1.3.0-3Paul Wouters - 1.3.0-2Paul Wouters - 1.3.0-1Paul Wouters - 1.2.1-7Paul Wouters - 1.2.1-6Paul Wouters - 1.2.1-5Adam Tkac - 1.2.1-4Adam Tkac - 1.2.1-3Fedora Release Engineering - 1.2.1-2Paul Wouters - 1.2.0-2Paul Wouters - 1.1.1-7Paul Wouters - 1.1.1-6Paul Wouters - 1.1.1-4Paul Wouters - 1.1.1-3Adam Tkac - 1.1.1-2Paul Wouters - 1.1.1-1Paul Wouters - 1.1.0-3Adam Tkac - 1.1.0-2Paul Wouters - 1.1.0-1Paul Wouters - 1.0.2-5Paul Wouters - 1.0.2-4Paul Wouters - 1.0.2-3Paul Wouters - 1.0.2-2Paul Wouters - 1.0.2-1Paul Wouters - 1.0.1-1Paul Wouters - 1.0.0-2Paul Wouters - 1.0.0-1Wouter Wijngaards - 0.12Wouter Wijngaards - 0.11- Rebuilt again with z-stream target- Correct typo in new config file- Ensure group access correction reaches also updated configs (CVE-2024-1488)- Ensure only unbound group can change configuration (CVE-2024-1488)- Fix wrong entry in changelog - Resolves: RHEL-25634- Fix KeyTrap - Extreme CPU consumption in DNSSEC validator CVE-2023-50387 - Fix Preparing an NSEC3 closest encloser proof can exhaust CPU resources CVE-2023-50868 - Resolves: RHEL-25660 - Resolves: RHEL-25634- Stop creating wrong devel manual pages (#2135322)- Apply correctly previous change (CVE-2022-3204)- Fix NRDelegation attack leading to uncontrolled resource consumption (CVE-2022-3204)- Require openssl tool for unbound-keygen (#2018806)- Update to 1.16.2 (#2027735)- Restart keygen service before every unbound start (#1959468)- Upgrade to 9.16.0 (#2027735) - Update to recent version with compatibility with RHEL8 (#2027735) - Ensure also source level compatibility with previous version- Change file mode before owner when configuring remote control unix socket to avoid AVC denials - Resolves: rhbz#2038251- Option --enable-linux-ip-local-port-range added to use system configured port range for libunbound on Linux - Resolves: rhbz#1830625- Don't start unbound-anchor before unbound service if DISABLE_UNBOUND_ANCHOR environment variable equals to "yes" - Resolves: rhbz#1922448- Fix SPEC file to not check md5 mtime and size of /var/lib/unbound/root.key - Resolves: rhbz#1714175 - Use system-wide crypto policy setting (PROFILE=SYSTEM) instead of custom setting - Resolves: rhbz#1842837 - Enable additional logging in unbound - Resolves: rhbz#1850460 - security hardening from x41 report - Resolves: rhbz#1859933 - symbolic link traversal when writing PID file - Resolves: rhbz#1899058- Fix unbound-1.7.3-amplifying-an-incoming-query.patch patch - Resolves: rhbz#1839178 (CVE-2020-12662)- Fix two previous patches and add missing patch lines to %prep - Fix amplifying an incoming query into a large number of queries directed to a target - Resolves: rhbz#1839178 (CVE-2020-12662)- Remove KSK-2010 from configuration files - Resolves: rhbz#1665502 - Replace legacy directory /var/run/ with /run - Resolves: rhbz#1766463 - Resolves: rhbz#1805978 - Fix memory leak when DNS over TLS forwarding is configured - Resolves: rhbz#1819870- Resolves bz1818761. unbound crash fixed.- Secure ipsec mode (#1772061) - CVE-2019-18934- Use pthread_mutex_t locks when dealing with I/O operations (#1775708)- Release memory in unbound-host- Remove unused Group tag- Cleanup generated client and server keys (#1601773)- Rebuilt for https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild- Do not call ldconfig if possible- Update trust anchors also behind firewall (#1598078)- Rebuilt for Python 3.7- Update to 1.7.3 (#1593708)- Remove last python2 dependency from python3 build- Disable Python2 support- Require gcc and make on build - Remove group, simplify systemd requires - Simplify building with single python version, make python3 primary- Patch for prefetching after flushing cache- Patch for referral with auth-zone: response- Patch for broken Aggressive NSEC + stub-zone configuration causing NXDOMAIN at TTL expiry- Updated to 1.7.0 (aggressive nsec, local root support, bugfixes)- Uncomment again original max-upd-size- Use default RPM build flags and configure parameters (#1539097)- Remove group writable bit from some config files (#1528445)- rebuilt due new libevent 2.1.8- Escape macros in %changelog- Resolves rhbz#1483572 unbound-1.6.8 is available - Resolves rhbz#1507049 CVE-2017-15105 unbound: Improper validation of wildcard synthesized NSEC records - Resolves rhbz#1536518 CVE-2017-15105 unbound: Improper validation of wildcard synthesized NSEC records [fedora-all]- Python 2 binary package renamed to python2-unbound See https://fedoraproject.org/wiki/FinalizingFedoraSwitchtoPython3- Updated to 1.6.7 (minor bugfixes)- Update icannbundle.pem- Enable RFC 8145 Trust Anchor Signaling to help the root zone get keytag statistics- Resolves: rhbz#1483572 unbound-1.6.6 is available - Resolves: rhbz#1465575 unbound fails to start up, complains about missing ipsecmod-hook (edit)- Rebuilt with KSK2017 added to root.key and root.anchor - Remove noreplace for root key files. We can only improve these files over local copies- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Binutils_Mass_Rebuild- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild- Updated to 1.6.4 full release, patch to allow missing ipsechook - Resolves rhbz#1465575 unbound fails to start up, complains about missing ipsecmod-hook- Update to 1.6.4 (esubnet, ipsecmod support, bugfixes)- Updated to 1.6.3 (fixes assertion failure when receiving malformed packet with 0x20 enabled)- Patch for cmd: unbound-control set_option val-permissive-mode: yes- Update to 1.6.2 (rhbz#1425649) - Updated unbound.conf with new options- Call make unbound-event-install to install unbound-event.h- Rebuilt for https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild- Remove obsoleted DLV key- Actually remove dependency because minimum is always satisfied- Depend on openssl-libs, not opensl- Update to 1.6.0- Rebuild for Python 3.6- Bugfix building without python2 and python3 - Fixup streamtcp build (Paul)- Updated to 1.5.10 (better TCP handling, bugfixes) - Install pkgconfig file in -devel package - Updated unbound.conf- https://fedoraproject.org/wiki/Changes/Automatic_Provides_for_Python_RPM_Packages- Fix upper port range to 60999 because that's what selinux allows- Patch for allowing more queries before failure (needed for query minimalization)- Updated to 1.5.9- Fix streamtcp to link against libpython3.x instead of libpython2.x- Update to 1.5.8 (rhbz#1313831) which incorporates rhbz#1294339 patch - Updated unbound.conf with new upstream options - Enabled ip-transparent: yes (see rhbz#1291449)- Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild- Fix escaping of shell chars in unbound-control-setup (#1294339)- Update to 1.5.7 - Enable query minimalization for enhanced DNS query privacy - Enable nxdomain hardening to assist with query minimalization and SBLs - Updated default unbound.conf for new features from upstream.- Update to 1.5.6 (#1176729)- Rebuilt for Python3.5 rebuild- New upstream release 1.5.5 (#1269137) - Removed the anchor update from %post section of -libs subpackage (#1269137#c2)- Removed dependency and ordering on unbound-anchor.service in unbound.service- Prefer Python3 build over Python2 build for now (#1254566)- Added ExecReload section to unbound.service (#1195785) - Removed After syslog.target since it is not needed any more- Start unbound-anchor.timer only on new installations - Rename root.anchor to root.key in %post section- Update to 1.5.4 - Removed patches merged into upstream- Revert: Use low maximum negative cache TTL (5 sec) (#1229596)- Add option for maximum negative cache TTL (#1229599) - Use low maximum negative cache TTL (5 sec) (#1229596)- Removed usage of DLV from the default configuration (#1223363)- unbound.service now Wants unbound-anchor.timer - unbound-anchor man page moved to the unbound-libs- Fixup scriptlets causing systemctl: command not found - Resolves rhbz#1219587 Error in PREIN scriptlet in rpm package unbound-libs- migrate cronjob to systemd timer unit (#1177285) - change the period for unbound-anchor from monthly to daily (#1180267) - Thanks to Tomasz Torcz for the initial patch- Fix FTBFS (#1206129) - Build python3-unbound and python-unbound bindings for Python 3 and 2 (#1188080)- Updated to 1.5.3 which is a bugfix on 1.5.2 for sighup handling - Updated to 1.5.2 which fixes DNSSEC validation with different trust anchors upstream, local-zone has a new keyword 'inform'- Build with --enable-ecdsa- Fix post to create root.anchor, not root.key, to match cron job- Change systemd-units to systemd - Use _tmpfilesdir macro, don't mark tmpfiles as config- Update to 1.5.1 for CVE-2014-8602 (rhbz#1172066) - Removed unbound-aarch64.patch which was merged upstream - Don't require autotools for non snapshots or run autoreconf- update to 1.5.1rc1- fix build on aarch64- Fix race condition in arc4random (#1166878)- update to 1.5.0- Resolves: #1115489 - build with python 3.x for fedora >= 22- Rebuild for rpm bug 1131960- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild- Added flushcache patch (SVN commit 3125)- Updated to 1.4.22 - No longer requires the ldns library- Fix segfault on adding insecure forward zone when using only iterator (#1054192)- run test suite during the build- Updated to 1.4.21, - Enabled new max-udp-size: 3072 (so ANY isc.org won't fit) - Removed patched merged in by upstream - Enable statistics-cumulative for munin-plugin - Added outgoing-port-avoid: 0-32767 conformant to SElinux restrictions - Updated unbound.conf- Fix errors found by static analysis of source- Change unbound.conf to only use ephemeral ports (32768-65535)- Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild- provide man page for unbound-streamtcp- Re-introduce hardening flags for full relro and pie - Fixes compilation failure for python module- remove missing unbound-rootkey.service from post/preun/postun sections - don't hardcode hardening flags, let hardened build macro handles it- Run unbound-anchor as user unbound in unbound.service- Enable round-robin (with noths() patch) - Change cron and systemd service to use root.key, not root.anchor- Use /var/lib/unbound/root.key (more consistent with other distros) - Enable minimal responses- Refix- Fix runuser call in post.- /var/lib/unbound should be owned by unbound. group write is not enough- Fix cron job syntax (rhbz#951725) - Use install -p to prevent .rpmnew files that are identical to originals- Updated to 1.4.20 - Build with full RELRO (not use -z,relro but with -z,relo,-z,now) - Fixup man page for unbound-control-setup - unbound.service should start before nss-lookup.target (rhbz#919955) - Removed patch for rhbz#888759 merged in upstream - Move root.anchor to /var/lib/unbound to make selinux policy easier for updating (rhbz#896599/rhbz#891008) - Move cronjob for root.anchor from unbound to unbound-libs, require crontabs - /etc/unbound (and all) should be owned by unbound-libs (rhbz#909691) - Remove Obsolete/Provides for dnssec-conf which was last seen in f13 - Ensure any unbound-anchor failure in post is ignored- build with full RELRO - symlink unbound-control-setup.8 manpage to unbound-control.8- Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild- Updated to 1.4.19 - this integrates all existing patches - Patch for unbound-anchor (rhbz#888759)- Patch to ensure stube-zone's aren't lost when using dnssec-triggerd - added unbound-munin.README file- Patch to allow wildcards in include: statements - Add directories /etc/unbound/keys.d,conf.d,local.d with example entries - Added /etc/unbound/root.anchor, maintained by unbound-anchor which is installed as monthly cron and PreExec in systemd config (root.key is unused, but left installed in case people depend on it) - Native systemd (simple) and /etc/sysconfig/unbound support - Run unbound-checkconf in PreExec - Moved trust anchor related files to unbound-libs, as they can be used without the daemon. - sub packages now depends on base package of same arch - Build munin package as noarch - unbound-anchor moved to unbound-libs package. It is needed to update the root.anchor key file.- Fix openssl thread locking bug under high query load- Use new systemd-rpm macros (rhbz#850351) - Clean up old obsoleted dnssec-conf from < fedora 15- Updated to 1.4.18 (FIPS related fixes mostly) - Removed patches that were merged in upstream - Added comment to root.key- Fix for unbound crasher (upstream bug #452) - Support libunbound functions in man pages and place in -devel- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild- unbound FIPS patches for MD5,randomness (rhbz#835106)- don't build unbound-munin on RHEL- Updated to 1.4.17 (which mostly brings in patches we already applied from svn trunk)- Since the daemon links to the libs staticly, add Requires: (this is rhbz#745288) - Package up streamtcp as unbound-streamtcp (for monitoring)- Don't ghost the directory (rhbz#788805) - Patch for unbound to support unbound-control forward_zone (needed for openswan in XAUTH mode)- Upgraded to 1.4.16, which was relesed due to the soname and some DNSSEC validation failures- Patch for SONAME version (libtool's -version-number vs -version-info)- Upgraded to 1.4.15 - Updated unbound.conf to show how to configure listening on tls443- Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild- Upgraded to 1.4.14 for CVE-2011-4528 / VU#209659 - SSL-wrapped query support for dnssec-trigger - EDNS handling changes - Removed integrated EDNS patches - Disabled use-caps-for-id, GoDaddy domains now break on it - Enabled new harden-below-nxdomain- Upgraded to 1.4.13 - Removed merged in pythonmod patch - Added EDNS1480 patch to fix unbound on broken EDNS/UDP networks - Fix python to go into sitearch instead of sitelib- convert to systemd, tmpfiles.d- Added pythonmod docs and examples- Fix for python module load in the server (Tom Hendrikx) - No longer enable --enable-debug as it causes degraded performance under load.- Updated to 1.4.12- Updated to 1.4.11 - removed integrated CVE patch - updated stock unbound.conf for new options introduced- Added ghost for /var/run/unbound (bz#656710)- rebuilt- Applied patch for CVE-2011-1922 DoS vulnerability- Updated to 1.4.9- rebuilt- Updated to 1.4.8 - Enable root key for DNSSEC - Fix unbound-munin to use proper file (could cause excessive logging) - Build unbound-python per default - Disable gost as Fedora/EPEL does not allow ECC and has mangled openssl- Revert last build - it was on the wrong branch- Disable do-ipv6 per default - causes severe degradation on non-ipv6 machines (see comments in inbound.conf)- Bump release - forgot to upload the new tar ball.- Upgraded to 1.4.5- Added accidentally omitted svn patches to cvs- Upgraded to 1.4.4 with svn patches - Obsolete dnssec-conf to ensure it is de-installed- Update to 1.4.3 that fixes 64bit crasher- Updated to 1.4.2 - Updated unbound.conf with new options - Enabled pre-fetching DNSKEY records (DNSSEC speedup) - Enabled re-fetching popular records before they expire - Enabled logging of DNSSEC validation errors- Overriding -D_GNU_SOURCE is no longer needed. This fixes DSO issues with pthreads- Change make/configure lines to attempt to fix -lphtread linking issue- Removed dependancy for dnssec-conf - Added ISC DLV key (formerly in dnssec-conf) - Fixup old DLV locations in unbound.conf file via %post - Fix parent child disagreement handling and no-ipv6 present [svn r1953]- Updated to 1.4.1 - Changed %define to %global- Bump version- Upgraded to 1.3.4. Security fix with validating NSEC3 records- rebuilt with new openssl- Updated to 1.3.3- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild- Added missing glob patch to cvs - Place python macros within the %with_python check- Updated to 1.3.0 - Added unbound-python sub package. disabled for now - Patch from svn to fix DLV lookups - Patches from svn to detect wrong truncated response from BIND 9.6.1 with minimal-responses) - Added Default-Start and Default-Stop to unbound.init - Re-enabled --enable-sha2 - Re-enabled glob.patch- unbound-iterator.patch was not commited- Fix for https://bugzilla.redhat.com/show_bug.cgi?id=499793- Use --nocheck to avoid giving an error on missing unbound-remote certs/keys- enable DNSSEC only if it is enabled in sysconfig/dnssec- add DNSSEC support to initscript and enabled it per default - add requires dnssec-conf- Rebuilt for https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild- updated to 1.2.1- rebuild with new openssl- Updated to 1.2.0 - Added dependancy on minimum SSL for CVE-2008-5077 - Added dependancy on bc for unbound-munin - Added minimum requirement of libevent 1.4.5. Crashes with older versions (note: libevent is stale in EL-4 and not in EL-5, needs fixing there) - Removed dependancy on selinux-policy (will get used when available) - Enable options as per draft-wijngaards-dnsext-resolver-side-mitigation-00.txt - Enable unwanted-reply-threshold to mitigate against a Kaminsky attack - Enable val-clean-additional to drop addition unsigned data from signed response. - Removed patches (got merged into upstream)- Modified scandir patch to silently fail when wildcard matches nothing - Patch to allow unbound-checkconf to find empty wildcard matches- Added scandir patch for trusted-keys-file: option, which is used to load multiple dnssec keys in bind file format- Added Requires: for selinux-policy >= 3.5.13-33 for proper SElinux rules.- We did not own the /etc/unbound directory (#474020) - Fixed cvs anomalies- removed all obsolete chroot related stuff - label control certs after generation correctly- Updated to unbound 1.1.1 which fixes a crasher and addresses nlnetlabs bug #219- Remove the chroot, obsoleted by SElinux - Add additional munin plugin links supported by unbound plugin - Move configuration directory from /var/lib/unbound to /etc/unbound - Modified unbound.init and unbound.conf to account for chroot changes - Updated unbound.conf with new available options - Enabled dns-0x20 protection per default- unbound-1.1.0-log_open.patch - make sure log is opened before chroot call - tracked as http://www.nlnetlabs.nl/bugs/show_bug.cgi?id=219 - removed /dev/log and /var/run/unbound and /etc/resolv.conf from chroot, not needed - don't mount files in chroot, it causes problems during updates - fixed typo in default config file- Updated to version 1.1.0 - Updated unbound.conf's statistics options and remote-control to work properly for munin - Added unbound-munin package - Generate unbound remote-control key/certs on first startup - Required ldns is now 1.4.0- Only call ldconfig in -libs package - Move configure into build section - devel subpackage should only depend on libs subpackage- Fix CFLAGS getting lost in build - Don't enable interface-automatic:yes because that causes unbound to listen on 0.0.0.0 instead of 127.0.0.1- Split off unbound-libs, make build verbose- FSB compliance, chroot fixes, initscript fixes- Upgraded to 1.0.2- upgraded to new release- Build against ldns-1.3.0- Split of -devel package, fixed dependancies, make rpmlint happy- Using parts from ports collection entry by Jaap Akkerhuis. - Using Fedoraproject wiki guidelines.- Initial version.  !"#1.16.21.16.2-5.el8_9.61.16.2-5.el8_9.6unbound-event.hunbound.hlibunbound.solibunbound.pclibunbound.3.gzub_cancel.3.gzub_ctx.3.gzub_ctx_add_ta.3.gzub_ctx_add_ta_file.3.gzub_ctx_async.3.gzub_ctx_config.3.gzub_ctx_create.3.gzub_ctx_data_add.3.gzub_ctx_data_remove.3.gzub_ctx_debuglevel.3.gzub_ctx_debugout.3.gzub_ctx_delete.3.gzub_ctx_get_option.3.gzub_ctx_hosts.3.gzub_ctx_print_local_zones.3.gzub_ctx_resolvconf.3.gzub_ctx_set_fwd.3.gzub_ctx_set_option.3.gzub_ctx_trustedkeys.3.gzub_ctx_zone_add.3.gzub_ctx_zone_remove.3.gzub_fd.3.gzub_poll.3.gzub_process.3.gzub_resolve.3.gzub_resolve_async.3.gzub_resolve_free.3.gzub_result.3.gzub_strerror.3.gzub_wait.3.gz/usr/include//usr/lib64//usr/lib64/pkgconfig//usr/share/man/man3/-O2 -g -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -fexceptions -fstack-protector-strong -grecord-gcc-switches -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -fasynchronous-unwind-tables -fstack-clash-protectioncpioxz2aarch64-redhat-linux-gnuC source, ASCII textpkgconfig filetroff or preprocessor input, ASCII text (gzip compressed data, max compression, from Unix)RPRRRutf-893cd371744d4538762b0b37cb57b9563f6064dd1076da10140d68a08c98b6d70?@7zXZ !#,A] b2u Q{LY,X'HGil8R^_N{&:?mU "~L wr;K:]vڤ$z|-jDi-]J%m 2P'mrgs2o;GsI,@](mAsYJILBtVDQ+`N-ے:s) ;P&:WKh1w*FD Ha;do5&/NA eI//'ӄګ0/7!ayvΠ4ZEr }:'5͜-^oM M0񐙪sBLMd≜?C균0wHzA.\:AeQXҩeLWz1PZOF:^HM_}`>wv[@%jo,e뉕\*$@ 4l ÕzFހh'cDصkOzH+5b,6Gg/rp4mF]W/_иB@Gnjϡ-=掇[WJ l O0AeϾ9eVւWsym$'$U笜f]қ7:Pp?T_I1Cw(͇ K@Toc T-O/dHVϛ@A$i; Nmm/& Lϱ /10# ʍm(a $5H ip@sq91ZiPƢxzbl s̤2 ǐŠmx%pzq!4i6AËx:]X0 EE]}" ]W}'Q疰h$FUEkʉOȕe<]WILA| Zy.5.!siλXtXֽvaQ&BY.zkML&@?f1}Qwm5aqoN%ף?fbGsmYDlwՐ 0AOi}7\7o$ 6 u0IΌМSE &a;Gen7DxuE^Z S',$| ZʋĄP0~^G<%pGdY(|*e^(NgG:,F7vȚs $h*8,3Pxԫߕ-(e`F>qPl^3cOu:ciaP)'1pQjl:פrfLb+̱l^YLFtgclj_Ʈ`=+^c=RCi)p|Gu?Y.(+)pWUFjQ[YG9hxUC~_11v1j?.^b^ m{64/zrK3d&JNK`FTyftgvuT_E~\Rl h_-ǟTD\,0s|2!JCa~9Xr+]yղwjOw: FfE?{$DLM@}җ^|Xz 1Ϟ_3i?zdxfˌS^/4tq0;atXi_chчrEA4Qo7#7 ImDsU%8d8ͤ኉'*XoUEi+@kjrp?Ojr}^B7 U菧Dr F;o+ILVr.:SYpxͧ^=Pv.Y̰Î$h -΃0HPo Q ߌޏ> QI gw-}fDV i!CCumc*q):-j1uJ[+bIy4up7r߮/Eׂs$UljC/2Q2?$;R+Ƀ*\OW/uNU倬=ޙ{ޫd9ۀAO]Eeփ"^,Wѵfl9)䂒P{XcF/QWJ Ҡ -׺XgpO^ZeuRox vX!;."-P/ UaH= *ToB| NFuQL:5?%7ܹBٓO:T${,] 1?mt;ۘ R v~pȋ]&f/}ju[2s/9b 4?a5EC]4 M͈T)n^tM5ڮSHwoR,j `kVhc 5ITCy)Lq-~ٴ*)eB[Ul[T:veo'u>qcFaOS0#5-I˸!eݚ4^V"&l߆vk.( gmߛ$氱wɉ ?*3F/Z+QTSDr a^U50[u*J7'1)c$k 9;pZZMuliMH{wDӿ>WJwQMLoqQw>fAυ,7h] Y1WQ>"E(-UgAxt!60 _{ >Jvl5GHDP>F)KxO@s8=ʔϊIlU}T{¦>w5#v}~wO:a\c)[Nd:n%+Ґ}6Ssq:_ 6;pjрXImRjJer,]0uWUz[z Rޢ.tStF9Cߌ$]3v,>.a'2g1CRvԁIt>6'g]±WaeJ(o !(fsgk/Zǀ Lho{Cn6Ť+. 1Cmrף%HܬNP.O?dAM *-MBIfhl,4})*/(q:WЙCZe'WlRhyo'nSWqlx# C9O 3 .u=HDF4i]؋jƷD7+TI^ܲDw[t?1SJ1ݶXt }A(e}@薀V3 }IJO't&5[Eh%,)i^V;Q]'Rh;2 mb66:תrpU:Ӄ0)(}>m!ElJZc2-A3_@@_{#rJ GMX\Oԯ'TbQ13 `')mkC%_d]ĘvZc(Lԯ\*:R' leCĭ6c?$!FgyԇV%96㙶m*ɪ(ܕ̬7(NI+F0ټfQ%8Ω_՟uyKtXB O{V_Gqm21}Oچݔjo_I]HZd} FM*=P)-taJwt5. w7^ļ}cS|$F+z|(U 7-apL `ȇ]O.n7 /baDN71) #!KGhT3+?Kҧc=hQ2)5My) ܲ=5% D|dWOFŏ0 T(b~udc\Q,fi4Oq'ҤGLpť *VuI.#go5 翀vZkM_1-T3_9"|09`:,JIDV츄Q!^&qA7'̵uNW=3j&'RI:O_Y4b>w=ZvEd'<+UJpޭIT 1/*hG j|{ln=)>TIO+Ꮲj3a56˩i/.~RhvrCpSWIH_@ Qb.U ˁ0WXͳ"2ݴo 01Eȴ c \jXEXfG;OLrVۜ T0xJPfjy)ZMwOtJ ⛯o?IpNI<\I)1 ]"Q[zl gb>Ċ?C.+%}S6byl>Su;4l)7BY';0)ӺXzGLY݋4]5X*_#ڨ[koBCvH?$i{Pk-l$n/&SvOKniCPl? ԾՎ1=ٰ3rBs続tj4j l7J?4W'F~1M:Z+ )pp*%Q9168:̶2w| S%뮉aճ4%C/C4iw#b_,Wc_RN2"iʻtag4"=*{~.5R7yEEO`neCe852Hd"|ڐzm~ h(/B裾Ԯ wg˜ m#o! Evay4ݱ_J74LrQ/ pniS8ssK38+[Xoyf\ 2SWt|.|8:iG_iIuI./x S-ۏՒ$>'@vm;cPt3z{.,ǿH̊91y[Y7/tp( FxK’ͦ A*[!?"]Ҙk/VS,yW)Ui jn+C~SoQ)^=..eCѪr RsCTίGxP2{,/=WLW(u./9#V=9===6[ 5 weh& h]-b /DR9lrzGc؄}C&2_x'@藲{Z(s ̆\lz+:hDy%6 J+Ҙd!OVcՔ_ (Y{S^}%EAuZu~d4dTiT[-+}NJSQLlnPM6ɝ7m!xj葵Y$Bb#­oa'jC kYj2L.ؐO#l!hXZT$rp~ܫcя=HX[qW?$pu-=힮1|h/ΉV"o6/Cx"z=#Ԫ+O =M )+~ w6;.2;'1٩DK HxLUD~>9J+oZ9ML?gR~aٿzb ^=|/Ml!*{x,n=td:@t9yȏ]տ.W7P|_;lӃyɞB};dM'-wD6%BOuzd1Dr #QuH 'Jo#@㥱eYID>uu[Af = 3 tfGUsoLH6-'| myGt>@F 7M^IZuwUZjnǧ9'8NÎgjܰ\дj(F#lYn85׼c3YΩ. `~A M YJ-P;ɨuV߫ MK2)?B!Q-&]cԟ_ *d.`0/~Kr%4Yu>Hi_>fF>Q:Uf쟳zl{D6 Kz~?H2Oթ"sↇ(GLDm6dv*ݗ!j3THOsiYFJڌ*sU@@o*j;9'aOn=D ]<&5鎖MJP,h^˘ ,ɕ%G?&㻏 v( b "$OSMQiL1= \UF~CUĘZ:E-^гQc q$3;FSL8_/O|Nu?9<-tz>= \Zũo^˝ɈD;(S9xoU^dJ}?mRhT0&D{P-AqBN<ČCnl45*?Ò]jY VO-auxhBFC~g+I 9JVZ )W1F܈{.x,]|=I&e4ږto=52*6 /4%&ī4I@xeV&I6v{+Aĩ6J|y|4_[v8T4 *i,8y̯ 'DSsC1>)6$#@ˤbJS~椆PpTھUkEѵA690!j@ꉉV^Ha`b /1$ϐ#~Yix++TJ'v(x(Wid.D!&empܵK_3{DEq~AҤڰ ԝʸ-яYwlNz٦$༯aP&y|퐹eSg3] cƭĝ/'N н‰U:8/޶x)Xjʬ5gPu 3vs`z>Y*ֶ ݨ;}[. d xql}oeLZQaQw0DiM>ꗯI&og%bŁ "p`> -/:]L|f<_xs:(?@S+ [qAXXB*KkZxXgViS%V bMbA8moߨ1ק;gt2[W! =ҾMV" BEW!)[zI}mBh'覌~[7CY)L2>iF|5Lg>#Sd kz$]dNG0`ܮE3o/50(v9,v.N jXVLQ)naӌKix > ( DFplabMB{L8tu \ʓhu+Gi,:Ĩˉ'ߚq&ѯ 'kYi~n+N%-?,Pia\'p'4sXe}zvmgV$у4l` Ӧ~7 [r\ QfL0DUhwk!f$ʍF~ 'w`JmCcpxOPUuVCPRF+Z)?]^&Q/V< goY*6锭P"|=vd.iY_IL7dPwBy_$;D=GP"\\ЯA AH-밺 I}${ᕝaEПQb0^?kGROr"svI HLo7 gGӵxQۆ`vpy8uoQD}:I0WKqſ̣p5܀l.Tjȋ)a]sˈ&螔E}gs9ُp~bj =^a mɞs8ȕxaL[i8?HgiƃY` rcWB@]q}DQa cMrq;^B,6C 4a le cL]~_IʰbO@}g>XO=P?vn ~RVYTx!e )! $I80vKBp=l`8Gp;~F+EܐB'B H]g@?5_ +42D*u''p_s_5%ff2ٶaY D8S$J ڐg6`;,;DY(LӼPVsN, w=Y%'RBr>߸G2ґZ)k™ME Sv E5>"'Qך=-t_o(~ӢRH H\M+90jS_ n"RMle̅lK~x{­7';5 |Nΐ*( BI_uZhɗe9y -92f؍gגǾr2%& wt'p MY[N~1YK4eQ <&,v-W, *_,=JИ"=0`h8Cu5~k"峛8XC,mPmymBCL,2:w?-*ٵmBMCWO[J k!s8\V2'1Zc"fx<,Q (z81["_ltX.;$`kD[H4m5 A,_ӎt270^  ')V)Fq;ij7g6=վJݡ%HN2Ukop:, _O2 AW9굂  3̏z3MPԾ34 kJd͛0ASpP0OT5额.C$y#ϔ5r̈́YH/ZR&P䝤0 }wU-ܡy-fb|rа\Axk)5Wۻ{iTY2jo(2MA<}(-?l h9֗y7YcN] ߦuURvƏqWRhF́=&)VpHlQhR":`pr=+ j%]| i}rw1S 'g45 ipl_Q'ώ "I#-ehnLƺkԣ`%kdu`g6iO%`yB*4IE)|HOv %#mI}53B ~^"mԿ`j~:/+;0Ο #f2=`Spv*7Pc|}Dr*s ۄimxC.tV_n&ba֡}Y ×FY0[2x7ot綗>?!I~>U(+Zc^5E`n:iW%%CQr1 |g<_R* :eO vfwR>s^='¯V>O :)0RWmapK`^X֐wYUxG۳"$J>q<&r{'|Cjl4SDܟBER eGMͶĿv0 A3h'kNj7Fq8}hV5>Jm 䜞unj!-ۮcӢT PFYA}'l4kк !Xc˛;V]cOMw"òFCY1YaC!:/0 X޳>EI_`Ys Ћ\Qʁ+GON4E@o{o`-bn.qg1-B) }z{n*#9\19k؎* -X^~UP'p+ ֏aŴf rO1CWD p?pj`ʡ@/Ƶc O)5(¿[.Og/}mPBZ $&ir͞`/ /U'ќlIJ Ηj-見MJNN?!Ѧ-' ry>ESn K5#NoYdȉkxHOk6ʺr[pZc| wUe!bF3|Jϫڵⶫ"{a+B  \H Zf4\yzV$xAbTIvkDO+4r{ڍIXTX}(d\UFTE1bojt5 Πf 1,b>̑u2^X21S2/b]"?Xʑ~!UA_eN*M1+=*wB3u"!͡$b5 eA+py 0 +NHQ]kǟ8+pp-^,Gyv="fRsb JAo3 X9? ~H2=Dẕ̌*O8=`hhmJ:PN_]JPK _3Wc/ |(a/Fd%} /@Xog9N[QܭG ӏh'ɀ0yw˓;/4 \yAqY]ֵd8)nO:ev%㋃f vbevse]dA1&+wiKkigij9y0H..9 W..l˺M/:e}1me@tt%DDqZfl҆}eBm%:~SauS}l!Z |"-xMϣd){[eo=H}ssQb?>}me2)ZwEpƬ|Z'D(EG2׭eM`Ri#<Έ~؏5FoQݳlۜluv2ߎmTctG{ ߱ YWX&]9Z>6 .ZEN7 x[RQ,Zm"^9KKB7"Iө#[*(M?fAmܼx7UP n\l ڮ2V3"MѮ:餁s}P%%Z6Q4fX\DV<DQX?f ê9>ʻduW:VnfYcdYaPŞ —̅N =`yp∊(way5`R{`[U;brܗ:1bᦅ|,•Xt46;߂HUv oR ͏tSUjUt)vgٸ͙́B?bHW?脆U@ o1 ⴩,2kqB7\|O#eB+1;k|[yi08c^ .Lﱩ62WP-٘dj=aDZ!1d<{m "et+0K1O-4 յ^ׄc C컿 u.30'?ܚ<泒/$H*`}6G' u7@K/|jԾΥՇg ۺBӜUX!=1Zky:yf1K^'Potcr#!@*춵ź,R vD[Zj0ء,:r2 EvK5~|0 wdwpe׏b CSWr'r^M-yPP@g^YvOȪĢB}Ѣ)z$4dLZ/u%d¯ ^5"US4缛SVGNiFP"9sж:dw Nπ\2Į*@v.O~?GiߥJlHHcqbYgWATPk>ǡLaw!+basv({I+;Akx?DʋU m47aA8 @Db`f gVixyo F:{ݗc g; YZ