BIND 9.3.2 Release Notes (5900-2140, December 2011)

BindUpgrade C.9.3.2.10.0 BIND special release upgrade
On an HP-UX 11i v2 operating system
# Initializing...
# Contacting target "hostname"...
#
# Target: hostname:/
#
BindUpgrade C.9.3.2.10.0 BIND special release upgrade
On an HP-UX 11i v3 operating system
# Initializing...
# Contacting target "hostname"...
#
# Target: hostname:/
#
# HPUX-NameServer C.9.3.2.11.0 HPUX Name Server
HPUX-NameServer.NameService C.9.3.2.11.0
Berkeley Internet Name Domain Server Protocol daemons and utilities
Unsupported features
The following are the unsupported features in BIND 9.3.2:
The following BIND 9.2.0 options are not supported in BIND 9.3.2:
The allow-v6-synthesis option in /etc/named.conf file
The dnssec-makekeyset command
The dnssec-signkey command
The mail destination (MD) and mail forwarder (MF) records are obsoleted in BIND 9.3.2. The
appropriate mail exchanger (MX) record must be used in the database ( db) files.
Known problems
The following are known problems in BIND 9.3.2:
The DNSSEC public key cryptography in BIND 9.3.2 is not backward compatible. If security
is enabled for a zone using the previous DNSSEC feature, the zone must be reconfigured for
the new DNSSEC feature by generating keys, signing the zone with the newly generated key,
and distributing the new public key.
The DNSSEC functionality in BIND 9.3.2 is tested only with OpenSSL version A.00.09.07.
This functionality may differ with other versions of OpenSSL.
Related information
The following sections discuss the documentation available for BIND 9.3.2.
Manpages
Table 8 describes the manpages distributed with the BIND 9.3.2 depot.
14 BIND 9.3.2 Release Notes