diff --git a/CHANGES b/CHANGES
index d87f41f148..09b101ea5e 100644
--- a/CHANGES
+++ b/CHANGES
@@ -1,11 +1,13 @@
+ --- 9.13.2 released ---
+
4987. [cleanup] dns_rdataslab_tordataset() and its related
dns_rdatasetmethods_t callbacks were removed as they
were not being used by anything in BIND. [GL #371]
-4986. [func] When built on Linux, BIND now requires the libcap library
- to set process privileges, unless capability support is
- explicitly overridden with "configure --disable-linux-caps".
- [GL #321]
+4986. [func] When built on Linux, BIND now requires the libcap
+ library to set process privileges, unless capability
+ support is explicitly overridden with "configure
+ --disable-linux-caps". [GL #321]
4985. [func] Add a new slave zone option, "mirror", to enable
serving a non-authoritative copy of a zone that
diff --git a/bin/named/named.conf.5 b/bin/named/named.conf.5
index 993fcc0427..0f8b3ac196 100644
--- a/bin/named/named.conf.5
+++ b/bin/named/named.conf.5
@@ -10,12 +10,12 @@
.\" Title: named.conf
.\" Author:
.\" Generator: DocBook XSL Stylesheets v1.78.1 integer ] [ dscp integer ] { ( masters | ipv4_address [
port integer ] | ipv6_address [ port integer ] ) [ key
string ]; ... } ] [ zone-directory quoted_string ] [
- in-memory boolean ] [ min-update-interval integer ]; ... };
+ in-memory boolean ] [ min-update-interval ttlval ]; ... };
check-dup-records ( fail | warn | ignore );
check-integrity boolean;
check-mx ( fail | warn | ignore );
@@ -232,6 +232,7 @@ options
};
dns64-contact string;
dns64-server string;
+ dnskey-sig-validity integer;
dnsrps-enable boolean;
dnsrps-options { unspecified-text };
dnssec-accept-expired boolean;
@@ -280,14 +281,13 @@ options
fstrm-set-output-notify-threshold integer;
fstrm-set-output-queue-model ( mpsc | spsc );
fstrm-set-output-queue-size integer;
- fstrm-set-reopen-interval integer;
+ fstrm-set-reopen-interval ttlval;
geoip-directory ( quoted_string | none );
- geoip-use-ecs boolean;
glue-cache boolean;
heartbeat-interval integer;
hostname ( quoted_string | none );
inline-signing boolean;
- interface-interval integer;
+ interface-interval ttlval;
ixfr-from-differences ( primary | master | secondary | slave |
boolean );
keep-response-order { address_match_element; ... };
@@ -306,10 +306,10 @@ options
masterfile-style ( full | relative );
match-mapped-addresses boolean;
max-cache-size ( default | unlimited | sizeval | percentage );
- max-cache-ttl integer;
+ max-cache-ttl ttlval;
max-clients-per-query integer;
max-journal-size ( default | unlimited | sizeval );
- max-ncache-ttl integer;
+ max-ncache-ttl ttlval;
max-records integer;
max-recursion-depth integer;
max-recursion-queries integer;
@@ -350,6 +350,7 @@ options
preferred-glue string;
prefetch integer [ integer ];
provide-ixfr boolean;
+ qname-minimization ( strict | relaxed | disabled );
query-source ( ( [ address ] ( ipv4_address | * ) [ port (
integer | * ) ] ) | ( [ [ address ] ( ipv4_address | * ) ]
port ( integer | * ) ) ) [ dscp integer ];
@@ -389,18 +390,19 @@ options
response-padding { address_match_element; ... } block-size
integer;
response-policy { zone quoted_string [ log boolean ] [
- max-policy-ttl integer ] [ min-update-interval integer ] [
+ max-policy-ttl ttlval ] [ min-update-interval ttlval ] [
policy ( cname | disabled | drop | given | no-op | nodata |
nxdomain | passthru | tcp-only quoted_string ) ] [
recursive-only boolean ] [ nsip-enable boolean ] [
nsdname-enable boolean ]; ... } [ break-dnssec boolean ] [
- max-policy-ttl integer ] [ min-update-interval integer ] [
+ max-policy-ttl ttlval ] [ min-update-interval ttlval ] [
min-ns-dots integer ] [ nsip-wait-recurse boolean ] [
qname-wait-recurse boolean ] [ recursive-only boolean ] [
nsip-enable boolean ] [ nsdname-enable boolean ] [
dnsrps-enable boolean ] [ dnsrps-options { unspecified-text
} ];
root-delegation-only [ exclude { quoted_string; ... } ];
+ root-key-sentinel boolean;
rrset-order { [ class string ] [ type string ] [ name
quoted_string ] string string; ... };
secroots-file quoted_string;
@@ -549,7 +551,7 @@ view
integer ] [ dscp integer ] { ( masters | ipv4_address [
port integer ] | ipv6_address [ port integer ] ) [ key
string ]; ... } ] [ zone-directory quoted_string ] [
- in-memory boolean ] [ min-update-interval integer ]; ... };
+ in-memory boolean ] [ min-update-interval ttlval ]; ... };
check-dup-records ( fail | warn | ignore );
check-integrity boolean;
check-mx ( fail | warn | ignore );
@@ -587,6 +589,7 @@ view
};
dns64-contact string;
dns64-server string;
+ dnskey-sig-validity integer;
dnsrps-enable boolean;
dnsrps-options { unspecified-text };
dnssec-accept-expired boolean;
@@ -640,10 +643,10 @@ view
match-destinations { address_match_element; ... };
match-recursive-only boolean;
max-cache-size ( default | unlimited | sizeval | percentage );
- max-cache-ttl integer;
+ max-cache-ttl ttlval;
max-clients-per-query integer;
max-journal-size ( default | unlimited | sizeval );
- max-ncache-ttl integer;
+ max-ncache-ttl ttlval;
max-records integer;
max-recursion-depth integer;
max-recursion-queries integer;
@@ -678,6 +681,7 @@ view
preferred-glue string;
prefetch integer [ integer ];
provide-ixfr boolean;
+ qname-minimization ( strict | relaxed | disabled );
query-source ( ( [ address ] ( ipv4_address | * ) [ port (
integer | * ) ] ) | ( [ [ address ] ( ipv4_address | * ) ]
port ( integer | * ) ) ) [ dscp integer ];
@@ -712,18 +716,19 @@ view
response-padding { address_match_element; ... } block-size
integer;
response-policy { zone quoted_string [ log boolean ] [
- max-policy-ttl integer ] [ min-update-interval integer ] [
+ max-policy-ttl ttlval ] [ min-update-interval ttlval ] [
policy ( cname | disabled | drop | given | no-op | nodata |
nxdomain | passthru | tcp-only quoted_string ) ] [
recursive-only boolean ] [ nsip-enable boolean ] [
nsdname-enable boolean ]; ... } [ break-dnssec boolean ] [
- max-policy-ttl integer ] [ min-update-interval integer ] [
+ max-policy-ttl ttlval ] [ min-update-interval ttlval ] [
min-ns-dots integer ] [ nsip-wait-recurse boolean ] [
qname-wait-recurse boolean ] [ recursive-only boolean ] [
nsip-enable boolean ] [ nsdname-enable boolean ] [
dnsrps-enable boolean ] [ dnsrps-options { unspecified-text
} ];
root-delegation-only [ exclude { quoted_string; ... } ];
+ root-key-sentinel boolean;
rrset-order { [ class string ] [ type string ] [ name
quoted_string ] string string; ... };
send-cookie boolean;
@@ -816,6 +821,7 @@ view
dialup ( notify | notify-passive | passive | refresh |
boolean );
dlz string;
+ dnskey-sig-validity integer;
dnssec-dnskey-kskonly boolean;
dnssec-loadkeys-interval integer;
dnssec-secure-to-insecure boolean;
@@ -847,6 +853,7 @@ view
max-zone-ttl ( unlimited | ttlval );
min-refresh-time integer;
min-retry-time integer;
+ mirror boolean;
multi-master boolean;
notify ( explicit | master-only | boolean );
notify-delay integer;
@@ -923,6 +930,7 @@ zone
delegation-only boolean;
dialup ( notify | notify-passive | passive | refresh | boolean );
dlz string;
+ dnskey-sig-validity integer;
dnssec-dnskey-kskonly boolean;
dnssec-loadkeys-interval integer;
dnssec-secure-to-insecure boolean;
@@ -952,6 +960,7 @@ zone
max-zone-ttl ( unlimited | ttlval );
min-refresh-time integer;
min-retry-time integer;
+ mirror boolean;
multi-master boolean;
notify ( explicit | master-only | boolean );
notify-delay integer;
diff --git a/doc/arm/Bv9ARM.ch01.html b/doc/arm/Bv9ARM.ch01.html
index d3bcf3cd74..68b02ecf99 100644
--- a/doc/arm/Bv9ARM.ch01.html
+++ b/doc/arm/Bv9ARM.ch01.html
@@ -614,6 +614,6 @@
-
BIND 9.13.1 (Development Release)
+BIND 9.13.2 (Development Release)