Contact Us Contact Us

BIND

  Software Depot
Electronic download
Frequently asked questions
PPS Software Depot
Product details & specifications
Select
Overview


BIND (HP-UX NameServer)

Berkeley Internet Name Domain (BIND) (also referred as HP-UX NameServer) is a distributed database service that resolves host names and enables internetwork mail. It is a distributed network information lookup service that maps host names to Internet addresses, and maps Internet addresses to host names.

Obsolescence plan for BIND (HP-UX NameServer) 9.7.3 on HP-UX 11i v3:

  • BIND (HP-UX NameServer) 9.7.3 on HP-UX 11i v3 will reach end of support (EoS) on August/31/2015.
  • HP recommends you to migrate to the latest BIND (HP-UX NameServer) version 9.9.4.

Important:

  • BIND (HP-UX NameServer) 9.3.2 will not be supported on HP-UX 11i v3 after April 1, 2014, aligning to Fusion Release and this will only consist of fixes to critical defects.
  • BIND (HP-UX NameServer) 9.3.2 will continue to be supported on HP-UX 11i v1 and 11i v2 till their respective support time-lines or until further notice.

Note:

  • HP recommends you to migrate to the latest BIND (HP-UX NameServer) version 9.9.4.

Table 1 lists the different web release versions of BIND (HP-UX NameServer) available on the HP-UX 11.0, 11i v1, 11i v2, and 11i v3 operating systems.

Table 1: Latest BIND (HP-UX NameServer) details, Web releases, versions, and their numbers

Product version number Operating system Bundle version number Release date
9.3.2 HP-UX 11i v2 C.9.3.2.14.0 August 2015
9.3.2 HP-UX 11i v1 C.9.3.2.14.0 August 2015
9.9.4 HP-UX 11i v3 C.9.9.4.4.0 August 2015
9.7.3 HP-UX 11i v3 C.9.7.3.7.0 July 2015
9.3.2 HP-UX 11i v3 C.9.3.2.15.0 December 2012

BIND (HP-UX NameServer) 9.9.4 features:

  • DNS64 and DNS64 reverse support
  • Response Rate Limiting (RRL) support for the RFC 6742 ILNP record types (NID, LP, L32, and L64)
  • Response policy zones (RPZ)
  • New command dnssec-verify(1) to ensure correctness of signatures and of NSEC/NSEC3 ECDSA support
  • Support for the EUI48 and EUI64 RR types
  • New configuration option "max-rsa-exponent-size <value>;"
  • Elliptic Curve Digital Signature Algorithm keys and signatures in DNSSEC are now supported per RFC 6605
  • BIND (HP-UX NameServer) now recognizes the TLSA resource record type, created to support IETF DANE
  • RFC 1918 reverse zones have been added to the empty-zones table per RFC 6303 Uniform Resource Identifier (URI) resource records
  • "auto-dnssec" zones can now have NSEC3 parameters set prior to signing
  • New "rndc signing" command provides greater visibility and control of the automatic DNSSEC signing process
  • NXDOMAIN redirection
  • New "inline-signing" option to sign zone completely transparently
  • New zone type "static-stub"
  • Support for Response Policy Zones
  • Support IETF DANE (DNS-based Authentication of Named Entities)
  • Support for Elliptic Curve Digital Signature Algorithm keys and signatures in in DNSSEC per RFC 6605
  • Named now retains GSS-TSIG keys across restarts

Note: For more information, on available documents for BIND (HP-UX NameServer), see the following list of documents:

  • BIND 9.9 Administration Reference Manual
  • BIND (HP-UX NameServer) 9.9.4 Release Notes
  • BIND (HP-UX NameServer) 9.7.3 Release Notes

BIND (HP-UX NameServer) 9.7.3 features:

  • Fully automatic signing of zones by named
  • Simplified configuration of DNSSEC Look-aside Validation (DLV)
  • Simplified configuration of Dynamic DNS, using the ddns-confgen command line tool or the local update-policy option
  • New named option attach-cache that allows multiple views to share a single cache
  • DNS rebinding attack prevention
  • New default values for dnssec-keygen parameters
  • Support for RFC 5011 automated trust anchor maintenance
  • Smart signing: simplified tools for zone signing and key maintenance
  • Named and other binaries can now print out a stack back-trace on assertion failure, to aid in debugging
  • Full NSEC3 support
  • Automatic zone re-signing
  • Randomize server selection on queries
  • Specify max sockets on named command line
  • Convenient syntax for already existing options like query-source, server statement in rndc.conf
  • More detailed statistics counters
  • Faster ACL processing and efficient LRU cache cleaning mechanism
  • GSS-TSIG support (RFC 3645)
  • Implementation of additional section caching
  • New acl option allow-query-cache
  • Additional fields for already existing options like ixfr-from-differences
  • Journal file names are configurable
  • New control options for rndc like notify, sign, validation and query-log
  • Error messages are now more informative
  • Scope of some ACL (example, allow-update) was changed in named.conf
  • New options to control behavior of DNS NOTIFY
  • UNIX domain controls channel are now supported
  • Introduction of new zone-file format to enhance loading performance
  • Extended post zone load checks. New configuration options for same
  • Dig now has new options
  • Recursive clients for same query can now be controlled with new configuration options
  • Automatic empty zone are now fully covered as mentioned in RFC 1918 zones
  • New update-policy fields added
  • New algorithms support
  • The EDNS response/reply sizes can now be configured
  • Defaults have been changed for some configuration and binary options
  • DNSSEC validation is set by default and can be unset explicitly
  • SPF (Sender Policy Framework) support
  • Support for new resource records
  • New binaries have been added

BIND (HP-UX NameServer) 9.3.2 features:

  • DNS Security (DNSSEC) implementation based on RFC 4033, 4034, and 4035
  • Support for the ip6.arpa domain
  • New method of listing master servers
  • New options in the Options statement
  • New option to configure the ordering of records
  • New option to set the advertised EDNS UDP buffer size
  • New option to restrict the character set of domain names
  • New options to enable and disable incremental zone transfer (IXFR)
  • Transition support for IPv4 and IPv6
  • New command in the rndc utility
  • New option in the zone statement
  • New command-line options
  • Supports RFC 4193 (Unique Local IPv6 Unicast Addresses)

BIND (HP-UX NameServer) 9.2.0 features:

  • Incremental zone transfer
  • DNSSEC dynamic DNS update
  • Transaction Signature (TSIG)-based security
  • Lightweight resolver library and daemon
  • Improved logging mechanism
  • Extended configuration syntax and options
  • New options in options, zone, and server statements
  • The named.checkconf utility to check the syntax of the /etc/named.conf file
  • The named-checkzone utility to check the syntax and consistency of a zone's content
  • The rndc utility to control the operation of a name server
  • The rndc-confgen utility to generate the configuration file for rndc

Documentation

Table 2 lists the Manpages that are distributed with the BIND (HP-UX NameServer) software depot.

Table 2: BIND (HP-UX NameServer) Manpages

Manpages

Description

dig.1m

Domain information groper

dnssec-keygen.1

Key generation tool for DNSSEC

dnssec-makekeyset.1*

Program used to produce a set of DNS keys

dnssec-signkey.1*

DNSSEC key-set signing tool

dnssec-signzone.1

Tool to sign the DNSSEC zone

host.1

DNS lookup utility

hosts_to_na.1m

Program used to translate host table to name server file format

lwresd.1m

Lightweight resolver daemon

named-checkconf.1

The named configuration file syntax checking tool

named-checkzone.1

Zone validity checking tool

named-conf.4

Configuration file for named daemon

named.1m

Internet domain name server

nslookup.1

Program used to query name servers interactively

nsupdate.1

Dynamic DNS update utility

rndc-confgen.1

The rndc key generation tool

rndc.1

Name server control utility

rndc.conf.4

The rndc configuration file

sig-named.1m

Program used to send signals to the name server

arpaname.1**

Utility to translate IP addresses (IPv4 and IPv6) the corresponding IN-ADDR.ARPA or IP6.ARPA names.

ddns-confgen.1**

Tool to generate a key for use by nsupdate and named.

dnssec-dsfromkey.1**

DNSSEC DS RR generation tool

dnssec-settime.1**

Tool to set the key timing meta-data for a DNSSEC key

dnssec-revoke.1**

Tool to set the REVOKED bit on a DNSSEC key

dnssec-verify.1*** Tool to verify DNSSEC zones

genrandom.1**

Tool to generate a file containing random data

isc-hmac-fixup.1**

Fixes HMAC keys generated by older versions of BIND (HP-UX NameServer)

named-compilezone.1**

Zone validity checking tool

named-journalprint.1**

Utility to print zone journal in human-readable form

nsec3hash.1**

Tool to generate an NSEC3 hash based on a set of NSEC3 parameters

* Not available in BIND (HP-UX NameServer) 9.3.2

** Newly added Manpages in BIND (HP-UX NameServer) 9.7.3

*** Newly added Manpages in BIND (HP-UX NameServer) 9.9.4

Note: A 64-bit binary is created for named(1m)on HP-UX 11i v2 operating system.

The following documents provide additional information on installing and configuring BIND (HP-UX NameServer):

  • BIND (HP-UX NameServer) 9.9.4 Release Notes
  • BIND (HP-UX NameServer) 9.7.3 Release Notes
  • BIND (HP-UX NameServer) 9.3.2 Release Notes
  • BIND (HP-UX NameServer) 9.2.0 Release Notes
  • HP-UX IP Address and Client Management Administrator's Guide
  • BIND 9.9 Administrator Reference Manual

These documents are available at: http://www.hp.com/go/hpux-networking-docs.

Note: For complete list of changes and more details about the defect fixes, see “Release Notes” documents of BIND 9.9.x and BIND 9.8.x, available at http://www.hp.com/go/hpux-networking-docs.

On this page, select one of the following links depending on the operating system version used:

  • HP-UX 11i v1 Networking Software
  • HP-UX 11i v2 Networking Software
  • HP-UX 11i v3 Networking Software

The version of BIND (HP-UX NameServer) 9.2.0 Release Notes is also distributed with the BIND (HP-UX NameServer) 9.2.0 software depot.

It is available at: /usr/example/bind/Releasenotes.pdf

Software Depot Pages content updates note:

Content for this page is updated in August 2015, for the latest Web Release (WEB1508).

 
Additional product information
Product #: BIND
Version: 9.2.0/9.3.2/9.7.3/9.9.4
Software specification: HP-UX 11.11 (DNSUPGRADE_C.9.3.2.14.0_HP-UX_B.11.11_32_64.depot)
HP-UX 11.23 (DNSUPGRADE_C.9.3.2.14.0_HP-UX_B.11.23_IA_PA.depot)
HP-UX 11.31 (HPUX-NameServer_C.9.3.2.15.0_HP-UX_B.11.31_IA_PA.depot)
HP-UX 11.31 (HPUX-NameServer_C.9.7.3.1.0_HP-UX_B.11.31_IA_PA.depot)
HP-UX 11.31 (HPUX-NameServer_C.9.7.3.2.0_HP-UX_B.11.31_IA_PA.depot)
HP-UX 11.31 (HPUX-NameServer_C.9.7.3.3.0_HP-UX_B.11.31_IA_PA.depot)
HP-UX 11.31 (HPUX-NameServer_C.9.7.3.4.0_HP-UX_B.11.31_IA_PA.depot)
HP-UX 11.31 (HPUX-NameServer_C.9.7.3.6.0_HP-UX_B.11.31_IA_PA.depot)
HP-UX 11.31 (HPUX-NameServer_C.9.7.3.7.0_HP-UX_B.11.31_IA_PA.depot)
HP-UX 11.31 (HPUX-NameServer_C.9.9.4.1.0_HP-UX_B.11.31_IA_PA.depot)
HP-UX 11.31 (HPUX-NameServer_C.9.9.4.2.0_HP-UX_B.11.31_IA_PA.depot)
HP-UX 11.31 (HPUX-NameServer_C.9.9.4.3.0_HP-UX_B.11.31_IA_PA.depot)
HP-UX 11.31 (HPUX-NameServer_C.9.9.4.4.0_HP-UX_B.11.31_IA_PA.depot)
BIND HPUX-NameServer 9.9.4 Release Notes (761997-007.pdf)
BIND HPUX-NameServer 9.7.3 Release Notes (834957-001.pdf)
BIND 9.9 Administrator Reference Manual (BIND_9_Administrator_Reference.pdf)
BIND DNSUPGRADE 9.3.2 Release Notes (839997-001.pdf)
Installation
Select