Bug 1798877
Summary: | IPA server installer should lock Bind9 recursion and allow to configure it | ||
---|---|---|---|
Product: | Red Hat Enterprise Linux 8 | Reporter: | Alexander Bokovoy <abokovoy> |
Component: | ipa | Assignee: | Thomas Woerner <twoerner> |
Status: | CLOSED ERRATA | QA Contact: | ipa-qe <ipa-qe> |
Severity: | medium | Docs Contact: | |
Priority: | unspecified | ||
Version: | 8.2 | CC: | abokovoy, cjeanner, contribs, diego.abelenda, extras-qa, fcami, ipa-maint, jcholast, jhrozek, ksiddiqu, myusuf, pasik, pcech, pvoborni, rcritten, ssorce, tscherf, twoerner |
Target Milestone: | rc | ||
Target Release: | 8.0 | ||
Hardware: | Unspecified | ||
OS: | Unspecified | ||
Whiteboard: | |||
Fixed In Version: | Doc Type: | Enhancement | |
Doc Text: |
Feature: Custom configuration for RHEL IdM DNS server is now supported
Reason: The named.conf configuration file is controlled by RHEL IdM. Custom changes to the file are overwritten during upgrade.
Result: BIND configuration can now be tuned with the new config file "ipa-ext.conf". Custom changes like Bind recursion are not overwritten during upgrade. The default RHEL IdM DNS server configuration now follows BIND defaults. In particular, default recursion rules are now 'localnets;localhost', see https://kb.isc.org/docs/aa-00269 for more details.
|
Story Points: | --- |
Clone Of: | 1754530 | Environment: | |
Last Closed: | 2020-04-28 15:44:43 UTC | Type: | Bug |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: | |||
Bug Depends On: | 1754530 | ||
Bug Blocks: |
Description
Alexander Bokovoy
2020-02-06 08:16:52 UTC
The fix is already in RHEL 8.2 beta as part of IPA 4.8 update. The purpose of this bug is to collect a release note describing a behavior change in DNS configuration. Version: version: ipa-server-4.8.4-6.module+el8.2.0+5773+68ace8c5.x86_64 ipa-server-dns-4.8.4-6.module+el8.2.0+5773+68ace8c5.noarch Based on comment#5 marking the bug as verified. Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHEA-2020:1640 |