Bug 964313

Summary: RFE: move dnssec utilities from bind to bind-utils
Product: [Fedora] Fedora Reporter: Jan Včelák <jv+fedora>
Component: bindAssignee: Tomáš Hozza <thozza>
Status: CLOSED RAWHIDE QA Contact: Fedora Extras Quality Assurance <extras-qa>
Severity: unspecified Docs Contact:
Priority: unspecified    
Version: rawhideCC: thozza, vonsch
Target Milestone: ---   
Target Release: ---   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard:
Fixed In Version: Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2013-08-20 14:17:32 UTC Type: Bug
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:

Description Jan Včelák 2013-05-17 20:35:47 UTC
Description of problem:

Some utilities currently present in the bind package can be used even if the machine is not a DNS server. For example dnssec-keygen or dnssec-signzone. (Zone keys could be generated on different machines with higher security requirements with minimal amount of software present.)

I think it makes more sense to move all utilities which does not require the server to be installed to bind-utils package.


Version-Release number of selected component (if applicable):
bind-9.9.2-10.P2.fc18.x86_64


How reproducible:
always


Steps to Reproduce:
1. yum install "/usr/sbin/dnssec-signzone"
2.
3.
  
Actual results:
"bind" package is installed


Expected results:
"bind-utils" package is installed


Additional info:

Comment 1 Tomáš Hozza 2013-08-20 13:09:15 UTC
(In reply to Jan Včelák from comment #0)
> I think it makes more sense to move all utilities which does not require the
> server to be installed to bind-utils package.

I agree with you. Hopefully others will, too... :)

Comment 2 Tomáš Hozza 2013-08-20 14:17:32 UTC
I moved the following tools into bind-utils package:
arpaname
ddns-confgen
dnssec-checkds
dnssec-coverage
dnssec-dsfromkey
dnssec-keyfromlabel
dnssec-keygen
dnssec-revoke
dnssec-settime
dnssec-signzone
dnssec-verify
genrandom
isc-hmac-fixup
nsec3hash

The change is in bind-9.9.4-0.6.rc1.fc20