[Freeipa] [Bug 1874568] Re: Working config in eoan, bind9 fails after upgrade to fossa
I have this problem too (see https://answers.launchpad.net/ubuntu/+source/bind-dyndb- ldap/+question/695714). My first attempt at backporting from Groovy failed. It looks like it might need Groovy’s libc6 too, which seems a bit like a show stopper... Is anyone working on this? -- You received this bug notification because you are a member of FreeIPA, which is subscribed to bind-dyndb-ldap in Ubuntu. https://bugs.launchpad.net/bugs/1874568 Title: Working config in eoan, bind9 fails after upgrade to fossa Status in bind-dyndb-ldap package in Ubuntu: Fix Released Status in bind9 package in Ubuntu: Confirmed Status in bind-dyndb-ldap source package in Focal: In Progress Status in bind9 source package in Focal: In Progress Bug description: Configuration was working in Eoan. Just upgraded to Fossa. Bind9(named) will not start. Syslog show the following: Apr 23 16:55:58 ltserver2 named[1611]: starting BIND 9.16.1-Ubuntu (Stable Release) Apr 23 16:55:58 ltserver2 named[1611]: running on Linux x86_64 5.4.0-26-generic #30-Ubuntu SMP Mon Apr 20 16:58:30 UTC 2020 Apr 23 16:55:58 ltserver2 named[1611]: built with '--build=x86_64-linux-gnu' '--prefix=/usr' '--includedir=/usr/include' '--mandir=/usr/share/man' '--infodir=/usr/share/info' '--sysconfdir=/etc' '--localstatedir=/var' '--disable-silent-rules' '--libdir=/usr/lib/x86_64-linux-gnu' '--runstatedir=/run' '--disable-maintainer-mode' '--disable-dependency-tracking' '--libdir=/usr/lib/x86_64-linux-gnu' '--sysconfdir=/etc/bind' '--with-python=python3' '--localstatedir=/' '--enable-threads' '--enable-largefile' '--with-libtool' '--enable-shared' '--enable-static' '--with-gost=no' '--with-openssl=/usr' '--with-gssapi=/usr' '--with-libidn2' '--with-json-c' '--with-lmdb=/usr' '--with-gnu-ld' '--with-maxminddb' '--with-atf=no' '--enable-ipv6' '--enable-rrl' '--enable-filter-' '--disable-native-pkcs11' 'build_alias=x86_64-linux-gnu' 'CFLAGS=-g -O2 -fdebug-prefix-map=/build/bind9-OLooom/bind9-9.16.1=. -fstack-protector-strong -Wformat -Werror=format-security -fno-strict-aliasing -fno-delete-null-pointer-checks -DNO_VERSION_DATE -DDIG_SIGCHASE' 'LDFLAGS=-Wl,-Bsymbolic-functions -Wl,-z,relro -Wl,-z,now' 'CPPFLAGS=-Wdate-time -D_FORTIFY_SOURCE=2' Apr 23 16:55:58 ltserver2 named[1611]: running as: named -f -u bind Apr 23 16:55:58 ltserver2 named[1611]: compiled by GCC 9.3.0 Apr 23 16:55:58 ltserver2 named[1611]: compiled with OpenSSL version: OpenSSL 1.1.1f 31 Mar 2020 Apr 23 16:55:58 ltserver2 named[1611]: linked to OpenSSL version: OpenSSL 1.1.1f 31 Mar 2020 Apr 23 16:55:58 ltserver2 named[1611]: compiled with libxml2 version: 2.9.10 Apr 23 16:55:58 ltserver2 named[1611]: linked to libxml2 version: 20910 Apr 23 16:55:58 ltserver2 named[1611]: compiled with json-c version: 0.13.1 Apr 23 16:55:58 ltserver2 named[1611]: linked to json-c version: 0.13.1 Apr 23 16:55:58 ltserver2 named[1611]: compiled with zlib version: 1.2.11 Apr 23 16:55:58 ltserver2 named[1611]: linked to zlib version: 1.2.11 Apr 23 16:55:58 ltserver2 named[1611]: Apr 23 16:55:58 ltserver2 named[1611]: BIND 9 is maintained by Internet Systems Consortium, Apr 23 16:55:58 ltserver2 named[1611]: Inc. (ISC), a non-profit 501(c)(3) public-benefit Apr 23 16:55:58 ltserver2 named[1611]: corporation. Support and training for BIND 9 are Apr 23 16:55:58 ltserver2 named[1611]: available at https://www.isc.org/support Apr 23 16:55:58 ltserver2 named[1611]: Apr 23 16:55:58 ltserver2 named[1611]: adjusted limit on open files from 524288 to 1048576 Apr 23 16:55:58 ltserver2 named[1611]: found 2 CPUs, using 2 worker threads Apr 23 16:55:58 ltserver2 named[1611]: using 2 UDP listeners per interface Apr 23 16:55:58 ltserver2 named[1611]: using up to 21000 sockets Apr 23 16:55:58 ltserver2 named[1611]: loading configuration from '/etc/bind/named.conf' Apr 23 16:55:58 ltserver2 named[1611]: reading built-in trust anchors from file '/etc/bind/bind.keys' Apr 23 16:55:58 ltserver2 named[1611]: looking for GeoIP2 databases in '/usr/share/GeoIP' Apr 23 16:55:58 ltserver2 named[1611]: using default UDP/IPv4 port range: [32768, 60999] Apr 23 16:55:58 ltserver2 named[1611]: using default UDP/IPv6 port range: [32768, 60999] Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv4 interface enp3s0, #53 Apr 23 16:55:58 ltserver2 named[1611]: IPv6 socket API is incomplete; explicitly binding to each IPv6 address separately Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv6 interface lo, ::1#53 Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv6 interface enp3s0, %2#53 Apr 23 16:55:58 ltserver2 named[1611]: unable to set effective uid to 0: Operation not permitted Apr 23 16:55:58 ltserver2 named[1611]: generating session key for dynamic DNS Apr 23 16:55:58 ltserver2 named[1611]: unable to set
[Freeipa] [Bug 1874568] Re: Working config in eoan, bind9 fails after upgrade to fossa
Is there any update yet? I would really need freeipa in 20.04. -- You received this bug notification because you are a member of FreeIPA, which is subscribed to bind-dyndb-ldap in Ubuntu. https://bugs.launchpad.net/bugs/1874568 Title: Working config in eoan, bind9 fails after upgrade to fossa Status in bind-dyndb-ldap package in Ubuntu: Fix Released Status in bind9 package in Ubuntu: Confirmed Status in bind-dyndb-ldap source package in Focal: In Progress Status in bind9 source package in Focal: In Progress Bug description: Configuration was working in Eoan. Just upgraded to Fossa. Bind9(named) will not start. Syslog show the following: Apr 23 16:55:58 ltserver2 named[1611]: starting BIND 9.16.1-Ubuntu (Stable Release) Apr 23 16:55:58 ltserver2 named[1611]: running on Linux x86_64 5.4.0-26-generic #30-Ubuntu SMP Mon Apr 20 16:58:30 UTC 2020 Apr 23 16:55:58 ltserver2 named[1611]: built with '--build=x86_64-linux-gnu' '--prefix=/usr' '--includedir=/usr/include' '--mandir=/usr/share/man' '--infodir=/usr/share/info' '--sysconfdir=/etc' '--localstatedir=/var' '--disable-silent-rules' '--libdir=/usr/lib/x86_64-linux-gnu' '--runstatedir=/run' '--disable-maintainer-mode' '--disable-dependency-tracking' '--libdir=/usr/lib/x86_64-linux-gnu' '--sysconfdir=/etc/bind' '--with-python=python3' '--localstatedir=/' '--enable-threads' '--enable-largefile' '--with-libtool' '--enable-shared' '--enable-static' '--with-gost=no' '--with-openssl=/usr' '--with-gssapi=/usr' '--with-libidn2' '--with-json-c' '--with-lmdb=/usr' '--with-gnu-ld' '--with-maxminddb' '--with-atf=no' '--enable-ipv6' '--enable-rrl' '--enable-filter-' '--disable-native-pkcs11' 'build_alias=x86_64-linux-gnu' 'CFLAGS=-g -O2 -fdebug-prefix-map=/build/bind9-OLooom/bind9-9.16.1=. -fstack-protector-strong -Wformat -Werror=format-security -fno-strict-aliasing -fno-delete-null-pointer-checks -DNO_VERSION_DATE -DDIG_SIGCHASE' 'LDFLAGS=-Wl,-Bsymbolic-functions -Wl,-z,relro -Wl,-z,now' 'CPPFLAGS=-Wdate-time -D_FORTIFY_SOURCE=2' Apr 23 16:55:58 ltserver2 named[1611]: running as: named -f -u bind Apr 23 16:55:58 ltserver2 named[1611]: compiled by GCC 9.3.0 Apr 23 16:55:58 ltserver2 named[1611]: compiled with OpenSSL version: OpenSSL 1.1.1f 31 Mar 2020 Apr 23 16:55:58 ltserver2 named[1611]: linked to OpenSSL version: OpenSSL 1.1.1f 31 Mar 2020 Apr 23 16:55:58 ltserver2 named[1611]: compiled with libxml2 version: 2.9.10 Apr 23 16:55:58 ltserver2 named[1611]: linked to libxml2 version: 20910 Apr 23 16:55:58 ltserver2 named[1611]: compiled with json-c version: 0.13.1 Apr 23 16:55:58 ltserver2 named[1611]: linked to json-c version: 0.13.1 Apr 23 16:55:58 ltserver2 named[1611]: compiled with zlib version: 1.2.11 Apr 23 16:55:58 ltserver2 named[1611]: linked to zlib version: 1.2.11 Apr 23 16:55:58 ltserver2 named[1611]: Apr 23 16:55:58 ltserver2 named[1611]: BIND 9 is maintained by Internet Systems Consortium, Apr 23 16:55:58 ltserver2 named[1611]: Inc. (ISC), a non-profit 501(c)(3) public-benefit Apr 23 16:55:58 ltserver2 named[1611]: corporation. Support and training for BIND 9 are Apr 23 16:55:58 ltserver2 named[1611]: available at https://www.isc.org/support Apr 23 16:55:58 ltserver2 named[1611]: Apr 23 16:55:58 ltserver2 named[1611]: adjusted limit on open files from 524288 to 1048576 Apr 23 16:55:58 ltserver2 named[1611]: found 2 CPUs, using 2 worker threads Apr 23 16:55:58 ltserver2 named[1611]: using 2 UDP listeners per interface Apr 23 16:55:58 ltserver2 named[1611]: using up to 21000 sockets Apr 23 16:55:58 ltserver2 named[1611]: loading configuration from '/etc/bind/named.conf' Apr 23 16:55:58 ltserver2 named[1611]: reading built-in trust anchors from file '/etc/bind/bind.keys' Apr 23 16:55:58 ltserver2 named[1611]: looking for GeoIP2 databases in '/usr/share/GeoIP' Apr 23 16:55:58 ltserver2 named[1611]: using default UDP/IPv4 port range: [32768, 60999] Apr 23 16:55:58 ltserver2 named[1611]: using default UDP/IPv6 port range: [32768, 60999] Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv4 interface enp3s0, #53 Apr 23 16:55:58 ltserver2 named[1611]: IPv6 socket API is incomplete; explicitly binding to each IPv6 address separately Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv6 interface lo, ::1#53 Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv6 interface enp3s0, %2#53 Apr 23 16:55:58 ltserver2 named[1611]: unable to set effective uid to 0: Operation not permitted Apr 23 16:55:58 ltserver2 named[1611]: generating session key for dynamic DNS Apr 23 16:55:58 ltserver2 named[1611]: unable to set effective uid to 0: Operation not permitted Apr 23 16:55:58 ltserver2 named[1611]: sizing zone task pool based on 0 zones Apr 23 16:55:58 ltserver2 named[1611]: none:100: 'max-cache-size 90%' - setting to
[Freeipa] [Bug 1874568] Re: Working config in eoan, bind9 fails after upgrade to fossa
** Package changed: bind (Ubuntu) => bind9 (Ubuntu) -- You received this bug notification because you are a member of FreeIPA, which is subscribed to bind-dyndb-ldap in Ubuntu. https://bugs.launchpad.net/bugs/1874568 Title: Working config in eoan, bind9 fails after upgrade to fossa Status in bind-dyndb-ldap package in Ubuntu: Fix Released Status in bind9 package in Ubuntu: Confirmed Status in bind-dyndb-ldap source package in Focal: In Progress Status in bind9 source package in Focal: In Progress Bug description: Configuration was working in Eoan. Just upgraded to Fossa. Bind9(named) will not start. Syslog show the following: Apr 23 16:55:58 ltserver2 named[1611]: starting BIND 9.16.1-Ubuntu (Stable Release) Apr 23 16:55:58 ltserver2 named[1611]: running on Linux x86_64 5.4.0-26-generic #30-Ubuntu SMP Mon Apr 20 16:58:30 UTC 2020 Apr 23 16:55:58 ltserver2 named[1611]: built with '--build=x86_64-linux-gnu' '--prefix=/usr' '--includedir=/usr/include' '--mandir=/usr/share/man' '--infodir=/usr/share/info' '--sysconfdir=/etc' '--localstatedir=/var' '--disable-silent-rules' '--libdir=/usr/lib/x86_64-linux-gnu' '--runstatedir=/run' '--disable-maintainer-mode' '--disable-dependency-tracking' '--libdir=/usr/lib/x86_64-linux-gnu' '--sysconfdir=/etc/bind' '--with-python=python3' '--localstatedir=/' '--enable-threads' '--enable-largefile' '--with-libtool' '--enable-shared' '--enable-static' '--with-gost=no' '--with-openssl=/usr' '--with-gssapi=/usr' '--with-libidn2' '--with-json-c' '--with-lmdb=/usr' '--with-gnu-ld' '--with-maxminddb' '--with-atf=no' '--enable-ipv6' '--enable-rrl' '--enable-filter-' '--disable-native-pkcs11' 'build_alias=x86_64-linux-gnu' 'CFLAGS=-g -O2 -fdebug-prefix-map=/build/bind9-OLooom/bind9-9.16.1=. -fstack-protector-strong -Wformat -Werror=format-security -fno-strict-aliasing -fno-delete-null-pointer-checks -DNO_VERSION_DATE -DDIG_SIGCHASE' 'LDFLAGS=-Wl,-Bsymbolic-functions -Wl,-z,relro -Wl,-z,now' 'CPPFLAGS=-Wdate-time -D_FORTIFY_SOURCE=2' Apr 23 16:55:58 ltserver2 named[1611]: running as: named -f -u bind Apr 23 16:55:58 ltserver2 named[1611]: compiled by GCC 9.3.0 Apr 23 16:55:58 ltserver2 named[1611]: compiled with OpenSSL version: OpenSSL 1.1.1f 31 Mar 2020 Apr 23 16:55:58 ltserver2 named[1611]: linked to OpenSSL version: OpenSSL 1.1.1f 31 Mar 2020 Apr 23 16:55:58 ltserver2 named[1611]: compiled with libxml2 version: 2.9.10 Apr 23 16:55:58 ltserver2 named[1611]: linked to libxml2 version: 20910 Apr 23 16:55:58 ltserver2 named[1611]: compiled with json-c version: 0.13.1 Apr 23 16:55:58 ltserver2 named[1611]: linked to json-c version: 0.13.1 Apr 23 16:55:58 ltserver2 named[1611]: compiled with zlib version: 1.2.11 Apr 23 16:55:58 ltserver2 named[1611]: linked to zlib version: 1.2.11 Apr 23 16:55:58 ltserver2 named[1611]: Apr 23 16:55:58 ltserver2 named[1611]: BIND 9 is maintained by Internet Systems Consortium, Apr 23 16:55:58 ltserver2 named[1611]: Inc. (ISC), a non-profit 501(c)(3) public-benefit Apr 23 16:55:58 ltserver2 named[1611]: corporation. Support and training for BIND 9 are Apr 23 16:55:58 ltserver2 named[1611]: available at https://www.isc.org/support Apr 23 16:55:58 ltserver2 named[1611]: Apr 23 16:55:58 ltserver2 named[1611]: adjusted limit on open files from 524288 to 1048576 Apr 23 16:55:58 ltserver2 named[1611]: found 2 CPUs, using 2 worker threads Apr 23 16:55:58 ltserver2 named[1611]: using 2 UDP listeners per interface Apr 23 16:55:58 ltserver2 named[1611]: using up to 21000 sockets Apr 23 16:55:58 ltserver2 named[1611]: loading configuration from '/etc/bind/named.conf' Apr 23 16:55:58 ltserver2 named[1611]: reading built-in trust anchors from file '/etc/bind/bind.keys' Apr 23 16:55:58 ltserver2 named[1611]: looking for GeoIP2 databases in '/usr/share/GeoIP' Apr 23 16:55:58 ltserver2 named[1611]: using default UDP/IPv4 port range: [32768, 60999] Apr 23 16:55:58 ltserver2 named[1611]: using default UDP/IPv6 port range: [32768, 60999] Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv4 interface enp3s0, #53 Apr 23 16:55:58 ltserver2 named[1611]: IPv6 socket API is incomplete; explicitly binding to each IPv6 address separately Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv6 interface lo, ::1#53 Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv6 interface enp3s0, %2#53 Apr 23 16:55:58 ltserver2 named[1611]: unable to set effective uid to 0: Operation not permitted Apr 23 16:55:58 ltserver2 named[1611]: generating session key for dynamic DNS Apr 23 16:55:58 ltserver2 named[1611]: unable to set effective uid to 0: Operation not permitted Apr 23 16:55:58 ltserver2 named[1611]: sizing zone task pool based on 0 zones Apr 23 16:55:58 ltserver2 named[1611]: none:100: 'max-cache-size 90%' - setting to 3513MB (out of
[Freeipa] [Bug 1874568] Re: Working config in eoan, bind9 fails after upgrade to fossa
and then bind-dyndb-ldap should be backported from groovy, there's no point in cherry-picking stuff -- You received this bug notification because you are a member of FreeIPA, which is subscribed to bind-dyndb-ldap in Ubuntu. https://bugs.launchpad.net/bugs/1874568 Title: Working config in eoan, bind9 fails after upgrade to fossa Status in bind package in Ubuntu: Confirmed Status in bind-dyndb-ldap package in Ubuntu: Fix Released Status in bind source package in Focal: In Progress Status in bind-dyndb-ldap source package in Focal: In Progress Bug description: Configuration was working in Eoan. Just upgraded to Fossa. Bind9(named) will not start. Syslog show the following: Apr 23 16:55:58 ltserver2 named[1611]: starting BIND 9.16.1-Ubuntu (Stable Release) Apr 23 16:55:58 ltserver2 named[1611]: running on Linux x86_64 5.4.0-26-generic #30-Ubuntu SMP Mon Apr 20 16:58:30 UTC 2020 Apr 23 16:55:58 ltserver2 named[1611]: built with '--build=x86_64-linux-gnu' '--prefix=/usr' '--includedir=/usr/include' '--mandir=/usr/share/man' '--infodir=/usr/share/info' '--sysconfdir=/etc' '--localstatedir=/var' '--disable-silent-rules' '--libdir=/usr/lib/x86_64-linux-gnu' '--runstatedir=/run' '--disable-maintainer-mode' '--disable-dependency-tracking' '--libdir=/usr/lib/x86_64-linux-gnu' '--sysconfdir=/etc/bind' '--with-python=python3' '--localstatedir=/' '--enable-threads' '--enable-largefile' '--with-libtool' '--enable-shared' '--enable-static' '--with-gost=no' '--with-openssl=/usr' '--with-gssapi=/usr' '--with-libidn2' '--with-json-c' '--with-lmdb=/usr' '--with-gnu-ld' '--with-maxminddb' '--with-atf=no' '--enable-ipv6' '--enable-rrl' '--enable-filter-' '--disable-native-pkcs11' 'build_alias=x86_64-linux-gnu' 'CFLAGS=-g -O2 -fdebug-prefix-map=/build/bind9-OLooom/bind9-9.16.1=. -fstack-protector-strong -Wformat -Werror=format-security -fno-strict-aliasing -fno-delete-null-pointer-checks -DNO_VERSION_DATE -DDIG_SIGCHASE' 'LDFLAGS=-Wl,-Bsymbolic-functions -Wl,-z,relro -Wl,-z,now' 'CPPFLAGS=-Wdate-time -D_FORTIFY_SOURCE=2' Apr 23 16:55:58 ltserver2 named[1611]: running as: named -f -u bind Apr 23 16:55:58 ltserver2 named[1611]: compiled by GCC 9.3.0 Apr 23 16:55:58 ltserver2 named[1611]: compiled with OpenSSL version: OpenSSL 1.1.1f 31 Mar 2020 Apr 23 16:55:58 ltserver2 named[1611]: linked to OpenSSL version: OpenSSL 1.1.1f 31 Mar 2020 Apr 23 16:55:58 ltserver2 named[1611]: compiled with libxml2 version: 2.9.10 Apr 23 16:55:58 ltserver2 named[1611]: linked to libxml2 version: 20910 Apr 23 16:55:58 ltserver2 named[1611]: compiled with json-c version: 0.13.1 Apr 23 16:55:58 ltserver2 named[1611]: linked to json-c version: 0.13.1 Apr 23 16:55:58 ltserver2 named[1611]: compiled with zlib version: 1.2.11 Apr 23 16:55:58 ltserver2 named[1611]: linked to zlib version: 1.2.11 Apr 23 16:55:58 ltserver2 named[1611]: Apr 23 16:55:58 ltserver2 named[1611]: BIND 9 is maintained by Internet Systems Consortium, Apr 23 16:55:58 ltserver2 named[1611]: Inc. (ISC), a non-profit 501(c)(3) public-benefit Apr 23 16:55:58 ltserver2 named[1611]: corporation. Support and training for BIND 9 are Apr 23 16:55:58 ltserver2 named[1611]: available at https://www.isc.org/support Apr 23 16:55:58 ltserver2 named[1611]: Apr 23 16:55:58 ltserver2 named[1611]: adjusted limit on open files from 524288 to 1048576 Apr 23 16:55:58 ltserver2 named[1611]: found 2 CPUs, using 2 worker threads Apr 23 16:55:58 ltserver2 named[1611]: using 2 UDP listeners per interface Apr 23 16:55:58 ltserver2 named[1611]: using up to 21000 sockets Apr 23 16:55:58 ltserver2 named[1611]: loading configuration from '/etc/bind/named.conf' Apr 23 16:55:58 ltserver2 named[1611]: reading built-in trust anchors from file '/etc/bind/bind.keys' Apr 23 16:55:58 ltserver2 named[1611]: looking for GeoIP2 databases in '/usr/share/GeoIP' Apr 23 16:55:58 ltserver2 named[1611]: using default UDP/IPv4 port range: [32768, 60999] Apr 23 16:55:58 ltserver2 named[1611]: using default UDP/IPv6 port range: [32768, 60999] Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv4 interface enp3s0, #53 Apr 23 16:55:58 ltserver2 named[1611]: IPv6 socket API is incomplete; explicitly binding to each IPv6 address separately Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv6 interface lo, ::1#53 Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv6 interface enp3s0, %2#53 Apr 23 16:55:58 ltserver2 named[1611]: unable to set effective uid to 0: Operation not permitted Apr 23 16:55:58 ltserver2 named[1611]: generating session key for dynamic DNS Apr 23 16:55:58 ltserver2 named[1611]: unable to set effective uid to 0: Operation not permitted Apr 23 16:55:58 ltserver2 named[1611]: sizing zone task pool based on 0 zones Apr 23 16:55:58 ltserver2 named[1611]: none:100:
[Freeipa] [Bug 1874568] Re: Working config in eoan, bind9 fails after upgrade to fossa
bind needs to provide bind9-dev again ** Also affects: bind (Ubuntu Focal) Importance: Undecided Status: New ** Also affects: bind-dyndb-ldap (Ubuntu Focal) Importance: Undecided Status: New ** Changed in: bind (Ubuntu Focal) Assignee: (unassigned) => Timo Aaltonen (tjaalton) ** Changed in: bind (Ubuntu Focal) Status: New => In Progress ** Changed in: bind-dyndb-ldap (Ubuntu Focal) Status: New => In Progress ** Changed in: bind-dyndb-ldap (Ubuntu Focal) Assignee: (unassigned) => Timo Aaltonen (tjaalton) -- You received this bug notification because you are a member of FreeIPA, which is subscribed to bind-dyndb-ldap in Ubuntu. https://bugs.launchpad.net/bugs/1874568 Title: Working config in eoan, bind9 fails after upgrade to fossa Status in bind package in Ubuntu: Confirmed Status in bind-dyndb-ldap package in Ubuntu: Fix Released Status in bind source package in Focal: In Progress Status in bind-dyndb-ldap source package in Focal: In Progress Bug description: Configuration was working in Eoan. Just upgraded to Fossa. Bind9(named) will not start. Syslog show the following: Apr 23 16:55:58 ltserver2 named[1611]: starting BIND 9.16.1-Ubuntu (Stable Release) Apr 23 16:55:58 ltserver2 named[1611]: running on Linux x86_64 5.4.0-26-generic #30-Ubuntu SMP Mon Apr 20 16:58:30 UTC 2020 Apr 23 16:55:58 ltserver2 named[1611]: built with '--build=x86_64-linux-gnu' '--prefix=/usr' '--includedir=/usr/include' '--mandir=/usr/share/man' '--infodir=/usr/share/info' '--sysconfdir=/etc' '--localstatedir=/var' '--disable-silent-rules' '--libdir=/usr/lib/x86_64-linux-gnu' '--runstatedir=/run' '--disable-maintainer-mode' '--disable-dependency-tracking' '--libdir=/usr/lib/x86_64-linux-gnu' '--sysconfdir=/etc/bind' '--with-python=python3' '--localstatedir=/' '--enable-threads' '--enable-largefile' '--with-libtool' '--enable-shared' '--enable-static' '--with-gost=no' '--with-openssl=/usr' '--with-gssapi=/usr' '--with-libidn2' '--with-json-c' '--with-lmdb=/usr' '--with-gnu-ld' '--with-maxminddb' '--with-atf=no' '--enable-ipv6' '--enable-rrl' '--enable-filter-' '--disable-native-pkcs11' 'build_alias=x86_64-linux-gnu' 'CFLAGS=-g -O2 -fdebug-prefix-map=/build/bind9-OLooom/bind9-9.16.1=. -fstack-protector-strong -Wformat -Werror=format-security -fno-strict-aliasing -fno-delete-null-pointer-checks -DNO_VERSION_DATE -DDIG_SIGCHASE' 'LDFLAGS=-Wl,-Bsymbolic-functions -Wl,-z,relro -Wl,-z,now' 'CPPFLAGS=-Wdate-time -D_FORTIFY_SOURCE=2' Apr 23 16:55:58 ltserver2 named[1611]: running as: named -f -u bind Apr 23 16:55:58 ltserver2 named[1611]: compiled by GCC 9.3.0 Apr 23 16:55:58 ltserver2 named[1611]: compiled with OpenSSL version: OpenSSL 1.1.1f 31 Mar 2020 Apr 23 16:55:58 ltserver2 named[1611]: linked to OpenSSL version: OpenSSL 1.1.1f 31 Mar 2020 Apr 23 16:55:58 ltserver2 named[1611]: compiled with libxml2 version: 2.9.10 Apr 23 16:55:58 ltserver2 named[1611]: linked to libxml2 version: 20910 Apr 23 16:55:58 ltserver2 named[1611]: compiled with json-c version: 0.13.1 Apr 23 16:55:58 ltserver2 named[1611]: linked to json-c version: 0.13.1 Apr 23 16:55:58 ltserver2 named[1611]: compiled with zlib version: 1.2.11 Apr 23 16:55:58 ltserver2 named[1611]: linked to zlib version: 1.2.11 Apr 23 16:55:58 ltserver2 named[1611]: Apr 23 16:55:58 ltserver2 named[1611]: BIND 9 is maintained by Internet Systems Consortium, Apr 23 16:55:58 ltserver2 named[1611]: Inc. (ISC), a non-profit 501(c)(3) public-benefit Apr 23 16:55:58 ltserver2 named[1611]: corporation. Support and training for BIND 9 are Apr 23 16:55:58 ltserver2 named[1611]: available at https://www.isc.org/support Apr 23 16:55:58 ltserver2 named[1611]: Apr 23 16:55:58 ltserver2 named[1611]: adjusted limit on open files from 524288 to 1048576 Apr 23 16:55:58 ltserver2 named[1611]: found 2 CPUs, using 2 worker threads Apr 23 16:55:58 ltserver2 named[1611]: using 2 UDP listeners per interface Apr 23 16:55:58 ltserver2 named[1611]: using up to 21000 sockets Apr 23 16:55:58 ltserver2 named[1611]: loading configuration from '/etc/bind/named.conf' Apr 23 16:55:58 ltserver2 named[1611]: reading built-in trust anchors from file '/etc/bind/bind.keys' Apr 23 16:55:58 ltserver2 named[1611]: looking for GeoIP2 databases in '/usr/share/GeoIP' Apr 23 16:55:58 ltserver2 named[1611]: using default UDP/IPv4 port range: [32768, 60999] Apr 23 16:55:58 ltserver2 named[1611]: using default UDP/IPv6 port range: [32768, 60999] Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv4 interface enp3s0, #53 Apr 23 16:55:58 ltserver2 named[1611]: IPv6 socket API is incomplete; explicitly binding to each IPv6 address separately Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv6 interface lo, ::1#53 Apr 23 16:55:58 ltserver2 named[1611]:
[Freeipa] [Bug 1874568] Re: Working config in eoan, bind9 fails after upgrade to fossa
This bug was fixed in the package bind-dyndb-ldap - 11.4-1 --- bind-dyndb-ldap (11.4-1) unstable; urgency=medium * New upstream release. * bind-9.16-support.diff: Dropped, upstream. -- Timo Aaltonen Fri, 18 Sep 2020 12:01:09 +0300 ** Changed in: bind-dyndb-ldap (Ubuntu) Status: Confirmed => Fix Released -- You received this bug notification because you are a member of FreeIPA, which is subscribed to bind-dyndb-ldap in Ubuntu. https://bugs.launchpad.net/bugs/1874568 Title: Working config in eoan, bind9 fails after upgrade to fossa Status in bind package in Ubuntu: Confirmed Status in bind-dyndb-ldap package in Ubuntu: Fix Released Bug description: Configuration was working in Eoan. Just upgraded to Fossa. Bind9(named) will not start. Syslog show the following: Apr 23 16:55:58 ltserver2 named[1611]: starting BIND 9.16.1-Ubuntu (Stable Release) Apr 23 16:55:58 ltserver2 named[1611]: running on Linux x86_64 5.4.0-26-generic #30-Ubuntu SMP Mon Apr 20 16:58:30 UTC 2020 Apr 23 16:55:58 ltserver2 named[1611]: built with '--build=x86_64-linux-gnu' '--prefix=/usr' '--includedir=/usr/include' '--mandir=/usr/share/man' '--infodir=/usr/share/info' '--sysconfdir=/etc' '--localstatedir=/var' '--disable-silent-rules' '--libdir=/usr/lib/x86_64-linux-gnu' '--runstatedir=/run' '--disable-maintainer-mode' '--disable-dependency-tracking' '--libdir=/usr/lib/x86_64-linux-gnu' '--sysconfdir=/etc/bind' '--with-python=python3' '--localstatedir=/' '--enable-threads' '--enable-largefile' '--with-libtool' '--enable-shared' '--enable-static' '--with-gost=no' '--with-openssl=/usr' '--with-gssapi=/usr' '--with-libidn2' '--with-json-c' '--with-lmdb=/usr' '--with-gnu-ld' '--with-maxminddb' '--with-atf=no' '--enable-ipv6' '--enable-rrl' '--enable-filter-' '--disable-native-pkcs11' 'build_alias=x86_64-linux-gnu' 'CFLAGS=-g -O2 -fdebug-prefix-map=/build/bind9-OLooom/bind9-9.16.1=. -fstack-protector-strong -Wformat -Werror=format-security -fno-strict-aliasing -fno-delete-null-pointer-checks -DNO_VERSION_DATE -DDIG_SIGCHASE' 'LDFLAGS=-Wl,-Bsymbolic-functions -Wl,-z,relro -Wl,-z,now' 'CPPFLAGS=-Wdate-time -D_FORTIFY_SOURCE=2' Apr 23 16:55:58 ltserver2 named[1611]: running as: named -f -u bind Apr 23 16:55:58 ltserver2 named[1611]: compiled by GCC 9.3.0 Apr 23 16:55:58 ltserver2 named[1611]: compiled with OpenSSL version: OpenSSL 1.1.1f 31 Mar 2020 Apr 23 16:55:58 ltserver2 named[1611]: linked to OpenSSL version: OpenSSL 1.1.1f 31 Mar 2020 Apr 23 16:55:58 ltserver2 named[1611]: compiled with libxml2 version: 2.9.10 Apr 23 16:55:58 ltserver2 named[1611]: linked to libxml2 version: 20910 Apr 23 16:55:58 ltserver2 named[1611]: compiled with json-c version: 0.13.1 Apr 23 16:55:58 ltserver2 named[1611]: linked to json-c version: 0.13.1 Apr 23 16:55:58 ltserver2 named[1611]: compiled with zlib version: 1.2.11 Apr 23 16:55:58 ltserver2 named[1611]: linked to zlib version: 1.2.11 Apr 23 16:55:58 ltserver2 named[1611]: Apr 23 16:55:58 ltserver2 named[1611]: BIND 9 is maintained by Internet Systems Consortium, Apr 23 16:55:58 ltserver2 named[1611]: Inc. (ISC), a non-profit 501(c)(3) public-benefit Apr 23 16:55:58 ltserver2 named[1611]: corporation. Support and training for BIND 9 are Apr 23 16:55:58 ltserver2 named[1611]: available at https://www.isc.org/support Apr 23 16:55:58 ltserver2 named[1611]: Apr 23 16:55:58 ltserver2 named[1611]: adjusted limit on open files from 524288 to 1048576 Apr 23 16:55:58 ltserver2 named[1611]: found 2 CPUs, using 2 worker threads Apr 23 16:55:58 ltserver2 named[1611]: using 2 UDP listeners per interface Apr 23 16:55:58 ltserver2 named[1611]: using up to 21000 sockets Apr 23 16:55:58 ltserver2 named[1611]: loading configuration from '/etc/bind/named.conf' Apr 23 16:55:58 ltserver2 named[1611]: reading built-in trust anchors from file '/etc/bind/bind.keys' Apr 23 16:55:58 ltserver2 named[1611]: looking for GeoIP2 databases in '/usr/share/GeoIP' Apr 23 16:55:58 ltserver2 named[1611]: using default UDP/IPv4 port range: [32768, 60999] Apr 23 16:55:58 ltserver2 named[1611]: using default UDP/IPv6 port range: [32768, 60999] Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv4 interface enp3s0, #53 Apr 23 16:55:58 ltserver2 named[1611]: IPv6 socket API is incomplete; explicitly binding to each IPv6 address separately Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv6 interface lo, ::1#53 Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv6 interface enp3s0, %2#53 Apr 23 16:55:58 ltserver2 named[1611]: unable to set effective uid to 0: Operation not permitted Apr 23 16:55:58 ltserver2 named[1611]: generating session key for dynamic DNS Apr 23 16:55:58 ltserver2 named[1611]: unable to set effective uid to 0: Operation not permitted Apr 23 16:55:58
[Freeipa] [Bug 1874568] Re: Working config in eoan, bind9 fails after upgrade to fossa
@larryschapker You can blacklist packages in unattended-upgrades or mark them for all APT operations (also honored by unattended-upgrades): $ sudo apt-mark hold hello hello set on hold. -- You received this bug notification because you are a member of FreeIPA, which is subscribed to bind-dyndb-ldap in Ubuntu. https://bugs.launchpad.net/bugs/1874568 Title: Working config in eoan, bind9 fails after upgrade to fossa Status in bind package in Ubuntu: Confirmed Status in bind-dyndb-ldap package in Ubuntu: Confirmed Bug description: Configuration was working in Eoan. Just upgraded to Fossa. Bind9(named) will not start. Syslog show the following: Apr 23 16:55:58 ltserver2 named[1611]: starting BIND 9.16.1-Ubuntu (Stable Release) Apr 23 16:55:58 ltserver2 named[1611]: running on Linux x86_64 5.4.0-26-generic #30-Ubuntu SMP Mon Apr 20 16:58:30 UTC 2020 Apr 23 16:55:58 ltserver2 named[1611]: built with '--build=x86_64-linux-gnu' '--prefix=/usr' '--includedir=/usr/include' '--mandir=/usr/share/man' '--infodir=/usr/share/info' '--sysconfdir=/etc' '--localstatedir=/var' '--disable-silent-rules' '--libdir=/usr/lib/x86_64-linux-gnu' '--runstatedir=/run' '--disable-maintainer-mode' '--disable-dependency-tracking' '--libdir=/usr/lib/x86_64-linux-gnu' '--sysconfdir=/etc/bind' '--with-python=python3' '--localstatedir=/' '--enable-threads' '--enable-largefile' '--with-libtool' '--enable-shared' '--enable-static' '--with-gost=no' '--with-openssl=/usr' '--with-gssapi=/usr' '--with-libidn2' '--with-json-c' '--with-lmdb=/usr' '--with-gnu-ld' '--with-maxminddb' '--with-atf=no' '--enable-ipv6' '--enable-rrl' '--enable-filter-' '--disable-native-pkcs11' 'build_alias=x86_64-linux-gnu' 'CFLAGS=-g -O2 -fdebug-prefix-map=/build/bind9-OLooom/bind9-9.16.1=. -fstack-protector-strong -Wformat -Werror=format-security -fno-strict-aliasing -fno-delete-null-pointer-checks -DNO_VERSION_DATE -DDIG_SIGCHASE' 'LDFLAGS=-Wl,-Bsymbolic-functions -Wl,-z,relro -Wl,-z,now' 'CPPFLAGS=-Wdate-time -D_FORTIFY_SOURCE=2' Apr 23 16:55:58 ltserver2 named[1611]: running as: named -f -u bind Apr 23 16:55:58 ltserver2 named[1611]: compiled by GCC 9.3.0 Apr 23 16:55:58 ltserver2 named[1611]: compiled with OpenSSL version: OpenSSL 1.1.1f 31 Mar 2020 Apr 23 16:55:58 ltserver2 named[1611]: linked to OpenSSL version: OpenSSL 1.1.1f 31 Mar 2020 Apr 23 16:55:58 ltserver2 named[1611]: compiled with libxml2 version: 2.9.10 Apr 23 16:55:58 ltserver2 named[1611]: linked to libxml2 version: 20910 Apr 23 16:55:58 ltserver2 named[1611]: compiled with json-c version: 0.13.1 Apr 23 16:55:58 ltserver2 named[1611]: linked to json-c version: 0.13.1 Apr 23 16:55:58 ltserver2 named[1611]: compiled with zlib version: 1.2.11 Apr 23 16:55:58 ltserver2 named[1611]: linked to zlib version: 1.2.11 Apr 23 16:55:58 ltserver2 named[1611]: Apr 23 16:55:58 ltserver2 named[1611]: BIND 9 is maintained by Internet Systems Consortium, Apr 23 16:55:58 ltserver2 named[1611]: Inc. (ISC), a non-profit 501(c)(3) public-benefit Apr 23 16:55:58 ltserver2 named[1611]: corporation. Support and training for BIND 9 are Apr 23 16:55:58 ltserver2 named[1611]: available at https://www.isc.org/support Apr 23 16:55:58 ltserver2 named[1611]: Apr 23 16:55:58 ltserver2 named[1611]: adjusted limit on open files from 524288 to 1048576 Apr 23 16:55:58 ltserver2 named[1611]: found 2 CPUs, using 2 worker threads Apr 23 16:55:58 ltserver2 named[1611]: using 2 UDP listeners per interface Apr 23 16:55:58 ltserver2 named[1611]: using up to 21000 sockets Apr 23 16:55:58 ltserver2 named[1611]: loading configuration from '/etc/bind/named.conf' Apr 23 16:55:58 ltserver2 named[1611]: reading built-in trust anchors from file '/etc/bind/bind.keys' Apr 23 16:55:58 ltserver2 named[1611]: looking for GeoIP2 databases in '/usr/share/GeoIP' Apr 23 16:55:58 ltserver2 named[1611]: using default UDP/IPv4 port range: [32768, 60999] Apr 23 16:55:58 ltserver2 named[1611]: using default UDP/IPv6 port range: [32768, 60999] Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv4 interface enp3s0, #53 Apr 23 16:55:58 ltserver2 named[1611]: IPv6 socket API is incomplete; explicitly binding to each IPv6 address separately Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv6 interface lo, ::1#53 Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv6 interface enp3s0, %2#53 Apr 23 16:55:58 ltserver2 named[1611]: unable to set effective uid to 0: Operation not permitted Apr 23 16:55:58 ltserver2 named[1611]: generating session key for dynamic DNS Apr 23 16:55:58 ltserver2 named[1611]: unable to set effective uid to 0: Operation not permitted Apr 23 16:55:58 ltserver2 named[1611]: sizing zone task pool based on 0 zones Apr 23 16:55:58 ltserver2 named[1611]: none:100: 'max-cache-size 90%' - setting to
[Freeipa] [Bug 1874568] Re: Working config in eoan, bind9 fails after upgrade to fossa
I would like to add that I required to turn off "Unattended-Upgrade" because the next morning, bind9 was back to version 9.16. Go to: https://help.ubuntu.com/community/AutomaticSecurityUpdates?_ga=2.129122693.848380658.1588022835-388947123.1587602982#Determining_the_current_configuration I just made this change, so I hope it doesn't circumvent me again tomorrow... -- You received this bug notification because you are a member of FreeIPA, which is subscribed to bind-dyndb-ldap in Ubuntu. https://bugs.launchpad.net/bugs/1874568 Title: Working config in eoan, bind9 fails after upgrade to fossa Status in bind package in Ubuntu: Confirmed Status in bind-dyndb-ldap package in Ubuntu: Confirmed Bug description: Configuration was working in Eoan. Just upgraded to Fossa. Bind9(named) will not start. Syslog show the following: Apr 23 16:55:58 ltserver2 named[1611]: starting BIND 9.16.1-Ubuntu (Stable Release) Apr 23 16:55:58 ltserver2 named[1611]: running on Linux x86_64 5.4.0-26-generic #30-Ubuntu SMP Mon Apr 20 16:58:30 UTC 2020 Apr 23 16:55:58 ltserver2 named[1611]: built with '--build=x86_64-linux-gnu' '--prefix=/usr' '--includedir=/usr/include' '--mandir=/usr/share/man' '--infodir=/usr/share/info' '--sysconfdir=/etc' '--localstatedir=/var' '--disable-silent-rules' '--libdir=/usr/lib/x86_64-linux-gnu' '--runstatedir=/run' '--disable-maintainer-mode' '--disable-dependency-tracking' '--libdir=/usr/lib/x86_64-linux-gnu' '--sysconfdir=/etc/bind' '--with-python=python3' '--localstatedir=/' '--enable-threads' '--enable-largefile' '--with-libtool' '--enable-shared' '--enable-static' '--with-gost=no' '--with-openssl=/usr' '--with-gssapi=/usr' '--with-libidn2' '--with-json-c' '--with-lmdb=/usr' '--with-gnu-ld' '--with-maxminddb' '--with-atf=no' '--enable-ipv6' '--enable-rrl' '--enable-filter-' '--disable-native-pkcs11' 'build_alias=x86_64-linux-gnu' 'CFLAGS=-g -O2 -fdebug-prefix-map=/build/bind9-OLooom/bind9-9.16.1=. -fstack-protector-strong -Wformat -Werror=format-security -fno-strict-aliasing -fno-delete-null-pointer-checks -DNO_VERSION_DATE -DDIG_SIGCHASE' 'LDFLAGS=-Wl,-Bsymbolic-functions -Wl,-z,relro -Wl,-z,now' 'CPPFLAGS=-Wdate-time -D_FORTIFY_SOURCE=2' Apr 23 16:55:58 ltserver2 named[1611]: running as: named -f -u bind Apr 23 16:55:58 ltserver2 named[1611]: compiled by GCC 9.3.0 Apr 23 16:55:58 ltserver2 named[1611]: compiled with OpenSSL version: OpenSSL 1.1.1f 31 Mar 2020 Apr 23 16:55:58 ltserver2 named[1611]: linked to OpenSSL version: OpenSSL 1.1.1f 31 Mar 2020 Apr 23 16:55:58 ltserver2 named[1611]: compiled with libxml2 version: 2.9.10 Apr 23 16:55:58 ltserver2 named[1611]: linked to libxml2 version: 20910 Apr 23 16:55:58 ltserver2 named[1611]: compiled with json-c version: 0.13.1 Apr 23 16:55:58 ltserver2 named[1611]: linked to json-c version: 0.13.1 Apr 23 16:55:58 ltserver2 named[1611]: compiled with zlib version: 1.2.11 Apr 23 16:55:58 ltserver2 named[1611]: linked to zlib version: 1.2.11 Apr 23 16:55:58 ltserver2 named[1611]: Apr 23 16:55:58 ltserver2 named[1611]: BIND 9 is maintained by Internet Systems Consortium, Apr 23 16:55:58 ltserver2 named[1611]: Inc. (ISC), a non-profit 501(c)(3) public-benefit Apr 23 16:55:58 ltserver2 named[1611]: corporation. Support and training for BIND 9 are Apr 23 16:55:58 ltserver2 named[1611]: available at https://www.isc.org/support Apr 23 16:55:58 ltserver2 named[1611]: Apr 23 16:55:58 ltserver2 named[1611]: adjusted limit on open files from 524288 to 1048576 Apr 23 16:55:58 ltserver2 named[1611]: found 2 CPUs, using 2 worker threads Apr 23 16:55:58 ltserver2 named[1611]: using 2 UDP listeners per interface Apr 23 16:55:58 ltserver2 named[1611]: using up to 21000 sockets Apr 23 16:55:58 ltserver2 named[1611]: loading configuration from '/etc/bind/named.conf' Apr 23 16:55:58 ltserver2 named[1611]: reading built-in trust anchors from file '/etc/bind/bind.keys' Apr 23 16:55:58 ltserver2 named[1611]: looking for GeoIP2 databases in '/usr/share/GeoIP' Apr 23 16:55:58 ltserver2 named[1611]: using default UDP/IPv4 port range: [32768, 60999] Apr 23 16:55:58 ltserver2 named[1611]: using default UDP/IPv6 port range: [32768, 60999] Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv4 interface enp3s0, #53 Apr 23 16:55:58 ltserver2 named[1611]: IPv6 socket API is incomplete; explicitly binding to each IPv6 address separately Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv6 interface lo, ::1#53 Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv6 interface enp3s0, %2#53 Apr 23 16:55:58 ltserver2 named[1611]: unable to set effective uid to 0: Operation not permitted Apr 23 16:55:58 ltserver2 named[1611]: generating session key for dynamic DNS Apr 23 16:55:58 ltserver2 named[1611]: unable to set effective uid to 0: Operation
[Freeipa] [Bug 1874568] Re: Working config in eoan, bind9 fails after upgrade to fossa
I am running with OpenLdap (slapd). I will attempt to downgrade using your instructions. One way or another, we'll get it remedied. Thank you!!! -- You received this bug notification because you are a member of FreeIPA, which is subscribed to bind-dyndb-ldap in Ubuntu. https://bugs.launchpad.net/bugs/1874568 Title: Working config in eoan, bind9 fails after upgrade to fossa Status in bind package in Ubuntu: Confirmed Status in bind-dyndb-ldap package in Ubuntu: Confirmed Bug description: Configuration was working in Eoan. Just upgraded to Fossa. Bind9(named) will not start. Syslog show the following: Apr 23 16:55:58 ltserver2 named[1611]: starting BIND 9.16.1-Ubuntu (Stable Release) Apr 23 16:55:58 ltserver2 named[1611]: running on Linux x86_64 5.4.0-26-generic #30-Ubuntu SMP Mon Apr 20 16:58:30 UTC 2020 Apr 23 16:55:58 ltserver2 named[1611]: built with '--build=x86_64-linux-gnu' '--prefix=/usr' '--includedir=/usr/include' '--mandir=/usr/share/man' '--infodir=/usr/share/info' '--sysconfdir=/etc' '--localstatedir=/var' '--disable-silent-rules' '--libdir=/usr/lib/x86_64-linux-gnu' '--runstatedir=/run' '--disable-maintainer-mode' '--disable-dependency-tracking' '--libdir=/usr/lib/x86_64-linux-gnu' '--sysconfdir=/etc/bind' '--with-python=python3' '--localstatedir=/' '--enable-threads' '--enable-largefile' '--with-libtool' '--enable-shared' '--enable-static' '--with-gost=no' '--with-openssl=/usr' '--with-gssapi=/usr' '--with-libidn2' '--with-json-c' '--with-lmdb=/usr' '--with-gnu-ld' '--with-maxminddb' '--with-atf=no' '--enable-ipv6' '--enable-rrl' '--enable-filter-' '--disable-native-pkcs11' 'build_alias=x86_64-linux-gnu' 'CFLAGS=-g -O2 -fdebug-prefix-map=/build/bind9-OLooom/bind9-9.16.1=. -fstack-protector-strong -Wformat -Werror=format-security -fno-strict-aliasing -fno-delete-null-pointer-checks -DNO_VERSION_DATE -DDIG_SIGCHASE' 'LDFLAGS=-Wl,-Bsymbolic-functions -Wl,-z,relro -Wl,-z,now' 'CPPFLAGS=-Wdate-time -D_FORTIFY_SOURCE=2' Apr 23 16:55:58 ltserver2 named[1611]: running as: named -f -u bind Apr 23 16:55:58 ltserver2 named[1611]: compiled by GCC 9.3.0 Apr 23 16:55:58 ltserver2 named[1611]: compiled with OpenSSL version: OpenSSL 1.1.1f 31 Mar 2020 Apr 23 16:55:58 ltserver2 named[1611]: linked to OpenSSL version: OpenSSL 1.1.1f 31 Mar 2020 Apr 23 16:55:58 ltserver2 named[1611]: compiled with libxml2 version: 2.9.10 Apr 23 16:55:58 ltserver2 named[1611]: linked to libxml2 version: 20910 Apr 23 16:55:58 ltserver2 named[1611]: compiled with json-c version: 0.13.1 Apr 23 16:55:58 ltserver2 named[1611]: linked to json-c version: 0.13.1 Apr 23 16:55:58 ltserver2 named[1611]: compiled with zlib version: 1.2.11 Apr 23 16:55:58 ltserver2 named[1611]: linked to zlib version: 1.2.11 Apr 23 16:55:58 ltserver2 named[1611]: Apr 23 16:55:58 ltserver2 named[1611]: BIND 9 is maintained by Internet Systems Consortium, Apr 23 16:55:58 ltserver2 named[1611]: Inc. (ISC), a non-profit 501(c)(3) public-benefit Apr 23 16:55:58 ltserver2 named[1611]: corporation. Support and training for BIND 9 are Apr 23 16:55:58 ltserver2 named[1611]: available at https://www.isc.org/support Apr 23 16:55:58 ltserver2 named[1611]: Apr 23 16:55:58 ltserver2 named[1611]: adjusted limit on open files from 524288 to 1048576 Apr 23 16:55:58 ltserver2 named[1611]: found 2 CPUs, using 2 worker threads Apr 23 16:55:58 ltserver2 named[1611]: using 2 UDP listeners per interface Apr 23 16:55:58 ltserver2 named[1611]: using up to 21000 sockets Apr 23 16:55:58 ltserver2 named[1611]: loading configuration from '/etc/bind/named.conf' Apr 23 16:55:58 ltserver2 named[1611]: reading built-in trust anchors from file '/etc/bind/bind.keys' Apr 23 16:55:58 ltserver2 named[1611]: looking for GeoIP2 databases in '/usr/share/GeoIP' Apr 23 16:55:58 ltserver2 named[1611]: using default UDP/IPv4 port range: [32768, 60999] Apr 23 16:55:58 ltserver2 named[1611]: using default UDP/IPv6 port range: [32768, 60999] Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv4 interface enp3s0, #53 Apr 23 16:55:58 ltserver2 named[1611]: IPv6 socket API is incomplete; explicitly binding to each IPv6 address separately Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv6 interface lo, ::1#53 Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv6 interface enp3s0, %2#53 Apr 23 16:55:58 ltserver2 named[1611]: unable to set effective uid to 0: Operation not permitted Apr 23 16:55:58 ltserver2 named[1611]: generating session key for dynamic DNS Apr 23 16:55:58 ltserver2 named[1611]: unable to set effective uid to 0: Operation not permitted Apr 23 16:55:58 ltserver2 named[1611]: sizing zone task pool based on 0 zones Apr 23 16:55:58 ltserver2 named[1611]: none:100: 'max-cache-size 90%' - setting to 3513MB (out of 3903MB) Apr 23 16:55:58
[Freeipa] [Bug 1874568] Re: Working config in eoan, bind9 fails after upgrade to fossa
So I think bind9 should've added a Breaks: bind-dyndb-ldap, but we can still add that. The only short-term solution is to downgrade bind9, not sure if the eoan packages actually work on focal still, but at least they install. First you need to have an entry for eoan main in /etc/apt/sources.list and run apt update: echo 'deb http://archive.ubuntu.com/ubuntu/ eoan-updates main restricted' >> /etc/apt/sources.list apt update and then downgrade bind9: apt install bind9=1:9.11.5.P4+dfsg-5.1ubuntu2.1 bind9utils=1:9.11.5.P4+dfsg-5.1ubuntu2.1 libbind9-161=1:9.11.5.P4+dfsg-5.1ubuntu2.1 libisccc161=1:9.11.5.P4+dfsg-5.1ubuntu2.1 libisccfg163=1:9.11.5.P4+dfsg-5.1ubuntu2.1 liblwres161=1:9.11.5.P4+dfsg-5.1ubuntu2.1 ** Changed in: bind (Ubuntu) Status: New => Confirmed -- You received this bug notification because you are a member of FreeIPA, which is subscribed to bind-dyndb-ldap in Ubuntu. https://bugs.launchpad.net/bugs/1874568 Title: Working config in eoan, bind9 fails after upgrade to fossa Status in bind package in Ubuntu: Confirmed Status in bind-dyndb-ldap package in Ubuntu: Confirmed Bug description: Configuration was working in Eoan. Just upgraded to Fossa. Bind9(named) will not start. Syslog show the following: Apr 23 16:55:58 ltserver2 named[1611]: starting BIND 9.16.1-Ubuntu (Stable Release) Apr 23 16:55:58 ltserver2 named[1611]: running on Linux x86_64 5.4.0-26-generic #30-Ubuntu SMP Mon Apr 20 16:58:30 UTC 2020 Apr 23 16:55:58 ltserver2 named[1611]: built with '--build=x86_64-linux-gnu' '--prefix=/usr' '--includedir=/usr/include' '--mandir=/usr/share/man' '--infodir=/usr/share/info' '--sysconfdir=/etc' '--localstatedir=/var' '--disable-silent-rules' '--libdir=/usr/lib/x86_64-linux-gnu' '--runstatedir=/run' '--disable-maintainer-mode' '--disable-dependency-tracking' '--libdir=/usr/lib/x86_64-linux-gnu' '--sysconfdir=/etc/bind' '--with-python=python3' '--localstatedir=/' '--enable-threads' '--enable-largefile' '--with-libtool' '--enable-shared' '--enable-static' '--with-gost=no' '--with-openssl=/usr' '--with-gssapi=/usr' '--with-libidn2' '--with-json-c' '--with-lmdb=/usr' '--with-gnu-ld' '--with-maxminddb' '--with-atf=no' '--enable-ipv6' '--enable-rrl' '--enable-filter-' '--disable-native-pkcs11' 'build_alias=x86_64-linux-gnu' 'CFLAGS=-g -O2 -fdebug-prefix-map=/build/bind9-OLooom/bind9-9.16.1=. -fstack-protector-strong -Wformat -Werror=format-security -fno-strict-aliasing -fno-delete-null-pointer-checks -DNO_VERSION_DATE -DDIG_SIGCHASE' 'LDFLAGS=-Wl,-Bsymbolic-functions -Wl,-z,relro -Wl,-z,now' 'CPPFLAGS=-Wdate-time -D_FORTIFY_SOURCE=2' Apr 23 16:55:58 ltserver2 named[1611]: running as: named -f -u bind Apr 23 16:55:58 ltserver2 named[1611]: compiled by GCC 9.3.0 Apr 23 16:55:58 ltserver2 named[1611]: compiled with OpenSSL version: OpenSSL 1.1.1f 31 Mar 2020 Apr 23 16:55:58 ltserver2 named[1611]: linked to OpenSSL version: OpenSSL 1.1.1f 31 Mar 2020 Apr 23 16:55:58 ltserver2 named[1611]: compiled with libxml2 version: 2.9.10 Apr 23 16:55:58 ltserver2 named[1611]: linked to libxml2 version: 20910 Apr 23 16:55:58 ltserver2 named[1611]: compiled with json-c version: 0.13.1 Apr 23 16:55:58 ltserver2 named[1611]: linked to json-c version: 0.13.1 Apr 23 16:55:58 ltserver2 named[1611]: compiled with zlib version: 1.2.11 Apr 23 16:55:58 ltserver2 named[1611]: linked to zlib version: 1.2.11 Apr 23 16:55:58 ltserver2 named[1611]: Apr 23 16:55:58 ltserver2 named[1611]: BIND 9 is maintained by Internet Systems Consortium, Apr 23 16:55:58 ltserver2 named[1611]: Inc. (ISC), a non-profit 501(c)(3) public-benefit Apr 23 16:55:58 ltserver2 named[1611]: corporation. Support and training for BIND 9 are Apr 23 16:55:58 ltserver2 named[1611]: available at https://www.isc.org/support Apr 23 16:55:58 ltserver2 named[1611]: Apr 23 16:55:58 ltserver2 named[1611]: adjusted limit on open files from 524288 to 1048576 Apr 23 16:55:58 ltserver2 named[1611]: found 2 CPUs, using 2 worker threads Apr 23 16:55:58 ltserver2 named[1611]: using 2 UDP listeners per interface Apr 23 16:55:58 ltserver2 named[1611]: using up to 21000 sockets Apr 23 16:55:58 ltserver2 named[1611]: loading configuration from '/etc/bind/named.conf' Apr 23 16:55:58 ltserver2 named[1611]: reading built-in trust anchors from file '/etc/bind/bind.keys' Apr 23 16:55:58 ltserver2 named[1611]: looking for GeoIP2 databases in '/usr/share/GeoIP' Apr 23 16:55:58 ltserver2 named[1611]: using default UDP/IPv4 port range: [32768, 60999] Apr 23 16:55:58 ltserver2 named[1611]: using default UDP/IPv6 port range: [32768, 60999] Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv4 interface enp3s0, #53 Apr 23 16:55:58 ltserver2 named[1611]: IPv6 socket API is incomplete; explicitly binding to each IPv6 address separately Apr 23 16:55:58
[Freeipa] [Bug 1874568] Re: Working config in eoan, bind9 fails after upgrade to fossa
** Also affects: bind (Ubuntu) Importance: Undecided Status: New -- You received this bug notification because you are a member of FreeIPA, which is subscribed to bind-dyndb-ldap in Ubuntu. https://bugs.launchpad.net/bugs/1874568 Title: Working config in eoan, bind9 fails after upgrade to fossa Status in bind package in Ubuntu: New Status in bind-dyndb-ldap package in Ubuntu: Confirmed Bug description: Configuration was working in Eoan. Just upgraded to Fossa. Bind9(named) will not start. Syslog show the following: Apr 23 16:55:58 ltserver2 named[1611]: starting BIND 9.16.1-Ubuntu (Stable Release) Apr 23 16:55:58 ltserver2 named[1611]: running on Linux x86_64 5.4.0-26-generic #30-Ubuntu SMP Mon Apr 20 16:58:30 UTC 2020 Apr 23 16:55:58 ltserver2 named[1611]: built with '--build=x86_64-linux-gnu' '--prefix=/usr' '--includedir=/usr/include' '--mandir=/usr/share/man' '--infodir=/usr/share/info' '--sysconfdir=/etc' '--localstatedir=/var' '--disable-silent-rules' '--libdir=/usr/lib/x86_64-linux-gnu' '--runstatedir=/run' '--disable-maintainer-mode' '--disable-dependency-tracking' '--libdir=/usr/lib/x86_64-linux-gnu' '--sysconfdir=/etc/bind' '--with-python=python3' '--localstatedir=/' '--enable-threads' '--enable-largefile' '--with-libtool' '--enable-shared' '--enable-static' '--with-gost=no' '--with-openssl=/usr' '--with-gssapi=/usr' '--with-libidn2' '--with-json-c' '--with-lmdb=/usr' '--with-gnu-ld' '--with-maxminddb' '--with-atf=no' '--enable-ipv6' '--enable-rrl' '--enable-filter-' '--disable-native-pkcs11' 'build_alias=x86_64-linux-gnu' 'CFLAGS=-g -O2 -fdebug-prefix-map=/build/bind9-OLooom/bind9-9.16.1=. -fstack-protector-strong -Wformat -Werror=format-security -fno-strict-aliasing -fno-delete-null-pointer-checks -DNO_VERSION_DATE -DDIG_SIGCHASE' 'LDFLAGS=-Wl,-Bsymbolic-functions -Wl,-z,relro -Wl,-z,now' 'CPPFLAGS=-Wdate-time -D_FORTIFY_SOURCE=2' Apr 23 16:55:58 ltserver2 named[1611]: running as: named -f -u bind Apr 23 16:55:58 ltserver2 named[1611]: compiled by GCC 9.3.0 Apr 23 16:55:58 ltserver2 named[1611]: compiled with OpenSSL version: OpenSSL 1.1.1f 31 Mar 2020 Apr 23 16:55:58 ltserver2 named[1611]: linked to OpenSSL version: OpenSSL 1.1.1f 31 Mar 2020 Apr 23 16:55:58 ltserver2 named[1611]: compiled with libxml2 version: 2.9.10 Apr 23 16:55:58 ltserver2 named[1611]: linked to libxml2 version: 20910 Apr 23 16:55:58 ltserver2 named[1611]: compiled with json-c version: 0.13.1 Apr 23 16:55:58 ltserver2 named[1611]: linked to json-c version: 0.13.1 Apr 23 16:55:58 ltserver2 named[1611]: compiled with zlib version: 1.2.11 Apr 23 16:55:58 ltserver2 named[1611]: linked to zlib version: 1.2.11 Apr 23 16:55:58 ltserver2 named[1611]: Apr 23 16:55:58 ltserver2 named[1611]: BIND 9 is maintained by Internet Systems Consortium, Apr 23 16:55:58 ltserver2 named[1611]: Inc. (ISC), a non-profit 501(c)(3) public-benefit Apr 23 16:55:58 ltserver2 named[1611]: corporation. Support and training for BIND 9 are Apr 23 16:55:58 ltserver2 named[1611]: available at https://www.isc.org/support Apr 23 16:55:58 ltserver2 named[1611]: Apr 23 16:55:58 ltserver2 named[1611]: adjusted limit on open files from 524288 to 1048576 Apr 23 16:55:58 ltserver2 named[1611]: found 2 CPUs, using 2 worker threads Apr 23 16:55:58 ltserver2 named[1611]: using 2 UDP listeners per interface Apr 23 16:55:58 ltserver2 named[1611]: using up to 21000 sockets Apr 23 16:55:58 ltserver2 named[1611]: loading configuration from '/etc/bind/named.conf' Apr 23 16:55:58 ltserver2 named[1611]: reading built-in trust anchors from file '/etc/bind/bind.keys' Apr 23 16:55:58 ltserver2 named[1611]: looking for GeoIP2 databases in '/usr/share/GeoIP' Apr 23 16:55:58 ltserver2 named[1611]: using default UDP/IPv4 port range: [32768, 60999] Apr 23 16:55:58 ltserver2 named[1611]: using default UDP/IPv6 port range: [32768, 60999] Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv4 interface enp3s0, #53 Apr 23 16:55:58 ltserver2 named[1611]: IPv6 socket API is incomplete; explicitly binding to each IPv6 address separately Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv6 interface lo, ::1#53 Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv6 interface enp3s0, %2#53 Apr 23 16:55:58 ltserver2 named[1611]: unable to set effective uid to 0: Operation not permitted Apr 23 16:55:58 ltserver2 named[1611]: generating session key for dynamic DNS Apr 23 16:55:58 ltserver2 named[1611]: unable to set effective uid to 0: Operation not permitted Apr 23 16:55:58 ltserver2 named[1611]: sizing zone task pool based on 0 zones Apr 23 16:55:58 ltserver2 named[1611]: none:100: 'max-cache-size 90%' - setting to 3513MB (out of 3903MB) Apr 23 16:55:58 ltserver2 named[1611]: set up managed keys zone for view _default, file
[Freeipa] [Bug 1874568] Re: Working config in eoan, bind9 fails after upgrade to fossa
Yes, it won't work until it has been ported to 9.16, and that didn't make it in focal, but probably as an SRU later. Are you running freeipa-server? Did you not notice it's not even available in focal? ** Changed in: bind-dyndb-ldap (Ubuntu) Status: New => Confirmed -- You received this bug notification because you are a member of FreeIPA, which is subscribed to bind-dyndb-ldap in Ubuntu. https://bugs.launchpad.net/bugs/1874568 Title: Working config in eoan, bind9 fails after upgrade to fossa Status in bind-dyndb-ldap package in Ubuntu: Confirmed Bug description: Configuration was working in Eoan. Just upgraded to Fossa. Bind9(named) will not start. Syslog show the following: Apr 23 16:55:58 ltserver2 named[1611]: starting BIND 9.16.1-Ubuntu (Stable Release) Apr 23 16:55:58 ltserver2 named[1611]: running on Linux x86_64 5.4.0-26-generic #30-Ubuntu SMP Mon Apr 20 16:58:30 UTC 2020 Apr 23 16:55:58 ltserver2 named[1611]: built with '--build=x86_64-linux-gnu' '--prefix=/usr' '--includedir=/usr/include' '--mandir=/usr/share/man' '--infodir=/usr/share/info' '--sysconfdir=/etc' '--localstatedir=/var' '--disable-silent-rules' '--libdir=/usr/lib/x86_64-linux-gnu' '--runstatedir=/run' '--disable-maintainer-mode' '--disable-dependency-tracking' '--libdir=/usr/lib/x86_64-linux-gnu' '--sysconfdir=/etc/bind' '--with-python=python3' '--localstatedir=/' '--enable-threads' '--enable-largefile' '--with-libtool' '--enable-shared' '--enable-static' '--with-gost=no' '--with-openssl=/usr' '--with-gssapi=/usr' '--with-libidn2' '--with-json-c' '--with-lmdb=/usr' '--with-gnu-ld' '--with-maxminddb' '--with-atf=no' '--enable-ipv6' '--enable-rrl' '--enable-filter-' '--disable-native-pkcs11' 'build_alias=x86_64-linux-gnu' 'CFLAGS=-g -O2 -fdebug-prefix-map=/build/bind9-OLooom/bind9-9.16.1=. -fstack-protector-strong -Wformat -Werror=format-security -fno-strict-aliasing -fno-delete-null-pointer-checks -DNO_VERSION_DATE -DDIG_SIGCHASE' 'LDFLAGS=-Wl,-Bsymbolic-functions -Wl,-z,relro -Wl,-z,now' 'CPPFLAGS=-Wdate-time -D_FORTIFY_SOURCE=2' Apr 23 16:55:58 ltserver2 named[1611]: running as: named -f -u bind Apr 23 16:55:58 ltserver2 named[1611]: compiled by GCC 9.3.0 Apr 23 16:55:58 ltserver2 named[1611]: compiled with OpenSSL version: OpenSSL 1.1.1f 31 Mar 2020 Apr 23 16:55:58 ltserver2 named[1611]: linked to OpenSSL version: OpenSSL 1.1.1f 31 Mar 2020 Apr 23 16:55:58 ltserver2 named[1611]: compiled with libxml2 version: 2.9.10 Apr 23 16:55:58 ltserver2 named[1611]: linked to libxml2 version: 20910 Apr 23 16:55:58 ltserver2 named[1611]: compiled with json-c version: 0.13.1 Apr 23 16:55:58 ltserver2 named[1611]: linked to json-c version: 0.13.1 Apr 23 16:55:58 ltserver2 named[1611]: compiled with zlib version: 1.2.11 Apr 23 16:55:58 ltserver2 named[1611]: linked to zlib version: 1.2.11 Apr 23 16:55:58 ltserver2 named[1611]: Apr 23 16:55:58 ltserver2 named[1611]: BIND 9 is maintained by Internet Systems Consortium, Apr 23 16:55:58 ltserver2 named[1611]: Inc. (ISC), a non-profit 501(c)(3) public-benefit Apr 23 16:55:58 ltserver2 named[1611]: corporation. Support and training for BIND 9 are Apr 23 16:55:58 ltserver2 named[1611]: available at https://www.isc.org/support Apr 23 16:55:58 ltserver2 named[1611]: Apr 23 16:55:58 ltserver2 named[1611]: adjusted limit on open files from 524288 to 1048576 Apr 23 16:55:58 ltserver2 named[1611]: found 2 CPUs, using 2 worker threads Apr 23 16:55:58 ltserver2 named[1611]: using 2 UDP listeners per interface Apr 23 16:55:58 ltserver2 named[1611]: using up to 21000 sockets Apr 23 16:55:58 ltserver2 named[1611]: loading configuration from '/etc/bind/named.conf' Apr 23 16:55:58 ltserver2 named[1611]: reading built-in trust anchors from file '/etc/bind/bind.keys' Apr 23 16:55:58 ltserver2 named[1611]: looking for GeoIP2 databases in '/usr/share/GeoIP' Apr 23 16:55:58 ltserver2 named[1611]: using default UDP/IPv4 port range: [32768, 60999] Apr 23 16:55:58 ltserver2 named[1611]: using default UDP/IPv6 port range: [32768, 60999] Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv4 interface enp3s0, #53 Apr 23 16:55:58 ltserver2 named[1611]: IPv6 socket API is incomplete; explicitly binding to each IPv6 address separately Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv6 interface lo, ::1#53 Apr 23 16:55:58 ltserver2 named[1611]: listening on IPv6 interface enp3s0, %2#53 Apr 23 16:55:58 ltserver2 named[1611]: unable to set effective uid to 0: Operation not permitted Apr 23 16:55:58 ltserver2 named[1611]: generating session key for dynamic DNS Apr 23 16:55:58 ltserver2 named[1611]: unable to set effective uid to 0: Operation not permitted Apr 23 16:55:58 ltserver2 named[1611]: sizing zone task pool based on 0 zones Apr 23 16:55:58 ltserver2 named[1611]: