Click to See Complete Forum and Search --> : Upgrading bind 8 to bind 9


The Tank
03-02-2001, 11:00 AM
Ok this is how it is. I have been asked by my new company to upgrade bind 8 to bind 9 I thought it was a test but no one here knows how to do it. I have downloaded bind 9 (pretty sure that I had the right version) and uploaded to the server (remote). I then followed through the make install stuff etc.

I killed the old bind wuhay!! and sure enough no sites were visible. So I went to start the new bind. Nothing happened in as far as I can't see any site. Am I missing something out here do I have to transfer the record files from the /etc/named-conf thingy??? Very confused. Any help would be appreciated. Also I need to integrate this with webmin except I can't find any info on doing this.??? :mad: :mad: :mad: :mad: :mad: :mad: :confused:

Lorithar
03-02-2001, 11:29 AM
*ouch*

You did this in production? oh boy.
I suspect from hints that I've read in the past that named.conf actually changed format slitghtly between 8 and 9 .. let me hit the site and pull some files.. (I'm on HSE so it will be quick.) ... I'll let ya know what I can see in a little while.

Lorithar
03-02-2001, 11:51 AM
*eeps*

from the looks of the file
bind-9.1.10/doc/misc/migration
there is a fair bit of work to be done in converting the setup files /etc/named.conf
and the individual zone files.
This is of course dependent on the state in which those files were during the bind 8 implementation. I realize now why I am not likely to be upgrading any time soon.

I suppose the dnssec functions are why the company wants the upgrade .. but to provide detailed pointers at the moment it beyond me. I hope you can roll back to the original with little problem.

1) you will need to rewrite any zone files for which your server is authoratative, ensuring that they are RFC compliant to DNSSEC .. this has much to do with grammar and punctuation since most of the nasty holes in the 8 series were caused by stack hacks that used sloppy punctuation and string conversion to pop a shell.

2) you WILL have to rewrite named.conf from what I can see on first read.

3) ndc is now rndc ... and requires a config file ... which makes control a little more secure I guess.

I don't know what level you are looking at this from but if you need more detailed help , I am prowling as we speak. email me.

jchau
04-17-2003, 09:03 PM
hi,

i saw the thread on upgrading from bind 8 to 9. i was wondering what the outcome was? i have three dns servers running redhat 6.2 and bind 8.2.3 i want to be able to upgrade to bind 9 and also upgrade the os too. any help would be appreciated. thanks.

-jeremy

jchau
04-17-2003, 09:05 PM
i also have 2 dns servers running redhat 5.2 with bind 4 and want to upgrade those as well to bind 9 and a current os

thanks,
-jeremy