]> git.ipfire.org Git - thirdparty/pdns.git/log
thirdparty/pdns.git
6 years agoregression-tests.recursor-dnssec: make this somewhat usable on macOS
Chris Hofstaedtler [Mon, 27 Nov 2017 14:09:10 +0000 (15:09 +0100)] 
regression-tests.recursor-dnssec: make this somewhat usable on macOS

6 years agoregression-tests.recursor-dnssec: improve equality test output
Chris Hofstaedtler [Mon, 27 Nov 2017 14:06:02 +0000 (15:06 +0100)] 
regression-tests.recursor-dnssec: improve equality test output

6 years agoRecursor: add ecs-add-for option
Chris Hofstaedtler [Sun, 26 Nov 2017 19:30:24 +0000 (20:30 +0100)] 
Recursor: add ecs-add-for option

6 years agoMerge pull request #6057 from zeha/combo-ipv6
Remi Gacogne [Fri, 8 Dec 2017 09:18:47 +0000 (10:18 +0100)] 
Merge pull request #6057 from zeha/combo-ipv6

Handle bracketed IPv6 addresses without ports

6 years agoMerge pull request #6061 from rgacogne/docs-regression-tests-typos
Remi Gacogne [Wed, 6 Dec 2017 14:11:10 +0000 (15:11 +0100)] 
Merge pull request #6061 from rgacogne/docs-regression-tests-typos

Docs: Fix minor typos in the regression tests README

6 years agoDrop useless if branch 6057/head
Chris Hofstaedtler [Wed, 6 Dec 2017 09:44:08 +0000 (10:44 +0100)] 
Drop useless if branch

6 years agoMerge pull request #6022 from rgacogne/dnsdist-api-pools-cache-hits
Remi Gacogne [Wed, 6 Dec 2017 09:07:39 +0000 (10:07 +0100)] 
Merge pull request #6022 from rgacogne/dnsdist-api-pools-cache-hits

dnsdist: Add Pools, cacheHitResponseRules to the API

6 years agoDocs: Fix minor typos in the regression tests README 6061/head
Remi Gacogne [Wed, 6 Dec 2017 09:03:11 +0000 (10:03 +0100)] 
Docs: Fix minor typos in the regression tests README

6 years agoMerge pull request #6058 from pieterlexis/docs-from-swagger
Pieter Lexis [Wed, 6 Dec 2017 08:54:47 +0000 (09:54 +0100)] 
Merge pull request #6058 from pieterlexis/docs-from-swagger

Auth: Generate API documentation based on swagger file

6 years agoMerge pull request #6059 from cyclops1982/docfix
Pieter Lexis [Wed, 6 Dec 2017 08:54:22 +0000 (09:54 +0100)] 
Merge pull request #6059 from cyclops1982/docfix

Small changes to docs that can help contributors

6 years agoMerge pull request #6055 from rgacogne/rec-negcache-32
Pieter Lexis [Wed, 6 Dec 2017 08:52:22 +0000 (09:52 +0100)] 
Merge pull request #6055 from rgacogne/rec-negcache-32

rec: Work around a RRSIG year-2038 issue in the negcache unit tests

6 years agoMove debian-jessie notes to a less prominent place 6059/head
Ruben d'Arco [Tue, 5 Dec 2017 18:14:24 +0000 (18:14 +0000)] 
Move debian-jessie notes to a less prominent place

6 years agoSmall notes on needed tools for tests
Ruben d'Arco [Tue, 5 Dec 2017 18:11:06 +0000 (18:11 +0000)] 
Small notes on needed tools for tests

6 years agoAuth: Generate API documentation based on swagger file 6058/head
Pieter Lexis [Tue, 21 Nov 2017 17:09:30 +0000 (18:09 +0100)] 
Auth: Generate API documentation based on swagger file

6 years agoHandle bracketed IPv6 addresses without ports
Chris Hofstaedtler [Tue, 5 Dec 2017 17:13:25 +0000 (18:13 +0100)] 
Handle bracketed IPv6 addresses without ports

dnsdist's newServer source parameter is documented to take values
of those forms (plus some more):
  - v4 address ("192.0.2.1")
  - v6 address ("2001:DB8::1")

For consistency, bracketed addresses should work too, and all of them
should have a test.

6 years agoSome utils that debian-jessie has in docs
Ruben d'Arco [Tue, 5 Dec 2017 16:46:04 +0000 (16:46 +0000)] 
Some utils that debian-jessie has in docs

6 years agoFor building docs, virtualenv is needed.
Ruben d'Arco [Tue, 5 Dec 2017 16:39:15 +0000 (16:39 +0000)] 
For building docs, virtualenv is needed.

6 years agorec: Work around a RRSIG year-2038 issue in the negcache unit tests 6055/head
Remi Gacogne [Tue, 5 Dec 2017 13:47:39 +0000 (14:47 +0100)] 
rec: Work around a RRSIG year-2038 issue in the negcache unit tests

On 32-bit OS with a signed 32-bit `time_t`, we have a known issue with
dates later than 2038 in `RecordTextWriter::xfrTime()`. For now we will
just use an earlier date than 2038 in these tests since the date has no
relevance there.

6 years agoMerge pull request #6012 from rgacogne/dnsdist-tcp-ka
Remi Gacogne [Tue, 5 Dec 2017 13:39:20 +0000 (14:39 +0100)] 
Merge pull request #6012 from rgacogne/dnsdist-tcp-ka

dnsdist: Keep the TCP connection open on cache hit, generated answers

6 years agoMerge pull request #6043 from rgacogne/dnsdist-fix-servers-order
Remi Gacogne [Tue, 5 Dec 2017 13:38:39 +0000 (14:38 +0100)] 
Merge pull request #6043 from rgacogne/dnsdist-fix-servers-order

dnsdist: Sort the servers based on their 'order' after it has been set

6 years agoMerge pull request #5862 from ffledgling/5854-swagger-api
Pieter Lexis [Tue, 5 Dec 2017 12:55:11 +0000 (13:55 +0100)] 
Merge pull request #5862 from ffledgling/5854-swagger-api

Add Draft of swagger spec for Authoritative Server HTTP API

6 years agoSwagger: bump version 5862/head
Pieter Lexis [Tue, 5 Dec 2017 11:24:23 +0000 (12:24 +0100)] 
Swagger: bump version

6 years agoSwagger: update description
Pieter Lexis [Tue, 5 Dec 2017 11:24:02 +0000 (12:24 +0100)] 
Swagger: update description

6 years agoMerge pull request #6046 from pieterlexis/rec-40-EOL
bert hubert [Tue, 5 Dec 2017 11:21:58 +0000 (12:21 +0100)] 
Merge pull request #6046 from pieterlexis/rec-40-EOL

Recursor: update EOL statements

6 years agoRename listCryptokey to getCryptokey
Pieter Lexis [Tue, 5 Dec 2017 11:21:34 +0000 (12:21 +0100)] 
Rename listCryptokey to getCryptokey

6 years agoMerge pull request #6047 from RvdE/patch-2
Pieter Lexis [Mon, 4 Dec 2017 18:56:13 +0000 (19:56 +0100)] 
Merge pull request #6047 from RvdE/patch-2

Update recursion.rst

6 years agoMerge pull request #6033 from pieterlexis/doc-updates
Pieter Lexis [Mon, 4 Dec 2017 18:55:59 +0000 (19:55 +0100)] 
Merge pull request #6033 from pieterlexis/doc-updates

A collection of documentation updates

6 years agoMerge pull request #5994 from zeha/macosnotes
Pieter Lexis [Mon, 4 Dec 2017 18:55:45 +0000 (19:55 +0100)] 
Merge pull request #5994 from zeha/macosnotes

Update/add macOS compilation notes

6 years agoRecursor: Fix some manpage issues 6033/head
Pieter Lexis [Fri, 1 Dec 2017 10:48:53 +0000 (11:48 +0100)] 
Recursor: Fix some manpage issues

6 years agoUpdate recursion.rst 6047/head
RvdE [Mon, 4 Dec 2017 15:23:05 +0000 (16:23 +0100)] 
Update recursion.rst

Fix newServer statements in the dnsdist config and fix duplicate sesion 4.

6 years agoRecursor: update EOL statements 6046/head
Pieter Lexis [Mon, 4 Dec 2017 15:14:06 +0000 (16:14 +0100)] 
Recursor: update EOL statements

6 years agodnsdist: fix some manpage issues
Pieter Lexis [Fri, 1 Dec 2017 10:45:40 +0000 (11:45 +0100)] 
dnsdist: fix some manpage issues

6 years agodocs: Fix the Authoritative Server manpages' intro
Pieter Lexis [Fri, 1 Dec 2017 10:35:46 +0000 (11:35 +0100)] 
docs: Fix the Authoritative Server manpages' intro

Also set the name to PowerDNS Authoritative Server.

6 years agodocs: Document `newRemoteLogger` in dnsdist
Pieter Lexis [Fri, 1 Dec 2017 10:08:21 +0000 (11:08 +0100)] 
docs: Document `newRemoteLogger` in dnsdist

6 years agoMerge pull request #6017 from aerique:feature/update-rec-4.1.0-changelog.
aerique [Mon, 4 Dec 2017 13:47:41 +0000 (14:47 +0100)] 
Merge pull request #6017 from aerique:feature/update-rec-4.1.0-changelog.

Update changelog and secpoll for 4.1.0.

6 years agoMerge pull request #6041 from rgacogne/mplexer-time rec-4.1.0
Peter van Dijk [Mon, 4 Dec 2017 11:34:00 +0000 (12:34 +0100)] 
Merge pull request #6041 from rgacogne/mplexer-time

Add the missing <sys/time.h> include to mplexer.hh for struct timeval

6 years agodnsdist: Sort the servers based on their 'order' after it has been set 6043/head
Remi Gacogne [Mon, 4 Dec 2017 11:22:19 +0000 (12:22 +0100)] 
dnsdist: Sort the servers based on their 'order' after it has been set

We keep the servers ordered inside their pools because it's easier
for the policies that way, so we sort them whenever a new one is
added. However we were doing the sorting _before_ the order of the
new server had been set, resulting in the last added server to be
sorted based on an order of 0, regardless of its actual order.
Reported by Frank Even (thanks!).

6 years agoAdd the missing <sys/time.h> include to mplexer.hh for struct timeval 6041/head
Remi Gacogne [Mon, 4 Dec 2017 08:41:49 +0000 (09:41 +0100)] 
Add the missing <sys/time.h> include to mplexer.hh for struct timeval

6 years agoMerge pull request #6023 from rgacogne/dnsdist-ebpf-doc
Pieter Lexis [Fri, 1 Dec 2017 15:50:40 +0000 (16:50 +0100)] 
Merge pull request #6023 from rgacogne/dnsdist-ebpf-doc

dnsdist: Add missing documentation about ClientState, eBPF dynamic filters

6 years agoMerge pull request #5956 from job/priv_drop
Pieter Lexis [Fri, 1 Dec 2017 15:50:15 +0000 (16:50 +0100)] 
Merge pull request #5956 from job/priv_drop

Priv drop

6 years agoMerge pull request #6034 from Habbie/ragel-path
Peter van Dijk [Fri, 1 Dec 2017 15:16:28 +0000 (16:16 +0100)] 
Merge pull request #6034 from Habbie/ragel-path

centralise ragel check+remove .cc symlink

6 years agoMerge pull request #6032 from rgacogne/rec-getrr-cleanup
bert hubert [Fri, 1 Dec 2017 12:22:41 +0000 (13:22 +0100)] 
Merge pull request #6032 from rgacogne/rec-getrr-cleanup

rec: Use getRR<T>() instead of directly using a dynamic cast

6 years agoremove spurious symlink 6034/head
Peter van Dijk [Fri, 1 Dec 2017 12:10:36 +0000 (13:10 +0100)] 
remove spurious symlink

6 years agocentralise ragel check
Peter van Dijk [Fri, 1 Dec 2017 12:00:10 +0000 (13:00 +0100)] 
centralise ragel check

6 years agoMerge pull request #6020 from rgacogne/auth-testrunner-log
Pieter Lexis [Fri, 1 Dec 2017 11:01:22 +0000 (12:01 +0100)] 
Merge pull request #6020 from rgacogne/auth-testrunner-log

Travis: Display the content of the logs when the auth unit tests fail

6 years agoMerge pull request #6025 from pieterlexis/fix-changelog-blog-url
Pieter Lexis [Fri, 1 Dec 2017 11:01:08 +0000 (12:01 +0100)] 
Merge pull request #6025 from pieterlexis/fix-changelog-blog-url

Fix 4.1.0 changelog blog url

6 years agoMerge pull request #6026 from pieterlexis/update-EOL
Pieter Lexis [Fri, 1 Dec 2017 11:00:54 +0000 (12:00 +0100)] 
Merge pull request #6026 from pieterlexis/update-EOL

[WIP] Update auth EOL statement on Auth

6 years agoMerge pull request #6027 from rgacogne/rec-regression-tests-rpz-ttl
Pieter Lexis [Fri, 1 Dec 2017 11:00:40 +0000 (12:00 +0100)] 
Merge pull request #6027 from rgacogne/rec-regression-tests-rpz-ttl

rec: Normalize the TTLs for default.example.net. in the RPZ tests

6 years agoMerge pull request #6029 from Habbie/alias-nocompress
Pieter Lexis [Fri, 1 Dec 2017 11:00:20 +0000 (12:00 +0100)] 
Merge pull request #6029 from Habbie/alias-nocompress

forbid label compression in ALIAS wire format

6 years agorec: Use getRR<T>() instead of directly using a dynamic cast 6032/head
Remi Gacogne [Fri, 1 Dec 2017 10:18:25 +0000 (11:18 +0100)] 
rec: Use getRR<T>() instead of directly using a dynamic cast

6 years agoforbid label compression in ALIAS wire format 6029/head
Peter van Dijk [Thu, 30 Nov 2017 18:20:41 +0000 (19:20 +0100)] 
forbid label compression in ALIAS wire format

fixes #6028

6 years agoMerge pull request #6024 from Habbie/builder-version
Peter van Dijk [Thu, 30 Nov 2017 15:58:37 +0000 (16:58 +0100)] 
Merge pull request #6024 from Habbie/builder-version

add preliminary pdns-builder support

6 years agoadd explicit 3.x statement, clarify we offer commercial support beyond EOL. 6026/head
bert hubert [Thu, 30 Nov 2017 15:47:15 +0000 (16:47 +0100)] 
add explicit 3.x statement, clarify we offer commercial support beyond EOL.

6 years agorec: Normalize the TTLs for default.example.net. in the RPZ tests 6027/head
Remi Gacogne [Thu, 30 Nov 2017 14:29:30 +0000 (15:29 +0100)] 
rec: Normalize the TTLs for default.example.net. in the RPZ tests

Since we ask for several records that are CNAME to default.example.net.
the TTL might have been decreased by the time we get to the last ones.
That's fine, the TTL we are interested in are for other records, so we
can just ignore the TTL for this exact record.

6 years agoFix 4.1.0 changelog blog url 6025/head
Pieter Lexis [Thu, 30 Nov 2017 13:08:53 +0000 (14:08 +0100)] 
Fix 4.1.0 changelog blog url

6 years agoadd preliminary pdns-builder support 6024/head
Peter van Dijk [Thu, 30 Nov 2017 12:34:09 +0000 (13:34 +0100)] 
add preliminary pdns-builder support

6 years agodnsdist: Add missing documentation about ClientState, eBPF dynamic filters 6023/head
Remi Gacogne [Thu, 30 Nov 2017 11:57:37 +0000 (12:57 +0100)] 
dnsdist: Add missing documentation about ClientState, eBPF dynamic filters

6 years agodnsdist: Add Pools, cacheHitResponseRules to the API 6022/head
Remi Gacogne [Thu, 30 Nov 2017 09:47:34 +0000 (10:47 +0100)] 
dnsdist: Add Pools, cacheHitResponseRules to the API

6 years agoMerge pull request #6016 from aerique:feature/update-auth-4.1.0-changelog. auth-4.1.0
aerique [Thu, 30 Nov 2017 09:33:09 +0000 (10:33 +0100)] 
Merge pull request #6016 from aerique:feature/update-auth-4.1.0-changelog.

Update changelog and secpoll for 4.1.0.

6 years agoTravis: Display the content of the logs when the auth unit tests fail 6020/head
Remi Gacogne [Wed, 29 Nov 2017 11:09:22 +0000 (12:09 +0100)] 
Travis: Display the content of the logs when the auth unit tests fail

6 years agoMerge pull request #6006 from rgacogne/nixu-5.3.4
aerique [Tue, 28 Nov 2017 20:21:28 +0000 (21:21 +0100)] 
Merge pull request #6006 from rgacogne/nixu-5.3.4

rec: Sanitize values received from the API before writing them to the conf

6 years agoMerge pull request #6011 from ahupowerdns/quote-server-id
aerique [Tue, 28 Nov 2017 15:53:22 +0000 (16:53 +0100)] 
Merge pull request #6011 from ahupowerdns/quote-server-id

quote server-id to hosts with - or . in their name get reported again

6 years agoMerge pull request #6015 from Habbie/id.server
aerique [Tue, 28 Nov 2017 15:53:08 +0000 (16:53 +0100)] 
Merge pull request #6015 from Habbie/id.server

it's id.server, not server.id

6 years agonit 6015/head
Peter van Dijk [Tue, 28 Nov 2017 13:18:44 +0000 (14:18 +0100)] 
nit

6 years agoMerge pull request #6000 from rgacogne/rec-authzone-validation
Pieter Lexis [Tue, 28 Nov 2017 12:33:18 +0000 (13:33 +0100)] 
Merge pull request #6000 from rgacogne/rec-authzone-validation

rec: Skip validation (including cached entries) for auth zones

6 years agoMerge pull request #6001 from zeha/secpoll-servfail
Pieter Lexis [Tue, 28 Nov 2017 12:33:03 +0000 (13:33 +0100)] 
Merge pull request #6001 from zeha/secpoll-servfail

recursor secpoll: improve message on timeout

6 years agoMerge pull request #6009 from rgacogne/rec-zone-part-signer
Pieter Lexis [Tue, 28 Nov 2017 12:32:39 +0000 (13:32 +0100)] 
Merge pull request #6009 from rgacogne/rec-zone-part-signer

rec: When validating DNSKeys, the zone should be part of the signer

6 years agoMerge pull request #6008 from rgacogne/ecdsa-error-leak
Pieter Lexis [Tue, 28 Nov 2017 12:32:26 +0000 (13:32 +0100)] 
Merge pull request #6008 from rgacogne/ecdsa-error-leak

rec:  Don't leak when the loading a public ECDSA key fails

6 years agoMerge pull request #6007 from rgacogne/auth-web-readonly-ops
aerique [Tue, 28 Nov 2017 12:26:56 +0000 (13:26 +0100)] 
Merge pull request #6007 from rgacogne/auth-web-readonly-ops

auth: Deny cache flush, zone retrieve and notify if the API is RO

6 years agofix tab & {} 6011/head
bert hubert [Tue, 28 Nov 2017 10:44:51 +0000 (11:44 +0100)] 
fix tab & {}

6 years agodnsdist: Keep the TCP connection open on cache hit, generated answers 6012/head
Remi Gacogne [Tue, 28 Nov 2017 10:02:09 +0000 (11:02 +0100)] 
dnsdist: Keep the TCP connection open on cache hit, generated answers

We used to close the TCP connection right away on cases where that did
not make sense:
- on a cache hit
- on a self-generated answer
- on a servfail answer caused by the lack of usable downstream servers

We still close the TCP connections on drops, dynamic blocks, lack of
usable downstream servers without `setServFailWhenNoServer()` set,
invalid queries, network errors..

6 years agoquote server-id. This stops us from breaking serving chaos txt id.server if your...
bert hubert [Tue, 28 Nov 2017 09:50:24 +0000 (10:50 +0100)] 
quote server-id. This stops us from breaking serving chaos txt id.server if your server has a dash or a dot or an underscore in its name.

6 years agoMerge pull request #5997 from rgacogne/rec-additional-val
Peter van Dijk [Tue, 28 Nov 2017 09:28:17 +0000 (10:28 +0100)] 
Merge pull request #5997 from rgacogne/rec-additional-val

rec: Store additional records as non-auth, even on AA=1 answers

6 years agoMerge pull request #6004 from pieterlexis/rm-old-soa-edit
Peter van Dijk [Tue, 28 Nov 2017 08:54:22 +0000 (09:54 +0100)] 
Merge pull request #6004 from pieterlexis/rm-old-soa-edit

Remove deprecated SOA-EDIT values

6 years agoMerge pull request #5617 from Habbie/ednsflags
Peter van Dijk [Tue, 28 Nov 2017 08:52:49 +0000 (09:52 +0100)] 
Merge pull request #5617 from Habbie/ednsflags

fix reading of ednsflags in recursor testing

6 years agodoc: Fix a typo in PowerDNS Advisory 2017-04
Remi Gacogne [Tue, 28 Nov 2017 08:15:45 +0000 (09:15 +0100)] 
doc: Fix a typo in PowerDNS Advisory 2017-04

6 years agorec: Sanitize values received from the API before writing them to the conf 6006/head
Remi Gacogne [Mon, 17 Jul 2017 17:21:01 +0000 (19:21 +0200)] 
rec: Sanitize values received from the API before writing them to the conf

6 years agoauth: Deny cache flush, zone retrieve and notify if the API is RO 6007/head
Remi Gacogne [Tue, 22 Aug 2017 09:48:07 +0000 (11:48 +0200)] 
auth: Deny cache flush, zone retrieve and notify if the API is RO

6 years agoFix a memory leak when loading an RSA key with an invalid modulus 6008/head
Remi Gacogne [Wed, 11 Oct 2017 13:28:04 +0000 (15:28 +0200)] 
Fix a memory leak when loading an RSA key with an invalid modulus

6 years agoDon't leak when the loading a public ECDSA key fails
Remi Gacogne [Thu, 13 Jul 2017 14:22:30 +0000 (16:22 +0200)] 
Don't leak when the loading a public ECDSA key fails

6 years agorec: When validating DNSKeys, the zone should be part of the signer 6009/head
Remi Gacogne [Thu, 17 Aug 2017 16:05:54 +0000 (18:05 +0200)] 
rec: When validating DNSKeys, the zone should be part of the signer

6 years agodo not demand a DO reply to a non-DO query 5617/head
Peter van Dijk [Wed, 16 Aug 2017 12:08:13 +0000 (14:08 +0200)] 
do not demand a DO reply to a non-DO query

6 years agoRemove deprecated SOA-EDIT values 6004/head
Pieter Lexis [Mon, 27 Nov 2017 12:24:51 +0000 (13:24 +0100)] 
Remove deprecated SOA-EDIT values

6 years agoUpdate auth EOL statement
Pieter Lexis [Mon, 27 Nov 2017 18:37:38 +0000 (19:37 +0100)] 
Update auth EOL statement

6 years agoMerge pull request #5916 from pieterlexis/rm-wiki
Pieter Lexis [Mon, 27 Nov 2017 16:58:49 +0000 (17:58 +0100)] 
Merge pull request #5916 from pieterlexis/rm-wiki

Documentation additions so we can rid of the wiki

6 years agoMerge pull request #5990 from jannyg/patch-2
Pieter Lexis [Mon, 27 Nov 2017 16:58:32 +0000 (17:58 +0100)] 
Merge pull request #5990 from jannyg/patch-2

Adds description of add-record

6 years agorecursor secpoll: improve message on timeout 6001/head
Chris Hofstaedtler [Mon, 27 Nov 2017 16:48:45 +0000 (17:48 +0100)] 
recursor secpoll: improve message on timeout

6 years agoFix secpoll
Pieter Lexis [Mon, 27 Nov 2017 16:01:41 +0000 (17:01 +0100)] 
Fix secpoll

6 years agoFix changelog syntax
Pieter Lexis [Mon, 27 Nov 2017 15:48:04 +0000 (16:48 +0100)] 
Fix changelog syntax

6 years agoMerge pull request #5999 from aerique/advisories-2017
aerique [Mon, 27 Nov 2017 15:35:39 +0000 (16:35 +0100)] 
Merge pull request #5999 from aerique/advisories-2017

Add advisories 2017-03, 2017-04, 2017-05, 2017-06 and 2017-07.

6 years agorec: Skip validation (including cached entries) for auth zones 6000/head
Remi Gacogne [Fri, 24 Nov 2017 16:48:19 +0000 (17:48 +0100)] 
rec: Skip validation (including cached entries) for auth zones

6 years agoUpdate security advisory links in secpoll 5999/head
Pieter Lexis [Mon, 27 Nov 2017 11:56:06 +0000 (12:56 +0100)] 
Update security advisory links in secpoll

6 years agoread ednsflags instead of flags
Peter van Dijk [Wed, 16 Aug 2017 11:44:54 +0000 (13:44 +0200)] 
read ednsflags instead of flags

6 years agoRemove redundant --with-lua 5994/head
Chris Hofstaedtler [Mon, 27 Nov 2017 10:22:44 +0000 (11:22 +0100)] 
Remove redundant --with-lua

6 years agorec: Store additional records as non-auth, even on AA=1 answers 5997/head
Remi Gacogne [Mon, 27 Nov 2017 10:21:21 +0000 (11:21 +0100)] 
rec: Store additional records as non-auth, even on AA=1 answers

We used to store additional records in AA=1 answers as auth. In addition
to being wrong, it also broke DNSSEC validation if the record was stored
as Indeterminate because while we take care of not validating additional
records when processing an answer, we have no way of knowing in which
section a record was originally located when we retrieve it from the cache.
When an answer becomes too big to fit in the requester UDP payload,
rfc4035 allows the sender to keep records in the additional section
while omitting the corresponding RRSIGs, without setting the TC bit.

6 years agoAdd release date, security advisories to the changelogs
Remi Gacogne [Mon, 27 Nov 2017 07:15:46 +0000 (08:15 +0100)] 
Add release date, security advisories to the changelogs

6 years agoUpdate/add macOS compilation notes
Chris Hofstaedtler [Sun, 26 Nov 2017 22:50:52 +0000 (23:50 +0100)] 
Update/add macOS compilation notes

6 years agoAdded description of add-record 5990/head
Jan-Arve Nygård [Fri, 24 Nov 2017 12:47:04 +0000 (13:47 +0100)] 
Added description of add-record

Added description of add-record with options to man-pages

6 years agoUpdate secpoll
Remi Gacogne [Fri, 24 Nov 2017 10:10:28 +0000 (11:10 +0100)] 
Update secpoll

6 years agoAdd advisories 2017-03, 2017-04, 2017-05, 2017-06 and 2017-07
Remi Gacogne [Tue, 24 Oct 2017 09:02:57 +0000 (11:02 +0200)] 
Add advisories 2017-03, 2017-04, 2017-05, 2017-06 and 2017-07