2014-03-27 |
Simon Kelley | Ensure ->sentto is valid for DNSSEC forwards. Otherwise...
|
commit | commitdiff | tree |
2014-03-27 |
Simon Kelley | Cache stats availble in CHAOS .bind domain.
|
commit | commitdiff | tree |
2014-03-26 |
Simon Kelley | Terminate DS-search when reaching the root via cache...
|
commit | commitdiff | tree |
2014-03-25 |
Simon Kelley | SERVFAIL is an expected error return, don't try all...
|
commit | commitdiff | tree |
2014-03-25 |
Tomas Hozza | Handle failure of hash_questions()
|
commit | commitdiff | tree |
2014-03-25 |
Tomas Hozza | Memory leak in error path.
|
commit | commitdiff | tree |
2014-03-24 |
Simon Kelley | Reorder sanity checks on UDP packet reception, to cope...
|
commit | commitdiff | tree |
2014-03-24 |
Simon Kelley | Add dnssec-check-unsigned to example config file.
|
commit | commitdiff | tree |
2014-03-22 |
Simon Kelley | CHANGELOG update.
|
commit | commitdiff | tree |
2014-03-22 |
Simon Kelley | Ignore DNS queries from port 0: http://www.ietf.org...
|
commit | commitdiff | tree |
2014-03-22 |
Andy | Tidy uid defines.
|
commit | commitdiff | tree |
2014-03-21 |
Simon Kelley | Fix DNSSEC crash retrying to IPv6 server.
|
commit | commitdiff | tree |
2014-03-20 |
Simon Kelley | Initialise uid when creating CNAME cache record.
|
commit | commitdiff | tree |
2014-03-20 |
Simon Kelley | Make --quiet-dhcp apply to DHCPDISCOVER when client...
|
commit | commitdiff | tree |
2014-03-20 |
Moritz Warning | Manpage typos.
|
commit | commitdiff | tree |
2014-03-18 |
Simon Kelley | Tidy and fix cache->uid handling.
|
commit | commitdiff | tree |
2014-03-17 |
Andy | Ensure next_uid() can never return 0.
|
commit | commitdiff | tree |
2014-03-16 |
Simon Kelley | Handle integer overflow in uid counter. Fixes rare...
|
commit | commitdiff | tree |
2014-03-12 |
Simon Kelley | Warn about non-local queries once only for UDP.
|
commit | commitdiff | tree |
2014-03-12 |
Simon Kelley | Typo
|
commit | commitdiff | tree |
2014-03-06 |
Simon Kelley | OPT_LOCAL_SERVICE needs up-to-date interface list too.
|
commit | commitdiff | tree |
2014-03-05 |
Simon Kelley | Set --local-service in Debian package startup.
|
commit | commitdiff | tree |
2014-03-05 |
Simon Kelley | --local-service. Default protection from DNS amplification...
|
commit | commitdiff | tree |
2014-03-05 |
Simon Kelley | Add --static to pkg-config command when appropriate.
|
commit | commitdiff | tree |
2014-03-03 |
Simon Kelley | Compiler warning.
|
commit | commitdiff | tree |
2014-03-02 |
Simon Kelley | Man page updates for DNSSEC.
|
commit | commitdiff | tree |
2014-03-02 |
Simon Kelley | KEYBLOCK LEN better as a multiple of 8.
|
commit | commitdiff | tree |
2014-03-01 |
Simon Kelley | Can have local DS records (trust anchors).
|
commit | commitdiff | tree |
2014-03-01 |
Simon Kelley | Mass edit of INSECURE->BOGUS returns for server failure...
|
commit | commitdiff | tree |
2014-03-01 |
Simon Kelley | Don't cache secure replies which we've messsed with.
|
commit | commitdiff | tree |
2014-03-01 |
Simon Kelley | Tweak tuning params.
|
commit | commitdiff | tree |
2014-03-01 |
Simon Kelley | Handle replies with no answers and no NS in validate_reply.
|
commit | commitdiff | tree |
2014-03-01 |
Simon Kelley | Don't free blockdata for negative DS cache entries.
|
commit | commitdiff | tree |
2014-03-01 |
Simon Kelley | Fix off-by-one overwrite.
|
commit | commitdiff | tree |
2014-03-01 |
Simon Kelley | Tidy.
|
commit | commitdiff | tree |
2014-02-28 |
Simon Kelley | Check that unsigned replies come from unsigned zones...
|
commit | commitdiff | tree |
2014-02-27 |
Simon Kelley | Negative caching for DS records.
|
commit | commitdiff | tree |
2014-02-25 |
Simon Kelley | Return INSECURE when validation fails with proved non...
|
commit | commitdiff | tree |
2014-02-25 |
Simon Kelley | Strip DNSSEC RRs when query doesn't have DO bit set.
|
commit | commitdiff | tree |
2014-02-24 |
Simon Kelley | Speeling.
|
commit | commitdiff | tree |
2014-02-24 |
Simon Kelley | Code cleanup.
|
commit | commitdiff | tree |
2014-02-24 |
Simon Kelley | An NSEC record cannot attest to its own non-existance!
|
commit | commitdiff | tree |
2014-02-23 |
Simon Kelley | Check signer name in RRSIGs.
|
commit | commitdiff | tree |
2014-02-23 |
Simon Kelley | Bugfix for last commit.
|
commit | commitdiff | tree |
2014-02-23 |
Simon Kelley | NSEC3 validation. First pass.
|
commit | commitdiff | tree |
2014-02-20 |
Simon Kelley | Add --servers-file option.
|
commit | commitdiff | tree |
2014-02-19 |
Simon Kelley | Omit ECC from DNSSEC if nettle library is old.
|
commit | commitdiff | tree |
2014-02-19 |
Simon Kelley | More server cleanup.
|
commit | commitdiff | tree |
2014-02-18 |
Simon Kelley | Cleanup of server reading code, preparation, for dynamic...
|
commit | commitdiff | tree |
2014-02-17 |
Simon Kelley | --rev-server option. Syntactic sugar for PTR queries.
|
commit | commitdiff | tree |
2014-02-13 |
Simon Kelley | Log BOGUS validation result when upstream sends SERVFAIL.
|
commit | commitdiff | tree |
2014-02-13 |
Simon Kelley | TYpo.
|
commit | commitdiff | tree |
2014-02-13 |
Simon Kelley | No CD in forwarded queries unless dnssec-debug for...
|
commit | commitdiff | tree |
2014-02-13 |
Simon Kelley | Don't mess with the TTL of DNSSEC RRs.
|
commit | commitdiff | tree |
2014-02-13 |
Simon Kelley | Add RFC-6605 ECDSA DNSSEC verification.
|
commit | commitdiff | tree |
2014-02-11 |
Simon Kelley | Use DS records as trust anchors, not DNSKEYs.
|
commit | commitdiff | tree |
2014-02-10 |
Simon Kelley | Further tidying of AD and DO bit handling.
|
commit | commitdiff | tree |
2014-02-10 |
Simon Kelley | Handle validation when more one key is needed.
|
commit | commitdiff | tree |
2014-02-10 |
Simon Kelley | Fix Byte-order botch: broke DNSSEC on big-endian platforms.
|
commit | commitdiff | tree |
2014-02-10 |
Simon Kelley | Fix DNSSEC caching problems: incomplete RRSIG RRsets.
|
commit | commitdiff | tree |
2014-02-06 |
Simon Kelley | AD bit in queries handled as RFC6840 p5.7
|
commit | commitdiff | tree |
2014-02-06 |
Simon Kelley | Add trust-anchors file to Debian package.
|
commit | commitdiff | tree |
2014-02-06 |
Simon Kelley | Fix stack-smashing crash in DNSSEC. Thanks to Henk...
|
commit | commitdiff | tree |
2014-02-06 |
Simon Kelley | DNSSEC config in example file.
|
commit | commitdiff | tree |
2014-02-06 |
Simon Kelley | Protect against malicious DNS replies with very large...
|
commit | commitdiff | tree |
2014-02-04 |
Simon Kelley | Make RR work when returning A/AAAA records and an RRSIG.
|
commit | commitdiff | tree |
2014-02-04 |
Jesse Glick | Updated version of contrib/try-all-ns
|
commit | commitdiff | tree |
2014-02-04 |
Simon Kelley | Linking stuff. Latest Debian/Ubuntu don't automatically...
|
commit | commitdiff | tree |
2014-02-04 |
Simon Kelley | Make DNSEC default, add build-depends for same, bump...
|
commit | commitdiff | tree |
2014-02-04 |
Simon Kelley | CHANGLEOG for DNSSEC.
|
commit | commitdiff | tree |
2014-02-03 |
Simon Kelley | Format tweak.
|
commit | commitdiff | tree |
2014-02-03 |
Simon Kelley | Log NXDOMAIN correctly.
|
commit | commitdiff | tree |
2014-02-03 |
Simon Kelley | Return configured DNSKEYs even though we don't have...
|
commit | commitdiff | tree |
2014-02-03 |
Simon Kelley | Nasty cache failure and memory leak with DNSSEC.
|
commit | commitdiff | tree |
2014-02-01 |
Simon Kelley | Validate Ooops.
|
commit | commitdiff | tree |
2014-01-31 |
Simon Kelley | Blockdata fixes and tuning.
|
commit | commitdiff | tree |
2014-01-31 |
Simon Kelley | Blockdata leak.
|
commit | commitdiff | tree |
2014-01-31 |
Simon Kelley | copy-n-paste error.
|
commit | commitdiff | tree |
2014-01-31 |
Simon Kelley | Anounce DNSSEC at startup.
|
commit | commitdiff | tree |
2014-01-31 |
Simon Kelley | Init ->dependent field in frec allocation.
|
commit | commitdiff | tree |
2014-01-31 |
Simon Kelley | Compiler warning.
|
commit | commitdiff | tree |
2014-01-30 |
Simon Kelley | Add a file containing current root trust anchors, for...
|
commit | commitdiff | tree |
2014-01-28 |
Simon Kelley | Crash in cache code when compiled with HAVE_DNSSEC.
|
commit | commitdiff | tree |
2014-01-28 |
Simon Kelley | Allow use of COPTS in Debian rules invokation for nefarious...
|
commit | commitdiff | tree |
2014-01-28 |
Simon Kelley | Debian package with DNSSEC now possible.
|
commit | commitdiff | tree |
2014-01-27 |
Simon Kelley | Man page entries for DNSSEC flags.
|
commit | commitdiff | tree |
2014-01-27 |
Simon Kelley | Trivial format fix.
|
commit | commitdiff | tree |
2014-01-26 |
Simon Kelley | Code tidy.
|
commit | commitdiff | tree |
2014-01-26 |
Simon Kelley | Don't mark answers as DNSEC validated if DNS-doctored.
|
commit | commitdiff | tree |
2014-01-26 |
Simon Kelley | Exclude CRC code in DNSSEC build - replaced with SHA1.
|
commit | commitdiff | tree |
2014-01-26 |
Simon Kelley | Remove --dnssec-permissive, pointless if we don't set...
|
commit | commitdiff | tree |
2014-01-25 |
Simon Kelley | Fix to last commit.
|
commit | commitdiff | tree |
2014-01-25 |
Simon Kelley | Replace CRC32 with SHA1 for spoof detection in DNSSEC...
|
commit | commitdiff | tree |
2014-01-25 |
Simon Kelley | Get AA flag right in DNSSEC answers from cache.
|
commit | commitdiff | tree |
2014-01-25 |
Simon Kelley | RRSIG answer logging.
|
commit | commitdiff | tree |
2014-01-25 |
Simon Kelley | Class specifier in --dnskey, instead of hardwiring...
|
commit | commitdiff | tree |
2014-01-25 |
Simon Kelley | --dnssec-debug
|
commit | commitdiff | tree |
2014-01-25 |
Simon Kelley | More DNSSEC caching logic, and avoid repeated validation...
|
commit | commitdiff | tree |
2014-01-24 |
Simon Kelley | RRSIGS for PTR records from cache.
|
commit | commitdiff | tree |
2014-01-24 |
Simon Kelley | Tweak.
|
commit | commitdiff | tree |
next |