]> git.ipfire.org Git - thirdparty/pdns.git/log
thirdparty/pdns.git
10 years agorec: RPZ default policy should also override local data RRs 4215/head
Remi Gacogne [Wed, 20 Jul 2016 12:49:04 +0000 (14:49 +0200)] 
rec: RPZ default policy should also override local data RRs

10 years agoAdd PGP key to tarball signers 4212/head
Pieter Lexis [Wed, 20 Jul 2016 10:52:53 +0000 (12:52 +0200)] 
Add PGP key to tarball signers

10 years agoCreate tinydns backend packages for CentOS 7 4213/head
Pieter Lexis [Tue, 19 Jul 2016 15:24:26 +0000 (17:24 +0200)] 
Create tinydns backend packages for CentOS 7

10 years agoSecpoll: Set 4.0.0 pre-releases to "upgrade now" 4211/head
Pieter Lexis [Wed, 20 Jul 2016 10:33:07 +0000 (12:33 +0200)] 
Secpoll: Set 4.0.0 pre-releases to "upgrade now"

10 years agoRec: validate DNSSEC for secpoll.powerdns.com 4210/head
Pieter Lexis [Wed, 20 Jul 2016 10:22:32 +0000 (12:22 +0200)] 
Rec: validate DNSSEC for secpoll.powerdns.com

10 years agoMerge pull request #4044 from cmouse/dnspacket-comboaddr
bert hubert [Tue, 19 Jul 2016 19:48:32 +0000 (21:48 +0200)] 
Merge pull request #4044 from cmouse/dnspacket-comboaddr

Dnspacket comboaddr

10 years agoMerge pull request #4187 from pieterlexis/bogus-island-of-trust
bert hubert [Tue, 19 Jul 2016 18:55:39 +0000 (20:55 +0200)] 
Merge pull request #4187 from pieterlexis/bogus-island-of-trust

Two more DNSSEC fixes

10 years agoresolver.cc: fix warnings with gcc on musl-libc 4140/head
James Taylor [Sat, 9 Jul 2016 09:38:42 +0000 (09:38 +0000)] 
resolver.cc: fix warnings with gcc on musl-libc

resolver.cc makes an incorrect include directive of `poll.h`. The
correct syntax for inclusion, according to `man 2 poll` is:

`#include <poll.h>`

This commit prevents warnings from being displayed due to going through
musl-libc's compatibility wrappers

10 years agoauth: Don't try to deallocate empty PG statements 4206/head
Remi Gacogne [Tue, 19 Jul 2016 08:50:43 +0000 (10:50 +0200)] 
auth: Don't try to deallocate empty PG statements

When a SPgSQLStatement is released without having been prepared,
we execute an invalid 'DEALLOCATE ' SQL command. This might happen
if the statement has not been used before being destroyed, for example.

10 years agohealthChecksThread indentation fixed. 4198/head
stutiredboy [Tue, 19 Jul 2016 03:08:55 +0000 (11:08 +0800)] 
healthChecksThread indentation fixed.

10 years agodnsdist: Prevent the use of "any" addresses for downstream server 4205/head
Remi Gacogne [Mon, 18 Jul 2016 13:00:26 +0000 (15:00 +0200)] 
dnsdist: Prevent the use of "any" addresses for downstream server

Otherwise the corresponding `DownstreamState`'s FD is -1 (needed
for 'client' mode) and we loop endlessly on `recvfrom()` returning -1.
Reported by Sander Smeenk.

10 years agonewServer setting maxCheckFailures makes no sense
stutiredboy [Mon, 18 Jul 2016 09:48:08 +0000 (17:48 +0800)] 
newServer setting maxCheckFailures makes no sense

10 years agoAdd changelog entry 4187/head
Pieter Lexis [Fri, 15 Jul 2016 09:54:53 +0000 (11:54 +0200)] 
Add changelog entry

10 years agoValidate all key paths on possible Insecure
Pieter Lexis [Fri, 15 Jul 2016 14:25:32 +0000 (16:25 +0200)] 
Validate all key paths on possible Insecure

Before, we only checked the first QName, now we go through every name we
have to verify that the answer is indeed insecure.

10 years agoDo not follow CNAMEs when hunting for DS records
Pieter Lexis [Fri, 15 Jul 2016 14:24:30 +0000 (16:24 +0200)] 
Do not follow CNAMEs when hunting for DS records

This fixes the CNAME at apex bogus

10 years agoDon't go bogus on CNAMEs to islands of security
Pieter Lexis [Thu, 14 Jul 2016 22:23:15 +0000 (00:23 +0200)] 
Don't go bogus on CNAMEs to islands of security

Closes #4181

Incidentally, this commit also ensures that we no longer 'jojo' between
Secure and Insecure states. Once we have an Insecure, we can only go
Bogus but not Secure.

10 years agoCompress 3 lines into 1
Pieter Lexis [Thu, 14 Jul 2016 22:14:41 +0000 (00:14 +0200)] 
Compress 3 lines into 1

10 years agoAdd test for island of security (#4181)
Pieter Lexis [Thu, 14 Jul 2016 22:14:14 +0000 (00:14 +0200)] 
Add test for island of security (#4181)

10 years agoonly ecs-stamp when asked for 4192/head
Peter van Dijk [Fri, 15 Jul 2016 12:48:43 +0000 (14:48 +0200)] 
only ecs-stamp when asked for

10 years agoAdd missing DNSSEC trace message
Pieter Lexis [Thu, 14 Jul 2016 15:50:12 +0000 (17:50 +0200)] 
Add missing DNSSEC trace message

10 years agoMerge pull request #4178 from pieterlexis/qtype-to-dnssec-trace
Pieter Lexis [Fri, 15 Jul 2016 09:47:54 +0000 (11:47 +0200)] 
Merge pull request #4178 from pieterlexis/qtype-to-dnssec-trace

Add QType to log output for DNSSEC trace

10 years agoMerge pull request #4162 from pieterlexis/post-400-dnssec-fixes
Pieter Lexis [Fri, 15 Jul 2016 09:47:39 +0000 (11:47 +0200)] 
Merge pull request #4162 from pieterlexis/post-400-dnssec-fixes

Recursor 4.0.0 DNSSEC fixes

10 years agoMerge pull request #4166 from Habbie/cleanup
Pieter Lexis [Thu, 14 Jul 2016 22:31:46 +0000 (00:31 +0200)] 
Merge pull request #4166 from Habbie/cleanup

Cleanup

10 years agoMerge pull request #4154 from setharnold/patch-3
Pieter Lexis [Thu, 14 Jul 2016 22:31:27 +0000 (00:31 +0200)] 
Merge pull request #4154 from setharnold/patch-3

small doc fixes

10 years agopdnsutil: Remove checking of ctime and always diff the changes. Exit if no changes... 4183/head
Hannu Ylitalo [Thu, 14 Jul 2016 16:07:06 +0000 (19:07 +0300)] 
pdnsutil: Remove checking of ctime and always diff the changes. Exit if no changes are found.

10 years agoAdd changelog entries 4162/head
Pieter Lexis [Thu, 14 Jul 2016 15:44:10 +0000 (17:44 +0200)] 
Add changelog entries

10 years agoAdd test for #4158
Pieter Lexis [Tue, 12 Jul 2016 14:33:15 +0000 (16:33 +0200)] 
Add test for #4158

10 years agoSkip a level when a CNAME is found for the name
Pieter Lexis [Tue, 12 Jul 2016 13:09:34 +0000 (15:09 +0200)] 
Skip a level when a CNAME is found for the name

If we'd encounter a CNAME when chasing for DS/DNSKEY, we followed it and
concluded that the domain was bogus. We now skip this level and try to
get a DS record for the next name.

I'm unsure this is the correct solution, but it fixes #4158

10 years agoAdd tests for out of band names
Pieter Lexis [Tue, 12 Jul 2016 14:06:27 +0000 (16:06 +0200)] 
Add tests for out of band names

10 years agoDon't validate internal or out-of-band names
Pieter Lexis [Tue, 12 Jul 2016 11:42:55 +0000 (13:42 +0200)] 
Don't validate internal or out-of-band names

Closes #4149
Closes #4156
Closes #4157

10 years agoFix filename to match test names
Pieter Lexis [Tue, 12 Jul 2016 14:07:43 +0000 (16:07 +0200)] 
Fix filename to match test names

10 years agoUse g_dnssecmode global instead of the slower arg()
Pieter Lexis [Tue, 12 Jul 2016 08:23:04 +0000 (10:23 +0200)] 
Use g_dnssecmode global instead of the slower arg()

10 years agoMerge pull request #4169 from zeha/typo 4174/head
Pieter Lexis [Thu, 14 Jul 2016 15:39:56 +0000 (17:39 +0200)] 
Merge pull request #4169 from zeha/typo

Fix typos found by lintian

10 years agoMerge pull request #4160 from pieterlexis/do-means-ad
Pieter Lexis [Thu, 14 Jul 2016 15:39:35 +0000 (17:39 +0200)] 
Merge pull request #4160 from pieterlexis/do-means-ad

Also validate on +DO

10 years agoAdd changelog 4160/head
Pieter Lexis [Tue, 12 Jul 2016 10:54:50 +0000 (12:54 +0200)] 
Add changelog

10 years agoAdd QType to log output for DNSSEC trace 4178/head
Pieter Lexis [Thu, 14 Jul 2016 11:36:27 +0000 (13:36 +0200)] 
Add QType to log output for DNSSEC trace

10 years agoUpdate DNSSEC docs on the DO/AD bit usage
Pieter Lexis [Tue, 12 Jul 2016 10:50:18 +0000 (12:50 +0200)] 
Update DNSSEC docs on the DO/AD bit usage

10 years agoAlso validate on _only_ +DO
Pieter Lexis [Tue, 12 Jul 2016 10:09:30 +0000 (12:09 +0200)] 
Also validate on _only_ +DO

Closes #4159

10 years agoUpdate regression tests for +DO means +AD
Pieter Lexis [Tue, 12 Jul 2016 10:01:12 +0000 (12:01 +0200)] 
Update regression tests for +DO means +AD

10 years agoFix typos found by lintian 4169/head
Christian Hofstaedtler [Wed, 13 Jul 2016 12:42:28 +0000 (14:42 +0200)] 
Fix typos found by lintian

10 years agoAdd more Netmask methods for recursor Lua 4168/head
Aki Tuomi [Wed, 13 Jul 2016 09:52:41 +0000 (12:52 +0300)] 
Add more Netmask methods for recursor Lua

Closes #4167

10 years agoDNSPacket API change 4044/head
Aki Tuomi [Sun, 26 Jun 2016 17:28:02 +0000 (20:28 +0300)] 
DNSPacket API change

10 years agodrop unused variable 4166/head
Peter van Dijk [Wed, 13 Jul 2016 09:11:12 +0000 (11:11 +0200)] 
drop unused variable

10 years agofix verbose logging compile error
Peter van Dijk [Wed, 13 Jul 2016 09:11:04 +0000 (11:11 +0200)] 
fix verbose logging compile error

10 years agodnspacket: Return ComboAddress for local and remote
Aki Tuomi [Sun, 26 Jun 2016 17:17:06 +0000 (20:17 +0300)] 
dnspacket: Return ComboAddress for local and remote

10 years agoFail on startup when lua-dns-script doesn't exist 4164/head
Pieter Lexis [Tue, 12 Jul 2016 15:54:15 +0000 (17:54 +0200)] 
Fail on startup when lua-dns-script doesn't exist

Closes #4147

10 years agoMerge pull request #4153 from pieterlexis/400-docs
Peter van Dijk [Tue, 12 Jul 2016 15:06:43 +0000 (17:06 +0200)] 
Merge pull request #4153 from pieterlexis/400-docs

Update docs for 4.0.0

10 years agodocument outgoing-edns-bufsize 4153/head
Pieter Lexis [Tue, 12 Jul 2016 07:30:05 +0000 (09:30 +0200)] 
document outgoing-edns-bufsize

10 years agoUpdate settings docs
Pieter Lexis [Mon, 11 Jul 2016 17:36:41 +0000 (19:36 +0200)] 
Update settings docs

10 years agoAdd upgrade docs for 4.0.0, remove the 3.x.x ones
Pieter Lexis [Mon, 11 Jul 2016 17:35:52 +0000 (19:35 +0200)] 
Add upgrade docs for 4.0.0, remove the 3.x.x ones

10 years agoHTTP API doc updates, POST to metadata shall not overwrite existing entries 4093/head
Christian Jurk [Tue, 12 Jul 2016 10:49:56 +0000 (12:49 +0200)] 
HTTP API doc updates, POST to metadata shall not overwrite existing entries

10 years agoRemoved response body for POST request
Christian Jurk [Tue, 12 Jul 2016 07:30:08 +0000 (09:30 +0200)] 
Removed response body for POST request

10 years agosmall doc fixes 4154/head
setharnold [Mon, 11 Jul 2016 17:51:26 +0000 (10:51 -0700)] 
small doc fixes

10 years agoMerge pull request #4144 from pieterlexis/rec-dnssec-queries
Pieter Lexis [Mon, 11 Jul 2016 17:44:52 +0000 (19:44 +0200)] 
Merge pull request #4144 from pieterlexis/rec-dnssec-queries

Fix a lie in the recursor stats docs

10 years agoUse single equal sign when calling test(1) 4152/head
Christian Hofstaedtler [Mon, 11 Jul 2016 17:20:09 +0000 (19:20 +0200)] 
Use single equal sign when calling test(1)

Fixes #4102.

10 years agoMerge pull request #4143 from pieterlexis/4.0.0-final-changelog
Pieter Lexis [Mon, 11 Jul 2016 09:29:38 +0000 (11:29 +0200)] 
Merge pull request #4143 from pieterlexis/4.0.0-final-changelog

Auth and Recursor 4.0.0 changelogs and secpoll

10 years agoUpdate release dates 4143/head
Pieter Lexis [Mon, 11 Jul 2016 07:46:18 +0000 (09:46 +0200)] 
Update release dates

10 years agoAdd auth 4.0.0 to secpoll
Pieter Lexis [Fri, 8 Jul 2016 15:03:44 +0000 (17:03 +0200)] 
Add auth 4.0.0 to secpoll

10 years agoAdd auth 4.0.0 changelog
Pieter Lexis [Mon, 11 Jul 2016 07:42:06 +0000 (09:42 +0200)] 
Add auth 4.0.0 changelog

10 years agoAdd recursor 4.0.0 to secpoll
Pieter Lexis [Mon, 11 Jul 2016 07:43:19 +0000 (09:43 +0200)] 
Add recursor 4.0.0 to secpoll

10 years agoAdd Recursor 4.0.0 changelog
Pieter Lexis [Fri, 8 Jul 2016 15:01:53 +0000 (17:01 +0200)] 
Add Recursor 4.0.0 changelog

10 years agoFix a lie in the recursor stats docs 4144/head
Pieter Lexis [Mon, 11 Jul 2016 07:48:39 +0000 (09:48 +0200)] 
Fix a lie in the recursor stats docs

10 years agoadd used filedescriptor statistics to auth
Kees Monshouwer [Fri, 8 Jul 2016 19:32:46 +0000 (21:32 +0200)] 
add used filedescriptor statistics to auth

10 years agoimprove dnssec record skipping for non dnssec queries 4119/head
Kees Monshouwer [Sat, 9 Jul 2016 16:50:38 +0000 (18:50 +0200)] 
improve dnssec record skipping for non dnssec queries

10 years agodon't make recursor manpages if pandoc is missing
Kees Monshouwer [Sat, 9 Jul 2016 16:49:03 +0000 (18:49 +0200)] 
don't make recursor manpages if pandoc is missing

10 years agoMerge pull request #4137 from cmouse/conditional-keys auth-4.0.0 rec-4.0.0
Peter van Dijk [Fri, 8 Jul 2016 09:59:41 +0000 (11:59 +0200)] 
Merge pull request #4137 from cmouse/conditional-keys

gsqlite3: Check whether foreign keys should be turned on

10 years agogsqlite3: Check whether foreign keys should be turned on 4137/head
Aki Tuomi [Fri, 8 Jul 2016 08:57:57 +0000 (11:57 +0300)] 
gsqlite3: Check whether foreign keys should be turned on

10 years agoMerge pull request #4138 from pieterlexis/rpm-protobuf
Pieter Lexis [Fri, 8 Jul 2016 09:03:36 +0000 (11:03 +0200)] 
Merge pull request #4138 from pieterlexis/rpm-protobuf

Build RPMs with protobuf

10 years agoBuild RPMs with protobuf 4138/head
Pieter Lexis [Fri, 8 Jul 2016 07:53:47 +0000 (09:53 +0200)] 
Build RPMs with protobuf

Fixes #4130

10 years agodnsdist: Disable eBPF support when BPF_FUNC_tail_call is not found 4067/head
Remi Gacogne [Fri, 8 Jul 2016 08:42:11 +0000 (10:42 +0200)] 
dnsdist: Disable eBPF support when BPF_FUNC_tail_call is not found

10 years agoMerge pull request #4096 from rgacogne/rec-no-empty-commit
Peter van Dijk [Fri, 8 Jul 2016 07:49:04 +0000 (09:49 +0200)] 
Merge pull request #4096 from rgacogne/rec-no-empty-commit

rec: Don't call `commit()` if we skipped all the records

10 years agoMerge pull request #4124 from zeha/auth-no-recommends
Pieter Lexis [Fri, 8 Jul 2016 07:36:34 +0000 (09:36 +0200)] 
Merge pull request #4124 from zeha/auth-no-recommends

Debian packaging: stop recommending/suggesting some packages

10 years agoMerge pull request #4101 from rgacogne/dnsdist-rpm-sed
Pieter Lexis [Fri, 8 Jul 2016 07:20:01 +0000 (09:20 +0200)] 
Merge pull request #4101 from rgacogne/dnsdist-rpm-sed

dnsdist: Fix $ expansion in build-dnsdist-rpm

10 years agoMerge pull request #4127 from pieterlexis/protobuf-fixes
Peter van Dijk [Thu, 7 Jul 2016 19:34:39 +0000 (21:34 +0200)] 
Merge pull request #4127 from pieterlexis/protobuf-fixes

Add protobuf to travis

10 years agoMerge pull request #4125 from rgacogne/protobuf-query-timestamp
Peter van Dijk [Thu, 7 Jul 2016 19:01:55 +0000 (21:01 +0200)] 
Merge pull request #4125 from rgacogne/protobuf-query-timestamp

Add protobuf fields for the query's time in the response

10 years agoMerge pull request #4136 from rgacogne/rec-protobuf-doc
Peter van Dijk [Thu, 7 Jul 2016 18:54:11 +0000 (20:54 +0200)] 
Merge pull request #4136 from rgacogne/rec-protobuf-doc

rec: Add protocol buffers documentation

10 years agorec: Add a link to the `dnsmessage.proto` file 4136/head
Remi Gacogne [Thu, 7 Jul 2016 16:33:14 +0000 (18:33 +0200)] 
rec: Add a link to the `dnsmessage.proto` file

10 years agorec: Add protocol buffers documentation
Remi Gacogne [Thu, 7 Jul 2016 15:23:37 +0000 (17:23 +0200)] 
rec: Add protocol buffers documentation

10 years agoAdd limits to the size of received {A,I}XFR, in megabytes 4133/head
Remi Gacogne [Thu, 7 Jul 2016 12:34:31 +0000 (14:34 +0200)] 
Add limits to the size of received {A,I}XFR, in megabytes

This prevents memory exhaustion in case the master is sending a
very large amount of data in an update.

10 years agoMerge pull request #4123 from pieterlexis/issue-3267-algo-5-7
Pieter Lexis [Wed, 6 Jul 2016 20:41:01 +0000 (22:41 +0200)] 
Merge pull request #4123 from pieterlexis/issue-3267-algo-5-7

check-zone: warn on mismatch between algo and NSEC

10 years agoMerge pull request #3051 from pieterlexis/issue-2405-misleading-error-in-bind
Pieter Lexis [Wed, 6 Jul 2016 20:40:37 +0000 (22:40 +0200)] 
Merge pull request #3051 from pieterlexis/issue-2405-misleading-error-in-bind

Better error message for unfound new slave domains

10 years agoAdd protobuf fields for the query's time in the response 4125/head
Remi Gacogne [Wed, 6 Jul 2016 16:54:39 +0000 (18:54 +0200)] 
Add protobuf fields for the query's time in the response

This way it's possible to compute the latency by looking only
at the response message.
Implemented for:
* dnsdist
* dnspcap2protobuf
* ProtobufLogger.py
* rec

10 years agoauth: Wait for the connection to the carbon server to be established 4126/head
Remi Gacogne [Wed, 6 Jul 2016 16:12:08 +0000 (18:12 +0200)] 
auth: Wait for the connection to the carbon server to be established

Doing a non-blocking `connect()` immediately followed by a `write()`
cause the `write()` to fail with `ENOTCONN` on FreeBSD.
This commit instead wait for the `connect()` operation to finish
using `poll()` with a short timeout if it returned `EINPROGRESS`,
so that either we have a connected socket to write to, or we fail.

10 years agoDebian packaging: stop recommending/suggesting some packages 4124/head
Christian Hofstaedtler [Wed, 6 Jul 2016 16:11:53 +0000 (18:11 +0200)] 
Debian packaging: stop recommending/suggesting some packages

Drop Suggests: pdns-recursor is not that common on the same machine.
Drop Recommends: mysql-client, as with default apt settings, that
would remove an installed mariadb server. (Drop Recommends:
postgresql-client for consistency.)

10 years agoAdd missing file to auth tarball 4127/head
Pieter Lexis [Wed, 6 Jul 2016 14:40:38 +0000 (16:40 +0200)] 
Add missing file to auth tarball

10 years agoAdd protobuf to travis
Pieter Lexis [Wed, 6 Jul 2016 14:40:09 +0000 (16:40 +0200)] 
Add protobuf to travis

10 years agocheck-zone: warn on mismatch between algo and NSEC 4123/head
Pieter Lexis [Wed, 6 Jul 2016 13:52:33 +0000 (15:52 +0200)] 
check-zone: warn on mismatch between algo and NSEC

Closes #3267

10 years agoMerge pull request #4077 from pieterlexis/dnssec-stats
Pieter Lexis [Wed, 6 Jul 2016 09:11:38 +0000 (11:11 +0200)] 
Merge pull request #4077 from pieterlexis/dnssec-stats

Recursor: Add DNSSEC validation statistics

10 years agoMerge pull request #4117 from pieterlexis/basic-rpz-fix
Pieter Lexis [Wed, 6 Jul 2016 09:02:04 +0000 (11:02 +0200)] 
Merge pull request #4117 from pieterlexis/basic-rpz-fix

Recursor: basic.rpz fix

10 years agooptional bool is using boost now 4116/head
Reinier Schoof [Wed, 6 Jul 2016 08:16:05 +0000 (10:16 +0200)] 
optional bool is using boost now

10 years agomakeRule defaults to match source netmask
Reinier Schoof [Wed, 6 Jul 2016 06:57:13 +0000 (08:57 +0200)] 
makeRule defaults to match source netmask

10 years agobasic.rpz fix (naive) 4117/head
Pieter Lexis [Tue, 5 Jul 2016 22:29:18 +0000 (00:29 +0200)] 
basic.rpz fix (naive)

Closes #4087

10 years agoimplemented src parameter for NetmaskGroupRule
Reinier Schoof [Tue, 5 Jul 2016 19:11:25 +0000 (21:11 +0200)] 
implemented src parameter for NetmaskGroupRule

10 years agosplit NetmaskGroupRule into NMGRule and subclass NetmaskGroupRule
Reinier Schoof [Tue, 5 Jul 2016 18:31:34 +0000 (20:31 +0200)] 
split NetmaskGroupRule into NMGRule and subclass NetmaskGroupRule

10 years agoMerge pull request #4097 from pieterlexis/DNSSEC-Log-Bogus
Pieter Lexis [Tue, 5 Jul 2016 16:41:36 +0000 (18:41 +0200)] 
Merge pull request #4097 from pieterlexis/DNSSEC-Log-Bogus

Recursor: Allow logging DNSSEC bogus in any mode

10 years agoMerge pull request #4108 from pieterlexis/document-reload-lua-config
Pieter Lexis [Tue, 5 Jul 2016 14:53:37 +0000 (16:53 +0200)] 
Merge pull request #4108 from pieterlexis/document-reload-lua-config

Document the fact that reload-lua-config blocks

10 years agoRecursor: Allow logging DNSSEC bogus in any mode 4097/head
Pieter Lexis [Mon, 4 Jul 2016 13:15:41 +0000 (15:15 +0200)] 
Recursor: Allow logging DNSSEC bogus in any mode

Also allow setting this at runtime.

10 years agoMerge pull request #4041 from rgacogne/remotebackend-unix-socat-eof
Peter van Dijk [Tue, 5 Jul 2016 14:28:06 +0000 (16:28 +0200)] 
Merge pull request #4041 from rgacogne/remotebackend-unix-socat-eof

auth: Don't fail if `socat` exits at the end of remote backend unix tests

10 years agoRecursor: Add DNSSEC validation statistics 4077/head
Pieter Lexis [Thu, 30 Jun 2016 14:55:48 +0000 (16:55 +0200)] 
Recursor: Add DNSSEC validation statistics

Closes #3916

10 years agodnsdist: Add `QNameLabelsCountRule()` and `QNameWireLengthRule()` 4114/head
Remi Gacogne [Tue, 5 Jul 2016 13:39:16 +0000 (15:39 +0200)] 
dnsdist: Add `QNameLabelsCountRule()` and `QNameWireLengthRule()`

* QNameLabelsCountRule(min, max) matches if the qname has less than
min or more than max labels.
* QNameWireLengthRule(min, max) matches if the qname's length on the
wire is less than min or more than max bytes.
* Also add Lua bindings for DNSName's `countLabels()` and `wirelength()`