Matthijs Mekking
45247cd5fb
Skip keys with disabled algorithms
...
Also fix two space layout issues
2019-01-07 12:21:40 +01:00
Matthijs Mekking
a51ac19592
Add test code
...
For skipping unsupported and disabled managed and trusted keys.
2019-01-07 12:21:40 +01:00
Matthijs Mekking
a875b93dfd
Introduce an algorithm that can be disabled
2019-01-07 12:21:40 +01:00
Matthijs Mekking
0cd9781a04
Refactor wait_for_log
...
Move wait_for_log to system/conf.sh.common as it may come in
handy for other tests.
2019-01-07 12:21:40 +01:00
Mark Andrews
c69ad95238
indenting
2019-01-02 10:56:59 +11:00
Mark Andrews
dc64b70616
update copyrights
2019-01-02 10:20:43 +11:00
Mark Andrews
b75970efa3
named-checkconf triggered a assertion when a mirror zone had a bad name
2018-12-20 13:19:18 +11:00
Matthijs Mekking
17cdde1e56
Replace DSA with Reserved algorithm
2018-12-19 12:54:57 +01:00
Matthijs Mekking
6d976b37c1
Add dnssec-signzone tests with unsupported alg
...
dnssec-signzone should sign a zonefile that contains a DNSKEY record
with an unsupported algorithm.
2018-12-19 12:54:31 +01:00
Ondřej Surý
8903d68d69
gcc defines __SANITIZE_ADDRESS__ and not __ADDRESS_SANITIZER__, use the correct #define
2018-12-19 12:24:59 +01:00
Witold Kręcicki
6d50138405
Use rndc_reload in tests, make sure that reload is complete before continuing
2018-12-19 11:33:37 +01:00
Witold Kręcicki
517449e0e6
Add a status line to rndc status notifying that server is being reloaded/reconfigured
2018-12-19 11:32:21 +01:00
Ondřej Surý
cad6b39cab
Disable RTLD_DEEPBIND when compiled under AddressSanitizer
2018-12-19 09:59:40 +01:00
Witold Kręcicki
fee890461b
Get common stuff out of bin/tests/system/conf.sh.{in,win32} into conf.sh.common
2018-12-18 08:57:05 -05:00
Ondřej Surý
808dac0760
Properly detect msys/msys2 environment in the stop.pl script.
2018-12-18 14:27:56 +01:00
Ondřej Surý
7a721f983e
Revert "Merge branch '782-cygwin-grep-CRLF-issue' into 'master'"
...
This reverts commit 4af9f97189 , reversing
changes made to 0289f3f281 .
2018-12-17 12:23:14 +01:00
Curtis Blackburn and Evan Hunt
2ec746dafe
minor fixes to dns64 and rndc CRLF fix. rpzrecurse failure
...
will be addressed in a separate issue
2018-12-14 18:22:58 -08:00
Curtis Blackburn and Evan Hunt
9fc68285ef
more CRLF fixes (dns64, rndc, rpzrecurse)
2018-12-14 18:22:58 -08:00
Curtis Blackburn and Evan Hunt
bdbf6ede3a
missed one in the digdelv test
2018-12-14 18:22:58 -08:00
Curtis Blackburn and Evan Hunt
ba1b9ca4d4
digdelv test fixed for CRLF issue
2018-12-14 18:22:58 -08:00
Curtis Blackburn and Evan Hunt
18e8835044
windows CRLF issues fixed in builtin test
2018-12-14 18:22:58 -08:00
Mark Andrews
53a33f7365
pass the correct object to cfg_obj_log
2018-12-14 16:29:02 +11:00
Mark Andrews
7e4b82103b
check that DNSKEY and other occluded data are excluded from the delegating bitmap
2018-12-14 12:48:55 +11:00
Mark Andrews
47a4e0eeaa
check that the time between notify messages is not too small
2018-12-12 09:39:00 +11:00
Ondřej Surý
826c335980
Remove outdated bin/tests/optional/dst_test test
2018-12-11 11:32:24 +01:00
Ondřej Surý
e69dc0dbc7
Remove RSAMD5 support
2018-12-11 11:32:24 +01:00
Ondřej Surý
bc12c52e82
Run the digdelv tests with set -e enabled
2018-12-11 10:21:47 +01:00
Ondřej Surý
351efd8812
Update digdelv system test to not use static RSAMD5 key and make scripts shellcheck clean
2018-12-11 10:21:40 +01:00
Ondřej Surý
f5785f97fc
Refactor synthfromdnssec system test to use $DEFAULT_ALGORITHM, be shellcheck clean and run under set -e
2018-12-11 09:44:08 +01:00
Ondřej Surý
e1bf5624fb
Run the sfcache system tests with set -e enabled
2018-12-11 09:27:16 +01:00
Ondřej Surý
f566010717
sfcache system test: Remove RSAMD5 usage and make script shellcheck compliant
2018-12-11 09:27:16 +01:00
Ondřej Surý
7e07d05ae7
Replace RSAMD5 keys with keys using DEFAULT_ALGORITHM variable from conf.sh
2018-12-11 09:27:16 +01:00
Ondřej Surý
aeebcb4ae8
Run the dnssec system tests with set -e enabled
2018-12-10 19:47:32 +01:00
Ondřej Surý
ca7cadfa92
dnssec system test: Remove RSAMD5 usage and make script shellcheck compliant
2018-12-10 19:47:32 +01:00
Ondřej Surý and Evan Hunt
a160fecaa1
Replace RSAMD5 keys with keys using DEFAULT_ALGORITHM variable from conf.sh
2018-12-10 09:16:46 -08:00
Mark Andrews
3bca52ca07
allow a small about of time for the syncptr event to be processed
2018-12-10 16:59:27 +11:00
Michał Kępień and Mark Andrews
adbca54079
Check that DNAME is not treated as a delegation when signing
2018-12-09 23:12:41 -05:00
Mark Andrews
6b470bbf42
verify that auto-dnssec maintain generates and signs NSEC3 records with DNAME at the apex
2018-12-09 23:12:41 -05:00
Mark Andrews
06e218c421
verify that dnssec-signzone generates NSEC3 records with DNAME at the apex
2018-12-09 23:12:41 -05:00
Tinderbox User
5bd855251c
prep 9.13.5
2018-12-07 03:41:19 +00:00
Mark Andrews
9eec02a81f
Properly detect bottom of zone when sign_a_node() is not called
2018-12-07 11:20:16 +11:00
Andreas Hasenack and Mark Andrews
665618698e
add -U to preparse and usage
2018-12-07 07:43:52 +11:00
Michał Kępień and Evan Hunt
0e12988dd6
make hook actions return an enum instead of a bool
...
Use an enum instead of a bool for the return type of hook actions in
order to facilitate adding further hook processing models in the future.
2018-12-06 10:36:50 -08:00
Michał Kępień and Evan Hunt
4234968798
add a function for processing a list of configured plugins
...
Add a new libisccfg function, cfg_pluginlist_foreach(), which allows an
arbitrary callback to be invoked for every "plugin" stanza present in a
configuration object. Use this function for both loading plugins and
checking their configuration in order to reduce duplication of
configuration processing code present in bin/named/server.c and
lib/bind9/check.c.
2018-12-06 10:36:50 -08:00
Evan Hunt
fd20f10d52
name change from "hook modules" to "plugins"
...
- "hook" is now used only for hook points and hook actions
- the "hook" statement in named.conf is now "plugin"
- ns_module and ns_modlist are now ns_plugin and ns_plugins
- ns_module_load is renamed ns_plugin_register
- the mandatory functions in plugin modules (hook_register,
hook_check, hook_version, hook_destroy) have been renamed
2018-12-06 10:36:50 -08:00
Evan Hunt
8da0c0e7d5
eliminate ns_hookctx structure, pass mctx/lctx/view directly
2018-12-06 10:36:44 -08:00
Evan Hunt
7a47e4d85f
restore filter-aaaa syntax checking
...
- added functionality to check hook parameters in named-checkconf,
and restored the checkconf tests that were removed from the
filter-aaaa test.
2018-12-06 10:29:12 -08:00
Evan Hunt
b94945e606
refactor to support multiple module instances
...
- use a per-view module list instead of global hook_modules
- create an 'instance' pointer when registering modules, store it in
the module structure, and use it as action_data when calling
hook functions - this enables multiple module instances to be set
up in parallel
- also some nomenclature changes and cleanup
2018-12-06 10:29:12 -08:00
Michał Kępień and Evan Hunt
baa38d6e94
refactor response filtering code in bin/hooks/filter-aaaa.c
2018-12-06 10:29:12 -08:00
Evan Hunt
0b988256c7
copy ns_hook objects before adding them to a hook table
...
- this is necessary because adding the same hook to multiple views
causes the ISC_LIST link value to become inconsistent; it isn't
noticeable when only one hook action is ever registered at a
given hook point, but it will break things when there are two.
2018-12-06 10:29:12 -08:00