Commit Graph
18717 Commits
Author SHA1 Message Date
Automatic Updater 6353dba50d update 2011-06-10 02:17:05 +00:00
Evan Hunt 79ce3a9e82 3128. [func] Inserting an NSEC3PARAM via dynamic update in an
auto-dnssec zone that has not been signed yet
			will cause it to be signed with the specified NSEC3
			parameters when keys are activated.  The
			NSEC3PARAM record will not appear in the zone until
			it is signed, but the parameters will be stored.
			[RT #23684]
2011-06-10 01:51:09 +00:00
Evan Hunt 5e3affc6a0 3127. [bug] 'rndc thaw' will now remove a zone's journal file
if the zone serial number has been changed and
			ixfr-from-differences is not in use.  [RT #24687]
2011-06-10 01:32:38 +00:00
Automatic Updater 67d9642fc3 update 2011-06-10 01:17:42 +00:00
Automatic Updater f0da471019 regen HEAD 2011-06-10 01:14:39 +00:00
Automatic Updater 4269ba424c update 2011-06-09 03:17:47 +00:00
Mark Andrews 475b1ed9cc 3126. [security] Using DNAME record to generate replacements caused
RPZ to exit with a assertion failure. [RT #23766]
2011-06-09 03:10:17 +00:00
Automatic Updater 3b2040fb15 update 2011-06-09 01:17:42 +00:00
Mark Andrews b64e3b8358 3125. [security] Using wildcard CNAME records as a replacement with
RPZ caused named to exit with a assertion failure.
                        [RT #24715]
2011-06-09 00:42:51 +00:00
Evan Hunt 2a6d60615c Fixed an nsupdate test error 2011-06-09 00:15:05 +00:00
Automatic Updater 0983323154 auto update 2011-06-08 23:16:55 +00:00
Automatic Updater 29ced409ab update 2011-06-08 22:17:02 +00:00
Evan Hunt 6de9744cf9 3124. [bug] Use an rdataset attribute flag to indicate
negative-cache records rather than using rrtype 0;
			this will prevent problems when that rrtype is
			used in actual DNS packets. [RT #24777]

3123.	[security]	Change #2912 exposed a latent flaw in
			dns_rdataset_totext() that could cause named to
			crash with an assertion failure. [RT #24777]
2011-06-08 22:13:51 +00:00
Automatic Updater 46a8315efe auto update 2011-06-07 23:17:33 +00:00
Automatic Updater b833cfffdd update 2011-06-07 02:17:20 +00:00
Scott Mann 07797bfb1f fix RT 24561 2011-06-07 01:45:38 +00:00
Automatic Updater 3c7e88868a auto update 2011-06-06 23:16:59 +00:00
Automatic Updater ba260b39f8 update 2011-06-06 02:18:02 +00:00
Automatic Updater 9dc3f9c95f cleanup removed files 2011-06-06 01:28:54 +00:00
Automatic Updater 52d4a52c60 auto update 2011-06-03 23:17:51 +00:00
Automatic Updater 5e5d5f393e auto update 2011-06-02 23:17:04 +00:00
Automatic Updater 89f0136bdf update 2011-06-02 21:17:27 +00:00
Evan Hunt 6b95b91c61 3122. [cleanup] dnssec-settime: corrected usage message. [RT #24664] 2011-06-02 20:24:45 +00:00
Automatic Updater 9b97f0ede6 auto update 2011-06-01 23:17:41 +00:00
Automatic Updater 035c378036 update 2011-05-31 14:17:47 +00:00
Mark Andrews ec564e401a add debugging output on test failure 2011-05-31 13:52:06 +00:00
Automatic Updater a22e1c4e70 update 2011-05-30 23:18:11 +00:00
Mark Andrews ae0691566a date +%s is not portable, use perl -e 'print time();', Adjust messages 2011-05-30 22:32:06 +00:00
Automatic Updater 4e3be43e8a update 2011-05-30 15:17:59 +00:00
Scott Mann 5588b32695 This is a workaround fix for a problem in Solaris 10 (specifically on thing1)
for which a root cause has not yet been found. RT #24561.
2011-05-30 15:13:49 +00:00
Automatic Updater 1f69914bc4 update 2011-05-30 08:18:25 +00:00
Mark Andrews fe8572e116 The old active key could be deleted before the "former standby key has now
signed fully" ran causing it to fail.  Delay the deletion by 10 seconds.
2011-05-30 07:25:19 +00:00
Automatic Updater 7b1b9e7163 auto update 2011-05-27 23:27:45 +00:00
Automatic Updater e6290b4d1b update 2011-05-27 00:17:17 +00:00
Automatic Updater 6406d6507a update copyright notice 2011-05-26 23:47:28 +00:00
Automatic Updater 7f814b8b16 newcopyrights 2011-05-26 23:37:02 +00:00
Automatic Updater b1050011bf update 2011-05-26 23:17:21 +00:00
Automatic Updater 0977de5e55 auto update 2011-05-26 23:16:10 +00:00
Evan Hunt fbe2cff19f 3121. [security] An authoritative name server sending a negative
response containing a very large RRset could
                        trigger an off-by-one error in the ncache code
                        and crash named. [RT #24650]
2011-05-26 23:11:15 +00:00
Automatic Updater df4193696f update 2011-05-26 08:17:37 +00:00
Mark Andrews 4100ae5109 move dns_trust_totext from masterdump.c to rdataset.c so that exportlib will build 2011-05-26 07:56:39 +00:00
Automatic Updater 37c7dfe92c update 2011-05-26 05:17:01 +00:00
Mark Andrews e482a4a340 list -> listed 2011-05-26 04:57:25 +00:00
Mark Andrews ea82782532 3120. [bug] Named could fail to validate zones list in a DLV
that validated insecure without using DLV and had
                        DS records in the parent zone. [RT #24631]
2011-05-26 04:35:02 +00:00
Evan Hunt 0245f7725c 3118. [bug] When rolling to a new DNSSEC key, a private-type
record could be created and never marked complete.
			[RT #23253]
2011-05-26 04:25:47 +00:00
Automatic Updater 798ecee049 update 2011-05-26 00:17:37 +00:00
Automatic Updater 00678e367d update copyright notice 2011-05-25 23:47:16 +00:00
Automatic Updater 88d58d79c5 newcopyrights 2011-05-25 23:31:27 +00:00
Automatic Updater adb6daf322 auto update 2011-05-25 23:17:41 +00:00
Automatic Updater a07664121a update 2011-05-25 01:17:16 +00:00