Mark Andrews
d319c1ce2b
3368. [bug] <dns/iptable.h> and <dns/zone.h> where not C++ safe.
2012-08-21 16:45:59 +10:00
Mark Andrews
9e7fcd7c19
3367. [bug] dns_dnsseckey_create() result was not being checked.
...
[RT #30685 ]
2012-08-21 12:06:37 +10:00
Tinderbox User
b9f7f9e160
update copyright notice
2012-08-17 23:45:39 +00:00
ckb
3b1fafcfb3
3366. [bug] Fixed Read-After-Write dependency violation for IA64
...
atomic operations. [RT #25181 ]
2012-08-17 13:08:29 -05:00
Mark Andrews
13a90e9f23
we didn't catch a zero option at the global level when views are active
2012-08-17 13:41:15 +10:00
Evan Hunt
c98f17f73b
remove spurious newlines in zone.c logging
...
3365. [bug] Removed spurious newlines from log messages in
zone.c [RT #30675 ]
2012-08-16 10:46:35 -07:00
Evan Hunt
3a6af6ab9b
allow "forward" and "forwarders" in static-stub
...
3363. [bug] Need to allow "forward" and "fowarders" options
in static-stub zones; this had been overlooked.
[RT #30482 ]
2012-08-15 13:12:21 -07:00
Tinderbox User
f35cea4f44
update copyright notice
2012-08-14 23:45:36 +00:00
Evan Hunt
475b563876
properly range-check fields that do not allow 0
...
3362. [bug] Setting some option values to 0 in named.conf
could trigger an assertion failure on startup.
[RT #27730 ]
2012-08-13 22:41:33 -07:00
Mark Andrews
2efa809b42
test against unsigned zero
2012-08-14 14:30:54 +10:00
Mark Andrews
911e7390aa
3360. [bug] 'host -w' could die. [RT #18723 ]
2012-08-14 11:10:25 +10:00
Evan Hunt
5c13c20390
address memory leak with bad tsig secret
...
3359. [bug] An improperly-formed TSIG secret could cause a
memory leak. [RT #30607 ]
2012-08-10 20:17:22 -07:00
Mark Andrews
572ca391c7
silence compiler warnings
2012-07-27 07:53:39 +10:00
Mark Andrews
b33adeb54d
Merge branch 'v9_8' of repo.isc.org:/proj/git/prod/bind9 into v9_8
2012-07-26 13:09:20 +10:00
Mark Andrews
948b02194d
remove conflict marker
2012-07-26 13:04:28 +10:00
Tinderbox User
8b79e1aed5
update copyright notice
2012-07-25 23:45:36 +00:00
ckb
540b745122
3356. [bug] Cap the TTL of signed RRsets when RRSIGs are
...
approaching their expiry, so they don't remain
in caches after expiry. [RT #26429 ]
2012-07-25 17:25:13 -05:00
Evan Hunt
0bae1e2746
update api
2012-07-23 23:39:23 -07:00
Mark Andrews
31f52c679e
cast mode to unsigned int for fprintf
2012-07-24 13:02:36 +10:00
Mark Andrews
0c6e3db3fd
cleanup unused variables
2012-07-24 12:22:29 +10:00
Tinderbox User
6686ee02c3
update copyright notice
2012-07-23 23:45:40 +00:00
Mark Andrews
4e93d4a830
3354. [func] Improve OpenSSL error logging. [RT #29932 ]
2012-07-23 15:10:41 +10:00
Mark Andrews
24d93f177d
windows fixes
2012-07-20 18:11:33 +10:00
Tinderbox User
52385b05cd
update copyright notice
2012-07-19 23:45:30 +00:00
Mark Andrews
ac6f11a584
3353. [bug] Use a single task for task exclusive operations.
...
[RT #29872 ]
2012-07-19 23:59:28 +10:00
Mark Andrews
b3f7cbd9f1
3352. [bug] Ensure that learned server attributes timeout of the
...
adb cache. [RT #29856 ]
2012-07-18 14:18:32 +10:00
Mark Andrews
533adce96c
3351. [bug] isc_mem_put and isc_mem_putanddetach didn't report
...
caller if either ISC_MEM_DEBUGSIZE or ISC_MEM_DEBUGCTX
memory debugging flags are set. [RT #30243 ]
2012-07-18 10:03:54 +10:00
Mark Andrews
4f95da36b0
3350. [bug] Memory read overrun in isc___mem_reallocate if
...
ISC_MEM_DEBUGCTX memory debugging flag is set.
[RT #30240 ]
Conflicts:
CHANGES
2012-07-18 09:53:01 +10:00
ckb
e832bdf70a
3348. [security] prevent RRSIG data from being cached if a negative
...
record matching the covering type exists at a higher
trust level. Such data already can't be retrieved from
the cache since change 3218 -- this prevents it
being inserted into the cache as well. [RT #26809 ]
2012-07-09 13:25:39 -05:00
Evan Hunt
c0d7ef3afd
warn when changing mode on .private files
...
3347. [bug] dnssec-settime: Issue a warning when writing a new
private key file would cause a change in the
permissions of the existing file. [RT #27724 ]
2012-07-05 18:04:53 -07:00
Evan Hunt
42b8ca8347
fix bad-cache assert
...
3346. [security] Bad-cache data could be used before it was
initialized, causing an assert. [RT #30025 ]
2012-07-02 10:03:46 -07:00
Tinderbox User
599cf7175e
update copyright notice
2012-06-29 23:45:32 +00:00
Mark Andrews
c0b8f1a675
reverse bad copyright update
2012-06-29 11:43:12 +10:00
Tinderbox User
4106b0caeb
update copyright notice
2012-06-29 01:21:53 +00:00
Tinderbox User
e9e0aac754
update copyright notice
2012-06-26 23:45:31 +00:00
Mark Andrews
eea0a8248a
3342. [bug] Change #3314 broke saving of stub zones to disk
...
resulting in excessive cpu usage in some cases.
[RT #29952 ]
2012-06-27 09:27:06 +10:00
Tinderbox User
bfcdd962b0
update copyright notice
2012-06-25 23:45:34 +00:00
Mark Andrews
4f86c7e924
silence compiler warning by using offsetof to get structure element offsets
2012-06-25 12:03:58 +10:00
Mark Andrews
faea8a525d
remove rundundent call 'result = isc_parse_uint8(&ui, r.base, 10);'
2012-06-21 14:30:06 +10:00
Mark Andrews
61731ad937
3337. [bug] Change #3294 broke support for the multiple keys
...
in controls. [RT #29694 ]
2012-06-13 16:51:43 +10:00
Mark Andrews
bdedbcd9d0
3333. [bug] Setting resolver-query-timeout too low can cause
...
named to not recover if it looses connectivity.
[RT #29623 ]
2012-06-08 12:45:19 +10:00
Mark Andrews
896fb8c26a
3332. [bug] Re-use cached DS rrsets if possible. [RT 29446]
2012-06-07 12:58:25 +10:00
Evan Hunt
5810423788
security fix
...
3331. [security] dns_rdataslab_fromrdataset could produce bad
rdataslabs. [RT #29644 ]
2012-06-01 09:53:04 -07:00
Tinderbox User
f3c44ec867
update copyright notice
2012-05-31 23:45:36 +00:00
Vernon Schryver
07d51fa5ba
Squashed commit of the following:
...
commit 4d29cea2ea05491a7afebc343e41d9b6ad58f068
commit 3211da9716e5ecc0bb758666db70a667ca5a944e
commit 884b6f5d5e9b1f50757c606adafabe382b90c80b
commit 53f82565f72f091a46caed754db160e4a7a2d161
Merge: 8f73664 9698f42
commit 8f73664e7bdc04f766ddcccfb5fc5f857a22326a
for rt26172
Add
- optional "recursive-only yes|no" to the response-policy statement
- optional max-policy-ttl to limit the lies that "recursive-only no"
can introduce into resolvers' caches
- test that queries with RD=0 are not rewritten by default
- performance smoke test
Change encoding of PASSTHRU action to "rpz-passthru".
(The old encoding is still accepted.)
Fix rt26180 assert botch in zone_findrdataset() in this branch
as well.
Fix missing signatures on NOERROR results despite RPZ hits
when there are signatures and the client asks for DNSSEC,
2012-05-31 01:47:47 +00:00
Mark Andrews
a06ae70419
silence warnings from clang
2012-05-30 11:55:08 +10:00
Mark Andrews
d824d6739f
= -> ==
2012-05-18 17:11:09 +10:00
Tinderbox User
b008cf0a4d
update copyright notice
2012-05-17 23:45:35 +00:00
Evan Hunt
5502d62636
fix check_data() usage
...
3328. [bug] Fixed inconsistent data checking in dst_parse.c.
[RT #29401 ]
2012-05-17 16:17:44 -07:00
Evan Hunt
9d1aaaaf3a
add ECDSA support
...
3317. [protocol] Add ECDSA support (RFC 6605). [RT #21918 ]
2012-05-17 16:09:53 -07:00