Commit Graph
967 Commits
Author SHA1 Message Date
Automatic Updater e5045764a4 9.9.0b1 2011-10-28 12:28:33 +00:00
Automatic Updater 23967fcd6e regen HEAD 2011-10-28 12:23:40 +00:00
Evan Hunt 9c03f13e18 3185. [func] New 'rndc signing' option for auto-dnssec zones:
- 'rndc signing -list' displays the current
			   state of signing operations
			 - 'rndc signing -clear' clears the signing state
		  	   records for keys that have fully signed the zone
			 - 'rndc signing -nsec3param' sets the NSEC3
			   parameters for the zone
			The 'rndc keydone' syntax is removed. [RT #23729]
2011-10-28 06:20:07 +00:00
Automatic Updater be75fd4f49 regen HEAD 2011-10-27 01:14:50 +00:00
Evan Hunt 9570ddcd41 3180. [func] Local copies of slave zones are now saved in raw
format by default, to improve startup performance.
			'masterfile-format text;' can be used to override
			the default, if desired. [RT #25867]
2011-10-26 15:23:37 +00:00
Automatic Updater e839bf134f regen HEAD 2011-10-26 01:14:53 +00:00
Mark Andrews b1c6de5456 3177. [func] 'rndc keydone', remove the indicator record that
named has finished signing the zone with the
                        corresponding key.  [RT #26206]
2011-10-25 01:54:22 +00:00
Automatic Updater 12bfbed87c regen HEAD 2011-10-21 01:14:51 +00:00
Automatic Updater 1f7bae40e4 9.9.0a3 2011-10-14 00:04:49 +00:00
Automatic Updater 6f64d4ab8e regen HEAD 2011-10-14 00:04:24 +00:00
Automatic Updater 87002e151b <command>-><option> 2011-10-13 23:47:10 +00:00
Automatic Updater 085e84f19b add missing </listitems> 2011-10-13 23:44:47 +00:00
Vernon Schryver 9fee08f655 Commit rt25172 changes to HEAD including
- fix precedence among competing rules
  - improve ARM text including documenting rule precedence
  - try to rewrite CNAME chains until first hit
  - new "rpz" logging channel
  - same fix for "NS ." as in RT 24985
2011-10-13 01:32:34 +00:00
Automatic Updater 54e57d8ff4 regen HEAD 2011-10-07 01:14:45 +00:00
Mark Andrews 3952b16164 fix default for sig-signing-type 2011-10-06 11:50:20 +00:00
Mark Andrews 6e1b287107 rt21764 session-* fixes 2011-10-06 11:31:57 +00:00
Automatic Updater 37f74f3b0f 9.9.0a2 2011-09-13 21:41:04 +00:00
Automatic Updater eea6be913f regen HEAD 2011-09-07 01:14:44 +00:00
Scott Mann fad5116b3d Remove the ixfr-from-differences side-effect which causes an AXFR and extend
request-ixfr to the zone level.
2011-09-06 22:29:33 +00:00
Automatic Updater c978c6cb6e regen HEAD 2011-08-31 01:14:43 +00:00
Mark Andrews 9198ab377b 3147. [func] Initial inline signing support. [RT #23657] 2011-08-30 05:16:15 +00:00
Automatic Updater f588331261 regen 2011-08-23 02:08:33 +00:00
Automatic Updater cb3c295308 regen HEAD 2011-08-09 01:14:54 +00:00
Automatic Updater f77c5a1336 regen HEAD 2011-08-04 01:14:44 +00:00
Mark Andrews ce97ba9c94 unbalance tag <replaceable> x2 2011-08-03 01:19:10 +00:00
Evan Hunt 0127993480 3140. [func] New command "rndc flushtree <name>" clears the
specified name from the server cache along with
			all names under it. [RT #19970]
2011-08-02 20:36:13 +00:00
Automatic Updater 9d5a84057d regen HEAD 2011-07-29 01:14:31 +00:00
Evan Hunt cf63d32d55 3136. [func] Add RFC 1918 reverse zones to the list of built-in
empty zones switched on by the 'empty-zones-enable'
			option. [RT #24990]
2011-07-28 03:18:17 +00:00
Automatic Updater 06ac94d81a regen HEAD 2011-07-02 01:14:42 +00:00
Mark Andrews a69070d8fa 3130. [func] Support alternate methods for managing a dynamic
zone's serial number.  Two methods are currently
                        defined using serial-update-method, "increment"
                        (default) and "unixtime".  [RT #23849]
2011-07-01 02:25:48 +00:00
Automatic Updater 71abcecb3b regen HEAD 2011-06-22 01:14:38 +00:00
Mark Andrews 0fc9a7b571 9.9 not 9.7 2011-06-21 05:33:21 +00:00
Automatic Updater aa801d4cc3 regen HEAD 2011-06-11 01:14:45 +00:00
Automatic Updater 0f467ed4d4 update copyright notice 2011-06-10 23:47:32 +00:00
Evan Hunt 79ce3a9e82 3128. [func] Inserting an NSEC3PARAM via dynamic update in an
auto-dnssec zone that has not been signed yet
			will cause it to be signed with the specified NSEC3
			parameters when keys are activated.  The
			NSEC3PARAM record will not appear in the zone until
			it is signed, but the parameters will be stored.
			[RT #23684]
2011-06-10 01:51:09 +00:00
Evan Hunt 5e3affc6a0 3127. [bug] 'rndc thaw' will now remove a zone's journal file
if the zone serial number has been changed and
			ixfr-from-differences is not in use.  [RT #24687]
2011-06-10 01:32:38 +00:00
Automatic Updater f0da471019 regen HEAD 2011-06-10 01:14:39 +00:00
Mark Andrews 475b1ed9cc 3126. [security] Using DNAME record to generate replacements caused
RPZ to exit with a assertion failure. [RT #23766]
2011-06-09 03:10:17 +00:00
Automatic Updater 9ce6056d52 regen HEAD 2011-05-24 01:14:44 +00:00
Evan Hunt c5660d514b grammar repair 2011-05-23 20:11:14 +00:00
Evan Hunt bfe32d08c5 3116. [func] New 'dnssec-update-mode' option controls updates
of DNSSEC records in signed dynamic zones.  Set to
			'no-resign' to disable automatic RRSIG regeneration
			while retaining the ability to sign new or changed
			data. [RT #24533]
2011-05-23 20:10:03 +00:00
Automatic Updater 6100dfd774 regen HEAD 2011-05-18 01:14:43 +00:00
Mark Andrews 7609e973f5 3113. [doc] Document the relationship between serial-query-rate
and NOTIFY messages.
2011-05-17 04:48:51 +00:00
Automatic Updater 93a5136c2b regen HEAD 2011-05-17 01:14:37 +00:00
Mark Andrews 0268e42b4e 3112. [doc] Add missing descriptions of the update policy name
types "ms-self", "ms-subdomain", "krb5-self" and
                        "krb5-subdomain", which allow machines to update
                        their own records, to the BIND 9 ARM.
2011-05-16 04:09:34 +00:00
Automatic Updater d9c707589a regen HEAD 2011-05-09 01:14:47 +00:00
Mark Andrews aeea801711 fix also-notify 2011-05-08 06:49:18 +00:00
Mark Andrews db334bba24 <command> -> </command> 2011-05-07 14:39:17 +00:00
Evan Hunt 0c3acefdc1 Additional documentation for change #3109 (forgot to mention named masters
lists in the ARM).  Reviewed by Scott.
2011-05-06 21:41:43 +00:00
Evan Hunt ac21f918f2 3109. [func] The also-notify option now uses the same syntax
as a zone's masters clause.  This means it is
			now possible to specify a TSIG key to use when
			sending notifies to a given server, or to include
			an explicit named masters list in an also-notfiy
			statement.  [RT #23508]
2011-05-06 21:23:51 +00:00