Mark Andrews
b8341f294c
4329. [func] Warn about a common misconfiguration when forwarding
...
RFC 1918 zones. [RT #41441 ]
2016-03-08 10:11:56 +11:00
Mukund Sivaraman
2a461f1348
Repack dns_rbtnode struct to gain some space (reduce packing holes) ( #41854 )
...
(cherry picked from commit 8dbf9ceb8c )
2016-03-07 16:16:32 +05:30
Evan Hunt
53bcdbd5e3
[v9_10] silence coverity warning
2016-03-05 19:50:51 -08:00
Tinderbox User
87bdeb8a8b
regen v9_10
2016-03-06 01:07:51 +00:00
Mukund Sivaraman
19afa0cc8f
Fix rbt_remove_empty unittest
...
(reviewed by Evan on Jabber)
(cherry picked from commit f5cb0dd58b )
2016-03-05 13:55:10 +05:30
Mark Andrews
49abe5882d
add AVC
...
(cherry picked from commit e011df2927 )
2016-03-05 17:57:16 +11:00
Tinderbox User
89a9ff4a85
regen v9_10
2016-03-05 01:19:08 +00:00
Tinderbox User
736b0ac1c8
update copyright notice / whitespace
2016-03-04 23:45:45 +00:00
Tinderbox User
ca42a07b8c
newcopyrights
2016-03-04 23:30:15 +00:00
Mukund Sivaraman
09b9ffc029
Revert DEFAULT_NODE_LOCK_COUNT back to 7 ( #40997 )
2016-03-04 16:30:33 +05:30
Mukund Sivaraman
1cbbc0bde6
Include missing isc/print.h
2016-03-04 14:56:58 +05:30
Mukund Sivaraman
491a5a2a3c
Check if threads support is available
...
(cherry picked from commit 2457a4b245 )
2016-03-04 14:06:32 +05:30
Mukund Sivaraman
cb93542612
Use libisc thread functions
...
(cherry picked from commit 051197362b )
2016-03-04 14:00:26 +05:30
Mukund Sivaraman
d820e8ff8a
Add dns_name_fromwire() benchmark
...
(cherry picked from commit 59328c7674 )
2016-03-04 13:47:31 +05:30
Mukund Sivaraman
666fa20ef3
Log query and depth counters during fetches when querytrace is enabled ( #41787 )
...
(cherry picked from commit 275265ab27 )
2016-03-04 13:26:33 +05:30
Evan Hunt
1c57a595b1
[rt41656] line length
...
(cherry picked from commit 6957e9451cc7bf89d44716dfe4266281867e00e5)
(cherry picked from commit d4ed29b019 )
2016-03-04 13:02:17 +05:30
Mark Andrews
96085d274e
add AVC
2016-03-04 18:17:57 +11:00
Mark Andrews
d489cf8fd7
4326. [protocol] Add support for AVC. [RT #41819
...
(cherry picked from commit 8398f00156 )
2016-03-04 18:14:04 +11:00
Mukund Sivaraman
b15dde2889
Code cleanups ( #41656 )
...
(cherry picked from commit 9da98335c1 )
2016-03-04 12:23:32 +05:30
Evan Hunt
db06cd726c
[v9_10] recursively clean empty interior nodes when deleting database records
...
4324. [bug] When deleting records from a zone database, interior
nodes could be left empty but not deleted, damaging
search performance afterward. [RT #40997 ]
(cherry picked from commit 44c86318ed )
2016-03-03 21:15:21 -08:00
Tinderbox User
03eeffb060
update copyright notice / whitespace
2016-03-02 23:45:38 +00:00
Tinderbox User
223b51a35a
newcopyrights
2016-03-02 23:30:05 +00:00
Mark Andrews
74d495fdce
fix changes number
2016-03-02 12:27:43 +11:00
Mark Andrews
62e7d7533a
4223. [bug] Improve HTTP header processing on statschannel.
...
[RT #41674 ]
(cherry picked from commit ce7216c40a )
2016-03-02 11:10:32 +11:00
Tinderbox User
6d12bd7997
regen v9_10
2016-03-01 01:07:17 +00:00
Mark Andrews
ca3d4db1a5
re-order security list into reverse order
2016-02-29 12:44:35 +11:00
Mark Andrews
202efe3c3b
spelling
...
(cherry picked from commit 40401165e4 )
2016-02-29 12:20:33 +11:00
Mark Andrews
c08e4c3636
silence may be used when unset false positive
...
(cherry picked from commit c7aae79b62 )
2016-02-29 11:25:08 +11:00
Mark Andrews
e87b18eb8f
more sit -> cookie cleanups
2016-02-29 11:15:44 +11:00
Mark Andrews
0d2ac7e76e
rename sit buffer cookie
2016-02-29 10:32:03 +11:00
Mark Andrews
29d808c386
compute_sit/process_sit -> compute_cookie/process_cookie to aid with backporting
2016-02-29 10:26:06 +11:00
Mark Andrews
499952eb45
Part 2 of:
...
4319. [security] Fix resolver assertion failure due to improper
DNAME handling when parsing fetch reply messages.
(CVE-2016-1286) [RT #41753 ]
(cherry picked from commit 2de89ee9de )
2016-02-29 07:17:31 +11:00
Mark Andrews
b5c239dcdc
add CVE-2016-2088
2016-02-27 13:21:55 +11:00
Tinderbox User
3288843a56
regen v9_10
2016-02-27 01:07:30 +00:00
Mark Andrews
7cd300abd6
4322. [security] Duplicate EDNS COOKIE options in a response could
...
trigger an assertion failure. (CVE-2016-2088)
[RT #41809 ]
(cherry picked from commit 455c0848f8 )
2016-02-27 11:46:16 +11:00
Mark Andrews
498b6195f6
update copyrights
2016-02-25 10:56:48 +11:00
Mark Andrews
3b4b57bb4f
add CVE-2016-1286
2016-02-24 13:16:25 +11:00
Mark Andrews
f0eb27c402
4321. [bug] Zones using mapped files containing out-of-zone data
...
could return SERVFAIL instead of the expected NODATA
or NXDOMAIN results. [RT #41596 ]
(cherry picked from commit f9da4a8e54 )
2016-02-24 11:25:04 +11:00
Tinderbox User
c2d5cfa264
update copyright notice / whitespace
2016-02-23 23:46:00 +00:00
Tinderbox User
72ed396db8
newcopyrights
2016-02-23 23:30:36 +00:00
Mukund Sivaraman
77fe016206
Test bin/tests/system/checkconf/good-*.conf
2016-02-23 12:59:37 +05:30
Mukund Sivaraman
c685f0d741
Fix allocation for "none" ACL that caused assertion failure ( #41745 )
...
(cherry picked from commit 293a9e9978 )
2016-02-23 12:57:08 +05:30
Mark Andrews
e7c31225e7
update usage
...
(cherry picked from commit a125381c60 )
2016-02-23 16:57:57 +11:00
Tinderbox User
baa71f756a
regen v9_10
2016-02-23 01:07:37 +00:00
Mukund Sivaraman
456e1eadd2
Fix resolver assertion failure due to improper DNAME handling (CVE-2016-1286) ( #41753 )
...
(cherry picked from commit 5995fec51c )
2016-02-22 12:24:15 +05:30
Tinderbox User
a372b927ed
regen v9_10
2016-02-19 01:07:10 +00:00
Tinderbox User
160c8ad89d
update copyright notice / whitespace
2016-02-18 23:45:59 +00:00
Tinderbox User
4c287181f5
newcopyrights
2016-02-18 23:30:19 +00:00
Mark Andrews
e7e15d1302
4318. [security] Malformed control messages can trigger assertions
...
in named and rndc. (CVE-2016-1285) [RT #41666 ]
(cherry picked from commit a2b15b3305 )
2016-02-18 12:12:02 +11:00
Tinderbox User
c40415360f
newcopyrights
2016-02-12 23:30:11 +00:00