Mark Andrews
f1ad91f47b
Revert "add CVE-2014-3859"
...
This reverts commit 88f339e161 .
2014-05-27 12:30:36 +10:00
Mark Andrews
88f339e161
add CVE-2014-3859
2014-05-26 13:14:47 +10:00
Evan Hunt
0067fe2103
[v9_8] update README
2014-02-06 22:53:25 -08:00
Evan Hunt
3a69982cf6
[v9_8] add description of [contrib]
2014-02-05 14:55:12 -08:00
Evan Hunt
4f2d52897b
[v9_8] explain [placeholder]
2014-02-05 09:25:36 -08:00
Evan Hunt
c3c079103a
[v9_8] add CVE details; marked 3656 as [security]
2014-01-13 14:57:31 -08:00
Evan Hunt
4785004e3e
[v9_8] prep 9.8.7rc1
2014-01-10 09:20:06 -08:00
Evan Hunt
fd892db68d
README formatting
2013-12-11 20:08:26 -08:00
Mark Andrews
563ba0b816
3645. [protocol] Use case sensitive compression when responding to
...
queries. [RT #34737 ]
(cherry picked from commit cb69994ff8 )
2013-09-18 16:16:06 +10:00
Mark Andrews
9655a83eb9
add CVE-2013-4854
2013-07-26 10:17:47 +10:00
Evan Hunt
faae8378fc
[v9_8] prep 9.8.6b1
2013-07-01 10:08:51 -07:00
Evan Hunt
212930f58f
[v9_8] prepare 9.8.5rc1
2013-03-26 19:05:30 -07:00
Jeremy C. Reed
9f366c6b1a
Mention latest CVE too.
2013-01-18 22:52:53 +00:00
Mark Andrews
9bb0197b45
9.8.5
2013-01-11 15:22:58 +11:00
Mark Andrews
e3aad295c3
update CVE list
2012-08-24 14:13:06 +10:00
Evan Hunt
e2bdd929c7
prep 9.8.4b1
2012-07-23 12:54:29 -07:00
Mark Andrews
493c9fc628
9.8.3
2012-04-27 16:25:09 +10:00
Evan Hunt
5a6883cb47
nicer release notes URL
2012-02-23 03:53:19 +00:00
Evan Hunt
54408e8159
add pointer to release notes (ugly URL; should be updated to a pretty one)
2012-02-22 00:55:22 +00:00
Mark Andrews
4165c52300
9.8.2
2011-11-22 02:45:51 +00:00
Evan Hunt
d8e930d231
added documentation of change categories
2011-11-04 22:27:55 +00:00
Mark Andrews
7d5a0de150
9.8.1
2011-08-24 02:08:26 +00:00
Evan Hunt
1fded9ad8f
Prep for release of 9.8.1b1. (Note: the experiment with spinning 9.8.1b2
...
after not releasing the previously-spun 9.8.1b1 is hereby abandoned; the
v9_8_1b2 tag has been removed.)
2011-05-16 23:01:19 +00:00
Scott Mann
5d284d6f54
creating 9.8.1b2
2011-04-20 21:47:37 +00:00
Evan Hunt
f1fd579ebf
update for 9.8.0 release
2011-02-19 08:21:16 +00:00
Mark Andrews
73dbd4e933
9.8.0a1
2010-12-09 04:39:10 +00:00
Evan Hunt
b497531c76
Added HISTORY, put a pointer to it in README. (text changes reviewed by
...
Larissa.)
2010-02-04 23:34:04 +00:00
Evan Hunt
9d86a2e1c1
one more compatibility note
2010-01-21 21:24:03 +00:00
Evan Hunt
77fdd17568
Added new compatibility notes and information about key ID collisions.
2010-01-21 21:11:17 +00:00
Evan Hunt
306b36adb6
- moved NSEC3-NOTES to README.dnssec
...
- moved README.idnkit to contrib/idn
2009-12-04 20:14:28 +00:00
Evan Hunt
af104911b7
missing period in a sentence
2009-11-02 20:04:39 +00:00
Mark Andrews
2847930722
2708. [func] Insecure to secure and NSEC3 parameter changes via
...
update are now fully supported and no longer require
defines to enable. We now no longer overload the
NSEC3PARAM flag field, nor the NSEC OPT bit at the
apex. Secure to insecure changes are controlled by
by the named.conf option 'secure-to-insecure'.
Warning: If you had previously enabled support by
adding defines at compile time to BIND 9.6 you should
ensure that all changes that are in progress have
completed prior to upgrading to BIND 9.7. BIND 9.7
is not backwards compatible.
2009-10-08 23:13:07 +00:00
Evan Hunt
a88f8c2dd1
update README for 9.7.0b1 release
2009-10-05 22:02:44 +00:00
Evan Hunt
0e4fda8862
typo fix
2009-09-15 19:30:28 +00:00
Evan Hunt
523598fafa
- update README for a3 release
...
- update README.rfc5011 to remove info now in the ARM, and to add
smart-signing info
2009-09-08 16:33:01 +00:00
Evan Hunt
d699672160
Initial prep for 9.7.0a3 release.
2009-09-02 06:41:31 +00:00
Tatuya JINMEI 神明達哉
307d208450
2660. [func] Add a new set of DNS libraries for non-BIND9
...
applications. See README.libdns. [RT #19369 ]
2009-09-01 00:22:28 +00:00
Evan Hunt
553ead32ff
2636. [func] Simplify zone signing and key maintenance with the
...
dnssec-* tools. Major changes:
- all dnssec-* tools now take a -K option to
specify a directory in which key files will be
stored
- DNSSEC can now store metadata indicating when
they are scheduled to be published, acttivated,
revoked or removed; these values can be set by
dnssec-keygen or overwritten by the new
dnssec-settime command
- dnssec-signzone -S (for "smart") option reads key
metadata and uses it to determine automatically
which keys to publish to the zone, use for
signing, revoke, or remove from the zone
[RT #19816 ]
2009-07-19 04:18:05 +00:00
Evan Hunt
b272d38cc5
2612. [func] Add default values for the arguments to
...
dnssec-keygen. Without arguments, it will now
generate a 1024-bit RSASHA1 zone-signing key,
or with the -f KSK option, a 2048-bit RSASHA1
key-signing key. [RT #19300 ]
2611. [func] Add -l option to dnssec-dsfromkey to generate
DLV records instead of DS records. [RT #19300 ]
2009-06-17 06:51:44 +00:00
Evan Hunt
76786c2904
- assorted changes needed for windows build
...
- began versioning for 9.7.0a1
2009-06-12 02:33:21 +00:00
Tatuya JINMEI 神明達哉
40d0f115a6
2604. [func] Add support for DNS rebinding attack prevention through
...
new options, deny-answer-addresses and
deny-answer-aliases. Based on contributed code from
JD Nurmi, Google. [RT #18192 ]
2009-05-29 22:22:37 +00:00
Mark Andrews
e80b693272
2539. [security] Update the interaction between recursion, allow-query,
...
allow-query-cache and allow-recursion. [RT #19198 ]
2009-01-30 03:48:54 +00:00
Tatuya JINMEI 神明達哉
492df05874
added new features for 9.7.0 so that they won't be forgotten (we can remove
...
them later if they are considered minor details).
2009-01-10 03:02:37 +00:00
Jeremy Reed
df6663c900
Add another NetBSD version. (I use that.)
...
These lists of operating systems and versions need to be updated
-- working on that in bugs ticket 16378.
2008-12-19 18:22:37 +00:00
Tatuya JINMEI 神明達哉
35726c4745
wording consistency
2008-11-08 22:44:10 +00:00
Tatuya JINMEI 神明達哉
f99fd90097
2489. [port] solaris: Workaround Solaris's kernel bug about
...
/dev/poll:
http://bugs.opensolaris.org/view_bug.do?bug_id=6724237
Define ISC_SOCKET_USE_POLLWATCH at build time to enable
this workaround. [RT #18870 ]
2008-11-08 22:35:12 +00:00
Mark Andrews
f6f1672b4e
2486. [func] The default locations for named.pid and lwresd.pid
...
are now /var/run/named/named.pid and
/var/run/lwresd/lwresd.pid respectively.
This allows the owner of the containing directory
to be set, for "named -u" support, and allows there
to be a permanent symbolic link in the path, for
"named -t" support. [RT #18306 ]
2008-11-06 05:30:24 +00:00
Mark Andrews
831fb092e8
named-checkzone defaults
2008-10-24 00:52:49 +00:00
Mark Andrews
e2a24b6e79
document --enable-largefile
2008-10-14 03:33:01 +00:00
Evan Hunt
711f3ea3e3
remove "NSID support" from 9.6.0 features
2008-09-25 22:12:59 +00:00