Simon Kelley
a754e1d7b2
Debian: Write pid-file in the correct place when using systemd.
2014-05-20 20:56:55 +01:00
Simon Kelley
8e9ffba66e
Merge branch 'mobile-ra'
...
Conflicts:
CHANGELOG
2014-05-20 20:38:25 +01:00
Simon Kelley
15a97ad6fb
Use ECC crypto in Nettle now.
2014-05-20 20:34:41 +01:00
Simon Ruderich
91f4a5e4b5
Debian/rules fixes to enable hardening.
2014-05-20 20:34:00 +01:00
Simon Kelley
0fa7e62947
Bump Debian version.
2014-05-20 19:54:25 +01:00
Andreas Metzler
62f992f06c
Debian fix: Enable dnsmasq systemd unit on install.
2014-05-11 17:53:54 +01:00
Simon Kelley
a23949d44d
Debian change: write pid-file even using systemd.
2014-05-11 17:43:29 +01:00
Simon Kelley
b692f23466
Fix DNS failure of cachesize set to zero.
2014-05-09 10:29:43 +01:00
Simon Kelley
8aa999ef69
Debian packaging fixes.
2014-05-04 21:45:26 +01:00
Conrad Kostecki
20b215f293
Update German translation.
2014-05-04 20:43:49 +01:00
Simon Kelley
e6096e643a
Another filter_rrsigs fix.
2014-05-01 18:19:12 +01:00
Simon Kelley
8938ae05ac
Get packet size right when removing pseudoheader.
2014-05-01 17:46:25 +01:00
Simon Kelley
9d1b22aac2
Fix DNSSEC validation of ANY queries.
2014-04-29 13:02:41 +01:00
Simon Kelley
1fc02680af
Do SERVFAIL, therefore continue when searching for DS in TCP path too.
2014-04-29 12:30:18 +01:00
Simon Kelley
4872aa747b
Handle SERVFAIL replies when looking for proven-nonexistence of DS.
2014-04-26 22:13:31 +01:00
Simon Kelley
7ea3d3fdca
ra-advrouter mode for RFC-3775 mobile IPv6 support.
2014-04-25 22:04:05 +01:00
Simon Kelley
50f86ce8e4
Need to fixup records in the additional section when removing DNSSEC stuff.
2014-04-24 17:59:58 +01:00
Simon Kelley
7e22cf28f8
Update doc.html - was positively antediluvian.
2014-04-24 12:05:33 +01:00
Simon Kelley
3b1b3e9d50
CHANGELOG update for 2.70 release.
2014-04-23 15:46:05 +01:00
Simon Kelley
ab72091de2
Bump Debian version.
2014-04-23 15:14:48 +01:00
Matt Comben
66f57867d8
Typo.
2014-04-23 12:28:04 +01:00
Simon Kelley
6375838445
Fix crash on TCP DNS request when DNSSEC not enabled.
2014-04-16 22:20:55 +01:00
Simon Kelley
82a14af5e7
Ensure request name in buffer for ipset lookup.
2014-04-13 20:48:57 +01:00
Simon Kelley
97dce08ed7
Add donate button to doc.html.
2014-04-11 19:05:54 +01:00
Simon Kelley
198d940af6
Update CHANGELOG/release-notes.
2014-04-09 20:36:53 +01:00
Lutz Preßler
1d7e0a36e3
ipv6.arpa -> ip6.arpa
2014-04-07 22:06:23 +01:00
Simon Kelley
10068600f8
Fix NXDOMAIN RCODE in auth PTR replies.
2014-04-03 21:16:40 +01:00
Simon Kelley
b7639d5815
Fix ipsets logging patch.
2014-03-29 09:20:07 +00:00
Wang Jian
49752b90d5
Log IPSET actions.
2014-03-28 20:52:47 +00:00
Simon Kelley
e98bd52e25
Add --dnssec-no-timecheck
2014-03-28 20:41:23 +00:00
Simon Kelley
8a8bbad0cf
Ensure ->sentto is valid for DNSSEC forwards. Otherwise retries SEGV.
2014-03-27 22:02:17 +00:00
Simon Kelley
fec216df32
Cache stats availble in CHAOS .bind domain.
2014-03-27 20:54:34 +00:00
Simon Kelley
4e1fe44428
Terminate DS-search when reaching the root via cache entries.
2014-03-26 12:24:19 +00:00
Simon Kelley
51967f9807
SERVFAIL is an expected error return, don't try all servers.
2014-03-25 21:07:00 +00:00
Tomas Hozza
b37f8b99ae
Handle failure of hash_questions()
2014-03-25 20:52:28 +00:00
Tomas Hozza
fc2833f172
Memory leak in error path.
2014-03-25 20:43:21 +00:00
Simon Kelley
490f90758d
Reorder sanity checks on UDP packet reception, to cope with failed recvfrom()
2014-03-24 22:04:42 +00:00
Simon Kelley
56618c31f6
Add dnssec-check-unsigned to example config file.
2014-03-24 21:13:49 +00:00
Simon Kelley
604f7598c2
CHANGELOG update.
2014-03-22 19:33:43 +00:00
Simon Kelley
2a7a2b84ec
Ignore DNS queries from port 0: http://www.ietf.org/mail-archive/web/dnsop/current/msg11441.html
2014-03-22 19:18:06 +00:00
Andy
3e21a1a6fa
Tidy uid defines.
2014-03-22 19:10:07 +00:00
Simon Kelley
2b29191e7c
Fix DNSSEC crash retrying to IPv6 server.
2014-03-21 11:13:55 +00:00
Simon Kelley
03431d6373
Initialise uid when creating CNAME cache record.
2014-03-20 16:25:43 +00:00
Simon Kelley
cc1a29e250
Make --quiet-dhcp apply to DHCPDISCOVER when client ignored.
2014-03-20 15:47:18 +00:00
Moritz Warning
e62e9b6187
Manpage typos.
2014-03-20 15:32:22 +00:00
Simon Kelley
19c51cfa49
Tidy and fix cache->uid handling.
...
Some CNAMES left the value of ->uid undefined.
Since there are now special values if this, for CNAMES
to interface names, that could cause a crash
if the undefined value hit the special value.
Also ensure that the special value can't arise
when the uid is encoding the source of an F_CONFIG
record, in case there's a CNAME to it.
2014-03-18 22:38:30 +00:00
Andy
d5082158ee
Ensure next_uid() can never return 0.
2014-03-17 19:50:29 +00:00
Simon Kelley
3f7483e816
Handle integer overflow in uid counter. Fixes rare crashes in cache code.
2014-03-16 22:56:58 +00:00
Simon Kelley
0c8584eabc
Warn about non-local queries once only for UDP.
2014-03-12 20:12:56 +00:00
Simon Kelley
f00690f93e
Typo
2014-03-12 20:07:12 +00:00