785d8ad324400bb6424c3030d2663b5f9574711d |
|
08-Feb-2018 |
Evan Hunt <each@isc.org> |
[rt43670] more emphatic warning |
30ca20f720ad0887772a79e7abb25b4fa0e4b5b0 |
|
08-Feb-2018 |
Mark Andrews <marka@isc.org> |
4889. [func] Warn about the use of old root keys without the new
root key being present. Warn about dlv.isc.org's
key being present. Warn about both managed and
trusted root keys being present. [RT #43670]
(cherry picked from commit baef0ca9886bb67d7c6a2ae0405e504ccdc0fb9f) |
8f1ed05dc0aae7ae6c3da6ec6d405df61257a61e |
|
07-Feb-2018 |
Mark Andrews <marka@isc.org> |
4885. [security] update-policy rules that otherwise ignore the name
field now require that it be set to "." to ensure
that any type list present is properly interpreted.
[RT #47126]
(cherry picked from commit ec771bbdc80223ab94eda2173f3b20fd3ecfad49) |
93ca8abdf86dfe69d40c0bc5389151e0672780af |
|
23-Jan-2018 |
Tinderbox User <tbox@isc.org> |
update copyright notice / whitespace |
1cf118a656f5fd210787908b845362077fc507f8 |
|
22-Jan-2018 |
Evan Hunt <each@isc.org> |
[v9_11] automatically generate named.conf grammars for the ARM
4873. [doc] Grammars for named.conf included in the ARM are now
automatically generated by the configuration parser
itself. As a side effect of the work needed to
separate zone type grammars from each other, this
also makes checking of zone statements in
named-checkconf more correct and consistent.
[RT #36957]
(cherry picked from commit 129c4414cb6cff8042f1985fe5833aaae6043142)
(cherry picked from commit f662d5484e0cf4cd83da300620b3701fee5a2ca1) |
3ed16e796dba90c96933c8a8a3f5b9404d8d3e61 |
|
13-Nov-2017 |
Mark Andrews <marka@isc.org> |
4817. [cleanup] Use DNS_NAME_INITABSOLUTE and DNS_NAME_INITNONABSOLUTE.
[RT #45433]
(cherry picked from commit 3d905e053369cff1412b9d20aa5bb23376e0fed4) |
d5bd8bb71a8970d4ebc4701b3e9ec3efef4954b7 |
|
03-Oct-2017 |
Evan Hunt <each@isc.org> |
[v9_11] de-DLV
4749. [func] The ISC DLV service has been shut down, and all
DLV records have been removed from dlv.isc.org.
- Removed references to ISC DLV in documentation
- Removed DLV key from bind.keys
- No longer use ISC DLV by default in delv
[RT #46155] |
6e1f755f19ef244422e1efa4551fe23775e1a38c |
|
31-Aug-2017 |
Mark Andrews <marka@isc.org> |
4695. [bug] cookie-secrets were not being properly checked by
named-checkconf. [RT #45886]
(cherry picked from commit 2e743d9bdc61132183b9965e37fbe8418e3beb8a) |
bfde61d5194a534d800f3b90008d1f52261922c5 |
|
20-Jul-2017 |
Mark Andrews <marka@isc.org> |
4654. [cleanup] Don't use C++ keywords delete, new and namespace.
[RT #45538]
(cherry picked from commit 4bf32aa58774452b05433716f8fa298257dd7fda) |
dd5375de0a7a515ee4fb2fd217e9577259d38c07 |
|
13-Jun-2017 |
Mark Andrews <marka@isc.org> |
4636. [bug] Normalize rpz policy zone names when checking for
existence. [RT #45358]
(cherry picked from commit e85e95c19e5655952f3c4208043760445da93e54) |
9270a14461e15ff184db75eaa6a27a82eb06ee79 |
|
30-May-2017 |
Mark Andrews <marka@isc.org> |
4530. [bug] "dyndb" is dependent on dlopen existing / being
enabled. [RT #45291]
(cherry picked from commit aa3a8979bc7eb1596d044eff572b3c35310584fa) |
af0d9b770594ece695cc9a7325ed42abb728a5f7 |
|
27-Apr-2017 |
Tinderbox User <tbox@isc.org> |
update copyright notice / whitespace |
3b38e4b8344cb3bb28f2b116d2e39f8371ef8e34 |
|
26-Apr-2017 |
Mukund Sivaraman <muks@isc.org> |
Set a LMDB mapsize and also provide a config option to control it (#44954)
(cherry picked from commit 241b49e6119eb37eebe2de98f0e8bde436074cb3) |
23ac7e663494ffdfd78b52d1a0a62d93f0d30d93 |
|
26-Dec-2016 |
Mark Andrews <marka@isc.org> |
4539. [bug] Referencing a nonexistant zone with rpz could lead
to a assertion failure when configuring. [RT #43787]
(cherry picked from commit 762c4fc5a8cc0433a6139aecb9e91624af51e3b1) |
9ab989b88ca3dc6a4f0f52ca450ea5e35242cc85 |
|
03-Nov-2016 |
Tinderbox User <tbox@isc.org> |
update copyright notice / whitespace |
744c1db6352c4c3f11c8538e4a2a57c8b0e0d570 |
|
02-Nov-2016 |
Mark Andrews <marka@isc.org> |
4504. [security] Allow the maximum number of records in a zone to
be specified. This provides a control for issues
raised in CVE-2016-6170. [RT #42143]
(cherry picked from commit 5f8412a4cb5ee14a0e8cddd4107854b40ee3291e) |
c40906dfad6dd6e3a3e3c94b8c8847bc9bc064e5 |
|
19-Aug-2016 |
Mark Andrews <marka@isc.org> |
4450. [port] Provide more nuanced HSM support which better matches
the specific PKCS11 providers capabilities. [RT #42458]
(cherry picked from commit 8ee6f289d87851a5b898b24a64587f0e6bc225bc) |
7204d08a319cf590ae4280b8cc20999320398574 |
|
18-Aug-2016 |
Mark Andrews <marka@isc.org> |
4447. [tuning] Allow the fstrm_iothr_init() options to be set using
named.conf to control how dnstap manages the data
flow. [RT #42974]
(cherry picked from commit 934837913ff197b1a10ad027705d4497fae21e59) |
12b791ae2018561482f3b68dd6658c2ad1a4d934 |
|
08-Aug-2016 |
Mark Andrews <marka@isc.org> |
4431. [bug] named-checkconf now checks the rate-limit clause.
[RT #42970] |
0c27b3fe77ac1d5094ba3521e8142d9e7973133f |
|
27-Jun-2016 |
Mark Andrews <marka@isc.org> |
4401. [misc] Change LICENSE to MPL 2.0. |
f89adb2c2a52b505501c3eaa2aec9fd4df6bd60a |
|
06-May-2016 |
Tinderbox User <tbox@isc.org> |
update copyright notice / whitespace |
594d15df254304ef6705a9fc028bcd34328bce42 |
|
05-May-2016 |
Mark Andrews <marka@isc.org> |
4359. [bug] Inherited 'also-notify' lists were not being checked
by named-checkconf. [RT #42174] |
93ca5ee4c4c77aca8d3bcffd70216f30ef398387 |
|
08-Mar-2016 |
Mark Andrews <marka@isc.org> |
update copyrights |
d6357f09aacf518df14875fffa819607daa05d17 |
|
08-Mar-2016 |
Mark Andrews <marka@isc.org> |
4329. [func] Warn about a common misconfiguration when forwarding
RFC 1918 zones. [RT #41441] |
ed91aca9e609ae3f4a23a96e50b6991d95f16951 |
|
13-Aug-2015 |
Tinderbox User <tbox@isc.org> |
update copyright notice / whitespace |
151f1bcd5efdc59a9727de7529c37664845203b7 |
|
12-Aug-2015 |
Mark Andrews <marka@isc.org> |
4172. [bug] Named / named-checkconf didn't handle a view of CLASS0.
[RT #40265] |
af63e286dda7bf44af4010658042e0c1e6902ce1 |
|
07-Jul-2015 |
Mark Andrews <marka@isc.org> |
set error code if aes selected and not implemented |
8f0b326d9a895faa71b55cb3994b54ff4666faa9 |
|
06-Jul-2015 |
Tinderbox User <tbox@isc.org> |
update copyright notice / whitespace |
ce67023ae3ad39a77da5361d0187ab6f3f0219cb |
|
06-Jul-2015 |
Mark Andrews <marka@isc.org> |
4152. [func] Implement DNS COOKIE option. This replaces the
experimental SIT option of BIND 9.10. The following
named.conf directives are avaliable: send-cookie,
cookie-secret, cookie-algorithm and nocookie-udp-size.
The following dig options are available:
+[no]cookie[=value] and +[no]badcookie. [RT #39928] |
83b9e799df6d5386230953ae72f19034dfb09be1 |
|
21-Jan-2015 |
Mark Andrews <marka@isc.org> |
#ifdef protect 'b' |
761d135ed686601f36fe3d0d4aaa6bf41287bb0f |
|
21-Jan-2015 |
Evan Hunt <each@isc.org> |
[master] add TCP pipelining support
4040. [func] Added server-side support for pipelined TCP
queries. TCP connections are no longer closed after
the first query received from a client. (The new
"keep-response-order" option allows clients to be
specified for which the old behavior will still be
used.) [RT #37821] |
c110d61b173a68420d19858abb80285be0dc1120 |
|
21-Jan-2015 |
Tinderbox User <tbox@isc.org> |
update copyright notice / whitespace |
11463c0ac24692e229ec87f307f5e7df3c0a7e10 |
|
20-Jan-2015 |
Evan Hunt <each@isc.org> |
[master] clean up gcc -Wshadow warnings
4039. [cleanup] Cleaned up warnings from gcc -Wshadow. [RT #37381] |
498b0610312364afc5698b2e4caaa4dcc836133a |
|
20-Oct-2014 |
Evan Hunt <each@isc.org> |
[master] allow 1-week nta-lifetime/nta-recheck
3983. [bug] Change #3940 was incomplete: negative trust anchors
could be set to last up to a week, but the
"nta-lifetime" and "nta-recheck" options were
still limted to one day. [RT #37522] |
1c5990c2f98abf0c2adf7f54a531d8a4a3965414 |
|
28-Sep-2014 |
Mark Andrews <marka@isc.org> |
3958. [bug] Detect when writeable files have multiple references
in named.conf. [RT #37172] |
3278ff814d2babe5ba1aa61e7995cfddb1895b4f |
|
30-Aug-2014 |
Tinderbox User <tbox@isc.org> |
update copyright notice |
7c73ac5e130db18837724ab53d46b23ddb98ce6e |
|
29-Aug-2014 |
Mark Andrews <marka@isc.org> |
3934. [bug] Catch bad 'sit-secret' in named-checkconf. Improve
sit-secrets documentation. [RT #36980] |
43b9737b11f4f14b2d378746d0cd5561b1dc24a0 |
|
06-Aug-2014 |
Mark Andrews <marka@isc.org> |
3911. [func] Implement EDNS EXPIRE option client side. [RT #35925] |
275a8affe74d29d5fa51c9ba7172b90e9968199a |
|
25-Jul-2014 |
Mark Andrews <marka@isc.org> |
3899. [bug] "request-ixfr" is only applicable to slave and redirect
zones. [RT #36608] |
bc4006c0d341af0a0cfbc4f6fb493028d06652b7 |
|
22-Jul-2014 |
Mark Andrews <marka@isc.org> |
alphabetize optionstable |
f47ed4bb4df73850ab5d4341601798683b4b5eba |
|
19-Jun-2014 |
Evan Hunt <each@isc.org> |
[master] silence warning |
b8a9632333a92d73a503afe1aaa7990016c8bee9 |
|
19-Jun-2014 |
Evan Hunt <each@isc.org> |
[master] complete NTA work
3882. [func] By default, negative trust anchors will be tested
periodically to see whether data below them can be
validated, and if so, they will be allowed to
expire early. The "rndc nta -force" option
overrides this behvaior. The default NTA lifetime
and the recheck frequency can be configured by the
"nta-lifetime" and "nta-recheck" options. [RT #36146] |
ef9334d745a759b02821950230260c1941d066d3 |
|
31-Mar-2014 |
Mukund Sivaraman <muks@isc.org> |
3795. [bug] Make named-checkconf detect raw masterfiles for
hint zones and reject them. [RT #35268]
Squashed commit of the following:
commit 5b0254711d6b77940d6217b9131b9d401df8a866
Author: Mukund Sivaraman <muks@isc.org>
Date: Fri Mar 28 02:09:01 2014 +0530
Remove redundant helper function
commit a4341c1a2ba830c8cee1def57a533f987f67c3dc
Author: Mark Andrews <marka@isc.org>
Date: Thu Jan 30 10:08:17 2014 +1100
error out if masterfile-format raw is specified for a hint zone. |
22e29471c784acd09619841926c4f765e36ac74a |
|
13-Mar-2014 |
Evan Hunt <each@isc.org> |
[master] check allow-update in view/options
3787. [bug] The code that checks whether "auto-dnssec" is
allowed was ignoring "allow-update" ACLs set at
the options or view level. [RT #29536] |
35f6a21f5f8114542c050bfcb484b39ce513d4bd |
|
19-Feb-2014 |
Evan Hunt <each@isc.org> |
[master] max-zone-ttl
3746. [func] New "max-zone-ttl" option enforces maximum
TTLs for zones. If loading a zone containing a
higher TTL, the load fails. DDNS updates with
higher TTLs are accepted but the TTL is truncated.
(Note: Currently supported for master zones only;
inline-signing slaves will be added.) [RT #38405] |
38eabfcee7a9f206c268834ab9cb6d3408a31380 |
|
18-Feb-2014 |
Mark Andrews <marka@isc.org> |
3743. [bug] delegation-only flag wasn't working in forward zone
declarations despite being documented. This is
needed to support turning off forwarding and turning
on delegation only at the same name. [RT #35392] |
e45d0508c3460db87afb1f743bc5210522721bb3 |
|
21-Jan-2014 |
Evan Hunt <each@isc.org> |
[master] skip unnecesary also-notify data
3713. [bug] Save memory by not storing "also-notify" addresses
in zone objects that are configured not to send
notify requests. [RT #35195] |
431a83fb29482c5170b3e4026e59bb14849a6707 |
|
10-Jan-2014 |
Tinderbox User <tbox@isc.org> |
update copyright notice |
e851ea826066ac5a5b01c2c23218faa0273a12e8 |
|
09-Jan-2014 |
Evan Hunt <each@isc.org> |
[master] replace memcpy() with memmove().
3698. [cleanup] Replaced all uses of memcpy() with memmove().
[RT #35120] |
c14ba7107063650e7f4329e8c54adca57913381b |
|
20-Dec-2013 |
Evan Hunt <each@isc.org> |
[master] warn if key-directory doesn't exist
3694. [bug] Warn when a key-directory is configured for a zone,
but does not exist or is not a directory. [RT #35109] |
434bfc3dfa2003ba0dd4b2392286806131fd6724 |
|
14-Nov-2013 |
Evan Hunt <each@isc.org> |
[master] "in-view" zone option
3673. [func] New "in-view" zone option allows direct sharing
of zones between views. [RT #32968] |
1e34fe9044874422104e84373988d07876f716b6 |
|
04-Jun-2013 |
Mark Andrews <marka@isc.org> |
3582. [bug] Silence false positive warning regarding missing file
directive for inline slave zones. [RT #33662] |
67adc03ef81fb610f8df093b17f55275ee816754 |
|
22-Mar-2013 |
Evan Hunt <each@isc.org> |
[master] add DSCP support
3535. [func] Add support for setting Differentiated Services Code
Point (DSCP) values in named. Most configuration
options which take a "port" option (e.g.,
listen-on, forwarders, also-notify, masters,
notify-source, etc) can now also take a "dscp"
option specifying a code point for use with
outgoing traffic, if supported by the underlying
OS. [RT #27596] |
573d78f3d53859bc01ce5d5cebbaac9b8b90bfba |
|
22-Feb-2013 |
Tinderbox User <tbox@isc.org> |
update copyright notice |
a81ae06ed3081753a73e7638919673be57eaf47f |
|
20-Feb-2013 |
Evan Hunt <each@isc.org> |
[master] forbid inline-signing slave with no file
3491. [bug] Slave zones using inline-signing must specify a
file name. [RT #31946] |
6f7abb89ec22aef5eda40ed60fcf605a42b78d4d |
|
07-Dec-2012 |
Mark Andrews <marka@isc.org> |
3437. [bug] isc_buffer_init -> isc_buffer_constinit to initialise
buffers with constant data. [RT #32064]
Squashed commit of the following:
commit 3433b96bf11f8c90ccbe412f01d02a6d8bbc2d33
Author: Mark Andrews <marka@isc.org>
Date: Sat Dec 8 12:41:16 2012 +1100
isc_buffer_init -> isc_buffer_constinit
commit c22dbcc1122a0a44f7b46068e0ccbc25353a57d5
Author: Mark Andrews <marka@isc.org>
Date: Sat Dec 8 12:38:39 2012 +1100
isc_buffer_init -> isc_buffer_constinit
commit 900820416c45c1887d0d22d7a010df60a903bd56
Author: Mark Andrews <marka@isc.org>
Date: Sat Dec 8 12:24:19 2012 +1100
remove isc_buffer_reconstinit
commit f815711c17b05f9961786a90b9bae902d3c01494
Author: Mark Andrews <marka@isc.org>
Date: Wed Dec 5 15:42:57 2012 +1100
add isc_buffer_constinit |
2b8bed6681d1541474f022586cbe728dfce36880 |
|
06-Dec-2012 |
Evan Hunt <each@isc.org> |
[master] multiple-dlz/dlz-nxdomain
3432. [func] Multiple DLZ databases can now be configured.
DLZ databases are searched in the order configured,
unless set to "search no", in which case a
zone can be configured to be retrieved from a
particular DLZ database by using a "dlz <name>"
option in the zone statement. DLZ databases can
support type "master" and "redirect" zones.
[RT #27597] |
f46168b87966f679a22aaf494c555f0de821aff9 |
|
27-Oct-2012 |
Evan Hunt <each@isc.org> |
[master] allow dnssec options in inline-signing slaves
3408. [bug] Some DNSSEC-related options (update-check-ksk,
dnssec-loadkeys-interval, dnssec-dnskey-kskonly)
are now legal in slave zones as long as
inline-signing is in use. [RT #31078] |
7ce7ecf6bcf035a0075b7bc15cb29638c6a48ea3 |
|
04-Oct-2012 |
Tinderbox User <tbox@isc.org> |
update copyright notice |
058e44186b74531402c1f99088eb9dbe4926f8da |
|
02-Oct-2012 |
Mark Andrews <marka@isc.org> |
3387. [func] Support for a DS digest can be disabled at
runtime with disable-ds-digests. [RT #21581] |
aa49af836ce7a7a2888f5cedf4cbb14ff4dc1d11 |
|
02-Oct-2012 |
Mark Andrews <marka@isc.org> |
3385. [bug] named-checkconf didn't detect missing master lists
in also-notify clauses. [RT #30810] |
076bda8c2e2b2f41775bd7b1694dd2cab287aeeb |
|
17-Aug-2012 |
Mark Andrews <marka@isc.org> |
we didn't catch a zero option at the global level when views are active |
85705b4b5a4b666981997ffe222738d281b9bf58 |
|
15-Aug-2012 |
Evan Hunt <each@isc.org> |
allow "forward" and "forwarders" in static-stub
3363. [bug] Need to allow "forward" and "fowarders" options
in static-stub zones; this had been overlooked.
[RT #30482] |
820fdd61dd35e359a8e616031209d074a7140d97 |
|
14-Aug-2012 |
Evan Hunt <each@isc.org> |
properly range-check fields that do not allow 0
3362. [bug] Setting some option values to 0 in named.conf
could trigger an assertion failure on startup.
[RT #27730] |
3f755529ee7ecdc9227eed572e007cf71d4d5107 |
|
11-Aug-2012 |
Evan Hunt <each@isc.org> |
address memory leak with bad tsig secret
3359. [bug] An improperly-formed TSIG secret could cause a
memory leak. [RT #30607] |
46e025d82e6999ec662b28c0507a9f5a655ab7d6 |
|
21-Jun-2012 |
Mark Andrews <marka@isc.org> |
remove rundundent call 'result = isc_parse_uint8(&ui, r.base, 10);' |
7865ea9545f28f12f046b32d24c989e8441b9812 |
|
14-Jun-2012 |
Mark Andrews <marka@isc.org> |
3339. [func] Allow the maximum supported rsa exponent size to be specified: "max-rsa-exponent-size <value>;" [RT #29228] |
d878b8d87c3f46a25ccae9f5cfe6e39af67562e0 |
|
14-May-2012 |
Evan Hunt <each@isc.org> |
merged filter-aaaa-on-v6 (ATT SoW)
3327. [func] Added 'filter-aaaa-on-v6' option; this is similar
to 'filter-aaaa-on-v4' but applies to IPv6
connections. (Use "configure --enable-filter-aaaa"
to enable this option.) [RT #27308] |
7e9d6c707501c75c4caa1922af5c7d97b4895064 |
|
26-Apr-2012 |
Mark Andrews <marka@isc.org> |
3312. [bug] named-checkconf didn't detect a bad dns64 clients acl.
[RT #27631] |
5fa46bc91672ef5737aee6f99763161511566c24 |
|
11-Mar-2012 |
Tinderbox User <tbox@isc.org> |
update copyright notice |
207845805eb591b77ffbd99735617cab7e2ed804 |
|
07-Mar-2012 |
Evan Hunt <each@isc.org> |
set $Id$ |
2d7f41d66caf648e9f178f0cfd78b097be61c92c |
|
06-Mar-2012 |
Evan Hunt <each@isc.org> |
Revert "Re-created rt27597a for ongoing DLZ work"
This reverts commit d731ee9121c3864839c3bdcd3b7ee603ec3999ff. |
d731ee9121c3864839c3bdcd3b7ee603ec3999ff |
|
05-Mar-2012 |
Evan Hunt <each@isc.org> |
Re-created rt27597a for ongoing DLZ work |
632c0f1e91cd1884c6c9c7b51f7189a1e9c6ea17 |
|
05-Mar-2012 |
Evan Hunt <each@isc.org> |
Revert accidental merge of unfinished DLZ work |
954501715d5cfa8f98171161bed80f962d8dede6 |
|
04-Mar-2012 |
Evan Hunt <each@isc.org> |
checkpoint: multiple-DLZ functionality
- multiple DLZ's can be specified, including multiple DLZ's using
the same driver; e.g., two different back-ends both loaded by the
dlopen driver
- new "search" option can be specified in a DLZ indicating whether
this DLZ database should be searched for unknown zones. The
default is "yes". If "no", then the zone can only be found by
named if it's registered in the zone table, which happens if the
zone is configured for dynamic updates, or if "dlz <dlzname>" is
specified in the zone statement. (The latter functionality is
incomplete in this commit). |
0da3b4a9a76d24ce05e6330d9bb128f18f1ca0d4 |
|
30-Nov-2011 |
Evan Hunt <each@isc.org> |
3228. [tuning] Dynamically grow symbol table to improve zone
loading performance. [RT #26523] |
ac436908582fe08c85c886b200664816b11fded6 |
|
07-Nov-2011 |
Mark Andrews <marka@isc.org> |
3209. [func] Add "dnssec-lookaside 'off'". [RT #24858] |
c5023889ac95a50ec9389b95f5e9bdb0051505e5 |
|
29-Oct-2011 |
Evan Hunt <each@isc.org> |
remove debugging printf that was left in by mistake |
8826a72394a3cf136c791e4c97b745611f233f0a |
|
27-Oct-2011 |
Automatic Updater <source@isc.org> |
update copyright notice |
24ef32426d91c5140d75031b6443397c6d24006c |
|
26-Oct-2011 |
Mark Andrews <marka@isc.org> |
3181. [func] Inline-signing is now supported for master zones.
[RT #26224] |
9198ab377b1cbf07d6d0c6eec25296c135bd66bd |
|
30-Aug-2011 |
Mark Andrews <marka@isc.org> |
3147. [func] Initial inline signing support. [RT #23657] |
e7220c9b841bbd3d16736726f786a86fec3c0e18 |
|
17-Jun-2011 |
Evan Hunt <each@isc.org> |
3129. [bug] Named could crash on 'rndc reconfig' when
allow-new-zones was set to yes and named ACLs
were used, [RT #22739] |
de7df3e56fe99c33a415674b018aae93eee94750 |
|
07-May-2011 |
Evan Hunt <each@isc.org> |
3111. [bug] Improved consistency checks for dnssec-enable and
dnssec-validation, added test cases to the
checkconf system test. [RT #24398] |
989fb50178f1656a05c9c964d44bda6cf2446800 |
|
05-May-2011 |
Evan Hunt <each@isc.org> |
fixed an error in prior commit |
d454a60f5664d7b4d026df93bf7745edd25cd897 |
|
05-May-2011 |
Evan Hunt <each@isc.org> |
3103. [bug] Configuring 'dnssec-validation auto' in a view
instead of in the options statement could trigger
an assertion failure in named-checkconf. [RT #24382] |
39f2d1a96a7c7494b1db0ea0f45e063a6a5ef9bb |
|
29-Apr-2011 |
Evan Hunt <each@isc.org> |
3102. [func] New 'dnssec-loadkeys-interval' option configures
how often, in minutes, to check the key repository
for updates when using automatic key maintenance.
Default is every 60 minutes (formerly hard-coded
to 12 hours). [RT #23744]
3101. [bug] Zones using automatic key maintenance could fail
to check the key repository for updates. [RT #23744] |
f563fcf124beb09017dc2346817901de5d76715b |
|
11-Mar-2011 |
Evan Hunt <each@isc.org> |
Forgot to initialize a fixedname, which made it a brokenname. |
0874abad14e3e9ecfc3dc1a1a2b9969f2f027724 |
|
11-Mar-2011 |
Mark Andrews <marka@isc.org> |
3069. [cleanup] Silence warnings messages from clang static analysis.
[RT #20256] |
0e507dbb816575e6220fe309e8ada68897ffcdbe |
|
23-Feb-2011 |
Mark Andrews <marka@isc.org> |
2039. [func] Redirect on NXDOMAIN support. [RT #23146] |
93235c1cba839a88013063ff8c440849d95dd222 |
|
08-Jan-2011 |
Automatic Updater <source@isc.org> |
update copyright notice |
dc4fa197dd1031b3c966e5ee9d69a0f49ae1d9ce |
|
07-Jan-2011 |
Mark Andrews <marka@isc.org> |
3004. [func] DNS64 reverse support. [RT #22769] |
743bbdc18f839499862e4fb28ec32f607b1632dc |
|
16-Dec-2010 |
Tatuya JINMEI 神明達哉 <ji <jinmei@isc.org> |
2947. [func] Add new zone type "static-stub". It's like a stub
zone, but the nameserver names and/or their IP
addresses are statically configured. [RT #21474]
(for 9.8.0) |
b8a9a7bef2c3060204c68aef4f3fce04afc1aaee |
|
09-Dec-2010 |
Automatic Updater <source@isc.org> |
update copyright notice |
e334405421979688f2d838805ac67ee47bd62976 |
|
08-Dec-2010 |
Mark Andrews <marka@isc.org> |
2981. [func] Partial DNS64 support (AAAA synthesis). [RT #21991] |
cfd262045c23cadb8415f0111f56995258f17361 |
|
11-Aug-2010 |
Evan Hunt <each@isc.org> |
2936. [func] Improved configuration syntax and multiple-view
support for addzone/delzone feature (see change
#2930). Removed "new-zone-file" option, replaced
with "allow-new-zones (yes|no)". The new-zone-file
for each view is now created automatically, with
a filename generated from a hash of the view name.
It is no longer necessary to "include" the
new-zone-file in named.conf; this happens
automatically. Zones that were not added via
"rndc addzone" can no longer be removed with
"rndc delzone". [RT #19447] |
2cf74a72fd7d92373455072f9b2090dc03bedfda |
|
26-Jun-2010 |
Mark Andrews <marka@isc.org> |
isc_boolean_t -> dns_v4_aaaa_t |
b61690dbadef1bd32a84f0289abe862485979239 |
|
23-Jun-2010 |
Automatic Updater <source@isc.org> |
update copyright notice |
48dfee71508886d86fe8fb12f91961b5daf3141d |
|
22-Jun-2010 |
Mark Andrews <marka@isc.org> |
2920. [func] Allow 'filter-aaaa-on-v4' to be applied selectively
to IPv4 clients. New acl 'filter-aaaa' (default any). |
4d42b714be10e6f163d23507e4e3a396a8ac0364 |
|
05-Mar-2010 |
Automatic Updater <source@isc.org> |
update copyright notice |
92348098ebe7ef4c26bfe2204a7364fa18735afc |
|
04-Mar-2010 |
Mark Andrews <marka@isc.org> |
2956. [bug] named-checkconf did not fail on a bad trusted key.
[RT #20705] |
3d17a3ba61a303d5c4d9867068d0fbe9f24d2988 |
|
04-Dec-2009 |
Mark Andrews <marka@isc.org> |
2801. [func] Detect and report records that are different according
to DNSSEC but are sematically equal according to plain
DNS. Apply plain DNS comparisons rather than DNSSEC
comparisons when processing UPDATE requests.
dnssec-signzone now removes such semantically duplicate
records prior to signing the RRset.
named-checkzone -r {ignore|warn|fail} (default warn)
named-compilezone -r {ignore|warn|fail} (default warn)
named.conf: check-dup-records {ignore|warn|fail}; |
8e4f3f1cbceef520ba889270c993de0ac376a2a7 |
|
04-Dec-2009 |
Evan Hunt <each@isc.org> |
2799. [cleanup] Changed the "secure-to-insecure" option to
"dnssec-secure-to-insecure", and "dnskey-ksk-only"
to "dnssec-dnskey-kskonly", for clarity. [RT #20586] |
97639003b0992b5f30ce82bdcc2fcd9d621ff09c |
|
13-Oct-2009 |
Automatic Updater <source@isc.org> |
update copyright notice |
77b8f88f144928eddcca144c348d6ef53e7d5c43 |
|
12-Oct-2009 |
Evan Hunt <each@isc.org> |
2712. [func] New 'auto-dnssec' zone option allows zone signing
to be fully automated in zones configured for
dynamic DNS. 'auto-dnssec allow;' permits a zone
to be signed by creating keys for it in the
key-directory and using 'rndc sign <zone>'.
'auto-dnssec maintain;' allows that too, plus it
also keeps the zone's DNSSEC keys up to date
according to their timing metadata. [RT #19943] |
3727725bb7d63605b68a644060857013d563b67f |
|
10-Oct-2009 |
Evan Hunt <each@isc.org> |
2710. [func] New 'dnssec-signzone -x' flag and 'dnskey-ksk-only'
zone option cause a zone to be signed with only KSKs
signing the DNSKEY RRset, not ZSKs. This reduces
the size of a DNSKEY answer. [RT #20340] |
28479307225582ad0b2e11441d85fcf5169551d0 |
|
09-Oct-2009 |
Mark Andrews <marka@isc.org> |
2708. [func] Insecure to secure and NSEC3 parameter changes via
update are now fully supported and no longer require
defines to enable. We now no longer overload the
NSEC3PARAM flag field, nor the NSEC OPT bit at the
apex. Secure to insecure changes are controlled by
by the named.conf option 'secure-to-insecure'.
Warning: If you had previously enabled support by
adding defines at compile time to BIND 9.6 you should
ensure that all changes that are in progress have
completed prior to upgrading to BIND 9.7. BIND 9.7
is not backwards compatible. |
3a6b6f5b11a6db4677a5e244a852ec33defffce5 |
|
02-Sep-2009 |
Evan Hunt <each@isc.org> |
remove references to the "ddns-autoconf" option, which no longer exists |
307d2084502eddc7ce921e5ce439aec3531d90e0 |
|
01-Sep-2009 |
Tatuya JINMEI 神明達哉 <ji <jinmei@isc.org> |
2660. [func] Add a new set of DNS libraries for non-BIND9
applications. See README.libdns. [RT #19369] |
995f3bc4c4d181b9edd7552ca7a9168c90d09f5d |
|
23-Aug-2009 |
Francis Dupont <fdupont@isc.org> |
indent |
3e12c54de2238dc90bae06a2e083e4976120bad5 |
|
15-Jul-2009 |
Automatic Updater <source@isc.org> |
update copyright notice |
08f860f800d32007a0c9bf456f6c35fbb2ecbc81 |
|
15-Jul-2009 |
Evan Hunt <each@isc.org> |
2630. [func] Improved syntax for DDNS autoconfiguration: use
"update-policy local;" to switch on local DDNS in a
zone. [RT #19875] |
b6306ef56e6df1d772967887a2c16e2531ae4b27 |
|
11-Jun-2009 |
Automatic Updater <source@isc.org> |
update copyright notice |
351b62535d4c4f89883bfdba025999dd32490266 |
|
10-Jun-2009 |
Evan Hunt <each@isc.org> |
2609. [func] Simplify the configuration of dynamic zones:
- add ddns-confgen command to generate
configuration text for named.conf
- add zone option "ddns-autoconf yes;", which
causes named to generate a TSIG session key
and allow updates to the zone using that key
- add '-l' (localhost) option to nsupdate, which
causes nsupdate to connect to a locally-running
named process using the session key generated
by named
[RT #19284] |
0bc3af9834214650b29710757da2ad41e416c4b5 |
|
03-Jun-2009 |
Mark Andrews <marka@isc.org> |
2606. [bug] "delegation-only" was not being accepted in
delegation-only type zones. [RT #19717] |
e61db954bfbbf0555038f36b35680d77c7e07049 |
|
05-Mar-2009 |
Automatic Updater <source@isc.org> |
update copyright notice |
3a30493983df83a3184dd1ecd39cf31ccdac3bad |
|
04-Mar-2009 |
Evan Hunt <each@isc.org> |
2572. [func] Simplify DLV configuration, with a new option
"dnssec-lookaside auto;" This is the equivalent
of "dnssec-lookaside . trust-anchor dlv.isc.org;"
plus setting a trusted-key for dlv.isc.org.
Note: The trusted key is hard-coded into named,
but is also stored in (and can be overridden
by) $sysconfdir/bind.keys. As the ISC DLV key
rolls over it can be kept up to date by replacing
the bind.keys file with a key downloaded from
https://www.isc.org/solutions/dlv. [RT #18685] |
eab2fb739e5531141e50660b4d184c463c6d092c |
|
17-Feb-2009 |
Mark Andrews <marka@isc.org> |
silence compiler warnings [RT #17079] |
d362465c77b375be2707bc83cebc731d0645d12d |
|
18-Jan-2009 |
Automatic Updater <source@isc.org> |
update copyright notice |
3678015d3f91ad80e7ea5fc4c6ee00e16c9f40ae |
|
17-Jan-2009 |
Francis Dupont <fdupont@isc.org> |
spelling |
9f41ec801027ad8dfc843f8b1649690eede2e29a |
|
19-Nov-2008 |
Mark Andrews <marka@isc.org> |
1204 -> 1024U |
81e5de17419f2e6f80ce76c333159ca9feb67b8c |
|
16-Nov-2008 |
Mark Andrews <marka@isc.org> |
2496. [bug] Add sanity length checks to NSID option. [RT #18813] |
5ce9206eb95c2b818a7f863dd26d9b7a2c3d9261 |
|
12-Sep-2008 |
Evan Hunt <each@isc.org> |
2441. [bug] isc_radix_insert() could copy radix tree nodes
incompletely. [RT #18573]
2440. [bug] named-checkconf used an incorrect test to determine
if an ACL was set to none. |
2284b84d74cdfd62ecb962feb850de981bbc2196 |
|
23-Apr-2008 |
Evan Hunt <each@isc.org> |
Make "rrset-order fixed" a compile-time option. settable by
"./configure --enable-fixed-rrset". Disabled by default. [rt17977] |
3f42cf2f3e4dc7e740b4609ba7d7430292348f2b |
|
02-Apr-2008 |
Mark Andrews <marka@isc.org> |
2349. [func] Provide incremental re-signing support for secure
dynamic zones. [RT #1091]
back out incorrect branch rt1091 and apply correct branch rt1091a. |
a76b380643a22f23a67a9df284e86cd7ef7608c1 |
|
01-Apr-2008 |
Mark Andrews <marka@isc.org> |
2349. [func] Provide incremental re-signing support for secure
dynamic zones. [RT #1091] |
7405bdffd4d0e17b43775a29b07d1a819ea22188 |
|
30-Mar-2008 |
Automatic Updater <source@isc.org> |
update copyright notice |
ec6e40f0409385d9ce9e1adad4188fdd870bdd15 |
|
29-Mar-2008 |
Automatic Updater <source@isc.org> |
update copyright notice |
f703353673abc17ef76c89561a1fbf3555d38927 |
|
28-Mar-2008 |
Mark Andrews <marka@isc.org> |
2345. [bug] named-checkconf failed to detect when forwarders
were set at both the options/view level and in
a root zone. [RT #17671] |
81d9d7a10e52b421d7f4784c48ae995b13203c59 |
|
14-Dec-2007 |
Mark Andrews <marka@isc.org> |
2277. [bug] Empty zone names were not correctly being caught at
in the post parse checks. [RT #17357] |
ddaeaddf2b9148ce3e6ec5fecc48f64ea5826fae |
|
02-Dec-2007 |
Mark Andrews <marka@isc.org> |
2272. [bug] Handle illegal dnssec-lookaside trust-anchor names.
[RT #17262] |
b3128b8b85e33342eeb2eae556e5016047e28a88 |
|
26-Nov-2007 |
Mark Andrews <marka@isc.org> |
2262. [bug] Error status from all but the last view could be
lost. [RT #17292] |
d468b1b7b2ccfdf132df15f600be48dccf447eb1 |
|
13-Sep-2007 |
Evan Hunt <each@isc.org> |
Fix compiler warnings on SCO OSr5 |
c7e266b7e5675e12d1ca3cc929f24b3e86d41f8e |
|
12-Sep-2007 |
Evan Hunt <each@isc.org> |
Add support for O(1) ACL processing, based on radix tree code originally
written by kevin brintnall. [RT #16288] |
ee4bbc8454cc0cb36a25a7d26c5b47370f96d9b2 |
|
29-Aug-2007 |
Mark Andrews <marka@isc.org> |
2222. [func] named-checkconf now checks server key references.
[RT #17097] |
ec5347e2c775f027573ce5648b910361aa926c01 |
|
19-Jun-2007 |
Automatic Updater <source@isc.org> |
update copyright notice |
819b98479eff49ed93f57f4d65eb0ffe72136adc |
|
29-Mar-2007 |
Mark Andrews <marka@isc.org> |
2165. [func] Allow the destination address of a query to determine
if we will answer the query or recurse.
allow-query-on, allow-recursion-on and
allow-query-cache-on. [RT #16291] |
87bff9accdd711bd02fe3043800d5edd10082521 |
|
15-Mar-2007 |
Automatic Updater <source@isc.org> |
update copyright notice |
65085946d4f92481699678e276e3ced04bcfdafb |
|
14-Mar-2007 |
Mark Andrews <marka@isc.org> |
2162. [func] Allow "rrset-order fixed" to be disabled at compile
time. [RT #16665]
: ---------------------------------------------------------------------- |
cdb674387ca19dc8550553d90d8f9731befb6f1f |
|
21-Aug-2006 |
Mark Andrews <marka@isc.org> |
2073. [bug] Incorrect semantics check for update policy "wildcard".
[RT #16353] |
a45a6ea2b03448751d7c44931e8ac7666e7cc2ce |
|
05-Jun-2006 |
Mark Andrews <marka@isc.org> |
2035. [func] Make falling back to TCP on UDP refresh failure
optional. Default "try-tcp-refresh yes;" for BIND 8
compatibility. [RT #16123] |
adc8179d404bc24e3ba67f2453b6121e5c61f79e |
|
10-Mar-2006 |
Mark Andrews <marka@isc.org> |
const |
cfe92110ce4eaf19f7f3255d2961710879bdc9dd |
|
10-Mar-2006 |
Mark Andrews <marka@isc.org> |
2007. [func] It is now possible to explicitly enable DNSSEC
validation. default dnssec-validation no; to
be changed to yes in 9.5.0. [RT #15674] |
59d84d1b077678cb77f6cbcc53d8cfa60ff69cb7 |
|
06-Mar-2006 |
Mark Andrews <marka@isc.org> |
2001. [func] Check the KSK flag when updating a secure dynamic zone.
New zone option "update-check-ksk yes;". [RT #15817] |
d76ed813a51465e5c47d521ab09ea20c06f1428d |
|
03-Mar-2006 |
Mark Andrews <marka@isc.org> |
1999. [func] Implement "rrset-order fixed". [RT #13662] |
45e1bd63587102c3bb361eaca42ee7b714fb3542 |
|
28-Feb-2006 |
Mark Andrews <marka@isc.org> |
1991. [cleanup] The configuration data, once read, should be treated
as readonly. Expand the use of const to enforce this
at compile time. [RT #15813] |
7d4a465de03b26bf9f5ef131d03253b8f6afc169 |
|
17-Feb-2006 |
Mark Andrews <marka@isc.org> |
1597. [func] Allow notify-source and query-source to be specified
on a per server basis similar to transfer-source. |
c6d4f781529d2f28693546b25b2967d44ec89e60 |
|
27-Jan-2006 |
Mark Andrews <marka@isc.org> |
1973. [func] TSIG HMACSHA1, HMACSHA224, HMACSHA256, HMACSHA384 and
HMACSHA512 support. [RT #13606] |
141132c272ebc41da4c55d69c49810fafadbbc11 |
|
07-Jan-2006 |
Mark Andrews <marka@isc.org> |
update copyright notice |
dc6da18ccbb808d21f123cc6bda399b44ad11445 |
|
06-Jan-2006 |
Mark Andrews <marka@isc.org> |
1964. [func] Seperate out MX and SRV to CNAME checks. [RT #15723] |
c481327e758487ba66e34f6d1e91fec11377a4ed |
|
03-Nov-2005 |
Mark Andrews <marka@isc.org> |
silence compiler warnings [RT #15562] |
85708f9aabbfe31fc648c90258ae18ce0edc3488 |
|
12-Sep-2005 |
Mark Andrews <marka@isc.org> |
1918. [bug] Memory leak when checking acls. [RT #15391] |
4e1d3e67cdc76609bad5f0310ac48de10b442b9f |
|
23-Aug-2005 |
Mark Andrews <marka@isc.org> |
1914. [bug] Strings returned from cfg_obj_asstring() should be
treated as read-only. The prototype for
cfg_obj_asstring() has been updated to reflect this.
[RT #15256] |
6b79e960e6ba2991aeb02a6c39af255ab7f06d99 |
|
18-Aug-2005 |
Mark Andrews <marka@isc.org> |
1913. [func] Automatic empty zone creation for D.F.IP6.ARPA and
friends. Note: RFC 1918 zones are not yet covered by
this but are likely to be in a future release.
New options: empty-server, empty-contact,
empty-zones-enable and disable-empty-zone. |
f4f0eedb8916a824124cf56d4c3f18eb6c77b42e |
|
28-Jul-2005 |
Mark Andrews <marka@isc.org> |
1908. [func] named-checkconf now validates update-policy entries.
[RT #14963] |
a903095bf4512dae561c7f6fc7854a51bebf334a |
|
20-Jun-2005 |
Mark Andrews <marka@isc.org> |
1817. [func] add support for additional zone file formats for
improving loading performance. The masterfile-format
option in named.conf can be used to specify a
non-default format. A new separate command
named-compilezone was provided to generate zone files
in a new format. |
05331ce161276d879711342fadbc6144af7f5ba6 |
|
27-May-2005 |
Mark Andrews <marka@isc.org> |
1863. [bug] rrset-order fixed error messages not complete. |
c5223c9cb7c22620d5ee6611228673e95b48a270 |
|
19-May-2005 |
Mark Andrews <marka@isc.org> |
1862. [func] Add additional zone data constancy checks.
named-checkzone has extended checking of NS, MX and
SRV record and the hosts they reference.
named has extended post zone load checks.
New zone options: check-mx and integrity-check.
[RT #4940] |
ab023a65562e62b85a824509d829b6fad87e00b1 |
|
27-Apr-2005 |
Rob Austein <sra@isc.org> |
1851. [doc] Doxygen comment markup. [RT #11398] |
4423c99613db1399dbb5c51e86ef0d351a1418c2 |
|
23-Feb-2005 |
Mark Andrews <marka@isc.org> |
1814. [func] UNIX domain controls are now supported. |
4844ed026a9b5a91044e76399cee80a6514cbf0d |
|
17-Jan-2005 |
Mark Andrews <marka@isc.org> |
1798. [func] The server syntax has been extended to support a
range of servers. [RT #11132] |
ad5bc22a819190839bdcc4d102d023782dc23660 |
|
11-Jan-2005 |
Mark Andrews <marka@isc.org> |
1797. [func] named-checkconf now check acls to verify that they
only refer to existing acls. [RT #13101] |
2f4ffd7f5594c0464f2a872aee5ef102f6f7b10f |
|
11-Jan-2005 |
Mark Andrews <marka@isc.org> |
update copyrights |
508f61f8d699c46f962b682f388e54b446a7194d |
|
10-Jan-2005 |
Mark Andrews <marka@isc.org> |
1794. [func] Named and named-checkzone can now both check for
non-terminal wildcard records. |
6f691d4893bb29cd6658b75860d93797f091da0d |
|
22-Nov-2004 |
Mark Andrews <marka@isc.org> |
1770. [bug] named-checkconf failed to report missing a missing
file clause for rbt{64} master/hint zones. [RT#13009] |
84a5b69f0029952e33c96695f0a7d26c2bb8f7cc |
|
09-Nov-2004 |
Mark Andrews <marka@isc.org> |
1756. [func] named-checkconf now checks the logging configuration.
[RT #12352] |
207f0a15bb486d8dc27cf5ff963fac6068ee2972 |
|
07-Oct-2004 |
Mark Andrews <marka@isc.org> |
1705. [func] Allow the journal's name to be changed via named.conf. |
b712879fcb6d584bb16b3f39ec1fb6ee176e4a03 |
|
29-Jul-2004 |
Mark Andrews <marka@isc.org> |
1694. [bug] Report if the builtin views of "_default" / "_bind"
are defined in named.conf. [RT #12023] |
c315e5cfead876251ee4ff5600ee67303b2729a4 |
|
04-Jun-2004 |
Mark Andrews <marka@isc.org> |
1648. [func] Update dnssec-lookaside named.conf syntax to support
multiple dnssec-lookaside namespaces (not yet
implemented). |
4a6f552617fe422ad90826e48c2a3446e3a2574b |
|
17-May-2004 |
Mark Andrews <marka@isc.org> |
1634. [bug] named didn't supply a useful error message when it
detected duplicate views. [RT #11208] |
8d414d155953f89a4eff40f16878438a8c9228f3 |
|
16-Apr-2004 |
Mark Andrews <marka@isc.org> |
1600. [bug] Duplicate zone pre-load checks were not case
insensitive.
1599. [bug] Fix memory leak on error path when checking named.conf.
1598. [func] Specify that certain parts of the namespace must
be secure (dnssec-must-be-secure). |
50105afc551903541608b11851d73278b23579a3 |
|
10-Mar-2004 |
Mark Andrews <marka@isc.org> |
1589. [func] DNSSEC lookaside validation.
enable-dnssec -> dnssec-enable |
dafcb997e390efa4423883dafd100c975c4095d6 |
|
05-Mar-2004 |
Mark Andrews <marka@isc.org> |
update copyright notice |
35541328a8c18ba1f984300dfe30ec8713c90031 |
|
14-Jan-2004 |
Mark Andrews <marka@isc.org> |
1558. [func] New DNSSEC 'disable-algorithms'. Support entry into
child zones for which we don't have a supported
algorithm. Such child zones are treated as unsigned.
1557. [func] Implement missing DNSSEC tests for
* NOQNAME proof with wildcard answers.
* NOWILDARD proof with NXDOMAIN.
Cache and return NOQNAME with wildcard answers. |
600cbd1fcea3c9cc9706dc1ff8fc0d0034ebdeac |
|
25-Sep-2003 |
Tatuya JINMEI 神明達哉 <ji <jinmei@isc.org> |
1515. [func] Allow transfer source to be set in a server statement.
[RT #6496]
implemented by marka, reviewed and documented by jinmei.
Notes:
lib/dns/zone.c had to be modified manually.
ARM html files were not regenerated (yet). |
0b1da8124c817270f5dfe46cd0211b993c931a91 |
|
19-Sep-2003 |
Mark Andrews <marka@isc.org> |
1510. [func] New view option "root-delegation-only". Apply
delegation-only check to all TLDs and root.
Note there are some TLDs that are NOT delegation
only (e.g. DE and MUSEUM) these can be excluded
from the checks buy using exclude.
root-delegation-only exclude { "DE"; "MUSEUM"; }; |
da34d92aeee25dedd6affd69623dc7d0aba2cc23 |
|
19-Sep-2003 |
Mark Andrews <marka@isc.org> |
1509. [bug] Hint zones should accept delegation-only. Forward
zone should not accept delegation-only.
1508. [bug] Don't apply delegation-only checks to answers from
forwarders.
1507. [bug] Handle BIND 8 style returns to NS queries to parents
when making delegation-only checks. |
4607e7a9b8dfb1b41c70e51c2b603daaf22cf302 |
|
17-Sep-2003 |
Mark Andrews <marka@isc.org> |
1504. [func] New zone type "delegation-only". |
f488b1c311f2fc09ae8e45f7893185e608b17ede |
|
18-Jul-2003 |
Mark Andrews <marka@isc.org> |
1487. [compat] Treat 'allow-update' on slave zones as a warning.
[RT #3469] |
036f643016c8dd82adcd7f6117169c27faffcfe3 |
|
20-Mar-2003 |
Mark Andrews <marka@isc.org> |
Non-NULL pointer passed when verifing looking for "kal". |
888bb8bf68ba1a2b032a64122efd9125a9155ad7 |
|
26-Feb-2003 |
Mark Andrews <marka@isc.org> |
1443. [func] Masters lists can now be specified and referenced
in zone masters clauses and other masters lists.
developer: marka
reviewer: explorer |
0ffaee887ff5674b8c3bb0435ae838f641981706 |
|
16-Jan-2003 |
Mark Andrews <marka@isc.org> |
1412. [func] You can now specify servers to be tried if a nameserver
has IPv6 address and you only support IPv4 or the
reverse. See dual-stack-servers. |
c4a9ce445c48a57eed5aa16582b1964cf8cedf87 |
|
26-Apr-2002 |
Mark Andrews <marka@isc.org> |
1274. [func] preferred-glue option from BIND 8.3. |
984c39beed2fee49dda75c4c8a37b7f32bf434bf |
|
17-Apr-2002 |
Mark Andrews <marka@isc.org> |
1269. [bug] Missing masters clause was not handled gracefully.
[RT #2703] |
17a2a1d3c19fa19c860a890e8aee936b6690876a |
|
14-Mar-2002 |
Brian Wellington <source@isc.org> |
fix invalid format string |
9de92818aec6cdad885da57c50fc2148f3467d4d |
|
11-Mar-2002 |
Mark Andrews <marka@isc.org> |
warn that rrset-order 'fixed' is not implemented. |
412e65017e5a637c6ad2c58561093097e8520aca |
|
08-Mar-2002 |
Mark Andrews <marka@isc.org> |
rrset-order checks |
2211bec6a0626b681fdf5a8e4406555ef76ddf70 |
|
04-Mar-2002 |
Mark Andrews <marka@isc.org> |
1217. [func] Report locations of previous key definition when a
duplicate is detected. |
89f7901415b23c87ff5a61f87315cb736fe8da44 |
|
04-Mar-2002 |
Mark Andrews <marka@isc.org> |
INSIST -> RUNTIME_CHECK |
fcb2ecdb52a594a5c0d07c2e98e67c14708c16df |
|
04-Mar-2002 |
Mark Andrews <marka@isc.org> |
1216. [bug] Multiple server clauses for the same server were not
reported. [RT #2514] |
a7038d1a0513c8e804937ebc95fc9cb3a46c04f5 |
|
20-Feb-2002 |
Mark Andrews <marka@isc.org> |
copyrights |
39c2b741427eedafe5054909773c2e121c078b72 |
|
13-Feb-2002 |
Mark Andrews <marka@isc.org> |
1203. [func] Report locations of previous acl and zone definitions
when a duplicate is detected. |
ca9eb5fd16f9d241f128aec55ba45cb759b48f57 |
|
13-Feb-2002 |
Mark Andrews <marka@isc.org> |
memory leak |
9727d74064f535408bda75fd22eb0ac690e8d9c3 |
|
13-Feb-2002 |
Mark Andrews <marka@isc.org> |
report line of previous acl definition. |
d368d43ec74ca9b25a37d4b1722f7137bbce8887 |
|
12-Feb-2002 |
Mark Andrews <marka@isc.org> |
Allocate and free key used to check for duplicate zones. |
8f63de30293716a22054e7db47f27e81bab545c5 |
|
11-Feb-2002 |
Mark Andrews <marka@isc.org> |
1197. [bug] Attempts to define the same acl multiple times were not
detected. |
08102bb28cd7c49022fd7464c64149577f630128 |
|
06-Feb-2002 |
Brian Wellington <source@isc.org> |
consistency - all of the other arrays of checking-related stuff are not
null-terminated. |
9ae90732df942a7ffcbaa26ba254b55248ce79a5 |
|
06-Feb-2002 |
Mark Andrews <marka@isc.org> |
1195. [bug] Attempts to redefine builtin acls should be caught.
[RT #2403] |
f3222d48cc3d81706d198faa00dea9720eb0768d |
|
06-Feb-2002 |
Mark Andrews <marka@isc.org> |
1194. [bug] Not all duplicate zone definitions were being detected
at the named.conf stage. [RT #2431] |
de619d1e818e44f505d1c2253f90f5ecb2d29f3c |
|
23-Jan-2002 |
Mark Andrews <marka@isc.org> |
remove also-notify empty checks. |
a5c077e40c784cf9e25c95a1ab94db2faab04ae9 |
|
21-Jan-2002 |
Brian Wellington <source@isc.org> |
1181. [func] Add the "key-directory" configuration statement,
which allows the server to look for online signing
keys in alternate directories. |
b627356826f7b22e2ef396b80e8394eac76bc109 |
|
14-Jan-2002 |
Mark Andrews <marka@isc.org> |
re-do:
1168. [bug] Empty also-notify clauses were not handled. [RT #2309] |
77467267d97c781f3f3d050e229a874831e59c3d |
|
29-Dec-2001 |
Mark Andrews <marka@isc.org> |
1168. [bug] Empty also-notify clauses were not handled gracefully.
[RT #2309] |
6c06bc591a830023e5e7a41cc4b37978b98c0c51 |
|
17-Dec-2001 |
Mark Andrews <marka@isc.org> |
1164. [bug] Empty masters clauses in slave / stub zones were not
handled gracefully. [RT #2262] |
19f0d00107c946b33f0f3d6b96e2ccb7a8398e5f |
|
13-Dec-2001 |
Brian Wellington <source@isc.org> |
check that allow-notify is only specified for slave zones |
1f1d36a87b65186d9f89aac7f456ab1fd2a39ef6 |
|
30-Nov-2001 |
Andreas Gustafsson <source@isc.org> |
Check return values or cast them to (void), as required by the coding
standards; add exceptions to the coding standards for cases where this is
not desirable |
09ce736e9a25b839e151d5a245961441e956e1de |
|
16-Nov-2001 |
Brian Wellington <source@isc.org> |
unitialized variable [RT #2075] |
aa51fc810657451e73b5bc47270e406ebd2db4c8 |
|
13-Nov-2001 |
Mark Andrews <marka@isc.org> |
1119. [bug] Errors in options were not fatal. [RT #2002] |
b20eef7ab022dd984e2e9c12f6a7edf35661d3b0 |
|
09-Nov-2001 |
Mark Andrews <marka@isc.org> |
1115. [func] Set maximum values for cleaning-interval,
heartbeat-interval, interface-interval,
max-transfer-idle-in, max-transfer-idle-out,
max-transfer-time-in, max-transfer-time-out,
statistics-interval of 28 days and
sig-validity-interval of 3660 days. [RT #2002] |
72e8c079c4c6dc66d565cf89ebf6feb5fa2dea33 |
|
29-Oct-2001 |
Mark Andrews <marka@isc.org> |
1076. [bug] A badly defined global key could trigger an assertion
on load/reload if views were used. [RT #1947] |
6a4c22bc4de2519543b9c4841b49bb77409f9be5 |
|
25-Oct-2001 |
Brian Wellington <source@isc.org> |
style |
3a92768cad5d1026405c97faf6b7667a3b5abdab |
|
11-Oct-2001 |
Mark Andrews <marka@isc.org> |
1044. [buf] Specifying allow-transfer, notify-source or
notify-source-v6 in a stub zone was not treated as
a error. |
bb60abb44549428414cd55a022f2b8cc4488f7ad |
|
11-Oct-2001 |
Andreas Gustafsson <source@isc.org> |
1043. [bug] Specifying a transfer-source or transfer-source-v6
option in the zone statement for a master zone was
not treated as an error. [RT #1876] |
61e30d319473d1a28bc81d7b339f26762db088dc |
|
04-Oct-2001 |
Brian Wellington <source@isc.org> |
the wrong result code was checked [RT #1847] |
c2bc56dc65b4b103a5600565680eb5f33fa4c90b |
|
20-Sep-2001 |
Mark Andrews <marka@isc.org> |
Move configuration checking to libbind9. |