]>
granicus.if.org Git - pdns/log
Peter van Dijk [Tue, 17 May 2016 09:42:30 +0000 (11:42 +0200)]
add auth 3.4.9 to secpoll
Peter van Dijk [Fri, 13 May 2016 09:26:04 +0000 (11:26 +0200)]
Merge pull request #3840 from rgacogne/dnsdist-client-wrongtype-3839
dnsdist: Catch WrongTypeException in client mode
Peter van Dijk [Fri, 13 May 2016 09:25:55 +0000 (11:25 +0200)]
Merge pull request #3834 from rgacogne/dnsdist-config-tests
dnsdist: Wait for dnsdist to exit in CheckConfig tests
Peter van Dijk [Fri, 13 May 2016 09:25:00 +0000 (11:25 +0200)]
Merge pull request #3836 from rgacogne/dnsdist-web-log-exception
dnsdist: Log the content of webserver's exceptions
Peter van Dijk [Thu, 12 May 2016 15:53:55 +0000 (17:53 +0200)]
Merge pull request #3854 from pieterlexis/4a3-secpoll
Add alpha3 secpoll records
Pieter Lexis [Thu, 12 May 2016 15:51:26 +0000 (17:51 +0200)]
Add alpha3 secpoll records
Peter van Dijk [Thu, 12 May 2016 13:52:07 +0000 (15:52 +0200)]
doc nit, thanks Bart Smit
Pieter Lexis [Wed, 11 May 2016 10:35:51 +0000 (12:35 +0200)]
fix typo (thanks @jpmens)
Pieter Lexis [Wed, 11 May 2016 09:17:09 +0000 (11:17 +0200)]
Merge pull request #3847 from pieterlexis/auth-4-alpha3-changelog
Update changelog for auth 4.0.0 alpha 3
Pieter Lexis [Wed, 11 May 2016 09:10:44 +0000 (11:10 +0200)]
Update changelog for auth 4.0.0 alpha 3
Pieter Lexis [Wed, 11 May 2016 08:51:40 +0000 (10:51 +0200)]
Merge pull request #3827 from pieterlexis/issue-3796-NSEC3PARAM-algo-fix
set NSEC3PARAM algorithm to 1
Pieter Lexis [Tue, 10 May 2016 10:47:46 +0000 (12:47 +0200)]
Check/fix invalid NSEC3PARAM hash algo
Pieter Lexis [Fri, 6 May 2016 11:07:22 +0000 (13:07 +0200)]
Don't allow other values than '1' for the NSEC3PARAM algorithm
Pieter Lexis [Tue, 10 May 2016 16:50:22 +0000 (18:50 +0200)]
Merge pull request #3810 from pieterlexis/issue-1905-rm-pdns-conf-dist
Remove pdns.conf-dist (generate it after compiling)
Pieter Lexis [Tue, 10 May 2016 16:50:13 +0000 (18:50 +0200)]
Merge pull request #3815 from pieterlexis/issue-3210-rm-SOA-EDIT-values
Deprecate bad soa-edit values. Closes #3210
Pieter Lexis [Tue, 10 May 2016 16:50:03 +0000 (18:50 +0200)]
Merge pull request #3817 from pieterlexis/issue-3615-prevent-multiple-backend-launch
Prevent launching similarly named backend
Pieter Lexis [Tue, 10 May 2016 16:49:49 +0000 (18:49 +0200)]
Merge pull request #3842 from pieterlexis/ignore-recursor-service-file
rec: ignore the generated service file
Pieter Lexis [Tue, 10 May 2016 16:17:18 +0000 (18:17 +0200)]
Merge pull request #3843 from pieterlexis/auth-4-alpha3-changelog
Auth and Recursor 4.0.0-alpha3 changelogs
Pieter Lexis [Fri, 29 Apr 2016 10:33:31 +0000 (12:33 +0200)]
Auth and Recursor 4.0.0-alpha3 changelogs
Peter van Dijk [Tue, 10 May 2016 14:25:25 +0000 (16:25 +0200)]
Merge pull request #3837 from pieterlexis/rm-service-file-dnsdist-trusty
Remove dnsdist service file on trusty
Pieter Lexis [Tue, 10 May 2016 10:28:18 +0000 (12:28 +0200)]
Add deprecation warnings for #3210
Pieter Lexis [Wed, 4 May 2016 12:08:52 +0000 (14:08 +0200)]
Generate pdns.conf-dist after building pdns_server
Pieter Lexis [Tue, 10 May 2016 12:22:47 +0000 (14:22 +0200)]
rec: ignore the generated service file
Peter van Dijk [Tue, 10 May 2016 11:33:01 +0000 (13:33 +0200)]
Merge pull request #3733 from Habbie/alias-testing
improve ALIAS handling
Pieter Lexis [Tue, 10 May 2016 11:05:20 +0000 (13:05 +0200)]
rec: Remove systemd service file on trusty
And actually ship it on non-trusty
Pieter Lexis [Tue, 10 May 2016 11:04:56 +0000 (13:04 +0200)]
auth: Remove systemd service file on trusty
Pieter Lexis [Tue, 10 May 2016 07:19:29 +0000 (09:19 +0200)]
Remove dnsdist service file on trusty
Having it there will lead to pain
Remi Gacogne [Tue, 10 May 2016 10:19:36 +0000 (12:19 +0200)]
dnsdist: Catch WrongTypeException in client mode
Pieter Lexis [Wed, 4 May 2016 17:18:01 +0000 (19:18 +0200)]
Prevent launching identical backends
This catches configuration bugs (mostly when includes are used) where a
line `launch=backend` and a line `launch+=backend` occur in the sum of
the configuration.
Closes #3615
Peter van Dijk [Tue, 10 May 2016 08:54:52 +0000 (10:54 +0200)]
Merge pull request #3820 from pieterlexis/issue-3818-double-SOA
pdnsutil load-zone: ignore double SOA
Peter van Dijk [Tue, 10 May 2016 08:53:56 +0000 (10:53 +0200)]
Merge pull request #3833 from rgacogne/coverity-issues
Minor fixes to make coverity happier
Peter van Dijk [Tue, 10 May 2016 08:52:47 +0000 (10:52 +0200)]
Merge pull request #3831 from Habbie/nsec3dig-exception
pick up PDNSException in nsec3dig
Peter van Dijk [Tue, 10 May 2016 08:43:44 +0000 (10:43 +0200)]
Merge pull request #3764 from pieterlexis/systemd-notify
Add systemd notify support to auth and recursor
Peter van Dijk [Tue, 10 May 2016 08:36:52 +0000 (10:36 +0200)]
Merge pull request #3816 from pieterlexis/issue-3644-rediscover-skipped-is-rejected
bind: Improve skipped zone error messages
Peter van Dijk [Tue, 10 May 2016 08:25:25 +0000 (10:25 +0200)]
Merge pull request #3835 from pieterlexis/issue-3832-silence-warning
Squash 2 compiler warnings in ws-auth.cc
Pieter Lexis [Mon, 9 May 2016 15:38:35 +0000 (17:38 +0200)]
Squash 2 compiler warnings in ws-auth.cc
Use the correct datatype and initialize. Closes #3832
Remi Gacogne [Mon, 9 May 2016 15:35:17 +0000 (17:35 +0200)]
dnsdist: Log the content of webserver's exceptions
Remi Gacogne [Mon, 9 May 2016 14:13:14 +0000 (16:13 +0200)]
dnsdist: Wait for dnsdist to exit in CheckConfig tests
Otherwise we can't be sure that the exit code is the one we
expected.
Use `addACL()` instead of `newServer()` for the invalid parameter
test, as `newServer()` is skipped in client mode, and
`check-config` is run in this mode to prevent bind issues.
Peter van Dijk [Mon, 9 May 2016 10:32:14 +0000 (12:32 +0200)]
skip ALIAS tests for various backends
Peter van Dijk [Mon, 9 May 2016 10:10:28 +0000 (12:10 +0200)]
change axfr-time ALIAS expansion to use stubDoResolve; catch errors
Peter van Dijk [Mon, 9 May 2016 09:20:19 +0000 (11:20 +0200)]
enable axfr alias expansion in gsql test
Peter van Dijk [Tue, 3 May 2016 11:14:12 +0000 (13:14 +0200)]
document outgoing-axfr-expand-alias
Peter van Dijk [Mon, 2 May 2016 15:22:21 +0000 (17:22 +0200)]
make ALIAS expansion in outgoing AXFR optional
Peter van Dijk [Mon, 2 May 2016 14:20:38 +0000 (16:20 +0200)]
remove bogus skip.nodnssec files, they did the opposite of what i wanted
Peter van Dijk [Mon, 2 May 2016 14:13:29 +0000 (16:13 +0200)]
trailing newline
Peter van Dijk [Mon, 2 May 2016 13:40:06 +0000 (15:40 +0200)]
skip unbound-host because ALIAS does not support DNSSEC on direct queries
Peter van Dijk [Fri, 1 Apr 2016 10:34:03 +0000 (12:34 +0200)]
synthesise ALIAS during outgoing AXFR
Peter van Dijk [Fri, 1 Apr 2016 10:33:49 +0000 (12:33 +0200)]
allow skipping DNS/UeberBackend lookup in FindNS
Peter van Dijk [Tue, 15 Mar 2016 20:34:08 +0000 (21:34 +0100)]
skip ALIAS dnssec testing for now
Peter van Dijk [Tue, 15 Mar 2016 19:50:55 +0000 (20:50 +0100)]
only do backend ALIAS query for ANY/A/AAAA;
don't return useless backend SOA (but now we sometimes return no SOA at all);
don't return ALIAS itself even when asked for directly
Peter van Dijk [Tue, 15 Mar 2016 15:11:46 +0000 (16:11 +0100)]
add failing MX ALIAS test
Peter van Dijk [Tue, 15 Mar 2016 20:04:18 +0000 (21:04 +0100)]
test A/AAAA with alias
Peter van Dijk [Mon, 9 May 2016 09:40:06 +0000 (11:40 +0200)]
pick up PDNSException in nsec3dig
Peter van Dijk [Tue, 15 Mar 2016 20:03:19 +0000 (21:03 +0100)]
pass more arguments down from cleandig to sdig
Remi Gacogne [Mon, 9 May 2016 08:09:28 +0000 (10:09 +0200)]
dnsdist: In verbose mode, warn if `sendto()`/`sendfromto()` failed
Remi Gacogne [Mon, 9 May 2016 08:08:25 +0000 (10:08 +0200)]
`writen2()` returns a size_t or throws an exception
Remi Gacogne [Mon, 9 May 2016 08:06:07 +0000 (10:06 +0200)]
Return false if `setsockopt()` failed in `setTCPNoDelay()`
bert hubert [Fri, 6 May 2016 12:03:08 +0000 (14:03 +0200)]
Merge pull request #3823 from mind04/gcc61-master
add gcc 6.1 support to boost.m4
bert hubert [Fri, 6 May 2016 11:38:18 +0000 (13:38 +0200)]
Merge pull request #3826 from ahupowerdns/quietsmn
implement a 'quiet' mode for SuffixMatchNodeRule() which prevents Sho…
bert hubert [Fri, 6 May 2016 07:43:11 +0000 (09:43 +0200)]
implement a 'quiet' mode for SuffixMatchNodeRule() which prevents ShowRules() from listing a million domain names.
bert hubert [Fri, 6 May 2016 05:00:08 +0000 (07:00 +0200)]
include 1.0.0 announcement and announcement-video on website of dnsdist
Kees Monshouwer [Thu, 5 May 2016 12:52:20 +0000 (14:52 +0200)]
add gcc 6.1 support to boost.m4
bert hubert [Thu, 5 May 2016 12:22:29 +0000 (14:22 +0200)]
Merge pull request #3813 from ahupowerdns/multi-wash
Multi wash: make dnswash process multiple files at once & anonymize IPv6 fully now (128 bits)
Pieter Lexis [Wed, 4 May 2016 18:53:53 +0000 (20:53 +0200)]
pdnsutil load-zone: ignore double SOA
Closes #3818
bert hubert [Wed, 4 May 2016 18:16:56 +0000 (20:16 +0200)]
Merge pull request #3812 from zeha/docs-rrsets
APi docs: Fix typo rrset -> rrsets
Christian Hofstaedtler [Wed, 4 May 2016 17:21:42 +0000 (19:21 +0200)]
APi docs: Fix typo rrset -> rrsets
bert hubert [Wed, 4 May 2016 17:10:47 +0000 (19:10 +0200)]
make sure we zero out the anonymized IPv6 address.
Pieter Lexis [Wed, 4 May 2016 16:57:12 +0000 (18:57 +0200)]
bind: Improve skipped zone error messages, closes #3644
bert hubert [Wed, 4 May 2016 14:29:57 +0000 (16:29 +0200)]
days since fixing last part where we got IPv6 wrong: 0
Pieter Lexis [Mon, 25 Apr 2016 16:31:02 +0000 (18:31 +0200)]
recursor: install systemd unit file
Pieter Lexis [Mon, 25 Apr 2016 15:51:13 +0000 (17:51 +0200)]
recursor: add sd_notify() support
Pieter Lexis [Mon, 25 Apr 2016 14:09:17 +0000 (16:09 +0200)]
auth Install systemd unit file
Pieter Lexis [Mon, 25 Apr 2016 12:56:23 +0000 (14:56 +0200)]
sd_notify support in the auth server
Pieter Lexis [Mon, 25 Apr 2016 12:17:53 +0000 (14:17 +0200)]
Move systemd-related m4 files
bert hubert [Wed, 4 May 2016 13:49:00 +0000 (15:49 +0200)]
make dnswasher be able to wash multiple files, retaining consistent IP address mapping
Peter van Dijk [Wed, 4 May 2016 08:04:07 +0000 (10:04 +0200)]
Merge pull request #3807 from rgacogne/auth-caches-ttl-settings
auth: Add TTL settings for DNSSECKeeper's caches (key, medatada)
Remi Gacogne [Tue, 3 May 2016 19:26:03 +0000 (21:26 +0200)]
Update DNSSECKeeper's caches settings in pdns.conf-dist
Remi Gacogne [Tue, 3 May 2016 15:39:42 +0000 (17:39 +0200)]
Better description for DNSSECKeeper's cache, 0 disables caching
* Fix the description of the new settings
* Setting a 0-TTL disables caching
* Only get the value once, as it's done for `max-nsec3-iterations`
Remi Gacogne [Tue, 3 May 2016 14:31:37 +0000 (16:31 +0200)]
Merge pull request #3806 from rgacogne/fromiscmap-nocheck
auth: Move key validity check out of `fromISCMap()`
Peter van Dijk [Tue, 3 May 2016 14:23:30 +0000 (16:23 +0200)]
Merge pull request #3802 from Habbie/robust-doresolve
refactor doResolve out of secpoll
Peter van Dijk [Tue, 3 May 2016 13:38:07 +0000 (15:38 +0200)]
Merge pull request #3663 from klaus3000/pdnscontrol_notify
fix: also slaves may send NOTIFYs if slave-renotify is enabled
Peter van Dijk [Tue, 3 May 2016 13:35:01 +0000 (15:35 +0200)]
Merge pull request #3743 from hlindqvist/policy-rrl-mask
Implement address masking in RRL script (#3286)
Remi Gacogne [Tue, 3 May 2016 12:41:23 +0000 (14:41 +0200)]
Add key check on `pdnsutils hsm assign`
Remi Gacogne [Tue, 3 May 2016 12:40:32 +0000 (14:40 +0200)]
Rename `DNSCryptoKeyEngine` `checkKeys()` method to `checkKey()`
Remi Gacogne [Tue, 3 May 2016 08:39:53 +0000 (10:39 +0200)]
auth: Move key validity check out of `fromISCMap()`
It doesn't make a lot of sense to check the key validity at every
call of `fromISCMap()`, and it hurts performance a lot when keys
are not cached.
* Add separate `DNSSECKeeper::checkKeys()` and
`DNSCryptoKeyEngine::checkKeys()` methods
* Key validity is checked on import-zone-key, check-zone and
test-algorithm(s)
Remi Gacogne [Tue, 3 May 2016 08:10:04 +0000 (10:10 +0200)]
auth: Add TTL settings for DNSSECKeeper's caches (key, medatada)
bert hubert [Tue, 3 May 2016 06:55:14 +0000 (08:55 +0200)]
Merge pull request #3805 from ahupowerdns/depurl
remove purl.js: outdated & unused
Peter van Dijk [Mon, 2 May 2016 19:55:08 +0000 (21:55 +0200)]
Merge pull request #3797 from pieterlexis/issue-270-Version-for-tools
Add --version and --help to all the tools
bert hubert [Mon, 2 May 2016 19:29:44 +0000 (21:29 +0200)]
outdated & unused
bert hubert [Mon, 2 May 2016 19:14:47 +0000 (21:14 +0200)]
Merge pull request #3803 from ahupowerdns/logger-fixes
Logger fixes
bert hubert [Mon, 2 May 2016 18:40:11 +0000 (20:40 +0200)]
Merge pull request #3804 from rgacogne/rec-leak-validate
rec: Fix a memory leak in DNSSEC validation
Remi Gacogne [Mon, 2 May 2016 15:24:08 +0000 (17:24 +0200)]
rec: Fix a memory leak in DNSSEC validation
`DNSCryptoKeyEngine::makeFromPublicKeyString()` returns a naked
pointer to a new object.
Peter van Dijk [Mon, 2 May 2016 13:02:02 +0000 (15:02 +0200)]
Merge pull request #3801 from rgacogne/rec-lua-rcodes
rec: Add missing Lua rcodes bindings
bert hubert [Mon, 2 May 2016 11:46:13 +0000 (13:46 +0200)]
further logging silencing
bert hubert [Mon, 2 May 2016 11:01:35 +0000 (13:01 +0200)]
this wins no prizes - our protobuf logger is used both in dnsdist and recursor and sometimes needs to log. We previously did that to cerr since dnsdist and recursor have different logging promitives. This adds #ifdef based support for both. It works, is the best I can say about it.
Peter van Dijk [Mon, 2 May 2016 11:01:23 +0000 (13:01 +0200)]
rename a bunch of things
Peter van Dijk [Mon, 2 May 2016 10:39:29 +0000 (12:39 +0200)]
move stub code into stubresolver.cc/hh
Peter van Dijk [Tue, 26 Apr 2016 11:31:44 +0000 (13:31 +0200)]
honor qtype
Remi Gacogne [Mon, 2 May 2016 08:29:27 +0000 (10:29 +0200)]
rec: Add missing Lua rcodes bindings
Closes #3717.
Peter van Dijk [Mon, 2 May 2016 08:25:33 +0000 (10:25 +0200)]
Merge pull request #3798 from Habbie/requests-version
specify requests 2.9.2 to work around a bug in linkchecker