Age | Commit message (Expand) | Author |
2016-01-18 | update DNSSEC TODO | Lennart Poettering |
2016-01-18 | resolved: don't try to print error strings, where errno isn't set | Lennart Poettering |
2016-01-18 | resolved: when restarting a transaction pick a new ID | Lennart Poettering |
2016-01-18 | resolved: enforce maximum limit on DNS transactions | Lennart Poettering |
2016-01-18 | resolved: add DNAME test case to the complex DNSSEC test | Lennart Poettering |
2016-01-18 | resolved: fix how we detect whether auxiliary DNSSEC transactions are ready | Lennart Poettering |
2016-01-18 | resolved: end log messages in a full stop | Lennart Poettering |
2016-01-18 | resolved: never consider following a CNAME/DNAME chain for a CNAME/DNAME lookup | Lennart Poettering |
2016-01-18 | resolved: when following a CNAME, turn off search domains | Lennart Poettering |
2016-01-18 | resolved: properly reset old collected data when following a CNAME redirect | Lennart Poettering |
2016-01-18 | resolved: beef up complex dnssec test to also use ResolveAddress() and do IDN... | Lennart Poettering |
2016-01-18 | resolved: rework IDNA logic | Lennart Poettering |
2016-01-18 | resolved: minor optimization for dns_question_is_equal() | Lennart Poettering |
2016-01-18 | resolved: be slightly stricter when validating DnsQuestion | Lennart Poettering |
2016-01-18 | resolved: make key argument of dns_question_contains() const | Lennart Poettering |
2016-01-17 | resolved: fix logging about DNAME redirection | Lennart Poettering |
2016-01-17 | resolved: when we find a DNAME RR, don't insist in a signed CNAME RR | Lennart Poettering |
2016-01-17 | resolved: update DNSSEC TODO | Lennart Poettering |
2016-01-17 | resolved: try to reduce number or DnsResourceKeys we keep around by merging them | Lennart Poettering |
2016-01-17 | resolved: when switching between DNSSEC modes, possibly flush caches | Lennart Poettering |
2016-01-17 | resolved: when the server feature level changes between query and response re... | Lennart Poettering |
2016-01-17 | resolved: check OPT RR before accepting a reply for verification of server fe... | Lennart Poettering |
2016-01-17 | resolved: when restarting a DNS transaction, remove all auxiliary DNSSEC tran... | Lennart Poettering |
2016-01-17 | resolved: when we receive an reply which is OPT-less or RRSIG-less, downgrade... | Lennart Poettering |
2016-01-17 | resolved: downgrade server feature level more aggressively when we have reaso... | Lennart Poettering |
2016-01-17 | resolved: ignore invalid OPT RRs in incoming packets | Lennart Poettering |
2016-01-17 | resolved: update RFCs list and TODO list | Lennart Poettering |
2016-01-17 | resolved: add complex test case | Lennart Poettering |
2016-01-17 | resolved: complete NSEC non-existance proofs | Lennart Poettering |
2016-01-17 | resolved: make sure the NSEC proof-of-non-existance check also looks for wild... | Lennart Poettering |
2016-01-17 | resolved: on negative NODATA replies, properly deal with empty non-terminals | Lennart Poettering |
2016-01-17 | resolved: rename dnssec_verify_dnskey() → dnssec_verify_dnskey_by_ds() | Lennart Poettering |
2016-01-17 | resolved: be stricter when using NSEC3 | Lennart Poettering |
2016-01-17 | resolved: when validating an RRset, store information about the synthesizing ... | Lennart Poettering |
2016-01-17 | resolved: do not use NSEC RRs from the wrong zone for proofs | Lennart Poettering |
2016-01-17 | resolved: ignore DS RRs without generating an error if they use an unsupporte... | Lennart Poettering |
2016-01-17 | resolved: some RR types may appear only or not at all in a zone apex | Lennart Poettering |
2016-01-13 | resolved: implement the full NSEC and NSEC3 postive wildcard proofs | Lennart Poettering |
2016-01-13 | resolved: refuse validating wildcard RRs for SOA, NSEC3, DNAME | Lennart Poettering |
2016-01-13 | resolved: properly handles RRs in domains beginning in an asterisk label | Lennart Poettering |
2016-01-13 | resolved: optimize dnssec_verify_rrset() a bit | Lennart Poettering |
2016-01-13 | resolved: allocate bounded strings on stack instead of heap, if we can | Lennart Poettering |
2016-01-13 | resolved: consider inverted RRSIG validity intervals expired | Lennart Poettering |
2016-01-11 | resolved: improve query RR type error wording a bit | Lennart Poettering |
2016-01-11 | resolved: don#t allow explicit queries for RRSIG RRs | Lennart Poettering |
2016-01-11 | resolved: refuse doing queries for known-obsolete RR types | Lennart Poettering |
2016-01-11 | resolved: rename DnsTransaction's current_features field to current_feature_l... | Lennart Poettering |
2016-01-11 | resolved: split out resetting of DNS server counters into a function call of ... | Lennart Poettering |
2016-01-11 | resolved: accept rightfully unsigned NSEC responses | Lennart Poettering |
2016-01-11 | resolved: rework how and when we detect whether our chosen DNS server knows D... | Lennart Poettering |