Age | Commit message (Expand) | Author |
2015-12-28 | resolved: also use RRSIG expiry for negative caching | Lennart Poettering |
2015-12-28 | resolved: use RRSIG expiry and original TTL for cache management | Lennart Poettering |
2015-12-28 | resolved: clean up dns_transaction_stop() | Lennart Poettering |
2015-12-28 | resolved: only keep a single list of supported signature algorithms | Lennart Poettering |
2015-12-28 | resolved: add ECDSA signature support | Lennart Poettering |
2015-12-28 | resolved: split out RSA-specific code from dnssec_verify_rrset() | Lennart Poettering |
2015-12-28 | resolved: simplify MD algorithm initialization a bit | Lennart Poettering |
2015-12-28 | resolved: add SHA384 digest support | Lennart Poettering |
2015-12-28 | resolve: remove unused variables | Thomas Hindoe Paaboel Andersen |
2015-12-27 | resolved: rename "features" variables to "feature_level" | Lennart Poettering |
2015-12-27 | resolved: rework OPT RR generation logic | Lennart Poettering |
2015-12-27 | resolved: reuse dns_transaction_stop() when destructing transaction objects | Lennart Poettering |
2015-12-27 | resolved: add dns_transaction_close_connection() | Lennart Poettering |
2015-12-27 | resolved: make sure we reset the DNSSEC result when we accept a response packet | Lennart Poettering |
2015-12-27 | resolved: improve some log messages a bit | Lennart Poettering |
2015-12-27 | resolved: never proceed processing truncated packets | Lennart Poettering |
2015-12-27 | resolved: remember explicitly whether we already tried a stream connection | Lennart Poettering |
2015-12-27 | resolved: make sure we GC stream transactions properly | Lennart Poettering |
2015-12-27 | resolved: ignore additional DNS responses we get while validating | Lennart Poettering |
2015-12-27 | resolved: introduce dns_transaction_reset_answer() | Lennart Poettering |
2015-12-26 | resolved: don't unnecessarily allocate memory in dns_packet_append_name() | Lennart Poettering |
2015-12-26 | resolved: name TCP and UDP socket calls uniformly | Lennart Poettering |
2015-12-26 | resolved: add an automatic downgrade to non-DNSSEC mode | Lennart Poettering |
2015-12-26 | resolved: no need to store return value of dns_server_possible_features() | Lennart Poettering |
2015-12-26 | resolved: don't set TCP_NODELAY twice for TCP sockets | Lennart Poettering |
2015-12-26 | resolved: generate an explicit transaction error when we cannot reach server ... | Lennart Poettering |
2015-12-26 | resolved: deal with unsigned DS/NSEC/NSEC3 properly | Lennart Poettering |
2015-12-26 | resolved: log each dnssec failure, in a recognizable way | Lennart Poettering |
2015-12-26 | resolved: gather statistics about resolved names | Lennart Poettering |
2015-12-26 | resolved: if we accepted unauthenticated NSEC/NSEC3 RRs, use them for proofs | Lennart Poettering |
2015-12-26 | resolved: don't insist on finding DNSKEYs for RRsets of zones with DNSSEC off | Lennart Poettering |
2015-12-26 | resolved: be stricter when searching for a DS RR for a DNSKEY RR | Lennart Poettering |
2015-12-26 | resolved: make use of dns_type_may_redirect() where possible | Lennart Poettering |
2015-12-26 | update DNSSEC TODO | Lennart Poettering |
2015-12-26 | resolved: tighten search for NSEC3 RRs a bit | Lennart Poettering |
2015-12-26 | resolved: when doing NSEC3 proof, first find right NSEC3 suffix | Lennart Poettering |
2015-12-26 | resolved: properly implement RRSIG validation of wildcarded RRsets | Lennart Poettering |
2015-12-26 | resolved: never use data from failed transactions | Lennart Poettering |
2015-12-26 | resolved: don't choke on NSEC/NSEC3 RRs with no bitmap | Lennart Poettering |
2015-12-26 | resolved: internalize string buffer of dns_resource_record_to_string() | Lennart Poettering |
2015-12-26 | resolved: when matching SOA RRs, don't eat up errors | Lennart Poettering |
2015-12-26 | resolved: when matching SOA RRs, honour RR class | Lennart Poettering |
2015-12-26 | resolved: when looking for a SOA RR in a reply, pick the right one | Lennart Poettering |
2015-12-26 | resolved: when caching NXDOMAIN for an RR, make sure we flush out old ANY ent... | Lennart Poettering |
2015-12-26 | resolved: split out a new dns_type_may_redirect() call | Lennart Poettering |
2015-12-20 | resolve: fix indentation | Thomas Hindoe Paaboel Andersen |
2015-12-18 | resolved: propagate DNSSEC validation status from auxiliary transactions | Lennart Poettering |
2015-12-18 | resolved: propagate the DNSSEC result from the transaction to the query and t... | Lennart Poettering |
2015-12-18 | resolved: rename DNS_TRANSACTION_FAILURE → DNS_TRANSACTION_RCODE_FAILURE | Lennart Poettering |
2015-12-18 | resolved: merge two comments | Lennart Poettering |