Mark Andrews
1208790272
make lhs unsigned
2014-06-12 11:12:22 +10:00
Mark Andrews
8a2ff13c3d
add INSISTs to silence tainted data false positive in Coverity
2014-06-12 10:42:39 +10:00
Tinderbox User
889eb2e055
update copyright notice
2014-06-11 23:45:23 +00:00
Mark Andrews
23fe5cbb07
pass rng to destroy
2014-06-11 22:57:46 +10:00
Mark Andrews
0e338b60cd
3843. [protocol] Check EDNS EXPIRE option in dns_rdata_fromwire.
...
[RT #35969 ]
Conflicts:
CHANGES
2014-05-13 21:57:40 +10:00
Tinderbox User
37f7c4c673
update copyright notice
2014-04-24 23:45:21 +00:00
Mark Andrews
36e5ac0033
3819. [bug] NSEC3 hashes need to be able to be entered and
...
displayed without padding. This is not a issue for
currently defined algorithms but may be for future
hash algorithms. [RT #27925 ]
2014-04-24 18:58:03 +10:00
Mark Andrews
45b8dc626a
add #ifdef notdef check of DNS_OPT_EXPIRE length
2014-02-20 15:06:49 +11:00
Tinderbox User
56af756b6c
update copyright notice
2014-02-14 23:46:27 +00:00
Evan Hunt
f2ea8c2f96
[master] updated published drafts
2014-02-14 08:53:06 -08:00
Mark Andrews
e20788e121
update copyrights
2014-01-16 15:19:24 +11:00
Tinderbox User
b269de36be
update copyright notice
2014-01-15 23:46:24 +00:00
Mark Andrews
d8b83f0e2b
silence compiler warning
2014-01-15 12:40:09 +11:00
Tinderbox User
bf0266f286
update copyright notice
2014-01-14 23:46:22 +00:00
Evan Hunt
ba751492fc
[master] native PKCS#11 support
...
3705. [func] "configure --enable-native-pkcs11" enables BIND
to use the PKCS#11 API for all cryptographic
functions, so that it can drive a hardware service
module directly without the need to use a modified
OpenSSL as intermediary (so long as the HSM's vendor
provides a complete-enough implementation of the
PKCS#11 interface). This has been tested successfully
with the Thales nShield HSM and with SoftHSMv2 from
the OpenDNSSEC project. [RT #29031 ]
2014-01-14 15:40:56 -08:00
Mark Andrews
07fb9b8330
3704. [protocol] Accept integer timestamps in RRSIG records. [RT #35185 ]
2014-01-14 16:12:30 +11:00
Tinderbox User
431a83fb29
update copyright notice
2014-01-09 23:46:35 +00:00
Evan Hunt
e851ea8260
[master] replace memcpy() with memmove().
...
3698. [cleanup] Replaced all uses of memcpy() with memmove().
[RT #35120 ]
2014-01-08 16:39:05 -08:00
Mark Andrews
2bdfb330af
update copyrights
2013-12-05 15:04:53 +11:00
Mark Andrews
c3c8823fed
3681. [port] Update the Windows build system to support feature
...
selection and WIN64 builds. This is a work in
progress. [RT #34160 ]
2013-12-04 12:47:23 +11:00
Tinderbox User
3a34908497
update copyright notice
2013-10-25 23:46:32 +00:00
Mark Andrews
938aea1dc4
address memory leak in change #3662 , force format matching, attempt to address coverity false positives
2013-10-26 10:04:36 +11:00
Mark Andrews
34416a7954
3663. [bug] Address bugs in dns_rdata_fromstruct and
...
dns_rdata_tostruct for WKS and ISDN types. [RT #34910 ]
2013-10-25 13:06:09 +11:00
Tinderbox User
63737247d1
update copyright notice
2013-09-05 23:46:16 +00:00
Mark Andrews
3ad8f24ddd
3644. [protocol] Check that EDNS subnet client options are well formed.
...
[RT #34718 ]
2013-09-05 09:18:59 +10:00
Mark Andrews
e9921500e1
remove unused variable
2013-09-04 22:34:44 +10:00
Mark Andrews
d6f99498d6
3639. [bug] Treat type 65533 (KEYDATA) as opaque except when used
...
in a key zone. [RT #34238 ]
2013-09-04 13:14:06 +10:00
Evan Hunt
5f630b9417
[master] change 3630 incomplete--needed to check fromtext too
2013-08-14 17:23:41 -07:00
Tinderbox User
3c04ca47c6
update copyright notice
2013-08-13 23:46:14 +00:00
Evan Hunt
5d4343a998
[master] fix md5 key id computation
...
3630. [bug] Ensure correct ID computation for MD5 keys. [RT #33033 ]
2013-08-13 16:03:42 -07:00
Tinderbox User
21c8938824
update copyright notice
2013-08-12 23:46:05 +00:00
Mark Andrews
75ae74f8fd
3629. [func] Allow the printing of cryptographic fields in DNSSEC
...
records by dig to be suppressed (dig +nocrypto).
[RT #34534 ]
2013-08-12 15:37:51 +10:00
Tinderbox User
345a210f51
update copyright notice
2013-07-16 23:46:10 +00:00
Mark Andrews
fdb4ae8f6c
3621. [security] Incorrect bounds checking on private type 'keydata'
...
can lead to a remotely triggerable REQUIRE failure
(CVE-2013-4854). [RT #34238 ]
2013-07-17 08:03:50 +10:00
Tinderbox User
ea3dd509f6
update copyright notice
2013-04-04 23:46:06 +00:00
Mark Andrews
3a6d62c59f
3546. [func] Add EUI48 and EUI64 types. [RT #33082 ]
2013-04-05 09:07:28 +11:00
Mark Andrews
609b8d0817
update copyrights
2013-02-27 12:27:58 +11:00
Mark Andrews
30b7c81c13
3500. [port] Support NAPTR regular expression validation on
...
all platforms. [RT #32688 ]
2013-02-27 08:59:04 +11:00
Tinderbox User
54c820164a
update copyright notice
2013-01-15 23:45:50 +00:00
Mark Andrews
70b0f9e179
silence compiler warning: Value stored to '?' is never used
2013-01-16 07:13:08 +11:00
Tinderbox User
b941edbeb5
update copyright notice
2013-01-09 23:45:53 +00:00
Mark Andrews
f1c1aab2c9
3457. [protocol] Add ILNP records (NID, LP, L32, L64). [RT #31836 ]
2013-01-10 08:26:31 +11:00
Mark Andrews
f622386388
use known length for known algorithns in fromtext_dlv cf fromtext_ds
2013-01-09 21:11:16 +11:00
Tinderbox User
b8e2e5dd86
update copyright notice
2012-12-08 23:45:51 +00:00
Mark Andrews
50aaa90130
RETTOK -> RETERR
2012-12-09 07:45:51 +11:00
Mark Andrews
e85702ce5b
3438. [bug] Don't accept unknown data escape in quotes. [RT #32031 ]
...
Squashed commit of the following:
commit 7ad3daade513c94a1c92ee7c91c112f161d13ef4
Author: Mark Andrews <marka@isc.org>
Date: Mon Dec 3 15:03:44 2012 +1100
look at the second token to determine if a TXT record in of unknown format or not
commit 7df32138462646f6aee84ffa56d02ac24ec8d672
Author: Mark Andrews <marka@isc.org>
Date: Mon Dec 3 12:42:18 2012 +1100
'"\#"' was incorrectly being treated as a unknown data escape sequence.
2012-12-08 14:05:32 +11:00
Tinderbox User
94f86d37b2
update copyright notice
2012-10-19 23:45:58 +00:00
Mark Andrews
3624e53916
remove redundant UNUSED(callbacks)
2012-10-19 16:28:57 +11:00
Mark Andrews
058e44186b
3387. [func] Support for a DS digest can be disabled at
...
runtime with disable-ds-digests. [RT #21581 ]
2012-10-03 12:38:43 +10:00
Evan Hunt
664320a88f
remove spurious newline
...
3377. [bug] Removed spurious newline from NSEC3 multiline
output. [RT #31044 ]
2012-09-18 14:22:33 -07:00