- Sep 03, 2013
-
-
Lubos Slovak authored
refs #4
-
Daniel Salzman authored
-
- Sep 02, 2013
-
-
Lubos Slovak authored
Fixed leaks from load signing. Other cases must be checked. refs #4
-
Jan Včelák authored
-
- Sep 01, 2013
-
-
Jan Kadlec authored
- Added new field to dnssec policy structure (SOA serial increment policy) - Removed debug code - Added some info messages after succcesful signing Refs #4
-
Jan Kadlec authored
Refs #4
-
- Aug 30, 2013
-
-
Jan Kadlec authored
- preparation for non-forced zone sing planning - added a posibility not to wait for readers in changeset application when applying DNSSEC changes upon load/reload (there should be no readers, since the zone is not in the zonedb) - fixes in changeset merging (SOAs and serials were wrong - SOAs might still be wrong, when me merge the changesets, we do *NOT* want to update the serial, since the user already did that) Refs #4
-
- Aug 27, 2013
-
-
Jan Kadlec authored
Refs #4
-
Jan Kadlec authored
- First store merge changesets, then apply signatures - Added pretty print function to dump changesets, HAS TO BE REMOVED!!! - some fixes, mainly in signature checking - fails to save to journal for same reason - deliberate leaks - malformed changesets, needs custom freeing function Refs #4
-
Jan Kadlec authored
- Zones are now automatically (re)signed when server starts/reloads - Signature validity check now calculates the signature as well - this is used to detect changes to RRs themselves - 'knotc signzone' issues a force signing of zone - all RRSIGs are dropped and recreated - Some leaks and bugs still present, but the code is commitable now Refs #4
-
- Aug 22, 2013
-
-
Jan Kadlec authored
Refs #4
-
Lubos Slovak authored
refs #4
-
Lubos Slovak authored
It should be called always when adjusting is called (i.e. always when new zone contents are created).
-
Lubos Slovak authored
refs #4
-
Lubos Slovak authored
refs #4
-
Lubos Slovak authored
Dnames must be copied now. refs #4
-
Jan Kadlec authored
- Refactored node walking a bit (API instead of hard-coded trie walk) - Double free fix (wrong merge probably) Refs #4
-
- Aug 21, 2013
-
-
Jan Kadlec authored
- Simplified the RRSet signing function a bit (not so many args needed) Refs #4
-
Lubos Slovak authored
-
- Aug 20, 2013
-
-
Lubos Slovak authored
Conflicts: src/knot/zone/semantic-check.c src/libknot/dname.c src/libknot/dname.h src/libknot/dnssec/key.c src/libknot/rrset.c src/libknot/rrset.h src/libknot/zone/zone-contents.c src/tests/libknot/sign_tests.c src/utils/common/params.c
-
Lubos Slovak authored
refs #4
-
Daniel Salzman authored
Conflicts: src/knot/conf/cf-parse.y
-
Lubos Slovak authored
refs #4
-
- Aug 16, 2013
-
-
Marek Vavrusa authored
-
Daniel Salzman authored
-
Marek Vavrusa authored
-
Marek Vavrusa authored
This is O(N) on both insert/search, but since the ACL lists are several items long (usually), it is not an issue. The lists are sorted from the longest prefix to the shortest, so the first match is guaranteed to be longest prefix match.
-
- Aug 15, 2013
-
-
Jan Kadlec authored
-
Marek Vavrusa authored
Fixed a bug where NSID couldn't be switched off on reload, causing malformed packets and/or extra bytes. Since it's protected by RCU, it needs to be created on each server reload and the old one should be freed after the RCU is synchronized. Also removed rest of obsolete code and unified EDNS constants.
-
- Aug 14, 2013
-
-
Daniel Salzman authored
-
Marek Vavrusa authored
-
Lubos Slovak authored
Not fixed as it should not be problem later with dnames directly in RDATA (branch dname_refactor). Added note describing the problem.
-
Marek Vavrusa authored
-
Marek Vavrusa authored
Also updated documentation for functions where it was wrong.
-
Marek Vavrusa authored
-
- Aug 13, 2013
-
-
Lubos Slovak authored
-
Lubos Slovak authored
-
Lubos Slovak authored
refs #103, #4
-
Lubos Slovak authored
-
Lubos Slovak authored
Conflicts: src/Makefile.am src/knot/conf/conf.c src/libknot/dnssec/key.c src/libknot/updates/changesets.c src/libknot/zone/zone-contents.c src/libknot/zone/zone-diff.c
-