Expired
Milestone
expired on Dec 31, 2019
backburner
Low priority issues we will might resolve in a future.
Issues from this placeholder milestone are moved to specific version milestones.
All issues for this milestone are closed. You may close this milestone now.
Unstarted Issues (open and unassigned)
0
Ongoing Issues (open and assigned)
0
Completed Issues (closed)
48
- Long queries on DNAME cause truncated response
- Truncated response doesn't contain uncomplete answer
- Assertion fail on additional resolving
- Transfer gets stuck
- Documentation conflicts and bugs
- DDNS: when one update fails, whole bunch of other innocent updates is thrown away
- Better RRL?
- Upgrade linked lists
- DNSSEC, purge old unused keys
- kdig: algorithm name for PRIVATEDNS
- dnssec-library: universal signing context (TSIG/SIG0)
- zone events: separate event for DNSSEC signing
- memory: the global issue tracking the effort
- ACL & same prefixes and different TSIG keys
- NSEC and NSEC3 reduction proposal
- Pre-publishing alternate operator's DNSKEY records (for operator transfers) is not supported
- Geo-based response
- Add to Knot round-robin
- DNSBL module
- Implement (optional) socket activation
- Add support for GSS-API DDNS
- Faster Knot-generated RRSIG validation
- TCP/UDP handlers: descriptor tracking refactoring
- aligned memory access
- Make Knot DNS listen/respond over stdin/stdout (in tests)
- Make Knot DNS socket-activated
- Document server performance tuning
- Add a knotc command to just reconfig (config + new zones)
- Improve performance with large RRSets
- transfers: limit number of simultaneous requests
- Enable to never sync zonefile
- Use knot_rdata_t and knot_rdataset_t directly instead of via knot_rrset_t
- New zone API
- packet API: improve TC flag handling
- Document migration from OpenDNSSEC to Knot w/ DNSSEC
- Create test cases for thorough testing of DNSSEC scenarios
- Apply jitter to signature lifetime & improve the signature renew interval
- Optimize the daemon stop
- Ignore serials on reload with DNSSEC on, reuse old signatures
- Improve NSEC(3) chain fixing
- Refactor create_nsec3_owner()
- Review RCU in whole server
- update OpenSSL calls to newer EVP interface
- Listening on IPv6 address fails if IPv6 addresses are tentative
- zone access should be refcounted and locked, merge zone{data|contents} ?
- multimaster - implement multimaster support
- nsctl - propose a new NS control scheme
- refactoring - semantic checking should be universal for loading/xfers
Loading
Loading
Loading