1. d92c53e Debian: Dynamically create /var/run/dnsmasq when systemd in use too. by Simon Kelley · 6 years ago
  2. a754e1d Debian: Write pid-file in the correct place when using systemd. by Simon Kelley · 6 years ago
  3. 8e9ffba Merge branch 'mobile-ra' by Simon Kelley · 6 years ago
  4. 15a97ad Use ECC crypto in Nettle now. by Simon Kelley · 6 years ago
  5. 91f4a5e Debian/rules fixes to enable hardening. by Simon Ruderich · 6 years ago
  6. 0fa7e62 Bump Debian version. by Simon Kelley · 6 years ago
  7. 62f992f Debian fix: Enable dnsmasq systemd unit on install. by Andreas Metzler · 6 years ago
  8. a23949d Debian change: write pid-file even using systemd. by Simon Kelley · 6 years ago
  9. b692f23 Fix DNS failure of cachesize set to zero. by Simon Kelley · 6 years ago
  10. 8aa999e Debian packaging fixes. by Simon Kelley · 6 years ago
  11. 20b215f Update German translation. by Conrad Kostecki · 6 years ago
  12. e6096e6 Another filter_rrsigs fix. by Simon Kelley · 6 years ago
  13. 8938ae0 Get packet size right when removing pseudoheader. by Simon Kelley · 6 years ago
  14. 9d1b22a Fix DNSSEC validation of ANY queries. by Simon Kelley · 6 years ago
  15. 1fc0268 Do SERVFAIL, therefore continue when searching for DS in TCP path too. by Simon Kelley · 6 years ago
  16. 4872aa7 Handle SERVFAIL replies when looking for proven-nonexistence of DS. by Simon Kelley · 6 years ago
  17. 7ea3d3f ra-advrouter mode for RFC-3775 mobile IPv6 support. by Simon Kelley · 6 years ago
  18. 50f86ce Need to fixup records in the additional section when removing DNSSEC stuff. by Simon Kelley · 6 years ago
  19. 7e22cf2 Update doc.html - was positively antediluvian. by Simon Kelley · 6 years ago
  20. 3b1b3e9 CHANGELOG update for 2.70 release. by Simon Kelley · 6 years ago
  21. ab72091 Bump Debian version. by Simon Kelley · 6 years ago
  22. 66f5786 Typo. by Matt Comben · 6 years ago
  23. 6375838 Fix crash on TCP DNS request when DNSSEC not enabled. by Simon Kelley · 6 years ago
  24. 82a14af Ensure request name in buffer for ipset lookup. by Simon Kelley · 6 years ago
  25. 97dce08 Add donate button to doc.html. by Simon Kelley · 6 years ago
  26. 198d940 Update CHANGELOG/release-notes. by Simon Kelley · 6 years ago
  27. 1d7e0a3 ipv6.arpa -> ip6.arpa by Lutz Preßler · 6 years ago
  28. 1006860 Fix NXDOMAIN RCODE in auth PTR replies. by Simon Kelley · 6 years ago
  29. b7639d5 Fix ipsets logging patch. by Simon Kelley · 6 years ago
  30. 49752b9 Log IPSET actions. by Wang Jian · 6 years ago
  31. e98bd52 Add --dnssec-no-timecheck by Simon Kelley · 6 years ago
  32. 8a8bbad Ensure ->sentto is valid for DNSSEC forwards. Otherwise retries SEGV. by Simon Kelley · 6 years ago
  33. fec216d Cache stats availble in CHAOS .bind domain. by Simon Kelley · 6 years ago
  34. 4e1fe44 Terminate DS-search when reaching the root via cache entries. by Simon Kelley · 6 years ago
  35. 51967f9 SERVFAIL is an expected error return, don't try all servers. by Simon Kelley · 6 years ago
  36. b37f8b9 Handle failure of hash_questions() by Tomas Hozza · 6 years ago
  37. fc2833f Memory leak in error path. by Tomas Hozza · 6 years ago
  38. 490f907 Reorder sanity checks on UDP packet reception, to cope with failed recvfrom() by Simon Kelley · 6 years ago
  39. 56618c3 Add dnssec-check-unsigned to example config file. by Simon Kelley · 6 years ago
  40. 604f759 CHANGELOG update. by Simon Kelley · 6 years ago
  41. 2a7a2b8 Ignore DNS queries from port 0: http://www.ietf.org/mail-archive/web/dnsop/current/msg11441.html by Simon Kelley · 6 years ago
  42. 3e21a1a Tidy uid defines. by Andy · 6 years ago
  43. 2b29191 Fix DNSSEC crash retrying to IPv6 server. by Simon Kelley · 6 years ago
  44. 03431d6 Initialise uid when creating CNAME cache record. by Simon Kelley · 6 years ago
  45. cc1a29e Make --quiet-dhcp apply to DHCPDISCOVER when client ignored. by Simon Kelley · 6 years ago
  46. e62e9b6 Manpage typos. by Moritz Warning · 6 years ago
  47. 19c51cf Tidy and fix cache->uid handling. by Simon Kelley · 6 years ago
  48. d508215 Ensure next_uid() can never return 0. by Andy · 6 years ago
  49. 3f7483e Handle integer overflow in uid counter. Fixes rare crashes in cache code. by Simon Kelley · 6 years ago
  50. 0c8584e Warn about non-local queries once only for UDP. by Simon Kelley · 6 years ago
  51. f00690f Typo by Simon Kelley · 6 years ago
  52. 89b12ed OPT_LOCAL_SERVICE needs up-to-date interface list too. by Simon Kelley · 6 years ago
  53. 1a9a348 Set --local-service in Debian package startup. by Simon Kelley · 6 years ago
  54. c8a8048 --local-service. Default protection from DNS amplification attacks. by Simon Kelley · 6 years ago
  55. 4ea8e80 Add --static to pkg-config command when appropriate. by Simon Kelley · 6 years ago
  56. c07d30d Compiler warning. by Simon Kelley · 6 years ago
  57. d588ab5 Man page updates for DNSSEC. by Simon Kelley · 6 years ago
  58. f8b422a KEYBLOCK LEN better as a multiple of 8. by Simon Kelley · 6 years ago
  59. 29fe922 Can have local DS records (trust anchors). by Simon Kelley · 6 years ago
  60. 8707019 Mass edit of INSECURE->BOGUS returns for server failure/bad input. by Simon Kelley · 6 years ago
  61. d1fbb77 Don't cache secure replies which we've messsed with. by Simon Kelley · 6 years ago
  62. 1fbe4d2 Tweak tuning params. by Simon Kelley · 6 years ago
  63. 0575610 Handle replies with no answers and no NS in validate_reply. by Simon Kelley · 6 years ago
  64. e3f1455 Don't free blockdata for negative DS cache entries. by Simon Kelley · 6 years ago
  65. bd9b3cf Fix off-by-one overwrite. by Simon Kelley · 6 years ago
  66. 14db421 Tidy. by Simon Kelley · 6 years ago
  67. 00a5b5d Check that unsigned replies come from unsigned zones if --dnssec-check-unsigned set. by Simon Kelley · 6 years ago
  68. b8eac19 Negative caching for DS records. by Simon Kelley · 6 years ago
  69. b47b04c Return INSECURE when validation fails with proved non-existent DS. by Simon Kelley · 6 years ago
  70. 613ad15 Strip DNSSEC RRs when query doesn't have DO bit set. by Simon Kelley · 6 years ago
  71. 2418753 Speeling. by Simon Kelley · 6 years ago
  72. a857daa Code cleanup. by Simon Kelley · 6 years ago
  73. f01d7be An NSEC record cannot attest to its own non-existance! by Simon Kelley · 6 years ago
  74. d387380 Check signer name in RRSIGs. by Simon Kelley · 6 years ago
  75. f2e4c27 Bugfix for last commit. by Simon Kelley · 6 years ago
  76. 5107ace NSEC3 validation. First pass. by Simon Kelley · 6 years ago
  77. 7b1eae4 Add --servers-file option. by Simon Kelley · 6 years ago
  78. c152dc8 Omit ECC from DNSSEC if nettle library is old. by Simon Kelley · 6 years ago
  79. 7bcca00 More server cleanup. by Simon Kelley · 6 years ago
  80. d68c2ca Cleanup of server reading code, preparation, for dynamic reading from files. by Simon Kelley · 6 years ago
  81. de73a49 --rev-server option. Syntactic sugar for PTR queries. by Simon Kelley · 6 years ago
  82. e3ec15a Log BOGUS validation result when upstream sends SERVFAIL. by Simon Kelley · 6 years ago
  83. dac7431 TYpo. by Simon Kelley · 6 years ago
  84. 2ecd9bd No CD in forwarded queries unless dnssec-debug for TCP too. by Simon Kelley · 6 years ago
  85. a0ab18f Don't mess with the TTL of DNSSEC RRs. by Simon Kelley · 6 years ago
  86. ebe95a8 Add RFC-6605 ECDSA DNSSEC verification. by Simon Kelley · 6 years ago
  87. ee41586 Use DS records as trust anchors, not DNSKEYs. by Simon Kelley · 6 years ago
  88. 83349b8 Further tidying of AD and DO bit handling. by Simon Kelley · 6 years ago
  89. 7fa836e Handle validation when more one key is needed. by Simon Kelley · 6 years ago
  90. 1633e30 Fix Byte-order botch: broke DNSSEC on big-endian platforms. by Simon Kelley · 6 years ago
  91. c8ca33f Fix DNSSEC caching problems: incomplete RRSIG RRsets. by Simon Kelley · 6 years ago
  92. e243c07 AD bit in queries handled as RFC6840 p5.7 by Simon Kelley · 6 years ago
  93. da4f372 Add trust-anchors file to Debian package. by Simon Kelley · 6 years ago
  94. 610e782 Fix stack-smashing crash in DNSSEC. Thanks to Henk Jan Agteresch. by Simon Kelley · 6 years ago
  95. 854cf26 DNSSEC config in example file. by Simon Kelley · 6 years ago
  96. bb201c2 Protect against malicious DNS replies with very large RRsets. by Simon Kelley · 6 years ago
  97. 12fae49 Make RR work when returning A/AAAA records and an RRSIG. by Simon Kelley · 6 years ago
  98. fd37227 Updated version of contrib/try-all-ns by Jesse Glick · 6 years ago
  99. b98d22c Linking stuff. Latest Debian/Ubuntu don't automatically link gmp. by Simon Kelley · 6 years ago
  100. 160f650 Make DNSEC default, add build-depends for same, bump version. by Simon Kelley · 6 years ago