- 45d8a24 Introduce UID_NONE value, for cache records which are not the target of a CNAME. by Simon Kelley · 6 years ago
- a997ca0 Fix sometimes missing DNSSEC RRs when DNSSEC validation not enabled. by Simon Kelley · 6 years ago
- 51e4eee Fix address-dependent domains for IPv6. by Paul Maddock · 7 years ago
- 05ff659 Fix stupid infinite loop introduced by preceding commit. by Simon Kelley · 7 years ago
- db0f488 Handle some corner cases in RA contructed interfaces with addresses changing interface. by Simon Kelley · 7 years ago
- 090856c Allow zone transfer in authoritative mode whenever auth-peer is specified. by Simon Kelley · 7 years ago
- cc5cc8f Sane error message when pcap file header is wrong. by Simon Kelley · 7 years ago
- c488b68 Handle standard and contructed dhcp-ranges on the same interface. by Simon Kelley · 7 years ago
- 1f1873a Log warning on very large cachesize config, instead of truncating it. by Simon Kelley · 7 years ago
- 0a496f0 Do unsolicited RAs for interfaces which appear after dnsmasq startup. by Maarten de Vries · 7 years ago
- e27825b Fix logging in previous. by Simon Kelley · 7 years ago
- 1f60a18 Retry SERVFAIL DNSSEC queries to a different server, if possible. by Simon Kelley · 7 years ago
- a0088e8 Handle query retry on REFUSED or SERVFAIL for DNSSEC-generated queries. by Simon Kelley · 7 years ago
- 34e26e1 Retry query to other servers on receipt of SERVFAIL rcode. by Simon Kelley · 7 years ago
- 6b17335 Add packet-dump debugging facility. by Simon Kelley · 7 years ago
- 07ed585 Add logging for DNS error returns from upstream and local configuration. by Simon Kelley · 7 years ago
- 0669ee7 Fix DHCP broken-ness when --no-ping AND --dhcp-sequential-ip are set. by Simon Kelley · 7 years ago
- f84e674 Be persistent with broken-upstream-DNSSEC warnings. by Simon Kelley · 7 years ago
- 7f00843 Handle DNSSEC-unaware upstream servers better. by Simon Kelley · 7 years ago
- a691853 Change default for dnssec-check-unsigned. by Simon Kelley · 7 years ago
- 4e72fec Fix DNSSEC without dnssec-check-unsigned. by Simon Kelley · 7 years ago
- 4441cf7 Fix DNS server fd garbage collection. by Simon Kelley · 7 years ago
- e83915d Set V6ONLY on DNS upstream socket. by Simon Kelley · 7 years ago
- 734d531 Add RFC4039 rapid commit support. by Simon Kelley · 7 years ago
- 94b6878 Tidy crypto.c of old library compat. Now need libnettle 3. by Simon Kelley · 7 years ago
- 8b96552 Fix compiler warning. by Simon Kelley · 7 years ago
- 6b2b564 Enhance --synth-domain to allow names with sequential integers. by Simon Kelley · 7 years ago
- 4f7bb57 Fix deletion of dhcp-options from inotify dynamic files. by Simon Kelley · 7 years ago
- 56f0623 Allow trailing dot in CNAME. by Petr Menšík · 7 years ago
- f3223fb Fix nettle_hash() function to avoid ABI incompatibilities. by Simon Kelley · 7 years ago
- 87e00fe Compiler warning fixes. by Simon Kelley · 7 years ago
- 1721453 Remove special handling of A-for-A queries. by Simon Kelley · 7 years ago
- 499d8dd Fix boundary for test introduced in 3e3f1029c9ec6c63e430ff51063a6301d4b2262 by yiwenchen · 7 years ago
- 55ecde7 Inotify: Ignore backup files created by editors by Andy Hawkins · 7 years ago
- 6b54d69 Make failure to chown() pidfile a warning. by Simon Kelley · 7 years ago
- 246a31c Change ownership of pid file, to keep systemd happy. by Simon Kelley · 7 years ago
- 83e4b73 Remove confusion between --user and --script-user. by Simon Kelley · 7 years ago
- 6340ca7 Tweak heuristic for initial DNSSEC memory allocation. by Simon Kelley · 7 years ago
- baf553d Default min-port to 1024 to avoid reserved ports. by Simon Kelley · 7 years ago
- 486bcd5 Simplify and correct bindtodevice(). by Kurt H Maier · 7 years ago
- a969ba6 Special case NSEC processing for root DS record, to avoid spurious BOGUS. by Simon Kelley · 7 years ago
- cd7df61 Fix DNSSEC validation errors introduced in 4fe6744a220eddd3f1749b40cac3dfc510787de6 by Simon Kelley · 7 years ago
- c1a4e25 Try to be a little more clever at falling back to smaller DNS packet sizes. by Simon Kelley · 7 years ago
- 4fe6744 DNSSEC fix for wildcard NSEC records. CVE-2017-15107 applies. by Simon Kelley · 7 years ago
- 3bd4c47 Remove limit on length of command-line options. by Neil Jerram · 7 years ago
- 22cd860 Allow more than one --bridge-interface option to refer to an interface. by Simon Kelley · 7 years ago
- 3c973ad Use SIGINT (instead of overloading SIGHUP) to turn on DNSSEC time validation. by Simon Kelley · 7 years ago
- faaf306 Spelling fixes. by Ville Skyttä · 7 years ago
- c7e6aea Change references to gPXE to iPXE. by Geert Stappers · 7 years ago
- e541245 Handle duplicate RRs in DNSSEC validation. by Simon Kelley · 7 years ago
- d1ced3a Update copyrights to 2018. by Simon Kelley · 7 years ago
- ef3d137 Fix infinite retries in strict-order mode. by Simon Kelley · 7 years ago
- 8c707e1 Make 373e91738929a3d416e6292e65824184ba8428a6 compile without DNSSEC. by Simon Kelley · 7 years ago
- 373e917 Fix a6004d7f17687ac2455f724d0b57098c413f128d to cope with >256 RRs in answer section. by Simon Kelley · 7 years ago
- 74f0f9a Commment language tweaks. by Josh Soref · 7 years ago
- 075366a Open inotify socket only when used. by Petr Menšík · 7 years ago
- 087eb76 Always return a SERVFAIL response to DNS queries with RD=0. by Simon Kelley · 7 years ago
- ebedcba Typo in printf format string added in 22dee512f3738f87539a79aeb52b9e670b3bd104 by Simon Kelley · 7 years ago
- 0954a97 Remove RSA/MD5 DNSSEC algorithm. by Simon Kelley · 7 years ago
- b77efc1 Tidy DNSSEC algorithm table use. by Simon Kelley · 7 years ago
- aa6f832 Add a few DNS RRs to the table. by Simon Kelley · 7 years ago
- ad9c6f0 Add support for Ed25519 DNSSEC signature algorithm. by Simon Kelley · 7 years ago
- a6004d7 Fix caching logic for validated answers. by Simon Kelley · 7 years ago
- c366717 Tidy up add_resource_record() buffer size checks. by Simon Kelley · 7 years ago
- 22dee51 Log DNS server max packet size reduction. by Simon Kelley · 7 years ago
- 6fd5d79 Fix logic on EDNS0 headers. by Simon Kelley · 7 years ago
- 9d6918d Use IP[V6]_UNICAST_IF socket option instead of SO_BINDTODEVICE for DNS. by Simon Kelley · 7 years ago
- a49c5c2 Fix search_servers() segfault with DNSSEC. by Simon Kelley · 7 years ago
- 30858e3 Spaces in CNAME options break parsing. by Simon Kelley · 7 years ago
- 62cb936 Security fix, CVE-2017-14491, DNS heap buffer overflow. by Simon Kelley · 7 years ago
- 6a0b00f Misc code cleanups arising from Google analysis. by Simon Kelley · 7 years ago
- 51eadb6 Security fix, CVE-2017-14495, OOM in DNS response creation. by Simon Kelley · 7 years ago
- 897c113 Security fix, CVE-2017-14496, Integer underflow in DNS response creation. by Simon Kelley · 7 years ago
- 33e3f10 Security fix, CVE-2017-14494, Infoleak handling DHCPv6 forwarded requests. by Simon Kelley · 7 years ago
- 3d4ff1b Security fix, CVE-2017-14493, DHCPv6 - Stack buffer overflow. by Simon Kelley · 7 years ago
- 24036ea Security fix, CVE-2017-14492, DHCPv6 RA heap overflow. by Simon Kelley · 7 years ago
- 0549c73 Security fix, CVE-2017-14491 DNS heap buffer overflow. by Simon Kelley · 7 years ago
- b697fbb Do not include stdio.h before dnsmasq.h by Christian Hesse · 7 years ago
- 09ce307 Disable libIDN2 underscore workaround with libIDN or fixed libIDN2. by Simon Kelley · 7 years ago
- a3303e1 Don't return arcount=1 if EDNS0 RR won't fit in the packet. by Simon Kelley · 7 years ago
- 63437ff Fix CVE-2017-13704, which resulted in a crash on a large DNS query. by Simon Kelley · 7 years ago
- 69a815a Fix loss of undercores in domain names when using libidn2. by Simon Kelley · 7 years ago
- 1d22494 Remove ping-check of configured DHCP address. by Simon Kelley · 7 years ago
- cbd29e5 Printf related fixes. by Rosen Penev · 7 years ago
- 50a2841 Fix function declarations. by Rosen Penev · 7 years ago
- 9396752 Try other servers if first returns REFUSED when --strict-order active. by Hans Dedecker · 7 years ago
- 1649f70 Fix DHCP relay, broken by ff325644c7afae2588583f935f4ea9b9694eb52e by Simon Kelley · 7 years ago
- 50ca855 Bump year in copyrights. by Simon Kelley · 7 years ago
- 4bb6886 Tweak ICMP ping check logic for DHCPv4. by Simon Kelley · 8 years ago
- 2446514 Fix logic of appending ".<layer>" to PXE basename by Chris Novakovic · 8 years ago
- 9828ab1 Fix compiler warning. by Matthias Andree · 8 years ago
- f77700a Fix compiler warning. by Matthias Andree · 8 years ago
- 0fbd980 Fix compiler warning. by Simon Kelley · 8 years ago
- 43cdf1c Remove automatic IDN support when building i18n. by Simon Kelley · 8 years ago
- ff19b1a Fix &/&& confusion. by Simon Kelley · 8 years ago
- 7ab78b9 Fix c7be0164ce6ae89d6f2f0ffea14e2612418dd5da by Simon Kelley · 8 years ago
- c7be016 Suppress DHCP ping checks when allocating on the loopback interface. by Simon Kelley · 8 years ago
- d203af4 Add optional support for libidn2 and therefore IDNA2008. by Petr Menšík · 8 years ago
- 05f76da Don't die() on failing to parse lease-script output. by Simon Kelley · 8 years ago
- bf05f8f Fix crash introduced by 09f3b2cd9c7b5b5e0e96ba41f666e69808862620. by Simon Kelley · 8 years ago