1. ee41586 Use DS records as trust anchors, not DNSKEYs. by Simon Kelley · 11 years ago
  2. 83349b8 Further tidying of AD and DO bit handling. by Simon Kelley · 11 years ago
  3. 7fa836e Handle validation when more one key is needed. by Simon Kelley · 11 years ago
  4. 1633e30 Fix Byte-order botch: broke DNSSEC on big-endian platforms. by Simon Kelley · 11 years ago
  5. c8ca33f Fix DNSSEC caching problems: incomplete RRSIG RRsets. by Simon Kelley · 11 years ago
  6. e243c07 AD bit in queries handled as RFC6840 p5.7 by Simon Kelley · 11 years ago
  7. 610e782 Fix stack-smashing crash in DNSSEC. Thanks to Henk Jan Agteresch. by Simon Kelley · 11 years ago
  8. bb201c2 Protect against malicious DNS replies with very large RRsets. by Simon Kelley · 11 years ago
  9. 12fae49 Make RR work when returning A/AAAA records and an RRSIG. by Simon Kelley · 11 years ago
  10. b98d22c Linking stuff. Latest Debian/Ubuntu don't automatically link gmp. by Simon Kelley · 11 years ago
  11. 81a883f Format tweak. by Simon Kelley · 11 years ago
  12. 40b695c Log NXDOMAIN correctly. by Simon Kelley · 11 years ago
  13. 5f93853 Return configured DNSKEYs even though we don't have RRSIGS for them. by Simon Kelley · 11 years ago
  14. 8d718cb Nasty cache failure and memory leak with DNSSEC. by Simon Kelley · 11 years ago
  15. f6a2b79 Validate Ooops. by Simon Kelley · 11 years ago
  16. 82e3f45 Blockdata fixes and tuning. by Simon Kelley · 11 years ago
  17. 072e81b Blockdata leak. by Simon Kelley · 11 years ago
  18. 1d97ac4 copy-n-paste error. by Simon Kelley · 11 years ago
  19. db73746 Anounce DNSSEC at startup. by Simon Kelley · 11 years ago
  20. 97bc798 Init ->dependent field in frec allocation. by Simon Kelley · 11 years ago
  21. edc231b Compiler warning. by Simon Kelley · 11 years ago
  22. 583043f Crash in cache code when compiled with HAVE_DNSSEC. by Simon Kelley · 11 years ago
  23. 7c28612 Trivial format fix. by Simon Kelley · 11 years ago
  24. 6f46810 Code tidy. by Simon Kelley · 11 years ago
  25. 6938f34 Don't mark answers as DNSEC validated if DNS-doctored. by Simon Kelley · 11 years ago
  26. 17fb9ea Exclude CRC code in DNSSEC build - replaced with SHA1. by Simon Kelley · 11 years ago
  27. 7d23a66 Remove --dnssec-permissive, pointless if we don't set CD upstream. by Simon Kelley · 11 years ago
  28. 703c7ff Fix to last commit. by Simon Kelley · 11 years ago
  29. 8a9be9e Replace CRC32 with SHA1 for spoof detection in DNSSEC builds. by Simon Kelley · 11 years ago
  30. c92f008 Get AA flag right in DNSSEC answers from cache. by Simon Kelley · 11 years ago
  31. b5dbfd1 RRSIG answer logging. by Simon Kelley · 11 years ago
  32. cbf13a2 Class specifier in --dnskey, instead of hardwiring C_IN. by Simon Kelley · 11 years ago
  33. 5b3bf92 --dnssec-debug by Simon Kelley · 11 years ago
  34. 0744ca6 More DNSSEC caching logic, and avoid repeated validation of DS/DNSKEY by Simon Kelley · 11 years ago
  35. 2d33bda RRSIGS for PTR records from cache. by Simon Kelley · 11 years ago
  36. 32f90c0 Tweak. by Simon Kelley · 11 years ago
  37. bce6e1b RRSIGs in DS and DNSKEY cached answers. by Simon Kelley · 11 years ago
  38. 824202e More DNSSEC cache readout. by Simon Kelley · 11 years ago
  39. 9ebfca1 Compiler warning. by Simon Kelley · 11 years ago
  40. 6429e42 Compiler warning. by Simon Kelley · 11 years ago
  41. c9bfa94 remove redundant headerage by Simon Kelley · 11 years ago
  42. e7829ae Cache RRSIGS. by Simon Kelley · 11 years ago
  43. 51ea3ca Caching of DNSSEC records. by Simon Kelley · 11 years ago
  44. 57ab36e Tweak definition of a permanent IPv6 address on Linux. by Jonas Gorski · 11 years ago
  45. dd0e0a3 Handle time_t wraparound more sanely. by Simon Kelley · 11 years ago
  46. 6fd6dac Fix loop in RR sort. by Simon Kelley · 11 years ago
  47. 39048ad bug fix, avoids infinite loop in forwarding code. by Simon Kelley · 11 years ago
  48. 979cdf9 Fix to hostname_cmp, and update to canonicalisation table. RFC 4034 LIES. by Simon Kelley · 11 years ago
  49. dbf7212 Rationalise hostname_cmp() by Simon Kelley · 11 years ago
  50. c979fa0 Provide for static library linking. by Simon Kelley · 11 years ago
  51. c5f4ec7 NSEC proof-of-non-existence. by Simon Kelley · 11 years ago
  52. 5d3b87a Better handling of truncated DNSSEC replies. by Simon Kelley · 11 years ago
  53. 72ae2f3 Don't validate error returns. by Simon Kelley · 11 years ago
  54. 6c0cb85 Trivial format fix by Simon Kelley · 11 years ago
  55. e0c0ad3 UDP retries for DNSSEC by Simon Kelley · 11 years ago
  56. 4619d94 Fix SEGV and failure to validate on x86_64. by Simon Kelley · 11 years ago
  57. 0975a58 Merge branch 'master' of ssh://central/var/cache/git/dnsmasq by Simon Kelley · 11 years ago
  58. a25720a protocol handling for DNSSEC by Simon Kelley · 11 years ago
  59. 86bec2d Swap crypto library from openSSL to nettle. by Simon Kelley · 11 years ago
  60. a59ff5f Merge branch 'master' of ssh://central/var/cache/git/dnsmasq by Simon Kelley · 11 years ago
  61. c3a0408 [fd00::} and [fe80::] special addresses in DHCPv6 options. by Simon Kelley · 11 years ago
  62. ae76242 Fix missing RA RDNS option with --dhcp-option=option6:23,[::] by Simon Kelley · 11 years ago
  63. 4f04476 Set AD bit for address replies from /etc/hosts &c by Simon Kelley · 11 years ago
  64. 1486a9c Furthet tweak to RRset sort. by Simon Kelley · 11 years ago
  65. 5ada888 RFC 4035 5.3.2 wildcard label rules. by Simon Kelley · 11 years ago
  66. 5f8e58f DNSSEC consolidation. by Simon Kelley · 11 years ago
  67. b8071a8 Tweak blockdata accounting. by Simon Kelley · 11 years ago
  68. b6e9e7c Handle digest lengths greater than 1 block. by Simon Kelley · 11 years ago
  69. 0435d04 AD into cache fixes. by Simon Kelley · 11 years ago
  70. 795501b AD bit handling when doing validation. by Simon Kelley · 11 years ago
  71. c220768 Memory stats for DNSSEC. by Simon Kelley · 11 years ago
  72. 98c098b Move blockdata to it's own file. by Simon Kelley · 11 years ago
  73. c47e3ba Update copyright for 2014. by Simon Kelley · 11 years ago
  74. f1668d2 New source port for DNSSEC-originated queries. by Simon Kelley · 11 years ago
  75. 7d7b7b3 DNSSEC for TCP queries. by Simon Kelley · 11 years ago
  76. 3ddacb8 Ensure cache is big enough to do DNSSEC. by Simon Kelley · 11 years ago
  77. 60b6806 Rationalise DNS packet-buffer size calculations. by Simon Kelley · 11 years ago
  78. 871417d Handle truncated replies in DNSSEC validation. by Simon Kelley · 11 years ago
  79. 65d1e3b Tweak libraries and make DNSSEC compile optional. by Simon Kelley · 11 years ago
  80. 0fc2f31 First functional DNSSEC - highly alpha. by Simon Kelley · 11 years ago
  81. c3e0b9b backup by Simon Kelley · 11 years ago
  82. 6ea1f23 Send correct O and M bits when advertising only deprecated prefixes. by Simon Kelley · 11 years ago
  83. 963c380 Merge branch 'master' into dnssec by Simon Kelley · 11 years ago
  84. 00238fb indentation fix. by Simon Kelley · 11 years ago
  85. 875b816 Remove unused code. by Simon Kelley · 11 years ago
  86. 76ff440 Ignore ",," in dhcp-host, rather than treating it as ",0," by Simon Kelley · 11 years ago
  87. 8db957d Fix endless loop with some bogu-nxdomain. Another F_CONFIG botch. by Simon Kelley · 11 years ago
  88. 9d63304 Saving progress by Simon Kelley · 11 years ago
  89. a9b5583 Merge branch 'master' into dnssec by Simon Kelley · 11 years ago
  90. c352dd8 Merge branch 'master' into dnssec by Simon Kelley · 11 years ago
  91. 3a23715 Commit to allow master merge. by Simon Kelley · 11 years ago
  92. 1ee9be4 Implement dynamic interface discovery on *BSD by Simon Kelley · 11 years ago
  93. 4c82efc Relax rules in prefix length in (IPv6) dhcp-range. by Vladislav Grishenko · 11 years ago
  94. 2329bef Check arrival interface of IPv6 requests, even in --bind-interfaces. by Simon Kelley · 11 years ago
  95. 62ab3cc Only set scope_id in addresses to bind() for linklocal addresses. by Simon Kelley · 11 years ago
  96. 71aaa5a Fix previous errno saving fix. by Matthias Andree · 11 years ago
  97. 0861921 Garbage collect listening sockets when their address is deleted. by Simon Kelley · 11 years ago
  98. 3dffbc3 Don't overwrite errno before generating message. by Simon Kelley · 11 years ago
  99. 0d6eb13 Do immediate RA when a prefix goes from old->current. by Simon Kelley · 11 years ago
  100. 50db349 Fix compiler warning. by Vladislav Grishenko · 11 years ago