![]() Fix #833: Ability to set the Redis password.Fix #835: Ability to use Redis unix sockets.Merge #819: Added new static zone type block_a to suppress all A queries for specific zones.Thanks to Xiang Li, from NISL Lab, Tsinghua University. It removes unknown records from the authority section and additional section. The new choice, down from 4096 means it is harder to get large responses from Unbound. It restricts client edns buffer size choices, and makes unbound behave similar to other DNS resolvers. This is the same default value as the default value for edns-buffer-size. Merge #826: Аdd a metric about the maximum number of collisions in lrushah.Mention flex and bison in README.md when building from repository source.Fix compilation without openssl, remove unused function warning.Fix SSL compile failure for other missing definitions in log_crypto_err_io_code_arg.Fix SSL compile failure for definition in log_crypto_err_io_code_arg.Fix #941: dnscrypt doesn't work after upgrade to 1.18 with suggestion by dukeartem to also fix the udp_ancil with dnscrypt.Merge #930 from Stuart Henderson: add void to log_ident_revert_to_default declaration.Clearer configure text for missing protobuf-c development libraries.Fix to print detailed errors when an SSL IO routine fails via SSL_get_error.Update testdata/ipset.tdir test for ipset fix.Merge #955 from buevsan: fix ipset wrong behavior. ![]() ![]() Update the dns64_lookup.rpl test for the DNS64 fallback patch. ![]() Fix #954: Inconsistent RPZ handling for A record returned along with CNAME.For multi Python module setups, clean previously parsed module functions in _main_'s dictionary, if any, so that only current module functions are registered.Better fix for infinite loop when reading multiple lines of input on a broken remote control socket, by treating a zero byte line the same as transmission end.Fix for #949: Fix pythonmod/ubmodule-tst.py for Python 3.x.Fix that cachedb does not warn when serve-expired is disabled about use of serve-expired-reply-ttl and serve-expired-client-timeout.Fix #949: "could not create control compt".Fix infinite loop when reading multiple lines of input on a broken remote control socket.Fix that printout of EDNS options shows the EDNS cookie option by name.Fix edns subnet so that queries with a source prefix of zero cause the recursor send no edns subnet option to the upstream.Fix #946: Forwarder returns servfail on upstream response noerror no data.Merge #881: Generalise the proxy protocol code.Fix rpz tcp-only action with rpz triggers nsdname and nsip.Merge #936: Check for c99 with autoconf versions prior to 2.70.Fix authority zone answers for obscured DNAMEs and delegations.It stops looping and also waits for the condition to go away. Fix send of udp retries when ENOBUFS is returned.Fix to print EDE text in readable form in output logs.Fix to set ede match in unit test for rr length removal.Fix to add EDE text when RRs have been removed due to length.Fix to move msgparse_rrset_remove_rr code to util/msgparse.c.Fix to scrub resource records of type A and AAAA that have an inappropriate size.Merge #931: Prevent warnings from -Wmissing-prototypes.Fix #927: unbound 1.18.0 make test error.Fix autoconf 2.69 warnings in configure.Fix for WKS call to getservbyname that creates allocation on exit in unit test by testing numbers first and testing from the services list later.Fix #942: 1.18.0 libunbound DNS regression when built without OpenSSL.Fix for version generation race condition that ignored changes.It reads messages when data is available from the backend. The cachedb-no-store: yes option is used to stop cachedb from writing messages to the backend storage. Mailing list patches from Daniel Gröber for DNS64 fallback to plain AAAA when no A record exists for synthesis, and minor DNS64 code refactoring for better readability.Expose the configured listening and outgoing interfaces, if any, as a list of strings in the Python 'config_file' class instead of the current Swig object proxy fixes #79.Expose the script filename in the Python module environment 'mod_env' instead of the config_file structure which includes the linked list of scripts in a multi Python module setup fixes #79.The DNSSEC validation would not work for Unbound itself, and also not for downstream users. But it should not be enabled otherwise, because that would stop DNSSEC validation. This can be helpful for devices that cannot handle DNSSEC information. Disable the EDNS DO flag in upstream requests. ![]()
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |