1. 26 May, 2016 2 commits
  2. 05 May, 2016 1 commit
  3. 12 Feb, 2016 1 commit
  4. 07 Jan, 2016 1 commit
  5. 04 Jan, 2016 1 commit
  6. 09 Dec, 2015 1 commit
  7. 16 Nov, 2015 1 commit
  8. 15 Oct, 2015 1 commit
  9. 02 Oct, 2015 1 commit
    • Evan Hunt's avatar
      [master] dnstap · b66b333f
      Evan Hunt authored
      4235.	[func]		Added support in named for "dnstap", a fast method of
      			capturing and logging DNS traffic, and a new command
      			"dnstap-read" to read a dnstap log file.  Use
      			"configure --enable-dnstap" to enable this
      			feature (note that this requires libprotobuf-c
      			and libfstrm). See the ARM for configuration details.
      
      			Thanks to Robert Edmonds of Farsight Security.
      			[RT #40211]
      b66b333f
  10. 29 Sep, 2015 1 commit
    • Evan Hunt's avatar
      [master] merge dyndb · a00f9e2f
      Evan Hunt authored
      4224.	[func]		Added support for "dyndb", a new interface for loading
      			zone data from an external database, developed by
      			Red Hat for the FreeIPA project.
      
      			DynDB drivers fully implement the BIND database
      			API, and are capable of significantly better
      			performance and functionality than DLZ drivers,
      			while taking advantage of advanced database
      			features not available in BIND such as multi-master
      			replication.
      
      			Thanks to Adam Tkac and Petr Spacek of Red Hat.
      			[RT #35271]
      a00f9e2f
  11. 28 Sep, 2015 1 commit
  12. 18 Aug, 2015 1 commit
  13. 05 May, 2015 1 commit
  14. 26 Feb, 2015 1 commit
  15. 21 Feb, 2015 1 commit
  16. 21 Jan, 2015 2 commits
  17. 20 Jan, 2015 1 commit
  18. 16 Dec, 2014 4 commits
  19. 20 Nov, 2014 1 commit
  20. 14 Nov, 2014 1 commit
    • Evan Hunt's avatar
      [master] allow arbitrary-size rndc output · e32d354f
      Evan Hunt authored
      4005.	[func]		The buffer used for returning text from rndc
      			commands is now dynamically resizable, allowing
      			arbitrarily large amounts of text to be sent back
      			to the client. (Prior to this change, it was
      			possible for the output of "rndc tsig-list" to be
      			truncated.) [RT #37731]
      e32d354f
  21. 05 Nov, 2014 1 commit
    • Evan Hunt's avatar
      [master] new mkeys and nzf naming format · ce96d432
      Evan Hunt authored
      3999.	[func]		"mkeys" and "nzf" files are now named after
      			their corresponding views, unless the view name
      			contains characters that would be incompatible
      			with use in a filename (i.e., slash, backslash,
      			or capital letters). If a view name does contain
      			these characters, the files will still be named
      			using a cryptographic hash of the view name.
      			Regardless of this, if a file using the old name
      			format is found to exist, it will continue to be
      			used. [RT #37704]
      ce96d432
  22. 29 Sep, 2014 1 commit
  23. 20 Jun, 2014 1 commit
  24. 13 Mar, 2014 1 commit
    • Evan Hunt's avatar
      [master] better error output when initializing pkcs11 · acbb301e
      Evan Hunt authored
      3786.	[func]		Provide more detailed error codes when using
      			native PKCS#11. "pkcs11-tokens" now fails robustly
      			rather than asserting when run against an HSM with
      			an incomplete PCKS#11 API implementation. [RT #35479]
      acbb301e
  25. 27 Feb, 2014 1 commit
    • Evan Hunt's avatar
      [master] merge several interdependent fixes · 98922b2b
      Evan Hunt authored
      3760.   [bug]           Improve SIT with native PKCS#11 and on Windows.
      			[RT #35433]
      
      3759.   [port]          Enable delve on Windows. [RT #35441]
      
      3758.   [port]          Enable export library APIs on windows. [RT #35382]
      98922b2b
  26. 12 Feb, 2014 1 commit
  27. 06 Feb, 2014 1 commit
  28. 15 Jan, 2014 1 commit
  29. 14 Jan, 2014 1 commit
    • Evan Hunt's avatar
      [master] native PKCS#11 support · ba751492
      Evan Hunt authored
      3705.	[func]		"configure --enable-native-pkcs11" enables BIND
      			to use the PKCS#11 API for all cryptographic
      			functions, so that it can drive a hardware service
      			module directly without the need to use a modified
      			OpenSSL as intermediary (so long as the HSM's vendor
      			provides a complete-enough implementation of the
      			PKCS#11 interface). This has been tested successfully
      			with the Thales nShield HSM and with SoftHSMv2 from
      			the OpenDNSSEC project. [RT #29031]
      ba751492
  30. 10 Jan, 2014 2 commits
  31. 04 Dec, 2013 1 commit
  32. 14 Nov, 2013 1 commit
  33. 24 Oct, 2013 1 commit
  34. 09 Jul, 2013 1 commit