1. 30 Aug, 2019 1 commit
  2. 25 Jun, 2019 2 commits
  3. 30 May, 2019 1 commit
  4. 29 May, 2019 1 commit
  5. 14 Mar, 2019 1 commit
  6. 08 Mar, 2019 1 commit
  7. 06 Feb, 2019 2 commits
  8. 15 Nov, 2018 3 commits
  9. 09 Nov, 2018 1 commit
  10. 08 Nov, 2018 1 commit
  11. 30 Oct, 2018 1 commit
  12. 18 Oct, 2018 1 commit
  13. 04 Sep, 2018 1 commit
  14. 31 Aug, 2018 1 commit
  15. 28 Aug, 2018 1 commit
  16. 16 Aug, 2018 1 commit
  17. 10 Aug, 2018 1 commit
  18. 08 Aug, 2018 3 commits
  19. 19 Jul, 2018 1 commit
  20. 25 Jun, 2018 1 commit
  21. 06 Jun, 2018 2 commits
  22. 22 May, 2018 1 commit
    • Ondřej Surý's avatar
      address win32 build issues · 7ee8a7e6
      Ondřej Surý authored and Evan Hunt's avatar Evan Hunt committed
      - Replace external -DOPENSSL/-DPKCS11CRYPTO with properly AC_DEFINEd
        HAVE_OPENSSL/HAVE_PKCS11
      - Don't enforce the crypto provider from platform.h, just from dst_api.c
        and configure scripts
      7ee8a7e6
  23. 16 May, 2018 1 commit
    • Ondřej Surý's avatar
      Replace all random functions with isc_random, isc_random_buf and isc_random_uniform API. · 3a4f820d
      Ondřej Surý authored and Witold Krecicki's avatar Witold Krecicki committed
      The three functions has been modeled after the arc4random family of
      functions, and they will always return random bytes.
      
      The isc_random family of functions internally use these CSPRNG (if available):
      
      1. getrandom() libc call (might be available on Linux and Solaris)
      2. SYS_getrandom syscall (might be available on Linux, detected at runtime)
      3. arc4random(), arc4random_buf() and arc4random_uniform() (available on BSDs and Mac OS X)
      4. crypto library function:
      4a. RAND_bytes in case OpenSSL
      4b. pkcs_C_GenerateRandom() in case PKCS#11 library
      3a4f820d
  24. 12 Apr, 2018 2 commits
  25. 04 Apr, 2018 1 commit
  26. 23 Feb, 2018 2 commits
  27. 22 Feb, 2018 2 commits
  28. 09 Oct, 2017 1 commit
    • Evan Hunt's avatar
      [master] turn off memory fill by default · c89f1bf1
      Evan Hunt authored
      4768.	[func]		By default, memory is no longer filled with tag values
      			when it is allocated or freed; this improves
      			performance but makes debugging of certain memory
      			issues more difficult. "named -M fill" turns memory
      			filling back on. (Building "configure
      			--enable-developer", turns memory fill on by
      			default again; it can then be disabled with
      			"named -M nofill".) [RT #45123]
      c89f1bf1
  29. 06 Oct, 2017 1 commit
    • Evan Hunt's avatar
      [master] further restrict update-policy local · 995c41e8
      Evan Hunt authored
      4762.	[func]		"update-policy local" is now restricted to updates
      			from local addresses. (Previously, other addresses
      			were allowed so long as updates were signed by the
      			local session key.) [RT #45492]
      995c41e8
  30. 13 Sep, 2017 1 commit
    • Evan Hunt's avatar
      [master] cleanup strcat/strcpy · 114f9508
      Evan Hunt authored
      4722.	[cleanup]	Clean up uses of strcpy() and strcat() in favor of
      			strlcpy() and strlcat() for safety. [RT #45981]
      114f9508