1. 23 May, 2011 1 commit
  2. 29 Apr, 2011 1 commit
    • Evan Hunt's avatar
      3102. [func] New 'dnssec-loadkeys-interval' option configures · 39f2d1a9
      Evan Hunt authored
      			how often, in minutes, to check the key repository
      			for updates when using automatic key maintenance.
      			Default is every 60 minutes (formerly hard-coded
      			to 12 hours). [RT #23744]
      
      3101.	[bug]		Zones using automatic key maintenance could fail
      			to check the key repository for updates. [RT #23744]
      39f2d1a9
  3. 23 Feb, 2011 1 commit
  4. 03 Feb, 2011 2 commits
  5. 16 Dec, 2010 1 commit
  6. 11 Aug, 2010 1 commit
    • Evan Hunt's avatar
      2936. [func] Improved configuration syntax and multiple-view · cfd26204
      Evan Hunt authored
      			support for addzone/delzone feature (see change
      			#2930).  Removed "new-zone-file" option, replaced
      			with "allow-new-zones (yes|no)".  The new-zone-file
      			for each view is now created automatically, with
      			a filename generated from a hash of the view name.
      			It is no longer necessary to "include" the
      			new-zone-file in named.conf; this happens
      			automatically.  Zones that were not added via
      			"rndc addzone" can no longer be removed with
      			"rndc delzone". [RT #19447]
      cfd26204
  7. 25 Jun, 2010 1 commit
  8. 22 Jun, 2010 2 commits
  9. 14 May, 2010 2 commits
  10. 04 Dec, 2009 1 commit
    • Mark Andrews's avatar
      2801. [func] Detect and report records that are different according · 3d17a3ba
      Mark Andrews authored
                              to DNSSEC but are sematically equal according to plain
                              DNS.  Apply plain DNS comparisons rather than DNSSEC
                              comparisons when processing UPDATE requests.
                              dnssec-signzone now removes such semantically duplicate
                              records prior to signing the RRset.
      
                              named-checkzone -r {ignore|warn|fail} (default warn)
                              named-compilezone -r {ignore|warn|fail} (default warn)
      
                              named.conf: check-dup-records {ignore|warn|fail};
      3d17a3ba
  11. 03 Dec, 2009 1 commit
  12. 26 Oct, 2009 1 commit
  13. 10 Oct, 2009 1 commit
  14. 08 Oct, 2009 1 commit
    • Mark Andrews's avatar
      2708. [func] Insecure to secure and NSEC3 parameter changes via · 28479307
      Mark Andrews authored
                              update are now fully supported and no longer require
                              defines to enable.  We now no longer overload the
                              NSEC3PARAM flag field, nor the NSEC OPT bit at the
                              apex.  Secure to insecure changes are controlled by
                              by the named.conf option 'secure-to-insecure'.
      
                              Warning: If you had previously enabled support by
                              adding defines at compile time to BIND 9.6 you should
                              ensure that all changes that are in progress have
                              completed prior to upgrading to BIND 9.7.  BIND 9.7
                              is not backwards compatible.
      28479307
  15. 01 Sep, 2009 2 commits
  16. 14 Jul, 2009 1 commit
  17. 30 Jun, 2009 1 commit
  18. 10 Jun, 2009 1 commit
    • Evan Hunt's avatar
      2609. [func] Simplify the configuration of dynamic zones: · 351b6253
      Evan Hunt authored
      			- add ddns-confgen command to generate
      			  configuration text for named.conf
      			- add zone option "ddns-autoconf yes;", which
      			  causes named to generate a TSIG session key
      			  and allow updates to the zone using that key
      			- add '-l' (localhost) option to nsupdate, which
      			  causes nsupdate to connect to a locally-running
      			  named process using the session key generated
      			  by named
      			[RT #19284]
      351b6253
  19. 16 Mar, 2009 1 commit
  20. 05 Mar, 2009 1 commit
  21. 04 Mar, 2009 1 commit
    • Evan Hunt's avatar
      2572. [func] Simplify DLV configuration, with a new option · 3a304939
      Evan Hunt authored
      			"dnssec-lookaside auto;"  This is the equivalent
      			of "dnssec-lookaside . trust-anchor dlv.isc.org;"
      			plus setting a trusted-key for dlv.isc.org.
      
      			Note: The trusted key is hard-coded into named,
      			but is also stored in (and can be overridden
      			by) $sysconfdir/bind.keys.  As the ISC DLV key
      			rolls over it can be kept up to date by replacing
      			the bind.keys file with a key downloaded from
      			https://www.isc.org/solutions/dlv. [RT #18685]
      3a304939
  22. 06 Nov, 2008 1 commit
    • Mark Andrews's avatar
      2486. [func] The default locations for named.pid and lwresd.pid · f6f1672b
      Mark Andrews authored
                              are now /var/run/named/named.pid and
                              /var/run/lwresd/lwresd.pid respectively.
      
                              This allows the owner of the containing directory
                              to be set, for "named -u" support, and allows there
                              to be a permanent symbolic link in the path, for
                              "named -t" support.  [RT #18306]
      f6f1672b
  23. 27 Sep, 2008 1 commit
  24. 24 Sep, 2008 1 commit
  25. 04 Sep, 2008 1 commit
  26. 20 Jul, 2008 1 commit
  27. 28 May, 2008 1 commit
  28. 01 May, 2008 1 commit
  29. 03 Apr, 2008 1 commit
  30. 02 Apr, 2008 1 commit
  31. 22 Jan, 2008 2 commits
  32. 19 Oct, 2007 1 commit
  33. 18 Sep, 2007 1 commit
  34. 13 Sep, 2007 1 commit
  35. 18 Jun, 2007 1 commit