bind9/bin/tests/system/dnssec/ns3
Ondřej Surý 0bebf8ee9d
Enable minimal ANY answers by default
ANY queries are widely abused by attackers doing reflection attacks as
they return the largest answers.  Enable minimal ANY answers by default
to reduce the attack surface of the DNS servers.
2026-01-28 15:38:18 +01:00
..
badalg.secure.example.db.in Use signer name when disabling DNSSEC algorithms 2025-09-25 11:14:27 +10:00
dname-at-apex-nsec3.example.db.in Update the copyright information in all files in the repository 2022-01-11 09:05:02 +01:00
extrakey.example.db.in tidy up the dnssec test tree 2025-07-31 12:55:40 -07:00
key.db.in Update the copyright information in all files in the repository 2022-01-11 09:05:02 +01:00
named.conf.j2 Enable minimal ANY answers by default 2026-01-28 15:38:18 +01:00
nsec3.example.db.in tidy up the dnssec test tree 2025-07-31 12:55:40 -07:00
occluded.example.db.in Update the copyright information in all files in the repository 2022-01-11 09:05:02 +01:00
optout.example.db.in tidy up the dnssec test tree 2025-07-31 12:55:40 -07:00
rsasha1-1024.example.db.in tidy up the dnssec test tree 2025-07-31 12:55:40 -07:00
rsasha1.example.db.in tidy up the dnssec test tree 2025-07-31 12:55:40 -07:00
secure.example.db.in Check disable-algorithms with non-zone names 2025-09-25 11:14:27 +10:00
sign-rsasha1-1024.sh tidy up the dnssec test tree 2025-07-31 12:55:40 -07:00
sign-rsasha1.sh tidy up the dnssec test tree 2025-07-31 12:55:40 -07:00
sign.sh Add a system test with one good and one bad algorithm 2025-11-04 19:53:25 +01:00
target.peer-ns-spoof.db.in Check recovery from spoofed server addresses 2025-02-03 00:24:34 +00:00
template.db.in tidy up the dnssec test tree 2025-07-31 12:55:40 -07:00
unsupported-algorithm.key.in tidy up the dnssec test tree 2025-07-31 12:55:40 -07:00
zonecut.ent.secure.example.db.in Check disable-algorithms with non-zone names 2025-09-25 11:14:27 +10:00