bind9/bin
Mark Andrews 4c6d03b0bb
Retry lookups with unsigned DNAME over TCP
To prevent spoofed unsigned DNAME responses being accepted retry
response with unsigned DNAMEs over TCP if the response is not TSIG
signed or there isn't a good DNS CLIENT COOKIE.

To prevent test failures, this required adding TCP support to the
ans3 and ans4 servers in the chain system test.

(cherry picked from commit 2e40705c06)
2025-10-02 13:07:06 +02:00
..
check Remove redundant parentheses from the return statement 2024-11-19 16:06:16 +01:00
confgen Remove redundant parentheses from the return statement 2024-11-19 16:06:16 +01:00
delv Use clang-format-20 to update formatting 2025-06-25 13:59:44 +10:00
dig Use clang-format-20 to update formatting 2025-06-25 13:59:44 +10:00
dnssec Add and use __attribute__((nonnull)) in dnssec-signzone.c 2025-08-28 16:27:00 +02:00
named Rescan the interfaces again when reconfiguring the server 2025-08-04 11:24:23 +02:00
nsupdate Remove redundant parentheses from the return statement 2024-11-19 16:06:16 +01:00
plugins Remove redundant parentheses from the return statement 2024-11-19 16:06:16 +01:00
rndc Remove redundant parentheses from the return statement 2024-11-19 16:06:16 +01:00
tests Retry lookups with unsigned DNAME over TCP 2025-10-02 13:07:06 +02:00
tools Extend named-rrchecker multi-line parsing support 2025-06-03 02:27:51 +00:00
Makefile.am Remove native PKCS#11 support 2021-09-09 15:35:39 +02:00