Commit graph

916 commits

Author SHA1 Message Date
Robert Edmonds
c7d34d94ec kdig: add +[no]opttext option
This commit adds a kdig flag +opttext that attempts to print unknown
EDNS options as text if all of the octets are printable characters. If
any octets are not printable, the whole option will be printed in
hexadecimal, as if the +opttext option were not specified.
2020-06-04 22:11:32 -04:00
Libor Peltan
9adc992cd7 conf: allow configuring acl with a remote 2020-06-03 09:22:37 +02:00
Daniel Salzman
9f1cc32c10 xdp-gun: rename to knot-xdp-gun 2020-05-31 10:49:11 +02:00
Libor Peltan
e3a89be7e7 xdp-gun: proper cli options 2020-05-31 09:17:13 +02:00
Libor Peltan
8dc81831ef implemented parallel adjusting 2020-05-26 19:28:13 +02:00
Daniel Salzman
0a90e3e3b0 doc: add some notes on XDP mode 2020-05-17 17:57:31 +02:00
Libor Peltan
197314d451 ANY: when UDP, always answer with one RRSet 2020-05-01 20:14:03 +02:00
Daniel Salzman
a8ae110b1b doc: update XDP-related information 2020-04-21 19:04:32 +02:00
Libor Peltan
14655e4e3a xdp: listen on configured ifaces with workers=RXqueues 2020-04-21 18:43:10 +02:00
Libor Peltan
36317a7c51 xdp: documentation (initial) 2020-04-21 18:43:10 +02:00
Libor Peltan
dad31c66c3 onlinesign: allow explicit single-type-signing:off 2020-04-20 19:51:26 +02:00
Daniel Salzman
829f15a3ae doc: some improvements of the journal behaviour 2020-04-15 12:48:20 +02:00
Daniel Salzman
37123d467e doc/knotc: add note about user running the command if creating confdb 2020-04-14 12:24:39 +02:00
Daniel Salzman
93d49c2915 doc: add link to mod-queryacl from ACL 2020-04-14 11:38:43 +02:00
Daniel Salzman
00879b0052 kjournalprint: improve journal parameter description 2020-03-22 22:03:39 +01:00
Libor Peltan
0d3a4effa0 keymgr: bugfix: share command not working 2020-03-18 12:17:18 +01:00
Daniel Salzman
362d856e5d conf: decrease 'journal-db-max-size' default value to 512 MiB on 32-bit systems 2020-03-02 10:05:02 +01:00
Daniel Salzman
e684848c55 doc: add tip on setting 'propagation-delay' if backing up KASP DB 2020-02-20 09:46:44 +01:00
Daniel Salzman
a71174f4f2 doc: added EPUB target into Makefile 2020-02-19 15:18:32 +01:00
Daniel Salzman
9e5a7ceccb doc/kdig: update man page 2020-02-17 11:06:29 +01:00
Daniel Salzman
3617158db7 keymgr: rename parameter 'serial' 'local-serial' to be more expressive 2020-02-17 10:03:54 +01:00
David Vašek
ab79e32159 doc: kdig - improve the description of the IXFR query type 2020-02-16 20:30:26 +01:00
Jan Hak
97f1f303cb keymgr: add 'serial' parametr for getting/setting signed zone SOA serial in KASP database 2020-02-14 19:28:35 +01:00
Daniel Salzman
4c75309ecc conf: increase server.tcp-io-timeout default value to 500 ms 2020-02-13 14:54:44 +01:00
Daniel Lublin
6d7e09116e doc: note that templates don't inherit 2020-02-07 15:36:22 +01:00
Daniel Salzman
a4b403e9e3 knot: add configuration option for algorithm Ed448 2020-02-04 12:52:47 +01:00
David Vašek
7b4298c517 doc: document import of keys to HSMs 2020-02-03 14:13:00 +01:00
David Vašek
39d69d726c doc: add Ultra Electronics CIS Keyper Plus HSM 2020-02-03 14:13:00 +01:00
Libor Peltan
53c5a32596 notify: option to suppres notify resulting from XFR from some masters 2020-01-30 14:19:35 +01:00
David Vašek
4fcb4dc037 doc: document changes to 'update-owner-name' in configuration
(Plus improve the "address" option description in the same section.)
2020-01-13 09:40:42 +01:00
Daniel Salzman
987c2d1e60 doc: update copyright year 2020-01-02 10:16:40 +01:00
Daniel Salzman
a18fe8d041 doc: update submission check logs 2019-12-13 13:04:33 +01:00
Daniel Salzman
e55d25493b doc: extend description of ds-push 2019-11-14 16:05:10 +01:00
Daniel Salzman
d4a7ba4c98 kdig: rename +[no]require-stapled +[no]tls-ocsp-stapling[=H] 2019-11-05 21:03:42 +01:00
Alexander Schultz
384d393ea8 Add support for requiring a valid stapled OCSP response for the server certificate when connecting via TLS. 2019-11-05 20:55:04 +01:00
Daniel Salzman
5f83d8f303 doc: update man page for knotc 2019-11-05 16:26:20 +01:00
Daniel Salzman
6fdc2ce8d7 doc: extend knotc zone-flush description 2019-11-05 16:20:22 +01:00
Daniel Salzman
9bbb54a475 doc: add info about RRL and Cookies configuration order 2019-10-21 12:53:47 +02:00
Daniel Salzman
290d8897af doc: update man pages 2019-10-18 20:15:01 +02:00
David Vašek
c9cc8a2ce4 doc: make some links to utilities 2019-10-18 16:37:06 +02:00
Daniel Salzman
6458116256 doc: add migration from 2.8.x to 2.9.x 2019-10-10 12:04:37 +02:00
Daniel Salzman
b7cb8a19a2 conf: rename max_*/min_* zone items 2019-10-08 14:28:48 +02:00
Daniel Salzman
efbaae2d6f conf: rename 'max*_udp_payload' 'udp_max*_payload' 2019-10-08 14:28:48 +02:00
Daniel Salzman
25b0eca9d2 conf: rename 'server.max-tcp-clients' 'server.tcp-max-clients' 2019-10-08 14:04:32 +02:00
Daniel Salzman
e9fd1e28e3 conf: disable tcp-reuseport by default 2019-10-06 12:22:08 +02:00
David Vašek
36efeb62b5 doc: document the use of the server.tcp-reuseport option 2019-10-04 18:47:32 +02:00
Libor Peltan
1b11c3281f doc: better describe references and defaults 2019-10-03 16:43:50 +02:00
David Vašek
cb25ae4231 doc: add a missing Oxford comma 2019-10-03 09:42:41 +02:00
David Vašek
72fff507ba doc: improve the description of tcp-remote-io-timeout and display new default value 2019-10-03 09:42:41 +02:00
Daniel Salzman
ca3d37d11b doc: update EXTRA_DIST in Makefile 2019-09-28 17:19:59 +02:00
Daniel Salzman
47c3aaaa13 doc: update logo 2019-09-28 16:57:47 +02:00
Daniel Salzman
f485beea6f doc: fix typos
Reported by Jan-Piet MENS @jpmens on Twitter.
2019-09-28 16:56:51 +02:00
David Vašek
373b4b76e1 doc: for knotc, modify wording and mention the timeout set on the server side 2019-09-24 21:30:21 +02:00
David Vašek
ac408c7437 doc: modify wording for setting zero/empty values 2019-09-24 21:30:21 +02:00
Daniel Salzman
73174b723a conf: replace tcp-[query|reply]-timeout and tcp-[io|remote-io]-timeout + improved doc 2019-09-24 21:30:21 +02:00
Daniel Salzman
9606546630 doc: improve description of the ds-push feature 2019-09-23 19:33:17 +02:00
Libor Peltan
37c2c4c5c9 doc: clearer desc of zone-max-ttl 2019-09-23 10:08:57 +02:00
Daniel Salzman
c7b303fd46 conf: move *-db* items from 'template' to new 'database' section 2019-09-20 19:55:04 +02:00
David Vašek
aa3c1066d7 conf: set default max-udp-payload to 1232 (and its ipv4 and ipv6 variants to the same)
As per https://github.com/dns-violations/dnsflagday/issues/125
2019-09-18 20:21:49 +02:00
Libor Peltan
48c5d23c0c doc: describe precisely not trying other addrs if NOTAUTH 2019-09-18 11:30:56 +02:00
Daniel Salzman
459a1d30bd conf: remove request-edns-option option 2019-09-12 14:18:18 +02:00
Štěpán Balážik
f8da75c3f4 doc: document behavior of +timeout=T when T<1
In case of T<1, timeout is set to 1 second.
2019-09-10 16:37:39 +02:00
Daniel Salzman
16eca4b77f doc: update key rollover logs 2019-09-05 16:53:01 +02:00
Daniel Salzman
70cdc27515 doc: add missing rrsig-pre-refresh to policy overview 2019-09-05 11:32:58 +02:00
Libor Peltan
cff77d2428 dnssec: implemented pushing updated DS to parent 2019-09-05 09:00:00 +02:00
Daniel Salzman
e5f5855038 Revert unintentionally squashed "dnssec: implemented pushing updated DS to parent"
This reverts commit 2dbb39d29a.
2019-09-05 08:59:29 +02:00
Libor Peltan
2dbb39d29a dnssec: implemented pushing updated DS to parent 2019-09-04 15:15:28 +00:00
Libor Peltan
0b817f4030 doc: key state active plus 2019-09-03 14:42:13 +02:00
Daniel Salzman
a13d10bd7f doc: remove obsolete note for on-slave signing 2019-08-31 21:45:45 +02:00
David Vašek
54f12c087b doc: fix a few typos
Hint from Jan-Piet MENS @jpmens on Twitter.
2019-08-30 19:16:43 +02:00
Libor Peltan
8018581414 knotc: removed memstat feature as it gave wrong numbers 2019-08-29 12:54:04 +02:00
Daniel Salzman
ad6e4f8a43 doc: update key migration from Bind 2019-08-27 21:14:21 +02:00
David Vašek
b924d23283 conf: postpone effect of unsupported dynamic conf changes ({udp,tcp,background}-workers part)
Warn about each parameter once only.
Code which isn't effectively used is kept so far (in reset_handler(), reconfigure_threads() etc.)
2019-08-23 09:47:41 +02:00
Libor Peltan
44d12f83d7 dnssec: implemented RRSIG pre-refresh to avoid freqent sign events 2019-08-19 16:55:57 +02:00
Daniel Salzman
183124848a doc: fix rndc command for zone file synchronization 2019-07-24 08:52:06 +02:00
Jan Hák
322917486c conf: add option for setting TCP query timeout
fixes #474
2019-07-22 15:13:54 +02:00
David Vašek
31589df974 doc: add section 'supported network features' to intro 2019-07-15 21:59:57 +02:00
Daniel Salzman
95b0546913 doc: improve some dnssec-related descriptions 2019-07-15 21:59:57 +02:00
Daniel Salzman
aa5e8fcede doc: update dnskey rollover example 2019-07-15 21:59:57 +02:00
Libor Peltan
35ad3fee63 doc: fixed key states retire_active versus post_active 2019-07-15 19:52:42 +02:00
Libor Peltan
540a7b86dc doc: better exact description of zsk-lifetime 2019-07-12 17:46:46 +02:00
David Vašek
1248e550ed conf: change default tcp-workers, adjust docs for {udp,tcp,background}-workers 2019-07-12 13:24:01 +02:00
David Vašek
f867ac17b3 conf: auto-configure max-tcp-clients 2019-07-12 11:27:33 +02:00
Daniel Salzman
7ad0ea2fbb conf: remove deprecated tcp-handshake-timeout 2019-07-12 10:03:10 +02:00
David Vašek
56206d7e3b doc: describe logging via systemd, plus improved wording 2019-07-04 16:45:43 +02:00
David Vašek
f27b50a162 doc: improvements and fixes 2019-07-04 15:24:49 +02:00
David Vašek
1e8150a766 doc: knotd/knotc - improve the -m parameter description 2019-07-04 15:14:34 +02:00
Alexander Schultz
a63ece0127 kdig: add support for connecting over TLS with a client cert/keyfile pair 2019-06-24 20:56:31 +02:00
Daniel Salzman
4fc38ff182 doc: unify configuration option references 2019-06-04 14:21:34 +02:00
Daniel Salzman
911bfd4555 doc: update safe zone file access 2019-06-04 14:21:34 +02:00
Daniel Salzman
76a01be74e Merge branch 'blocking_events' into 'master'
Blocking zone event triggers

See merge request knot/knot-dns!1015
2019-05-29 19:03:09 +00:00
Jan Hák
2bf87eaf06 knotc: add blocking mode for zone event triggers 2019-05-29 20:51:24 +02:00
Daniel Salzman
a810af5e5b kjournalprint: document semantic check parameter 2019-05-24 13:17:08 +02:00
Daniel Salzman
e44dfe219c doc: fix another typo 2019-05-23 14:01:29 +02:00
Daniel Salzman
4fc25bf6b0 man: add 'EXIT VALUES' section to all utilities 2019-05-23 13:23:59 +02:00
Daniel Salzman
80756d452f doc: fix typo 2019-05-23 13:03:06 +02:00
Daniel Salzman
644b12076a doc: add note about RRSIG inception setting 2019-05-22 21:49:23 +02:00
Daniel Salzman
ebd4362ff8 man: update knotc 2019-05-22 20:43:22 +02:00
Jan Hák
0fa93d003a knotc: documentation extension for zone-check action 2019-05-22 10:43:28 +02:00
Daniel Salzman
1047dbe511 doc: update knot.conf + fix typo 2019-05-14 21:21:46 +02:00