/freebsd/contrib/unbound/util/data/ |
H A D | msgencode.c | 434 int dnssec) in rrset_belongs_in_reply() argument 436 if(dnssec) in rrset_belongs_in_reply() 464 sldns_pkt_section s, uint16_t qtype, int dnssec, size_t rr_offset, in packed_rrset_encode() argument 475 if(!rrset_belongs_in_reply(s, ntohs(key->rk.type), qtype, dnssec)) in packed_rrset_encode() 517 if(do_sig && dnssec) { in packed_rrset_encode() 549 if(do_sig && dnssec) in packed_rrset_encode() 560 sldns_pkt_section s, uint16_t qtype, int dnssec, size_t rr_offset, in insert_section() argument 572 dnssec = 1; /* include all types in ANY answer */ in insert_section() 577 s, qtype, dnssec, rr_offset, compress_count)) in insert_section() 590 s, qtype, dnssec, rr_offset, compress_count)) in insert_section() [all …]
|
H A D | msgencode.h | 72 struct edns_data* edns, int dnssec, int secure); 95 struct regional* region, uint16_t udpsize, int dnssec, int minimise);
|
/freebsd/contrib/ldns/ |
H A D | Makefile.in | 92 LDNS_LOBJS = buffer.lo dane.lo dname.lo dnssec.lo dnssec_sign.lo dnssec_verify.lo dnssec_zone.lo du… 97 LDNS_HEADERS = buffer.h dane.h dname.h dnssec.h dnssec_sign.h dnssec_verify.h dnssec_zone.h duratio… 103 DRILL_LOBJS = drill/chasetrace.lo drill/dnssec.lo drill/drill.lo drill/drill_util.lo drill/error.lo… 589 …$(srcdir)/ldns/dname.h $(srcdir)/ldns/dnssec.h $(srcdir)/ldns/packet.h $(srcdir)/ldns/edns.h $(src… 597 …$(srcdir)/ldns/dname.h $(srcdir)/ldns/dnssec.h $(srcdir)/ldns/packet.h $(srcdir)/ldns/edns.h $(src… 605 …$(srcdir)/ldns/dname.h $(srcdir)/ldns/dnssec.h $(srcdir)/ldns/packet.h $(srcdir)/ldns/edns.h $(src… 611 dnssec.lo dnssec.o: $(srcdir)/dnssec.c ldns/config.h $(srcdir)/ldns/ldns.h ldns/util.h ldns/common.… 613 …$(srcdir)/ldns/dname.h $(srcdir)/ldns/dnssec.h $(srcdir)/ldns/packet.h $(srcdir)/ldns/edns.h $(src… 621 …$(srcdir)/ldns/rr.h $(srcdir)/ldns/dname.h $(srcdir)/ldns/dnssec.h $(srcdir)/ldns/packet.h $(srcdi… 629 …$(srcdir)/ldns/rr.h $(srcdir)/ldns/dname.h $(srcdir)/ldns/dnssec.h $(srcdir)/ldns/packet.h $(srcdi… [all …]
|
H A D | keys.c | 1344 k->_extra.dnssec.flags = f; in ldns_key_set_flags() 1418 k->_extra.dnssec.orig_ttl = t; in ldns_key_set_origttl() 1424 k->_extra.dnssec.inception = i; in ldns_key_set_inception() 1430 k->_extra.dnssec.expiration = e; in ldns_key_set_expiration() 1442 k->_extra.dnssec.keytag = tag; in ldns_key_set_keytag() 1549 return k->_extra.dnssec.orig_ttl; in ldns_key_origttl() 1555 return k->_extra.dnssec.flags; in ldns_key_flags() 1561 return k->_extra.dnssec.inception; in ldns_key_inception() 1567 return k->_extra.dnssec.expiration; in ldns_key_expiration() 1573 return k->_extra.dnssec.keytag; in ldns_key_keytag()
|
H A D | Changelog | 167 * Follow CNAME's when tracing with drill (TODO dnssec trace) 232 dnssec.h, once openssl has support for signing with these algorithms. 848 draft-ietf-dnsext-dnssec-rsasha256-04. The typecodes are not 902 * Fixed a memory leak in dnssec code when SHA256 is not available 954 Ofcourse all dnssec/tsig related functions are disabled
|
/freebsd/contrib/unbound/doc/ |
H A D | requirements.txt | 87 It does do some rrsig duplicate removal, in the msgparser, for dnssec qtype 124 o The method by which dnssec-lameness is detected is not secure. DNSSEC lame 125 is when a server has the zone in question, but lacks dnssec data, such as 126 signatures. The method to detect dnssec lameness looks at nonvalidated 128 to create a false sense of dnssec-lameness in the child, or a false sense 129 or dnssec-non-lameness in the child. The first results in the server marked 137 The dnssec-lameness detection is used to detect operator failures, 141 parent, dnssec-lameness detection enables. This delivers dnssec to our 149 detect dnssec-lameness is less of a problem than marking honest 150 servers lame. dnssec-lameness is a config error and deserves the trouble. [all …]
|
H A D | FEATURES | 76 draft-ietf-dnsop-dnssec-trust-anchor(-01): DS records can be configured 78 draft-ietf-dnsext-dnssec-bis-updates: supported.
|
H A D | TODO | 9 o (option) pretend-dnssec-unaware, and pretend-edns-unaware modes for workshops.
|
H A D | example.conf.in | 543 # Harden against receiving dnssec-stripped data. If you turn it 546 # Default on, which insists on dnssec data for trust-anchored zones. 547 # harden-dnssec-stripped: yes 549 # Harden against queries that fall under dnssec-signed nxdomain names. 641 # disable-dnssec-lame-check: no
|
/freebsd/contrib/unbound/libunbound/ |
H A D | worker.h | 77 uint16_t flags, int dnssec, int want_dnssec, int nocaps, 133 uint16_t flags, int dnssec, int want_dnssec, int nocaps,
|
H A D | libworker.c | 875 uint16_t flags, int dnssec, int want_dnssec, int nocaps, in libworker_send_query() argument 887 e->qsent = outnet_serviced_query(w->back, qinfo, flags, dnssec, in libworker_send_query() 970 uint16_t ATTR_UNUSED(flags), int ATTR_UNUSED(dnssec), in worker_send_query() argument
|
/freebsd/contrib/unbound/contrib/ |
H A D | unbound.spec_fedora | 40 Obsoletes: dnssec-conf < 1.27-2 41 Provides: dnssec-conf = 1.27-1 256 - Obsolete dnssec-conf to ensure it is de-installed 276 - Removed dependency for dnssec-conf 277 - Added ISC DLV key (formerly in dnssec-conf) 324 - enable DNSSEC only if it is enabled in sysconfig/dnssec 328 - add requires dnssec-conf 358 is used to load multiple dnssec keys in bind file format
|
/freebsd/contrib/unbound/smallapp/ |
H A D | worker_cb.c | 99 int ATTR_UNUSED(dnssec), int ATTR_UNUSED(want_dnssec), in worker_send_query() argument 133 int ATTR_UNUSED(dnssec), int ATTR_UNUSED(want_dnssec), in libworker_send_query() argument
|
/freebsd/usr.bin/drill/ |
H A D | Makefile | 8 chasetrace.c dnssec.c securetrace.c
|
/freebsd/lib/libldns/ |
H A D | Makefile | 13 SRCS= buffer.c dane.c dname.c dnssec.c dnssec_sign.c dnssec_verify.c \
|
/freebsd/contrib/unbound/services/ |
H A D | outside_network.h | 460 int dnssec; member 660 struct query_info* qinfo, uint16_t flags, int dnssec, int want_dnssec,
|
H A D | outside_network.c | 133 if(q1->dnssec != q2->dnssec) { in serviced_cmp() 134 if(q1->dnssec < q2->dnssec) in serviced_cmp() 2568 lookup_serviced(struct outside_network* outnet, sldns_buffer* buff, int dnssec, 2576 key.dnssec = dnssec; 2612 serviced_create(struct outside_network* outnet, sldns_buffer* buff, int dnssec, 2647 sq->dnssec = dnssec; 2878 if(sq->dnssec & EDNS_DO) 2880 if(sq->dnssec & BIT_CD) 3409 struct query_info* qinfo, uint16_t flags, int dnssec, int want_dnssec, 3461 sq = lookup_serviced(outnet, buff, dnssec, addr, addrlen, [all …]
|
/freebsd/targets/pseudo/userland/ |
H A D | Makefile.depend | 522 usr.sbin/dnssec-dsfromkey \ 523 usr.sbin/dnssec-keyfromlabel \ 524 usr.sbin/dnssec-keygen \ 525 usr.sbin/dnssec-revoke \ 526 usr.sbin/dnssec-settime \ 527 usr.sbin/dnssec-signzone \
|
/freebsd/contrib/unbound/util/ |
H A D | fptr_wlist.h | 213 struct query_info* qinfo, uint16_t flags, int dnssec, int want_dnssec,
|
H A D | module.h | 383 uint16_t flags, int dnssec, int want_dnssec, int nocaps,
|
H A D | fptr_wlist.c | 358 struct query_info* qinfo, uint16_t flags, int dnssec, int want_dnssec, in fptr_whitelist_modenv_send_query() argument
|
H A D | configlexer.lex | 322 harden-dnssec-stripped{COLON} { YDVAR(1, VAR_HARDEN_DNSSEC_STRIPPED) } 522 disable-dnssec-lame-check{COLON} { YDVAR(1, VAR_DISABLE_DNSSEC_LAME_CHECK) }
|
/freebsd/contrib/ldns/ldns/ |
H A D | keys.h | 162 } dnssec; member
|
/freebsd/contrib/unbound/dnstap/ |
H A D | unbound-dnstap-socket.c | 1645 int ATTR_UNUSED(dnssec), int ATTR_UNUSED(want_dnssec), in worker_send_query() argument 1679 int ATTR_UNUSED(dnssec), int ATTR_UNUSED(want_dnssec), in libworker_send_query() argument
|
/freebsd/contrib/unbound/daemon/ |
H A D | worker.c | 2373 worker_send_query(struct query_info* qinfo, uint16_t flags, int dnssec, in worker_send_query() argument 2385 e->qsent = outnet_serviced_query(worker->back, qinfo, flags, dnssec, in worker_send_query() 2432 uint16_t ATTR_UNUSED(flags), int ATTR_UNUSED(dnssec), in libworker_send_query() argument
|