| /freebsd/contrib/unbound/util/data/ |
| H A D | msgencode.c | 434 int dnssec) in rrset_belongs_in_reply() argument 436 if(dnssec) in rrset_belongs_in_reply() 464 sldns_pkt_section s, uint16_t qtype, int dnssec, size_t rr_offset, in packed_rrset_encode() argument 475 if(!rrset_belongs_in_reply(s, ntohs(key->rk.type), qtype, dnssec)) in packed_rrset_encode() 517 if(do_sig && dnssec) { in packed_rrset_encode() 549 if(do_sig && dnssec) in packed_rrset_encode() 560 sldns_pkt_section s, uint16_t qtype, int dnssec, size_t rr_offset, in insert_section() argument 572 dnssec = 1; /* include all types in ANY answer */ in insert_section() 577 s, qtype, dnssec, rr_offset, compress_count)) in insert_section() 590 s, qtype, dnssec, rr_offset, compress_count)) in insert_section() [all …]
|
| H A D | msgencode.h | 72 struct edns_data* edns, int dnssec, int secure); 95 struct regional* region, uint16_t udpsize, int dnssec, int minimise);
|
| /freebsd/contrib/ldns/ |
| H A D | Makefile.in | 92 LDNS_LOBJS = buffer.lo dane.lo dname.lo dnssec.lo dnssec_sign.lo dnssec_verify.lo dnssec_zone.lo du… 97 LDNS_HEADERS = buffer.h dane.h dname.h dnssec.h dnssec_sign.h dnssec_verify.h dnssec_zone.h duratio… 103 DRILL_LOBJS = drill/chasetrace.lo drill/dnssec.lo drill/drill.lo drill/drill_util.lo drill/error.lo… 589 …$(srcdir)/ldns/dname.h $(srcdir)/ldns/dnssec.h $(srcdir)/ldns/packet.h $(srcdir)/ldns/edns.h $(src… 597 …$(srcdir)/ldns/dname.h $(srcdir)/ldns/dnssec.h $(srcdir)/ldns/packet.h $(srcdir)/ldns/edns.h $(src… 605 …$(srcdir)/ldns/dname.h $(srcdir)/ldns/dnssec.h $(srcdir)/ldns/packet.h $(srcdir)/ldns/edns.h $(src… 611 dnssec.lo dnssec.o: $(srcdir)/dnssec.c ldns/config.h $(srcdir)/ldns/ldns.h ldns/util.h ldns/common.… 613 …$(srcdir)/ldns/dname.h $(srcdir)/ldns/dnssec.h $(srcdir)/ldns/packet.h $(srcdir)/ldns/edns.h $(src… 621 …$(srcdir)/ldns/rr.h $(srcdir)/ldns/dname.h $(srcdir)/ldns/dnssec.h $(srcdir)/ldns/packet.h $(srcdi… 629 …$(srcdir)/ldns/rr.h $(srcdir)/ldns/dname.h $(srcdir)/ldns/dnssec.h $(srcdir)/ldns/packet.h $(srcdi… [all …]
|
| H A D | keys.c | 1344 k->_extra.dnssec.flags = f; in ldns_key_set_flags() 1418 k->_extra.dnssec.orig_ttl = t; in ldns_key_set_origttl() 1424 k->_extra.dnssec.inception = i; in ldns_key_set_inception() 1430 k->_extra.dnssec.expiration = e; in ldns_key_set_expiration() 1442 k->_extra.dnssec.keytag = tag; in ldns_key_set_keytag() 1549 return k->_extra.dnssec.orig_ttl; in ldns_key_origttl() 1555 return k->_extra.dnssec.flags; in ldns_key_flags() 1561 return k->_extra.dnssec.inception; in ldns_key_inception() 1567 return k->_extra.dnssec.expiration; in ldns_key_expiration() 1573 return k->_extra.dnssec.keytag; in ldns_key_keytag()
|
| H A D | Changelog | 167 * Follow CNAME's when tracing with drill (TODO dnssec trace) 232 dnssec.h, once openssl has support for signing with these algorithms. 848 draft-ietf-dnsext-dnssec-rsasha256-04. The typecodes are not 902 * Fixed a memory leak in dnssec code when SHA256 is not available 954 Ofcourse all dnssec/tsig related functions are disabled
|
| /freebsd/contrib/unbound/doc/ |
| H A D | requirements.txt | 87 It does do some rrsig duplicate removal, in the msgparser, for dnssec qtype 124 o The method by which dnssec-lameness is detected is not secure. DNSSEC lame 125 is when a server has the zone in question, but lacks dnssec data, such as 126 signatures. The method to detect dnssec lameness looks at nonvalidated 128 to create a false sense of dnssec-lameness in the child, or a false sense 129 or dnssec-non-lameness in the child. The first results in the server marked 137 The dnssec-lameness detection is used to detect operator failures, 141 parent, dnssec-lameness detection enables. This delivers dnssec to our 149 detect dnssec-lameness is less of a problem than marking honest 150 servers lame. dnssec-lameness is a config error and deserves the trouble. [all …]
|
| H A D | FEATURES | 76 draft-ietf-dnsop-dnssec-trust-anchor(-01): DS records can be configured 78 draft-ietf-dnsext-dnssec-bis-updates: supported.
|
| H A D | TODO | 9 o (option) pretend-dnssec-unaware, and pretend-edns-unaware modes for workshops.
|
| H A D | unbound-anchor.rst | 146 The default is ``dnssec@iana.org``.
|
| /freebsd/contrib/unbound/libunbound/ |
| H A D | worker.h | 77 uint16_t flags, int dnssec, int want_dnssec, int nocaps, 133 uint16_t flags, int dnssec, int want_dnssec, int nocaps,
|
| H A D | libworker.c | 878 uint16_t flags, int dnssec, int want_dnssec, int nocaps, in libworker_send_query() argument 890 e->qsent = outnet_serviced_query(w->back, qinfo, flags, dnssec, in libworker_send_query() 973 uint16_t ATTR_UNUSED(flags), int ATTR_UNUSED(dnssec), in worker_send_query() argument
|
| /freebsd/contrib/unbound/contrib/ |
| H A D | unbound.spec_fedora | 40 Obsoletes: dnssec-conf < 1.27-2 41 Provides: dnssec-conf = 1.27-1 256 - Obsolete dnssec-conf to ensure it is de-installed 276 - Removed dependency for dnssec-conf 277 - Added ISC DLV key (formerly in dnssec-conf) 324 - enable DNSSEC only if it is enabled in sysconfig/dnssec 328 - add requires dnssec-conf 358 is used to load multiple dnssec keys in bind file format
|
| /freebsd/usr.bin/drill/ |
| H A D | Makefile | 8 chasetrace.c dnssec.c securetrace.c
|
| /freebsd/contrib/unbound/smallapp/ |
| H A D | worker_cb.c | 99 int ATTR_UNUSED(dnssec), int ATTR_UNUSED(want_dnssec), in worker_send_query() argument 133 int ATTR_UNUSED(dnssec), int ATTR_UNUSED(want_dnssec), in libworker_send_query() argument
|
| /freebsd/lib/libldns/ |
| H A D | Makefile | 13 SRCS= buffer.c dane.c dname.c dnssec.c dnssec_sign.c dnssec_verify.c \
|
| /freebsd/contrib/unbound/services/ |
| H A D | outside_network.h | 136 /** serviced queries, sorted by qbuf, addr, dnssec */ 460 int dnssec; member 631 * @param dnssec: if set, DO bit is set in EDNS queries. 660 struct query_info* qinfo, uint16_t flags, int dnssec, int want_dnssec,
|
| H A D | outside_network.c | 133 if(q1->dnssec != q2->dnssec) { in serviced_cmp() 134 if(q1->dnssec < q2->dnssec) in serviced_cmp() 2583 lookup_serviced(struct outside_network* outnet, sldns_buffer* buff, int dnssec, 2591 key.dnssec = dnssec; 2627 serviced_create(struct outside_network* outnet, sldns_buffer* buff, int dnssec, 2662 sq->dnssec = dnssec; 2893 if((sq->dnssec & EDNS_DO)) 2895 if((sq->dnssec & BIT_CD)) 3424 struct query_info* qinfo, uint16_t flags, int dnssec, int want_dnssec, 3476 sq = lookup_serviced(outnet, buff, dnssec, addr, addrlen, [all …]
|
| /freebsd/targets/pseudo/userland/ |
| H A D | Makefile.depend | 521 usr.sbin/dnssec-dsfromkey \ 522 usr.sbin/dnssec-keyfromlabel \ 523 usr.sbin/dnssec-keygen \ 524 usr.sbin/dnssec-revoke \ 525 usr.sbin/dnssec-settime \ 526 usr.sbin/dnssec-signzone \
|
| /freebsd/contrib/unbound/util/ |
| H A D | fptr_wlist.h | 213 struct query_info* qinfo, uint16_t flags, int dnssec, int want_dnssec,
|
| H A D | module.h | 359 * @param dnssec: if set, EDNS record will have bits set. 384 uint16_t flags, int dnssec, int want_dnssec, int nocaps,
|
| H A D | fptr_wlist.c | 361 struct query_info* qinfo, uint16_t flags, int dnssec, int want_dnssec, in fptr_whitelist_modenv_send_query() 358 fptr_whitelist_modenv_send_query(struct outbound_entry * (* fptr)(struct query_info * qinfo,uint16_t flags,int dnssec,int want_dnssec,int nocaps,int check_ratelimit,struct sockaddr_storage * addr,socklen_t addrlen,uint8_t * zone,size_t zonelen,int tcp_upstream,int ssl_upstream,char * tls_auth_name,struct module_qstate * q,int * was_ratelimited)) fptr_whitelist_modenv_send_query() argument
|
| H A D | configlexer.lex | 322 harden-dnssec-stripped{COLON} { YDVAR(1, VAR_HARDEN_DNSSEC_STRIPPED) } 522 disable-dnssec-lame-check{COLON} { YDVAR(1, VAR_DISABLE_DNSSEC_LAME_CHECK) }
|
| /freebsd/contrib/ldns/ldns/ |
| H A D | keys.h | 162 } dnssec; member
|
| /freebsd/contrib/unbound/testcode/ |
| H A D | fake_event.c | 1270 struct query_info* qinfo, uint16_t flags, int dnssec, in outnet_serviced_query() argument 1290 (flags&~(BIT_RD|BIT_CD))?" MORE":"", (dnssec)?" DO":""); in outnet_serviced_query() 1345 if((dnssec & EDNS_DO)) in outnet_serviced_query()
|
| /freebsd/contrib/unbound/dnstap/ |
| H A D | unbound-dnstap-socket.c | 1646 int ATTR_UNUSED(dnssec), int ATTR_UNUSED(want_dnssec), in worker_send_query() 1680 int ATTR_UNUSED(dnssec), int ATTR_UNUSED(want_dnssec), in libworker_send_query() 1645 worker_send_query(struct query_info * ATTR_UNUSED (qinfo),uint16_t ATTR_UNUSED (flags),int ATTR_UNUSED (dnssec),int ATTR_UNUSED (want_dnssec),int ATTR_UNUSED (nocaps),int ATTR_UNUSED (check_ratelimit),struct sockaddr_storage * ATTR_UNUSED (addr),socklen_t ATTR_UNUSED (addrlen),uint8_t * ATTR_UNUSED (zone),size_t ATTR_UNUSED (zonelen),int ATTR_UNUSED (tcp_upstream),int ATTR_UNUSED (ssl_upstream),char * ATTR_UNUSED (tls_auth_name),struct module_qstate * ATTR_UNUSED (q),int * ATTR_UNUSED (was_ratelimited)) worker_send_query() argument 1679 libworker_send_query(struct query_info * ATTR_UNUSED (qinfo),uint16_t ATTR_UNUSED (flags),int ATTR_UNUSED (dnssec),int ATTR_UNUSED (want_dnssec),int ATTR_UNUSED (nocaps),int ATTR_UNUSED (check_ratelimit),struct sockaddr_storage * ATTR_UNUSED (addr),socklen_t ATTR_UNUSED (addrlen),uint8_t * ATTR_UNUSED (zone),size_t ATTR_UNUSED (zonelen),int ATTR_UNUSED (tcp_upstream),int ATTR_UNUSED (ssl_upstream),char * ATTR_UNUSED (tls_auth_name),struct module_qstate * ATTR_UNUSED (q),int * ATTR_UNUSED (was_ratelimited)) libworker_send_query() argument
|