summaryrefslogtreecommitdiff
path: root/net
AgeCommit message (Collapse)AuthorFilesLines
2001-01-03use 9.1.0b2.itojun3-14/+27
--- 9.1.0b2 released --- 641. [bug] $GENERATE caused a uninitialized link to be used. [RT #595] 640. [bug] Memory leak in error path could cause "mpctx->allocated == 0" failure. [RT #584] 639. [bug] Reading entropy from the keyboard would sometimes fail. [RT #591] 638. [port] lib/isc/random.c needed to explicitly include time.h explicitly to get a prototype for time() when pthreads was not being used. [RT #592] 637. [port] Use isc_u?int64_t instead of (unsigned) long long in lib/isc/print.c. Also allow lib/isc/print.c to be compiled even if the platform does not need it. [RT #592] 636. [port] Shut up MSVC++ about a possible loss of precision in the ISC__BUFFER_PUTUINT*() macros. [RT #592] 635. [bug] Reloading a server with a configured blackhole list would cause an assertion. [RT #590] 634. [bug] A log file will completely stop being written when it reaches the maximum size in all cases, not just when versioning is also enabled. [RT #570] 633. [port] Cope with rlim_t missing on BSD/OS systems. [RT #575] 632. [bug] The index array of the journal file was corrupted as it was written to disk. 631. [port] Build without thread support on systems without pthreads. 630. [bug] Locking failure in zone code. [RT #582] 629. [bug] 9.1.0b1 dereferenced a null pointer and crashed when responding to a UDP IXFR request. 628. [bug] If the root hints contained only AAAA addresses, named would be unable to perform resolution. 627. [bug] The EDNS0 blackhole detection code of changed 324 waited for three retransmissions to each server, which takes much too long when a domain has many name servers and all of them drop EDNS0 queries. Now we retry without EDNS0 after three consecutive timeouts, even if they are all from different servers. [RT #143] 626. [bug] The lightweight resolver daemon no longer crashes when asked for a SIG rrset. [RT #558] 625. [func] Zones now inherit their class from the enclosing view. 624. [bug] The zone object could get timer events after it had been destroyed, causing a server crash. [RT #571] 623. [func] Added "named-checkconf" and "named-checkzone" program for syntax checking named.conf files and zone files, respectively. 622. [bug] A canceled request could be destroyed before dns_request_destroy() was called. [RT #562] 621. [port] Disable IPv6 at runtime if IPv6 sockets are unusable. This mostly affects Red Hat Linux 7.0, which has conflicts between libc and the kernel. 620. [bug] dns_master_load*inc() now require 'task' and 'load' to be non-null. Also 'done' will not be called if dns_master_load*inc() fails immediately. [RT #565] 618. [bug] Queries to a signed zone could sometimes cause an assertion failure. 617. [bug] When using dynamic update to add a new RR to an existing RRset with a different TTL, the journal entries generated from the update did not include explicit deletions and re-additions of the existing RRs to update their TTL to the new value. 616. [func] dnssec-signzone -t output now includes performance statistics. 615. [bug] dnssec-signzone did not like child keysets signed by multiple keys. 614. [bug] Checks for uninitialized link fields were prone to false positives, causing assertion failures. The checks are now disabled by default and may be re-enabled by defining ISC_LIST_CHECKINIT. 613. [bug] "rndc reload zone" now reloads primary zones. It previously only updated slave and stub zones, if an SOA query indicated an out of date serial. 612. [cleanup] Shutup a ridiculously noisy HP-UX compiler that complains relentlessly about how its treatment of 'const' has changed as well as how casting sometimes tightens alignment constraints. 611. [func] allow-notify can be used to permit processing of notify messages from hosts other than a slave's masters. 610. [func] rndc dumpdb is now supported. 609. [bug] getrrsetbyname() would crash lwresd if the server found more SIGs than answers. [RT #554] 608. [func] dnssec-signzone now adds a comment to the zone with the time the file was signed. 607. [bug] nsupdate would fail if it encountered a CNAME or DNAME in a response to an SOA query. [RT #515] 606. [bug] Compiling with --disable-threads failed due to isc_thread_self() being incorrectly defined as an integer rather than a function. 605. [func] New function isc_lex_getlasttokentext(). 604. [bug] The named.conf parser could print incorrect line numbers when long comments were present. 603. [bug] Make dig handle multiple types or classes on the same query more correctly. 602. [func] Cope automatically with UnixWare's broken IN6_IS_ADDR_* macros. [RT #539] 601. [func] Return a non-zero exit code if an update fails in nsupdate. 600. [bug] Reverse lookups sometimes failed in dig, etc... 599. [func] Added four new functions to the libisc log API to support i18n messages. isc_log_iwrite(), isc_log_ivwrite(), isc_log_iwrite1() and isc_log_ivwrite1() were added. 598. [bug] An update-policy statement would cause the server to assert while loading. [RT #536] 597. [func] dnssec-signzone is now multithreaded. 596. [bug] DNS_RDATASLAB_FORCE and DNS_RDATASLAB_EXACT are not mutually exclusive. 595. [port] On Linux 2.2, socket() returns EINVAL when it should return EAFNOSUPPORT. Work around this. [RT #531] 594. [func] sdb drivers are now assumed to not be thread-safe unless the DNS_SDBFLAG_THREADSAFE flag is supplied. 593. [bug] If a secure zone was missing all its NXTs and a dynamic update was attempted, the server entered an infinite loop. 592. [bug] The sig-validity-interval option now specifies a number of days, not seconds. This matches the documentation. [RT #529]
2001-01-02Update delegate to 6.1.22. Changes include:rh2-5/+5
2000-12-20 DeleGate/6.1.22 fixed SMTP, FTP, DNS, etc 2000-11-28 DeleGate/6.1.21 fixed FTP data transfer, HTTP MOUNT, etc. 2000-10-30 DeleGate/6.1.20 RELAY=nojava and fix (SSLway, SMTP)
2001-01-01Make sure configure is newer than configure.in, so we don't have to havehubertf1-1/+6
autoconf around. Fixes PR 11864 by Tomasz Luchowski <zuntum@eik.pl>.
2000-12-31Update ORBit to 0.5.6. Changes are bugfixes only.rh3-13/+13
2000-12-30Manually syncing ONLY_FOR_PLATFORM is not the way to go.wiz3-15/+3
Remove ONLY_FOR_PLATFORM, and let it fail while installing the DEPENDS.
2000-12-29Update to djbdns-1.02nb2. Changes:hubertf4-9/+30
* Remove accidentelly left files/patch-* * Use bzipped ipv6.diff instead of uncompressed one. * Put ${PREFIX} in {dnscache,axfrdns,pickdns,rbldns,tinydns,walldns} usage (example spoke of /${progname} directory) * Tell dnscache to look for dnsroots.global in ${PREFIX}/etc instead of /etc Sent in by Tomasz Luchowski <zuntum@eik.pl> in private mail.
2000-12-28Sync ONLY_FOR_PLATFORM with devel/unproven-pthreads.wiz3-7/+11
2000-12-28 * Added Fefe's IPv6 patch ( http://www.fefe.de/dns )hubertf5-7/+44
* Included two small logfile formatters written in perl - dnscache-log.pl and tinydns-log.pl (from http://www.djbdns.org) Patch sent in by Tomasz Luchowski <zuntum@eik.pl> in private mail.
2000-12-28Make these compile on m68k.hubertf4-12/+20
Patch supplied by Adam Ciarcinski <adam@albedo.com.pl> in PR 8395.
2000-12-28Fix compilation on alpha.wiz3-1/+51
2000-12-28Fix compilation on (at least) alpha.wiz3-8/+44
2000-12-28Fix compilation on alpha.wiz2-4/+31
2000-12-27This pkg now includes docs. ;)hubertf1-2/+0
2000-12-27Add manpages.hubertf3-4/+36
Submitted by Tomasz Luchowski <zuntum@eik.pl> in private mail.
2000-12-27remove the NOT_FOR_ARCH= *-*-alpa. This appears to be leftoverdmcmahill1-3/+1
from a long time ago and this pkgs seems to work on my alpha. Tested kfinger and krn.
2000-12-27add & enable ucspi-tcphubertf1-1/+2
2000-12-27Added ucspi-tcp-0.88:hubertf5-0/+57
ucspi-tcp is a set of command-line tools for building TCP-based client/server applications. They are compliant to UCSPI, the UNIX Client-Server Program Interface. UCSPI tools are available for several different types of networks. Documentation is only available from the web, sorry. Submitted by Tomasz Luchowski <zuntum@eik.pl> in PR 11681.
2000-12-27Add djbdns-1.02:hubertf8-0/+111
DJBDNS is a collection of Domain Name System tools. It includes several components: * The dnscache program is a local DNS cache. It accepts recursive DNS queries from local clients such as web browsers. It collects responses from remote DNS servers. * The tinydns program is a fast, UDP-only DNS server. It makes local DNS information available to the Internet. * The pickdns program is a load-balancing DNS server. It points clients to a dynamic selection of IP addresses. * The walldns program is a reverse DNS wall. It provides matching reverse and forward records while hiding local host information. * The dns library handles outgoing and incoming DNS packets. It can be used by clients such as web browsers to look up host addresses, host names, MX records, etc. It supports asynchronous resolution. * The dnsfilter program is a parallel IP-address-to-host-name converter. * The dnsip, dnsipq, dnsname, dnstxt, and dnsmx programs are simple command-line interfaces to DNS. * The dnsq and dnstrace programs are DNS debugging tools. Documentation is only available on the web site, sorry. Submitted by Tomasz Luchowski <zuntum@eik.pl> in PR 11675.
2000-12-27add & enable djbdnshubertf1-1/+2
2000-12-27Update snort to 1.6.3.2. Notable changes include:rh3-13/+32
Fixes and additions: * Fixed compilation problems on all non-BSD operating systems * Added better configuration support for locating libpcap * Fixed ICMP ping packet id/sequence printouts * Made allowances for 64-bit machines in the decoders * Updated the portscan detector to the latest version * Disabled the defragmenter by default (in the rules file) * Added a patch from Dave Dittrich to make daemon mode alerts filenames conform * to the data in the documentation * Revamped the ICMP data structures to mimic those found in *BSD and provide for higher fidelity decoding/printout in the future * Repaired the output plugins so that they operate properly now * For the record, the payload dump conforms to the length of the IP datagram now and does not show pad bytes added by the minimum Ethernet frame size * Applied Chris Cramer's byte ordering patch to the flexresp code Other updates and changes since version 1.6: * New preprocessor plugin: IP defragmentation!! * New output plugins cover all old logging and alerting options * New output plugin no logs to MySQL, PostgreSQL, unixODBC databases * Updated portscan detection functionality * Added quote removal for most plugin parsers * -C crash bug fixed * PID/PATH_VARRUN file fixes * Converted many putc(3) calls to fputc(3) for portability * Transport layer decoders use ip_len field for length metric now * String tokenizer code modified for more reliable operation * Fixed flexible response code sequence prediction * Fixed DEBUG ifdef's so DEBUG mode code will compile correctly on all platforms * Set automake options so that people don't need gmake anymore to build Snort on BSD systems * Fixed SMB alert code large tmp file hole * Added sigsetmask code to fix SIGHUP weirdness * Added execvp option for SIGHUP restart code * Added ARP header printout validation * Added Session logging file integrity checking * Added -u/-g setuid/gid capability switches * Added -O IP address obfuscation switch * Added -t chroot switch * Fixed non-TCP/UDP/ICMP transport layer decoding & logging * Fixes and additions to the portscan preprocessor * Fixed Tru64 u_int* type declarations * Added check for pcap.h into configuration script * Fixed timeval problems on Linux boxen * Database logging plugin has been modified extensively, see the www.incident.org website for more information * Switched TCP flags printout routine to ensure proper RFP output scan output. ;) * Fixed default log/alert function code so that these functions are never NULL
2000-12-26disable vtysh build (BROKEN), due to possible security issue.itojun1-1/+2
FreeBSD PR 23856.
2000-12-25make sure to close socket on ftp EPRT operation. KAME PR 313.itojun2-4/+4
2000-12-21Update to 1.6. Changes:hubertf4-22/+5
00/12/21 version 1.6 update copyright: - 1996 -> 1996-2000 - Sony Computer Science Laboratory --> Laboratories 00/12/20 yscale support to display throughput in Kbps also requested by hubertf@netbsd.org add comment in ttt.tcl on how to disable auto-scale 00/12/16 net_read.c: - additional ppp dlt types DLT_PPP_BSDOS /* bsd/os specific */ DLT_PPP_SERIAL /* netbsd specific */ - add 802.1Q and PPPoE support requested by hubertf@netbsd.org ttt_ipv6.h, net_names.c: resolve ipv6 related conflicts in linux report by Shashidhar Patil <shaship@cisco.com>
2000-12-19do not try to install xml files. should fix recently noted bulk build problemsdmcmahill1-2/+2
2000-12-18Fix typo.jwise1-1/+1
2000-12-17Get the distfile from a mirror. Addresses pkg/11756.ad1-2/+2
2000-12-17Upgrade to ywho-1.3: fixed command line argument parsing (prevent core dumps)kim2-4/+4
2000-12-17fix broken MASTER_SITE (s/www/ftp). Hopefully fixes part of the problemdmcmahill1-2/+2
in PR 11753 filed by htodd@allison.i8u.org
2000-12-16Make rc.d script handle stop/start/restarthubertf2-12/+32
2000-12-16vnc-latest_doc.tgz must die! Instead of using vnc-latest_doc, use thedmcmahill3-25/+10
documentation for this particular release of the program. This should fix the doc md5 once and for all.
2000-12-16use /dev/urandom for dnssec-*. "good enough" random number should be enoughitojun1-2/+4
(briefly discussed at dnssec workshop after IETF49).
2000-12-16Put USE_X11 back (brain-o on my side)hubertf2-5/+8
Install man pages
2000-12-16Update to 1.5, plus fix support for PPP interfaces while therehubertf4-5/+22
(adjust for our new PPP DLTs). Changes: 00/06/09 version-1.5 always use link level packet size to record traffic. 00/04/24 support tcl-8.2/tk-8.2. change the compiler optimization flag from O6 to O2. 00/01/05 net_read.c: check the total length field in the ip header. we found illegal values in our traffic traces which causes assertion in b_addsize to fail.
2000-12-15Move bitchx from net to chat.wiz9-1053/+1
2000-12-15fix build - always build with unproven-pthreadsitojun1-6/+1
2000-12-15Update checksum for latest documentation archive.tron1-2/+2
2000-12-15tried a pthread-less build, faileditojun1-5/+11
2000-12-15Link against libcrypto. Previous versions did not require this, buthubertf2-10/+19
not doing so results in application code needing change, e.g. pchar. With this change, pchar now builds with ucd-snmp 4.0.1.12 and 4.1.2 without a change.
2000-12-15add net/bind9-currentitojun1-1/+2
2000-12-15experimental version of BIND9itojun7-0/+417
2000-12-15Mark as IPv6-ready.wiz1-1/+3
2000-12-15Update to 0.10. Changes: IPv6 support and various bug fixes.wiz3-12/+7
2000-12-15Move packages from 'net' into new 'chat' category. Add chat to main Makefile.wiz135-3213/+1
2000-12-14upgrade to 1.1p5. now supports reverse lookup support for 6to4 cloud.itojun4-18/+19
2000-12-12Add and enable fair-identdrh1-1/+2
2000-12-12Initial import of fair-identd-20000201, a small, fast identd that isrh5-0/+46
RFC-1413 compliant, but returns no useful information.
2000-12-12Unify Makefiles -- mostly headers: remove FreeBSD Ids.wiz1-2/+1
Consistent 4 character indentation of SUBDIR entries.
2000-12-09Update "rp-ppoe" package to version 2.4. Changes since version 2.2:tron2-6/+6
- Fixed spec file to automatically add .gz extension to man files as required - Tightened firewall rules. - Better check for /var/run in adsl-status; minor shell script fixes and cleanups for NetBSD and Solaris. - Added FAQ to HOW-TO-CONNECT regarding running a script each time a connection is made. - Fixed the init script to create/remove /var/lock/subsys/adsl (patch courtesy of Charley Carter.) - Added support (under Linux) for N_HDLC line discipline which should greatly reduce CPU usage. My tests show it cuts CPU usage in half. My 486 DX2/66 gets 800 kb/s at 22% CPU usage. - adsl-connect uses "setsid" (if available) so that adsl-stop doesn't kill its caller. There is (IMO) a bug in pppd which kills all processes in its process group if the "pty" option is used. The setsid program gets around this bug, on Linux at least. - Port to Solaris, courtesy of David Holland. - Renamed spec file from "spec" to "rp-pppoe.spec" and made some cleanups. NOTE: Red Hat, in their infinite wisdom, decided to make the new RPM compress man pages automatically. You may have problems building RPM's from source unless you get the latest rpm package and make sure it compresses man pages.
2000-12-08Update to 2.3.5. Changes since 2.3.4:wiz2-4/+4
* implemented [ipv6::address]:port as specified by rfc2732. * fixed local tilde globbing. * don't wait for file lock forever; print warning if locking fails. * save cwd_history only if needed. * `queue' command now sets last job number to itself. * optimize number of poll calls during ftp transfer. * fixed mput for directory case (continue loop instead of returning). * don't queue up too much MDTM/SIZE commands in sync mode. * fixed --with-modules compilation.
2000-12-08add and enable echopingwiz1-1/+2