Angaben zum Datum
Datum aus der Quelle.
Erstmals gesehen am .
Numa v0.24.1: Gehärtete DNSSEC-Validierung und Fixes
Numa v0.24.1 härtet die DNSSEC-Validierung (begrenzte Signaturprüfungen und NSEC3-Iterationen, keine Secure-Markierung bei RRsets ohne Signatur, gemeinsames Upstream-Query-Budget), korrigiert Forwarding-Regeln und Proxy-Accept-Loop und überarbeitet die README sowie den Docker-Build.
What's Changed
- docs(readme): split the quick start into three paths and list what uninstall leaves by @razvandimescu in https://github.com/razvandimescu/numa/pull/425
- ci(docker): build the image from the release binaries by @razvandimescu in https://github.com/razvandimescu/numa/pull/424
- fix(dnssec): bound signature checks and NSEC3 iterations by @razvandimescu in https://github.com/razvandimescu/numa/pull/426
- fix(dnssec): don't mark a response Secure when an RRset has no signature by @razvandimescu in https://github.com/razvandimescu/numa/pull/427
- fix(dnssec): share one upstream query budget across a validation by @razvandimescu in https://github.com/razvandimescu/numa/pull/428
- fix(recursive): charge the query budget per packet sent by @razvandimescu in https://github.com/razvandimescu/numa/pull/429
- fix(proxy): share the TCP/DoT accept loop with the HTTPS listener by @razvandimescu in https://github.com/razvandimescu/numa/pull/421
- fix(forward): normalize forwarding rule suffixes by @razvandimescu in https://github.com/razvandimescu/numa/pull/431
- fix(forward): share the framed exchange between TCP and DoT upstreams by @razvandimescu in https://github.com/razvandimescu/numa/pull/432
- test(forward): bind the TC-retry UDP and TCP stubs together by @razvandimescu in https://github.com/razvandimescu/numa/pull/433
- fix(doh): leave allow_from to the accept loop by @razvandimescu in https://github.com/razvandimescu/numa/pull/434 …