ca2a932485
fix multiple leading zeros padding in ECDSA sig conversion
Kees Monshouwer
2017-06-22 13:21:54 +02:00
171594a92d
fix leading zero padding in ECDSA sig conversion
Peter van Dijk
2017-02-28 12:18:34 +01:00
fb689c046f
Update changelog, set this as a release.
0.13
David Blacka
2017-01-06 13:01:05 -05:00
8d3746fc22
Validate the the RRset TTL is <= the OrigTTL.
David Blacka
2017-01-06 12:54:16 -05:00
444601fb2a
Detect duplicate RRSIGs as well.
David Blacka
2017-01-06 12:53:57 -05:00
c5896495c7
Either R or S could end up being shorter than the expected length, so adjust for that.
David Blacka
2017-01-05 13:50:48 -05:00
c13d9379b3
Update version, convert readme to markdown.
David Blacka
2016-12-05 18:36:36 -05:00
f170bd170a
Elliptic curve support. Improve usage, unknown algorithm error handling in jdnssec-keygen Use the bouncycastle crypto provider for ECCGOST if available
David Blacka
2016-12-02 17:49:09 -05:00
6bbcf38fe1
update the embedded dnsjava version to 2.1.7 (jdnssec-dnsjava)
David Blacka
2016-08-22 09:40:47 -04:00
15cb5e2ab7
Fix issue in jdnssec-verifyzone (and ZoneVerifier) where junk in the zone wouldn't be handled correctly (that is, ignored.)
David Blacka
2014-04-22 16:39:00 -04:00
9fad4941a6
Make jdnssec-zoneformat -N also compute NSEC3 original owner names for ENTs
David Blacka
2014-04-22 16:37:58 -04:00
18df8a8d9e
update version to prep for an official release.
0.12
David Blacka
2012-07-16 14:20:14 -04:00
a45f5d1df7
use the perfectly OK (now) TypeMap.toString() method.
David Blacka
2012-07-16 14:16:42 -04:00
3da308c4b9
Fix TypeMap.fromBytes() and add a TypeMap.fromString() method.
David Blacka
2012-07-16 14:16:13 -04:00
efa6dec7f7
update version to prep for an official release.
v0.11
David Blacka
2012-05-29 13:17:36 -04:00
d3e8c4c913
Add duplicate RR detection to jdnssec-verifyzone, and a command line option to disable it.
David Blacka2012-05-26 23:14:12 -04:00
69d965cc0f
Wrap the new exceptions to mimic prior behavior.
David Blacka2012-05-26 15:48:25 -04:00
ca7f10bd07
Instead of using DNSSEC.Secure, DNSSEC.Failed, etc, just use boolean results. This means we lose the idea of Insecure, but that wasn't effectively being used anyway. Further, remove any use of the DNSJava Cache class -- that also wasn't being used.
David Blacka2012-05-26 15:40:15 -04:00
25cc81d46a
Replace use of old KEYConverter with new DNSKEYRecord constructor.
David Blacka2012-05-26 14:50:51 -04:00
3e34f13a28
Increment version for a release.
v0.10.1
David Blacka
2011-02-14 22:21:06 +00:00
fc05dc3c92
Update README with correct SVN urls. Sigh.
David Blacka
2011-02-12 21:25:49 +00:00
fb75a5419f
Use generic types when possible.
David Blacka
2011-02-12 21:25:42 +00:00
91207aeed2
Refactor the command line classes with a new base class and upgrade commons-cli to version 1.2.
David Blacka
2011-02-12 21:25:26 +00:00
645b8a1a60
fix my logger normalization -- it was still defaulting to INFO.
David Blacka
2011-02-10 00:25:10 +00:00
af2ae7401a
update changelog
David Blacka
2011-02-09 23:58:57 +00:00
453bf283ba
eclipse reformatting.
David Blacka
2011-02-09 23:58:56 +00:00
faae654a23
make reading and writing to stdin/stdout work for most of the tools
David Blacka
2011-02-09 23:58:54 +00:00
73d930a850
for jdnssec-signzone and jdnssec-signrrset, make 'multiline' output NOT the default, and add a command line switch to enable it.
David Blacka
2011-02-09 23:58:51 +00:00
8347e5ffc3
fix usage statement printing.
David Blacka
2011-02-09 23:58:49 +00:00
c459de830f
update jdnssec-keygen to use a default algorithm of 8 instead of 5.
David Blacka
2011-02-03 20:29:54 +00:00
e770f01958
Clean up logging: recognize all levels for -v, normalize the code that forces java.util.logging to set the correct log level, normalize on the use of our very simple log formatter.
David Blacka
2011-02-03 20:24:33 +00:00
57fe4c05e7
add a primary wrapper for the KeyInfoTool class
David Blacka
2011-02-02 19:58:44 +00:00
c26b39d52e
Update build.xml to use java 1.5 language features when compiling
David Blacka
2011-02-02 19:52:37 +00:00
fd3d5a22ce
increment version.
David Blacka
2011-02-02 19:48:56 +00:00
816c533639
update README with actual web site location and real email address
David Blacka
2011-02-02 19:48:29 +00:00
03737a1efd
Handle the new bind 9.7 private key files (hopefully).
David Blacka
2011-02-02 19:36:40 +00:00
1616d07fe6
Add -N option for calculating original ownernames for NSEC3 RRs
David Blacka
2011-02-02 19:36:14 +00:00
04d751ae56
Add -m option to jdnssec-zoneformat
David Blacka
2011-02-02 18:59:06 +00:00
86072cbcc8
Add options for fudging or ignoring times in verifyzone.
David Blacka
2010-12-14 18:01:12 +00:00
3d6b21b0fc
output changes for VerifyZone, some code cleanup and bug fixes for ZoneVerifier
David Blacka
2010-12-07 05:31:58 +00:00
41c96feffd
Refactor the zone verification tool to fully check zones for correctness. Not quite complete, as more testing needs to be done and the output needs to be standardized
David Blacka
2010-12-06 05:59:42 +00:00
3c9e33baf7
fix a number of jdnssec-signzone signing bugs: do not incorrectly set the RRSIG bit on NSEC3 RRs corresponding to insecure delegations, ignore junk below a DNAME, ignore delegations below other delegations
David Blacka
2010-12-06 00:25:04 +00:00
14ea619299
add verbose signing mode to signzone; some comment fixes, some unused vars and imports removed
David Blacka
2010-12-05 23:08:13 +00:00
2b619d08b5
remove stray typo character
David Blacka
2010-02-18 03:35:53 +00:00
cdde8fa65e
release 0.9.6
David Blacka
2010-01-14 16:40:32 +00:00
ef2b96782e
Switch to dnsjava-2.0.8: this fixes a typemap wire conversion bug
David Blacka
2010-01-10 02:52:02 +00:00
179f7fa59d
update version of DNSjava -- this version has a bug fix for typemap wireformat calculation
David Blacka
2010-01-08 00:42:27 +00:00
fff3792206
update version number, changelog
David Blacka
2009-11-03 02:24:06 +00:00
34e6f91ef2
restore NSEC3 original ownername comments.
David Blacka
2009-11-03 02:24:04 +00:00
64f5de7b38
fix our base32 context
David Blacka
2009-11-03 02:24:02 +00:00
1fe3b49c17
Switch to dnsjava-2.0.7: the NSEC3 comments won't work, and I had to rescue the nsec3 hash calculation function from the original NSEC3Record implementation.
David Blacka
2009-11-03 02:23:59 +00:00
2bd2bef727
Use the RFC 5702 algorithm identifiers
David Blacka
2009-11-03 02:23:57 +00:00
f09d75453c
work around the ulimit behavior on mac os X
David Blacka
2009-09-19 20:21:48 +00:00
ca9bee9d49
allow for multiple -k options (for signing with multiple KSKs)
David Blacka
2009-09-03 04:16:49 +00:00
5c6538cf62
remove bogus directory (again)
David Blacka
2009-08-24 13:21:46 +00:00
8b1203c243
Merge changes from experimental branch 2255:2273.
David Blacka
2009-08-23 19:13:42 +00:00
5d6e980ca7
make sure compiled binaries are 1.4 compatible
David Blacka
2009-02-10 14:36:51 +00:00
7a4e98378b
fix the binary version on the dnsjava library (was the java 6 binary version, should be the java 1.4 version)
David Blacka
2009-02-10 14:36:00 +00:00
194d28e876
update version for 0.9.0 release
David Blacka
2009-02-10 14:19:00 +00:00