Commit Graph

  • 1406cd2e68
    remove ECC-GOST, add new DS algorithms (#18) master David Blacka 2024-04-13 11:39:18 -0400
  • 1727d7c7d8
    Cli improvements (#17) v0.20 David Blacka 2024-04-07 21:12:56 -0400
  • 2876649a4e
    EdDSA, sonarlint fixes, and cleanup (#16) David Blacka 2024-03-30 22:21:32 -0400
  • 6118ae718e
    Fix issue 14 (#15) v0.19 David Blacka 2024-03-25 00:38:47 -0400
  • 5fef1dcf24 forgot to commit the version update David Blacka 2023-07-24 08:22:28 -0400
  • e73b5ddd53 add -t option to verifyzone v0.17.1 David Blacka 2023-07-24 08:10:10 -0400
  • 3601676406 Fix critical typo in ZoneVerifier; more sonarlint David Blacka 2023-07-24 00:12:28 -0400
  • 69a0a34239 do not use Collections.emptyList() David Blacka 2023-07-23 23:45:47 -0400
  • e322186112
    Port to DNSJava 3.5.1, Java 8, linter fixes (#13) v0.17 David Blacka 2022-09-21 14:24:42 -0400
  • ce1189703f
    Merge pull request #12 from dblacka/davidb/add-ttl-to-keygen v0.16.1 David Blacka 2022-06-11 21:23:42 -0400
  • bfb5ff45ee Fixes #11: add TTL to generated DNSKEYs David Blacka 2022-06-11 21:20:50 -0400
  • 9fd6c95889 Update dnsjava to 2.1.9; normalize shell wrappers v0.16 David Blacka 2019-07-23 13:06:09 +0000
  • 9004a33d51 Exit with non-zero with exception. Fix dnsjava lib. v0.15 David Blacka 2019-02-26 14:26:18 +0000
  • 0aca329f85
    Remove verisignlabs.com website for now David Blacka 2019-01-30 11:37:34 -0500
  • 507dad3580 Update changelog with release 0.14 David Blacka 2018-11-16 15:54:09 +0000
  • 7d27694d9a Some DNSKeyAlgorithm class cleanup David Blacka 2018-11-16 13:57:16 +0000
  • 62b5b0ad23 Updates for gradle; changelog David Blacka 2018-07-15 17:08:29 +0000
  • c37f436e72 Merge branch 'alg-15-support' of https://github.com/pallaviaras/jdnssec-tools into pallaviaras-alg-15-support David Blacka 2018-07-15 16:57:59 +0000
  • 781e775b3b Use the actual private key for ed25519 David Blacka 2018-07-15 16:56:15 +0000
  • d0e85431c5 Added support for gradle and restructured the source code directory from src to src/main/java directory Pallavi 2018-07-15 10:59:40 -0400
  • 55a139db82 Allow for epoch start/expire times; add verboseSigning to jdnssec-signrrset David Blacka 2018-07-15 14:57:41 +0000
  • b291bb430b Use correct encoding for the alg 15 DNSKEYRecord David Blacka 2018-07-15 12:17:12 +0000
  • a9353b3af3 Now able to generated alg 15 keypairs David Blacka 2018-07-15 00:54:10 +0000
  • 7706b73d8c Start of alg 15/16 support David Blacka 2018-07-14 22:06:49 +0000
  • 252c44a155
    Merge pull request #6 from chkal/jdk7 David Blacka 2018-03-10 14:26:27 -0500
  • a7743fa18c Set javac options for source and target to JDK7 Christian Kaltepoth 2018-02-28 08:47:40 +0100
  • 4853426d6c Merge pull request #5 from PowerDNS/failure-exit David Blacka 2017-06-23 09:55:52 -0400
  • de2216f259 Merge pull request #4 from PowerDNS/ecdsa-pad David Blacka 2017-06-23 09:55:28 -0400
  • b19bc5ffa3 exit(1) if the zone had errors Peter van Dijk 2017-06-22 14:34:14 +0200
  • 517975ef93 update ChangeLog Kees Monshouwer 2017-06-22 13:23:43 +0200
  • ca2a932485 fix multiple leading zeros padding in ECDSA sig conversion Kees Monshouwer 2017-06-22 13:21:54 +0200
  • 171594a92d fix leading zero padding in ECDSA sig conversion Peter van Dijk 2017-02-28 12:18:34 +0100
  • fb689c046f Update changelog, set this as a release. 0.13 David Blacka 2017-01-06 13:01:05 -0500
  • 8d3746fc22 Validate the the RRset TTL is <= the OrigTTL. David Blacka 2017-01-06 12:54:16 -0500
  • 444601fb2a Detect duplicate RRSIGs as well. David Blacka 2017-01-06 12:53:57 -0500
  • c5896495c7 Either R or S could end up being shorter than the expected length, so adjust for that. David Blacka 2017-01-05 13:50:48 -0500
  • c13d9379b3 Update version, convert readme to markdown. David Blacka 2016-12-05 18:36:36 -0500
  • f170bd170a Elliptic curve support. Improve usage, unknown algorithm error handling in jdnssec-keygen Use the bouncycastle crypto provider for ECCGOST if available David Blacka 2016-12-02 17:49:09 -0500
  • 6bbcf38fe1 update the embedded dnsjava version to 2.1.7 (jdnssec-dnsjava) David Blacka 2016-08-22 09:40:47 -0400
  • 15cb5e2ab7 Fix issue in jdnssec-verifyzone (and ZoneVerifier) where junk in the zone wouldn't be handled correctly (that is, ignored.) David Blacka 2014-04-22 16:39:00 -0400
  • 9fad4941a6 Make jdnssec-zoneformat -N also compute NSEC3 original owner names for ENTs David Blacka 2014-04-22 16:37:58 -0400
  • 18df8a8d9e update version to prep for an official release. 0.12 David Blacka 2012-07-16 14:20:14 -0400
  • a45f5d1df7 use the perfectly OK (now) TypeMap.toString() method. David Blacka 2012-07-16 14:16:42 -0400
  • 3da308c4b9 Fix TypeMap.fromBytes() and add a TypeMap.fromString() method. David Blacka 2012-07-16 14:16:13 -0400
  • efa6dec7f7 update version to prep for an official release. v0.11 David Blacka 2012-05-29 13:17:36 -0400
  • d3e8c4c913 Add duplicate RR detection to jdnssec-verifyzone, and a command line option to disable it. David Blacka 2012-05-26 23:14:12 -0400
  • b5775a8fdf update README to point to github. David Blacka 2012-05-26 15:53:00 -0400
  • 69d965cc0f Wrap the new exceptions to mimic prior behavior. David Blacka 2012-05-26 15:48:25 -0400
  • ca7f10bd07 Instead of using DNSSEC.Secure, DNSSEC.Failed, etc, just use boolean results. This means we lose the idea of Insecure, but that wasn't effectively being used anyway. Further, remove any use of the DNSJava Cache class -- that also wasn't being used. David Blacka 2012-05-26 15:40:15 -0400
  • 25cc81d46a Replace use of old KEYConverter with new DNSKEYRecord constructor. David Blacka 2012-05-26 14:50:51 -0400
  • 2a90a6ccd9 byte -> int for NSEC3 digest type. David Blacka 2012-05-26 14:42:44 -0400
  • b18a96cbfc Change dnsjava algorithm references from DNSSEC.<alg> to DNSSEC.Algorithm.<alg> David Blacka 2012-05-19 20:12:29 -0400
  • cc0873a336 Upgrade local dnsjava fork to 2.3.1-vrsn-1 David Blacka 2012-05-19 20:11:16 -0400
  • 4d1acb8918 add .gitignore David Blacka 2012-05-19 20:10:21 -0400
  • 3e34f13a28 Increment version for a release. v0.10.1 David Blacka 2011-02-14 22:21:06 +0000
  • fc05dc3c92 Update README with correct SVN urls. Sigh. David Blacka 2011-02-12 21:25:49 +0000
  • fb75a5419f Use generic types when possible. David Blacka 2011-02-12 21:25:42 +0000
  • 91207aeed2 Refactor the command line classes with a new base class and upgrade commons-cli to version 1.2. David Blacka 2011-02-12 21:25:26 +0000
  • 645b8a1a60 fix my logger normalization -- it was still defaulting to INFO. David Blacka 2011-02-10 00:25:10 +0000
  • af2ae7401a update changelog David Blacka 2011-02-09 23:58:57 +0000
  • 453bf283ba eclipse reformatting. David Blacka 2011-02-09 23:58:56 +0000
  • faae654a23 make reading and writing to stdin/stdout work for most of the tools David Blacka 2011-02-09 23:58:54 +0000
  • 73d930a850 for jdnssec-signzone and jdnssec-signrrset, make 'multiline' output NOT the default, and add a command line switch to enable it. David Blacka 2011-02-09 23:58:51 +0000
  • 8347e5ffc3 fix usage statement printing. David Blacka 2011-02-09 23:58:49 +0000
  • c459de830f update jdnssec-keygen to use a default algorithm of 8 instead of 5. David Blacka 2011-02-03 20:29:54 +0000
  • e770f01958 Clean up logging: recognize all levels for -v, normalize the code that forces java.util.logging to set the correct log level, normalize on the use of our very simple log formatter. David Blacka 2011-02-03 20:24:33 +0000
  • 57fe4c05e7 add a primary wrapper for the KeyInfoTool class David Blacka 2011-02-02 19:58:44 +0000
  • c26b39d52e Update build.xml to use java 1.5 language features when compiling David Blacka 2011-02-02 19:52:37 +0000
  • fd3d5a22ce increment version. David Blacka 2011-02-02 19:48:56 +0000
  • 816c533639 update README with actual web site location and real email address David Blacka 2011-02-02 19:48:29 +0000
  • 03737a1efd Handle the new bind 9.7 private key files (hopefully). David Blacka 2011-02-02 19:36:40 +0000
  • 1616d07fe6 Add -N option for calculating original ownernames for NSEC3 RRs David Blacka 2011-02-02 19:36:14 +0000
  • 04d751ae56 Add -m option to jdnssec-zoneformat David Blacka 2011-02-02 18:59:06 +0000
  • 86072cbcc8 Add options for fudging or ignoring times in verifyzone. David Blacka 2010-12-14 18:01:12 +0000
  • 3d6b21b0fc output changes for VerifyZone, some code cleanup and bug fixes for ZoneVerifier David Blacka 2010-12-07 05:31:58 +0000
  • 41c96feffd Refactor the zone verification tool to fully check zones for correctness. Not quite complete, as more testing needs to be done and the output needs to be standardized David Blacka 2010-12-06 05:59:42 +0000
  • 3c9e33baf7 fix a number of jdnssec-signzone signing bugs: do not incorrectly set the RRSIG bit on NSEC3 RRs corresponding to insecure delegations, ignore junk below a DNAME, ignore delegations below other delegations David Blacka 2010-12-06 00:25:04 +0000
  • 14ea619299 add verbose signing mode to signzone; some comment fixes, some unused vars and imports removed David Blacka 2010-12-05 23:08:13 +0000
  • 51d4ca0333 remove accidentally committed 'jdnssec-tools' directory David Blacka 2010-12-05 20:58:14 +0000
  • beca0e4872 Add jdnssec-signrrset tool which will sign any single rrset with any key. David Blacka 2010-07-21 17:09:56 +0000
  • 32c781f972 Share project "jdnssec-tools" into "https://svn.verisignlabs.com/main/dnssec/sectools/trunk" David Blacka 2010-06-15 02:45:12 +0000
  • 2b619d08b5 remove stray typo character David Blacka 2010-02-18 03:35:53 +0000
  • cdde8fa65e release 0.9.6 David Blacka 2010-01-14 16:40:32 +0000
  • ef2b96782e Switch to dnsjava-2.0.8: this fixes a typemap wire conversion bug David Blacka 2010-01-10 02:52:02 +0000
  • 179f7fa59d update version of DNSjava -- this version has a bug fix for typemap wireformat calculation David Blacka 2010-01-08 00:42:27 +0000
  • fff3792206 update version number, changelog David Blacka 2009-11-03 02:24:06 +0000
  • 34e6f91ef2 restore NSEC3 original ownername comments. David Blacka 2009-11-03 02:24:04 +0000
  • 64f5de7b38 fix our base32 context David Blacka 2009-11-03 02:24:02 +0000
  • 1fe3b49c17 Switch to dnsjava-2.0.7: the NSEC3 comments won't work, and I had to rescue the nsec3 hash calculation function from the original NSEC3Record implementation. David Blacka 2009-11-03 02:23:59 +0000
  • 2bd2bef727 Use the RFC 5702 algorithm identifiers David Blacka 2009-11-03 02:23:57 +0000
  • f09d75453c work around the ulimit behavior on mac os X David Blacka 2009-09-19 20:21:48 +0000
  • ca9bee9d49 allow for multiple -k options (for signing with multiple KSKs) David Blacka 2009-09-03 04:16:49 +0000
  • 5c6538cf62 remove bogus directory (again) David Blacka 2009-08-24 13:21:46 +0000
  • 8b1203c243 Merge changes from experimental branch 2255:2273. David Blacka 2009-08-23 19:13:42 +0000
  • dec1b802e2 Share project "jdnssec-tools" into "https://svn.verisignlabs.com/main/dnssec/sectools/trunk" David Blacka 2009-07-19 19:19:41 +0000
  • 5d6e980ca7 make sure compiled binaries are 1.4 compatible David Blacka 2009-02-10 14:36:51 +0000
  • 7a4e98378b fix the binary version on the dnsjava library (was the java 6 binary version, should be the java 1.4 version) David Blacka 2009-02-10 14:36:00 +0000
  • 194d28e876 update version for 0.9.0 release David Blacka 2009-02-10 14:19:00 +0000
  • e95f295275 update changelog David Blacka 2009-02-09 02:54:51 +0000
  • e6cf5e27a0 Use constants now defined in dnsjava (local copy, for now). Add BIND 9.6 mnemonics to the NSEC3 key aliases. David Blacka 2009-02-08 17:36:18 +0000