Commit Graph

395 Commits

Author SHA1 Message Date
Frank Denis d87f3618ac Bump 2018-05-16 11:41:55 +02:00
Frank Denis 281c2fa7f4 Don't add padding if the query matches the block size
Fixes #446
2018-05-16 11:31:47 +02:00
Frank Denis 255423588c REFUSED responses are fine for filtering resolvers 2018-05-11 03:31:25 +02:00
Frank Denis 7774d9cf05 Avoid long lines 2018-05-10 22:19:04 +02:00
Frank Denis 6f047e07b8 Bump 2018-05-10 22:17:57 +02:00
Frank Denis ce62981c44 Wait for network connectivity before starting the proxy 2018-05-10 21:59:25 +02:00
Frank Denis 3c1d7acdaf Synthetic SOAs can have constant serial/mail 2018-05-10 10:54:15 +02:00
Frank Denis cdf5b9ce6b IPv6 issues on macOS should be gone 2018-05-10 10:46:11 +02:00
Frank Denis 17dd7336a8 Use a root server as the NS in synthetic SOA responses 2018-05-10 10:45:56 +02:00
Frank Denis 0b5c0af5ee IPv6 blocking: add a synthetic SOA record 2018-05-10 10:39:21 +02:00
Frank Denis 8509cc1bd7 forwarding: explain that example.com also matches *.example.com 2018-04-29 21:47:39 +02:00
Frank Denis 7f999f59e1 Recommend against disable_ipv6 when using chained caches
Fixes #398
2018-04-27 16:20:24 +02:00
Frank Denis bcaff6e3bd 2.0.11 2018-04-27 00:12:09 +02:00
Anonymous User c83ae78dba anonymous commit (#397) 2018-04-21 20:21:11 +02:00
Frank Denis dd878d4c60 Clarify that UDP is no less secure than TCP 2018-04-20 23:17:48 +02:00
Frank Denis f20da6b611 Remove support for legacy CSV files 2018-04-18 19:06:50 +02:00
Frank Denis 3d67c81697 Deps update 2018-04-18 18:58:39 +02:00
Frank Denis f63dc17f90 stamps -> dnsstamps 2018-04-18 18:47:10 +02:00
gdm85 eb5f391fa6 Split stamps into package 2018-04-18 18:36:47 +02:00
Frank Denis b1447160a0 Add cache_neg_min_ttl and cache_neg_max_ttl 2018-04-17 00:24:49 +02:00
Frank Denis 0f349c793e Clarify
Fixes #356
2018-04-16 22:24:45 +02:00
Frank Denis a5b8401131 Bump 2018-04-16 02:33:10 +02:00
Frank Denis ace955fd9f More accurate description 2018-04-16 02:25:59 +02:00
Frank Denis 5be294a6e2 packetLength can be negative
Fixes #359
2018-04-16 02:05:28 +02:00
Frank Denis 0cca203bb0 Merge branch 'master' of github.com:jedisct1/dnscrypt-proxy
* 'master' of github.com:jedisct1/dnscrypt-proxy:
  Tiny typo in error message (#350)
2018-04-12 11:07:46 +02:00
Frank Denis 64d22dfc2b Clarify 2018-04-12 11:07:34 +02:00
B00ze64 cbc9152f19 Tiny typo in error message (#350)
Tiny typo, missing TO in "Unable to use source"
2018-04-12 10:05:58 +02:00
Frank Denis e2dd9c97a2 Remove b2
Fixes #347
2018-04-11 14:05:16 +02:00
Frank Denis c33ebd229b Avoid empty examples files
Fixes #348

Keep the ciphers list commented out by default to be safe
2018-04-11 14:03:25 +02:00
Frank Denis 3dbdf54c1f Warn about failed handshakes earlier and fallback to default suite 2018-04-11 11:42:30 +02:00
Frank Denis 6b3212d3d7 Note that the cipher suite also affects source retrieval 2018-04-11 11:42:10 +02:00
Frank Denis c7ae244410 Cloak localhost 2018-04-10 15:07:51 +02:00
Frank Denis d559301377 Bump default cache size 2018-04-10 13:24:13 +02:00
Frank Denis 3d34027aeb Double the example cache size 2018-04-10 13:23:51 +02:00
Frank Denis 40d492f93a Go has only X25519 optimized for x86_64 2018-04-10 11:28:59 +02:00
Frank Denis 19db1a1560 If we get a TLS handshake error, recommend using the default suite 2018-04-10 11:26:31 +02:00
Zhuoyun Wei 6d2330eaf0 Minor typo fixes in config files (#338) 2018-04-10 09:06:19 +02:00
Frank Denis e3ad6b1c0e Actually use a cache if tlsDisableSessionTickets is not set 2018-04-10 00:36:55 +02:00
Frank Denis 8bebb50d49 Nits 2018-04-09 23:58:36 +02:00
Frank Denis aa538969a3 New beta 2018-04-09 13:27:02 +02:00
Frank Denis 44880f9b2c Patterns are now fully supported in cloaking rules
Fixes #306
2018-04-09 13:26:50 +02:00
Frank Denis 7d10628a5f New syntax for blocking/whitelisting rules: exact matching
Example: =example.com

Matches `example.com` but not `api.example.com`
2018-04-09 13:02:42 +02:00
Frank Denis de6a8d230e Use PolyChaCha, but more importantly, RSA by default
Even on non-ARM systems, this makes a difference in CPU usage/latency
2018-04-09 12:45:42 +02:00
Frank Denis ca80b69b3a Re-implement ephemeral keys for DNSCrypt 2018-04-09 03:12:34 +02:00
Frank Denis 70dca19326 Clarify 2018-04-09 02:57:30 +02:00
Frank Denis 4439040bc8 patternMatcher: initialize the indirectVals map 2018-04-08 08:42:02 +02:00
Frank Denis 10baa245b2 Clarify 2018-04-07 23:27:57 +02:00
Frank Denis fcdf7d7e55 Update ChangeLog 2018-04-07 23:14:15 +02:00
Frank Denis 517538bdb2 Less ### 2018-04-07 23:05:29 +02:00
Frank Denis 65e6b8569e Implement whitelists
Fixes #293
2018-04-07 23:02:40 +02:00