dnsdist 1.4.0 released
Remi Gacogne <[email protected]> Wed, 20 Nov 2019 17:51:08 +0100
| Newsgroups | gmane.network.dns.powerdns.dnsdist,gmane.network.dns.powerdns.user,gmane.network.dns.powerdns.devel |
|---|---|
| Message-ID | <[email protected]> |
This is an OpenPGP/MIME signed message (RFC 4880 and 3156) --===============5452623124452405497== Content-Type: multipart/signed; micalg=pgp-sha512; protocol="application/pgp-signature"; boundary="rb928BrfP6UrHATyi0zzwnuYADKMN6SAj" This is an OpenPGP/MIME signed message (RFC 4880 and 3156) --rb928BrfP6UrHATyi0zzwnuYADKMN6SAj Content-Type: multipart/mixed; boundary="Vtym41GFF2FZypLSetZWuwyZYO1q6b4Jg" --Vtym41GFF2FZypLSetZWuwyZYO1q6b4Jg Content-Type: text/plain; charset=utf-8 Content-Language: en-GB Content-Transfer-Encoding: quoted-printable Hello everyone, After five release candidates, we are thrilled to finally announce the release of dnsdist 1.4.0 ! This new major version has been used in production by several large operators since the first release candidate, including the new DNS over HTTPS feature, providing invaluable feedback. This release has very few changes since the previous release candidate: - names blocked by a SMT dynamic block are now lowercased ; - we went back to selecting the cipher suites based on the server preference instead of the client by default ; - some typo, documentation and help messages have been fixed. For those new to the 1.4.0 train, the main changes between 1.3.3 and 1.4.0 are: - a new, much more scalable way of handling DNS over TCP and DNS over TLS connections, with a lot of new metrics and options like OCSP stapling= ; - support for DNS over HTTPS ; - a new experimental feature, the ability to look into a Key-Value store like CDB or LMDB and to route a query based on the result of this lookup = ; - new rules and actions to deal with unexpected EDNS version (Dmitry Alenichev) ; - a new QNameSetRule rule, along with the DNSNameSet object, to match exact qnames instead of doing suffix matching (Andrey Domas) ; - a new ContinueAction has been added as well, allowing to keep processing rules even after calling a normally terminal action, like PoolAction ; - we also added a few convenience functions to pseudonymize IP addresses, as several users reported that they needed it to be GDPR-compliant ; - the health check mechanism has been improved with the new checkInterval, checkTimeout and rise parameters, thanks notably to =E2=80= =9C1848=E2=80=9D ; - and, finally, we also improved the existing LogAction to make it much more useful for debugging and accounting purposes. Please see the upgrade guide [1] before upgrading from 1.3.x to 1.4.0, as a few things have been cleaned up and might require updating your existing configuration. We want to once again thank everyone that contributed to the testing of the previous release candidates! Please see the dnsdist website [2] for the more complete changelog [3] and the current documentation. Release tarballs are available on the downloads website [4]. Several packages are also available in our repository [5]. [1]: https://dnsdist.org/upgrade_guide.html#x-to-1-4-0 [2]: https://dnsdist.org [3]: https://dnsdist.org/changelog.html#change-1.4.0 [4]: https://downloads.powerdns.com/releases/dnsdist-1.4.0.tar.bz2 [5]: https://repo.powerdns.com/ Best regards, --=20 Remi Gacogne PowerDNS.COM BV - https://www.powerdns.com/ --Vtym41GFF2FZypLSetZWuwyZYO1q6b4Jg-- --rb928BrfP6UrHATyi0zzwnuYADKMN6SAj Content-Type: application/pgp-signature; name="signature.asc" Content-Description: OpenPGP digital signature Content-Disposition: attachment; filename="signature.asc" -----BEGIN PGP SIGNATURE----- iQEzBAEBCgAdFiEE1jAMq8v0abvjkuUDogjtT4r1hEYFAl3VbwcACgkQogjtT4r1 hEaS6gf+Kx6pBA+CP7IKHy1EAWzU0haffmMm2oZU/b1GjqOI0rcu6vdjaYFoXEDJ igblMbqZUr8dHm3CyNgYQQea4OCoBSggjzCI7uA8qybW1XTMaoyNEdEgoSWQbsW4 rN1zGw79G4MmnmHWNwUim+VfTWfIoa0hpuUFhZDapjFgsQRH82UBAOf0IBm8Tgr9 O0C0nvqloiV0hz7qIsBWotzKK8yGWId1+FUeI+uuNOXWrzEo5KPZ322z8BtIbdoU t+r7UBP6c7vub3+ExMeKKRojqzepZCyGgO0/LHU51yBFzDfehyh/wU0gOxa7OP/d sDgfgw2paNnItLMrTv5JWRfV8Ovjcg== =QlQ+ -----END PGP SIGNATURE----- --rb928BrfP6UrHATyi0zzwnuYADKMN6SAj-- --===============5452623124452405497== Content-Type: text/plain; charset="us-ascii" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit Content-Disposition: inline _______________________________________________ dnsdist mailing list [email protected] https://mailman.powerdns.com/mailman/listinfo/dnsdist --===============5452623124452405497==--