PowerDNS Recursor 4.4.0 Released

Otto Moerbeek via Pdns-dev <[email protected]> Mon, 19 Oct 2020 14:10:55 +0200
Newsgroups gmane.network.dns.powerdns.devel,gmane.network.dns.powerdns.user
Message-ID <[email protected]>
This is an OpenPGP/MIME signed message (RFC 4880 and 3156)
--===============6474630517218699698==
Content-Type: multipart/signed; micalg=pgp-sha256;
 protocol="application/pgp-signature";
 boundary="GJiKPTRCpDCGk5dCouZ0EbNdWVbo9W8hW"

This is an OpenPGP/MIME signed message (RFC 4880 and 3156)
--GJiKPTRCpDCGk5dCouZ0EbNdWVbo9W8hW
Content-Type: multipart/mixed; boundary="h0raHiT3nGwsGlWfMh0PA9RtZIQS3uepW"

--h0raHiT3nGwsGlWfMh0PA9RtZIQS3uepW
Content-Type: text/plain; charset=utf-8
Content-Language: en-US
Content-Transfer-Encoding: quoted-printable

Hello!

We are proud to announce the release of PowerDNS Recursor 4.4.0.

Compared to the last release candidate, this release contains a fix
for the cache pollution issue described in security advisory
2020-07[1]. Please refer to the changelog[2] for details.

Compared to the 4.3 release of PowerDNS Recursor, this release
contains these major enhancements:

- Native DNS64 support, without the need to use Lua.

- The ability to add custom tags to RPZ hits.

- Names encountered while resolving CNAMEs are now subject to RPZ
  processing.

- More detailed information about RPZ handling is now available while
  tracing, in Lua and in the protobuf logging messages.

- To allow more efficient use, the record cache is now shared between
  threads.

- A routing tag[3] can be added in Lua code, which will be used as an
  additional record cache key instead of an EDNS subnet mask,
  enabling for a simpler record cache structure which will enhance
  query processing where the EDNS subnet mask is relevant.

- The Proxy Protocol version 2 has been implemented to allow for a
  structured exchange of information between a client (typically
  dnsdist) and the Recursor. See the documentation[4] for details.

We are grateful to all reporters of bugs, issues, feature requests,
and submitters of fixes and features. We also like to thank anybody
who tested the pre-releases.

Please note that with this release, the 4.1.x branch will be marked
End of Life and the 4.2.x branch will go into critical security update
mode only. See our release cycle document[5] for more details. The
upgrade[6] notes contain information that helps doing upgrades from
previous versions.

The tarball[7] (signature[8]) is available at our download site[9] and
packages for CentOS 7 and 8, Debian Stretch and Buster, Ubuntu Xenial,
Bionic and Focal are available from our repository[10].

Please send us all feedback and issues you might have via the mailing
list[11], or in case of a bug, via GitHub[12].

Best regards,

 -Otto and the PowerDNS Team

[1] https://docs.powerdns.com/recursor/security-advisories/powerdns-advis=
ory-2020-07.html
[2] https://doc.powerdns.com/recursor/changelog/4.4.html#change-4.4.0
[3] https://docs.powerdns.com/recursor/lua-scripting/hooks.html#gettag
[4] https://docs.powerdns.com/recursor/settings.html#proxy-protocol-from
[5] https://docs.powerdns.com/recursor/appendices/EOL.html
[6] https://docs.powerdns.com/recursor/upgrade.html#x-to-4-4-0-or-master
[7] https://downloads.powerdns.com/releases/pdns-recursor-4.4.0.tar.bz2
[8] https://downloads.powerdns.com/releases/pdns-recursor-4.4.0.tar.bz2.s=
ig
[9] https://downloads.powerdns.com/releases/
[10] https://repo.powerdns.com/
[11] https://mailman.powerdns.com/mailman/listinfo/pdns-users
[12] https://github.com/PowerDNS/pdns/issues/new/choose


--=20
kind regards,
Otto Moerbeek
Senior PowerDNS Developer

Email: [email protected]


--h0raHiT3nGwsGlWfMh0PA9RtZIQS3uepW--

--GJiKPTRCpDCGk5dCouZ0EbNdWVbo9W8hW
Content-Type: application/pgp-signature; name="signature.asc"
Content-Description: OpenPGP digital signature
Content-Disposition: attachment; filename="signature.asc"

-----BEGIN PGP SIGNATURE-----

iQEzBAEBCAAdFiEEmQw9Dqx8J13GsYQ26sq5Cxlj7CsFAl+Ngk8ACgkQ6sq5Cxlj
7CtNYwgAi4+PeOpfCxVTa7CY8S0e1Nn4lgcJO+dbTERNyJkcbD0X/C+VrPYjGxuS
Rg+VLC1QoN5qkLZbkozEFAJF1qeQfkaqpoTIslflyA+ITLeo6uV5bHNSOC3VBj9M
7EJt81mMTuMf/o0kJBorV2z6+FjWD6Ss66tcHx1JyUOVlBD6X3hV4iE17CfE57pQ
53/DLkr+65i2jmKnveU4iIQ/rIyq+iYOecOMTvNK8coHmSxWLfcdbDZ0ZjFOrD/X
+5ay2BwitVxpxixU5SP8ZW0ABPKTEuqcxZTjOBRnmZgSaU0jcdNgOvAMm4172Dtl
iVlSSwtfw5H302svAohGiU1/BPWy5w==
=tYty
-----END PGP SIGNATURE-----

--GJiKPTRCpDCGk5dCouZ0EbNdWVbo9W8hW--

--===============6474630517218699698==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

_______________________________________________
Pdns-dev mailing list
[email protected]
https://mailman.powerdns.com/mailman/listinfo/pdns-dev

--===============6474630517218699698==--