Deadwood beta on debian lenny

Sam Trenholme strenholme.usenet at gmail.com
Wed Jul 28 15:43:58 EDT 2010


> I experience some timeouts. They happen only for the first(/uncached)
> request using deadwood and are not happening when using maradns.

Fixed.

The issue was that I was performing bailiwick checks on the SOA record
in the NS section of a "not there" reply; I only should be doing a
bailiwick check for NS referrals, not SOA "not there" replies.

The following patch fixes this issue by making it so SOA records are
always considered to be "in bailiwick":

http://maradns.org/deadwood/patches/deadwood-2.9.01-show_not_there.patch

However, I’m thinking it may be better to verify that we always store
“not there” replies in the same location as the original query (I’m
pretty sure Deadwood already does this, but I have to look at the code
again to make sure) and to not perform a bailiwick check for “not
there” replies at all.

However, life calls.  It looks like I will finally get to meet in
person Kai Hendry today, who has maintained the Debian package for
MaraDNS for many years.  In the meantime, people can download a
Deadwood tarball with the above patch here:

http://maradns.org/deadwood/snap/deadwood-H-20100728-1.tar.bz2

Which is GPG signed with MaraDNS’ signing key:

http://maradns.org/deadwood/snap/deadwood-H-20100728-1.tar.bz2.asc

- Sam

Note: I do not answer MaraDNS (including Deadwood) support requests
sent by private email without being compensated for my time. A MaraDNS
support request is any and all discussion you may wish to have about
MaraDNS in private email; if you want to email me to talk about
MaraDNS then, yes, that is a support request. I will discuss rates if
you want this kind of support. Thank you for your understanding.

MaraDNS security vulnerability reports, however, will be dealt with
without charge and kept confidential. If you don't know what Bugtraq
is, then, no, your email is not a security report. It is not a
security report unless you’ve done due diligence to determine how the
security bug you think you found can reasonably be exploited.


More information about the list mailing list