We are proud to announce the first alpha release of PowerDNS Recursor 5.4.0!
Compared to the latest 5.3 release, this pre-release includes the
following changes:
* DNS cookies[1] are supported for outgoing connections to
authoritative servers. This greatly reduces the effectiveness of
(spoofing) attacks. This feature currently is disabled by default,
but will be enabled by default in a future release.
* The server certificate associated with an outgoing DoT
connection can optionally be validated[2].
* The emitting of OpenTelemetry trace data can is now controlled by
conditions[3] based on properties of the incoming query. The trace
data itself is also more elaborate, enabling more insight in
the resolving process.
* Queries using query type ANY from clients[4] and to
authoritative[5] servers are now forced to use TCP by default.
As always, there are also many smaller bug fixes and improvements,
please refer to the changelog[6] for additional details. When upgrading
do not forget to check the upgrade guide[7].
Please send us all feedback and issues you might have via the mailing
list[8], or in case of a bug, via GitHub[9]. In particular we would
like to see feedback regarding the new DNS cookie support feature.
The tarball[10] (signature[11]) is available from our
download server[12] and packages for several distributions are
available from our repository[13].
Older release trains are supported for one year after the following
major release. Consult the EOL policy[14] for more details.
We are grateful to the PowerDNS community for the reporting of bugs,
issues, feature requests, and especially to the submitters of fixes and
implementations of features.
References
1.
https://docs.powerdns.com/recursor/yamlsettings.html#setting-yaml-outgoing-cookies
2.
https://docs.powerdns.com/recursor/yamlsettings.html#setting-yaml-outgoing-tls-configurations
3.
https://docs.powerdns.com/recursor/yamlsettings.html#opentelemetrytracecondition
4. https://docs.powerdns.com/recursor/yamlsettings.html#recursor-any-to-tcp
5. https://docs.powerdns.com/recursor/yamlsettings.html#outgoing-any-to-tcp
6. https://doc.powerdns.com/recursor/changelog/5.4.html#change-5.4.0-alpha1
7. https://docs.powerdns.com/recursor/upgrade.html
8. https://mailman.powerdns.com/mailman/listinfo/pdns-users
9. https://github.com/PowerDNS/pdns/issues/new/choose
10. https://downloads.powerdns.com/releases/pdns-recursor-5.4.0-alpha1.tar.xz
11.
https://downloads.powerdns.com/releases/pdns-recursor-5.4.0-alpha1.tar.xz.sig
12. https://downloads.powerdns.com/releases/
13. https://repo.powerdns.com/
14. https://docs.powerdns.com/recursor/appendices/EOL.html
signature.asc
Description: PGP signature
_______________________________________________ Pdns-users mailing list [email protected] https://mailman.powerdns.com/mailman/listinfo/pdns-users
