Reject unsupported DNS opcodes consistently #7
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "fix/reject-unsupported-opcodes"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Summary
Reject unsupported nonzero DNS opcodes consistently in the Scheme and WASM query parsers. The existing server behavior for parser rejection is a silent drop, so UPDATE, NOTIFY, and other unsupported opcodes receive no ordinary QUERY response and cannot reach zone lookup.
The change also regenerates the tracked WASM payloads and embedded source, adds Scheme/WASM parity tests, and bumps the package version to 0.1.5.
Verification
PATH=/Users/user/.rustup/toolchains/stable-aarch64-apple-darwin/bin:$PATH DYLD_LIBRARY_PATH=/Users/user/.rustup/toolchains/stable-aarch64-apple-darwin/lib make testmake securitycargo fmt --manifest-path wasm/Cargo.toml --all -- --checkcargo check --manifest-path fuzz/Cargo.toml --locked --bins