Unbound 1.13.0 released

Along with various fixes, new features are upstream TCP and TLS query reuse, where a channel is reused for several queries, as well as unencrypted DoH, useful for back-end support servers

When did Windows-type syntax invade Linux?

Apart from this not working here, and please don't ask me why because I don't know, I really miss systems where I can just edit a file and have it do what I say.

Oh, wait:

echo "nameserver ::1" > /etc/resolv.conf
chattr +i /etc/resolv.conf

I fixed it for myself, thanks. 😎

For the love of troff:

>>The state of Unix documentation has not advanced for decades. The venerable man page remains the backbone[..].

This paper reviews the state of the art, and critiques the variety of documentation systems in current use. It explores why new systems were invented, which are currently fashionable, and suggests a path to a better, unified documentation system based whollyand solely on troff.<<

Still a great FUBAR: the Xerox scanners that change data: "David Kriesel: Traue keinem Scan, den du nicht selbst gefälscht hast" (in German)

Paul Mockapetris (@svnr2000), co-inventor of the Domain Name System, talks about how DNS grew from an undesirable computer science experiment to one of the critical services that makes the Internet what it is today.

they: "Yay, I got my €500 device today!"
me: "curious to hear your report"
they: "packaging is thoughtfully made"
they: "form factor is really nice"
me: "..."

NLnet Labs has built a prototype standardised DNSSEC Key Signing Ceremony, consisting of both documentation to help design a ceremony and tooling to integrate the ceremony in a DNSSEC signing toolchain.

RFC 8945: Secret Key Transaction Authentication for DNS (TSIG)

Le #DNS a des vulnérabilités à plusieurs endroits, notamment des risques d'usurpation, qui permettent de glisser une réponse mensongère à la place de la bonne. #TSIG, normalisé dans ce RFC (qui remplace le RFC 2845), est une solution de vérification de l'intégrité du canal. TSIG est surtout utilisé entre serveurs DNS maîtres et esclaves, pour sécuriser les transferts de zone.

Everything has limits, including software systems. When you hit these limits, bad things can happen. is a service of the SDF Public Access UNIX System. When you connect you'll be able to CREATE and DESTROY an entire UNIX system on a whim. Use to learn about old and significant versions of UNIX on emulated hardware.

octoDNS: DNS as code - Tools for managing DNS across multiple providers story: Enabling DNS split authority with OctoDNS

Four years after the Dyn DDoS attack, critical DNS dependencies have only gone up
If Cloudflare, AWS, or GoDaddy go down, around 40% of the Alexa Top 100,000 websites will also go down with DNS resolution problems.

Somebody wrote "MTB", and I thought "Motor Torpedo Boat", but he meant "mountainbike"

