From f3b563228f95a0052ba28760bcda61621d5e9814 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Stephan=20D=C3=BCsterhaupt?= Date: Sat, 5 Sep 2026 14:11:31 +0200 Subject: [PATCH] docs(changelog): document dns update and rndc synchronization changes --- CHANGELOG.md | 22 ++++++++++++++++++++++ 1 file changed, 22 insertions(+) diff --git a/CHANGELOG.md b/CHANGELOG.md index c680773..7b543fd 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -5,6 +5,28 @@ All notable changes to this project will be documented in this file. The format is based on [Keep a Changelog](https://keepachangelog.com/en/1.0.0/), and this project adheres to [Semantic Versioning](https://semver.org/spec/v2.0.0.html). +## 1.1.0 - 2026-09-05 + +### Added + +- Added optional post-update BIND journal synchronization through `rndc sync -clean`. +- Added `DYNDNS_RNDC_SERVER`, `DYNDNS_RNDC_KEY`, and `DYNDNS_RNDC_SYNC_CLEAN` configuration parameters. +- Added validation for the RNDC synchronization switch and required RNDC settings when synchronization is enabled. +- Added conditional runtime validation for the `rndc` command when post-update journal synchronization is enabled. +- Added `nsupdate` diagnostic output to the dynDNS log and preservation of failed update instructions for troubleshooting. + +### Changed + +- Separated RFC 2136 update settings from BIND RNDC control settings. +- Updated dynamic update processing to target the authoritative DNS listener instead of a non-authoritative localhost resolver view. +- Changed the post-update workflow to synchronize accepted dynamic updates into the primary zone file and clean BIND journal files when explicitly enabled. +- Made RNDC synchronization failures non-fatal after a successful `nsupdate` transaction, while retaining a warning in the dynDNS log. + +### Removed + +- Removed unsafe DNSSEC handling that attempted to delete the zone `DNSKEY` RRset before dynamic updates. +- Removed the unnecessary `rndc freeze` and `rndc thaw` workflow after RFC 2136 updates. + ## 1.0.0 - 2026-06-20 ### Added