[Pdns-users] delivery problems for mailman.powerdns.com

2023-09-07 Thread Peter van Dijk via Pdns-users
Hello dear readers,

recently, mailman.powerdns.com ended up listed on a few RBLs. This caused
a lot of email to bounce, and eventually Mailman unsubscribed many people
from pdns-users.

We have requested delisting where we could find URLs to do so, and hope
that the situation will improve. If you used to get email from one of our
lists, but no longer do, please resubscribe at
https://mailman.powerdns.com/mailman/listinfo/

We also have a vibrant community on IRC, where you can discuss PowerDNS -
see https://www.powerdns.com/powerdns-community for more information.

Besides that, we have recently started trialing GitHub Discussions. I
would not call it lively yet, but perhaps that will change!
https://github.com/PowerDNS/pdns/discussions/

Our apologies for the inconvenience.

Kind regards,
-- 
Peter van Dijk
PowerDNS.com B.V. - https://www.powerdns.com/
___
Pdns-users mailing list
Pdns-users@mailman.powerdns.com
https://mailman.powerdns.com/mailman/listinfo/pdns-users


Re: [Pdns-users] Lighning Stream LMDB - Encryption ?

2023-09-07 Thread Nico Cartron via Pdns-users

Hi Laura,

On 9/7/23 14:48, Laura Smith via Pdns-users wrote:
PDNS with Lightning Stream LMDB looks like a welcome addition but 
having briefly glanced over the docs, I cannot see any client-side 
encryption settings, not even the option to use CMK on S3 blobs.


Are there eventual plans for adding encryption capabilities to 
Lightning Stream ?


In addition, it would be nice to see the S3 connector be enhanced to 
support more authentication options such as:


  * Use of AWS roles
  * Use of AWS Security Token Service (AWS STS)
  * Use of X.509 certs (IAM Roles Anywhere)


Whilst there will clearly still be many people out there only using 
Access Key + Secret Key, environments with a hardened security posture 
need some extra knobs and dials.


Bear in mind the implementation is not specific to AWS S3 - I tested 
Lightning Stream against Backblaze B2 and it works perfectly.


--
Nico
___
Pdns-users mailing list
Pdns-users@mailman.powerdns.com
https://mailman.powerdns.com/mailman/listinfo/pdns-users


[Pdns-users] Lighning Stream LMDB - Encryption ?

2023-09-07 Thread Laura Smith via Pdns-users
PDNS with Lightning Stream LMDB looks like a welcome addition but having 
briefly glanced over the docs, I cannot see any client-side encryption 
settings, not even the option to use CMK on S3 blobs.

Are there eventual plans for adding encryption capabilities to Lightning Stream 
?

In addition, it would be nice to see the S3 connector be enhanced to support 
more authentication options such as:

- Use of AWS roles
- Use of AWS Security Token Service (AWS STS)
- Use of X.509 certs (IAM Roles Anywhere)

Whilst there will clearly still be many people out there only using Access Key 
+ Secret Key, environments with a hardened security posture need some extra 
knobs and dials.

Thanks

Laura___
Pdns-users mailing list
Pdns-users@mailman.powerdns.com
https://mailman.powerdns.com/mailman/listinfo/pdns-users


[Pdns-users] PowerDNS Authoritative Server 4.8.2

2023-09-07 Thread Peter van Dijk via Pdns-users
Hello!

This is the release of Authoritative Server 4.8.2.

In Authoritative Server 4.8, the LMDB backend gains a new Lightning
Stream-compatible schema, which requires a data migration (this is
automatic, and there is no migration back to the old schema). LMDB
backend users should pay extra attention to the [1]Upgrade Notes.

[2]Lightning Stream is an [3]open source data syncer that allows
multiple nodes to sync LMDB (Lightning Memory-Mapped Database) data to
and from an S3 (compatible) bucket. This has particular advantages in
distributed and/or large-scale applications (i.e. ~1 million records),
making DNS replication much, much easier to manage.

We are excited about how Lightning Stream simplifies running multiple
distributed PowerDNS Authoritative servers, with full support for
keeping record data and DNSSEC keys in sync, from multiple writers.

Release 4.8.2 contains a small collection of fixes and improvements. A full 
list of changes can be found in the [4]changelog.

Please make sure to read the [5]Upgrade Notes before upgrading.

The [6]tarball ([7]signature) is available
at [8]downloads.powerdns.com. Packages for various distributions are
available from [9]repo.powerdns.com.

Please send us all feedback and issues you might have via
the [10]mailing list, or in case of a bug, via [11]GitHub.

References

   1. https://doc.powerdns.com/authoritative/upgrading.html
   2. https://doc.powerdns.com/lightningstream
   3. https://github.com/PowerDNS/lightningstream
   4.
https://doc.powerdns.com/authoritative/changelog/4.8.html#change-4.8.2
   5. https://doc.powerdns.com/authoritative/upgrading.html
   6. https://downloads.powerdns.com/releases/pdns-4.8.2.tar.bz2
   7.
https://downloads.powerdns.com/releases/pdns-4.8.2.tar.bz2.sig
   8. https://downloads.powerdns.com/releases/
   9. https://repo.powerdns.com/
  10. https://mailman.powerdns.com/mailman/listinfo/pdns-users
  11. https://github.com/PowerDNS/pdns/issues/new/choose

Kind regards,
-- 
Peter van Dijk
PowerDNS.com B.V. - https://www.powerdns.com/


signature.asc
Description: This is a digitally signed message part
___
Pdns-users mailing list
Pdns-users@mailman.powerdns.com
https://mailman.powerdns.com/mailman/listinfo/pdns-users