Updated all nameservers (updated named.conf for the new named version).
authorZoltán Felleg <zoltan.felleg@userrendszerhaz.hu>
Wed, 2 Jun 2021 13:32:20 +0000 (15:32 +0200)
committerZoltán Felleg <zoltan.felleg@userrendszerhaz.hu>
Wed, 2 Jun 2021 13:32:20 +0000 (15:32 +0200)
sources/ens.pm/postinstall/install/etc/named.conf
sources/ins.in/postinstall/install/etc/named.conf
sources/pns.in/postinstall/install/etc/named.conf
sources/pns.pm/postinstall/install/etc/named.conf
sources/svc.in/postinstall/install/etc/named.conf

index e16912bc0f36da595a71df17e927f3cbe6de15f5..2e3b73dad795bc54b60fb7b03aab13e351830c47 100644 (file)
@@ -7,20 +7,26 @@ options {
        dump-file               "data/cache_dump.db";
        statistics-file         "data/named_stats.txt";
        memstatistics-file      "data/named_mem_stats.txt";
+       secroots-file           "data/named.secroots";
+       recursing-file          "data/named.recursing";
 
-       listen-on       port 53 { any; };
-       listen-on-v6    port 53 { any; };
+       listen-on port 53       { any; };
+       listen-on-v6 port 53    { any; };
 
        allow-query             { none; };
        allow-query-cache       { none; };
        allow-recursion         { none; };
 
-       recursion       no;
-
-       dnssec-enable           yes;
-       dnssec-validation       auto;
+       dnssec-validation       yes;
 
        random-device           "/dev/urandom";
+
+       max-cache-size          64m;
+
+       managed-keys-directory  "/var/named/dynamic";
+       geoip-directory         "/usr/share/GeoIP";
+
+       include                 "/etc/crypto-policies/back-ends/bind.config";
 };
 
 logging {
index 43f65bf04155e4d3510f2686c7114ad68f6bd1b3..f188cd3b82b6375c0bbb399c215836222fc25d06 100644 (file)
@@ -7,18 +7,26 @@ options {
        dump-file               "data/cache_dump.db";
        statistics-file         "data/named_stats.txt";
        memstatistics-file      "data/named_mem_stats.txt";
+       secroots-file           "data/named.secroots";
+       recursing-file          "data/named.recursing";
 
-       listen-on       port 53 { any; };
-       listen-on-v6    port 53 { any; };
+       listen-on port 53       { any; };
+       listen-on-v6 port 53    { any; };
 
        allow-query             { none; };
        allow-query-cache       { none; };
        allow-recursion         { none; };
 
-       recursion       no;
+       dnssec-validation       yes;
 
-       dnssec-enable           yes;
-       dnssec-validation       no;
+       random-device           "/dev/urandom";
+
+       max-cache-size          64m;
+
+       managed-keys-directory  "/var/named/dynamic";
+       geoip-directory         "/usr/share/GeoIP";
+
+       include                 "/etc/crypto-policies/back-ends/bind.config";
 };
 
 logging {
index db7282c681148f41d2f0178ecb981d1dc99c5b34..2383522694d25257aac5d25ba52f20c0c64eb467 100644 (file)
@@ -7,18 +7,26 @@ options {
        dump-file               "data/cache_dump.db";
        statistics-file         "data/named_stats.txt";
        memstatistics-file      "data/named_mem_stats.txt";
+       secroots-file           "data/named.secroots";
+       recursing-file          "data/named.recursing";
 
-       listen-on       port 53 { any; };
-       listen-on-v6    port 53 { any; };
+       listen-on port 53       { any; };
+       listen-on-v6 port 53    { any; };
 
        allow-query             { none; };
        allow-query-cache       { none; };
        allow-recursion         { none; };
 
-       recursion       no;
+       dnssec-validation       yes;
 
-       dnssec-enable           yes;
-       dnssec-validation       no;
+       random-device           "/dev/urandom";
+
+       max-cache-size          64m;
+
+       managed-keys-directory  "/var/named/dynamic";
+       geoip-directory         "/usr/share/GeoIP";
+
+       include                 "/etc/crypto-policies/back-ends/bind.config";
 };
 
 logging {
index 435775365eb39373263d0744c4dc7574a4613fb9..1d34f044d307d0e2cd9f1bcb5a4189abdbf39555 100644 (file)
@@ -7,18 +7,26 @@ options {
        dump-file               "data/cache_dump.db";
        statistics-file         "data/named_stats.txt";
        memstatistics-file      "data/named_mem_stats.txt";
+       secroots-file           "data/named.secroots";
+       recursing-file          "data/named.recursing";
 
-       listen-on       port 53 { any; };
-       listen-on-v6    port 53 { any; };
+       listen-on port 53       { any; };
+       listen-on-v6 port 53    { any; };
 
        allow-query             { none; };
        allow-query-cache       { none; };
        allow-recursion         { none; };
 
-       recursion               no;
+       dnssec-validation       yes;
 
-       dnssec-enable           yes;
-       dnssec-validation       no;
+       random-device           "/dev/urandom";
+
+       max-cache-size          64m;
+
+       managed-keys-directory  "/var/named/dynamic";
+       geoip-directory         "/usr/share/GeoIP";
+
+       include                 "/etc/crypto-policies/back-ends/bind.config";
 };
 
 logging {
index 43f65bf04155e4d3510f2686c7114ad68f6bd1b3..f188cd3b82b6375c0bbb399c215836222fc25d06 100644 (file)
@@ -7,18 +7,26 @@ options {
        dump-file               "data/cache_dump.db";
        statistics-file         "data/named_stats.txt";
        memstatistics-file      "data/named_mem_stats.txt";
+       secroots-file           "data/named.secroots";
+       recursing-file          "data/named.recursing";
 
-       listen-on       port 53 { any; };
-       listen-on-v6    port 53 { any; };
+       listen-on port 53       { any; };
+       listen-on-v6 port 53    { any; };
 
        allow-query             { none; };
        allow-query-cache       { none; };
        allow-recursion         { none; };
 
-       recursion       no;
+       dnssec-validation       yes;
 
-       dnssec-enable           yes;
-       dnssec-validation       no;
+       random-device           "/dev/urandom";
+
+       max-cache-size          64m;
+
+       managed-keys-directory  "/var/named/dynamic";
+       geoip-directory         "/usr/share/GeoIP";
+
+       include                 "/etc/crypto-policies/back-ends/bind.config";
 };
 
 logging {