19
0
Fork 0

Improving configuration example

This commit is contained in:
Tristan PILAT 2018-07-25 17:46:56 +02:00
parent 8b04aec8fa
commit 8033450539
1 changed files with 24 additions and 16 deletions

View File

@ -76,14 +76,14 @@ Voici le fichier `nsd.conf` sur le serveur avec l'adresse IP 192.0.2.53 (master)
~~~
~~~
server:
server-count: 1 # use this number of cpu cores
database: "" # or use ""
zonelistfile: "/var/nsd/db/zone.list"
username: _nsd
server:
hide-version: yes
verbosity: 1
database: "" # disable database
logfile: "/var/log/nsd.log"
pidfile: "/var/nsd/run/nsd.pid"
xfrdfile: "/var/nsd/run/xfrd.state"
zonelistfile: "/var/nsd/db/zone.list"
## bind to a specific address/port
ip-address: 192.0.2.53
@ -97,12 +97,16 @@ key:
algorithm: hmac-sha256
secret: "rMZVA3oOLyrk9Xn+aKe19aCqOf3xYv9kVw8M3crGkFE="
pattern:
name: "talktoslave"
notify: 192.0.2.54 key
provide-xfr: 192.0.2.54 key
## master zone example.com
zone:
name: "example.com"
zonefile: "master/db.example.com"
notify: 192.0.2.54 key.example.com.
provide-xfr: 192.0.2.54 key.example.com.
zonefile: "/master/db.example.com"
include-pattern: "talktoslave"
~~~
Sur le serveur master on devra également définir la zone :
@ -169,14 +173,14 @@ Et voici le fichier `nsd.conf` sur le serveur avec l'adresse IP 192.0.2.54 (slav
~~~
~~~
server:
server-count: 1 # use this number of cpu cores
database: "" # or use ""
zonelistfile: "/var/nsd/db/zone.list"
username: _nsd
server:
hide-version: yes
verbosity: 1
database: "" # disable database
logfile: "/var/log/nsd.log"
pidfile: "/var/nsd/run/nsd.pid"
pidfile: "/var/nsd/run/nsd.pid"
xfrdfile: "/var/nsd/run/xfrd.state"
zonelistfile: "/var/nsd/db/zone.list"
## bind to a specific address/port
ip-address: 192.0.2.54
@ -189,13 +193,17 @@ key:
name: "key.example.com."
algorithm: hmac-sha256
secret: "rMZVA3oOLyrk9Xn+aKe19aCqOf3xYv9kVw8M3crGkFE="
pattern:
name: "listentomaster"
allow-notify: 192.0.2.53 key.example.com.
request-xfr: AXFR 192.0.2.53 key.example.com.
## master zone example.com
zone:
name: "example.com"
zonefile: "slave/db.example.com"
allow-notify: 192.0.2.53 key.example.com.
request-xfr: AXFR 192.0.2.53 key.example.com.
include-pattern: "listentomaster"
~~~
On vérifie la configration :