Bind Notes

From Federal Burro of Information
Jump to navigationJump to search

config file snippets

sample 1

options {
        listen-on port 53 { any; };
        //listen-on-v6 port 53 { ::1; };
        directory       "/var/named";
        dump-file       "/var/named/data/cache_dump.db";
        statistics-file "/var/named/data/named_stats.txt";
        memstatistics-file "/var/named/data/named_mem_stats.txt";
        allow-query     { localhost; 10.0.0.0/8; };
        allow-recursion    { localhost; 10.0.0.0/8; };
        recursion yes;
        forward only;
        forwarders {
                x.x.x.x;
                y.y.y.y;
        };


//              dnssec-enable yes;
//      dnssec-validation yes;
//      dnssec-lookaside auto;

        /* Path to ISC DLV key */
//      bindkeys-file "/etc/named.iscdlv.key";

//      managed-keys-directory "/var/named/dynamic";
};

Sample 2 - Logging

logging
{
        channel mydefaultlog {
                file "/var/log/named/named.log" versions 2 size 100m;
                print-time yes;
                print-category yes;
                print-severity yes;
                severity info;
        };

        channel mysecuritylog {
                file "/var/log/named/security.log" versions 2 size 100m;
                print-time yes;
                print-category yes;
                print-severity yes;
                severity info;
        };

        channel myquerylog {
                file "/var/log/named/query.log" versions 2 size 100m;
                print-time yes;
                print-category yes;
                print-severity yes;
                severity info;
        };

        channel default_debug {
                file "/var/log/named/debug.log" versions 2 size 100m;
                //print-time yes;
                //print-category yes;
                //print-severity yes;
                severity dynamic;
        };

        //category client               { default_debug; };
        category default        { mydefaultlog; };
        category general        { mydefaultlog; };
        category security       { mysecuritylog; };
        // For debugging only please - dthornton
        // category queries     { myquerylog; };
        category queries        { null; };
        category lame-servers   { null; };
};