diff --git a/doc/misc/options b/doc/misc/options index 99fb00934a..1f7bc3604c 100644 --- a/doc/misc/options +++ b/doc/misc/options @@ -2,30 +2,35 @@ This is a summary of the named.conf options supported by this version of BIND 9. -acl { ; ... }; +acl { ; ... }; // may occur multiple times controls { - inet ( | | * ) [ port ( | * - ) ] allow { ; ... } [ keys { ; - ... } ] [ read-only ]; - unix perm owner group - [ keys { ; ... } ] [ read-only ]; -}; + inet ( | | + * ) [ port ( | * ) ] allow + { ; ... } [ + keys { ; ... } ] [ read-only + ]; // may occur multiple times + unix perm + owner group [ + keys { ; ... } ] [ read-only + ]; // may occur multiple times +}; // may occur multiple times dlz { database ; search ; -}; +}; // may occur multiple times -dyndb { }; +dyndb { + }; // may occur multiple times key { algorithm ; secret ; -}; +}; // may occur multiple times logging { - category { ; ... }; + category { ; ... }; // may occur multiple times channel { buffered ; file [ versions ( "unlimited" | ) @@ -37,7 +42,7 @@ logging { severity ; stderr; syslog [ ]; - }; + }; // may occur multiple times }; lwres { @@ -48,14 +53,15 @@ lwres { ndots ; search { ; ... }; view [ ]; -}; +}; // may occur multiple times -managed-keys { - ; ... }; +managed-keys { + ; ... }; // may occur multiple times -masters [ port ] [ dscp ] { ( | - [ port ] | [ port ] ) - [ key ]; ... }; +masters [ port ] [ dscp + ] { ( | [ + port ] | [ port + ] ) [ key ]; ... }; // may occur multiple times options { acache-cleaning-interval ; @@ -99,7 +105,8 @@ options { check-integrity ; check-mx ( fail | warn | ignore ); check-mx-cname ( fail | warn | ignore ); - check-names ( master | slave | response ) ( fail | warn | ignore ); + check-names ( master | slave | response + ) ( fail | warn | ignore ); // may occur multiple times check-sibling ; check-spf ( warn | ignore ); check-srv-cname ( fail | warn | ignore ); @@ -117,9 +124,11 @@ options { ; ... } ]; dialup ( notify | notify-passive | refresh | passive | ); directory ; - disable-algorithms { ; ... }; - disable-ds-digests { ; ... }; - disable-empty-zone ; + disable-algorithms { ; + ... }; // may occur multiple times + disable-ds-digests { ; + ... }; // may occur multiple times + disable-empty-zone ; // may occur multiple times dns64 { break-dnssec ; clients { ; ... }; @@ -127,15 +136,16 @@ options { mapped { ; ... }; recursive-only ; suffix ; - }; + }; // may occur multiple times dns64-contact ; dns64-server ; dnssec-accept-expired ; dnssec-dnskey-kskonly ; dnssec-enable ; dnssec-loadkeys-interval ; - dnssec-lookaside ( trust-anchor | auto | no ); - dnssec-must-be-secure ; + dnssec-lookaside ( trust-anchor + | auto | no ); // may occur multiple times + dnssec-must-be-secure ; // may occur multiple times dnssec-secure-to-insecure ; dnssec-update-mode ( maintain | no-resign ); dnssec-validation ( yes | no | auto ); @@ -188,10 +198,12 @@ options { keep-response-order { ; ... }; key-directory ; lame-ttl ; - listen-on [ port ] [ dscp ] { - ; ... }; - listen-on-v6 [ port ] [ dscp ] { - ; ... }; + listen-on [ port ] [ dscp + ] { + ; ... }; // may occur multiple times + listen-on-v6 [ port ] [ dscp + ] { + ; ... }; // may occur multiple times lock-file ( | none ); maintain-ixfr-base ; // obsolete managed-keys-directory ; @@ -329,7 +341,7 @@ options { transfers-out ; transfers-per-ns ; treat-cr-as-space ; // obsolete - trust-anchor-telemetry ; + trust-anchor-telemetry ; // experimental try-tcp-refresh ; update-check-ksk ; use-alt-transfer-source ; @@ -372,14 +384,17 @@ server { transfer-source-v6 ( | * ) [ port ( | * ) ] [ dscp ]; transfers ; -}; +}; // may occur multiple times statistics-channels { - inet ( | | * ) [ port ( | * - ) ] [ allow { ; ... } ]; -}; + inet ( | | + * ) [ port ( | * ) ] [ + allow { ; ... + } ]; // may occur multiple times +}; // may occur multiple times -trusted-keys { ; ... }; +trusted-keys { + ; ... }; // may occur multiple times view [ ] { acache-cleaning-interval ; @@ -418,7 +433,8 @@ view [ ] { check-integrity ; check-mx ( fail | warn | ignore ); check-mx-cname ( fail | warn | ignore ); - check-names ( master | slave | response ) ( fail | warn | ignore ); + check-names ( master | slave | response + ) ( fail | warn | ignore ); // may occur multiple times check-sibling ; check-spf ( warn | ignore ); check-srv-cname ( fail | warn | ignore ); @@ -430,13 +446,15 @@ view [ ] { deny-answer-aliases { ; ... } [ except-from { ; ... } ]; dialup ( notify | notify-passive | refresh | passive | ); - disable-algorithms { ; ... }; - disable-ds-digests { ; ... }; - disable-empty-zone ; + disable-algorithms { ; + ... }; // may occur multiple times + disable-ds-digests { ; + ... }; // may occur multiple times + disable-empty-zone ; // may occur multiple times dlz { database ; search ; - }; + }; // may occur multiple times dns64 { break-dnssec ; clients { ; ... }; @@ -444,15 +462,16 @@ view [ ] { mapped { ; ... }; recursive-only ; suffix ; - }; + }; // may occur multiple times dns64-contact ; dns64-server ; dnssec-accept-expired ; dnssec-dnskey-kskonly ; dnssec-enable ; dnssec-loadkeys-interval ; - dnssec-lookaside ( trust-anchor | auto | no ); - dnssec-must-be-secure ; + dnssec-lookaside ( trust-anchor + | auto | no ); // may occur multiple times + dnssec-must-be-secure ; // may occur multiple times dnssec-secure-to-insecure ; dnssec-update-mode ( maintain | no-resign ); dnssec-validation ( yes | no | auto ); @@ -462,7 +481,8 @@ view [ ] { ] [ dscp ] | [ port ] [ dscp ] | [ port ] [ dscp ] ); ... }; - dyndb { }; + dyndb { + }; // may occur multiple times edns-udp-size ; empty-contact ; empty-server ; @@ -482,12 +502,13 @@ view [ ] { key { algorithm ; secret ; - }; + }; // may occur multiple times key-directory ; lame-ttl ; maintain-ixfr-base ; // obsolete - managed-keys { - ; ... }; + managed-keys { + + ; ... }; // may occur multiple times masterfile-format ( text | raw | map ); masterfile-style ( full | relative ); match-clients { ; ... }; @@ -602,7 +623,7 @@ view [ ] { transfer-source-v6 ( | * ) [ port ( | * ) ] [ dscp ]; transfers ; - }; + }; // may occur multiple times servfail-ttl ; sig-signing-nodes ; sig-signing-signatures ; @@ -616,9 +637,10 @@ view [ ] { dscp ]; transfer-source-v6 ( | * ) [ port ( | * ) ] [ dscp ]; - trust-anchor-telemetry ; - trusted-keys { - ; ... }; + trust-anchor-telemetry ; // experimental + trusted-keys { + ; + ... }; // may occur multiple times try-tcp-refresh ; update-check-ksk ; use-alt-transfer-source ; @@ -699,8 +721,10 @@ view [ ] { | * ) ] [ dscp ]; notify-to-soa ; nsec3-test-zone ; // test only - pubkey - ; // obsolete + pubkey + + + ; // obsolete, may occur multiple times request-expire ; request-ixfr ; serial-update-method ( increment | unixtime | date ); @@ -727,9 +751,9 @@ view [ ] { use-alt-transfer-source ; zero-no-soa-ttl ; zone-statistics ( full | terse | none | ); - }; + }; // may occur multiple times zone-statistics ( full | terse | none | ); -}; +}; // may occur multiple times zone [ ] { allow-notify { ; ... }; @@ -800,7 +824,8 @@ zone [ ] { [ dscp ]; notify-to-soa ; nsec3-test-zone ; // test only - pubkey ; // obsolete + pubkey + ; // obsolete, may occur multiple times request-expire ; request-ixfr ; serial-update-method ( increment | unixtime | date ); @@ -826,5 +851,5 @@ zone [ ] { use-alt-transfer-source ; zero-no-soa-ttl ; zone-statistics ( full | terse | none | ); -}; +}; // may occur multiple times