mirror of
https://gitlab.isc.org/isc-projects/bind9
synced 2025-08-30 14:07:59 +00:00
regen
This commit is contained in:
@@ -13,7 +13,7 @@
|
|||||||
.\" OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
.\" OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
.\" PERFORMANCE OF THIS SOFTWARE.
|
.\" PERFORMANCE OF THIS SOFTWARE.
|
||||||
.\"
|
.\"
|
||||||
.\" $Id: named-checkconf.8,v 1.27 2007/01/30 00:24:59 marka Exp $
|
.\" $Id: named-checkconf.8,v 1.28 2007/05/09 03:33:50 marka Exp $
|
||||||
.\"
|
.\"
|
||||||
.hy 0
|
.hy 0
|
||||||
.ad l
|
.ad l
|
||||||
@@ -42,7 +42,7 @@ checks the syntax, but not the semantics, of a named configuration file.
|
|||||||
.PP
|
.PP
|
||||||
\-t \fIdirectory\fR
|
\-t \fIdirectory\fR
|
||||||
.RS 4
|
.RS 4
|
||||||
chroot to
|
Chroot to
|
||||||
\fIdirectory\fR
|
\fIdirectory\fR
|
||||||
so that include directives in the configuration file are processed as if run by a similarly chrooted named.
|
so that include directives in the configuration file are processed as if run by a similarly chrooted named.
|
||||||
.RE
|
.RE
|
||||||
@@ -56,7 +56,7 @@ program and exit.
|
|||||||
.PP
|
.PP
|
||||||
\-z
|
\-z
|
||||||
.RS 4
|
.RS 4
|
||||||
Perform a check load the master zonefiles found in
|
Perform a test load of all master zones found in
|
||||||
\fInamed.conf\fR.
|
\fInamed.conf\fR.
|
||||||
.RE
|
.RE
|
||||||
.PP
|
.PP
|
||||||
|
@@ -14,7 +14,7 @@
|
|||||||
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
- PERFORMANCE OF THIS SOFTWARE.
|
- PERFORMANCE OF THIS SOFTWARE.
|
||||||
-->
|
-->
|
||||||
<!-- $Id: named-checkconf.html,v 1.27 2007/01/30 00:24:59 marka Exp $ -->
|
<!-- $Id: named-checkconf.html,v 1.28 2007/05/09 03:33:50 marka Exp $ -->
|
||||||
<html>
|
<html>
|
||||||
<head>
|
<head>
|
||||||
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
||||||
@@ -43,7 +43,7 @@
|
|||||||
<div class="variablelist"><dl>
|
<div class="variablelist"><dl>
|
||||||
<dt><span class="term">-t <em class="replaceable"><code>directory</code></em></span></dt>
|
<dt><span class="term">-t <em class="replaceable"><code>directory</code></em></span></dt>
|
||||||
<dd><p>
|
<dd><p>
|
||||||
chroot to <code class="filename">directory</code> so that
|
Chroot to <code class="filename">directory</code> so that
|
||||||
include
|
include
|
||||||
directives in the configuration file are processed as if
|
directives in the configuration file are processed as if
|
||||||
run by a similarly chrooted named.
|
run by a similarly chrooted named.
|
||||||
@@ -55,8 +55,8 @@
|
|||||||
</p></dd>
|
</p></dd>
|
||||||
<dt><span class="term">-z</span></dt>
|
<dt><span class="term">-z</span></dt>
|
||||||
<dd><p>
|
<dd><p>
|
||||||
Perform a check load the master zonefiles found in
|
Perform a test load of all master zones found in
|
||||||
<code class="filename">named.conf</code>.
|
<code class="filename">named.conf</code>.
|
||||||
</p></dd>
|
</p></dd>
|
||||||
<dt><span class="term">-j</span></dt>
|
<dt><span class="term">-j</span></dt>
|
||||||
<dd><p>
|
<dd><p>
|
||||||
@@ -70,20 +70,20 @@
|
|||||||
</dl></div>
|
</dl></div>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2543488"></a><h2>RETURN VALUES</h2>
|
<a name="id2543489"></a><h2>RETURN VALUES</h2>
|
||||||
<p><span><strong class="command">named-checkconf</strong></span>
|
<p><span><strong class="command">named-checkconf</strong></span>
|
||||||
returns an exit status of 1 if
|
returns an exit status of 1 if
|
||||||
errors were detected and 0 otherwise.
|
errors were detected and 0 otherwise.
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2543499"></a><h2>SEE ALSO</h2>
|
<a name="id2543500"></a><h2>SEE ALSO</h2>
|
||||||
<p><span class="citerefentry"><span class="refentrytitle">named</span>(8)</span>,
|
<p><span class="citerefentry"><span class="refentrytitle">named</span>(8)</span>,
|
||||||
<em class="citetitle">BIND 9 Administrator Reference Manual</em>.
|
<em class="citetitle">BIND 9 Administrator Reference Manual</em>.
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2543521"></a><h2>AUTHOR</h2>
|
<a name="id2543522"></a><h2>AUTHOR</h2>
|
||||||
<p><span class="corpauthor">Internet Systems Consortium</span>
|
<p><span class="corpauthor">Internet Systems Consortium</span>
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
|
@@ -13,7 +13,7 @@
|
|||||||
.\" OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
.\" OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
.\" PERFORMANCE OF THIS SOFTWARE.
|
.\" PERFORMANCE OF THIS SOFTWARE.
|
||||||
.\"
|
.\"
|
||||||
.\" $Id: named-checkzone.8,v 1.38 2007/01/30 00:24:59 marka Exp $
|
.\" $Id: named-checkzone.8,v 1.39 2007/05/09 03:33:50 marka Exp $
|
||||||
.\"
|
.\"
|
||||||
.hy 0
|
.hy 0
|
||||||
.ad l
|
.ad l
|
||||||
@@ -82,7 +82,7 @@ Specify the class of the zone. If not specified "IN" is assumed.
|
|||||||
.PP
|
.PP
|
||||||
\-i \fImode\fR
|
\-i \fImode\fR
|
||||||
.RS 4
|
.RS 4
|
||||||
Perform post load zone integrity checks. Possible modes are
|
Perform post\-load zone integrity checks. Possible modes are
|
||||||
\fB"full"\fR
|
\fB"full"\fR
|
||||||
(default),
|
(default),
|
||||||
\fB"full\-sibling"\fR,
|
\fB"full\-sibling"\fR,
|
||||||
@@ -105,7 +105,7 @@ only checks SRV records which refer to in\-zone hostnames.
|
|||||||
.sp
|
.sp
|
||||||
Mode
|
Mode
|
||||||
\fB"full"\fR
|
\fB"full"\fR
|
||||||
checks that delegation NS records refer to A or AAAA record (both in\-zone and out\-of\-zone hostnames). It also checks that glue addresses records in the zone match those advertised by the child. Mode
|
checks that delegation NS records refer to A or AAAA record (both in\-zone and out\-of\-zone hostnames). It also checks that glue address records in the zone match those advertised by the child. Mode
|
||||||
\fB"local"\fR
|
\fB"local"\fR
|
||||||
only checks NS records which refer to in\-zone hostnames or that some required glue exists, that is when the nameserver is in a child zone.
|
only checks NS records which refer to in\-zone hostnames or that some required glue exists, that is when the nameserver is in a child zone.
|
||||||
.sp
|
.sp
|
||||||
@@ -213,7 +213,7 @@ Check if a SRV record refers to a CNAME. Possible modes are
|
|||||||
.PP
|
.PP
|
||||||
\-t \fIdirectory\fR
|
\-t \fIdirectory\fR
|
||||||
.RS 4
|
.RS 4
|
||||||
chroot to
|
Chroot to
|
||||||
\fIdirectory\fR
|
\fIdirectory\fR
|
||||||
so that include directives in the configuration file are processed as if run by a similarly chrooted named.
|
so that include directives in the configuration file are processed as if run by a similarly chrooted named.
|
||||||
.RE
|
.RE
|
||||||
|
@@ -14,7 +14,7 @@
|
|||||||
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
- PERFORMANCE OF THIS SOFTWARE.
|
- PERFORMANCE OF THIS SOFTWARE.
|
||||||
-->
|
-->
|
||||||
<!-- $Id: named-checkzone.html,v 1.38 2007/01/30 00:24:59 marka Exp $ -->
|
<!-- $Id: named-checkzone.html,v 1.39 2007/05/09 03:33:50 marka Exp $ -->
|
||||||
<html>
|
<html>
|
||||||
<head>
|
<head>
|
||||||
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
||||||
@@ -79,7 +79,7 @@
|
|||||||
<dt><span class="term">-i <em class="replaceable"><code>mode</code></em></span></dt>
|
<dt><span class="term">-i <em class="replaceable"><code>mode</code></em></span></dt>
|
||||||
<dd>
|
<dd>
|
||||||
<p>
|
<p>
|
||||||
Perform post load zone integrity checks. Possible modes are
|
Perform post-load zone integrity checks. Possible modes are
|
||||||
<span><strong class="command">"full"</strong></span> (default),
|
<span><strong class="command">"full"</strong></span> (default),
|
||||||
<span><strong class="command">"full-sibling"</strong></span>,
|
<span><strong class="command">"full-sibling"</strong></span>,
|
||||||
<span><strong class="command">"local"</strong></span>,
|
<span><strong class="command">"local"</strong></span>,
|
||||||
@@ -101,7 +101,7 @@
|
|||||||
<p>
|
<p>
|
||||||
Mode <span><strong class="command">"full"</strong></span> checks that delegation NS
|
Mode <span><strong class="command">"full"</strong></span> checks that delegation NS
|
||||||
records refer to A or AAAA record (both in-zone and out-of-zone
|
records refer to A or AAAA record (both in-zone and out-of-zone
|
||||||
hostnames). It also checks that glue addresses records
|
hostnames). It also checks that glue address records
|
||||||
in the zone match those advertised by the child.
|
in the zone match those advertised by the child.
|
||||||
Mode <span><strong class="command">"local"</strong></span> only checks NS records which
|
Mode <span><strong class="command">"local"</strong></span> only checks NS records which
|
||||||
refer to in-zone hostnames or that some required glue exists,
|
refer to in-zone hostnames or that some required glue exists,
|
||||||
@@ -195,7 +195,7 @@
|
|||||||
</p></dd>
|
</p></dd>
|
||||||
<dt><span class="term">-t <em class="replaceable"><code>directory</code></em></span></dt>
|
<dt><span class="term">-t <em class="replaceable"><code>directory</code></em></span></dt>
|
||||||
<dd><p>
|
<dd><p>
|
||||||
chroot to <code class="filename">directory</code> so that
|
Chroot to <code class="filename">directory</code> so that
|
||||||
include
|
include
|
||||||
directives in the configuration file are processed as if
|
directives in the configuration file are processed as if
|
||||||
run by a similarly chrooted named.
|
run by a similarly chrooted named.
|
||||||
|
@@ -13,7 +13,7 @@
|
|||||||
.\" OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
.\" OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
.\" PERFORMANCE OF THIS SOFTWARE.
|
.\" PERFORMANCE OF THIS SOFTWARE.
|
||||||
.\"
|
.\"
|
||||||
.\" $Id: dig.1,v 1.42 2007/01/30 00:24:59 marka Exp $
|
.\" $Id: dig.1,v 1.43 2007/05/09 03:33:50 marka Exp $
|
||||||
.\"
|
.\"
|
||||||
.hy 0
|
.hy 0
|
||||||
.ad l
|
.ad l
|
||||||
@@ -50,7 +50,7 @@ Although
|
|||||||
\fBdig\fR
|
\fBdig\fR
|
||||||
is normally used with command\-line arguments, it also has a batch mode of operation for reading lookup requests from a file. A brief summary of its command\-line arguments and options is printed when the
|
is normally used with command\-line arguments, it also has a batch mode of operation for reading lookup requests from a file. A brief summary of its command\-line arguments and options is printed when the
|
||||||
\fB\-h\fR
|
\fB\-h\fR
|
||||||
option is given. Unlike earlier versions, the BIND9 implementation of
|
option is given. Unlike earlier versions, the BIND 9 implementation of
|
||||||
\fBdig\fR
|
\fBdig\fR
|
||||||
allows multiple lookups to be issued from the command line.
|
allows multiple lookups to be issued from the command line.
|
||||||
.PP
|
.PP
|
||||||
@@ -135,7 +135,7 @@ The
|
|||||||
option makes
|
option makes
|
||||||
\fBdig \fR
|
\fBdig \fR
|
||||||
operate in batch mode by reading a list of lookup requests to process from the file
|
operate in batch mode by reading a list of lookup requests to process from the file
|
||||||
\fIfilename\fR. The file contains a number of queries, one per line. Each entry in the file should be organised in the same way they would be presented as queries to
|
\fIfilename\fR. The file contains a number of queries, one per line. Each entry in the file should be organized in the same way they would be presented as queries to
|
||||||
\fBdig\fR
|
\fBdig\fR
|
||||||
using the command\-line interface.
|
using the command\-line interface.
|
||||||
.PP
|
.PP
|
||||||
@@ -160,7 +160,7 @@ to only use IPv6 query transport.
|
|||||||
The
|
The
|
||||||
\fB\-t\fR
|
\fB\-t\fR
|
||||||
option sets the query type to
|
option sets the query type to
|
||||||
\fItype\fR. It can be any valid query type which is supported in BIND9. The default query type "A", unless the
|
\fItype\fR. It can be any valid query type which is supported in BIND 9. The default query type "A", unless the
|
||||||
\fB\-x\fR
|
\fB\-x\fR
|
||||||
option is supplied to indicate a reverse lookup. A zone transfer can be requested by specifying a type of AXFR. When an incremental zone transfer (IXFR) is required,
|
option is supplied to indicate a reverse lookup. A zone transfer can be requested by specifying a type of AXFR. When an incremental zone transfer (IXFR) is required,
|
||||||
\fItype\fR
|
\fItype\fR
|
||||||
@@ -171,11 +171,11 @@ ixfr=N. The incremental zone transfer will contain the changes made to the zone
|
|||||||
The
|
The
|
||||||
\fB\-q\fR
|
\fB\-q\fR
|
||||||
option sets the query name to
|
option sets the query name to
|
||||||
\fIname\fR. This useful do distingish the
|
\fIname\fR. This useful do distinguish the
|
||||||
\fIname\fR
|
\fIname\fR
|
||||||
from other arguments.
|
from other arguments.
|
||||||
.PP
|
.PP
|
||||||
Reverse lookups \- mapping addresses to names \- are simplified by the
|
Reverse lookups \(em mapping addresses to names \(em are simplified by the
|
||||||
\fB\-x\fR
|
\fB\-x\fR
|
||||||
option.
|
option.
|
||||||
\fIaddr\fR
|
\fIaddr\fR
|
||||||
@@ -228,7 +228,7 @@ to negate the meaning of that keyword. Other keywords assign values to options l
|
|||||||
.PP
|
.PP
|
||||||
\fB+[no]tcp\fR
|
\fB+[no]tcp\fR
|
||||||
.RS 4
|
.RS 4
|
||||||
Use [do not use] TCP when querying name servers. The default behaviour is to use UDP unless an AXFR or IXFR query is requested, in which case a TCP connection is used.
|
Use [do not use] TCP when querying name servers. The default behavior is to use UDP unless an AXFR or IXFR query is requested, in which case a TCP connection is used.
|
||||||
.RE
|
.RE
|
||||||
.PP
|
.PP
|
||||||
\fB+[no]vc\fR
|
\fB+[no]vc\fR
|
||||||
@@ -354,7 +354,7 @@ Toggle the display of comment lines in the output. The default is to print comme
|
|||||||
.PP
|
.PP
|
||||||
\fB+[no]stats\fR
|
\fB+[no]stats\fR
|
||||||
.RS 4
|
.RS 4
|
||||||
This query option toggles the printing of statistics: when the query was made, the size of the reply and so on. The default behaviour is to print the query statistics.
|
This query option toggles the printing of statistics: when the query was made, the size of the reply and so on. The default behavior is to print the query statistics.
|
||||||
.RE
|
.RE
|
||||||
.PP
|
.PP
|
||||||
\fB+[no]qr\fR
|
\fB+[no]qr\fR
|
||||||
@@ -391,7 +391,7 @@ Set or clear all display flags.
|
|||||||
.RS 4
|
.RS 4
|
||||||
Sets the timeout for a query to
|
Sets the timeout for a query to
|
||||||
\fIT\fR
|
\fIT\fR
|
||||||
seconds. The default time out is 5 seconds. An attempt to set
|
seconds. The default timeout is 5 seconds. An attempt to set
|
||||||
\fIT\fR
|
\fIT\fR
|
||||||
to less than 1 will result in a query timeout of 1 second being applied.
|
to less than 1 will result in a query timeout of 1 second being applied.
|
||||||
.RE
|
.RE
|
||||||
@@ -451,7 +451,7 @@ output.
|
|||||||
.PP
|
.PP
|
||||||
\fB+[no]fail\fR
|
\fB+[no]fail\fR
|
||||||
.RS 4
|
.RS 4
|
||||||
Do not try the next server if you receive a SERVFAIL. The default is to not try the next server which is the reverse of normal stub resolver behaviour.
|
Do not try the next server if you receive a SERVFAIL. The default is to not try the next server which is the reverse of normal stub resolver behavior.
|
||||||
.RE
|
.RE
|
||||||
.PP
|
.PP
|
||||||
\fB+[no]besteffort\fR
|
\fB+[no]besteffort\fR
|
||||||
@@ -487,7 +487,7 @@ Requires dig be compiled with \-DDIG_SIGCHASE.
|
|||||||
.PP
|
.PP
|
||||||
\fB+[no]topdown\fR
|
\fB+[no]topdown\fR
|
||||||
.RS 4
|
.RS 4
|
||||||
When chasing DNSSEC signature chains perform a top down validation. Requires dig be compiled with \-DDIG_SIGCHASE.
|
When chasing DNSSEC signature chains perform a top\-down validation. Requires dig be compiled with \-DDIG_SIGCHASE.
|
||||||
.RE
|
.RE
|
||||||
.SH "MULTIPLE QUERIES"
|
.SH "MULTIPLE QUERIES"
|
||||||
.PP
|
.PP
|
||||||
|
@@ -14,7 +14,7 @@
|
|||||||
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
- PERFORMANCE OF THIS SOFTWARE.
|
- PERFORMANCE OF THIS SOFTWARE.
|
||||||
-->
|
-->
|
||||||
<!-- $Id: dig.html,v 1.38 2007/01/30 00:24:59 marka Exp $ -->
|
<!-- $Id: dig.html,v 1.39 2007/05/09 03:33:50 marka Exp $ -->
|
||||||
<html>
|
<html>
|
||||||
<head>
|
<head>
|
||||||
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
||||||
@@ -50,7 +50,7 @@
|
|||||||
arguments, it also has a batch mode of operation for reading lookup
|
arguments, it also has a batch mode of operation for reading lookup
|
||||||
requests from a file. A brief summary of its command-line arguments
|
requests from a file. A brief summary of its command-line arguments
|
||||||
and options is printed when the <code class="option">-h</code> option is given.
|
and options is printed when the <code class="option">-h</code> option is given.
|
||||||
Unlike earlier versions, the BIND9 implementation of
|
Unlike earlier versions, the BIND 9 implementation of
|
||||||
<span><strong class="command">dig</strong></span> allows multiple lookups to be issued
|
<span><strong class="command">dig</strong></span> allows multiple lookups to be issued
|
||||||
from the
|
from the
|
||||||
command line.
|
command line.
|
||||||
@@ -147,7 +147,7 @@
|
|||||||
in batch mode by reading a list of lookup requests to process from the
|
in batch mode by reading a list of lookup requests to process from the
|
||||||
file <em class="parameter"><code>filename</code></em>. The file contains a
|
file <em class="parameter"><code>filename</code></em>. The file contains a
|
||||||
number of
|
number of
|
||||||
queries, one per line. Each entry in the file should be organised in
|
queries, one per line. Each entry in the file should be organized in
|
||||||
the same way they would be presented as queries to
|
the same way they would be presented as queries to
|
||||||
<span><strong class="command">dig</strong></span> using the command-line interface.
|
<span><strong class="command">dig</strong></span> using the command-line interface.
|
||||||
</p>
|
</p>
|
||||||
@@ -170,7 +170,7 @@
|
|||||||
The <code class="option">-t</code> option sets the query type to
|
The <code class="option">-t</code> option sets the query type to
|
||||||
<em class="parameter"><code>type</code></em>. It can be any valid query type
|
<em class="parameter"><code>type</code></em>. It can be any valid query type
|
||||||
which is
|
which is
|
||||||
supported in BIND9. The default query type "A", unless the
|
supported in BIND 9. The default query type "A", unless the
|
||||||
<code class="option">-x</code> option is supplied to indicate a reverse lookup.
|
<code class="option">-x</code> option is supplied to indicate a reverse lookup.
|
||||||
A zone transfer can be requested by specifying a type of AXFR. When
|
A zone transfer can be requested by specifying a type of AXFR. When
|
||||||
an incremental zone transfer (IXFR) is required,
|
an incremental zone transfer (IXFR) is required,
|
||||||
@@ -181,11 +181,11 @@
|
|||||||
</p>
|
</p>
|
||||||
<p>
|
<p>
|
||||||
The <code class="option">-q</code> option sets the query name to
|
The <code class="option">-q</code> option sets the query name to
|
||||||
<em class="parameter"><code>name</code></em>. This useful do distingish the
|
<em class="parameter"><code>name</code></em>. This useful do distinguish the
|
||||||
<em class="parameter"><code>name</code></em> from other arguments.
|
<em class="parameter"><code>name</code></em> from other arguments.
|
||||||
</p>
|
</p>
|
||||||
<p>
|
<p>
|
||||||
Reverse lookups - mapping addresses to names - are simplified by the
|
Reverse lookups — mapping addresses to names — are simplified by the
|
||||||
<code class="option">-x</code> option. <em class="parameter"><code>addr</code></em> is
|
<code class="option">-x</code> option. <em class="parameter"><code>addr</code></em> is
|
||||||
an IPv4
|
an IPv4
|
||||||
address in dotted-decimal notation, or a colon-delimited IPv6 address.
|
address in dotted-decimal notation, or a colon-delimited IPv6 address.
|
||||||
@@ -249,7 +249,7 @@
|
|||||||
<dt><span class="term"><code class="option">+[no]tcp</code></span></dt>
|
<dt><span class="term"><code class="option">+[no]tcp</code></span></dt>
|
||||||
<dd><p>
|
<dd><p>
|
||||||
Use [do not use] TCP when querying name servers. The default
|
Use [do not use] TCP when querying name servers. The default
|
||||||
behaviour is to use UDP unless an AXFR or IXFR query is
|
behavior is to use UDP unless an AXFR or IXFR query is
|
||||||
requested, in
|
requested, in
|
||||||
which case a TCP connection is used.
|
which case a TCP connection is used.
|
||||||
</p></dd>
|
</p></dd>
|
||||||
@@ -394,7 +394,7 @@
|
|||||||
This query option toggles the printing of statistics: when the
|
This query option toggles the printing of statistics: when the
|
||||||
query
|
query
|
||||||
was made, the size of the reply and so on. The default
|
was made, the size of the reply and so on. The default
|
||||||
behaviour is
|
behavior is
|
||||||
to print the query statistics.
|
to print the query statistics.
|
||||||
</p></dd>
|
</p></dd>
|
||||||
<dt><span class="term"><code class="option">+[no]qr</code></span></dt>
|
<dt><span class="term"><code class="option">+[no]qr</code></span></dt>
|
||||||
@@ -433,8 +433,8 @@
|
|||||||
<dd><p>
|
<dd><p>
|
||||||
|
|
||||||
Sets the timeout for a query to
|
Sets the timeout for a query to
|
||||||
<em class="parameter"><code>T</code></em> seconds. The default time
|
<em class="parameter"><code>T</code></em> seconds. The default
|
||||||
out is 5 seconds.
|
timeout is 5 seconds.
|
||||||
An attempt to set <em class="parameter"><code>T</code></em> to less
|
An attempt to set <em class="parameter"><code>T</code></em> to less
|
||||||
than 1 will result
|
than 1 will result
|
||||||
in a query timeout of 1 second being applied.
|
in a query timeout of 1 second being applied.
|
||||||
@@ -499,7 +499,7 @@
|
|||||||
default is
|
default is
|
||||||
to not try the next server which is the reverse of normal stub
|
to not try the next server which is the reverse of normal stub
|
||||||
resolver
|
resolver
|
||||||
behaviour.
|
behavior.
|
||||||
</p></dd>
|
</p></dd>
|
||||||
<dt><span class="term"><code class="option">+[no]besteffort</code></span></dt>
|
<dt><span class="term"><code class="option">+[no]besteffort</code></span></dt>
|
||||||
<dd><p>
|
<dd><p>
|
||||||
@@ -535,7 +535,7 @@
|
|||||||
</dd>
|
</dd>
|
||||||
<dt><span class="term"><code class="option">+[no]topdown</code></span></dt>
|
<dt><span class="term"><code class="option">+[no]topdown</code></span></dt>
|
||||||
<dd><p>
|
<dd><p>
|
||||||
When chasing DNSSEC signature chains perform a top down
|
When chasing DNSSEC signature chains perform a top-down
|
||||||
validation.
|
validation.
|
||||||
Requires dig be compiled with -DDIG_SIGCHASE.
|
Requires dig be compiled with -DDIG_SIGCHASE.
|
||||||
</p></dd>
|
</p></dd>
|
||||||
|
@@ -13,7 +13,7 @@
|
|||||||
.\" OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
.\" OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
.\" PERFORMANCE OF THIS SOFTWARE.
|
.\" PERFORMANCE OF THIS SOFTWARE.
|
||||||
.\"
|
.\"
|
||||||
.\" $Id: host.1,v 1.27 2007/01/30 00:24:59 marka Exp $
|
.\" $Id: host.1,v 1.28 2007/05/09 03:33:50 marka Exp $
|
||||||
.\"
|
.\"
|
||||||
.hy 0
|
.hy 0
|
||||||
.ad l
|
.ad l
|
||||||
@@ -130,7 +130,7 @@ makes. This should mean that the name server receiving the query will not attemp
|
|||||||
\fB\-r\fR
|
\fB\-r\fR
|
||||||
option enables
|
option enables
|
||||||
\fBhost\fR
|
\fBhost\fR
|
||||||
to mimic the behaviour of a name server by making non\-recursive queries and expecting to receive answers to those queries that are usually referrals to other name servers.
|
to mimic the behavior of a name server by making non\-recursive queries and expecting to receive answers to those queries that are usually referrals to other name servers.
|
||||||
.PP
|
.PP
|
||||||
By default
|
By default
|
||||||
\fBhost\fR
|
\fBhost\fR
|
||||||
@@ -152,7 +152,7 @@ The
|
|||||||
\fB\-t\fR
|
\fB\-t\fR
|
||||||
option is used to select the query type.
|
option is used to select the query type.
|
||||||
\fItype\fR
|
\fItype\fR
|
||||||
can be any recognised query type: CNAME, NS, SOA, SIG, KEY, AXFR, etc. When no query type is specified,
|
can be any recognized query type: CNAME, NS, SOA, SIG, KEY, AXFR, etc. When no query type is specified,
|
||||||
\fBhost\fR
|
\fBhost\fR
|
||||||
automatically selects an appropriate query type. By default it looks for A records, but if the
|
automatically selects an appropriate query type. By default it looks for A records, but if the
|
||||||
\fB\-C\fR
|
\fB\-C\fR
|
||||||
@@ -185,7 +185,7 @@ The
|
|||||||
option tells
|
option tells
|
||||||
\fBhost\fR
|
\fBhost\fR
|
||||||
\fInot\fR
|
\fInot\fR
|
||||||
to send the query to the next nameserver if any server responds with a SERVFAIL response, which is the reverse of normal stub resolver behaviour.
|
to send the query to the next nameserver if any server responds with a SERVFAIL response, which is the reverse of normal stub resolver behavior.
|
||||||
.PP
|
.PP
|
||||||
The
|
The
|
||||||
\fB\-m\fR
|
\fB\-m\fR
|
||||||
|
@@ -14,7 +14,7 @@
|
|||||||
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
- PERFORMANCE OF THIS SOFTWARE.
|
- PERFORMANCE OF THIS SOFTWARE.
|
||||||
-->
|
-->
|
||||||
<!-- $Id: host.html,v 1.26 2007/01/30 00:24:59 marka Exp $ -->
|
<!-- $Id: host.html,v 1.27 2007/05/09 03:33:50 marka Exp $ -->
|
||||||
<html>
|
<html>
|
||||||
<head>
|
<head>
|
||||||
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
||||||
@@ -125,7 +125,7 @@
|
|||||||
attempt to resolve <em class="parameter"><code>name</code></em>. The
|
attempt to resolve <em class="parameter"><code>name</code></em>. The
|
||||||
<code class="option">-r</code> option enables <span><strong class="command">host</strong></span>
|
<code class="option">-r</code> option enables <span><strong class="command">host</strong></span>
|
||||||
to mimic
|
to mimic
|
||||||
the behaviour of a name server by making non-recursive queries and
|
the behavior of a name server by making non-recursive queries and
|
||||||
expecting to receive answers to those queries that are usually
|
expecting to receive answers to those queries that are usually
|
||||||
referrals to other name servers.
|
referrals to other name servers.
|
||||||
</p>
|
</p>
|
||||||
@@ -143,7 +143,7 @@
|
|||||||
</p>
|
</p>
|
||||||
<p>
|
<p>
|
||||||
The <code class="option">-t</code> option is used to select the query type.
|
The <code class="option">-t</code> option is used to select the query type.
|
||||||
<em class="parameter"><code>type</code></em> can be any recognised query
|
<em class="parameter"><code>type</code></em> can be any recognized query
|
||||||
type: CNAME,
|
type: CNAME,
|
||||||
NS, SOA, SIG, KEY, AXFR, etc. When no query type is specified,
|
NS, SOA, SIG, KEY, AXFR, etc. When no query type is specified,
|
||||||
<span><strong class="command">host</strong></span> automatically selects an appropriate
|
<span><strong class="command">host</strong></span> automatically selects an appropriate
|
||||||
@@ -174,7 +174,7 @@
|
|||||||
The <code class="option">-s</code> option tells <span><strong class="command">host</strong></span>
|
The <code class="option">-s</code> option tells <span><strong class="command">host</strong></span>
|
||||||
<span class="emphasis"><em>not</em></span> to send the query to the next nameserver
|
<span class="emphasis"><em>not</em></span> to send the query to the next nameserver
|
||||||
if any server responds with a SERVFAIL response, which is the
|
if any server responds with a SERVFAIL response, which is the
|
||||||
reverse of normal stub resolver behaviour.
|
reverse of normal stub resolver behavior.
|
||||||
</p>
|
</p>
|
||||||
<p>
|
<p>
|
||||||
The <code class="option">-m</code> can be used to set the memory usage debugging
|
The <code class="option">-m</code> can be used to set the memory usage debugging
|
||||||
|
@@ -12,7 +12,7 @@
|
|||||||
.\" OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
.\" OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
.\" PERFORMANCE OF THIS SOFTWARE.
|
.\" PERFORMANCE OF THIS SOFTWARE.
|
||||||
.\"
|
.\"
|
||||||
.\" $Id: nslookup.1,v 1.12 2007/01/30 00:24:59 marka Exp $
|
.\" $Id: nslookup.1,v 1.13 2007/05/09 03:33:50 marka Exp $
|
||||||
.\"
|
.\"
|
||||||
.hy 0
|
.hy 0
|
||||||
.ad l
|
.ad l
|
||||||
@@ -158,7 +158,7 @@ The class specifies the protocol group of the information.
|
|||||||
.PP
|
.PP
|
||||||
\fB \fR\fB\fI[no]\fR\fR\fBdebug\fR
|
\fB \fR\fB\fI[no]\fR\fR\fBdebug\fR
|
||||||
.RS 4
|
.RS 4
|
||||||
Turn debugging mode on. A lot more information is printed about the packet sent to the server and the resulting answer.
|
Turn on or off the display of the full response packet and any intermediate response packets when searching.
|
||||||
.sp
|
.sp
|
||||||
(Default = nodebug; abbreviation =
|
(Default = nodebug; abbreviation =
|
||||||
[no]deb)
|
[no]deb)
|
||||||
@@ -166,7 +166,7 @@ Turn debugging mode on. A lot more information is printed about the packet sent
|
|||||||
.PP
|
.PP
|
||||||
\fB \fR\fB\fI[no]\fR\fR\fBd2\fR
|
\fB \fR\fB\fI[no]\fR\fR\fBd2\fR
|
||||||
.RS 4
|
.RS 4
|
||||||
Turn debugging mode on. A lot more information is printed about the packet sent to the server and the resulting answer.
|
Turn debugging mode on or off. This displays more about about what nslookup is doing.
|
||||||
.sp
|
.sp
|
||||||
(Default = nod2)
|
(Default = nod2)
|
||||||
.RE
|
.RE
|
||||||
|
@@ -13,7 +13,7 @@
|
|||||||
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
- PERFORMANCE OF THIS SOFTWARE.
|
- PERFORMANCE OF THIS SOFTWARE.
|
||||||
-->
|
-->
|
||||||
<!-- $Id: nslookup.html,v 1.19 2007/01/30 00:24:59 marka Exp $ -->
|
<!-- $Id: nslookup.html,v 1.20 2007/05/09 03:33:50 marka Exp $ -->
|
||||||
<html>
|
<html>
|
||||||
<head>
|
<head>
|
||||||
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
||||||
@@ -180,9 +180,8 @@ nslookup -query=hinfo -timeout=10
|
|||||||
<em class="replaceable"><code>[<span class="optional">no</span>]</code></em>debug</code></span></dt>
|
<em class="replaceable"><code>[<span class="optional">no</span>]</code></em>debug</code></span></dt>
|
||||||
<dd>
|
<dd>
|
||||||
<p>
|
<p>
|
||||||
Turn debugging mode on. A lot more information is
|
Turn on or off the display of the full response packet and
|
||||||
printed about the packet sent to the server and the
|
any intermediate response packets when searching.
|
||||||
resulting answer.
|
|
||||||
</p>
|
</p>
|
||||||
<p>
|
<p>
|
||||||
(Default = nodebug; abbreviation = [<span class="optional">no</span>]deb)
|
(Default = nodebug; abbreviation = [<span class="optional">no</span>]deb)
|
||||||
@@ -192,9 +191,8 @@ nslookup -query=hinfo -timeout=10
|
|||||||
<em class="replaceable"><code>[<span class="optional">no</span>]</code></em>d2</code></span></dt>
|
<em class="replaceable"><code>[<span class="optional">no</span>]</code></em>d2</code></span></dt>
|
||||||
<dd>
|
<dd>
|
||||||
<p>
|
<p>
|
||||||
Turn debugging mode on. A lot more information is
|
Turn debugging mode on or off. This displays more about
|
||||||
printed about the packet sent to the server and the
|
about what nslookup is doing.
|
||||||
resulting answer.
|
|
||||||
</p>
|
</p>
|
||||||
<p>
|
<p>
|
||||||
(Default = nod2)
|
(Default = nod2)
|
||||||
|
@@ -13,7 +13,7 @@
|
|||||||
.\" OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
.\" OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
.\" PERFORMANCE OF THIS SOFTWARE.
|
.\" PERFORMANCE OF THIS SOFTWARE.
|
||||||
.\"
|
.\"
|
||||||
.\" $Id: dnssec-keygen.8,v 1.36 2007/01/30 00:24:59 marka Exp $
|
.\" $Id: dnssec-keygen.8,v 1.37 2007/05/09 03:33:50 marka Exp $
|
||||||
.\"
|
.\"
|
||||||
.hy 0
|
.hy 0
|
||||||
.ad l
|
.ad l
|
||||||
@@ -37,7 +37,7 @@ dnssec\-keygen \- DNSSEC key generation tool
|
|||||||
.SH "DESCRIPTION"
|
.SH "DESCRIPTION"
|
||||||
.PP
|
.PP
|
||||||
\fBdnssec\-keygen\fR
|
\fBdnssec\-keygen\fR
|
||||||
generates keys for DNSSEC (Secure DNS), as defined in RFC 2535 and RFC <TBA\\>. It can also generate keys for use with TSIG (Transaction Signatures), as defined in RFC 2845.
|
generates keys for DNSSEC (Secure DNS), as defined in RFC 2535 and RFC 4034. It can also generate keys for use with TSIG (Transaction Signatures), as defined in RFC 2845.
|
||||||
.SH "OPTIONS"
|
.SH "OPTIONS"
|
||||||
.PP
|
.PP
|
||||||
\-a \fIalgorithm\fR
|
\-a \fIalgorithm\fR
|
||||||
@@ -147,7 +147,7 @@ is the numeric representation of the algorithm.
|
|||||||
is the key identifier (or footprint).
|
is the key identifier (or footprint).
|
||||||
.PP
|
.PP
|
||||||
\fBdnssec\-keygen\fR
|
\fBdnssec\-keygen\fR
|
||||||
creates two file, with names based on the printed string.
|
creates two files, with names based on the printed string.
|
||||||
\fIKnnnn.+aaa+iiiii.key\fR
|
\fIKnnnn.+aaa+iiiii.key\fR
|
||||||
contains the public key, and
|
contains the public key, and
|
||||||
\fIKnnnn.+aaa+iiiii.private\fR
|
\fIKnnnn.+aaa+iiiii.private\fR
|
||||||
@@ -159,13 +159,13 @@ file contains a DNS KEY record that can be inserted into a zone file (directly o
|
|||||||
.PP
|
.PP
|
||||||
The
|
The
|
||||||
\fI.private\fR
|
\fI.private\fR
|
||||||
file contains algorithm specific fields. For obvious security reasons, this file does not have general read permission.
|
file contains algorithm\-specific fields. For obvious security reasons, this file does not have general read permission.
|
||||||
.PP
|
.PP
|
||||||
Both
|
Both
|
||||||
\fI.key\fR
|
\fI.key\fR
|
||||||
and
|
and
|
||||||
\fI.private\fR
|
\fI.private\fR
|
||||||
files are generated for symmetric encryption algorithm such as HMAC\-MD5, even though the public and private key are equivalent.
|
files are generated for symmetric encryption algorithms such as HMAC\-MD5, even though the public and private key are equivalent.
|
||||||
.SH "EXAMPLE"
|
.SH "EXAMPLE"
|
||||||
.PP
|
.PP
|
||||||
To generate a 768\-bit DSA key for the domain
|
To generate a 768\-bit DSA key for the domain
|
||||||
@@ -182,7 +182,7 @@ In this example,
|
|||||||
creates the files
|
creates the files
|
||||||
\fIKexample.com.+003+26160.key\fR
|
\fIKexample.com.+003+26160.key\fR
|
||||||
and
|
and
|
||||||
\fIKexample.com.+003+26160.private\fR
|
\fIKexample.com.+003+26160.private\fR.
|
||||||
.SH "SEE ALSO"
|
.SH "SEE ALSO"
|
||||||
.PP
|
.PP
|
||||||
\fBdnssec\-signzone\fR(8),
|
\fBdnssec\-signzone\fR(8),
|
||||||
|
@@ -14,7 +14,7 @@
|
|||||||
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
- PERFORMANCE OF THIS SOFTWARE.
|
- PERFORMANCE OF THIS SOFTWARE.
|
||||||
-->
|
-->
|
||||||
<!-- $Id: dnssec-keygen.html,v 1.28 2007/01/30 00:24:59 marka Exp $ -->
|
<!-- $Id: dnssec-keygen.html,v 1.29 2007/05/09 03:33:50 marka Exp $ -->
|
||||||
<html>
|
<html>
|
||||||
<head>
|
<head>
|
||||||
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
||||||
@@ -35,7 +35,7 @@
|
|||||||
<a name="id2543474"></a><h2>DESCRIPTION</h2>
|
<a name="id2543474"></a><h2>DESCRIPTION</h2>
|
||||||
<p><span><strong class="command">dnssec-keygen</strong></span>
|
<p><span><strong class="command">dnssec-keygen</strong></span>
|
||||||
generates keys for DNSSEC (Secure DNS), as defined in RFC 2535
|
generates keys for DNSSEC (Secure DNS), as defined in RFC 2535
|
||||||
and RFC <TBA\>. It can also generate keys for use with
|
and RFC 4034. It can also generate keys for use with
|
||||||
TSIG (Transaction Signatures), as defined in RFC 2845.
|
TSIG (Transaction Signatures), as defined in RFC 2845.
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
@@ -168,7 +168,7 @@
|
|||||||
</p></li>
|
</p></li>
|
||||||
</ul></div>
|
</ul></div>
|
||||||
<p><span><strong class="command">dnssec-keygen</strong></span>
|
<p><span><strong class="command">dnssec-keygen</strong></span>
|
||||||
creates two file, with names based
|
creates two files, with names based
|
||||||
on the printed string. <code class="filename">Knnnn.+aaa+iiiii.key</code>
|
on the printed string. <code class="filename">Knnnn.+aaa+iiiii.key</code>
|
||||||
contains the public key, and
|
contains the public key, and
|
||||||
<code class="filename">Knnnn.+aaa+iiiii.private</code> contains the
|
<code class="filename">Knnnn.+aaa+iiiii.private</code> contains the
|
||||||
@@ -182,14 +182,14 @@
|
|||||||
statement).
|
statement).
|
||||||
</p>
|
</p>
|
||||||
<p>
|
<p>
|
||||||
The <code class="filename">.private</code> file contains algorithm
|
The <code class="filename">.private</code> file contains
|
||||||
specific
|
algorithm-specific
|
||||||
fields. For obvious security reasons, this file does not have
|
fields. For obvious security reasons, this file does not have
|
||||||
general read permission.
|
general read permission.
|
||||||
</p>
|
</p>
|
||||||
<p>
|
<p>
|
||||||
Both <code class="filename">.key</code> and <code class="filename">.private</code>
|
Both <code class="filename">.key</code> and <code class="filename">.private</code>
|
||||||
files are generated for symmetric encryption algorithm such as
|
files are generated for symmetric encryption algorithms such as
|
||||||
HMAC-MD5, even though the public and private key are equivalent.
|
HMAC-MD5, even though the public and private key are equivalent.
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
@@ -211,7 +211,7 @@
|
|||||||
In this example, <span><strong class="command">dnssec-keygen</strong></span> creates
|
In this example, <span><strong class="command">dnssec-keygen</strong></span> creates
|
||||||
the files <code class="filename">Kexample.com.+003+26160.key</code>
|
the files <code class="filename">Kexample.com.+003+26160.key</code>
|
||||||
and
|
and
|
||||||
<code class="filename">Kexample.com.+003+26160.private</code>
|
<code class="filename">Kexample.com.+003+26160.private</code>.
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
|
@@ -13,7 +13,7 @@
|
|||||||
.\" OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
.\" OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
.\" PERFORMANCE OF THIS SOFTWARE.
|
.\" PERFORMANCE OF THIS SOFTWARE.
|
||||||
.\"
|
.\"
|
||||||
.\" $Id: dnssec-signzone.8,v 1.44 2007/01/30 00:24:59 marka Exp $
|
.\" $Id: dnssec-signzone.8,v 1.45 2007/05/09 03:33:50 marka Exp $
|
||||||
.\"
|
.\"
|
||||||
.hy 0
|
.hy 0
|
||||||
.ad l
|
.ad l
|
||||||
@@ -95,7 +95,7 @@ is specified, 30 days from the start time is used as a default.
|
|||||||
.RS 4
|
.RS 4
|
||||||
The name of the output file containing the signed zone. The default is to append
|
The name of the output file containing the signed zone. The default is to append
|
||||||
\fI.signed\fR
|
\fI.signed\fR
|
||||||
to the input file.
|
to the input filename.
|
||||||
.RE
|
.RE
|
||||||
.PP
|
.PP
|
||||||
\-h
|
\-h
|
||||||
@@ -106,7 +106,7 @@ Prints a short summary of the options and arguments to
|
|||||||
.PP
|
.PP
|
||||||
\-i \fIinterval\fR
|
\-i \fIinterval\fR
|
||||||
.RS 4
|
.RS 4
|
||||||
When a previously signed zone is passed as input, records may be resigned. The
|
When a previously\-signed zone is passed as input, records may be resigned. The
|
||||||
\fBinterval\fR
|
\fBinterval\fR
|
||||||
option specifies the cycle interval as an offset from the current time (in seconds). If a RRSIG record expires after the cycle interval, it is retained. Otherwise, it is considered to be expiring soon, and it will be replaced.
|
option specifies the cycle interval as an offset from the current time (in seconds). If a RRSIG record expires after the cycle interval, it is retained. Otherwise, it is considered to be expiring soon, and it will be replaced.
|
||||||
.sp
|
.sp
|
||||||
@@ -129,7 +129,7 @@ The format of the input zone file. Possible formats are
|
|||||||
.PP
|
.PP
|
||||||
\-j \fIjitter\fR
|
\-j \fIjitter\fR
|
||||||
.RS 4
|
.RS 4
|
||||||
When signing a zone with a fixed signature lifetime, all RRSIG records issued at the time of signing expires simultaneously. If the zone is incrementally signed, i.e. a previously signed zone is passed as input to the signer, all expired signatures has to be regenerated at about the same time. The
|
When signing a zone with a fixed signature lifetime, all RRSIG records issued at the time of signing expires simultaneously. If the zone is incrementally signed, i.e. a previously\-signed zone is passed as input to the signer, all expired signatures have to be regenerated at about the same time. The
|
||||||
\fBjitter\fR
|
\fBjitter\fR
|
||||||
option specifies a jitter window that will be used to randomize the signature expire time, thus spreading incremental signature regeneration over time.
|
option specifies a jitter window that will be used to randomize the signature expire time, thus spreading incremental signature regeneration over time.
|
||||||
.sp
|
.sp
|
||||||
@@ -219,29 +219,44 @@ The file containing the zone to be signed.
|
|||||||
.PP
|
.PP
|
||||||
key
|
key
|
||||||
.RS 4
|
.RS 4
|
||||||
The keys used to sign the zone. If no keys are specified, the default all zone keys that have private key files in the current directory.
|
Specify which keys should be used to sign the zone. If no keys are specified, then the zone will be examined for DNSKEY records at the zone apex. If these are found and there are matching private keys, in the current directory, then these will be used for signing.
|
||||||
.RE
|
.RE
|
||||||
.SH "EXAMPLE"
|
.SH "EXAMPLE"
|
||||||
.PP
|
.PP
|
||||||
The following command signs the
|
The following command signs the
|
||||||
\fBexample.com\fR
|
\fBexample.com\fR
|
||||||
zone with the DSA key generated in the
|
zone with the DSA key generated by
|
||||||
\fBdnssec\-keygen\fR
|
\fBdnssec\-keygen\fR
|
||||||
man page. The zone's keys must be in the zone. If there are
|
(Kexample.com.+003+17247). The zone's keys must be in the master file (\fIdb.example.com\fR). This invocation looks for
|
||||||
\fIkeyset\fR
|
\fIkeyset\fR
|
||||||
files associated with child zones, they must be in the current directory.
|
files, in the current directory, so that DS records can be generated from them (\fB\-g\fR).
|
||||||
\fBexample.com\fR, the following command would be issued:
|
.sp
|
||||||
|
.RS 4
|
||||||
|
.nf
|
||||||
|
% dnssec\-signzone \-g \-o example.com db.example.com \\
|
||||||
|
Kexample.com.+003+17247
|
||||||
|
db.example.com.signed
|
||||||
|
%
|
||||||
|
.fi
|
||||||
|
.RE
|
||||||
.PP
|
.PP
|
||||||
\fBdnssec\-signzone \-o example.com db.example.com Kexample.com.+003+26160\fR
|
In the above example,
|
||||||
.PP
|
|
||||||
The command would print a string of the form:
|
|
||||||
.PP
|
|
||||||
In this example,
|
|
||||||
\fBdnssec\-signzone\fR
|
\fBdnssec\-signzone\fR
|
||||||
creates the file
|
creates the file
|
||||||
\fIdb.example.com.signed\fR. This file should be referenced in a zone statement in a
|
\fIdb.example.com.signed\fR. This file should be referenced in a zone statement in a
|
||||||
\fInamed.conf\fR
|
\fInamed.conf\fR
|
||||||
file.
|
file.
|
||||||
|
.PP
|
||||||
|
This example re\-signs a previously signed zone with default parameters. The private keys are assumed to be in the current directory.
|
||||||
|
.sp
|
||||||
|
.RS 4
|
||||||
|
.nf
|
||||||
|
% cp db.example.com.signed db.example.com
|
||||||
|
% dnssec\-signzone \-o example.com db.example.com
|
||||||
|
db.example.com.signed
|
||||||
|
%
|
||||||
|
.fi
|
||||||
|
.RE
|
||||||
.SH "SEE ALSO"
|
.SH "SEE ALSO"
|
||||||
.PP
|
.PP
|
||||||
\fBdnssec\-keygen\fR(8),
|
\fBdnssec\-keygen\fR(8),
|
||||||
|
@@ -14,7 +14,7 @@
|
|||||||
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
- PERFORMANCE OF THIS SOFTWARE.
|
- PERFORMANCE OF THIS SOFTWARE.
|
||||||
-->
|
-->
|
||||||
<!-- $Id: dnssec-signzone.html,v 1.30 2007/01/30 00:24:59 marka Exp $ -->
|
<!-- $Id: dnssec-signzone.html,v 1.31 2007/05/09 03:33:50 marka Exp $ -->
|
||||||
<html>
|
<html>
|
||||||
<head>
|
<head>
|
||||||
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
||||||
@@ -99,7 +99,7 @@
|
|||||||
The name of the output file containing the signed zone. The
|
The name of the output file containing the signed zone. The
|
||||||
default is to append <code class="filename">.signed</code> to
|
default is to append <code class="filename">.signed</code> to
|
||||||
the
|
the
|
||||||
input file.
|
input filename.
|
||||||
</p></dd>
|
</p></dd>
|
||||||
<dt><span class="term">-h</span></dt>
|
<dt><span class="term">-h</span></dt>
|
||||||
<dd><p>
|
<dd><p>
|
||||||
@@ -109,7 +109,7 @@
|
|||||||
<dt><span class="term">-i <em class="replaceable"><code>interval</code></em></span></dt>
|
<dt><span class="term">-i <em class="replaceable"><code>interval</code></em></span></dt>
|
||||||
<dd>
|
<dd>
|
||||||
<p>
|
<p>
|
||||||
When a previously signed zone is passed as input, records
|
When a previously-signed zone is passed as input, records
|
||||||
may be resigned. The <code class="option">interval</code> option
|
may be resigned. The <code class="option">interval</code> option
|
||||||
specifies the cycle interval as an offset from the current
|
specifies the cycle interval as an offset from the current
|
||||||
time (in seconds). If a RRSIG record expires after the
|
time (in seconds). If a RRSIG record expires after the
|
||||||
@@ -145,8 +145,8 @@
|
|||||||
When signing a zone with a fixed signature lifetime, all
|
When signing a zone with a fixed signature lifetime, all
|
||||||
RRSIG records issued at the time of signing expires
|
RRSIG records issued at the time of signing expires
|
||||||
simultaneously. If the zone is incrementally signed, i.e.
|
simultaneously. If the zone is incrementally signed, i.e.
|
||||||
a previously signed zone is passed as input to the signer,
|
a previously-signed zone is passed as input to the signer,
|
||||||
all expired signatures has to be regenerated at about the
|
all expired signatures have to be regenerated at about the
|
||||||
same time. The <code class="option">jitter</code> option specifies a
|
same time. The <code class="option">jitter</code> option specifies a
|
||||||
jitter window that will be used to randomize the signature
|
jitter window that will be used to randomize the signature
|
||||||
expire time, thus spreading incremental signature
|
expire time, thus spreading incremental signature
|
||||||
@@ -232,9 +232,11 @@
|
|||||||
</p></dd>
|
</p></dd>
|
||||||
<dt><span class="term">key</span></dt>
|
<dt><span class="term">key</span></dt>
|
||||||
<dd><p>
|
<dd><p>
|
||||||
The keys used to sign the zone. If no keys are specified, the
|
Specify which keys should be used to sign the zone. If
|
||||||
default all zone keys that have private key files in the
|
no keys are specified, then the zone will be examined
|
||||||
current directory.
|
for DNSKEY records at the zone apex. If these are found and
|
||||||
|
there are matching private keys, in the current directory,
|
||||||
|
then these will be used for signing.
|
||||||
</p></dd>
|
</p></dd>
|
||||||
</dl></div>
|
</dl></div>
|
||||||
</div>
|
</div>
|
||||||
@@ -242,37 +244,40 @@
|
|||||||
<a name="id2544327"></a><h2>EXAMPLE</h2>
|
<a name="id2544327"></a><h2>EXAMPLE</h2>
|
||||||
<p>
|
<p>
|
||||||
The following command signs the <strong class="userinput"><code>example.com</code></strong>
|
The following command signs the <strong class="userinput"><code>example.com</code></strong>
|
||||||
zone with the DSA key generated in the <span><strong class="command">dnssec-keygen</strong></span>
|
zone with the DSA key generated by <span><strong class="command">dnssec-keygen</strong></span>
|
||||||
man page. The zone's keys must be in the zone. If there are
|
(Kexample.com.+003+17247). The zone's keys must be in the master
|
||||||
<code class="filename">keyset</code> files associated with child
|
file (<code class="filename">db.example.com</code>). This invocation looks
|
||||||
zones,
|
for <code class="filename">keyset</code> files, in the current directory,
|
||||||
they must be in the current directory.
|
so that DS records can be generated from them (<span><strong class="command">-g</strong></span>).
|
||||||
<strong class="userinput"><code>example.com</code></strong>, the following command would be
|
|
||||||
issued:
|
|
||||||
</p>
|
|
||||||
<p><strong class="userinput"><code>dnssec-signzone -o example.com db.example.com
|
|
||||||
Kexample.com.+003+26160</code></strong>
|
|
||||||
</p>
|
</p>
|
||||||
|
<pre class="programlisting">% dnssec-signzone -g -o example.com db.example.com \
|
||||||
|
Kexample.com.+003+17247
|
||||||
|
db.example.com.signed
|
||||||
|
%</pre>
|
||||||
<p>
|
<p>
|
||||||
The command would print a string of the form:
|
In the above example, <span><strong class="command">dnssec-signzone</strong></span> creates
|
||||||
</p>
|
|
||||||
<p>
|
|
||||||
In this example, <span><strong class="command">dnssec-signzone</strong></span> creates
|
|
||||||
the file <code class="filename">db.example.com.signed</code>. This
|
the file <code class="filename">db.example.com.signed</code>. This
|
||||||
file
|
file should be referenced in a zone statement in a
|
||||||
should be referenced in a zone statement in a
|
|
||||||
<code class="filename">named.conf</code> file.
|
<code class="filename">named.conf</code> file.
|
||||||
</p>
|
</p>
|
||||||
|
<p>
|
||||||
|
This example re-signs a previously signed zone with default parameters.
|
||||||
|
The private keys are assumed to be in the current directory.
|
||||||
|
</p>
|
||||||
|
<pre class="programlisting">% cp db.example.com.signed db.example.com
|
||||||
|
% dnssec-signzone -o example.com db.example.com
|
||||||
|
db.example.com.signed
|
||||||
|
%</pre>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2544375"></a><h2>SEE ALSO</h2>
|
<a name="id2544378"></a><h2>SEE ALSO</h2>
|
||||||
<p><span class="citerefentry"><span class="refentrytitle">dnssec-keygen</span>(8)</span>,
|
<p><span class="citerefentry"><span class="refentrytitle">dnssec-keygen</span>(8)</span>,
|
||||||
<em class="citetitle">BIND 9 Administrator Reference Manual</em>,
|
<em class="citetitle">BIND 9 Administrator Reference Manual</em>,
|
||||||
<em class="citetitle">RFC 2535</em>.
|
<em class="citetitle">RFC 2535</em>.
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2544400"></a><h2>AUTHOR</h2>
|
<a name="id2544403"></a><h2>AUTHOR</h2>
|
||||||
<p><span class="corpauthor">Internet Systems Consortium</span>
|
<p><span class="corpauthor">Internet Systems Consortium</span>
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
|
@@ -13,7 +13,7 @@
|
|||||||
.\" OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
.\" OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
.\" PERFORMANCE OF THIS SOFTWARE.
|
.\" PERFORMANCE OF THIS SOFTWARE.
|
||||||
.\"
|
.\"
|
||||||
.\" $Id: lwresd.8,v 1.25 2007/01/30 00:24:59 marka Exp $
|
.\" $Id: lwresd.8,v 1.26 2007/05/09 03:33:51 marka Exp $
|
||||||
.\"
|
.\"
|
||||||
.hy 0
|
.hy 0
|
||||||
.ad l
|
.ad l
|
||||||
@@ -122,8 +122,7 @@ This option is mainly of interest to BIND 9 developers and may be removed or cha
|
|||||||
.PP
|
.PP
|
||||||
\-t \fIdirectory\fR
|
\-t \fIdirectory\fR
|
||||||
.RS 4
|
.RS 4
|
||||||
\fBchroot()\fR
|
Chroot to
|
||||||
to
|
|
||||||
\fIdirectory\fR
|
\fIdirectory\fR
|
||||||
after processing the command line arguments, but before reading the configuration file.
|
after processing the command line arguments, but before reading the configuration file.
|
||||||
.RS
|
.RS
|
||||||
@@ -131,15 +130,14 @@ after processing the command line arguments, but before reading the configuratio
|
|||||||
This option should be used in conjunction with the
|
This option should be used in conjunction with the
|
||||||
\fB\-u\fR
|
\fB\-u\fR
|
||||||
option, as chrooting a process running as root doesn't enhance security on most systems; the way
|
option, as chrooting a process running as root doesn't enhance security on most systems; the way
|
||||||
\fBchroot()\fR
|
\fBchroot(2)\fR
|
||||||
is defined allows a process with root privileges to escape a chroot jail.
|
is defined allows a process with root privileges to escape a chroot jail.
|
||||||
.RE
|
.RE
|
||||||
.RE
|
.RE
|
||||||
.PP
|
.PP
|
||||||
\-u \fIuser\fR
|
\-u \fIuser\fR
|
||||||
.RS 4
|
.RS 4
|
||||||
\fBsetuid()\fR
|
Setuid to
|
||||||
to
|
|
||||||
\fIuser\fR
|
\fIuser\fR
|
||||||
after completing privileged operations, such as creating sockets that listen on privileged ports.
|
after completing privileged operations, such as creating sockets that listen on privileged ports.
|
||||||
.RE
|
.RE
|
||||||
|
@@ -14,7 +14,7 @@
|
|||||||
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
- PERFORMANCE OF THIS SOFTWARE.
|
- PERFORMANCE OF THIS SOFTWARE.
|
||||||
-->
|
-->
|
||||||
<!-- $Id: lwresd.html,v 1.21 2007/01/30 00:24:59 marka Exp $ -->
|
<!-- $Id: lwresd.html,v 1.22 2007/05/09 03:33:51 marka Exp $ -->
|
||||||
<html>
|
<html>
|
||||||
<head>
|
<head>
|
||||||
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
||||||
@@ -129,7 +129,7 @@
|
|||||||
</dd>
|
</dd>
|
||||||
<dt><span class="term">-t <em class="replaceable"><code>directory</code></em></span></dt>
|
<dt><span class="term">-t <em class="replaceable"><code>directory</code></em></span></dt>
|
||||||
<dd>
|
<dd>
|
||||||
<p><code class="function">chroot()</code>
|
<p>Chroot
|
||||||
to <em class="replaceable"><code>directory</code></em> after
|
to <em class="replaceable"><code>directory</code></em> after
|
||||||
processing the command line arguments, but before
|
processing the command line arguments, but before
|
||||||
reading the configuration file.
|
reading the configuration file.
|
||||||
@@ -140,14 +140,14 @@
|
|||||||
This option should be used in conjunction with the
|
This option should be used in conjunction with the
|
||||||
<code class="option">-u</code> option, as chrooting a process
|
<code class="option">-u</code> option, as chrooting a process
|
||||||
running as root doesn't enhance security on most
|
running as root doesn't enhance security on most
|
||||||
systems; the way <code class="function">chroot()</code> is
|
systems; the way <code class="function">chroot(2)</code> is
|
||||||
defined allows a process with root privileges to
|
defined allows a process with root privileges to
|
||||||
escape a chroot jail.
|
escape a chroot jail.
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
</dd>
|
</dd>
|
||||||
<dt><span class="term">-u <em class="replaceable"><code>user</code></em></span></dt>
|
<dt><span class="term">-u <em class="replaceable"><code>user</code></em></span></dt>
|
||||||
<dd><p><code class="function">setuid()</code>
|
<dd><p>Setuid
|
||||||
to <em class="replaceable"><code>user</code></em> after completing
|
to <em class="replaceable"><code>user</code></em> after completing
|
||||||
privileged operations, such as creating sockets that
|
privileged operations, such as creating sockets that
|
||||||
listen on privileged ports.
|
listen on privileged ports.
|
||||||
@@ -159,7 +159,7 @@
|
|||||||
</dl></div>
|
</dl></div>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2543746"></a><h2>FILES</h2>
|
<a name="id2543741"></a><h2>FILES</h2>
|
||||||
<div class="variablelist"><dl>
|
<div class="variablelist"><dl>
|
||||||
<dt><span class="term"><code class="filename">/etc/resolv.conf</code></span></dt>
|
<dt><span class="term"><code class="filename">/etc/resolv.conf</code></span></dt>
|
||||||
<dd><p>
|
<dd><p>
|
||||||
@@ -172,14 +172,14 @@
|
|||||||
</dl></div>
|
</dl></div>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2543785"></a><h2>SEE ALSO</h2>
|
<a name="id2543781"></a><h2>SEE ALSO</h2>
|
||||||
<p><span class="citerefentry"><span class="refentrytitle">named</span>(8)</span>,
|
<p><span class="citerefentry"><span class="refentrytitle">named</span>(8)</span>,
|
||||||
<span class="citerefentry"><span class="refentrytitle">lwres</span>(3)</span>,
|
<span class="citerefentry"><span class="refentrytitle">lwres</span>(3)</span>,
|
||||||
<span class="citerefentry"><span class="refentrytitle">resolver</span>(5)</span>.
|
<span class="citerefentry"><span class="refentrytitle">resolver</span>(5)</span>.
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2543819"></a><h2>AUTHOR</h2>
|
<a name="id2543815"></a><h2>AUTHOR</h2>
|
||||||
<p><span class="corpauthor">Internet Systems Consortium</span>
|
<p><span class="corpauthor">Internet Systems Consortium</span>
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
|
@@ -13,7 +13,7 @@
|
|||||||
.\" OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
.\" OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
.\" PERFORMANCE OF THIS SOFTWARE.
|
.\" PERFORMANCE OF THIS SOFTWARE.
|
||||||
.\"
|
.\"
|
||||||
.\" $Id: named.8,v 1.31 2007/01/30 00:24:59 marka Exp $
|
.\" $Id: named.8,v 1.32 2007/05/09 03:33:51 marka Exp $
|
||||||
.\"
|
.\"
|
||||||
.hy 0
|
.hy 0
|
||||||
.ad l
|
.ad l
|
||||||
@@ -122,8 +122,7 @@ This option is mainly of interest to BIND 9 developers and may be removed or cha
|
|||||||
.PP
|
.PP
|
||||||
\-t \fIdirectory\fR
|
\-t \fIdirectory\fR
|
||||||
.RS 4
|
.RS 4
|
||||||
\fBchroot()\fR
|
Chroot to
|
||||||
to
|
|
||||||
\fIdirectory\fR
|
\fIdirectory\fR
|
||||||
after processing the command line arguments, but before reading the configuration file.
|
after processing the command line arguments, but before reading the configuration file.
|
||||||
.RS
|
.RS
|
||||||
@@ -131,15 +130,14 @@ after processing the command line arguments, but before reading the configuratio
|
|||||||
This option should be used in conjunction with the
|
This option should be used in conjunction with the
|
||||||
\fB\-u\fR
|
\fB\-u\fR
|
||||||
option, as chrooting a process running as root doesn't enhance security on most systems; the way
|
option, as chrooting a process running as root doesn't enhance security on most systems; the way
|
||||||
\fBchroot()\fR
|
\fBchroot(2)\fR
|
||||||
is defined allows a process with root privileges to escape a chroot jail.
|
is defined allows a process with root privileges to escape a chroot jail.
|
||||||
.RE
|
.RE
|
||||||
.RE
|
.RE
|
||||||
.PP
|
.PP
|
||||||
\-u \fIuser\fR
|
\-u \fIuser\fR
|
||||||
.RS 4
|
.RS 4
|
||||||
\fBsetuid()\fR
|
Setuid to
|
||||||
to
|
|
||||||
\fIuser\fR
|
\fIuser\fR
|
||||||
after completing privileged operations, such as creating sockets that listen on privileged ports.
|
after completing privileged operations, such as creating sockets that listen on privileged ports.
|
||||||
.RS
|
.RS
|
||||||
@@ -147,13 +145,13 @@ after completing privileged operations, such as creating sockets that listen on
|
|||||||
On Linux,
|
On Linux,
|
||||||
\fBnamed\fR
|
\fBnamed\fR
|
||||||
uses the kernel's capability mechanism to drop all root privileges except the ability to
|
uses the kernel's capability mechanism to drop all root privileges except the ability to
|
||||||
\fBbind()\fR
|
\fBbind(2)\fR
|
||||||
to a privileged port and set process resource limits. Unfortunately, this means that the
|
to a privileged port and set process resource limits. Unfortunately, this means that the
|
||||||
\fB\-u\fR
|
\fB\-u\fR
|
||||||
option only works when
|
option only works when
|
||||||
\fBnamed\fR
|
\fBnamed\fR
|
||||||
is run on kernel 2.2.18 or later, or kernel 2.3.99\-pre3 or later, since previous kernels did not allow privileges to be retained after
|
is run on kernel 2.2.18 or later, or kernel 2.3.99\-pre3 or later, since previous kernels did not allow privileges to be retained after
|
||||||
\fBsetuid()\fR.
|
\fBsetuid(2)\fR.
|
||||||
.RE
|
.RE
|
||||||
.RE
|
.RE
|
||||||
.PP
|
.PP
|
||||||
|
@@ -12,7 +12,7 @@
|
|||||||
.\" OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
.\" OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
.\" PERFORMANCE OF THIS SOFTWARE.
|
.\" PERFORMANCE OF THIS SOFTWARE.
|
||||||
.\"
|
.\"
|
||||||
.\" $Id: named.conf.5,v 1.26 2007/03/29 15:19:16 marka Exp $
|
.\" $Id: named.conf.5,v 1.27 2007/05/09 03:33:51 marka Exp $
|
||||||
.\"
|
.\"
|
||||||
.hy 0
|
.hy 0
|
||||||
.ad l
|
.ad l
|
||||||
@@ -526,7 +526,7 @@ zone \fIstring\fR \fIoptional_class\fR {
|
|||||||
.PP
|
.PP
|
||||||
\fBnamed\fR(8),
|
\fBnamed\fR(8),
|
||||||
\fBrndc\fR(8),
|
\fBrndc\fR(8),
|
||||||
\fBBIND 9 Administrator Reference Manual\fR().
|
BIND 9 Administrator Reference Manual.
|
||||||
.SH "COPYRIGHT"
|
.SH "COPYRIGHT"
|
||||||
Copyright \(co 2004\-2007 Internet Systems Consortium, Inc. ("ISC")
|
Copyright \(co 2004\-2007 Internet Systems Consortium, Inc. ("ISC")
|
||||||
.br
|
.br
|
||||||
|
@@ -13,7 +13,7 @@
|
|||||||
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
- PERFORMANCE OF THIS SOFTWARE.
|
- PERFORMANCE OF THIS SOFTWARE.
|
||||||
-->
|
-->
|
||||||
<!-- $Id: named.conf.html,v 1.35 2007/03/29 15:19:17 marka Exp $ -->
|
<!-- $Id: named.conf.html,v 1.36 2007/05/09 03:33:51 marka Exp $ -->
|
||||||
<html>
|
<html>
|
||||||
<head>
|
<head>
|
||||||
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
||||||
@@ -559,7 +559,7 @@ zone
|
|||||||
<a name="id2545383"></a><h2>SEE ALSO</h2>
|
<a name="id2545383"></a><h2>SEE ALSO</h2>
|
||||||
<p><span class="citerefentry"><span class="refentrytitle">named</span>(8)</span>,
|
<p><span class="citerefentry"><span class="refentrytitle">named</span>(8)</span>,
|
||||||
<span class="citerefentry"><span class="refentrytitle">rndc</span>(8)</span>,
|
<span class="citerefentry"><span class="refentrytitle">rndc</span>(8)</span>,
|
||||||
<span class="citerefentry"><span class="refentrytitle">BIND 9 Administrator Reference Manual</span></span>.
|
<em class="citetitle">BIND 9 Administrator Reference Manual</em>.
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
</div></body>
|
</div></body>
|
||||||
|
@@ -14,7 +14,7 @@
|
|||||||
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
- PERFORMANCE OF THIS SOFTWARE.
|
- PERFORMANCE OF THIS SOFTWARE.
|
||||||
-->
|
-->
|
||||||
<!-- $Id: named.html,v 1.23 2007/01/30 00:24:59 marka Exp $ -->
|
<!-- $Id: named.html,v 1.24 2007/05/09 03:33:51 marka Exp $ -->
|
||||||
<html>
|
<html>
|
||||||
<head>
|
<head>
|
||||||
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
||||||
@@ -117,7 +117,7 @@
|
|||||||
</dd>
|
</dd>
|
||||||
<dt><span class="term">-t <em class="replaceable"><code>directory</code></em></span></dt>
|
<dt><span class="term">-t <em class="replaceable"><code>directory</code></em></span></dt>
|
||||||
<dd>
|
<dd>
|
||||||
<p><code class="function">chroot()</code>
|
<p>Chroot
|
||||||
to <em class="replaceable"><code>directory</code></em> after
|
to <em class="replaceable"><code>directory</code></em> after
|
||||||
processing the command line arguments, but before
|
processing the command line arguments, but before
|
||||||
reading the configuration file.
|
reading the configuration file.
|
||||||
@@ -128,7 +128,7 @@
|
|||||||
This option should be used in conjunction with the
|
This option should be used in conjunction with the
|
||||||
<code class="option">-u</code> option, as chrooting a process
|
<code class="option">-u</code> option, as chrooting a process
|
||||||
running as root doesn't enhance security on most
|
running as root doesn't enhance security on most
|
||||||
systems; the way <code class="function">chroot()</code> is
|
systems; the way <code class="function">chroot(2)</code> is
|
||||||
defined allows a process with root privileges to
|
defined allows a process with root privileges to
|
||||||
escape a chroot jail.
|
escape a chroot jail.
|
||||||
</p>
|
</p>
|
||||||
@@ -136,7 +136,7 @@
|
|||||||
</dd>
|
</dd>
|
||||||
<dt><span class="term">-u <em class="replaceable"><code>user</code></em></span></dt>
|
<dt><span class="term">-u <em class="replaceable"><code>user</code></em></span></dt>
|
||||||
<dd>
|
<dd>
|
||||||
<p><code class="function">setuid()</code>
|
<p>Setuid
|
||||||
to <em class="replaceable"><code>user</code></em> after completing
|
to <em class="replaceable"><code>user</code></em> after completing
|
||||||
privileged operations, such as creating sockets that
|
privileged operations, such as creating sockets that
|
||||||
listen on privileged ports.
|
listen on privileged ports.
|
||||||
@@ -146,7 +146,7 @@
|
|||||||
<p>
|
<p>
|
||||||
On Linux, <span><strong class="command">named</strong></span> uses the kernel's
|
On Linux, <span><strong class="command">named</strong></span> uses the kernel's
|
||||||
capability mechanism to drop all root privileges
|
capability mechanism to drop all root privileges
|
||||||
except the ability to <code class="function">bind()</code> to
|
except the ability to <code class="function">bind(2)</code> to
|
||||||
a
|
a
|
||||||
privileged port and set process resource limits.
|
privileged port and set process resource limits.
|
||||||
Unfortunately, this means that the <code class="option">-u</code>
|
Unfortunately, this means that the <code class="option">-u</code>
|
||||||
@@ -154,7 +154,7 @@
|
|||||||
run
|
run
|
||||||
on kernel 2.2.18 or later, or kernel 2.3.99-pre3 or
|
on kernel 2.2.18 or later, or kernel 2.3.99-pre3 or
|
||||||
later, since previous kernels did not allow privileges
|
later, since previous kernels did not allow privileges
|
||||||
to be retained after <code class="function">setuid()</code>.
|
to be retained after <code class="function">setuid(2)</code>.
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
</dd>
|
</dd>
|
||||||
@@ -180,7 +180,7 @@
|
|||||||
</dl></div>
|
</dl></div>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2543813"></a><h2>SIGNALS</h2>
|
<a name="id2543809"></a><h2>SIGNALS</h2>
|
||||||
<p>
|
<p>
|
||||||
In routine operation, signals should not be used to control
|
In routine operation, signals should not be used to control
|
||||||
the nameserver; <span><strong class="command">rndc</strong></span> should be used
|
the nameserver; <span><strong class="command">rndc</strong></span> should be used
|
||||||
@@ -201,7 +201,7 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2543861"></a><h2>CONFIGURATION</h2>
|
<a name="id2543857"></a><h2>CONFIGURATION</h2>
|
||||||
<p>
|
<p>
|
||||||
The <span><strong class="command">named</strong></span> configuration file is too complex
|
The <span><strong class="command">named</strong></span> configuration file is too complex
|
||||||
to describe in detail here. A complete description is provided
|
to describe in detail here. A complete description is provided
|
||||||
@@ -210,7 +210,7 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2543878"></a><h2>FILES</h2>
|
<a name="id2543874"></a><h2>FILES</h2>
|
||||||
<div class="variablelist"><dl>
|
<div class="variablelist"><dl>
|
||||||
<dt><span class="term"><code class="filename">/etc/named.conf</code></span></dt>
|
<dt><span class="term"><code class="filename">/etc/named.conf</code></span></dt>
|
||||||
<dd><p>
|
<dd><p>
|
||||||
@@ -223,7 +223,7 @@
|
|||||||
</dl></div>
|
</dl></div>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2543917"></a><h2>SEE ALSO</h2>
|
<a name="id2543913"></a><h2>SEE ALSO</h2>
|
||||||
<p><em class="citetitle">RFC 1033</em>,
|
<p><em class="citetitle">RFC 1033</em>,
|
||||||
<em class="citetitle">RFC 1034</em>,
|
<em class="citetitle">RFC 1034</em>,
|
||||||
<em class="citetitle">RFC 1035</em>,
|
<em class="citetitle">RFC 1035</em>,
|
||||||
@@ -234,7 +234,7 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2543969"></a><h2>AUTHOR</h2>
|
<a name="id2543964"></a><h2>AUTHOR</h2>
|
||||||
<p><span class="corpauthor">Internet Systems Consortium</span>
|
<p><span class="corpauthor">Internet Systems Consortium</span>
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
|
@@ -13,7 +13,7 @@
|
|||||||
.\" OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
.\" OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
.\" PERFORMANCE OF THIS SOFTWARE.
|
.\" PERFORMANCE OF THIS SOFTWARE.
|
||||||
.\"
|
.\"
|
||||||
.\" $Id: nsupdate.8,v 1.43 2007/01/30 00:24:59 marka Exp $
|
.\" $Id: nsupdate.8,v 1.44 2007/05/09 03:33:51 marka Exp $
|
||||||
.\"
|
.\"
|
||||||
.hy 0
|
.hy 0
|
||||||
.ad l
|
.ad l
|
||||||
@@ -55,7 +55,7 @@ operate in debug mode. This provides tracing information about the update reques
|
|||||||
.PP
|
.PP
|
||||||
Transaction signatures can be used to authenticate the Dynamic DNS updates. These use the TSIG resource record type described in RFC2845 or the SIG(0) record described in RFC3535 and RFC2931. TSIG relies on a shared secret that should only be known to
|
Transaction signatures can be used to authenticate the Dynamic DNS updates. These use the TSIG resource record type described in RFC2845 or the SIG(0) record described in RFC3535 and RFC2931. TSIG relies on a shared secret that should only be known to
|
||||||
\fBnsupdate\fR
|
\fBnsupdate\fR
|
||||||
and the name server. Currently, the only supported encryption algorithm for TSIG is HMAC\-MD5, which is defined in RFC 2104. Once other algorithms are defined for TSIG, applications will need to ensure they select the appropriate algorithm as well as the key when authenticating each other. For instance suitable
|
and the name server. Currently, the only supported encryption algorithm for TSIG is HMAC\-MD5, which is defined in RFC 2104. Once other algorithms are defined for TSIG, applications will need to ensure they select the appropriate algorithm as well as the key when authenticating each other. For instance, suitable
|
||||||
\fBkey\fR
|
\fBkey\fR
|
||||||
and
|
and
|
||||||
\fBserver\fR
|
\fBserver\fR
|
||||||
@@ -106,15 +106,15 @@ use a TCP connection. This may be preferable when a batch of update requests is
|
|||||||
.PP
|
.PP
|
||||||
The
|
The
|
||||||
\fB\-t\fR
|
\fB\-t\fR
|
||||||
option sets the maximum time a update request can take before it is aborted. The default is 300 seconds. Zero can be used to disable the timeout.
|
option sets the maximum time an update request can take before it is aborted. The default is 300 seconds. Zero can be used to disable the timeout.
|
||||||
.PP
|
.PP
|
||||||
The
|
The
|
||||||
\fB\-u\fR
|
\fB\-u\fR
|
||||||
option sets the UDP retry interval. The default is 3 seconds. If zero the interval will be computed from the timeout interval and number of UDP retries.
|
option sets the UDP retry interval. The default is 3 seconds. If zero, the interval will be computed from the timeout interval and number of UDP retries.
|
||||||
.PP
|
.PP
|
||||||
The
|
The
|
||||||
\fB\-r\fR
|
\fB\-r\fR
|
||||||
option sets the number of UDP retries. The default is 3. If zero only one update request will be made.
|
option sets the number of UDP retries. The default is 3. If zero, only one update request will be made.
|
||||||
.SH "INPUT FORMAT"
|
.SH "INPUT FORMAT"
|
||||||
.PP
|
.PP
|
||||||
\fBnsupdate\fR
|
\fBnsupdate\fR
|
||||||
@@ -164,13 +164,13 @@ will attempt determine the correct zone to update based on the rest of the input
|
|||||||
.RS 4
|
.RS 4
|
||||||
Specify the default class. If no
|
Specify the default class. If no
|
||||||
\fIclass\fR
|
\fIclass\fR
|
||||||
is specified the default class is
|
is specified, the default class is
|
||||||
\fIIN\fR.
|
\fIIN\fR.
|
||||||
.RE
|
.RE
|
||||||
.PP
|
.PP
|
||||||
\fBkey\fR {name} {secret}
|
\fBkey\fR {name} {secret}
|
||||||
.RS 4
|
.RS 4
|
||||||
Specifies that all updates are to be TSIG signed using the
|
Specifies that all updates are to be TSIG\-signed using the
|
||||||
\fIkeyname\fR
|
\fIkeyname\fR
|
||||||
\fIkeysecret\fR
|
\fIkeysecret\fR
|
||||||
pair. The
|
pair. The
|
||||||
@@ -293,9 +293,9 @@ zone. Notice that the input in each example contains a trailing blank line so th
|
|||||||
.PP
|
.PP
|
||||||
Any A records for
|
Any A records for
|
||||||
\fBoldhost.example.com\fR
|
\fBoldhost.example.com\fR
|
||||||
are deleted. and an A record for
|
are deleted. And an A record for
|
||||||
\fBnewhost.example.com\fR
|
\fBnewhost.example.com\fR
|
||||||
it IP address 172.16.1.1 is added. The newly\-added record has a 1 day TTL (86400 seconds)
|
with IP address 172.16.1.1 is added. The newly\-added record has a 1 day TTL (86400 seconds).
|
||||||
.sp
|
.sp
|
||||||
.RS 4
|
.RS 4
|
||||||
.nf
|
.nf
|
||||||
|
@@ -14,7 +14,7 @@
|
|||||||
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
- PERFORMANCE OF THIS SOFTWARE.
|
- PERFORMANCE OF THIS SOFTWARE.
|
||||||
-->
|
-->
|
||||||
<!-- $Id: nsupdate.html,v 1.35 2007/01/30 00:24:59 marka Exp $ -->
|
<!-- $Id: nsupdate.html,v 1.36 2007/05/09 03:33:51 marka Exp $ -->
|
||||||
<html>
|
<html>
|
||||||
<head>
|
<head>
|
||||||
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
||||||
@@ -77,7 +77,7 @@
|
|||||||
Once other algorithms are defined for TSIG, applications will need to
|
Once other algorithms are defined for TSIG, applications will need to
|
||||||
ensure they select the appropriate algorithm as well as the key when
|
ensure they select the appropriate algorithm as well as the key when
|
||||||
authenticating each other.
|
authenticating each other.
|
||||||
For instance suitable
|
For instance, suitable
|
||||||
<span class="type">key</span>
|
<span class="type">key</span>
|
||||||
and
|
and
|
||||||
<span class="type">server</span>
|
<span class="type">server</span>
|
||||||
@@ -133,7 +133,7 @@
|
|||||||
This may be preferable when a batch of update requests is made.
|
This may be preferable when a batch of update requests is made.
|
||||||
</p>
|
</p>
|
||||||
<p>
|
<p>
|
||||||
The <code class="option">-t</code> option sets the maximum time a update request
|
The <code class="option">-t</code> option sets the maximum time an update request
|
||||||
can
|
can
|
||||||
take before it is aborted. The default is 300 seconds. Zero can be
|
take before it is aborted. The default is 300 seconds. Zero can be
|
||||||
used
|
used
|
||||||
@@ -142,14 +142,14 @@
|
|||||||
<p>
|
<p>
|
||||||
The <code class="option">-u</code> option sets the UDP retry interval. The default
|
The <code class="option">-u</code> option sets the UDP retry interval. The default
|
||||||
is
|
is
|
||||||
3 seconds. If zero the interval will be computed from the timeout
|
3 seconds. If zero, the interval will be computed from the timeout
|
||||||
interval
|
interval
|
||||||
and number of UDP retries.
|
and number of UDP retries.
|
||||||
</p>
|
</p>
|
||||||
<p>
|
<p>
|
||||||
The <code class="option">-r</code> option sets the number of UDP retries. The
|
The <code class="option">-r</code> option sets the number of UDP retries. The
|
||||||
default is
|
default is
|
||||||
3. If zero only one update request will be made.
|
3. If zero, only one update request will be made.
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
@@ -242,7 +242,7 @@
|
|||||||
</span></dt>
|
</span></dt>
|
||||||
<dd><p>
|
<dd><p>
|
||||||
Specify the default class.
|
Specify the default class.
|
||||||
If no <em class="parameter"><code>class</code></em> is specified the
|
If no <em class="parameter"><code>class</code></em> is specified, the
|
||||||
default class is
|
default class is
|
||||||
<em class="parameter"><code>IN</code></em>.
|
<em class="parameter"><code>IN</code></em>.
|
||||||
</p></dd>
|
</p></dd>
|
||||||
@@ -252,7 +252,7 @@
|
|||||||
{secret}
|
{secret}
|
||||||
</span></dt>
|
</span></dt>
|
||||||
<dd><p>
|
<dd><p>
|
||||||
Specifies that all updates are to be TSIG signed using the
|
Specifies that all updates are to be TSIG-signed using the
|
||||||
<em class="parameter"><code>keyname</code></em> <em class="parameter"><code>keysecret</code></em> pair.
|
<em class="parameter"><code>keyname</code></em> <em class="parameter"><code>keysecret</code></em> pair.
|
||||||
The <span><strong class="command">key</strong></span> command
|
The <span><strong class="command">key</strong></span> command
|
||||||
overrides any key specified on the command line via
|
overrides any key specified on the command line via
|
||||||
@@ -402,7 +402,7 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2544649"></a><h2>EXAMPLES</h2>
|
<a name="id2544648"></a><h2>EXAMPLES</h2>
|
||||||
<p>
|
<p>
|
||||||
The examples below show how
|
The examples below show how
|
||||||
<span><strong class="command">nsupdate</strong></span>
|
<span><strong class="command">nsupdate</strong></span>
|
||||||
@@ -428,10 +428,10 @@
|
|||||||
Any A records for
|
Any A records for
|
||||||
<span class="type">oldhost.example.com</span>
|
<span class="type">oldhost.example.com</span>
|
||||||
are deleted.
|
are deleted.
|
||||||
and an A record for
|
And an A record for
|
||||||
<span class="type">newhost.example.com</span>
|
<span class="type">newhost.example.com</span>
|
||||||
it IP address 172.16.1.1 is added.
|
with IP address 172.16.1.1 is added.
|
||||||
The newly-added record has a 1 day TTL (86400 seconds)
|
The newly-added record has a 1 day TTL (86400 seconds).
|
||||||
</p>
|
</p>
|
||||||
<pre class="programlisting">
|
<pre class="programlisting">
|
||||||
# nsupdate
|
# nsupdate
|
||||||
@@ -456,7 +456,7 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2544693"></a><h2>FILES</h2>
|
<a name="id2544692"></a><h2>FILES</h2>
|
||||||
<div class="variablelist"><dl>
|
<div class="variablelist"><dl>
|
||||||
<dt><span class="term"><code class="constant">/etc/resolv.conf</code></span></dt>
|
<dt><span class="term"><code class="constant">/etc/resolv.conf</code></span></dt>
|
||||||
<dd><p>
|
<dd><p>
|
||||||
@@ -475,7 +475,7 @@
|
|||||||
</dl></div>
|
</dl></div>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2544830"></a><h2>SEE ALSO</h2>
|
<a name="id2544829"></a><h2>SEE ALSO</h2>
|
||||||
<p><span class="citerefentry"><span class="refentrytitle">RFC2136</span></span>,
|
<p><span class="citerefentry"><span class="refentrytitle">RFC2136</span></span>,
|
||||||
<span class="citerefentry"><span class="refentrytitle">RFC3007</span></span>,
|
<span class="citerefentry"><span class="refentrytitle">RFC3007</span></span>,
|
||||||
<span class="citerefentry"><span class="refentrytitle">RFC2104</span></span>,
|
<span class="citerefentry"><span class="refentrytitle">RFC2104</span></span>,
|
||||||
@@ -488,7 +488,7 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2544901"></a><h2>BUGS</h2>
|
<a name="id2544900"></a><h2>BUGS</h2>
|
||||||
<p>
|
<p>
|
||||||
The TSIG key is redundantly stored in two separate files.
|
The TSIG key is redundantly stored in two separate files.
|
||||||
This is a consequence of nsupdate using the DST library
|
This is a consequence of nsupdate using the DST library
|
||||||
|
@@ -13,7 +13,7 @@
|
|||||||
.\" OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
.\" OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
.\" PERFORMANCE OF THIS SOFTWARE.
|
.\" PERFORMANCE OF THIS SOFTWARE.
|
||||||
.\"
|
.\"
|
||||||
.\" $Id: rndc.8,v 1.38 2007/01/30 00:24:59 marka Exp $
|
.\" $Id: rndc.8,v 1.39 2007/05/09 03:33:51 marka Exp $
|
||||||
.\"
|
.\"
|
||||||
.hy 0
|
.hy 0
|
||||||
.ad l
|
.ad l
|
||||||
@@ -133,7 +133,7 @@ Several error messages could be clearer.
|
|||||||
.PP
|
.PP
|
||||||
\fBrndc.conf\fR(5),
|
\fBrndc.conf\fR(5),
|
||||||
\fBnamed\fR(8),
|
\fBnamed\fR(8),
|
||||||
\fBnamed.conf\fR(5)
|
\fBnamed.conf\fR(5),
|
||||||
\fBndc\fR(8),
|
\fBndc\fR(8),
|
||||||
BIND 9 Administrator Reference Manual.
|
BIND 9 Administrator Reference Manual.
|
||||||
.SH "AUTHOR"
|
.SH "AUTHOR"
|
||||||
|
@@ -13,7 +13,7 @@
|
|||||||
.\" OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
.\" OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
.\" PERFORMANCE OF THIS SOFTWARE.
|
.\" PERFORMANCE OF THIS SOFTWARE.
|
||||||
.\"
|
.\"
|
||||||
.\" $Id: rndc.conf.5,v 1.36 2007/01/30 00:24:59 marka Exp $
|
.\" $Id: rndc.conf.5,v 1.37 2007/05/09 03:33:51 marka Exp $
|
||||||
.\"
|
.\"
|
||||||
.hy 0
|
.hy 0
|
||||||
.ad l
|
.ad l
|
||||||
@@ -156,7 +156,7 @@ does not ship with BIND 9 but is available on many systems. See the EXAMPLE sect
|
|||||||
key testkey {
|
key testkey {
|
||||||
algorithm hmac\-md5;
|
algorithm hmac\-md5;
|
||||||
secret "R3HI8P6BKw9ZwXwN3VZKuQ==";
|
secret "R3HI8P6BKw9ZwXwN3VZKuQ==";
|
||||||
}
|
};
|
||||||
.fi
|
.fi
|
||||||
.RE
|
.RE
|
||||||
.sp
|
.sp
|
||||||
@@ -178,7 +178,7 @@ To generate a random secret with
|
|||||||
.PP
|
.PP
|
||||||
A complete
|
A complete
|
||||||
\fIrndc.conf\fR
|
\fIrndc.conf\fR
|
||||||
file, including the randomly generated key, will be written to the standard output. Commented out
|
file, including the randomly generated key, will be written to the standard output. Commented\-out
|
||||||
\fBkey\fR
|
\fBkey\fR
|
||||||
and
|
and
|
||||||
\fBcontrols\fR
|
\fBcontrols\fR
|
||||||
|
@@ -14,7 +14,7 @@
|
|||||||
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
- PERFORMANCE OF THIS SOFTWARE.
|
- PERFORMANCE OF THIS SOFTWARE.
|
||||||
-->
|
-->
|
||||||
<!-- $Id: rndc.conf.html,v 1.27 2007/01/30 00:24:59 marka Exp $ -->
|
<!-- $Id: rndc.conf.html,v 1.28 2007/05/09 03:33:51 marka Exp $ -->
|
||||||
<html>
|
<html>
|
||||||
<head>
|
<head>
|
||||||
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
||||||
@@ -153,7 +153,7 @@
|
|||||||
key testkey {
|
key testkey {
|
||||||
algorithm hmac-md5;
|
algorithm hmac-md5;
|
||||||
secret "R3HI8P6BKw9ZwXwN3VZKuQ==";
|
secret "R3HI8P6BKw9ZwXwN3VZKuQ==";
|
||||||
}
|
};
|
||||||
</pre>
|
</pre>
|
||||||
<p>
|
<p>
|
||||||
</p>
|
</p>
|
||||||
@@ -180,7 +180,7 @@
|
|||||||
A complete <code class="filename">rndc.conf</code> file, including
|
A complete <code class="filename">rndc.conf</code> file, including
|
||||||
the
|
the
|
||||||
randomly generated key, will be written to the standard
|
randomly generated key, will be written to the standard
|
||||||
output. Commented out <code class="option">key</code> and
|
output. Commented-out <code class="option">key</code> and
|
||||||
<code class="option">controls</code> statements for
|
<code class="option">controls</code> statements for
|
||||||
<code class="filename">named.conf</code> are also printed.
|
<code class="filename">named.conf</code> are also printed.
|
||||||
</p>
|
</p>
|
||||||
|
@@ -14,7 +14,7 @@
|
|||||||
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
- PERFORMANCE OF THIS SOFTWARE.
|
- PERFORMANCE OF THIS SOFTWARE.
|
||||||
-->
|
-->
|
||||||
<!-- $Id: rndc.html,v 1.27 2007/01/30 00:24:59 marka Exp $ -->
|
<!-- $Id: rndc.html,v 1.28 2007/05/09 03:33:51 marka Exp $ -->
|
||||||
<html>
|
<html>
|
||||||
<head>
|
<head>
|
||||||
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
||||||
@@ -151,7 +151,7 @@
|
|||||||
<a name="id2543678"></a><h2>SEE ALSO</h2>
|
<a name="id2543678"></a><h2>SEE ALSO</h2>
|
||||||
<p><span class="citerefentry"><span class="refentrytitle">rndc.conf</span>(5)</span>,
|
<p><span class="citerefentry"><span class="refentrytitle">rndc.conf</span>(5)</span>,
|
||||||
<span class="citerefentry"><span class="refentrytitle">named</span>(8)</span>,
|
<span class="citerefentry"><span class="refentrytitle">named</span>(8)</span>,
|
||||||
<span class="citerefentry"><span class="refentrytitle">named.conf</span>(5)</span>
|
<span class="citerefentry"><span class="refentrytitle">named.conf</span>(5)</span>,
|
||||||
<span class="citerefentry"><span class="refentrytitle">ndc</span>(8)</span>,
|
<span class="citerefentry"><span class="refentrytitle">ndc</span>(8)</span>,
|
||||||
<em class="citetitle">BIND 9 Administrator Reference Manual</em>.
|
<em class="citetitle">BIND 9 Administrator Reference Manual</em>.
|
||||||
</p>
|
</p>
|
||||||
|
@@ -14,7 +14,7 @@
|
|||||||
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
- PERFORMANCE OF THIS SOFTWARE.
|
- PERFORMANCE OF THIS SOFTWARE.
|
||||||
-->
|
-->
|
||||||
<!-- $Id: Bv9ARM.ch06.html,v 1.154 2007/05/08 02:30:41 marka Exp $ -->
|
<!-- $Id: Bv9ARM.ch06.html,v 1.155 2007/05/09 03:33:51 marka Exp $ -->
|
||||||
<html>
|
<html>
|
||||||
<head>
|
<head>
|
||||||
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
||||||
@@ -77,23 +77,23 @@
|
|||||||
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#server_statement_grammar"><span><strong class="command">server</strong></span> Statement Grammar</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#server_statement_grammar"><span><strong class="command">server</strong></span> Statement Grammar</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#server_statement_definition_and_usage"><span><strong class="command">server</strong></span> Statement Definition and
|
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#server_statement_definition_and_usage"><span><strong class="command">server</strong></span> Statement Definition and
|
||||||
Usage</a></span></dt>
|
Usage</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2585514"><span><strong class="command">trusted-keys</strong></span> Statement Grammar</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2585534"><span><strong class="command">trusted-keys</strong></span> Statement Grammar</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2585563"><span><strong class="command">trusted-keys</strong></span> Statement Definition
|
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2585584"><span><strong class="command">trusted-keys</strong></span> Statement Definition
|
||||||
and Usage</a></span></dt>
|
and Usage</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#view_statement_grammar"><span><strong class="command">view</strong></span> Statement Grammar</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#view_statement_grammar"><span><strong class="command">view</strong></span> Statement Grammar</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2585643"><span><strong class="command">view</strong></span> Statement Definition and Usage</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2585664"><span><strong class="command">view</strong></span> Statement Definition and Usage</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#zone_statement_grammar"><span><strong class="command">zone</strong></span>
|
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#zone_statement_grammar"><span><strong class="command">zone</strong></span>
|
||||||
Statement Grammar</a></span></dt>
|
Statement Grammar</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2587040"><span><strong class="command">zone</strong></span> Statement Definition and Usage</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2587066"><span><strong class="command">zone</strong></span> Statement Definition and Usage</a></span></dt>
|
||||||
</dl></dd>
|
</dl></dd>
|
||||||
<dt><span class="sect1"><a href="Bv9ARM.ch06.html#id2589344">Zone File</a></span></dt>
|
<dt><span class="sect1"><a href="Bv9ARM.ch06.html#id2589438">Zone File</a></span></dt>
|
||||||
<dd><dl>
|
<dd><dl>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#types_of_resource_records_and_when_to_use_them">Types of Resource Records and When to Use Them</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#types_of_resource_records_and_when_to_use_them">Types of Resource Records and When to Use Them</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2591365">Discussion of MX Records</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2591392">Discussion of MX Records</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#Setting_TTLs">Setting TTLs</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#Setting_TTLs">Setting TTLs</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2591985">Inverse Mapping in IPv4</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2592080">Inverse Mapping in IPv4</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2592180">Other Zone File Directives</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2592275">Other Zone File Directives</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2592505"><acronym class="acronym">BIND</acronym> Master File Extension: the <span><strong class="command">$GENERATE</strong></span> Directive</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2592532"><acronym class="acronym">BIND</acronym> Master File Extension: the <span><strong class="command">$GENERATE</strong></span> Directive</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#zonefile_format">Additional File Formats</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#zonefile_format">Additional File Formats</a></span></dt>
|
||||||
</dl></dd>
|
</dl></dd>
|
||||||
</dl>
|
</dl>
|
||||||
@@ -1825,6 +1825,7 @@ category notify { null; };
|
|||||||
[<span class="optional"> alt-transfer-source (<em class="replaceable"><code>ip4_addr</code></em> | <code class="constant">*</code>) [<span class="optional">port <em class="replaceable"><code>ip_port</code></em></span>] ; </span>]
|
[<span class="optional"> alt-transfer-source (<em class="replaceable"><code>ip4_addr</code></em> | <code class="constant">*</code>) [<span class="optional">port <em class="replaceable"><code>ip_port</code></em></span>] ; </span>]
|
||||||
[<span class="optional"> alt-transfer-source-v6 (<em class="replaceable"><code>ip6_addr</code></em> | <code class="constant">*</code>) [<span class="optional">port <em class="replaceable"><code>ip_port</code></em></span>] ; </span>]
|
[<span class="optional"> alt-transfer-source-v6 (<em class="replaceable"><code>ip6_addr</code></em> | <code class="constant">*</code>) [<span class="optional">port <em class="replaceable"><code>ip_port</code></em></span>] ; </span>]
|
||||||
[<span class="optional"> use-alt-transfer-source <em class="replaceable"><code>yes_or_no</code></em>; </span>]
|
[<span class="optional"> use-alt-transfer-source <em class="replaceable"><code>yes_or_no</code></em>; </span>]
|
||||||
|
[<span class="optional"> notify-delay <em class="replaceable"><code>seconds</code></em> ; </span>]
|
||||||
[<span class="optional"> notify-source (<em class="replaceable"><code>ip4_addr</code></em> | <code class="constant">*</code>) [<span class="optional">port <em class="replaceable"><code>ip_port</code></em></span>] ; </span>]
|
[<span class="optional"> notify-source (<em class="replaceable"><code>ip4_addr</code></em> | <code class="constant">*</code>) [<span class="optional">port <em class="replaceable"><code>ip_port</code></em></span>] ; </span>]
|
||||||
[<span class="optional"> notify-source-v6 (<em class="replaceable"><code>ip6_addr</code></em> | <code class="constant">*</code>) [<span class="optional">port <em class="replaceable"><code>ip_port</code></em></span>] ; </span>]
|
[<span class="optional"> notify-source-v6 (<em class="replaceable"><code>ip6_addr</code></em> | <code class="constant">*</code>) [<span class="optional">port <em class="replaceable"><code>ip_port</code></em></span>] ; </span>]
|
||||||
[<span class="optional"> also-notify { <em class="replaceable"><code>ip_addr</code></em> [<span class="optional">port <em class="replaceable"><code>ip_port</code></em></span>] ; [<span class="optional"> <em class="replaceable"><code>ip_addr</code></em> [<span class="optional">port <em class="replaceable"><code>ip_port</code></em></span>] ; ... </span>] }; </span>]
|
[<span class="optional"> also-notify { <em class="replaceable"><code>ip_addr</code></em> [<span class="optional">port <em class="replaceable"><code>ip_port</code></em></span>] ; [<span class="optional"> <em class="replaceable"><code>ip_addr</code></em> [<span class="optional">port <em class="replaceable"><code>ip_port</code></em></span>] ; ... </span>] }; </span>]
|
||||||
@@ -2808,7 +2809,7 @@ options {
|
|||||||
</div>
|
</div>
|
||||||
<div class="sect3" lang="en">
|
<div class="sect3" lang="en">
|
||||||
<div class="titlepage"><div><div><h4 class="title">
|
<div class="titlepage"><div><div><h4 class="title">
|
||||||
<a name="id2580676"></a>Forwarding</h4></div></div></div>
|
<a name="id2580682"></a>Forwarding</h4></div></div></div>
|
||||||
<p>
|
<p>
|
||||||
The forwarding facility can be used to create a large site-wide
|
The forwarding facility can be used to create a large site-wide
|
||||||
cache on a few servers, reducing traffic over links to external
|
cache on a few servers, reducing traffic over links to external
|
||||||
@@ -2852,7 +2853,7 @@ options {
|
|||||||
</div>
|
</div>
|
||||||
<div class="sect3" lang="en">
|
<div class="sect3" lang="en">
|
||||||
<div class="titlepage"><div><div><h4 class="title">
|
<div class="titlepage"><div><div><h4 class="title">
|
||||||
<a name="id2580734"></a>Dual-stack Servers</h4></div></div></div>
|
<a name="id2580741"></a>Dual-stack Servers</h4></div></div></div>
|
||||||
<p>
|
<p>
|
||||||
Dual-stack servers are used as servers of last resort to work
|
Dual-stack servers are used as servers of last resort to work
|
||||||
around
|
around
|
||||||
@@ -3053,7 +3054,7 @@ options {
|
|||||||
</div>
|
</div>
|
||||||
<div class="sect3" lang="en">
|
<div class="sect3" lang="en">
|
||||||
<div class="titlepage"><div><div><h4 class="title">
|
<div class="titlepage"><div><div><h4 class="title">
|
||||||
<a name="id2581285"></a>Interfaces</h4></div></div></div>
|
<a name="id2581360"></a>Interfaces</h4></div></div></div>
|
||||||
<p>
|
<p>
|
||||||
The interfaces and ports that the server will answer queries
|
The interfaces and ports that the server will answer queries
|
||||||
from may be specified using the <span><strong class="command">listen-on</strong></span> option. <span><strong class="command">listen-on</strong></span> takes
|
from may be specified using the <span><strong class="command">listen-on</strong></span> option. <span><strong class="command">listen-on</strong></span> takes
|
||||||
@@ -3437,7 +3438,7 @@ query-source-v6 address * port *;
|
|||||||
</div>
|
</div>
|
||||||
<div class="sect3" lang="en">
|
<div class="sect3" lang="en">
|
||||||
<div class="titlepage"><div><div><h4 class="title">
|
<div class="titlepage"><div><div><h4 class="title">
|
||||||
<a name="id2582251"></a>Bad UDP Port Lists</h4></div></div></div>
|
<a name="id2582326"></a>Bad UDP Port Lists</h4></div></div></div>
|
||||||
<p><span><strong class="command">avoid-v4-udp-ports</strong></span>
|
<p><span><strong class="command">avoid-v4-udp-ports</strong></span>
|
||||||
and <span><strong class="command">avoid-v6-udp-ports</strong></span> specify a list
|
and <span><strong class="command">avoid-v6-udp-ports</strong></span> specify a list
|
||||||
of IPv4 and IPv6 UDP ports that will not be used as system
|
of IPv4 and IPv6 UDP ports that will not be used as system
|
||||||
@@ -3451,7 +3452,7 @@ query-source-v6 address * port *;
|
|||||||
</div>
|
</div>
|
||||||
<div class="sect3" lang="en">
|
<div class="sect3" lang="en">
|
||||||
<div class="titlepage"><div><div><h4 class="title">
|
<div class="titlepage"><div><div><h4 class="title">
|
||||||
<a name="id2582334"></a>Operating System Resource Limits</h4></div></div></div>
|
<a name="id2582341"></a>Operating System Resource Limits</h4></div></div></div>
|
||||||
<p>
|
<p>
|
||||||
The server's usage of many system resources can be limited.
|
The server's usage of many system resources can be limited.
|
||||||
Scaled values are allowed when specifying resource limits. For
|
Scaled values are allowed when specifying resource limits. For
|
||||||
@@ -3510,7 +3511,7 @@ query-source-v6 address * port *;
|
|||||||
</div>
|
</div>
|
||||||
<div class="sect3" lang="en">
|
<div class="sect3" lang="en">
|
||||||
<div class="titlepage"><div><div><h4 class="title">
|
<div class="titlepage"><div><div><h4 class="title">
|
||||||
<a name="id2582518"></a>Server Resource Limits</h4></div></div></div>
|
<a name="id2582524"></a>Server Resource Limits</h4></div></div></div>
|
||||||
<p>
|
<p>
|
||||||
The following options set limits on the server's
|
The following options set limits on the server's
|
||||||
resource consumption that are enforced internally by the
|
resource consumption that are enforced internally by the
|
||||||
@@ -3588,7 +3589,7 @@ query-source-v6 address * port *;
|
|||||||
</div>
|
</div>
|
||||||
<div class="sect3" lang="en">
|
<div class="sect3" lang="en">
|
||||||
<div class="titlepage"><div><div><h4 class="title">
|
<div class="titlepage"><div><div><h4 class="title">
|
||||||
<a name="id2582651"></a>Periodic Task Intervals</h4></div></div></div>
|
<a name="id2582658"></a>Periodic Task Intervals</h4></div></div></div>
|
||||||
<div class="variablelist"><dl>
|
<div class="variablelist"><dl>
|
||||||
<dt><span class="term"><span><strong class="command">cleaning-interval</strong></span></span></dt>
|
<dt><span class="term"><span><strong class="command">cleaning-interval</strong></span></span></dt>
|
||||||
<dd><p>
|
<dd><p>
|
||||||
@@ -4052,6 +4053,11 @@ query-source-v6 address * port *;
|
|||||||
<span><strong class="command">recursive-clients</strong></span>.
|
<span><strong class="command">recursive-clients</strong></span>.
|
||||||
</p>
|
</p>
|
||||||
</dd>
|
</dd>
|
||||||
|
<dt><span class="term"><span><strong class="command">notify-delay</strong></span></span></dt>
|
||||||
|
<dd><p>
|
||||||
|
The delay, in seconds, between sending sets of notify
|
||||||
|
messages for a zone. The default is zero.
|
||||||
|
</p></dd>
|
||||||
</dl></div>
|
</dl></div>
|
||||||
</div>
|
</div>
|
||||||
<div class="sect3" lang="en">
|
<div class="sect3" lang="en">
|
||||||
@@ -4640,7 +4646,7 @@ query-source-v6 address * port *;
|
|||||||
</div>
|
</div>
|
||||||
<div class="sect2" lang="en">
|
<div class="sect2" lang="en">
|
||||||
<div class="titlepage"><div><div><h3 class="title">
|
<div class="titlepage"><div><div><h3 class="title">
|
||||||
<a name="id2585514"></a><span><strong class="command">trusted-keys</strong></span> Statement Grammar</h3></div></div></div>
|
<a name="id2585534"></a><span><strong class="command">trusted-keys</strong></span> Statement Grammar</h3></div></div></div>
|
||||||
<pre class="programlisting">trusted-keys {
|
<pre class="programlisting">trusted-keys {
|
||||||
<em class="replaceable"><code>string</code></em> <em class="replaceable"><code>number</code></em> <em class="replaceable"><code>number</code></em> <em class="replaceable"><code>number</code></em> <em class="replaceable"><code>string</code></em> ;
|
<em class="replaceable"><code>string</code></em> <em class="replaceable"><code>number</code></em> <em class="replaceable"><code>number</code></em> <em class="replaceable"><code>number</code></em> <em class="replaceable"><code>string</code></em> ;
|
||||||
[<span class="optional"> <em class="replaceable"><code>string</code></em> <em class="replaceable"><code>number</code></em> <em class="replaceable"><code>number</code></em> <em class="replaceable"><code>number</code></em> <em class="replaceable"><code>string</code></em> ; [<span class="optional">...</span>]</span>]
|
[<span class="optional"> <em class="replaceable"><code>string</code></em> <em class="replaceable"><code>number</code></em> <em class="replaceable"><code>number</code></em> <em class="replaceable"><code>number</code></em> <em class="replaceable"><code>string</code></em> ; [<span class="optional">...</span>]</span>]
|
||||||
@@ -4649,7 +4655,7 @@ query-source-v6 address * port *;
|
|||||||
</div>
|
</div>
|
||||||
<div class="sect2" lang="en">
|
<div class="sect2" lang="en">
|
||||||
<div class="titlepage"><div><div><h3 class="title">
|
<div class="titlepage"><div><div><h3 class="title">
|
||||||
<a name="id2585563"></a><span><strong class="command">trusted-keys</strong></span> Statement Definition
|
<a name="id2585584"></a><span><strong class="command">trusted-keys</strong></span> Statement Definition
|
||||||
and Usage</h3></div></div></div>
|
and Usage</h3></div></div></div>
|
||||||
<p>
|
<p>
|
||||||
The <span><strong class="command">trusted-keys</strong></span> statement defines
|
The <span><strong class="command">trusted-keys</strong></span> statement defines
|
||||||
@@ -4692,7 +4698,7 @@ query-source-v6 address * port *;
|
|||||||
</div>
|
</div>
|
||||||
<div class="sect2" lang="en">
|
<div class="sect2" lang="en">
|
||||||
<div class="titlepage"><div><div><h3 class="title">
|
<div class="titlepage"><div><div><h3 class="title">
|
||||||
<a name="id2585643"></a><span><strong class="command">view</strong></span> Statement Definition and Usage</h3></div></div></div>
|
<a name="id2585664"></a><span><strong class="command">view</strong></span> Statement Definition and Usage</h3></div></div></div>
|
||||||
<p>
|
<p>
|
||||||
The <span><strong class="command">view</strong></span> statement is a powerful
|
The <span><strong class="command">view</strong></span> statement is a powerful
|
||||||
feature
|
feature
|
||||||
@@ -4837,6 +4843,7 @@ view "external" {
|
|||||||
[<span class="optional"> max-transfer-idle-out <em class="replaceable"><code>number</code></em> ; </span>]
|
[<span class="optional"> max-transfer-idle-out <em class="replaceable"><code>number</code></em> ; </span>]
|
||||||
[<span class="optional"> max-transfer-time-out <em class="replaceable"><code>number</code></em> ; </span>]
|
[<span class="optional"> max-transfer-time-out <em class="replaceable"><code>number</code></em> ; </span>]
|
||||||
[<span class="optional"> notify <em class="replaceable"><code>yes_or_no</code></em> | <em class="replaceable"><code>explicit</code></em> | <em class="replaceable"><code>master-only</code></em> ; </span>]
|
[<span class="optional"> notify <em class="replaceable"><code>yes_or_no</code></em> | <em class="replaceable"><code>explicit</code></em> | <em class="replaceable"><code>master-only</code></em> ; </span>]
|
||||||
|
[<span class="optional"> notify-delay <em class="replaceable"><code>seconds</code></em> ; </span>]
|
||||||
[<span class="optional"> pubkey <em class="replaceable"><code>number</code></em> <em class="replaceable"><code>number</code></em> <em class="replaceable"><code>number</code></em> <em class="replaceable"><code>string</code></em> ; </span>]
|
[<span class="optional"> pubkey <em class="replaceable"><code>number</code></em> <em class="replaceable"><code>number</code></em> <em class="replaceable"><code>number</code></em> <em class="replaceable"><code>string</code></em> ; </span>]
|
||||||
[<span class="optional"> notify-source (<em class="replaceable"><code>ip4_addr</code></em> | <code class="constant">*</code>) [<span class="optional">port <em class="replaceable"><code>ip_port</code></em></span>] ; </span>]
|
[<span class="optional"> notify-source (<em class="replaceable"><code>ip4_addr</code></em> | <code class="constant">*</code>) [<span class="optional">port <em class="replaceable"><code>ip_port</code></em></span>] ; </span>]
|
||||||
[<span class="optional"> notify-source-v6 (<em class="replaceable"><code>ip6_addr</code></em> | <code class="constant">*</code>) [<span class="optional">port <em class="replaceable"><code>ip_port</code></em></span>] ; </span>]
|
[<span class="optional"> notify-source-v6 (<em class="replaceable"><code>ip6_addr</code></em> | <code class="constant">*</code>) [<span class="optional">port <em class="replaceable"><code>ip_port</code></em></span>] ; </span>]
|
||||||
@@ -4947,10 +4954,10 @@ zone <em class="replaceable"><code>zone_name</code></em> [<span class="optional"
|
|||||||
</div>
|
</div>
|
||||||
<div class="sect2" lang="en">
|
<div class="sect2" lang="en">
|
||||||
<div class="titlepage"><div><div><h3 class="title">
|
<div class="titlepage"><div><div><h3 class="title">
|
||||||
<a name="id2587040"></a><span><strong class="command">zone</strong></span> Statement Definition and Usage</h3></div></div></div>
|
<a name="id2587066"></a><span><strong class="command">zone</strong></span> Statement Definition and Usage</h3></div></div></div>
|
||||||
<div class="sect3" lang="en">
|
<div class="sect3" lang="en">
|
||||||
<div class="titlepage"><div><div><h4 class="title">
|
<div class="titlepage"><div><div><h4 class="title">
|
||||||
<a name="id2587047"></a>Zone Types</h4></div></div></div>
|
<a name="id2587074"></a>Zone Types</h4></div></div></div>
|
||||||
<div class="informaltable"><table border="1">
|
<div class="informaltable"><table border="1">
|
||||||
<colgroup>
|
<colgroup>
|
||||||
<col>
|
<col>
|
||||||
@@ -5159,7 +5166,7 @@ zone <em class="replaceable"><code>zone_name</code></em> [<span class="optional"
|
|||||||
</div>
|
</div>
|
||||||
<div class="sect3" lang="en">
|
<div class="sect3" lang="en">
|
||||||
<div class="titlepage"><div><div><h4 class="title">
|
<div class="titlepage"><div><div><h4 class="title">
|
||||||
<a name="id2587534"></a>Class</h4></div></div></div>
|
<a name="id2587629"></a>Class</h4></div></div></div>
|
||||||
<p>
|
<p>
|
||||||
The zone's name may optionally be followed by a class. If
|
The zone's name may optionally be followed by a class. If
|
||||||
a class is not specified, class <code class="literal">IN</code> (for <code class="varname">Internet</code>),
|
a class is not specified, class <code class="literal">IN</code> (for <code class="varname">Internet</code>),
|
||||||
@@ -5181,7 +5188,7 @@ zone <em class="replaceable"><code>zone_name</code></em> [<span class="optional"
|
|||||||
</div>
|
</div>
|
||||||
<div class="sect3" lang="en">
|
<div class="sect3" lang="en">
|
||||||
<div class="titlepage"><div><div><h4 class="title">
|
<div class="titlepage"><div><div><h4 class="title">
|
||||||
<a name="id2587568"></a>Zone Options</h4></div></div></div>
|
<a name="id2587731"></a>Zone Options</h4></div></div></div>
|
||||||
<div class="variablelist"><dl>
|
<div class="variablelist"><dl>
|
||||||
<dt><span class="term"><span><strong class="command">allow-notify</strong></span></span></dt>
|
<dt><span class="term"><span><strong class="command">allow-notify</strong></span></span></dt>
|
||||||
<dd><p>
|
<dd><p>
|
||||||
@@ -5671,7 +5678,7 @@ zone <em class="replaceable"><code>zone_name</code></em> [<span class="optional"
|
|||||||
</div>
|
</div>
|
||||||
<div class="sect1" lang="en">
|
<div class="sect1" lang="en">
|
||||||
<div class="titlepage"><div><div><h2 class="title" style="clear: both">
|
<div class="titlepage"><div><div><h2 class="title" style="clear: both">
|
||||||
<a name="id2589344"></a>Zone File</h2></div></div></div>
|
<a name="id2589438"></a>Zone File</h2></div></div></div>
|
||||||
<div class="sect2" lang="en">
|
<div class="sect2" lang="en">
|
||||||
<div class="titlepage"><div><div><h3 class="title">
|
<div class="titlepage"><div><div><h3 class="title">
|
||||||
<a name="types_of_resource_records_and_when_to_use_them"></a>Types of Resource Records and When to Use Them</h3></div></div></div>
|
<a name="types_of_resource_records_and_when_to_use_them"></a>Types of Resource Records and When to Use Them</h3></div></div></div>
|
||||||
@@ -5684,7 +5691,7 @@ zone <em class="replaceable"><code>zone_name</code></em> [<span class="optional"
|
|||||||
</p>
|
</p>
|
||||||
<div class="sect3" lang="en">
|
<div class="sect3" lang="en">
|
||||||
<div class="titlepage"><div><div><h4 class="title">
|
<div class="titlepage"><div><div><h4 class="title">
|
||||||
<a name="id2589362"></a>Resource Records</h4></div></div></div>
|
<a name="id2589457"></a>Resource Records</h4></div></div></div>
|
||||||
<p>
|
<p>
|
||||||
A domain name identifies a node. Each node has a set of
|
A domain name identifies a node. Each node has a set of
|
||||||
resource information, which may be empty. The set of resource
|
resource information, which may be empty. The set of resource
|
||||||
@@ -6335,7 +6342,7 @@ zone <em class="replaceable"><code>zone_name</code></em> [<span class="optional"
|
|||||||
</div>
|
</div>
|
||||||
<div class="sect3" lang="en">
|
<div class="sect3" lang="en">
|
||||||
<div class="titlepage"><div><div><h4 class="title">
|
<div class="titlepage"><div><div><h4 class="title">
|
||||||
<a name="id2590640"></a>Textual expression of RRs</h4></div></div></div>
|
<a name="id2590734"></a>Textual expression of RRs</h4></div></div></div>
|
||||||
<p>
|
<p>
|
||||||
RRs are represented in binary form in the packets of the DNS
|
RRs are represented in binary form in the packets of the DNS
|
||||||
protocol, and are usually represented in highly encoded form
|
protocol, and are usually represented in highly encoded form
|
||||||
@@ -6538,7 +6545,7 @@ zone <em class="replaceable"><code>zone_name</code></em> [<span class="optional"
|
|||||||
</div>
|
</div>
|
||||||
<div class="sect2" lang="en">
|
<div class="sect2" lang="en">
|
||||||
<div class="titlepage"><div><div><h3 class="title">
|
<div class="titlepage"><div><div><h3 class="title">
|
||||||
<a name="id2591365"></a>Discussion of MX Records</h3></div></div></div>
|
<a name="id2591392"></a>Discussion of MX Records</h3></div></div></div>
|
||||||
<p>
|
<p>
|
||||||
As described above, domain servers store information as a
|
As described above, domain servers store information as a
|
||||||
series of resource records, each of which contains a particular
|
series of resource records, each of which contains a particular
|
||||||
@@ -6796,7 +6803,7 @@ zone <em class="replaceable"><code>zone_name</code></em> [<span class="optional"
|
|||||||
</div>
|
</div>
|
||||||
<div class="sect2" lang="en">
|
<div class="sect2" lang="en">
|
||||||
<div class="titlepage"><div><div><h3 class="title">
|
<div class="titlepage"><div><div><h3 class="title">
|
||||||
<a name="id2591985"></a>Inverse Mapping in IPv4</h3></div></div></div>
|
<a name="id2592080"></a>Inverse Mapping in IPv4</h3></div></div></div>
|
||||||
<p>
|
<p>
|
||||||
Reverse name resolution (that is, translation from IP address
|
Reverse name resolution (that is, translation from IP address
|
||||||
to name) is achieved by means of the <span class="emphasis"><em>in-addr.arpa</em></span> domain
|
to name) is achieved by means of the <span class="emphasis"><em>in-addr.arpa</em></span> domain
|
||||||
@@ -6857,7 +6864,7 @@ zone <em class="replaceable"><code>zone_name</code></em> [<span class="optional"
|
|||||||
</div>
|
</div>
|
||||||
<div class="sect2" lang="en">
|
<div class="sect2" lang="en">
|
||||||
<div class="titlepage"><div><div><h3 class="title">
|
<div class="titlepage"><div><div><h3 class="title">
|
||||||
<a name="id2592180"></a>Other Zone File Directives</h3></div></div></div>
|
<a name="id2592275"></a>Other Zone File Directives</h3></div></div></div>
|
||||||
<p>
|
<p>
|
||||||
The Master File Format was initially defined in RFC 1035 and
|
The Master File Format was initially defined in RFC 1035 and
|
||||||
has subsequently been extended. While the Master File Format
|
has subsequently been extended. While the Master File Format
|
||||||
@@ -6872,7 +6879,7 @@ zone <em class="replaceable"><code>zone_name</code></em> [<span class="optional"
|
|||||||
</p>
|
</p>
|
||||||
<div class="sect3" lang="en">
|
<div class="sect3" lang="en">
|
||||||
<div class="titlepage"><div><div><h4 class="title">
|
<div class="titlepage"><div><div><h4 class="title">
|
||||||
<a name="id2592202"></a>The <span><strong class="command">$ORIGIN</strong></span> Directive</h4></div></div></div>
|
<a name="id2592365"></a>The <span><strong class="command">$ORIGIN</strong></span> Directive</h4></div></div></div>
|
||||||
<p>
|
<p>
|
||||||
Syntax: <span><strong class="command">$ORIGIN</strong></span>
|
Syntax: <span><strong class="command">$ORIGIN</strong></span>
|
||||||
<em class="replaceable"><code>domain-name</code></em>
|
<em class="replaceable"><code>domain-name</code></em>
|
||||||
@@ -6900,7 +6907,7 @@ WWW.EXAMPLE.COM. CNAME MAIN-SERVER.EXAMPLE.COM.
|
|||||||
</div>
|
</div>
|
||||||
<div class="sect3" lang="en">
|
<div class="sect3" lang="en">
|
||||||
<div class="titlepage"><div><div><h4 class="title">
|
<div class="titlepage"><div><div><h4 class="title">
|
||||||
<a name="id2592331"></a>The <span><strong class="command">$INCLUDE</strong></span> Directive</h4></div></div></div>
|
<a name="id2592426"></a>The <span><strong class="command">$INCLUDE</strong></span> Directive</h4></div></div></div>
|
||||||
<p>
|
<p>
|
||||||
Syntax: <span><strong class="command">$INCLUDE</strong></span>
|
Syntax: <span><strong class="command">$INCLUDE</strong></span>
|
||||||
<em class="replaceable"><code>filename</code></em>
|
<em class="replaceable"><code>filename</code></em>
|
||||||
@@ -6936,7 +6943,7 @@ WWW.EXAMPLE.COM. CNAME MAIN-SERVER.EXAMPLE.COM.
|
|||||||
</div>
|
</div>
|
||||||
<div class="sect3" lang="en">
|
<div class="sect3" lang="en">
|
||||||
<div class="titlepage"><div><div><h4 class="title">
|
<div class="titlepage"><div><div><h4 class="title">
|
||||||
<a name="id2592469"></a>The <span><strong class="command">$TTL</strong></span> Directive</h4></div></div></div>
|
<a name="id2592496"></a>The <span><strong class="command">$TTL</strong></span> Directive</h4></div></div></div>
|
||||||
<p>
|
<p>
|
||||||
Syntax: <span><strong class="command">$TTL</strong></span>
|
Syntax: <span><strong class="command">$TTL</strong></span>
|
||||||
<em class="replaceable"><code>default-ttl</code></em>
|
<em class="replaceable"><code>default-ttl</code></em>
|
||||||
@@ -6955,7 +6962,7 @@ WWW.EXAMPLE.COM. CNAME MAIN-SERVER.EXAMPLE.COM.
|
|||||||
</div>
|
</div>
|
||||||
<div class="sect2" lang="en">
|
<div class="sect2" lang="en">
|
||||||
<div class="titlepage"><div><div><h3 class="title">
|
<div class="titlepage"><div><div><h3 class="title">
|
||||||
<a name="id2592505"></a><acronym class="acronym">BIND</acronym> Master File Extension: the <span><strong class="command">$GENERATE</strong></span> Directive</h3></div></div></div>
|
<a name="id2592532"></a><acronym class="acronym">BIND</acronym> Master File Extension: the <span><strong class="command">$GENERATE</strong></span> Directive</h3></div></div></div>
|
||||||
<p>
|
<p>
|
||||||
Syntax: <span><strong class="command">$GENERATE</strong></span>
|
Syntax: <span><strong class="command">$GENERATE</strong></span>
|
||||||
<em class="replaceable"><code>range</code></em>
|
<em class="replaceable"><code>range</code></em>
|
||||||
|
@@ -14,7 +14,7 @@
|
|||||||
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
- PERFORMANCE OF THIS SOFTWARE.
|
- PERFORMANCE OF THIS SOFTWARE.
|
||||||
-->
|
-->
|
||||||
<!-- $Id: Bv9ARM.ch07.html,v 1.139 2007/05/08 02:30:42 marka Exp $ -->
|
<!-- $Id: Bv9ARM.ch07.html,v 1.140 2007/05/09 03:33:51 marka Exp $ -->
|
||||||
<html>
|
<html>
|
||||||
<head>
|
<head>
|
||||||
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
||||||
@@ -46,10 +46,10 @@
|
|||||||
<p><b>Table of Contents</b></p>
|
<p><b>Table of Contents</b></p>
|
||||||
<dl>
|
<dl>
|
||||||
<dt><span class="sect1"><a href="Bv9ARM.ch07.html#Access_Control_Lists">Access Control Lists</a></span></dt>
|
<dt><span class="sect1"><a href="Bv9ARM.ch07.html#Access_Control_Lists">Access Control Lists</a></span></dt>
|
||||||
<dt><span class="sect1"><a href="Bv9ARM.ch07.html#id2593121"><span><strong class="command">Chroot</strong></span> and <span><strong class="command">Setuid</strong></span></a></span></dt>
|
<dt><span class="sect1"><a href="Bv9ARM.ch07.html#id2593147"><span><strong class="command">Chroot</strong></span> and <span><strong class="command">Setuid</strong></span></a></span></dt>
|
||||||
<dd><dl>
|
<dd><dl>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch07.html#id2593197">The <span><strong class="command">chroot</strong></span> Environment</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch07.html#id2593224">The <span><strong class="command">chroot</strong></span> Environment</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch07.html#id2593325">Using the <span><strong class="command">setuid</strong></span> Function</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch07.html#id2593352">Using the <span><strong class="command">setuid</strong></span> Function</a></span></dt>
|
||||||
</dl></dd>
|
</dl></dd>
|
||||||
<dt><span class="sect1"><a href="Bv9ARM.ch07.html#dynamic_update_security">Dynamic Update Security</a></span></dt>
|
<dt><span class="sect1"><a href="Bv9ARM.ch07.html#dynamic_update_security">Dynamic Update Security</a></span></dt>
|
||||||
</dl>
|
</dl>
|
||||||
@@ -119,7 +119,7 @@ zone "example.com" {
|
|||||||
</div>
|
</div>
|
||||||
<div class="sect1" lang="en">
|
<div class="sect1" lang="en">
|
||||||
<div class="titlepage"><div><div><h2 class="title" style="clear: both">
|
<div class="titlepage"><div><div><h2 class="title" style="clear: both">
|
||||||
<a name="id2593121"></a><span><strong class="command">Chroot</strong></span> and <span><strong class="command">Setuid</strong></span>
|
<a name="id2593147"></a><span><strong class="command">Chroot</strong></span> and <span><strong class="command">Setuid</strong></span>
|
||||||
</h2></div></div></div>
|
</h2></div></div></div>
|
||||||
<p>
|
<p>
|
||||||
On UNIX servers, it is possible to run <acronym class="acronym">BIND</acronym> in a <span class="emphasis"><em>chrooted</em></span> environment
|
On UNIX servers, it is possible to run <acronym class="acronym">BIND</acronym> in a <span class="emphasis"><em>chrooted</em></span> environment
|
||||||
@@ -143,7 +143,7 @@ zone "example.com" {
|
|||||||
</p>
|
</p>
|
||||||
<div class="sect2" lang="en">
|
<div class="sect2" lang="en">
|
||||||
<div class="titlepage"><div><div><h3 class="title">
|
<div class="titlepage"><div><div><h3 class="title">
|
||||||
<a name="id2593197"></a>The <span><strong class="command">chroot</strong></span> Environment</h3></div></div></div>
|
<a name="id2593224"></a>The <span><strong class="command">chroot</strong></span> Environment</h3></div></div></div>
|
||||||
<p>
|
<p>
|
||||||
In order for a <span><strong class="command">chroot</strong></span> environment
|
In order for a <span><strong class="command">chroot</strong></span> environment
|
||||||
to
|
to
|
||||||
@@ -171,7 +171,7 @@ zone "example.com" {
|
|||||||
</div>
|
</div>
|
||||||
<div class="sect2" lang="en">
|
<div class="sect2" lang="en">
|
||||||
<div class="titlepage"><div><div><h3 class="title">
|
<div class="titlepage"><div><div><h3 class="title">
|
||||||
<a name="id2593325"></a>Using the <span><strong class="command">setuid</strong></span> Function</h3></div></div></div>
|
<a name="id2593352"></a>Using the <span><strong class="command">setuid</strong></span> Function</h3></div></div></div>
|
||||||
<p>
|
<p>
|
||||||
Prior to running the <span><strong class="command">named</strong></span> daemon,
|
Prior to running the <span><strong class="command">named</strong></span> daemon,
|
||||||
use
|
use
|
||||||
|
@@ -14,7 +14,7 @@
|
|||||||
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
- PERFORMANCE OF THIS SOFTWARE.
|
- PERFORMANCE OF THIS SOFTWARE.
|
||||||
-->
|
-->
|
||||||
<!-- $Id: Bv9ARM.ch08.html,v 1.139 2007/05/08 02:30:42 marka Exp $ -->
|
<!-- $Id: Bv9ARM.ch08.html,v 1.140 2007/05/09 03:33:51 marka Exp $ -->
|
||||||
<html>
|
<html>
|
||||||
<head>
|
<head>
|
||||||
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
||||||
@@ -45,18 +45,18 @@
|
|||||||
<div class="toc">
|
<div class="toc">
|
||||||
<p><b>Table of Contents</b></p>
|
<p><b>Table of Contents</b></p>
|
||||||
<dl>
|
<dl>
|
||||||
<dt><span class="sect1"><a href="Bv9ARM.ch08.html#id2593405">Common Problems</a></span></dt>
|
<dt><span class="sect1"><a href="Bv9ARM.ch08.html#id2593432">Common Problems</a></span></dt>
|
||||||
<dd><dl><dt><span class="sect2"><a href="Bv9ARM.ch08.html#id2593411">It's not working; how can I figure out what's wrong?</a></span></dt></dl></dd>
|
<dd><dl><dt><span class="sect2"><a href="Bv9ARM.ch08.html#id2593437">It's not working; how can I figure out what's wrong?</a></span></dt></dl></dd>
|
||||||
<dt><span class="sect1"><a href="Bv9ARM.ch08.html#id2593422">Incrementing and Changing the Serial Number</a></span></dt>
|
<dt><span class="sect1"><a href="Bv9ARM.ch08.html#id2593449">Incrementing and Changing the Serial Number</a></span></dt>
|
||||||
<dt><span class="sect1"><a href="Bv9ARM.ch08.html#id2593440">Where Can I Get Help?</a></span></dt>
|
<dt><span class="sect1"><a href="Bv9ARM.ch08.html#id2593466">Where Can I Get Help?</a></span></dt>
|
||||||
</dl>
|
</dl>
|
||||||
</div>
|
</div>
|
||||||
<div class="sect1" lang="en">
|
<div class="sect1" lang="en">
|
||||||
<div class="titlepage"><div><div><h2 class="title" style="clear: both">
|
<div class="titlepage"><div><div><h2 class="title" style="clear: both">
|
||||||
<a name="id2593405"></a>Common Problems</h2></div></div></div>
|
<a name="id2593432"></a>Common Problems</h2></div></div></div>
|
||||||
<div class="sect2" lang="en">
|
<div class="sect2" lang="en">
|
||||||
<div class="titlepage"><div><div><h3 class="title">
|
<div class="titlepage"><div><div><h3 class="title">
|
||||||
<a name="id2593411"></a>It's not working; how can I figure out what's wrong?</h3></div></div></div>
|
<a name="id2593437"></a>It's not working; how can I figure out what's wrong?</h3></div></div></div>
|
||||||
<p>
|
<p>
|
||||||
The best solution to solving installation and
|
The best solution to solving installation and
|
||||||
configuration issues is to take preventative measures by setting
|
configuration issues is to take preventative measures by setting
|
||||||
@@ -68,7 +68,7 @@
|
|||||||
</div>
|
</div>
|
||||||
<div class="sect1" lang="en">
|
<div class="sect1" lang="en">
|
||||||
<div class="titlepage"><div><div><h2 class="title" style="clear: both">
|
<div class="titlepage"><div><div><h2 class="title" style="clear: both">
|
||||||
<a name="id2593422"></a>Incrementing and Changing the Serial Number</h2></div></div></div>
|
<a name="id2593449"></a>Incrementing and Changing the Serial Number</h2></div></div></div>
|
||||||
<p>
|
<p>
|
||||||
Zone serial numbers are just numbers — they aren't date
|
Zone serial numbers are just numbers — they aren't date
|
||||||
related. A lot of people set them to a number that represents a
|
related. A lot of people set them to a number that represents a
|
||||||
@@ -95,7 +95,7 @@
|
|||||||
</div>
|
</div>
|
||||||
<div class="sect1" lang="en">
|
<div class="sect1" lang="en">
|
||||||
<div class="titlepage"><div><div><h2 class="title" style="clear: both">
|
<div class="titlepage"><div><div><h2 class="title" style="clear: both">
|
||||||
<a name="id2593440"></a>Where Can I Get Help?</h2></div></div></div>
|
<a name="id2593466"></a>Where Can I Get Help?</h2></div></div></div>
|
||||||
<p>
|
<p>
|
||||||
The Internet Systems Consortium
|
The Internet Systems Consortium
|
||||||
(<acronym class="acronym">ISC</acronym>) offers a wide range
|
(<acronym class="acronym">ISC</acronym>) offers a wide range
|
||||||
|
@@ -14,7 +14,7 @@
|
|||||||
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
- PERFORMANCE OF THIS SOFTWARE.
|
- PERFORMANCE OF THIS SOFTWARE.
|
||||||
-->
|
-->
|
||||||
<!-- $Id: Bv9ARM.ch09.html,v 1.139 2007/05/08 02:30:42 marka Exp $ -->
|
<!-- $Id: Bv9ARM.ch09.html,v 1.140 2007/05/09 03:33:51 marka Exp $ -->
|
||||||
<html>
|
<html>
|
||||||
<head>
|
<head>
|
||||||
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
||||||
@@ -45,21 +45,21 @@
|
|||||||
<div class="toc">
|
<div class="toc">
|
||||||
<p><b>Table of Contents</b></p>
|
<p><b>Table of Contents</b></p>
|
||||||
<dl>
|
<dl>
|
||||||
<dt><span class="sect1"><a href="Bv9ARM.ch09.html#id2593501">Acknowledgments</a></span></dt>
|
<dt><span class="sect1"><a href="Bv9ARM.ch09.html#id2593528">Acknowledgments</a></span></dt>
|
||||||
<dd><dl><dt><span class="sect2"><a href="Bv9ARM.ch09.html#historical_dns_information">A Brief History of the <acronym class="acronym">DNS</acronym> and <acronym class="acronym">BIND</acronym></a></span></dt></dl></dd>
|
<dd><dl><dt><span class="sect2"><a href="Bv9ARM.ch09.html#historical_dns_information">A Brief History of the <acronym class="acronym">DNS</acronym> and <acronym class="acronym">BIND</acronym></a></span></dt></dl></dd>
|
||||||
<dt><span class="sect1"><a href="Bv9ARM.ch09.html#id2593732">General <acronym class="acronym">DNS</acronym> Reference Information</a></span></dt>
|
<dt><span class="sect1"><a href="Bv9ARM.ch09.html#id2593690">General <acronym class="acronym">DNS</acronym> Reference Information</a></span></dt>
|
||||||
<dd><dl><dt><span class="sect2"><a href="Bv9ARM.ch09.html#ipv6addresses">IPv6 addresses (AAAA)</a></span></dt></dl></dd>
|
<dd><dl><dt><span class="sect2"><a href="Bv9ARM.ch09.html#ipv6addresses">IPv6 addresses (AAAA)</a></span></dt></dl></dd>
|
||||||
<dt><span class="sect1"><a href="Bv9ARM.ch09.html#bibliography">Bibliography (and Suggested Reading)</a></span></dt>
|
<dt><span class="sect1"><a href="Bv9ARM.ch09.html#bibliography">Bibliography (and Suggested Reading)</a></span></dt>
|
||||||
<dd><dl>
|
<dd><dl>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch09.html#rfcs">Request for Comments (RFCs)</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch09.html#rfcs">Request for Comments (RFCs)</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch09.html#internet_drafts">Internet Drafts</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch09.html#internet_drafts">Internet Drafts</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch09.html#id2597104">Other Documents About <acronym class="acronym">BIND</acronym></a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch09.html#id2597130">Other Documents About <acronym class="acronym">BIND</acronym></a></span></dt>
|
||||||
</dl></dd>
|
</dl></dd>
|
||||||
</dl>
|
</dl>
|
||||||
</div>
|
</div>
|
||||||
<div class="sect1" lang="en">
|
<div class="sect1" lang="en">
|
||||||
<div class="titlepage"><div><div><h2 class="title" style="clear: both">
|
<div class="titlepage"><div><div><h2 class="title" style="clear: both">
|
||||||
<a name="id2593501"></a>Acknowledgments</h2></div></div></div>
|
<a name="id2593528"></a>Acknowledgments</h2></div></div></div>
|
||||||
<div class="sect2" lang="en">
|
<div class="sect2" lang="en">
|
||||||
<div class="titlepage"><div><div><h3 class="title">
|
<div class="titlepage"><div><div><h3 class="title">
|
||||||
<a name="historical_dns_information"></a>A Brief History of the <acronym class="acronym">DNS</acronym> and <acronym class="acronym">BIND</acronym>
|
<a name="historical_dns_information"></a>A Brief History of the <acronym class="acronym">DNS</acronym> and <acronym class="acronym">BIND</acronym>
|
||||||
@@ -149,7 +149,7 @@
|
|||||||
</div>
|
</div>
|
||||||
<div class="sect1" lang="en">
|
<div class="sect1" lang="en">
|
||||||
<div class="titlepage"><div><div><h2 class="title" style="clear: both">
|
<div class="titlepage"><div><div><h2 class="title" style="clear: both">
|
||||||
<a name="id2593732"></a>General <acronym class="acronym">DNS</acronym> Reference Information</h2></div></div></div>
|
<a name="id2593690"></a>General <acronym class="acronym">DNS</acronym> Reference Information</h2></div></div></div>
|
||||||
<div class="sect2" lang="en">
|
<div class="sect2" lang="en">
|
||||||
<div class="titlepage"><div><div><h3 class="title">
|
<div class="titlepage"><div><div><h3 class="title">
|
||||||
<a name="ipv6addresses"></a>IPv6 addresses (AAAA)</h3></div></div></div>
|
<a name="ipv6addresses"></a>IPv6 addresses (AAAA)</h3></div></div></div>
|
||||||
@@ -237,17 +237,17 @@
|
|||||||
</p>
|
</p>
|
||||||
<div class="bibliography">
|
<div class="bibliography">
|
||||||
<div class="titlepage"><div><div><h4 class="title">
|
<div class="titlepage"><div><div><h4 class="title">
|
||||||
<a name="id2593920"></a>Bibliography</h4></div></div></div>
|
<a name="id2593946"></a>Bibliography</h4></div></div></div>
|
||||||
<div class="bibliodiv">
|
<div class="bibliodiv">
|
||||||
<h3 class="title">Standards</h3>
|
<h3 class="title">Standards</h3>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2593930"></a><p>[<abbr class="abbrev">RFC974</abbr>] <span class="author"><span class="firstname">C.</span> <span class="surname">Partridge</span>. </span><span class="title"><i>Mail Routing and the Domain System</i>. </span><span class="pubdate">January 1986. </span></p>
|
<a name="id2593957"></a><p>[<abbr class="abbrev">RFC974</abbr>] <span class="author"><span class="firstname">C.</span> <span class="surname">Partridge</span>. </span><span class="title"><i>Mail Routing and the Domain System</i>. </span><span class="pubdate">January 1986. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2593954"></a><p>[<abbr class="abbrev">RFC1034</abbr>] <span class="author"><span class="firstname">P.V.</span> <span class="surname">Mockapetris</span>. </span><span class="title"><i>Domain Names — Concepts and Facilities</i>. </span><span class="pubdate">November 1987. </span></p>
|
<a name="id2593980"></a><p>[<abbr class="abbrev">RFC1034</abbr>] <span class="author"><span class="firstname">P.V.</span> <span class="surname">Mockapetris</span>. </span><span class="title"><i>Domain Names — Concepts and Facilities</i>. </span><span class="pubdate">November 1987. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2593977"></a><p>[<abbr class="abbrev">RFC1035</abbr>] <span class="author"><span class="firstname">P. V.</span> <span class="surname">Mockapetris</span>. </span><span class="title"><i>Domain Names — Implementation and
|
<a name="id2594004"></a><p>[<abbr class="abbrev">RFC1035</abbr>] <span class="author"><span class="firstname">P. V.</span> <span class="surname">Mockapetris</span>. </span><span class="title"><i>Domain Names — Implementation and
|
||||||
Specification</i>. </span><span class="pubdate">November 1987. </span></p>
|
Specification</i>. </span><span class="pubdate">November 1987. </span></p>
|
||||||
</div>
|
</div>
|
||||||
</div>
|
</div>
|
||||||
@@ -255,42 +255,42 @@
|
|||||||
<h3 class="title">
|
<h3 class="title">
|
||||||
<a name="proposed_standards"></a>Proposed Standards</h3>
|
<a name="proposed_standards"></a>Proposed Standards</h3>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2594013"></a><p>[<abbr class="abbrev">RFC2181</abbr>] <span class="author"><span class="firstname">R., R. Bush</span> <span class="surname">Elz</span>. </span><span class="title"><i>Clarifications to the <acronym class="acronym">DNS</acronym>
|
<a name="id2594040"></a><p>[<abbr class="abbrev">RFC2181</abbr>] <span class="author"><span class="firstname">R., R. Bush</span> <span class="surname">Elz</span>. </span><span class="title"><i>Clarifications to the <acronym class="acronym">DNS</acronym>
|
||||||
Specification</i>. </span><span class="pubdate">July 1997. </span></p>
|
Specification</i>. </span><span class="pubdate">July 1997. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2594040"></a><p>[<abbr class="abbrev">RFC2308</abbr>] <span class="author"><span class="firstname">M.</span> <span class="surname">Andrews</span>. </span><span class="title"><i>Negative Caching of <acronym class="acronym">DNS</acronym>
|
<a name="id2594067"></a><p>[<abbr class="abbrev">RFC2308</abbr>] <span class="author"><span class="firstname">M.</span> <span class="surname">Andrews</span>. </span><span class="title"><i>Negative Caching of <acronym class="acronym">DNS</acronym>
|
||||||
Queries</i>. </span><span class="pubdate">March 1998. </span></p>
|
Queries</i>. </span><span class="pubdate">March 1998. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2594066"></a><p>[<abbr class="abbrev">RFC1995</abbr>] <span class="author"><span class="firstname">M.</span> <span class="surname">Ohta</span>. </span><span class="title"><i>Incremental Zone Transfer in <acronym class="acronym">DNS</acronym></i>. </span><span class="pubdate">August 1996. </span></p>
|
<a name="id2594092"></a><p>[<abbr class="abbrev">RFC1995</abbr>] <span class="author"><span class="firstname">M.</span> <span class="surname">Ohta</span>. </span><span class="title"><i>Incremental Zone Transfer in <acronym class="acronym">DNS</acronym></i>. </span><span class="pubdate">August 1996. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2594090"></a><p>[<abbr class="abbrev">RFC1996</abbr>] <span class="author"><span class="firstname">P.</span> <span class="surname">Vixie</span>. </span><span class="title"><i>A Mechanism for Prompt Notification of Zone Changes</i>. </span><span class="pubdate">August 1996. </span></p>
|
<a name="id2594117"></a><p>[<abbr class="abbrev">RFC1996</abbr>] <span class="author"><span class="firstname">P.</span> <span class="surname">Vixie</span>. </span><span class="title"><i>A Mechanism for Prompt Notification of Zone Changes</i>. </span><span class="pubdate">August 1996. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2594114"></a><p>[<abbr class="abbrev">RFC2136</abbr>] <span class="authorgroup"><span class="firstname">P.</span> <span class="surname">Vixie</span>, <span class="firstname">S.</span> <span class="surname">Thomson</span>, <span class="firstname">Y.</span> <span class="surname">Rekhter</span>, and <span class="firstname">J.</span> <span class="surname">Bound</span>. </span><span class="title"><i>Dynamic Updates in the Domain Name System</i>. </span><span class="pubdate">April 1997. </span></p>
|
<a name="id2594140"></a><p>[<abbr class="abbrev">RFC2136</abbr>] <span class="authorgroup"><span class="firstname">P.</span> <span class="surname">Vixie</span>, <span class="firstname">S.</span> <span class="surname">Thomson</span>, <span class="firstname">Y.</span> <span class="surname">Rekhter</span>, and <span class="firstname">J.</span> <span class="surname">Bound</span>. </span><span class="title"><i>Dynamic Updates in the Domain Name System</i>. </span><span class="pubdate">April 1997. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2594169"></a><p>[<abbr class="abbrev">RFC2671</abbr>] <span class="authorgroup"><span class="firstname">P.</span> <span class="surname">Vixie</span>. </span><span class="title"><i>Extension Mechanisms for DNS (EDNS0)</i>. </span><span class="pubdate">August 1997. </span></p>
|
<a name="id2594196"></a><p>[<abbr class="abbrev">RFC2671</abbr>] <span class="authorgroup"><span class="firstname">P.</span> <span class="surname">Vixie</span>. </span><span class="title"><i>Extension Mechanisms for DNS (EDNS0)</i>. </span><span class="pubdate">August 1997. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2594196"></a><p>[<abbr class="abbrev">RFC2672</abbr>] <span class="authorgroup"><span class="firstname">M.</span> <span class="surname">Crawford</span>. </span><span class="title"><i>Non-Terminal DNS Name Redirection</i>. </span><span class="pubdate">August 1999. </span></p>
|
<a name="id2594222"></a><p>[<abbr class="abbrev">RFC2672</abbr>] <span class="authorgroup"><span class="firstname">M.</span> <span class="surname">Crawford</span>. </span><span class="title"><i>Non-Terminal DNS Name Redirection</i>. </span><span class="pubdate">August 1999. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2594222"></a><p>[<abbr class="abbrev">RFC2845</abbr>] <span class="authorgroup"><span class="firstname">P.</span> <span class="surname">Vixie</span>, <span class="firstname">O.</span> <span class="surname">Gudmundsson</span>, <span class="firstname">D.</span> <span class="surname">Eastlake</span>, <span class="lineage">3rd</span>, and <span class="firstname">B.</span> <span class="surname">Wellington</span>. </span><span class="title"><i>Secret Key Transaction Authentication for <acronym class="acronym">DNS</acronym> (TSIG)</i>. </span><span class="pubdate">May 2000. </span></p>
|
<a name="id2594249"></a><p>[<abbr class="abbrev">RFC2845</abbr>] <span class="authorgroup"><span class="firstname">P.</span> <span class="surname">Vixie</span>, <span class="firstname">O.</span> <span class="surname">Gudmundsson</span>, <span class="firstname">D.</span> <span class="surname">Eastlake</span>, <span class="lineage">3rd</span>, and <span class="firstname">B.</span> <span class="surname">Wellington</span>. </span><span class="title"><i>Secret Key Transaction Authentication for <acronym class="acronym">DNS</acronym> (TSIG)</i>. </span><span class="pubdate">May 2000. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2594284"></a><p>[<abbr class="abbrev">RFC2930</abbr>] <span class="authorgroup"><span class="firstname">D.</span> <span class="surname">Eastlake</span>, <span class="lineage">3rd</span>. </span><span class="title"><i>Secret Key Establishment for DNS (TKEY RR)</i>. </span><span class="pubdate">September 2000. </span></p>
|
<a name="id2594311"></a><p>[<abbr class="abbrev">RFC2930</abbr>] <span class="authorgroup"><span class="firstname">D.</span> <span class="surname">Eastlake</span>, <span class="lineage">3rd</span>. </span><span class="title"><i>Secret Key Establishment for DNS (TKEY RR)</i>. </span><span class="pubdate">September 2000. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2594314"></a><p>[<abbr class="abbrev">RFC2931</abbr>] <span class="authorgroup"><span class="firstname">D.</span> <span class="surname">Eastlake</span>, <span class="lineage">3rd</span>. </span><span class="title"><i>DNS Request and Transaction Signatures (SIG(0)s)</i>. </span><span class="pubdate">September 2000. </span></p>
|
<a name="id2594341"></a><p>[<abbr class="abbrev">RFC2931</abbr>] <span class="authorgroup"><span class="firstname">D.</span> <span class="surname">Eastlake</span>, <span class="lineage">3rd</span>. </span><span class="title"><i>DNS Request and Transaction Signatures (SIG(0)s)</i>. </span><span class="pubdate">September 2000. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2594344"></a><p>[<abbr class="abbrev">RFC3007</abbr>] <span class="authorgroup"><span class="firstname">B.</span> <span class="surname">Wellington</span>. </span><span class="title"><i>Secure Domain Name System (DNS) Dynamic Update</i>. </span><span class="pubdate">November 2000. </span></p>
|
<a name="id2594371"></a><p>[<abbr class="abbrev">RFC3007</abbr>] <span class="authorgroup"><span class="firstname">B.</span> <span class="surname">Wellington</span>. </span><span class="title"><i>Secure Domain Name System (DNS) Dynamic Update</i>. </span><span class="pubdate">November 2000. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2594371"></a><p>[<abbr class="abbrev">RFC3645</abbr>] <span class="authorgroup"><span class="firstname">S.</span> <span class="surname">Kwan</span>, <span class="firstname">P.</span> <span class="surname">Garg</span>, <span class="firstname">J.</span> <span class="surname">Gilroy</span>, <span class="firstname">L.</span> <span class="surname">Esibov</span>, <span class="firstname">J.</span> <span class="surname">Westhead</span>, and <span class="firstname">R.</span> <span class="surname">Hall</span>. </span><span class="title"><i>Generic Security Service Algorithm for Secret
|
<a name="id2594397"></a><p>[<abbr class="abbrev">RFC3645</abbr>] <span class="authorgroup"><span class="firstname">S.</span> <span class="surname">Kwan</span>, <span class="firstname">P.</span> <span class="surname">Garg</span>, <span class="firstname">J.</span> <span class="surname">Gilroy</span>, <span class="firstname">L.</span> <span class="surname">Esibov</span>, <span class="firstname">J.</span> <span class="surname">Westhead</span>, and <span class="firstname">R.</span> <span class="surname">Hall</span>. </span><span class="title"><i>Generic Security Service Algorithm for Secret
|
||||||
Key Transaction Authentication for DNS
|
Key Transaction Authentication for DNS
|
||||||
(GSS-TSIG)</i>. </span><span class="pubdate">October 2003. </span></p>
|
(GSS-TSIG)</i>. </span><span class="pubdate">October 2003. </span></p>
|
||||||
</div>
|
</div>
|
||||||
@@ -299,19 +299,19 @@
|
|||||||
<h3 class="title">
|
<h3 class="title">
|
||||||
<acronym class="acronym">DNS</acronym> Security Proposed Standards</h3>
|
<acronym class="acronym">DNS</acronym> Security Proposed Standards</h3>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2594521"></a><p>[<abbr class="abbrev">RFC3225</abbr>] <span class="authorgroup"><span class="firstname">D.</span> <span class="surname">Conrad</span>. </span><span class="title"><i>Indicating Resolver Support of DNSSEC</i>. </span><span class="pubdate">December 2001. </span></p>
|
<a name="id2594548"></a><p>[<abbr class="abbrev">RFC3225</abbr>] <span class="authorgroup"><span class="firstname">D.</span> <span class="surname">Conrad</span>. </span><span class="title"><i>Indicating Resolver Support of DNSSEC</i>. </span><span class="pubdate">December 2001. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2594548"></a><p>[<abbr class="abbrev">RFC3833</abbr>] <span class="authorgroup"><span class="firstname">D.</span> <span class="surname">Atkins</span> and <span class="firstname">R.</span> <span class="surname">Austein</span>. </span><span class="title"><i>Threat Analysis of the Domain Name System (DNS)</i>. </span><span class="pubdate">August 2004. </span></p>
|
<a name="id2594574"></a><p>[<abbr class="abbrev">RFC3833</abbr>] <span class="authorgroup"><span class="firstname">D.</span> <span class="surname">Atkins</span> and <span class="firstname">R.</span> <span class="surname">Austein</span>. </span><span class="title"><i>Threat Analysis of the Domain Name System (DNS)</i>. </span><span class="pubdate">August 2004. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2594584"></a><p>[<abbr class="abbrev">RFC4033</abbr>] <span class="authorgroup"><span class="firstname">R.</span> <span class="surname">Arends</span>, <span class="firstname">R.</span> <span class="surname">Austein</span>, <span class="firstname">M.</span> <span class="surname">Larson</span>, <span class="firstname">D.</span> <span class="surname">Massey</span>, and <span class="firstname">S.</span> <span class="surname">Rose</span>. </span><span class="title"><i>DNS Security Introduction and Requirements</i>. </span><span class="pubdate">March 2005. </span></p>
|
<a name="id2594611"></a><p>[<abbr class="abbrev">RFC4033</abbr>] <span class="authorgroup"><span class="firstname">R.</span> <span class="surname">Arends</span>, <span class="firstname">R.</span> <span class="surname">Austein</span>, <span class="firstname">M.</span> <span class="surname">Larson</span>, <span class="firstname">D.</span> <span class="surname">Massey</span>, and <span class="firstname">S.</span> <span class="surname">Rose</span>. </span><span class="title"><i>DNS Security Introduction and Requirements</i>. </span><span class="pubdate">March 2005. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2594649"></a><p>[<abbr class="abbrev">RFC4044</abbr>] <span class="authorgroup"><span class="firstname">R.</span> <span class="surname">Arends</span>, <span class="firstname">R.</span> <span class="surname">Austein</span>, <span class="firstname">M.</span> <span class="surname">Larson</span>, <span class="firstname">D.</span> <span class="surname">Massey</span>, and <span class="firstname">S.</span> <span class="surname">Rose</span>. </span><span class="title"><i>Resource Records for the DNS Security Extensions</i>. </span><span class="pubdate">March 2005. </span></p>
|
<a name="id2594676"></a><p>[<abbr class="abbrev">RFC4044</abbr>] <span class="authorgroup"><span class="firstname">R.</span> <span class="surname">Arends</span>, <span class="firstname">R.</span> <span class="surname">Austein</span>, <span class="firstname">M.</span> <span class="surname">Larson</span>, <span class="firstname">D.</span> <span class="surname">Massey</span>, and <span class="firstname">S.</span> <span class="surname">Rose</span>. </span><span class="title"><i>Resource Records for the DNS Security Extensions</i>. </span><span class="pubdate">March 2005. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2594714"></a><p>[<abbr class="abbrev">RFC4035</abbr>] <span class="authorgroup"><span class="firstname">R.</span> <span class="surname">Arends</span>, <span class="firstname">R.</span> <span class="surname">Austein</span>, <span class="firstname">M.</span> <span class="surname">Larson</span>, <span class="firstname">D.</span> <span class="surname">Massey</span>, and <span class="firstname">S.</span> <span class="surname">Rose</span>. </span><span class="title"><i>Protocol Modifications for the DNS
|
<a name="id2594741"></a><p>[<abbr class="abbrev">RFC4035</abbr>] <span class="authorgroup"><span class="firstname">R.</span> <span class="surname">Arends</span>, <span class="firstname">R.</span> <span class="surname">Austein</span>, <span class="firstname">M.</span> <span class="surname">Larson</span>, <span class="firstname">D.</span> <span class="surname">Massey</span>, and <span class="firstname">S.</span> <span class="surname">Rose</span>. </span><span class="title"><i>Protocol Modifications for the DNS
|
||||||
Security Extensions</i>. </span><span class="pubdate">March 2005. </span></p>
|
Security Extensions</i>. </span><span class="pubdate">March 2005. </span></p>
|
||||||
</div>
|
</div>
|
||||||
</div>
|
</div>
|
||||||
@@ -319,146 +319,146 @@
|
|||||||
<h3 class="title">Other Important RFCs About <acronym class="acronym">DNS</acronym>
|
<h3 class="title">Other Important RFCs About <acronym class="acronym">DNS</acronym>
|
||||||
Implementation</h3>
|
Implementation</h3>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2594788"></a><p>[<abbr class="abbrev">RFC1535</abbr>] <span class="author"><span class="firstname">E.</span> <span class="surname">Gavron</span>. </span><span class="title"><i>A Security Problem and Proposed Correction With Widely
|
<a name="id2594814"></a><p>[<abbr class="abbrev">RFC1535</abbr>] <span class="author"><span class="firstname">E.</span> <span class="surname">Gavron</span>. </span><span class="title"><i>A Security Problem and Proposed Correction With Widely
|
||||||
Deployed <acronym class="acronym">DNS</acronym> Software.</i>. </span><span class="pubdate">October 1993. </span></p>
|
Deployed <acronym class="acronym">DNS</acronym> Software.</i>. </span><span class="pubdate">October 1993. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2594813"></a><p>[<abbr class="abbrev">RFC1536</abbr>] <span class="authorgroup"><span class="firstname">A.</span> <span class="surname">Kumar</span>, <span class="firstname">J.</span> <span class="surname">Postel</span>, <span class="firstname">C.</span> <span class="surname">Neuman</span>, <span class="firstname">P.</span> <span class="surname">Danzig</span>, and <span class="firstname">S.</span> <span class="surname">Miller</span>. </span><span class="title"><i>Common <acronym class="acronym">DNS</acronym> Implementation
|
<a name="id2594840"></a><p>[<abbr class="abbrev">RFC1536</abbr>] <span class="authorgroup"><span class="firstname">A.</span> <span class="surname">Kumar</span>, <span class="firstname">J.</span> <span class="surname">Postel</span>, <span class="firstname">C.</span> <span class="surname">Neuman</span>, <span class="firstname">P.</span> <span class="surname">Danzig</span>, and <span class="firstname">S.</span> <span class="surname">Miller</span>. </span><span class="title"><i>Common <acronym class="acronym">DNS</acronym> Implementation
|
||||||
Errors and Suggested Fixes</i>. </span><span class="pubdate">October 1993. </span></p>
|
Errors and Suggested Fixes</i>. </span><span class="pubdate">October 1993. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2594882"></a><p>[<abbr class="abbrev">RFC1982</abbr>] <span class="authorgroup"><span class="firstname">R.</span> <span class="surname">Elz</span> and <span class="firstname">R.</span> <span class="surname">Bush</span>. </span><span class="title"><i>Serial Number Arithmetic</i>. </span><span class="pubdate">August 1996. </span></p>
|
<a name="id2594908"></a><p>[<abbr class="abbrev">RFC1982</abbr>] <span class="authorgroup"><span class="firstname">R.</span> <span class="surname">Elz</span> and <span class="firstname">R.</span> <span class="surname">Bush</span>. </span><span class="title"><i>Serial Number Arithmetic</i>. </span><span class="pubdate">August 1996. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2594917"></a><p>[<abbr class="abbrev">RFC4074</abbr>] <span class="authorgroup"><span class="firstname">Y.</span> <span class="surname">Morishita</span> and <span class="firstname">T.</span> <span class="surname">Jinmei</span>. </span><span class="title"><i>Common Misbehaviour Against <acronym class="acronym">DNS</acronym>
|
<a name="id2594944"></a><p>[<abbr class="abbrev">RFC4074</abbr>] <span class="authorgroup"><span class="firstname">Y.</span> <span class="surname">Morishita</span> and <span class="firstname">T.</span> <span class="surname">Jinmei</span>. </span><span class="title"><i>Common Misbehaviour Against <acronym class="acronym">DNS</acronym>
|
||||||
Queries for IPv6 Addresses</i>. </span><span class="pubdate">May 2005. </span></p>
|
Queries for IPv6 Addresses</i>. </span><span class="pubdate">May 2005. </span></p>
|
||||||
</div>
|
</div>
|
||||||
</div>
|
</div>
|
||||||
<div class="bibliodiv">
|
<div class="bibliodiv">
|
||||||
<h3 class="title">Resource Record Types</h3>
|
<h3 class="title">Resource Record Types</h3>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2594963"></a><p>[<abbr class="abbrev">RFC1183</abbr>] <span class="authorgroup"><span class="firstname">C.F.</span> <span class="surname">Everhart</span>, <span class="firstname">L. A.</span> <span class="surname">Mamakos</span>, <span class="firstname">R.</span> <span class="surname">Ullmann</span>, and <span class="firstname">P.</span> <span class="surname">Mockapetris</span>. </span><span class="title"><i>New <acronym class="acronym">DNS</acronym> RR Definitions</i>. </span><span class="pubdate">October 1990. </span></p>
|
<a name="id2594989"></a><p>[<abbr class="abbrev">RFC1183</abbr>] <span class="authorgroup"><span class="firstname">C.F.</span> <span class="surname">Everhart</span>, <span class="firstname">L. A.</span> <span class="surname">Mamakos</span>, <span class="firstname">R.</span> <span class="surname">Ullmann</span>, and <span class="firstname">P.</span> <span class="surname">Mockapetris</span>. </span><span class="title"><i>New <acronym class="acronym">DNS</acronym> RR Definitions</i>. </span><span class="pubdate">October 1990. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2595020"></a><p>[<abbr class="abbrev">RFC1706</abbr>] <span class="authorgroup"><span class="firstname">B.</span> <span class="surname">Manning</span> and <span class="firstname">R.</span> <span class="surname">Colella</span>. </span><span class="title"><i><acronym class="acronym">DNS</acronym> NSAP Resource Records</i>. </span><span class="pubdate">October 1994. </span></p>
|
<a name="id2595047"></a><p>[<abbr class="abbrev">RFC1706</abbr>] <span class="authorgroup"><span class="firstname">B.</span> <span class="surname">Manning</span> and <span class="firstname">R.</span> <span class="surname">Colella</span>. </span><span class="title"><i><acronym class="acronym">DNS</acronym> NSAP Resource Records</i>. </span><span class="pubdate">October 1994. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2595058"></a><p>[<abbr class="abbrev">RFC2168</abbr>] <span class="authorgroup"><span class="firstname">R.</span> <span class="surname">Daniel</span> and <span class="firstname">M.</span> <span class="surname">Mealling</span>. </span><span class="title"><i>Resolution of Uniform Resource Identifiers using
|
<a name="id2595084"></a><p>[<abbr class="abbrev">RFC2168</abbr>] <span class="authorgroup"><span class="firstname">R.</span> <span class="surname">Daniel</span> and <span class="firstname">M.</span> <span class="surname">Mealling</span>. </span><span class="title"><i>Resolution of Uniform Resource Identifiers using
|
||||||
the Domain Name System</i>. </span><span class="pubdate">June 1997. </span></p>
|
the Domain Name System</i>. </span><span class="pubdate">June 1997. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2595093"></a><p>[<abbr class="abbrev">RFC1876</abbr>] <span class="authorgroup"><span class="firstname">C.</span> <span class="surname">Davis</span>, <span class="firstname">P.</span> <span class="surname">Vixie</span>, <span class="firstname">T.</span>, and <span class="firstname">I.</span> <span class="surname">Dickinson</span>. </span><span class="title"><i>A Means for Expressing Location Information in the
|
<a name="id2595120"></a><p>[<abbr class="abbrev">RFC1876</abbr>] <span class="authorgroup"><span class="firstname">C.</span> <span class="surname">Davis</span>, <span class="firstname">P.</span> <span class="surname">Vixie</span>, <span class="firstname">T.</span>, and <span class="firstname">I.</span> <span class="surname">Dickinson</span>. </span><span class="title"><i>A Means for Expressing Location Information in the
|
||||||
Domain
|
Domain
|
||||||
Name System</i>. </span><span class="pubdate">January 1996. </span></p>
|
Name System</i>. </span><span class="pubdate">January 1996. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2595147"></a><p>[<abbr class="abbrev">RFC2052</abbr>] <span class="authorgroup"><span class="firstname">A.</span> <span class="surname">Gulbrandsen</span> and <span class="firstname">P.</span> <span class="surname">Vixie</span>. </span><span class="title"><i>A <acronym class="acronym">DNS</acronym> RR for Specifying the
|
<a name="id2595174"></a><p>[<abbr class="abbrev">RFC2052</abbr>] <span class="authorgroup"><span class="firstname">A.</span> <span class="surname">Gulbrandsen</span> and <span class="firstname">P.</span> <span class="surname">Vixie</span>. </span><span class="title"><i>A <acronym class="acronym">DNS</acronym> RR for Specifying the
|
||||||
Location of
|
Location of
|
||||||
Services.</i>. </span><span class="pubdate">October 1996. </span></p>
|
Services.</i>. </span><span class="pubdate">October 1996. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2595186"></a><p>[<abbr class="abbrev">RFC2163</abbr>] <span class="author"><span class="firstname">A.</span> <span class="surname">Allocchio</span>. </span><span class="title"><i>Using the Internet <acronym class="acronym">DNS</acronym> to
|
<a name="id2595212"></a><p>[<abbr class="abbrev">RFC2163</abbr>] <span class="author"><span class="firstname">A.</span> <span class="surname">Allocchio</span>. </span><span class="title"><i>Using the Internet <acronym class="acronym">DNS</acronym> to
|
||||||
Distribute MIXER
|
Distribute MIXER
|
||||||
Conformant Global Address Mapping</i>. </span><span class="pubdate">January 1998. </span></p>
|
Conformant Global Address Mapping</i>. </span><span class="pubdate">January 1998. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2595211"></a><p>[<abbr class="abbrev">RFC2230</abbr>] <span class="author"><span class="firstname">R.</span> <span class="surname">Atkinson</span>. </span><span class="title"><i>Key Exchange Delegation Record for the <acronym class="acronym">DNS</acronym></i>. </span><span class="pubdate">October 1997. </span></p>
|
<a name="id2595238"></a><p>[<abbr class="abbrev">RFC2230</abbr>] <span class="author"><span class="firstname">R.</span> <span class="surname">Atkinson</span>. </span><span class="title"><i>Key Exchange Delegation Record for the <acronym class="acronym">DNS</acronym></i>. </span><span class="pubdate">October 1997. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2595237"></a><p>[<abbr class="abbrev">RFC2536</abbr>] <span class="author"><span class="firstname">D.</span> <span class="surname">Eastlake</span>, <span class="lineage">3rd</span>. </span><span class="title"><i>DSA KEYs and SIGs in the Domain Name System (DNS)</i>. </span><span class="pubdate">March 1999. </span></p>
|
<a name="id2595264"></a><p>[<abbr class="abbrev">RFC2536</abbr>] <span class="author"><span class="firstname">D.</span> <span class="surname">Eastlake</span>, <span class="lineage">3rd</span>. </span><span class="title"><i>DSA KEYs and SIGs in the Domain Name System (DNS)</i>. </span><span class="pubdate">March 1999. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2595264"></a><p>[<abbr class="abbrev">RFC2537</abbr>] <span class="author"><span class="firstname">D.</span> <span class="surname">Eastlake</span>, <span class="lineage">3rd</span>. </span><span class="title"><i>RSA/MD5 KEYs and SIGs in the Domain Name System (DNS)</i>. </span><span class="pubdate">March 1999. </span></p>
|
<a name="id2595290"></a><p>[<abbr class="abbrev">RFC2537</abbr>] <span class="author"><span class="firstname">D.</span> <span class="surname">Eastlake</span>, <span class="lineage">3rd</span>. </span><span class="title"><i>RSA/MD5 KEYs and SIGs in the Domain Name System (DNS)</i>. </span><span class="pubdate">March 1999. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2595290"></a><p>[<abbr class="abbrev">RFC2538</abbr>] <span class="authorgroup"><span class="firstname">D.</span> <span class="surname">Eastlake</span>, <span class="lineage">3rd</span> and <span class="firstname">O.</span> <span class="surname">Gudmundsson</span>. </span><span class="title"><i>Storing Certificates in the Domain Name System (DNS)</i>. </span><span class="pubdate">March 1999. </span></p>
|
<a name="id2595317"></a><p>[<abbr class="abbrev">RFC2538</abbr>] <span class="authorgroup"><span class="firstname">D.</span> <span class="surname">Eastlake</span>, <span class="lineage">3rd</span> and <span class="firstname">O.</span> <span class="surname">Gudmundsson</span>. </span><span class="title"><i>Storing Certificates in the Domain Name System (DNS)</i>. </span><span class="pubdate">March 1999. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2595330"></a><p>[<abbr class="abbrev">RFC2539</abbr>] <span class="authorgroup"><span class="firstname">D.</span> <span class="surname">Eastlake</span>, <span class="lineage">3rd</span>. </span><span class="title"><i>Storage of Diffie-Hellman Keys in the Domain Name System (DNS)</i>. </span><span class="pubdate">March 1999. </span></p>
|
<a name="id2595356"></a><p>[<abbr class="abbrev">RFC2539</abbr>] <span class="authorgroup"><span class="firstname">D.</span> <span class="surname">Eastlake</span>, <span class="lineage">3rd</span>. </span><span class="title"><i>Storage of Diffie-Hellman Keys in the Domain Name System (DNS)</i>. </span><span class="pubdate">March 1999. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2595360"></a><p>[<abbr class="abbrev">RFC2540</abbr>] <span class="authorgroup"><span class="firstname">D.</span> <span class="surname">Eastlake</span>, <span class="lineage">3rd</span>. </span><span class="title"><i>Detached Domain Name System (DNS) Information</i>. </span><span class="pubdate">March 1999. </span></p>
|
<a name="id2595386"></a><p>[<abbr class="abbrev">RFC2540</abbr>] <span class="authorgroup"><span class="firstname">D.</span> <span class="surname">Eastlake</span>, <span class="lineage">3rd</span>. </span><span class="title"><i>Detached Domain Name System (DNS) Information</i>. </span><span class="pubdate">March 1999. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2595389"></a><p>[<abbr class="abbrev">RFC2782</abbr>] <span class="author"><span class="firstname">A.</span> <span class="surname">Gulbrandsen</span>. </span><span class="author"><span class="firstname">P.</span> <span class="surname">Vixie</span>. </span><span class="author"><span class="firstname">L.</span> <span class="surname">Esibov</span>. </span><span class="title"><i>A DNS RR for specifying the location of services (DNS SRV)</i>. </span><span class="pubdate">February 2000. </span></p>
|
<a name="id2595416"></a><p>[<abbr class="abbrev">RFC2782</abbr>] <span class="author"><span class="firstname">A.</span> <span class="surname">Gulbrandsen</span>. </span><span class="author"><span class="firstname">P.</span> <span class="surname">Vixie</span>. </span><span class="author"><span class="firstname">L.</span> <span class="surname">Esibov</span>. </span><span class="title"><i>A DNS RR for specifying the location of services (DNS SRV)</i>. </span><span class="pubdate">February 2000. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2595432"></a><p>[<abbr class="abbrev">RFC2915</abbr>] <span class="author"><span class="firstname">M.</span> <span class="surname">Mealling</span>. </span><span class="author"><span class="firstname">R.</span> <span class="surname">Daniel</span>. </span><span class="title"><i>The Naming Authority Pointer (NAPTR) DNS Resource Record</i>. </span><span class="pubdate">September 2000. </span></p>
|
<a name="id2595459"></a><p>[<abbr class="abbrev">RFC2915</abbr>] <span class="author"><span class="firstname">M.</span> <span class="surname">Mealling</span>. </span><span class="author"><span class="firstname">R.</span> <span class="surname">Daniel</span>. </span><span class="title"><i>The Naming Authority Pointer (NAPTR) DNS Resource Record</i>. </span><span class="pubdate">September 2000. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2595465"></a><p>[<abbr class="abbrev">RFC3110</abbr>] <span class="author"><span class="firstname">D.</span> <span class="surname">Eastlake</span>, <span class="lineage">3rd</span>. </span><span class="title"><i>RSA/SHA-1 SIGs and RSA KEYs in the Domain Name System (DNS)</i>. </span><span class="pubdate">May 2001. </span></p>
|
<a name="id2595492"></a><p>[<abbr class="abbrev">RFC3110</abbr>] <span class="author"><span class="firstname">D.</span> <span class="surname">Eastlake</span>, <span class="lineage">3rd</span>. </span><span class="title"><i>RSA/SHA-1 SIGs and RSA KEYs in the Domain Name System (DNS)</i>. </span><span class="pubdate">May 2001. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2595492"></a><p>[<abbr class="abbrev">RFC3123</abbr>] <span class="author"><span class="firstname">P.</span> <span class="surname">Koch</span>. </span><span class="title"><i>A DNS RR Type for Lists of Address Prefixes (APL RR)</i>. </span><span class="pubdate">June 2001. </span></p>
|
<a name="id2595518"></a><p>[<abbr class="abbrev">RFC3123</abbr>] <span class="author"><span class="firstname">P.</span> <span class="surname">Koch</span>. </span><span class="title"><i>A DNS RR Type for Lists of Address Prefixes (APL RR)</i>. </span><span class="pubdate">June 2001. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2595515"></a><p>[<abbr class="abbrev">RFC3596</abbr>] <span class="authorgroup"><span class="firstname">S.</span> <span class="surname">Thomson</span>, <span class="firstname">C.</span> <span class="surname">Huitema</span>, <span class="firstname">V.</span> <span class="surname">Ksinant</span>, and <span class="firstname">M.</span> <span class="surname">Souissi</span>. </span><span class="title"><i><acronym class="acronym">DNS</acronym> Extensions to support IP
|
<a name="id2595542"></a><p>[<abbr class="abbrev">RFC3596</abbr>] <span class="authorgroup"><span class="firstname">S.</span> <span class="surname">Thomson</span>, <span class="firstname">C.</span> <span class="surname">Huitema</span>, <span class="firstname">V.</span> <span class="surname">Ksinant</span>, and <span class="firstname">M.</span> <span class="surname">Souissi</span>. </span><span class="title"><i><acronym class="acronym">DNS</acronym> Extensions to support IP
|
||||||
version 6</i>. </span><span class="pubdate">October 2003. </span></p>
|
version 6</i>. </span><span class="pubdate">October 2003. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2595573"></a><p>[<abbr class="abbrev">RFC3597</abbr>] <span class="author"><span class="firstname">A.</span> <span class="surname">Gustafsson</span>. </span><span class="title"><i>Handling of Unknown DNS Resource Record (RR) Types</i>. </span><span class="pubdate">September 2003. </span></p>
|
<a name="id2595600"></a><p>[<abbr class="abbrev">RFC3597</abbr>] <span class="author"><span class="firstname">A.</span> <span class="surname">Gustafsson</span>. </span><span class="title"><i>Handling of Unknown DNS Resource Record (RR) Types</i>. </span><span class="pubdate">September 2003. </span></p>
|
||||||
</div>
|
</div>
|
||||||
</div>
|
</div>
|
||||||
<div class="bibliodiv">
|
<div class="bibliodiv">
|
||||||
<h3 class="title">
|
<h3 class="title">
|
||||||
<acronym class="acronym">DNS</acronym> and the Internet</h3>
|
<acronym class="acronym">DNS</acronym> and the Internet</h3>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2595605"></a><p>[<abbr class="abbrev">RFC1101</abbr>] <span class="author"><span class="firstname">P. V.</span> <span class="surname">Mockapetris</span>. </span><span class="title"><i><acronym class="acronym">DNS</acronym> Encoding of Network Names
|
<a name="id2595632"></a><p>[<abbr class="abbrev">RFC1101</abbr>] <span class="author"><span class="firstname">P. V.</span> <span class="surname">Mockapetris</span>. </span><span class="title"><i><acronym class="acronym">DNS</acronym> Encoding of Network Names
|
||||||
and Other Types</i>. </span><span class="pubdate">April 1989. </span></p>
|
and Other Types</i>. </span><span class="pubdate">April 1989. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2595630"></a><p>[<abbr class="abbrev">RFC1123</abbr>] <span class="author"><span class="surname">Braden</span>. </span><span class="title"><i>Requirements for Internet Hosts - Application and
|
<a name="id2595657"></a><p>[<abbr class="abbrev">RFC1123</abbr>] <span class="author"><span class="surname">Braden</span>. </span><span class="title"><i>Requirements for Internet Hosts - Application and
|
||||||
Support</i>. </span><span class="pubdate">October 1989. </span></p>
|
Support</i>. </span><span class="pubdate">October 1989. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2595653"></a><p>[<abbr class="abbrev">RFC1591</abbr>] <span class="author"><span class="firstname">J.</span> <span class="surname">Postel</span>. </span><span class="title"><i>Domain Name System Structure and Delegation</i>. </span><span class="pubdate">March 1994. </span></p>
|
<a name="id2595680"></a><p>[<abbr class="abbrev">RFC1591</abbr>] <span class="author"><span class="firstname">J.</span> <span class="surname">Postel</span>. </span><span class="title"><i>Domain Name System Structure and Delegation</i>. </span><span class="pubdate">March 1994. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2595676"></a><p>[<abbr class="abbrev">RFC2317</abbr>] <span class="authorgroup"><span class="firstname">H.</span> <span class="surname">Eidnes</span>, <span class="firstname">G.</span> <span class="surname">de Groot</span>, and <span class="firstname">P.</span> <span class="surname">Vixie</span>. </span><span class="title"><i>Classless IN-ADDR.ARPA Delegation</i>. </span><span class="pubdate">March 1998. </span></p>
|
<a name="id2595703"></a><p>[<abbr class="abbrev">RFC2317</abbr>] <span class="authorgroup"><span class="firstname">H.</span> <span class="surname">Eidnes</span>, <span class="firstname">G.</span> <span class="surname">de Groot</span>, and <span class="firstname">P.</span> <span class="surname">Vixie</span>. </span><span class="title"><i>Classless IN-ADDR.ARPA Delegation</i>. </span><span class="pubdate">March 1998. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2595722"></a><p>[<abbr class="abbrev">RFC2826</abbr>] <span class="authorgroup"><span class="surname">Internet Architecture Board</span>. </span><span class="title"><i>IAB Technical Comment on the Unique DNS Root</i>. </span><span class="pubdate">May 2000. </span></p>
|
<a name="id2595749"></a><p>[<abbr class="abbrev">RFC2826</abbr>] <span class="authorgroup"><span class="surname">Internet Architecture Board</span>. </span><span class="title"><i>IAB Technical Comment on the Unique DNS Root</i>. </span><span class="pubdate">May 2000. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2595746"></a><p>[<abbr class="abbrev">RFC2929</abbr>] <span class="authorgroup"><span class="firstname">D.</span> <span class="surname">Eastlake</span>, <span class="lineage">3rd</span>, <span class="firstname">E.</span> <span class="surname">Brunner-Williams</span>, and <span class="firstname">B.</span> <span class="surname">Manning</span>. </span><span class="title"><i>Domain Name System (DNS) IANA Considerations</i>. </span><span class="pubdate">September 2000. </span></p>
|
<a name="id2595841"></a><p>[<abbr class="abbrev">RFC2929</abbr>] <span class="authorgroup"><span class="firstname">D.</span> <span class="surname">Eastlake</span>, <span class="lineage">3rd</span>, <span class="firstname">E.</span> <span class="surname">Brunner-Williams</span>, and <span class="firstname">B.</span> <span class="surname">Manning</span>. </span><span class="title"><i>Domain Name System (DNS) IANA Considerations</i>. </span><span class="pubdate">September 2000. </span></p>
|
||||||
</div>
|
</div>
|
||||||
</div>
|
</div>
|
||||||
<div class="bibliodiv">
|
<div class="bibliodiv">
|
||||||
<h3 class="title">
|
<h3 class="title">
|
||||||
<acronym class="acronym">DNS</acronym> Operations</h3>
|
<acronym class="acronym">DNS</acronym> Operations</h3>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2595872"></a><p>[<abbr class="abbrev">RFC1033</abbr>] <span class="author"><span class="firstname">M.</span> <span class="surname">Lottor</span>. </span><span class="title"><i>Domain administrators operations guide.</i>. </span><span class="pubdate">November 1987. </span></p>
|
<a name="id2595898"></a><p>[<abbr class="abbrev">RFC1033</abbr>] <span class="author"><span class="firstname">M.</span> <span class="surname">Lottor</span>. </span><span class="title"><i>Domain administrators operations guide.</i>. </span><span class="pubdate">November 1987. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2595895"></a><p>[<abbr class="abbrev">RFC1537</abbr>] <span class="author"><span class="firstname">P.</span> <span class="surname">Beertema</span>. </span><span class="title"><i>Common <acronym class="acronym">DNS</acronym> Data File
|
<a name="id2595922"></a><p>[<abbr class="abbrev">RFC1537</abbr>] <span class="author"><span class="firstname">P.</span> <span class="surname">Beertema</span>. </span><span class="title"><i>Common <acronym class="acronym">DNS</acronym> Data File
|
||||||
Configuration Errors</i>. </span><span class="pubdate">October 1993. </span></p>
|
Configuration Errors</i>. </span><span class="pubdate">October 1993. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2595922"></a><p>[<abbr class="abbrev">RFC1912</abbr>] <span class="author"><span class="firstname">D.</span> <span class="surname">Barr</span>. </span><span class="title"><i>Common <acronym class="acronym">DNS</acronym> Operational and
|
<a name="id2595948"></a><p>[<abbr class="abbrev">RFC1912</abbr>] <span class="author"><span class="firstname">D.</span> <span class="surname">Barr</span>. </span><span class="title"><i>Common <acronym class="acronym">DNS</acronym> Operational and
|
||||||
Configuration Errors</i>. </span><span class="pubdate">February 1996. </span></p>
|
Configuration Errors</i>. </span><span class="pubdate">February 1996. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2595948"></a><p>[<abbr class="abbrev">RFC2010</abbr>] <span class="authorgroup"><span class="firstname">B.</span> <span class="surname">Manning</span> and <span class="firstname">P.</span> <span class="surname">Vixie</span>. </span><span class="title"><i>Operational Criteria for Root Name Servers.</i>. </span><span class="pubdate">October 1996. </span></p>
|
<a name="id2595975"></a><p>[<abbr class="abbrev">RFC2010</abbr>] <span class="authorgroup"><span class="firstname">B.</span> <span class="surname">Manning</span> and <span class="firstname">P.</span> <span class="surname">Vixie</span>. </span><span class="title"><i>Operational Criteria for Root Name Servers.</i>. </span><span class="pubdate">October 1996. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2595985"></a><p>[<abbr class="abbrev">RFC2219</abbr>] <span class="authorgroup"><span class="firstname">M.</span> <span class="surname">Hamilton</span> and <span class="firstname">R.</span> <span class="surname">Wright</span>. </span><span class="title"><i>Use of <acronym class="acronym">DNS</acronym> Aliases for
|
<a name="id2596011"></a><p>[<abbr class="abbrev">RFC2219</abbr>] <span class="authorgroup"><span class="firstname">M.</span> <span class="surname">Hamilton</span> and <span class="firstname">R.</span> <span class="surname">Wright</span>. </span><span class="title"><i>Use of <acronym class="acronym">DNS</acronym> Aliases for
|
||||||
Network Services.</i>. </span><span class="pubdate">October 1997. </span></p>
|
Network Services.</i>. </span><span class="pubdate">October 1997. </span></p>
|
||||||
</div>
|
</div>
|
||||||
</div>
|
</div>
|
||||||
<div class="bibliodiv">
|
<div class="bibliodiv">
|
||||||
<h3 class="title">Internationalized Domain Names</h3>
|
<h3 class="title">Internationalized Domain Names</h3>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2596030"></a><p>[<abbr class="abbrev">RFC2825</abbr>] <span class="authorgroup"><span class="surname">IAB</span> and <span class="firstname">R.</span> <span class="surname">Daigle</span>. </span><span class="title"><i>A Tangled Web: Issues of I18N, Domain Names,
|
<a name="id2596057"></a><p>[<abbr class="abbrev">RFC2825</abbr>] <span class="authorgroup"><span class="surname">IAB</span> and <span class="firstname">R.</span> <span class="surname">Daigle</span>. </span><span class="title"><i>A Tangled Web: Issues of I18N, Domain Names,
|
||||||
and the Other Internet protocols</i>. </span><span class="pubdate">May 2000. </span></p>
|
and the Other Internet protocols</i>. </span><span class="pubdate">May 2000. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2596062"></a><p>[<abbr class="abbrev">RFC3490</abbr>] <span class="authorgroup"><span class="firstname">P.</span> <span class="surname">Faltstrom</span>, <span class="firstname">P.</span> <span class="surname">Hoffman</span>, and <span class="firstname">A.</span> <span class="surname">Costello</span>. </span><span class="title"><i>Internationalizing Domain Names in Applications (IDNA)</i>. </span><span class="pubdate">March 2003. </span></p>
|
<a name="id2596089"></a><p>[<abbr class="abbrev">RFC3490</abbr>] <span class="authorgroup"><span class="firstname">P.</span> <span class="surname">Faltstrom</span>, <span class="firstname">P.</span> <span class="surname">Hoffman</span>, and <span class="firstname">A.</span> <span class="surname">Costello</span>. </span><span class="title"><i>Internationalizing Domain Names in Applications (IDNA)</i>. </span><span class="pubdate">March 2003. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2596108"></a><p>[<abbr class="abbrev">RFC3491</abbr>] <span class="authorgroup"><span class="firstname">P.</span> <span class="surname">Hoffman</span> and <span class="firstname">M.</span> <span class="surname">Blanchet</span>. </span><span class="title"><i>Nameprep: A Stringprep Profile for Internationalized Domain Names</i>. </span><span class="pubdate">March 2003. </span></p>
|
<a name="id2596135"></a><p>[<abbr class="abbrev">RFC3491</abbr>] <span class="authorgroup"><span class="firstname">P.</span> <span class="surname">Hoffman</span> and <span class="firstname">M.</span> <span class="surname">Blanchet</span>. </span><span class="title"><i>Nameprep: A Stringprep Profile for Internationalized Domain Names</i>. </span><span class="pubdate">March 2003. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2596144"></a><p>[<abbr class="abbrev">RFC3492</abbr>] <span class="authorgroup"><span class="firstname">A.</span> <span class="surname">Costello</span>. </span><span class="title"><i>Punycode: A Bootstring encoding of Unicode
|
<a name="id2596170"></a><p>[<abbr class="abbrev">RFC3492</abbr>] <span class="authorgroup"><span class="firstname">A.</span> <span class="surname">Costello</span>. </span><span class="title"><i>Punycode: A Bootstring encoding of Unicode
|
||||||
for Internationalized Domain Names in
|
for Internationalized Domain Names in
|
||||||
Applications (IDNA)</i>. </span><span class="pubdate">March 2003. </span></p>
|
Applications (IDNA)</i>. </span><span class="pubdate">March 2003. </span></p>
|
||||||
</div>
|
</div>
|
||||||
@@ -474,50 +474,50 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2596188"></a><p>[<abbr class="abbrev">RFC1464</abbr>] <span class="author"><span class="firstname">R.</span> <span class="surname">Rosenbaum</span>. </span><span class="title"><i>Using the Domain Name System To Store Arbitrary String
|
<a name="id2596215"></a><p>[<abbr class="abbrev">RFC1464</abbr>] <span class="author"><span class="firstname">R.</span> <span class="surname">Rosenbaum</span>. </span><span class="title"><i>Using the Domain Name System To Store Arbitrary String
|
||||||
Attributes</i>. </span><span class="pubdate">May 1993. </span></p>
|
Attributes</i>. </span><span class="pubdate">May 1993. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2596211"></a><p>[<abbr class="abbrev">RFC1713</abbr>] <span class="author"><span class="firstname">A.</span> <span class="surname">Romao</span>. </span><span class="title"><i>Tools for <acronym class="acronym">DNS</acronym> Debugging</i>. </span><span class="pubdate">November 1994. </span></p>
|
<a name="id2596237"></a><p>[<abbr class="abbrev">RFC1713</abbr>] <span class="author"><span class="firstname">A.</span> <span class="surname">Romao</span>. </span><span class="title"><i>Tools for <acronym class="acronym">DNS</acronym> Debugging</i>. </span><span class="pubdate">November 1994. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2596236"></a><p>[<abbr class="abbrev">RFC1794</abbr>] <span class="author"><span class="firstname">T.</span> <span class="surname">Brisco</span>. </span><span class="title"><i><acronym class="acronym">DNS</acronym> Support for Load
|
<a name="id2596263"></a><p>[<abbr class="abbrev">RFC1794</abbr>] <span class="author"><span class="firstname">T.</span> <span class="surname">Brisco</span>. </span><span class="title"><i><acronym class="acronym">DNS</acronym> Support for Load
|
||||||
Balancing</i>. </span><span class="pubdate">April 1995. </span></p>
|
Balancing</i>. </span><span class="pubdate">April 1995. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2596262"></a><p>[<abbr class="abbrev">RFC2240</abbr>] <span class="author"><span class="firstname">O.</span> <span class="surname">Vaughan</span>. </span><span class="title"><i>A Legal Basis for Domain Name Allocation</i>. </span><span class="pubdate">November 1997. </span></p>
|
<a name="id2596289"></a><p>[<abbr class="abbrev">RFC2240</abbr>] <span class="author"><span class="firstname">O.</span> <span class="surname">Vaughan</span>. </span><span class="title"><i>A Legal Basis for Domain Name Allocation</i>. </span><span class="pubdate">November 1997. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2596285"></a><p>[<abbr class="abbrev">RFC2345</abbr>] <span class="authorgroup"><span class="firstname">J.</span> <span class="surname">Klensin</span>, <span class="firstname">T.</span> <span class="surname">Wolf</span>, and <span class="firstname">G.</span> <span class="surname">Oglesby</span>. </span><span class="title"><i>Domain Names and Company Name Retrieval</i>. </span><span class="pubdate">May 1998. </span></p>
|
<a name="id2596312"></a><p>[<abbr class="abbrev">RFC2345</abbr>] <span class="authorgroup"><span class="firstname">J.</span> <span class="surname">Klensin</span>, <span class="firstname">T.</span> <span class="surname">Wolf</span>, and <span class="firstname">G.</span> <span class="surname">Oglesby</span>. </span><span class="title"><i>Domain Names and Company Name Retrieval</i>. </span><span class="pubdate">May 1998. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2596331"></a><p>[<abbr class="abbrev">RFC2352</abbr>] <span class="author"><span class="firstname">O.</span> <span class="surname">Vaughan</span>. </span><span class="title"><i>A Convention For Using Legal Names as Domain Names</i>. </span><span class="pubdate">May 1998. </span></p>
|
<a name="id2596358"></a><p>[<abbr class="abbrev">RFC2352</abbr>] <span class="author"><span class="firstname">O.</span> <span class="surname">Vaughan</span>. </span><span class="title"><i>A Convention For Using Legal Names as Domain Names</i>. </span><span class="pubdate">May 1998. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2596355"></a><p>[<abbr class="abbrev">RFC3071</abbr>] <span class="authorgroup"><span class="firstname">J.</span> <span class="surname">Klensin</span>. </span><span class="title"><i>Reflections on the DNS, RFC 1591, and Categories of Domains</i>. </span><span class="pubdate">February 2001. </span></p>
|
<a name="id2596381"></a><p>[<abbr class="abbrev">RFC3071</abbr>] <span class="authorgroup"><span class="firstname">J.</span> <span class="surname">Klensin</span>. </span><span class="title"><i>Reflections on the DNS, RFC 1591, and Categories of Domains</i>. </span><span class="pubdate">February 2001. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2596381"></a><p>[<abbr class="abbrev">RFC3258</abbr>] <span class="authorgroup"><span class="firstname">T.</span> <span class="surname">Hardie</span>. </span><span class="title"><i>Distributing Authoritative Name Servers via
|
<a name="id2596408"></a><p>[<abbr class="abbrev">RFC3258</abbr>] <span class="authorgroup"><span class="firstname">T.</span> <span class="surname">Hardie</span>. </span><span class="title"><i>Distributing Authoritative Name Servers via
|
||||||
Shared Unicast Addresses</i>. </span><span class="pubdate">April 2002. </span></p>
|
Shared Unicast Addresses</i>. </span><span class="pubdate">April 2002. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2596407"></a><p>[<abbr class="abbrev">RFC3901</abbr>] <span class="authorgroup"><span class="firstname">A.</span> <span class="surname">Durand</span> and <span class="firstname">J.</span> <span class="surname">Ihren</span>. </span><span class="title"><i>DNS IPv6 Transport Operational Guidelines</i>. </span><span class="pubdate">September 2004. </span></p>
|
<a name="id2596434"></a><p>[<abbr class="abbrev">RFC3901</abbr>] <span class="authorgroup"><span class="firstname">A.</span> <span class="surname">Durand</span> and <span class="firstname">J.</span> <span class="surname">Ihren</span>. </span><span class="title"><i>DNS IPv6 Transport Operational Guidelines</i>. </span><span class="pubdate">September 2004. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2596443"></a><p>[<abbr class="abbrev">RFC2352</abbr>] <span class="author"><span class="firstname">O.</span> <span class="surname">Vaughan</span>. </span><span class="title"><i>A Convention For Using Legal Names as Domain Names</i>. </span><span class="pubdate">May 1998. </span></p>
|
<a name="id2596470"></a><p>[<abbr class="abbrev">RFC2352</abbr>] <span class="author"><span class="firstname">O.</span> <span class="surname">Vaughan</span>. </span><span class="title"><i>A Convention For Using Legal Names as Domain Names</i>. </span><span class="pubdate">May 1998. </span></p>
|
||||||
</div>
|
</div>
|
||||||
</div>
|
</div>
|
||||||
<div class="bibliodiv">
|
<div class="bibliodiv">
|
||||||
<h3 class="title">Obsolete and Unimplemented Experimental RFC</h3>
|
<h3 class="title">Obsolete and Unimplemented Experimental RFC</h3>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2596474"></a><p>[<abbr class="abbrev">RFC1712</abbr>] <span class="authorgroup"><span class="firstname">C.</span> <span class="surname">Farrell</span>, <span class="firstname">M.</span> <span class="surname">Schulze</span>, <span class="firstname">S.</span> <span class="surname">Pleitner</span>, and <span class="firstname">D.</span> <span class="surname">Baldoni</span>. </span><span class="title"><i><acronym class="acronym">DNS</acronym> Encoding of Geographical
|
<a name="id2596501"></a><p>[<abbr class="abbrev">RFC1712</abbr>] <span class="authorgroup"><span class="firstname">C.</span> <span class="surname">Farrell</span>, <span class="firstname">M.</span> <span class="surname">Schulze</span>, <span class="firstname">S.</span> <span class="surname">Pleitner</span>, and <span class="firstname">D.</span> <span class="surname">Baldoni</span>. </span><span class="title"><i><acronym class="acronym">DNS</acronym> Encoding of Geographical
|
||||||
Location</i>. </span><span class="pubdate">November 1994. </span></p>
|
Location</i>. </span><span class="pubdate">November 1994. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2596532"></a><p>[<abbr class="abbrev">RFC2673</abbr>] <span class="authorgroup"><span class="firstname">M.</span> <span class="surname">Crawford</span>. </span><span class="title"><i>Binary Labels in the Domain Name System</i>. </span><span class="pubdate">August 1999. </span></p>
|
<a name="id2596558"></a><p>[<abbr class="abbrev">RFC2673</abbr>] <span class="authorgroup"><span class="firstname">M.</span> <span class="surname">Crawford</span>. </span><span class="title"><i>Binary Labels in the Domain Name System</i>. </span><span class="pubdate">August 1999. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2596558"></a><p>[<abbr class="abbrev">RFC2874</abbr>] <span class="authorgroup"><span class="firstname">M.</span> <span class="surname">Crawford</span> and <span class="firstname">C.</span> <span class="surname">Huitema</span>. </span><span class="title"><i>DNS Extensions to Support IPv6 Address Aggregation
|
<a name="id2596585"></a><p>[<abbr class="abbrev">RFC2874</abbr>] <span class="authorgroup"><span class="firstname">M.</span> <span class="surname">Crawford</span> and <span class="firstname">C.</span> <span class="surname">Huitema</span>. </span><span class="title"><i>DNS Extensions to Support IPv6 Address Aggregation
|
||||||
and Renumbering</i>. </span><span class="pubdate">July 2000. </span></p>
|
and Renumbering</i>. </span><span class="pubdate">July 2000. </span></p>
|
||||||
</div>
|
</div>
|
||||||
</div>
|
</div>
|
||||||
@@ -531,39 +531,39 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2596675"></a><p>[<abbr class="abbrev">RFC2065</abbr>] <span class="authorgroup"><span class="firstname">D.</span> <span class="surname">Eastlake</span>, <span class="lineage">3rd</span> and <span class="firstname">C.</span> <span class="surname">Kaufman</span>. </span><span class="title"><i>Domain Name System Security Extensions</i>. </span><span class="pubdate">January 1997. </span></p>
|
<a name="id2596633"></a><p>[<abbr class="abbrev">RFC2065</abbr>] <span class="authorgroup"><span class="firstname">D.</span> <span class="surname">Eastlake</span>, <span class="lineage">3rd</span> and <span class="firstname">C.</span> <span class="surname">Kaufman</span>. </span><span class="title"><i>Domain Name System Security Extensions</i>. </span><span class="pubdate">January 1997. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2596714"></a><p>[<abbr class="abbrev">RFC2137</abbr>] <span class="author"><span class="firstname">D.</span> <span class="surname">Eastlake</span>, <span class="lineage">3rd</span>. </span><span class="title"><i>Secure Domain Name System Dynamic Update</i>. </span><span class="pubdate">April 1997. </span></p>
|
<a name="id2596741"></a><p>[<abbr class="abbrev">RFC2137</abbr>] <span class="author"><span class="firstname">D.</span> <span class="surname">Eastlake</span>, <span class="lineage">3rd</span>. </span><span class="title"><i>Secure Domain Name System Dynamic Update</i>. </span><span class="pubdate">April 1997. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2596741"></a><p>[<abbr class="abbrev">RFC2535</abbr>] <span class="authorgroup"><span class="firstname">D.</span> <span class="surname">Eastlake</span>, <span class="lineage">3rd</span>. </span><span class="title"><i>Domain Name System Security Extensions</i>. </span><span class="pubdate">March 1999. </span></p>
|
<a name="id2596768"></a><p>[<abbr class="abbrev">RFC2535</abbr>] <span class="authorgroup"><span class="firstname">D.</span> <span class="surname">Eastlake</span>, <span class="lineage">3rd</span>. </span><span class="title"><i>Domain Name System Security Extensions</i>. </span><span class="pubdate">March 1999. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2596771"></a><p>[<abbr class="abbrev">RFC3008</abbr>] <span class="authorgroup"><span class="firstname">B.</span> <span class="surname">Wellington</span>. </span><span class="title"><i>Domain Name System Security (DNSSEC)
|
<a name="id2596797"></a><p>[<abbr class="abbrev">RFC3008</abbr>] <span class="authorgroup"><span class="firstname">B.</span> <span class="surname">Wellington</span>. </span><span class="title"><i>Domain Name System Security (DNSSEC)
|
||||||
Signing Authority</i>. </span><span class="pubdate">November 2000. </span></p>
|
Signing Authority</i>. </span><span class="pubdate">November 2000. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2596796"></a><p>[<abbr class="abbrev">RFC3090</abbr>] <span class="authorgroup"><span class="firstname">E.</span> <span class="surname">Lewis</span>. </span><span class="title"><i>DNS Security Extension Clarification on Zone Status</i>. </span><span class="pubdate">March 2001. </span></p>
|
<a name="id2596823"></a><p>[<abbr class="abbrev">RFC3090</abbr>] <span class="authorgroup"><span class="firstname">E.</span> <span class="surname">Lewis</span>. </span><span class="title"><i>DNS Security Extension Clarification on Zone Status</i>. </span><span class="pubdate">March 2001. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2596823"></a><p>[<abbr class="abbrev">RFC3445</abbr>] <span class="authorgroup"><span class="firstname">D.</span> <span class="surname">Massey</span> and <span class="firstname">S.</span> <span class="surname">Rose</span>. </span><span class="title"><i>Limiting the Scope of the KEY Resource Record (RR)</i>. </span><span class="pubdate">December 2002. </span></p>
|
<a name="id2596850"></a><p>[<abbr class="abbrev">RFC3445</abbr>] <span class="authorgroup"><span class="firstname">D.</span> <span class="surname">Massey</span> and <span class="firstname">S.</span> <span class="surname">Rose</span>. </span><span class="title"><i>Limiting the Scope of the KEY Resource Record (RR)</i>. </span><span class="pubdate">December 2002. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2596859"></a><p>[<abbr class="abbrev">RFC3655</abbr>] <span class="authorgroup"><span class="firstname">B.</span> <span class="surname">Wellington</span> and <span class="firstname">O.</span> <span class="surname">Gudmundsson</span>. </span><span class="title"><i>Redefinition of DNS Authenticated Data (AD) bit</i>. </span><span class="pubdate">November 2003. </span></p>
|
<a name="id2596954"></a><p>[<abbr class="abbrev">RFC3655</abbr>] <span class="authorgroup"><span class="firstname">B.</span> <span class="surname">Wellington</span> and <span class="firstname">O.</span> <span class="surname">Gudmundsson</span>. </span><span class="title"><i>Redefinition of DNS Authenticated Data (AD) bit</i>. </span><span class="pubdate">November 2003. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2596964"></a><p>[<abbr class="abbrev">RFC3658</abbr>] <span class="authorgroup"><span class="firstname">O.</span> <span class="surname">Gudmundsson</span>. </span><span class="title"><i>Delegation Signer (DS) Resource Record (RR)</i>. </span><span class="pubdate">December 2003. </span></p>
|
<a name="id2596990"></a><p>[<abbr class="abbrev">RFC3658</abbr>] <span class="authorgroup"><span class="firstname">O.</span> <span class="surname">Gudmundsson</span>. </span><span class="title"><i>Delegation Signer (DS) Resource Record (RR)</i>. </span><span class="pubdate">December 2003. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2596990"></a><p>[<abbr class="abbrev">RFC3755</abbr>] <span class="authorgroup"><span class="firstname">S.</span> <span class="surname">Weiler</span>. </span><span class="title"><i>Legacy Resolver Compatibility for Delegation Signer (DS)</i>. </span><span class="pubdate">May 2004. </span></p>
|
<a name="id2597017"></a><p>[<abbr class="abbrev">RFC3755</abbr>] <span class="authorgroup"><span class="firstname">S.</span> <span class="surname">Weiler</span>. </span><span class="title"><i>Legacy Resolver Compatibility for Delegation Signer (DS)</i>. </span><span class="pubdate">May 2004. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2597017"></a><p>[<abbr class="abbrev">RFC3757</abbr>] <span class="authorgroup"><span class="firstname">O.</span> <span class="surname">Kolkman</span>, <span class="firstname">J.</span> <span class="surname">Schlyter</span>, and <span class="firstname">E.</span> <span class="surname">Lewis</span>. </span><span class="title"><i>Domain Name System KEY (DNSKEY) Resource Record
|
<a name="id2597044"></a><p>[<abbr class="abbrev">RFC3757</abbr>] <span class="authorgroup"><span class="firstname">O.</span> <span class="surname">Kolkman</span>, <span class="firstname">J.</span> <span class="surname">Schlyter</span>, and <span class="firstname">E.</span> <span class="surname">Lewis</span>. </span><span class="title"><i>Domain Name System KEY (DNSKEY) Resource Record
|
||||||
(RR) Secure Entry Point (SEP) Flag</i>. </span><span class="pubdate">April 2004. </span></p>
|
(RR) Secure Entry Point (SEP) Flag</i>. </span><span class="pubdate">April 2004. </span></p>
|
||||||
</div>
|
</div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2597062"></a><p>[<abbr class="abbrev">RFC3845</abbr>] <span class="authorgroup"><span class="firstname">J.</span> <span class="surname">Schlyter</span>. </span><span class="title"><i>DNS Security (DNSSEC) NextSECure (NSEC) RDATA Format</i>. </span><span class="pubdate">August 2004. </span></p>
|
<a name="id2597089"></a><p>[<abbr class="abbrev">RFC3845</abbr>] <span class="authorgroup"><span class="firstname">J.</span> <span class="surname">Schlyter</span>. </span><span class="title"><i>DNS Security (DNSSEC) NextSECure (NSEC) RDATA Format</i>. </span><span class="pubdate">August 2004. </span></p>
|
||||||
</div>
|
</div>
|
||||||
</div>
|
</div>
|
||||||
</div>
|
</div>
|
||||||
@@ -584,14 +584,14 @@
|
|||||||
</div>
|
</div>
|
||||||
<div class="sect2" lang="en">
|
<div class="sect2" lang="en">
|
||||||
<div class="titlepage"><div><div><h3 class="title">
|
<div class="titlepage"><div><div><h3 class="title">
|
||||||
<a name="id2597104"></a>Other Documents About <acronym class="acronym">BIND</acronym>
|
<a name="id2597130"></a>Other Documents About <acronym class="acronym">BIND</acronym>
|
||||||
</h3></div></div></div>
|
</h3></div></div></div>
|
||||||
<p></p>
|
<p></p>
|
||||||
<div class="bibliography">
|
<div class="bibliography">
|
||||||
<div class="titlepage"><div><div><h4 class="title">
|
<div class="titlepage"><div><div><h4 class="title">
|
||||||
<a name="id2597113"></a>Bibliography</h4></div></div></div>
|
<a name="id2597140"></a>Bibliography</h4></div></div></div>
|
||||||
<div class="biblioentry">
|
<div class="biblioentry">
|
||||||
<a name="id2597115"></a><p><span class="authorgroup"><span class="firstname">Paul</span> <span class="surname">Albitz</span> and <span class="firstname">Cricket</span> <span class="surname">Liu</span>. </span><span class="title"><i><acronym class="acronym">DNS</acronym> and <acronym class="acronym">BIND</acronym></i>. </span><span class="copyright">Copyright <20> 1998 Sebastopol, CA: O'Reilly and Associates. </span></p>
|
<a name="id2597142"></a><p><span class="authorgroup"><span class="firstname">Paul</span> <span class="surname">Albitz</span> and <span class="firstname">Cricket</span> <span class="surname">Liu</span>. </span><span class="title"><i><acronym class="acronym">DNS</acronym> and <acronym class="acronym">BIND</acronym></i>. </span><span class="copyright">Copyright <20> 1998 Sebastopol, CA: O'Reilly and Associates. </span></p>
|
||||||
</div>
|
</div>
|
||||||
</div>
|
</div>
|
||||||
</div>
|
</div>
|
||||||
|
@@ -14,7 +14,7 @@
|
|||||||
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
- PERFORMANCE OF THIS SOFTWARE.
|
- PERFORMANCE OF THIS SOFTWARE.
|
||||||
-->
|
-->
|
||||||
<!-- $Id: Bv9ARM.html,v 1.150 2007/05/08 02:30:41 marka Exp $ -->
|
<!-- $Id: Bv9ARM.html,v 1.151 2007/05/09 03:33:51 marka Exp $ -->
|
||||||
<html>
|
<html>
|
||||||
<head>
|
<head>
|
||||||
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
||||||
@@ -156,54 +156,54 @@
|
|||||||
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#server_statement_grammar"><span><strong class="command">server</strong></span> Statement Grammar</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#server_statement_grammar"><span><strong class="command">server</strong></span> Statement Grammar</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#server_statement_definition_and_usage"><span><strong class="command">server</strong></span> Statement Definition and
|
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#server_statement_definition_and_usage"><span><strong class="command">server</strong></span> Statement Definition and
|
||||||
Usage</a></span></dt>
|
Usage</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2585514"><span><strong class="command">trusted-keys</strong></span> Statement Grammar</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2585534"><span><strong class="command">trusted-keys</strong></span> Statement Grammar</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2585563"><span><strong class="command">trusted-keys</strong></span> Statement Definition
|
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2585584"><span><strong class="command">trusted-keys</strong></span> Statement Definition
|
||||||
and Usage</a></span></dt>
|
and Usage</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#view_statement_grammar"><span><strong class="command">view</strong></span> Statement Grammar</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#view_statement_grammar"><span><strong class="command">view</strong></span> Statement Grammar</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2585643"><span><strong class="command">view</strong></span> Statement Definition and Usage</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2585664"><span><strong class="command">view</strong></span> Statement Definition and Usage</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#zone_statement_grammar"><span><strong class="command">zone</strong></span>
|
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#zone_statement_grammar"><span><strong class="command">zone</strong></span>
|
||||||
Statement Grammar</a></span></dt>
|
Statement Grammar</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2587040"><span><strong class="command">zone</strong></span> Statement Definition and Usage</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2587066"><span><strong class="command">zone</strong></span> Statement Definition and Usage</a></span></dt>
|
||||||
</dl></dd>
|
</dl></dd>
|
||||||
<dt><span class="sect1"><a href="Bv9ARM.ch06.html#id2589344">Zone File</a></span></dt>
|
<dt><span class="sect1"><a href="Bv9ARM.ch06.html#id2589438">Zone File</a></span></dt>
|
||||||
<dd><dl>
|
<dd><dl>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#types_of_resource_records_and_when_to_use_them">Types of Resource Records and When to Use Them</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#types_of_resource_records_and_when_to_use_them">Types of Resource Records and When to Use Them</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2591365">Discussion of MX Records</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2591392">Discussion of MX Records</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#Setting_TTLs">Setting TTLs</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#Setting_TTLs">Setting TTLs</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2591985">Inverse Mapping in IPv4</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2592080">Inverse Mapping in IPv4</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2592180">Other Zone File Directives</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2592275">Other Zone File Directives</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2592505"><acronym class="acronym">BIND</acronym> Master File Extension: the <span><strong class="command">$GENERATE</strong></span> Directive</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#id2592532"><acronym class="acronym">BIND</acronym> Master File Extension: the <span><strong class="command">$GENERATE</strong></span> Directive</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#zonefile_format">Additional File Formats</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch06.html#zonefile_format">Additional File Formats</a></span></dt>
|
||||||
</dl></dd>
|
</dl></dd>
|
||||||
</dl></dd>
|
</dl></dd>
|
||||||
<dt><span class="chapter"><a href="Bv9ARM.ch07.html">7. <acronym class="acronym">BIND</acronym> 9 Security Considerations</a></span></dt>
|
<dt><span class="chapter"><a href="Bv9ARM.ch07.html">7. <acronym class="acronym">BIND</acronym> 9 Security Considerations</a></span></dt>
|
||||||
<dd><dl>
|
<dd><dl>
|
||||||
<dt><span class="sect1"><a href="Bv9ARM.ch07.html#Access_Control_Lists">Access Control Lists</a></span></dt>
|
<dt><span class="sect1"><a href="Bv9ARM.ch07.html#Access_Control_Lists">Access Control Lists</a></span></dt>
|
||||||
<dt><span class="sect1"><a href="Bv9ARM.ch07.html#id2593121"><span><strong class="command">Chroot</strong></span> and <span><strong class="command">Setuid</strong></span></a></span></dt>
|
<dt><span class="sect1"><a href="Bv9ARM.ch07.html#id2593147"><span><strong class="command">Chroot</strong></span> and <span><strong class="command">Setuid</strong></span></a></span></dt>
|
||||||
<dd><dl>
|
<dd><dl>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch07.html#id2593197">The <span><strong class="command">chroot</strong></span> Environment</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch07.html#id2593224">The <span><strong class="command">chroot</strong></span> Environment</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch07.html#id2593325">Using the <span><strong class="command">setuid</strong></span> Function</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch07.html#id2593352">Using the <span><strong class="command">setuid</strong></span> Function</a></span></dt>
|
||||||
</dl></dd>
|
</dl></dd>
|
||||||
<dt><span class="sect1"><a href="Bv9ARM.ch07.html#dynamic_update_security">Dynamic Update Security</a></span></dt>
|
<dt><span class="sect1"><a href="Bv9ARM.ch07.html#dynamic_update_security">Dynamic Update Security</a></span></dt>
|
||||||
</dl></dd>
|
</dl></dd>
|
||||||
<dt><span class="chapter"><a href="Bv9ARM.ch08.html">8. Troubleshooting</a></span></dt>
|
<dt><span class="chapter"><a href="Bv9ARM.ch08.html">8. Troubleshooting</a></span></dt>
|
||||||
<dd><dl>
|
<dd><dl>
|
||||||
<dt><span class="sect1"><a href="Bv9ARM.ch08.html#id2593405">Common Problems</a></span></dt>
|
<dt><span class="sect1"><a href="Bv9ARM.ch08.html#id2593432">Common Problems</a></span></dt>
|
||||||
<dd><dl><dt><span class="sect2"><a href="Bv9ARM.ch08.html#id2593411">It's not working; how can I figure out what's wrong?</a></span></dt></dl></dd>
|
<dd><dl><dt><span class="sect2"><a href="Bv9ARM.ch08.html#id2593437">It's not working; how can I figure out what's wrong?</a></span></dt></dl></dd>
|
||||||
<dt><span class="sect1"><a href="Bv9ARM.ch08.html#id2593422">Incrementing and Changing the Serial Number</a></span></dt>
|
<dt><span class="sect1"><a href="Bv9ARM.ch08.html#id2593449">Incrementing and Changing the Serial Number</a></span></dt>
|
||||||
<dt><span class="sect1"><a href="Bv9ARM.ch08.html#id2593440">Where Can I Get Help?</a></span></dt>
|
<dt><span class="sect1"><a href="Bv9ARM.ch08.html#id2593466">Where Can I Get Help?</a></span></dt>
|
||||||
</dl></dd>
|
</dl></dd>
|
||||||
<dt><span class="appendix"><a href="Bv9ARM.ch09.html">A. Appendices</a></span></dt>
|
<dt><span class="appendix"><a href="Bv9ARM.ch09.html">A. Appendices</a></span></dt>
|
||||||
<dd><dl>
|
<dd><dl>
|
||||||
<dt><span class="sect1"><a href="Bv9ARM.ch09.html#id2593501">Acknowledgments</a></span></dt>
|
<dt><span class="sect1"><a href="Bv9ARM.ch09.html#id2593528">Acknowledgments</a></span></dt>
|
||||||
<dd><dl><dt><span class="sect2"><a href="Bv9ARM.ch09.html#historical_dns_information">A Brief History of the <acronym class="acronym">DNS</acronym> and <acronym class="acronym">BIND</acronym></a></span></dt></dl></dd>
|
<dd><dl><dt><span class="sect2"><a href="Bv9ARM.ch09.html#historical_dns_information">A Brief History of the <acronym class="acronym">DNS</acronym> and <acronym class="acronym">BIND</acronym></a></span></dt></dl></dd>
|
||||||
<dt><span class="sect1"><a href="Bv9ARM.ch09.html#id2593732">General <acronym class="acronym">DNS</acronym> Reference Information</a></span></dt>
|
<dt><span class="sect1"><a href="Bv9ARM.ch09.html#id2593690">General <acronym class="acronym">DNS</acronym> Reference Information</a></span></dt>
|
||||||
<dd><dl><dt><span class="sect2"><a href="Bv9ARM.ch09.html#ipv6addresses">IPv6 addresses (AAAA)</a></span></dt></dl></dd>
|
<dd><dl><dt><span class="sect2"><a href="Bv9ARM.ch09.html#ipv6addresses">IPv6 addresses (AAAA)</a></span></dt></dl></dd>
|
||||||
<dt><span class="sect1"><a href="Bv9ARM.ch09.html#bibliography">Bibliography (and Suggested Reading)</a></span></dt>
|
<dt><span class="sect1"><a href="Bv9ARM.ch09.html#bibliography">Bibliography (and Suggested Reading)</a></span></dt>
|
||||||
<dd><dl>
|
<dd><dl>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch09.html#rfcs">Request for Comments (RFCs)</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch09.html#rfcs">Request for Comments (RFCs)</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch09.html#internet_drafts">Internet Drafts</a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch09.html#internet_drafts">Internet Drafts</a></span></dt>
|
||||||
<dt><span class="sect2"><a href="Bv9ARM.ch09.html#id2597104">Other Documents About <acronym class="acronym">BIND</acronym></a></span></dt>
|
<dt><span class="sect2"><a href="Bv9ARM.ch09.html#id2597130">Other Documents About <acronym class="acronym">BIND</acronym></a></span></dt>
|
||||||
</dl></dd>
|
</dl></dd>
|
||||||
</dl></dd>
|
</dl></dd>
|
||||||
<dt><span class="reference"><a href="Bv9ARM.ch10.html">I. Manual pages</a></span></dt>
|
<dt><span class="reference"><a href="Bv9ARM.ch10.html">I. Manual pages</a></span></dt>
|
||||||
|
@@ -14,7 +14,7 @@
|
|||||||
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
- PERFORMANCE OF THIS SOFTWARE.
|
- PERFORMANCE OF THIS SOFTWARE.
|
||||||
-->
|
-->
|
||||||
<!-- $Id: man.dig.html,v 1.45 2007/05/08 02:30:42 marka Exp $ -->
|
<!-- $Id: man.dig.html,v 1.46 2007/05/09 03:33:51 marka Exp $ -->
|
||||||
<html>
|
<html>
|
||||||
<head>
|
<head>
|
||||||
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
||||||
@@ -52,7 +52,7 @@
|
|||||||
<div class="cmdsynopsis"><p><code class="command">dig</code> [global-queryopt...] [query...]</p></div>
|
<div class="cmdsynopsis"><p><code class="command">dig</code> [global-queryopt...] [query...]</p></div>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2563899"></a><h2>DESCRIPTION</h2>
|
<a name="id2563858"></a><h2>DESCRIPTION</h2>
|
||||||
<p><span><strong class="command">dig</strong></span>
|
<p><span><strong class="command">dig</strong></span>
|
||||||
(domain information groper) is a flexible tool
|
(domain information groper) is a flexible tool
|
||||||
for interrogating DNS name servers. It performs DNS lookups and
|
for interrogating DNS name servers. It performs DNS lookups and
|
||||||
@@ -68,7 +68,7 @@
|
|||||||
arguments, it also has a batch mode of operation for reading lookup
|
arguments, it also has a batch mode of operation for reading lookup
|
||||||
requests from a file. A brief summary of its command-line arguments
|
requests from a file. A brief summary of its command-line arguments
|
||||||
and options is printed when the <code class="option">-h</code> option is given.
|
and options is printed when the <code class="option">-h</code> option is given.
|
||||||
Unlike earlier versions, the BIND9 implementation of
|
Unlike earlier versions, the BIND 9 implementation of
|
||||||
<span><strong class="command">dig</strong></span> allows multiple lookups to be issued
|
<span><strong class="command">dig</strong></span> allows multiple lookups to be issued
|
||||||
from the
|
from the
|
||||||
command line.
|
command line.
|
||||||
@@ -98,7 +98,7 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2563988"></a><h2>SIMPLE USAGE</h2>
|
<a name="id2563946"></a><h2>SIMPLE USAGE</h2>
|
||||||
<p>
|
<p>
|
||||||
A typical invocation of <span><strong class="command">dig</strong></span> looks like:
|
A typical invocation of <span><strong class="command">dig</strong></span> looks like:
|
||||||
</p>
|
</p>
|
||||||
@@ -144,7 +144,7 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2569628"></a><h2>OPTIONS</h2>
|
<a name="id2569587"></a><h2>OPTIONS</h2>
|
||||||
<p>
|
<p>
|
||||||
The <code class="option">-b</code> option sets the source IP address of the query
|
The <code class="option">-b</code> option sets the source IP address of the query
|
||||||
to <em class="parameter"><code>address</code></em>. This must be a valid
|
to <em class="parameter"><code>address</code></em>. This must be a valid
|
||||||
@@ -165,7 +165,7 @@
|
|||||||
in batch mode by reading a list of lookup requests to process from the
|
in batch mode by reading a list of lookup requests to process from the
|
||||||
file <em class="parameter"><code>filename</code></em>. The file contains a
|
file <em class="parameter"><code>filename</code></em>. The file contains a
|
||||||
number of
|
number of
|
||||||
queries, one per line. Each entry in the file should be organised in
|
queries, one per line. Each entry in the file should be organized in
|
||||||
the same way they would be presented as queries to
|
the same way they would be presented as queries to
|
||||||
<span><strong class="command">dig</strong></span> using the command-line interface.
|
<span><strong class="command">dig</strong></span> using the command-line interface.
|
||||||
</p>
|
</p>
|
||||||
@@ -188,7 +188,7 @@
|
|||||||
The <code class="option">-t</code> option sets the query type to
|
The <code class="option">-t</code> option sets the query type to
|
||||||
<em class="parameter"><code>type</code></em>. It can be any valid query type
|
<em class="parameter"><code>type</code></em>. It can be any valid query type
|
||||||
which is
|
which is
|
||||||
supported in BIND9. The default query type "A", unless the
|
supported in BIND 9. The default query type "A", unless the
|
||||||
<code class="option">-x</code> option is supplied to indicate a reverse lookup.
|
<code class="option">-x</code> option is supplied to indicate a reverse lookup.
|
||||||
A zone transfer can be requested by specifying a type of AXFR. When
|
A zone transfer can be requested by specifying a type of AXFR. When
|
||||||
an incremental zone transfer (IXFR) is required,
|
an incremental zone transfer (IXFR) is required,
|
||||||
@@ -199,11 +199,11 @@
|
|||||||
</p>
|
</p>
|
||||||
<p>
|
<p>
|
||||||
The <code class="option">-q</code> option sets the query name to
|
The <code class="option">-q</code> option sets the query name to
|
||||||
<em class="parameter"><code>name</code></em>. This useful do distingish the
|
<em class="parameter"><code>name</code></em>. This useful do distinguish the
|
||||||
<em class="parameter"><code>name</code></em> from other arguments.
|
<em class="parameter"><code>name</code></em> from other arguments.
|
||||||
</p>
|
</p>
|
||||||
<p>
|
<p>
|
||||||
Reverse lookups - mapping addresses to names - are simplified by the
|
Reverse lookups — mapping addresses to names — are simplified by the
|
||||||
<code class="option">-x</code> option. <em class="parameter"><code>addr</code></em> is
|
<code class="option">-x</code> option. <em class="parameter"><code>addr</code></em> is
|
||||||
an IPv4
|
an IPv4
|
||||||
address in dotted-decimal notation, or a colon-delimited IPv6 address.
|
address in dotted-decimal notation, or a colon-delimited IPv6 address.
|
||||||
@@ -244,7 +244,7 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2623482"></a><h2>QUERY OPTIONS</h2>
|
<a name="id2623509"></a><h2>QUERY OPTIONS</h2>
|
||||||
<p><span><strong class="command">dig</strong></span>
|
<p><span><strong class="command">dig</strong></span>
|
||||||
provides a number of query options which affect
|
provides a number of query options which affect
|
||||||
the way in which lookups are made and the results displayed. Some of
|
the way in which lookups are made and the results displayed. Some of
|
||||||
@@ -267,7 +267,7 @@
|
|||||||
<dt><span class="term"><code class="option">+[no]tcp</code></span></dt>
|
<dt><span class="term"><code class="option">+[no]tcp</code></span></dt>
|
||||||
<dd><p>
|
<dd><p>
|
||||||
Use [do not use] TCP when querying name servers. The default
|
Use [do not use] TCP when querying name servers. The default
|
||||||
behaviour is to use UDP unless an AXFR or IXFR query is
|
behavior is to use UDP unless an AXFR or IXFR query is
|
||||||
requested, in
|
requested, in
|
||||||
which case a TCP connection is used.
|
which case a TCP connection is used.
|
||||||
</p></dd>
|
</p></dd>
|
||||||
@@ -412,7 +412,7 @@
|
|||||||
This query option toggles the printing of statistics: when the
|
This query option toggles the printing of statistics: when the
|
||||||
query
|
query
|
||||||
was made, the size of the reply and so on. The default
|
was made, the size of the reply and so on. The default
|
||||||
behaviour is
|
behavior is
|
||||||
to print the query statistics.
|
to print the query statistics.
|
||||||
</p></dd>
|
</p></dd>
|
||||||
<dt><span class="term"><code class="option">+[no]qr</code></span></dt>
|
<dt><span class="term"><code class="option">+[no]qr</code></span></dt>
|
||||||
@@ -451,8 +451,8 @@
|
|||||||
<dd><p>
|
<dd><p>
|
||||||
|
|
||||||
Sets the timeout for a query to
|
Sets the timeout for a query to
|
||||||
<em class="parameter"><code>T</code></em> seconds. The default time
|
<em class="parameter"><code>T</code></em> seconds. The default
|
||||||
out is 5 seconds.
|
timeout is 5 seconds.
|
||||||
An attempt to set <em class="parameter"><code>T</code></em> to less
|
An attempt to set <em class="parameter"><code>T</code></em> to less
|
||||||
than 1 will result
|
than 1 will result
|
||||||
in a query timeout of 1 second being applied.
|
in a query timeout of 1 second being applied.
|
||||||
@@ -517,7 +517,7 @@
|
|||||||
default is
|
default is
|
||||||
to not try the next server which is the reverse of normal stub
|
to not try the next server which is the reverse of normal stub
|
||||||
resolver
|
resolver
|
||||||
behaviour.
|
behavior.
|
||||||
</p></dd>
|
</p></dd>
|
||||||
<dt><span class="term"><code class="option">+[no]besteffort</code></span></dt>
|
<dt><span class="term"><code class="option">+[no]besteffort</code></span></dt>
|
||||||
<dd><p>
|
<dd><p>
|
||||||
@@ -553,7 +553,7 @@
|
|||||||
</dd>
|
</dd>
|
||||||
<dt><span class="term"><code class="option">+[no]topdown</code></span></dt>
|
<dt><span class="term"><code class="option">+[no]topdown</code></span></dt>
|
||||||
<dd><p>
|
<dd><p>
|
||||||
When chasing DNSSEC signature chains perform a top down
|
When chasing DNSSEC signature chains perform a top-down
|
||||||
validation.
|
validation.
|
||||||
Requires dig be compiled with -DDIG_SIGCHASE.
|
Requires dig be compiled with -DDIG_SIGCHASE.
|
||||||
</p></dd>
|
</p></dd>
|
||||||
@@ -563,7 +563,7 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2650683"></a><h2>MULTIPLE QUERIES</h2>
|
<a name="id2650710"></a><h2>MULTIPLE QUERIES</h2>
|
||||||
<p>
|
<p>
|
||||||
The BIND 9 implementation of <span><strong class="command">dig </strong></span>
|
The BIND 9 implementation of <span><strong class="command">dig </strong></span>
|
||||||
supports
|
supports
|
||||||
@@ -609,7 +609,7 @@ dig +qr www.isc.org any -x 127.0.0.1 isc.org ns +noqr
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2650837"></a><h2>IDN SUPPORT</h2>
|
<a name="id2650864"></a><h2>IDN SUPPORT</h2>
|
||||||
<p>
|
<p>
|
||||||
If <span><strong class="command">dig</strong></span> has been built with IDN (internationalized
|
If <span><strong class="command">dig</strong></span> has been built with IDN (internationalized
|
||||||
domain name) support, it can accept and display non-ASCII domain names.
|
domain name) support, it can accept and display non-ASCII domain names.
|
||||||
@@ -623,14 +623,14 @@ dig +qr www.isc.org any -x 127.0.0.1 isc.org ns +noqr
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2650866"></a><h2>FILES</h2>
|
<a name="id2650892"></a><h2>FILES</h2>
|
||||||
<p><code class="filename">/etc/resolv.conf</code>
|
<p><code class="filename">/etc/resolv.conf</code>
|
||||||
</p>
|
</p>
|
||||||
<p><code class="filename">${HOME}/.digrc</code>
|
<p><code class="filename">${HOME}/.digrc</code>
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2650887"></a><h2>SEE ALSO</h2>
|
<a name="id2650914"></a><h2>SEE ALSO</h2>
|
||||||
<p><span class="citerefentry"><span class="refentrytitle">host</span>(1)</span>,
|
<p><span class="citerefentry"><span class="refentrytitle">host</span>(1)</span>,
|
||||||
<span class="citerefentry"><span class="refentrytitle">named</span>(8)</span>,
|
<span class="citerefentry"><span class="refentrytitle">named</span>(8)</span>,
|
||||||
<span class="citerefentry"><span class="refentrytitle">dnssec-keygen</span>(8)</span>,
|
<span class="citerefentry"><span class="refentrytitle">dnssec-keygen</span>(8)</span>,
|
||||||
@@ -638,7 +638,7 @@ dig +qr www.isc.org any -x 127.0.0.1 isc.org ns +noqr
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2650924"></a><h2>BUGS</h2>
|
<a name="id2651019"></a><h2>BUGS</h2>
|
||||||
<p>
|
<p>
|
||||||
There are probably too many query options.
|
There are probably too many query options.
|
||||||
</p>
|
</p>
|
||||||
|
@@ -14,7 +14,7 @@
|
|||||||
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
- PERFORMANCE OF THIS SOFTWARE.
|
- PERFORMANCE OF THIS SOFTWARE.
|
||||||
-->
|
-->
|
||||||
<!-- $Id: man.dnssec-keygen.html,v 1.45 2007/05/08 02:30:42 marka Exp $ -->
|
<!-- $Id: man.dnssec-keygen.html,v 1.46 2007/05/09 03:33:51 marka Exp $ -->
|
||||||
<html>
|
<html>
|
||||||
<head>
|
<head>
|
||||||
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
||||||
@@ -50,15 +50,15 @@
|
|||||||
<div class="cmdsynopsis"><p><code class="command">dnssec-keygen</code> {-a <em class="replaceable"><code>algorithm</code></em>} {-b <em class="replaceable"><code>keysize</code></em>} {-n <em class="replaceable"><code>nametype</code></em>} [<code class="option">-c <em class="replaceable"><code>class</code></em></code>] [<code class="option">-e</code>] [<code class="option">-f <em class="replaceable"><code>flag</code></em></code>] [<code class="option">-g <em class="replaceable"><code>generator</code></em></code>] [<code class="option">-h</code>] [<code class="option">-k</code>] [<code class="option">-p <em class="replaceable"><code>protocol</code></em></code>] [<code class="option">-r <em class="replaceable"><code>randomdev</code></em></code>] [<code class="option">-s <em class="replaceable"><code>strength</code></em></code>] [<code class="option">-t <em class="replaceable"><code>type</code></em></code>] [<code class="option">-v <em class="replaceable"><code>level</code></em></code>] {name}</p></div>
|
<div class="cmdsynopsis"><p><code class="command">dnssec-keygen</code> {-a <em class="replaceable"><code>algorithm</code></em>} {-b <em class="replaceable"><code>keysize</code></em>} {-n <em class="replaceable"><code>nametype</code></em>} [<code class="option">-c <em class="replaceable"><code>class</code></em></code>] [<code class="option">-e</code>] [<code class="option">-f <em class="replaceable"><code>flag</code></em></code>] [<code class="option">-g <em class="replaceable"><code>generator</code></em></code>] [<code class="option">-h</code>] [<code class="option">-k</code>] [<code class="option">-p <em class="replaceable"><code>protocol</code></em></code>] [<code class="option">-r <em class="replaceable"><code>randomdev</code></em></code>] [<code class="option">-s <em class="replaceable"><code>strength</code></em></code>] [<code class="option">-t <em class="replaceable"><code>type</code></em></code>] [<code class="option">-v <em class="replaceable"><code>level</code></em></code>] {name}</p></div>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2598250"></a><h2>DESCRIPTION</h2>
|
<a name="id2598413"></a><h2>DESCRIPTION</h2>
|
||||||
<p><span><strong class="command">dnssec-keygen</strong></span>
|
<p><span><strong class="command">dnssec-keygen</strong></span>
|
||||||
generates keys for DNSSEC (Secure DNS), as defined in RFC 2535
|
generates keys for DNSSEC (Secure DNS), as defined in RFC 2535
|
||||||
and RFC <TBA\>. It can also generate keys for use with
|
and RFC 4034. It can also generate keys for use with
|
||||||
TSIG (Transaction Signatures), as defined in RFC 2845.
|
TSIG (Transaction Signatures), as defined in RFC 2845.
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2598264"></a><h2>OPTIONS</h2>
|
<a name="id2598427"></a><h2>OPTIONS</h2>
|
||||||
<div class="variablelist"><dl>
|
<div class="variablelist"><dl>
|
||||||
<dt><span class="term">-a <em class="replaceable"><code>algorithm</code></em></span></dt>
|
<dt><span class="term">-a <em class="replaceable"><code>algorithm</code></em></span></dt>
|
||||||
<dd>
|
<dd>
|
||||||
@@ -166,7 +166,7 @@
|
|||||||
</dl></div>
|
</dl></div>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2598608"></a><h2>GENERATED KEYS</h2>
|
<a name="id2598839"></a><h2>GENERATED KEYS</h2>
|
||||||
<p>
|
<p>
|
||||||
When <span><strong class="command">dnssec-keygen</strong></span> completes
|
When <span><strong class="command">dnssec-keygen</strong></span> completes
|
||||||
successfully,
|
successfully,
|
||||||
@@ -186,7 +186,7 @@
|
|||||||
</p></li>
|
</p></li>
|
||||||
</ul></div>
|
</ul></div>
|
||||||
<p><span><strong class="command">dnssec-keygen</strong></span>
|
<p><span><strong class="command">dnssec-keygen</strong></span>
|
||||||
creates two file, with names based
|
creates two files, with names based
|
||||||
on the printed string. <code class="filename">Knnnn.+aaa+iiiii.key</code>
|
on the printed string. <code class="filename">Knnnn.+aaa+iiiii.key</code>
|
||||||
contains the public key, and
|
contains the public key, and
|
||||||
<code class="filename">Knnnn.+aaa+iiiii.private</code> contains the
|
<code class="filename">Knnnn.+aaa+iiiii.private</code> contains the
|
||||||
@@ -200,19 +200,19 @@
|
|||||||
statement).
|
statement).
|
||||||
</p>
|
</p>
|
||||||
<p>
|
<p>
|
||||||
The <code class="filename">.private</code> file contains algorithm
|
The <code class="filename">.private</code> file contains
|
||||||
specific
|
algorithm-specific
|
||||||
fields. For obvious security reasons, this file does not have
|
fields. For obvious security reasons, this file does not have
|
||||||
general read permission.
|
general read permission.
|
||||||
</p>
|
</p>
|
||||||
<p>
|
<p>
|
||||||
Both <code class="filename">.key</code> and <code class="filename">.private</code>
|
Both <code class="filename">.key</code> and <code class="filename">.private</code>
|
||||||
files are generated for symmetric encryption algorithm such as
|
files are generated for symmetric encryption algorithms such as
|
||||||
HMAC-MD5, even though the public and private key are equivalent.
|
HMAC-MD5, even though the public and private key are equivalent.
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2600354"></a><h2>EXAMPLE</h2>
|
<a name="id2600517"></a><h2>EXAMPLE</h2>
|
||||||
<p>
|
<p>
|
||||||
To generate a 768-bit DSA key for the domain
|
To generate a 768-bit DSA key for the domain
|
||||||
<strong class="userinput"><code>example.com</code></strong>, the following command would be
|
<strong class="userinput"><code>example.com</code></strong>, the following command would be
|
||||||
@@ -229,11 +229,11 @@
|
|||||||
In this example, <span><strong class="command">dnssec-keygen</strong></span> creates
|
In this example, <span><strong class="command">dnssec-keygen</strong></span> creates
|
||||||
the files <code class="filename">Kexample.com.+003+26160.key</code>
|
the files <code class="filename">Kexample.com.+003+26160.key</code>
|
||||||
and
|
and
|
||||||
<code class="filename">Kexample.com.+003+26160.private</code>
|
<code class="filename">Kexample.com.+003+26160.private</code>.
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2600410"></a><h2>SEE ALSO</h2>
|
<a name="id2600642"></a><h2>SEE ALSO</h2>
|
||||||
<p><span class="citerefentry"><span class="refentrytitle">dnssec-signzone</span>(8)</span>,
|
<p><span class="citerefentry"><span class="refentrytitle">dnssec-signzone</span>(8)</span>,
|
||||||
<em class="citetitle">BIND 9 Administrator Reference Manual</em>,
|
<em class="citetitle">BIND 9 Administrator Reference Manual</em>,
|
||||||
<em class="citetitle">RFC 2535</em>,
|
<em class="citetitle">RFC 2535</em>,
|
||||||
@@ -242,7 +242,7 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2600509"></a><h2>AUTHOR</h2>
|
<a name="id2600673"></a><h2>AUTHOR</h2>
|
||||||
<p><span class="corpauthor">Internet Systems Consortium</span>
|
<p><span class="corpauthor">Internet Systems Consortium</span>
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
|
@@ -14,7 +14,7 @@
|
|||||||
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
- PERFORMANCE OF THIS SOFTWARE.
|
- PERFORMANCE OF THIS SOFTWARE.
|
||||||
-->
|
-->
|
||||||
<!-- $Id: man.dnssec-signzone.html,v 1.44 2007/05/08 02:30:42 marka Exp $ -->
|
<!-- $Id: man.dnssec-signzone.html,v 1.45 2007/05/09 03:33:51 marka Exp $ -->
|
||||||
<html>
|
<html>
|
||||||
<head>
|
<head>
|
||||||
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
||||||
@@ -50,7 +50,7 @@
|
|||||||
<div class="cmdsynopsis"><p><code class="command">dnssec-signzone</code> [<code class="option">-a</code>] [<code class="option">-c <em class="replaceable"><code>class</code></em></code>] [<code class="option">-d <em class="replaceable"><code>directory</code></em></code>] [<code class="option">-e <em class="replaceable"><code>end-time</code></em></code>] [<code class="option">-f <em class="replaceable"><code>output-file</code></em></code>] [<code class="option">-g</code>] [<code class="option">-h</code>] [<code class="option">-k <em class="replaceable"><code>key</code></em></code>] [<code class="option">-l <em class="replaceable"><code>domain</code></em></code>] [<code class="option">-i <em class="replaceable"><code>interval</code></em></code>] [<code class="option">-I <em class="replaceable"><code>input-format</code></em></code>] [<code class="option">-j <em class="replaceable"><code>jitter</code></em></code>] [<code class="option">-N <em class="replaceable"><code>soa-serial-format</code></em></code>] [<code class="option">-o <em class="replaceable"><code>origin</code></em></code>] [<code class="option">-O <em class="replaceable"><code>output-format</code></em></code>] [<code class="option">-p</code>] [<code class="option">-r <em class="replaceable"><code>randomdev</code></em></code>] [<code class="option">-s <em class="replaceable"><code>start-time</code></em></code>] [<code class="option">-t</code>] [<code class="option">-v <em class="replaceable"><code>level</code></em></code>] [<code class="option">-z</code>] {zonefile} [key...]</p></div>
|
<div class="cmdsynopsis"><p><code class="command">dnssec-signzone</code> [<code class="option">-a</code>] [<code class="option">-c <em class="replaceable"><code>class</code></em></code>] [<code class="option">-d <em class="replaceable"><code>directory</code></em></code>] [<code class="option">-e <em class="replaceable"><code>end-time</code></em></code>] [<code class="option">-f <em class="replaceable"><code>output-file</code></em></code>] [<code class="option">-g</code>] [<code class="option">-h</code>] [<code class="option">-k <em class="replaceable"><code>key</code></em></code>] [<code class="option">-l <em class="replaceable"><code>domain</code></em></code>] [<code class="option">-i <em class="replaceable"><code>interval</code></em></code>] [<code class="option">-I <em class="replaceable"><code>input-format</code></em></code>] [<code class="option">-j <em class="replaceable"><code>jitter</code></em></code>] [<code class="option">-N <em class="replaceable"><code>soa-serial-format</code></em></code>] [<code class="option">-o <em class="replaceable"><code>origin</code></em></code>] [<code class="option">-O <em class="replaceable"><code>output-format</code></em></code>] [<code class="option">-p</code>] [<code class="option">-r <em class="replaceable"><code>randomdev</code></em></code>] [<code class="option">-s <em class="replaceable"><code>start-time</code></em></code>] [<code class="option">-t</code>] [<code class="option">-v <em class="replaceable"><code>level</code></em></code>] [<code class="option">-z</code>] {zonefile} [key...]</p></div>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2598963"></a><h2>DESCRIPTION</h2>
|
<a name="id2599202"></a><h2>DESCRIPTION</h2>
|
||||||
<p><span><strong class="command">dnssec-signzone</strong></span>
|
<p><span><strong class="command">dnssec-signzone</strong></span>
|
||||||
signs a zone. It generates
|
signs a zone. It generates
|
||||||
NSEC and RRSIG records and produces a signed version of the
|
NSEC and RRSIG records and produces a signed version of the
|
||||||
@@ -61,7 +61,7 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2599050"></a><h2>OPTIONS</h2>
|
<a name="id2599221"></a><h2>OPTIONS</h2>
|
||||||
<div class="variablelist"><dl>
|
<div class="variablelist"><dl>
|
||||||
<dt><span class="term">-a</span></dt>
|
<dt><span class="term">-a</span></dt>
|
||||||
<dd><p>
|
<dd><p>
|
||||||
@@ -117,7 +117,7 @@
|
|||||||
The name of the output file containing the signed zone. The
|
The name of the output file containing the signed zone. The
|
||||||
default is to append <code class="filename">.signed</code> to
|
default is to append <code class="filename">.signed</code> to
|
||||||
the
|
the
|
||||||
input file.
|
input filename.
|
||||||
</p></dd>
|
</p></dd>
|
||||||
<dt><span class="term">-h</span></dt>
|
<dt><span class="term">-h</span></dt>
|
||||||
<dd><p>
|
<dd><p>
|
||||||
@@ -127,7 +127,7 @@
|
|||||||
<dt><span class="term">-i <em class="replaceable"><code>interval</code></em></span></dt>
|
<dt><span class="term">-i <em class="replaceable"><code>interval</code></em></span></dt>
|
||||||
<dd>
|
<dd>
|
||||||
<p>
|
<p>
|
||||||
When a previously signed zone is passed as input, records
|
When a previously-signed zone is passed as input, records
|
||||||
may be resigned. The <code class="option">interval</code> option
|
may be resigned. The <code class="option">interval</code> option
|
||||||
specifies the cycle interval as an offset from the current
|
specifies the cycle interval as an offset from the current
|
||||||
time (in seconds). If a RRSIG record expires after the
|
time (in seconds). If a RRSIG record expires after the
|
||||||
@@ -163,8 +163,8 @@
|
|||||||
When signing a zone with a fixed signature lifetime, all
|
When signing a zone with a fixed signature lifetime, all
|
||||||
RRSIG records issued at the time of signing expires
|
RRSIG records issued at the time of signing expires
|
||||||
simultaneously. If the zone is incrementally signed, i.e.
|
simultaneously. If the zone is incrementally signed, i.e.
|
||||||
a previously signed zone is passed as input to the signer,
|
a previously-signed zone is passed as input to the signer,
|
||||||
all expired signatures has to be regenerated at about the
|
all expired signatures have to be regenerated at about the
|
||||||
same time. The <code class="option">jitter</code> option specifies a
|
same time. The <code class="option">jitter</code> option specifies a
|
||||||
jitter window that will be used to randomize the signature
|
jitter window that will be used to randomize the signature
|
||||||
expire time, thus spreading incremental signature
|
expire time, thus spreading incremental signature
|
||||||
@@ -250,47 +250,52 @@
|
|||||||
</p></dd>
|
</p></dd>
|
||||||
<dt><span class="term">key</span></dt>
|
<dt><span class="term">key</span></dt>
|
||||||
<dd><p>
|
<dd><p>
|
||||||
The keys used to sign the zone. If no keys are specified, the
|
Specify which keys should be used to sign the zone. If
|
||||||
default all zone keys that have private key files in the
|
no keys are specified, then the zone will be examined
|
||||||
current directory.
|
for DNSKEY records at the zone apex. If these are found and
|
||||||
|
there are matching private keys, in the current directory,
|
||||||
|
then these will be used for signing.
|
||||||
</p></dd>
|
</p></dd>
|
||||||
</dl></div>
|
</dl></div>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2622810"></a><h2>EXAMPLE</h2>
|
<a name="id2622844"></a><h2>EXAMPLE</h2>
|
||||||
<p>
|
<p>
|
||||||
The following command signs the <strong class="userinput"><code>example.com</code></strong>
|
The following command signs the <strong class="userinput"><code>example.com</code></strong>
|
||||||
zone with the DSA key generated in the <span><strong class="command">dnssec-keygen</strong></span>
|
zone with the DSA key generated by <span><strong class="command">dnssec-keygen</strong></span>
|
||||||
man page. The zone's keys must be in the zone. If there are
|
(Kexample.com.+003+17247). The zone's keys must be in the master
|
||||||
<code class="filename">keyset</code> files associated with child
|
file (<code class="filename">db.example.com</code>). This invocation looks
|
||||||
zones,
|
for <code class="filename">keyset</code> files, in the current directory,
|
||||||
they must be in the current directory.
|
so that DS records can be generated from them (<span><strong class="command">-g</strong></span>).
|
||||||
<strong class="userinput"><code>example.com</code></strong>, the following command would be
|
|
||||||
issued:
|
|
||||||
</p>
|
|
||||||
<p><strong class="userinput"><code>dnssec-signzone -o example.com db.example.com
|
|
||||||
Kexample.com.+003+26160</code></strong>
|
|
||||||
</p>
|
</p>
|
||||||
|
<pre class="programlisting">% dnssec-signzone -g -o example.com db.example.com \
|
||||||
|
Kexample.com.+003+17247
|
||||||
|
db.example.com.signed
|
||||||
|
%</pre>
|
||||||
<p>
|
<p>
|
||||||
The command would print a string of the form:
|
In the above example, <span><strong class="command">dnssec-signzone</strong></span> creates
|
||||||
</p>
|
|
||||||
<p>
|
|
||||||
In this example, <span><strong class="command">dnssec-signzone</strong></span> creates
|
|
||||||
the file <code class="filename">db.example.com.signed</code>. This
|
the file <code class="filename">db.example.com.signed</code>. This
|
||||||
file
|
file should be referenced in a zone statement in a
|
||||||
should be referenced in a zone statement in a
|
|
||||||
<code class="filename">named.conf</code> file.
|
<code class="filename">named.conf</code> file.
|
||||||
</p>
|
</p>
|
||||||
|
<p>
|
||||||
|
This example re-signs a previously signed zone with default parameters.
|
||||||
|
The private keys are assumed to be in the current directory.
|
||||||
|
</p>
|
||||||
|
<pre class="programlisting">% cp db.example.com.signed db.example.com
|
||||||
|
% dnssec-signzone -o example.com db.example.com
|
||||||
|
db.example.com.signed
|
||||||
|
%</pre>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2653186"></a><h2>SEE ALSO</h2>
|
<a name="id2653296"></a><h2>SEE ALSO</h2>
|
||||||
<p><span class="citerefentry"><span class="refentrytitle">dnssec-keygen</span>(8)</span>,
|
<p><span class="citerefentry"><span class="refentrytitle">dnssec-keygen</span>(8)</span>,
|
||||||
<em class="citetitle">BIND 9 Administrator Reference Manual</em>,
|
<em class="citetitle">BIND 9 Administrator Reference Manual</em>,
|
||||||
<em class="citetitle">RFC 2535</em>.
|
<em class="citetitle">RFC 2535</em>.
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2653210"></a><h2>AUTHOR</h2>
|
<a name="id2653320"></a><h2>AUTHOR</h2>
|
||||||
<p><span class="corpauthor">Internet Systems Consortium</span>
|
<p><span class="corpauthor">Internet Systems Consortium</span>
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
|
@@ -14,7 +14,7 @@
|
|||||||
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
- PERFORMANCE OF THIS SOFTWARE.
|
- PERFORMANCE OF THIS SOFTWARE.
|
||||||
-->
|
-->
|
||||||
<!-- $Id: man.host.html,v 1.44 2007/05/08 02:30:42 marka Exp $ -->
|
<!-- $Id: man.host.html,v 1.45 2007/05/09 03:33:51 marka Exp $ -->
|
||||||
<html>
|
<html>
|
||||||
<head>
|
<head>
|
||||||
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
||||||
@@ -50,7 +50,7 @@
|
|||||||
<div class="cmdsynopsis"><p><code class="command">host</code> [<code class="option">-aCdlnrsTwv</code>] [<code class="option">-c <em class="replaceable"><code>class</code></em></code>] [<code class="option">-N <em class="replaceable"><code>ndots</code></em></code>] [<code class="option">-R <em class="replaceable"><code>number</code></em></code>] [<code class="option">-t <em class="replaceable"><code>type</code></em></code>] [<code class="option">-W <em class="replaceable"><code>wait</code></em></code>] [<code class="option">-m <em class="replaceable"><code>flag</code></em></code>] [<code class="option">-4</code>] [<code class="option">-6</code>] {name} [server]</p></div>
|
<div class="cmdsynopsis"><p><code class="command">host</code> [<code class="option">-aCdlnrsTwv</code>] [<code class="option">-c <em class="replaceable"><code>class</code></em></code>] [<code class="option">-N <em class="replaceable"><code>ndots</code></em></code>] [<code class="option">-R <em class="replaceable"><code>number</code></em></code>] [<code class="option">-t <em class="replaceable"><code>type</code></em></code>] [<code class="option">-W <em class="replaceable"><code>wait</code></em></code>] [<code class="option">-m <em class="replaceable"><code>flag</code></em></code>] [<code class="option">-4</code>] [<code class="option">-6</code>] {name} [server]</p></div>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2597420"></a><h2>DESCRIPTION</h2>
|
<a name="id2597447"></a><h2>DESCRIPTION</h2>
|
||||||
<p><span><strong class="command">host</strong></span>
|
<p><span><strong class="command">host</strong></span>
|
||||||
is a simple utility for performing DNS lookups.
|
is a simple utility for performing DNS lookups.
|
||||||
It is normally used to convert names to IP addresses and vice versa.
|
It is normally used to convert names to IP addresses and vice versa.
|
||||||
@@ -143,7 +143,7 @@
|
|||||||
attempt to resolve <em class="parameter"><code>name</code></em>. The
|
attempt to resolve <em class="parameter"><code>name</code></em>. The
|
||||||
<code class="option">-r</code> option enables <span><strong class="command">host</strong></span>
|
<code class="option">-r</code> option enables <span><strong class="command">host</strong></span>
|
||||||
to mimic
|
to mimic
|
||||||
the behaviour of a name server by making non-recursive queries and
|
the behavior of a name server by making non-recursive queries and
|
||||||
expecting to receive answers to those queries that are usually
|
expecting to receive answers to those queries that are usually
|
||||||
referrals to other name servers.
|
referrals to other name servers.
|
||||||
</p>
|
</p>
|
||||||
@@ -161,7 +161,7 @@
|
|||||||
</p>
|
</p>
|
||||||
<p>
|
<p>
|
||||||
The <code class="option">-t</code> option is used to select the query type.
|
The <code class="option">-t</code> option is used to select the query type.
|
||||||
<em class="parameter"><code>type</code></em> can be any recognised query
|
<em class="parameter"><code>type</code></em> can be any recognized query
|
||||||
type: CNAME,
|
type: CNAME,
|
||||||
NS, SOA, SIG, KEY, AXFR, etc. When no query type is specified,
|
NS, SOA, SIG, KEY, AXFR, etc. When no query type is specified,
|
||||||
<span><strong class="command">host</strong></span> automatically selects an appropriate
|
<span><strong class="command">host</strong></span> automatically selects an appropriate
|
||||||
@@ -192,7 +192,7 @@
|
|||||||
The <code class="option">-s</code> option tells <span><strong class="command">host</strong></span>
|
The <code class="option">-s</code> option tells <span><strong class="command">host</strong></span>
|
||||||
<span class="emphasis"><em>not</em></span> to send the query to the next nameserver
|
<span class="emphasis"><em>not</em></span> to send the query to the next nameserver
|
||||||
if any server responds with a SERVFAIL response, which is the
|
if any server responds with a SERVFAIL response, which is the
|
||||||
reverse of normal stub resolver behaviour.
|
reverse of normal stub resolver behavior.
|
||||||
</p>
|
</p>
|
||||||
<p>
|
<p>
|
||||||
The <code class="option">-m</code> can be used to set the memory usage debugging
|
The <code class="option">-m</code> can be used to set the memory usage debugging
|
||||||
@@ -202,7 +202,7 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2597934"></a><h2>IDN SUPPORT</h2>
|
<a name="id2598029"></a><h2>IDN SUPPORT</h2>
|
||||||
<p>
|
<p>
|
||||||
If <span><strong class="command">host</strong></span> has been built with IDN (internationalized
|
If <span><strong class="command">host</strong></span> has been built with IDN (internationalized
|
||||||
domain name) support, it can accept and display non-ASCII domain names.
|
domain name) support, it can accept and display non-ASCII domain names.
|
||||||
@@ -216,12 +216,12 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2597963"></a><h2>FILES</h2>
|
<a name="id2598058"></a><h2>FILES</h2>
|
||||||
<p><code class="filename">/etc/resolv.conf</code>
|
<p><code class="filename">/etc/resolv.conf</code>
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2597977"></a><h2>SEE ALSO</h2>
|
<a name="id2598072"></a><h2>SEE ALSO</h2>
|
||||||
<p><span class="citerefentry"><span class="refentrytitle">dig</span>(1)</span>,
|
<p><span class="citerefentry"><span class="refentrytitle">dig</span>(1)</span>,
|
||||||
<span class="citerefentry"><span class="refentrytitle">named</span>(8)</span>.
|
<span class="citerefentry"><span class="refentrytitle">named</span>(8)</span>.
|
||||||
</p>
|
</p>
|
||||||
|
@@ -14,7 +14,7 @@
|
|||||||
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
- PERFORMANCE OF THIS SOFTWARE.
|
- PERFORMANCE OF THIS SOFTWARE.
|
||||||
-->
|
-->
|
||||||
<!-- $Id: man.named-checkconf.html,v 1.43 2007/05/08 02:30:42 marka Exp $ -->
|
<!-- $Id: man.named-checkconf.html,v 1.44 2007/05/09 03:33:51 marka Exp $ -->
|
||||||
<html>
|
<html>
|
||||||
<head>
|
<head>
|
||||||
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
||||||
@@ -50,18 +50,18 @@
|
|||||||
<div class="cmdsynopsis"><p><code class="command">named-checkconf</code> [<code class="option">-v</code>] [<code class="option">-j</code>] [<code class="option">-t <em class="replaceable"><code>directory</code></em></code>] {filename} [<code class="option">-z</code>]</p></div>
|
<div class="cmdsynopsis"><p><code class="command">named-checkconf</code> [<code class="option">-v</code>] [<code class="option">-j</code>] [<code class="option">-t <em class="replaceable"><code>directory</code></em></code>] {filename} [<code class="option">-z</code>]</p></div>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2599666"></a><h2>DESCRIPTION</h2>
|
<a name="id2599837"></a><h2>DESCRIPTION</h2>
|
||||||
<p><span><strong class="command">named-checkconf</strong></span>
|
<p><span><strong class="command">named-checkconf</strong></span>
|
||||||
checks the syntax, but not the semantics, of a named
|
checks the syntax, but not the semantics, of a named
|
||||||
configuration file.
|
configuration file.
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2599680"></a><h2>OPTIONS</h2>
|
<a name="id2599851"></a><h2>OPTIONS</h2>
|
||||||
<div class="variablelist"><dl>
|
<div class="variablelist"><dl>
|
||||||
<dt><span class="term">-t <em class="replaceable"><code>directory</code></em></span></dt>
|
<dt><span class="term">-t <em class="replaceable"><code>directory</code></em></span></dt>
|
||||||
<dd><p>
|
<dd><p>
|
||||||
chroot to <code class="filename">directory</code> so that
|
Chroot to <code class="filename">directory</code> so that
|
||||||
include
|
include
|
||||||
directives in the configuration file are processed as if
|
directives in the configuration file are processed as if
|
||||||
run by a similarly chrooted named.
|
run by a similarly chrooted named.
|
||||||
@@ -73,8 +73,8 @@
|
|||||||
</p></dd>
|
</p></dd>
|
||||||
<dt><span class="term">-z</span></dt>
|
<dt><span class="term">-z</span></dt>
|
||||||
<dd><p>
|
<dd><p>
|
||||||
Perform a check load the master zonefiles found in
|
Perform a test load of all master zones found in
|
||||||
<code class="filename">named.conf</code>.
|
<code class="filename">named.conf</code>.
|
||||||
</p></dd>
|
</p></dd>
|
||||||
<dt><span class="term">-j</span></dt>
|
<dt><span class="term">-j</span></dt>
|
||||||
<dd><p>
|
<dd><p>
|
||||||
@@ -88,20 +88,20 @@
|
|||||||
</dl></div>
|
</dl></div>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2599781"></a><h2>RETURN VALUES</h2>
|
<a name="id2599954"></a><h2>RETURN VALUES</h2>
|
||||||
<p><span><strong class="command">named-checkconf</strong></span>
|
<p><span><strong class="command">named-checkconf</strong></span>
|
||||||
returns an exit status of 1 if
|
returns an exit status of 1 if
|
||||||
errors were detected and 0 otherwise.
|
errors were detected and 0 otherwise.
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2599795"></a><h2>SEE ALSO</h2>
|
<a name="id2599968"></a><h2>SEE ALSO</h2>
|
||||||
<p><span class="citerefentry"><span class="refentrytitle">named</span>(8)</span>,
|
<p><span class="citerefentry"><span class="refentrytitle">named</span>(8)</span>,
|
||||||
<em class="citetitle">BIND 9 Administrator Reference Manual</em>.
|
<em class="citetitle">BIND 9 Administrator Reference Manual</em>.
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2599816"></a><h2>AUTHOR</h2>
|
<a name="id2599989"></a><h2>AUTHOR</h2>
|
||||||
<p><span class="corpauthor">Internet Systems Consortium</span>
|
<p><span class="corpauthor">Internet Systems Consortium</span>
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
|
@@ -14,7 +14,7 @@
|
|||||||
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
- PERFORMANCE OF THIS SOFTWARE.
|
- PERFORMANCE OF THIS SOFTWARE.
|
||||||
-->
|
-->
|
||||||
<!-- $Id: man.named-checkzone.html,v 1.48 2007/05/08 02:30:42 marka Exp $ -->
|
<!-- $Id: man.named-checkzone.html,v 1.49 2007/05/09 03:33:51 marka Exp $ -->
|
||||||
<html>
|
<html>
|
||||||
<head>
|
<head>
|
||||||
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
||||||
@@ -51,7 +51,7 @@
|
|||||||
<div class="cmdsynopsis"><p><code class="command">named-compilezone</code> [<code class="option">-d</code>] [<code class="option">-j</code>] [<code class="option">-q</code>] [<code class="option">-v</code>] [<code class="option">-c <em class="replaceable"><code>class</code></em></code>] [<code class="option">-C <em class="replaceable"><code>mode</code></em></code>] [<code class="option">-f <em class="replaceable"><code>format</code></em></code>] [<code class="option">-F <em class="replaceable"><code>format</code></em></code>] [<code class="option">-i <em class="replaceable"><code>mode</code></em></code>] [<code class="option">-k <em class="replaceable"><code>mode</code></em></code>] [<code class="option">-m <em class="replaceable"><code>mode</code></em></code>] [<code class="option">-n <em class="replaceable"><code>mode</code></em></code>] [<code class="option">-o <em class="replaceable"><code>filename</code></em></code>] [<code class="option">-s <em class="replaceable"><code>style</code></em></code>] [<code class="option">-t <em class="replaceable"><code>directory</code></em></code>] [<code class="option">-w <em class="replaceable"><code>directory</code></em></code>] [<code class="option">-D</code>] [<code class="option">-W <em class="replaceable"><code>mode</code></em></code>] {zonename} {filename}</p></div>
|
<div class="cmdsynopsis"><p><code class="command">named-compilezone</code> [<code class="option">-d</code>] [<code class="option">-j</code>] [<code class="option">-q</code>] [<code class="option">-v</code>] [<code class="option">-c <em class="replaceable"><code>class</code></em></code>] [<code class="option">-C <em class="replaceable"><code>mode</code></em></code>] [<code class="option">-f <em class="replaceable"><code>format</code></em></code>] [<code class="option">-F <em class="replaceable"><code>format</code></em></code>] [<code class="option">-i <em class="replaceable"><code>mode</code></em></code>] [<code class="option">-k <em class="replaceable"><code>mode</code></em></code>] [<code class="option">-m <em class="replaceable"><code>mode</code></em></code>] [<code class="option">-n <em class="replaceable"><code>mode</code></em></code>] [<code class="option">-o <em class="replaceable"><code>filename</code></em></code>] [<code class="option">-s <em class="replaceable"><code>style</code></em></code>] [<code class="option">-t <em class="replaceable"><code>directory</code></em></code>] [<code class="option">-w <em class="replaceable"><code>directory</code></em></code>] [<code class="option">-D</code>] [<code class="option">-W <em class="replaceable"><code>mode</code></em></code>] {zonename} {filename}</p></div>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2601629"></a><h2>DESCRIPTION</h2>
|
<a name="id2601665"></a><h2>DESCRIPTION</h2>
|
||||||
<p><span><strong class="command">named-checkzone</strong></span>
|
<p><span><strong class="command">named-checkzone</strong></span>
|
||||||
checks the syntax and integrity of a zone file. It performs the
|
checks the syntax and integrity of a zone file. It performs the
|
||||||
same checks as <span><strong class="command">named</strong></span> does when loading a
|
same checks as <span><strong class="command">named</strong></span> does when loading a
|
||||||
@@ -71,7 +71,7 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2601680"></a><h2>OPTIONS</h2>
|
<a name="id2601715"></a><h2>OPTIONS</h2>
|
||||||
<div class="variablelist"><dl>
|
<div class="variablelist"><dl>
|
||||||
<dt><span class="term">-d</span></dt>
|
<dt><span class="term">-d</span></dt>
|
||||||
<dd><p>
|
<dd><p>
|
||||||
@@ -97,7 +97,7 @@
|
|||||||
<dt><span class="term">-i <em class="replaceable"><code>mode</code></em></span></dt>
|
<dt><span class="term">-i <em class="replaceable"><code>mode</code></em></span></dt>
|
||||||
<dd>
|
<dd>
|
||||||
<p>
|
<p>
|
||||||
Perform post load zone integrity checks. Possible modes are
|
Perform post-load zone integrity checks. Possible modes are
|
||||||
<span><strong class="command">"full"</strong></span> (default),
|
<span><strong class="command">"full"</strong></span> (default),
|
||||||
<span><strong class="command">"full-sibling"</strong></span>,
|
<span><strong class="command">"full-sibling"</strong></span>,
|
||||||
<span><strong class="command">"local"</strong></span>,
|
<span><strong class="command">"local"</strong></span>,
|
||||||
@@ -119,7 +119,7 @@
|
|||||||
<p>
|
<p>
|
||||||
Mode <span><strong class="command">"full"</strong></span> checks that delegation NS
|
Mode <span><strong class="command">"full"</strong></span> checks that delegation NS
|
||||||
records refer to A or AAAA record (both in-zone and out-of-zone
|
records refer to A or AAAA record (both in-zone and out-of-zone
|
||||||
hostnames). It also checks that glue addresses records
|
hostnames). It also checks that glue address records
|
||||||
in the zone match those advertised by the child.
|
in the zone match those advertised by the child.
|
||||||
Mode <span><strong class="command">"local"</strong></span> only checks NS records which
|
Mode <span><strong class="command">"local"</strong></span> only checks NS records which
|
||||||
refer to in-zone hostnames or that some required glue exists,
|
refer to in-zone hostnames or that some required glue exists,
|
||||||
@@ -213,7 +213,7 @@
|
|||||||
</p></dd>
|
</p></dd>
|
||||||
<dt><span class="term">-t <em class="replaceable"><code>directory</code></em></span></dt>
|
<dt><span class="term">-t <em class="replaceable"><code>directory</code></em></span></dt>
|
||||||
<dd><p>
|
<dd><p>
|
||||||
chroot to <code class="filename">directory</code> so that
|
Chroot to <code class="filename">directory</code> so that
|
||||||
include
|
include
|
||||||
directives in the configuration file are processed as if
|
directives in the configuration file are processed as if
|
||||||
run by a similarly chrooted named.
|
run by a similarly chrooted named.
|
||||||
@@ -251,21 +251,21 @@
|
|||||||
</dl></div>
|
</dl></div>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2655504"></a><h2>RETURN VALUES</h2>
|
<a name="id2655607"></a><h2>RETURN VALUES</h2>
|
||||||
<p><span><strong class="command">named-checkzone</strong></span>
|
<p><span><strong class="command">named-checkzone</strong></span>
|
||||||
returns an exit status of 1 if
|
returns an exit status of 1 if
|
||||||
errors were detected and 0 otherwise.
|
errors were detected and 0 otherwise.
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2655517"></a><h2>SEE ALSO</h2>
|
<a name="id2655621"></a><h2>SEE ALSO</h2>
|
||||||
<p><span class="citerefentry"><span class="refentrytitle">named</span>(8)</span>,
|
<p><span class="citerefentry"><span class="refentrytitle">named</span>(8)</span>,
|
||||||
<em class="citetitle">RFC 1035</em>,
|
<em class="citetitle">RFC 1035</em>,
|
||||||
<em class="citetitle">BIND 9 Administrator Reference Manual</em>.
|
<em class="citetitle">BIND 9 Administrator Reference Manual</em>.
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2655542"></a><h2>AUTHOR</h2>
|
<a name="id2655714"></a><h2>AUTHOR</h2>
|
||||||
<p><span class="corpauthor">Internet Systems Consortium</span>
|
<p><span class="corpauthor">Internet Systems Consortium</span>
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
|
@@ -14,7 +14,7 @@
|
|||||||
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
- PERFORMANCE OF THIS SOFTWARE.
|
- PERFORMANCE OF THIS SOFTWARE.
|
||||||
-->
|
-->
|
||||||
<!-- $Id: man.named.html,v 1.47 2007/05/08 02:30:42 marka Exp $ -->
|
<!-- $Id: man.named.html,v 1.48 2007/05/09 03:33:51 marka Exp $ -->
|
||||||
<html>
|
<html>
|
||||||
<head>
|
<head>
|
||||||
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
||||||
@@ -50,7 +50,7 @@
|
|||||||
<div class="cmdsynopsis"><p><code class="command">named</code> [<code class="option">-4</code>] [<code class="option">-6</code>] [<code class="option">-c <em class="replaceable"><code>config-file</code></em></code>] [<code class="option">-d <em class="replaceable"><code>debug-level</code></em></code>] [<code class="option">-f</code>] [<code class="option">-g</code>] [<code class="option">-n <em class="replaceable"><code>#cpus</code></em></code>] [<code class="option">-p <em class="replaceable"><code>port</code></em></code>] [<code class="option">-s</code>] [<code class="option">-t <em class="replaceable"><code>directory</code></em></code>] [<code class="option">-u <em class="replaceable"><code>user</code></em></code>] [<code class="option">-v</code>] [<code class="option">-x <em class="replaceable"><code>cache-file</code></em></code>]</p></div>
|
<div class="cmdsynopsis"><p><code class="command">named</code> [<code class="option">-4</code>] [<code class="option">-6</code>] [<code class="option">-c <em class="replaceable"><code>config-file</code></em></code>] [<code class="option">-d <em class="replaceable"><code>debug-level</code></em></code>] [<code class="option">-f</code>] [<code class="option">-g</code>] [<code class="option">-n <em class="replaceable"><code>#cpus</code></em></code>] [<code class="option">-p <em class="replaceable"><code>port</code></em></code>] [<code class="option">-s</code>] [<code class="option">-t <em class="replaceable"><code>directory</code></em></code>] [<code class="option">-u <em class="replaceable"><code>user</code></em></code>] [<code class="option">-v</code>] [<code class="option">-x <em class="replaceable"><code>cache-file</code></em></code>]</p></div>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2602790"></a><h2>DESCRIPTION</h2>
|
<a name="id2602066"></a><h2>DESCRIPTION</h2>
|
||||||
<p><span><strong class="command">named</strong></span>
|
<p><span><strong class="command">named</strong></span>
|
||||||
is a Domain Name System (DNS) server,
|
is a Domain Name System (DNS) server,
|
||||||
part of the BIND 9 distribution from ISC. For more
|
part of the BIND 9 distribution from ISC. For more
|
||||||
@@ -65,7 +65,7 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2602821"></a><h2>OPTIONS</h2>
|
<a name="id2602097"></a><h2>OPTIONS</h2>
|
||||||
<div class="variablelist"><dl>
|
<div class="variablelist"><dl>
|
||||||
<dt><span class="term">-4</span></dt>
|
<dt><span class="term">-4</span></dt>
|
||||||
<dd><p>
|
<dd><p>
|
||||||
@@ -135,7 +135,7 @@
|
|||||||
</dd>
|
</dd>
|
||||||
<dt><span class="term">-t <em class="replaceable"><code>directory</code></em></span></dt>
|
<dt><span class="term">-t <em class="replaceable"><code>directory</code></em></span></dt>
|
||||||
<dd>
|
<dd>
|
||||||
<p><code class="function">chroot()</code>
|
<p>Chroot
|
||||||
to <em class="replaceable"><code>directory</code></em> after
|
to <em class="replaceable"><code>directory</code></em> after
|
||||||
processing the command line arguments, but before
|
processing the command line arguments, but before
|
||||||
reading the configuration file.
|
reading the configuration file.
|
||||||
@@ -146,7 +146,7 @@
|
|||||||
This option should be used in conjunction with the
|
This option should be used in conjunction with the
|
||||||
<code class="option">-u</code> option, as chrooting a process
|
<code class="option">-u</code> option, as chrooting a process
|
||||||
running as root doesn't enhance security on most
|
running as root doesn't enhance security on most
|
||||||
systems; the way <code class="function">chroot()</code> is
|
systems; the way <code class="function">chroot(2)</code> is
|
||||||
defined allows a process with root privileges to
|
defined allows a process with root privileges to
|
||||||
escape a chroot jail.
|
escape a chroot jail.
|
||||||
</p>
|
</p>
|
||||||
@@ -154,7 +154,7 @@
|
|||||||
</dd>
|
</dd>
|
||||||
<dt><span class="term">-u <em class="replaceable"><code>user</code></em></span></dt>
|
<dt><span class="term">-u <em class="replaceable"><code>user</code></em></span></dt>
|
||||||
<dd>
|
<dd>
|
||||||
<p><code class="function">setuid()</code>
|
<p>Setuid
|
||||||
to <em class="replaceable"><code>user</code></em> after completing
|
to <em class="replaceable"><code>user</code></em> after completing
|
||||||
privileged operations, such as creating sockets that
|
privileged operations, such as creating sockets that
|
||||||
listen on privileged ports.
|
listen on privileged ports.
|
||||||
@@ -164,7 +164,7 @@
|
|||||||
<p>
|
<p>
|
||||||
On Linux, <span><strong class="command">named</strong></span> uses the kernel's
|
On Linux, <span><strong class="command">named</strong></span> uses the kernel's
|
||||||
capability mechanism to drop all root privileges
|
capability mechanism to drop all root privileges
|
||||||
except the ability to <code class="function">bind()</code> to
|
except the ability to <code class="function">bind(2)</code> to
|
||||||
a
|
a
|
||||||
privileged port and set process resource limits.
|
privileged port and set process resource limits.
|
||||||
Unfortunately, this means that the <code class="option">-u</code>
|
Unfortunately, this means that the <code class="option">-u</code>
|
||||||
@@ -172,7 +172,7 @@
|
|||||||
run
|
run
|
||||||
on kernel 2.2.18 or later, or kernel 2.3.99-pre3 or
|
on kernel 2.2.18 or later, or kernel 2.3.99-pre3 or
|
||||||
later, since previous kernels did not allow privileges
|
later, since previous kernels did not allow privileges
|
||||||
to be retained after <code class="function">setuid()</code>.
|
to be retained after <code class="function">setuid(2)</code>.
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
</dd>
|
</dd>
|
||||||
@@ -198,7 +198,7 @@
|
|||||||
</dl></div>
|
</dl></div>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2603259"></a><h2>SIGNALS</h2>
|
<a name="id2603141"></a><h2>SIGNALS</h2>
|
||||||
<p>
|
<p>
|
||||||
In routine operation, signals should not be used to control
|
In routine operation, signals should not be used to control
|
||||||
the nameserver; <span><strong class="command">rndc</strong></span> should be used
|
the nameserver; <span><strong class="command">rndc</strong></span> should be used
|
||||||
@@ -219,7 +219,7 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2603309"></a><h2>CONFIGURATION</h2>
|
<a name="id2603191"></a><h2>CONFIGURATION</h2>
|
||||||
<p>
|
<p>
|
||||||
The <span><strong class="command">named</strong></span> configuration file is too complex
|
The <span><strong class="command">named</strong></span> configuration file is too complex
|
||||||
to describe in detail here. A complete description is provided
|
to describe in detail here. A complete description is provided
|
||||||
@@ -228,7 +228,7 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2603329"></a><h2>FILES</h2>
|
<a name="id2603210"></a><h2>FILES</h2>
|
||||||
<div class="variablelist"><dl>
|
<div class="variablelist"><dl>
|
||||||
<dt><span class="term"><code class="filename">/etc/named.conf</code></span></dt>
|
<dt><span class="term"><code class="filename">/etc/named.conf</code></span></dt>
|
||||||
<dd><p>
|
<dd><p>
|
||||||
@@ -241,7 +241,7 @@
|
|||||||
</dl></div>
|
</dl></div>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2603372"></a><h2>SEE ALSO</h2>
|
<a name="id2603254"></a><h2>SEE ALSO</h2>
|
||||||
<p><em class="citetitle">RFC 1033</em>,
|
<p><em class="citetitle">RFC 1033</em>,
|
||||||
<em class="citetitle">RFC 1034</em>,
|
<em class="citetitle">RFC 1034</em>,
|
||||||
<em class="citetitle">RFC 1035</em>,
|
<em class="citetitle">RFC 1035</em>,
|
||||||
@@ -252,7 +252,7 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2604584"></a><h2>AUTHOR</h2>
|
<a name="id2604466"></a><h2>AUTHOR</h2>
|
||||||
<p><span class="corpauthor">Internet Systems Consortium</span>
|
<p><span class="corpauthor">Internet Systems Consortium</span>
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
|
@@ -14,7 +14,7 @@
|
|||||||
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
- PERFORMANCE OF THIS SOFTWARE.
|
- PERFORMANCE OF THIS SOFTWARE.
|
||||||
-->
|
-->
|
||||||
<!-- $Id: man.rndc-confgen.html,v 1.49 2007/05/08 02:30:42 marka Exp $ -->
|
<!-- $Id: man.rndc-confgen.html,v 1.50 2007/05/09 03:33:51 marka Exp $ -->
|
||||||
<html>
|
<html>
|
||||||
<head>
|
<head>
|
||||||
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
||||||
@@ -48,7 +48,7 @@
|
|||||||
<div class="cmdsynopsis"><p><code class="command">rndc-confgen</code> [<code class="option">-a</code>] [<code class="option">-b <em class="replaceable"><code>keysize</code></em></code>] [<code class="option">-c <em class="replaceable"><code>keyfile</code></em></code>] [<code class="option">-h</code>] [<code class="option">-k <em class="replaceable"><code>keyname</code></em></code>] [<code class="option">-p <em class="replaceable"><code>port</code></em></code>] [<code class="option">-r <em class="replaceable"><code>randomfile</code></em></code>] [<code class="option">-s <em class="replaceable"><code>address</code></em></code>] [<code class="option">-t <em class="replaceable"><code>chrootdir</code></em></code>] [<code class="option">-u <em class="replaceable"><code>user</code></em></code>]</p></div>
|
<div class="cmdsynopsis"><p><code class="command">rndc-confgen</code> [<code class="option">-a</code>] [<code class="option">-b <em class="replaceable"><code>keysize</code></em></code>] [<code class="option">-c <em class="replaceable"><code>keyfile</code></em></code>] [<code class="option">-h</code>] [<code class="option">-k <em class="replaceable"><code>keyname</code></em></code>] [<code class="option">-p <em class="replaceable"><code>port</code></em></code>] [<code class="option">-r <em class="replaceable"><code>randomfile</code></em></code>] [<code class="option">-s <em class="replaceable"><code>address</code></em></code>] [<code class="option">-t <em class="replaceable"><code>chrootdir</code></em></code>] [<code class="option">-u <em class="replaceable"><code>user</code></em></code>]</p></div>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2605225"></a><h2>DESCRIPTION</h2>
|
<a name="id2605320"></a><h2>DESCRIPTION</h2>
|
||||||
<p><span><strong class="command">rndc-confgen</strong></span>
|
<p><span><strong class="command">rndc-confgen</strong></span>
|
||||||
generates configuration files
|
generates configuration files
|
||||||
for <span><strong class="command">rndc</strong></span>. It can be used as a
|
for <span><strong class="command">rndc</strong></span>. It can be used as a
|
||||||
@@ -64,7 +64,7 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2605496"></a><h2>OPTIONS</h2>
|
<a name="id2605386"></a><h2>OPTIONS</h2>
|
||||||
<div class="variablelist"><dl>
|
<div class="variablelist"><dl>
|
||||||
<dt><span class="term">-a</span></dt>
|
<dt><span class="term">-a</span></dt>
|
||||||
<dd>
|
<dd>
|
||||||
@@ -171,7 +171,7 @@
|
|||||||
</dl></div>
|
</dl></div>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2607589"></a><h2>EXAMPLES</h2>
|
<a name="id2607138"></a><h2>EXAMPLES</h2>
|
||||||
<p>
|
<p>
|
||||||
To allow <span><strong class="command">rndc</strong></span> to be used with
|
To allow <span><strong class="command">rndc</strong></span> to be used with
|
||||||
no manual configuration, run
|
no manual configuration, run
|
||||||
@@ -188,7 +188,7 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2607645"></a><h2>SEE ALSO</h2>
|
<a name="id2608696"></a><h2>SEE ALSO</h2>
|
||||||
<p><span class="citerefentry"><span class="refentrytitle">rndc</span>(8)</span>,
|
<p><span class="citerefentry"><span class="refentrytitle">rndc</span>(8)</span>,
|
||||||
<span class="citerefentry"><span class="refentrytitle">rndc.conf</span>(5)</span>,
|
<span class="citerefentry"><span class="refentrytitle">rndc.conf</span>(5)</span>,
|
||||||
<span class="citerefentry"><span class="refentrytitle">named</span>(8)</span>,
|
<span class="citerefentry"><span class="refentrytitle">named</span>(8)</span>,
|
||||||
@@ -196,7 +196,7 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2609595"></a><h2>AUTHOR</h2>
|
<a name="id2608734"></a><h2>AUTHOR</h2>
|
||||||
<p><span class="corpauthor">Internet Systems Consortium</span>
|
<p><span class="corpauthor">Internet Systems Consortium</span>
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
|
@@ -14,7 +14,7 @@
|
|||||||
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
- PERFORMANCE OF THIS SOFTWARE.
|
- PERFORMANCE OF THIS SOFTWARE.
|
||||||
-->
|
-->
|
||||||
<!-- $Id: man.rndc.conf.html,v 1.49 2007/05/08 02:30:42 marka Exp $ -->
|
<!-- $Id: man.rndc.conf.html,v 1.50 2007/05/09 03:33:51 marka Exp $ -->
|
||||||
<html>
|
<html>
|
||||||
<head>
|
<head>
|
||||||
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
||||||
@@ -50,7 +50,7 @@
|
|||||||
<div class="cmdsynopsis"><p><code class="command">rndc.conf</code> </p></div>
|
<div class="cmdsynopsis"><p><code class="command">rndc.conf</code> </p></div>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2604060"></a><h2>DESCRIPTION</h2>
|
<a name="id2604019"></a><h2>DESCRIPTION</h2>
|
||||||
<p><code class="filename">rndc.conf</code> is the configuration file
|
<p><code class="filename">rndc.conf</code> is the configuration file
|
||||||
for <span><strong class="command">rndc</strong></span>, the BIND 9 name server control
|
for <span><strong class="command">rndc</strong></span>, the BIND 9 name server control
|
||||||
utility. This file has a similar structure and syntax to
|
utility. This file has a similar structure and syntax to
|
||||||
@@ -135,7 +135,7 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2604300"></a><h2>EXAMPLE</h2>
|
<a name="id2604805"></a><h2>EXAMPLE</h2>
|
||||||
<pre class="programlisting">
|
<pre class="programlisting">
|
||||||
options {
|
options {
|
||||||
default-server localhost;
|
default-server localhost;
|
||||||
@@ -171,7 +171,7 @@
|
|||||||
key testkey {
|
key testkey {
|
||||||
algorithm hmac-md5;
|
algorithm hmac-md5;
|
||||||
secret "R3HI8P6BKw9ZwXwN3VZKuQ==";
|
secret "R3HI8P6BKw9ZwXwN3VZKuQ==";
|
||||||
}
|
};
|
||||||
</pre>
|
</pre>
|
||||||
<p>
|
<p>
|
||||||
</p>
|
</p>
|
||||||
@@ -198,7 +198,7 @@
|
|||||||
A complete <code class="filename">rndc.conf</code> file, including
|
A complete <code class="filename">rndc.conf</code> file, including
|
||||||
the
|
the
|
||||||
randomly generated key, will be written to the standard
|
randomly generated key, will be written to the standard
|
||||||
output. Commented out <code class="option">key</code> and
|
output. Commented-out <code class="option">key</code> and
|
||||||
<code class="option">controls</code> statements for
|
<code class="option">controls</code> statements for
|
||||||
<code class="filename">named.conf</code> are also printed.
|
<code class="filename">named.conf</code> are also printed.
|
||||||
</p>
|
</p>
|
||||||
@@ -209,7 +209,7 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2604763"></a><h2>NAME SERVER CONFIGURATION</h2>
|
<a name="id2604926"></a><h2>NAME SERVER CONFIGURATION</h2>
|
||||||
<p>
|
<p>
|
||||||
The name server must be configured to accept rndc connections and
|
The name server must be configured to accept rndc connections and
|
||||||
to recognize the key specified in the <code class="filename">rndc.conf</code>
|
to recognize the key specified in the <code class="filename">rndc.conf</code>
|
||||||
@@ -219,7 +219,7 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2604789"></a><h2>SEE ALSO</h2>
|
<a name="id2604952"></a><h2>SEE ALSO</h2>
|
||||||
<p><span class="citerefentry"><span class="refentrytitle">rndc</span>(8)</span>,
|
<p><span class="citerefentry"><span class="refentrytitle">rndc</span>(8)</span>,
|
||||||
<span class="citerefentry"><span class="refentrytitle">rndc-confgen</span>(8)</span>,
|
<span class="citerefentry"><span class="refentrytitle">rndc-confgen</span>(8)</span>,
|
||||||
<span class="citerefentry"><span class="refentrytitle">mmencode</span>(1)</span>,
|
<span class="citerefentry"><span class="refentrytitle">mmencode</span>(1)</span>,
|
||||||
@@ -227,7 +227,7 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2604827"></a><h2>AUTHOR</h2>
|
<a name="id2604990"></a><h2>AUTHOR</h2>
|
||||||
<p><span class="corpauthor">Internet Systems Consortium</span>
|
<p><span class="corpauthor">Internet Systems Consortium</span>
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
|
@@ -14,7 +14,7 @@
|
|||||||
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
- OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||||
- PERFORMANCE OF THIS SOFTWARE.
|
- PERFORMANCE OF THIS SOFTWARE.
|
||||||
-->
|
-->
|
||||||
<!-- $Id: man.rndc.html,v 1.47 2007/05/08 02:30:42 marka Exp $ -->
|
<!-- $Id: man.rndc.html,v 1.48 2007/05/09 03:33:51 marka Exp $ -->
|
||||||
<html>
|
<html>
|
||||||
<head>
|
<head>
|
||||||
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
|
||||||
@@ -50,7 +50,7 @@
|
|||||||
<div class="cmdsynopsis"><p><code class="command">rndc</code> [<code class="option">-b <em class="replaceable"><code>source-address</code></em></code>] [<code class="option">-c <em class="replaceable"><code>config-file</code></em></code>] [<code class="option">-k <em class="replaceable"><code>key-file</code></em></code>] [<code class="option">-s <em class="replaceable"><code>server</code></em></code>] [<code class="option">-p <em class="replaceable"><code>port</code></em></code>] [<code class="option">-V</code>] [<code class="option">-y <em class="replaceable"><code>key_id</code></em></code>] {command}</p></div>
|
<div class="cmdsynopsis"><p><code class="command">rndc</code> [<code class="option">-b <em class="replaceable"><code>source-address</code></em></code>] [<code class="option">-c <em class="replaceable"><code>config-file</code></em></code>] [<code class="option">-k <em class="replaceable"><code>key-file</code></em></code>] [<code class="option">-s <em class="replaceable"><code>server</code></em></code>] [<code class="option">-p <em class="replaceable"><code>port</code></em></code>] [<code class="option">-V</code>] [<code class="option">-y <em class="replaceable"><code>key_id</code></em></code>] {command}</p></div>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2603484"></a><h2>DESCRIPTION</h2>
|
<a name="id2603443"></a><h2>DESCRIPTION</h2>
|
||||||
<p><span><strong class="command">rndc</strong></span>
|
<p><span><strong class="command">rndc</strong></span>
|
||||||
controls the operation of a name
|
controls the operation of a name
|
||||||
server. It supersedes the <span><strong class="command">ndc</strong></span> utility
|
server. It supersedes the <span><strong class="command">ndc</strong></span> utility
|
||||||
@@ -79,7 +79,7 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2603603"></a><h2>OPTIONS</h2>
|
<a name="id2603493"></a><h2>OPTIONS</h2>
|
||||||
<div class="variablelist"><dl>
|
<div class="variablelist"><dl>
|
||||||
<dt><span class="term">-b <em class="replaceable"><code>source-address</code></em></span></dt>
|
<dt><span class="term">-b <em class="replaceable"><code>source-address</code></em></span></dt>
|
||||||
<dd><p>
|
<dd><p>
|
||||||
@@ -152,7 +152,7 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2603890"></a><h2>LIMITATIONS</h2>
|
<a name="id2603848"></a><h2>LIMITATIONS</h2>
|
||||||
<p><span><strong class="command">rndc</strong></span>
|
<p><span><strong class="command">rndc</strong></span>
|
||||||
does not yet support all the commands of
|
does not yet support all the commands of
|
||||||
the BIND 8 <span><strong class="command">ndc</strong></span> utility.
|
the BIND 8 <span><strong class="command">ndc</strong></span> utility.
|
||||||
@@ -166,16 +166,16 @@
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2603921"></a><h2>SEE ALSO</h2>
|
<a name="id2603879"></a><h2>SEE ALSO</h2>
|
||||||
<p><span class="citerefentry"><span class="refentrytitle">rndc.conf</span>(5)</span>,
|
<p><span class="citerefentry"><span class="refentrytitle">rndc.conf</span>(5)</span>,
|
||||||
<span class="citerefentry"><span class="refentrytitle">named</span>(8)</span>,
|
<span class="citerefentry"><span class="refentrytitle">named</span>(8)</span>,
|
||||||
<span class="citerefentry"><span class="refentrytitle">named.conf</span>(5)</span>
|
<span class="citerefentry"><span class="refentrytitle">named.conf</span>(5)</span>,
|
||||||
<span class="citerefentry"><span class="refentrytitle">ndc</span>(8)</span>,
|
<span class="citerefentry"><span class="refentrytitle">ndc</span>(8)</span>,
|
||||||
<em class="citetitle">BIND 9 Administrator Reference Manual</em>.
|
<em class="citetitle">BIND 9 Administrator Reference Manual</em>.
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="refsect1" lang="en">
|
<div class="refsect1" lang="en">
|
||||||
<a name="id2603968"></a><h2>AUTHOR</h2>
|
<a name="id2603926"></a><h2>AUTHOR</h2>
|
||||||
<p><span class="corpauthor">Internet Systems Consortium</span>
|
<p><span class="corpauthor">Internet Systems Consortium</span>
|
||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
|
Reference in New Issue
Block a user