Home | History | Annotate | Line # | Download | only in ns7
      1 /*
      2  * Copyright (C) Internet Systems Consortium, Inc. ("ISC")
      3  *
      4  * SPDX-License-Identifier: MPL-2.0
      5  *
      6  * This Source Code Form is subject to the terms of the Mozilla Public
      7  * License, v. 2.0.  If a copy of the MPL was not distributed with this
      8  * file, you can obtain one at https://mozilla.org/MPL/2.0/.
      9  *
     10  * See the COPYRIGHT file distributed with this work for additional
     11  * information regarding copyright ownership.
     12  */
     13 
     14 options {
     15 	query-source address 10.53.0.7;
     16 	notify-source 10.53.0.7;
     17 	transfer-source 10.53.0.7;
     18 	port @PORT@;
     19 	pid-file "named.pid";
     20 	session-keyfile "session.key";
     21 	listen-on { 10.53.0.7; };
     22 	listen-on-v6 { none; };
     23 	recursion no;
     24 	notify yes;
     25 	minimal-responses no;
     26 	dnssec-validation no;
     27 	tkey-gssapi-keytab "dns.keytab";
     28 };
     29 
     30 key rndc_key {
     31 	secret "1234abcd8765";
     32 	algorithm @DEFAULT_HMAC@;
     33 };
     34 
     35 controls {
     36 	inet 10.53.0.7 port @CONTROLPORT@ allow { any; } keys { rndc_key; };
     37 };
     38 
     39 zone "in-addr.arpa" {
     40 	type primary;
     41 	file "in-addr.db";
     42 	update-policy {	grant EXAMPLE.COM krb5-subdomain-self-rhs . PTR; };
     43 };
     44 
     45 zone "example.com" {
     46 	type primary;
     47 	file "example.com.db";
     48 	update-policy {
     49 		grant EXAMPLE.COM krb5-self . ANY;
     50 		grant EXAMPLE.COM krb5-subdomain _tcp.example.com SRV;
     51 		grant EXAMPLE.COM krb5-subdomain-self-rhs self-srv.example.com SRV;
     52 		grant EXAMPLE.COM krb5-subdomain-self-rhs self-srv-no-type.example.com;
     53 	};
     54 };
     55