Home | History | Annotate | Line # | Download | only in ns1
      1 /*
      2  * Copyright (C) Internet Systems Consortium, Inc. ("ISC")
      3  *
      4  * SPDX-License-Identifier: MPL-2.0
      5  *
      6  * This Source Code Form is subject to the terms of the Mozilla Public
      7  * License, v. 2.0.  If a copy of the MPL was not distributed with this
      8  * file, you can obtain one at https://mozilla.org/MPL/2.0/.
      9  *
     10  * See the COPYRIGHT file distributed with this work for additional
     11  * information regarding copyright ownership.
     12  */
     13 
     14 options {
     15 	query-source address 10.53.0.1;
     16 	notify-source 10.53.0.1;
     17 	transfer-source 10.53.0.1;
     18 	port @PORT@;
     19 	pid-file "named.pid";
     20 	session-keyfile "session.key";
     21 	listen-on { 10.53.0.1; 127.0.0.1; };
     22 	listen-on-v6 { none; };
     23 	recursion no;
     24 	dnssec-validation no;
     25 	notify yes;
     26 	tkey-gssapi-keytab "dns.keytab";
     27 };
     28 
     29 key rndc_key {
     30 	secret "1234abcd8765";
     31 	algorithm @DEFAULT_HMAC@;
     32 };
     33 
     34 controls {
     35 	inet 10.53.0.1 port @CONTROLPORT@ allow { any; } keys { rndc_key; };
     36 };
     37 
     38 zone "example.nil." IN {
     39 	type primary;
     40 	file "example.nil.db";
     41 
     42 {% raw %}
     43 	update-policy {
     44 		grant Administrator@EXAMPLE.NIL wildcard * A AAAA SRV CNAME;
     45 		grant testdenied@EXAMPLE.NIL wildcard * TXT;
     46 		grant "local:auth.sock" external * CNAME;
     47 	};
     48 {% endraw %}
     49 
     50 	/* we need to use check-names ignore so _msdcs A records can be created */
     51 	check-names ignore;
     52 };
     53