--- /dev/null
+//###############################################################
+//# Bind9-Konfigurationsdatei Logging
+//# /etc/bind/named-log.conf
+//#
+//# $Header: /etc/bind/.rcs/named-log.conf,v 1.3 2010/05/26 20:23:00 root Exp $
+//#
+//# Host Helga
+//#
+//# Generiert am: 26.05.2010
+//# von: frank@brehm-online.com
+//#
+//###############################################################
+
+//###############################################################
+//# Angaben zum Logging
+
+logging {
+
+ // Kategorien
+
+ category default {
+ default_debug;
+ logtofile;
+ };
+ category general {
+ logtofile;
+ syslog-warning;
+ };
+ category lame-servers {
+ null;
+ };
+ category queries {
+ query_logging;
+ };
+
+ // Kanäle
+
+ channel complete_debug {
+ file "/var/log/named/complete-debug.log";
+ print-category yes;
+ print-severity yes;
+ print-time yes;
+ severity debug 99;
+ };
+ channel logtofile {
+ file "/var/log/named/named.log";
+ print-category yes;
+ print-severity yes;
+ print-time yes;
+ severity info;
+ };
+ channel moderate_debug {
+ file "/var/log/named/debug.log";
+ print-category yes;
+ print-severity yes;
+ print-time yes;
+ severity debug 1;
+ };
+ channel query_logging {
+ file "/var/log/named/query.log";
+ print-time yes;
+ };
+ channel syslog-warning {
+ syslog daemon;
+ severity warning;
+ };
+
+};
+
+
+
+# vim: ts=4 filetype=named noai
::1/128;
};
+acl "local_ips" {
+ 127.0.0.0/8;
+ 10.0.0.0/8;
+ 192.168.0.0/16;
+ 172.16.0.0/12;
+ ::1/128;
+ fe80::/10;
+};
+
+acl "private_ips" {
+ 2001:6f8:1db7::1/64;
+ 2001:6f8:1c00:365::2/64;
+ 2a01:238:4225:6e00:8f8c:808a:7fb8:88df;
+};
+
options {
directory "/var/bind";
pid-file "/var/run/named/named.pid";
/* https://www.isc.org/solutions/dlv >=bind-9.7.x only */
//bindkeys-file "/etc/bind/bind.keys";
- listen-on-v6 { ::1; };
- listen-on { 127.0.0.1; };
+ listen-on-v6 { any; };
+ listen-on { any; };
allow-query {
/*
* to the masses.
*/
trusted;
+ local_ips;
+ private_ips;
};
allow-query-cache {
/* Use the cache for the "trusted" ACL. */
trusted;
+ local_ips;
+ private_ips;
};
allow-recursion {
/* Only trusted addresses are allowed to use recursion. */
trusted;
+ local_ips;
+ private_ips;
};
allow-transfer {
//query-source address * port 53;
};
-/*
-logging {
- channel default_log {
- file "/var/log/named/named.log" versions 5 size 50M;
- print-time yes;
- print-severity yes;
- print-category yes;
- };
-
- category default { default_log; };
- category general { default_log; };
-};
-*/
+// Logging
+include "/etc/bind/named-log.conf";
include "/etc/bind/rndc.key";
controls {
// allow-notify { <MASTER>; };
// notify no;
//};
+
+# vim: ts=4 filetype=named noai
--- /dev/null
+# Logrotate configuration for bind ....
+
+script named-reload
+ /etc/init.d/named restart >/dev/null || true
+endscript
+
+/var/log/named/complete-debug.log /var/log/named/debug.log /var/log/named/query.log {
+ daily
+ olddir /var/log/named/%Y-%m
+ size 4M
+ maxage 6m
+ notifempty
+ missingok
+ postrotate named-reload
+}
+
+/var/log/named/named.log {
+ daily
+ olddir /var/log/named/%Y-%m
+ size 1M
+ maxage 2y
+ notifempty
+ missingok
+ postrotate named-reload
+}
+
+
+# vim: ts=4 filetype=conf
domain brehm-online.com
search home.brehm-online.com home.hennig-berlin.org brehm-online.com hennig-berlin.org uhu-banane.de
#nameserver 10.12.11.1
+nameserver 127.0.0.1
nameserver 8.8.8.8
--- /dev/null
+/etc/init.d/named
\ No newline at end of file