named.conf.options 1.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172
  1. // MANAGED BY PUPPET
  2. // Module:: dns::recursive
  3. // File:: dns/files/recursive/bind/named.conf.options
  4. logging {
  5. // Send named messages to syslog
  6. channel syslog {
  7. syslog local2;
  8. severity error;
  9. };
  10. // Send security related messages to separate file
  11. channel security {
  12. file "/var/log/named/security.log" versions 3 size 2m;
  13. print-time yes;
  14. // http://www.zytrax.com/books/dns/ch7/logging.html
  15. // Please do not set this value above error!
  16. // For privacy reasons...
  17. severity error;
  18. print-severity yes;
  19. print-category yes;
  20. };
  21. // Aiguillage
  22. category default { syslog; };
  23. category general { syslog; };
  24. category security { security; syslog; };
  25. category config { syslog; };
  26. category resolver { security; };
  27. category xfer-in { security; };
  28. category xfer-out { security; };
  29. category notify { security; };
  30. category client { security; };
  31. category network { security; };
  32. category update { security; };
  33. category queries { security; };
  34. category lame-servers { security; };
  35. };
  36. options {
  37. directory "/var/cache/bind";
  38. version "42";
  39. pid-file "/var/run/named/named.pid";
  40. // Stats
  41. statistics-file "/var/named/named.stats";
  42. memstatistics-file "/var/named/named.memstats";
  43. // Not yet implemented in BIND9
  44. //statistics-interval 30;
  45. dump-file "/var/backups/named.dump";
  46. zone-statistics yes;
  47. notify no;
  48. interface-interval 0;
  49. minimal-responses yes;
  50. dnssec-validation auto;
  51. auth-nxdomain no;
  52. recursion yes;
  53. recursive-clients 20;
  54. listen-on { any; };
  55. listen-on port 9000 { any; };
  56. listen-on-v6 { any; };
  57. listen-on-v6 port 9000 { any; };
  58. allow-query { any; };
  59. # Limite la taille des réponses sur UDP à 1460 octets
  60. # Tronque la réponse au-delà, le client reviendra sur TCP
  61. max-udp-size 1460;
  62. };