rndc.conf.html revision 8a66318e41ed14c5a88130e8c362610e8faa2121
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync - Copyright (C) 2004 Internet Systems Consortium, Inc. ("ISC")
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync - Copyright (C) 2001 Internet Software Consortium.
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync - Permission to use, copy, modify, and distribute this software for any
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync - purpose with or without fee is hereby granted, provided that the above
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync - copyright notice and this permission notice appear in all copies.
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync - THE SOFTWARE IS PROVIDED "AS IS" AND ISC DISCLAIMS ALL WARRANTIES WITH
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync - REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF MERCHANTABILITY
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync - AND FITNESS. IN NO EVENT SHALL ISC BE LIABLE FOR ANY SPECIAL, DIRECT,
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync - INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES WHATSOEVER RESULTING FROM
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync - LOSS OF USE, DATA OR PROFITS, WHETHER IN AN ACTION OF CONTRACT, NEGLIGENCE
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync - OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync - PERFORMANCE OF THIS SOFTWARE.
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync<!-- $Id: rndc.conf.html,v 1.6 2004/03/05 08:32:18 marka Exp $ -->
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncNAME="GENERATOR"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncCONTENT="Modular DocBook HTML Stylesheet Version 1.73
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncCLASS="REFENTRY"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncBGCOLOR="#FFFFFF"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncTEXT="#000000"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncLINK="#0000FF"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncVLINK="#840084"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncALINK="#0000FF"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncCLASS="FILENAME"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncCLASS="REFNAMEDIV"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncCLASS="FILENAME"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync> -- rndc configuration file</DIV
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncCLASS="REFSYNOPSISDIV"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncNAME="AEN13"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync>Synopsis</H2
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncCLASS="COMMAND"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncCLASS="REFSECT1"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncNAME="AEN16"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync>DESCRIPTION</H2
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncCLASS="FILENAME"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync> is the configuration file
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncCLASS="COMMAND"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync>, the BIND 9 name server control
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync utility. This file has a similar structure and syntax to
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncCLASS="FILENAME"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync>. Statements are enclosed
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync in braces and terminated with a semi-colon. Clauses in
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync the statements are also semi-colon terminated. The usual
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync comment styles are supported:
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync> C style: /* */
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync> C++ style: // to end of line
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync> Unix style: # to end of line
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncCLASS="FILENAME"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync> is much simpler than
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncCLASS="FILENAME"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync>. The file uses three
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync statements: an options statement, a server statement
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync and a key statement.
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncCLASS="OPTION"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync>options</TT
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync> statement contains three clauses.
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncCLASS="OPTION"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync>default-server</TT
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync> clause is followed by the
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync name or address of a name server. This host will be used when
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync no name server is given as an argument to
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncCLASS="COMMAND"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncCLASS="OPTION"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync>default-key</TT
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync clause is followed by the name of a key which is identified by
4d10b27f3115f8fcd58864142163726d6214a752vboxsyncCLASS="OPTION"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync> statement. If no
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncCLASS="OPTION"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync> is provided on the rndc command line,
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncCLASS="OPTION"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync> clause is found in a matching
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncCLASS="OPTION"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync> statement, this default key will be
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync used to authenticate the server's commands and responses. The
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncCLASS="OPTION"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync>default-port</TT
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync> clause is followed by the port
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync to connect to on the remote name server. If no
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncCLASS="OPTION"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync> option is provided on the rndc command
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync line, and no <TT
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncCLASS="OPTION"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync> clause is found in a
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync matching <TT
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncCLASS="OPTION"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync> statement, this default port
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync will be used to connect.
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync> After the <TT
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncCLASS="OPTION"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync> keyword, the server statement
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync includes a string which is the hostname or address for a name
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync server. The statement has two possible clauses:
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncCLASS="OPTION"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsyncCLASS="OPTION"
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync>. The key name must
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync match the name of a key statement in the file. The port number
e0e0c19eefceaf5d4ec40f9466b58a771f50e799vboxsync specifies the port to connect to.
f22cba796fd7499bf85058671a1af7cbe491c622vboxsyncCLASS="OPTION"
f22cba796fd7499bf85058671a1af7cbe491c622vboxsync> statement begins with an identifying
f22cba796fd7499bf85058671a1af7cbe491c622vboxsync string, the name of the key. The statement has two clauses.
7e032664d31552364e83b411950d6e7c96b0b880vboxsyncCLASS="OPTION"
7e032664d31552364e83b411950d6e7c96b0b880vboxsync>algorithm</TT
ca551aca153d6df494985b5281c573ba2e3eb474vboxsync> identifies the encryption algorithm
ca551aca153d6df494985b5281c573ba2e3eb474vboxsyncCLASS="COMMAND"
ca551aca153d6df494985b5281c573ba2e3eb474vboxsync> to use; currently only HMAC-MD5 is
56ab2984caa8d0c6b6f97ca142d54285de8a0e43vboxsync supported. This is followed by a secret clause which contains
bd810d58866067df322ea7f4a4627d9bdebb70d3vboxsync the base-64 encoding of the algorithm's encryption key. The
bd810d58866067df322ea7f4a4627d9bdebb70d3vboxsync base-64 string is enclosed in double quotes.
bd810d58866067df322ea7f4a4627d9bdebb70d3vboxsync> There are two common ways to generate the base-64 string for the
bd810d58866067df322ea7f4a4627d9bdebb70d3vboxsync secret. The BIND 9 program <B