man.ddns-confgen.html revision 6ea2385360e9e2167e65f9286447da9eea189457
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync - Copyright (C) 2004-2014 Internet Systems Consortium, Inc. ("ISC")
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync - Copyright (C) 2000-2003 Internet Software Consortium.
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync - Permission to use, copy, modify, and/or distribute this software for any
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync - purpose with or without fee is hereby granted, provided that the above
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync - copyright notice and this permission notice appear in all copies.
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync - THE SOFTWARE IS PROVIDED "AS IS" AND ISC DISCLAIMS ALL WARRANTIES WITH
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync - REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF MERCHANTABILITY
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync - AND FITNESS. IN NO EVENT SHALL ISC BE LIABLE FOR ANY SPECIAL, DIRECT,
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync - INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES WHATSOEVER RESULTING FROM
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync - LOSS OF USE, DATA OR PROFITS, WHETHER IN AN ACTION OF CONTRACT, NEGLIGENCE
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync - OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync - PERFORMANCE OF THIS SOFTWARE.
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync<!-- $Id$ -->
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync<meta name="generator" content="DocBook XSL Stylesheets V1.71.1">
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync<link rel="start" href="Bv9ARM.html" title="BIND 9 Administrator Reference Manual">
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync<link rel="up" href="Bv9ARM.ch10.html" title="Manual pages">
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync<link rel="prev" href="man.rndc-confgen.html" title="rndc-confgen">
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync<link rel="next" href="man.arpaname.html" title="arpaname">
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync<body bgcolor="white" text="black" link="#0000FF" vlink="#840084" alink="#0000FF">
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync<tr><th colspan="3" align="center"><span class="application">ddns-confgen</span></th></tr>
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync<a accesskey="p" href="man.rndc-confgen.html">Prev</a>�</td>
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync<td width="20%" align="right">�<a accesskey="n" href="man.arpaname.html">Next</a>
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync<a name="man.ddns-confgen"></a><div class="titlepage"></div>
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync<p><span class="application">ddns-confgen</span> — ddns key generation tool</p>
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync<div class="cmdsynopsis"><p><code class="command">ddns-confgen</code> [<code class="option">-a <em class="replaceable"><code>algorithm</code></em></code>] [<code class="option">-h</code>] [<code class="option">-k <em class="replaceable"><code>keyname</code></em></code>] [<code class="option">-r <em class="replaceable"><code>randomfile</code></em></code>] [ -s <em class="replaceable"><code>name</code></em> | -z <em class="replaceable"><code>zone</code></em> ] [<code class="option">-q</code>] [name]</p></div>
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync<p><span><strong class="command">ddns-confgen</strong></span>
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync generates a key for use by <span><strong class="command">nsupdate</strong></span>
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync and <span><strong class="command">named</strong></span>. It simplifies configuration
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync of dynamic zones by generating a key and providing the
868d6eb6308a75913b9c494558832732e7539b0evboxsync <span><strong class="command">nsupdate</strong></span> and <span><strong class="command">named.conf</strong></span>
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync syntax that will be needed to use it, including an example
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync <span><strong class="command">update-policy</strong></span> statement.
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync If a domain name is specified on the command line, it will
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync be used in the name of the generated key and in the sample
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync <span><strong class="command">named.conf</strong></span> syntax. For example,
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync <span><strong class="command">ddns-confgen example.com</strong></span> would
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync generate a key called "ddns-key.example.com", and sample
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync <span><strong class="command">named.conf</strong></span> command that could be used
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync in the zone definition for "example.com".
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync Note that <span><strong class="command">named</strong></span> itself can configure a
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync local DDNS key for use with <span><strong class="command">nsupdate -l</strong></span>.
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync <span><strong class="command">ddns-confgen</strong></span> is only needed when a
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync more elaborate configuration is required: for instance, if
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync <span><strong class="command">nsupdate</strong></span> is to be used from a remote system.
868d6eb6308a75913b9c494558832732e7539b0evboxsync<dt><span class="term">-a <em class="replaceable"><code>algorithm</code></em></span></dt>
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync Specifies the algorithm to use for the TSIG key. Available
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync choices are: hmac-md5, hmac-sha1, hmac-sha224, hmac-sha256,
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync hmac-sha384 and hmac-sha512. The default is hmac-sha256.
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync Prints a short summary of the options and arguments to
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync <span><strong class="command">ddns-confgen</strong></span>.
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync<dt><span class="term">-k <em class="replaceable"><code>keyname</code></em></span></dt>
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync Specifies the key name of the DDNS authentication key.
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync The default is <code class="constant">ddns-key</code> when neither
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync the <code class="option">-s</code> nor <code class="option">-z</code> option is
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync specified; otherwise, the default
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync is <code class="constant">ddns-key</code> as a separate label
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync followed by the argument of the option, e.g.,
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync <code class="constant">ddns-key.example.com.</code>
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync The key name must have the format of a valid domain name,
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync consisting of letters, digits, hyphens and periods.
868d6eb6308a75913b9c494558832732e7539b0evboxsync Quiet mode: Print only the key, with no explanatory text or
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync usage examples.
868d6eb6308a75913b9c494558832732e7539b0evboxsync<dt><span class="term">-r <em class="replaceable"><code>randomfile</code></em></span></dt>
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync Specifies a source of random data for generating the
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync authorization. If the operating system does not provide a
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync <code class="filename">/dev/random</code> or equivalent device, the
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync default source of randomness is keyboard input.
c215a948010614887014a258c1751602d8bf7781vboxsync <code class="filename">randomdev</code> specifies the name of a
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync character device or file containing random data to be used
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync instead of the default. The special value
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync <code class="filename">keyboard</code> indicates that keyboard input
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync should be used.
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync<dt><span class="term">-s <em class="replaceable"><code>name</code></em></span></dt>
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync Single host mode: The example <span><strong class="command">named.conf</strong></span> text
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync shows how to set an update policy for the specified
868d6eb6308a75913b9c494558832732e7539b0evboxsync using the "name" nametype.
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync The default key name is
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync ddns-key.<em class="replaceable"><code>name</code></em>.
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync Note that the "self" nametype cannot be used, since
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync the name to be updated may differ from the key name.
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync This option cannot be used with the <code class="option">-z</code> option.
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync<dt><span class="term">-z <em class="replaceable"><code>zone</code></em></span></dt>
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync zone mode: The example <span><strong class="command">named.conf</strong></span> text
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync shows how to set an update policy for the specified
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync using the "zonesub" nametype, allowing updates to all subdomain
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync names within
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync that <em class="replaceable"><code>zone</code></em>.
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync This option cannot be used with the <code class="option">-s</code> option.
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync<p><span class="citerefentry"><span class="refentrytitle">nsupdate</span>(1)</span>,
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync <span class="citerefentry"><span class="refentrytitle">named.conf</span>(5)</span>,
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync <span class="citerefentry"><span class="refentrytitle">named</span>(8)</span>,
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync <em class="citetitle">BIND 9 Administrator Reference Manual</em>.
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync<p><span class="corpauthor">Internet Systems Consortium</span>
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync<a accesskey="p" href="man.rndc-confgen.html">Prev</a>�</td>
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync<td width="20%" align="center"><a accesskey="u" href="Bv9ARM.ch10.html">Up</a></td>
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync<td width="40%" align="right">�<a accesskey="n" href="man.arpaname.html">Next</a>
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync<td width="20%" align="center"><a accesskey="h" href="Bv9ARM.html">Home</a></td>
5f9dfb422a6ed57822f9c0cb94fa7df8d24acc9bvboxsync<td width="40%" align="right" valign="top">�<span class="application">arpaname</span>