man.named.html revision aeb7938001b22e811a910e1b36cdf452f9193865
97a9a944b5887e91042b019776c41d5dd74557aferikabele - Copyright (C) 2004-2008 Internet Systems Consortium, Inc. ("ISC")
97a9a944b5887e91042b019776c41d5dd74557aferikabele - Copyright (C) 2000-2003 Internet Software Consortium.
a945f35eff8b6a88009ce73de6d4c862ce58de3cslive - Permission to use, copy, modify, and distribute this software for any
a945f35eff8b6a88009ce73de6d4c862ce58de3cslive - purpose with or without fee is hereby granted, provided that the above
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd - copyright notice and this permission notice appear in all copies.
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd - THE SOFTWARE IS PROVIDED "AS IS" AND ISC DISCLAIMS ALL WARRANTIES WITH
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd - REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF MERCHANTABILITY
d29d9ab4614ff992b0e8de6e2b88d52b6f1f153erbowen - AND FITNESS. IN NO EVENT SHALL ISC BE LIABLE FOR ANY SPECIAL, DIRECT,
d29d9ab4614ff992b0e8de6e2b88d52b6f1f153erbowen - INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES WHATSOEVER RESULTING FROM
d29d9ab4614ff992b0e8de6e2b88d52b6f1f153erbowen - LOSS OF USE, DATA OR PROFITS, WHETHER IN AN ACTION OF CONTRACT, NEGLIGENCE
d29d9ab4614ff992b0e8de6e2b88d52b6f1f153erbowen - OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd - PERFORMANCE OF THIS SOFTWARE.
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd<!-- $Id: man.named.html,v 1.71 2008/04/03 01:10:00 tbox Exp $ -->
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1">
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd<meta name="generator" content="DocBook XSL Stylesheets V1.71.1">
3f08db06526d6901aa08c110b5bc7dde6bc39905nd<link rel="start" href="Bv9ARM.html" title="BIND 9 Administrator Reference Manual">
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd<link rel="up" href="Bv9ARM.ch10.html" title="Manual pages">
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd<link rel="prev" href="man.named-checkzone.html" title="named-checkzone">
3b3b7fc78d1f5bfc2769903375050048ff41ff26nd<body bgcolor="white" text="black" link="#0000FF" vlink="#840084" alink="#0000FF">
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd<tr><th colspan="3" align="center"><span class="application">named</span></th></tr>
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd<a accesskey="p" href="man.named-checkzone.html">Prev</a>�</td>
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd<td width="20%" align="right">�<a accesskey="n" href="man.rndc.html">Next</a>
117c1f888a14e73cdd821dc6c23eb0411144a41cnd<p><span class="application">named</span> — Internet domain name server</p>
53bae66d3dc14a667e14a451f7bc65a893dd450fnd<div class="cmdsynopsis"><p><code class="command">named</code> [<code class="option">-4</code>] [<code class="option">-6</code>] [<code class="option">-c <em class="replaceable"><code>config-file</code></em></code>] [<code class="option">-d <em class="replaceable"><code>debug-level</code></em></code>] [<code class="option">-f</code>] [<code class="option">-g</code>] [<code class="option">-m <em class="replaceable"><code>flag</code></em></code>] [<code class="option">-n <em class="replaceable"><code>#cpus</code></em></code>] [<code class="option">-p <em class="replaceable"><code>port</code></em></code>] [<code class="option">-s</code>] [<code class="option">-t <em class="replaceable"><code>directory</code></em></code>] [<code class="option">-u <em class="replaceable"><code>user</code></em></code>] [<code class="option">-v</code>] [<code class="option">-x <em class="replaceable"><code>cache-file</code></em></code>]</p></div>
06ba4a61654b3763ad65f52283832ebf058fdf1cslive is a Domain Name System (DNS) server,
06ba4a61654b3763ad65f52283832ebf058fdf1cslive part of the BIND 9 distribution from ISC. For more
0d7cadfab793cd88b98342b4d34410ab6e773883rbowen information on the DNS, see RFCs 1033, 1034, and 1035.
a4784b5a082381b03e972caf3aa052a64c68f06dhumbedooh When invoked without arguments, <span><strong class="command">named</strong></span>
a4784b5a082381b03e972caf3aa052a64c68f06dhumbedooh read the default configuration file
a4784b5a082381b03e972caf3aa052a64c68f06dhumbedooh <code class="filename">/etc/named.conf</code>, read any initial
a4784b5a082381b03e972caf3aa052a64c68f06dhumbedooh data, and listen for queries.
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd Use IPv4 only even if the host machine is capable of IPv6.
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd <code class="option">-4</code> and <code class="option">-6</code> are mutually
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd exclusive.
06ba4a61654b3763ad65f52283832ebf058fdf1cslive Use IPv6 only even if the host machine is capable of IPv4.
06ba4a61654b3763ad65f52283832ebf058fdf1cslive <code class="option">-4</code> and <code class="option">-6</code> are mutually
06ba4a61654b3763ad65f52283832ebf058fdf1cslive<dt><span class="term">-c <em class="replaceable"><code>config-file</code></em></span></dt>
9a58dc6a2b26ec128b1270cf48810e705f1a90dbsf Use <em class="replaceable"><code>config-file</code></em> as the
ea52f92bf226f48638d3e0e0b0e03568c8e7c5a9noirin configuration file instead of the default,
ea52f92bf226f48638d3e0e0b0e03568c8e7c5a9noirin ensure that reloading the configuration file continues
9a58dc6a2b26ec128b1270cf48810e705f1a90dbsf to work after the server has changed its working
ea52f92bf226f48638d3e0e0b0e03568c8e7c5a9noirin directory due to to a possible
9a58dc6a2b26ec128b1270cf48810e705f1a90dbsf <code class="option">directory</code> option in the configuration
9a58dc6a2b26ec128b1270cf48810e705f1a90dbsf file, <em class="replaceable"><code>config-file</code></em> should be
ea52f92bf226f48638d3e0e0b0e03568c8e7c5a9noirin an absolute pathname.
ea52f92bf226f48638d3e0e0b0e03568c8e7c5a9noirin<dt><span class="term">-d <em class="replaceable"><code>debug-level</code></em></span></dt>
0d7cadfab793cd88b98342b4d34410ab6e773883rbowen Set the daemon's debug level to <em class="replaceable"><code>debug-level</code></em>.
9a58dc6a2b26ec128b1270cf48810e705f1a90dbsf Debugging traces from <span><strong class="command">named</strong></span> become
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd more verbose as the debug level increases.
a4784b5a082381b03e972caf3aa052a64c68f06dhumbedooh Run the server in the foreground (i.e. do not daemonize).
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd Run the server in the foreground and force all logging
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd<dt><span class="term">-m <em class="replaceable"><code>flag</code></em></span></dt>
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd Turn on memory usage debugging flags. Possible flags are
06ba4a61654b3763ad65f52283832ebf058fdf1cslive These correspond to the ISC_MEM_DEBUGXXXX flags described in
06ba4a61654b3763ad65f52283832ebf058fdf1cslive<dt><span class="term">-n <em class="replaceable"><code>#cpus</code></em></span></dt>
06ba4a61654b3763ad65f52283832ebf058fdf1cslive Create <em class="replaceable"><code>#cpus</code></em> worker threads
06ba4a61654b3763ad65f52283832ebf058fdf1cslive to take advantage of multiple CPUs. If not specified,
06ba4a61654b3763ad65f52283832ebf058fdf1cslive <span><strong class="command">named</strong></span> will try to determine the
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd number of CPUs present and create one thread per CPU.
a4784b5a082381b03e972caf3aa052a64c68f06dhumbedooh If it is unable to determine the number of CPUs, a
82489978ef71322bce18e6f92d2a938b87fd434erbowen single worker thread will be created.
a4784b5a082381b03e972caf3aa052a64c68f06dhumbedooh<dt><span class="term">-p <em class="replaceable"><code>port</code></em></span></dt>
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd Listen for queries on port <em class="replaceable"><code>port</code></em>. If not
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd specified, the default is port 53.
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd Write memory usage statistics to <code class="filename">stdout</code> on exit.
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd<div class="note" style="margin-left: 0.5in; margin-right: 0.5in;">
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd This option is mainly of interest to BIND 9 developers
06ba4a61654b3763ad65f52283832ebf058fdf1cslive and may be removed or changed in a future release.
06ba4a61654b3763ad65f52283832ebf058fdf1cslive<dt><span class="term">-t <em class="replaceable"><code>directory</code></em></span></dt>
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd to <em class="replaceable"><code>directory</code></em> after
a4784b5a082381b03e972caf3aa052a64c68f06dhumbedooh processing the command line arguments, but before
82489978ef71322bce18e6f92d2a938b87fd434erbowen reading the configuration file.
a4784b5a082381b03e972caf3aa052a64c68f06dhumbedooh<div class="warning" style="margin-left: 0.5in; margin-right: 0.5in;">
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd This option should be used in conjunction with the
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd <code class="option">-u</code> option, as chrooting a process
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd running as root doesn't enhance security on most
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd systems; the way <code class="function">chroot(2)</code> is
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd defined allows a process with root privileges to
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd escape a chroot jail.
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd<dt><span class="term">-u <em class="replaceable"><code>user</code></em></span></dt>
06ba4a61654b3763ad65f52283832ebf058fdf1cslive to <em class="replaceable"><code>user</code></em> after completing
06ba4a61654b3763ad65f52283832ebf058fdf1cslive privileged operations, such as creating sockets that
06ba4a61654b3763ad65f52283832ebf058fdf1cslive listen on privileged ports.
06ba4a61654b3763ad65f52283832ebf058fdf1cslive<div class="note" style="margin-left: 0.5in; margin-right: 0.5in;">
06ba4a61654b3763ad65f52283832ebf058fdf1cslive On Linux, <span><strong class="command">named</strong></span> uses the kernel's
06ba4a61654b3763ad65f52283832ebf058fdf1cslive capability mechanism to drop all root privileges
06ba4a61654b3763ad65f52283832ebf058fdf1cslive except the ability to <code class="function">bind(2)</code> to
06ba4a61654b3763ad65f52283832ebf058fdf1cslive privileged port and set process resource limits.
06ba4a61654b3763ad65f52283832ebf058fdf1cslive Unfortunately, this means that the <code class="option">-u</code>
06ba4a61654b3763ad65f52283832ebf058fdf1cslive option only works when <span><strong class="command">named</strong></span> is
282b62d8e9a4edbc2da22ba2d876ec94afc48084nd on kernel 2.2.18 or later, or kernel 2.3.99-pre3 or
06ba4a61654b3763ad65f52283832ebf058fdf1cslive later, since previous kernels did not allow privileges
0d7cadfab793cd88b98342b4d34410ab6e773883rbowen to be retained after <code class="function">setuid(2)</code>.
a4784b5a082381b03e972caf3aa052a64c68f06dhumbedooh Report the version number and exit.
82489978ef71322bce18e6f92d2a938b87fd434erbowen<dt><span class="term">-x <em class="replaceable"><code>cache-file</code></em></span></dt>
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd Load data from <em class="replaceable"><code>cache-file</code></em> into the
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd cache of the default view.
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd<div class="warning" style="margin-left: 0.5in; margin-right: 0.5in;">
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd This option must not be used. It is only of interest
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd to BIND 9 developers and may be removed or changed in a
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd future release.
06ba4a61654b3763ad65f52283832ebf058fdf1cslive In routine operation, signals should not be used to control
a4784b5a082381b03e972caf3aa052a64c68f06dhumbedooh the nameserver; <span><strong class="command">rndc</strong></span> should be used
0c4abc32c00611fe1d52c9661f5cc79a3f74c6d4nd Force a reload of the server.
727872d18412fc021f03969b8641810d8896820bhumbedooh Shut down the server.
0d0ba3a410038e179b695446bb149cce6264e0abnd The result of sending any other signals to the server is undefined.
ac082aefa89416cbdc9a1836eaf3bed9698201c8humbedooh The <span><strong class="command">named</strong></span> configuration file is too complex
0d0ba3a410038e179b695446bb149cce6264e0abnd to describe in detail here. A complete description is provided
0d0ba3a410038e179b695446bb149cce6264e0abnd <em class="citetitle">BIND 9 Administrator Reference Manual</em>.
af33a4994ae2ff15bc67d19ff1a7feb906745bf8rbowen<dt><span class="term"><code class="filename">/etc/named.conf</code></span></dt>
7fec19672a491661b2fe4b29f685bc7f4efa64d4nd The default configuration file.
7fec19672a491661b2fe4b29f685bc7f4efa64d4nd<dt><span class="term"><code class="filename">/var/run/named.pid</code></span></dt>