servnest-containers/conf/knot.conf

54 lines
1.2 KiB
Text
Raw Normal View History

2022-04-20 00:29:47 +02:00
server:
version: ""
2022-11-20 01:03:19 +01:00
nsid: ""
rundir: "/run/knot"
2025-01-20 17:24:27 +01:00
listen: [ "::@42053", "0.0.0.0@42053" ] #, "/run/knot/dns.sock" ]
listen-quic: [ "::@42853", "0.0.0.0@42853" ]
2024-12-19 15:50:52 +01:00
automatic-acl: "on"
2022-04-20 00:29:47 +02:00
log:
2024-07-18 20:58:12 +02:00
- target: stderr
any: warning
2024-12-19 15:50:52 +01:00
- target: "/var/log/knot/knot.log"
any: debug
2022-04-20 00:29:47 +02:00
database:
storage: "/var/lib/knot"
2022-04-20 00:29:47 +02:00
policy:
2023-01-29 21:14:36 +01:00
- id: "servnest"
2022-04-20 00:29:47 +02:00
algorithm: "ed25519"
nsec3: "on"
nsec3-iterations: 0
nsec3-salt-length: 0
2023-09-04 20:12:28 +02:00
delete-delay: 60d
dnskey-management: "incremental"
2022-04-20 00:29:47 +02:00
2024-12-19 15:50:52 +01:00
remote:
- id: "secondary"
2025-01-20 17:24:27 +01:00
address: [ "10.5.0.52@42853" ]
2024-12-19 15:50:52 +01:00
quic: on
cert-key: "1111111111111111111111111111111111111111111=" # will be replaced by setup-xoq.sh
2022-04-20 00:29:47 +02:00
template:
2023-01-29 21:14:36 +01:00
- id: "servnest"
storage: "/srv/servnest/ns"
# notify: "secondary"
2022-04-20 00:29:47 +02:00
dnssec-signing: "on"
2023-01-29 21:14:36 +01:00
dnssec-policy: "servnest"
catalog-role: "member"
catalog-zone: "servnest.test.invalid."
2022-04-20 00:29:47 +02:00
zone:
- domain: "servnest.test.invalid."
# notify: "secondary"
catalog-role: "generate"
2023-01-29 21:14:36 +01:00
- domain: "servnest.test."
template: "servnest"
storage: "/srv/servnest/reg"
2023-01-29 21:14:36 +01:00
- domain: "test.servnest.test."
template: "servnest"
storage: "/srv/servnest/reg"