Browse Source
chg: updated further the script for host installation. @wip
chg: updated further the script for host installation. @wip
This is still in development.postgres
Valentin Lab
11 years ago
4 changed files with 280 additions and 68 deletions
-
256precise/host/hooks/install
-
39precise/host/src/bind9.patch
-
52precise/host/src/etc/bind/named.conf.options
-
1precise/host/src/etc/ssh/lxc_git_access_id_rsa
@ -1,39 +0,0 @@ |
|||||
diff --git a/bind/named.conf.options b/bind/named.conf.options
|
|
||||
index 5b1981d..c1fd78c 100644
|
|
||||
--- a/bind/named.conf.options
|
|
||||
+++ b/bind/named.conf.options
|
|
||||
@@ -21,8 +21,32 @@ options {
|
|
||||
dnssec-validation auto; |
|
||||
|
|
||||
auth-nxdomain no; # conform to RFC1035 |
|
||||
- listen-on-v6 { ::1; };
|
|
||||
- listen-on { 127.0.0.1; };
|
|
||||
+ //listen-on-v6 { ::1; };
|
|
||||
+ listen-on { 178.33.122.174; };
|
|
||||
// allow-recursion { 127.0.0.1; }; |
|
||||
}; |
|
||||
|
|
||||
+
|
|
||||
+logging {
|
|
||||
+ channel warning
|
|
||||
+ {
|
|
||||
+ file "/var/log/named/dns.warnings.log";
|
|
||||
+ severity warning;
|
|
||||
+ print-category yes;
|
|
||||
+ print-severity yes;
|
|
||||
+ print-time yes;
|
|
||||
+ };
|
|
||||
+
|
|
||||
+ channel general_dns
|
|
||||
+ {
|
|
||||
+ file "/var/log/named/dns.log";
|
|
||||
+ severity info;
|
|
||||
+ print-category yes;
|
|
||||
+ print-severity yes;
|
|
||||
+ print-time yes;
|
|
||||
+ };
|
|
||||
+
|
|
||||
+ category default { warning; } ;
|
|
||||
+ category queries { general_dns; } ;
|
|
||||
+};
|
|
||||
+
|
|
@ -0,0 +1,52 @@ |
|||||
|
options { |
||||
|
directory "/var/cache/bind"; |
||||
|
|
||||
|
// If there is a firewall between you and nameservers you want |
||||
|
// to talk to, you may need to fix the firewall to allow multiple |
||||
|
// ports to talk. See http://www.kb.cert.org/vuls/id/800113 |
||||
|
|
||||
|
// If your ISP provided one or more IP addresses for stable |
||||
|
// nameservers, you probably want to use them as forwarders. |
||||
|
// Uncomment the following block, and insert the addresses replacing |
||||
|
// the all-0's placeholder. |
||||
|
|
||||
|
// forwarders { |
||||
|
// 0.0.0.0; |
||||
|
// }; |
||||
|
|
||||
|
//======================================================================== |
||||
|
// If BIND logs error messages about the root key being expired, |
||||
|
// you will need to update your keys. See https://www.isc.org/bind-keys |
||||
|
//======================================================================== |
||||
|
dnssec-validation auto; |
||||
|
|
||||
|
auth-nxdomain no; # conform to RFC1035 |
||||
|
//listen-on-v6 { ::1; }; |
||||
|
listen-on { %%EXTERNAL_IP%%; }; |
||||
|
// allow-recursion { 127.0.0.1; }; |
||||
|
}; |
||||
|
|
||||
|
|
||||
|
logging { |
||||
|
channel warning |
||||
|
{ |
||||
|
file "/var/log/named/dns.warnings.log"; |
||||
|
severity warning; |
||||
|
print-category yes; |
||||
|
print-severity yes; |
||||
|
print-time yes; |
||||
|
}; |
||||
|
|
||||
|
channel general_dns |
||||
|
{ |
||||
|
file "/var/log/named/dns.log"; |
||||
|
severity info; |
||||
|
print-category yes; |
||||
|
print-severity yes; |
||||
|
print-time yes; |
||||
|
}; |
||||
|
|
||||
|
category default { warning; } ; |
||||
|
category queries { general_dns; } ; |
||||
|
}; |
||||
|
|
@ -0,0 +1 @@ |
|||||
|
../../../../base-0k/src/etc/ssh/lxc_git_access_id_rsa |
Write
Preview
Loading…
Cancel
Save
Reference in new issue