named.conf
:
controls
rndc
command to administer the named
service.
/etc/named.conf
” to learn more about how the controls
statement is structured and what options are available.
key "<key-name>
"
rndc
command. Two options are used with key
:
algorithm <algorithm-name>
— The type of algorithm used, such as hmac-md5
.
secret "<key-value>
"
— The encrypted key.
/etc/rndc.conf
” for instructions on how to write a key
statement.
logging
channel
option within the logging
statement, a customized type of log can be constructed — with its own file name (file
), size limit (size
), versioning (version
), and level of importance (severity
). Once a customized channel is defined, a category
option is used to categorize the channel and begin logging when named
is restarted.
named
logs standard messages to the syslog
daemon, which places them in /var/log/messages
. This occurs because several standard channels are built into BIND with various severity levels, such as default_syslog
(which handles informational logging messages) and default_debug
(which specifically handles debugging messages). A default category, called default
, uses the built-in channels to do normal logging without any special configuration.
server
named
should respond to remote nameservers, especially with regard to notifications and zone transfers.
transfer-format
option controls whether one resource record is sent with each message (one-answer
) or multiple resource records are sent with each message (many-answers
). While many-answers
is more efficient, only newer BIND nameservers understand it.
trusted-keys
view "<view-name>
"
match-clients
option specifies the IP addresses that apply to a particular view. Any options
statement may also be used within a view, overriding the global options already configured for named
. Most view
statements contain multiple zone
statements that apply to the match-clients
list. The order in which view
statements are listed is important, as the first view
statement that matches a particular client's IP address is used.
view
statement.