diff --git a/test/example-9.16-named.conf b/test/example-9.16-named.conf index fafe78e..381635b 100644 --- a/test/example-9.16-named.conf +++ b/test/example-9.16-named.conf @@ -630,9 +630,9 @@ options datasize default; datasize unlimited; deallocate-on-exit no; // ancient - deny-answer-addresses { example.net; 127.0.0.1/8; }; + deny-answer-addresses { "example.net"; 127.0.0.1/8; }; deny-answer-addresses { "example.net"; }; - deny-answer-addresses { acl_ntwk; }; + deny-answer-addresses { "acl_ntwk"; }; deny-answer-addresses { 123.123.123.123; }; deny-answer-addresses { 123.123.123.123; } except-from { "localhost"; 1.2.3.4; }; deny-answer-addresses { 123.123.123.123; } @@ -645,7 +645,7 @@ options 1.2.3.4; }; deny-answer-aliases { "example.net"; }; - deny-answer-aliases { acl_ntwk; }; + deny-answer-aliases { "acl_ntwk"; }; deny-answer-aliases { "example.org"; } except-from { "localhost"; 1.2.3.4; }; deny-answer-aliases { "cname.example.com."; } except from { @@ -664,13 +664,14 @@ options dns64 fe08::1/5 { mapped { any; }; }; // default dns64 fe08::1/5 { recursive-only no; }; // default dns64 fe08::1/5 { - break-dnssec yes; - recursive-only no; - suffix ::ffff:0.0.0.0/96; - exclude { ff::; }; - mapped { none; }; - recursive-only yes; - }; + break-dnssec yes ; + recursive-only no ; + suffix ::ffff:0.0.0.0/96 ; + suffix ::ffff:0.0.0.0/96 ; + exclude { ff:: ; } ; + mapped { none; } ; + recursive-only yes ; + } ; dns64-contact "test.example.org"; dns64-server 'test.example.net.'; dnskey-sig-validity 1; @@ -704,14 +705,13 @@ options dnstap-identity example.com; dnstap-output unix quotedstring size unlimited version unlimited suffix increment; dnstap-output - unix quotedstring + unix "quotedstring" size unlimited - version unlimited - suffix increment; + versions unlimited suffix increment; dnstap-output file "/var/run/bind/dnstap-out.sock" size unlimited - version unlimited + versions unlimited suffix increment; dnstap-version none; dnstap-version quoted_string; @@ -756,7 +756,7 @@ options glue-cache yes; has-old-clients no; // ancient heartbeat-interval 40320; - host-statistics "/tmp/junk"; + host-statistics no; host-statistics-max 15; hostname none; inline-signing yes; @@ -800,6 +800,7 @@ include "/var/lib/dhcp/bind-listen-on-ip.conf"; max-transfer-time-in 100; max-transfer-time-out 100; max-udp-size 1490; + max-udp-size 490; max-zone-ttl 123123; max-zone-ttl unlimited; memstatistics yes; @@ -985,7 +986,7 @@ include "/var/lib/dhcp/bind-listen-on-ip.conf"; treat-cr-as-space no; // ancient trust-anchor-telemetry true; try-tcp-refresh true; - # trust-anchors { example.net initial-ds 1 1 1 yes; }; + trust-anchors { example.net initial-ds 1 1 1 yes; }; update-check-ksk true; use-alt-transfer-source yes; use-id-pool no; // ancient @@ -1016,7 +1017,8 @@ server 192.1.2.324/24 { edns yes; edns-version 15; keys key_id; - max-udp-size 4096; + max-udp-size 4096 + max-udp-size x096xx notify-source 1.1.1.1 port * dscp 53; notify-source-v6 ff08::1 port * dscp 53; padding 1490; @@ -1024,7 +1026,7 @@ server 192.1.2.324/24 { query-source 1.1.1.1 port * dscp 53; query-source-v6 ff08::1 port * dscp 53; request-expire yes; - request-ixfr yes; + request-ixfr yes; request-nsid yes; request-sit no; // obsolete send-cookie yes; @@ -1035,7 +1037,7 @@ server 192.1.2.324/24 { transfer-source * port * dscp 63; transfer-source-v6 fe80:1::127.0.0.1 port * dscp 63; transfer-source-v6 fe08:1::127.0.0.1 port 53; - transfers 15; + transfers 15; }; statistics-channels { @@ -1160,6 +1162,23 @@ view "redview" { dnssec-update-mode no-resign; dnssec-validation True; dnstap { all; }; + dnstap { all query; }; + dnstap { all response; }; + dnstap { auth; }; + dnstap { auth query; }; + dnstap { auth response; }; + dnstap { client; }; + dnstap { client query; }; + dnstap { client response; }; + dnstap { forwarder; }; + dnstap { forwarder query; }; + dnstap { forwarder response; }; + dnstap { resolver; }; + dnstap { resolver query; }; + dnstap { resolver response; }; + dnstap { update; }; + dnstap { update query; }; + dnstap { update response; }; dual-stack-servers { example.com; } ; dual-stack-servers port 123{example.com ;} ; dual-stack-servers { example.com port 11111; }; @@ -1216,11 +1235,17 @@ view "redview" { max-refresh-time 53; max-retry-time 53; max-stale-ttl 53; - max-transfer-idle-in 53; + max-transfer-idle-in 53; // my inline comment seems to work now. max-transfer-idle-out 53; max-transfer-time-in 53; max-transfer-time-out 53; - max-udp-size 53; + max-udp-size 4096; + max-udp-size 1024; + max-udp-size 512; + max-udp-size 0; + max-udp-size 1; + max-udp-size 4097; + max-udp-size x; max-zone-ttl unlimited; message-compression no; min-cache-ttl 53;