search for: iscdlv

Displaying 20 results from an estimated 64 matches for "iscdlv".

Did you mean: is_dev
2016 May 10
3
CentOS 6 as DNS-Server
...cQqBGCzh/RStIoO8g0NfnfL2MTJRkxoX bfDaUeVPQuYEhg37NZWAJQ9VnMVDxP/VHL496M/QZxkjf5/Efucp2gaD X6RS6CXpoY68LsvPVjR0ZSwzz1apAzvN9dlzEheX7ICJBBtuA6G3LQpz W5hOA2hzCTMjJPJ8LbqF6dsV6DoBQzgul0sGIcGOYl7OyQdXfZ57relS Qageu+ipAdTTJ25AsRTAoub8ONGcLmqrAmRLKBP1dfwhYB4N7knNnulq QxA+Uk1ihz0="; }; and /etc/named.iscdlv.key with a content identical to this: http://ftp.isc.org/isc/bind9/keys/9.8/bind.keys.v9_8 in no file neither in /etc/named.conf nor in any other file that is included by the main config I can find a reference to /etc/named.root.key is this file really needed or did it become obsolete? (as seen o...
2014 Sep 08
1
Starting second DC makes named to freeze on primary DC
..."/var/named/data/named_mem_stats.txt"; allow-query { any; }; recursion yes; # just example forwarders { 8.8.8.8; }; dnssec-enable no; dnssec-validation no; dnssec-lookaside auto; bindkeys-file "/etc/named.iscdlv.key"; managed-keys-directory "/var/named/dynamic"; tkey-gssapi-keytab "/var/lib/samba/private/dns.keytab"; }; zone "." IN { type hint; file "named.ca"; }; include "/etc/named.rfc1912.zones"; include "/...
2019 Jun 19
1
Can't access DNS from RSAT
..."; memstatistics-file "/var/named/data/named_mem_stats.txt"; allow-query { any; }; dnssec-enable no; recursion yes; allow-recursion { any; }; allow-transfer { none; }; dnssec-validation no; bindkeys-file "/etc/named.iscdlv.key"; managed-keys-directory "/var/named/dynamic"; pid-file "/run/named/named.pid"; tkey-gssapi-keytab "/var/lib/samba/private/dns.keytab"; }; logging { channel default_debug { file "data/named.run";...
2014 Dec 11
2
CentOS 5- mount shows a cifs share mounted 4 times!
...c/named on /var/named/chroot/etc/named type none (rw,bind) /etc/named.rfc1912.zones on /var/named/chroot/etc/named.rfc1912.zones type none (rw,bind) /etc/rndc.key on /var/named/chroot/etc/rndc.key type none (rw,bind) /usr/lib64/bind on /var/named/chroot/usr/lib64/bind type none (rw,bind) /etc/named.iscdlv.key on /var/named/chroot/etc/named.iscdlv.key type none (rw,bind) /etc/named.root.key on /var/named/chroot/etc/named.root.key type none (rw,bind) 10.0.0.253:/i-data/48e5a222/nfs/music on /thecus-music type nfs (rw,addr=10.0.0.253) 10.0.0.253:/i-data/48e5a222/nfs/fedora on /thecus-backup type nfs (r...
2013 Aug 14
1
CentOS6 bind DLV problems
...a/named_mem_stats.txt"; //allow-query { localhost; }; //allow-recursion { localhost; }; recursion yes; dnssec-enable yes; dnssec-validation yes; dnssec-lookaside auto; /* Path to ISC DLV key */ bindkeys-file "/etc/named.iscdlv.key"; managed-keys-directory "/var/named/dynamic"; }; logging { channel default_debug { file "data/named.run"; severity dynamic; }; }; zone "." IN { type hint; file "named.ca"; };...
2014 Sep 21
1
rndc permission denied
...server to become part of large scale DNS amplification attacks. Implementing BCP38 within your network would greatly reduce such attack surface */ recursion yes; dnssec-enable yes; dnssec-validation yes; dnssec-lookaside auto; bindkeys-file "/etc/named.iscdlv.key"; managed-keys-directory "/var/named/dynamic"; }; logging { channel default_debug { file "data/named.run"; severity dynamic; }; }; zone "." IN { type hint; file "named.ca"; }; zone &qu...
2018 Jun 01
2
DNS not resolving particular host from queries from particular subnet
...68.27.0/24; > }; > > > //recursion yes; > tkey-gssapi-keytab "/usr/local/samba/private/dns.keytab"; > dnssec-enable yes; > dnssec-validation yes; > /* Path to ISC DLV key */ > bindkeys-file "/etc/named.iscdlv.key"; > managed-keys-directory "/var/named/dynamic"; > pid-file "/run/named/named.pid"; > session-keyfile "/run/named/session.key"; > }; > logging { > channel default_debug { > file "data/na...
2011 Sep 08
1
KVM on CentOS 6
...pipefs type rpc_pipefs (rw) nfsd on /proc/fs/nfsd type nfsd (rw) /etc/named on /var/named/chroot/etc/named type none (rw,bind) /etc/named.rfc1912.zones on /var/named/chroot/etc/named.rfc1912.zones type none (rw,bind) /usr/lib64/bind on /var/named/chroot/usr/lib64/bind type none (rw,bind) /etc/named.iscdlv.key on /var/named/chroot/etc/named.iscdlv.key type none (rw,bind) /etc/named on /var/named/chroot/etc/named type none (rw,bind) /usr/lib64/bind on /var/named/chroot/usr/lib64/bind type none (rw,bind) mount: warning: /etc/mtab is not writable (e.g. read-only filesystem). It's possible th...
2013 Mar 10
8
BIND Setup Issue
...ot;/var/named/data/named_mem_stats.txt"; allow-query { localhost; 10.0.0.1/24; 10.0.0.254/24; }; recursion yes; dnssec-enable yes; dnssec-validation yes; dnssec-lookaside auto; /* Path to ISC DLV key */ bindkeys-file "/etc/named.iscdlv.key"; managed-keys-directory "/var/named/dynamic"; }; logging { channel default_debug { file "data/named.run"; severity dynamic; }; }; zone "." IN { type hint; file "named.ca"; };...
2017 Oct 09
1
Samba AD DC dns issue
...emstatistics-file "/var/named/data/named_mem_stats.txt"; allow-query { localhost; internal; }; recursion yes; /* dnssec-enable yes; dnssec-validation yes; dnssec-lookaside auto; */ /* Path to ISC DLV key */ bindkeys-file "/etc/named.iscdlv.key"; managed-keys-directory "/var/named/dynamic"; pid-file "/var/run/named/named.pid"; session-keyfile "/var/run/named/session.key"; forwarders { 172.20.0.14; 172.20.0.11; 10.224.135.11; }; // Added for Samba-4.x. tkey-gssapi-key...
2020 Mar 25
0
CentOS 6.10 bind DNSSEC issues
...es with CentOS 6.10 bind DNS server issues Yes. The installed ISC DLV key installed with bind-9.8.2-0.68.rc1.el6_10.3.x86_64 seems to have expired and there does not appear to be a new bind-9.8.2 RPM with a new key. I guess you can *manually* fetch a new key (look in the installed /etc/named.iscdlv.key file) OR You can just disable dnssec, by commenting out these lines: dnssec-enable yes; dnssec-validation yes; dnssec-lookaside auto; /* Path to ISC DLV key */ bindkeys-file "/etc/named.iscdlv.key"; a...
2017 Nov 06
0
corrupted db after upgrading to 4.7
...localhost; 172.17.2.188; 172.17.1.188; }; forwarders { 195.238.2.21; 195.238.2.22; }; tkey-gssapi-keytab "/var/lib/samba/private/dns.keytab"; recursion yes; dnssec-enable yes; dnssec-validation no; dnssec-lookaside auto; /* Path to ISC DLV key */ bindkeys-file "/etc/named.iscdlv.key"; managed-keys-directory "/var/named/dynamic"; pid-file "/run/named/named.pid"; session-keyfile "/run/named/session.key"; }; logging { channel default_debug { file "data/named.run"; severity dynamic;...
2015 Aug 28
1
named failing with bind_dlz includes
...P38 within your network would greatly reduce such attack surface */ recursion yes; dnssec-enable yes; dnssec-validation yes; dnssec-lookaside auto; forwarders { 192.168.192.5; }; /* Path to ISC DLV key */ bindkeys-file "/etc/named.iscdlv.key"; managed-keys-directory "/var/named/dynamic"; pid-file "/run/named/named.pid"; session-keyfile "/run/named/session.key"; }; logging { channel default_debug { file "data/named.run"; severit...
2020 Mar 25
2
CentOS 6.10 bind DNSSEC issues
Hi, ??? Anyone else had any issues with CentOS 6.10 bind DNS server issues this afternoon. At 16:26 (GMT) had alerts for DNS failures against our CentOS 6.10 bind DNS servers from our monitoring system. Sure enough DNS requests via the server was failing, checking the named.log showed dnssec issues; 25-Mar-2020 16:26:10.285 dnssec: info: validating @0xb48b17c0: push.services.mozilla.com
2017 Nov 06
2
corrupted db after upgrading to 4.7
...ata.contoso.com named[2807]: received control > channel command 'reload' nov 05 03:09:02 data.contoso.com > named[2807]: loading configuration from '/etc/named.conf' nov 05 > 03:09:02 data.contoso.com named[2807]: reading built-in trusted keys > from file '/etc/named.iscdlv.key' nov 05 03:09:02 data.contoso.com > named[2807]: initializing GeoIP Country (IPv4) (type 1) DB nov 05 > 03:09:02 data.contoso.com named[2807]: GEO-106FREE 20160607 Build 1 > Copyright (c) 2016 MaxMind nov 05 03:09:02 data.contoso.com > named[2807]: initializing GeoIP Country (IP...
2015 Sep 07
0
rsync question
I tried your rsync command and it worked on my LAN over ssh. The following was placed in the destination directory: drwxr-x--- 2 root smmsp 4.0K Jul 28 21:05 named/ -rw-r----- 1 root smmsp 1.6K Oct 30 2013 named.conf -rw-r--r-- 1 root smmsp 2.4K Jul 28 21:05 named.iscdlv.key -rw-r----- 1 root smmsp 931 Jun 21 2007 named.rfc1912.zones -rw-r--r-- 1 root smmsp 487 Jul 19 2010 named.root.key On Mon, Sep 7, 2015 at 1:05 PM, Robert Moskowitz <rgm at htt-consult.com> wrote: > I am trying to rsync the named files under /etc for backup purposes. I > tr...
2015 Jan 16
0
Problems with DNS Dynamic updates + Bind9.8
...port 53 { 127.0.0.1; 10.1.1.150; }; directory "/var/named"; allow-query { any; }; recursion yes; forwarders { 10.1.1.129; }; allow-transfer { "none"; }; allow-update { key ufp.pt; }; bindkeys-file "/etc/named.iscdlv.key"; managed-keys-directory "/var/named/dynamic"; tkey-gssapi-keytab "/var/lib/samba/private/dns.keytab"; }; zone "." IN { type hint; file "named.ca"; }; #include "/var/lib/samba/private/named.conf.update"; in...
2011 Mar 24
0
DNS update won't work with samba4
...m_stats.txt"; recursion no; tkey-gssapi-credential "DNS/tfc.lk"; tkey-domain "TFC.LK"; dnssec-enable yes; dnssec-validation yes; dnssec-lookaside auto; /* Path to ISC DLV key */ bindkeys-file "/etc/named.iscdlv.key"; ............ ............ include "/etc/named-samba.conf"; ===================================================================== named-samba.conf ............... ............... zone "tfc.lk." IN { type master; file "/var/named/dynamic/tfc.lk.zo...
2016 May 18
2
ISC's dhcp server, radvd and bind9 now adding samba as an AD DC
...stats.txt"; memstatistics-file "/var/named/data/named_mem_stats.txt"; allow-query { localhost; 192.168.1.0/16; }; recursion yes; dnssec-enable yes; dnssec-validation yes; dnssec-lookaside auto; bindkeys-file "/etc/named.iscdlv.key"; managed-keys-directory "/var/named/dynamic"; pid-file "/run/named/named.pid"; session-keyfile "/run/named/session.key"; }; logging { channel default_debug { file "data/named.run"; seve...
2017 Mar 14
2
Problems with replication and dns
...ver to become part of large scale DNS amplification attacks. Implementing BCP38 within your network would greatly reduce such attack surface */ recursion yes; dnssec-enable yes; dnssec-validation yes; // dnssec-lookaside auto; /* Path to ISC DLV key */ bindkeys-file "/etc/named.iscdlv.key"; managed-keys-directory "/var/named/dynamic"; pid-file "/run/named/named.pid"; session-keyfile "/run/named/session.key"; forwarders { 8.8.8.8; 8.8.4.4; }; }; logging { channel default_debug {...