Re: named service suddenly fails to start

2021-11-05 Thread Petr Menšík
I am not 100% sure, but what format of the zone were used? I think this should be usually catched by default check-names value on master zones. However, in masterfile-format, I found this sentence [1]: > In particular, *check-names* checks do not apply for the |raw| format. Does that mean dynami

Re: Certbot rfc2136

2021-11-05 Thread Petr Menšík
I would use something under /var directory with data modified by daemons itself. I think that place is more appropriate for zones signed by named daemon. We at Red Hat still use /var/named, where SELinux would allow named changing data. I do not think named itself should modify data in /etc. It de

Re: named service suddenly fails to start

2021-11-05 Thread Mark Andrews
Check-names in enforced by UPDATE independent of the format the zone is stored in.  Named-compilezone will also reject by default.   -k mode  This  option  performs  check-names  checks  with  the  specified  failure  mode.   Possible  modes are fail (the default for named-compilezo

A record for @?

2021-11-05 Thread @lbutlr via bind-users
I have a domain that I hot DNS and email for, but not web. I set the A record for www.example.com to the IP of the web server with nsupdate, removing the old CNAME the pointed to the local webserver, but the web monkey for the new website is saying that www has to be a CNAME and the @ record sho

Re: A record for @?

2021-11-05 Thread Tony Finch
@lbutlr via bind-users wrote: > I have a domain that I hot DNS and email for, but not web. I set the A > record for www.example.com to the IP of the web server with nsupdate, > removing the old CNAME the pointed to the local webserver, but the web > monkey for the new website is saying that www h