123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286 |
- ---
- # To update DNSSEC keys, see https://www.isc.org/bind-keys
- bind:
- options:
- directory: "/var/cache/bind"
- recursion: true
- allow_recursion:
- - 127.0.0.1
- allow_query:
- - 127.0.0.1
- allow_transfer:
- - 127.0.0.1
- dnssec_validation: auto
- validate_except:
- - ff3l
- - fffd
- - fftr
- - ffhl
- port: 5353
- listen_on:
- - any
- servers:
- - server: 172.22.149.225
- keys:
- - transfer_key
- keys:
- - name: transfer_key
- algorithm: hmac-sha512
- secret: !vault |
- $ANSIBLE_VAULT;1.1;AES256
- 64643966386533336163363338663333643033633035663265393266333564323062313266363661
- 6662313134613662623063623362626662346363623765620a643239396662333533383535613765
- 34333631636338353139643163653261653461616165343761393364396462343733346465633463
- 6666366535366631350a343232643764343433376261376239333439393931646566613934666533
- 30393533356139396666356466643038656566613739666664633433656163303865396332616533
- 66316636363931663335636661656365633939313065663632383665353661623764666563666565
- 31653861316539326531396161323365333739633833363039663462313335316663376666373234
- 63393764386661363837393432653361613666636239366433366562653963333966313563303939
- 6630
- zones:
- # Own zones
- ## Clearnet
- - zone: mk16.de.
- type: slave
- file: "/var/cache/bind/db.mk16.de"
- masters:
- - 172.22.149.225 port 5353
- - zone: dn42-lab.de.
- type: slave
- file: "/var/cache/bind/db.dn42-lab.de"
- masters:
- - 172.22.149.225 port 5353
- - zone: byeob.de.
- type: slave
- file: "/var/cache/bind/db.byeob.de"
- masters:
- - 172.22.149.225 port 5353
- - zone: p2p-node.de.
- type: slave
- file: "/var/cache/bind/db.p2p-node.de"
- masters:
- - 172.22.149.225 port 5353
- - zone: p2p-router.de.
- type: slave
- file: "/var/cache/bind/db.p2p-router.de"
- masters:
- - 172.22.149.225 port 5353
- - zone: i2phides.me.
- type: slave
- file: "/var/cache/bind/db.i2phides.me"
- masters:
- - 172.22.149.225 port 5353
- - zone: crxn.de.
- type: slave
- file: "/var/cache/bind/db.crxn.de"
- masters:
- - 172.22.149.225 port 5353
- ## dn42
- - zone: bandura.dn42.
- type: slave
- file: "/var/cache/bind/db.bandura.dn42"
- masters:
- - 172.22.149.225 port 5353
- - zone: 224/27.149.22.172.in-addr.arpa.
- type: slave
- file: "/var/cache/bind/db.172.22.149.224_27"
- masters:
- - 172.22.149.225 port 5353
- - zone: 112/28.149.22.172.in-addr.arpa.
- type: slave
- file: "/var/cache/bind/db.172.22.149.112_28"
- masters:
- - 172.22.149.225 port 5353
- - zone: 1.3.c.f.e.4.3.2.4.0.d.f.ip6.arpa.
- type: slave
- file: "/var/cache/bind/db.fd04:234e:fc31::_48"
- masters:
- - 172.22.149.225 port 5353
- ## NeoNetwork
- - zone: bandura.neo.
- type: slave
- file: "/var/cache/bind/db.bandura.neo"
- masters:
- - 172.22.149.225 port 5353
- - zone: 149.127.10.in-addr.arpa.
- type: slave
- file: "/var/cache/bind/db.10.127.149.224_27"
- masters:
- - 172.22.149.225 port 5353
- - zone: 1.3.c.f.7.2.1.0.0.1.d.f.ip6.arpa.
- type: slave
- file: "/var/cache/bind/db.fd10:127:fc31::_48"
- masters:
- - 172.22.149.225 port 5353
-
- ## CRXN
- - zone: bandura.crxn.
- type: slave
- file: "/var/cache/bind/db.bandura.crxn"
- masters:
- - 172.22.149.225 port 5353
- - zone: docs.crxn.
- type: slave
- file: "/var/cache/bind/db.docs.crxn"
- masters:
- - 172.22.149.225 port 5353
- - zone: 2.b.2.0.6.b.8.5.2.9.d.f.ip6.arpa.
- type: slave
- file: "/var/cache/bind/db.fd92:58b6:2b2::_48"
- masters:
- - 172.22.149.225 port 5353
- - zone: 6.6.6.2.7.3.e.3.c.5.d.f.ip6.arpa.
- type: slave
- file: "/var/cache/bind/fd5c:3e37:2666::_48"
- masters:
- - 172.22.149.225 port 5353
-
- # myip.dn42
- - zone: myip.dn42.
- type: slave
- file: "/var/cache/bind/db.myip.dn42"
- masters:
- - 172.22.149.225 port 5353
- - zone: 81/32.0.20.172.in-addr.arpa.
- type: slave
- file: "/var/cache/bind/db.172.20.0.81_32"
- masters:
- - 172.22.149.225 port 5353
- - zone: 1.8.0.0.2.4.d.0.2.4.d.0.2.4.d.f.ip6.arpa.
- type: slave
- file: "/var/cache/bind/db.fd42:d42:d42:81::_64"
- masters:
- - 172.22.149.225 port 5353
- # CRXN root
- - zone: crxn.
- type: slave
- file: "/var/cache/bind/db.crxn-root"
- masters:
- - 172.22.149.225 port 5353
- # dn42 root
- - zone: dn42.
- type: stub
- masters:
- - fd42:180:3de0:30::1 port 53
- - fd42:180:3de0:10:5054:ff:fe87:ea39 port 53
- - zone: 20.172.in-addr.arpa.
- type: stub
- masters:
- - fd42:180:3de0:30::1 port 53
- - fd42:180:3de0:10:5054:ff:fe87:ea39 port 53
- - zone: 21.172.in-addr.arpa.
- type: stub
- masters:
- - fd42:180:3de0:30::1 port 53
- - fd42:180:3de0:10:5054:ff:fe87:ea39 port 53
- - zone: 22.172.in-addr.arpa.
- type: stub
- masters:
- - fd42:180:3de0:30::1 port 53
- - fd42:180:3de0:10:5054:ff:fe87:ea39 port 53
- - zone: 23.172.in-addr.arpa.
- type: stub
- masters:
- - fd42:180:3de0:30::1 port 53
- - fd42:180:3de0:10:5054:ff:fe87:ea39 port 53
- - zone: 10.in-addr.arpa.
- type: stub
- masters:
- - fd42:180:3de0:30::1 port 53
- - fd42:180:3de0:10:5054:ff:fe87:ea39 port 53
- - zone: d.f.ip6.arpa.
- type: stub
- masters:
- - fd42:180:3de0:30::1 port 53
- - fd42:180:3de0:10:5054:ff:fe87:ea39 port 53
- # Freifunk zones
- - zone: ff3l.
- type: stub
- masters:
- - 10.119.0.5 port 53
- - 10.119.0.4 port 53
- - 10.119.0.10 port 53
- - fdc7:3c9d:b889:a272::5 port 53
- - fdc7:3c9d:b889:a272::4 port 53
- - fdc7:3c9d:b889:a272::a port 53
- - zone: fffd.
- type: stub
- masters:
- - 10.185.0.1 port 53
- - 10.185.0.2 port 53
- - 10.185.0.4 port 53
- - fd00:65a8:93a4::1 port 53
- - fd00:65a8:93a4::2 port 53
- - fd00:65a8:93a4::4 port 53
- - zone: fftr.
- type: stub
- masters:
- - 10.172.0.14 port 53
- - 10.172.0.16 port 53
- - 2001:bf7:fc0f::14 port 53
- - 2001:bf7:fc0f::16 port 53
- - zone: ffhl.
- type: stub
- masters:
- - fdef:ffc0:3dd7::801 port 53
- - fdef:ffc0:3dd7::a01 port 53
- - fdef:ffc0:3dd7::c01 port 53
- - fdef:ffc0:3dd7::e01 port 53
- - 10.130.0.252 port 53
- - 10.130.0.253 port 53
- - 10.130.0.254 port 53
- - 10.130.0.255 port 53
- # Hack root
- - zone: hack.
- type: slave
- file: "/var/cache/bind/db.hack-root"
- masters:
- - 172.22.149.225 port 5353
- - zone: 31.172.in-addr.arpa.
- type: slave
- file: "/var/cache/bind/db.172.31.0.0_16"
- masters:
- - 172.22.149.225 port 5353
- - zone: 100.10.in-addr.arpa.
- type: slave
- file: "/var/cache/bind/db.10.100.0.0_16"
- masters:
- - 172.22.149.225 port 5353
- - zone: 101.10.in-addr.arpa.
- type: slave
- file: "/var/cache/bind/db.10.101.0.0_16"
- masters:
- - 172.22.149.225 port 5353
- - zone: 102.10.in-addr.arpa.
- type: slave
- file: "/var/cache/bind/db.10.102.0.0_16"
- masters:
- - 172.22.149.225 port 5353
- - zone: 103.10.in-addr.arpa.
- type: slave
- file: "/var/cache/bind/db.10.103.0.0_16"
- masters:
- - 172.22.149.225 port 5353
-
- # NeoNetwork root
- - zone: neo.
- type: slave
- file: "/var/cache/bind/db.neo-root"
- masters:
- - 172.22.149.225 port 5353
- - zone: 127.10.in-addr.arpa.
- type: slave
- file: "/var/cache/bind/db.10.127.0.0_16"
- masters:
- - 172.22.149.225 port 5353
- - zone: 7.2.1.0.0.1.d.f.ip6.arpa.
- type: slave
- file: "/var/cache/bind/db.fd10.127_32"
- masters:
- - 172.22.149.225 port 5353
|