1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586 |
- ; full filesystem path to 1984tech directory
- BASE_PATH="/home/nightfly/dev/1984tech/"
- ; HTTP URL or full filesystem path to list of blocked domains
- DOMAINS_LIST="http://ubilling.net.ua/1984tech/domains.txt"
- ; bind zones config path which must be included into named.conf.
- ; If option empty - zones file will not be generated.
- DNS_ZONES="named/1984tech.conf"
- ; unbound zones config path which must be included into unbound.conf.
- ; If option empty - zones file will not be generated.
- UNBOUND_DNS_ZONES="unbound/1984tech.conf"
- ; unbound default host IP to redirect blocked domains
- UNBOUND_REDIRECT_HOST="127.0.0.1"
- ; static domains redirect zone file
- DNS_REDIRECTS="/etc/namedb/master/1984tech.db"
- ; RPZ BIND9 zone file
- RPZ_ZONE_FILE="/etc/bind/rpz/db.rpz.local"
- ; RPZ BIND9 zone name
- RPZ_ZONE_NAME="rpz.local"
- ; ACLs for allow-query bind option
- DNS_ACL="any;"
- ; DNS servers which will be used for domains IP resolving. Coma separated.
- DNS_RESOLVER_SERVERS="8.8.8.8, 8.8.4.4"
- ; ipfw command path
- IPFW_PATH="/sbin/ipfw"
- ; ipfw table number to store IPs
- IPFW_TABLE="42"
- ; ipfw path variable name for scripts generation
- IPFW_MACRO="FwCMD"
- ; ipfw script generation path
- IPFW_SCRIPT_PATH="/tmp/blocks_update.sh"
- ; Mikrotik blocking address-list name
- MT_LISTNAME="block"
- ; Mikrotik address list update script
- MT_SCRIPT_PATH="/tmp/mt_updatescript";
- ; Mikrotik static DNS default IP to point the domains to
- MT_DNSSTATIC_IP="127.0.0.1"
- ; Mikrotik static DNS default TTL for added DNS records
- MT_DNSSTATIC_TTL="00:30:00"
- ; Mikrotik static DNS script path
- MT_DNSSTATIC_SCRIPT_PATH="/tmp/mt_dnsstatic_script";
- ; Mikrotik domains list file chunks path. NO trailing slash is needed.
- MT_DNSSTATIC_CHUNKS_PATH="/tmp"
- ; PDNSD script path
- PDNSD_SCRIPT_PATH="/tmp/pdnsd_script";
- ; ipset binary path
- IPSET_PATH="/sbin/ipset"
- ; ipset blacklist name. Must be created earlier.
- IPSET_LISTNAME="blacklist"
- ; iptables binary path
- IPTABLES_PATH="/sbin/iptables"
- ; iptables rules chain
- IPTABLES_CHAIN="FORWARD"
- ; Squid directory path
- SQUID_PATH="squid"
- ;JunOS prefix list name
- JUN_LISTNAME="blacklist-ip"
- ;Cisco access-list number
- CIS_LISTNUM="101"
|