diff --git a/nl_NL.ISO8859-1/books/handbook/network-servers/chapter.sgml b/nl_NL.ISO8859-1/books/handbook/network-servers/chapter.sgml index 939701f163..4dcee8914e 100644 --- a/nl_NL.ISO8859-1/books/handbook/network-servers/chapter.sgml +++ b/nl_NL.ISO8859-1/books/handbook/network-servers/chapter.sgml @@ -4,7 +4,7 @@ $FreeBSD$ %SOURCE% en_US.ISO8859-1/books/handbook/network-servers/chapter.sgml - %SRCID% 1.128 + %SRCID% 1.129 --> @@ -3391,7 +3391,7 @@ dhcpd_ifaces="dc0" Redenen om een naamserver te draaien Naamservers bestaan in het algemeen in twee smaken: autoratieve - naamservers en caching naamservers. + naamservers en caching (ook bekend als resolving) naamservers. Er is een autoratieve naamserver nodig als: @@ -3564,8 +3564,9 @@ dhcpd_ifaces="dc0" // Internetverkeer veroorzaken. options { - // Relatief aan de chroot-map, indien aanwezig - directory "/etc/namedb"; + // Alle namen van bestanden en paden zijn relatief aan de chroot-map, + // indien aanwezig, en moeten volledig gekwalificeerd zijn. + directory "/etc/namedb/working"; pid-file "/var/run/named/pid" dump-file "/var/dump/named_dump.db" statistics-file "/var/stats/named.stats" @@ -3660,7 +3661,7 @@ options { // Het traditionele root-hint-mechanisme. Gebruik dit OF de // onderstaande slaafzones. -zone "." { type hint; file "named.root"; }; +zone "." { type hint; file "/etc/namedb/named.root"; }; /* Het slaaf maken van de volgende zones vanaf de root-naamservers heeft een aantal aanzienlijke voordelen: @@ -3677,11 +3678,16 @@ zone "." { type hint; file "named.root"; }; Verwijder het commentaar uit de onderstaande regels en commentarieer de bovenstaande hintzone om dit mechanisme te gebruiken. + + Zoals gedocumenteerd op http://dns.icann.org/services/axfr/ zijn deze + zones: "." (de root), ARPA, IN-ADDR.ARPA, IP6.ARPA en ROOT-SERVERS.NET + beschikbaar voor AXFR van deze servers op IPv4 en IPv6: + xfr.lax.dns.icann.org, xfr.cjr.dns.icann.org */ zone "." { type slave; - file "slave/root.slave"; + file "/etc/namedb/slave/root.slave"; masters { 192.5.5.241; // F.ROOT-SERVERS.NET. }; @@ -3690,16 +3696,7 @@ zone "." { zone "arpa" { type slave; - file "slave/arpa.slave"; - masters { - 192.5.5.241; // F.ROOT-SERVERS.NET. - }; - notify no; -}; - -zone "in-addr.arpa" { - type slave; - file "slave/in-addr.arpa.slave"; + file "/etc/namedb/slave/arpa.slave"; masters { 192.5.5.241; // F.ROOT-SERVERS.NET. }; @@ -3712,118 +3709,134 @@ zone "in-addr.arpa" { 1. Snellere lokale resolutie voor uw gebruikers 2. Er zal geen vals verkeer vanaf uw netwerk naar de roots worden verzonden */ -// RFC 1912 -zone "localhost" { type master; file "master/localhost-forward.db"; }; -zone "127.in-addr.arpa" { type master; file "master/localhost-reverse.db"; }; -zone "255.in-addr.arpa" { type master; file "master/empty.db"; }; +// RFCs 1912 en 5735 (en BCP32 voor localhost) +zone "localhost" { type master; file "/etc/namedb/master/localhost-forward.db"; }; +zone "127.in-addr.arpa" { type master; file "/etc/namedb/master/localhost-reverse.db"; }; +zone "255.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; }; // RFC 1912-stijl zone voor IPv6 localhost adres -zone "0.ip6.arpa" { type master; file "master/localhost-reverse.db"; }; +zone "0.ip6.arpa" { type master; file "/etc/namedb/master/localhost-reverse.db"; }; -// "Dit" netwerk (RFCs 1912 en 3330) -zone "0.in-addr.arpa" { type master; file "master/empty.db"; }; +// "Dit" netwerk (RFCs 1912 en 5735) +zone "0.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; }; -// Netwerken voor privaat gebruik (RFC 1918) -zone "10.in-addr.arpa" { type master; file "master/empty.db"; }; -zone "16.172.in-addr.arpa" { type master; file "master/empty.db"; }; -zone "17.172.in-addr.arpa" { type master; file "master/empty.db"; }; -zone "18.172.in-addr.arpa" { type master; file "master/empty.db"; }; -zone "19.172.in-addr.arpa" { type master; file "master/empty.db"; }; -zone "20.172.in-addr.arpa" { type master; file "master/empty.db"; }; -zone "21.172.in-addr.arpa" { type master; file "master/empty.db"; }; -zone "22.172.in-addr.arpa" { type master; file "master/empty.db"; }; -zone "23.172.in-addr.arpa" { type master; file "master/empty.db"; }; -zone "24.172.in-addr.arpa" { type master; file "master/empty.db"; }; -zone "25.172.in-addr.arpa" { type master; file "master/empty.db"; }; -zone "26.172.in-addr.arpa" { type master; file "master/empty.db"; }; -zone "27.172.in-addr.arpa" { type master; file "master/empty.db"; }; -zone "28.172.in-addr.arpa" { type master; file "master/empty.db"; }; -zone "29.172.in-addr.arpa" { type master; file "master/empty.db"; }; -zone "30.172.in-addr.arpa" { type master; file "master/empty.db"; }; -zone "31.172.in-addr.arpa" { type master; file "master/empty.db"; }; -zone "168.192.in-addr.arpa" { type master; file "master/empty.db"; }; +// Netwerken voor privaat gebruik (RFC 1918 en 5735) +zone "10.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; }; +zone "16.172.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; }; +zone "17.172.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; }; +zone "18.172.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; }; +zone "19.172.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; }; +zone "20.172.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; }; +zone "21.172.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; }; +zone "22.172.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; }; +zone "23.172.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; }; +zone "24.172.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; }; +zone "25.172.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; }; +zone "26.172.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; }; +zone "27.172.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; }; +zone "28.172.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; }; +zone "29.172.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; }; +zone "30.172.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; }; +zone "31.172.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; }; +zone "168.192.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; }; -// Lokale link/APIPA (RFCs 3330 en 3927) -zone "254.169.in-addr.arpa" { type master; file "master/empty.db"; }; +// Lokale link/APIPA (RFCs 3927 en 5735) +zone "254.169.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; }; -// TEST-NET voor documentatie (RFC 3330) -zone "2.0.192.in-addr.arpa" { type master; file "master/empty.db"; }; +// IETF protocol-toewijzingen (RFCs 5735 en 5736) +zone "0.0.192.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; }; -// Router benchmarken (RFC 3330) -zone "18.198.in-addr.arpa" { type master; file "master/empty.db"; } -zone "19.198.in-addr.arpa" { type master; file "master/empty.db"; } +// TEST-NET-[1-3] voor documentatie (RFCs 5735 en 5737) +zone "2.0.192.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; }; +zone "100.51.198.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; }; +zone "113.0.203.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; }; -// Gereserveerd door IANA - oude ruimte van klasse E -zone "240.in-addr.arpa" { type master; file "master/empty.db"; } -zone "241.in-addr.arpa" { type master; file "master/empty.db"; } -zone "242.in-addr.arpa" { type master; file "master/empty.db"; } -zone "243.in-addr.arpa" { type master; file "master/empty.db"; } -zone "244.in-addr.arpa" { type master; file "master/empty.db"; } -zone "245.in-addr.arpa" { type master; file "master/empty.db"; } -zone "246.in-addr.arpa" { type master; file "master/empty.db"; } -zone "247.in-addr.arpa" { type master; file "master/empty.db"; } -zone "248.in-addr.arpa" { type master; file "master/empty.db"; } -zone "249.in-addr.arpa" { type master; file "master/empty.db"; } -zone "250.in-addr.arpa" { type master; file "master/empty.db"; } -zone "251.in-addr.arpa" { type master; file "master/empty.db"; } -zone "252.in-addr.arpa" { type master; file "master/empty.db"; } -zone "253.in-addr.arpa" { type master; file "master/empty.db"; } -zone "254.in-addr.arpa" { type master; file "master/empty.db"; } +// IPv6-bereik voor documentatie (RFC 3849) +zone "8.b.d.0.1.0.0.2.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; }; + +// Domeinnamen voor documentatie en testen (BCP 32) +zone "test" { type master; file "/etc/namedb/master/empty.db"; }; +zone "example" { type master; file "/etc/namedb/master/empty.db"; }; +zone "invalid" { type master; file "/etc/namedb/master/empty.db"; }; +zone "example.com" { type master; file "/etc/namedb/master/empty.db"; }; +zone "example.net" { type master; file "/etc/namedb/master/empty.db"; }; +zone "example.org" { type master; file "/etc/namedb/master/empty.db"; }; + +// Router benchmarken (RFC 2544 en 5735) +zone "18.198.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "19.198.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; } + +// Gereserveerd door IANA - oude ruimte van klasse E (RFC 5735) +zone "240.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "241.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "242.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "243.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "244.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "245.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "246.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "247.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "248.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "249.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "250.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "251.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "252.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "253.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "254.in-addr.arpa" { type master; file "/etc/namedb/master/empty.db"; } // Niet-toegewezen IPv6-adressen (RFC 4291) -zone "1.ip6.arpa" { type master; file "master/empty.db"; } -zone "2.ip6.arpa" { type master; file "master/empty.db"; } -zone "3.ip6.arpa" { type master; file "master/empty.db"; } -zone "4.ip6.arpa" { type master; file "master/empty.db"; } -zone "5.ip6.arpa" { type master; file "master/empty.db"; } -zone "6.ip6.arpa" { type master; file "master/empty.db"; } -zone "7.ip6.arpa" { type master; file "master/empty.db"; } -zone "8.ip6.arpa" { type master; file "master/empty.db"; } -zone "9.ip6.arpa" { type master; file "master/empty.db"; } -zone "a.ip6.arpa" { type master; file "master/empty.db"; } -zone "b.ip6.arpa" { type master; file "master/empty.db"; } -zone "c.ip6.arpa" { type master; file "master/empty.db"; } -zone "d.ip6.arpa" { type master; file "master/empty.db"; } -zone "e.ip6.arpa" { type master; file "master/empty.db"; } -zone "0.f.ip6.arpa" { type master; file "master/empty.db"; } -zone "1.f.ip6.arpa" { type master; file "master/empty.db"; } -zone "2.f.ip6.arpa" { type master; file "master/empty.db"; } -zone "3.f.ip6.arpa" { type master; file "master/empty.db"; } -zone "4.f.ip6.arpa" { type master; file "master/empty.db"; } -zone "5.f.ip6.arpa" { type master; file "master/empty.db"; } -zone "6.f.ip6.arpa" { type master; file "master/empty.db"; } -zone "7.f.ip6.arpa" { type master; file "master/empty.db"; } -zone "8.f.ip6.arpa" { type master; file "master/empty.db"; } -zone "9.f.ip6.arpa" { type master; file "master/empty.db"; } -zone "a.f.ip6.arpa" { type master; file "master/empty.db"; } -zone "b.f.ip6.arpa" { type master; file "master/empty.db"; } -zone "0.e.f.ip6.arpa" { type master; file "master/empty.db"; } -zone "1.e.f.ip6.arpa" { type master; file "master/empty.db"; } -zone "2.e.f.ip6.arpa" { type master; file "master/empty.db"; } -zone "3.e.f.ip6.arpa" { type master; file "master/empty.db"; } -zone "4.e.f.ip6.arpa" { type master; file "master/empty.db"; } -zone "5.e.f.ip6.arpa" { type master; file "master/empty.db"; } -zone "6.e.f.ip6.arpa" { type master; file "master/empty.db"; } -zone "7.e.f.ip6.arpa" { type master; file "master/empty.db"; } +zone "1.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "2.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "3.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "4.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "5.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "6.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "7.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "8.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "9.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "a.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "b.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "c.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "d.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "e.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "0.f.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "1.f.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "2.f.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "3.f.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "4.f.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "5.f.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "6.f.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "7.f.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "8.f.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "9.f.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "a.f.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "b.f.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "0.e.f.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "1.e.f.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "2.e.f.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "3.e.f.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "4.e.f.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "5.e.f.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "6.e.f.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "7.e.f.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } // IPv6 ULA (RFC 4193) -zone "c.f.ip6.arpa" { type master; file "master/empty.db"; } -zone "d.f.ip6.arpa" { type master; file "master/empty.db"; } +zone "c.f.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "d.f.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } // IPv6 lokale link (RFC 4291) -zone "8.e.f.ip6.arpa" { type master; file "master/empty.db"; } -zone "9.e.f.ip6.arpa" { type master; file "master/empty.db"; } -zone "a.e.f.ip6.arpa" { type master; file "master/empty.db"; } -zone "b.e.f.ip6.arpa" { type master; file "master/empty.db"; } +zone "8.e.f.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "9.e.f.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "a.e.f.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "b.e.f.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } // IPv6 verouderde site-lokale adressen (RFC 3879) -zone "c.e.f.ip6.arpa" { type master; file "master/empty.db"; } -zone "d.e.f.ip6.arpa" { type master; file "master/empty.db"; } -zone "e.e.f.ip6.arpa" { type master; file "master/empty.db"; } -zone "f.e.f.ip6.arpa" { type master; file "master/empty.db"; } +zone "c.e.f.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "d.e.f.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "e.e.f.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } +zone "f.e.f.ip6.arpa" { type master; file "/etc/namedb/master/empty.db"; } // IP6.INT is verouderd (RFC 4159) -zone "ip6.int" { type master; file "master/empty.db"; } +zone "ip6.int" { type master; file "/etc/namedb/master/empty.db"; } // NB: De IP-adressen hieronder zijn bedoeld als voorbeeld en dienen // niet gebruikt te worden! @@ -3855,14 +3868,14 @@ zone "example.org" { allow-update { key "exampleorgkey"; }; - file "dynamic/example.org"; + file "/etc/namedb/dynamic/example.org"; }; */ /* Voorbeeld van een omgekeerde slaafzone zone "1.168.192.in-addr.arpa" { type slave; - file "slave/1.168.192.in-addr.arpa"; + file "/etc/namedb/slave/1.168.192.in-addr.arpa"; masters { 192.168.1.1; }; @@ -4221,13 +4234,13 @@ mail IN A 192.168.1.5 BIND 5e Editie RFC1034 - + url="http://tools.ietf.org/rfc/html/rfc1034">RFC1034 - Domeinnamen - Concepten en Faciliteiten RFC1035 - + url="http://tools.ietf.org/rfc/html/rfc1035">RFC1035 - Domeinnamen - Implementatie en Specificatie