Tuesday, March 29, 2011

rndc-OpenBSD 4.8

Generate configuration

#rndc-confgen
# Start of rndc.conf
key "rndc-key" {
        algorithm hmac-md5;
        secret "OOHUU7Jfc1lYydmaF+y+NA==";
};

options {
        default-key "rndc-key";
        default-server 127.0.0.1;
        default-port 953;
};
# End of rndc.conf

# Use with the following in named.conf, adjusting the allow list as needed:
# key "rndc-key" {
#       algorithm hmac-md5;
#       secret "OOHUU7Jfc1lYydmaF+y+NA==";
# };
#
# controls {
#       inet 127.0.0.1 port 953
#               allow { 127.0.0.1; } keys { "rndc-key"; };
# };
# End of named.conf

Buat file rndc.conf yg disimpan di /etc
#nano -w /etc/rndc.conf
key "rndc-key" {
        algorithm hmac-md5;
        secret "OOHUU7Jfc1lYydmaF+y+NA==";
};

options {
        default-key "rndc-key";
        default-server 127.0.0.1;
        default-port 953;
};

Sisipkan hasil confgen ke /var/named/etc/named.conf
#nano -w /var/named/etc/named.conf
 key "rndc-key" {
       algorithm hmac-md5;
       secret "OOHUU7Jfc1lYydmaF+y+NA==";
  };

  controls {
       inet 127.0.0.1 port 953
               allow { 127.0.0.1; } keys { "rndc-key"; };
  };

Coba hasilnya ...
#rndc reload
server reload successful

No comments: