diff --git a/named.conf.local b/named.conf.local index 50e88f8..5fe37aa 100644 --- a/named.conf.local +++ b/named.conf.local @@ -9,8 +9,15 @@ // ACL acl internals { - 127.0.0.1; - 192.168.1.0/24; + 127.0.0.1; 192.168.1.0/24; +}; + +acl notifys { + 51.79.32.63; 167.114.154.31; 37.187.251.136; 37.187.168.234; +} + +acl transfers { + 127.0.0.1; key tilde_msT; 51.79.32.63; 37.187.251.136; 37.187.168.234; }; @@ -22,6 +29,12 @@ include "/etc/bind/letsencrypt_U.key"; // SERVER server 51.79.32.63 { keys { tilde_msT; }; }; // ns1.tildeverse.net //server 167.114.154.31 //"ownercheck"-record // ns2.tildeverse.net + +//domaindiscount24 +//server 37.187.251.136 +//server 37.187.168.234 + +// TILDE INTRA-NET //server 149.56.184.112 // ns1.tildenic.org //server 213.239.234.117 // ns2.tildenic.org @@ -34,8 +47,8 @@ zone "envs.net" { //auto-dnssec maintain; //inline-signing yes; notify explicit; - also-notify { 51.79.32.63; 167.114.154.31; }; - allow-transfer { 127.0.0.1; 167.114.154.31; key tilde_msT; }; + also-notify { notifys; }; + allow-transfer { transfers; }; update-policy { grant letsencrypt_U name _acme-challenge.envs.net. txt; }; }; @@ -45,11 +58,23 @@ zone "envs.sh" { //auto-dnssec maintain; //inline-signing yes; notify explicit; - also-notify { 51.79.32.63; 167.114.154.31; }; - allow-transfer { 127.0.0.1; 167.114.154.31; key tilde_msT; }; + also-notify { notifys; }; + allow-transfer { transfers; }; update-policy { grant letsencrypt_U name _acme-challenge.envs.sh. txt; }; }; +zone "envs.o" { + type master; + file "/etc/bind/zones/db.envs.o"; + //auto-dnssec maintain; + //inline-signing yes; + notify explicit; + also-notify { notifys; }; + allow-transfer { transfers; }; + update-policy { grant letsencrypt_U name _acme-challenge.envs.o. txt; }; +}; + +// TILDE INTRA-NET zone "envs.tilde" { type master; file "/etc/bind/zones/db.envs.tilde"; diff --git a/slave_tilde b/slave_tilde index 6394729..0f2eafb 100644 --- a/slave_tilde +++ b/slave_tilde @@ -21,30 +21,12 @@ zone "fuckup.club" { }; -zone "nand.pub" { - type slave; - file "/etc/bind/slaves/db.nand.pub"; - masters { 51.79.32.63; }; -}; - zone "nand.sh" { type slave; file "/etc/bind/slaves/db.nand.sh"; masters { 51.79.32.63; }; }; -zone "nand.team" { - type slave; - file "/etc/bind/slaves/db.nand.team"; - masters { 51.79.32.63; }; -}; - -zone "nand.zone" { - type slave; - file "/etc/bind/slaves/db.nand.zone"; - masters { 51.79.32.63; }; -}; - zone "tild3.org" { type slave; @@ -52,12 +34,6 @@ zone "tild3.org" { masters { 51.79.32.63; }; }; -zone "tild3.club" { - type slave; - file "/etc/bind/slaves/db.tild3.club"; - masters { 51.79.32.63; }; -}; - zone "tilde.chat" { type slave; @@ -137,12 +113,6 @@ zone "tilde.wiki" { masters { 51.79.32.63; }; }; -zone "tilde.wtf" { - type slave; - file "/etc/bind/slaves/db.tilde.wtf"; - masters { 51.79.32.63; }; -}; - zone "tilde.zone" { type slave; file "/etc/bind/slaves/db.tilde.zone"; diff --git a/zones/db.envs.net b/zones/db.envs.net index 3e79403..4d02b3e 100644 --- a/zones/db.envs.net +++ b/zones/db.envs.net @@ -1,13 +1,14 @@ $TTL 28800 ; 8 hours envs.net. IN SOA envs.net. root.envs.net. ( - 2019081811 ; serial + 2019100101 ; serial 10800 ; refresh (3 hours) 3600 ; retry (1 hour) 604800 ; expire (1 week) 28800 ) ; minimum (8 hours) NS envs.net. NS ns1.tildeverse.net. - NS ns2.tildeverse.net. + NS dns1.nsdns.info. + NS dns2.nsdns.info. A 89.163.145.170 MX 10 mail.envs.net. TXT "v=spf1 a mx ip4:5.199.136.29 ip4:5.199.130.141 ~all" diff --git a/zones/db.envs.o b/zones/db.envs.o new file mode 100644 index 0000000..ae3f1c9 --- /dev/null +++ b/zones/db.envs.o @@ -0,0 +1,24 @@ +$TTL 28800 ; 8 hours +envs.o. IN SOA envs.net. root.envs.net. ( + 2019100101 ; Serial + 10800 ; Refresh + 3600 ; Retry + 604800 ; Expire + 28800 ) ; Negative Cache TTL + NS envs.net. + NS ns1.tildeverse.net. + NS dns1.nsdns.info. + NS dns2.nsdns.info. + A 89.163.145.170 + CAA 128 issue "letsencrypt.org" + SSHFP 1 1 2a3dbba3587d58c0e5ca18538fb740d4d46a147f + SSHFP 1 2 edd078ef499fce5ca186daa68e75dc888c69fa358b002898282dc413f6749458 + SSHFP 3 1 a6af5e859aab4c5aefef799e0b5f4150bfca653a + SSHFP 3 2 5340ba48a19751f96f7b5ea6da5e0a58174b2c0456e8ef13886599b17014da2e + SSHFP 4 1 26c107e80a42c37290cf17e56571c5d0714da4ba + SSHFP 4 2 57e9974ec449fa37c9331c4f943ff6f1da56a2eba7b375aeab0a69bfaca4542f +$ORIGIN envs.o. +* A 89.163.145.170 +ownercheck TXT "4b87cebc" +$TTL 120 ; 2 minutes +_acme-challenge TXT "" diff --git a/zones/db.envs.sh b/zones/db.envs.sh index 920da5a..578ba63 100644 --- a/zones/db.envs.sh +++ b/zones/db.envs.sh @@ -1,13 +1,14 @@ $TTL 28800 ; 8 hours envs.sh. IN SOA envs.net. root.envs.net. ( - 2019081810 ; Serial + 2019100101 ; Serial 10800 ; Refresh 3600 ; Retry 604800 ; Expire 28800 ) ; Negative Cache TTL NS envs.net. NS ns1.tildeverse.net. - NS ns2.tildeverse.net. + NS dns1.nsdns.info. + NS dns2.nsdns.info. A 89.163.145.170 CAA 128 issue "letsencrypt.org" SSHFP 1 1 2a3dbba3587d58c0e5ca18538fb740d4d46a147f