Commit f9cdef0b authored by Mark Andrews's avatar Mark Andrews

regen

parent 362a27e8
......@@ -19,7 +19,7 @@
named-checkzone \- zone file validity checking tool
.SH SYNOPSIS
.sp
\fBnamed-checkzone\fR [ \fB-d\fR ] [ \fB-j\fR ] [ \fB-q\fR ] [ \fB-v\fR ] [ \fB-c \fIclass\fB\fR ] [ \fB-n \fImode\fB\fR ] [ \fB-o \fIfilename\fB\fR ] [ \fB-t \fIdirectory\fB\fR ] [ \fB-w \fIdirectory\fB\fR ] [ \fB-D\fR ] \fBzonename\fR \fBfilename\fR
\fBnamed-checkzone\fR [ \fB-d\fR ] [ \fB-j\fR ] [ \fB-q\fR ] [ \fB-v\fR ] [ \fB-c \fIclass\fB\fR ] [ \fB-k \fImode\fB\fR ] [ \fB-n \fImode\fB\fR ] [ \fB-o \fIfilename\fB\fR ] [ \fB-t \fIdirectory\fB\fR ] [ \fB-w \fIdirectory\fB\fR ] [ \fB-D\fR ] \fBzonename\fR \fBfilename\fR
.SH "DESCRIPTION"
.PP
\fBnamed-checkzone\fR checks the syntax and integrity of
......@@ -45,6 +45,12 @@ When loading the zone file read the journal if it exists.
\fB-c \fIclass\fB\fR
Specify the class of the zone. If not specified "IN" is assumed.
.TP
\fB-k \fImode\fB\fR
Perform \fB"check-name"\fR checks with the specified failure mode.
Possible modes are \fB"fail"\fR,
\fB"warn"\fR (default) and
\fB"ignore"\fR.
.TP
\fB-n \fImode\fB\fR
Specify whether NS records should be checked to see if they
are addresses. Possible modes are \fB"fail"\fR,
......
......@@ -81,6 +81,14 @@ CLASS="REPLACEABLE"
></TT
>] [<TT
CLASS="OPTION"
>-k <TT
CLASS="REPLACEABLE"
><I
>mode</I
></TT
></TT
>] [<TT
CLASS="OPTION"
>-n <TT
CLASS="REPLACEABLE"
><I
......@@ -119,7 +127,7 @@ CLASS="OPTION"
><DIV
CLASS="REFSECT1"
><A
NAME="AEN43"
NAME="AEN46"
></A
><H2
>DESCRIPTION</H2
......@@ -143,7 +151,7 @@ CLASS="COMMAND"
><DIV
CLASS="REFSECT1"
><A
NAME="AEN49"
NAME="AEN52"
></A
><H2
>OPTIONS</H2
......@@ -197,6 +205,33 @@ CLASS="REPLACEABLE"
</P
></DD
><DT
>-k <TT
CLASS="REPLACEABLE"
><I
>mode</I
></TT
></DT
><DD
><P
> Perform <B
CLASS="COMMAND"
>"check-name"</B
> checks with the specified failure mode.
Possible modes are <B
CLASS="COMMAND"
>"fail"</B
>,
<B
CLASS="COMMAND"
>"warn"</B
> (default) and
<B
CLASS="COMMAND"
>"ignore"</B
>.
</P
></DD
><DT
>-n <TT
CLASS="REPLACEABLE"
><I
......@@ -300,7 +335,7 @@ CLASS="FILENAME"
><DIV
CLASS="REFSECT1"
><A
NAME="AEN113"
NAME="AEN125"
></A
><H2
>RETURN VALUES</H2
......@@ -315,7 +350,7 @@ CLASS="COMMAND"
><DIV
CLASS="REFSECT1"
><A
NAME="AEN117"
NAME="AEN129"
></A
><H2
>SEE ALSO</H2
......@@ -340,7 +375,7 @@ CLASS="CITETITLE"
><DIV
CLASS="REFSECT1"
><A
NAME="AEN125"
NAME="AEN137"
></A
><H2
>AUTHOR</H2
......
......@@ -26,7 +26,7 @@ dnssec-signzone \- DNSSEC zone signing tool
and RRSIG records and produces a signed version of the zone. If there
is a \fIsignedkey\fR file from the zone's parent,
the parent's signatures will be incorporated into the generated
signed zone file. The security status of delegations from the the
signed zone file. The security status of delegations from the
signed zone (that is, whether the child zones are secure or not) is
determined by the presence or absence of a
\fIsignedkey\fR file for each child zone.
......
......@@ -94,7 +94,7 @@ HREF="Bv9ARM.ch06.html#Configuration_File_Grammar"
></DT
><DT
>6.3. <A
HREF="Bv9ARM.ch06.html#AEN3969"
HREF="Bv9ARM.ch06.html#AEN3986"
>Zone File</A
></DT
></DL
......@@ -1191,6 +1191,32 @@ VALIGN="MIDDLE"
><P
><B
CLASS="command"
>lwres</B
></P
></TD
><TD
WIDTH="363"
ALIGN="LEFT"
VALIGN="MIDDLE"
><P
>configures <B
CLASS="command"
>named</B
> to
also act as a light weight resolver daemon (<B
CLASS="command"
>lwresd</B
>).</P
></TD
></TR
><TR
><TD
WIDTH="128"
ALIGN="LEFT"
VALIGN="MIDDLE"
><P
><B
CLASS="command"
>masters</B
></P
></TD
......@@ -1320,7 +1346,7 @@ CLASS="sect2"
><H2
CLASS="sect2"
><A
NAME="AEN1409"
NAME="AEN1417"
>6.2.1. <B
CLASS="command"
>acl</B
......@@ -1367,7 +1393,7 @@ CLASS="command"
><DIV
CLASS="informaltable"
><A
NAME="AEN1422"
NAME="AEN1430"
></A
><P
></P
......@@ -1476,7 +1502,7 @@ CLASS="sect2"
><H2
CLASS="sect2"
><A
NAME="AEN1453"
NAME="AEN1461"
>6.2.3. <B
CLASS="command"
>controls</B
......@@ -1798,7 +1824,7 @@ CLASS="sect2"
><H2
CLASS="sect2"
><A
NAME="AEN1532"
NAME="AEN1540"
>6.2.5. <B
CLASS="command"
>include</B
......@@ -1818,7 +1844,7 @@ CLASS="sect2"
><H2
CLASS="sect2"
><A
NAME="AEN1537"
NAME="AEN1545"
>6.2.6. <B
CLASS="command"
>include</B
......@@ -1847,7 +1873,7 @@ CLASS="sect2"
><H2
CLASS="sect2"
><A
NAME="AEN1544"
NAME="AEN1552"
>6.2.7. <B
CLASS="command"
>key</B
......@@ -1881,7 +1907,7 @@ CLASS="sect2"
><H2
CLASS="sect2"
><A
NAME="AEN1551"
NAME="AEN1559"
>6.2.8. <B
CLASS="command"
>key</B
......@@ -1969,7 +1995,7 @@ CLASS="sect2"
><H2
CLASS="sect2"
><A
NAME="AEN1571"
NAME="AEN1579"
>6.2.9. <B
CLASS="command"
>logging</B
......@@ -2129,7 +2155,7 @@ CLASS="sect2"
><H2
CLASS="sect2"
><A
NAME="AEN1611"
NAME="AEN1619"
>6.2.10. <B
CLASS="command"
>logging</B
......@@ -2192,7 +2218,7 @@ CLASS="sect3"
><H3
CLASS="sect3"
><A
NAME="AEN1627"
NAME="AEN1635"
>6.2.10.1. The <B
CLASS="command"
>channel</B
......@@ -2706,7 +2732,7 @@ CLASS="acronym"
><DIV
CLASS="informaltable"
><A
NAME="AEN1751"
NAME="AEN1759"
></A
><P
></P
......@@ -3105,7 +3131,7 @@ been forced to NXDOMAIN as the result of a delegation-only zone or
a <B
CLASS="command"
>delegation-only</B
> in a hint or stub zone declartation.
> in a hint or stub zone declaration.
</P
></TD
></TR
......@@ -3121,7 +3147,7 @@ CLASS="sect2"
><H2
CLASS="sect2"
><A
NAME="AEN1875"
NAME="AEN1883"
>6.2.11. <B
CLASS="command"
>lwres</B
......@@ -3218,7 +3244,7 @@ CLASS="sect2"
><H2
CLASS="sect2"
><A
NAME="AEN1899"
NAME="AEN1907"
>6.2.12. <B
CLASS="command"
>lwres</B
......@@ -3292,7 +3318,7 @@ CLASS="sect2"
><H2
CLASS="sect2"
><A
NAME="AEN1918"
NAME="AEN1926"
>6.2.13. <B
CLASS="command"
>masters</B
......@@ -3353,7 +3379,7 @@ CLASS="sect2"
><H2
CLASS="sect2"
><A
NAME="AEN1933"
NAME="AEN1941"
>6.2.14. <B
CLASS="command"
>masters</B
......@@ -3371,7 +3397,7 @@ CLASS="sect2"
><H2
CLASS="sect2"
><A
NAME="AEN1938"
NAME="AEN1946"
>6.2.15. <B
CLASS="command"
>options</B
......@@ -3653,6 +3679,15 @@ CLASS="replaceable"
>]
[<SPAN
CLASS="optional"
> enable-dnssec <TT
CLASS="replaceable"
><I
>yes_or_no</I
></TT
>; </SPAN
>]
[<SPAN
CLASS="optional"
> forward ( <TT
CLASS="replaceable"
><I
......@@ -4871,7 +4906,7 @@ CLASS="command"
></DT
><DD
><P
>&#13;Turn on enforcment of delegation-only in TLDs and root zones with an optional
>&#13;Turn on enforcement of delegation-only in TLDs and root zones with an optional
exclude list.
</P
><P
......@@ -5068,7 +5103,7 @@ processing.</P
><DIV
CLASS="informaltable"
><A
NAME="AEN2367"
NAME="AEN2377"
></A
><P
></P
......@@ -5947,6 +5982,28 @@ CLASS="userinput"
>.
</P
></DD
><DT
><B
CLASS="command"
>enable-dnssec</B
></DT
><DD
><P
>&#13;Enable DNSSEC support in named. Unless set to <TT
CLASS="userinput"
><B
>yes</B
></TT
>
named behaves as if it does not support DNSSEC.
The default is <TT
CLASS="userinput"
><B
>no</B
></TT
>.
</P
></DD
></DL
></DIV
></DIV
......@@ -5955,7 +6012,7 @@ CLASS="sect3"
><H3
CLASS="sect3"
><A
NAME="AEN2632"
NAME="AEN2649"
>6.2.16.2. Forwarding</A
></H3
><P
......@@ -6023,7 +6080,7 @@ CLASS="sect3"
><H3
CLASS="sect3"
><A
NAME="AEN2651"
NAME="AEN2668"
>6.2.16.3. 6 to 4 Servers</A
></H3
><P
......@@ -6245,7 +6302,7 @@ CLASS="sect3"
><H3
CLASS="sect3"
><A
NAME="AEN2718"
NAME="AEN2735"
>6.2.16.5. Interfaces</A
></H3
><P
......@@ -6324,7 +6381,7 @@ CLASS="sect3"
><H3
CLASS="sect3"
><A
NAME="AEN2739"
NAME="AEN2756"
>6.2.16.6. Query Address</A
></H3
><P
......@@ -6364,7 +6421,7 @@ and <B
CLASS="command"
>avoid-v6-udp-ports</B
> can be used to prevent named
from selecting certian ports. The defaults are</P
from selecting certain ports. The defaults are</P
><PRE
CLASS="programlisting"
>query-source address * port *;
......@@ -6815,7 +6872,7 @@ CLASS="sect3"
><H3
CLASS="sect3"
><A
NAME="AEN2901"
NAME="AEN2918"
>6.2.16.8. Bad UDP Port Lists</A
></H3
><P
......@@ -6827,10 +6884,11 @@ CLASS="command"
>avoid-v6-udp-ports</B
>
specify a list of IPv4 and IPv6 UDP ports that will not be used as system
assigned source ports for UDP sockets. These lists are expected to be
used to prevent named using "well known" ports in the system assigned range
that have become unusable due to wide spread use of acls containing these
ports.
assigned source ports for UDP sockets. These lists prevent named
from choosing as its random source port a port that is blocked by
your firewall. If a query went out with such a source port, the
answer would not get by the firewall and the name server would have
to query again.
</P
></DIV
><DIV
......@@ -6838,7 +6896,7 @@ CLASS="sect3"
><H3
CLASS="sect3"
><A
NAME="AEN2906"
NAME="AEN2923"
>6.2.16.9. Operating System Resource Limits</A
></H3
><P
......@@ -6958,7 +7016,7 @@ CLASS="sect3"
><H3
CLASS="sect3"
><A
NAME="AEN2943"
NAME="AEN2960"
>6.2.16.10. Server Resource Limits</A
></H3
><P
......@@ -6997,7 +7055,7 @@ CLASS="command"
(<A
HREF="Bv9ARM.ch04.html#journal"
>Section 4.2.1</A
>). When the journal file approches
>). When the journal file approaches
the specified size, some of the oldest transactions in the journal
will be automatically removed. The default is
<TT
......@@ -7081,7 +7139,7 @@ CLASS="sect3"
><H3
CLASS="sect3"
><A
NAME="AEN2984"
NAME="AEN3001"
>6.2.16.11. Periodic Task Intervals</A
></H3
><P
......@@ -7452,7 +7510,7 @@ CLASS="command"
><DIV
CLASS="informaltable"
><A
NAME="AEN3072"
NAME="AEN3089"
></A
><P
></P
......@@ -7934,7 +7992,7 @@ number is identical to the number in the beginning line.</P
><DIV
CLASS="informaltable"
><A
NAME="AEN3216"
NAME="AEN3233"
></A
><P
></P
......@@ -8468,7 +8526,7 @@ CLASS="sect2"
><H2
CLASS="sect2"
><A
NAME="AEN3355"
NAME="AEN3372"
>6.2.19. <B
CLASS="command"
>trusted-keys</B
......@@ -8543,7 +8601,7 @@ CLASS="sect2"
><H2
CLASS="sect2"
><A
NAME="AEN3371"
NAME="AEN3388"
>6.2.20. <B
CLASS="command"
>trusted-keys</B
......@@ -8645,7 +8703,7 @@ CLASS="sect2"
><H2
CLASS="sect2"
><A
NAME="AEN3393"
NAME="AEN3410"
>6.2.22. <B
CLASS="command"
>view</B
......@@ -9399,7 +9457,7 @@ CLASS="sect2"
><H2
CLASS="sect2"
><A
NAME="AEN3567"
NAME="AEN3584"
>6.2.24. <B
CLASS="command"
>zone</B
......@@ -9410,13 +9468,13 @@ CLASS="sect3"
><H3
CLASS="sect3"
><A
NAME="AEN3570"
NAME="AEN3587"
>6.2.24.1. Zone Types</A
></H3
><DIV
CLASS="informaltable"
><A
NAME="AEN3572"
NAME="AEN3589"
></A
><P
></P
......@@ -9617,7 +9675,7 @@ CLASS="command"
>forward</B
> option (that is, "forward first
to", then "forward only", or vice versa, but want to use the same
servers as set globally) you need to respecify the global forwarders.</P
servers as set globally) you need to re-specify the global forwarders.</P
>
</TD
></TR
......@@ -9663,7 +9721,7 @@ VALIGN="MIDDLE"
><P
>This is used to enforce the delegation only
status of infrastructure zones (e.g. COM, NET, ORG). Any answer that
is received without a explicit or implict delegation in the authority
is received without a explicit or implicit delegation in the authority
section will be treated as NXDOMAIN. This does not apply to the zone
apex. This SHOULD NOT be applied to leaf zones.</P
>
......@@ -9686,7 +9744,7 @@ CLASS="sect3"
><H3
CLASS="sect3"
><A
NAME="AEN3635"
NAME="AEN3652"
>6.2.24.2. Class</A
></H3
><P
......@@ -9724,7 +9782,7 @@ CLASS="sect3"
><H3
CLASS="sect3"
><A
NAME="AEN3645"
NAME="AEN3662"
>6.2.24.3. Zone Options</A
></H3
><P
......@@ -10482,7 +10540,7 @@ CLASS="varname"
><DIV
CLASS="informaltable"
><A
NAME="AEN3928"
NAME="AEN3945"
></A
><P
></P
......@@ -10649,7 +10707,7 @@ CLASS="sect1"
><H1
CLASS="sect1"
><A
NAME="AEN3969"
NAME="AEN3986"
>6.3. Zone File</A
></H1
><DIV
......@@ -10670,7 +10728,7 @@ CLASS="sect3"
><H3
CLASS="sect3"
><A
NAME="AEN3974"
NAME="AEN3991"
>6.3.1.1. Resource Records</A
></H3
><P
......@@ -10693,7 +10751,7 @@ HREF="Bv9ARM.ch06.html#rrset_ordering"
><DIV
CLASS="informaltable"
><A
NAME="AEN3980"
NAME="AEN3997"
></A
><P
></P
......@@ -10804,7 +10862,7 @@ CLASS="emphasis"
><DIV
CLASS="informaltable"
><A
NAME="AEN4012"
NAME="AEN4029"
></A
><P
></P
......@@ -11329,7 +11387,7 @@ are currently valid in the DNS:</P
><DIV
CLASS="informaltable"
><A
NAME="AEN4164"
NAME="AEN4181"
></A
><P
></P
......@@ -11431,7 +11489,7 @@ CLASS="sect3"
><H3
CLASS="sect3"
><A
NAME="AEN4188"
NAME="AEN4205"
>6.3.1.2. Textual expression of RRs</A
></H3
><P
......@@ -11461,7 +11519,7 @@ knowledge of the typical representation for the data.</P
><DIV
CLASS="informaltable"
><A
NAME="AEN4195"
NAME="AEN4212"
></A
><P
></P
......@@ -11670,7 +11728,7 @@ domain names.</P
><DIV
CLASS="informaltable"
><A
NAME="AEN4261"
NAME="AEN4278"
></A
><P
></P
......@@ -11761,7 +11819,7 @@ CLASS="sect2"
><H2
CLASS="sect2"
><A
NAME="AEN4289"
NAME="AEN4306"
>6.3.2. Discussion of MX Records</A
></H2
><P
......@@ -11797,7 +11855,7 @@ pointed to by the CNAME.</P
><DIV
CLASS="informaltable"
><A
NAME="AEN4295"
NAME="AEN4312"
></A