On Wed 23/Nov/2022 16:54:56 +0100 Niall O'Reilly wrote:

With "APT-Sources: http://ppa.launchpad.net/isc/bind/ubuntu focal/main amd64 Packages",
the file /usr/share/doc/bind9/README.Debian recommends:

Zones subject to automatic updates (such as via DHCP and/or nsupdate) should be
stored in /var/lib/bind, and specified with full pathnames.

Do I understand correctly that this advice also applies to zones for which
a dnssec-policy and inline-signing (rather than update-policy) are specified?

If so, it might be well to extend the parenthesis "(such as ...)" to mention
this case also.


Wouldn't it be possible to store just the signed stuff (.jnl, .jbk) in /var/lib?

That directory is not used in current releases.  I have:

$ ls -lt /var/lib/bind
total 4
-rw-r--r-- 1 root root 53 May 14  2013 bind9-default.md5sum


Best
Ale
--




--
Visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from 
this list

ISC funds the development of this software with paid support subscriptions. 
Contact us at https://www.isc.org/contact/ for more information.


bind-users mailing list
bind-users@lists.isc.org
https://lists.isc.org/mailman/listinfo/bind-users

Reply via email to