On to, 17 helmi 2022, lejeczek via FreeIPA-users wrote:
On 16/02/2022 19:45, Rob Crittenden wrote:
lejeczek via FreeIPA-users wrote:
@devel
Hi guys.
Not knowing nitty-gritty of the internals if it, I'd dare to suggest, as
future enhancement perhaps, this:
allow both types of zone, creation of the second type would fail if
first is 'enabled' and the same would go for '-mod' - allow(and
facilitate switch) enable only if other is disabled(certainly allow both
to be 'disabled')
that would certainly be handy bit from an admin point of view.
Can you provide more context to this question? Why do you need to do
whatever it is you need to do with some sort of type of zone? Is this
DNSSEC-related?
By "both types" do you mean Country AND Western? [1]
rob
[1] See Brothers, Blue
Apologies.
Quite trivial:
-> $ ipa dnsforwardzone-add j.xyz. --forwarder=10.3.1.221
--forwarder=10.3.1.222 --skip-overlap-check
Server will check DNS forwarder(s).
This may take some time, please wait ...
ipa: ERROR: Only one zone type is allowed per zone name
-> $ ipa dnszone-disable j.xyz.
-------------------------------
Disabled DNS zone "jatymy.xyz."
-------------------------------
and here, now 'dnsforwardzone-add' would/could succeed.
Then only one 'type' of zone is allowed to be 'enabled' at any given
time and both can be (obviously) disabled.
You either have an authoritative zone or forward it to someone else.
There is no way to combine them together.
--
/ Alexander Bokovoy
Sr. Principal Software Engineer
Security / Identity Management Engineering
Red Hat Limited, Finland
_______________________________________________
FreeIPA-users mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct:
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives:
https://lists.fedorahosted.org/archives/list/[email protected]
Do not reply to spam on the list, report it:
https://pagure.io/fedora-infrastructure