December 22 update
This commit is contained in:
@ -24,21 +24,21 @@ cd /data/namedb/master
|
||||
rm /data/namedb/master/*signed*
|
||||
|
||||
declare -A ZONE_PEM
|
||||
ZONE_PEM=(["ahlawat.com"]="" ["beyondbell.com"]="bb" ["diyit.org"]="diy" ["xflow.org"]="xflow" ["datavpc.com"]="dvpc" ["mydatavpc.com"]="mdvpc" ["rockwoodestates.org"]="rwe" ["rockwoodranch.org"]="rwr" ["scvcc-rental.com"]="scvcc")
|
||||
# ZONE_PEM=(["ahlawat.com"]="" ["beyondbell.com"]="bb" ["diyit.org"]="diy" ["xflow.org"]="xflow" ["datavpc.com"]="dvpc" ["mydatavpc.com"]="mdvpc" ["rockwoodestates.org"]="rwe" ["rockwoodranch.org"]="rwr" ["scvcc-rental.com"]="scvcc" ["inseego5g.net"]="i5g" )
|
||||
ZONE_PEM=(["ahlawat.com"]="" ["beyondbell.com"]="bb" ["diyit.org"]="diy" ["datavpc.com"]="dvpc" ["mydatavpc.com"]="mdvpc" ["rockwoodestates.org"]="rwe" ["rockwoodranch.org"]="rwr" ["scvcc-rental.com"]="scvcc" ["inseego5g.net"]="i5g" )
|
||||
|
||||
for ZONE in "${!ZONE_PEM[@]}"
|
||||
do
|
||||
PEM=${ZONE_PEM[$ZONE]}
|
||||
|
||||
/usr/local/bin/ldns-dane -c "/mnt/certs/"$PEM"fullchain.pem" create mail.$ZONE 25 3 1 1 > /data/namedb/master/tlsa-$ZONE
|
||||
/usr/local/bin/ldns-dane -c "/mnt/certs/"$PEM"fullchain.pem" create mail-backup.$ZONE 25 3 1 1 >> /data/namedb/master/tlsa-$ZONE
|
||||
/usr/local/bin/ldns-dane -c "/mnt/certs/"$PEM"fullchain.pem" create $ZONE 443 3 1 1 >> /data/namedb/master/tlsa-$ZONE
|
||||
/usr/local/bin/ldns-dane -c "/mnt/certs/"$PEM"fullchain.pem" create www.$ZONE 443 3 1 1 >> /data/namedb/master/tlsa-$ZONE
|
||||
/usr/local/bin/ldns-dane -c "/mnt/certs/${PEM}fullchain.pem" create mail.$ZONE 25 3 1 1 > /data/namedb/master/tlsa-$ZONE
|
||||
/usr/local/bin/ldns-dane -c "/mnt/certs/${PEM}fullchain.pem" create mail-backup.$ZONE 25 3 1 1 >> /data/namedb/master/tlsa-$ZONE
|
||||
/usr/local/bin/ldns-dane -c "/mnt/certs/${PEM}fullchain.pem" create $ZONE 443 3 1 1 >> /data/namedb/master/tlsa-$ZONE
|
||||
/usr/local/bin/ldns-dane -c "/mnt/certs/${PEM}fullchain.pem" create www.$ZONE 443 3 1 1 >> /data/namedb/master/tlsa-$ZONE
|
||||
done
|
||||
|
||||
NEW_SERIAL=`date -j +%Y%m%d%H`
|
||||
#NEW_SERIAL="2022022635"
|
||||
echo $NEW_SERIAL
|
||||
|
||||
for DBFILE in `ls /data/namedb/master/*.db`
|
||||
do
|
||||
@ -47,6 +47,7 @@ do
|
||||
/usr/local/sbin/named-checkzone $ZONE $DBFILE
|
||||
SERIAL=`/usr/local/sbin/named-checkzone $ZONE $DBFILE | egrep -ho '[0-9]{10}'`
|
||||
echo $SERIAL
|
||||
echo $NEW_SERIAL
|
||||
sed -i .orig 's/'$SERIAL'/'$(($NEW_SERIAL))'/' $DBFILE
|
||||
|
||||
#/usr/local/sbin/dnssec-signzone -S -K /data/namedb/master -t -o $ZONE $DBFILE
|
||||
|
7
jails/config/dns/pkg-list-details-old.txt
Normal file
7
jails/config/dns/pkg-list-details-old.txt
Normal file
@ -0,0 +1,7 @@
|
||||
pkgp-freebsd-pkg____bash-5.2.9
|
||||
pkgp-freebsd-pkg____bash-completion-2.11_1,2
|
||||
pkgp-freebsd-pkg____bind916-9.16.34_1
|
||||
pkgp-freebsd-pkg____ldns-1.8.3
|
||||
pkgp-freebsd-pkg____nano-6.4
|
||||
pkgp-freebsd-pkg____pkg-1.18.4
|
||||
pkgp-freebsd-pkg____rpl-1.4.1
|
@ -1,7 +1,7 @@
|
||||
pkgp-freebsd-pkg____bash-5.1.16
|
||||
pkgp-freebsd-pkg____bash-completion-2.11_1,2
|
||||
pkgp-freebsd-pkg____bind916-9.16.27
|
||||
pkgp-freebsd-pkg____ldns-1.8.1
|
||||
pkgp-freebsd-pkg____nano-6.0
|
||||
pkgp-freebsd-pkg____pkg-1.17.5_1
|
||||
pkgp-freebsd-pkg____bash-5.2.12
|
||||
pkgp-freebsd-pkg____bash-completion-2.11_2,2
|
||||
pkgp-freebsd-pkg____bind916-9.16.35
|
||||
pkgp-freebsd-pkg____ldns-1.8.3
|
||||
pkgp-freebsd-pkg____nano-7.0
|
||||
pkgp-freebsd-pkg____pkg-1.18.4
|
||||
pkgp-freebsd-pkg____rpl-1.4.1
|
||||
|
1
jails/config/dns/pkg-list-old.txt
Normal file
1
jails/config/dns/pkg-list-old.txt
Normal file
@ -0,0 +1 @@
|
||||
bash bash-completion bind916 ldns nano pkg rpl
|
Reference in New Issue
Block a user