sysconfig/bind.git
4 months agoPrinter has a wired and wireless name&IP now master
Alex Dehnert [Fri, 29 Dec 2023 22:34:57 +0000 (22:34 +0000)]
Printer has a wired and wireless name&IP now

9 months agoMigrate zulip to chankillo and fix DNS issues
Alex Dehnert [Mon, 31 Jul 2023 21:54:27 +0000 (21:54 +0000)]
Migrate zulip to chankillo and fix DNS issues

- Update `zulip` DNS to point at chankillo and support the DNS-01 challenge for
  wildcard certs
- MxToolbox identifies some issues, and they mostly seem fairly harmless, but
  also fairly harmless to fix, and making MxToolbox alerting more useful is
  good:
  - Use ns1, not ns, as the primary nameserver in the zone
  - Remove Linode nameserver that shares a subnet with another one
  - Remove ns3 (olinda), which isn't running right now and is on the same
    subnet as ns1 (chankillo)

9 months agoSwap over email to chankillo
Alex Dehnert [Thu, 27 Jul 2023 18:27:52 +0000 (18:27 +0000)]
Swap over email to chankillo

9 months agoNotify secondaries for dehnerts.com
Alex Dehnert [Thu, 27 Jul 2023 18:27:25 +0000 (18:27 +0000)]
Notify secondaries for dehnerts.com

This probably speeds up change propagation

9 months agoRefactor list of IPs for masters and ACLs
Alex Dehnert [Thu, 27 Jul 2023 18:27:06 +0000 (18:27 +0000)]
Refactor list of IPs for masters and ACLs

9 months agoContinue swapping DNS primary over to chankillo
Alex Dehnert [Thu, 27 Jul 2023 17:18:13 +0000 (13:18 -0400)]
Continue swapping DNS primary over to chankillo

9 months agochankillo dyndns setup
Alex Dehnert [Thu, 27 Jul 2023 16:56:48 +0000 (16:56 +0000)]
chankillo dyndns setup

9 months agochankillo migration continues
Alex Dehnert [Thu, 27 Jul 2023 03:00:41 +0000 (23:00 -0400)]
chankillo migration continues

New nameservers, remove hostnames corresponding to olinda-only services, switch
some over to chankillo, etc.

9 months agoProgress towards setting up chankillo
Alex Dehnert [Tue, 18 Jul 2023 14:19:38 +0000 (10:19 -0400)]
Progress towards setting up chankillo

9 months agoAdd chankillo server config
Alex Dehnert [Tue, 18 Jul 2023 14:20:16 +0000 (14:20 +0000)]
Add chankillo server config

9 months agoIgnore dpkg files
Alex Dehnert [Thu, 25 May 2023 07:01:41 +0000 (07:01 +0000)]
Ignore dpkg files

9 months agoNew server config for test server
Alex Dehnert [Thu, 25 May 2023 07:01:32 +0000 (07:01 +0000)]
New server config for test server

10 months agoRemove a bunch of hostnames that haven't been used in years
Alex Dehnert [Sun, 11 Jun 2023 19:05:54 +0000 (15:05 -0400)]
Remove a bunch of hostnames that haven't been used in years

10 months agoAdd new machines
Alex Dehnert [Sun, 11 Jun 2023 19:00:38 +0000 (15:00 -0400)]
Add new machines

11 months agoAdd linode, update augsburg IP
Alex Dehnert [Mon, 29 May 2023 04:56:56 +0000 (00:56 -0400)]
Add linode, update augsburg IP

11 months agoAllow Linode to act as a secondary DNS server
Alex Dehnert [Mon, 29 May 2023 04:55:27 +0000 (00:55 -0400)]
Allow Linode to act as a secondary DNS server

11 months agoMore testing hosts
Alex Dehnert [Tue, 23 May 2023 20:45:04 +0000 (16:45 -0400)]
More testing hosts

11 months agoAdd new `xidi` host
Alex Dehnert [Wed, 10 May 2023 05:34:29 +0000 (01:34 -0400)]
Add new `xidi` host

12 months agoAdd unifi hostname and cert permissions
Alex Dehnert [Tue, 4 Apr 2023 19:00:23 +0000 (15:00 -0400)]
Add unifi hostname and cert permissions

17 months agorpi: Add internal utility names
Alex Dehnert [Mon, 21 Nov 2022 04:04:45 +0000 (23:04 -0500)]
rpi: Add internal utility names

Eventually maybe I should avoid private IP space in the public zone, but we
already have a bunch so this isn't adding a lot more.

21 months agomail: Add DKIM and DMARC config
Alex Dehnert [Sun, 10 Jul 2022 23:16:20 +0000 (19:16 -0400)]
mail: Add DKIM and DMARC config

21 months agomail: Add an SPF record
Alex Dehnert [Sun, 10 Jul 2022 08:15:45 +0000 (04:15 -0400)]
mail: Add an SPF record

21 months agomail: Add "pop", not just "*.pop"
Alex Dehnert [Sun, 10 Jul 2022 08:15:28 +0000 (04:15 -0400)]
mail: Add "pop", not just "*.pop"

21 months agoAdd a *.pop hostname to use with GMail
Alex Dehnert [Sat, 9 Jul 2022 19:20:50 +0000 (15:20 -0400)]
Add a *.pop hostname to use with GMail

2 years agoAdd squaresdb-google name
Alex Dehnert [Fri, 18 Feb 2022 04:15:41 +0000 (23:15 -0500)]
Add squaresdb-google name

2 years agoAdd Zulip records
Alex Dehnert [Mon, 27 Sep 2021 02:56:49 +0000 (22:56 -0400)]
Add Zulip records

2 years agoEnable ACME DNS challenges for squaresdb
Alex Dehnert [Sat, 19 Jun 2021 23:06:06 +0000 (19:06 -0400)]
Enable ACME DNS challenges for squaresdb

2 years agoUpdate Duck Dacha's external IP
Alex Dehnert [Fri, 21 May 2021 17:39:45 +0000 (13:39 -0400)]
Update Duck Dacha's external IP

3 years agoSet up acme challenges for duck-dacha/adehnert-pi4
Alex Dehnert [Thu, 29 Apr 2021 00:20:36 +0000 (20:20 -0400)]
Set up acme challenges for duck-dacha/adehnert-pi4

3 years agoAdd adehnert-roost-api to dehnerts.com
Alex Dehnert [Sat, 20 Feb 2021 22:30:03 +0000 (17:30 -0500)]
Add adehnert-roost-api to dehnerts.com

It's a little redundant, but it's probably convenient to have mit.edu and
dehnerts.com match.

3 years agoSwitch to newer MIT nameservers
Alex Dehnert [Fri, 29 Jan 2021 18:43:32 +0000 (13:43 -0500)]
Switch to newer MIT nameservers

I'm not sure that doing forwarding actually makes sense for my bind, but I'm
not changing it for the moment...

3 years agoAdd virunga/vault hostnames
Alex Dehnert [Sun, 10 Jan 2021 07:57:22 +0000 (02:57 -0500)]
Add virunga/vault hostnames

3 years agoDelegate dns-01 hostname for roost-api
Alex Dehnert [Wed, 9 Dec 2020 00:56:49 +0000 (19:56 -0500)]
Delegate dns-01 hostname for roost-api

3 years agoAdd adehnert-test-b entry (including for LE dns-01)
Alex Dehnert [Fri, 27 Nov 2020 23:42:26 +0000 (18:42 -0500)]
Add adehnert-test-b entry (including for LE dns-01)

3 years agoPoint roost-api back at adehnert-roost-api again
Alex Dehnert [Fri, 27 Nov 2020 06:52:02 +0000 (01:52 -0500)]
Point roost-api back at adehnert-roost-api again

3 years agoTemporarily point roost-api at olinda to get a cert
Alex Dehnert [Fri, 27 Nov 2020 02:23:58 +0000 (21:23 -0500)]
Temporarily point roost-api at olinda to get a cert

3 years agoAdd wieliczka+salt to dehnerts.com zone
Alex Dehnert [Sun, 22 Nov 2020 03:37:37 +0000 (22:37 -0500)]
Add wieliczka+salt to dehnerts.com zone

3 years agoAdd internal printer IP
Alex Dehnert [Sat, 21 Nov 2020 04:07:17 +0000 (23:07 -0500)]
Add internal printer IP

3 years agoAdd IP for Duck Dacha (perhaps yet to be renamed)
Alex Dehnert [Thu, 6 Aug 2020 16:20:50 +0000 (12:20 -0400)]
Add IP for Duck Dacha (perhaps yet to be renamed)

4 years agoUpdate soviet-russia's external IP
Alex Dehnert [Tue, 7 Apr 2020 06:11:58 +0000 (02:11 -0400)]
Update soviet-russia's external IP

4 years agoAdd a CNAME from the main zone for lushan-monitor
Alex Dehnert [Fri, 7 Feb 2020 05:16:08 +0000 (00:16 -0500)]
Add a CNAME from the main zone for lushan-monitor

4 years agoSend notifies to the (currently) hidden secondaries for dynamic.dehnerts
Alex Dehnert [Fri, 7 Feb 2020 05:10:17 +0000 (00:10 -0500)]
Send notifies to the (currently) hidden secondaries for dynamic.dehnerts

4 years agoFix secondary config for dynamic.dehnerts on XVM
Alex Dehnert [Fri, 7 Feb 2020 04:42:45 +0000 (23:42 -0500)]
Fix secondary config for dynamic.dehnerts on XVM

4 years agoBetter version-control per-server config
Alex Dehnert [Fri, 7 Feb 2020 04:24:38 +0000 (23:24 -0500)]
Better version-control per-server config

Also, make adehnert3.xvm a secondary for dynamic.dehnerts.com. It won't be
updated directly, but if olinda goes down, at least there will be a machine
that has the zone data available.

4 years agoReenable dehnert.arctic.org and add a DNAME in dynamic.dehnert.arctic.org
Alex Dehnert [Tue, 29 Oct 2019 16:52:35 +0000 (12:52 -0400)]
Reenable dehnert.arctic.org and add a DNAME in dynamic.dehnert.arctic.org

*.dynamic.dehnert.arctic.org should behave just like *.dynamic.dehnerts.com,
without needing to do dynamic updates for both.

4 years agoAlso allow updating TXT records
Alex Dehnert [Sat, 12 Oct 2019 20:15:26 +0000 (16:15 -0400)]
Also allow updating TXT records

Useful for certs and just general notes.

4 years agoIgnore some files for dynamic updates
Alex Dehnert [Sat, 31 Aug 2019 00:23:22 +0000 (20:23 -0400)]
Ignore some files for dynamic updates

4 years agoDynamic zone updates, first pass
Alex Dehnert [Sat, 31 Aug 2019 00:22:42 +0000 (20:22 -0400)]
Dynamic zone updates, first pass

4 years agoOops, fix olinda's IP in dehnerts.com record
Alex Dehnert [Wed, 14 Aug 2019 05:30:40 +0000 (01:30 -0400)]
Oops, fix olinda's IP in dehnerts.com record

4 years agoAdd new charon4 IP
Alex Dehnert [Fri, 2 Aug 2019 16:47:55 +0000 (12:47 -0400)]
Add new charon4 IP

4 years agoAdd some new squares-related hostnames
Alex Dehnert [Fri, 2 Aug 2019 16:46:02 +0000 (12:46 -0400)]
Add some new squares-related hostnames

4 years agoNew masada IP
Alex Dehnert [Tue, 25 Jun 2019 15:50:03 +0000 (11:50 -0400)]
New masada IP

4 years agoAnother serial bump
Alex Dehnert [Tue, 25 Jun 2019 04:23:27 +0000 (00:23 -0400)]
Another serial bump

4 years agoBump serial to encourage replication
Alex Dehnert [Fri, 14 Jun 2019 01:04:19 +0000 (21:04 -0400)]
Bump serial to encourage replication

4 years agoNew IP for olinda
Alex Dehnert [Fri, 14 Jun 2019 00:31:12 +0000 (20:31 -0400)]
New IP for olinda

4 years agoAdded NS record and SquaresDB hostnames
Alex Dehnert [Thu, 13 Jun 2019 03:46:10 +0000 (23:46 -0400)]
Added NS record and SquaresDB hostnames

olinda's IP is changing (... again), and it seems wise to just include
"olinda.mit.edu" as an NS record, since that's probably relatively stable...

4 years agoConfig changes from 18.04 upgrade?
Alex Dehnert [Thu, 13 Jun 2019 03:45:45 +0000 (23:45 -0400)]
Config changes from 18.04 upgrade?

5 years agoMore RPi-related hostnames
Alex Dehnert [Fri, 8 Mar 2019 09:00:03 +0000 (04:00 -0500)]
More RPi-related hostnames

5 years agoGitLab verification code
Alex Dehnert [Mon, 31 Dec 2018 09:11:37 +0000 (04:11 -0500)]
GitLab verification code

5 years agoMove logs to someplace apparmor allows by default
Alex Dehnert [Wed, 19 Dec 2018 05:36:52 +0000 (00:36 -0500)]
Move logs to someplace apparmor allows by default

Logging still doesn't seem to work on adehnert3.xvm, though.

5 years agoUpdate transfer/notify config
Alex Dehnert [Wed, 19 Dec 2018 05:34:28 +0000 (00:34 -0500)]
Update transfer/notify config

- Add charon4 to the set of allowed transferers
- Use a named ACL, rather than listing the full set twice
- Comment the different allowed IPs with what they are
- Enable notifications (or at least don't explicitly disable them) so changes
  propagate faster

5 years agoRemove some (but by no means all) outdated names
Alex Dehnert [Wed, 19 Dec 2018 05:32:00 +0000 (00:32 -0500)]
Remove some (but by no means all) outdated names

Mostly killing the ones that don't work now and seem *very* unlikely to come
back ever.

5 years agoNewer root hints
Alex Dehnert [Wed, 19 Dec 2018 05:21:54 +0000 (00:21 -0500)]
Newer root hints

6 years agoAllow requests from new charon IP instead
Alex Dehnert [Wed, 25 Apr 2018 07:00:21 +0000 (03:00 -0400)]
Allow requests from new charon IP instead

6 years agoNew root keys (from package update?)
Alex Dehnert [Fri, 29 Sep 2017 16:14:41 +0000 (12:14 -0400)]
New root keys (from package update?)

6 years agoSave bind logs in a bind-writable directory
Alex Dehnert [Wed, 20 Sep 2017 06:07:45 +0000 (02:07 -0400)]
Save bind logs in a bind-writable directory

Otherwise, apparently bind can't do the log rotation. It logs an error message,
but just keeps filling the file.

6 years agoRemove uses of 18.208.* addresses
Alex Dehnert [Sat, 20 May 2017 18:51:30 +0000 (14:51 -0400)]
Remove uses of 18.208.* addresses

- Use newer olinda IP for the transfer and recursion ACLs
- remove olinda1's A record -- not much point, since it's gone
- remove persistent-dialup -- the moira record seems to be gone, and it doesn't
  seem worth resurrecting the service
- Bump serial

6 years agoPoint ns1 back at (current) olinda
Alex Dehnert [Sat, 20 May 2017 18:33:33 +0000 (14:33 -0400)]
Point ns1 back at (current) olinda

It seems that dehnert.arctic.org uses ns1.dehnerts.com, so we get SERVFAILs and
stuff if we just change the nameserver record to ns3.

7 years agoBump serial, because I bet I forgot
Alex Dehnert [Thu, 26 Jan 2017 15:29:22 +0000 (10:29 -0500)]
Bump serial, because I bet I forgot

7 years agoExcise (most) 18.208 IPs (masada and ns1)
Alex Dehnert [Wed, 18 Jan 2017 04:43:27 +0000 (23:43 -0500)]
Excise (most) 18.208 IPs (masada and ns1)

7 years agoBelatedly bump serial
Alex Dehnert [Mon, 2 Jan 2017 17:02:20 +0000 (12:02 -0500)]
Belatedly bump serial

7 years agoPoint lushan at lushan2.mit.edu, not the old host record
Alex Dehnert [Mon, 12 Dec 2016 03:50:10 +0000 (22:50 -0500)]
Point lushan at lushan2.mit.edu, not the old host record

7 years agoUpdated IP address for olinda
Alex Dehnert [Mon, 12 Dec 2016 03:49:43 +0000 (22:49 -0500)]
Updated IP address for olinda

7 years agoAdd more details to log lines (like timestamps...)
Alex Dehnert [Mon, 12 Dec 2016 03:10:28 +0000 (22:10 -0500)]
Add more details to log lines (like timestamps...)

7 years agoAdd imap.dehnerts.com, to go with *.imap.dehnerts.com
Alex Dehnert [Sun, 7 Aug 2016 03:58:58 +0000 (23:58 -0400)]
Add imap.dehnerts.com, to go with *.imap.dehnerts.com

8 years agoIgnore rndc.key
Alex Dehnert [Sat, 30 Apr 2016 16:07:25 +0000 (12:07 -0400)]
Ignore rndc.key

IIRC, it's the secret key for zone transfers or control operations or
something.

8 years agoAdd some stock files
Alex Dehnert [Sat, 30 Apr 2016 16:07:02 +0000 (12:07 -0400)]
Add some stock files

8 years agoAdd Google site verification records
Alex Dehnert [Sat, 30 Apr 2016 16:04:41 +0000 (12:04 -0400)]
Add Google site verification records

9 years agoAdd roost and roost-api hostnames
Alex Dehnert [Sat, 5 Jul 2014 21:45:32 +0000 (17:45 -0400)]
Add roost and roost-api hostnames

10 years agoChange the intervals in the SOA record
Alex Dehnert [Sun, 12 May 2013 21:30:07 +0000 (17:30 -0400)]
Change the intervals in the SOA record

Based on the example at http://en.wikipedia.org/wiki/Zone_file and explanation
at http://www.zytrax.com/books/dns/ch8/soa.html, put new expiry, refresh, etc.
intervals in the SOA record, partially to make changes quicker to make.

10 years agoAllow MIT-only recursion and add logging
Alex Dehnert [Sun, 12 May 2013 21:18:48 +0000 (17:18 -0400)]
Allow MIT-only recursion and add logging

I'm not sure what the motivation for either of these were (changes made Feb
24).

11 years agoUse persistent-dialup-ns1 in dehnerts.com
Alex Dehnert [Mon, 25 Feb 2013 04:21:42 +0000 (23:21 -0500)]
Use persistent-dialup-ns1 in dehnerts.com

MIT DNS updates slowly...

11 years agoAdd persistent-dialup zone for Linerva #1293
Alex Dehnert [Mon, 25 Feb 2013 03:39:28 +0000 (22:39 -0500)]
Add persistent-dialup zone for Linerva #1293

11 years agoAdd git hostname
Alex Dehnert [Sat, 8 Dec 2012 12:26:02 +0000 (07:26 -0500)]
Add git hostname

11 years agoMark lushan.mit.edu as an FQDN
Alex Dehnert [Wed, 7 Nov 2012 00:30:51 +0000 (19:30 -0500)]
Mark lushan.mit.edu as an FQDN

Whoops. Yay periods.

12 years agoAdd dns2tcp entry
Alex Dehnert [Sat, 15 Oct 2011 07:21:29 +0000 (03:21 -0400)]
Add dns2tcp entry

12 years agoFix novgorod entry
Alex Dehnert [Sat, 15 Oct 2011 07:18:15 +0000 (03:18 -0400)]
Fix novgorod entry

12 years agoAdd XMPP s2s SRV record
Alex Dehnert [Fri, 30 Sep 2011 15:37:17 +0000 (11:37 -0400)]
Add XMPP s2s SRV record

13 years agoProvide DNS for dehnerts.com jabber
Alex Dehnert [Mon, 7 Feb 2011 06:47:55 +0000 (01:47 -0500)]
Provide DNS for dehnerts.com jabber

13 years agoAdding tikal to zone
Alex Dehnert [Sun, 1 Aug 2010 04:48:49 +0000 (00:48 -0400)]
Adding tikal to zone

13 years agoBump the serial
Alex Dehnert [Tue, 25 May 2010 18:32:20 +0000 (14:32 -0400)]
Bump the serial

13 years agocopan isn't real likely to be my mail server again
Alex Dehnert [Sat, 22 May 2010 21:43:15 +0000 (17:43 -0400)]
copan isn't real likely to be my mail server again

13 years agodehnerts.com should really be olinda, not copan
Alex Dehnert [Sat, 22 May 2010 21:42:29 +0000 (17:42 -0400)]
dehnerts.com should really be olinda, not copan

13 years agons2... doesn't really deserve to be an NS record
Alex Dehnert [Sat, 22 May 2010 21:42:09 +0000 (17:42 -0400)]
ns2... doesn't really deserve to be an NS record

13 years agoAdd KDC
Alex Dehnert [Wed, 19 May 2010 18:26:48 +0000 (14:26 -0400)]
Add KDC

13 years agoAdd records for masada and novgorod
Alex Dehnert [Wed, 19 May 2010 17:44:19 +0000 (13:44 -0400)]
Add records for masada and novgorod

13 years ago"Better" NS records
Alex Dehnert [Fri, 14 May 2010 08:45:40 +0000 (04:45 -0400)]
"Better" NS records

13 years agoRun Jabber on olinda
Alex Dehnert [Fri, 14 May 2010 07:41:01 +0000 (03:41 -0400)]
Run Jabber on olinda

14 years agoExpand ACLs to include olinda and copan
root [Mon, 1 Mar 2010 16:08:09 +0000 (11:08 -0500)]
Expand ACLs to include olinda and copan

14 years agoHave copan's DNS configuration
root [Mon, 1 Mar 2010 16:02:04 +0000 (11:02 -0500)]
Have copan's DNS configuration