1 # Listen addresses. ixfrdist will listen on both UDP and TCP.
2 # When no port is specified, 53 is used. When specifying ports for IPv6, use the
9 # - '[2001:DB8:1234::334]:5353'
11 # By default, or when unset, ixfrdist listens on local loopback addresses.
16 # Netmasks or IP addresses of hosts that are allowed to query ixfrdist. Hosts
17 # do not need a netmask:
23 # - '2001:DB8:ABCD::/48'
25 # By default (or when unset), only loopback addresses are allowed.
31 # Timeout in seconds an AXFR transaction requested by ixfrdist may take.
32 # Increase this when the network to the authoritative servers is slow or the
33 # domains are very large and you experience timeouts. Set to 20 by default or
38 # Time in seconds between retries of the SOA query for a zone we have never
43 # Whether record compression should be enabled, leading to smaller answers
44 # at the cost of an increased CPU and memory usage. Defaults to false.
48 # Amount of older copies/IXFR diffs to keep for every domain. This is set to
49 # 20 by default or when unset.
53 # Number of threads to spawn for TCP connections (AXFRs) from downstream hosts.
54 # This is set to 10 by default or when unset.
58 # The directory where the domain data is stored. When unset, the current
59 # working directory is used. Note that this directory must be writable for the
60 # user or group ixfrdist runs as.
62 # work-dir: '/var/lib/ixfrdist'
64 # User to drop privileges to once all listen-sockets are bound. May be either
65 # a username or numerical ID.
69 # Group to drop privileges to once all listen-sockets are bound. May be either
70 # a username or numerical ID.
74 # The domains to redistribute, the 'master' and 'domains' keys are mandatory.
75 # When no port is specified, 53 is used. When specifying ports for IPv6, use the
79 # - domain: example.com
81 # - domain: rpz.example
82 # master: [2001:DB8:a34:543::53]:5353