]> git.ipfire.org Git - thirdparty/bind9.git/commitdiff
Use tabs for indentation in system test named configs
authorNicki Křížek <nicki@isc.org>
Tue, 28 Jul 2026 17:15:05 +0000 (17:15 +0000)
committerNicki Křížek <nicki@isc.org>
Thu, 6 Aug 2026 11:50:09 +0000 (13:50 +0200)
The system test named configs indented blocks with a mix of tabs,
spaces, and tab/space combinations. Reindent the space-indented lines
to one tab per block level to make the style uniform across all
tests.

Assisted-by: Claude:claude-fable-5
143 files changed:
bin/tests/system/_common/zones.conf.j2
bin/tests/system/additional/ns1/named.conf.j2
bin/tests/system/additional/ns1/named2.conf.j2
bin/tests/system/additional/ns1/named3.conf.j2
bin/tests/system/additional/ns1/named4.conf.j2
bin/tests/system/allow_query/ns3/named5.conf.j2
bin/tests/system/allow_query/ns3/named6.conf.j2
bin/tests/system/allow_query/ns3/named7.conf.j2
bin/tests/system/allow_query/ns3/named8.conf.j2
bin/tests/system/catz/ns1/named.conf.j2
bin/tests/system/catz/ns2/named.conf.j2
bin/tests/system/catz/ns2/named7.conf.j2
bin/tests/system/checkconf/bad-catz-zone-primary-dup.conf
bin/tests/system/checkconf/bad-controls-duplicate.conf
bin/tests/system/checkconf/bad-inline-secondary.conf
bin/tests/system/checkconf/bad-journalsize.conf
bin/tests/system/checkconf/bad-kasp-max-zone-ttl.conf
bin/tests/system/checkconf/bad-mirror-zonename.conf
bin/tests/system/checkconf/bad-options-query-source-address-v4-v6.conf
bin/tests/system/checkconf/bad-parental-agents-def-view2.conf
bin/tests/system/checkconf/bad-primaries-key.conf
bin/tests/system/checkconf/bad-primaries-notfound.conf
bin/tests/system/checkconf/bad-primaries-tls.conf
bin/tests/system/checkconf/bad-query-source-address-v4-none.conf
bin/tests/system/checkconf/bad-query-source-address-v6-none.conf
bin/tests/system/checkconf/bad-rad2.conf
bin/tests/system/checkconf/bad-rad3.conf
bin/tests/system/checkconf/bad-random-device.conf
bin/tests/system/checkconf/bad-rrl-table-size.conf
bin/tests/system/checkconf/bad-static-initial-2.conf
bin/tests/system/checkconf/bad-static-initial-3.conf
bin/tests/system/checkconf/bad-static-initial-4.conf
bin/tests/system/checkconf/bad-template-file-reuse.conf
bin/tests/system/checkconf/bad-transfersize-1.conf
bin/tests/system/checkconf/bad-transfersize-2.conf
bin/tests/system/checkconf/check-dup-records-fail.conf
bin/tests/system/checkconf/check-mx-cname-fail.conf
bin/tests/system/checkconf/check-mx-fail.conf
bin/tests/system/checkconf/check-names-fail.conf
bin/tests/system/checkconf/check-root-static-ds.conf
bin/tests/system/checkconf/check-srv-cname-fail.conf
bin/tests/system/checkconf/check-wildcard-no.conf
bin/tests/system/checkconf/check-wildcard.conf
bin/tests/system/checkconf/good-dot-doh-tls-nokeycert.conf
bin/tests/system/checkconf/good-ds-key-1.conf
bin/tests/system/checkconf/good-ds-key-2.conf
bin/tests/system/checkconf/good-key-directory.conf
bin/tests/system/checkconf/good-key-view.conf
bin/tests/system/checkconf/good-nonempty-trust-anchors.conf
bin/tests/system/checkconf/good-options-query-source-address-v4-none.conf
bin/tests/system/checkconf/good-options-query-source-address-v6-none.conf
bin/tests/system/checkconf/good-remote-servers-named.conf
bin/tests/system/checkconf/good-template-file-reuse.conf
bin/tests/system/class/ns2/named.conf.j2
bin/tests/system/cookie/ns1/named.conf.j2
bin/tests/system/cookie/ns3/named.conf.j2
bin/tests/system/dlzexternal/ns1/named.conf.j2
bin/tests/system/dnssec/ns3/named.conf.j2
bin/tests/system/dnssec_wildcard/ns2/named.conf.j2
bin/tests/system/doth/ns2/named.conf.j2
bin/tests/system/emptyzones/ns1/named.conf.j2
bin/tests/system/enginepkcs11/ns2/named.conf.j2
bin/tests/system/filters/ns1/named.conf.j2
bin/tests/system/filters/ns2/named.conf.j2
bin/tests/system/filters/ns3/named.conf.j2
bin/tests/system/forward/ns2/named-tls.conf.j2
bin/tests/system/forward/ns4/named-tls.conf.j2
bin/tests/system/include_multiplecfg/ns2/mars.conf
bin/tests/system/include_multiplecfg/ns2/zone1.conf
bin/tests/system/include_multiplecfg/ns2/zone2.conf
bin/tests/system/inline/ns3/named.conf.j2
bin/tests/system/kasp/ns1/named.conf.j2
bin/tests/system/kasp/ns3/ed25519.conf
bin/tests/system/kasp/ns3/ed448.conf
bin/tests/system/kasp/ns3/named-fips.conf.j2
bin/tests/system/ksr/ns1/named.conf.j2
bin/tests/system/logfileconfig/ns1/named.abspath.conf.j2
bin/tests/system/logfileconfig/ns1/named.dir.conf.j2
bin/tests/system/logfileconfig/ns1/named.inc.conf.j2
bin/tests/system/logfileconfig/ns1/named.pipe.conf.j2
bin/tests/system/logfileconfig/ns1/named.plain.conf.j2
bin/tests/system/logfileconfig/ns1/named.sym.conf.j2
bin/tests/system/logfileconfig/ns1/named.ts.conf.j2
bin/tests/system/logfileconfig/ns1/named.unlimited.conf.j2
bin/tests/system/logfileconfig/ns1/named.vers.conf.j2
bin/tests/system/migrate2kasp/ns4/named.conf.j2
bin/tests/system/notify/ns2/named-tls.conf.j2
bin/tests/system/notify/ns3/named-tls.conf.j2
bin/tests/system/nsec3/ns3/named-fips.conf.j2
bin/tests/system/nsec3/ns5/named.conf.j2
bin/tests/system/nsec3/ns6/named.conf.j2
bin/tests/system/nslimit_outdomain/ns4/named.conf.j2
bin/tests/system/nsprocessinglimit/ns4/named.conf.j2
bin/tests/system/nsupdate/ns1/named.conf.j2
bin/tests/system/nsupdate/ns1/tls.conf.j2
bin/tests/system/nta/ns2/named.conf.j2
bin/tests/system/optout/ns2/named.conf.j2
bin/tests/system/redirect/ns5/named.conf.j2
bin/tests/system/redirect/ns6/named.conf.j2
bin/tests/system/redirect/ns7/named.conf.j2
bin/tests/system/redirect/ns8/named.conf.j2
bin/tests/system/resolver/ns1/named.conf.j2
bin/tests/system/resolver/ns1/named2.conf.j2
bin/tests/system/resolver/ns4/named.conf.j2
bin/tests/system/rollover/ns3/named.common.conf.j2
bin/tests/system/rollover/ns3/named.conf.j2
bin/tests/system/rollover/ns4/named.common.conf.j2
bin/tests/system/rollover_ksk_3crowd/ns3/named.conf.j2
bin/tests/system/rollover_multisigner/ns3/named.conf.j2
bin/tests/system/rpz/ns3/named.conf.j2
bin/tests/system/rpz/ns6/named.conf.j2
bin/tests/system/rpz/ns7/named.conf.j2
bin/tests/system/rpz/ns8/named.conf.j2
bin/tests/system/rpz/ns9/named.conf.j2
bin/tests/system/rpzextra/ns2/named.conf.j2
bin/tests/system/rpzrecurse/ns2/named.clientip.conf
bin/tests/system/rpzrecurse/ns2/named.clientip2.conf
bin/tests/system/rpzrecurse/ns2/named.default.conf
bin/tests/system/rpzrecurse/ns2/named.invalidprefixlength.conf
bin/tests/system/rpzrecurse/ns2/named.log.conf
bin/tests/system/rpzrecurse/ns2/named.max.conf
bin/tests/system/rpzrecurse/ns2/named.wildcard1.conf
bin/tests/system/rpzrecurse/ns2/named.wildcard2.conf
bin/tests/system/rpzrecurse/ns2/named.wildcard3.conf
bin/tests/system/rpzrecurse/ns3/named2.conf.j2
bin/tests/system/rpzrecurse/ns3/named3.conf.j2
bin/tests/system/rrl/ns2/named.conf.j2
bin/tests/system/rrl/ns3/named.conf.j2
bin/tests/system/rrl/ns4/named.conf.j2
bin/tests/system/selfpointedglue/ns4/named.conf.j2
bin/tests/system/serve_stale/ns7/named.conf.j2
bin/tests/system/serve_stale/ns7/named1.conf.j2
bin/tests/system/sfcache_cname/ns1/named.conf.j2
bin/tests/system/shutdown/ns1/named.conf.j2
bin/tests/system/shutdown/resolver/named.conf.j2
bin/tests/system/staticstub/conf/bad02.conf
bin/tests/system/synthrecord/conf/bad-tsig.conf.j2
bin/tests/system/synthrecord/conf/good1.conf.j2
bin/tests/system/tcp/ns5/named.conf.j2
bin/tests/system/tsig/ns1/named-md5.conf.j2
bin/tests/system/views/ns2/named3.conf.j2
bin/tests/system/wildcard/ns1/named.conf.j2
bin/tests/system/xfer/ns4/named.conf.j2

index bf4a58b698deb36a22cbcffb3e0097e6b87d6e26..edfe0713fc2e24e5b136fa01bdaac011518dc6d6 100644 (file)
@@ -4,7 +4,7 @@
 zone "@zone.name@" {
        type @zone.type@;
 {% if zone.type == "static-stub" %}
-        server-addresses { @zone.ns.ip@; };
+       server-addresses { @zone.ns.ip@; };
 {% else %}
        file "@zone.filepath@";
 {% endif %}
index 263cf03478ee4653052ec5c2cf50dad2d25d95b5..cbaa9d9a51d643f1a3d355a91929c3eed82e6613 100644 (file)
@@ -9,8 +9,8 @@ options {
 {% include "_common/controls.conf.j2" %}
 
 zone "." {
-        type primary;
-        file "root.db";
+       type primary;
+       file "root.db";
 };
 
 zone "rt.example" {
index 1184bc986f4d7b0f4482c622225ab3eb8153dfe1..06a6d045e1b9af86dd02c141ba8132a861c18cbe 100644 (file)
@@ -9,8 +9,8 @@ options {
 {% include "_common/controls.conf.j2" %}
 
 zone "." {
-        type primary;
-        file "root.db";
+       type primary;
+       file "root.db";
 };
 
 zone "rt.example" {
index c16e82eebc131006b1f4ed9acf1de64eff9aa8c9..84433f5ae691460df889f66bb168324eb2596c43 100644 (file)
@@ -10,8 +10,8 @@ options {
 {% include "_common/controls.conf.j2" %}
 
 zone "." {
-        type primary;
-        file "root.db";
+       type primary;
+       file "root.db";
 };
 
 zone "rt.example" {
index 6a0c8c4b80d772f8de93e519a3e607178b8617d1..bd108a80e393ac372740d6d4cd50da01eeb4dc4d 100644 (file)
@@ -9,8 +9,8 @@ options {
 {% include "_common/controls.conf.j2" %}
 
 zone "." {
-        type primary;
-        file "root.db";
+       type primary;
+       file "root.db";
 };
 
 zone "mx.example" {
index 396f10672d146790de2164f79f906d20f5ec9674..804c16dc42535580000efe5fd1caf878ba2bf2b2 100644 (file)
@@ -11,9 +11,9 @@ options {
 {% include "_common/controls.conf.j2" %}
 
 view internal {
-        match-destinations { @ns.ip@; };
-        {% include_indented "_common/root.hint.conf" %}
+       match-destinations { @ns.ip@; };
+       {% include_indented "_common/root.hint.conf" %}
 
-        recursion yes;
-        allow-recursion { any; };
+       recursion yes;
+       allow-recursion { any; };
 };
index a25f076c8851bc8f67cb40c977645572664c18df..3aaa881b18d44dec83ff935a969ec2ea1ceef81c 100644 (file)
@@ -8,8 +8,8 @@ options {
 {% include "_common/controls.conf.j2" %}
 
 view internal {
-        match-destinations { @ns.ip@; };
-        {% include_indented "_common/root.hint.conf" %}
-        recursion yes;
+       match-destinations { @ns.ip@; };
+       {% include_indented "_common/root.hint.conf" %}
+       recursion yes;
        allow-recursion{ any; };
 };
index 569a3a72de8be48b5ee7b6a8b3ddc43ecdbcacaf..726b8fea630bb7dd99215db5098563de79ce47bf 100644 (file)
@@ -8,8 +8,8 @@ options {
 {% include "_common/controls.conf.j2" %}
 
 view internal {
-        match-destinations { @ns.ip@; };
-        {% include_indented "_common/root.hint.conf" %}
-        recursion yes;
+       match-destinations { @ns.ip@; };
+       {% include_indented "_common/root.hint.conf" %}
+       recursion yes;
        allow-query{ any; };
 };
index 374bb7b025caaad68759717c8cb816f216bf723a..61103ba3b21e1c35c56acb715be96e09f49f6b63 100644 (file)
@@ -13,7 +13,7 @@ options {
 view internal {
        {% include_indented "_common/root.hint.conf" %}
 
-        recursion yes;
-        allow-query-cache { @ns.ip@; 10.53.0.4; };
+       recursion yes;
+       allow-query-cache { @ns.ip@; 10.53.0.4; };
        allow-query { 10.53.0.4; };
 };
index da7593d06d70d391610d2a3158be74505be6777e..b552e71874222b2d1dffda269f3e2cb99c5eb197 100644 (file)
@@ -147,6 +147,6 @@ key next_key. {
 };
 
 key longlonglongname0123456789abcdef. {
-    secret "LaAnCU+Z";
-    algorithm @DEFAULT_HMAC@;
+       secret "LaAnCU+Z";
+       algorithm @DEFAULT_HMAC@;
 };
index 850b4af94999519c403d09476233ad6dd837bc0b..e21476e0e2b855440a4a3440bd1db7a5c3a04212 100644 (file)
@@ -95,20 +95,20 @@ view "default" {
 {% endif %}
 
        zone "dom-existing.example" {
-           type primary;
-           file "dom-existing.example.db";
+               type primary;
+               file "dom-existing.example.db";
        };
 
        zone "dom-existing-forward.example" {
-           type forward;
-           forward only;
-           forwarders { 10.53.0.1; };
+               type forward;
+               forward only;
+               forwarders { 10.53.0.1; };
        };
 
        zone "dom-existing-forward-off.example" {
-           type forward;
-           forward only;
-           forwarders { };
+               type forward;
+               forward only;
+               forwarders { };
        };
 
        zone "catalog0.example" {
@@ -154,8 +154,8 @@ view "default" {
        # to deal with that situation (see GL #3911). Make sure that this duplicate
        # zone comes after the the "catalog1.example" zone in the configuration file.
        zone "dom3.example" {
-           type secondary;
-           file "dom2.example.db";
+               type secondary;
+               file "dom2.example.db";
        };
 {% endif %}
 
index 2f9be47d17164e18b426059c772ca04525d4dfde..11cfec649ac43dea0f1b5f8f2af03c3c52654fdc 100644 (file)
@@ -16,20 +16,20 @@ view "default" {
        # identical to named1.conf.in
 
        zone "dom-existing.example" {
-           type primary;
-           file "dom-existing.example.db";
+               type primary;
+               file "dom-existing.example.db";
        };
 
        zone "dom-existing-forward.example" {
-           type forward;
-           forward only;
-           forwarders { 10.53.0.1; };
+               type forward;
+               forward only;
+               forwarders { 10.53.0.1; };
        };
 
        zone "dom-existing-forward-off.example" {
-           type forward;
-           forward only;
-           forwarders { };
+               type forward;
+               forward only;
+               forwarders { };
        };
 
        zone "catalog0.example" {
index ce0c8e9311d3b65d3b7c9f50f4756b1edb319693..8d8b000cdb2be2123ba8432740f03a299381f239 100644 (file)
@@ -8,7 +8,7 @@ options {
 };
 
 zone "catalog.example" {
-    type secondary;
-    file "catalog.example.db";
-    primaries { 10.53.0.1; };
+       type secondary;
+       file "catalog.example.db";
+       primaries { 10.53.0.1; };
 };
index a62c9ab643a869f8dc77b083f3b5202c66461843..51968ac7a452253c4fb436d6a4dff5bff80a83c0 100644 (file)
@@ -1,11 +1,11 @@
 key rndc-key {
        algorithm "hmac-sha256";
-        secret "xxxxxxxxxxxxxxxxxxxxxxxx";
+       secret "xxxxxxxxxxxxxxxxxxxxxxxx";
 };
 
 key ddns-key {
        algorithm "hmac-sha256";
-        secret "yyyyyyyyyyyyyyyyyyyyyyyy";
+       secret "yyyyyyyyyyyyyyyyyyyyyyyy";
 };
 
 controls {
index 08c49b952ef57612e40efea8cd03dada0c34933c..0be57280d4c2722656ef92612d76cabbe7c7aeb7 100644 (file)
@@ -1,9 +1,9 @@
- /*
 * An inline-signing secondary should be forced to have a file option
 */
+/*
+ * An inline-signing secondary should be forced to have a file option
+ */
 
-  zone "." {
-         type secondary;
-         inline-signing yes;
-         primaries { 10.53.0.1; };
-  };
+zone "." {
+       type secondary;
+       inline-signing yes;
+       primaries { 10.53.0.1; };
+};
index 4a98c89e7c6eb83ba5d0cf9372894130f06f6924..5116cb46fc95459c39462958b9c10a7f3b6226a9 100644 (file)
@@ -1,6 +1,6 @@
 zone "clone" {
-        type secondary;
-        primaries { ::1; };
-        file "xxx";
-        max-journal-size 3g;
+       type secondary;
+       primaries { ::1; };
+       file "xxx";
+       max-journal-size 3g;
 };
index 191d4a3815a91a5754341237f2daac7c2efd73e8..2c80e3df2436e55ab9fc603ce2bc18916efae288 100644 (file)
@@ -9,5 +9,5 @@ options {
 zone "example.net" {
        type primary;
        file "example.db";
-        max-zone-ttl 600;
+       max-zone-ttl 600;
 };
index 3c4663ec697a8107bd71ae69a7b2553dfc663d08..e6c499e29d45a4b62011060a3d0c343596178d67 100644 (file)
@@ -1,4 +1,4 @@
 zone "\0example" {
-        type mirror;
-        file "example.db";
+       type mirror;
+       file "example.db";
 };
index 92a584a20a9f4d924945b0a07fa4cdb8bbadd5a5..df1ccef93b3b42a4cfdc1f43cb03477a2f081907 100644 (file)
@@ -1,4 +1,4 @@
 options {
-       query-source none;
-       query-source-v6 none;
+       query-source none;
+       query-source-v6 none;
 };
index a42cfabbe26eb2cc415df4b6ddca2fb133c5c3f7..e6292d41030ee607d888564c76a7a42e704590c9 100644 (file)
@@ -1,7 +1,7 @@
 view "test" {
        remote-servers "net" {
                192.168.1.2;
-        };
+       };
        zone "example.net" {
                type primary;
                file "example.net.db";
index 5bd631f3d69847225e63f56a3502006cec9c6b0b..49ca413a5045a019f66796c7f829544ee3ed9d72 100644 (file)
@@ -1,4 +1,4 @@
 zone example {
-        type secondary;
-        primaries { 1.2.3.4 key a..b; };
+       type secondary;
+       primaries { 1.2.3.4 key a..b; };
 };
index a8e8d7ce7f193f066fefbb2916f057c282a3863a..d6cd1042641aacb18bbb1cd23169c480c6cbebc9 100644 (file)
@@ -1,5 +1,5 @@
 remote-servers "net" {
-        192.168.1.2;
+       192.168.1.2;
 };
 
 zone "example.net" {
index e11982db10d6e0a7d690f4b30ede62b47d764a04..1a8e1ac9bd415a531fe108f0b0e3fc5c5f37a89d 100644 (file)
@@ -1,4 +1,4 @@
 zone example {
-        type secondary;
-        primaries { 1.2.3.4 tls a..b; };
+       type secondary;
+       primaries { 1.2.3.4 tls a..b; };
 };
index 1e1dd5e03ee211d6bca7243f87c2214345d544cc..9d59fb0b289e2301623b62911ae62598a81cf6f8 100644 (file)
@@ -1,3 +1,3 @@
 server 1.2.3.4 {
-       query-source none;
+       query-source none;
 };
index 3e7236c761b9dbca34af96bc14874a7ee16a8628..476fc414c00f294929bb4b2117168c6e31d52428 100644 (file)
@@ -1,3 +1,3 @@
 server fd92:7065:b8e:ffff::1 {
-       query-source-v6 none;
+       query-source-v6 none;
 };
index a94a730c34a3c7c9efc5f8a4e7cfc87a0b969832..595791d3852b84e8ef5d8c237d3b974687139344 100644 (file)
@@ -1,6 +1,6 @@
 zone example.com {
-        type primary;
-        file "example.db";
+       type primary;
+       file "example.db";
 
        /* agent-domain can't be the same as the zone name */
        send-report-channel example.com;
index 99f7be2c808a2a84cb81c10c99e43e4366ebeb69..8d0485d0b00f17193928af81ab1371e9c392318c 100644 (file)
@@ -1,6 +1,6 @@
 zone example.com {
-        type primary;
-        file "example.db";
+       type primary;
+       file "example.db";
 
        /* agent-domain can't be the below the zone name */
        send-report-channel sub.example.com;
index 7c14f46ece642df491bfd35c85e1c954305d963c..6e8fb691c32d83f4b17739aa2b17b3c4217c182f 100644 (file)
@@ -1,3 +1,3 @@
 options {
-        random-device "/dev/urandom";
+       random-device "/dev/urandom";
 };
index e8508a854686b2e8149bba8d2eafad26f074dbc0..4e180d734eae1037430aeb9500cbdb4b1d55e5c5 100644 (file)
@@ -1,12 +1,12 @@
 options {
        rate-limit {
-           responses-per-second 2;
-           all-per-second 50;
-           slip 3;
-           exempt-clients { 10.53.0.7; };
-           log-only yes;
+               responses-per-second 2;
+               all-per-second 50;
+               slip 3;
+               exempt-clients { 10.53.0.7; };
+               log-only yes;
 
-           min-table-size 0;
-           max-table-size 0;
+               min-table-size 0;
+               max-table-size 0;
        };
 };
index 7a566d4eed33caaf11561fe7a38e10d1d69f18df..ba8e32a45e399a202b8bbaa7bfeff399acf2c128 100644 (file)
@@ -1,4 +1,4 @@
 trust-anchors {
        example. initial-ds 60724 5 1 "D74CF845955A0DFE604AF215E948E67D2EA94FF3";
-        example. static-key 257 3 5 "AwEAAZtP9+RAA+W33A97e+HnnH8WTXzCWiEICyWj1B6rvZ9hd50ysbody0NLx7b3vZ1bzMLxLSRAr/n3Wi0TDZ1fvCKZhennfW8Wlc7ulCvHntSQYfKHUP0YWEo84sQAqIi850N1aiddj6CidwFo9JNW/HQ+8yarfrnGMFhX2STtkE0hNJ/R6JYKmD2EH7k1nyqJd08ibrEt55DuV4BiUjyyERdVbsuwE60jVqAwCKyVBYXb2sI+zv1yPNDBIANd6KTgnq6YWzx5ZodQP3W4K7Z/Bk3EKmVCvrTKZK/ADLAKaL0/6DD07+1jXA4BiNyoZTLTapkudkGad+Rn6zqCkwuMmrU=";
+       example. static-key 257 3 5 "AwEAAZtP9+RAA+W33A97e+HnnH8WTXzCWiEICyWj1B6rvZ9hd50ysbody0NLx7b3vZ1bzMLxLSRAr/n3Wi0TDZ1fvCKZhennfW8Wlc7ulCvHntSQYfKHUP0YWEo84sQAqIi850N1aiddj6CidwFo9JNW/HQ+8yarfrnGMFhX2STtkE0hNJ/R6JYKmD2EH7k1nyqJd08ibrEt55DuV4BiUjyyERdVbsuwE60jVqAwCKyVBYXb2sI+zv1yPNDBIANd6KTgnq6YWzx5ZodQP3W4K7Z/Bk3EKmVCvrTKZK/ADLAKaL0/6DD07+1jXA4BiNyoZTLTapkudkGad+Rn6zqCkwuMmrU=";
 };
index 7209cc6d4d68d3e6c701112d53e097cae4fc30bc..97d45c328b5879917ff25c6d39a11d2230faa88d 100644 (file)
@@ -1,4 +1,4 @@
 trust-anchors {
        example. static-ds 60724 5 1 "D74CF845955A0DFE604AF215E948E67D2EA94FF3";
-        example. initial-key 257 3 5 "AwEAAZtP9+RAA+W33A97e+HnnH8WTXzCWiEICyWj1B6rvZ9hd50ysbody0NLx7b3vZ1bzMLxLSRAr/n3Wi0TDZ1fvCKZhennfW8Wlc7ulCvHntSQYfKHUP0YWEo84sQAqIi850N1aiddj6CidwFo9JNW/HQ+8yarfrnGMFhX2STtkE0hNJ/R6JYKmD2EH7k1nyqJd08ibrEt55DuV4BiUjyyERdVbsuwE60jVqAwCKyVBYXb2sI+zv1yPNDBIANd6KTgnq6YWzx5ZodQP3W4K7Z/Bk3EKmVCvrTKZK/ADLAKaL0/6DD07+1jXA4BiNyoZTLTapkudkGad+Rn6zqCkwuMmrU=";
+       example. initial-key 257 3 5 "AwEAAZtP9+RAA+W33A97e+HnnH8WTXzCWiEICyWj1B6rvZ9hd50ysbody0NLx7b3vZ1bzMLxLSRAr/n3Wi0TDZ1fvCKZhennfW8Wlc7ulCvHntSQYfKHUP0YWEo84sQAqIi850N1aiddj6CidwFo9JNW/HQ+8yarfrnGMFhX2STtkE0hNJ/R6JYKmD2EH7k1nyqJd08ibrEt55DuV4BiUjyyERdVbsuwE60jVqAwCKyVBYXb2sI+zv1yPNDBIANd6KTgnq6YWzx5ZodQP3W4K7Z/Bk3EKmVCvrTKZK/ADLAKaL0/6DD07+1jXA4BiNyoZTLTapkudkGad+Rn6zqCkwuMmrU=";
 };
index ff26465f108e9f1d6c4cdef861c47b68e12a7af3..6e0be8c6db605b9f4bff670e84bd14208bb1fddd 100644 (file)
@@ -1,4 +1,4 @@
 trust-anchors {
-        example. initial-key 257 3 5 "AwEAAawvFp8GlBx8Qt6yaIqXkDe+nMkSk2HkTAG7qlVBo++AQwZ1j3Xl25IN4jsw0VTMbKUbafw9DYsVzztIwx1sNkKRLo6qP9SSkBL8RicQaafGtURtsYI3oqte5qqLve1CUpRD8J06Pg1xkOxsDlz9sQAyiQrOyvMbykJYkYrFYGLzYAgl/JtMyVVYlBl9pqxQuAPKYPOuO1axaad/wLN3+wTy/hcJfpvJpqzXlDF9bI5RmpoX/7geZ06vpcYJEoT0xkkmPlEl0ZjEDrm/WIaSWG0/CEDpHcOXFz4OEczMVpY+lnuFfKybwF1WHFn2BwVEOS6cMM6ukIjINQyrszHhWUU=";
-        example. static-key 257 3 5 "AwEAAZtP9+RAA+W33A97e+HnnH8WTXzCWiEICyWj1B6rvZ9hd50ysbody0NLx7b3vZ1bzMLxLSRAr/n3Wi0TDZ1fvCKZhennfW8Wlc7ulCvHntSQYfKHUP0YWEo84sQAqIi850N1aiddj6CidwFo9JNW/HQ+8yarfrnGMFhX2STtkE0hNJ/R6JYKmD2EH7k1nyqJd08ibrEt55DuV4BiUjyyERdVbsuwE60jVqAwCKyVBYXb2sI+zv1yPNDBIANd6KTgnq6YWzx5ZodQP3W4K7Z/Bk3EKmVCvrTKZK/ADLAKaL0/6DD07+1jXA4BiNyoZTLTapkudkGad+Rn6zqCkwuMmrU=";
+       example. initial-key 257 3 5 "AwEAAawvFp8GlBx8Qt6yaIqXkDe+nMkSk2HkTAG7qlVBo++AQwZ1j3Xl25IN4jsw0VTMbKUbafw9DYsVzztIwx1sNkKRLo6qP9SSkBL8RicQaafGtURtsYI3oqte5qqLve1CUpRD8J06Pg1xkOxsDlz9sQAyiQrOyvMbykJYkYrFYGLzYAgl/JtMyVVYlBl9pqxQuAPKYPOuO1axaad/wLN3+wTy/hcJfpvJpqzXlDF9bI5RmpoX/7geZ06vpcYJEoT0xkkmPlEl0ZjEDrm/WIaSWG0/CEDpHcOXFz4OEczMVpY+lnuFfKybwF1WHFn2BwVEOS6cMM6ukIjINQyrszHhWUU=";
+       example. static-key 257 3 5 "AwEAAZtP9+RAA+W33A97e+HnnH8WTXzCWiEICyWj1B6rvZ9hd50ysbody0NLx7b3vZ1bzMLxLSRAr/n3Wi0TDZ1fvCKZhennfW8Wlc7ulCvHntSQYfKHUP0YWEo84sQAqIi850N1aiddj6CidwFo9JNW/HQ+8yarfrnGMFhX2STtkE0hNJ/R6JYKmD2EH7k1nyqJd08ibrEt55DuV4BiUjyyERdVbsuwE60jVqAwCKyVBYXb2sI+zv1yPNDBIANd6KTgnq6YWzx5ZodQP3W4K7Z/Bk3EKmVCvrTKZK/ADLAKaL0/6DD07+1jXA4BiNyoZTLTapkudkGad+Rn6zqCkwuMmrU=";
 };
index 2887071dbc3399cb0a9f8f2c174d46855fa858bb..2d89d5f5e68d47d2f59287b9de52acb2032f778d 100644 (file)
@@ -1,6 +1,6 @@
 template a {
        type secondary;
-        primaries { 192.0.0.2; };
+       primaries { 192.0.0.2; };
        file "$name.db";
 };
 
@@ -10,6 +10,6 @@ zone example {
 
 zone other {
        type secondary;
-        primaries { 192.0.0.2; };
-        file "example.db";
+       primaries { 192.0.0.2; };
+       file "example.db";
 };
index 8f68c2d7c2a20f313b4431f81a8b6f3d44bb29e8..da3afe9b15d197de8133a6e2faf367cb7a466da6 100644 (file)
@@ -1,6 +1,6 @@
 zone "clone" {
-        type secondary;
-        primaries { ::1; };
-        file "xxx";
-        min-transfer-rate-in 0 28800;
+       type secondary;
+       primaries { ::1; };
+       file "xxx";
+       min-transfer-rate-in 0 28800;
 };
index 9f43fb4bf6593929849cd5c1fe45d3e6d83bdc84..30fe67748abc87c7500f631b0a1088438b98ef18 100644 (file)
@@ -1,6 +1,6 @@
 zone "clone" {
-        type secondary;
-        primaries { ::1; };
-        file "xxx";
-        min-transfer-rate-in 1024 65536;
+       type secondary;
+       primaries { ::1; };
+       file "xxx";
+       min-transfer-rate-in 1024 65536;
 };
index ec97ad563fb6047bc9b51c600b4f632938f1a9df..8cd7a762c78fe18a652e666a9475a4b67dfcc420 100644 (file)
@@ -1,10 +1,10 @@
 options {
-  check-integrity yes; // default is yes
+       check-integrity yes; // default is yes
 };
 
 zone "check-dup-records" {
-  type primary;
-  file "check-dup-records.db";
-  check-dup-records fail;
+       type primary;
+       file "check-dup-records.db";
+       check-dup-records fail;
 };
 
index 0e2da710338398440ad9b6ec7304eadf1ae9ece0..e144e380f74af595b7bcfe049e2a38e7d63bdf78 100644 (file)
@@ -1,9 +1,9 @@
 options {
-  check-integrity yes; // default is yes
+       check-integrity yes; // default is yes
 };
 
 zone "check-mx-cname" {
-  type primary;
-  file "check-mx-cname.db";
-  check-mx-cname fail;
+       type primary;
+       file "check-mx-cname.db";
+       check-mx-cname fail;
 };
index 1143146b85852c6877dad30fa93d68e077253914..4c0541040ec9b6710f16ae2eb7631b3d38c16e97 100644 (file)
@@ -1,9 +1,9 @@
 options {
-  check-integrity yes; // default is yes
+       check-integrity yes; // default is yes
 };
 
 zone "check-mx" {
-  type primary;
-  file "check-mx.db";
-  check-mx fail;
+       type primary;
+       file "check-mx.db";
+       check-mx fail;
 };
index 9c999ad3f8ad50ff0368710a8d8e7770b6ed7f3c..69b86248e709bae5aac6be8a5aa6cc1feaf9c928 100644 (file)
@@ -1,9 +1,9 @@
 options {
-  check-integrity yes; // default is yes
+       check-integrity yes; // default is yes
 };
 
 zone "check-names" {
-  type primary;
-  file "check-names.db";
-  check-names fail;
+       type primary;
+       file "check-names.db";
+       check-names fail;
 };
index 7472ddd81a307d07a3809e9d6c5bcfa99a16ad3b..da2225fe302f0c14334e2cac8ed2f511c0339fce 100644 (file)
@@ -1,3 +1,3 @@
 trust-anchors {
-        . static-ds 20326 8 2 "E06D44B80B8F1D39A95C0B0D7C65D08458E880409BBC683457104237C7F8EC8D";
+       . static-ds 20326 8 2 "E06D44B80B8F1D39A95C0B0D7C65D08458E880409BBC683457104237C7F8EC8D";
 };
index a5b7f39ab73631d7f069bf6932bac44a53a0447e..9cb8c4f329a3b9e28b0654f716d5e4153245151f 100644 (file)
@@ -1,9 +1,9 @@
 options {
-  check-integrity yes; // default is yes
+       check-integrity yes; // default is yes
 };
 
 zone "check-srv-cname" {
-  type primary;
-  file "check-srv-cname.db";
-  check-srv-cname fail;
+       type primary;
+       file "check-srv-cname.db";
+       check-srv-cname fail;
 };
index a5a9ac9a83cb2653d0ece2452b2ad6bf1b0231e3..3f65d6aa5c5c40ea56687ac68a8c583cd7593490 100644 (file)
@@ -1,5 +1,5 @@
 zone "check-wildcard" {
-  type primary;
-  file "check-wildcard.db";
-  check-wildcard no;
+       type primary;
+       file "check-wildcard.db";
+       check-wildcard no;
 };
index c35f82686e8e953994056a4cfa631f7468775fab..8c091d01c31935cf4ee07639ba6d76a6f7d004b6 100644 (file)
@@ -1,5 +1,5 @@
 zone "check-wildcard" {
-  type primary;
-  file "check-wildcard.db";
-  check-wildcard yes;
+       type primary;
+       file "check-wildcard.db";
+       check-wildcard yes;
 };
index 9a28f58430203141488f11cb0ac39f4874fc8009..8dd4913533caba1ff6c8d7982dfaa18698738e0b 100644 (file)
@@ -1,5 +1,5 @@
 # In some cases a "tls" statement may omit key-file and cert-file.
 tls local-tls {
-    protocols {TLSv1.2;};
-    remote-hostname "fqdn.example.com";
+       protocols {TLSv1.2;};
+       remote-hostname "fqdn.example.com";
 };
index 3c0760f9dd9c0c40675c3a1b2f33420c02025d1e..e381335898a26868d63c19b6f0c0577b2517ee83 100644 (file)
@@ -1,4 +1,4 @@
 trust-anchors {
        example. initial-ds 60724 5 1 "D74CF845955A0DFE604AF215E948E67D2EA94FF3";
-        example. initial-key 257 3 5 "AwEAAZtP9+RAA+W33A97e+HnnH8WTXzCWiEICyWj1B6rvZ9hd50ysbody0NLx7b3vZ1bzMLxLSRAr/n3Wi0TDZ1fvCKZhennfW8Wlc7ulCvHntSQYfKHUP0YWEo84sQAqIi850N1aiddj6CidwFo9JNW/HQ+8yarfrnGMFhX2STtkE0hNJ/R6JYKmD2EH7k1nyqJd08ibrEt55DuV4BiUjyyERdVbsuwE60jVqAwCKyVBYXb2sI+zv1yPNDBIANd6KTgnq6YWzx5ZodQP3W4K7Z/Bk3EKmVCvrTKZK/ADLAKaL0/6DD07+1jXA4BiNyoZTLTapkudkGad+Rn6zqCkwuMmrU=";
+       example. initial-key 257 3 5 "AwEAAZtP9+RAA+W33A97e+HnnH8WTXzCWiEICyWj1B6rvZ9hd50ysbody0NLx7b3vZ1bzMLxLSRAr/n3Wi0TDZ1fvCKZhennfW8Wlc7ulCvHntSQYfKHUP0YWEo84sQAqIi850N1aiddj6CidwFo9JNW/HQ+8yarfrnGMFhX2STtkE0hNJ/R6JYKmD2EH7k1nyqJd08ibrEt55DuV4BiUjyyERdVbsuwE60jVqAwCKyVBYXb2sI+zv1yPNDBIANd6KTgnq6YWzx5ZodQP3W4K7Z/Bk3EKmVCvrTKZK/ADLAKaL0/6DD07+1jXA4BiNyoZTLTapkudkGad+Rn6zqCkwuMmrU=";
 };
index 686ec14deda917343686cd3e960f13156ff80b6a..2df28550b696a3f4d9490ac655abcaac3f50b25b 100644 (file)
@@ -1,4 +1,4 @@
 trust-anchors {
        example. static-ds 60724 5 1 "D74CF845955A0DFE604AF215E948E67D2EA94FF3";
-        example. static-key 257 3 5 "AwEAAZtP9+RAA+W33A97e+HnnH8WTXzCWiEICyWj1B6rvZ9hd50ysbody0NLx7b3vZ1bzMLxLSRAr/n3Wi0TDZ1fvCKZhennfW8Wlc7ulCvHntSQYfKHUP0YWEo84sQAqIi850N1aiddj6CidwFo9JNW/HQ+8yarfrnGMFhX2STtkE0hNJ/R6JYKmD2EH7k1nyqJd08ibrEt55DuV4BiUjyyERdVbsuwE60jVqAwCKyVBYXb2sI+zv1yPNDBIANd6KTgnq6YWzx5ZodQP3W4K7Z/Bk3EKmVCvrTKZK/ADLAKaL0/6DD07+1jXA4BiNyoZTLTapkudkGad+Rn6zqCkwuMmrU=";
+       example. static-key 257 3 5 "AwEAAZtP9+RAA+W33A97e+HnnH8WTXzCWiEICyWj1B6rvZ9hd50ysbody0NLx7b3vZ1bzMLxLSRAr/n3Wi0TDZ1fvCKZhennfW8Wlc7ulCvHntSQYfKHUP0YWEo84sQAqIi850N1aiddj6CidwFo9JNW/HQ+8yarfrnGMFhX2STtkE0hNJ/R6JYKmD2EH7k1nyqJd08ibrEt55DuV4BiUjyyERdVbsuwE60jVqAwCKyVBYXb2sI+zv1yPNDBIANd6KTgnq6YWzx5ZodQP3W4K7Z/Bk3EKmVCvrTKZK/ADLAKaL0/6DD07+1jXA4BiNyoZTLTapkudkGad+Rn6zqCkwuMmrU=";
 };
index 7cf565a860820e88c7c04635bd4a7c134a7c86b0..5bdca10ee319b92d9f97c18e2ca8395e75a2c9bb 100644 (file)
@@ -1,57 +1,57 @@
 dnssec-policy "internet" {
-  keys {
-    ksk   key-directory   lifetime unlimited   algorithm ecdsa256;
-    zsk   key-directory   lifetime P90D        algorithm ecdsa256;
-  };
+       keys {
+               ksk   key-directory   lifetime unlimited   algorithm ecdsa256;
+               zsk   key-directory   lifetime P90D        algorithm ecdsa256;
+       };
 
-  nsec3param iterations 0 optout no salt-length 8;
+       nsec3param iterations 0 optout no salt-length 8;
 };
 
 dnssec-policy "intranet" {
-  keys {
-    ksk   key-directory   lifetime unlimited   algorithm ecdsa256;
-    zsk   key-directory   lifetime P30D        algorithm ecdsa256;
-  };
-  nsec3param iterations 0 optout no salt-length 8;
+       keys {
+               ksk   key-directory   lifetime unlimited   algorithm ecdsa256;
+               zsk   key-directory   lifetime P30D        algorithm ecdsa256;
+       };
+       nsec3param iterations 0 optout no salt-length 8;
 };
 
 dnssec-policy "localhost" {
-  keys {
-    ksk   key-directory   lifetime unlimited   algorithm ecdsa256;
-    zsk   key-directory   lifetime P30D        algorithm ecdsa256;
-  };
-  nsec3param iterations 0 optout no salt-length 8;
+       keys {
+               ksk   key-directory   lifetime unlimited   algorithm ecdsa256;
+               zsk   key-directory   lifetime P30D        algorithm ecdsa256;
+       };
+       nsec3param iterations 0 optout no salt-length 8;
 };
 
 options {
-    key-directory "global/keys";
+       key-directory "global/keys";
 };
 
 view "localhost" {
-    match-clients { 127.0.0.1; ::1; };
-    zone "example.com" IN {
-        type primary;
-        file "localhost/example.com.zone";
-        dnssec-policy "localhost";
-    };
+       match-clients { 127.0.0.1; ::1; };
+       zone "example.com" IN {
+               type primary;
+               file "localhost/example.com.zone";
+               dnssec-policy "localhost";
+       };
 };
 
 view "external" {
-    match-clients { 0/0; };
-    key-directory "external/keys";
-    zone "example.com" IN {
-        type primary;
-        file "external/example.com.zone";
-        dnssec-policy "internet";
-    };
+       match-clients { 0/0; };
+       key-directory "external/keys";
+       zone "example.com" IN {
+               type primary;
+               file "external/example.com.zone";
+               dnssec-policy "internet";
+       };
 };
 
 view "internal" {
-    match-clients { ::/0; };
-    key-directory "internal/keys";
-    zone "example.com" IN {
-        type primary;
-        file "internal/example.com.zone";
-        dnssec-policy "intranet";
-    };
+       match-clients { ::/0; };
+       key-directory "internal/keys";
+       zone "example.com" IN {
+               type primary;
+               file "internal/example.com.zone";
+               dnssec-policy "intranet";
+       };
 };
index 303617c87edb96c14e13227237bddc1e470cd2be..6aeadbf767fbfaefb33509d85c79a7941f410866 100644 (file)
@@ -1,14 +1,14 @@
 view aview {
        key akey {
-               algorithm hmac-sha256;
-               secret "9999abcd8765";
+               algorithm hmac-sha256;
+               secret "9999abcd8765";
        };
 
        zone "azone" {
                type secondary;
-               file "azone.db";
-               primaries {
-                   1.2.3.4 key "akey";
-               };
-       };
+               file "azone.db";
+               primaries {
+                       1.2.3.4 key "akey";
+               };
+       };
 };
index 475b6d04e360a278ac2175b26dc3a3630b25c03c..4eebe7027f4c356a8ff3bafca1646d60ec4e08d6 100644 (file)
@@ -3,5 +3,5 @@ options {
 };
 
 trust-anchors {
-    example. static-ds 60724 5 2 "29E79B9064EE1A11DF3BFF19581DDFED7952C22CC204ACE17B6007EB1437E9E6";
+       example. static-ds 60724 5 2 "29E79B9064EE1A11DF3BFF19581DDFED7952C22CC204ACE17B6007EB1437E9E6";
 };
index a6e5d7988fdf96d8d97175486bf1b1629d9796cd..7f9d75bb51d98debae770cf5d4a5bc2929b2c7be 100644 (file)
@@ -1,3 +1,3 @@
 options {
-       query-source none;
+       query-source none;
 };
index e00e6ec093d3d94677b972fc4e5056a14302ca6d..54ed81ac651ba922c3797a332c0a23824f1ab74b 100644 (file)
@@ -1,3 +1,3 @@
 options {
-       query-source-v6 none;
+       query-source-v6 none;
 };
index 9fb093d3c46b296959649da8516fdefad656e5cc..5a51680a97e5b505132356a5b57733dd68f3da54 100644 (file)
@@ -1,6 +1,6 @@
 key foo {
-        algorithm hmac-sha256;
-        secret "9999abcd8765";
+       algorithm hmac-sha256;
+       secret "9999abcd8765";
 };
 
 tls bar {
index 87886559e65a1d10e20853ba5094e651d9a40497..81aeb3f5e8154d1a88695b9d42d00a81b25b3e0f 100644 (file)
@@ -1,6 +1,6 @@
 template a {
        type secondary;
-        primaries { 192.0.0.2; };
+       primaries { 192.0.0.2; };
        file "$name.db";
 };
 
index d5e7a78c5e4f090f95acf14474a0d8b7a6126ccd..231cbdb5d3217fbd02c879cf638a706c5b876891 100644 (file)
@@ -7,7 +7,7 @@ options {
 view default {
        match-clients { any; };
        recursion no;
-        dnssec-validation no;
+       dnssec-validation no;
        zone "1.0.0.127.in-addr.arpa." {
                type primary;
                file "localhost.db";
index 3f7ff3bc508e0384b620051a38e97c190601c8ff..3a3122fa347c99a03fae37404497cf030a46ace8 100644 (file)
@@ -13,10 +13,12 @@ options {
        {% include_indented "_common/options.conf.j2" %}
        dnssec-validation no;
        deny-answer-addresses { 192.0.2.0/24; 2001:db8:beef::/48; }
-                except-from { "example.org"; };
+               except-from { "example.org"; };
        deny-answer-aliases { "example.org"; }
-               except-from { "goodcname.example.net";
-                             "gooddname.example.net"; };
+               except-from {
+                       "goodcname.example.net";
+                       "gooddname.example.net";
+               };
        allow-query {!10.53.0.8; any; };
        send-cookie yes;
        nocookie-udp-size 512;
index 12a05a28e221041b0cc723904097bb3ce6efd831..96d0cbf769cd516582bf8758ea1cca5740bb065c 100644 (file)
@@ -4,10 +4,12 @@ options {
        {% include_indented "_common/options.conf.j2" %}
        dnssec-validation no;
        deny-answer-addresses { 192.0.2.0/24; 2001:db8:beef::/48; }
-                except-from { "example.org"; };
+               except-from { "example.org"; };
        deny-answer-aliases { "example.org"; }
-               except-from { "goodcname.example.net";
-                             "gooddname.example.net"; };
+               except-from {
+                       "goodcname.example.net";
+                       "gooddname.example.net";
+               };
        allow-query {!10.53.0.8; any; };
        send-cookie yes;
        nocookie-udp-size 512;
index 129246b6bfd6fc577a5cbe981d7094a782ccb01c..bc41cee6536d7027f36f591dc8f02c8213cf0660 100644 (file)
@@ -27,7 +27,7 @@ dlz "example three" {
 
 dlz "example four" {
        // Long zone name to trigger ISC_R_NOSPACE in dns_sdlz_putrr.
-        database "dlopen @TOP_BUILDDIR@/testlib-driver-dlzexternal.@DYLIB@ 123456789.123456789.123456789.123456789.123456789.example.foo";
+       database "dlopen @TOP_BUILDDIR@/testlib-driver-dlzexternal.@DYLIB@ 123456789.123456789.123456789.123456789.123456789.example.foo";
 };
 
 dlz "unsearched1" {
index 126856fd4ac9a97bc7e4a2b40c7fc45b969c95d7..c55decc41aec55dddb5b562506b6ef2405c3e387 100644 (file)
@@ -420,18 +420,18 @@ zone "rsasha1-1024.example" {
 };
 
 zone "rsasha256oid.example" {
-        type primary;
-        file "rsasha256oid.example.db.signed";
+       type primary;
+       file "rsasha256oid.example.db.signed";
 };
 
 zone "rsasha512oid.example" {
-        type primary;
-        file "rsasha512oid.example.db.signed";
+       type primary;
+       file "rsasha512oid.example.db.signed";
 };
 
 zone "unknownoid.example" {
-        type primary;
-        file "unknownoid.example.db.signed";
+       type primary;
+       file "unknownoid.example.db.signed";
 };
 
 zone "target.peer-ns-spoof" {
@@ -440,18 +440,18 @@ zone "target.peer-ns-spoof" {
 };
 
 zone "extradsoid.example" {
-        type primary;
-        file "extradsoid.example.db.signed";
+       type primary;
+       file "extradsoid.example.db.signed";
 };
 
 zone "extradsunknownoid.example" {
-        type primary;
-        file "extradsunknownoid.example.db.signed";
+       type primary;
+       file "extradsunknownoid.example.db.signed";
 };
 
 zone "extended-ds-unknown-oid.example" {
-        type primary;
-        file "extended-ds-unknown-oid.example.db.signed";
+       type primary;
+       file "extended-ds-unknown-oid.example.db.signed";
 };
 
 dnssec-policy "siginterval" {
index 811dd8a234760b423d5d63aa21dcf13b457f972b..d776d334a0275e1a79935ce03777f95f393a0f50 100644 (file)
@@ -13,12 +13,12 @@ options {
 
 {% if PARENT_DNSKEY is defined and PARENT_DNSKEY|length %}
 zone "f045.test" {
-        type static-stub;
-        server-addresses { 10.53.0.1; };
+       type static-stub;
+       server-addresses { 10.53.0.1; };
 };
 
 trust-anchors {
-        f045.test. static-key 257 3 13 "@PARENT_DNSKEY@";
+       f045.test. static-key 257 3 13 "@PARENT_DNSKEY@";
 };
 {% else %}
 zone "f043.test" {
index 090a45765e7c424eda1c16da5022c216501caefb..1b60099f95ea6967f0d21d6a4cf8d43611e0c418 100644 (file)
@@ -146,7 +146,7 @@ zone "example8" {
 };
 
 tls tls-example-primary-mutual-tls {
-    remote-hostname "srv01.crt01.example.com";
+       remote-hostname "srv01.crt01.example.com";
        ca-file "../CA/CA.pem";
        cert-file "../CA/certs/srv01.client02-ns2.example.com.pem";
        key-file "../CA/certs/srv01.client02-ns2.example.com.key";
@@ -167,7 +167,7 @@ zone "example10" {
 };
 
 tls tls-example-primary-mutual-tls-expired {
-    remote-hostname "srv01.crt01.example.com";
+       remote-hostname "srv01.crt01.example.com";
        ca-file "../CA/CA.pem";
        cert-file "../CA/certs/srv01.client03-ns2-expired.example.com.pem";
        key-file "../CA/certs/srv01.client03-ns2-expired.example.com.key";
index 0fc5fff6351eef2ba360b1dae128b3dcc1726b17..80cb6cd97f3b01565cd0444a916179986be24655 100644 (file)
@@ -4,10 +4,12 @@ options {
        {% include_indented "_common/options.conf.j2" %}
        dnssec-validation no;
        deny-answer-addresses { 192.0.2.0/24; 2001:db8:beef::/48; }
-                except-from { "example.org"; };
+               except-from { "example.org"; };
        deny-answer-aliases { "example.org"; }
-               except-from { "goodcname.example.net";
-                             "gooddname.example.net"; };
+               except-from {
+                       "goodcname.example.net";
+                       "gooddname.example.net";
+               };
        allow-query {!10.53.0.8; any; };
        allow-transfer { none; };
 };
index 672812d87d0b7522a5e619c91494c8bcebce9544..c163e74dc84f960540c3da9e85602832ee2bd659 100644 (file)
@@ -8,13 +8,13 @@ options {
 };
 
 key "keyforview1" {
-        algorithm @DEFAULT_HMAC@;
-        secret "YPfMoAk6h+3iN8MDRQC004iSNHY=";
+       algorithm @DEFAULT_HMAC@;
+       secret "YPfMoAk6h+3iN8MDRQC004iSNHY=";
 };
 
 key "keyforview2" {
-        algorithm @DEFAULT_HMAC@;
-        secret "4xILSZQnuO1UKubXHkYUsvBRPu8=";
+       algorithm @DEFAULT_HMAC@;
+       secret "4xILSZQnuO1UKubXHkYUsvBRPu8=";
 };
 
 key-store "hsm" {
index 0a44c4682c3dcbccd303d846711202ec00b74ce7..2ee50b11cc30e82b4922973baa49ac44ec9553cc 100644 (file)
@@ -9,17 +9,17 @@ options {
 };
 
 {% if family == "v6" %}
-        plugin query "@TOP_BUILDDIR@/filter-@filtertype@.@DYLIB@" {
-                filter-@filtertype@-on-v6 yes;
-                filter-@filtertype@ { @ns.ip6@; };
-        };
+plugin query "@TOP_BUILDDIR@/filter-@filtertype@.@DYLIB@" {
+       filter-@filtertype@-on-v6 yes;
+       filter-@filtertype@ { @ns.ip6@; };
+};
 {% else %}
-        acl filterees { @ns.ip@; };
+acl filterees { @ns.ip@; };
 
-        plugin query "@TOP_BUILDDIR@/filter-@filtertype@.@DYLIB@" {
-                filter-@filtertype@-on-v4 yes;
-                filter-@filtertype@ { filterees; };
-        };
+plugin query "@TOP_BUILDDIR@/filter-@filtertype@.@DYLIB@" {
+       filter-@filtertype@-on-v4 yes;
+       filter-@filtertype@ { filterees; };
+};
 {% endif %}
 
 {% include "_common/controls.conf.j2" %}
index d67a6f4e3a595041bf325321db3e42e6917a0071..be7b9e26532dc568b4b9b878fec6533ccbeae4ae 100644 (file)
@@ -8,15 +8,15 @@ options {
 };
 
 {% if family == "v6" %}
-        plugin query "@TOP_BUILDDIR@/filter-@filtertype@.@DYLIB@" {
-                filter-@filtertype@-on-v6 yes;
-                filter-@filtertype@ { @ns.ip6@; };
-        };
+plugin query "@TOP_BUILDDIR@/filter-@filtertype@.@DYLIB@" {
+       filter-@filtertype@-on-v6 yes;
+       filter-@filtertype@ { @ns.ip6@; };
+};
 {% else %}
-        plugin query "@TOP_BUILDDIR@/filter-@filtertype@.@DYLIB@" {
-                filter-@filtertype@-on-v4 yes;
-                filter-@filtertype@ { @ns.ip@; };
-        };
+plugin query "@TOP_BUILDDIR@/filter-@filtertype@.@DYLIB@" {
+       filter-@filtertype@-on-v4 yes;
+       filter-@filtertype@ { @ns.ip@; };
+};
 {% endif %}
 
 {% include "_common/controls.conf.j2" %}
index 4a619f72b5e85dc7a7114610d2b132ad65cc2534..ac6d84b21c249171202b04067d01e479e91456a0 100644 (file)
@@ -8,15 +8,15 @@ options {
 };
 
 {% if family == "v6" %}
-        plugin query "@TOP_BUILDDIR@/filter-@filtertype@.@DYLIB@" {
-                filter-@filtertype@-on-v6 break-dnssec;
-                filter-@filtertype@ { @ns.ip6@; };
-        };
+plugin query "@TOP_BUILDDIR@/filter-@filtertype@.@DYLIB@" {
+       filter-@filtertype@-on-v6 break-dnssec;
+       filter-@filtertype@ { @ns.ip6@; };
+};
 {% else %}
-        plugin query "@TOP_BUILDDIR@/filter-@filtertype@.@DYLIB@" {
-                filter-@filtertype@-on-v4 break-dnssec;
-                filter-@filtertype@ { @ns.ip@; };
-        };
+plugin query "@TOP_BUILDDIR@/filter-@filtertype@.@DYLIB@" {
+       filter-@filtertype@-on-v4 break-dnssec;
+       filter-@filtertype@ { @ns.ip@; };
+};
 {% endif %}
 
 {% include "_common/controls.conf.j2" %}
index b8f1011886631ad880858ea012d292e5eb866364..d482ebe6a2fcf7456da50a48a6758c41a188bcab 100644 (file)
@@ -1,27 +1,27 @@
 tls tls-forward-secrecy {
-    protocols { TLSv1.2; };
-    ciphers "HIGH:!kRSA:!aNULL:!eNULL:!RC4:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!SHA1:!SHA256:!SHA384";
-    prefer-server-ciphers yes;
-    key-file "../CA/certs/srv02.crt01.example.nil.key";
-    cert-file "../CA/certs/srv02.crt01.example.nil.pem";
-    dhparam-file "../dhparam3072.pem";
+       protocols { TLSv1.2; };
+       ciphers "HIGH:!kRSA:!aNULL:!eNULL:!RC4:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!SHA1:!SHA256:!SHA384";
+       prefer-server-ciphers yes;
+       key-file "../CA/certs/srv02.crt01.example.nil.key";
+       cert-file "../CA/certs/srv02.crt01.example.nil.pem";
+       dhparam-file "../dhparam3072.pem";
 };
 
 tls tls-forward-secrecy-mutual-tls {
-    protocols { TLSv1.2; };
-    ciphers "HIGH:!kRSA:!aNULL:!eNULL:!RC4:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!SHA1:!SHA256:!SHA384";
-    prefer-server-ciphers yes;
-    key-file "../CA/certs/srv02.crt01.example.nil.key";
-    cert-file "../CA/certs/srv02.crt01.example.nil.pem";
-    dhparam-file "../dhparam3072.pem";
-    ca-file "../CA/CA.pem";
+       protocols { TLSv1.2; };
+       ciphers "HIGH:!kRSA:!aNULL:!eNULL:!RC4:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!SHA1:!SHA256:!SHA384";
+       prefer-server-ciphers yes;
+       key-file "../CA/certs/srv02.crt01.example.nil.key";
+       cert-file "../CA/certs/srv02.crt01.example.nil.pem";
+       dhparam-file "../dhparam3072.pem";
+       ca-file "../CA/CA.pem";
 };
 
 tls tls-expired {
-    protocols { TLSv1.2; };
-    ciphers "HIGH:!kRSA:!aNULL:!eNULL:!RC4:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!SHA1:!SHA256:!SHA384";
-    prefer-server-ciphers yes;
-    key-file "../CA/certs/srv02.crt02-expired.example.nil.key";
-    cert-file "../CA/certs/srv02.crt02-expired.example.nil.pem";
-    dhparam-file "../dhparam3072.pem";
+       protocols { TLSv1.2; };
+       ciphers "HIGH:!kRSA:!aNULL:!eNULL:!RC4:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!SHA1:!SHA256:!SHA384";
+       prefer-server-ciphers yes;
+       key-file "../CA/certs/srv02.crt02-expired.example.nil.key";
+       cert-file "../CA/certs/srv02.crt02-expired.example.nil.pem";
+       dhparam-file "../dhparam3072.pem";
 };
index 9f49d99fd6c6b678eaa390b614efdae896ac4f8c..fbc5a73d6230ef15b9efe14deaedcda824c0ac7a 100644 (file)
@@ -1,37 +1,37 @@
 tls tls-forward-secrecy {
-    protocols { TLSv1.2; };
-    ciphers "HIGH:!kRSA:!aNULL:!eNULL:!RC4:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!SHA1:!SHA256:!SHA384";
-    dhparam-file "../dhparam3072.pem";
-    ca-file "../CA/CA.pem";
+       protocols { TLSv1.2; };
+       ciphers "HIGH:!kRSA:!aNULL:!eNULL:!RC4:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!SHA1:!SHA256:!SHA384";
+       dhparam-file "../dhparam3072.pem";
+       ca-file "../CA/CA.pem";
 };
 
 tls tls-forward-secrecy-remote-hostname {
-    protocols { TLSv1.2; };
-    ca-file "../CA/CA.pem";
-    remote-hostname "srv02.crt01.example.nil";
+       protocols { TLSv1.2; };
+       ca-file "../CA/CA.pem";
+       remote-hostname "srv02.crt01.example.nil";
 };
 
 tls tls-forward-secrecy-bad-remote-hostname {
-    protocols { TLSv1.2; };
-    ca-file "../CA/CA.pem";
-    remote-hostname "srv02-bad.crt01.example.nil";
+       protocols { TLSv1.2; };
+       ca-file "../CA/CA.pem";
+       remote-hostname "srv02-bad.crt01.example.nil";
 };
 
 tls tls-forward-secrecy-mutual-tls {
-    protocols { TLSv1.2; };
-    ciphers "HIGH:!kRSA:!aNULL:!eNULL:!RC4:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!SHA1:!SHA256:!SHA384";
-    key-file "../CA/certs/srv04.crt01.example.nil.key";
-    cert-file "../CA/certs/srv04.crt01.example.nil.pem";
-    dhparam-file "../dhparam3072.pem";
-    ca-file "../CA/CA.pem";
+       protocols { TLSv1.2; };
+       ciphers "HIGH:!kRSA:!aNULL:!eNULL:!RC4:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!SHA1:!SHA256:!SHA384";
+       key-file "../CA/certs/srv04.crt01.example.nil.key";
+       cert-file "../CA/certs/srv04.crt01.example.nil.pem";
+       dhparam-file "../dhparam3072.pem";
+       ca-file "../CA/CA.pem";
 };
 
 tls tls-expired {
-    protocols { TLSv1.2; };
-    ciphers "HIGH:!kRSA:!aNULL:!eNULL:!RC4:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!SHA1:!SHA256:!SHA384";
-    prefer-server-ciphers yes;
-    dhparam-file "../dhparam3072.pem";
-    ca-file "../CA/CA.pem";
+       protocols { TLSv1.2; };
+       ciphers "HIGH:!kRSA:!aNULL:!eNULL:!RC4:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!SHA1:!SHA256:!SHA384";
+       prefer-server-ciphers yes;
+       dhparam-file "../dhparam3072.pem";
+       ca-file "../CA/CA.pem";
 };
 
 zone "example1." {
index bf5fd3bdb585447e27eb79a3459b8747f20cc61c..b7c4455a6e62b37410ed75ee4b2648a64df51fde 100644 (file)
@@ -1,5 +1,5 @@
 zone "mars.com" {
-        type primary;
-        file "mars.com.db";
+       type primary;
+       file "mars.com.db";
 };
 
index 210737292f6516795f2098f73fc776053456f915..d84f895df800151af4fc5e907d51b1b34954391f 100644 (file)
@@ -1,5 +1,5 @@
 zone "zone1.com" {
-        type primary;
-        file "zone1.com.db";
+       type primary;
+       file "zone1.com.db";
 };
 
index be049eac3da740fa2978a2b3916404f28e18faba..2e2cf763d1cb1e25476f4d7e71a57c07fd27d4f1 100644 (file)
@@ -1,5 +1,5 @@
 zone "zone2.com" {
-        type primary;
-        file "zone2.com.db";
+       type primary;
+       file "zone2.com.db";
 };
 
index 6bf6066e471515dcbabe8f58329819f54540bf4f..8ffc7dd6ea4111f912a3fa3c0b1d66c7d1b6d045 100644 (file)
@@ -47,12 +47,12 @@ zone "bits" {
 };
 
 zone "incremental-updates" {
-    type primary;
-    file "incremental-updates.db";
-    inline-signing yes;
-    dnssec-policy inline;
-    sig-signing-signatures 1;  // force incremental processing
-    allow-update { any; };
+       type primary;
+       file "incremental-updates.db";
+       inline-signing yes;
+       dnssec-policy inline;
+       sig-signing-signatures 1;       // force incremental processing
+       allow-update { any; };
 };
 
 server 10.53.0.4 { request-ixfr no; };
index fe8c500e61457511b3307d15b19ab6bc4a239bfc..6e003c2c9d843562a90d4167afd4f44921d8f663 100644 (file)
@@ -3,7 +3,7 @@
 options {
        {% include_indented "_common/options.conf.j2" %}
        recursion no;
-        allow-transfer { any; };
+       allow-transfer { any; };
 };
 
 {% include "_common/controls.conf.j2" %}
index 89380e14cd9cd05ef3610deee6b8c39cac09a401..21f12120cff44dba029ca828d676492e73e354f8 100644 (file)
@@ -1,15 +1,15 @@
 dnssec-policy "ed25519" {
-        dnskey-ttl 1234;
+       dnskey-ttl 1234;
 
-        keys {
-                ksk key-directory lifetime P10Y algorithm 15;
-                zsk key-directory lifetime P5Y  algorithm 15;
-                zsk key-directory lifetime P1Y  algorithm 15 256;
-        };
+       keys {
+               ksk key-directory lifetime P10Y algorithm 15;
+               zsk key-directory lifetime P5Y  algorithm 15;
+               zsk key-directory lifetime P1Y  algorithm 15 256;
+       };
 };
 
 zone "ed25519.kasp" {
-        type primary;
-        file "ed25519.kasp.db";
-        dnssec-policy "ed25519";
+       type primary;
+       file "ed25519.kasp.db";
+       dnssec-policy "ed25519";
 };
index 379f02c93ae34408c3c0d41f147089a10403b2bc..62b7700284bb982cc93e83f9ef439e8529c8dfa2 100644 (file)
@@ -1,15 +1,15 @@
 dnssec-policy "ed448" {
-        dnskey-ttl 1234;
+       dnskey-ttl 1234;
 
-        keys {
-                ksk key-directory lifetime P10Y algorithm 16;
-                zsk key-directory lifetime P5Y  algorithm 16;
-                zsk key-directory lifetime P1Y  algorithm 16 456;
-        };
+       keys {
+               ksk key-directory lifetime P10Y algorithm 16;
+               zsk key-directory lifetime P5Y  algorithm 16;
+               zsk key-directory lifetime P1Y  algorithm 16 456;
+       };
 };
 
 zone "ed448.kasp" {
-        type primary;
-        file "ed448.kasp.db";
-        dnssec-policy "ed448";
+       type primary;
+       file "ed448.kasp.db";
+       dnssec-policy "ed448";
 };
index 68627553aaea20634664f1763b1470a5f3579a72..a6b59fb04dc289d2378d8d795a6f8330c7c449e2 100644 (file)
@@ -16,10 +16,10 @@ zone "UPPER.KASP" {
 
 /* A zone with special characters. */
 zone {% raw %}"i-am.\":\;?&[]\@!\$*+,|=\.\(\)special.kasp."{% endraw %} {
-        type primary;
-        file "i-am.special.kasp.db";
-        check-names ignore;
-        dnssec-policy "default";
+       type primary;
+       file "i-am.special.kasp.db";
+       check-names ignore;
+       dnssec-policy "default";
 };
 
 /* checkds: Zone with one KSK. */
index 1e9d3eb1cbf435efdf6645070fbf90c9708daf84..f0b586c515ff8bb5f1d01151af3d19f1d8804f17 100644 (file)
@@ -74,17 +74,17 @@ dnssec-policy "fast" {
                ksk lifetime unlimited algorithm @DEFAULT_ALGORITHM@;
                zsk lifetime 8792 algorithm @DEFAULT_ALGORITHM@;
        };
-        dnskey-ttl 439;
-        max-zone-ttl 4396;
-        zone-propagation-delay 439;
-        signatures-validity 6;
-        signatures-validity-dnskey 6;
-        signatures-refresh 2;
-        signatures-jitter 0;
-        publish-safety 1;
-        retire-safety 1;
-        parent-ds-ttl 5;
-        parent-propagation-delay 5;
+       dnskey-ttl 439;
+       max-zone-ttl 4396;
+       zone-propagation-delay 439;
+       signatures-validity 6;
+       signatures-validity-dnskey 6;
+       signatures-refresh 2;
+       signatures-jitter 0;
+       publish-safety 1;
+       retire-safety 1;
+       parent-ds-ttl 5;
+       parent-propagation-delay 5;
 };
 
 dnssec-policy "invalid-skr" {
index dd2a95f700d383e05c5937ec70e0185f18bbcc9d..4360f834c13de3e561897e296700170a2a0ab86e 100644 (file)
@@ -6,18 +6,18 @@ options {
 
 logging {
        channel default_log {
-         buffered no;
-         file "@TMPDIR@/example.log" versions 1 size 1k suffix increment; # small size
-         severity debug 100;
-         print-time yes;
+               buffered no;
+               file "@TMPDIR@/example.log" versions 1 size 1k suffix increment; # small size
+               severity debug 100;
+               print-time yes;
        };
        category default { default_log; default_debug; };
        category lame-servers { null; };
 
        channel query_log {
-         file "query_log";
-         print-time yes;
-         buffered yes;
+               file "query_log";
+               print-time yes;
+               buffered yes;
        };
        category queries { query_log; };
 };
index f927b80fd164fc4d6ad0c3c68a237b5d02b1d3c7..ad1855b6f54fc361800c7f8a1b1e55beb4fd021a 100644 (file)
@@ -6,8 +6,8 @@ options {
 
 logging {
        channel default_log {
-         file "/tmp";
-         print-time yes;
+               file "/tmp";
+               print-time yes;
        };
        category default { default_log; default_debug; };
        category lame-servers { null; };
index e9f8122deb7357f01ab9db0799b80913c765147e..87b932aa4dd3e78bf38fd936f02adc22170e77a9 100644 (file)
@@ -6,18 +6,18 @@ options {
 
 logging {
        channel default_log {
-         buffered no;
-         file "named_inc" versions 1 size 1k suffix increment; # small size
-         severity debug 100;
-         print-time yes;
+               buffered no;
+               file "named_inc" versions 1 size 1k suffix increment; # small size
+               severity debug 100;
+               print-time yes;
        };
        category default { default_log; default_debug; };
        category lame-servers { null; };
 
        channel query_log {
-         file "query_log";
-         print-time yes;
-         buffered yes;
+               file "query_log";
+               print-time yes;
+               buffered yes;
        };
        category queries { query_log; };
 };
index ac1c0359041325bf1783a0dd2719612a0a788678..9a7e75ae10e6a04c669d51f520243b2b227adb2f 100644 (file)
@@ -6,8 +6,8 @@ options {
 
 logging {
        channel default_log {
-         file "named_pipe";
-         print-time yes;
+               file "named_pipe";
+               print-time yes;
        };
        category default { default_log; default_debug; };
        category lame-servers { null; };
index 3d88f40810def0335a6d01deb71f3690c60164af..dc52a903df8a879a699713a5cb740761abf0724b 100644 (file)
@@ -6,16 +6,16 @@ options {
 
 logging {
        channel default_log {
-         file "named_log";
-         print-time yes;
+               file "named_log";
+               print-time yes;
        };
        category default { default_log; default_debug; };
        category lame-servers { null; };
 
        channel query_log {
-         file "query_log";
-         print-time yes;
-         buffered yes;
+               file "query_log";
+               print-time yes;
+               buffered yes;
        };
        category queries { query_log; };
 };
index fbbc66180dcdc1dd23c0f6c07389ca1c2b8b77bc..3c3dff4ecd9b1b2002844ca6e6db0d3cda0585f1 100644 (file)
@@ -6,8 +6,8 @@ options {
 
 logging {
        channel default_log {
-         file "named_sym";
-         print-time yes;
+               file "named_sym";
+               print-time yes;
        };
        category default { default_log; default_debug; };
        category lame-servers { null; };
index db37240c6aaacf86ae52bebdebd51799683117b1..8f03293a3c83a5cf353cfd6fe00585b3d4a49ed6 100644 (file)
@@ -6,18 +6,18 @@ options {
 
 logging {
        channel default_log {
-         buffered no;
-         file "named_ts" versions 3 size 1000 suffix timestamp; # small size
-         severity debug 100;
-         print-time yes;
+               buffered no;
+               file "named_ts" versions 3 size 1000 suffix timestamp; # small size
+               severity debug 100;
+               print-time yes;
        };
        category default { default_log; default_debug; };
        category lame-servers { null; };
 
        channel query_log {
-         file "query_log";
-         print-time yes;
-         buffered yes;
+               file "query_log";
+               print-time yes;
+               buffered yes;
        };
        category queries { query_log; };
 };
index 83139ad351f669073a773a2e59ac039f2f130376..bd1999b22aa713589d008028d5214ce3dd8afc38 100644 (file)
@@ -6,18 +6,18 @@ options {
 
 logging {
        channel default_log {
-         buffered no;
-         file "named_unlimited" versions unlimited size 1000;
-         severity debug 100;
-         print-time yes;
+               buffered no;
+               file "named_unlimited" versions unlimited size 1000;
+               severity debug 100;
+               print-time yes;
        };
        category default { default_log; default_debug; };
        category lame-servers { null; };
 
        channel query_log {
-         file "query_log";
-         print-time yes;
-         buffered no;
+               file "query_log";
+               print-time yes;
+               buffered no;
        };
        category queries { query_log; };
 };
index 2accce0b4e6f830a5a8393054184c82156c7e383..ad3ad0bfbae0cef4e6b930f2ec249d9c3c1199fc 100644 (file)
@@ -6,18 +6,18 @@ options {
 
 logging {
        channel default_log {
-         buffered no;
-         file "named_vers" versions 5 size 1000;       // really small size
-         severity debug 100;
-         print-time yes;
+               buffered no;
+               file "named_vers" versions 5 size 1000; // really small size
+               severity debug 100;
+               print-time yes;
        };
        category default { default_log; default_debug; };
        category lame-servers { null; };
 
        channel query_log {
-         file "query_log";
-         print-time yes;
-         buffered yes;
+               file "query_log";
+               print-time yes;
+               buffered yes;
        };
        category queries { query_log; };
 };
index b2836b28be632e8de05b0bbebccc79855044227d..4ea06129e88c0ac3b1fd12dc7842086ba0d2fbe5 100644 (file)
@@ -42,7 +42,7 @@ key "internal" {
 };
 
 view "ext" {
-        match-clients { key "external"; };
+       match-clients { key "external"; };
 
        zone "view-rsasha256.kasp" {
                type primary;
@@ -54,7 +54,7 @@ view "ext" {
 };
 
 view "int" {
-        match-clients { key "internal"; };
+       match-clients { key "internal"; };
 
        zone "view-rsasha256.kasp" {
                type primary;
index 12e05a4951c7223c1fe68cd3edf84a54867a8963..446d1be6476c4209d917876c5c987317445c5fce 100644 (file)
@@ -1,27 +1,27 @@
 tls tls-forward-secrecy {
-    protocols { TLSv1.2; };
-    ciphers "HIGH:!kRSA:!aNULL:!eNULL:!RC4:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!SHA1:!SHA256:!SHA384";
-    prefer-server-ciphers yes;
-    key-file "../CA/certs/srv02.crt01.example.com.key";
-    cert-file "../CA/certs/srv02.crt01.example.com.pem";
-    dhparam-file "../dhparam3072.pem";
+       protocols { TLSv1.2; };
+       ciphers "HIGH:!kRSA:!aNULL:!eNULL:!RC4:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!SHA1:!SHA256:!SHA384";
+       prefer-server-ciphers yes;
+       key-file "../CA/certs/srv02.crt01.example.com.key";
+       cert-file "../CA/certs/srv02.crt01.example.com.pem";
+       dhparam-file "../dhparam3072.pem";
 };
 
 tls tls-forward-secrecy-mutual-tls {
-    protocols { TLSv1.2; };
-    ciphers "HIGH:!kRSA:!aNULL:!eNULL:!RC4:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!SHA1:!SHA256:!SHA384";
-    prefer-server-ciphers yes;
-    key-file "../CA/certs/srv02.crt01.example.com.key";
-    cert-file "../CA/certs/srv02.crt01.example.com.pem";
-    dhparam-file "../dhparam3072.pem";
-    ca-file "../CA/CA.pem";
+       protocols { TLSv1.2; };
+       ciphers "HIGH:!kRSA:!aNULL:!eNULL:!RC4:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!SHA1:!SHA256:!SHA384";
+       prefer-server-ciphers yes;
+       key-file "../CA/certs/srv02.crt01.example.com.key";
+       cert-file "../CA/certs/srv02.crt01.example.com.pem";
+       dhparam-file "../dhparam3072.pem";
+       ca-file "../CA/CA.pem";
 };
 
 tls tls-expired {
-    protocols { TLSv1.2; };
-    ciphers "HIGH:!kRSA:!aNULL:!eNULL:!RC4:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!SHA1:!SHA256:!SHA384";
-    prefer-server-ciphers yes;
-    key-file "../CA/certs/srv02.crt01-expired.example.com.key";
-    cert-file "../CA/certs/srv02.crt01-expired.example.com.pem";
-    dhparam-file "../dhparam3072.pem";
+       protocols { TLSv1.2; };
+       ciphers "HIGH:!kRSA:!aNULL:!eNULL:!RC4:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!SHA1:!SHA256:!SHA384";
+       prefer-server-ciphers yes;
+       key-file "../CA/certs/srv02.crt01-expired.example.com.key";
+       cert-file "../CA/certs/srv02.crt01-expired.example.com.pem";
+       dhparam-file "../dhparam3072.pem";
 };
index 9d620c51cffbdd5e978f84dffce86485d2bd8f6a..79d33e1ce8b36da18046919f1ba41075b0361146 100644 (file)
@@ -1,37 +1,37 @@
 tls tls-forward-secrecy {
-    protocols { TLSv1.2; };
-    ciphers "HIGH:!kRSA:!aNULL:!eNULL:!RC4:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!SHA1:!SHA256:!SHA384";
-    dhparam-file "../dhparam3072.pem";
-    ca-file "../CA/CA.pem";
+       protocols { TLSv1.2; };
+       ciphers "HIGH:!kRSA:!aNULL:!eNULL:!RC4:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!SHA1:!SHA256:!SHA384";
+       dhparam-file "../dhparam3072.pem";
+       ca-file "../CA/CA.pem";
 };
 
 tls tls-forward-secrecy-remote-hostname {
-    protocols { TLSv1.2; };
-    ca-file "../CA/CA.pem";
-    remote-hostname "srv02.crt01.example.com";
+       protocols { TLSv1.2; };
+       ca-file "../CA/CA.pem";
+       remote-hostname "srv02.crt01.example.com";
 };
 
 tls tls-forward-secrecy-bad-remote-hostname {
-    protocols { TLSv1.2; };
-    ca-file "../CA/CA.pem";
-    remote-hostname "srv02-bad.crt01.example.com";
+       protocols { TLSv1.2; };
+       ca-file "../CA/CA.pem";
+       remote-hostname "srv02-bad.crt01.example.com";
 };
 
 tls tls-forward-secrecy-mutual-tls {
-    protocols { TLSv1.2; };
-    ciphers "HIGH:!kRSA:!aNULL:!eNULL:!RC4:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!SHA1:!SHA256:!SHA384";
-    key-file "../CA/certs/srv03.crt01.example.com.key";
-    cert-file "../CA/certs/srv03.crt01.example.com.pem";
-    dhparam-file "../dhparam3072.pem";
-    ca-file "../CA/CA.pem";
+       protocols { TLSv1.2; };
+       ciphers "HIGH:!kRSA:!aNULL:!eNULL:!RC4:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!SHA1:!SHA256:!SHA384";
+       key-file "../CA/certs/srv03.crt01.example.com.key";
+       cert-file "../CA/certs/srv03.crt01.example.com.pem";
+       dhparam-file "../dhparam3072.pem";
+       ca-file "../CA/CA.pem";
 };
 
 tls tls-expired {
-    protocols { TLSv1.2; };
-    ciphers "HIGH:!kRSA:!aNULL:!eNULL:!RC4:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!SHA1:!SHA256:!SHA384";
-    prefer-server-ciphers yes;
-    dhparam-file "../dhparam3072.pem";
-    ca-file "../CA/CA.pem";
+       protocols { TLSv1.2; };
+       ciphers "HIGH:!kRSA:!aNULL:!eNULL:!RC4:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!SHA1:!SHA256:!SHA384";
+       prefer-server-ciphers yes;
+       dhparam-file "../dhparam3072.pem";
+       ca-file "../CA/CA.pem";
 };
 
 zone tls-x1 {
index 32f8bb212d1f73343db9a8bb692addc426c45144..74b982bc84a6b037a9da89b48740804df0773e8d 100644 (file)
@@ -169,10 +169,10 @@ zone "nsec3-dynamic-update-inline.kasp" {
  * This zone will have an empty nonterminal node added and a node deleted.
  */
 zone "nsec3-xfr-inline.kasp" {
-       type secondary;
-       file "nsec3-xfr-inline.kasp.db";
-       dnssec-policy "nsec";
-       primaries { 10.53.0.2; };
+       type secondary;
+       file "nsec3-xfr-inline.kasp.db";
+       dnssec-policy "nsec";
+       primaries { 10.53.0.2; };
 };
 {% endif %}{# nsec3-xfr-inline.kasp #}
 
index a41db29701e0464f9bf684d722c19ac08a501a89..164bfe1ccce083b3566d83688b9966a729399cae 100644 (file)
@@ -10,11 +10,11 @@ options {
 {% include "_common/controls.conf.j2" %}
 
 trust-anchors {
-    evil.test. static-key 257 3 13 "yh1W7zgrqOsAZdKAh597SI7F2ye4ReiLmBNsDg+TDLJQ+3C2fXfrsQyY MvA+hmzTQdKX24zlVlD3YAVA6+VmrQ==";
+       evil.test. static-key 257 3 13 "yh1W7zgrqOsAZdKAh597SI7F2ye4ReiLmBNsDg+TDLJQ+3C2fXfrsQyY MvA+hmzTQdKX24zlVlD3YAVA6+VmrQ==";
 };
 
 zone "evil.test" {
-    type forward;
-    forward only;
-    forwarders { 10.53.0.7 port @PORT@; };
+       type forward;
+       forward only;
+       forwarders { 10.53.0.7 port @PORT@; };
 };
index 909fdd457c1d4f498d4d5255c95d0cbc209dc46c..281b0e133966954c3c0e1ea3b11b84c5b0c0be2f 100644 (file)
@@ -10,6 +10,6 @@ options {
 {% include "_common/controls.conf.j2" %}
 
 zone "evil.test" {
-    type primary;
-    file "evil.test.db.signed";
+       type primary;
+       file "evil.test.db.signed";
 };
index 2aecea1cd36c19f26f9eb32e12a128073def7741..553b98795c97c5ae52372ddf6e0f1252bec65faa 100644 (file)
@@ -18,7 +18,7 @@ options {
        dnstap { resolver query; };
        dnstap-output file "dnstap.out";
        {% if maxdelegationservers %}
-        @maxdelegationservers@
+       @maxdelegationservers@
        {% endif %}
 };
 
index 12ca03f3bed2d43fac2d7855134d657ce3ea7f9c..770e7ba659ccfc7e739bfbf52c2c90d34b6a24d5 100644 (file)
@@ -6,7 +6,7 @@ options {
        dnstap { resolver query; };
        dnstap-output file "dnstap.out";
        {% if maxdelegationservers %}
-        @maxdelegationservers@
+       @maxdelegationservers@
        {% endif %}
 };
 
index d9c5e9e548a8fee15773633650651a49b13f26b7..362aa333fab3e504c4edf6bb1de9f5191d0b22d2 100644 (file)
@@ -130,18 +130,18 @@ zone "keytests.nil" {
        type primary;
        file "keytests.db";
        update-policy {
-           grant md5-key name md5.keytests.nil. ANY;
-           grant sha1-key name sha1.keytests.nil. ANY;
-           grant sha224-key name sha224.keytests.nil. ANY;
-           grant sha256-key name sha256.keytests.nil. ANY;
-           grant sha384-key name sha384.keytests.nil. ANY;
-           grant sha512-key name sha512.keytests.nil. ANY;
-           grant legacy-157 name 157.keytests.nil. ANY;
-           grant legacy-161 name 161.keytests.nil. ANY;
-           grant legacy-162 name 162.keytests.nil. ANY;
-           grant legacy-163 name 163.keytests.nil. ANY;
-           grant legacy-164 name 164.keytests.nil. ANY;
-           grant legacy-165 name 165.keytests.nil. ANY;
+               grant md5-key name md5.keytests.nil. ANY;
+               grant sha1-key name sha1.keytests.nil. ANY;
+               grant sha224-key name sha224.keytests.nil. ANY;
+               grant sha256-key name sha256.keytests.nil. ANY;
+               grant sha384-key name sha384.keytests.nil. ANY;
+               grant sha512-key name sha512.keytests.nil. ANY;
+               grant legacy-157 name 157.keytests.nil. ANY;
+               grant legacy-161 name 161.keytests.nil. ANY;
+               grant legacy-162 name 162.keytests.nil. ANY;
+               grant legacy-163 name 163.keytests.nil. ANY;
+               grant legacy-164 name 164.keytests.nil. ANY;
+               grant legacy-165 name 165.keytests.nil. ANY;
        };
 };
 
index 6478a9c6f5a6ceeb710c23c2c8dda658bff8e287..21a6e0a36e8451173351f514dcd859271510d31f 100644 (file)
@@ -1,27 +1,27 @@
 tls tls-forward-secrecy {
-    protocols { TLSv1.2; };
-    ciphers "HIGH:!kRSA:!aNULL:!eNULL:!RC4:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!SHA1:!SHA256:!SHA384";
-    prefer-server-ciphers yes;
-    key-file "../CA/certs/srv01.crt01.example.nil.key";
-    cert-file "../CA/certs/srv01.crt01.example.nil.pem";
-    dhparam-file "../dhparam3072.pem";
+       protocols { TLSv1.2; };
+       ciphers "HIGH:!kRSA:!aNULL:!eNULL:!RC4:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!SHA1:!SHA256:!SHA384";
+       prefer-server-ciphers yes;
+       key-file "../CA/certs/srv01.crt01.example.nil.key";
+       cert-file "../CA/certs/srv01.crt01.example.nil.pem";
+       dhparam-file "../dhparam3072.pem";
 };
 
 tls tls-forward-secrecy-mutual-tls {
-    protocols { TLSv1.2; };
-    ciphers "HIGH:!kRSA:!aNULL:!eNULL:!RC4:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!SHA1:!SHA256:!SHA384";
-    prefer-server-ciphers yes;
-    key-file "../CA/certs/srv01.crt01.example.nil.key";
-    cert-file "../CA/certs/srv01.crt01.example.nil.pem";
-    dhparam-file "../dhparam3072.pem";
-    ca-file "../CA/CA.pem";
+       protocols { TLSv1.2; };
+       ciphers "HIGH:!kRSA:!aNULL:!eNULL:!RC4:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!SHA1:!SHA256:!SHA384";
+       prefer-server-ciphers yes;
+       key-file "../CA/certs/srv01.crt01.example.nil.key";
+       cert-file "../CA/certs/srv01.crt01.example.nil.pem";
+       dhparam-file "../dhparam3072.pem";
+       ca-file "../CA/CA.pem";
 };
 
 tls tls-expired {
-    protocols { TLSv1.2; };
-    ciphers "HIGH:!kRSA:!aNULL:!eNULL:!RC4:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!SHA1:!SHA256:!SHA384";
-    prefer-server-ciphers yes;
-    key-file "../CA/certs/srv01.crt02-expired.example.nil.key";
-    cert-file "../CA/certs/srv01.crt02-expired.example.nil.pem";
-    dhparam-file "../dhparam3072.pem";
+       protocols { TLSv1.2; };
+       ciphers "HIGH:!kRSA:!aNULL:!eNULL:!RC4:!3DES:!MD5:!EXP:!PSK:!SRP:!DSS:!SHA1:!SHA256:!SHA384";
+       prefer-server-ciphers yes;
+       key-file "../CA/certs/srv01.crt02-expired.example.nil.key";
+       cert-file "../CA/certs/srv01.crt02-expired.example.nil.pem";
+       dhparam-file "../dhparam3072.pem";
 };
index fc663a2c6bdae10fa94f742c9c71108ad1176833..947eeee0bc416c2f17e66310761873e73a3fa812 100644 (file)
@@ -4,7 +4,7 @@ options {
        {% include_indented "_common/options.conf.j2" %}
        allow-transfer { any; };
        recursion no;
-        notify-delay 1;
+       notify-delay 1;
        dnssec-validation no;
        minimal-responses no;
 };
index 62563116add82a89cf80c7cdd407f65c57f3ee97..d1a8da4d4c200717e958190f4ac0da8fb18b6784 100644 (file)
@@ -4,9 +4,9 @@
 options {
        {% include_indented "_common/options.conf.j2" %}
        allow-transfer { any; };
-        recursion no;
-        dnssec-validation no;
-        ixfr-from-differences yes;
+       recursion no;
+       dnssec-validation no;
+       ixfr-from-differences yes;
        sig-signing-nodes 900;
        sig-signing-signatures 900;
 };
index a4bb12c45d41478d7fe6e438b1f7c31684704991..0cae4813fbe6767b504ab87ba79c7b581bb8a59f 100644 (file)
@@ -9,12 +9,12 @@ options {
 {% include "_common/controls.conf.j2" %}
 
 zone "." {
-        type primary;
-        file "root.db.signed";
+       type primary;
+       file "root.db.signed";
 };
 
 // An unsigned zone that ns6 has a delegation for.
 zone "unsigned." {
-        type primary;
-        file "unsigned.db";
+       type primary;
+       file "unsigned.db";
 };
index 94048681700d6eae936ed2f7ffad10a9db901746..b508c209e5a86d64a8cf333a464cd112c6ae6830 100644 (file)
@@ -9,12 +9,12 @@ options {
 {% include "_common/controls.conf.j2" %}
 
 zone "." {
-        type primary;
-        file "root.db";
+       type primary;
+       file "root.db";
 };
 
 // A signed zone that ns5 has a delegation for.
 zone "signed." {
-        type primary;
-        file "signed.db.signed";
+       type primary;
+       file "signed.db.signed";
 };
index 7feed000e05e0efb75fbf8339ac9e829bc6ea759..b320c35988ade7d660b86eb9b7aa57a3f8e6ca34 100644 (file)
@@ -14,11 +14,11 @@ options {
 {% include "_common/controls.conf.j2" %}
 
 zone "." {
-        type primary;
-        file "root.db";
+       type primary;
+       file "root.db";
 };
 
 zone "redirect" {
-        type primary;
-        file "redirect.db";
+       type primary;
+       file "redirect.db";
 };
index cf0513c0bbfbadf12c79a95c2f755326cf37ec20..5b5edad914d49c767d07fa8b4e5a3cd2c7acf2da 100644 (file)
@@ -14,6 +14,6 @@ options {
 {% include "_common/controls.conf.j2" %}
 
 zone "." {
-        type hint;
-        file "root.hints";
+       type hint;
+       file "root.hints";
 };
index 4d154401c3add6eeb22a043291477a316c428005..10eeba9992d99e95d88b62c5b5ba96b4e3fd1ccf 100644 (file)
@@ -2,10 +2,12 @@ options {
        {% include_indented "_common/options.conf.j2" %}
        dnssec-validation no;
        deny-answer-addresses { 192.0.2.0/24; 2001:db8:beef::/48; }
-                except-from { "example.org"; };
+               except-from { "example.org"; };
        deny-answer-aliases { "example.org"; }
-               except-from { "goodcname.example.net";
-                             "gooddname.example.net"; };
+               except-from {
+                       "goodcname.example.net";
+                       "gooddname.example.net";
+               };
        allow-query {!10.53.0.8; any; };
        max-zone-ttl unlimited;
        resolver-query-timeout 5000; # 5 seconds
@@ -21,15 +23,15 @@ server 10.53.0.3 {
 };
 
 server 10.42.23.3/32 {
-     notify-source 10.42.22.1;
-     query-source address 10.42.22.1;
-     transfer-source 10.42.22.1;
+       notify-source 10.42.22.1;
+       query-source address 10.42.22.1;
+       transfer-source 10.42.22.1;
 };
 
 server fd92:7065:b8e:ffff::1000 {
-     notify-source-v6 fd92:7065:b8e:ffff::1001;
-     query-source-v6 address fd92:7065:b8e:ffff::1001;
-     transfer-source-v6 fd92:7065:b8e:ffff::1001;
+       notify-source-v6 fd92:7065:b8e:ffff::1001;
+       query-source-v6 address fd92:7065:b8e:ffff::1001;
+       transfer-source-v6 fd92:7065:b8e:ffff::1001;
 };
 
 view "default" {
index b2d5b677b522dc036b6e10a630cfa9c06763d8fb..be015b3782d6bcf988a7bbdcec0c43223ad9a01d 100644 (file)
@@ -4,10 +4,10 @@ options {
        {% include_indented "_common/options.conf.j2" %}
        dnssec-validation no;
        attach-cache "globalcache";
-        max-zone-ttl unlimited;
-        resolver-query-timeout 5000; # 5 seconds
-        max-recursion-queries 100;
-        request-zoneversion yes;
+       max-zone-ttl unlimited;
+       resolver-query-timeout 5000; # 5 seconds
+       max-recursion-queries 100;
+       request-zoneversion yes;
 };
 
 view "default" {
index 1ccf4b20d9a97258fa6d7176be784e7672167896..e9d90f18750b31f231e6f5ed4a3363ae3ea943f8 100644 (file)
@@ -33,8 +33,8 @@ zone "broken" {
 };
 
 zone "sourcens" {
-    type primary;
-    file "sourcens.db";
+       type primary;
+       file "sourcens.db";
 };
 
 zone "v4only.net" {
index 90c690a49d9958d4caa6ba88d8f57ae91aa1c167..35835c97ba1ae6e4b65867244077d6e02d3087fd 100644 (file)
@@ -7,10 +7,10 @@ include "trusted.conf";
 
 
 options {
-        {% include_indented "_common/options.conf.j2" %}
-        allow-transfer { any; };
-        dnssec-validation @dnssec_validation@;
-        notify-cfg CDS { notify yes; };
+       {% include_indented "_common/options.conf.j2" %}
+       allow-transfer { any; };
+       dnssec-validation @dnssec_validation@;
+       notify-cfg CDS { notify yes; };
 };
 
 {% include "_common/controls.conf.j2" %}
index 09f895f2e04f606edf027789059780842b70e24f..ef7b30883cb22a6fe5a98d0bc9bd4bce01645f55 100644 (file)
@@ -3,10 +3,10 @@ include "named.common.conf";
 
 {% for zone in ['manual-rollover.kasp', 'manual-rollover-zrrsig-rumoured.kasp'] %}
 zone "@zone@" {
-        type primary;
-        file "@zone@.db";
-        dnssec-policy "manual-rollover";
-        notify no;
+       type primary;
+       file "@zone@.db";
+       dnssec-policy "manual-rollover";
+       notify no;
 };
 
 {% endfor %}
index e744591d323b719f1aac24da7e75709f12264065..173f6454bc2c420e5f6b7f7c5bce1c01142d8cb8 100644 (file)
  */
 
 options {
-        {% include_indented "_common/options.conf.j2" %}
-        allow-transfer { any; };
-        recursion no;
-        dnssec-validation no;
+       {% include_indented "_common/options.conf.j2" %}
+       allow-transfer { any; };
+       recursion no;
+       dnssec-validation no;
 };
 
 {% include "_common/controls.conf.j2" %}
 
 zone "." {
-        type hint;
-        file "../../_common/root.hint.blackhole";
+       type hint;
+       file "../../_common/root.hint.blackhole";
 };
index 1032e7f3dce9a76ae471c41b9a7b1fcc1f356e94..86e1941ec13a9823758593baa9dbd5dee7740bb0 100644 (file)
@@ -2,9 +2,9 @@ include "kasp.conf";
 include "named.common.conf";
 
 zone "three-is-a-crowd.kasp" {
-        type primary;
-        file "three-is-a-crowd.kasp.db";
-        inline-signing yes;
-        /* Use same policy as KSK rollover test zones. */
-        dnssec-policy "ksk-doubleksk-autosign";
+       type primary;
+       file "three-is-a-crowd.kasp.db";
+       inline-signing yes;
+       /* Use same policy as KSK rollover test zones. */
+       dnssec-policy "ksk-doubleksk-autosign";
 };
index ec51a16444fa8f1729420a24730c2c5c5d7d0c8a..1ebeeaaaefdca662b47529b541121b564813cbcb 100644 (file)
@@ -3,10 +3,10 @@ include "named.common.conf";
 
 /* RFC 8901 Multi-signer Model 2. */
 zone "multisigner-model2.kasp" {
-        type primary;
-        file "multisigner-model2.kasp.db";
-        dnssec-policy "multisigner-model2";
-        allow-update { any; };
+       type primary;
+       file "multisigner-model2.kasp.db";
+       dnssec-policy "multisigner-model2";
+       allow-update { any; };
 };
 
 /*
@@ -14,8 +14,8 @@ zone "multisigner-model2.kasp" {
  * outside of the desired multi-signer key tag range.
  */
 zone "single-to-multisigner.kasp" {
-        type primary;
-        file "single-to-multisigner.kasp.db";
-        dnssec-policy "multisigner-model2";
-        allow-update { any; };
+       type primary;
+       file "single-to-multisigner.kasp.db";
+       dnssec-policy "multisigner-model2";
+       allow-update { any; };
 };
index 3a21c78793fbda43cb14a6b1d30b8bf8380d635c..a69dab160d69dd6d178ba5977b7617f83de34f32 100644 (file)
@@ -16,27 +16,27 @@ options {
        min-retry-time 1;
 
        response-policy {
-           zone "fast-expire";
-           zone "bl"                                   max-policy-ttl 100;
-           zone "bl-2";
-           zone "bl-given"     policy given            recursive-only yes;
-           zone "bl-passthru"  policy passthru;
-           zone "bl-no-op"     policy no-op;           # obsolete for passthru
-           zone "bl-disabled"  policy disabled;
-           zone "bl-nodata"    policy nodata           recursive-only no;
-           zone "bl-nxdomain"  policy nxdomain;
-           zone "bl-cname"     policy cname txt-only.tld2.;
-           zone "bl-wildcname" policy cname *.tld4.;
-           zone "bl-garden"    policy cname a12.tld2.;
-           zone "bl-drop"      policy drop;
-           zone "bl-tcp-only"  policy tcp-only;
-           zone "bl.tld2";
-           zone "manual-update-rpz"    ede forged;
-           zone "mixed-case-rpz";
-           zone "include-rpz";
-           zone "evil-cname"  policy cname a12.tld2. ede blocked;
-           zone "wild-cname"  ede blocked;
-           zone "slow-rpz";
+               zone "fast-expire";
+               zone "bl"                                       max-policy-ttl 100;
+               zone "bl-2";
+               zone "bl-given" policy given            recursive-only yes;
+               zone "bl-passthru"      policy passthru;
+               zone "bl-no-op" policy no-op;           # obsolete for passthru
+               zone "bl-disabled"      policy disabled;
+               zone "bl-nodata"        policy nodata           recursive-only no;
+               zone "bl-nxdomain"      policy nxdomain;
+               zone "bl-cname" policy cname txt-only.tld2.;
+               zone "bl-wildcname"     policy cname *.tld4.;
+               zone "bl-garden"        policy cname a12.tld2.;
+               zone "bl-drop"  policy drop;
+               zone "bl-tcp-only"      policy tcp-only;
+               zone "bl.tld2";
+               zone "manual-update-rpz"        ede forged;
+               zone "mixed-case-rpz";
+               zone "include-rpz";
+               zone "evil-cname"  policy cname a12.tld2. ede blocked;
+               zone "wild-cname"  ede blocked;
+               zone "slow-rpz";
        }
        add-soa yes
        min-ns-dots 0
@@ -110,9 +110,9 @@ zone "include-rpz." {
 };
 
 zone "slow-rpz." {
-    type primary;
-    file "slow-rpz.db";
-    notify no;
+       type primary;
+       file "slow-rpz.db";
+       notify no;
 };
 
 zone "fast-expire." {
index 6181f9eea70db2c6011da2b8d873f36c407fa4ef..6600577670af436c193b2ac6e777cda4d1825534 100644 (file)
@@ -11,8 +11,8 @@ options {
        qname-minimization disabled;
 
        response-policy {
-           zone "policy1" min-update-interval 0;
-           zone "bl.tld2s" policy given;
+               zone "policy1" min-update-interval 0;
+               zone "bl.tld2s" policy given;
        } qname-wait-recurse yes
        // add-soa yes # leave add-soa as default for unset test
        nsip-enable yes
@@ -35,6 +35,6 @@ zone "policy1" {
 };
 
 zone "bl.tld2s." {
-    type primary;
-    file "bl.tld2s.db";
+       type primary;
+       file "bl.tld2s.db";
 };
index 76fc0ed6445a392200c39aa44c8dbd8b823716f6..bc1c9f7298c1148b06f97329b2041545f49dbfd1 100644 (file)
@@ -8,7 +8,7 @@ options {
        dnssec-validation yes;
 
        response-policy {
-           zone "policy2" add-soa no ede none;
+               zone "policy2" add-soa no ede none;
        } qname-wait-recurse no
        nsip-enable yes
        nsdname-enable yes
index c8338a38e33be8ac87ada82f76d0fa0d66bac24f..ee05c5591544cd4d0ace5b11c1a482b07d80ba87 100644 (file)
@@ -12,7 +12,7 @@ options {
        dnssec-validation no;
 
        response-policy {
-           zone "manual-update-rpz";
+               zone "manual-update-rpz";
        }
        // add-soa yes // do not set testing default mode
        min-ns-dots 0
index 290c5cd985a6153e98a19c3a2e72291f0bc98977..19527d9df9750be3bde117ac255bdddd3d450d4b 100644 (file)
@@ -13,7 +13,7 @@ options {
        dns64-server "example.localdomain.";
        dns64 64:ff9b::/96 { };
        response-policy {
-           zone "rpz";
+               zone "rpz";
        }
        qname-wait-recurse no ;
 
index 4865db6702503654b501d4ee628be3ff3e2f8ae5..33b61b9999aaec62db429d4830b4899745a8e36f 100644 (file)
@@ -9,25 +9,25 @@ options {
 };
 
 zone "allowed" {
-    type primary;
+       type primary;
        file "allowed.db";
        allow-transfer { none; };
 };
 
 zone "baddomain" {
-    type primary;
-    file "baddomain.db";
-    allow-transfer { none; };
+       type primary;
+       file "baddomain.db";
+       allow-transfer { none; };
 };
 
 zone "gooddomain" {
-    type primary;
-    file "gooddomain.db";
-    allow-transfer { none; };
+       type primary;
+       file "gooddomain.db";
+       allow-transfer { none; };
 };
 
 zone "rpz-external.local" {
-    type primary;
-    file "rpz-external.local.db";
-    allow-transfer { any; };
+       type primary;
+       file "rpz-external.local.db";
+       allow-transfer { any; };
 };
index 18aec051854d66d4794ee369af8e29fce1fe6829..43ff9ae9cfd713d26d2e8bd0478db71be4636dad 100644 (file)
@@ -2,22 +2,22 @@
 include "named.conf.header";
 
 view "recursive" {
-    zone "." {
+       zone "." {
        type hint;
        file "root.hint";
-    };
+       };
 
-    # policy configuration to be tested
-    response-policy {
+       # policy configuration to be tested
+       response-policy {
        zone "clientip1";
        zone "clientip2";
-    } qname-wait-recurse no
+       } qname-wait-recurse no
        nsdname-enable yes
        nsip-enable yes;
 
-    # policy zones to be tested
-    zone "clientip1" { type primary; file "db.clientip1"; };
-    zone "clientip2" { type primary; file "db.clientip2"; };
+       # policy zones to be tested
+       zone "clientip1" { type primary; file "db.clientip1"; };
+       zone "clientip2" { type primary; file "db.clientip2"; };
 
-    recursion yes;
+       recursion yes;
 };
index d674c400bee0bf8407a0822d1725316fdf923813..139525aa2a7466277e539ef789f119efdacebff4 100644 (file)
@@ -2,22 +2,22 @@
 include "named.conf.header";
 
 view "recursive" {
-    zone "." {
+       zone "." {
        type hint;
        file "root.hint";
-    };
+       };
 
-    servfail-ttl 0;
+       servfail-ttl 0;
 
-    # policy configuration to be tested
-    response-policy {
+       # policy configuration to be tested
+       response-policy {
        zone "clientip21";
-    } qname-wait-recurse no
+       } qname-wait-recurse no
        nsdname-enable yes
        nsip-enable yes;
 
-    # policy zones to be tested
-    zone "clientip21" { type primary; file "db.clientip21"; };
+       # policy zones to be tested
+       zone "clientip21" { type primary; file "db.clientip21"; };
 
-    recursion yes;
+       recursion yes;
 };
index 8b3b326bd3588f269df6fc878fb74dadcd074517..b919b5861b7b044321e98b0f9217094cb6af268f 100644 (file)
@@ -2,10 +2,10 @@
 include "named.conf.header";
 
 view "recursive" {
-    zone "." {
+       zone "." {
        type hint;
        file "root.hint";
-    };
+       };
 
-    recursion yes;
+       recursion yes;
 };
index 6380f9691df84579f87f3b034c87b6dfa004c60e..0a8667e6a62977e16f103ed3b8aa974a98b55af2 100644 (file)
@@ -2,16 +2,16 @@
 include "named.conf.header";
 
 view "recursive" {
-    zone "." {
+       zone "." {
        type hint;
        file "root.hint";
-    };
+       };
 
-    # policy configuration to be tested
-    response-policy {
+       # policy configuration to be tested
+       response-policy {
        zone "invalidprefixlength";
-    };
+       };
 
-    # policy zones to be tested
-    zone "invalidprefixlength" { type primary; file "db.invalidprefixlength"; };
+       # policy zones to be tested
+       zone "invalidprefixlength" { type primary; file "db.invalidprefixlength"; };
 };
index 55ebef6504ef442522ca5aa28494cbb9db3ab656..fec3265b67196c227a1c5dcd19c1499cb20e0dbf 100644 (file)
@@ -2,24 +2,24 @@
 include "named.conf.header";
 
 view "recursive" {
-    zone "." {
+       zone "." {
        type hint;
        file "root.hint";
-    };
+       };
 
-    # policy configuration to be tested
-    response-policy {
+       # policy configuration to be tested
+       response-policy {
        zone "log1" log no;
        zone "log2" log yes;
        zone "log3"; # missing log clause
-    } qname-wait-recurse no
+       } qname-wait-recurse no
        nsdname-enable yes
        nsip-enable yes;
 
-    # policy zones to be tested
-    zone "log1" { type primary; file "db.log1"; };
-    zone "log2" { type primary; file "db.log2"; };
-    zone "log3" { type primary; file "db.log3"; };
+       # policy zones to be tested
+       zone "log1" { type primary; file "db.log1"; };
+       zone "log2" { type primary; file "db.log2"; };
+       zone "log3" { type primary; file "db.log3"; };
 
-    recursion yes;
+       recursion yes;
 };
index 98c40930c6ad10ffa4284b646f120a82fa2f497f..ad14e55e09399be7f3b95bfc89fd0030adbb5f71 100644 (file)
@@ -2,13 +2,13 @@
 include "named.conf.header";
 
 view "recursive" {
-    zone "." {
+       zone "." {
        type hint;
        file "root.hint";
-    };
+       };
 
-    # policy configuration to be tested
-    response-policy {
+       # policy configuration to be tested
+       response-policy {
        zone "max1";
        zone "max2";
        zone "max3";
@@ -73,75 +73,75 @@ view "recursive" {
        zone "max62";
        zone "max63";
        zone "max64";
-    } qname-wait-recurse no
+       } qname-wait-recurse no
        nsdname-enable yes
        nsip-enable yes;
 
-    # policy zones to be tested
-    zone "max1" { type primary; file "db.max1.local"; };
-    zone "max2" { type primary; file "db.max2.local"; };
-    zone "max3" { type primary; file "db.max3.local"; };
-    zone "max4" { type primary; file "db.max4.local"; };
-    zone "max5" { type primary; file "db.max5.local"; };
-    zone "max6" { type primary; file "db.max6.local"; };
-    zone "max7" { type primary; file "db.max7.local"; };
-    zone "max8" { type primary; file "db.max8.local"; };
-    zone "max9" { type primary; file "db.max9.local"; };
-    zone "max10" { type primary; file "db.max10.local"; };
-    zone "max11" { type primary; file "db.max11.local"; };
-    zone "max12" { type primary; file "db.max12.local"; };
-    zone "max13" { type primary; file "db.max13.local"; };
-    zone "max14" { type primary; file "db.max14.local"; };
-    zone "max15" { type primary; file "db.max15.local"; };
-    zone "max16" { type primary; file "db.max16.local"; };
-    zone "max17" { type primary; file "db.max17.local"; };
-    zone "max18" { type primary; file "db.max18.local"; };
-    zone "max19" { type primary; file "db.max19.local"; };
-    zone "max20" { type primary; file "db.max20.local"; };
-    zone "max21" { type primary; file "db.max21.local"; };
-    zone "max22" { type primary; file "db.max22.local"; };
-    zone "max23" { type primary; file "db.max23.local"; };
-    zone "max24" { type primary; file "db.max24.local"; };
-    zone "max25" { type primary; file "db.max25.local"; };
-    zone "max26" { type primary; file "db.max26.local"; };
-    zone "max27" { type primary; file "db.max27.local"; };
-    zone "max28" { type primary; file "db.max28.local"; };
-    zone "max29" { type primary; file "db.max29.local"; };
-    zone "max30" { type primary; file "db.max30.local"; };
-    zone "max31" { type primary; file "db.max31.local"; };
-    zone "max32" { type primary; file "db.max32.local"; };
-    zone "max33" { type primary; file "db.max33.local"; };
-    zone "max34" { type primary; file "db.max34.local"; };
-    zone "max35" { type primary; file "db.max35.local"; };
-    zone "max36" { type primary; file "db.max36.local"; };
-    zone "max37" { type primary; file "db.max37.local"; };
-    zone "max38" { type primary; file "db.max38.local"; };
-    zone "max39" { type primary; file "db.max39.local"; };
-    zone "max40" { type primary; file "db.max40.local"; };
-    zone "max41" { type primary; file "db.max41.local"; };
-    zone "max42" { type primary; file "db.max42.local"; };
-    zone "max43" { type primary; file "db.max43.local"; };
-    zone "max44" { type primary; file "db.max44.local"; };
-    zone "max45" { type primary; file "db.max45.local"; };
-    zone "max46" { type primary; file "db.max46.local"; };
-    zone "max47" { type primary; file "db.max47.local"; };
-    zone "max48" { type primary; file "db.max48.local"; };
-    zone "max49" { type primary; file "db.max49.local"; };
-    zone "max50" { type primary; file "db.max50.local"; };
-    zone "max51" { type primary; file "db.max51.local"; };
-    zone "max52" { type primary; file "db.max52.local"; };
-    zone "max53" { type primary; file "db.max53.local"; };
-    zone "max54" { type primary; file "db.max54.local"; };
-    zone "max55" { type primary; file "db.max55.local"; };
-    zone "max56" { type primary; file "db.max56.local"; };
-    zone "max57" { type primary; file "db.max57.local"; };
-    zone "max58" { type primary; file "db.max58.local"; };
-    zone "max59" { type primary; file "db.max59.local"; };
-    zone "max60" { type primary; file "db.max60.local"; };
-    zone "max61" { type primary; file "db.max61.local"; };
-    zone "max62" { type primary; file "db.max62.local"; };
-    zone "max63" { type primary; file "db.max63.local"; };
-    zone "max64" { type primary; file "db.max64.local"; };
+       # policy zones to be tested
+       zone "max1" { type primary; file "db.max1.local"; };
+       zone "max2" { type primary; file "db.max2.local"; };
+       zone "max3" { type primary; file "db.max3.local"; };
+       zone "max4" { type primary; file "db.max4.local"; };
+       zone "max5" { type primary; file "db.max5.local"; };
+       zone "max6" { type primary; file "db.max6.local"; };
+       zone "max7" { type primary; file "db.max7.local"; };
+       zone "max8" { type primary; file "db.max8.local"; };
+       zone "max9" { type primary; file "db.max9.local"; };
+       zone "max10" { type primary; file "db.max10.local"; };
+       zone "max11" { type primary; file "db.max11.local"; };
+       zone "max12" { type primary; file "db.max12.local"; };
+       zone "max13" { type primary; file "db.max13.local"; };
+       zone "max14" { type primary; file "db.max14.local"; };
+       zone "max15" { type primary; file "db.max15.local"; };
+       zone "max16" { type primary; file "db.max16.local"; };
+       zone "max17" { type primary; file "db.max17.local"; };
+       zone "max18" { type primary; file "db.max18.local"; };
+       zone "max19" { type primary; file "db.max19.local"; };
+       zone "max20" { type primary; file "db.max20.local"; };
+       zone "max21" { type primary; file "db.max21.local"; };
+       zone "max22" { type primary; file "db.max22.local"; };
+       zone "max23" { type primary; file "db.max23.local"; };
+       zone "max24" { type primary; file "db.max24.local"; };
+       zone "max25" { type primary; file "db.max25.local"; };
+       zone "max26" { type primary; file "db.max26.local"; };
+       zone "max27" { type primary; file "db.max27.local"; };
+       zone "max28" { type primary; file "db.max28.local"; };
+       zone "max29" { type primary; file "db.max29.local"; };
+       zone "max30" { type primary; file "db.max30.local"; };
+       zone "max31" { type primary; file "db.max31.local"; };
+       zone "max32" { type primary; file "db.max32.local"; };
+       zone "max33" { type primary; file "db.max33.local"; };
+       zone "max34" { type primary; file "db.max34.local"; };
+       zone "max35" { type primary; file "db.max35.local"; };
+       zone "max36" { type primary; file "db.max36.local"; };
+       zone "max37" { type primary; file "db.max37.local"; };
+       zone "max38" { type primary; file "db.max38.local"; };
+       zone "max39" { type primary; file "db.max39.local"; };
+       zone "max40" { type primary; file "db.max40.local"; };
+       zone "max41" { type primary; file "db.max41.local"; };
+       zone "max42" { type primary; file "db.max42.local"; };
+       zone "max43" { type primary; file "db.max43.local"; };
+       zone "max44" { type primary; file "db.max44.local"; };
+       zone "max45" { type primary; file "db.max45.local"; };
+       zone "max46" { type primary; file "db.max46.local"; };
+       zone "max47" { type primary; file "db.max47.local"; };
+       zone "max48" { type primary; file "db.max48.local"; };
+       zone "max49" { type primary; file "db.max49.local"; };
+       zone "max50" { type primary; file "db.max50.local"; };
+       zone "max51" { type primary; file "db.max51.local"; };
+       zone "max52" { type primary; file "db.max52.local"; };
+       zone "max53" { type primary; file "db.max53.local"; };
+       zone "max54" { type primary; file "db.max54.local"; };
+       zone "max55" { type primary; file "db.max55.local"; };
+       zone "max56" { type primary; file "db.max56.local"; };
+       zone "max57" { type primary; file "db.max57.local"; };
+       zone "max58" { type primary; file "db.max58.local"; };
+       zone "max59" { type primary; file "db.max59.local"; };
+       zone "max60" { type primary; file "db.max60.local"; };
+       zone "max61" { type primary; file "db.max61.local"; };
+       zone "max62" { type primary; file "db.max62.local"; };
+       zone "max63" { type primary; file "db.max63.local"; };
+       zone "max64" { type primary; file "db.max64.local"; };
 
-    recursion yes;
+       recursion yes;
 };
index da2373b4f26ede806d7b4b26b90b74918da2ccab..22ee10446a51c16daa86f3469d35a1b53ed5a58f 100644 (file)
@@ -2,20 +2,20 @@
 include "named.conf.header";
 
 view "recursive" {
-    zone "." {
+       zone "." {
        type hint;
        file "root.hint";
-    };
+       };
 
-    # policy configuration to be tested
-    response-policy {
+       # policy configuration to be tested
+       response-policy {
        zone "wildcard1" policy NXDOMAIN;
-    } qname-wait-recurse yes
+       } qname-wait-recurse yes
        nsdname-enable yes
        nsip-enable yes;
 
-    # policy zones to be tested
-    zone "wildcard1" { type primary; file "db.wildcard1"; };
+       # policy zones to be tested
+       zone "wildcard1" { type primary; file "db.wildcard1"; };
 
-    recursion yes;
+       recursion yes;
 };
index 6e799316f947233e6d2054d85e6caec94d8255b8..b06aaa6a90c88dad7e92ed5e75189ca89950daa5 100644 (file)
@@ -2,22 +2,22 @@
 include "named.conf.header";
 
 view "recursive" {
-    zone "." {
+       zone "." {
        type hint;
        file "root.hint";
-    };
+       };
 
-    # policy configuration to be tested
-    response-policy {
+       # policy configuration to be tested
+       response-policy {
        zone "wildcard2a" policy NXDOMAIN;
        zone "wildcard2b" policy NXDOMAIN;
-    } qname-wait-recurse yes
+       } qname-wait-recurse yes
        nsdname-enable yes
        nsip-enable yes;
 
-    # policy zones to be tested
-    zone "wildcard2a" { type primary; file "db.wildcard2a"; };
-    zone "wildcard2b" { type primary; file "db.wildcard2b"; };
+       # policy zones to be tested
+       zone "wildcard2a" { type primary; file "db.wildcard2a"; };
+       zone "wildcard2b" { type primary; file "db.wildcard2b"; };
 
-    recursion yes;
+       recursion yes;
 };
index ef2bb39b653a90453349ab155c48be336296e332..0d9cd7e4e96ba2d9fc7bb9cb62abd16a264b35af 100644 (file)
@@ -2,20 +2,20 @@
 include "named.conf.header";
 
 view "recursive" {
-    zone "." {
+       zone "." {
        type hint;
        file "root.hint";
-    };
+       };
 
-    # policy configuration to be tested
-    response-policy {
+       # policy configuration to be tested
+       response-policy {
        zone "wildcard3" policy NXDOMAIN;
-    } qname-wait-recurse yes
+       } qname-wait-recurse yes
        nsdname-enable yes
        nsip-enable yes;
 
-    # policy zones to be tested
-    zone "wildcard3" { type primary; file "db.wildcard3"; };
+       # policy zones to be tested
+       zone "wildcard3" { type primary; file "db.wildcard3"; };
 
-    recursion yes;
+       recursion yes;
 };
index d2319a6e175c36f09522b9364e1c68ad6ff3d203..eae9cb152da88bf95fb0900ee90a9aec18ea20a2 100644 (file)
@@ -4,8 +4,8 @@ options {
        {% include_indented "_common/options.conf.j2" %}
        dnssec-validation no;
        response-policy { zone "policy"; }
-                nsip-wait-recurse no
-                nsdname-wait-recurse no
+               nsip-wait-recurse no
+               nsdname-wait-recurse no
                qname-wait-recurse yes
                nsip-enable yes
                nsdname-enable yes;
index 6b7386ca3c1dd38be31415c28cb6a1f21636c5f1..34b52f1b5cd15dab088ce955b3b0b8b8093b9a96 100644 (file)
@@ -4,8 +4,8 @@ options {
        {% include_indented "_common/options.conf.j2" %}
        dnssec-validation no;
        response-policy { zone "policy"; }
-                nsip-wait-recurse no
-                nsdname-wait-recurse no
+               nsip-wait-recurse no
+               nsdname-wait-recurse no
                nsdname-enable yes;
 };
 
index 07514eb48f6d9ce972507a7279744a359d21758d..3bc461fbf5c75d5c9d097d5759beb7e849d38617 100644 (file)
@@ -6,13 +6,13 @@ options {
        dnssec-validation no;
 
        rate-limit {
-           responses-per-second 2;
-           all-per-second 50;
-           slip 3;
-           exempt-clients { 10.53.0.7; };
+               responses-per-second 2;
+               all-per-second 50;
+               slip 3;
+               exempt-clients { 10.53.0.7; };
 
-           // small enough to force a table expansion
-           min-table-size 75;
+               // small enough to force a table expansion
+               min-table-size 75;
        };
 };
 
@@ -23,12 +23,12 @@ options {
  */
 logging {
        channel debug {
-           file "log-debug";
-           print-category yes; print-severity yes; severity debug 10;
+               file "log-debug";
+               print-category yes; print-severity yes; severity debug 10;
        };
        channel queries {
-           file "log-queries";
-           print-category yes; print-severity yes; severity info;
+               file "log-queries";
+               print-category yes; print-severity yes; severity info;
        };
        category rate-limit { debug; queries; };
        category queries { debug; queries; };
index d9dfd9a9702a7b44185baf6a3e1bb40c9d3092d0..21d4703fbc9b70cdb87cd2ebcd943cdac87ef22b 100644 (file)
@@ -6,19 +6,19 @@ options {
 
        // check that all of the options are parsed without limiting anything
        rate-limit {
-           responses-per-second 200;
-           referrals-per-second 220;
-           nodata-per-second 230;
-           nxdomains-per-second 240;
-           errors-per-second 250;
-           all-per-second 700;
-           ipv4-prefix-length 24;
-           ipv6-prefix-length 64;
-           qps-scale 10;
-           window 1;
-           max-table-size 1000;
-           log-only no;
-           min-table-size 0;
+               responses-per-second 200;
+               referrals-per-second 220;
+               nodata-per-second 230;
+               nxdomains-per-second 240;
+               errors-per-second 250;
+               all-per-second 700;
+               ipv4-prefix-length 24;
+               ipv6-prefix-length 64;
+               qps-scale 10;
+               window 1;
+               max-table-size 1000;
+               log-only no;
+               min-table-size 0;
        };
 
 };
index d079744e8e6df05683cd49bf5b04c1ea9df90531..edfb96618681906b96b47d5f0fe26f279c935e83 100644 (file)
@@ -7,14 +7,14 @@ options {
        max-udp-size 4096;
 
        rate-limit {
-           responses-per-second 2;
-           all-per-second 50;
-           slip 3;
-           exempt-clients { 10.53.0.7; };
-           log-only yes;
+               responses-per-second 2;
+               all-per-second 50;
+               slip 3;
+               exempt-clients { 10.53.0.7; };
+               log-only yes;
 
-           // small enough to force a table expansion
-           min-table-size 75;
+               // small enough to force a table expansion
+               min-table-size 75;
        };
 };
 
@@ -25,12 +25,12 @@ options {
  */
 logging {
        channel debug {
-           file "log-debug";
-           print-category yes; print-severity yes; severity debug 10;
+               file "log-debug";
+               print-category yes; print-severity yes; severity debug 10;
        };
        channel queries {
-           file "log-queries";
-           print-category yes; print-severity yes; severity info;
+               file "log-queries";
+               print-category yes; print-severity yes; severity info;
        };
        category rate-limit { debug; queries; };
        category queries { debug; queries; };
index 2aecea1cd36c19f26f9eb32e12a128073def7741..553b98795c97c5ae52372ddf6e0f1252bec65faa 100644 (file)
@@ -18,7 +18,7 @@ options {
        dnstap { resolver query; };
        dnstap-output file "dnstap.out";
        {% if maxdelegationservers %}
-        @maxdelegationservers@
+       @maxdelegationservers@
        {% endif %}
 };
 
index 91963d341e22b5939e9e6cd9c1e6e4ea9a42616b..a7986cdd8527f13cb1fc6b7c9645bc0376c5635a 100644 (file)
@@ -23,13 +23,13 @@ zone "." {
 
 // Authoritative zone: nonexist.target.stale -> NXDOMAIN
 zone "target.stale" {
-    type primary;
-    file "target.stale.db";
+       type primary;
+       file "target.stale.db";
 };
 
 // Forward source.stale queries to ans2
 zone "source.stale" {
-    type forward;
-    forward only;
-    forwarders { 10.53.0.2 port @PORT@; };
+       type forward;
+       forward only;
+       forwarders { 10.53.0.2 port @PORT@; };
 };
index 9136510534f9f56424f3551b2468b486dc1d272d..74d88e527c68bf39ae06450b46639e89d25af3af 100644 (file)
@@ -23,14 +23,14 @@ zone "." {
 
 // Forward source.stale queries to ans2
 zone "source.stale" {
-    type forward;
-    forward only;
-    forwarders { 10.53.0.2 port @PORT@; };
+       type forward;
+       forward only;
+       forwarders { 10.53.0.2 port @PORT@; };
 };
 
 // Forward target.stale queries to ans8
 zone "target.stale" {
-    type forward;
-    forward only;
-    forwarders { 10.53.0.8 port @PORT@; };
+       type forward;
+       forward only;
+       forwarders { 10.53.0.8 port @PORT@; };
 };
index a1bf2d087e0c5f80f2e99a07ec71bec225875d7e..2bb3e5abae9205be292edad263d544ecde098308 100644 (file)
@@ -1,12 +1,12 @@
 options {
-    {% include_indented "_common/options.conf.j2" %}
-    recursion no;
-    dnssec-validation no;
+       {% include_indented "_common/options.conf.j2" %}
+       recursion no;
+       dnssec-validation no;
 };
 
 {% include "_common/controls.conf.j2" %}
 
 zone "." {
-    type primary;
-    file "root.db";
+       type primary;
+       file "root.db";
 };
index 2fcde778c8d1944d46dcdbdd531994ad3478c39b..1a1a99897a39707824b5726562f4133c1666b7dc 100644 (file)
@@ -10,7 +10,7 @@ options {
 
 # Delegate .test domain to 10.53.0.2
 zone "." {
-    type primary;
-    file "root.db";
-    allow-transfer { none; };
+       type primary;
+       file "root.db";
+       allow-transfer { none; };
 };
index f78c79471924e4c03f697679a67215891f07d31e..093e35fa374af54ee54eded19c81d7f7c4e53595 100644 (file)
@@ -8,7 +8,7 @@ logging {
 };
 
 key rndc_key {
-    secret "1234abcd8765";
+       secret "1234abcd8765";
        algorithm @DEFAULT_HMAC@;
 };
 
index 6218dd0bfe2e2ecfa71ccac98b500477fa5511cf..00e6abd078a0bc1a4bb1e1b9ba6d120db4cb7022 100644 (file)
@@ -14,6 +14,6 @@
 
 # server-names must be valid domain names.
 zone "example.com" {
-     type static-stub;
-     server-names { "\11.example.net"; };
+       type static-stub;
+       server-names { "\11.example.net"; };
 };
index 651ba1f38b17a0fdb3476b95a79be535765bbb73..ed05aaecb4559249caf30bd5e2b2d1a1d4b18ef8 100644 (file)
@@ -1,6 +1,6 @@
 key "test-tsig." {
-    algorithm hmac-sha256;
-    secret "DAopyf1mhCbFVZw7pgmNPBoLUq8wEUT7UuPoLENP2HY=";
+       algorithm hmac-sha256;
+       secret "DAopyf1mhCbFVZw7pgmNPBoLUq8wEUT7UuPoLENP2HY=";
 };
 
 zone example {
index 7d1d4249721b96ff7b470d16a5bc063b6e161c86..de980e7f86620b9d730ccd1ad1b26f6689f20e62 100644 (file)
@@ -1,39 +1,39 @@
 zone 10.in-addr.arpa {
        type primary;
        file "10.in-addr.arpa.db";
-        plugin query "@TOP_BUILDDIR@/synthrecord.@DYLIB@" {
-                prefix "dynamic-";
-                allow-synth {
-                        10.53.0.0/16;
-                };
-                origin example.;
-                ttl 60;
-        };
+       plugin query "@TOP_BUILDDIR@/synthrecord.@DYLIB@" {
+               prefix "dynamic-";
+               allow-synth {
+                       10.53.0.0/16;
+               };
+               origin example.;
+               ttl 60;
+       };
 };
 
 zone e.f.a.c.ip6.arpa {
        type primary;
        file "e.f.a.c.in-addr.arpa.db";
-        plugin query "@TOP_BUILDDIR@/synthrecord.@DYLIB@" {
-                prefix "dynamic-";
-                allow-synth {
-                        cafe:cafe::/32;
-                };
-                origin example.;
-                ttl 60;
-        };
+       plugin query "@TOP_BUILDDIR@/synthrecord.@DYLIB@" {
+               prefix "dynamic-";
+               allow-synth {
+                       cafe:cafe::/32;
+               };
+               origin example.;
+               ttl 60;
+       };
 };
 
 zone example {
        type primary;
        file "example.db";
-        plugin query "@TOP_BUILDDIR@/synthrecord.@DYLIB@" {
-                prefix "dynamic-";
-                allow-synth {
-                        10.53.0.0/16;
-                        cafe:cafe::/32;
-                };
-                origin example.;
-                ttl 60;
-        };
+       plugin query "@TOP_BUILDDIR@/synthrecord.@DYLIB@" {
+               prefix "dynamic-";
+               allow-synth {
+                       10.53.0.0/16;
+                       cafe:cafe::/32;
+               };
+               origin example.;
+               ttl 60;
+       };
 };
index b8dad4269ec3f9cf68aa57383d00388ac40ed118..ad9f76969442691cd05f22a9f5483466fc15f8b9 100644 (file)
@@ -4,9 +4,9 @@
 
 
 options {
-        {% include_indented "_common/options.conf.j2" %}
-        tcp-listen-queue 32;
-        tcp-clients 17;
+       {% include_indented "_common/options.conf.j2" %}
+       tcp-listen-queue 32;
+       tcp-clients 17;
        dnssec-validation no;
 };
 
index fcaaf8b5eba585642b99aa10aa97f3c9331d9254..5595ddd2b38adc0bc6a8d27c00ecd16e72b45f02 100644 (file)
@@ -9,6 +9,6 @@ key "md5-trunc" {
 };
 
 key "hmac-md5-legacy" {
-        algorithm "hmac-md5";
-        secret "B7HCXJs0XnSPzypG5oHuGw==";
+       algorithm "hmac-md5";
+       secret "B7HCXJs0XnSPzypG5oHuGw==";
 };
index 4810be0be8c9365631e604bf1b36fa3be1a04b47..0bf7ff5d34f041ef833de6dbbb9e6c7206db56ed 100644 (file)
@@ -12,9 +12,9 @@ options {
 
 {% for name in zone_names %}
 zone "@name@" {
-    type primary;
-    file "@name@.db";
-    dnssec-policy default;
-    inline-signing yes;
+       type primary;
+       file "@name@.db";
+       dnssec-policy default;
+       inline-signing yes;
 };
 {% endfor %}
index 9d6dc0e924df535a3f126b20ec83e9d854b3ebd7..f7519a36f4a30103f6d5a18b0b95962688a77dc7 100644 (file)
@@ -17,9 +17,9 @@ zone "nsec" { type primary; file "nsec.db.signed"; };
 zone "private.nsec" { type primary; file "private.nsec.db.signed"; };
 
 zone "nestedwild.test" {
-        type primary;
-        file "nestedwild.db";
-        check-names ignore;
+       type primary;
+       file "nestedwild.db";
+       check-names ignore;
 };
 
 /*
index e82e0e528f4af2d39c8b8fec7bff9c84667a6fbc..b3580c6d5475ee65c6589694eeaa5b6096a2d91e 100644 (file)
@@ -26,8 +26,8 @@ zone "." {
 
 {% if ns4_as_secondary_for_nil %}
 zone "nil" {
-    type secondary;
-    file "nil.db";
-    primaries { 10.53.0.5 key tsig_key; };
+       type secondary;
+       file "nil.db";
+       primaries { 10.53.0.5 key tsig_key; };
 };
 {% endif %}