Dynamic Update
prerequisites
ํค๋ฅผ ์์ฑ

named.conf์ ์ถ๊ฐ
named ์ฌ์์
๋์ํ์ธ
์คํจ
update-policy
Last updated

Last updated
dnssec-keygen -r /dev/urandom -a HMAC-SHA512 -b 512 -n HOST teamsmiley-dev-secretcat Kteamsmiley-dev-secret.+157+39736.private
Private-key-format: v1.3
Algorithm: 165 (HMAC_SHA512)
Key: KzqRA3OnnSxx3Awp9m8Pt
Bits: AAA=
Created: 20220209130648
Publish: 20220209130648
Activate: 20220209130648vi named.conf
## ์์
zone "teamsmiley.dev"{
type master;
file "teamsmiley.dev";
....
allow-update { key "teamsmiley-dev-secret"; }; # ์ถ๊ฐ
};
## ๋ค์ ์ถ๊ฐ
key "teamsmiley-dev-secret" {
algorithm hmac-sha256;
secret "KzqRA3Onxxx";
};/etc/init.d/named restartnsupdate -y hmac-md5:teamsmiley-dev-secret:KzqRA3Onnxxx
update add teamsmiley.dev 60 txt testing
sendchmod 775 /var/named/chroot/var/named/
/etc/init.d/named restartzone "teamsmiley.dev"{
type master;
file "teamsmiley.dev";
#allow-update { key "xxxx-com-secret"; };
update-policy {
grant xxxx-com-secret name _acme-challenge.teamsmiley.dev. txt;
};
};