Adoptable Cookbooks List

Looking for a cookbook to adopt? You can now see a list of cookbooks available for adoption!
List of Adoptable Cookbooks

Supermarket Belongs to the Community

Supermarket belongs to the community. While Chef has the responsibility to keep it running and be stewards of its functionality, what it does and how it works is driven by the community. The chef/supermarket repository will continue to be where development of the Supermarket application takes place. Come be part of shaping the direction of Supermarket by opening issues and pull requests or by joining us on the Chef Mailing List.

Select Badges

Select Supported Platforms

RSS

nsd (7) Versions 0.5.0

Install and configure NSD

Berkshelf
Policyfile
Knife
cookbook 'nsd', '~> 0.5.0'
cookbook 'nsd', '~> 0.5.0', :supermarket
knife supermarket install nsd
knife supermarket download nsd
README
Dependencies
Changelog
Quality -%

nsd cookbook

Chef cookbook license
A Chef cookbook to install nsd master and slaves along with initial zone configuration.

Resources

The examples below configure one master (ns1.example.com) and two slave servers (ns2.example.com and ns3.example.com), all of which host two zones - example.com itself and test.com. SOA records will contain hostmaster@example.com as an email address.

nsd_master

nsd_master 'ns1.example.com' do
  port 53
  ipv4_address '1.1.1.1'
  ipv6_address '2001:0db8:0a0b:12f0:0000:0000:0000:0001'
  contact 'hostmaster@example.com'
  bind_addresses %w(1.1.1.1 2001:0db8:0a0b:12f0:0000:0000:0000:0001)
  enable_ipv6 true
  keys({
    'ns2.example.com' => '7DzUnLpx9H...',
    'ns3.example.com' => '1ADEn1fqOo...'
  })
  slaves({
    'ns2.example.com' => {
      'ipv4_address' => '2.2.2.2',
      'ipv6_address' => '2001:0db8:0a0b:12f0:0000:0000:0000:0002'
    },
    'ns3.example.com' => {
      'ipv4_address' => '3.3.3.3',
      'ipv6_address' => '2001:0db8:0a0b:12f0:0000:0000:0000:0003'
    }
  })
  zones %w(example.com test.com)
  action :install
end

nsd_slave

nsd_slave 'ns2.example.com' do
  port 53
  bind_addresses %w(2.2.2.2 2001:0db8:0a0b:12f0:0000:0000:0000:0002)
  enable_ipv6 true
  key '7DzUnLpx9H...'
  zones %w(example.com test.com)
  master_ipv4_address '1.1.1.1'
  action :install
end

nsd_slave 'ns3.example.com' do
  port 53
  bind_addresses %w(3.3.3.3 2001:0db8:0a0b:12f0:0000:0000:0000:0003)
  enable_ipv6 true
  key '1ADEn1fqOo...'
  zones %w(example.com test.com)
  master_ipv4_address '1.1.1.1'
  action :install
end

AXFR keys

A zone is modified only on a master server. Then the changes are transferred to slave servers. It is presupposed that each slave server has its own secret key. Secret management is up to the user utilizing nsd_master and nsd_slave resources.

A key may be generated with this command:

$ dd if=/dev/random count=1 bs=32 2> /dev/null | base64

Limitations

This cookbook does not set up any firewall rules.

License

MIT @ Alexander Pyatkin

Dependent cookbooks

This cookbook has no specified dependencies.

Contingent cookbooks

There are no cookbooks that are contingent upon this one.

Changelog

All notable changes to this project will be documented in this file.

The format is based on Keep a Changelog and this project adheres to Semantic Versioning.

[0.5.0] - 2021-03-22

Added

  • Add CHANGELOG.

Changed

  • Change zone file structure.

No quality metric results found