about summary refs log tree commit diff
diff options
context:
space:
mode:
authorNguyễn Gia Phong <cnx@loang.net>2024-04-11 17:54:19 +0900
committerNguyễn Gia Phong <cnx@loang.net>2024-04-11 17:54:19 +0900
commit74328e0e0f02891356c6b1673722a3182ebe74ff (patch)
tree3a2df192b9db4798450ad148beb389052e33bbe3
parent25f1e4f0a848dbec8e5d056ad13d7172497982ea (diff)
downloadnixos-conf-74328e0e0f02891356c6b1673722a3182ebe74ff.tar.gz
Serve DNS records for giao.loan
For some reason knot considers this exact zone file to be invalid
when copied out to /var/lib/knot/zones so DNSSEC is off for now.
-rw-r--r--dns.nix13
1 files changed, 13 insertions, 0 deletions
diff --git a/dns.nix b/dns.nix
index 98b5da7..c6223d3 100644
--- a/dns.nix
+++ b/dns.nix
@@ -96,6 +96,19 @@ in {
           acl = [ "ns-global" "puck" ];
         }
         {
+          domain = "giao.loan";
+          file = builtins.toFile "giao.loan.zone" ''
+            @ SOA danh.loang.net. cnx.loang.net. 2024011642 14400 3600 604800 3600
+            @ NS  danh.loang.net.
+            @ NS  puck.nether.net.
+            @ NS  ns-global.kjsl.com.
+            @ A   112.185.162.184
+          '';
+          notify = [ "ns-global" "puck" ];
+          acl = [ "ns-global" "puck" ];
+          dnssec-signing = false;
+        }
+        {
           domain = "loang.net";
           notify = [ "ns-global" "puck" ];
           acl = [ "ns-global" "puck" ];