2 # Insert these snippets into your named.conf or bind.conf to configure
6 #insert this into options {}
7 tkey-gssapi-credential "DNS/${DNSDOMAIN}"
8 tkey-domain "${REALM}";
11 zone "${DNSDOMAIN}." IN {
13 file "${DNSDOMAIN}.zone";
15 /* use ANY only for Domain controllers for now */
16 /* for normal machines A AAAA PTR is probbaly all is needed */
17 grant ${HOSTNAME}.${DNSDOMAIN}@${REALM} name ${HOSTNAME}.${DNSDOMAIN} ANY;
21 # Also, you need to change your init scripts to set this environment variable
22 # for named: KRB_KTNAME so that it points to the keytab generated.
23 # In RedHat derived systems such RHEL/CentOS/Fedora you can add the following
24 # line to the /etc/sysconfig/named file
25 # export KRB_KTNAME=/etc/named.keytab
27 # *TODO*: generate and install a keytab file in /etc/named.keytab