modified files
Este commit está contenido en:
@@ -1,2 +1,2 @@
|
||||
FROM debian:buster-slim
|
||||
FROM debian:sid-slim
|
||||
RUN apt update && apt -y upgrade && apt install -y bind9 ipv6calc curl bc dehydrated dnsutils && apt clean
|
||||
|
||||
@@ -40,7 +40,11 @@ imap IN A $IP
|
||||
* IN CNAME $DOMAIN.
|
||||
$DOMAIN. IN MX 10 mail.$DOMAIN.
|
||||
$DOMAIN. IN TXT \"v=spf1 ip4:172.200.0.0/24 a mx -all\"
|
||||
$DOMAIN. IN TXT \"google-site-verification=OGwhD4vhFpXHvQsbJinxAn5sozl0-R7MiiMt-fcYREY\"
|
||||
_dmarc IN TXT \"v=DMARC1;p=reject;rua=mailto:postmaster@$DOMAIN;pct=100;ruf=mailto:postmaster@$DOMAIN;sp=reject;aspf=s;adkim=s;ri=86400;fo=0;rf=afrf\"
|
||||
_dnsaddr IN TXT \"dnsaddr=/ip4/82.223.3.135/tcp/4001/p2p/QmcLwDnTPuSuaBL6QyfPGWyrAjHZYonahiKPeYSAjcU25V\"
|
||||
_dnsaddr IN TXT \"dnsaddr=/ip6/2001:ba0:1800:80e0::1/tcp/4001/p2p/QmcLwDnTPuSuaBL6QyfPGWyrAjHZYonahiKPeYSAjcU25V\"
|
||||
_dnslink IN TXT \"dnslink=/ipns/QmcLwDnTPuSuaBL6QyfPGWyrAjHZYonahiKPeYSAjcU25V\"
|
||||
$DKIM
|
||||
|
||||
\$INCLUDE K$DOMAIN.+008+10060.key
|
||||
@@ -186,6 +190,18 @@ options {
|
||||
check-names master warn;
|
||||
check-names slave warn;
|
||||
check-names response warn;
|
||||
// querylog yes;
|
||||
};
|
||||
|
||||
logging {
|
||||
channel querylog{
|
||||
file \"/var/log/querylog\";
|
||||
severity debug 10;
|
||||
print-category yes;
|
||||
print-time yes;
|
||||
print-severity yes;
|
||||
};
|
||||
category queries { querylog;};
|
||||
};
|
||||
|
||||
key \"_acme-challenge.$DOMAIN.\" {
|
||||
@@ -219,9 +235,12 @@ echo -e ";
|
||||
$DOMAIN2. IN A $IP
|
||||
$DOMAIN2. IN AAAA $IPV6
|
||||
* IN CNAME $DOMAIN2.
|
||||
$DOMAIN2. IN MX 10 mail.$DOMAIN2.
|
||||
$DOMAIN2. IN MX 10 mail.$DOMAIN.
|
||||
$DOMAIN2. IN TXT \"v=spf1 ip4:172.200.0.0/24 a mx -all\"
|
||||
_dmarc IN TXT \"v=DMARC1;p=reject;rua=mailto:postmaster@$DOMAIN;pct=100;ruf=mailto:postmaster@$DOMAIN;sp=reject;aspf=s;adkim=s;ri=86400;fo=0;rf=afrf\"
|
||||
_dnsaddr IN TXT \"dnsaddr=/ip4/82.223.3.135/tcp/4001/p2p/QmcLwDnTPuSuaBL6QyfPGWyrAjHZYonahiKPeYSAjcU25V\"
|
||||
_dnsaddr IN TXT \"dnsaddr=/ip6/2001:ba0:1800:80e0::1/tcp/4001/p2p/QmcLwDnTPuSuaBL6QyfPGWyrAjHZYonahiKPeYSAjcU25V\"
|
||||
_dnslink IN TXT \"dnslink=/ipns/QmcLwDnTPuSuaBL6QyfPGWyrAjHZYonahiKPeYSAjcU25V\"
|
||||
$DKIM2
|
||||
|
||||
\$INCLUDE K$DOMAIN2.+008+61170.key
|
||||
@@ -244,9 +263,12 @@ echo -e ";
|
||||
$DOMAIN3. IN A $IP
|
||||
$DOMAIN3. IN AAAA $IPV6
|
||||
* IN CNAME $DOMAIN3.
|
||||
$DOMAIN3. IN MX 10 mail.$DOMAIN3.
|
||||
$DOMAIN3. IN MX 10 mail.$DOMAIN.
|
||||
$DOMAIN3. IN TXT \"v=spf1 ip4:172.200.0.0/24 a mx -all\"
|
||||
_dmarc IN TXT \"v=DMARC1;p=reject;rua=mailto:postmaster@$DOMAIN;pct=100;ruf=mailto:postmaster@$DOMAIN;sp=reject;aspf=s;adkim=s;ri=86400;fo=0;rf=afrf\"
|
||||
_dnsaddr IN TXT \"dnsaddr=/ip4/82.223.3.135/tcp/4001/p2p/QmcLwDnTPuSuaBL6QyfPGWyrAjHZYonahiKPeYSAjcU25V\"
|
||||
_dnsaddr IN TXT \"dnsaddr=/ip6/2001:ba0:1800:80e0::1/tcp/4001/p2p/QmcLwDnTPuSuaBL6QyfPGWyrAjHZYonahiKPeYSAjcU25V\"
|
||||
_dnslink IN TXT \"dnslink=/ipns/QmcLwDnTPuSuaBL6QyfPGWyrAjHZYonahiKPeYSAjcU25V\"
|
||||
$DKIM3
|
||||
|
||||
\$INCLUDE K$DOMAIN3.+008+03409.key
|
||||
@@ -261,4 +283,4 @@ cd /etc/bind
|
||||
dnssec-signzone -A -3 $(head -c 1000 /dev/urandom | sha1sum | cut -b 1-16) -N INCREMENT $DOMAIN
|
||||
dnssec-signzone -P -A -3 $(head -c 1000 /dev/urandom | sha1sum | cut -b 1-16) -N INCREMENT $DOMAIN2
|
||||
dnssec-signzone -P -A -3 $(head -c 1000 /dev/urandom | sha1sum | cut -b 1-16) -N INCREMENT $DOMAIN3
|
||||
named -c named.conf -g -u bind
|
||||
named -c named.conf -f -u bind
|
||||
|
||||
@@ -13,6 +13,7 @@ services:
|
||||
- ./bind:/etc/bind
|
||||
- ./dehydrated:/etc/dehydrated
|
||||
- ./letsencrypt:/root/letsencrypt
|
||||
- ./querylog:/var/log/querylog
|
||||
ports:
|
||||
- "53:53/tcp"
|
||||
- "53:53/udp"
|
||||
|
||||
Referencia en una nueva incidencia
Block a user