Some time ago, I activated DNSSEC logging in my BIND. The additional lines are as follows:
Guidelines can be found from DNSSEC_HOWTO at http://www.nlnetlabs.nl/publications/dnssec_howto/
I have allocated 2G for a large log. I also need to pay attention to where the log file resides. Since BIND operates under a chroot environment, the folder "/var/log/" actually means "/var/named/chroot/var/log". This is a bit tricky.
No comments:
Post a Comment