<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8">
</head>
<body text="#000000" bgcolor="#FFFFFF">
<div class="moz-cite-prefix">On 03/14/2019 04:40 AM, Niall O'Reilly
wrote:<br>
</div>
<blockquote type="cite"
cite="mid:487E5C79-0645-4295-8992-53544E405A2B@ucd.ie">
<pre wrap="">On 14 Mar 2019, at 5:17, Marc Chamberlin via bind-users wrote:
</pre>
<blockquote type="cite">
<pre wrap="">On 03/13/2019 08:33 PM, John W. Blue wrote:
</pre>
<blockquote type="cite">
<pre wrap="">
As an option, instead of including /etc/rndc.key nothing prevents you
from including rndc.conf. That way you are consistent with your useage.
</pre>
</blockquote>
</blockquote>
<pre wrap="">
Another option is to include rndc.key from both rndc.conf and
named.conf, which also keeps things consistent. Additionally, it
allows rndc.key to have stricter protection than the .conf files
(in my case, mode bits 0640 rather than 0644).</pre>
</blockquote>
Thanks Niall, I thought I had tried that approach when I was poking
around with rndc.conf, but apparently I must have done it wrong. The
include statement in rndc.conf does work, however I still do get the
warning - "WARNING: key file (/etc/rndc.key) exists, but using
default configuration file (/etc/rndc.conf)" which seems to be
unnecessary but I am not going to worry about it.<br>
<blockquote type="cite"
cite="mid:487E5C79-0645-4295-8992-53544E405A2B@ucd.ie">
<pre wrap="">
I seem to recall actually needing to do this because of named
objecting to the syntax of some of the configuration statements
I needed to use in rndc.conf.
I hope this helps.</pre>
</blockquote>
Yes, it does, thanks again... Much cleaner and safer this way...
Marc...<br>
<blockquote type="cite"
cite="mid:487E5C79-0645-4295-8992-53544E405A2B@ucd.ie">
<pre wrap="">
Niall O'Reilly
</pre>
</blockquote>
<p><br>
</p>
<div class="moz-signature">-- <br>
<b>Computers: the final frontier. These are the voyages of the
user Marc.<br>
His mission: to explore strange new hardware. To seek out new
software and new applications.<br>
To boldly go where no Marc has gone before!<br>
</b>
</div>
</body>
</html>