HP-UX IP Address and Client Management Administrator's Guide HP-UX 11i v2, HP-UX 11i v3

Configuring the Name Service Switch..................................................................................................63
Choosing Name Servers for Your Domain...........................................................................................64
Choosing the Type of Name Server.................................................................................................64
Choosing Master Servers and Slave Servers...................................................................................65
Types of Resource Records..............................................................................................................65
Configuring a Master Name Server......................................................................................................66
Creating the Data Files for a Master Server.....................................................................................66
Setting the Default Domain Name..................................................................................................67
Master Server Configuration File....................................................................................................68
Master Server Cache File.................................................................................................................69
The db.127.0.0 File...........................................................................................................................70
Master Server db.domain Files.........................................................................................................71
Master Server db.net Files................................................................................................................73
Adding a Host to the Domain Data Files........................................................................................74
Deleting a Host from the Domain Data Files..................................................................................74
Configuring a Slave Name Server........................................................................................................75
Creating Slave Server Data Files Using hosts_to_named................................................................75
Creating the Slave Servers Data Files Manually.............................................................................76
Setting the Default Domain Name..................................................................................................77
Configuring the Caching-Only Name Server.......................................................................................77
Configuring the Resolver to Query a Remote Name Server................................................................78
Configuring the Resolver to Set Timeout Values .................................................................................80
Configuring Timeout Values Using Environment Variables..........................................................80
Configuring Timeout Values Using the Configuration File............................................................80
Configuring Timeout Values Using APIs........................................................................................80
The set_resfield() API.................................................................................................................80
The get_resfield() API................................................................................................................81
Sample Program with Timeout Values............................................................................................81
Starting the Name Server Daemon.......................................................................................................81
Verifying the Name Server..............................................................................................................82
Updating Network-Related Files..........................................................................................................83
Updating /etc/hosts.equiv and $HOME/.rhosts..............................................................................83
Updating /var/adm/inetd.sec and $HOME/.netrc...........................................................................83
Updating /etc/hosts..........................................................................................................................83
Delegating a Subdomain.......................................................................................................................83
Example of Delegating a Subdomain..............................................................................................84
Configuring a Root Name Server.........................................................................................................84
BIND Logging System..........................................................................................................................85
BIND Security.......................................................................................................................................85
TSIG-Based Security........................................................................................................................85
One-Way Hash Function............................................................................................................85
Configuring TSIG.......................................................................................................................86
Generating Keys.........................................................................................................................86
Using TSIG.................................................................................................................................86
DNSSEC – A DNS Security Extension.............................................................................................87
Creating a Keyset.......................................................................................................................87
Signing the Child’s Keyset..........................................................................................................87
Signing the Zone........................................................................................................................87
Configuring Servers...................................................................................................................88
Compartmentalizing BIND.............................................................................................................88
Enabling Compartments in BIND..............................................................................................88
Disabling Compartments in BIND.............................................................................................89
Troubleshooting the BIND Name Server..............................................................................................89
Troubleshooting Tools and Techniques...........................................................................................89
The ping Command...................................................................................................................89
Table of Contents 5