BIND 9.3.2 Release Notes
New Command-Line Options
Table 1-5 lists the new command-line options for the various binaries and tools in BIND
9.3.2.
Table 1-5 New Command-Line Options
DescriptionOptionsBinaries/Tools
Sets the specified flag in the flag field of the KEY or DNSKEY
record. The only recognized flag is Signed Key (KSK)
DNSKEY.
-f flagdnssec-keygen
Generates KEY records, instead of the DNSKEY records-kdnssec-keygen
Generates DS records for child zones from the keyset files.
Existing DS records are removed from the signed db files.
-gdnssec-signzone
Treats the specified key as a key signing key and ignores
any key flags. This option can be specified multiple times.
-k keydnssec-signzone
Generates a DNSSEC lookaside validation (DLV) set in
addition to the key (DNSKEY) and DS sets. The domain is
appended to the name of the records.
-l domaindnssec-signzone
Performs a check load on the master zone files in the
/etc/named.conf file
-znamed-checkconf
Reads the journal while loading a zone file
-jnamed-checkconf
Reads the journal while loading a zone file
-jnamed-checkzone
Performs check-name checks with the specified failure
mode. The values for the failure modes are fail, warn, and
ignore. The default value is warn.
-k modenamed-checkzone
Specifies if name server (NS) records must be checked to
verify whether they are addresses. The values for this option
are fail, warn, and ignore. The default value is warn.
-n modenamed-checkzone
Writes the zone output to the directory
-o filenamenamed-checkzone
Specifies the directory under which the named-checkzone
command is chrooted. The $INCLUDE directives in the
configuration file are also processed as if they are run by a
similarly chrooted named.
-t directorynamed-checkzone
Specifies named to change to directory so that relative
filenames in the master file $INCLUDE directives are
functional. This option is similar to the directory clause
in the /etc/named.conf file.
-w directorynamed-checkzone
Specifies the dump zone file in canonical format
-Dnamed-checkzone
Specifies named to use only the IPv4 transport even if the
host system is capable of handling IPv6 addresses
-4named
14 BIND 9.3.2 Release Notes