Files
configpolicy/group_vars/pyrocufflink-dns/main.yml
Dustin C. Hatch 74deb895ae pyrocufflink-dns: Remove dc0 forwarder
Decommissioning *dc0.pyrocufflink.blue*.  Do not forward requests for
internal domain names to it.
2021-12-18 16:44:48 -06:00

34 lines
645 B
YAML

protonvpn_tunnel: 1.1.1.1,1.0.0.1
protonvpn_server: 208.84.155.67
named_forward_only: true
named_forwarders:
- 1.1.1.1
- 1.0.0.1
named_listen:
- addresses:
- any
named_listen_v6:
- addresses:
- any
named_allow_query:
- any
named_dnssec_validation: false
named_response_policy:
- zone "blackhole.rpz"
named_queries_syslog: true
named_rpz_syslog: true
pyrocufflink_common_zones:
- zone: pyrocufflink.blue
type: forward
forward: only
forwarders:
- 172.30.0.9
- zone: 0.30.172.in-addr.arpa
type: forward
forward: only
forwarders:
- 172.30.0.9
named_zones: '{{ pyrocufflink_red_zones + pyrocufflink_common_zones + rpz_zones }}'