version 1.1.1.1, 2013/07/29 19:37:40
|
version 1.1.1.3, 2016/11/02 09:57:01
|
Line 20
|
Line 20
|
# Never forward addresses in the non-routed address spaces. |
# Never forward addresses in the non-routed address spaces. |
#bogus-priv |
#bogus-priv |
|
|
|
# Uncomment these to enable DNSSEC validation and caching: |
|
# (Requires dnsmasq to be built with DNSSEC option.) |
|
#conf-file=%%PREFIX%%/share/dnsmasq/trust-anchors.conf |
|
#dnssec |
|
|
|
# Replies which are not DNSSEC signed may be legitimate, because the domain |
|
# is unsigned, or may be forgeries. Setting this option tells dnsmasq to |
|
# check that an unsigned reply is OK, by finding a secure proof that a DS |
|
# record somewhere between the root and the domain does not exist. |
|
# The cost of setting this is that even queries in unsigned domains will need |
|
# one or more extra DNS queries to verify. |
|
#dnssec-check-unsigned |
|
|
# Uncomment this to filter useless windows-originated DNS requests |
# Uncomment this to filter useless windows-originated DNS requests |
# which can trigger dial-on-demand links needlessly. |
# which can trigger dial-on-demand links needlessly. |
# Note that (amongst other things) this blocks all SRV requests, |
# Note that (amongst other things) this blocks all SRV requests, |
Line 111
|
Line 123
|
# running another nameserver on the same machine. |
# running another nameserver on the same machine. |
#bind-interfaces |
#bind-interfaces |
|
|
|
# Accept DNS queries only from hosts whose address is on a local |
|
# subnet, ie a subnet for which an interface exists on the server. |
|
# This option only has effect if there are no --interface |
|
# --except-interface, --listen-address or --auth-server options. |
|
local-service |
|
|
# If you don't want dnsmasq to read /etc/hosts, uncomment the |
# If you don't want dnsmasq to read /etc/hosts, uncomment the |
# following line. |
# following line. |
#no-hosts |
#no-hosts |
Line 239
|
Line 257
|
# the IP address 192.168.0.60 |
# the IP address 192.168.0.60 |
#dhcp-host=id:01:02:02:04,192.168.0.60 |
#dhcp-host=id:01:02:02:04,192.168.0.60 |
|
|
|
# Always give the Infiniband interface with hardware address |
|
# 80:00:00:48:fe:80:00:00:00:00:00:00:f4:52:14:03:00:28:05:81 the |
|
# ip address 192.168.0.61. The client id is derived from the prefix |
|
# ff:00:00:00:00:00:02:00:00:02:c9:00 and the last 8 pairs of |
|
# hex digits of the hardware address. |
|
#dhcp-host=id:ff:00:00:00:00:00:02:00:00:02:c9:00:f4:52:14:03:00:28:05:81,192.168.0.61 |
|
|
# Always give the host with client identifier "marjorie" |
# Always give the host with client identifier "marjorie" |
# the IP address 192.168.0.60 |
# the IP address 192.168.0.60 |
#dhcp-host=id:marjorie,192.168.0.60 |
#dhcp-host=id:marjorie,192.168.0.60 |
Line 333
|
Line 358
|
# Ask client to poll for option changes every six hours. (RFC4242) |
# Ask client to poll for option changes every six hours. (RFC4242) |
#dhcp-option=option6:information-refresh-time,6h |
#dhcp-option=option6:information-refresh-time,6h |
|
|
|
# Set option 58 client renewal time (T1). Defaults to half of the |
|
# lease time if not specified. (RFC2132) |
|
#dhcp-option=option:T1:1m |
|
|
|
# Set option 59 rebinding time (T2). Defaults to 7/8 of the |
|
# lease time if not specified. (RFC2132) |
|
#dhcp-option=option:T2:2m |
|
|
# Set the NTP time server address to be the same machine as |
# Set the NTP time server address to be the same machine as |
# is running dnsmasq |
# is running dnsmasq |
#dhcp-option=42,0.0.0.0 |
#dhcp-option=42,0.0.0.0 |
Line 474
|
Line 507
|
# Set the root directory for files available via FTP. |
# Set the root directory for files available via FTP. |
#tftp-root=/var/ftpd |
#tftp-root=/var/ftpd |
|
|
|
# Do not abort if the tftp-root is unavailable |
|
#tftp-no-fail |
|
|
# Make the TFTP server more secure: with this set, only files owned by |
# Make the TFTP server more secure: with this set, only files owned by |
# the user dnsmasq is running as will be send over the net. |
# the user dnsmasq is running as will be send over the net. |
#tftp-secure |
#tftp-secure |
Line 628
|
Line 664
|
# Include another lot of configuration options. |
# Include another lot of configuration options. |
#conf-file=/etc/dnsmasq.more.conf |
#conf-file=/etc/dnsmasq.more.conf |
#conf-dir=/etc/dnsmasq.d |
#conf-dir=/etc/dnsmasq.d |
|
|
|
# Include all the files in a directory except those ending in .bak |
|
#conf-dir=/etc/dnsmasq.d,.bak |
|
|
|
# Include all files in a directory which end in .conf |
|
#conf-dir=/etc/dnsmasq.d/,*.conf |