[Pdns-users] Is it possible to filter tsig-key dnsupdate access?

Djerk Geurts djerk at maizymoo.com
Thu Apr 28 18:32:55 UTC 2022


Hi all,

I’m in the process of setting up DNS-01 Let’s Encrypt verification and have generated the tsig-key, added it to the zone as TSIG-ALLOW-DNSUPDATE. But I’d like to restrict the updates to hostname "_acme-challenge" and record type TXT.

Will I have to write a LUA script for this or is there a better way of doing this?

-- 
Best regards,
Djerk Geurts
m: +44-7535-674620

Maizymoo Ltd
VAT No: GB192 1529 07
Registration Number: 6638104 (registered in England and Wales)

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mailman.powerdns.com/pipermail/pdns-users/attachments/20220428/27d8f9d5/attachment.htm>


More information about the Pdns-users mailing list