Add TLS context for DNS over TLS/HTTPS

Added TLS context configuration for DoT/DoH with certificate and key file paths.
This commit is contained in:
deepend-tildeclub 2025-09-17 14:34:03 -06:00 committed by GitHub
parent 283bb38db8
commit 21a8012155
No known key found for this signature in database
GPG Key ID: B5690EEEBB952194
1 changed files with 9 additions and 1 deletions

View File

@ -6,6 +6,14 @@
//
// If you are just adding zones, please do that in /etc/bind/named.conf.local
// TLS context for DoT/DoH
tls "dns-tls" {
cert-file "/etc/bind/keys/dns-fullchain.pem";
key-file "/etc/bind/keys/dns-privkey.pem";
protocols { TLSv1.3 TLSv1.2; };
session-tickets no;
};
include "/etc/bind/named.conf.options";
include "/etc/bind/named.conf.local";
include "/etc/bind/named.conf.default-zones";