From e7247f85c09b91332acffa8c497d9987cb21a55b Mon Sep 17 00:00:00 2001 From: niten Date: Thu, 5 Oct 2023 11:15:57 -0700 Subject: [PATCH] Try switching back to basic NSD --- authoritative-dns.nix | 11 ++++++++--- 1 file changed, 8 insertions(+), 3 deletions(-) diff --git a/authoritative-dns.nix b/authoritative-dns.nix index e3266eb..31d8488 100644 --- a/authoritative-dns.nix +++ b/authoritative-dns.nix @@ -67,16 +67,21 @@ in { imports = [ ./nsd.nix ]; config = mkIf cfg.enable { - services.fudo-nsd = { + fileSystems."/var/lib/nsd" = { + device = cfg.state-directory; + options = [ "bind" ]; + }; + + services.nsd = { enable = true; identity = cfg.identity; interfaces = cfg.listen-ips; - stateDirectory = cfg.state-directory; + # stateDirectory = cfg.state-directory; zones = mapAttrs' (dom: domCfg: let zoneCfg = domCfg.zone; in nameValuePair "${dom}." { dnssec = domCfg.ksk.key-file != null; - ksk.keyFile = domCfg.ksk.key-file; + # ksk.keyFile = domCfg.ksk.key-file; data = zoneToZonefile cfg.timestamp dom domCfg.zone-definition; }) cfg.domains; };