BIND 9.16.30 - $INCLUDE file in the rpz zone file not reloading content and dig not working

Nagesh Thati tcpnagesh at gmail.com
Thu Mar 16 12:30:55 UTC 2023


Hi Team,
I have configured a named with rpz,
*options section has,*


*response-policy {            zone "rpz.local";        } qname-wait-recurse
no;*

*Zone Section in named.conf,*



*zone "rpz.local" {        type master;        file
"/var/named/zones/masters/db.rpz.local";};*

*Zone file content,*










*> cat db.rpz.local;; rpz.local;$TTL    2h ; default TTL$ORIGIN
 rpz.local.@        SOA nonexistent.nodomain.none. dummy.nodomain.none. 1
12h 15m 3w 2h; name server is never accessed but out-of-zone         NS
 nonexistant.nodomain.none.$INCLUDE /var/named/zones/masters/rpz.local.data*


*Include file content,*


*> cat rpz.local.datanagesh1.com <http://nagesh1.com> A 1.2.3.4*
*nagesh2.com <http://nagesh2.com> A 2.3.4.5*

When named is restarted using systemctl above rpz rules are working fine,
but when I add a new rule *nagesh3.com <http://nagesh3.com> A 3.4.5.6
* manually in
the include file and run "rndc reconfig and rndc reload", named is not
picking up the updated include file and *nagesh3.com <http://nagesh3.com>* rpz
rule is not working.

Can someone please help me with named reloading from the updated include
file without restarting the named service.

Thanks
Nagesh.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.isc.org/pipermail/bind-users/attachments/20230316/247164ef/attachment.htm>


More information about the bind-users mailing list