force DNS slave zone to retransfer



  • Hi how do I force a slave zone to retransfer? If I run
    rndc retransfer <zone name>
    it gives me this:

    rndc: connection to remote host closed
    This may indicate that

    • the remote server is using an older version of the command protocol,
    • this host is not authorized to connect,
    • the clocks are not synchronized,
    • the key signing algorithm is incorrect, or
    • the key is invalid.

  • LAYER 8

    i think you need the -k options
    rndc -k /path/to/rndc.key retransfer <zone name>

    i have installed it on my 2.5.0-devel just to test it

    [2.5.0-DEVELOPMENT][root@pfSense.localdomain]/cf/named/etc/namedb: rndc -k rndc-key zonestatus test.home
    name: test.home
    type: master
    files: /etc/namedb/master/trusted/test.home.DB
    serial: 2581012914
    nodes: 2
    last loaded: Thu, 06 Feb 2020 18:23:59 GMT
    secure: no
    dynamic: yes
    frozen: no
    reconfigurable via modzone: no
    

    the key is inside /cf/named/etc/namedb/rndc.conf

    i just copied the key part inside a new file to use it with rndc
    the content of my rndc-key is

    key "rndc-key" {
            algorithm hmac-sha256;
            secret "blablablablablalbalblsablalblablaalbalablabala";
    };
    

Log in to reply