pid-file "named.pid";
auth-nxdomain yes;
datasize default;
-// Uncoment these to enable IPv6 connections support
-// IPv4 will still work
-// listen-on { none; };
+// For IPv4 and IPv6 uncoment listen-on and listen-on-v6 entries.
+// Regular DNS
+// listen-on { any; };
+// DNS-over-TLS (DoT)
+// listen-on tls ephemeral { any; };
+// DNS-over-HTTPS (DoH)
+// listen-on tls ephemeral http local { any; };
// listen-on-v6 { any; };
+// listen-on-v6 tls ephemeral { any; };
+// listen-on-v6 tls ephemeral http local { any; };
- #dnssec-enable yes; # enable DNSSEC, default yes
+// dnssec-enable yes; # enable DNSSEC, default yes
dnssec-validation auto; # enable DNSSEC validation with the key from bind.keys
- dnssec-lookaside auto; # enable DNSSEC DLV registry check with the key from bind.keys
+};
+
+http local {
+ endpoints { "/dns-query"; };
};
zone "localhost" IN {