summaryrefslogtreecommitdiff
path: root/puppet/modules/site_unbound
diff options
context:
space:
mode:
authorMicah Anderson <micah@riseup.net>2013-01-16 13:08:24 -0500
committerMicah Anderson <micah@riseup.net>2013-01-16 13:08:24 -0500
commit4e0021dede8aae43760b3e9a4b2317c3ed4c1e0d (patch)
treec089b4373a1f8eca2b7586e4941eaa4d54008a04 /puppet/modules/site_unbound
parent06757bf230dc616832cf2eb560ee9c1570cc1a07 (diff)
Swtich from bind9 as the local caching resolver to unbound. This will enable us
to do tor lookups over DNS on servers, if tor services are defined. To do this, we remove the bind9 configurations from site_config::resolvconf.pp and replace it with site_config::caching_resolver with a basic unbound configuration that can be used everywhere. The unbound configuration enables a /etc/unbound/conf.d directory for additional config snippits that can be dropped in from other places. This will be used for setting up different interfaces in the vpn gateway, for example. There will be a set of transition package/file absent blocks to clean up providers.
Diffstat (limited to 'puppet/modules/site_unbound')
-rw-r--r--puppet/modules/site_unbound/manifests/init.pp19
1 files changed, 0 insertions, 19 deletions
diff --git a/puppet/modules/site_unbound/manifests/init.pp b/puppet/modules/site_unbound/manifests/init.pp
deleted file mode 100644
index a968ac62..00000000
--- a/puppet/modules/site_unbound/manifests/init.pp
+++ /dev/null
@@ -1,19 +0,0 @@
-class site_unbound {
-
- class { 'unbound':
- root_hints => false,
- anchor => false,
- ssl => false,
- settings => {
- server => {
- verbosity => '1',
- interface => [ '127.0.0.1', '::1' ],
- port => '53',
- hide-identity => 'yes',
- hide-version => 'yes',
- harden-glue => 'yes',
- access-control => [ '127.0.0.0/8 allow', '::1 allow' ]
- }
- }
- }
-}