diff --git a/roles/nameserver/tasks/install_powerdns_server.yml b/roles/nameserver/tasks/install_powerdns_server.yml index c72a267..c9ed9e4 100644 --- a/roles/nameserver/tasks/install_powerdns_server.yml +++ b/roles/nameserver/tasks/install_powerdns_server.yml @@ -101,7 +101,7 @@ mode: "0644" owner: "root" group: "root" - force: no + force: yes - name: Nameserver | powerdns-server | set listening IPs when: @@ -110,7 +110,7 @@ - powerdns_recursor is defined - powerdns_recursor is true template: - src: "powerdns-server-sec-mysql-config.j2" + src: "powerdns-server-sec-config.j2" dest: "/etc/powerdns/pdns.conf" owner: "root" group: "root" diff --git a/roles/nameserver/templates/powerdns-server-sec-config.j2 b/roles/nameserver/templates/powerdns-server-sec-config.j2 new file mode 100644 index 0000000..61873ba --- /dev/null +++ b/roles/nameserver/templates/powerdns-server-sec-config.j2 @@ -0,0 +1,4 @@ +include-dir=/etc/powerdns/pdns.d +launch= +local-address={{ ansible_default_ipv4.address }}, [{{ ansible_default_ipv6.address }}], 127.0.0.1:553{% if wg_local_ip is defined %}, {{ wg_local_ip | ansible.utils.ipaddr('address') }}:553{% endif %} +security-poll-suffix= \ No newline at end of file