include "/etc/bind/named.conf.options";
include "/etc/bind/named.conf.local";
include "/etc/bind/named.conf.default-zones";
acl goodclients {
172.20.0.0/16;
10.0.0.0/16;
localhost;
localnets;
};
options {
directory "/var/cache/bind";
dnssec-enable yes;
dnssec-validation yes;
recursion yes;
allow-query { goodclients; };
forwarders {
1.1.1.1;
8.8.4.4;
1.0.0.1;
8.8.8.8;
208.67.222.222;
208.67.220.220;
};
forward only;
auth-nxdomain no; # conform to RFC1035
listen-on-v6 { any; };
};
statistics-channels {
inet 127.0.0.1 port 8053 allow { 127.0.0.1; };
};