DirectAdmin # custom zone.conf fix security

#cd /usr/local/directadmin/data/templates
#cp zone.conf custom/
#cd custom
#nano zone.conf

original file
------------------------------------------------------------
zone "|DOMAIN|" { type master; file "|PATH|/|DOMAIN|.db"; };
------------------------------------------------------------

edit to
------------------------------------------------------------
zone "|DOMAIN|" { allow-transfer { trusted-servers; }; type master; file "|PATH|/|DOMAIN|.db"; };
------------------------------------------------------------
Ctrl + x
press y
enter

edit /etc/named.conf
old config
-----------------------------------------------------------
options {
directory "/var/named";
dump-file "/var/named/data/cache_dump.db";
statistics-file "/var/named/data/named_stats.txt";
};
include "/etc/rndc.key";

zone "localhost.localdomain.com" { type master; file "/var/named/localhost.localdomain.com.db"; };
----------------------------------------------------------

edit to
----------------------------------------------------------
acl trusted-servers {
127.0.0.1;
};

options {
allow-recursion {
localnets;
};
directory "/var/named";
dump-file "/var/named/data/cache_dump.db";
statistics-file "/var/named/data/named_stats.txt";
};
include "/etc/rndc.key";

zone "da02.9dbd.com" { allow-transfer { trusted-servers; }; type master; file "/var/named/localhost.localdomain.com.db"; };
-----------------------------------------------------------
Ctrl + x
press y
enter

#service named restart

how to test