Welcome to Knot DNS's documentation!¶
- Introduction
- Requirements
- Installation
- Configuration
- Operation
- Configuration database
- Dynamic configuration
- Secondary (slave) mode
- Primary (master) mode
- Reading and editing zones
- Reading and editing the zone file safely
- Zone loading
- Journal behaviour
- Handling zone file, journal, changes, serials
- DNSSEC key states
- DNSSEC key rollovers
- DNSSEC shared KSK
- DNSSEC delete algorithm
- DNSSEC Offline KSK
- Import of keys to HSM
- Daemon controls
- Data and metadata backup
- Statistics
- Mode XDP
- Troubleshooting
- Configuration Reference
- Modules
cookies
— DNS Cookiesdnsproxy
– Tiny DNS proxydnstap
– Dnstap traffic logginggeoip
— Geography-based responsesnoudp
— No UDP responseonlinesign
— Online DNSSEC signingprobe
— DNS traffic probequeryacl
— Limit queries by remote address or target interfacerrl
— Response rate limitingstats
— Query statisticssynthrecord
– Automatic forward/reverse recordswhoami
— Whoami response
- Utilities
- knotd – Knot DNS server daemon
- knotc – Knot DNS control utility
- keymgr – Key management utility
- kjournalprint – Knot DNS journal print utility
- kcatalogprint – Knot DNS catalog print utility
- kzonecheck – Knot DNS zone file checking tool
- kzonesign – DNSSEC signing utility
- kdig – Advanced DNS lookup utility
- khost – Simple DNS lookup utility
- knsec3hash – NSEC hash computation utility
- knsupdate – Dynamic DNS update utility
- kxdpgun – DNS benchmarking tool
- Migration
- Appendices