~ubuntu-branches/ubuntu/trusty/zonecheck/trusty-proposed

« back to all changes in this revision

Viewing changes to etc/zonecheck/default.profile

  • Committer: Bazaar Package Importer
  • Author(s): Stephane Bortzmeyer
  • Date: 2004-03-10 14:08:05 UTC
  • Revision ID: james.westby@ubuntu.com-20040310140805-ij55fso1e23bk8ye
Tags: upstream-2.0.3
ImportĀ upstreamĀ versionĀ 2.0.3

Show diffs side-by-side

added added

removed removed

Lines of Context:
 
1
<?xml version='1.0' encoding='UTF-8'?>
 
2
<!DOCTYPE config PUBLIC "-//ZoneCheck//DTD Config V1.0//EN" "config.dtd">
 
3
<config>
 
4
<!-- $Id: default.profile,v 1.4 2003/12/18 12:11:06 sdalu Exp $ -->
 
5
 
 
6
  <profile name="default"
 
7
           longdesc="default profile for checking delegations">
 
8
    <const name="registry" value="default"/>
 
9
 
 
10
    <rules class="generic">
 
11
      <!-- Domain name check -->
 
12
      <check name="dn_sntx"     severity="f" category="dns:sntx"/>
 
13
      <check name="dn_orp_hyph" severity="f" category="dns:sntx"/>
 
14
      <check name="dn_dbl_hyph" severity="w" category="dns:sntx"/>
 
15
      <check name="one_ns"      severity="f" category="dns"/>
 
16
      <check name="several_ns"  severity="f" category="dns"/>
 
17
 
 
18
      <!-- IP address check -->
 
19
      <check name="ip_distinct"     severity="f" category="ip"/>
 
20
      <check name="ip_all_same_net" severity="w" category="ip"/>
 
21
      <check name="all_same_asn"    severity="w" category="ip"/>
 
22
 
 
23
      <!-- Interop -->
 
24
      <check name="delegation_udp512" severity="f" category="dns:interop"/>
 
25
      <check name="delegation_udp512_additional" severity="w" category="dns:interop"/>
 
26
    </rules>
 
27
 
 
28
    <rules class="nameserver">
 
29
      <!-- IP address check -->
 
30
      <check name="ip_private" severity="w" category="ip"/>
 
31
      <check name="ip_bogon"   severity="w" category="ip"/>
 
32
    </rules>
 
33
 
 
34
 
 
35
    <rules class="address">
 
36
      <!-- Connectivity -->
 
37
      <check name="icmp" severity="w" category="connectivity:l3"/>
 
38
      <check name="udp"  severity="f" category="connectivity:l4"/>
 
39
      <check name="tcp"  severity="f" category="connectivity:l4"/>
 
40
 
 
41
      <!-- Interoperability -->
 
42
      <check name="aaaa"                severity="f" category="dns:interop"/>
 
43
 
 
44
      <!-- SOA -->
 
45
      <check name="soa"                 severity="f" category="dns"/>
 
46
      <check name="soa_auth"            severity="f" category="dns"/>
 
47
      <check name="given_nsprim_vs_soa" severity="f" category="dns"/>
 
48
      <check name="soa_master_fq"       severity="w" category="dns:soa"/>
 
49
      <check name="soa_master_sntx"     severity="f" category="dns:soa"/>
 
50
      <check name="soa_contact_sntx_at" severity="f" category="dns:soa"/>
 
51
      <check name="soa_contact_sntx"    severity="f" category="dns:soa"/>
 
52
      <check name="soa_serial_fmt_YYYYMMDDnn" severity="w" category="dns:soa"/>
 
53
      <check name="soa_expire"          severity="f" category="dns:soa"/>
 
54
      <check name="soa_minimum"         severity="w" category="dns:soa"/>
 
55
      <check name="soa_refresh"         severity="w" category="dns:soa"/>
 
56
      <check name="soa_retry"           severity="w" category="dns:soa"/>
 
57
      <check name="soa_retry_refresh"   severity="f" category="dns:soa"/>
 
58
      <check name="soa_expire_7refresh" severity="f" category="dns:soa"/>
 
59
      <check name="soa_ns_cname"        severity="w" category="dns:soa"/>
 
60
      <check name="soa_vs_any"          severity="f" category="dns:soa"/>
 
61
      <check name="soa_coherence_serial" severity="f" category="dns:soa"/>
 
62
      <check name="soa_coherence_contact" severity="f" category="dns:soa"/>
 
63
      <check name="soa_coherence_master" severity="f" category="dns:soa"/>
 
64
      <check name="soa_coherence"       severity="f" category="dns:soa"/>
 
65
 
 
66
      <!-- NS -->
 
67
      <check name="ns"             severity="f" category="dns:ns"/>
 
68
      <check name="ns_auth"        severity="f" category="dns:ns"/>
 
69
      <check name="given_ns_vs_ns" severity="f" category="dns"/>
 
70
      <check name="ns_sntx"        severity="f" category="dns:ns"/>
 
71
      <check name="ns_cname"       severity="f" category="dns:ns"/>
 
72
      <check name="ns_vs_any"      severity="f" category="dns:ns"/>
 
73
      <check name="ns_ip"          severity="f" category="dns:ns"/>
 
74
      <check name="ns_reverse"     severity="w" category="dns:ns"/>
 
75
      <check name="ns_matching_reverse" severity="w" category="dns:ns"/>
 
76
 
 
77
      <case test="mail_by_mx_or_a">
 
78
        <when value="MX">
 
79
          <check name="mx"             severity="f" category="dns:mx"/>
 
80
          <check name="mx_auth"        severity="f" category="dns:mx"/>
 
81
          <check name="mx_sntx"        severity="f" category="dns:mx"/>
 
82
          <check name="mx_cname"                  severity="f" category="dns:mx"/>
 
83
          <check name="mx_no_wildcard"            severity="i" category="dns:mx"/>
 
84
          <check name="mx_ip"                     severity="f" category="dns:mx"/>
 
85
          <check name="mx_vs_any"                 severity="f" category="dns:mx"/>
 
86
        </when>
 
87
      </case>
 
88
 
 
89
      <check name="correct_recursive_flag"    severity="f" category="dns"/>
 
90
 
 
91
      <case test="recursive_server">
 
92
        <when value="true">
 
93
          <!-- Loopback -->
 
94
          <check name="loopback_delegation"       severity="w" category="dns:loopback"/>
 
95
          <check name="loopback_host"             severity="f" category="dns:loopback"/>
 
96
 
 
97
          <!-- Root servers -->
 
98
          <check name="root_servers"              severity="f" category="dns:root"/>
 
99
          <check name="root_servers_ns_vs_icann"  severity="f" category="dns:root"/>
 
100
          <check name="root_servers_ip_vs_icann"  severity="w" category="dns:root"/>
 
101
        </when>
 
102
      </case>
 
103
    </rules>
 
104
 
 
105
    <rules class="extra">
 
106
    <!-- Mail -->
 
107
      <check name="mail_mx_or_addr" severity="w" category="mail"/>
 
108
      <case test="mail_delivery">
 
109
        <when value="nodelivery"/>
 
110
        <else>
 
111
          <check name="mail_openrelay_domain"     severity="w" category="mail:openrelay"/>
 
112
          <check name="mail_delivery_postmaster"  severity="w" category="mail:delivery"/>
 
113
        </else>
 
114
      </case>
 
115
      <check name="mail_hostmaster_mx_cname"     severity="f" category="mail"/>
 
116
      <check name="mail_openrelay_hostmaster"    severity="w" category="mail:openrelay"/>
 
117
      <check name="mail_delivery_hostmaster"     severity="f" category="mail:delivery"/>
 
118
    </rules>
 
119
  </profile>
 
120
 
 
121
  <!-- Local Variables: -->
 
122
  <!-- mode: xml        -->
 
123
  <!-- End:             -->
 
124
</config>