; -*- mode: dns; -*- ; {{ ansible_managed }} {% set domain = "aaronly.me" %} {% set hostmaster = "hostmaster." + network.domain %} $ORIGIN {{ domain }}. $TTL 1h @ IN SOA {{ nameservers[0].ns[0] }}. {{ hostmaster }}. ( {{ domain | next_serial }} ; serial number 1d ; refresh 2h ; retry 4w ; expire 1h ; minimum ) ; Name servers {% for server in nameservers %} {% for ns in server.ns %} @ IN NS {{ ns }}. ; {{ server.name }} {% endfor %} {% endfor %} @ IN A {{ network.ipv4.address }} @ IN AAAA {{ network.ipv6.address }} dorm-x42 IN A 58.196.142.84 office IN A 202.120.52.45 cluster IN A 202.120.52.63 liteserver IN A 5.2.70.218 www IN CNAME @ * IN CNAME @ ; Mail server {% if domain != network.domain %} @ IN MX 10 mail.{{ network.domain }}. {% endif %} @ IN TXT "v=spf1 mx -all" @ IN TXT "google-site-verification={{ mail['google-site-verification'][domain] }}" _dmarc IN TXT "v=DMARC1; p={{ mail.dmarc.p }}; sp={{ mail.dmarc.sp }}; pct={{ mail.dmarc.pct }}; aspf={{ mail.dmarc.aspf }}; rua=mailto:{{ mail.dmarc.rua[domain] }};" {% if domain_key is defined %} {{ domain_key | dkim_record(selector=mail.dkim.selector) | join("\n") }} {% endif %} ; vim: set ft=bindzone: