netrange:
- 87.106.0.0/16
- 2001:8d8:81:1520::/64
+ nameservers_break_dnssec: true
nameservers: [87.106.64.251, 195.20.224.99, 195.20.224.234]
+ # for i in `awk '$1=="nameserver" {print $2}' /etc/resolv.conf; [ -e /etc/unbound/unbound.conf ] && awk '$1=="forward-addr:" {print $2}' /etc/unbound/unbound.conf`; do dig +dnssec @$i -t ns . | grep RRSIG || echo BROKEN; echo;echo $i; echo;read; done
1und1-sec:
netrange:
- 195.20.242.64/26
- 212.227.126.32/27
- 2001:8d8:2:1::/64
searchpaths: [debprivate-oneandone.debian.org]
+ nameservers_break_dnssec: true
nameservers: [195.20.224.99, 195.20.224.234, 87.106.64.251]
-aacumea:
+accumu:
netrange:
- 130.236.0.0/14
- 2001:06B0:000E::/48
- nameservers: [130.239.18.145, 130.239.1.90, 130.239.4.100]ยท
-# Australian National University (ana.edu.au)
-ana:
- netrange:
- - 150.203.164.0/24
- - 2001:388:1034:2900::64
- nameservers: [150.203.1.10, 150.203.164.10, 150.203.164.9]
+ searchpaths: [debprivate-accumu.debian.org]
+ nameservers: [130.239.18.145, 130.239.1.90, 130.239.4.100]
arm:
netrange:
- - 217.140.96.58/29
+ - 217.140.96.0/22
+ nameservers_break_dnssec: true
nameservers: [158.43.128.1, 217.140.108.113]
-br:
- # University Federal do Parana (.br)
- netrange:
- - 200.17.192.0/19
- nameservers: [200.17.202.1, 200.17.202.3]
+ entropy_provider_hoster: sil
brainfood:
netrange:
- 70.103.162.0/24
- nameservers: [70.103.162.29, 70.103.162.4]
+ searchpaths: [debprivate-brainfood.debian.org]
+ # all hosts have their own recursor
+ nameservers: []
brown:
netrange:
- 128.148.0.0/16
- nameservers: [128.148.34.103, 128.148.34.3]
+ # all hosts have their own recursor
+ nameservers: []
+br:
+ # rename to c3sl
+ # University Federal do Parana (.br)
+ netrange:
+ - 200.17.192.0/19
+ nameservers: [200.236.31.1, 200.17.202.3]
carnet:
netrange:
- 193.198.0.0/16
+ nameservers_break_dnssec: true
nameservers: [161.53.160.3, 161.53.123.3]
+ana:
+ # rename to cecsit
+ netrange:
+ - 150.203.164.0/24
+ - 2001:388:1034:2900::64
+ nameservers_break_dnssec: true
+ nameservers: [150.203.1.10, 150.203.164.10, 150.203.164.9]
+conova:
+ netrange:
+ - 217.196.149.224/28
+ nameservers: [217.196.144.129, 217.196.144.229]
csail:
- # mit
netrange:
- 128.31.0.0/24
+ searchpaths: [debprivate-csail.debian.org]
nameservers: [128.30.2.24, 128.30.2.25, 128.30.0.125]
-cst:
- netrange:
- - 213.188.99.208/28
- nameservers: [213.157.0.194, 213.157.0.193]
-darmstadt:
- netrange:
- - 82.195.75.64/26
- - 82.195.75.32/28
- - 2001:41b8:202:deb::/64
- searchpaths: [debprivate-darmstadt.debian.org]
- nameservers: [82.195.75.81, 82.195.66.249, 217.198.242.225]
dgi:
netrange:
- 93.94.130.128/26
freenet:
netrange:
- 62.104.0.0/16
+ nameservers_break_dnssec: true
nameservers: [194.97.3.83, 62.104.64.3, 194.97.3.11]
ftcollins:
netrange:
- 192.25.206.0/24
- searchpaths: [debprivate-debprivate-ftcollins.debian.org]
+ searchpaths: [debprivate-ftcollins.debian.org]
nameservers: [192.25.206.33, 192.25.206.57]
+ # only applicable for hosts that are recursive anyway:
+ allow_dns_query: [192.25.206.0/24]
grnet:
netrange:
- 194.177.211.192/27
helsinki:
netrange:
- 193.167.160.0/23
- nameservers: [128.214.9.15, 218.214.4.29]
+ # all hosts have their own recursor
+ nameservers: []
isc:
netrange:
- 149.20.0.0/16
- 2001:4F8::/32
- nameservers: [149.20.64.2, 204.152.184.67]
-nmmn:
+ #nameservers: [149.20.64.2, 204.152.184.67]
+ # sometimes very slow?
+ nameservers: []
+uni-karlsruhe:
+ # rename to karlsruhe
+ netrange:
+ - 129.143.160.0/29
+ - 2001:7c0:400:1337::/64
+ nameservers: []
+'man-da':
+ netrange:
+ - 82.195.75.64/26
+ - 82.195.75.32/28
+ - 2001:41b8:202:deb::/64
+ searchpaths: [debprivate-darmstadt.debian.org]
+ nameservers: [82.195.66.249, 217.198.242.225]
+marist:
netrange:
- - 217.114.76.80/29
- nameservers: [217.114.70.53, 217.114.77.53]
+ - 148.100.96.0/25
+ nameservers: []
osuosl:
netrange:
- 140.211.166.0/25
- 140.211.15.0/24
+ nameservers_break_dnssec: true
nameservers: [140.211.166.130, 140.211.166.131, 216.165.191.54]
sanger:
netrange:
- 193.62.202.24/29
- nameservers: [193.62.203.96, 193.62.203.97]
- resolvoptions: [single-request]
+ # broken with dnssec
+ # nameservers: [193.62.203.96, 193.62.203.97]
+ #resolvoptions: [single-request]
+ nameservers: [193.62.202.28, 193.62.202.29]
+ searchpaths: [debprivate-sanger.debian.org]
+ allow_dns_query: [193.62.202.24/29]
rapidswitch:
netrange:
- 193.201.200.0/23
nameservers: [87.117.198.200, 87.117.237.100, 87.117.196.200]
-sil:
- netrange:
- - 86.59.118.144/28
- nameservers: [213.129.232.1, 213.129.226.2]
scanplus:
netrange:
- 212.211.132.0/26
- 212.211.132.248/29
- 2001:a78::/64
+ nameservers_break_dnssec: true
nameservers: [212.211.132.4, 212.75.32.4]
-snowman:
- netrange:
- - 72.66.115.54
- nameservers: [10.10.1.1]
-telegrafxs4all:
+sil:
netrange:
- - 82.94.249.152/29
- nameservers: [194.109.6.66]
+ - 86.59.118.144/28
+ - 2001:858:2:2::/64
+ searchpaths: [debprivate-sil.debian.org]
+ #nameservers_break_dnssec: true
+ #nameservers: [213.129.232.1, 213.129.226.2]
+ nameservers: [86.59.118.147, 86.59.118.148]
+ allow_dns_query: [86.59.118.144/28, 2001:858:2:2::/64]
ubcece:
netrange:
- 137.82.84.64/27
- 206.12.19.0/24
searchpaths: [debprivate-ubc.debian.org]
- nameservers: [206.12.19.5, 137.82.1.1, 142.103.1.1]
+ nameservers: [206.12.19.214, 2607:f8f0:610:4000:224:81ff:fea7:e952, 206.12.19.20, 2607:f8f0:610:4000:218:feff:fe76:2ed0, 206.12.19.21, 2607:f8f0:610:4000:21c:c4ff:fee5:e890]
+ allow_dns_query: [137.82.84.64/27, 206.12.19.0/24, 2607:f8f0:610:4000::/64]
ugent:
netrange:
- 157.193.0.0/16
umn:
netrange:
- 128.101.240.212
+ nameservers_break_dnssec: true
nameservers: [128.101.101.101, 134.84.84.84]
utwente:
netrange:
- 130.89.0.0/16
- 2001:0610:1908::/48
- nameservers: [130.89.2.2, 130.89.2.3]
+ # broken with dnssec
+ #nameservers: [130.89.2.2, 130.89.2.3]
+ nameservers: []
xs4all:
+ # should be deleted
netrange:
- 194.109.137.216/29
- 2001:888:2000:12::/64
zivit:
netrange:
- 80.245.144.0/22
+ nameservers_break_dnssec: true
nameservers: [80.245.147.53, 80.245.147.54]
-# vim:set et:
-# vim:set sts=2 ts=2:
-# vim:set shiftwidth=2:
+# vim:set et sts=2 ts=2 sw=2: