zone-dist (nrcmd)					zone-dist (nrcmd)


NAME
    zone-dist - Configures zone distributions

SYNOPSIS
    zone-dist <name> create <primary-cluster> [<attribute>=<value> ...]                                
    zone-dist <name> delete 
    zone-dist list
    zone-dist listnames
    zone-dist <name> show

    zone-dist <name> get <attribute>
    zone-dist <name> set <attribute>=<value> [<attribute>=<value> ...]
    zone-dist <name> unset <attribute>

    zone-dist <name> addSecondary <secondary-cluster>
                  [<master-server-ipkeys>]
    zone-dist <name> removeSecondary <secondary-cluster>
                  [<master-server-ipkeys>]
    zone-dist <name> listSecondaries

    zone-dist <name> sync < update | complete | exact >
                  [no-rrs] [no-secondaries]

DESCRIPTION
    The zone-dist command lets you define and manage zone distribution
    configurations.

    On local clusters, the zone-dist sync command synchronizes staged
    edits to the DNS server and synchronizes primary zones to
    secondaries. Regardless of the mode selected, the exact list of
    authoritative zones (primary and secondary) is synchronized with 
    the DNS server. 
    
    On the regional cluster, the zone-dist sync command synchronizes
    primary zones from the regional configuration to the primary 
    local cluster, and synchronizes primary zones to secondaries. 
    Primary zones on the local cluster are replaced in Update or 
    Complete mode. In Exact mode, extra primary zones found on the
    local cluster are deleted. 
    
    Secondary servers use the same synchronization logic at both 
    local and regional clusters. In Update mode, synchronization
    ensures only that corresponding secondary zones exist on the 
    server. In Complete mode, any existing zones are updated to 
    use the master servers list specified by the distribution map. 
    In Exact mode, any zones not matching the distribution map 
    are deleted.
    
    Use the [no-rrs] and [no-secondaries] flags to skip portions 
    of the synchronization logic. While using these flags might
    improve the performance of the command, use them only when you
    are certain there are no changes pending. For example, if 
    primary zones are current with the DNS server, you can use 
    the [no-rrs] flag to synchronize your secondary zones.
    
    On local clusters, RRs are always synchronized to the local DNS server
    if changes are pending, and thus the [no-rrs] flag is ignored.

EXAMPLES

STATUS

SEE ALSO
    cluster

PROPERTIES
  Attributes:

    ixfr[13] (AT_ENUMINT(), Optional, default: use-server-settings)
        Configures secondary zones to enable incremental transfer
        requests. When set, this attribute overrides the dns server
        global ixfr-enable value. Using the server global value
        (not setting this value per-zone) enables you to easily globally
        turn incremental transfers on or off or to set a set a general
        policy for your zones and specific exceptions to the server
        global value.
            1  enable
               Permits incremental transfers for this zone.
            2  disable
               Prohibits incremental transfers for this zone.
            3  use-server-settings
               Uses the server settings. Unset the value set on
               secondary zones.
        If you set incremental transfers, then this zone acts
        differently than zones inheriting the server global value.
        If you unset incremental transfers, Network Registrar uses the
        server global ixfr value (and the operation of the GUI
        specifically depends on this, since it has no way of setting
        this per-zone feature).

    master-servers[8] (AT_NLIST(AT_IPKEY), Optional, default: <none>)
        Lists the master-servers to set when creating secondary
        zone on secondary server.
        Validation: A list of one or more ip addresses with an optional
        key name (format <ipaddress>[-<keyname>]).

    name[1] (AT_STRING, Required, default: <none>)
        Names this zone distribution map.

    notify[14] (AT_ENUMINT(), Optional, default: use-server-settings)
        Configures secondary zones to notify other authoritative servers when
        there are zone changes.
            1  enable
               Allows notification of other authoritative servers when
               this zone changes. Overrides the global notify value
               for this zone.
            2  disable
               Disallows notification of other authoritative servers
               when this zone changes. Overrides the global notify value
               for this zone.
            3  use-server-settings
               Uses the server setting. Unset the value set on secondary
               zones.
            4  use-primary-zone-settings
               Uses the value set at the primary zone to configure the
               secondary zone.

    notify-set[15] (AT_NLIST(AT_IPADDR), Optional, default: <none>)
        Provides an optional list of servers to notify when a secondary
        zone changes. Use with the notify attribute to configure
        secondary zones. All servers listed in NS records for the zone,
        with the exception of the server described by the NS property
        of the zone (the mname field of the SOA record) receive
        notifications. Servers listed in the notify-set attribute are
        also notified.

    primary[2] (AT_OID, Optional, default: <none>)
        Identifies the cluster or HA DNS pair serving the primary zones
        associated with this zone distribution map.

    restrict-query[16] (AT_ENUMINT(), Optional, default: use-primary-zone-settings)
        Determines how to restrict zone queries.
            1  use-map-settings
               Uses the restrict-query-acl attribute to configure
               secondary zones.
            2  use-server-settings
               Uses the server settings. Unset the value on secondary
               zones.
            3  use-primary-zone-settings
               Uses the primary zone value to configure secondary zones.

    restrict-query-acl[17] (AT_AMELST, Optional, default: <none>)
        Configures the ACL that the zone uses to restrict queries.
        The DNS server honors the restriction set on the zone. If the
        restrict-query attribute is set to use-map-settings, use this
        value to configure secondary zones. You can configure the ACL
        to include any of the following:
            host IPs
            network addresses
            TSIG keys
            global ACLs
        Those clients defined in this ACL list are given access; others
        are refused. If missing, the zone inherits the value of the
        server's restrict-query-acl attribute.

    restrict-xfer[11] (AT_ENUMINT(), Optional, default: use-primary-zone-settings)
        Determines what settings to use to restrict zone transfers.
            1  enable
               Limits zone transfers to a specific set of hosts.
               If you limit zone transfer, you must then use the
               restrict-xfer-acl attribute to list the servers
               allowed to perform zone transfers.
            2  disable
               Places no restrictions on zone transfers.
            3  use-server-settings
               Use the server settings and unsets the value on
               secondary zones.
            4  use-primary-zone-settings
               Configures a secondary zone with the primary zone
               value.

    restrict-xfer-acl[12] (AT_AMELST, Optional, default: <none>)
        Configures the access control list that designates which devices
        receive zone transfers from the specified zone. Use with the
        restrict-xfer attribute if use-server-settings is set.

