effectivelywild.technitium_dns.technitium_dns_convert_to_nsec module – Convert a signed DNS zone from NSEC3 to NSEC

Note

This module is part of the effectivelywild.technitium_dns collection (version 0.4.0).

It is not included in ansible-core. To check whether it is installed, run ansible-galaxy collection list.

To install it, use: ansible-galaxy collection install effectivelywild.technitium_dns.

To use it in a playbook, specify: effectivelywild.technitium_dns.technitium_dns_convert_to_nsec.

New in effectivelywild.technitium_dns 0.1.0

Synopsis

  • Converts a primary DNS zone from NSEC3 to NSEC for proof of non-existence using the Technitium DNS API.

  • Only works on zones that are already signed with DNSSEC using NSEC3.

Parameters

Parameter

Comments

api_port

integer

Port for the Technitium DNS API. Defaults to 5380

Default: 5380

api_token

string / required

API token for authenticating with the Technitium DNS API

api_url

string / required

Base URL for the Technitium DNS API

validate_certs

boolean

Whether to validate SSL certificates when making API requests.

Choices:

  • false

  • true ← (default)

zone

string / required

The name of the primary zone to convert to NSEC

See Also

Examples

- name: Convert a primary zone from NSEC3 to NSEC
  technitium_dns_convert_to_nsec:
    api_url: "http://localhost"
    api_token: "myapitoken"
    zone: "example.com"

Return Values

Common return values are documented here, the following are the fields unique to this module:

Key

Description

api_response

dictionary

Complete raw API response from Technitium DNS

Returned: always

response

dictionary

The core data payload from the API (typically empty for conversion operations)

Returned: always

Sample: {}

status

string

API response status

Returned: always

Sample: "ok"

changed

boolean

Whether the module made changes to convert the zone from NSEC3 to NSEC

Returned: always

Sample: true

failed

boolean

Whether the module failed to complete the conversion

Returned: always

Sample: false

msg

string

Human-readable message describing the conversion result

Returned: always

Sample: "Zone 'dnssec-demo.test.local' converted from NSEC3 to NSEC."

Authors

  • Frank Muise (@effectivelywild)