The Zone Transfer Settings section consists of the following three sections:
Restrict IPs
The Restrict IPs list identifies the IP addresses that are allowed to request a zone transfer from this Neustar managed domain/account. Unless otherwise specified, Neustar, by default, restricts all zone transfers.
You can manually configure Restrict IPs for each zone or use the Inherit Account Settings checkbox to have the zone automatically use the account-level settings.
-
IPv4 and IPv6 Address formats are accepted.
To specify an allowable IP address:
-
Click the Add button.
-
Select an IP Range Type from the drop-down list. Your choices include:
-
IP Address Start/End - Enter a range of IP addresses using the Start and End IP addresses of the range.
-
CIDR Notation - Allows you to enter IP addresses in the Classless Inter-Domain Routing (CIDR) format.
-
Single IP Address - For a single IP address entry.
-
-
You can add Comments if necessary. For example, you can specify the domain name or other common text identifiers for the IP number or range.
-
Click Save.
To Delete one or more Restrict IPs from the list:
-
Click on the check box to the left of each Restrict IP that you want to delete.
-
Click Delete Selected.
-
Click Delete to confirm the deletion.
Notify Addresses
This section provides a way to identify the IP address(es) that should be notified when there are changes to the Primary zone that initiate a zone transfer.
You can manually configure the Notify Addresses for each zone, or click the Inherit Account Settings check box to have the zone automatically use the Account-level settings.
-
IPv4 and IPv6 Address formats are accepted.
To Populate the Notify Address List:
-
In the Notify Addresses panel, click Add.
-
Enter an IP address to receive notification of changes to this zone.
-
You can add Comments if necessary. For example, you can specify recipient domain names or other common text identifiers for the IP address(es) entered.
-
Click Save.
Repeat the above steps for adding additional addresses to the list.
To Delete One Or More Notify Addresses From The List:
-
Click on the check box to the left of each address that you want to delete.
-
Click Delete Selected.
-
Click Delete to confirm the deletion.
TSIG Key
This section provides a way to enter and maintain the TSIG (Transaction Signature) key for the account. TSIG security requires that both sides of a transfer pass the same TSIG key value.
You can copy a key value from the corresponding server into the TSIG configuration, or Auto-generate the key in UltraDNS.
NOTE: If you elect to Autogenerate a TSIG Key, be sure to copy and paste the generated value to the corresponding zone server.
Only one TSIG Key can be applied to a zone at a time.
You can manually configure TSIGs for each zone or click the Inherit Account Settings check box to have the zone automatically use the account-level TSIG value.
Enter a TSIG Key:
-
Enter a Name for the key.
-
Select the proper Algorithm for the key using the drop-down list. This is either the algorithm used to generate the key you are copying in, or the algorithm you want to use to generate a new key.
-
Paste/Enter the key value into the Secret field or click Autogenerate Key button to have the system provide a key for you.
Delete the TSIG Key:
-
If there is an active TSIG Key, click Delete Key.
-
Click Delete to confirm the deletion.