4 Update DNS records by simply SSH'ing into a server.
6 The idea is to create a separate "dyndns" user on the DNS server.
7 It gets the ``ssh-dyndns`` script as login shell, so that no other programs
9 SSH provides secure, password-less key-based authentication.
11 Upon login, the remote IP is used to create/update a tinydns file with the
12 DNS record for a hostname given by the SSH client.
14 tinydns is part of the dbjdns/dbndns package.
21 1. Clone ssh-dyndns into a sensible location, e.g. ``/usr/local/src/ssh-dyndns``::
23 $ cd /usr/local/src/ && git clone git://git.cweiske.de/ssh-dyndns.git
25 2. Create a user with ``ssh-dyndns`` as login shell::
27 $ useradd -g nogroup -m -N -s /usr/local/src/ssh-dyndns dyndns
29 3. Setup password-less ssh keys for the dyndns user::
31 $ su - dyndns -s /bin/bash
33 $ cat /path/to/key.pub >> ~/.ssh/authorized_keys
35 4. Prevent showing login messages::
37 $ su - dyndns -s /bin/bash
40 5. Configure ssh-dyndns as root::
42 $ cp /usr/local/src/ssh-dyndns/ssh-dyndns.sh.config-dist /etc/ssh-dyndns.sh
43 $ nano /etc/ssh-dyndns.sh
48 The configuration file template ``ssh-dyndns.sh.config-dist`` may be copied
49 to either ``/etc/ssh-dyndns.sh`` or ``~/.config/ssh-dyndns.sh``.
51 The system-wide config file is loaded first, the user-specific one after that.
53 The configuration file may define the following variables:
56 Path to the tinydns zone files, e.g. ``/etc/tinydns/root/``
58 File name template. ``%DOMAIN%`` will be replaced with the actual
61 Default: ``data-dyndns-%DOMAIN%``
63 DNS entry TTL (time to live) in seconds
71 Simply ssh into the server and pass the hostname as parameter::
73 $ ssh dyndns@example.org home.example.org
75 This will start the ``ssh-dyndns`` script on the remote server, generate
76 the tinydns zone file and run ``make`` in the ``data_dir`` directory to
77 compile the ``data.cdb`` file.
78 tinydns will automatically pick up the change.
84 - IPv6 is not supported yet
90 ssh-dyndns is licensed under the `AGPL v3`__ or later.
92 __ http://www.gnu.org/licenses/agpl.html
98 Written by Christian Weiske, cweiske@cweiske.de