時間:2023-01-30 19:00:01 | 來源:建站知識
時間:2023-01-30 19:00:01 來源:建站知識
yum install bind* caching-nameserver
源碼安裝tar zxvf bind-9.6.1.tar.gzcd bind-9.6.1./configure --prefix=/usr/local/bind9 --sysconfdir=/etc/named/ --enable-threads --disable-chroot --disable-ipv6make && make install
配置環(huán)境變量vim /etc/profile.d/bind.sh
追加以下行export PATH=/usr/local/bind9/bin:/usr/local/bind9/sbin:$PATH
幫助文檔的查看man -M share/man/ namedvim /etc/man.config
追加以下行MANPATH /usr/local/bind9/share/man
DNS 單點配置#修改/etc/named.conf listen-on port 53 { any; }; directory "/var/named"; dump-file "/var/named/data/cache_dump.db"; statistics-file "/var/named/data/named_stats.txt"; memstatistics-file "/var/named/data/named_mem_stats.txt"; allow-query { any; }; recursion yes; #(此處,做的是dns轉(zhuǎn)發(fā),當(dāng)本地服務(wù)器無法解析的,如公網(wǎng)上的域名時,轉(zhuǎn)發(fā)到114.114.114.114上)forwarders { 114.114.114.114; };};
#配置/etc/named.rfc1912.zones zone "test.com" IN { type master; file "test.com.zone";}; zone "40.168.192.in-addr.arpa" IN { type master; file "40.168.192.in-addr.arpa.zone";}; #test.com.zone 配置文件 $TTL 600@ IN SOA ns.test.com. root.test.com. ( 201810131834 ; serial 300 ; refresh (5 minutes) 60 ; retry (1 minute) 604800 ; expire (1 week) 3600 ; minimum (1 hour) ) @ IN NS ns.test.com.ns IN A 192.168.40.105mail IN A 192.168.40.103 rhl IN A 192.168.40.102 #40.168.192.in-addr.arpa.zone 配置文件 $TTL 600@ IN SOA ns.test.com. root.test.com. ( 201810151834 ; serial 300 ; refresh (5 minutes) 60 ; retry (1 minute) 604800 ; expire (1 week) 3600 ; minimum (1 hour) ) @ IN NS ns.test.com. 103 IN PTR mail.test.com.
DNS的主從同步#修改/etc/named.conf options { listen-on port 53 { any; }; directory "/var/named"; dump-file "/var/named/data/cache_dump.db"; statistics-file "/var/named/data/named_stats.txt"; memstatistics-file "/var/named/data/named_mem_stats.txt"; allow-query { any; }; recursion yes; #(此處,做的是dns轉(zhuǎn)發(fā),當(dāng)本地服務(wù)器無法解析的,如公網(wǎng)上的域名時,轉(zhuǎn)發(fā)到114.114.114.114上 forwarders { 114.114.114.114; }; #配置/etc/named.rfc1912.zones zone "test.com" IN { type master; file "test.com.zone";allow-update {none;}; #從服務(wù)器地址 allow-transfer {192.168.40.170;}; notify yes; }; #反向解析 zone "40.168.192.in-addr.arpa" IN { type master; file "named.192.168.40"; allow-update {none;}; #從服務(wù)器地址 allow-transfer {192.168.40.170;}; notify yes; };
2)從服務(wù)器的配置#修改/etc/named.conf options { listen-on port 53 { any; }; directory "/var/named"; dump-file "/var/named/data/cache_dump.db"; statistics-file "/var/named/data/named_stats.txt"; memstatistics-file "/var/named/data/named_mem_stats.txt"; allow-query { any; }; recursion yes; forwarders { 114.114.114.114; };}; #配置/etc/named.rfc1912.zones zone "test.com" IN { type slave; file "slaves/test.com.zone"; #設(shè)置主dns服務(wù)器的地址 masters { 192.168.40.105; }; allow-update { none; };}; zone "40.168.192.in-addr.arpa" IN { type slave; file "slaves/40.168.192.in-addr.arpa.zone"; masters { 192.168.40.105; }; allow-update { none; };};
DNS 配置文件檢查#檢查主配置文件named-checkconf #檢查域名配置文件 named-checkzone test.com /var/named/test.com.zone #測試正向解析dig -t A rhl.test.com @192.168.40.105 #測試反向解析dig -x 192.168.40.103 @192.168.40.105
作者:秦偉/計寶滿/任宏利關(guān)鍵詞:配置,服務(wù)
微信公眾號
版權(quán)所有? 億企邦 1997-2025 保留一切法律許可權(quán)利。