時間:2023-05-29 19:06:01 | 來源:網(wǎng)站運營
時間:2023-05-29 19:06:01 來源:網(wǎng)站運營
內網(wǎng)搭建DNS服務器:DNS:Domain Name Service,域名解析服務[root@jhr-hub ~]# yum -y install bind-utils bind bind-devel bind-libs[root@jhr-hub ~]# vim /etc/named.rfc1912.zones[root@jhr-hub ~]# [root@jhr-hub ~]# [root@jhr-hub ~]# [root@jhr-hub ~]# tail -n 10 /etc/named.rfc1912.zoneszone "chenby.cn" IN { type master; file "chenby.cn.zone"; };[root@jhr-hub ~]# [root@jhr-hub ~]# cd /var/named/[root@jhr-hub named]# lsdata dynamic named.ca named.empty named.localhost named.loopback pakho.zone slaves[root@jhr-hub named]# [root@jhr-hub named]# cp named.localhost chenby.cn.zone[root@jhr-hub named]# [root@jhr-hub named]# chown named.named chenby.cn.zone[root@jhr-hub named]# [root@jhr-hub named]# vim chenby.cn.zone[root@jhr-hub named]#
檢查配置文件[root@jhr-hub named]# named-checkconf /etc/named.conf[root@jhr-hub named]# [root@jhr-hub named]# [root@jhr-hub named]# named-checkzone chenby.cn /var/named/chenby.cn.zone zone chenby.cn/IN: loaded serial 0OK[root@jhr-hub named]#
啟動服務,并設置開機自啟[root@jhr-hub named]# systemctl restart named[root@jhr-hub named]# [root@jhr-hub named]# systemctl enable namedCreated symlink from /etc/systemd/system/multi-user.target.wants/named.service to /usr/lib/systemd/system/named.service.[root@jhr-hub named]# 測試是否可行[root@jhr-hub named]# dig @3.7.191.1 www.chenby.cn; <<>> DiG 9.11.4-P2-RedHat-9.11.4-26.P2.el7_9.7 <<>> @3.7.191.1 www.chenby.cn; (1 server found);; global options: +cmd;; Got answer:;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 5275;; flags: qr aa rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 1, ADDITIONAL: 3;; OPT PSEUDOSECTION:; EDNS: version: 0, flags:; udp: 4096;; QUESTION SECTION:;www.chenby.cn. IN A;; ANSWER SECTION:www.chenby.cn. 86400 IN A 3.7.191.1;; AUTHORITY SECTION:chenby.cn. 86400 IN NS chenby.cn.;; ADDITIONAL SECTION:chenby.cn. 86400 IN A 127.0.0.1chenby.cn. 86400 IN AAAA ::1;; Query time: 0 msec;; SERVER: 3.7.191.1#53(3.7.191.1);; WHEN: Thu Dec 09 14:44:51 CST 2021;; MSG SIZE rcvd: 116[root@jhr-hub named]#
附錄:options {listen-on port 53 { 127.0.0.1; }; //設置named服務器監(jiān)聽端口及IP地址listen-on-v6 port 53 { ::1; };directory "/var/named"; //設置區(qū)域數(shù)據(jù)庫文件的默認存放地址dump-file "/var/named/data/cache_dump.db";statistics-file "/var/named/data/named_stats.txt";memstatistics-file "/var/named/data/named_mem_stats.txt";allow-query { any; }; //允許DNS查詢客戶端allow-query-cache { any; };};logging {channel default_debug {file "data/named.run";severity dynamic;};};view localhost_resolver {match-clients { any; };match-destinations { any; };recursion yes; //設置允許遞歸查詢include "/etc/named.rfc1912.zones";};
2.區(qū)域配置文件/etc/named.rfc1912.zoneszone "." IN { //定義了根域type hint; //定義服務器類型為hintfile "named.ca"; //定義根域的配置文件名};zone "localdomain" IN { //定義正向DNS區(qū)域type master; //定義區(qū)域類型file "localdomain.zone"; //設置對應的正向區(qū)域地址數(shù)據(jù)庫文件allow-update { none; }; //設置允許動態(tài)更新的客戶端地址(none為禁止)};zone "localhost" IN {type master;file "localhost.zone";allow-update { none; };};zone "0.0.127.in-addr.arpa" IN { //設置反向DNS區(qū)域type master;file "named.local";allow-update { none; };};
3.根域配置文件http://named.ca$TTL 600@ IN SOA dns.cwlinux.com dnsadmin.cwlinux.com. (//SOA字段 2015031288 //版本號 同步一次 +1 1H //更新時間 2M // 更新失敗,重試更新時間 2D // 更新失敗多長時間后此DNS失效時間 1D //解析不到請求不予回復時間) IN NS dns //有兩域名服務器 IN NS ns2 IN MX 10 mial // 定義郵件服務器,10指優(yōu)先級 0-99 數(shù)字越小優(yōu)先級越高ns2 IN A 192.168.1.113 //ns2域名服務器的ip地址dns IN A 192.168.1.10 //dns域名服務器的ip地址mail IN A 192.168.1.111 //郵件服務器的ip地址www IN A 192.168.1.112 //www.cwlinux.com的ip地址pop IN CNAME mail //pop的正式名字是mailftp IN CNAME www //ftp的正式名字是www
5.反向域名解析數(shù)據(jù)庫文件$TTL 600@ IN SOA dns.cwlinux.com. dnsadmin.cwlinux.com. ( 2014031224 1H 2M 2D 1D) IN NS dns.cwlinux.com.10 IN PTR dns.cwlinux.com. //反向解析PTR格式111 IN PTR mail.cwlinux.com.112 IN PTR www.cwlinux.com.// 聲明域的時候已經(jīng)有了,192.168.1 所以我們只需要輸入10即代表192.168.1.10jc
本文使用 文章同步助手 同步
關鍵詞:服務
微信公眾號
版權所有? 億企邦 1997-2025 保留一切法律許可權利。