##############################-----服务器端----############################### 1. 安装bind
options { listen-on port 53 { any; }; //开启监听端口53,接受任意IP连接 listen-on-v6 port 53 { ::1; }; //支持IP V6 directory "/var/named"; //所有的正向反向区域文件都在这个目录下创建 dump-file "/var/named/data/cache_dump.db"; statistics-file "/var/named/data/named_stats.txt"; memstatistics-file "/var/named/data/named_mem_stats.txt"; allow-query { 0.0.0.0/0; }; //允许任意IP查询 recursion yes;
dnssec-enable yes;
dnssec-validation yes;
dnssec-lookaside auto;
/* Path to ISC DLV key */
bindkeys-file "/etc/named.iscdlv.key";
managed-keys-directory "/var/named/dynamic";
};
logging { channel default_debug { file "data/named.run"; severity dynamic; }; };
zone "." IN { type hint; file "named.ca"; };
include "/etc/named.rfc1912.zones"; //主要配置文件 include "/etc/named.root.key";
zone "localhost.localdomain" IN { type master; file "named.localhost"; allow-update { none; }; };
zone "localhost" IN { type master; file "named.localhost"; allow-update { none; }; };
zone "1.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.ip6.arpa" IN { type master; file "named.loopback"; allow-update { none; }; };
zone "1.0.0.127.in-addr.arpa" IN { type master; file "named.loopback"; allow-update { none; }; }; zone "0.in-addr.arpa" IN { type master; file "named.empty"; allow-update { none; }; };
//duiyi.com的正向区域 zone "duiyi.com" IN { type master; file "named.duiyi.com"; allow-update { none; }; };
$TTL 1D @ IN SOA duiyi.com. rname.invalid. ( 0 ; serial 1D ; refresh 1H ; retry 1W ; expire 3H ) ; minimum NS @ A 127.0.0.1 AAAA ::1 www IN A 192.168.81.1 mail IN A 192.168.81.2 ftp IN A 192.168.81.3
##############################-----客户端----############################### 操作系统:windows和linux都可以 IP地址:能够ping通DNS服务器的IP(192.168.81.133)都可以, 作用:测试DNS服务器是否正常工作。
1.修改DNS:
2.ping 服务端ip(192.168.81.133),测试能否访问服务器
##############################-----服务器端----############################### 1. 安装bind
options { listen-on port 53 { any; }; //开启监听端口53,接受任意IP连接 listen-on-v6 port 53 { ::1; }; //支持IP V6 directory "/var/named"; //所有的正向反向区域文件都在这个目录下创建 dump-file "/var/named/data/cache_dump.db"; statistics-file "/var/named/data/named_stats.txt"; memstatistics-file "/var/named/data/named_mem_stats.txt"; allow-query { 0.0.0.0/0; }; //允许任意IP查询 recursion yes;
dnssec-enable yes;
dnssec-validation yes;
dnssec-lookaside auto;
/* Path to ISC DLV key */
bindkeys-file "/etc/named.iscdlv.key";
managed-keys-directory "/var/named/dynamic";
};
logging { channel default_debug { file "data/named.run"; severity dynamic; }; };
zone "." IN { type hint; file "named.ca"; };
include "/etc/named.rfc1912.zones"; //主要配置文件 include "/etc/named.root.key";
zone "localhost.localdomain" IN { type master; file "named.localhost"; allow-update { none; }; };
zone "localhost" IN { type master; file "named.localhost"; allow-update { none; }; };
zone "1.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.ip6.arpa" IN { type master; file "named.loopback"; allow-update { none; }; };
zone "1.0.0.127.in-addr.arpa" IN { type master; file "named.loopback"; allow-update { none; }; }; zone "0.in-addr.arpa" IN { type master; file "named.empty"; allow-update { none; }; };
//duiyi.com的正向区域 zone "duiyi.com" IN { type master; file "named.duiyi.com"; allow-update { none; }; };
$TTL 1D @ IN SOA duiyi.com. rname.invalid. ( 0 ; serial 1D ; refresh 1H ; retry 1W ; expire 3H ) ; minimum NS @ A 127.0.0.1 AAAA ::1 www IN A 192.168.81.1 mail IN A 192.168.81.2 ftp IN A 192.168.81.3
##############################-----客户端----############################### 操作系统:windows和linux都可以 IP地址:能够ping通DNS服务器的IP(192.168.81.133)都可以, 作用:测试DNS服务器是否正常工作。
1.修改DNS:
2.ping 服务端ip(192.168.81.133),测试能否访问服务器
# ping 192.168.81.133
3.使用nslookup命令测试三个DNS解析能否成功
nameserver 192.168.81.133 nameserver 114.114.114.114 nameserver 8.8.8.8
www.duiyi.com
...
...
mail.duiyi.com
...
...
ftp.duiyi.com
...
...
nameserver 192.168.81.133 nameserver 114.114.114.114 nameserver 8.8.8.8
声明:本文为原创,作者为 对弈,转载时请保留本声明及附带文章链接:http://www.duiyi.xyz/c%e5%ae%9e%e7%8e%b0%e9%9b%b7%e9%9c%86%e6%88%98%e6%9c%ba-40/