天天看點

主從DNS配置流程示例

實驗環境:主伺服器A:10.1.1.6

                    從伺服器B:10.1.1.5

1.安裝DNS域名解析服務

  #yum install bind-* -y

2.主伺服器A配置:

  #vim /var/named/chroot/etc/named.conf

     options {

             directory "/var/named";

             allow-recursion {10.1.1.5/24; };

     };

     #zone "."  IN {

     #       type hint;

     #       file "named.ca";

     #};

     #zone "localost" IN {

     #       type master;

     #       file "named.localhost";

     #       allow-transfer {none; };

     #zone "0.0.127.in-addr.arpa" IN {

     #       file "named.loopback";

     zone "swht.com" IN {

             type master;

             file "swht.com.zone";

     #       masters {10.1.1.6; };

             allow-transfer {10.1.1.5; };

     zone "1.1.10.in-addr.arpa" IN {

             file "10.1.1.zone";

  #chmod 640 /var/named/chroot/etc/named.conf  修改檔案的權限

  #chown root:named /var/named/chroot/etc/named.conf 修改檔案的屬組

  #vim /var/named/chroot/var/named/swht.com.zone

     $TTL 600

     @               IN      SOA     master.swht.com.  root (

                                             2014091901

                                             1H

                                             5M

                                             2D

                                             6H)

                     IN      NS      master

                     IN      MX  10  mail

     master          IN      A       10.1.1.6

     mail            IN      A       10.1.1.6

     www             IN      A       10.1.1.6

     ftp             IN      CNAME   www

  #chmod 640 /var/named/chroot/var/named/swht.com.zone

  #chown root:named /var/named/chroot/var/named/swht.com.zone

  #vim /var/named/chroot/var/named/10.1.1.zone

     6               IN      PTR     master

     6               IN      PTR     mail

     6               IN      PTR     www

     6               IN      PTR     ftp

  #chmod 640 /var/named/chroot/var/named/10.1.1.zone

  #chown root:named /var/named/chroot/var/named/10.1.1.zone

  #service named restart

3.從伺服器B配置:

  #vim /var/named/chroot/etc/named.conf 

             allow-recursion {10.1.1.6/26; };

             notify yes;

             type slave;

             file "slaves/swht.com.zone";

             masters {10.1.1.6; };

             file "slaves/10.1.1.zone";

  #chmod 640 /var/named/chroot/etc/named.conf 

  #chown root:named /var/named/chroot/etc/named.conf 

4.驗證:

  #dig -t NS www.swht.com

  #host 10.1.1.6

  #cd /var/named/chroot/var/named/slaves

  #ls

     10.1.1.zone  swht.com.zone

  #vim 10.1.1.zone

     $ORIGIN .

     $TTL 600        ; 10 minutes

     1.1.10.in-addr.arpa     IN SOA  master.swht.com. root.1.1.10.in-addr.arpa. (

                                     2014091901 ; serial

                                     3600       ; refresh (1 hour)

                                     300        ; retry (5 minutes)

                                     172800     ; expire (2 days)

                                     21600      ; minimum (6 hours)

                                     )

                             NS      master.1.1.10.in-addr.arpa.

     $ORIGIN 1.1.10.in-addr.arpa.

     6                       PTR     ftp

                             PTR     www

                             PTR     mail

                             PTR     master

  #vim swht.com.zone

     swht.com                IN SOA  master.swht.com. root.swht.com. (

                             NS      master.swht.com.

                             MX      10 mail.swht.com.

     $ORIGIN swht.com.

     ftp                     CNAME   www

     mail                    A       10.1.1.6

     master                  A       10.1.1.6

     www                     A       10.1.1.6

 波波整理~^_^

本文轉自 南非波波 51CTO部落格,原文連結:http://blog.51cto.com/nanfeibobo/1556316,如需轉載請自行聯系原作者