[Linux]搭建域名服务器并配置解析规则

57 阅读1分钟

1.软件安装

安装相关软件并起服务

yum y install bind bind-utils 

启动服务并设置为开机启动项

systemctl start named

systemctl enable named

查看服务相关的配置

ps -eaf | grep named 

ss -nult | grep :53

 

2.修改配置

修改前备份

cp -p /etc/named.conf /etc/named.conf.bak

修改配置,修改内容如下:

options {
listen-on port 53 { any; };
listen-on-v6 port 53 { any; };
directory "/var/named";
dump-file "/var/named/data/cache_dump.db";
statistics-file "/var/named/data/named_stats.txt";
memstatistics-file "/var/named/data/named_mem_stats.txt";
recursing-file "/var/named/data/named.recursing";
secroots-file "/var/named/data/named.secroots";
allow-query { any; };
recursion yes;

dnssec-enable yes;
dnssec-validation yes;
/* Path to ISC DLV key */
bindkeys-file "/etc/named.root.key";
managed-keys-directory "/var/named/dynamic";
pid-file "/run/named/named.pid";
session-keyfile "/run/named/session.key";
};

检查配置是否正确

named-checkconf

 

3.配置正向/反向解析

此处只配置正向解析

有两种方式,①.在/etc/named.conf 直接配置,②.在/etc/named.conf对应的.zone文件中配置

这里采用①,在/etc/named.conf中配置以下内容:

zone "acsdmzuat.cc.cmbchina.cn" IN {
type master;
file "domain.zone";
};

zone "." IN {
type hint;
file "domain.zone";
};

在/var/named/domain.zone中配置解析规则

$TTL 1D
@ IN SOA @ rname.invalid. (
0 ; serial
1D ; refresh
1H ; retry
1W ; expire
3H ) ; minimum
NS localhost
A 127.0.0.1
node0001 IN [node0001_ip] node0002 IN [node0002_ip]

4.域名解析检查

nslookup node0001

Server: [dns_ip] Address: [dns_ip]

Name: node0001.domain.cn
Address: ..**.12