一、安装
[root@clhz1cld001 named-test]# rpm -qa|grep bind bind-9.8.2-0.23.rc1.el6_5.1.x86_64 bind-utils-9.8.2-0.23.rc1.el6_5.1.x86_64 bind-libs-9.8.2-0.23.rc1.el6_5.1.x86_64 [root@clhz1cld001 named-test]# rpm -ql bind ... /etc/named.conf /etc/rc.d/init.d/named /etc/sysconfig/named ...
二、配置
主配置文件/etc/named.conf
options { =>全局配置,对所有的zone都有效
listen-on port 53 { 127.0.0.1; }; => ipv4 监听地址,以及端口号
listen-on-v6 port 53 { ::1; }; => ipv6 监听地址,以及端口号
directory "/var/named"; => 所有的配置文件所在目录,
dump-file "/var/named/data/cache_dump.db";
statistics-file "/var/named/data/named_stats.txt";
memstatistics-file "/var/named/data/named_mem_stats.txt";
allow-query { localhost; };
recursion yes;
dnssec-enable yes;
dnssec-validation yes;
dnssec-lookaside auto;
/* Path to ISC DLV key */
bindkeys-file "/etc/named.iscdlv.key";
managed-keys-directory "/var/named/dynamic";
};
logging {
channel default_debug {
file "data/named.run";
severity dynamic;
};
};
zone "." IN { => 根域配置
type hint;
file "named.ca";
};
include "/etc/named.rfc1912.zones";
include "/etc/named.root.key";
zone "xxx" IN {
type {master|slave|hint}; => zone的类型 master:主 slave:从 hint:根
file ""; => zone的配置文件
};
三、自己写缓存服务器
[root@clhz1cld001 named-test]# ll /etc/ | grep named.conf -rw-r----- 1 root named 1008 Jul 19 2010 named.conf
[root@clhz1cld001 /]# mv /etc/named.conf /etc/named.conf-bak
[root@clhz1cld001 /]# vi /etc/named.conf
options{
directory "/var/named";
};
zone "." IN {
type hint;
file "named.ca";
};
[root@clhz1cld001 /]# ll /etc/ | grep named
drwxr-x--- 2 root named 4096 Jan 20 2014 named
-rw------- 1 root root 82 Oct 17 18:42 named.conf
-rw-r----- 1 root named 1008 Jul 19 2010 named.conf-bak
[root@clhz1cld001 /]# chown root:named /etc/named.conf
[root@clhz1cld001 /]# chmod 640 /etc/named.conf
[root@clhz1cld001 etc]# named-checkconf
[root@clhz1cld001 etc]# named-checkzone . /var/named/named.ca
zone ./IN: has 0 SOA records
zone ./IN: not loaded due to errors.
这个是没有问题的,针对于根来说
修改DNS Server,指向本机
[root@clhz1cld001 etc]# cat /etc/resolv.conf
nameserver 10.224.160.14
[root@clhz1cld001 etc]# vi /etc/resolv.conf
nameserver 10.224.163.64
[root@clhz1cld001 etc]# ping
四、域名DNS
五、
原文:http://my.oschina.net/u/204498/blog/518395