搭建DNS服务器

搭建DNS服务器

本文将描述在CentOS 7上使用bind9搭建DNS服务器并配置泛域名解析。

1、安装bind、bind-chroot、bind-utils

[root@node-dns ~]# yum install -y bind bind-chroot bind-util

bind-chroot使bind运行在单独的文件系统中,提高安全性;

2、初始化chroot运行环境

[root@node-dns ~]# /usr/libexec/setup-named-chroot.sh /var/named/chroot on

### 查看初始化结果 ###
[root@node-dns ~]# ll /var/named/chroot/etc/
-rw-r--r--. 5 root root     388 103 2016 localtime
drwxr-x---. 2 root named      6 122 21:30 named
-rw-r-----. 1 root named   1705 322 2016 named.conf
-rw-r--r--. 1 root named   3923 122 21:30 named.iscdlv.key
-rw-r-----. 1 root named    931 621 2007 named.rfc1912.zones
-rw-r--r--. 1 root named   1587 522 2017 named.root.key
drwxr-x---. 3 root named     25 424 11:00 pki
-rw-r--r--. 1 root root    6545 67 2013 protocols
-rw-r--r--. 1 root root  670293 67 2013 services

### 启动通过bind-chroot启动bind
[root@node-dns ~]# systemctl start named-chroot
### 查看运行状态 ###
[root@node-dns ~]# systemctl status named-chroot
● named-chroot.service - Berkeley Internet Name Domain (DNS)
   Loaded: loaded (/usr/lib/systemd/system/named-chroot.service; disabled; vendor preset: disabled)
   Active: active (running) since 二 2018-04-24 11:01:44 CST; 7s ago
  Process: 2358 ExecStart=/usr/sbin/named -u named -c ${NAMEDCONF} -t /var/named/chroot $OPTIONS (code=exited, status=0/SUCCESS)
  Process: 2355 ExecStartPre=/bin/bash -c if [ ! "$DISABLE_ZONE_CHECKING" == "yes" ]; then /usr/sbin/named-checkconf -t /var/named/chroot -z "$NAMEDCONF"; else echo "Checking of zone files is disabled"; fi (code=exited, status=0/SUCCESS)
 Main PID: 2361 (named)
   CGroup: /system.slice/named-chroot.service
           └─2361 /usr/sbin/named -u named -c /etc/named.conf -t /var/named/chroot

424 11:01:44 node-dns named[2361]: managed-keys-zone: loaded serial 0
424 11:01:44 node-dns systemd[1]: Started Berkeley Internet Name Domain (DNS).
424 11:01:44 node-dns named[2361]: zone 0.in-addr.arpa/IN: loaded serial 0
424 11:01:44 node-dns named[2361]: zone 1.0.0.127.in-addr.arpa/IN: loaded serial 0
424 11:01:44 node-dns named[2361]: zone localhost.localdomain/IN: loaded serial 0
424 11:01:44 node-dns named[2361]: zone 1.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.ip6.arpa/IN: loaded serial 0
424 11:01:44 node-dns named[2361]: zone localhost/IN: loaded serial 0
424 11:01:44 node-dns named[2361]: all zones loaded
424 11:01:44 node-dns named[2361]: running
424 11:01:44 node-dns named[2361]: error (network unreachable) resolving './DNSKEY/IN': 2001:7fd::1#53
### 设置开机自启动 ###
[root@node-dns ~]# systemctl enable named-chroot
Created symlink from /etc/systemd/system/multi-user.target.wants/named-chroot.service to /usr/lib/systemd/system/named-chroot.service.
  • 0
    点赞
  • 0
    收藏
    觉得还不错? 一键收藏
  • 0
    评论
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值