centos7.x 部署主、从DNS服务器问题
1、准备
例:两台192.168.219.146(主),192.168.219.147(从),域名www.panyangduola.com
主、从DNS服务器均需要安装bind、bind-chroot、bind-utils
yum-yinstallbindbind-utilsbind-chroot
如果防火墙开启,配置防火墙,添加服务(防火墙已禁用则忽略)
firewall-cmd--permanent--add-service=dns firewall-cmd--reload
2、主DNS服务器(192.168.219.146)配置
编辑配置文件
vim/etc/named.conf
找到其中两行
listen-onport53{127.0.0.1;}; allow-query{localhost;};
修改为
listen-onport53{any;}; allow-query{any;};
2-1、配置正向解析
编辑文件/etc/named.rfc1912.zones,在末尾添加需要解析的域
vim/etc/named.rfc1912.zones zone"panyangduola.com"IN{ typemaster; file"data/panyangduola.com.zone"; };
创建panyangduola.com.zone解析域
vim/var/named/data/panyangduola.com.zone $TTL3600 $ORIGINpanyangduola.com. @INSOApanyangduola.com.admin.panyangduola.com.( 2018042101 1D 1H 1W 3H ) @INNSns1.panyangduola.com. @INNSns2.panyangduola.com. ns1INA192.168.219.146 ns2INA192.168.219.147 wwwINA192.168.219.146 webINCNAMEwww
2-2、配置反向解析
编辑文件/etc/named.rfc1912.zones,在末尾添加需要解析的域
vim/etc/named.rfc1912.zones zone"219.168.192.in-addr.arpa"IN{ typemaster; file"data/219.168.192.zone"; };
创建219.168.192.zone解析域
vim/var/named/data/219.168.192.zone $TTL3600 $ORIGIN219.168.192.in-addr.arpa. @INSOApanyangduola.com.admin.panyangduola.com.( 2018042101 1D 1H 1W 3H ) @INNSns1.panyangduola.com. @INNSns2.panyangduola.com. 146INPTRns1.panyangduola.com. 147INPTRns2.panyangduola.com. 146INPTRwww.panyangduola.com.
2-3、对DNS配置文件进行一下语法检查:
cd/etc named-checkconfnamed.conf named-checkconfnamed.rfc1912.zones cd/var/named/data named-checkzonepanyangduola.companyangduola.com.zone named-checkzone219.168.192.in-addr.arpa219.168.192.zone
2-4、编辑/etc/resolv.conf,添加
vim/etc/resolv.conf searchlocaldomain nameserver192.168.219.146
2-5、如果2-3步骤没有错误发生的话,启动named服务
重启named
systemctlrestartnamed
查看状态
systemctlstatusnamed
2-6、检查主DNS服务器解析是否成功
ping命令验证
ping-c4www.panyangduola.com nslookup命令验证 nslookup >www.panyangduola.com nslookup >192.168.219.146
3、从DNS服务器(192.168.219.147)配置
编辑named.conf文件
vim/etc/named.conf
找到其中两行
listen-onport53{127.0.0.1;}; allow-query{localhost;};
修改为
listen-onport53{any;}; allow-query{any;};
3-1、修改主DNS服务器(192.168.219.146)的配置/etc/named.rfc1912.zones
vim/etc/named.rfc1912.zones zone"panyangduola.com"IN{ typemaster; file"data/panyangduola.com.zone"; allow-transfer{192.168.219.147;}; notifyyes; also-notify{192.168.219.147;}; }; zone"219.168.192.in-addr.arpa"IN{ typemaster; file"data/219.168.192.zone"; allow-transfer{192.168.219.147;}; notifyyes; also-notify{192.168.219.147;}; };
3-2、配置从DNS服务器(192.168.219.147)正向解析
编辑文件/etc/named.rfc1912.zones,在末尾添加需要解析的域
vim/etc/named.rfc1912.zones zone"panyangduola.com"IN{ typeslave; file"data/panyangduola.com.zone"; masters{192.168.219.146;}; };
创建panyangduola.com.zone空文件
touch/var/named/data/panyangduola.com.zone
设置所有者
cd/var/named/data chownnamed:namedpanyangduola.com.zone
3-3、配置从DNS服务器(192.168.219.147)反向解析
在文件/etc/named.rfc1912.zones中添加
vimetc/named.rfc1912.zones zone"219.168.192.in-addr.arpa"IN{ typeslave; file"data/219.168.192.zone"; masters{192.168.219.146;}; };
创建空文件219.168.192.zone
touch/var/named/data/219.168.192.zone
设置所有者
cd/var/named/data chownnamed:named219.168.192.zone
3-4、对DNS配置文件进行一下语法检查:
cd/etc named-checkconfnamed.conf named-checkconfnamed.rfc1912.zones
3-5、编辑/etc/resolv.conf,添加
vim/etc/resolv.conf searchlocaldomain nameserver192.168.219.147
3-6、如果3-4步骤没有错误发生的话,启动named服务
重启named
systemctlrestartnamed
查看状态
systemctlstatusnamed
3-7、查看文件/var/named/data/panyangduola.com.zone和/var/named/data/219.168.192.zone是否有二进制数据
cat/var/named/data/panyangduola.com.zone cat/var/named/data/219.168.192.zone
3-8、检查从DNS服务器解析是否成功
ping命令验证 ping-c4www.panyangduola.com nslookup命令验证 nslookup >192.168.219.147
总结
以上所述是小编给大家介绍的centos7.x部署主、从DNS服务器问题,希望对大家有所帮助,如果大家有任何疑问请给我留言,小编会及时回复大家的。在此也非常感谢大家对毛票票网站的支持!
如果你觉得本文对你有帮助,欢迎转载,烦请注明出处,谢谢!