1、搭建主renzituo.com服務器
①、在192.168.10.4主機上安裝bind程序
yum -y install bind
iptables -F
setenforce 0
②、搭建主renzituo.com服務器
(1).配置為緩存服務器
打開/etc/named.conf配置文件做如下配置:
options {
listen-on port 53 { localhost; };
allow-query { any; };
recursion yes;
dnssec-enable no;
dnssec-validation no;
//bindkeys-file “/etc/named.iscdlv.key”;
//managed-keys-directory “/var/named/dynamic”;
};
(2)添加zone記錄
打開/etc/named.rfc1912.zones,添加如下記錄:
zone “renzituo.com” IN {
type master;
file “renzituo.com.zone”;
};
修改name.ca文件
將其根指向為192.168.10.2
. IN NS a.root-servers.net.
a.root-servers.net. IN A 192.168.10.2
(3)創建區域解析庫文件,權限為640,屬組為named;
touch /var/named/renzituo.com.zone并輸入如下內容:
$TTL 86400
$ORIGIN renzituo.com.
@ IN SOA ns1.renzituo.com. admin.renzituo.com (
2016070901
2h
10m
7d
1d )
IN NS ns1.renzituo.com.
IN NS ns2.renzituo.com.
ns1 IN A 192.168.10.4
ns2 IN A 192.168.10.5
www IN A 210.110.119.8
ftp IN CNAME www
2.搭建從renzituo.com服務器
① 、在192.168.10.5主機上安裝bind程序
yum -y install bind
iptables -F
setenforce 0
②、配置為緩存服務器
打開/etc/named.conf配置文件做如下配置:
options {
listen-on port 53 { localhost; };
allow-query { any; };
recursion yes;
dnssec-enable no;
dnssec-validation no;
//bindkeys-file “/etc/named.iscdlv.key”;
//managed-keys-directory “/var/named/dynamic”;
};
添加zone記錄
打開/etc/named.rfc1912.zones,添加如下記錄:
zone “renzituo.com” IN {
type slave;
masters { 192.168.10.4; };
file “slaves/renzituo.com.zone”;
};
修改name.ca文件
將其根指向為192.168.10.2
. IN NS a.root-servers.net.
a.root-servers.net. IN A 192.168.10.2
③、在主服務器上添加從服務器的NS記錄;前面已經添加過就是:
IN NS ns2.renzituo.com.
ns2 IN A 192.168.10.5
3、搭建.com服務器
①、在192.168.10.3主機上面安裝bind程序
yum -y install bind
ptables -F
setenforce 0
②、配置為緩存服務器
打開/etc/named.conf配置文件做如下配置:
options {
listen-on port 53 { localhost; };
allow-query { any; };
recursion yes;
dnssec-enable no;
dnssec-validation no;
//bindkeys-file “/etc/named.iscdlv.key”;
//managed-keys-directory “/var/named/dynamic”;
};
③、修改name.ca文件
將其根指向為192.168.10.2
. IN NS a.root-servers.net.
a.root-servers.net. IN A 192.168.10.2
④、添加zone記錄
打開/etc/named.rfc1912.zones,添加如下記錄:
zone “com” IN {
type master;
file “com.zone”;
};
⑤添加解析庫文件并授權renzituo.com給下級子域,權限為640,屬組named
touch /var/named/com.zone
$TTL 86400
@ IN SOA dns1 dns1adm (
2016070901
2h
10m
7d
1d )
IN NS dns1
renzituo.com. IN NS renzituodns1
renzituo.com. IN NS renzituodns2
dns1 IN A 192.168.10.3
renzituodns1 IN A 192.168.10.4
renzituodns2 IN A 192.168.10.5
www IN A 210.110.119.8
ftp IN CNAME www
4、搭建根服務器
①、在192.168.10.2主機上面安裝bind程序
yum -y install bind
iptables -F
setenforce 0
②、配置為緩存服務器
打開/etc/named.conf配置文件做如下配置:
options {
listen-on port 53 { localhost; };
allow-query { any; };
recursion yes;
dnssec-enable no;
dnssec-validation no;
//bindkeys-file “/etc/named.iscdlv.key”;
//managed-keys-directory “/var/named/dynamic”;
};
區域類型:
zone “.” IN {
type master;
file “root.zone”;
};
③、創建區域解析庫文件,權限為640,屬組named
touch /var/named/root.zone
$TTL 86400
@ IN SOA dns1 dns1adm (
2016070901
2h
10m
7d
1d )
IN NS dns1
com. IN NS comdns1
dns1 IN A 192.168.10.2
comdns1 IN A 192.168.10.3
5、在192.168.10.6主機上安裝bind程序
yum -y install bind
iptables -F
setenforce 0
①、將DNSserver 配置為緩存服務器
打開/etc/named.conf配置文件做如下配置:
options {
listen-on port 53 { localhost; };
allow-query { any; };
recursion yes;
dnssec-enable no;
dnssec-validation no;
//bindkeys-file “/etc/named.iscdlv.key”;
//managed-keys-directory “/var/named/dynamic”;
};
②、修改name.ca文件
將其根指向為192.168.10.2
. IN NS a.root-servers.net.
a.root-servers.net. IN A 192.168.10.2
6、在client主機上測試
dig www.renzituo.com @192.168.10.6
原創文章,作者:人字拖,如若轉載,請注明出處:http://www.www58058.com/73412