bind

bind-9.2.4-2

bindのバージョン

[root@ns ~]# rpm -q bind
bind-9.2.4-2
[root@ns ~]#

DNSサーバ設定の前提条件

Fedora_core/bind-9.2.2-p3?の関連部分をご覧ください。

chroot

  • chrootされる場所
    /var/named/chroot/etc/named.conf
    /var/named/chroot/var/named/各種zoneファイル

関連ファイルの設定概要

以下のファイルパスは"/var/named/chroot/"を省略しております。また、設定ファイル自身の中のファイルパスもそのように記述しなければなりません。

/etc/named.conf

//
options {
        directory "/var/named";
        dump-file "/var/named/data/cache_dump.db";
        statistics-file "/var/named/data/named_stats.txt";
        // query-source address * port 53;
        allow-transfer
                        {
                                218.45.27.152/29;
                                218.45.16.73;
                                218.45.24.231;
                        }; 

        };


//
controls {
        inet 127.0.0.1 allow { localhost; } keys { rndckey; };
         };


//
zone "." IN
          {
                type hint;
                file "named.root";
          };


//
zone "dokkoi.info" IN
          {
               type master;
               file "dokkoi.info.zone";
         };


//
zone "152.27.45.218.in-addr.arpa" IN
         {
                type master;
                file "152.27.45.218.in-addr.arpa.zone";
         };


//
zone "localhost" IN
         {
                type master;
                file "localhost.zone";
         };


//
zone "0.0.127.in-addr.arpa" IN
         {
                type master;
                file "0.0.127.in-addr.arpa.zone";
         };
include "/etc/rndc.key";

/var/named/named.root

;       This file holds the information on root name servers needed to
;       initialize cache of Internet domain name servers
;       (e.g. reference this file in the "cache  .  <file>"
;       configuration file of BIND domain name servers).
;
;       This file is made available by InterNIC
;       under anonymous FTP as
;           file                /domain/named.root
;           on server           FTP.INTERNIC.NET
;
;       last update:    Nov 5, 2002
;       related version of root zone:   2002110501
;
;
; formerly NS.INTERNIC.NET
;
.                        3600000  IN  NS    A.ROOT-SERVERS.NET.
A.ROOT-SERVERS.NET.      3600000      A     198.41.0.4
;
; formerly NS1.ISI.EDU
;
.                        3600000      NS    B.ROOT-SERVERS.NET.
B.ROOT-SERVERS.NET.      3600000      A     128.9.0.107
;
; formerly C.PSI.NET
;
.                        3600000      NS    C.ROOT-SERVERS.NET.
C.ROOT-SERVERS.NET.      3600000      A     192.33.4.12
;
; formerly TERP.UMD.EDU
;
.                        3600000      NS    D.ROOT-SERVERS.NET.
D.ROOT-SERVERS.NET.      3600000      A     128.8.10.90
;
; formerly NS.NASA.GOV
;
.                        3600000      NS    E.ROOT-SERVERS.NET.
E.ROOT-SERVERS.NET.      3600000      A     192.203.230.10
;
; formerly NS.ISC.ORG
;
.                        3600000      NS    F.ROOT-SERVERS.NET.
F.ROOT-SERVERS.NET.      3600000      A     192.5.5.241
;
; formerly NS.NIC.DDN.MIL
;
.                        3600000      NS    G.ROOT-SERVERS.NET.
G.ROOT-SERVERS.NET.      3600000      A     192.112.36.4
;
; formerly AOS.ARL.ARMY.MIL
;
.                        3600000      NS    H.ROOT-SERVERS.NET.
H.ROOT-SERVERS.NET.      3600000      A     128.63.2.53
;
; formerly NIC.NORDU.NET
;
.                        3600000      NS    I.ROOT-SERVERS.NET.
I.ROOT-SERVERS.NET.      3600000      A     192.36.148.17
;
; operated by VeriSign, Inc.
;
.                        3600000      NS    J.ROOT-SERVERS.NET.
J.ROOT-SERVERS.NET.      3600000      A     192.58.128.30
;
; housed in LINX, operated by RIPE NCC
;
.                        3600000      NS    K.ROOT-SERVERS.NET.
K.ROOT-SERVERS.NET.      3600000      A     193.0.14.129
;
; operated by IANA
;
.                        3600000      NS    L.ROOT-SERVERS.NET.
L.ROOT-SERVERS.NET.      3600000      A     198.32.64.12
;
; housed in Japan, operated by WIDE
;
.                        3600000      NS    M.ROOT-SERVERS.NET.
M.ROOT-SERVERS.NET.      3600000      A     202.12.27.33
; End of File

/var/named/dokkoi.info.zone

$TTL 1D
@ IN SOA ns.dokkoi.info. postmaster.dokkoi.info. (
        2004112102 ; Serial
                3H ; Refresh after 3 Hours
                1H ; Retry after 1 Hours
                1W ; Expire after 1 Week
              1D ) ; Minimum TTL of 1 Day
;
              IN   NS     ns.dokkoi.info.
              IN   NS     fletsns1.kamome.or.jp.
              IN   NS     fletsns2.kamome.or.jp.
;
              IN   MX     10  ml1.dokkoi.info.
              IN   MX     20  bak.dokkoi.info.
;
ns            IN   A      218.45.27.154
ml            IN   A      218.45.27.155
www           IN   A      218.45.27.156
bak           IN   A      218.45.27.157
;
xxxx          IN   CNAME  www.dokkoi.info.
  • CNAME"xxxx"は、伏せ字です。

/var/named/152.27.45.218.in-addr.arpa.zone

$TTL 1D
@ IN SOA ns.dokkoi.info. postmaster.dokkoi.info. (
        2004112102 ; Serial
                3H ; Refresh after 3 Hours
                1H ; Retry after 1 Hours
                1W ; Expire after 1 Week
              1D ) ; Minimum TTL of 1 Day
;
              IN   NS     ns.dokkoi.info.
              IN   NS     fletsns1.kamome.or.jp.
              IN   NS     fletsns2.kamome.or.jp.
;
154           IN   PTR    ns.dokkoi.info.
155           IN   PTR    ml1.dokkoi.info.
156           IN   PTR    www.dokkoi.info.
157           IN   PTR    bak.dokkoi.info.
;

/var/named/localhost.zone

$TTL 1D
@ IN SOA localhost. postmaster.dokkoi.info. (
        2004112102 ; Serial
                3H ; Refresh after 3 Hours
                1H ; Retry after 1 Hours
                1W ; Expire after 1 Week
              1D ) ; Minimum TTL of 1 Day
;
              IN   NS     localhost.
;
              IN   A      127.0.0.1
;

/var/named/0.0.127.in-addr.arpa.zone

$TTL 1D
@ IN SOA localhost. postmaster.dokkoi.info. (
        2004112102 ; Serial
                3H ; Refresh after 3 Hours
                1H ; Retry after 1 Hours
                1W ; Expire after 1 Week
              1D ) ; Minimum TTL of 1 Day
;
              IN   NS     localhost.
;
1             IN   PTR    localhost.
;

起動

  • named-checkconf,named-checkzone の結果、エラーが出なければ、"/etc/rc.d/init.d/named start"を実行し起動します。
  • /var/log/messages のnamed関係logを注意深く確認します。
    Nov 21 09:41:40 ns named[4952]: starting BIND 9.2.4 -u named -t /var/named/chroot
    Nov 21 09:41:40 ns named[4952]: using 1 CPU
    Nov 21 09:41:40 ns named: named startup succeeded
    Nov 21 09:41:40 ns named[4952]: loading configuration from '/etc/named.conf'
    Nov 21 09:41:40 ns named[4952]: listening on IPv4 interface lo, 127.0.0.1#53
    Nov 21 09:41:40 ns named[4952]: listening on IPv4 interface eth0, 218.45.27.154#53
    Nov 21 09:41:40 ns named[4952]: command channel listening on 127.0.0.1#953
    Nov 21 09:41:40 ns named[4952]: zone 0.0.127.in-addr.arpa/IN: loaded serial 2004112102
    Nov 21 09:41:40 ns named[4952]: zone 152.27.45.218.in-addr.arpa/IN: loaded serial 2004112102
    Nov 21 09:41:40 ns named[4952]: zone dokkoi.info/IN: loaded serial 2004112102
    Nov 21 09:41:40 ns named[4952]: zone localhost/IN: loaded serial 2004112102
    Nov 21 09:41:40 ns named[4952]: running
    Nov 21 09:41:40 ns named[4952]: zone dokkoi.info/IN: sending notifies (serial 2004112102)
    Nov 21 09:41:40 ns named[4952]: zone 152.27.45.218.in-addr.arpa/IN: sending notifies (serial 2004112102)
    Nov 21 09:41:41 ns named[4952]: client 218.45.16.73#49948: transfer of 'dokkoi.info/IN': AXFR started
    Nov 21 09:41:41 ns named[4952]: client 218.45.16.73#49949: transfer of '152.27.45.218.in-addr.arpa/IN': AXFR started
    Nov 21 09:41:41 ns named[4952]: client 218.45.24.231#4410: transfer of '152.27.45.218.in-addr.arpa/IN': AXFR started
    [root@ns named]#
    serial番号2004112102の設定情報が、ローカルのプライマリDNSサーバにロードされ、また、プロバイダーのセカンダリDNSサーバにも正常にzone転送されています。

トップ   編集 凍結解除 差分 添付 複製 名前変更 リロード   新規 一覧 単語検索 最終更新   ヘルプ   最終更新のRSS
Last-modified: 2006-04-30 (日) 10:28:54 (1553d)