centos 7.6 ——配置 DNS主从服务器
设置一:主服务器配置
1. 安装bind,修改主配置文件
[root@localhost ttyy]# yum -y install bind
[root@localhost ttyy]# rpm -qc bind
/etc/logrotate.d/named
/etc/named.conf
/etc/named.iscdlv.key
/etc/named.rfc1912.zones
/etc/named.root.key
/etc/rndc.conf
/etc/rndc.key
/etc/sysconfig/named
/var/named/named.ca
/var/named/named.empty
/var/named/named.localhost
/var/named/named.loopback
[root@localhost ttyy]# vi /etc/named.conf
2. 主服务器的区域配置文件
[root@localhost ttyy]# vi /etc/named.rfc1912.zones
[root@localhost named]# ll
总用量 16
drwxrwx---. 2 named named 6 6月 1 23:26 data
drwxrwx---. 2 named named 6 6月 1 23:26 dynamic
-rw-r-----. 1 root named 2253 4月 5 2018 named.ca
-rw-r-----. 1 root named 152 12月 15 2009 named.empty
-rw-r-----. 1 root named 152 6月 21 2007 named.localhost
-rw-r-----. 1 root named 168 12月 15 2009 named.loopback
drwxrwx---. 2 named named 6 6月 1 23:26 slaves
[root@localhost named]# cp -p named.localhost ttyy.com.zone
[root@localhost named]# ll
[root@localhost named]# vi ttyy.com.zone
[root@localhost named]# systemctl restart named
[root@localhost named]# ls slaves/
[root@localhost named]# echo "servename 192.168.75.137" > /etc/resolv.conf
[root@localhost named]# cat /etc/resolv.conf
servename 192.168.75.137
[root@localhost named]# host www.ttyy.com
www.ttyy.com has address 7.7.7.7
设置二:从服务器配置
1. 安装bind,修改从配置文件
[root@localhost ttyy]# yum -y install bind
[root@localhost ttyy]# rpm -qc bind
/etc/logrotate.d/named
/etc/named.conf
/etc/named.iscdlv.key
/etc/named.rfc1912.zones
/etc/named.root.key
/etc/rndc.conf
/etc/rndc.key
/etc/sysconfig/named
/var/named/named.ca
/var/named/named.empty
/var/named/named.localhost
/var/named/named.loopback
[root@localhost ttyy]# vi /etc/named.conf
2. 安装bind,修改从区域配置文件
3. 主从服务器关闭防火墙、核心防护、重启named服务
主服务器重启named 服务(关闭防火墙、核心防护)
[root@localhost named]# systemctl stop firewalld
[root@localhost named]#systemctl disable firewalld
[root@localhost named]#setenforce 0
[root@localhost named]# systemctl start named
[root@localhost named]# systemctl restart named
从服务器重启named服务
[root@localhost named]# systemctl start named
[root@localhost named]# systemctl restart named
[root@localhost slaves]# ls
ttyy.com.zone
注意事项
主服务器和从服务器的主配置文件,监听端口为any,允许所有网段访问any.