[DNS]部署局域网DNS服务器
This is a step by step tutorial on how to install and configure DNS server for your LAN using bind9. The DNS server will provide caching and name resolution as well as reverse name resolution for your local network. In this tutorial, we will use the domain "debian.lan" and this will be the domain of your local network. The domain "debian.lan" is not accessible from the internet; its private ip address is "192.168.4.1".
1. Installing bind9 and dns utilities
Firstly, we need to confirm whether bind9 and dnsutils are installed on our system. Let’s install the bind9 package and dns utilities from Debian repository.
$ apt-get install bind9 dnsutils |
2. Configure your Linux system
Add nameserve to /etc/resolve.conf.
Edit your /etc/resolvconf/resolve.conf.d/base (red part is added)
192.168.4.1 202.103.24.68 8.8.8.8 |
This is where Linux looks to find out how it should perform DNS lookups.
3. Lets create a zone
The zone files (or database files) are the heart of your BIND system. This is where all the information is stored on what hostname goes with what ip address.
Before we create a zone file, let’s edit first the
local configuration file/etc/bind/named.conf.local.
// // Do any local configuration here // // Consider adding the 1918 zones here, // organization //include zone "debian.lan" { type master; file "db.debian.lan"; }; zone "4.168.192.in-addr.arpa" { type master; file "db.192.168.4"; }; |
Let’s start creating a
zone file in /var/cache/bind/ directory. Create
a file called db.debian.lan
$ vi /var/cache/bind/db.debian.lan |
And add the following entry
$TTL 604800 @ IN SOA main.debian.lan. admin.debian.lan. 2008080101 ;serial 04800 ;refresh 86400 ;retry 2419200 ;expire 604800 ;negative cache TTL ) @ @ @ main www ubuntu |
Let’s create the reverse DNS
zone file called db.192.168.100
$ vi |
And the following entry.
$TTL 604800 @ IN SOA main.debian.lan. admin.debian.lan. 2008080101 ;serial 604800 ;refresh 86400 ;retry 2419200 ;expire 604800 ;negative cache TTL ) @ @ 1 2 |
The
zone files are created, you can check your
zone file configurations using these utilities:
$ named-checkzone main.debian.lan /var/cache/bind/db.debian.lan |
Let’s edit the file /etc/bind/named.conf.options
$ |
Uncomment the line forwarders and add your ISP's DNS
server. (We have no ISP, so ignore)
forwarders { 202.78.97.41; 202.78.97.3; }; |
Let’s restart our DNS server, and
test using the tool dig.
$ /etc/init.d/bind9 restart |
You should see the following message
; <<>> DiG 9.3.4 ;; global options: printcmd ;; Got answer: ;; ->>HEADER<<- opcode: ;; flags: qr aa rd ra; QUERY: 1, ANSWER: ;; QUESTION SECTION: ;debian.lan. IN A ;; ANSWER SECTION: debian.lan. 64800 IN ;; AUTHORITY SECTION: debian.lan. 64800 IN ;; ADDITIONAL SECTION: main.debian.lan. 64800 IN ;; Query time: 1 msec ;; SERVER: 192.168.4.1#53(192.168.4.1) ;; WHEN: Tue Aug 5 09:33:40 2008 ;; MSG SIZE rcvd: 79 |
Test your reverse DNS
$ dig -x debian.lan |
If
you see this message, you have successfully installed the DNS
server.
; <<>> DiG 9.3.4 ;; global options: printcmd ;; Got answer: ;; ->>HEADER<<- opcode: ;; flags: qr rd ra; QUERY: 1, ANSWER: 0, ;; QUESTION SECTION: ;lan.debian.in-addr.arpa. IN ;; AUTHORITY SECTION: in-addr.arpa. 10800 IN SOA A.ROOT-SERVERS.NET. ;; Query time: 952 msec ;; SERVER: 192.168.4.1#53(192.168.4.1) ;; WHEN: Tue Aug 5 09:34:25 2008 ;; MSG SIZE rcvd: 108 |
You can also check your
DNS nslookup and host command.
nslookup debian.lan |
4.
Update bind9.service and bind9-resolvconf.service
To boots up local DNS automatically at
startup, we need below steps.
Before, bind9.service is
dependent on network.target, and bind9-resolvconf.service
is dependent on bind9.service. However, if Wifi-ublox is not ready, bind9
service finished, then bind9 will not work. So we need to set bind9.service
be dependent on the service which boots up Wifi-ublox as below.
After /etc/init.d/bind9
restart is executed, /etc/systemd/system/multi-user.target/bind9.service
will generate a soft link to /lib/systemd/system/bind9.service. bind9-resolvconf.service
is under /lib/systemd/system/.
At last, we need to enable bind9 service at startup.
$ |
Bind9.service
[Unit] Description=BIND Domain Name Server Documentation=man:named(8) After=nio-autoexecB1.service [Service] ExecStart=/usr/sbin/named -f -u bind ExecReload=/usr/sbin/rndc reload ExecStop=/usr/sbin/rndc stop [Install] WantedBy=multi-user.target |
bind9-resolvconf.service
[Unit] Description=local BIND via resolvconf Documentation=man:named(8) man:resolvconf(8) Requires=bind9.service After=bind9.service ConditionFileIsExecutable=/sbin/resolvconf [Service] ExecStart=/bin/sh -c 'echo nameserver ExecStop=/sbin/resolvconf -d lo.named [Install] WantedBy=bind9.service |
5.
Configure Client Device in Lan Network
All computers in the LAN are
going to use 192.168.4.1 as a nameserver, this can be set manually by setting
statically:
$ |
Then put this information, add this at
the top of file.
192.168.4.1 |
Source
Reference:
http://www.cahilig.net/2008/07/05/how-setup-lan-dns-server-using-bind9-under-debian-etch-and-ubuntu-804
[DNS]部署局域网DNS服务器的更多相关文章
- 架构师成长之路6.4 DNS服务器搭建(部署主从DNS)
点击返回架构师成长之路 架构师成长之路6.3 DNS服务器搭建(部署主从DNS) 部署主DNS : 点击 部署从DNS : 如下步骤 1.与主DNS一样,安装bind yum -y install ...
- Windows10怎么架设局域网DNS服务器?
已采纳 需要安装Windows组件进行设置.最好是安装服务器版本的Windows. 1. 安装DNS服务 开始—〉设置—〉控制面板—〉添加/删除程序—〉添加/删除Windows组件—〉“网络服务”—〉 ...
- DNS单机部署以及智能dns部署
dns理论 dns的出现 网络出现的早期是使用IP地址通讯的,那时就几台主机通讯.但是随着接入网络主机的增多,这种数字标识的地址非常不便于记忆,UNIX上就出现了建立一个叫做hosts的文件(Linu ...
- 【Linux】DNS服务-BIND从服务器、缓存服务器及转发服务器配置(三)
环境 操作系统:CentOS 6.5 DNS软件:bind(安装参照:[Linux]DNS服务-BIND基础配置(二)) BIND从服务器 从服务器就是在bind的主配置文件中添加从域example. ...
- ipv6修改DNS服务-首选DNS服务器:240c::6666
下一代互联网国家工程中心推出的IPv6 DNS服务 首选DNS服务器:240c::6666 备用DNS服务器:240c::6644 来自下一代互联网国家工程中心官网消息显示,日前,下一代互联网国家 ...
- 【入门】广电行业DNS、DHCP解决方案详解(三)——DNS部署架构及案
[入门]广电行业DNS.DHCP解决方案详解(三)——DNS部署架构及案 DNS系统部署架构 宽带业务DNS架构 互动业务DNS架构 案例介绍 案例一 案例二 本篇我们将先介绍DNS系统部署架构体系, ...
- DNS部署(centos 6)
DNS部署(主从) 安装环境:CentOS 6.8 准备两台主机:192.168.137.13(主DNS).192.168.137.14(从DNS) EPEL仓库使用阿里源 rpm -ivh http ...
- Docker环境下搭建DNS LVS(keepAlived) OpenResty服务器简易集群
现在上网已经成为每个人必备的技能,打开浏览器,输入网址,回车,简单的几步就能浏览到漂亮的网页,那从请求发出到返回漂亮的页面是怎么做到的呢,我将从公司中一般的分层架构角度考虑搭建一个简易集群来实现.目标 ...
- centos DNS服务搭建 DNS原理 使用bind搭建DNS服务器 配置DNS转发 配置主从 安装dig工具 DHCP dhclient 各种域名解析记录 mydns DNS动态更新 第三十节课
centos DNS服务搭建 DNS原理 使用bind搭建DNS服务器 配置DNS转发 配置主从 安装dig工具 DHCP dhclient 各种域名解析记录 mydns DNS动态更 ...
随机推荐
- 转载【小程序】: 微信小程序开发---应用与页面的生命周期
App App() App() 函数用来注册一个小程序.接受一个 object 参数,其指定小程序的生命周期函数等. object参数说明: 属性 类型 描述 触发时机 onLaunch Functi ...
- vim+xdebug调试PHP
一.安装xdebug 1.编译安装xdebug,也可以使用pecl install xdebug wget http://xdebug.org/files/xdebug-2.3.2.tgz tar - ...
- 工具-Memcahce和Redis比较
一.Memcache 1. memecache 把数据全部存在内存之中,断电后会挂掉,数据不能超过内存大小redis有部份存在硬盘上,这样能保证数据的持久性. 2. Memcache ...
- HDUOJ---1213How Many Tables
How Many Tables Time Limit: 2000/1000 MS (Java/Others) Memory Limit: 65536/32768 K (Java/Others) ...
- 在python中使用静态方法staticmethod
静态方法: 静态方法是类中的函数,不需要实例.静态方法主要是用来存放逻辑性的代码,主要是一些逻辑属于类,但是和类本身没有交互,即在静态方法中,不会涉及到类中的方法和属性的操作.可以理解为将静态方法存在 ...
- 阿里云ECS服务器Linux环境下配置php服务器(二)--phpMyAdmin篇
上一篇讲了PHP服务器的基本配置,我们安装了apache,php,还有MySQL,最后还跑通了一个非常简单的php页面,有兴趣的朋友可以看我的这篇博客: 阿里云ECS服务器Linux环境下配置php服 ...
- OAF_OAF控件系列10 - Key Flexfield键值弹性域的实现(案例)
2014-06-17 Created By BaoXinjian
- Unix环境高级编程(十五)高级I/O
1.非阻塞I/O 对低速设备的I/O操作可能会使进程永久阻塞,这类系统调用主要有如下情况:(1)如果数据并不存在,则读文件可能会使调用者永远阻塞(例如读管道.终端设备和网络设备).(2)如果数据不能立 ...
- <<Python基础教程>>学习笔记 | 第10章 | 充电时刻
第10章 | 充电时刻 本章主要介绍模块及其工作机制 ------ 模块 >>> import math >>> math.sin(0) 0.0 模块是程序 一个简 ...
- TCP通信的三次握手和四次撒手的详细流程(顿悟)
TCP(Transmission Control Protocol) 传输控制协议 三次握手 TCP是主机对主机层的传输控制协议,提供可靠的连接服务,采用三次握手确认建立一个连接: 位码即tcp标志位 ...