Inyathelo 1: Ukufakwa kweephakheji ezifanelekileyo
Ngaphambi kokuba uqale ngokujonga le miyalelo ilandelayo, sifuna ukuqaphela ukuba kwisiza sethu sele kukho isikhokelo soqwalaselo ngokubanzi ukuya kwi-DNS esemgangathweni kwi-Linux. Sicebisa ukuba sisebenzise ngqo umxholo ukuba kufuneka usete useto lutyelelo oluqhelekileyo kwiindawo ze-Intanethi. Okulandelayo, siza kubonisa indlela umncedisi we-DS ophambili we-DNS ofakiweyo.Ekupheleni kwale nkqubo, uya kwaziswa ukuba zonke iiphakheji zongezwe ngempumelelo kwinkqubo. Emva koko, yiya kwinyathelo elilandelayo.
Inyathelo 2: I-Global DNS SETUP
Ngoku sifuna ukubonisa indlela ehlelwe ngayo ifayile yoqwalaselo oluphambili, kunye nendawo eyongeziweyo yemiqolo apho. Asiyi kuhlala kumgca ngamnye ngokwahlukileyo, njengoko siza kuthatha ixesha elininzi, ngaphezulu, lonke ulwazi oluyimfuneko luyafumaneka kumaxwebhu asemthethweni.
- Ungasebenzisa nawuphi na umhleli wokuhlela izinto zokucwangcisa izinto. Sinikezela ekufakweni i-nano elula ngokufaka i-sudo yum ukufaka i-nano kwikhonkrithi.
- Zonke iiphakheji ezifanelekileyo ziya kukhutshelwa ngaphandle, kwaye ukuba sele zikhona kunikezelo, uya kufumana isaziso "yenze nto."
- Siza kuqhubeka nokuhlela iifayile ngokwayo. Yivule nge-sudo nano / igama lakho. Ukuba kukho imfuneko, faka endaweni yomhleli onqwenelekayo, umtya uya kuba ngolu hlobo lulandelayo: Sudo vi /eetc/metd.comf.
- Apha ngezantsi sinikezela ngeziqulatho ukuba kufuneka ufake kwifayile evuliweyo okanye ungqinisise ngokukhona esele ikhowudi imigca elahlekileyo.
- Emva koko, cinezela i-CTRL + o Ukurekhoda utshintsho.
- Awudingi ukutshintsha igama lefayile, cofa nje ukungena.
- Shiya umhleli obhaliweyo nge-CTRL + X.
Njengoko sele kutshiwo ngaphambili, ifayile yoqwalaselo iya kufuna ukufaka imigca ethile echaza imithetho ngokubanzi ye-DNS Server.
//
// igama elingu.Conf.
//
// unikezwe yiphakheji ye-Bind Bind Bind ukulungiselela i-ISC Bind Bind (8) DNS
// Iseva njenge-caching gama kuphela (njenge-DNS ye-DNS ye-Wons) kuphela).
//
// jonga / i-USR / i-DOC / DOC / Bind * / isampulu / umzekelo iifayile zoqwalaselo.
//
Ukukhetha {
Mamela-kwi-port 53 {127.0.0.1; 192.168.1.101;}; ### i-custer ye-DNS IP # # #
# Mamela-v6 port 53 {:: 1; };
Isikhombisi "/ var / inikwe igama";
ifayile ye-Dump-"/var/mename d/data/cache_dump.db";
Ifayile ye-Statistics "/var/menaped/data/met.txt";
Ifayile ye-Memstatis "/var/mename/data/met_mem_TXATS
Vumela-cigry {engingqini; 192.168.1.0/24;}; ### IP ye-IP ###
Vumela-hlution {yengingqi; 192.168.1.102; }; ### i-DNS i-IP # # #
/*
-Ukuwakha i-DNS ye-DNS igunya, musa ukwenza ukuphinda uqatshelwe.
-Ukuba sodwa isakha se-DNS Server Server, kufuneka wenze
Ukutshintshwa.
-Ukuba iseva yakho ye-DNS ephindaphindiweyo inedilesi ye-IP yoLuntu, kufuneka wenze ukuba ufikelele
Ulawulo lokunciphisa umda kwimibuzo kubasebenzisi bakho basemthethweni. Ukusilela ukwenza njalo
Yenza iserver yakho ibe yinxalenye ye-veling enkulu ye-pple
Ukuhlaselwa. Ukuphunyezwa kwe-BCP38 kwinethiwekhi yakho kuya kuba kakhulu
Nciphisa umhlaba wokuhlaselwa
*/
Ukuphinda ukhanyele ewe;
I-DNSSSEC-YENZA Ewe;
DNSSEC-Ulwenziwo YES;
I-DNSSSENC-joyside;
/ * Indlela eya kwi-ASC Dlv iqhosha * /
I-Bindkeys-Ifayile "/etc/mesc.iscdlvv.y";
Iqhosha lezinto ezilawulwayo "/ var / inikwe igama / i-gonamic";
ifayile ye-PID "/ ye -/men/menamid.pid";
Iseshoni-i-Syrile "/ igama / igama eli -/session.y";
};
Ukungena {
I-Channel-Dedebug {
Ifayile "data / igama.Run";
Ubunkunkqele buNtu;
};
};
indawo "." Kwi {
Chwetheza icebiso;
Ifayile "egama lingu.ca";
};
umda "I-Unixmen.local" kwi {
Chwetheza inkosi;
Ifayile "phambili.
Vumela-hlaziya {akukho namnye; };
};
umda "1.168.192.in-Addr.arpa" kwi {
Chwetheza inkosi;
Ifayile "yokubuyela umva.
Vumela-hlaziya {akukho namnye; };
};
Bandakanya "/etc/men.Amed.rfc1912.zones";
Bandakanya "/etc/mesd.root.y";
Qiniseka ukuba yonke into ivezwe ngokuchanekileyo njengoko kubonisiwe ngentla, emva koko uye kwinqanaba elilandelayo.
Inyathelo 3: Ukwenza indawo ethe ngqo nebuyisiweyo
Ngolwazi malunga nomthombo, i-DN Storser isebenzisa imimandla ethe ngqo nengafani. Umlomo ngqo uvumela ukuba ufumane idilesi ye-IP ngegama lenginginya, kwaye imbuyekezo nge-IP inika igama le-domain. Ukusebenza ngokuchanekileyo kwendawo nganye kufuneka kubonelelwe ngemithetho ekhethekileyo, ukudalwa kwayo ukwenza ngakumbi.
- Kwindawo ethe ngqo, siya kudala ifayile eyahlukileyo ngomhleli ofanayo nombhalo omnye. Emva koko umtya uya kujongeka ngoluhlobo: Sudo Nano /var/mer
- Uya kwaziswa ukuba yinto engenanto. Cola lo mxholo ulandelayo ukhona:
$ Ttl 86400.
@ E-SOA Easterdlons.xixermen.Local. Ingcambu.Une -nyer.local. (
Ngo-201071001; i-serial
I-3600; hlaziya.
I-1800; Phinda uzame.
I-604800; iphelelwe lixesha
I-86400; ubuncinci i-ttl
)
@ Kwi-NS E-Masterrterns.xixermen.Local.
@ Kwi-NS Senderderdns.IxNGN.IXACAL.
@ Kwi-192.168.1.101
@ Kwi-192.168.1.102
@ Kwi-192.168.1.103
I-Masterdles kwi-192.168.1.101
Yesibini kwi-192.168.1.102
Umxhasi kwi-192.168.1.103
- Gcina utshintsho kwaye uvale umhleli wokubhaliweyo.
- Ngoku sijika kwindawo yokujonga ngasemva. Ifuna i-/var / igama lefayile.
- Oku kuya kuba yifayile entsha engenanto. Faka apho:
$ Ttl 86400.
@ E-SOA Easterdlons.xixermen.Local. Ingcambu.Une -nyer.local. (
Ngo-201071001; i-serial
I-3600; hlaziya.
I-1800; Phinda uzame.
I-604800; iphelelwe lixesha
I-86400; ubuncinci i-ttl
)
@ Kwi-NS E-Masterrterns.xixermen.Local.
@ Kwi-NS Senderderdns.IxNGN.IXACAL.
@ Kwi-PTR Unixmen.local.
I-Masterdles kwi-192.168.1.101
Yesibini kwi-192.168.1.102
Umxhasi kwi-192.168.1.103
I-101 kwi-ptr e-Adrivens.xixermen.local.
I-102 kwi-PTR SkweeRanAryddns.IXINGNGNG.
I-103 kumncedisi wePTR.Unemen.local.
- Xa usindisa, musa ukutshintsha igama lento, kodwa cinezela iqhosha le-Enter.
Ngoku iifayile ezichaziweyo ziya kusetyenziselwa indawo ethe ngqo nebuyiselweyo. Ukuba kukho imfuneko, kufuneka ubahle ukuze batshintshe iiparamitha ezithile. Unokufunda ngayo kumaxwebhu asemthethweni.
Inyathelo 4: Qalisa i-DNS server
Emva kokugqiba yonke imiyalelo yangaphambili, unokuqala iseva ye-DNS ukuze ixesha elizayo kulula ukujonga intsebenzo kwaye uqhubeke useto lweparameter. Umsebenzi wenziwa ngolu hlobo lulandelayo:
- Kwi-console, faka i-SCO SCOCTCTL ye-SCO egama lingumongeza iseva ye-DNS ukuze ilayishe ngokuzenzekelayo ukuze iqale indlela yokusebenza ngokuzenzekelayo xa iqala inkqubo yokusebenza.
- Qinisekisa le ntshukumo ngokufaka iphasiwedi engaphezulu.
- Uya kwaziswa ngendalo yesalathiso somfuziselo, okuthetha ukuba isenzo siphumelele.
- Qhuba isixhobo ngenkqubo yenkqubo ebiyelweyo. Ungayinqanda ngendlela efanayo, ukutshintsha kuphela ukhetho lokuqala lokumisa.
- Xa iwindows ye-poup-up windows ibonisiwe, faka iphasiwedi kwingcambu.
Njengoko ubona, ukuphathwa kwenkonzo echaziweyo kwenziwa ngokwemigaqo efanayo nakwezo zonke ezinye izinto ezisetyenziswayo, ngenxa yoko, kungabikho ngxaki malunga noku nakwii-novice abasebenzisi.
Inyathelo lesi-5: Ukutshintsha iiparameter zeRirewall
Ukusebenza ngokuchanekileyo kweseva ye-DNS, kuya kufuneka uvule iPort 53, eqhutywa nge-firewall eqhelekileyo yomlilo. Kwisiphelo sendlela, kuya kufuneka wazise kuphela imiyalelo emithathu elula:
- Okokuqala kubonisa umbono we-firewall-cmd -d -d-port = 53 / TCP kwaye unoxanduva lokuvula iProt Poit Port Port. Yifake kwi-console kwaye ucofe ku-Enter.
- Kuya kufuneka ufumane "impumelelo" yesaziso, esibonisa ukusetyenziswa ngempumelelo komgaqo. Emva koko, faka i-Firewall-CMD-CMD -DD-Port = 53 / Udp Tripring ukuvula iProt Poit Protocol Port.
- Lonke utshintsho luya kusetyenziswa kuphela emva kokuphinda iphinde iphinde iphinde isebenze i-firewall, eyenziwayo ngomyalelo we-firewall-cmd-cmd.
Azikho utshintsho olwenzekayo kunye ne-firewall yokuvelisa. Gcina rhoqo kwiLizwe, ukuze kungabikho ngxaki ukufikelela.
Inyathelo 6: Lungisa amalungelo okufikelela
Ngoku kuya kuba yimfuneko ukuseta iimvume eziphambili kunye namalungelo okufikelela ukukhusela ukusebenza kwe-DNS kwaye ukhusele abasebenzisi abaqhelekileyo kubuchule bokutshintsha iparameter. Siza kuyenza ngendlela esemgangathweni kwi-selinux.
- Yonke imiyalelo elandelayo kufuneka isebenze egameni le-Superuser. Ukuhlala ungangeni kwi-password, sikucebisa ukuba ufikelele kwingcambu yesiphelo seseshoni. Ukwenza oku, faka i-su kwi-console.
- Chaza iphasiwedi yokufikelela.
- Emva koko, faka enye le miyalelo ilandelayo ukwenza ubumbeko lokuFikelela ngokuLungileyo:
I-Chgrp egama lingu -r / var / inikwe igama
I-Chown-V Roots: Ibizwa ngokuba ngu-OGETC / igamaDI
Buyisela i--rv / var / inikwe igama
Buyisela /etc/metc.com.
Kule, ubumbeko ngokubanzi lweseva ephambili ye-DNS igqityiwe. Ihlala kuphela ukuhlela iifayile ezininzi zoqwalaselo kunye neempazamo zovavanyo. Sinikezela konke oku ukufumana inyathelo elilandelayo.
Inyathelo lesi-7: Ukuvavanywa kweempazamo kunye nokugcwalisa iseti
Sicebisa ukuba siqatshelwe ngempazamo ukujonga ukuze kwixesha elizayo akufuneki ukuba itshintshe iifayile zoqwalaselo ezishiyekileyo. Kungenxa yoko le nto siza kuyithathela ingqalelo yonke inyathelo elinye, kunye nokunika iisampulu zemveliso efanelekileyo yemiyalelo yokuvavanywa.
- Ngenisa i-Cayin -utConf /ETECCE / Inayidd.comf kwi-terminal. Oku kuyakuvumela ukuba ujonge iiparamitha zehlabathi. Ukuba, ngenxa yoko, akukho luvo lulandelayo, kuthetha ukuba yonke into ilungiselelwe ngokuchanekileyo. Ngaphandle koko, funda umyalezo kwaye, tyhala kuyo, usombulule ingxaki.
- Okulandelayo kufuneka ujonge indawo ethe ngqo ngokufaka i-Unix-i-Unix-i-Unix-i-Unixonnen.local /var/mer / Ifownix
- Isampulu yemveliso imi ngolu hlobo lulandelayo: I-UNEXINGNGNGNGNGNGNGNGNGNS.LOCAL / KWI-MALI YOKUGQIBELA 2011071001 Kulungile.
- Phantse ngokufanayo kunye nendawo eguqukayo kwi-Unixzone engu-Unixzone UniXon.local /var/mer.unes.
- Iziphumo ezichanekileyo kufuneka zibekho: i-UNEXINGNGNGNGNGNGNGNGNGNGNGNGN.COCAL / kwi: I-STIALD MALIX 2011071001 Kulungile.
- Ngoku siqhubela phambili kuseto lwenethiwekhi ephambili. Kuya kufuna ukongeza idatha yeseva ye-DNS yangoku. Ukwenza oku, vula i-S / njl / sysconfig / yenethiwekhi-yenethiwekhi / i-IFCFG-EnP0s3 ifayile.
- Jonga ukuba imixholo iboniswe ngezantsi. Ukuba kukho imfuneko, faka iiparamitha ze-DNS.
Chwetheza = "Ethernet"
I-bootproto = "AKUKHO"
Chaza = "ewe"
IPv4_Fured_fatal = "Hayi"
Ipvsit = "ewe"
Ipv6_autoconf = "Ewe"
Ipv6_Duffroute = "Ewe"
IPV6_FIARUR_FATAL = "hayi"
Igama = "Enp0s3"
I-UUID = "5D0428B3-6F2F2F6B-922222222228Efa"
I-onboot = "ewe"
I-HWADDR = "08: 00: 27: 198: 73"
IPaddr0 = "192.168.1.101"
Isimaphambili0 = "24"
Isango00 = "192.168.1.1"
I-DNS = "192.168.1.101"
IPV6_PERDS = "Ewe"
IPV6_PERROSTROTH = "ewe"
- Emva kokugcina utshintsho, yiya kwi-/etc/relv.conf ifayile.
- Apha kufuneka udibanise umgca omnye: i-meliserver 192.168.1.101.
- Emva kokugqitywa, ihlala iqala ukuqalisa inethiwekhi okanye ikhompyuter ukuhlaziya ubumbeko. Inethiwekhi iqalwa kwakhona ngenkqubo yenkqubo yenethiwekhi.
Inyathelo 8: Ukujonga i-DNS ye-DNS efakiweyo
Ekupheleni koqwalaselo, uhlala kuphela ukuqinisekisa ukusebenza kweserver ye-DNS emva kongezwa kwinkonzo yenethiwekhi yehlabathi. Lo msebenzi usenziwa usebenzisa imiyalelo ekhethekileyo. Owokuqala kubo unendlela yokumba e-Masterdlens.IXINGNGNGNGal.
Ngenxa yoko, imveliso kufuneka ivele kwiscreen, enomelo olufanayo kunye nomxholo ochazwe ngezantsi.
; I-9.9.4-Redhat-9.9.4-14.el7 edriverins.ccalmen.Ucal
;; Iinketho zeHlabathi: + I-CMD
;; Ufumene impendulo:
;; - >> I-header.
;; Iiflegi: I-QR AA ra ra; Umbuzo: 1, Impendulo: 1, iGunya: 2, eyongezelelweyo: 2
;; Khetha i-pseudududsection:
; Edns: Inguqulelo: 0, iiflegi :; I-UDP: 4096.
;; Icandelo Lombuzo:
; i-adrilens.xixen.local. Kwi.
;; Icandelo lempendulo:
I-Masterstns.xixen.local. I-86400 kwi-192.168.1.101
;; Icandelo leGunya:
I-UNINGNGS.LOCALS. I-86400 kwi-NS Senderderns.IX.Ce.
I-UNINGNGS.LOCALS. I-86400 kwi-NS E-Masterterns.xixermen.local.
;; Icandelo elongezelelekileyo:
Isibini seSibini.IX.C.XINEGL. I-86400 kwi-192.168.1.102
;; Ixesha lombuzo: 0 msec
;; Umncedisi: 192.168.1.101 # 53 (192.168.1.101)
;; XA: DW AUUS 20 16: 20: 46 I-IST 2014
;; Ubungakanani be-MSG RcvD: 125
Umyalelo owongezelelweyo uya kukuvumela ukuba ufunde malunga nemeko yeseva ye-DNS yendawo. Ukwenza oku, faka i-NSlookup Unixmen.Local kwi-console kwaye ucofe ukungena.
Ngenxa yoko, iidilesi ezintathu ezahlukeneyo zeedilesi ze-IP kunye namagama emimandla kufuneka ziboniswe.
Umncedisi: 192.168.1.101
Idilesi: 192.168.1.101 # 53
Igama: I-UNixmen.local
Idilesi: 192.168.1.103
Igama: I-UNixmen.local
Idilesi: 192.168.1.101
Igama: I-UNixmen.local
Idilesi: 192.168.1.102
Ukuba inkcazo ihambelana neso sibonisileyo, oko kuthetha ukuba ubumbeko lugqityiwe ngempumelelo kwaye ungaya emsebenzini kunye nenxalenye yomthengi weseva ye-DNS.
Ukuseta inxenye yabathengi yeseva ye-DNS
Asiyi kwahlulahlula le nkqubo kumanyathelo ngamanye amaxesha, kuba senziwa ngokuhlela ifayile enye yoqwalaselo kuphela. Kuyimfuneko ukongeza ulwazi malunga nabo bonke abathengi eziya kuqhagamshelwa kwiseva, kwaye umzekelo wokuseta okunjalo ujongeka ngolu hlobo:
- Vula ifayile ye-/etc/relv.conf ngalo nawo umhleli wombhalo ofanelekileyo.
- Yongeza umtya ukukhangela i-UNIXGNGNGNGNGNGNGNGSERNGR 192.168.1.101 kunye neMyserver 192.1612, thabatha indawo yeedilesi zabathengi eziyimfuneko.
- Xa usindisa, musa ukutshintsha igama lefayile, kodwa cinezela iqhosha le-Enter.
- Emva kokushiya umhleli wombhalo, qala kwakhona uthungelwano lwehlabathi ngokusebenzisa i-SC0CTL Guqula umyalelo wenethiwekhi.
La yayingamanqaku aphambili kwicandelo lomthengi leseva ye-DNS, esifuna ukusixelela. Zonke ezinye izihlandlo zinikezelwa ukuba zifundwe ngokufunda amaxwebhu asemthethweni ukuba iyafuneka.
Uvavanyo lwe-DNS kwi-DNS
Inqanaba lokugqibela lezinto zethu zanamhlanje luvavanyo lokugqibela lweseva ye-DNS. Apha ngezantsi ubone imiyalelo emininzi, ukuvumela ukuba ukwazi ukujongana naloo msebenzi. Sebenzisa enye yazo ngokwenza "i-terminal". Ukuba akukho zimpazamo zibonwa kwimveliso, ke, yonke inkqubo yenziwa ngokuchanekileyo.
Imba e-Masterstns.xixern.local
I-DIT SIDRANARNSS.XINEGNGNGNS
Umncedisi we-Digi.XINGNGN
I-NSlookup Unixmen.local
Namhlanje ufundile konke malunga nokuseta iseva ephambili ye-DNS kwi-CENTAS. Njengoko ubona, yonke imisebenzi ijolise ekungeneni kwimiyalelo ye-terminal kunye nokuhlela iifayile zoqwalaselo, ezinokubangela ubunzima obuthile kubasebenzisi be-novice. Nangona kunjalo, kuya kufuneka ulandele ngokuchanekileyo le miyalelo kwaye ufunde iziphumo zetsheki ukuze yonke into ihamba ngaphandle kweziphoso.