实验规划
配置web服务器
yum install httpd -y
echo www.xuepeng.com > /var/www/html/index.html
systemctl enable --now httpd
配置 dns 主从
主dns配置
vim /etc/named.conf
options {
// listen-on port 53 { 127.0.0.1; };
// allow-query { localhost; };
dnssec-enable no;
dnssec-validation no;
allow-transfer { 192.168.43.27; };
}
vim /etc/named.rfc1912.zones
zone "xuepeng.com" IN {
type master;
file "xuepeng.com.zone";
};
vim /var/named/xuepeng.com.zone
$TTL 1D
@ IN SOA master admin (
0 ; serial
1D ; refresh
1H ; retry
1W ; expire
3H ) ; minimum
NS master
NS slave
master A 192.168.43.17
slave A 192.168.43.27
www A 192.168.43.37
从dns服务
vim /etc/named.conf
options {
// listen-on port 53 { 127.0.0.1; };
// allow-query { localhost; };
dnssec-enable no;
dnssec-validation no;
allow-transfer { none; };
}
vim /etc/named.rfc1912.zones
zone "xuepeng.com" IN {
type slave;
masters { 192.168.43.17; };
file "slaves/xuepeng.com.zone";
};
配置父域dns
vim /etc/named.conf
options {
// listen-on port 53 { 127.0.0.1; };
// allow-query { localhost; };
dnssec-enable no;
dnssec-validation no;
}
vim /etc/named.rfc1912.zones
zone "com" IN {
type master;
file "com.zone";
};
vim /var/named/com.zone
$TTL 1D
@ IN SOA ns1 admin (
0 ; serial
1D ; refresh
1H ; retry
1W ; expire
3H ) ; minimum
NS ns1
ns1 A 192.168.43.7
xuepeng NS ns2
xuepeng NS ns3
ns2 A 192.168.43.17
ns3 A 192.168.43.27
配置根域
vim /etc/named.conf
options {
// listen-on port 53 { 127.0.0.1; };
// allow-query { localhost; };
dnssec-enable no;
dnssec-validation no;
}
zone "." IN {
type master;
file "root.zone";
};
vim /var/named/root.zone
$TTL 1D
@ IN SOA ns1 admin (
0 ; serial
1D ; refresh
1H ; retry
1W ; expire
3H ) ; minimum
NS ns1
ns1 A 192.168.43.36
com NS ns2
ns2 A 192.168.43.7
配置转发dns
vim /etc/named.conf
options {
// listen-on port 53 { 127.0.0.1; };
// allow-query { localhost; };
dnssec-enable no;
dnssec-validation no;
}
vim /var/named/named.ca
. 3600000 NS A.ROOT-SERVERS.NET.
A.ROOT-SERVERS.NET. 3600000 A 192.168.43.36
配置本地dns
vim /etc/named.conf
options {
// listen-on port 53 { 127.0.0.1; };
// allow-query { localhost; };
dnssec-enable no;
dnssec-validation no;
forward only;
forwarders { 192.168.43.26; };
}
配置客户端
cat /etc/resolv.conf
nameserver 192.168.43.16