博客
关于我
强烈建议你试试无所不能的chatGPT,快点击我
dns视图搭建
阅读量:4568 次
发布时间:2019-06-08

本文共 1675 字,大约阅读时间需要 5 分钟。

在/etc/named.conf中写。。

options {

listen-on port 53 { any; };
listen-on-v6 port 53 { ::1; };
directory "/var/named";
dump-file "/var/named/data/cache_dump.db";
statistics-file "/var/named/data/named_stats.txt";
memstatistics-file "/var/named/data/named_mem_stats.txt";
allow-query { any; };

/*

- If you are building an AUTHORITATIVE DNS server, do NOT enable recursion.
- If you are building a RECURSIVE (caching) DNS server, you need to enable
recursion.
- If your recursive DNS server has a public IP address, you MUST enable access
control to limit queries to your legitimate users. Failing to do so will
cause your server to become part of large scale DNS amplification
attacks. Implementing BCP38 within your network would greatly
reduce such attack surface
*/
recursion yes;

dnssec-enable yes;

dnssec-validation yes;

/* Path to ISC DLV key */

bindkeys-file "/etc/named.iscdlv.key";

managed-keys-directory "/var/named/dynamic";

pid-file "/run/named/named.pid";

session-keyfile "/run/named/session.key";
};

logging {

channel default_debug {
file "data/named.run";
severity dynamic;
};
};

acl "beidc" {192.168.1.0/24;};

acl "shadc" {192.168.2.0/24;};
view "beipool"{
match-clients {beidc;};
zone "." in {
type hint;
file "named.ca";
};
zone "han.com" in {
type master ;
file "han.com.zone.1";
};
zone "1.168.192.in-addr.arpa" in {
type master;
file "han.com.1";
};
};

view "shapool"{
match-clients {shadc;};
zone "." in {
type hint;
file "named.ca";
};
zone "han.com" in {
type master ;
file "han.com.zone.2";
};
zone "2.168.192.in-addr.arpa" in {
type master;
file "han.com.2";
};
};

 

 

之后

 

 

之后测试在不同段就不可以同。。。同段可以。。

 

不同段表示不同国家的服务器

 

转载于:https://www.cnblogs.com/han1094/p/6295747.html

你可能感兴趣的文章
CF277D Google Code Jam
查看>>
(七)unittest单元测试框架
查看>>
(八) 自动化测试的实例(以浏览器为例)
查看>>
js获取单选框和复选框的值并判断值存在后允许转跳
查看>>
任务一:零基础HTML编码
查看>>
C#类和结构以及堆和栈大烩菜(本来就迷,那就让暴风来的更猛烈吧!)
查看>>
Bayan 2012-2013 Elimination Round (ACM ICPC Rules, English statements) A. Old Peykan
查看>>
jmeter之jdbc请求
查看>>
94. Binary Tree Inorder Traversal
查看>>
MongoDB安装及多实例启动
查看>>
[css]我要用css画幅画(三)
查看>>
eletron打包
查看>>
numpy
查看>>
django | 连接mysql数据库
查看>>
labelme2coco问题:TypeError: Object of type 'int64' is not JSON serializable
查看>>
Python字符串操作
查看>>
连接池
查看>>
使用易语言COM对象取文件版本
查看>>
3、将uboot,kernel,rootfs下载到开发板上
查看>>
2.16.10.init进程详解1
查看>>