- 论坛徽章:
- 0
|
各位位,我在配置Bind时,外网不能访问和解析,内网能访问Bind和解析.
实正不知道是什么原因导致,所以,在此请教一下各位,谢谢!
说是防火墙原因嘛,但能过将53端口配置成web服务(apache),外网可能正常访问
环境如下:
1. 外网IP:220.200.72.2
2. 内网IP:10.1.3.12
3. 通过NAT将内网转为外网IP,
4. OS:Redhat Linux 8
5. 没有设置iptables
# iptables -L
Chain INPUT (policy ACCEPT)
target prot opt source destination
Chain FORWARD (policy ACCEPT)
target prot opt source destination
Chain OUTPUT (policy ACCEPT)
target prot opt source destination
6. 在本机的测试-通过内网IP
nslookup
Note: nslookup is deprecated and may be removed from future releases.
Consider using the `dig' or `host' programs instead. Run nslookup with
the `-sil[ent]' option to prevent this message from appearing.
> server 10.1.3.12
Default server: 10.1.3.12
Address: 10.1.3.12#53
> set type=soa
> cgp6.cn
Server: 10.1.3.12
Address: 10.1.3.12#53
cgp6.cn
origin = ns1.cgp6.cn
mail addr = admin_dns.cgp6.cn
serial = 2008071002
refresh = 10800
retry = 3600
expire = 3600000
minimum = 86400
> set type=a
> www.cgp6.cn
Server: 10.1.3.12
Address: 10.1.3.12#53
www.cgp6.cn canonical name = wcname.cgp6.cn.
Name: wcname.cgp6.cn
Address: 220.200.72.4
Name: wcname.cgp6.cn
Address: 220.200.72.5
Name: wcname.cgp6.cn
Address: 220.200.72.2
Name: wcname.cgp6.cn
Address: 220.200.72.3
7. 在本机的测试-通过外网IP
nslookup
Note: nslookup is deprecated and may be removed from future releases.
Consider using the `dig' or `host' programs instead. Run nslookup with
the `-sil[ent]' option to prevent this message from appearing.
> server 220.200.72.2
Default server: 220.200.72.2
Address: 220.200.72.2#53
> set type=soa
> cgp6.cn
;; connection timed out; no servers could be reached
> set type=a
> www.cgp6.cn
;; connection timed out; no servers could be reached
>
8.我能确定可以ping 通这个服务器的外网IP. 外网的53端口也可以访问(通过配置成一个web服务,apache)
9.telnet ip结果
telnet 220.200.72.2 53
Trying 220.200.72.2...
Connected to jltdb (220.200.72.2).
Escape character is '^]'.
Connection closed by foreign host.
telnet 10.1.3.12 53
Trying 10.1.3.12...
Connected to 10.1.3.12 (10.1.3.12).
Escape character is '^]'.
Connection closed by foreign host.
再次感谢!!!!!!! |
|