- 论坛徽章:
- 0
|
一台DNS(bind9)服务器192.168.2.6
三个VLAN
192.168.2.0
192.168.101.0
192.168.102.0
DNS都指向192.168.2.6
192.168.2.0解析内外网都正常
192.168.101.0和192.168.102.0解析内网正常,但是访问不了internet(可以ping通外网IP,判断是DNS解析不了)
三层交换机的ACL对192.168.2.0没作任何规则,端口也没作限制
named.conf.options
options {
directory "/var/cache/bind";
// If there is a firewall between you and nameservers you want
// to talk to, you might need to uncomment the query-source
// directive below. Previous versions of BIND always asked
// questions using port 53, but BIND 8.1 and later use an unprivileged
// port by default.
// query-source address * port 53;
// If your ISP provided one or more IP addresses for stable
// nameservers, you probably want to use them as forwarders.
// Uncomment the following block, and insert the addresses replacing
// the all-0's placeholder.
forwarders {
202.134.93.120;//这里是外网的DNS
};
auth-nxdomain no; # conform to RFC1035
};
到底是哪里出问题呢? |
|