- 论坛徽章:
- 0
|
提示: rndc: no key definition for name rndc_key
可是我已经配好了阿,有以下几个问题,请高手帮帮忙.
1./var/run 下没有named.pid,named.stats 自己建也可以吧
2.
key "rndckey" {
algorithm hmac-md5;
secret "rMWzPmgYhgWSCUahhHHHJFTpXuAurGSJzTWkTmyINXLQZfZDvkRURHlnRFRm";
};
不会错吧,加密的东西是 /usr/local/sbin/dnssec-keygen -a hmac-md5 -b 128 -n user rndc
生成的.
3.我已经停止了named服务(在ntsysv下),用rndc控制,可是为什么停后,仍然能用域名访问呢.
附:rndc.conf
options {
default-server localhost;
default-key rndc_key;
};
server localhost {
key "rndc_key";
};
key "rndckey" {
algorithm hmac-md5;
secret "rMWzPmgYhgWSCUahhHHHJFTpXuAurGSJzTWkTmyINXLQZfZDvkRURHlnRFRm";
};
****************************************************
附named.conf:
acl ournets {127.0.0.1; 192.168.1.0/224 };
options {
directory "/var/named";
pid-file "/var/run/named.pid";
statistics-file "/var/run/named.stats";
allow-recursion {ournets;};
};
//
// a caching only nameserver config
//
controls {
inet 127.0.0.1 allow { localhost; } keys { rndckey; };
};
zone "." IN {
type hint;
file "named.ca";
};
zone "localhost" IN {
type master;
file "localhost.zone";
allow-update { none; };
};
key "rndckey" {
algorithm hmac-md5;
secret "rMWzPmgYhgWSCUahhHHHJFTpXuAurGSJzTWkTmyINXLQZfZDvkRURHlnRFRm";
};
zone "0.0.127.in-addr.arpa" IN {
type master;
file "named.local";
allow-update { none; };
};
zone "haojiantao.com" IN {
type master;
file "nametoip.conf";
allow-update { none; };
};
zone "1.168.192.in-addr.arpa" IN {
type master;
file "iptoname.conf";
allow-update { none;};
};
include "/etc/rndc.key"; |
|