- 论坛徽章:
- 0
|
BIND的配置问题:
系统平台:redhat enterprise linux as 4.0
BIND: bind-libs-9.2.4-2
bind-chroot-9.2.4-2
bind-utils-9.2.4-2
bind-devel-9.2.4-2
bind-9.2.4-2
caching-nameserver-7.3-3
网络相关配置:
ip address: 172.16.1.101 255.255.0.0
default gateway: 172.16.0.5
hosts:
127.0.0.1 localhost.localdomian ns2.dingtian.net.cn localhost ns2
172.16.1.101 ns2.dingtian.net.cn
network:
NETWORKING=yes
HOSTNAME=ns2.dingtian.net.cn
resolv.conf:
search dingtian.net.cn
nameserver 172.16.1.101
firewall和SELinux都关闭
named.conf:
options {
directory "/var/named";
dump-file "/var/named/data/cache_dump.db";
statistics-file "/var/named/data/named_stats.txt";
/*
* If there is a firewall between you and nameservers you want
* to talk to, you might need to uncomment the query-source
* directive below. Previous versions of BIND always asked
* questions using port 53, but BIND 8.1 uses an unprivileged
* port by default.
*/
// query-source address * port 53;
};
//
// a caching only nameserver config
//
controls {
inet 127.0.0.1 allow { localhost; } keys { rndckey; };
};
zone "." IN {
type hint;
file "named.ca";
};
zone "localdomain" IN {
type master;
file "localdomain.zone";
allow-update { none; };
};
zone "localhost" IN {
type master;
file "localhost.zone";
allow-update { none; };
};
zone "0.0.127.in-addr.arpa" IN {
type master;
file "named.local";
allow-update { none; };
};
zone "0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.ip6.arpa" IN {
type master;
file "named.ip6.local";
allow-update { none; };
};
zone "255.in-addr.arpa" IN {
type master;
file "named.broadcast";
allow-update { none; };
};
zone "0.in-addr.arpa" IN {
type master;
file "named.zero";
allow-update { none; };
};
zone "dingtian.net.cn" IN {
type master;
file "named.dingtian";
allow-update { none; };
};
zone "1.16.172.in-addr.arpa" IN {
type master;
file "named.172.16.1";
allow-update { none; };
};
include "/etc/rndc.key";
named.dingtian
$TTL 86400
@ IN SOA ns2.dingtian.net.cn. root.dingtian.net.cn (
2005101701 ; serial (d. adams)
3H ; refresh
15M ; retry
1W ; expiry
1D ) ; minimum
IN NS ns2.dingtian.net.cn
ns2 IN A 172.16.1.101
mailone IN A 172.16.1.5
named.172.16.1
$TTL 86400
@ IN SOA @ root (
2005101701 ; serial (d. adams)
3H ; refresh
15M ; retry
1W ; expiry
1D ) ; minimum
IN NS ns2.dingtian.net.cn
101 IN PTR ns1.dingtian.net.cn
5 IN PTR mailone.dingtian.net.cn
根据上述配置,使用named-checkconf和named-checkzone都没有报错,使用host,nslookup解析localhost和127.0.0.1,甚至www.sina.com.cn都可以成功。
但是解析ns1.dingtian.net.cn或者172.16.1.101时,如下报错:
server: 172.16.1.101
address: 172.16.1.101#503
** server can't find ns1.dingtian.net.cn: SERVFAIL
用grep named /var/log/messages | tail -20 没有返回任何结果
我初学Linux,第一次安装BIND,请各位高手不吝赐教!!!!!!!! |
|