[iyunv@www ~]# vim /var/named/test.com.zone #修改正向解析库文件;
$TTL 86400
@ IN SOA ns.test.com. admin.test.com. (
2015052612
2H
10M
7D
1D )
IN NS ns.test.com.
IN NS ns2.test.com. #添加从DNS的NS记录;
IN MX 10 mail.test.com.
ns IN A 192.168.0.111
ns2 IN A 192.168.0.112 #添加从DNS的A记录;
www IN A 192.168.0.113
mail IN A 192.168.0.114
pop3 IN CNAME mail.test.com.
[iyunv@www ~]# vim /var/named/192.168.0.zone #修改反向解析库文件;
$TTL 86400
@ IN SOA ns.test.com. admin.test.com. (
2015051105
2H
10M
7D
1D )
IN NS ns.test.com.
IN NS ns2.test.com. #添加从DNS的NS记录;
IN MX 10 mail.test.com.
111 IN PTR ns.test.com.
112 IN PTR ns2.test.com. #添加从DNS的PTR记录;
113 IN PTR www.test.com.
114 IN PTR mail.test.com.
#------主DNS端------
[iyunv@www ~]# setenforce 0 #关闭SELINUX,以防同步出错;
[iyunv@www ~]# service iptables stop #关闭iptables服务,以防同步传输传输出现问题;
iptables: Setting chains to policy ACCEPT: filter [ OK ]
iptables: Flushing firewall rules: [ OK ]
iptables: Unloading modules: [ OK ]
[iyunv@www ~]# rndc reload #重新载入配置文件;
server reload successful #重载成功!
#------从DNS端------
[iyunv@dns ~]# setenforce 0
[iyunv@dns ~]# service iptables stop
[iyunv@dns ~]# service named start # 启动DNS named服务;
Starting named: [ OK ] #启动成功!
#------从DNS会自动与主DNS同步------
4、查看验证配置结果
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
#------主DNS端------
[iyunv@www ~]# tail /var/log/messages
May 27 09:03:38 www named[2176]: client 192.168.0.112#35288: transfer of 'test.com/IN': AXF
R started #正向解析库文件完全同步开始;
May 27 09:03:38 www named[2176]: client 192.168.0.112#35288: transfer of 'test.com/IN': AXF
R ended #正向解析库文件完全同步完成;
May 27 09:03:38 www named[2176]: client 192.168.0.112#43370: transfer of '0.168.192.in-addr
.arpa/IN': AXFR started #反向解析库文件完全同步开始;
May 27 09:03:38 www named[2176]: client 192.168.0.112#43370: transfer of '0.168.192.in-addr
.arpa/IN': AXFR ended #反向解析库文件完全同步完成;
#------从DNS端------
[iyunv@dns ~]# ll /var/named/slaves
total 8
-rw-r--r--. 1 named named 448 May 27 10:18 192.168.0.zone #正向解析库文件已经同步过来了;
-rw-r--r--. 1 named named 431 May 27 10:14 test.com.zone #反向解析库文件已经同步过来了。
test.com name server ns.test.com. #成功查询到主DNS;
test.com name server ns2.test.com. #成功查询到从DNS
[iyunv@dns ~]# host -t MX test.com 192.168.0.112 #查询test.com的MX记录;
Using domain server:
Name: 192.168.0.112
Address: 192.168.0.112#53
Aliases:
test.com mail is handled by 10 mail.test.com. #成功查询到邮件服务器,优先级为10;
[iyunv@dns ~]# host -t A www.test.com 192.168.0.112 #查询www.test.com对应的ip地址;
Using domain server:
Name: 192.168.0.112
Address: 192.168.0.112#53
Aliases: