一.DNS的高速缓存

1.Linux_高速缓存DNS配置##安装bind软件包

2.Linux_高速缓存DNS配置##启动DNS服务

3.将DNS加入火墙允许列表

Linux_高速缓存DNS配置

4.更改dns主配置文件,令其可以为所有的主机进行网络解析服务,完成后重启服务。

vim /etc/named.conf

Linux_高速缓存DNS配置

Linux_高速缓存DNS配置

systemctl restart named

5.客户端加入DNS解析

Linux_高速缓存DNS配置

Linux_高速缓存DNS配置

6.在客户端解析域名,dig www.baidu.com

Linux_高速缓存DNS配置

Linux_高速缓存DNS配置

##两次速度有变化,第一次要比第二次快

二.DNS的正向解析

1.注释主配置文件里的forwarders{ 172.25.254.66; };

Linux_高速缓存DNS配置

2.[[email protected] etc]# cd /var/named

3.[[email protected] named]# cp -p named.localhost westos.com.zone

4.编辑/etc/named.rfc1912.zones域文件

Linux_高速缓存DNS配置

5.编辑westos.com.zone

Linux_高速缓存DNS配置

Linux_高速缓存DNS配置

6.重启服务

[[email protected] named]# systemctl restart named

7.dig www.westos.com

Linux_高速缓存DNS配置

CNAME解析轮询

[[email protected] named]# systemctl stop firewall

[[email protected] named]# systemctl start named

[[email protected] named]# systemctl enable named

[[email protected] named]# systemctl disable firewalld

[[email protected] named]# vim westos.com.zone

Linux_高速缓存DNS配置

[[email protected] named]#dig www.westos.com

Linux_高速缓存DNS配置

Linux_高速缓存DNS配置


三.反向解析

1.编辑/etc/named.rfc1912.zones


Linux_高速缓存DNS配置

2.[[email protected] named]# cp -p named.loopback westos.com.ptr

3.编辑westos.com.ptr文件

Linux_高速缓存DNS配置

4.客户端dig -x +地址查看

Linux_高速缓存DNS配置

四.双向解析

1.[[email protected] named]# cp -p westos.com.zone westos.com.inter

2.[[email protected] named]# vim westos.com.inter
Linux_高速缓存DNS配置

3.[[email protected] named]# cp -p /etc/named.rfc1912.zones /etc/named.rfc1912.inter

4.[[email protected] named]# vim /etc/named.rfc1912.inter

Linux_高速缓存DNS配置

5.编辑主配置文件

[[email protected] named]# vim /etc/named.conf

Linux_高速缓存DNS配置

6.分别在166和客户端本身测试

1)166解析出来的是172表示内网

Linux_高速缓存DNS配置

2)除166外所有都是外网,用客户端解析查看为外网192

Linux_高速缓存DNS配置

五.主从集群

再次打开一台虚拟机,重置网络ip=172.25.254.206 ,dns 解析nameserver=172.25.254.206,完成后重置网络,配置yum源

在server虚拟机上

[[email protected] Desktop]# vim /etc/resolv.conf

Linux_高速缓存DNS配置

[[email protected] Desktop]# vim /etc/named.conf

Linux_高速缓存DNS配置

Linux_高速缓存DNS配置

[[email protected] Desktop]# vim /etc/named.rfc1912.zones

Linux_高速缓存DNS配置

[[email protected] Desktop]#dig www.westos.com ##无法同步

在虚拟机Desktop

[[email protected] named]# vim /etc/named.conf

Linux_高速缓存DNS配置

[[email protected] named]# vim /etc/named.rfc1912.inter

Linux_高速缓存DNS配置

[[email protected] named]# vim westos.com.zone

Linux_高速缓存DNS配置


##第三行每改一次网段地址都要更改一次数字

在server虚拟机

[[email protected] named]#systemctl restart named

[[email protected] named]#dig www.westos.com

Linux_高速缓存DNS配置

在desktop虚拟机

[[email protected] named]# vim westos.com.zone
Linux_高速缓存DNS配置

在server虚拟机

[[email protected] Desktop]#systemctl restart named

[[email protected] Desktop]#dig www.westos.com

Linux_高速缓存DNS配置

六.远程更新

1.[ro[email protected] named]# cp -p westos.com.zone /mnt##进行备份

2.[[email protected] named]# vim /etc/named.rfc1912.zones

Linux_高速缓存DNS配置

3.[[email protected] named]# systemctl restart named

4.[[email protected] named]# chmod 770 /var/named

在真机上

Linux_高速缓存DNS配置

5.[[email protected] named]# systemctl restart named

6.[[email protected] named]# vim westos.com.zone##里面文件改变

七.远程更新加密

1.[[email protected] mnt]# dnssec-****** -a HMAC-MD5 -b 128 -n HOST westos##生成钥匙和密码 -a表示加密模式 -b表示加密字节 -n HOST 表示类型是HOST 名称是westos

2.[[email protected] mnt]# cp /etc/rndc.key /etc/westos.key -p

Linux_高速缓存DNS配置

3.[[email protected] mnt]# cat Kwestos.+157+21114.key
westos. IN KEY 512 3 157 /Di3wK4gj0lP0Wy924nDYA==

4.[[email protected] mnt]# vim /etc/westos/key


Linux_高速缓存DNS配置

5.[[email protected] mnt]# vim /etc/named.rfc1912.zones

Linux_高速缓存DNS配置

6.[[email protected] mnt]# vim /etc/named.conf

Linux_高速缓存DNS配置

8.[[email protected] mnt]#systemctl restart named

9.发送密码给允许更新的主机scp Kwestos.+157+21114.key  Kwestos.+157+21114.private:/mnt/

八.DHCP对DNS进行动态更新

服务端:

 1.yum install dhcp -y

 2.cp /usr/share/doc/dhcp-4.2.5/dhcpd.conf.example /etc/dhcp/dhcpd.conf

 3.vim /etc/dhcp/dhcpd.conf

  Linux_高速缓存DNS配置

Linux_高速缓存DNS配置

Linux_高速缓存DNS配置

Linux_高速缓存DNS配置

4.systemctl restart named

5.systemctl restart dhcpd

6.systemctl stop firewalld

客户端:

修改获取ip的方式为dhcp

Linux_高速缓存DNS配置

[[email protected] etc]# hostnamectl set-hostname linux.westos.com

[[email protected] etc]# systemctl restart network

dig linux.westos.com ##即为dhcp分配的ip


相关文章:

  • 2021-09-22
  • 2021-12-04
  • 2021-06-18
  • 2022-01-13
  • 2021-05-29
  • 2021-08-13
  • 2021-11-30
猜你喜欢
  • 2021-11-11
  • 2021-11-03
  • 2021-05-13
  • 2021-09-02
  • 2021-08-01
  • 2021-09-15
相关资源
相似解决方案