質問編集履歴
1
named.confの修正行いました。
title
CHANGED
File without changes
|
body
CHANGED
@@ -23,11 +23,74 @@
|
|
23
23
|
```
|
24
24
|
|
25
25
|
```named
|
26
|
+
//
|
27
|
+
// named.conf
|
28
|
+
//
|
29
|
+
// Provided by Red Hat bind package to configure the ISC BIND named(8) DNS
|
30
|
+
// server as a caching only nameserver (as a localhost DNS resolver only).
|
31
|
+
//
|
32
|
+
// See /usr/share/doc/bind*/sample/ for example named configuration files.
|
33
|
+
//
|
34
|
+
|
35
|
+
options {
|
36
|
+
#DNSサーバの待ち受けIPアドレスの設定
|
37
|
+
listen-on port 53 {
|
38
|
+
52.222.222.222;
|
39
|
+
172.11.11.11; #DNSサーバのプライベートIPを指定
|
40
|
+
};
|
41
|
+
#listen-on-v6 port 53 { ::1; }; #IPv6は使用しないためコメントアウト
|
42
|
+
directory "/var/named";
|
43
|
+
dump-file "/var/named/data/cache_dump.db";
|
44
|
+
statistics-file "/var/named/data/named_stats.txt";
|
45
|
+
memstatistics-file "/var/named/data/named_mem_stats.txt";
|
46
|
+
allow-query { localhost; };
|
47
|
+
recursion yes;
|
48
|
+
|
49
|
+
dnssec-enable yes;
|
50
|
+
dnssec-validation yes;
|
51
|
+
|
52
|
+
/* Path to ISC DLV key */
|
53
|
+
bindkeys-file "/etc/named.iscdlv.key";
|
54
|
+
|
55
|
+
managed-keys-directory "/var/named/dynamic";
|
56
|
+
};
|
57
|
+
|
58
|
+
logging {
|
59
|
+
channel "default-log" {
|
60
|
+
file "/var/log/named/default.log" versions 5 size 10M;
|
61
|
+
severity debug;
|
62
|
+
print-time yes;
|
63
|
+
print-severity yes;
|
64
|
+
print-category yes;
|
65
|
+
};
|
66
|
+
|
67
|
+
category default { "default-log"; };
|
68
|
+
};
|
69
|
+
|
70
|
+
#ローカルネットワークを定義する
|
71
|
+
acl localnet {
|
72
|
+
許可したいIPを書いてます。
|
73
|
+
};
|
74
|
+
|
75
|
+
#内部向け用の記述
|
76
|
+
view "internal" {
|
77
|
+
match-clients { localnet; }; #定義したローカルネットワークに合致した場合、view内の処理をする
|
78
|
+
allow-query { localnet; }; #定義したローカルネットワークのみ問い合わせを許可する
|
79
|
+
|
80
|
+
zone "." IN {
|
81
|
+
type hint;
|
82
|
+
file "named.ca";
|
83
|
+
};
|
84
|
+
|
85
|
+
#正引きゾーン
|
26
|
-
zone "hogege.jp" IN {
|
86
|
+
zone "hogege.jp" IN {
|
27
|
-
type
|
87
|
+
type master;
|
28
88
|
file "/etc/named/hogege.jp.zone";
|
29
|
-
masters { 52.222.222.222; };
|
30
89
|
};
|
90
|
+
|
91
|
+
include "/etc/named.rfc1912.zones";
|
92
|
+
include "/etc/named.root.key";
|
93
|
+
};
|
31
94
|
```
|
32
95
|
|
33
96
|
### 試したこと
|