Bind9反向区域复制错误

神话

我的测试环境中有2个DNS服务器:

  • Centos 7 x64 VM-运行BIND 9.9.4-RedHat-9.9.4-50.el7_3.1 PRIMARY DNS
  • Raspbian GNU / Linux 8 Jessie-运行BIND 9.9.5-9 + deb8u12-Raspbian-次要DNS

我的配置对区域文件正常工作对反向区域文件不起作用。辅助站点的DNS日志报告以下内容:

Jul 11 09:04:44 dns2-ph-village-rc1 named[3831]: zone 0.244.224.10/IN: refresh: non-authoritative answer from master 10.224.244.129#53 (source 0.0.0.0#0)

反向区域文件的配置为:

$ORIGIN 224.10.in-addr.arpa.
$TTL 86400
@ IN  SOA     dns1-vr1.network.ddns.net. root.network.ddns.net. (
    2017071001  ;Serial
    3600        ;Refresh
    1800        ;Retry
    604800      ;Expire
    86400       ;Minimum TTL for NX Domain (non existent)
)
@       IN  NS      dns1-vr.network.ddns.net.
@       IN  NS      dns2-ph-village-rc1.network.ddns.net.
129.244 IN      PTR     dns1-vr.network.ddns.net.
4.246   IN      PTR     dns2-ph-village-rc1.network.ddns.net.
3.246   IN      PTR     gateway2-ph-village-rc1.network.ddns.net.

在PRIMARY上named.conf的配置为:

; omitting acl declarations
options {
    listen-on-v6 { none; };
    directory       "/var/named";
    dump-file       "/var/named/data/cache_dump.db";
    statistics-file "/var/named/data/named_stats.txt";
    memstatistics-file "/var/named/data/named_mem_stats.txt";
    allow-query     { mynet; };
    allow-transfer  { inner; };
    recursion yes;
    notify yes;
    dnssec-enable no;
    dnssec-validation no;
    dnssec-lookaside auto;
    bindkeys-file "/etc/named.iscdlv.key";
    managed-keys-directory "/var/named/dynamic";
    pid-file "/run/named/named.pid";
    session-keyfile "/run/named/session.key";
};
; omitting log declarations
view "inside" {
    match-clients {
            mynet;
    };
    zone "." IN {
            type hint;
            file "named.ca";
    };
    zone "network.ddns.net" IN {
            type master;
            file "network.ddns.net.lan";
            allow-update { none; };
    };
    zone "224.10.in-addr.arpa" IN {
            type master;
            file "0.244.224.10.db";
            allow-update { none; };
    };
include "/etc/named.rfc1912.zones";
include "/etc/named.root.key";
};

次要DNS上的named.conf是:

include "/etc/bind/named.conf.options";
include "/etc/bind/named.conf.local";
include "/etc/bind/named.conf.default-zones";
include "/etc/bind/named.conf.external-zones";

SECONDARY上的named.conf.external-zones是:

zone "network.ddns.net" IN {
        type slave;
        masters { 10.224.244.129; };
        file "/etc/bind/slaves/network.ddns.net.lan";
        notify no;
};
zone "0.244.224.10" IN {
        type slave;
        masters { 10.224.244.129; };
        file "/etc/bind/slaves/0.244.224.10.db";
        notify no;
};

在/ etc / bind / slaves /中创建network.ddns.net.lan

0.224.244.10是NOT在/ etc /结合/从站/创建

罗伊马

您在从站上的反向区域声明的配置中有一个错误。

zone "0.244.224.10" IN { ... }

应该

zone "224.10.in-addr.arpa" IN { ... }

令我惊讶的是,这个错误没有被发现并作为配置错误记录在从站的日志文件中。(您确定它没有告诉过您吗?)

本文收集自互联网,转载请注明来源。

如有侵权,请联系[email protected] 删除。

编辑于
0

我来说两句

0条评论
登录后参与评论

相关文章