-
dig -t查詢單獨的記錄: #dig -t a baidu.com ; <<>> DiG 9.8.2rc1-RedHat-9.8.2-0.17.rc1.el6 <<>> -t a baidu.com ;; global options: +cmd ;; Got answer: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 48165 ;; flags: qr rd ra; QUERY: 1, ANSWER: 4, AUTHORITY: 0, ADDITIONAL: 0 ;; QUESTION SECTION: ;baidu.com. IN A ;; ANSWER SECTION: baidu.com. 227 IN A 220.181.57.217 baidu.com. 227 IN A 180.149.132.47 baidu.com. 227 IN A 123.125.114.144 baidu.com. 227 IN A 111.13.101.208 ;; Query time: 36 msec ;; SERVER: 114.114.114.119#53(114.114.114.119) ;; WHEN: Mon Aug 29 20:51:30 2016 ;; MSG SIZE rcvd: 91查看全部
-
#nslookup www.baidu.com Server:114.114.114.119 Address:114.114.114.119#53 Non-authoritative answer: www.baidu.com canonical name = www.a.shifen.com. Name:www.a.shifen.com Address:14.215.177.37 Name:www.a.shifen.com Address:14.215.177.38 nslookup可以進入交互模式單獨查找SOA,A等等記錄 #nslookup >set q=soa >baidu.com Server:114.114.114.119 Address:114.114.114.119#53 Non-authoritative answer: baidu.com origin = dns.baidu.com mail addr = sa.baidu.com serial = 2012132847 refresh = 300 retry = 300 expire = 2592000 minimum = 7200 Authoritative answers can be found from: >set q=a >baidu.com Server:114.114.114.119 Address:114.114.114.119#53 Non-authoritative answer: Name:baidu.com Address:180.149.132.47 Name:baidu.com Address:123.125.114.144 Name:baidu.com Address:111.13.101.208 Name:baidu.com Address:220.181.57.217查看全部
-
#host www.baidu.com #host -t SOA baidu.com baidu.com has SOA record dns.baidu.com. sa.baidu.com. 2012132847 300 300 2592000 7200 #host -t NS baidu.com baidu.com name server dns.baidu.com. baidu.com name server ns2.baidu.com. baidu.com name server ns3.baidu.com. baidu.com name server ns4.baidu.com. baidu.com name server ns7.baidu.com. #host -t A baidu.com baidu.com has address 220.181.57.217 baidu.com has address 123.125.114.144 baidu.com has address 111.13.101.208 baidu.com has address 180.149.132.47查看全部
-
host文件位置:/etc/resolv.conf # host www.baidu.com www.baidu.com is an alias for www.a.shifen.com. www.a.shifen.com has address 14.215.177.38 www.a.shifen.com has address 14.215.177.37 #nslookup www.baidu.com Server: 114.114.114.119 Address: 114.114.114.119#53 Non-authoritative answer: www.baidu.com canonical name = www.a.shifen.com. Name: www.a.shifen.com Address: 14.215.177.38 Name: www.a.shifen.com Address: 14.215.177.37 #dig www.baidu.com ; <<>> DiG 9.8.2rc1-RedHat-9.8.2-0.17.rc1.el6 <<>> www.baidu.com ;; global options: +cmd ;; Got answer: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 33977 ;; flags: qr rd ra; QUERY: 1, ANSWER: 3, AUTHORITY: 0, ADDITIONAL: 0 ;; QUESTION SECTION: ;www.baidu.com. IN A ;; ANSWER SECTION: www.baidu.com. 546 IN CNAME www.a.shifen.com. www.a.shifen.com. 199 IN A 14.215.177.38 www.a.shifen.com. 199 IN A 14.215.177.37 ;; Query time: 42 msec ;; SERVER: 114.114.114.119#53(114.114.114.119) ;; WHEN: Mon Aug 29 20:33:36 2016 ;; MSG SIZE rcvd: 90查看全部
-
逆向解析重點總結: 1.逆向解析域in-addr.arpa的書寫格式 2.常用于郵件服務的域名解析 3.配置文件權限需要named用戶可讀取,沒有權限啟動named服務會報錯 -rw-r--r--. 1 root root 191 Aug 29 19:40 192.168.199.zone查看全部
-
實戰場景3代碼: 1.編輯/var/named/imooc.com.zone文件 $TTL 7200 imooc.com. IN SOA imooc.com. ho.imooc.com. (222 1H 15M 1W 1D) imooc.com. IN NS dns1.imooc.com. dns1.imooc.com. IN A 192.168.199.202 www.xianlaiwan.cn. IN A 117.121.101.41 @ IN MX 10 mail mail IN A 192.168.199.203 2.重啟named服務 service named restart 3.正向解析本機檢測 dig @127.0.0.1 mail.imooc.com 4.配置反向解析域,編輯/etc/named.conf文件 options{ directory "/var/named"; }; zone "imooc.com"{ type master; file "imooc.com.zone"; }; zone "iaskjob.com"{ type master; file "iaskjob.com.zone"; }; zone "199.168.192.in-addr.arpa"{ type master; file "192.168.199.zone"; }; 5.編輯/var/named/192.168.199.zone文件 $TTL 3600 @ IN SOA 199.168.192.in-addr.arpa. iaskjob.163.com. ( 2014012200 1H 15M 1W 1D ) @ IN NS dns1.imooc.com. 202 IN PTR dns1.imooc.com. 203 IN PTR mail.imooc.com. 6.重啟named服務 service named restart 7.反向解析本機測試 dig -x 192.168.199.203 @127.0.0.1查看全部
-
正反向解析查看全部
-
實戰場景2代碼: 1.先ping imooc的ip ping www.xianlaiwan.cn-->117.121.101.40 2.修改/var/named/imooc.com.zone文件,將www的A記錄IP地址替換成imooc的IP地址 $TTL 7200 imooc.com. IN SOA imooc.com. ho.imooc.com. (222 1H 15M 1W 1D) imooc.com. IN NS dns1.imooc.com. dns1.imooc.com. IN A 192.168.199.202 www.xianlaiwan.cn. IN A 117.121.101.41 3.修改/etc/named.conf文件,添加zone "iaskjob.com" options{ directory "/var/named"; }; zone "imooc.com"{ type master; file "imooc.com.zone"; }; zone "iaskjob.com"{ type master; file "iaskjob.com.zone"; }; 4.新建iaskjob.com.zone文件并編輯 vim /var/named/iaskjob.com.zone $TTL 7200 iaskjob.com. IN SOA isakjob.com. iaskjob.163.com. (4012100 1H 15M 1W 1D) iaskjob.com. IN NS dns1.iaskjob.com. dns1.iaskjob.com. IN A 192.168.199.202 imooc.iaskjob.com. IN CNAME www.xianlaiwan.cn. 5.重啟named服務 service named restart 6.本機測試 dig @127.0.0.1 imooc.iaskjob.com 7.遠程測試 物理機設置DNS為虛擬機的IP(192.168.199.202) 物理機運行nslookup imooc.iaskjob.com 能解析到imooc的IP地址就表示正確 補充:重啟服務如有報錯查看/var/log/messages tail -f /var/log/messages查看全部
-
需要注意的地方查看全部
-
實戰場景1代碼: 1.將原有/etc/named.conf文件更名備份 mv /etc/named.conf /etc/named.conf_default 2.創建/etc/named.conf文件并編輯 vim /etc/named.conf options{ directory "/var/named"; }; zone "imooc.com"{ type master; file "imooc.com.zone"; }; 3.創建/var/named/imooc.com.zone文件并編輯 vim /var/named/imooc.com.zone $TTL 7200 imooc.com. IN SOA imooc.com. ho.imooc.com. (222 1H 15M 1W 1D) imooc.com. IN NS dns1.imooc.com. dns1.imooc.com. IN A 192.168.199.202 www.xianlaiwan.cn. IN A 2.2.2.2 4.重啟named服務 service named restart 5.本機測試 dig @192.168.199.202 www.xianlaiwan.cn 補充:重啟服務如有報錯查看/var/log/messages tail -f /var/log/messages查看全部
-
1、啟動bind服務:#/etc/init.d/named start 2、主配置文件:/etc/named.conf(配置項如下) options{}-整個bind使用的全局選項(監聽端口;數據文件、緩存存儲位置;權限加密的控制) logging{}-服務日志選項(日志輸出;日志輸出級別;日志輸出位置等) zone.{}-DNS域解析(解析記錄位置) listen-on port 53 {127.0.0.1} //默認監聽所有地址 directory //存放著數據庫的控制文件,配置的zone,還有主的配置文件目錄 dump-file //DNS解析過的一些緩存信息存放位置; statistics-file //靜態解析文件; memstatistics-file //內存的統計信息 allow-query //權限信息 dnssec-enable、dnssec-validation、dnssec-lookaside //加密信息 channel //控制日志輸出 file //輸出文件位置 severity //控制日志輸出詳細級別以及安全重要級別查看全部
-
Bind安裝: redhat:#yum install bind bind-chroot ubuntu:$sudo apt-get install bind9 確認安裝:#rpm -qa grep bind 查看安裝內容:#rpm -ql bind more查看全部
-
DNS解析記錄分類: 1、A記錄:由域名服務器返回IP地址(基本、最多的記錄) 2、CNAME:方便多個域名解析同一個IP地址(如圖創建一個CNAME記錄指向有A記錄的域名) 3、NS記錄:bind服務器不能進行權威解析時,會回一個NS記錄給用戶,這時用戶再發起另一臺bind服務器的權威解析請求。 4、MX記錄:全稱是郵件交換記錄,在使用郵件服務器的時候,MX記錄是無可或缺的,比如A用戶向B用戶發送一封郵件,那么他需要向DNS查詢B的MX記錄,DNS在定位到了B的MX記錄后反饋給A用戶,然后A用戶把郵件投遞到B用戶的MX記錄服務器里。查看全部
-
1、域名服務器存在域名記錄,則直接返回IP(遞歸查詢),否則進行迭代查詢(如圖) 2、圖中名字服務器都可以用到bind服務,紅框中的bind具有權威解析,因為他返回域名對應的權威解析IP地址查看全部
-
DNS中的域名: 例:www.xianlaiwan.cn == www.xianlaiwan.cn. 注釋:www.xianlaiwan.cn.中,最后的“.”是根域;com.是一級域名;imooc.com.是二級域名查看全部
舉報
0/150
提交
取消