[LUGOS] Lokalni in zunanji DNS

Rok Papez rok.papez at lugos.si
Sun Oct 10 14:18:52 CEST 2004


Živjo!

Dne nedelja 10 oktober 2004 11:11 je Andrej Krevl napisal(a):

> - rabim DNS server na linux routerju, ki bo authoritative za
> mojadomenca.net in bo vseboval "zunanje" zapise (npr.
> www.mojadomenca.net, mail.mojadomenca.net)
> - rabim se en DNS server na lokalni mrezi, ki bo vseboval zapise o
> lokalnih racunalnikih, "ostale" zahteve pa forwardal linux routerju

Rabiš en DNS in vse urediš brez prevelikih komplikacij. Jaz imam urejeno 
takole (bind 8):

Iz /etc/named.conf:
acl secondaries {
        /* sekundarci */
        x.x.x.x;
        127.0.0.1;
};

acl local-networks {
        127.0.0.1;
        10.0.0.0/8;
};

options {
        directory "/var/named";
        allow-transfer { local-networks; };
        notify no;
        statistics-interval 0;
        allow-query { local-networks; };
        allow-recursion { local-networks; };
        transfer-format many-answers;
        version "";
[...]

##############
# Misc zones #
##############
zone "bind" chaos {
        type master;
        file "master/chaos.zone";
        allow-query { none; };
};

zone "." in {
       type hint;
       file "root.cache";
};

#############
# Home zone #
#############
zone "10.in-addr.arpa" in {
        type master;
        file "master/10";
};

zone "myhome" in {
        type master;
        file "master/myhome";
};

###################
# mojazunanjadomena zone #
###################
zone "mojazunanjadomena.tld" in {
        type master;
        notify yes;
        file "master/mojazunanjadomena.tld";
        allow-transfer { secondaries; };
        allow-query { any; };
};

##############
# slave zone #
##############
zone "tujazona.tld" in {
        type slave;
        file "slave/tujazona";
        masters { y.y.y.y; };
        allow-query { any; };
};

> Se vprasanje st. 2. Mail server je bolje postviti kar na linux router
> ali bi lahko kompliciral s forwardanjem portov na neko lokalno masino?

Na routerju.

-- 
best regards,
Rok Papez.




More information about the lugos-list mailing list