DNS
DNS¤ÎºÆµ¢Ì䤤¹ç¤ï¤»
DNS¤¬ºÆµ¢Ì䤤¹ç¤ï¤»¤ò²Äǽ¤Ë¤·¤Æ¤¤¤ë¾ì¹ç¡¢¥ë¡¼¥È¥Í¡¼¥à¥µ¡¼¥Ð¤«¤é½ç¤ËÌ䤤¹ç¤ï¤»¤ò³«»Ï¤·¡¢¼«Ê¬¤¬¥¯¥é¥¤¥¢¥ó¥È¤Ë·ë²Ì¤òÊÖ¤¹¡£¡Êa.com¤Î¥É¥á¥¤¥ó¥µ¡¼¥Ð¤¬b.com¤Î¥É¥á¥¤¥ó¤Î̾Á°²ò·è¤ò¤·¤Æ¡¢¥¯¥é¥¤¥¢¥ó¥È¤Ë·ë²Ì¤ò¤«¤¨¤¹¡Ë
²Äǽ¤Ë¤·¤Æ¤¤¤Ê¤¤¾ì¹ç¡¢¼«Ê¬¤¬¤â¤Ã¤Æ¤¤¤ë¥É¥á¥¤¥ó¾ðÊó°Ê³°¤Ë¤Ï²óÅú¤ò¤·¤Ê¤¤¡£ ¡Êa.com°Ê³°¤Î¾ðÊó¤ÏÃΤê¤Þ¤»¤ó¤È¸À¤¦¡Ë
DNS¥¥ã¥Ã¥·¥å¥Ý¥¤¥º¥Ë¥ó¥°
¸Å¤¤DNS¥µ¡¼¥Ð¤Ç¤Ï¤½¤Î¤Þ¤Þ¼õ¤±¼è¤Ã¤Æ¤·¤Þ¤¦¤Î¤Ç¡¢´Ö°ã¤Ã¤¿¾ðÊó¤ò¥¥ã¥Ã¥·¥å¤·¤Æ¤·¤Þ¤¦¡£
¤³¤ì¤Ë¤è¤ê¡¢ÉÔÀµ¤Ê¥µ¥¤¥È¤Ø¤ÎͶƳ¤¬¤Ê¤µ¤ì¤ë¡£
¥Õ¥¡¡¼¥ß¥ó¥°º¾µ½¤Ë¤Ä¤Ê¤¬¤ë¡£
DNS¤Î¥¾¡¼¥óžÁ÷
¥×¥é¥¤¥Þ¥ê¤«¤é¥»¥«¥ó¥À¥ê¤ØÄÌ¿®¤¹¤ë¤Î¤Ç¤Ï¤Ê¤¤¡£
¡¦Êѹ¹¤µ¤ì¤Æ¤¤¤ë¤«¤Ï¥·¥ê¥¢¥ë¡ÊÈÖ¹æ¡Ë¤ò³Îǧ¤¹¤ë¡£
¡¦DNS¤ÏÄ̾ïUDP¤Î53¤Ç¤¢¤ë¤¬¡¢¥¾¡¼¥óžÁ÷¤Ë¸Â¤Ã¤Æ¤Ï¿®ÍêÀ¤¬½ÅÍ×
¤Ç¤¢¤ë¤¿¤á¡¢TCP¤òÍøÍѤ¹¤ë¡£
DNS¥¹¥×¡¼¥Õ¥£¥ó¥°Âкö
ºÆµ¢Ì䤤¹ç¤ï¤»¤ò²Äǽ¤Ë¤·¤Æ¤¤¤ë¾ì¹ç¡¢¥ë¡¼¥È¥Í¡¼¥à¥µ¡¼¥Ð¤«¤é½ç¤ËÌ䤤¹ç¤ï¤»¤ò³«»Ï¤·¡¢¼«Ê¬¤¬¥¯¥é¥¤¥¢¥ó¥È¤Ë·ë²Ì¤òÊÖ¤¹¡£
¤³¤ÎºÝ¤Ë¡¢¤¦¤½¤Î¾ðÊó¤òή¤µ¤ì¤ë¤È¡¢DNS¥¹¥×¡¼¥Õ¥£¥ó¥°¤Î¶²¤ì¤¬¤¢¤ë¡£
DNS¥¹¥×¡¼¥Õ¥£¥ó¥°¤Ë¤Ê¤é¤Ê¤¤¤è¤¦¤Ë¡¢¼«Ê¬¼«¿È¤¬´ÉÍý¤·¤Æ¤¤¤ë¥¾¡¼¥ó¾ðÊó¤Î¤ß¤Ë±þÅú¤¹¤ë¡£¤Ä¤Þ¤ê¡¢¡ÖºÆµ¢Ì䤤¹ç¤ï¤»¡ÊºÆµ¢¸¡º÷¡Ë¡×¤ò¼õ¤±ÉÕ¤±¤Ê¤¤¡£
Ä̾ï¤Ï¥Õ¥©¥ï¡¼¥À¤òÀßÄꤷ¤Æ¡¢Â¾¤ÎDNS¤ØÌ䤤¹ç¤ï¤»¤ë¤è¤¦¤Ë¤¹¤ë¤³¤È¤¬Â¿¤¤¤È»×¤¦¡£
DNS¤ÎÀßÄê
fedora Core¤Î¥À¥¦¥ó¥í¡¼¥É¤ª¤è¤Ó¥¤¥ó¥¹¥È¡¼¥ë
¥À¥¦¥ó¥í¡¼¥É¥µ¥¤¥È¤«¤é¥À¥¦¥ó¥í¡¼¥É¡£°Ê²¼¤Î¥µ¥¤¥È¤â»²¾È¤¢¤ì¡£
http://fedorasrv.com/fedora5.shtml
SElinux¤Ï¤¤¤ì¤Ê¤¤¤Û¤¦¤¬´Êñ¡£Æþ¤ì¤Æ¤·¤Þ¤Ã¤Æ¤â¤Ï¤º¤¹¤³¤È¤¬¤Ç¤¤ë¡£
[SElinux¤Î²ò½üÊýË¡]
/etc/selinux/config¤Ë¤ª¤¤¤Æ
SELINUX=disabled¤È¤¹¤ë¡£
¤½¤Î¸å¡¢¥µ¡¼¥Ð¤òºÆµ¯Æ°¤¹¤ë¡£
¢¡BIND¤Î¥¤¥ó¥¹¥È¡¼¥ë
rpm¤È¤·¤Æ¤Ïbind¤Î¤ß¤òÆþ¤ì¤ì¤Ð¤è¤¤¡£chroot¤òÆþ¤ì¤ë¤È¥Ñ¥¹¤¬ÊѤï¤ë¤Î¤ÇÃí°Õ¡£
ºÇ¶á¤Ïnamed.conf¤Î¥µ¥ó¥×¥ë¤¬Æþ¤é¤Ê¤¤¤Î¤«¤Ê¡©
¤½¤Î¾ì¹ç¡¢system-config-bind¤È¤¤¤¦RPM¤òÆþ¤ì¤Æsystem-config-bind¤ò¼Â¹Ô¤¹¤ë¤ÈGUI¥Ä¡¼¥ë¤¬µ¯Æ°¤¹¤ë¡£
¤½¤ÎºÝ¤Ë¡¢¥µ¥ó¥×¥ë¤Înamed.conf¤¬ºî¤é¤ì¤ë¡£
¢¡ÀßÄê¥Õ¥¡¥¤¥ë
/etc/named.conf
¥¾¡¼¥ó¤Î´ðËܾðÊó¤òÀßÄꤹ¤ë
(1)Àµ°ú¤¾ðÊó
zone "network-exam.com" {¡¡¡¡¢«´ÉÍý¤¹¤ë¥É¥á¥¤¥ó
¡¡type master; ¡¡¡¡¡¡ ¢«¥×¥é¥¤¥Þ¥ê¤À¤è
¡¡file "network-exam.zone";¡¡¢«¾Ü¤·¤¯¤Ïº¸¤Î¥Õ¥¡¥¤¥ë¤Ë½ñ¤¤¤Æ¤Þ¤¹¤è¤È¤¤¤¦°ÕÌ£
¡¡allow-update {none;}; ¡¡¢«¤È¤ê¤¢¤¨¤º¤½¤Î¤Þ¤Þ¤Ç
};
(2)µÕ°ú¤¾ðÊó
zone "1.168.192.in-addr.arpa" {
¡¡type master;
¡¡file "1.168.192.rev";¡¡¢«¾Ü¤·¤¯¤Ïº¸¤Î¥Õ¥¡¥¤¥ë¤Ë½ñ¤¤¤Æ¤Þ¤¹¤è¤È¤¤¤¦°ÕÌ£¡£
¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡Ì¾Á°¤Ï¤Ê¤ó¤Ç¤âÎɤ¤¡£
¡¡allow-update {none;}; ¡¡¢«¤È¤ê¤¢¤¨¤º¤½¤Î¤Þ¤Þ¤Ç
};
¢¡ÀßÄê¥Õ¥¡¥¤¥ë£²
/var/named/network-exam.zone
$TTL 86400
@ IN¡¡ SOA¡¡ns1.network-exam.com. mail.network-exam.com. (
¡¡¡¡ 2007060101 ; serial
¡¡¡¡¡¡¡¡3600 ; refresh
¡¡¡¡¡¡¡¡900 ; retry
¡¡¡¡¡¡¡¡604800 ; expire
¡¡¡¡¡¡¡¡86400 ; minimum
¡¡¡¡¡¡¡¡);
IN NS¡¡ns1.network-exam.com.¡¡¡¡¢«¡¡NS¡Ê¥Í¡¼¥à¥µ¡¼¥Ð¡Ë¤ò»ØÄê
¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡network-exam.com. IN NS ns1¡¦¡¦¡¦¤È¤Ê¤ë¤³¤È¤³¤í¤ò¾Êά¤·¤Æ¤¤¤ë¡£
IN MX 10 ns1.network-exam.com.¡¡¢«¡¡MX¡Ê¥á¡¼¥ë¥µ¡¼¥Ð¡Ë¤ò»ØÄê
ns1 IN A 192.168.1.5¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¢«¡¡A¡Ê¥Û¥¹¥È¡Ë¤ò»ØÄê
¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡ns1.network-exam.com.¡¡IN¡¡A¡¡192¡¦¡¦¤È¤Ê¤ë¤³¤È¤í¤ò¾Êά¡£
www IN A 192.168.1.20
¢¡ÀßÄê¥Õ¥¡¥¤¥ë£³
/var/named/1.168.192.rev
$TTL 86400
1.168.192.in-addr.arpa. IN¡¡ SOA¡¡ns1.network-exam.com. mail.network-exam.com. (
¡¡¡¡ 2007060101 ; serial
¡¡¡¡¡¡¡¡3600 ; refresh
¡¡¡¡¡¡¡¡900 ; retry
¡¡¡¡¡¡¡¡604800 ; expire
¡¡¡¡¡¡¡¡86400 ; minimum
¡¡¡¡¡¡¡¡);
IN NS¡¡ns1.network-exam.com.
5 IN PTR ns1.network-exam.com.
20 IN PTR¡¡www.network-exam.com
¢¡ÀßÄê¤Î³Îǧ
¡Ê£±¡Ë¥í¥°¥Õ¥¡¥¤¥ë¤Î³Îǧ
/var/log/messeges
¤Ë¥¨¥é¡¼¤¬Ìµ¤±¤ì¤Ð¤è¤¤¡£Àµ¾ï¤Ç¤¢¤ì¤Ð¡¢³ÆÀßÄê¥Õ¥¡¥¤¥ë¤¬¥í¡¼¥É¤µ¤ì¤¿¤³¤È¤ò¥·¥ê¥¢¥ëNO¤È¤È¤â¤Ëɽ¼¨¤µ¤ì¤ë¡£
¡Ê£²¡Ëdig¥³¥Þ¥ó¥É¤Ç¤Î³Îǧ
¡dig ¥É¥á¥¤¥ó̾
¢dig¡¡-x¡¡IP¥¢¥É¥ì¥¹¡¡¡Ê¤³¤³¤Ç-x¤òÆþ¤ì¤ë¤Î¤ÏµÕ°ú¤¤Ë¤Ê¤ë¤«¤é¡Ë
¡Ê£³¡Ënslookup¤Ç³Îǧ
> server 192.168.1.5
Default Server: [192.168.1.5]
Address: 192.168.1.5
> www.network-exam.com
Server: [192.168.1.5]
Address: 192.168.1.5
Name: www.network-exam.com
Address: 192.168.1.20
> set type=MX
> network-exam.com
Server: [192.168.1.5]
Address: 192.168.1.5
network-exam.com MX preference = 10, mail exchanger = ns1.network-exam.com
network-exam.com nameserver = ns1.network-exam.com
ns1.network-exam.com internet address = 192.168.1.5
