{"id":44,"date":"2023-06-05T13:09:00","date_gmt":"2023-06-05T05:09:00","guid":{"rendered":"http:\/\/pro369.com\/linux\/?p=44"},"modified":"2019-07-13T07:48:00","modified_gmt":"2019-07-13T07:48:00","slug":"dns%e9%9b%99%e5%90%91%e8%a7%a3%e6%9e%90%e6%9c%8d%e5%8b%99%ef%bc%88linux%e4%b8%bb%e6%a9%9f%e4%bc%ba%e6%9c%8d%e5%99%a8%e6%9e%b6%e8%a8%ad%e6%8a%80%e8%a1%93%ef%bc%89domain-name-server","status":"publish","type":"post","link":"https:\/\/por.tw\/linux\/dns%e9%9b%99%e5%90%91%e8%a7%a3%e6%9e%90%e6%9c%8d%e5%8b%99%ef%bc%88linux%e4%b8%bb%e6%a9%9f%e4%bc%ba%e6%9c%8d%e5%99%a8%e6%9e%b6%e8%a8%ad%e6%8a%80%e8%a1%93%ef%bc%89domain-name-server\/","title":{"rendered":"DNS\u96d9\u5411\u89e3\u6790\u670d\u52d9\uff08Linux\u4e3b\u6a5f\u4f3a\u670d\u5668\u67b6\u8a2d\u6280\u8853\uff09Domain Name Server"},"content":{"rendered":"<p><font size=\"3\" style=\"background-color: #ffff00\"><strong>DNS\u96d9\u5411\u89e3\u6790\u670d\u52d9\uff08Linux\u4e3b\u6a5f\u4f3a\u670d\u5668\u67b6\u8a2d\u6280\u8853\uff09Domain Name Server<\/strong><\/font><\/p>\n<p> \u672c\u6587\u4e26\u4e0d\u5728\u4ecb\u7d39\u5f9e\u7121\u5230\u6709\u5beb\u51fa dns \u5b8c\u6574\u7684\u8a2d\u5b9a\u6a94\uff0c\u4e3b\u8981\u9084\u662f\u5148\u5229\u7528 Linux\/Linux Server \u63d0\u4f9b\u7684\u5de5\u5177\uff0c\u7522\u751f\u57fa\u672c\u8a2d\u5b9a\u6a94\uff0c\u518d\u9032\u4e00\u6b65\u89e3\u91cb\u5176\u4e2d\u6db5\u7fa9\uff0c\u4ee5\u53ca\u5982\u4f55\u4fee\u6539\u65b0\u589e\uff0f\u4fee\u6539\u4e3b\u6a5f\u540d\u7a31\u5c0d\u6620\u3002<\/p>\n<p> <font size=\"4\" color=\"#800000\"><strong>DNS\u958b\u555fPort<\/strong><\/font><\/p>\n<p> &nbsp;&nbsp;&nbsp; * TCP anynet 53<br \/> &nbsp;&nbsp;&nbsp; * UDP anynet 53<br \/> &nbsp;&nbsp;&nbsp; * TCP localhost 953 (\u7ba1\u7406\u6307\u4ee4\u7528)<\/p>\n<p> <font size=\"4\" color=\"#800080\"><strong>\u5168\u7403DNS\u7ba1\u7406<\/strong><\/font><\/p>\n<p> DNS\u662f Domain Name Server \u7684\u7c21\u7a31\uff0c\u5b83\u7684\u529f\u80fd\u5728\u65bc\u628a IP(v4 and v6) \u4f4d\u5740\u8207\u82f1\u6587\u7db2\u5740\u5efa\u7acb\u8d77\u5c0d\u7167\u8868\uff0c\u4ee5\u63d0\u4f9b\u96d9\u5411\u89e3\u6790\u7684\u670d\u52d9\u3002<br \/> \u5728 InterNet \u4e0a\uff0c\u6240\u6709\u7684 DNS Server \u662f\u4ee5\u968e\u5c64\u7684\u65b9\u5f0f\uff0c\u5c64\u5c64\u6388\u6b0a\uff0c\u5c64\u5c64\u7ba1\u7406\u3002\u4f8b\u5982\uff1a\u300cedu.tw\u300d\u662f\u6559\u80b2\u90e8\u96fb\u7b97\u4e2d\u5fc3\u7684\u7db2\u57df\uff0c\u96fb\u7b97\u4e2d\u5fc3\u6703\u70ba\u5176\u67b6 DNS Server\uff0c\u7ba1\u7406\u6240\u6709\u7684\u5b78\u8853\u7db2\u8def\u3002<br \/> \u7531\u6b64\uff0c\u6559\u80b2\u90e8\u7684 DNS Server \u6388\u6b0a\u7e23\u6559\u80b2\u7db2\u8def\u4e2d\u5fc3\u7684 DNS Server \u81ea\u884c\u7ba1\u7406\u3010tnc.edu.tw\u3011\u7684\u7db2\u57df\u3002<br \/> \u6700\u5f8c\u518d\u7531 dns.tnc.edu.tw \u6388\u6b0a\u5404\u6821\u7684 DNS Server \u81ea\u884c\u7ba1\u7406\u5b78\u6821\u7db2\u57df\u3002\u66f4\u8a73\u7d30\u7684\u8cc7\u6599\uff0c\u8acb\u53c3\u8003\u4e0a\u9762\u6240\u5217\u5169\u7bc7\u6587\u7ae0\u3002<\/p>\n<p> &nbsp;Domain Name \u7686\u662f\u7531 dns.tnc.edu.tw (163.26.200.1) \u6388\u6b0a\u51fa\u53bb\u7684\u3010\u7db2\u57df\u3011\uff0c\u6240\u4ee5\u52d9\u5fc5\u8981\u5efa\u7f6e DNS Server \u555f\u7528\u8a72\u7db2\u57df\u3002<br \/> \u81f3\u65bc\u7279\u5b9a\u7528\u9014\u7684\u7db2\u7ad9\uff0c\u624d\u7531 dns.tnc.edu.tw \u6307\u5b9a\u7db2\u5740\u3002\u5982\uff1a\u300a xoops.tnc.edu.tw \u300b\u3001\u300a x.tnc.edu.tw \u300b\u3001\u300a freesf.tnc.edu.tw \u300b\u7b49\uff0c\u7686\u5728 163.26.200.1 \u4e2d\u76f4\u63a5\u6307\u5b9a\u7db2\u5740\u3002<\/p>\n<p> <font size=\"3\" color=\"#008000\"><strong>\u5b89\u88dd\u8207\u521d\u6b65\u8a2d\u5b9a<\/strong><\/font><br \/> DNS \u67e5\u8a62\u6307\u4ee4\u7c21\u4ecb<br \/> Client DNS \u67e5\u8a62\u904e\u7a0b<\/p>\n<p> \u5728\u4ecb\u7d39\u67e5\u8a62\u6307\u4ee4\u524d\uff0c\u6211\u5011\u8981\u5148\u4e86\u89e3\u4ec0\u9ebc\u662f DNS Cache\uff0c\u800c\u5b83\u53c8\u548c Client \u7684 DNS \u6709\u95dc\uff0c\u56e0\u6b64\u672c\u6587\u5728\u6b64\u505a\u4e00\u7c21\u55ae\u8aaa\u660e\u3002<br \/> Client \u7aef\u7684 IP\u67e5\u8a62\u904e\u7a0b<\/p>\n<p> \u5225\u53f0 DNS Server \u6703 cache \u5b78\u6821 dns \u8a18\u9304\uff0c\u56e0\u6b64 dns server \u82e5\u505a\u4efb\u4f55\u8b8a\u52d5\uff0cClient \u96fb\u8166\u4e26\u4e0d\u6703\u7acb\u5373\u77e5\u9053(\u88ab cache \u9a19\u4e86)\u3002<br \/> \u56e0\u6b64\uff0c\u82e5\u6709\u8b8a\u66f4 dns \u8a18\u9304\uff0c\u9664\u4e86\u8981\u4fee\u6539 serial \u5916\uff0c\u60f3\u67e5\u8a62\u662f\u5426\u8a2d\u5b9a\u6210\u529f\uff0c\u53ea\u5f97\u5c0d\u81ea\u5df1\u67e5\uff0c\u9019\u4e5f\u662f\u70ba\u4f55 dig \u6307\u4ee4\u5f8c\u9762\u5fc5\u9808\u52a0\u4e0a @163.26.xxx.xxx \u53c3\u6578\u7684\u539f\u56e0\u3002<\/p>\n<p> <font size=\"4\" color=\"#ff0000\"><strong>\u5728 Linux \u4e0a\u5e38\u7528\u7684 DNS \u67e5\u8a62\u6307\u4ee4<\/strong><\/font><\/p>\n<p> &nbsp;&nbsp;&nbsp; * nslookup dc1es.tnc.edu.tw<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; \u76f4\u63a5\u67e5\u8a62 dc1es.tnc.edu.tw \u7684 IP \u4f4d\u5740<br \/> &nbsp;&nbsp;&nbsp; * dig dc1es.tnc.edu.tw<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; \u67e5\u8a62 dc1es.tnc.edu.tw \u7db2\u57df\u72c0\u6cc1\uff0c\u8a62\u554f\u7684\u5c0d\u8c61\u8996 \/etc\/resolv.conf \u5167 nameserver \u7684\u8a2d\u5b9a\u503c\u800c\u7570<br \/> &nbsp;&nbsp;&nbsp; * dig @163.26.200.1 dc1es.tnc.edu.tw<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; \u5411 163.26.200.1 \u67e5\u8a62 dc1es.tnc.edu.tw \u7db2\u57df\u72c0\u6cc1<br \/> &nbsp;&nbsp;&nbsp; * dig @163.26.200.1 dns.dc1es.tnc.edu.tw AAAA<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; \u5411 163.26.200.1 \u67e5\u8a62 dns.dc1es.tnc.edu.tw \u7684 IPv6 \u7db2\u5740<br \/> &nbsp;&nbsp;&nbsp; * dig -x 163.26.182.1<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; \u67e5\u8a62 163.26.182.1 \u7684\u53cd\u89e3\u8a18\u9304<br \/> &nbsp;&nbsp;&nbsp; * dig @163.26.200.1 -x 163.26.182.1<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; \u5411 163.26.200.1 \u67e5\u8a62 163.26.182.1 \u7684\u53cd\u89e3\u8a18\u9304<br \/> &nbsp;&nbsp;&nbsp; * dig @163.26.200.1 -x 2001:288:75a6::1<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; \u5411 163.26.200.1 \u67e5\u8a62 IPv6 2001:288:75a6::1 \u7684\u53cd\u89e3\u8a18\u9304<br \/> &nbsp;&nbsp;&nbsp; * dig @163.26.182.1 dc1es.tnc.edu.tw MX<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; \u5411 163.26.182.1 \u67e5\u8a62\u6536\u4ef6\u4eba\u70ba xxx@dc1es.tnc.edu.tw \u7684\u4fe1\u4ef6\u6703\u8f49\u9001\u81f3\u4f55\u8655<br \/> &nbsp;&nbsp;&nbsp; * dig @163.26.182.1 dns.dc1es.tnc.edu.tw MX<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; \u5411 163.26.182.1 \u67e5\u8a62\u6536\u4ef6\u4eba\u70ba xxx@dns.dc1es.tnc.edu.tw \u7684\u4fe1\u4ef6\u6703\u8f49\u9001\u81f3\u4f55\u8655<br \/> &nbsp;&nbsp;&nbsp; * dig @168.95.1.1 yahoo.com NS<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; \u5411 168.95.1.1\uff08\u4e2d\u83ef\u96fb\u4fe1 DNS Server\uff09 \u67e5\u8a62 yahoo.com \u7db2\u57df\u662f\u7531\u90a3\u4e9b Name Server \u4f86\u670d\u52d9<\/p>\n<p> <font size=\"4\" color=\"#0000ff\"><strong>DNS Server\u5957\u4ef6<\/strong><\/font><\/p>\n<p> Linux\/Linux Server \u5df2\u9810\u8a2d\u88dd\u59a5 Bind9 \u9019\u4e00\u5957 DNS Server \u5957\u4ef6\u53ca\u5176\u8a2d\u5b9a\u5de5\u5177 ols3dns \uff0c\u4f7f\u7528\u5176\u7522\u751f\u5668\uff0c\u6240\u88fd\u9020\u51fa\u7684\u8a2d\u5b9a\u6a94\u7d50\u69cb\u89e3\u91cb\u5982\u4e0b\uff1a<\/p>\n<p> &nbsp;&nbsp;&nbsp; * \u8a2d\u5b9a\u6a94\u4f4d\u7f6e\u5728 \/etc\/bind\/ \u5e95\u4e0b<\/p>\n<p> &nbsp;&nbsp;&nbsp; * \u7121\u9650\u5236\u905e\u8ff4\u67e5\u8a62\uff08\u9810\u8a2d\u503c\uff09<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; \u4e3b\u63a7\u6a94\uff1a named.conf<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; \u5176\u529f\u80fd\u5728\u65bc\u6307\u5b9a\u5404\u7db2\u57df(Zones)\u7684\u8a2d\u5b9a\u6a94\u540d\u7a31\u66a8\u4f4d\u7f6e\uff0c\u4ee5\u4e0b\u5404\u8a2d\u5b9a\u6a94\u662f\u4ee5 ols3dns \u7522\u751f\u5668\u70ba\u4f8b\u4f86\u9032\u884c\u8aaa\u660e\uff0c\u5be6\u52d9\u4e0a\uff0c\u6a94\u540d\u53ea\u8981\u5728 named.conf \u5b9a\u7fa9\u6e05\u695a\u5373\u53ef\uff0c\u4e0d\u4e00\u5b9a\u8981\u9075\u5faa\u4e0b\u9762\u7684\u7bc4\u4f8b<\/p>\n<p> rndc.key &nbsp;&nbsp; &nbsp;<\/p>\n<p> \u9060\u7aef\u63a7\u5236(Remote Name Daemon Control)\u91d1\u9470<\/p>\n<p> RNDC\u8a73\u89e3\uff1a http:\/\/dns-learning.twnic.net.tw\/bind\/security.html#two<br \/> named.ca &nbsp;&nbsp; &nbsp;\u6700\u9802\u5c64 dns server \u5b9a\u7fa9\uff0c\u5728 named.conf \u8a2d\u5b9a\u6642\u5fc5\u9808\u4f7f\u7528 type hint \u4f86\u6307\u5b9a<br \/> db.xxxx.tnc.edu.tw &nbsp;&nbsp; &nbsp;IPv4\/IPv6\u5171\u7528\u6b63\u89e3\u6a94<br \/> db.163.26.xxx &nbsp;&nbsp; &nbsp;IPv4\u53cd\u89e3\u6a94<br \/> 2001.288.75xx.rev &nbsp;&nbsp; &nbsp;IPv6\u53cd\u89e3\u6a94<br \/> localhost &nbsp;&nbsp; &nbsp;IPv4\/IPv6 localhost \u6b63\u89e3\u6a94<br \/> rev-127.0.0 &nbsp;&nbsp; &nbsp;IPv4 localhost \u53cd\u89e3\u6a94<br \/> rev.local6 &nbsp;&nbsp; &nbsp;IPv6 localhost \u53cd\u89e3\u6a94<\/p>\n<p> &nbsp;&nbsp;&nbsp; * \u9650\u5236\u905e\u8ff4\u67e5\u8a62\u8a2d\u5b9a\u6a94\u7d50\u69cb<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; \u4e3b\u63a7\u6a94\uff1a named.conf + auth_zones.conf<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; named.conf \u4e3b\u5167\u5bb9\u5728\u9650\u5236\u905e\u8ff4\u67e5\u8a62\uff0c\u800c\u53ef\u67e5\u8a62\u7684\u7db2\u57df\u6539\u653e\u5728 auth_zones.conf<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; \u5176\u4ed6\u6a94\u6848\u8207\u4e0a\u9762\u4e00\u81f4<\/p>\n<p> &nbsp;&nbsp;&nbsp; * port \u503c\uff1a TCP\/UDP 53 ; localhost: 953<br \/> &nbsp;&nbsp;&nbsp; * \u624b\u52d5\u555f\u52d5 | \u505c\u6b62 DNS \u670d\u52d9\uff1a \/etc\/init.d\/bind9 start | stop | restart<\/p>\n<p> <font size=\"4\" color=\"#008000\"><strong>\u8a2d\u5b9a\u6a94\u5167\u95dc\u9375\u7528\u8a9e\u89e3\u8aaa<\/strong><\/font><\/p>\n<p> \u7b46\u8005\u6574\u7406\u4e86 Bind9 \u5404\u8a2d\u5b9a\u6a94\u5e38\u51fa\u73fe\u7684\u95dc\u9375\u7528\u8a9e\u5982\u4e0b\uff0c\u8acb\u53c3\u8003\uff1a<br \/> $TTL 86400 &nbsp;&nbsp; &nbsp;\u5c0d\u65b9\u4e3b\u6a5f\u67e5\u8a62\u5b8c\u7562\uff0c\u5176\u503c\u8981\u4fdd\u7559\uff08\u5feb\u53d6\uff09\u7684\u79d2\u6578\uff0c\u4f8b\uff1a86400\u79d2<br \/> $ORIGIN &nbsp;&nbsp; &nbsp;\u5ba3\u544a\u672c\u8a2d\u5b9a\u6a94\u6240\u5217\u4e4b\u6240\u6709\u8a18\u9304\u51fa\u81ea\u65bc\u90a3\u500b\u7db2\u57df\uff0c\u6700\u5f8c\u5fc5\u9808\u4ee5\u300c.\u300d\u505a\u7d50\u5c3e\uff0c\u5426\u5247\u6703\u81ea\u52d5\u518d\u52a0\u4e0a\u7db2\u57df\u540d\u7a31<br \/> $ORIGIN subnet &nbsp;&nbsp; &nbsp;\u6388\u6b0a\u81ea\u5df1\u7684\u5b50\u7db2\u57df\u7d66\u53e6\u4e00\u53f0 DNS Server<br \/> @ &nbsp;&nbsp; &nbsp;\u4ee3\u8868\u300cZone\u300d<\/p>\n<p> \u4ee5 db.xxx.tnc.edu.tw \u8a2d\u5b9a\u6a94\u70ba\u4f8b\uff0c\u3010@\u3011\u6307\u7684\u662f xxx.tnc.edu.tw\u3002<br \/> \u4ee5 localhost \u8a2d\u5b9a\u6a94\u70ba\u4f8b\uff0c\u3010@\u3011\u6307\u7684\u662f\u3000localhost<br \/> IN SOA &nbsp;&nbsp; &nbsp;\u958b\u59cb\u6388\u6b0a\uff08Star of Authority\uff09\uff0c\u5f8c\u9762\u63a5\u4e86\u5169\u500b\u53c3\u6578\u662f\u6307\u300c\u672c zone \u7684\u7ba1\u7406\u4e3b\u6a5f\u540d\u300d\u53ca\u300c\u672c zone \u7684\u7ba1\u7406\u8005\u300d<br \/> IN NS &nbsp;&nbsp; &nbsp;\u8ca0\u8cac\u7684 Name Server \u4e3b\u6a5f\u540d\u7a31\u70ba\u4f55?<br \/> IN A &nbsp;&nbsp; &nbsp;\u70ba\u4e3b\u6a5f\u540d\u7a31\u8ce6\u4e88 IPv4 \u4f4d\u5740<br \/> IN AAAA &nbsp;&nbsp; &nbsp;\u70ba\u4e3b\u6a5f\u540d\u7a31\u8ce6\u4e88 IPv6 \u4f4d\u5740<br \/> IN CNAME &#8211;&gt;\u3000\u5225\u540d &nbsp;&nbsp; &nbsp;\u4f8b\uff1a www,ftp,s1&#8230;\u7686\u662f dns \u7684\u5206\u8eab<br \/> IN PTR &#8211;&gt; \u53cd\u89e3 &nbsp;&nbsp; &nbsp;\u67d0 IP \u6240\u4ee3\u8868\u7684\u4e3b\u6a5f\u540d\u7a31<br \/> IN MX &#8211;&gt;Mail eXchange &nbsp;&nbsp; &nbsp;\u8f49\u4fe1\uff0c\u4f8b\uff1a<br \/> &nbsp;&nbsp;&nbsp; mail.tw IN MX 0 spamgw.tw<br \/> &nbsp;&nbsp;&nbsp; mail.tw IN MX 10 mail.tw<\/p>\n<p> \u8aaa\u660e\u5982\u4e0b\uff1a<\/p>\n<p> &nbsp;&nbsp; 1. \u628a\u3010xxx@mail.tw\u3011\u4fe1\u4ef6\u5148\u8f49\u7d66\u3010spamgw.tw\u3011(\u8a3b\uff1a \u6709\u5169\u7b46 MX \u8a18\u9304\u6642\uff0c\u6578\u503c\u4f4e\u7684\u6709\u8f03\u9ad8\u7684\u512a\u5148\u6b0a\uff09<br \/> &nbsp;&nbsp; 2. \u3010spamgw.tw\u3011\u6536\u4e86\u4fe1\u4e4b\u5f8c\uff08\u4e26\u8655\u7406\u4e4b\uff09\uff0c\u767c\u73fe\u539f\u4f86\u6307\u5b9a\u6536\u4fe1\u4eba\u662f\u5728\u3010mail.tw\u3011\uff0c\u56e0\u6b64\u518d\u628a\u5b83\u8f49\u56de\u7d66\u3010mail.tw\u3011<br \/> &nbsp;&nbsp; 3. \u5982\u679c spamgw \u6545\u969c\uff0c\u7406\u8ad6\u4e0a\u6703\u9001\u81f3\u7b2c\u4e8c\u512a\u5148 mail.tw\uff08\u5b83\u81ea\u5df1\uff09\uff0c\u4f46\u4f9d\u6e38\u6232\u898f\u5247\uff0c\u5c31\u7b97\u662f mail.tw \u5b83\u81ea\u5df1\uff0c\u5b83\u9084\u662f\u6703\u53bb\u554f dns.tw \uff0c\u4fe1\u4ef6 xxx@mail.tw \u7684 MX \u70ba\u4f55\uff1f\u7d50\u679c dns.tw \u8aaa\uff0c\u8981\u512a\u5148\u9001 spamgw.tw\u3002\u7c21\u8a00\u4e4b\uff0c\u8a2d\u4e86 MX \u4e4b\u5f8c\uff0c\u6700\u512a\u5148\u7684\u90a3\u53f0\u4e3b\u6a5f\u4e00\u5b9a\u4e0d\u53ef\u4ee5\u6545\u969c\uff0c\u5426\u5247\u6703\u6536\u4e0d\u5230\u4fe1\u4ef6<\/p>\n<p> &nbsp;&nbsp;&nbsp; * \u6ce8\u610f\uff1amail \u8207 dns \u540c\u4f4d\u5740\u6642\uff0c\u4e0d\u53ef\u4ee5\u63a1\u7528 CNAME \u7684\u8a2d\u6cd5\uff0c\u4e00\u5b9a\u8981\u7528 IN A\uff0c\u624d\u53ef\u6b63\u5e38\u6536\u767c\u4fe1\u4ef6<\/p>\n<p> <strong>\u9650\u5236\u905e\u8ff4\u67e5\u8a62 vs \u4e0d\u9650\u5236<\/strong><\/p>\n<p> \u9650\u5236\u905e\u8ff4\u67e5\u8a62\u7684\u610f\u601d\u662f\uff0c\u672c DNS Server \u53ea\u56de\u7b54\u6240\u8f44\u7db2\u57df\u7684\u554f\u984c\uff0c\u5176\u9918\u4e0d\u7b54\u3002\u4e0d\u9650\u5236\u7684\u8a71\uff0c\u5c31\u6c92\u6709\u4e0a\u8ff0\u9650\u5236\u3002\u4f8b\u5982\uff1a\u7576\u4e00\u53f0 client \u5411 DNS Server(163.26.182.1)\u8a62\u554f tw.yahoo.com \u6642\uff0c\u82e5\u6709\u505a\u9650\u5236\uff0c\u90a3\u9ebc\u5b83\u4e0d\u6703\u56de\u7b54\uff0c\u56e0\u70ba tw.yahoo.com \u4e0d\u6b78 dc1es.tnc.edu.tw \u6240\u7ba1\u3002\u53cd\u4e4b\uff0c\u82e5\u4e0d\u505a\u4efb\u4f55\u9650\u5236\uff0c\u5b83\u6703\u4f9d\u5176\u6839\u8a2d\u5b9a\u6a94(named.ca)\u4e00\u5c64\u5c64\u5f80\u4e0a\u554f\uff0c\u5e6b client \u627e\u5230 tw.yahoo.com \u7684 IP Address \u4e26\u56de\u8986\u4e4b\u3002<\/p>\n<p> \u53ef\u662f\uff0c\u8cb4\u6821\u53ef\u80fd\u5df2\u8a2d\u59a5\u9650\u5236\uff0c\u800c\u4e14\u5b78\u6821\u7684\u96fb\u8166\u4e5f\u90fd\u4ee5\u672c\u6821\u7684 DNS Server \u70ba\u67e5\u8a62\u4e3b\u6a5f\uff0c\u70ba\u4f55\u9084\u662f\u53ef\u4ee5\u67e5\u5f97\u5230 tw.yahoo.com \uff1f\u90a3\u662f\u56e0\u70ba\u5728 named.conf \u5167\u7684\uff1a\u300cacl allow_clients { 127.0.0.1; 163.26.182.0\/24; 2001:288:75a6::\/48; };\u300d\u8a2d\u5b9a\u4e2d\u6709\u8aaa\u660e\uff0c\u8981\u958b\u653e\u7d66\u6821\u5167\u7684\u6a5f\u5668\u67e5\u8a62\u3002<\/p>\n<p> \u9650\u5236\u905e\u8ff4\u67e5\u8a62\u96d6\u7136\u6703\u9020\u6210\u4e00\u4e9b\u4e0d\u65b9\u4fbf\uff0c\u4f46\u5b83\u6703\u6709\u8f03\u9ad8\u7684\u5b89\u5168\u6027\uff0c\u5c24\u5176\u662f\u5c0d ARP \u985e\u75c5\u6bd2\u507d\u9020\u7db2\u5740\u653b\u64ca\uff0c\u6709\u8f03\u9ad8\u7684\u9632\u79a6\u80fd\u529b\u3002\u4e0d\u904e\u672a\u4f86\u82e5 IPv6 only \u5be6\u65bd\uff08\u6c92\u6709 ARP \u6a5f\u5236\uff0c\u6539\u7528 fe80:&#8230;\u6a5f\u5236\uff09\uff0c\u5176\u5be6\u9650\u5236\u905e\u8ff4\u67e5\u8a62\uff0c\u5c31\u6bd4\u8f03\u6c92\u6709\u5b58\u5728\u610f\u7fa9\uff08\u76ee\u524d\u662f IPv4 \u8207 IPv6\u4e26\u5b58\uff09\u3002<\/p>\n<p> Linux Server\u521d\u6b65\u8a2d\u5b9a\u65b9\u6cd5<\/p>\n<p> \u6709\u5169\u500b\u65b9\u5f0f\u4f86\u8a2d\u5b9a DNS \u53c3\u6578<\/p>\n<p> &nbsp;&nbsp; 1. \u5728\u8a2d\u5b9a\u7ba1\u7406\u5bc6\u78bc\uff08Linux-setup\uff09\u6642\u52fe\u9078\u3010\u9019\u53f0\u4e3b\u6a5f\u8981\u64d4\u4efb DNS Server \u55ce ?\u3011\uff0c\u5c31\u6703\u5728 \/etc\/bind\/ \u5e95\u4e0b\u7522\u751f\u4e0d\u9650\u905e\u8ff4\u67e5\u8a62\u7684\u76f8\u95dc\u8a2d\u5b9a\u6a94<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; \u6ce8\u610f\uff1a\u672c\u65b9\u5f0f\u50c5\u9069\u7528\u65bc\u88dd\u5b8c Linux Server\uff0c\u7b2c\u4e00\u6b21\u767b\u5165\u6642\u3002\u56e0\u70ba Linux-setup \u672c\u8eab\u6703\u6539\u8b8a\u5f88\u591a\u8a2d\u5b9a\u503c\uff08\u4e0d\u53ea dns\uff09\uff0c\u82e5\u6a5f\u5668\u5df2\u9806\u5229\u904b\u4f5c\u591a\u6642\uff0c\u52ff\u7528\u3002<br \/> &nbsp;&nbsp; 2. \u76f4\u63a5\u5728\u7d42\u7aef\u6a5f\u4ecb\u9762\u4e0b\u6307\u4ee4<\/p>\n<p> &nbsp;&nbsp; 1. \u4e0d\u9650\u905e\u8ff4\u67e5\u8a62\uff1a\u3000root@dns~# ols3dns<br \/> &nbsp;&nbsp; 2. \u9650\u5236\u905e\u8ff4\u67e5\u8a62\uff1a\u3000root@dns~# ols3dns &#8211;no-recursive<br \/> &nbsp;&nbsp; 3. \u4ee5\u5927\u6210\u570b\u5c0f\u70ba\u4f8b<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; #&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8211;#<\/p>\n<p> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; # \u81e5\u9f8d\u5c0f\u4e09 \u5de5 \u5177 \u7bb1 (1.0.7Linux) Copyright 2006 OLS3\u3000\u3000#<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; # DNS \u81ea\u52d5\u7522\u751f\u5668 1.0.7Linux for Linux\u3000\u3000\u3000\u3000\u3000\u3000\u3000\u3000\u3000 #<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; # All rights Reserved.\u3000\u3000\u3000\u3000\u3000\u3000\u3000\u3000\u3000\u3000\u3000\u3000\u3000\u3000\u3000\u3000#<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; #&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8211;#<\/p>\n<p> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; \u8acb\u8f38\u5165\u7db2\u57df\u540d\u7a31? \u4f8b\u5982: jmjh.tnc.edu.tw<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; dc1es.tnc.edu.tw<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; \u8acb\u8f38\u5165IP\u524d\u4e09\u500b\u6578\u5b57? \u4f8b\u5982: 163.26.167<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 163.26.182<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; \u8acb\u8f38\u5165\u7b2c\u4e00\u53f0\u4e3b\u6a5f\u7684\u7b2c\u56db\u500bIP?<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; \u4f8b\u5982: 163.26.167.1 \u7684 1<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 1<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; \u60a8\u8981\u67b6\u8a2d\u7b2c\u4e8c\u90e8 DNS \u55ce?(Y\/N)<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; N<\/p>\n<p> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Done!<\/p>\n<p> Linux\u521d\u6b65\u8a2d\u5b9a\u65b9\u6cd5<\/p>\n<p> \u8207 Linux Server \u4e00\u6a23\uff0c\u6709\u5169\u500b\u65b9\u5f0f\u4f86\u7522\u751f\u57fa\u672c\u7684 DNS \u8a2d\u5b9a\u6a94<\/p>\n<p> &nbsp;&nbsp; 1. \u5728\u8a2d\u5b9a\u7ba1\u7406\u5bc6\u78bc\uff08Linux-csetup-utf8\/Linux-csetup\uff09\u6642\uff0c\u5728\u6700\u5f8c\u4e00\u500b\u554f\u984c\u3010\u9019\u53f0\u4e3b\u6a5f\u8981\u64d4\u4efb DNS Server \u55ce ?\u3011\u56de\u7b54\u300cY\u300d\uff0c\u5c31\u6703\u5728 \/etc\/bind\/ \u5e95\u4e0b\u7522\u751f\u4e0d\u9650\u905e\u8ff4\u67e5\u8a62\u7684\u76f8\u95dc\u8a2d\u5b9a\u6a94\u3002<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; \u6ce8\u610f\uff1a\u672c\u65b9\u5f0f\u50c5\u9069\u7528\u65bc\u88dd\u5b8c Linux Server\uff0c\u7b2c\u4e00\u6b21\u767b\u5165\u6642\u3002\u56e0\u70ba Linux-setup \u672c\u8eab\u6703\u6539\u8b8a\u8a31\u591a\u8a2d\u5b9a\u503c\uff0c\u82e5\u6a5f\u5668\u5df2\u9806\u5229\u904b\u4f5c\u591a\u6642\u52ff\u7528\u3002<br \/> &nbsp;&nbsp; 2. \u5148\u628a\u7d42\u7aef\u6a5f\u7684\u5b57\u5143\u7de8\u78bc\u6539\u70ba Big5 \uff0c\u518d\u4e0b\u6307\u4ee4<\/p>\n<p> &nbsp;&nbsp; 1. \u4e0d\u9650\u905e\u8ff4\u67e5\u8a62\uff1a\u3000root@dns~# ols3dns<br \/> &nbsp;&nbsp; 2. \u9650\u5236\u905e\u8ff4\u67e5\u8a62\uff1a\u3000root@dns~# ols3dns &#8211;no-recursive<br \/> &nbsp;&nbsp; 3. \u8a2d\u5b9a\u904e\u7a0b\u8207\u4e0a\u4f8b\u4e00\u6a23\uff0c\u8acb\u53c3\u8003\u4e0a\u9762\u6587\u4ef6<\/p>\n<p> \u9032\u968e\u8a2d\u5b9a<br \/> IPv4 \u7684\u6b63\u53cd\u89e3<br \/> \u65b0\u589e\u4e00\u7b46IPv4\u4f4d\u5740\u6b63\u89e3<\/p>\n<p> \u8981\u65b0\u589e\u4e00\u7b46\u6b63\u89e3\u8a18\u9304\u53ea\u8981\u5728\u6b63\u89e3\u6a94\u300c \/etc\/bind\/db.xxx.tnc.edu.tw \u300d\u5167\uff0c\u52a0\u4e0a\u4e00\u7b46 IN A \u7684\u8a18\u9304\uff0c\u518d\u628a serial n\u52a0\uff11\uff0c\u4e26\u91cd\u65b0\u555f\u52d5 DNS Server \u5373\u53ef\u3002 \u4e0b\u6587\uff0c\u7b46\u8005\u4ee5\u65b0\u589e spamfilter.dc1es.tnc.edu.tw \u7db2\u5740\uff0c\u6307\u5411 163.26.182.250 IPv4 \u4f4d\u5740\u70ba\u4f8b\u9032\u884c\u89e3\u8aaa\u3002<\/p>\n<p> &nbsp;&nbsp; 1. \u7de8\u8f2f \/etc\/bind\/db.xxx.tnc.edu.tw<\/p>\n<p> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; $TTL 86400<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; @&nbsp; IN&nbsp; SOA dns.dc1es.tnc.edu.tw. admin.dns.dc1es.tnc.edu.tw. (<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 2006030801 ; \u9019\u500b\u6578\u5b57\u662f\u5e8f\u865f(serial no.) , \u6bcf\u4fee\u6539\u4e00\u6b21\u5c31\u8981\u52a0 1 \u865f<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 86400 ; refresh<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 1800 ; retry<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 1728000 ; expire<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 1200 ; Negative Caching<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; )<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; IN&nbsp;&nbsp; NS dns.dc1es.tnc.edu.tw.<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; dns IN A 163.26.182.1<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; @ IN MX 0 mail.dc1es.tnc.edu.tw.<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; ;\u7db2\u57df\u540d\u7a31 dc1es.tnc.edu.tw \u4e5f\u8981\u8ce6\u4e88\u4e00\u7d44 IPv4 \u4f4d\u5740<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; dc1es.tnc.edu.tw. IN A 163.26.182.1<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; ;<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; s1&nbsp;&nbsp;&nbsp;&nbsp; IN&nbsp;&nbsp; CNAME dns.dc1es.tnc.edu.tw.<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; www&nbsp;&nbsp;&nbsp; IN&nbsp;&nbsp; CNAME dns.dc1es.tnc.edu.tw.<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; ftp&nbsp;&nbsp;&nbsp; IN&nbsp;&nbsp; CNAME dns.dc1es.tnc.edu.tw.<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; proxy&nbsp; IN&nbsp;&nbsp; CNAME dns.dc1es.tnc.edu.tw.<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; ;<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; mail&nbsp; IN&nbsp; A&nbsp; 163.26.182.1<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; s2&nbsp;&nbsp;&nbsp; IN&nbsp; A&nbsp; 163.26.182.2<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; nt&nbsp;&nbsp;&nbsp; IN&nbsp; A&nbsp; 163.26.182.3<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; s4&nbsp;&nbsp;&nbsp; IN&nbsp; A&nbsp; 163.26.182.4<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; s5&nbsp;&nbsp;&nbsp; IN&nbsp; A&nbsp; 163.26.182.5<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; nat&nbsp;&nbsp; IN&nbsp; A&nbsp; 163.26.182.234<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; ;\u70ba spamfilter \u52a0\u4e0a IN A \u7684\u8a18\u9304<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; spamfilter IN A 163.26.182.250 &nbsp;<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; \u8a3b1\uff1a\u6b63\u53cd\u89e3\u8a2d\u5b9a\u6a94\u662f\u7528\u300c\uff1b\u300d\u4f86\u6a19\u793a\u8a3b\u89e3\u6587\u5b57\uff0c\u4e0d\u662f\u300c\uff03\u300d\uff0c\u8acb\u52ff\u7528\u932f<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; \u8a3b2\uff1a\u6bcf\u4e00\u884c\u90fd\u8981\u9760\u5de6\uff0c\u9664\u975e\u672c\u884c\u662f\u4e0a\u4e00\u884c\u7684\u9644\u5c6c\u8a2d\u5b9a<\/p>\n<p> &nbsp;&nbsp; 2. \u91cd\u65b0\u555f\u52d5 bind9<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; root@dns:~# service bind9 restart<br \/> &nbsp;&nbsp; 3. \u6aa2\u67e5\u91cd\u65b0\u555f\u52d5\u7684\u8a0a\u606f\u662f\u5426\u6b63\u5e38<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; root@dns:~# tail -50 \/var\/log\/syslog<\/p>\n<p> <font size=\"4\" color=\"#800000\"><strong><br \/> IPv4\u53cd\u89e3\u554f\u984c<\/strong><\/font><\/p>\n<p> IPv4\u6b63\u89e3\uff0c\u53ef\u4ee5\u7531\u4e0a\u5c64 DNS Server \u6388\u6b0a\u67d0\u4efb\u4e00 IPv4 \u4f4d\u5740\u4f86\u64d4\u4efb DNS \u5de5\u4f5c\uff0c\u4e0d\u53d7 IPv4 \u7db2\u6bb5\u5f71\u97ff\u3002\u4f46\u53cd\u89e3\u5c31\u4e0d\u884c\uff0c\u56e0\u70ba\u5b83\u53d7\u5230\u300c\u81f3\u5c11\u8981\u4e00\u500b\u5b8c\u6574 C Class \u7db2\u6bb5\u300d\u7684\u9650\u5236\u3002\u56e0\u6b64\uff0c\u6240\u6709\u5206\u914d\u5230 163.26.xxx.1 \u7684\u5b78\u6821\uff0c\u53ef\u4ee5\u5e6b\u5176\u4ed6\u524d\u4e09\u500b\u6578\u5b57\u4e00\u81f4\u7684\u6a5f\u5668\u505a\u53cd\u89e3\uff0c\u4f46 163.26.xxx.129 \u5c31\u4e0d\u884c\u3002\u9019\u4e5f\u662f\u70ba\u4ec0\u9ebc\uff0c\u6211\u5011\u53ef\u4ee5\u5411\u4e2d\u83ef\u96fb\u4fe1\u7533\u8acb dns \u540d\u7a31\u6b63\u89e3\u7ba1\u7406\u6b0a\uff0c\u4f46\u53cd\u89e3\u5c31\u4e0d\u884c\uff0c\u53ea\u80fd\u9760\u5b83\u5e6b\u5fd9\u4ee3\u7ba1\u7684\u539f\u56e0\u3002<\/p>\n<p> \u57fa\u65bc\u4e0a\u8ff0\u539f\u56e0\uff0c\u82e5\u8cb4\u6821\u6709\u975e\u53cd\u89e3\u4e0d\u53ef\u7684\u539f\u56e0\uff0c\u53c8\u4e0d\u5728 163.26.xxx.0 \u7db2\u6bb5\u4e0a\uff0c\u53ef\u4ee5\u9023\u7d61\u6559\u7db2\u4e2d\u5fc3\u4e3b\u4efb\u5354\u52a9\u8655\u7406\u3002\u81f3\u65bc IPv6 \u7684\u90e8\u5206\uff0c\u56e0\u70ba\u6240\u914d\u767c\u7db2\u6bb5\u7686\u662f\u5b8c\u6574\u7684 prefix 48 \uff0c\u6240\u4ee5\u4e0d\u6703\u6709\u6b64\u4e00\u56f0\u64fe\u3002\u4e0d\u904e\u5982\u679c\u8cb4\u6821\u5982\u679c\u525b\u597d\u5c31\u5206\u914d\u5230 163.26.xxx.0 \u7db2\u6bb5\uff0c\u5247\u53ef\u4ee5\u7d93\u7531\u7de8\u8f2f\u3000\/etc\/bind\/db.163.26.xxx \u4f86\u65b0\u589e\u4e00\u7b46 IPv4 \u53cd\u89e3\u8a18\u9304\u3002<br \/> $TTL 86400<\/p>\n<p> @&nbsp;&nbsp; IN&nbsp;&nbsp; SOA&nbsp;&nbsp; dns.dc1es.tnc.edu.tw.&nbsp;&nbsp; admin.dns.dc1es.tnc.edu.tw. (<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 2000082620&nbsp; ; serial \u8981\u52a0 1<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 86400&nbsp; ; refresh<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 1800&nbsp; ; retry<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 1728000&nbsp; ; expire<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 1200&nbsp; ; Negative Caching<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; )<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; IN&nbsp;&nbsp; NS&nbsp;&nbsp; dns.dc1es.tnc.edu.tw.<\/p>\n<p> 1&nbsp;&nbsp;&nbsp;&nbsp; IN&nbsp;&nbsp; PTR&nbsp;&nbsp; dns.dc1es.tnc.edu.tw.<br \/> 2&nbsp;&nbsp;&nbsp;&nbsp; IN&nbsp;&nbsp; PTR&nbsp;&nbsp; s2.dc1es.tnc.edu.tw.<br \/> 3&nbsp;&nbsp;&nbsp;&nbsp; IN&nbsp;&nbsp; PTR&nbsp;&nbsp; nt.dc1es.tnc.edu.tw.<br \/> 4&nbsp;&nbsp;&nbsp;&nbsp; IN&nbsp;&nbsp; PTR&nbsp;&nbsp; s4.dc1es.tnc.edu.tw.<br \/> 5&nbsp;&nbsp;&nbsp;&nbsp; IN&nbsp;&nbsp; PTR&nbsp;&nbsp; s5.dc1es.tnc.edu.tw.<br \/> 234&nbsp;&nbsp; IN&nbsp;&nbsp; PTR&nbsp;&nbsp; nat.dc1es.tnc.edu.tw.<br \/> 250&nbsp;&nbsp; IN&nbsp;&nbsp; PTR&nbsp;&nbsp; spamfilter.dc1es.tnc.edu.tw.<\/p>\n<p> <font size=\"4\" color=\"#008000\"><strong>\u624b\u52d5\u589e\u52a0 IPv6 \u7684\u6b63\u53cd\u89e3<\/strong><\/font><br \/> \u6c92\u9650\u5236\u905e\u8ff4\u67e5\u8a62(\u9810\u8a2d)<br \/> \u4fee\u6539 named.conf<\/p>\n<p> \u628a\u7d05\u5b57\u7684\u90e8\u5206, \u52a0\u81f3 \/etc\/bind\/named.conf<br \/> options {<\/p>\n<p> &nbsp;&nbsp;&nbsp;&nbsp; directory &quot;\/etc\/bind&quot;;<br \/> &nbsp;&nbsp;&nbsp;&nbsp; allow-transfer {<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 163.26.182.2; \/\/ Secondary DNS<br \/> &nbsp;&nbsp;&nbsp;&nbsp; };<br \/> &nbsp;&nbsp;&nbsp;&nbsp; listen-on-v6 { any; };<br \/> };<\/p>\n<p> logging {<br \/> &nbsp;&nbsp;&nbsp;&nbsp; category lame-servers{null;};<br \/> };<\/p>\n<p> zone &quot;.&quot; {<br \/> &nbsp;&nbsp;&nbsp;&nbsp; type hint;<br \/> &nbsp;&nbsp;&nbsp;&nbsp; file &quot;named.ca&quot;;<br \/> };<\/p>\n<p> zone &quot;localhost&quot; {<br \/> &nbsp;&nbsp;&nbsp;&nbsp; type master;<br \/> &nbsp;&nbsp;&nbsp;&nbsp; file &quot;localhost&quot;;<br \/> };<\/p>\n<p> zone &quot;0.0.127.in-addr.arpa&quot; {<br \/> &nbsp;&nbsp;&nbsp;&nbsp; type master;<br \/> &nbsp;&nbsp;&nbsp;&nbsp; file &quot;rev-127.0.0&quot;;<br \/> };<\/p>\n<p> zone &quot;dc1es.tnc.edu.tw&quot; {<br \/> &nbsp;&nbsp;&nbsp;&nbsp; type master;<br \/> &nbsp;&nbsp;&nbsp;&nbsp; file &quot;\/etc\/bind\/db.dc1es.tnc.edu.tw&quot;;<br \/> };<\/p>\n<p> zone &quot;182.26.163.in-addr.arpa&quot; {<br \/> &nbsp;&nbsp;&nbsp;&nbsp; type master;<br \/> &nbsp;&nbsp;&nbsp;&nbsp; file &quot;db.163.26.182&quot;;<br \/> };<\/p>\n<p> \/\/ ::1 \u7684\u53cd\u89e3\u6a94<br \/> zone &quot;1.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.ip6.arpa.&quot;{<br \/> &nbsp;&nbsp;&nbsp;&nbsp; type master;<br \/> &nbsp;&nbsp;&nbsp;&nbsp; file &quot;rev.local6&quot;;<br \/> };<\/p>\n<p> \/\/ 2001.288.750b \u7684\u53cd\u89e3\u6a94<br \/> zone &quot;6.a.5.7.8.8.2.0.1.0.0.2.ip6.arpa.&quot; {<br \/> &nbsp;&nbsp;&nbsp;&nbsp; type master;<br \/> &nbsp;&nbsp;&nbsp;&nbsp; file &quot;2001.288.75a6.rev&quot;;<br \/> };<\/p>\n<p> \u7e7c\u7e8c\u4fee\u6539 db.xxx.tnc.edu.tw<\/p>\n<p> $TTL 86400<br \/> @&nbsp; IN&nbsp; SOA dns.dc1es.tnc.edu.tw. admin.dns.dc1es.tnc.edu.tw. (<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 2006030802 ; serial \u8981\u52a0 1<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 86400 ; refresh<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 1800 ; retry<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 1728000 ; expire<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 1200 ; Negative Caching<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; )<br \/> &nbsp;&nbsp; IN&nbsp;&nbsp; NS dns.dc1es.tnc.edu.tw.<br \/> dns&nbsp; IN&nbsp; A&nbsp;&nbsp;&nbsp; 163.26.182.1<br \/> &nbsp;&nbsp;&nbsp;&nbsp; IN&nbsp; AAAA 2001:288:75a6::1<br \/> ;\u4e0a\u9762 IN AAAA \u524d\u9762\u4e00\u5b9a\u8981\u7559\u7a7a\u767d, \u4ee3\u8868\u662f\u8981\u7e7c\u7e8c\u8a2d dns \u4e3b\u6a5f\u7684 AAAA(IPv6) \u8a18\u9304<br \/> ;<br \/> @ IN MX 0 mail.dc1es.tnc.edu.tw.<br \/> ;<br \/> dc1es.tnc.edu.tw. IN A 163.26.182.1<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; IN&nbsp; AAAA&nbsp; 2001:288:75a6::1<br \/> ;\u4e0a\u9762\u5169\u884c\u6307\u300c\u7db2\u57df\u540d\u7a31 dc1es.tnc.edu.tw \u4e5f\u8ce6\u4e88\u4e00\u7d44 IPv4 \u53ca IPv6 \u4f4d\u5740\u300d<br \/> ;<br \/> s1&nbsp;&nbsp;&nbsp;&nbsp; IN CNAME dns.dc1es.tnc.edu.tw.<br \/> www&nbsp;&nbsp;&nbsp; IN CNAME dns.dc1es.tnc.edu.tw.<br \/> ftp&nbsp;&nbsp;&nbsp; IN CNAME dns.dc1es.tnc.edu.tw.<br \/> proxy&nbsp; IN CNAME dns.dc1es.tnc.edu.tw.<br \/> ;<br \/> mail&nbsp;&nbsp; IN&nbsp; A&nbsp;&nbsp;&nbsp;&nbsp; 163.26.182.1<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; IN&nbsp; AAAA&nbsp; 2001:288:75a6::1<br \/> s2&nbsp;&nbsp;&nbsp;&nbsp; IN&nbsp; A&nbsp;&nbsp;&nbsp;&nbsp; 163.26.182.2<br \/> nt&nbsp;&nbsp;&nbsp;&nbsp; IN&nbsp; A&nbsp;&nbsp;&nbsp;&nbsp; 163.26.182.3<br \/> s4&nbsp;&nbsp;&nbsp;&nbsp; IN&nbsp; A&nbsp;&nbsp;&nbsp;&nbsp; 163.26.182.4<br \/> s5&nbsp;&nbsp;&nbsp;&nbsp; IN&nbsp; A&nbsp;&nbsp;&nbsp;&nbsp; 163.26.182.5<br \/> nat&nbsp;&nbsp;&nbsp; IN A&nbsp; 163.26.182.234<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; IN AAAA&nbsp; 2001:288:75a6::234 &nbsp;<br \/> spamfilter IN A&nbsp; 163.26.182.250 &nbsp;<br \/> ;\u7d93\u904e\u4fee\u6539 spamfilter.dc1es.tnc.edu.tw \u4fbf\u6703\u6709 IPv4 \u53ca IPv6 \u5169\u7b46\u8a18\u9304<\/p>\n<p> \u4fee\u6539 localhost \u65b0\u589e ::1 \u6b63\u89e3<\/p>\n<p> $TTL 86400<br \/> @&nbsp;&nbsp;&nbsp; IN&nbsp;&nbsp; SOA&nbsp;&nbsp;&nbsp; dns.dc1es.tnc.edu.tw.&nbsp;&nbsp;&nbsp; admin.dns.dc1es.tnc.edu.tw. (<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 2000082620 ; serial \u8981\u52a0 1<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 86400 ; refresh<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 1800 ; retry<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 1728000 ; expire<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 1200 ; Negative Caching<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; )<br \/> &nbsp;&nbsp;&nbsp;&nbsp; IN&nbsp;&nbsp; NS&nbsp;&nbsp; dns.dc1es.tnc.edu.tw.<br \/> ;<br \/> localhost. IN&nbsp; A&nbsp;&nbsp;&nbsp; 127.0.0.1<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; IN&nbsp; AAAA&nbsp; ::1<\/p>\n<p> &nbsp;&nbsp;&nbsp; * \u8a3b\uff1a\u7d05\u5b57\u70ba\u4fee\u6539\u4e4b\u8655<\/p>\n<p> \u5efa\u7acb ::1 \u53ca 2001.288.75xx.rev \u53cd\u89e3\u6a94<\/p>\n<p> &nbsp;&nbsp;&nbsp; * \u5efa\u7acb ::1 IPv6 \u7684 localhost \u53cd\u89e3<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; root@dns~# vi \/etc\/bind\/rev.local6<\/p>\n<p> $TTL 86400<br \/> @ IN&nbsp; SOA&nbsp; dns.dc1es.tnc.edu.tw. admin.dns.dc1es.tnc.edu.tw. (1 15m 5m 30d 1h)<br \/> &nbsp;&nbsp;&nbsp; IN&nbsp;&nbsp; NS&nbsp; dns.dc1es.tnc.edu.tw.<\/p>\n<p> ; (1 15m 5m 30d 1h) \u4e2d\u7684 1 \u662f\u5e8f\u865f, \u6bcf\u6b21\u4fee\u6539\u90fd\u8981\u52a0 1<\/p>\n<p> ;;<\/p>\n<p> 1.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.ip6.arpa. IN PTR localhost.<\/p>\n<p> \u8a3b\uff1a\u9664\u4e86 IN NS \u9019\u4e00\u884c\u70ba SOA \u9019\u4e00\u884c\u7684\u9644\u5c6c\u53c3\u6578\uff0c\u6240\u4ee5\u5de6\u5074\u7559\u6709\u7a7a\u767d\u5916\uff0c\u5176\u9918\u5404\u884c\u524d\u9762\u4e0d\u53ef\u7559\u7a7a\u767d<\/p>\n<p> &nbsp;&nbsp;&nbsp; * \u5efa\u7acb IPv6 \u53cd\u89e3\u6a94<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp; root@dns~# vi \/etc\/bind\/2001.288.75a6.rev<\/p>\n<p> $TTL 86400<br \/> $ORIGIN 6.a.5.7.8.8.2.0.1.0.0.2.ip6.arpa.<br \/> @&nbsp; IN&nbsp;&nbsp; SOA dns.dc1es.tnc.edu.tw. admin.dns.dc1es.tnc.edu.tw. (1 15m 5m 30d 1h)<br \/> &nbsp;&nbsp; IN&nbsp;&nbsp; NS&nbsp;&nbsp; dns.dc1es.tnc.edu.tw.<br \/> ;;<br \/> 1.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0&nbsp; IN&nbsp; PTR&nbsp; dns.dc1es.tnc.edu.tw.<br \/> 234.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0&nbsp; IN&nbsp; PTR&nbsp; nat.dc1es.tnc.edu.tw.<\/p>\n<p> <font size=\"4\" color=\"#ff00ff\"><strong>\u9650\u5236\u905e\u8ff4\u67e5\u8a62<\/strong><\/font><\/p>\n<p> \u53ea\u9700\u4fee\u6539\u4e0b\u9762\u9019\u5169\u500b\u8a2d\u5b9a\u6a94\uff0c\u5176\u9918\u8a2d\u5b9a\u503c\u8207\u4e0d\u9650\u905e\u8ff4\u67e5\u8a62\u4e00\u81f4<br \/> \u4fee\u6539 named.conf<\/p>\n<p> options {<br \/> &nbsp;&nbsp;&nbsp;&nbsp; directory &quot;\/etc\/bind&quot;;<br \/> &nbsp;&nbsp;&nbsp;&nbsp; allow-transfer {<br \/> &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 163.26.182.2;<br \/> &nbsp;&nbsp;&nbsp;&nbsp; };<br \/> &nbsp;&nbsp;&nbsp;&nbsp; listen-on-v6 { any; }; \/\/\u8981\u52a0\u4e0a\u9019\u4e00\u884c<br \/> };<\/p>\n<p> logging {<br \/> &nbsp;&nbsp;&nbsp;&nbsp; category lame-servers{null;};<br \/> };<\/p>\n<p> \/\/ \u628a\u5b78\u6821 IPv6 \u7db2\u6bb5\u52a0\u5165\u53ef\u5141\u8a31\u67e5\u8a62\u5340\uff0c\u4f8b\uff1a\u65b0\u589e 2001:288:75a6::\/48;<br \/> acl allow_clients { 127.0.0.1; 163.26.182.0\/24; 2001:288:75a6::\/48; };<\/p>\n<p> \/\/ \u5728 acl \u4e2d\u7684 IP \u5141\u8a31\u7684\u64cd\u4f5c<br \/> view &quot;recursive&quot; {<br \/> &nbsp;&nbsp;&nbsp;&nbsp; match-clients { allow_clients; };<br \/> &nbsp;&nbsp;&nbsp;&nbsp; recursion yes;<br \/> &nbsp;&nbsp;&nbsp;&nbsp; include &quot;auth_zones.conf&quot;;<br \/> };<\/p>\n<p> \/\/ \u672a\u5728 acl \u4e2d\u7684 IP \u62d2\u7d55\u4f7f\u7528\u905e\u8ff4\u5f0f\u67e5\u8a62<br \/> view &quot;external&quot; {<br \/> &nbsp;&nbsp;&nbsp;&nbsp; match-clients { any; };<br \/> &nbsp;&nbsp;&nbsp;&nbsp; recursion no;<br \/> &nbsp;&nbsp;&nbsp;&nbsp; include &quot;auth_zones.conf&quot;;<br \/> };<\/p>\n<p> \u4fee\u6539 auth_zones.conf<\/p>\n<p> zone &quot;.&quot; {<br \/> &nbsp;&nbsp;&nbsp;&nbsp; type hint;<br \/> &nbsp;&nbsp;&nbsp;&nbsp; file &quot;named.ca&quot;;<br \/> };<\/p>\n<p> zone &quot;localhost&quot; {<br \/> &nbsp;&nbsp;&nbsp;&nbsp; type master;<br \/> &nbsp;&nbsp;&nbsp;&nbsp; file &quot;localhost&quot;;<br \/> };<\/p>\n<p> zone &quot;0.0.127.in-addr.arpa&quot; {<br \/> &nbsp;&nbsp;&nbsp;&nbsp; type master;<br \/> &nbsp;&nbsp;&nbsp;&nbsp; file &quot;rev-127.0.0&quot;;<br \/> };<\/p>\n<p> zone &quot;dc1es.tnc.edu.tw&quot; {<br \/> &nbsp;&nbsp;&nbsp;&nbsp; type master;<br \/> &nbsp;&nbsp;&nbsp;&nbsp; file &quot;\/etc\/bind\/db.dc1es.tnc.edu.tw&quot;;<br \/> };<\/p>\n<p> zone &quot;182.26.163.in-addr.arpa&quot; {<br \/> &nbsp;&nbsp;&nbsp;&nbsp; type master;<br \/> &nbsp;&nbsp;&nbsp;&nbsp; file &quot;db.163.26.182&quot;;<br \/> };<\/p>\n<p> \/\/ \u65b0\u589e ::1 \u7684\u53cd\u89e3\u6a94<br \/> zone &quot;1.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.ip6.arpa.&quot;{<br \/> &nbsp;&nbsp;&nbsp;&nbsp; type master;<br \/> &nbsp;&nbsp;&nbsp;&nbsp; file &quot;rev.local6&quot;;<br \/> };<\/p>\n<p> \/\/ \u65b0\u589e 2001.288.75a6 \u7684\u53cd\u89e3\u6a94<br \/> zone &quot;6.a.5.7.8.8.2.0.1.0.0.2.ip6.arpa.&quot; {<br \/> &nbsp;&nbsp;&nbsp;&nbsp; type master;<br \/> &nbsp;&nbsp;&nbsp;&nbsp; file &quot;2001.288.75a6.rev&quot;;<br \/> };<br \/> \u4fee\u6539 db.xxx.tnc.edu.tw \u6b63\u89e3\u6a94<\/p>\n<p> <strong>\u3000\u8207\u4e0d\u9650\u905e\u8ff4\u67e5\u8a62\u505a\u6cd5\u76f8\u540c\uff0c\u8acb\u53c3\u8003\u524d\u6587<\/strong><\/p>\n<p> \u5efa\u7acb ::1 \u53ca 2001.288.75xx.rev \u53cd\u89e3\u6a94<\/p>\n<p> <strong>\u3000\u8207\u4e0d\u9650\u905e\u8ff4\u67e5\u8a62\u505a\u6cd5\u76f8\u540c\uff0c\u8acb\u53c3\u8003\u524d\u6587 <\/strong><\/p>\n","protected":false},"excerpt":{"rendered":"<p>DNS\u96d9\u5411\u89e3\u6790\u670d\u52d9\uff08Linux\u4e3b\u6a5f\u4f3a\u670d\u5668\u67b6\u8a2d\u6280\u8853\uff09Domain Name Server \u672c\u6587\u4e26\u4e0d\u5728\u4ecb\u7d39\u5f9e\u7121\u5230\u6709 [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":527,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[7],"tags":[20],"class_list":["post-44","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-linux","tag-linux"],"_links":{"self":[{"href":"https:\/\/por.tw\/linux\/wp-json\/wp\/v2\/posts\/44"}],"collection":[{"href":"https:\/\/por.tw\/linux\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/por.tw\/linux\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/por.tw\/linux\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/por.tw\/linux\/wp-json\/wp\/v2\/comments?post=44"}],"version-history":[{"count":0,"href":"https:\/\/por.tw\/linux\/wp-json\/wp\/v2\/posts\/44\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/por.tw\/linux\/wp-json\/wp\/v2\/media\/527"}],"wp:attachment":[{"href":"https:\/\/por.tw\/linux\/wp-json\/wp\/v2\/media?parent=44"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/por.tw\/linux\/wp-json\/wp\/v2\/categories?post=44"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/por.tw\/linux\/wp-json\/wp\/v2\/tags?post=44"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}