Bind 9

Petr Rehor prehor at gmail.com
Sat Dec 12 22:06:08 CET 2009


2009/11/26 Zbyněk Burget <zburget at burgnet.cz>:
> options {
>        directory       "/etc/namedb";
>        pid-file        "/var/run/named/pid";
>        dump-file       "/var/dump/named_dump.db";
>        statistics-file "/var/stats/named.stats";
>        allow-query     {zde jsem vyjmenoval vnitrni site - bez tohoto radku to blbne};

Tady by meli byt vyjmenovane bloky IP adres ktere mohou klast
jakekoliv dotazy, tedy tve interni site. Tim je dane defaultni omezeni
pro cely DNS server. Nezapomen na localhost.

> zone "sfproduction.cz" {
>        type master;
>        file "master/sfproduction.cz.db";
>        allow-transfer {sekundarni dns};
> };
> zone "146.197.217.in-addr.arpa" {
>        type master;
>        file "master/146.197.217.in-addr.arpa.db";
>        allow-transfer {sekundarni dns;};
> };

Tady ti chybi povoleni dotazovat se na zaznamy v techto zonach pro cely
Internet. Do kazde zony musis pridat:

     allow-query     { any; };

P.


More information about the Users-l mailing list