我试图在centos7上安装绑定服务器。我配置了name.config和db.zone myroot-servers.loc。我检查命名
~# @localhost ~#命名-checkconf root@localhost ~# sudo命名-校验区myroot-servers.loc /etc/named/ zone /db.myroot-servers.loc/etc/命名/ zone /db.myroot-servers.loc:2: SOA记录未位于区域顶部(IN.myroot-servers.loc)区域myroot-servers.loc/IN:从主文件加载/etc/命名区域/db.myroot/db.myroot-servers.loc失败:未在区域顶部-- myroot-servers.loc/IN:。
named.config
acl "trusted" {
10.128.10.11; # ns1 - can be set to localhost
10.128.20.12; # ns2
10.128.100.101; # host1
10.128.200.102; # host2
};
options {
listen-on port 53 { 127.0.0.1; 10.128.10.11; };
# listen-on-v6 port 53 { ::1; };
allow-transfer { 10.128.20.12; }; # disable zone transfers by default
allow-query { trusted; }; # allows queries from "trusted" clients
};
include "/etc/named/named.conf.local";db.myroot-server.loc
$TTL 604800
IN SOA ns1.myroot-servers.loc. admin.myroot-servers.loc. (
3 ; Serial
604800 ; Refresh
86400 ; Retry
2419200 ; Expire
604800 ) ; Negative Cache TTL
;
; name servers - NS records
IN NS ns1.myroot-servers.loc.
IN NS ns2.myroot-servers.loc.
; name servers - A records
ns1.myroot-servers.loc. IN A 10.128.10.11
ns2.myroot-servers.loc. IN A 10.128.20.12
; 10.128.0.0/16 - A records
host1.myroot-servers.loc. IN A 10.128.100.101
host2.myroot-servers.loc. IN A 10.128.200.102发布于 2018-05-26 13:19:24
尝试在区域记录的顶部添加$origin .myroot-servers.loc。
发布于 2019-07-25 09:26:49
这是对我的实验有影响的原因。关于dnssec-signzone,我在给定区域文件的"-o“标志参数中有错误的域,所以它说(在syslog中).
从主文件/etc/bind/Zones/db.somedomain.tld.zone.signed加载失败:不在区域顶部
绑定9.11.5-P1-1 ubuntu2.5-Ubuntu
https://stackoverflow.com/questions/49381675
复制相似问题