我想让一个分裂的dns服务器在我们的网络上工作。bind9启动良好,但当我指向其他服务器时,resolf.conf会收到这些拒绝访问的消息。(出于安全考虑,我已将我们的网站名称改为OURWEBSITE)
root@server:~# host zenoss
Host zenoss not found: 5(REFUSED)
root@server:~# host google.com
Host google.com.OURWEBSITE.com not found: 5(REFUSED)这是我们的named.conf
include "/etc/bind/named.conf.options";
include "/etc/bind/named.conf.local";
// include "/etc/bind/named.conf.default-zones";
acl internal {
192.168.168.0/25;
localhost;
};
//
// Lan zone recursion is the default
//
view "internal-view" {
match-clients { internal; };
zone "." IN {
type hint;
file "/etc/bind/db.root";
};
zone "internal.OURWEBSITE.com " IN {
type master;
file "/etc/bind/zones/lan.master.OURWEBSITE.com";
allow-transfer { key TRANSFER; };
};
};
//
// external zone w/o recursion
//
view "external-view" {
match-clients { any; };
recursion no;
zone "OURWEBSITE.com " IN {
type master;
file "/etc/bind/zones/internet.master.OURWEBSITE.com";
allow-transfer { key TRANSFER; };
};
};发布于 2011-10-04 20:02:50
将allow-recursion { internal; };添加到内部视图,因为{ localnets; localhost; };是默认的。
哦,named.conf.options中还有其他配置吗?这也应包括在内。
https://serverfault.com/questions/318201
复制相似问题