如何在未绑定的情况下为172.0.0.0/8转发反向查找,它可以无问题地工作10.0.0.0/8。我的工作unbound.conf看起来如下:
.....
.....
access-control: 10.0.0.0/8 allow
access-control: 172.16.0.0/12 allow
access-control: 192.168.0.0/16 allow
access-control: 127.0.0.0/8 allow
access-control: ::1 allow
.....
.....
local-zone: "10.IN-ADDR.ARPA" transparent
local-zone: "16.172.IN-ADDR.ARPA" transparent
local-zone: "19.172.IN-ADDR.ARPA" transparent
local-zone: "20.172.IN-ADDR.ARPA" transparent
local-zone: "29.172.IN-ADDR.ARPA" transparent
local-zone: "30.172.IN-ADDR.ARPA" transparent
local-zone: "31.172.IN-ADDR.ARPA" transparent
local-zone: "168.192.IN-ADDR.ARPA" transparent
forward-zone:
name: "."
forward-addr: ns01.domain.local
forward-addr: ns02.domain.local我想用这种方式修改它,但它不起作用。我只想避免添加所有的网络:
.....
.....
access-control: 10.0.0.0/8 allow
access-control: 172.0.0.0/8 allow
access-control: 192.168.0.0/16 allow
access-control: 127.0.0.0/8 allow
access-control: ::1 allow
.....
.....
local-zone: "10.IN-ADDR.ARPA" transparent
local-zone: "172.IN-ADDR.ARPA" transparent
local-zone: "168.192.IN-ADDR.ARPA" transparent
forward-zone:
name: "."
forward-addr: ns01.domain.local
forward-addr: ns02.domain.local谢谢你的帮助。
发布于 2016-12-13 15:41:53
172.16.0.0/12中的所有子网应分别添加如下:
.....
.....
access-control: 10.0.0.0/8 allow
access-control: 172.16.0.0/12 allow
access-control: 192.168.0.0/16 allow
access-control: 127.0.0.0/8 allow
access-control: ::1 allow
.....
.....
local-zone: "10.IN-ADDR.ARPA" transparent
local-zone: "16.172.IN-ADDR.ARPA" transparent
local-zone: "17.172.IN-ADDR.ARPA" transparent
.....
.....
.....
local-zone: "30.172.IN-ADDR.ARPA" transparent
local-zone: "31.172.IN-ADDR.ARPA" transparent
local-zone: "168.192.IN-ADDR.ARPA" transparent
forward-zone:
name: "."
forward-addr: ns01.domain.local
forward-addr: ns02.domain.local我将用dnsmasq代替解束缚。非常感谢!
https://unix.stackexchange.com/questions/328968
复制相似问题