5,bind-chroot 安装启动

发布时间 2023-10-09 10:55:43作者: pwcc
1、bind软件安装后,会产生几个固有文件,分为两类:一类是配置文件在/etc目录下,一类是dns记录文件在/var/named目录下。
yum install -y bind bind-chroot bind-utils

bind:bind的主程序软件包,进程名为named
bind-chroot:为bind提供chroot功能,将bind进程限制在自己的家目录下,防止错误的权限设置影响到整个系统。
bind-utils:提供一些工具。如dig


2. bind配置
[root@VM-0-9-centos etc]# 
[root@VM-0-9-centos etc]# pwd
/var/named/chroot/etc
[root@VM-0-9-centos etc]# ln /etc/named.* .
[root@VM-0-9-centos etc]# ll
total 24
drwxr-x--- 2 root named 4096 Jul 19 20:47 named
-rw-r----- 2 root named 1806 Jul 19 20:48 named.conf
-rw-r--r-- 2 root named 3923 Jul 19 20:48 named.iscdlv.key
-rw-r----- 2 root named  931 Jun 21  2007 named.rfc1912.zones
-rw-r--r-- 2 root named 1886 Apr 13  2017 named.root.key
drwxr-x--- 3 root named 4096 Sep 30 21:52 pki
[root@VM-0-9-centos etc]#
[root@VM-0-9-centos named]# pwd
/var/named/chroot/var/named
[root@VM-0-9-centos named]# ln /var/named/named.* .
[root@VM-0-9-centos named]# ll
total 16
-rw-r----- 2 root named 2253 Apr  5  2018 named.ca
-rw-r----- 2 root named  152 Dec 15  2009 named.empty
-rw-r----- 2 root named  152 Jun 21  2007 named.localhost
-rw-r----- 2 root named  168 Dec 15  2009 named.loopback
[root@VM-0-9-centos named]# 
[root@VM-0-9-centos named]# 
[root@VM-0-9-centos named]# mkdir data dynamic slaves
[root@VM-0-9-centos named]# 
[root@VM-0-9-centos named]# chown -R named.named data/ dynamic/ slaves/
[root@VM-0-9-centos named]# systemctl start named-chroot
[root@VM-0-9-centos named]# pwd
/var/named/chroot/var/named
[root@VM-0-9-centos named]# systemctl enable named-chroot