DNS āĻāĻŋ?
Domain Name System (DNS) āĻāĻŽāĻ¨ āĻāĻāĻāĻŋ āĻĄāĻŋāĻ¸ā§āĻā§āĻ°āĻŋāĻŦāĻŋāĻāĻā§āĻĄ āĻšāĻžāĻ¯āĻŧāĻžāĻ°āĻžāĻ°āĻāĻŋāĻā§āĻ¯āĻžāĻ˛ āĻ¸āĻŋāĻ¸ā§āĻā§āĻŽ, āĻ¯āĻžāĻ° āĻ¸āĻžāĻšāĻžāĻ¯ā§āĻ¯ āĻāĻžā§āĻž āĻŦāĻ°ā§āĻ¤āĻŽāĻžāĻ¨ āĻāĻ¨ā§āĻāĻžāĻ°āĻ¨ā§āĻ āĻāĻ˛ā§āĻĒāĻ¨āĻžāĻ āĻāĻ°āĻž āĻ¯āĻžā§āĻ¨āĻžāĨ¤ āĻāĻ¨ā§āĻāĻžāĻ°āĻ¨ā§āĻ āĻŽā§āĻ˛āĻ¤āĻ āĻŦāĻŋāĻļā§āĻŦāĻŦā§āĻ¯āĻžāĻĒā§ āĻāĻā§ āĻ āĻĒāĻ°ā§āĻ° āĻ¸āĻžāĻĨā§ āĻ¸āĻāĻ¯ā§āĻā§āĻ¤ āĻāĻāĻāĻŋ āĻāĻŽā§āĻĒāĻŋāĻāĻāĻžāĻ° āĻ¨ā§āĻāĻā§āĻžāĻ°ā§āĻ āĻŦā§āĻ¯āĻŦāĻ¸ā§āĻĨāĻžāĻĒāĻ¨āĻž āĻ¸āĻŋāĻ¸ā§āĻā§āĻŽ, āĻ¯ā§āĻāĻžāĻ¨ā§ āĻĄāĻŋāĻāĻžāĻāĻ¸ āĻ¸āĻŽā§āĻšā§āĻ° āĻŽāĻ§ā§āĻ¯ā§ āĻ¸āĻāĻ¯ā§āĻ āĻ¸ā§āĻĨāĻžāĻĒāĻ¨ āĻāĻŦāĻ āĻ¯ā§āĻāĻžāĻ¯ā§āĻ āĻāĻ° āĻāĻ¨ā§āĻ¯ā§ āĻāĻāĻĒāĻŋ āĻāĻĄā§āĻ°ā§āĻ¸ āĻ¨āĻžāĻŽāĻ āĻāĻ āĻĒā§āĻ°āĻāĻžāĻ° āĻāĻĄā§āĻ°ā§āĻ¸ āĻŦā§āĻ¯āĻŦāĻšāĻžāĻ° āĻāĻ°āĻž āĻšā§āĨ¤ āĻāĻ¨ā§āĻāĻžāĻ°āĻ¨ā§āĻ-āĻ āĻ¸āĻāĻ˛ āĻ§āĻ°āĻ¨ā§āĻ° āĻĄāĻžāĻāĻž āĻāĻĻāĻžāĻ¨ āĻĒā§āĻ°āĻĻāĻžāĻ¨ āĻāĻ āĻāĻāĻĒāĻŋ- āĻāĻĄā§āĻ°ā§āĻ¸ āĻāĻ° āĻŽāĻžāĻ§ā§āĻ¯āĻŽā§ āĻšā§ā§ āĻĨāĻžāĻā§āĨ¤ āĻāĻŋāĻ¨ā§āĻ¤ā§ āĻāĻāĻāĻ¨ āĻ¸āĻžāĻ§āĻžāĻ°āĻŖ āĻŦā§āĻ¯āĻŦāĻšāĻžāĻ°āĻāĻžāĻ°ā§āĻ° āĻ¨āĻŋāĻāĻ āĻāĻ¨ā§āĻāĻžāĻ°āĻ¨ā§āĻ āĻŦā§āĻ¯āĻŦāĻšāĻžāĻ°ā§āĻ° āĻāĻ¨ā§āĻ¯ āĻāĻāĻĒāĻŋ-āĻāĻĄā§āĻ°ā§āĻ¸ āĻŽāĻ¨ā§āĻ°āĻžāĻāĻž āĻāĻāĻāĻŋ āĻĻā§āĻ°āĻš āĻŦā§āĻ¯āĻžāĻĒāĻžāĻ°āĨ¤ āĻ āĻāĻ¨ā§āĻ¯ āĻāĻ¨ā§āĻāĻžāĻ°āĻ¨ā§āĻ āĻāĻŽā§āĻ¨āĻŋāĻāĻā§āĻļāĻ¨ āĻ¸āĻšāĻāĻ˛āĻā§āĻ¯ āĻāĻ°āĻ¤ā§ āĻāĻŽāĻ¨ āĻāĻāĻāĻŋ āĻĒā§āĻ°āĻ¯ā§āĻā§āĻ¤āĻŋ āĻĄā§āĻā§āĻ˛āĻĒ āĻāĻ°āĻž āĻšā§ āĻ¯āĻžāĻ° āĻ¨āĻžāĻŽ āĻšāĻ˛ā§ Domain Name System (DNS)āĨ¤ āĻāĻ° āĻĻāĻžāĻ°āĻž āĻāĻŽāĻŋāĻāĻ¨āĻŋāĻā§āĻļāĻ¨ āĻāĻ° āĻ¸āĻŽā§ āĻŦāĻŋāĻāĻŋāĻ¨ā§āĻ¨ āĻ§āĻ°āĻ¨ā§āĻ° āĻ¨āĻžāĻŽ āĻŦā§āĻ¯āĻŦāĻšāĻžāĻ° āĻāĻ°āĻž āĻšā§ āĻ¯āĻž DNS āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻāĻ° āĻŽāĻžāĻ§ā§āĻ¯āĻŽā§ āĻ¸ā§āĻŦā§āĻāĻā§āĻ°āĻŋā§āĻāĻžāĻŦā§ āĻāĻāĻĒāĻŋ-āĻāĻĄā§āĻ°ā§āĻ¸ āĻ āĻĒāĻ°āĻŋāĻŦāĻ°ā§āĻ¤āĻŋāĻ¤ āĻšā§ā§Â āĻā§āĻ˛āĻžā§ā§āĻ¨ā§āĻ āĻāĻŦāĻ āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻāĻ° āĻŽāĻ§ā§āĻ¯ā§ āĻ¯ā§āĻāĻžāĻ¯ā§āĻ āĻ¸āĻŽā§āĻĒāĻ¨ā§āĻ¨ āĻāĻ°ā§āĨ¤
āĻāĻāĻžāĻ¨ā§ āĻŦā§āĻ¯āĻŦāĻšā§āĻ¤ āĻ¨āĻžāĻŽāĻā§ āĻĄā§āĻŽā§āĻāĻ¨ āĻ¨ā§āĻāĻŽ (Domain Name) āĻŦāĻ˛āĻž āĻšā§ā§ āĻĨāĻžāĻā§, āĻāĻ° āĻāĻāĻāĻŋ Domain Name System (DNS) āĻĻā§āĻ āĻ§āĻ°āĻ¨ā§āĻ° āĻāĻžāĻ āĻāĻ°ā§ āĻĨāĻžāĻā§, āĻĄā§āĻŽā§āĻāĻ¨ āĻ¨ā§āĻāĻŽ (Domain Name) āĻā§ āĻĒāĻ°āĻŋāĻŦāĻ°ā§āĻ¤āĻ¨ āĻāĻ°ā§ āĻāĻāĻĒāĻŋ-āĻāĻĄā§āĻ°ā§āĻ¸ āĻĻāĻŋā§ā§ āĻĨāĻžāĻā§ āĻ¯āĻžāĻā§ āĻĢāĻ°āĻā§āĻžāĻ°ā§āĻĄ āĻ°āĻŋāĻāĻ˛āĻÂ āĻāĻŦāĻ āĻāĻāĻĒāĻŋ-āĻāĻĄā§āĻ°ā§āĻ¸ āĻāĻ° āĻĒāĻ°āĻŋāĻŦāĻ°ā§āĻ¤ā§ āĻĄā§āĻŽā§āĻāĻ¨ āĻ¨ā§āĻāĻŽ (Domain Name) āĻĻāĻŋā§ā§ āĻĨāĻžāĻā§ āĻ¯āĻžāĻā§ āĻ°āĻŋāĻāĻžāĻ°ā§āĻ¸ āĻ°āĻŋāĻāĻ˛āĻ āĻŦāĻ˛āĻž āĻšā§ā§ āĻĨāĻžāĻā§āĨ¤
DNS āĻāĻŽā§āĻĒā§āĻ¨ā§āĻ¨ā§āĻāĻ
ā§§āĨ¤ DNS Resolver:
āĻāĻāĻŋ āĻā§āĻ˛āĻžā§ā§āĻ¨ā§āĻ āĻāĻ° āĻšā§ā§ āĻāĻžāĻ āĻāĻ°ā§āĨ¤ āĻ¯āĻāĻ¨ āĻā§āĻ˛āĻžā§ā§āĻ¨ā§āĻ āĻāĻāĻāĻŋ āĻĄā§āĻŽā§āĻāĻ¨ āĻāĻ° āĻ¨āĻŋāĻ°ā§āĻĻāĻŋāĻˇā§āĻ āĻ¸āĻžāĻ°ā§āĻāĻŋāĻ¸ā§āĻ° āĻāĻ¨ā§āĻ¯ āĻ¤āĻžāĻ° DNS āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻā§ āĻ°āĻŋāĻā§ā§ā§āĻ¸ā§āĻ āĻĒāĻžāĻ āĻžā§ DNS Resolver āĻ¤āĻāĻ¨ āĻāĻāĻĒāĻŋ-āĻāĻĄā§āĻ°ā§āĻ¸ āĻāĻ° āĻāĻ¨ā§āĻ¯ āĻ¨ā§āĻŽ āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° (NS) āĻāĻ° āĻ¨āĻŋāĻāĻ DNS āĻ°āĻŋāĻā§ā§ā§āĻ¸ā§āĻ āĻā§ā§ā§āĻ°ā§ āĻĒāĻžāĻ āĻžā§āĨ¤ āĻāĻŽāĻ°āĻž āĻāĻ¨ā§āĻāĻžāĻ°āĻ¨ā§āĻ āĻŦā§āĻ¯āĻŦāĻšāĻžāĻ°ā§āĻ° āĻāĻ¨ā§āĻ¯ āĻāĻ āĻāĻŽā§āĻĒā§āĻ¨ā§āĻ¨ā§āĻāĻāĻŋ āĻŦā§āĻļā§ āĻŦā§āĻ¯āĻžāĻŦāĻšāĻžāĻ° āĻāĻ°ā§ āĻĨāĻžāĻāĻŋāĨ¤
ā§¨āĨ¤ Name Servers (NS):
āĻāĻāĻāĻŋ āĻĄā§āĻŽā§āĻāĻ¨ āĻāĻ° Information āĻ¯ā§ āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻ store āĻāĻ°āĻž āĻĨāĻžāĻā§ āĻ¤āĻžāĻā§ āĻāĻ āĻĄā§āĻŽā§āĻāĻ¨ āĻāĻ° Name Server āĻŦāĻ˛āĻž āĻšā§āĨ¤ āĻāĻāĻāĻŋ āĻĄā§āĻŽā§āĻāĻ¨ āĻāĻ° āĻ¯āĻžāĻŦāĻ¤ā§ā§ Information āĻ¤āĻžāĻ° Name ServerāĻ store āĻāĻ°āĻž āĻĨāĻžāĻā§āĨ¤
ā§ŠāĨ¤Â Resource Records (RR):
Name ServerāĻ store āĻāĻ°āĻž āĻāĻāĻāĻŋ āĻĄā§āĻŽā§āĻāĻ¨ āĻĒā§āĻ°āĻ¤ā§āĻ¯ā§āĻāĻāĻŋ āĻ¸āĻžāĻ°ā§āĻāĻŋāĻ¸ (web, mail, smtp etc.) āĻāĻ°Â Information āĻā§āĻ Resource Records (RR) āĻŦāĻ˛ā§āĨ¤
 DNS āĻāĻŋāĻāĻžāĻŦā§ āĻāĻžāĻ āĻāĻ°ā§?
āĻāĻŽāĻ°āĻž āĻāĻā§āĻ āĻā§āĻ¨ā§āĻāĻŋ Domain Name System (DNS) āĻāĻāĻāĻŋ āĻĄāĻŋāĻ¸ā§āĻā§āĻ°āĻŋāĻŦāĻŋāĻāĻā§āĻĄ āĻšāĻžāĻ¯āĻŧāĻžāĻ°āĻžāĻ°āĻāĻŋāĻā§āĻ¯āĻžāĻ˛ āĻ¸āĻŋāĻ¸ā§āĻā§āĻŽ, āĻ¯ā§āĻāĻžāĻ¨ā§ āĻ āĻ¨ā§āĻāĻā§āĻ˛ā§ āĻ¸āĻŋāĻ¸ā§āĻā§āĻŽ āĻāĻ° āĻ¸āĻŽāĻ¨ā§āĻŦā§ā§ āĻāĻ° āĻāĻ°ā§āĻŽāĻĒā§āĻ°āĻā§āĻ°āĻŋā§āĻž āĻ¸āĻŽā§āĻĒāĻ¨ā§āĻ¨ āĻāĻ°ā§ āĻĨāĻžāĻā§āĨ¤ āĻāĻāĻžāĻ¨ā§ āĻāĻŽāĻ°āĻž āĻāĻ°ā§āĻŽāĻĒā§āĻ°āĻā§āĻ°āĻŋā§āĻžāĻ° āĻ§āĻžāĻĒāĻā§āĻ˛ā§ āĻ¨āĻŋā§ā§ āĻŦāĻŋāĻ¸ā§āĻ¤āĻžāĻ°āĻŋāĻ¤ āĻāĻ˛ā§āĻāĻ¨āĻž āĻāĻ°āĻŦā§āĨ¤
āĻ§āĻžāĻĒ-ā§§: āĻāĻāĻžāĻ¨ā§ āĻāĻāĻāĻ¨ āĻŦā§āĻ¯āĻŦāĻšāĻžāĻ°āĻāĻžāĻ°ā§ āĻ¯āĻāĻ¨ āĻ¤āĻžāĻ° āĻŦā§āĻ°āĻžāĻāĻāĻžāĻ°ā§ āĻāĻāĻāĻŋ URL (āĻĄā§āĻŽā§āĻāĻ¨ āĻ¨ā§āĻāĻŽ) āĻŦā§āĻ°āĻžāĻāĻ āĻāĻ°āĻžāĻ° āĻāĻ¨ā§āĻ¯ā§ āĻ°āĻŋāĻā§ā§ā§āĻ¸ā§āĻ āĻāĻ°āĻŦā§, āĻ°āĻŋāĻā§ā§ā§āĻ¸ā§āĻ āĻāĻŋ āĻāĻā§āĻ¤ āĻĄāĻŋāĻāĻžāĻāĻ¸ (āĻĒāĻŋāĻ¸āĻŋ, āĻ˛ā§āĻ¯āĻžāĻĒāĻāĻĒ, āĻŽā§āĻŦāĻžāĻāĻ˛ āĻĄāĻŋāĻāĻžāĻāĻ¸) āĻāĻ° DNS Resolver āĻāĻ° āĻ¨āĻŋāĻāĻ āĻāĻāĻĒāĻŋ-āĻāĻĄā§āĻ°ā§āĻ¸ āĻāĻ° āĻāĻ¨ā§āĻ¯ āĻĢāĻ°āĻā§āĻžāĻ°ā§āĻĄ āĻāĻ°āĻŦā§
āĻ§āĻžāĻĒ-ā§¨: DNS Resolver āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻ°āĻŋāĻā§ā§ā§āĻ¸ā§āĻāĻāĻŋāĻā§ āĻ°ā§āĻ āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻāĻ° āĻ¨āĻŋāĻāĻ āĻĢāĻ°āĻā§āĻžāĻ°ā§āĻĄ āĻāĻ°āĻŦā§ (ā§¨)āĨ¤ āĻ°ā§āĻ āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻĄā§āĻŽā§āĻāĻ¨ āĻ¨ā§āĻāĻŽ āĻāĻžāĻāĻĒ (.com, .org, .net, .edu, .bd etc.) āĻāĻ° āĻāĻĒāĻ° āĻāĻŋāĻ¤ā§āĻ¤āĻŋ āĻāĻ°ā§ DNS Resolver āĻā§ āĻĄā§āĻŽā§āĻāĻ¨ āĻāĻ° āĻ¨āĻŋāĻ°ā§āĻĻāĻŋāĻˇā§āĻ Top Level Domain Name Server (TLD NS) āĻāĻ° āĻāĻĄā§āĻ°ā§āĻ¸āĻāĻŋ āĻāĻžāĻ¨āĻŋā§ā§ āĻĻāĻŋāĻŦā§ (ā§Š)āĨ¤
āĻ§āĻžāĻĒ-ā§Š: DNS Resolver āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻāĻ āĻĄā§āĻŽā§āĻāĻ¨ āĻāĻ° Top Level Domain Name Server (TLD NS) āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻāĻ° āĻ¸āĻā§āĻā§ āĻ¯ā§āĻāĻžāĻ¯ā§āĻ āĻāĻ°āĻŦā§ āĻāĻŦāĻ āĻĄā§āĻŽā§āĻāĻ¨āĻāĻŋāĻ° āĻāĻ¨āĻĢāĻ°āĻŽā§āĻļāĻ¨ āĻāĻžāĻāĻŦā§ (ā§Ē)āĨ¤ Top Level Domain Name Server (TLD NS) āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻāĻ āĻĄā§āĻŽā§āĻāĻ¨ āĻāĻ° āĻ¨ā§āĻŽ āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° (NS) āĻāĻ° āĻāĻĄā§āĻ°ā§āĻ¸āĻāĻŋ āĻāĻžāĻ¨āĻŋā§ā§ āĻĻāĻŋāĻŦā§ (ā§Ģ)āĨ¤
āĻ§āĻžāĻĒ-ā§Ē: DNS Resolver āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻāĻ āĻĄā§āĻŽā§āĻāĻ¨ āĻāĻ° āĻ¨āĻŋāĻ°ā§āĻĻāĻŋāĻˇā§āĻ āĻ¸āĻžāĻ°ā§āĻāĻŋāĻ¸ (web, mail, smtp etc.) āĻāĻ° āĻāĻ¨ā§āĻ¯ā§ āĻāĻ āĻĄā§āĻŽā§āĻāĻ¨ āĻāĻ° āĻ¨ā§āĻŽ āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° (NS) āĻāĻ° āĻ¸āĻāĻā§ āĻ¯ā§āĻāĻžāĻ¯ā§āĻ āĻāĻ°āĻŦā§ (ā§Ŧ)āĨ¤ āĻ¨ā§āĻŽ āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° (NS) āĻāĻ āĻ¸āĻžāĻ°ā§āĻāĻŋāĻ¸ āĻāĻ° āĻāĻ¨ā§āĻ¯ā§ āĻāĻāĻĒāĻŋ-āĻāĻĄā§āĻ°ā§āĻ¸ (www.google.com IP:172.217.26.206) āĻĒā§āĻ°āĻĻāĻžāĻ¨ āĻāĻ°āĻŦā§ (ā§)āĨ¤
āĻ§āĻžāĻĒ-ā§Ģ: āĻāĻŦāĻžāĻ° DNS Resolver āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻā§āĻ˛āĻžā§ā§āĻ¨ā§āĻ āĻā§ āĻāĻ āĻ¨āĻŋāĻ°ā§āĻĻāĻŋāĻˇā§āĻ āĻ¸āĻžāĻ°ā§āĻāĻŋāĻ¸ āĻāĻ° āĻāĻāĻĒāĻŋ-āĻāĻĄā§āĻ°ā§āĻ¸ (www.google.com IP:172.217.26.206) āĻĒā§āĻ°āĻĻāĻžāĻ¨ āĻāĻ°āĻŦā§ (ā§Ž)āĨ¤ āĻā§āĻ˛āĻžā§ā§āĻ¨ā§āĻ āĻāĻā§āĻ¤ āĻ¸āĻžāĻ°ā§āĻāĻŋāĻ¸ āĻāĻ° āĻāĻ¨ā§āĻ¯ā§ āĻ¸āĻžāĻ°ā§āĻāĻŋāĻ¸ āĻāĻ° āĻāĻāĻĒāĻŋ-āĻāĻĄā§āĻ°ā§āĻ¸ (www.google.com IP:172.217.26.206) āĻ āĻ¯ā§āĻāĻžāĻ¯ā§āĻ āĻāĻ°āĻŦā§ (ā§¯)āĨ¤ āĻāĻāĻžāĻŦā§ DNS Resolving āĻĒā§āĻ°āĻā§āĻ°āĻŋā§āĻž āĻ¸āĻŽā§āĻĒāĻ¨ā§āĻ¨ āĻāĻ°āĻŦā§āĨ¤
DNS āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻāĻ° āĻĒā§āĻ°āĻāĻžāĻ°āĻā§āĻĻāĻ
āĻāĻžāĻ°ā§āĻ¯āĻĒā§āĻ°āĻŖāĻžāĻ˛ā§ āĻāĻ¤ āĻĒāĻžāĻ°ā§āĻĨāĻā§āĻ¯āĻ
ā§§āĨ¤ Authoritative-Only DNS Servers: āĻ¯ā§ DNS āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻ¤āĻžāĻ° āĻĄāĻžāĻāĻžāĻŦā§āĻ¸ āĻ āĻ°āĻā§āĻˇāĻŋāĻ¤ āĻĄā§āĻŽā§āĻāĻ¨ āĻāĻ° Information āĻŦā§āĻ¯āĻ¤ā§āĻ¤ āĻ āĻ¨ā§āĻ¯ āĻā§āĻ¨ āĻĄā§āĻŽā§āĻāĻ¨ āĻāĻ° āĻ°āĻŋāĻā§ā§ā§āĻ¸ā§āĻ āĻā§ā§ā§āĻ°ā§ Accept āĻāĻ°ā§āĻ¨āĻž āĻ¤āĻžāĻā§ Authoritative-Only DNS Servers āĻŦāĻ˛āĻž āĻšā§āĨ¤ āĻā§āĻ¨ āĻĄā§āĻŽā§āĻāĻ¨ āĻāĻ° Name Server āĻ āĻāĻ āĻĄā§āĻŽā§āĻāĻ¨ āĻāĻ° Authoritative DNS Server āĻāĻ° āĻāĻāĻŋ āĻ¯āĻĻāĻŋ āĻ āĻ¨ā§āĻ¯ āĻā§āĻ¨ āĻĄā§āĻŽā§āĻāĻ¨ āĻāĻ° āĻ°āĻŋāĻā§ā§ā§āĻ¸ā§āĻ āĻā§ā§ā§āĻ°ā§ Accept āĻ¨āĻž āĻāĻ°ā§ āĻ¤āĻāĻ¨ āĻāĻāĻŋāĻā§ Authoritative-Only DNS Servers āĻŦāĻ˛āĻž āĻšāĻŦā§āĨ¤
ā§¨āĨ¤ Caching-Only or Caching DNS Server: DNS Resolver āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻā§āĻ Caching-Only or Caching DNS Server āĻŦāĻ˛āĻž āĻšā§āĨ¤ Caching DNS Server āĻ āĻā§āĻ¨ āĻĄā§āĻŽā§āĻāĻ¨ āĻāĻ° Information āĻĨāĻžāĻā§āĻ¨āĻžāĨ¤ āĻāĻāĻŋ DNS āĻ°āĻŋāĻā§ā§ā§āĻ¸ā§āĻ āĻā§ā§ā§āĻ°ā§āĻ° āĻŽāĻžāĻ§ā§āĻ¯āĻŽā§ Name Server āĻĨā§āĻā§ āĻŦāĻŋāĻāĻŋāĻ¨ā§āĻ¨ āĻĄā§āĻŽā§āĻāĻ¨ āĻāĻ° Information āĻāĻžāĻ˛ā§āĻā§āĻ āĻāĻ°ā§ āĻā§āĻ˛āĻžā§ā§āĻ¨ā§āĻ āĻā§ āĻĒā§āĻ°āĻĻāĻžāĻ¨ āĻāĻ°ā§ āĻĨāĻžāĻā§āĨ¤ āĻĻā§āĻ°ā§āĻ¤ āĻ°āĻŋāĻā§ā§ā§āĻ¸ā§āĻ resolve āĻāĻ° āĻāĻ¨ā§āĻ¯ Frequent āĻŦā§āĻ°āĻžāĻāĻ āĻāĻ°āĻž āĻĄā§āĻŽā§āĻāĻ¨ āĻā§āĻ˛ā§āĻ° āĻāĻ¨ā§āĻ¯ā§ āĻāĻāĻāĻŋ Cache āĻā§āĻ¯āĻžāĻŦāĻ˛ āĻ¤ā§āĻ°āĻŋ āĻāĻ°ā§ āĻ¨āĻŋāĻ°ā§āĻĻāĻŋāĻˇā§āĻ āĻ¸āĻŽā§ āĻĒāĻ°ā§āĻ¯āĻ¨ā§āĻ¤ āĻ¤āĻĨā§āĻ¯ āĻ¸āĻāĻ°āĻā§āĻˇāĻŖ āĻāĻ°ā§āĨ¤
ā§ŠāĨ¤ Forwarding DNS Server: āĻāĻāĻŋāĻ Caching-Only or Caching DNS Server āĻŽāĻ¤āĻ āĻāĻžāĻ āĻāĻ°ā§, āĻ¤āĻŦā§ āĻāĻāĻŋ Name Server āĻ¸āĻŽā§āĻšā§āĻ° āĻ¸āĻāĻā§ āĻ¸āĻ°āĻžāĻ¸āĻ°āĻŋ āĻ¯ā§āĻāĻžāĻ¯ā§āĻ āĻ¨āĻž āĻāĻ°ā§ āĻ¸āĻŽāĻ¸ā§āĻ¤ DNS āĻ°āĻŋāĻā§ā§ā§āĻ¸ā§āĻ āĻā§āĻ˛ā§āĻā§ āĻāĻāĻāĻŋ āĻ¨āĻŋāĻ°ā§āĻĻāĻŋāĻˇā§āĻ DNS Resolver āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻ āĻĢāĻ°āĻā§āĻžāĻ°ā§āĻĄ āĻāĻ°ā§āĨ¤ āĻāĻāĻŋāĻ āĻĻā§āĻ°ā§āĻ¤ āĻ°āĻŋāĻā§ā§ā§āĻ¸ā§āĻ resolve āĻāĻ° āĻāĻ¨ā§āĻ¯ Frequent āĻŦā§āĻ°āĻžāĻāĻ āĻāĻ°āĻž āĻĄā§āĻŽā§āĻāĻ¨ āĻā§āĻ˛ā§āĻ° āĻāĻ¨ā§āĻ¯ā§ āĻāĻāĻāĻŋ Cache āĻā§āĻ¯āĻžāĻŦāĻ˛ āĻ¤ā§āĻ°āĻŋ āĻāĻ°ā§ āĻ¨āĻŋāĻ°ā§āĻĻāĻŋāĻˇā§āĻ āĻ¸āĻŽā§ āĻĒāĻ°ā§āĻ¯āĻ¨ā§āĻ¤ āĻ¤āĻĨā§āĻ¯ āĻ¸āĻāĻ°āĻā§āĻˇāĻŖ āĻāĻ°ā§āĨ¤
ā§ŽāĨ¤ Hybrid DNS Server: Caching DNS āĻāĻŦāĻ Authoritative DNS Server āĻāĻāĻ āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻĨā§āĻā§ āĻĒāĻ°āĻŋāĻāĻžāĻ˛āĻŋāĻ¤ āĻšāĻ˛ā§ āĻ¤āĻžāĻā§ āĻāĻŽāĻ°āĻž Hybrid DNS Server āĻŦāĻ˛āĻā§ āĻĒāĻžā§āĻŋāĨ¤
āĻ¸āĻŽā§āĻĒāĻ°ā§āĻ–āĻāĻ¤ āĻĒāĻžāĻ°ā§āĻĨāĻā§āĻ¯āĻ
ā§§āĨ¤ Primary or Master DNS Server: āĻāĻāĻŋ āĻāĻāĻāĻŋ Authoritative DNS ServerāĨ¤ āĻāĻāĻāĻŋ āĻĄā§āĻŽā§āĻāĻ¨ āĻāĻ° Information āĻāĻ° Master āĻĄāĻžāĻāĻžāĻŦā§āĻ¸ āĻāĻ āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻ āĻ¸āĻāĻ°āĻā§āĻˇāĻŖ āĻāĻ°āĻž āĻšā§ āĻāĻŦāĻ Resource Records (RR) āĻā§āĻ˛ā§ āĻāĻ āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻĨā§āĻā§āĻ āĻĄāĻžāĻāĻžāĻŦā§āĻ¸ āĻ āĻāĻ¨ā§āĻā§āĻ°āĻŋ āĻĻā§ā§āĻž āĻšā§ā§ āĻĨāĻžāĻā§āĨ¤
ā§¨āĨ¤ Secondary or Slave Servers: āĻāĻāĻŋāĻ āĻāĻāĻāĻŋ Authoritative DNS ServerāĨ¤ āĻāĻāĻāĻŋ āĻĄā§āĻŽā§āĻāĻ¨ āĻāĻ° Information āĻāĻ° Replicate (Slave) āĻĄāĻžāĻāĻžāĻŦā§āĻ¸ āĻāĻ āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻ āĻ¸āĻāĻ°āĻā§āĻˇāĻŖ āĻāĻ°āĻž āĻšā§āĨ¤ āĻāĻ āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻ āĻā§āĻ¨ Resource Records (RR) āĻāĻ¨ā§āĻā§āĻ°āĻŋ āĻĻā§ā§āĻž āĻšā§āĻ¨āĻž, Master āĻŦāĻž Primary āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻĨā§āĻā§ āĻĒā§āĻ˛ āĻāĻ°ā§ āĻĨāĻžāĻā§āĨ¤
ā§ŠāĨ¤ Public vs. Private Servers: āĻāĻ¨ā§āĻāĻžāĻ°āĻ¨ā§āĻ āĻ āĻ¯ā§ āĻā§āĻ āĻ¯ā§ āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻāĻ° āĻā§āĻ˛āĻžā§ā§āĻ¨ā§āĻ āĻšāĻ¤ā§ āĻĒāĻžāĻ°ā§ āĻ¸ā§āĻāĻžāĻ Public Server āĻ¯ā§āĻŽāĻ¨ 4.2.2.2, 8.8.8.8 āĻŦāĻšā§āĻ˛ āĻŦā§āĻ¯āĻŦāĻšā§āĻ¤ Public DNS Server āĻ¯ā§āĻā§āĻ˛ā§ Public DNS Resolver āĻšāĻŋāĻ¸ā§āĻŦā§ āĻāĻžāĻ āĻāĻ°āĻā§āĨ¤ āĻĒāĻā§āĻˇāĻžāĻ¨ā§āĻ¤āĻ°ā§ Private Server āĻšāĻ˛āĻ āĻ¯ā§āĻāĻžāĻ¨ā§ āĻā§āĻ˛āĻžā§ā§āĻ¨ā§āĻāĻĻā§āĻ° āĻā§ āĻāĻā§ āĻĨā§āĻā§āĻ āĻĄāĻŋāĻĢāĻžāĻāĻ¨ āĻāĻ°āĻž āĻĨāĻžāĻā§ āĻ¯ā§, āĻā§ āĻā§ āĻāĻ DNS āĻāĻ° āĻā§āĻ˛āĻžā§ā§āĻ¨ā§āĻ āĻšāĻ¤ā§ āĻĒāĻžā§āĻŦā§āĨ¤
DNS āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻāĻ¨āĻĢāĻŋāĻāĻžāĻ°ā§āĻļāĻ¨āĻ
DNS Server āĻāĻ¨āĻĢāĻŋāĻāĻžāĻ°ā§āĻļāĻ¨ āĻāĻ¨ā§āĻ¯ āĻāĻŽāĻžāĻĻā§āĻ° āĻāĻāĻāĻŋ āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻĒā§āĻ°ā§ā§āĻāĻ¨ āĻ¯ā§āĻāĻŋāĻ¤ā§ CentOS āĻ āĻĨāĻŦāĻž RHEL 7 āĻāĻ¨ā§āĻ¸āĻāĻ˛ āĻāĻ°āĻž āĻĨāĻžāĻāĻ¤ā§ āĻšāĻŦā§āĨ¤ āĻ¤āĻžāĻ°āĻĒāĻ° āĻāĻŽāĻ°āĻž āĻĒāĻ°āĻŦāĻ°ā§āĻ¤ā§ āĻ§āĻžāĻĒ āĻā§āĻ˛ā§ āĻĢāĻ˛ā§ āĻāĻ°ā§ DNS Server āĻāĻ¨āĻĢāĻŋāĻāĻžāĻ°ā§āĻļāĻ¨ āĻāĻ°āĻŦā§āĨ¤
ā§§āĨ¤ Scenario: āĻāĻŽāĻ°āĻž Primary āĻāĻŦāĻ Secondary DNS āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻāĻ¨āĻĢāĻŋāĻāĻžāĻ°ā§āĻļāĻ¨ āĻāĻ¨ā§āĻ¯ āĻ¨āĻŋāĻŽā§āĻ¨ā§āĻā§āĻ¤ Scenario āĻāĻŋ āĻŦā§āĻ¯āĻŦāĻšāĻžāĻ° āĻāĻ°āĻŦā§āĨ¤
Primary DNS Server:
Hostname : ns1
Domain Name : mahedi.me
IP Address : 192.168.1.5
Secondary DNS Server:
Hostname : ns2
Domain Name : mahedi.me
IP Address : 192.168.1.10
2. āĻāĻ¨āĻĢāĻŋāĻāĻžāĻ°ā§āĻļāĻ¨ Firewall
āĻĄāĻŋāĻ¸ā§āĻ¯āĻžāĻŦāĻ˛Â SELinux:
# vim /etc/selinux/config Set SELINUX=disabled # This file controls the state of SELinux on the system. # SELINUX= can take one of these three values: # enforcing - SELinux security policy is enforced. # permissive - SELinux prints warnings instead of enforcing. # disabled - No SELinux policy is loaded. SELINUX=disabled # SELINUXTYPE= can take one of these two values: # targeted - Targeted processes are protected, # mls - Multi Level Security protection. SELINUXTYPE=targeted :x
āĻāĻŦāĻžāĻ° server āĻāĻŋ reboot āĻĻāĻŋāĻ¨āĨ¤
# reboot
3. āĻāĻ¨āĻĢāĻŋāĻāĻžāĻ°ā§āĻļāĻ¨ Hostname:
āĻŦāĻ°ā§āĻ¤āĻŽāĻžāĻ¨ hostname āĻāĻŋ āĻĻā§āĻāĻžāĻ° āĻāĻ¨ā§āĻ¯
[root@localhost ~]# hostname localhost.localdomain
hostname āĻā§āĻā§āĻ āĻāĻ°āĻžāĻ° āĻāĻ¨ā§āĻ¯ āĻāĻŽāĻžāĻĻā§āĻ° /etc/hostname āĻĢāĻžāĻāĻ˛āĻāĻŋ Edit āĻāĻ°āĻ¤ā§ āĻšāĻŦā§āĨ¤
[root@localhost ~]# vim /etc/hostname ns1.mahedi.me :x
āĻāĻĢā§āĻā§āĻāĻāĻŋ āĻĻā§āĻāĻžāĻ° āĻāĻ¨ā§āĻ¯ āĻ¸āĻžāĻ°ā§āĻāĻžāĻ°āĻāĻŋ āĻĨā§āĻā§ āĻāĻāĻŦāĻžāĻ° logout āĻāĻ°ā§ āĻ˛āĻāĻāĻ¨ āĻāĻ°āĻ¤ā§ āĻšāĻŦā§āĨ¤
[root@localhost ~]# logout Login: [root@ns1 ~]#
āĻāĻŦāĻžāĻ° āĻāĻŽāĻ°āĻž āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻāĻ° hosts āĻā§āĻŦāĻŋāĻ˛ āĻ āĻāĻāĻāĻŋ āĻāĻ¨ā§āĻā§āĻ°āĻŋ āĻĻāĻŋāĻŦā§āĨ¤
[root@ns1 ~]# vim /etc/hosts 192.168.1.5       ns1.mahedi.me          ns1 :x
āĻāĻŽāĻžāĻĻā§āĻ° Hostname āĻāĻ¨āĻĢāĻŋāĻāĻžāĻ°ā§āĻļāĻ¨ āĻ¸āĻ āĻŋāĻ āĻšāĻ˛āĻ āĻāĻŋāĻ¨āĻž āĻ¸ā§āĻāĻŋ āĻĒāĻ°ā§āĻā§āĻˇāĻž āĻāĻ°āĻžāĻ° āĻāĻ¨ā§āĻ¯ āĻ¨āĻŋāĻā§āĻ° āĻāĻŽāĻžāĻ¨ā§āĻĄ āĻā§āĻ˛ā§ āĻĻāĻŋā§ā§ āĻ¤āĻžāĻ° āĻāĻāĻāĻĒā§āĻ āĻĒāĻ°ā§āĻā§āĻˇāĻž āĻāĻ°āĻŦā§āĨ¤
root@ns1 ~]# hostname ns1.mahedi.me root@ns1 ~]# hostname âd mahedi.me root@ns1 ~]# hostname âf ns1.mahedi.me
4. Software āĻāĻ¨ā§āĻ¸āĻā§āĻ˛ā§āĻļāĻ¨āĻ
DNS āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻāĻ¨āĻĢāĻŋāĻāĻžāĻ°ā§āĻļāĻ¨ āĻāĻŽāĻ°āĻž bind āĻāĻāĻāĻŋ Software āĻŦā§āĻ¯āĻŦāĻšāĻžāĻ° āĻāĻ°āĻŦā§āĨ¤ āĻāĻāĻ¨ āĻāĻŽāĻ°āĻž āĻāĻŽāĻžāĻĻā§āĻ° āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻ bind Software āĻāĻŋ install āĻāĻ°āĻž āĻāĻā§ āĻāĻŋāĻ¨āĻž āĻ¸ā§āĻāĻŋ āĻĒāĻ°ā§āĻā§āĻˇāĻž āĻāĻ°āĻŦā§āĨ¤
root@ns1 ~]# rpm âqa|grep bind bind-9.8.2-0.17.rc1.el6_4.6.x86_64 bind-libs-9.8.2-0.17.rc1.el6_4.6.x86_64 bind-utils-9.8.2-0.17.rc1.el6_4.6.x86_64
āĻāĻŽāĻžāĻ° āĻāĻāĻžāĻ¨ā§ āĻĻā§āĻāĻ¤ā§ āĻĒāĻžāĻā§āĻāĻŋ Software āĻā§āĻ˛ā§ āĻāĻā§ āĻĨā§āĻā§āĻ install āĻāĻ°āĻž āĻāĻā§āĨ¤ āĻ¯āĻĻāĻŋ install āĻāĻ°āĻž āĻ¨āĻž āĻĨāĻžāĻāĻ¤ āĻŦāĻž āĻ¨āĻž āĻĨāĻžāĻā§ āĻ¤āĻžāĻšāĻ˛ā§ āĻāĻŽāĻ°āĻž āĻ¨āĻŋāĻā§āĻ° āĻāĻŽāĻžāĻ¨ā§āĻĄāĻāĻŋ āĻŦā§āĻ¯āĻŦāĻšāĻžāĻ° āĻāĻ°ā§ āĻā§āĻŦ āĻ¸āĻšāĻā§ Software āĻā§āĻ˛ā§ install āĻāĻ°ā§ āĻ¨āĻŋāĻ¤ā§ āĻĒāĻžāĻ°āĻŦā§, āĻ¸ā§āĻā§āĻˇā§āĻ¤ā§āĻ°ā§ āĻāĻĒāĻ¨āĻžāĻ° āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻ āĻ āĻŦāĻļā§āĻ¯āĻ āĻāĻ¨ā§āĻāĻžāĻ°āĻ¨ā§āĻ āĻ¸āĻāĻ¯ā§āĻ āĻĨāĻžāĻāĻ¤ā§ āĻšāĻŦā§āĨ¤
[root@ns1 ~]# yum install ây bind bind-utils Loaded plugins: fastestmirror, security Loading mirror speeds from cached hostfile  * base: mirror.steadfast.net  * epel: epel.mirror.angkasa.id  * extras: mirror.steadfast.net  * remi-php55: remi.mirror.ate.info  * remi-safe: remi.mirror.ate.info  * updates: mirror.steadfast.net Setting up Install Process Resolving Dependencies Running transaction check  Package bind.x86_64 32:9.8.2-0.47.rc1.el6 will be installed  Package bind-devel.x86_64 32:9.8.2-0.47.rc1.el6 will be installed  Package bind-libs.x86_64 32:9.8.2-0.47.rc1.el6 will be installed  Package bind-utils.x86_64 32:9.8.2-0.47.rc1.el6 will be installed  Finished Dependency Resolution Dependencies Resolved ======================================================================== Package Arch Version Repository Size ======================================================================== Installing:  bind x86_64 32:9.8.2-0.47.rc1.el6 base 4.0 M  bind-devel x86_64 32:9.8.2-0.47.rc1.el6 base 383 k  bind-libs x86_64 32:9.8.2-0.47.rc1.el6 base 889 k  bind-utils x86_64 32:9.8.2-0.47.rc1.el6 base 187 k Transaction Summary ======================================================================== Install 4 Package(s) Total download size: 5.4 M Installed size: 11 M Downloading Packages: (1/4): bind-9.8.2-0.47.rc1.el6.x86_64.rpm | 4.0 MB 00:09 (2/4): bind-devel-9.8.2-0.47.rc1.el6.x86_64.rpm | 383 kB 00:00 (3/4): bind-libs-9.8.2-0.47.rc1.el6.x86_64.rpm | 889 kB 00:02 (4/4): bind-utils-9.8.2-0.47.rc1.el6.x86_64.rpm | 187 kB 00:00 ------------------------------------------------------------------------ Total 364 kB/s | 5.4 MB 00:15 Running rpm_check_debug Running Transaction Test Transaction Test Succeeded Running Transaction  Installing : 32:bind-libs-9.8.2-0.47.rc1.el6.x86_64 1/4  Installing : 32:bind-devel-9.8.2-0.47.rc1.el6.x86_64 2/4  Installing : 32:bind-9.8.2-0.47.rc1.el6.x86_64 3/4  Installing : 32:bind-utils-9.8.2-0.47.rc1.el6.x86_64 4/4  Verifying : 32:bind-libs-9.8.2-0.47.rc1.el6.x86_64 1/4  Verifying : 32:bind-devel-9.8.2-0.47.rc1.el6.x86_64 2/4  Verifying : 32:bind-9.8.2-0.47.rc1.el6.x86_64 3/4  Verifying : 32:bind-utils-9.8.2-0.47.rc1.el6.x86_64 4/4 Installed:  bind.x86_64 32:9.8.2-0.47.rc1.el6 bind-devel.x86_64 32:9.8.2-0.47.rc1.el6  bind-libs.x86_64 32:9.8.2-0.47.rc1.el6 bind-utils.x86_64 32:9.8.2-0.47.rc1.el6 Complete!
5. Primary DNS āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻāĻ¨āĻĢāĻŋāĻāĻžāĻ°ā§āĻļāĻ¨āĻ
āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻ āĻ¸āĻ āĻŋāĻāĻāĻžāĻŦā§ Software āĻā§āĻ˛ā§ install āĻāĻ°āĻž āĻšāĻ˛ā§ āĻāĻŽāĻ°āĻž āĻāĻ¨āĻĢāĻŋāĻāĻžāĻ°ā§āĻļāĻ¨ āĻļā§āĻ°ā§ āĻāĻ°āĻŦā§āĨ¤ āĻĒā§āĻ°āĻĨāĻŽā§āĻ āĻāĻŽāĻ°āĻž āĻāĻ¨āĻĢāĻŋāĻāĻžāĻ°ā§āĻļāĻ¨ āĻĢāĻžāĻāĻ˛ (/etc/named.conf) āĻāĻ° āĻāĻāĻāĻŋ āĻŦā§āĻ¯āĻžāĻāĻāĻĒ āĻ¨āĻŋāĻŦ, āĻ¯ā§āĻ¨ āĻāĻ¨āĻĢāĻŋāĻāĻžāĻ°ā§āĻļāĻ¨ āĻāĻ° āĻ¸āĻŽā§ āĻŦāĻž āĻĒāĻ°āĻŦāĻ°ā§āĻ¤ā§āĻ¤ā§ āĻā§āĻ¨ āĻ¸āĻŽāĻ¸ā§āĻ¯āĻž āĻšāĻ˛ā§ āĻ¸āĻšāĻā§ āĻ°ā§āĻ˛-āĻŦā§āĻ¯āĻžāĻ āĻāĻ°āĻ¤ā§ āĻĒāĻžāĻ°āĻž āĻ¯āĻžā§āĨ¤
[root@ns1 ~]# cd /etc/ [root@ns1 etc]# cp named.conf named.conf.ori
āĻāĻŦāĻžāĻ° āĻāĻŽāĻ°āĻž āĻāĻ¨āĻĢāĻŋāĻāĻžāĻ°ā§āĻļāĻ¨ āĻļā§āĻ°ā§ āĻāĻ°āĻŦā§āĨ¤ āĻāĻāĻžāĻ¨ā§ āĻāĻŽāĻŋ āĻāĻŽāĻžāĻ° Scenario (āĻĄā§āĻŽā§āĻāĻ¨ āĻ¨ā§āĻāĻŽ, āĻāĻāĻĒāĻŋ-āĻāĻĄā§āĻ°ā§āĻ¸) āĻŽāĻ¤ āĻāĻ°ā§ āĻĒā§āĻ¯āĻžāĻ°āĻžāĻŽāĻŋāĻāĻžāĻ° āĻā§āĻ˛ā§ āĻŦāĻ¸āĻžāĻŦā§ āĻāĻĒāĻ¨āĻŋ āĻ¯āĻāĻ¨ āĻāĻ¨āĻĢāĻŋāĻāĻžāĻ° āĻāĻ°āĻŦā§āĻ¨ āĻāĻĒāĻ¨āĻžāĻ° āĻŽāĻ¤ āĻāĻ°ā§ āĻĒāĻ°āĻŋāĻŦāĻ°ā§āĻ¤āĻ¨ āĻāĻ°ā§ āĻ¨āĻŋāĻŦā§āĻ¨āĨ¤ āĻ¸āĻŦāĻžāĻ° āĻŦā§āĻāĻžāĻ° āĻ¸ā§āĻŦāĻŋāĻ§āĻžāĻ°ā§āĻĨā§ āĻ¨āĻŋāĻŽā§āĻ¨ā§ āĻāĻ¨āĻĢāĻŋāĻāĻžāĻ°ā§āĻļāĻ¨ āĻĢāĻžāĻāĻ˛ āĻ āĻĒāĻ°āĻŋāĻŦāĻ°ā§āĻ¤āĻ¨-āĻā§āĻ¤ āĻ āĻāĻļ āĻā§āĻ˛ā§āĻā§ āĻŦā§āĻ˛ā§āĻĄ āĻāĻ°ā§ āĻĻāĻŋā§ā§āĻāĻŋāĨ¤
[root@ns1 ~]# vim /etc/named.conf options { Â listen-on port 53 { 192.168.1.5; }; Â // listen-on-v6 port 53 { ::1; }; Â directory "/var/named"; Â dump-file "/var/named/data/cache_dump.db"; Â statistics-file "/var/named/data/named_stats.txt"; Â memstatistics-file "/var/named/data/named_mem_stats.txt"; Â allow-query { any; }; Â allow-recursion { localhost; 192.168.1.0/24; }; Â dnssec-enable yes; Â dnssec-validation yes; Â /* Path to ISC DLV key */ Â bindkeys-file "/etc/named.iscdlv.key"; Â managed-keys-directory "/var/named/dynamic"; Â pid-file "/run/named/named.pid"; Â session-keyfile "/run/named/session.key"; }; logging { Â channel default_debug { Â file "data/named.run"; Â severity dynamic; Â }; }; zone "." IN { Â type hint; Â file "named.ca"; }; // Adding forward zone zone "mahedi.me" IN { Â type master; Â file "db.mahedi.me.for"; Â allow-transfer { none; }; }; // Adding Reverse zone zone "1.168.192.in-addr.arpa" IN { Â type master; Â file "db.1.168.192.in-addr.arpa"; Â allow-transfer { none; }; }; include "/etc/named.rfc1912.zones"; include "/etc/named.root.key"; :x
āĻāĻŦāĻžāĻ° āĻāĻŽāĻ°āĻž zone āĻ āĻāĻļā§ āĻāĻ˛ā§āĻ˛ā§āĻāĻā§āĻ¤ āĻĄā§āĻŽā§āĻāĻ¨ āĻā§āĻ˛ā§āĻ° āĻāĻ¨ā§āĻ¯ Database āĻ¤ā§āĻ°āĻŋ āĻāĻ°āĻŦā§āĨ¤ Database āĻā§āĻ˛ā§ āĻŦāĻžāĻ āĻĄāĻŋāĻĢāĻ˛ā§āĻ /var/named āĻŽāĻ§ā§āĻ¯ā§ āĻĨāĻžāĻā§āĨ¤ Bind āĻ¸āĻĢāĻāĻā§ā§āĻ¯āĻžāĻ°āĻāĻŋ Plain Text Database āĻŦā§āĻ¯āĻŦāĻšāĻžāĻ° āĻāĻ°ā§ āĻĨāĻžāĻā§āĨ¤ āĻ¤āĻžāĻ° āĻŽāĻžāĻ¨ā§ āĻāĻāĻāĻŋ Plain Text āĻĢāĻžāĻāĻ˛ā§ āĻ¨āĻŋāĻ°ā§āĻĻāĻŋāĻˇā§āĻ Structure āĻ āĻĄāĻžāĻāĻž āĻā§āĻ˛ā§āĻā§ āĻāĻ¨ā§āĻā§āĻ°āĻŋ āĻāĻ°āĻ¤ā§ āĻšāĻŦā§āĨ¤ Database āĻāĻ° Structure āĻŦā§āĻāĻžāĻ° āĻāĻ¨ā§āĻ¯ āĻāĻŽāĻ°āĻž āĻāĻŋāĻā§ Sample Database āĻĢāĻžāĻāĻ˛ āĻŦā§āĻ¯āĻŦāĻšāĻžāĻ° āĻāĻ°āĻŦā§ āĻ¯ā§āĻāĻŋ āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻ āĻĒā§āĻ°ā§āĻŦā§ āĻĨā§āĻā§ āĻ¸āĻāĻ°āĻā§āĻˇāĻŋāĻ¤ āĻĨāĻžāĻā§āĨ¤ āĻāĻāĻžāĻ¨ā§ āĻāĻŽāĻ°āĻž āĻĢāĻ°āĻā§āĻžāĻ°ā§āĻĄ āĻā§āĻ¨ āĻāĻ° āĻāĻ¨ā§āĻ¯ā§ named.localhost āĻāĻŦāĻ āĻ°āĻŋāĻāĻžāĻ°ā§āĻ¸ āĻā§āĻ¨ āĻāĻ° āĻāĻ¨ā§āĻ¯ named.loopback āĻĢāĻžāĻāĻ˛ āĻĻā§āĻāĻŋāĻā§ āĻā§ Sample Database āĻĢāĻžāĻāĻ˛ āĻšāĻŋāĻ¸ā§āĻŦā§ āĻŦā§āĻ¯āĻŦāĻšāĻžāĻ° āĻāĻ°āĻŦā§āĨ¤ āĻāĻāĻ¨ āĻāĻŽāĻ°āĻž āĻĻā§āĻā§ āĻ¨āĻŋāĻŦā§ /var/named āĻŽāĻ§ā§āĻ¯ā§ āĻāĻŋ āĻĢāĻžāĻāĻ˛ āĻāĻā§ āĻĨā§āĻā§ āĻ¤ā§āĻ°āĻŋ āĻāĻ°āĻž āĻĨāĻžāĻā§!
[root@ns1 ~]# cd /var/named/ [root@ns1 named]# ls -la drwxr-x---. 5 root named 4096 Jul 24 17:04 . drwxr-xr-x. 23 root root 4096 Jul 24 17:04 .. drwxrwx---. 2 named named 6 Jul 5 06:15 data drwxrwx---. 2 named named 6 Jul 5 06:15 dynamic -rw-r-----. 1 root named 2281 May 22 05:51 named.ca -rw-r-----. 1 root named 152 Dec 15 2009 named.empty -rw-r-----. 1 root named 152 Jun 21 2007 named.localhost -rw-r-----. 1 root named 168 Dec 15 2009 named.loopback drwxrwx---. 2 named named 6 Jul 5 06:15 slaves
āĻāĻāĻ¨ āĻāĻŽāĻ°āĻž āĻ¸āĻšāĻā§āĻ āĻĢāĻ°āĻā§āĻžāĻ°ā§āĻĄ āĻā§āĻ¨ āĻāĻ° āĻāĻ¨ā§āĻ¯ named.localhost āĻāĻŦāĻ āĻ°āĻŋāĻāĻžāĻ°ā§āĻ¸ āĻā§āĻ¨ āĻāĻ° āĻāĻ¨ā§āĻ¯ named.loopback āĻĢāĻžāĻāĻ˛ āĻĻā§āĻāĻŋāĻā§ āĻāĻĒāĻŋ āĻāĻ°ā§ āĻāĻŽāĻžāĻĻā§āĻ° āĻĄā§āĻŽā§āĻāĻ¨ āĻāĻ° Database āĻāĻ° āĻāĻ¨ā§āĻ¯ āĻĻā§ā§āĻž āĻ¨āĻžāĻŽā§ āĻĒā§āĻ¸ā§āĻ āĻāĻ°ā§ āĻāĻŽāĻžāĻĻā§āĻ° āĻĄāĻžāĻāĻž āĻā§āĻ˛ā§āĻā§ āĻāĻ¨ā§āĻā§āĻ°āĻŋ āĻĻāĻŋāĻŦā§āĨ¤
[root@ns1 named]# cp named.localhost db.mahedi.me.for [root@ns1 named]# cp named.loopback db.1.168.192.in-addr.arpa
āĻāĻāĻ¨ āĻĒā§āĻ°āĻĨāĻŽā§ āĻĢāĻ°āĻā§āĻžāĻ°ā§āĻĄ āĻā§āĻ¨ āĻĢāĻžāĻāĻ˛ db.mahedi.me.for āĻāĻŋāĻā§ āĻāĻĄāĻŋāĻ āĻāĻ°āĻŦā§āĨ¤
[root@ns1 named]# vim db.mahedi.me.for $TTL 1D @ IN SOA         ns1.mahedi.me.  root.mahedi.me. (                                                   0 ; serial                                                  1D ; refresh                                                  1H ; retry                                                  1W ; expire                                                3H ) ; minimum               NS  ns1.mahedi.me.               A  192.168.1.5 ns1    IN    A  192.168.1.5 mail   IN    A  192.168.1.5 mahedi.me.     IN MX   10   mail.mahedi.me. www    IN    CNAME    ns1.mahedi.me. ftp    IN    A        192.168.1.50  :x
āĻāĻāĻāĻāĻžāĻŦā§ āĻāĻāĻ¨ āĻ°āĻŋāĻāĻžāĻ°ā§āĻ¸ āĻā§āĻ¨ āĻāĻ° āĻāĻ¨ā§āĻ¯ db.1.168.192.in-addr.arpa āĻĢāĻžāĻāĻ˛āĻāĻŋāĻā§ āĻāĻĄāĻŋāĻ āĻāĻ°āĻŦā§āĻ
[root@ns1 named]# vim db.1.168.192.in-addr.arpa $TTL 1D @       IN     SOA      ns1.mahedi.me.     root.mahedi.me. (                                                       0 ; serial                                                      1D ; refresh                                                      1H ; retry                                                      1W ; expire                                                    3H ) ; minimum                      NS  ns1.mahedi.me.                      A   192.168.1.5 5         IN    PTR     ns1.mahedi.me. 50        IN    PTR     ftp.mahedi.me. :x
āĻāĻāĻ¨ āĻāĻŽāĻ°āĻž āĻĢāĻžāĻāĻ˛ āĻĻā§āĻāĻŋāĻ° āĻāĻ¨āĻžāĻ°āĻļāĻŋāĻĒ āĻāĻ° āĻā§āĻ°ā§āĻĒāĻāĻž āĻā§āĻā§āĻ āĻāĻ°ā§ named āĻāĻ°ā§ āĻĻāĻŋāĻŦā§
[root@ns1 named]# chgrp named db.mahedi.me.for [root@ns1 named]# chgrp named db.1.168.192.in-addr.arpa
āĻāĻāĻ¨ āĻāĻŽāĻ°āĻž āĻāĻŽāĻžāĻĻā§āĻ° āĻāĻ¨āĻĢāĻŋāĻāĻžāĻ°ā§āĻļāĻ¨ āĻĢāĻžāĻāĻ˛ āĻ structure āĻāĻ¤ āĻā§āĻ¨ āĻā§āĻ˛ āĻāĻā§ āĻāĻŋāĻ¨āĻž āĻ¸ā§āĻāĻž āĻ¨āĻŋāĻŽā§āĻ¨ā§āĻā§āĻ¤ āĻāĻŽāĻžāĻ¨ā§āĻĄ āĻāĻ° āĻŽāĻžāĻ§ā§āĻ¯āĻā§ āĻĒāĻ°ā§āĻā§āĻˇāĻž āĻāĻ°āĻŦā§āĻ
[root@ns1 named]# named-checkzone zone db.mahedi.me.for zone zone/IN: loaded serial 0 OK [root@ns1 named]# named-checkzone zone db.110.168.192.in-addr.arpa zone zone/IN: loaded serial 0 OK [root@ns1 named]# named-checkconf -z /etc/named.conf zone localhost.localdomain/IN: loaded serial 0 zone localhost/IN: loaded serial 0 zone mahedi.me/IN: loaded serial 0 zone 1.0.0.127.in-addr.arpa/IN: loaded serial 0 zone 1.168.192.in-addr.arpa/IN: loaded serial 0
āĻāĻāĻžāĻ¨ā§ āĻā§āĻ¨ āĻĢāĻžāĻāĻ˛ā§āĻ° āĻ¸āĻŋāĻ¨āĻā§āĻ¯āĻžāĻā§āĻ¸ āĻāĻ° āĻā§āĻ¨ āĻ¸āĻŽāĻ¸ā§āĻ¯āĻž āĻ¨ā§āĻ, āĻāĻāĻ¨ āĻāĻŽāĻ°āĻž āĻ¸āĻžāĻ°ā§āĻāĻŋāĻ¸ āĻ¸ā§āĻāĻžāĻ°ā§āĻ āĻāĻ°āĻ˛ā§āĻ āĻāĻŽāĻžāĻĻā§āĻ° DNS āĻ¸āĻžāĻ°ā§āĻāĻžāĻ°āĻāĻŋ āĻāĻžāĻ āĻāĻ°āĻ¤ā§ āĻļā§āĻ°ā§ āĻāĻ°āĻŦā§āĨ¤
[root@ns1 named]# systemctl restart named.service
āĻ¸āĻžāĻ°ā§āĻāĻŋāĻ¸āĻāĻŋ āĻĒāĻ°āĻŦāĻ°ā§āĻ¤āĻŋāĻ¤ā§ āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻĒāĻžāĻā§āĻžāĻ° āĻ āĻĢ āĻ āĻĨāĻŦāĻž āĻ°āĻŋāĻŦā§āĻ āĻ¨āĻŋāĻ˛ā§āĻ āĻ¯ā§āĻ¨ āĻ¸ā§āĻŦā§āĻāĻā§āĻ°āĻŋā§āĻāĻžāĻŦā§ āĻāĻžāĻ˛ā§ āĻšā§ āĻ āĻāĻ¨ā§āĻ¯ āĻ¨āĻŋāĻŽā§āĻ¨ā§āĻā§āĻ¤ āĻāĻŽāĻžāĻ¨ā§āĻĄāĻāĻŋ āĻĻāĻŋāĻŦā§āĨ¤
[root@ns1 named]# systemctl enable named.service ln -s '/usr/lib/systemd/system/named.service' '/etc/systemd/system/multi-user.target.wants/named.service'
āĻāĻāĻ¨ āĻāĻŽāĻžāĻĻā§āĻ° āĻ¸āĻžāĻ°ā§āĻāĻžāĻ°āĻāĻŋ DNS āĻ¸āĻžāĻ°ā§āĻāĻŋāĻ¸ āĻĒā§āĻ°āĻĻāĻžāĻ¨ā§āĻ° āĻāĻ¨ā§āĻ¯ āĻ¸āĻŽā§āĻĒā§āĻ°ā§āĻ¨ āĻ¤ā§āĻ°āĻŋ āĻĒā§āĻ°āĻĨāĻŽā§ āĻāĻŽāĻ°āĻž āĻāĻ āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻāĻ° āĻā§āĻ˛āĻžā§ā§āĻ¨ā§āĻ āĻšāĻŦā§ āĻāĻŦāĻ āĻāĻāĻŋāĻā§ āĻĒā§āĻ°āĻ°ā§āĻā§āĻˇāĻž āĻāĻ°āĻŦā§āĨ¤ āĻāĻāĻžāĻ¨ā§ āĻāĻāĻāĻŋ āĻ˛āĻŋāĻ¨āĻžāĻā§āĻ¸ āĻĒāĻŋāĻ¸āĻŋ āĻĨā§āĻā§ āĻāĻŋāĻāĻžāĻŦā§ āĻā§āĻ˛āĻžā§ā§āĻ¨ā§āĻ āĻšāĻ¤ā§ āĻšā§ āĻ¸ā§āĻāĻž āĻĻā§āĻāĻŋā§ā§āĻāĻŋāĨ¤ āĻāĻāĻ¨ā§āĻĄā§āĻ āĻĒāĻŋāĻ¸āĻŋ āĻĨā§āĻā§ āĻāĻ°āĻ¤ā§ āĻāĻžāĻāĻ˛ā§ āĻāĻāĻĒāĻŋ-āĻāĻĄā§āĻ°ā§āĻ¸ āĻāĻ¨āĻĢāĻŋāĻāĻžāĻ°ā§āĻļāĻ¨ āĻ āĻāĻŋā§ā§ DNS āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻāĻ° āĻ¯āĻžā§āĻāĻžā§ āĻāĻĒāĻ¨āĻžāĻ° DNS āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻāĻ° āĻāĻāĻĒāĻŋ-āĻāĻĄā§āĻ°ā§āĻ¸āĻāĻŋ āĻĻāĻŋāĻ˛ā§āĻ āĻšāĻŦā§āĨ¤
[root@ns1 named]# vim /ete/reslov.conf search mahedi.me nameserver 192.168.1.5 :x [root@ns1 named]#
āĻāĻāĻ¨ āĻ¨āĻŋāĻŽā§āĻ¨ā§āĻā§āĻ¤ āĻāĻŽāĻžāĻ¨ā§āĻĄ āĻā§āĻ˛ā§ āĻĻāĻŋā§ā§ āĻĒāĻ°ā§āĻā§āĻˇāĻž āĻāĻ°āĻŦā§āĨ¤ āĻāĻāĻžāĻ¨ā§ āĻāĻŽāĻŋ nslookup āĻā§āĻ˛āĻāĻŋ āĻ¯ā§āĻāĻž āĻ˛āĻŋāĻ¨āĻžāĻā§āĻ¸Â āĻāĻŦāĻ āĻāĻāĻ¨ā§āĻĄā§āĻ āĻĻā§āĻ āĻ¸āĻŋāĻ¸ā§āĻā§āĻŽ āĻ āĻāĻā§āĨ¤ āĻāĻāĻ¨ā§āĻĄā§āĻ āĻĒāĻŋāĻ¸āĻŋāĻ¤ā§ Command Prompt āĻĨā§āĻā§ nslookup āĻāĻžāĻāĻĒ āĻāĻ°āĻ˛ā§ āĻāĻāĻ āĻ°āĻāĻŽÂ āĻāĻāĻ¨ā§āĻĄā§ (>) āĻāĻ¸āĻŦā§āĨ¤
[root@ns1 named]# nslookup > mahedi.me Server: 192.168.1.5 Address: 192.168.1.5#53 Name: mahedi.me Address: 192.168.1.5 > www Server: 192.168.1.5 Address: 192.168.1.5#53 www.mahedi.me canonical name = ns1.mahedi.me. Name: ns1.mahedi.me Address: 192.168.1.5 > 192.168.1.5 Â Server: 192.168.1.5 Â Address:192.168.1.5#53 5.1.168.192.in-addr.arpa name = ns1.mahedi.me. >Â >exit [root@ns1 named]#
āĻāĻŽāĻžāĻĻā§āĻ° DNS āĻ¸āĻžāĻ°ā§āĻāĻžāĻ°āĻāĻŋ āĻ¸āĻĢāĻ˛āĻāĻžāĻŦā§ āĻ°āĻžāĻ¨ āĻāĻ°ā§āĻā§āĨ¤
6. Secondary DNS āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻāĻ¨āĻĢāĻŋāĻāĻžāĻ°ā§āĻļāĻ¨āĻ
āĻāĻ¤ā§āĻĒā§āĻ°ā§āĻŦā§ āĻāĻŽāĻ°āĻž Secondary DNS āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻ¨āĻŋā§ā§ āĻ āĻ˛ā§āĻāĻ¨āĻž āĻāĻ°ā§āĻāĻŋ, āĻāĻ° āĻāĻ°āĻĢāĻŋāĻāĻžāĻ°ā§āĻļāĻ¨ āĻĒā§āĻ°āĻžāĻāĻŽāĻžāĻ°āĻŋ DNS āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻāĻ° āĻŽāĻ¤āĻ āĻāĻŋāĻ¨ā§āĻ¤ā§ āĻāĻāĻžāĻ¨ā§ āĻĄā§āĻŽā§āĻāĻ¨ āĻāĻ° āĻĄāĻžāĻāĻžāĻŦā§āĻ¸ āĻā§āĻ˛ā§ āĻ¤ā§āĻ°āĻŋ āĻāĻ°āĻ¤ā§ āĻšā§āĻ¨āĻžāĨ¤ āĻĒā§āĻ°āĻžāĻāĻŽāĻžāĻ°āĻŋ āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻĨā§āĻā§ āĻ¸ā§āĻŦā§āĻāĻā§āĻ°āĻŋā§āĻāĻžāĻŦā§ replicate āĻāĻ°ā§ store āĻāĻ°ā§āĨ¤
āĻļā§āĻ°ā§āĻ¤ā§āĻ āĻāĻŽāĻ°āĻž āĻāĻŽāĻžāĻĻā§āĻ° āĻĒā§āĻ°āĻžāĻāĻŽāĻžāĻ°āĻŋ āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻĨā§āĻā§ āĻĄāĻžāĻāĻž āĻ¸ā§āĻŦā§āĻāĻā§āĻ°āĻŋā§āĻāĻžāĻŦā§ replicate āĻāĻ°āĻ¤ā§ āĻĒāĻžāĻ°ā§ āĻ¤āĻžāĻ° āĻĒāĻžāĻ°āĻŽāĻŋāĻļāĻ¨ āĻĻāĻŋāĻŦā§āĨ¤Â āĻāĻ° āĻāĻ¨ā§āĻ¯ āĻāĻŽāĻ°āĻž /etc/named.conf āĻāĻ° zone āĻ āĻāĻļā§ allow-transfer { }; āĻ āĻāĻŽāĻžāĻĻā§āĻ° secondary āĻ¸āĻžāĻ°ā§āĻāĻžāĻ°Â āĻāĻāĻĒāĻŋ-āĻāĻĄā§āĻ°ā§āĻ¸ āĻāĻŋ āĻāĻ˛ā§āĻ˛ā§āĻ āĻāĻ°āĻ¤ā§ āĻšāĻŦā§āĨ¤
// Adding forward zone zone "mahedi.me" IN { Â type master; Â file "db.mahedi.me.for"; Â allow-transfer { 192.168.1.10; }; }; // Adding Reverse zone zone "1.168.192.in-addr.arpa" IN { Â type master; Â file "db.110.168.192.in-addr.arpa"; Â allow-transfer { 192.168.1.10; }; }; :x
āĻāĻ°āĻĒāĻ°ā§ āĻĢāĻ°āĻā§āĻžāĻ°ā§āĻĄ āĻā§āĻ¨ āĻĢāĻžāĻāĻ˛ db.mahedi.me.for āĻāĻŋāĻā§ āĻāĻĄāĻŋāĻ āĻāĻ°ā§ Secondary DNS āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻāĻ° Information Add āĻāĻ°āĻ¤ā§ āĻšāĻŦā§āĨ¤
[root@ns1 named]# vim db.mahedi.me.for $TTL 1D @ IN SOA         ns1.mahedi.me.  root.mahedi.me. (                                                   0 ; serial                                                  1D ; refresh                                                  1H ; retry                                                  1W ; expire                                                3H ) ; minimum               NS  ns1.mahedi.me.               A  192.168.1.5               NS ns2.mahedi.me.               A  192.168.1.10 ns1    IN    A  192.168.1.5 ns2    IN    A  192.168.1.10 mail   IN    A  192.168.1.5 mahedi.me.     IN MX   10   mail.mahedi.me. www    IN    CNAME    ns1.mahedi.me. ftp    IN    A        192.168.1.50  :x
āĻāĻāĻāĻāĻžāĻŦā§ āĻāĻāĻ¨ āĻ°āĻŋāĻāĻžāĻ°ā§āĻ¸ āĻā§āĻ¨ āĻāĻ° āĻāĻ¨ā§āĻ¯ db.1.168.192.in-addr.arpa āĻĢāĻžāĻāĻ˛āĻāĻŋāĻā§ āĻāĻĄāĻŋāĻ āĻāĻ°āĻŦā§āĻ
[root@ns1 named]# vim db.1.168.192.in-addr.arpa $TTL 1D @       IN     SOA      ns1.mahedi.me.     root.mahedi.me. (                                                       0 ; serial                                                      1D ; refresh                                                      1H ; retry                                                      1W ; expire                                                    3H ) ; minimum               NS  ns1.mahedi.me.               A  192.168.1.5               NS ns2.mahedi.me.               A  192.168.1.10 5         IN    PTR     ns1.mahedi.me. 50        IN    PTR     ftp.mahedi.me. :x
āĻāĻŦāĻžāĻ° āĻāĻŽāĻ°āĻž secondary āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻ āĻāĻ¨āĻĢāĻŋāĻāĻžāĻ° āĻāĻ°āĻŦā§āĨ¤ āĻĒā§āĻ°āĻĨāĻŽā§ āĻāĻŽāĻžāĻĻā§āĻ° āĻĒā§āĻ°āĻžāĻāĻŽāĻžāĻ°āĻŋ āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻāĻ° āĻ¨ā§āĻ¯āĻžā§ secondary āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻ āĻāĻāĻĒāĻŋ- āĻāĻĄā§āĻ°ā§āĻ¸, Firewall, Hostname āĻāĻ¨āĻĢāĻŋāĻāĻžāĻ° āĻāĻ°āĻ¤ā§ āĻšāĻŦā§, āĻāĻ° āĻāĻ¨ā§āĻ¯ āĻāĻŽāĻ°āĻž ā§§ āĻĨā§āĻā§ ā§Ē āĻ¨āĻ āĻ§āĻžāĻĒ āĻā§āĻ˛ā§ āĻ āĻ¨ā§āĻ¸āĻ°āĻŖ āĻāĻ°āĻŦā§āĨ¤
āĻāĻāĻžāĻ¨ā§āĻ āĻāĻŽāĻžāĻĻā§āĻ° āĻĒā§āĻ°ā§āĻŦā§āĻ° āĻ¨ā§āĻ¯āĻžā§ āĻĒā§āĻ°āĻĨāĻŽā§āĻ āĻāĻŽāĻ°āĻž āĻāĻ¨āĻĢāĻŋāĻāĻžāĻ°ā§āĻļāĻ¨ āĻĢāĻžāĻāĻ˛ (/etc/named.conf) āĻāĻ° āĻāĻāĻāĻŋ āĻŦā§āĻ¯āĻžāĻāĻāĻĒ āĻ¨āĻŋāĻŦ, āĻ¯ā§āĻ¨ āĻāĻ¨āĻĢāĻŋāĻāĻžāĻ°ā§āĻļāĻ¨ āĻāĻ° āĻ¸āĻŽā§ āĻŦāĻž āĻĒāĻ°āĻŦāĻ°ā§āĻ¤āĻŋāĻ¤ā§ āĻā§āĻ¨ āĻ¸āĻŽāĻ¸ā§āĻ¯āĻž āĻšāĻ˛ā§ āĻ¸āĻšāĻā§ āĻ°ā§āĻ˛āĻŦā§āĻ¯āĻžāĻ āĻāĻ°āĻ¤ā§ āĻĒāĻžāĻ°āĻž āĻ¯āĻžā§āĨ¤
[root@ns1 ~]# cd /etc/ [root@ns1 etc]# cp named.conf named.conf.ori
āĻāĻŦāĻžāĻ° āĻāĻŽāĻ°āĻž āĻāĻ¨āĻĢāĻŋāĻāĻžāĻ°ā§āĻļāĻ¨ āĻļā§āĻ°ā§ āĻāĻ°āĻŦā§āĨ¤ āĻāĻŽāĻŋ āĻāĻā§āĻ āĻŦāĻ˛ā§āĻāĻŋ āĻāĻāĻžāĻ¨ā§ āĻāĻŽāĻŋ āĻāĻŽāĻžāĻ° Scenario (āĻĄā§āĻŽā§āĻāĻ¨ āĻ¨ā§āĻāĻŽ, āĻāĻāĻĒāĻŋ-āĻāĻĄā§āĻ°ā§āĻ¸) āĻŽāĻ¤ āĻāĻ°ā§ āĻĒā§āĻ¯āĻžāĻ°āĻžāĻŽāĻŋāĻāĻžāĻ° āĻā§āĻ˛ā§ āĻŦāĻ¸āĻžāĻŦā§ āĻāĻĒāĻ¨āĻŋ āĻ¯āĻāĻ¨ āĻāĻ¨āĻĢāĻŋāĻāĻžāĻ° āĻāĻ°āĻŦā§āĻ¨ āĻāĻĒāĻ¨āĻžāĻ° āĻŽāĻ¤ āĻāĻ°ā§ āĻĒāĻ°āĻŋāĻŦāĻ°ā§āĻ¤āĻ¨ āĻāĻ°ā§ āĻ¨āĻŋāĻŦā§āĻ¨āĨ¤ āĻ¸āĻŦāĻžāĻ° āĻŦā§āĻāĻžāĻ° āĻ¸ā§āĻŦāĻŋāĻ§āĻžāĻ°ā§āĻĨā§ āĻ¨āĻŋāĻŽā§āĻ¨ā§ āĻāĻ¨āĻĢāĻŋāĻāĻžāĻ°ā§āĻļāĻ¨ āĻĢāĻžāĻāĻ˛ āĻ āĻĒāĻ°āĻŋāĻŦāĻ°ā§āĻ¤āĻ¨āĻā§āĻ¤ āĻ āĻāĻļ āĻā§āĻ˛ā§āĻā§ āĻŦā§āĻ˛ā§āĻĄ āĻāĻ°ā§ āĻĻāĻŋā§ā§āĻāĻŋāĨ¤
[root@ns2 ~]# vim /etc/named.conf options { Â listen-on port 53 { 192.168.1.10; }; Â // listen-on-v6 port 53 { ::1; }; Â directory "/var/named"; Â dump-file "/var/named/data/cache_dump.db"; Â statistics-file "/var/named/data/named_stats.txt"; Â memstatistics-file "/var/named/data/named_mem_stats.txt"; Â allow-query { any;}; Â allow-recursion { localhost; 192.168.1.0/24; }; Â dnssec-enable yes; Â dnssec-validation yes; Â dnssec-lookaside auto; Â /* Path to ISC DLV key */ Â bindkeys-file "/etc/named.iscdlv.key"; Â managed-keys-directory "/var/named/dynamic"; }; logging { Â channel default_debug { Â file "data/named.run"; Â severity dynamic; Â }; }; zone "." IN { Â type hint; Â file "named.ca"; }; // Adding forward zone zone "mahedi.me" IN { Â type slave; Â masters { 192.168.1.5; }; Â file "slaves/db.mahedi.me.for"; }; // Adding Reverse zone zone "1.168.192.in-addr.arpa" IN { Â type slave; Â masters { 192.168.1.5; }; Â file "slaves/db.1.168.192.in-addr.arpa"; }; include "/etc/named.rfc1912.zones"; include "/etc/named.root.key"; :x
āĻāĻāĻ¨ āĻāĻŽāĻ°āĻž āĻĒā§āĻ°ā§āĻŦā§āĻ° āĻ¨ā§āĻ¯āĻžā§ āĻ¸āĻžāĻ°ā§āĻāĻŋāĻ¸ āĻ¸ā§āĻāĻžāĻ°ā§āĻ āĻāĻ°āĻŦā§ āĻ¸ā§āĻāĻžāĻ°ā§āĻāĻžāĻĒ āĻ enable āĻāĻ°āĻŦā§āĨ¤
[root@ns1 named]# systemctl restart named.service [root@ns1 named]# systemctl enable named.service ln -s '/usr/lib/systemd/system/named.service' '/etc/systemd/system/multi-user.target.wants/named.service'
āĻāĻāĻ¨ āĻāĻŽāĻ°āĻž āĻĻā§āĻāĻŦ āĻāĻŽāĻžāĻĻā§āĻ°Â Secondary āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° Primary āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻĨā§āĻā§ āĻĄāĻžāĻāĻž Replicate āĻāĻ°āĻ¤ā§ āĻĒā§ā§ā§āĻā§ āĻāĻŋāĻ¨āĻžāĨ¤
[root@ns2 ~]# cd /var/named/slaves/ [root@ns2 slaves]# ls -la -rw-r----- 1 named named 421 May 27 21:37 db.mahedi.me.for -rw-r----- 1 named named 292 May 13 13:58 db.110.168.192.in-addr.arpa
Yes!! we have done. āĻāĻŽāĻžāĻĻā§āĻ°Â Secondary āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° Primary āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻĨā§āĻā§ āĻĄāĻžāĻāĻž Replicate āĻāĻ°āĻ¤ā§ āĻĒā§ā§ā§āĻā§!!
āĻāĻāĻ¨ āĻāĻŽāĻ°āĻžÂ āĻĒā§āĻ°ā§āĻŦā§āĻ° āĻ¨ā§āĻ¯āĻžā§ Secondary DNS āĻ¸āĻžāĻ°ā§āĻāĻžāĻ° āĻāĻ° āĻā§āĻ˛āĻžā§ā§āĻ¨ā§āĻ āĻšāĻŦ āĻāĻŦāĻ nslookup āĻĻāĻŋā§ā§Â āĻĒāĻ°ā§āĻā§āĻˇāĻž āĻāĻ°āĻŦā§āĨ¤
[root@n2 named]# nslookup > mahedi.me Server: 192.168.1.10 Address: 192.168.1.10#53 Name: mahedi.me Address: 192.168.1.5 > www Server: 192.168.1.10 Address: 192.168.1.10#53 www.mahedi.me canonical name = ns1.mahedi.me. Name: ns1.mahedi.me Address: 192.168.1.5 > 192.168.1.5 Server: 192.168.1.10 Address:192.168.1.10#53 5.1.168.192.in-addr.arpa name = ns1.mahedi.me. > >exit [root@ns1 named]#