上一章: 二進制部署K8s集羣第1節之準備虛擬機
一、安裝bind(在hdss7-11上執行)yum -y install bind-utils
服務器
二、配置/etc/named.conf
13 listen-on port 53 { 10.4.7.11; };14 listen-on-v6 port 53 { ::1; };
21 allow-query { any; };
22 forwarders { 10.4.7.254; };
36 dnssec-enable no;
37 dnssec-validation no;ide
三、配置區域配置文件 /etc/named.rfc1912.zonescode
cat >> /etc/named.rfc1912.zones <<eof zone "host.com" IN { type master; file "host.com.zone"; allow-update { 10.4.7.11; }; }; zone "od.com" IN { type master; file "od.com.zone"; allow-update { 10.4.7.11; }; }; > eof
四、配置主配置文件server
cat > /var/named/host.com.zone << EOF \$ORIGIN host.com. \$TTL 600 ; 10 minutes @ IN SOA dns.host.com dnsadmin.host.com. ( 2020092701 ; serial 10800 ; refresh (3 hours) 900 ; retry (15 minutes) 604800 ; expire (1 week) 86400 ; minimum (1 day) ) NS dns.host.com. \$TTL 60 ; 1 minute dns A 10.4.7.11 HDSS7-11 A 10.4.7.11 HDSS7-12 A 10.4.7.12 HDSS7-21 A 10.4.7.21 HDSS7-22 A 10.4.7.22 HDSS7-200 A 10.4.7.200 EOF
五、配置區域數據配置文件blog
cat > /var/named/od.com.zone <<eof \$ORIGIN od.com. \$TTL 600 ; 10 minutes @ IN SOA dns.od.com dnsadmin.od.com. ( 2020092701 ; serial 10800 ; refresh (3 hours) 900 ; retry (15 minutes) 604800 ; expire (1 week) 86400 ; minimum (1 day) ) NS dns.od.com. \$TTL 60 ; 1 minute dns A 10.4.7.11 harbor A 10.4.7.200 eof
六、添加權限chown -R named: /var/named/
dns
七、啓動檢查bind部署
named-checkconf named-checkzone host.com /var/named/host.com.zone named-checkzone od.com /var/named/od.com.zone systemctl start named netstat -tulnp | grep 53 dig -t A hdss7-21.host.com @10.4.7.11 +short
八、全部服務器配置指向dnsget
cat > /etc/resolv.conf <<eof search host.com nameserver 10.4.7.11 eof
九、驗證dns虛擬機
ping hdss7-11 ping hdss7-11.host.com
十、Windows dns指向配置
下一章:二進制部署K8s集羣第3節之準備簽發證書環境it