Hello,
I am having no end of trouble seting up a caching name server.
I'm using RHEL6 x64 and BBIND 9.7.0-P2-RedHat-9.7.0-5.P2.el6
I have followed this tutorial (
http://www.redhat.com/magazine/025nov06/features/dns/)
Yet when it comes to testing it with dig I'm having no joy.
iptables is off on both servers (master and caching) and SELINUX is set to permissive on both servers
/etc/resolv.conf in the caching server is pointing to 127.0.0.1
The ip address of the master server is 10.168.20.229
If I try
Code:
dig @10.168.20.229 subversion.example.com
I get this
Quote:
; <<>> DiG 9.7.0-P2-RedHat-9.7.0-5.P2.el6 <<>> @10.168.20.229 subversion.example.com
; (1 server found)
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 8974
;; flags: qr aa rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 1, ADDITIONAL: 1
;; QUESTION SECTION:
;subversion.example.com. IN A
;; ANSWER SECTION:
subversion.example.com. 10800 IN A 10.168.20.228
;; AUTHORITY SECTION:
example.com. 10800 IN NS ns2.example.com.
;; ADDITIONAL SECTION:
ns2.example.com. 10800 IN A 10.168.20.229
;; Query time: 1 msec
;; SERVER: 10.168.20.229#53(10.168.20.229)
;; WHEN: Thu May 26 12:51:29 2011
;; MSG SIZE rcvd: 90
|
If try
Code:
dig subversion.example.com
I get
Quote:
; <<>> DiG 9.7.0-P2-RedHat-9.7.0-5.P2.el6 <<>> @10.168.20.227 subversion.example.com
; (1 server found)
;; global options: +cmd
;; connection timed out; no servers could be reached
|
There are no errors in the logs
Any ideas?
TIA
named.conf file for caching server
Quote:
options {
listen-on port 53 { any; };
listen-on-v6 port 53 { ::1; };
directory "/var/named";
dump-file "/var/named/data/cache_dump.db";
statistics-file "/var/named/data/named_stats.txt";
memstatistics-file "/var/named/data/named_mem_stats.txt";
allow-query { any; };
recursion yes;
dnssec-enable yes;
dnssec-validation yes;
dnssec-lookaside auto;
/* Path to ISC DLV key */
bindkeys-file "/etc/named.iscdlv.key";
forwarders {10.168.20.229;};
forward only;
};
logging {
channel default_debug {
file "data/named.run";
severity dynamic;
};
};
zone "." IN {
type hint;
file "named.ca";
};
include "/etc/named.rfc1912.zones";
|
named.conf extract from master server
Quote:
zone "example.com" IN {
type master;
file "example.com.zone";
allow-transfer {any;};
};
|