Académique Documents
Professionnel Documents
Culture Documents
# Pacotes a Instalar
yum install epel-release.noarch
yum install net-tools vim bind-utils
Desabilitar SELINUX
vim /etc/selinux/config
named.conf
# Bloco Options aonde teremos as configuraoes Padres
options {
#Opoes Padros de Informaes
# Diretorios para configuraes internas do Bind
directory "/var/named";
dump-file "/var/named/data/cache_dump.db";
recursing-file "/var/named/data/named_recurse.txt";
statistics-file "/var/named/data/named_stats.txt";
memstatistics-file "/var/named/data/named_mem_stats.txt";
zone-statistics yes;
# Encaminhadores para tudo que nao AUTORIDADE LOCAL
#forwarders
# { 192.168.100.62; };
## Opcoes de seguranca(Cuidado em alterar) ##
#
# Desabilitar Globalmente a recurso
recursion no;
additional-from-auth no;
additional-from-cache no;
##--
# Desabilitar respostas Zonas Vazias
empty-zones-enable no;
# No informa a verso do Bind usada
version "";
# Habilita DNSSEC
dnssec-enable yes;
# Valida o DNSSEC
dnssec-validation no;
##--
## Padro
/* Path to ISC DLV key */
bindkeys-file "/etc/named.iscdlv.key";
managed-keys-directory "/var/named/dynamic";
## O Bloco Options(acima) esta sendo fechado no named.conf.local que
## chamado abaixo, por isso no feche o bloco nesse arquivo.
include "/etc/named.conf.local";
NTP
# Local clock (this is not the localhost address!)
server 127.127.1.0
fudge 127.127.1.0 stratum 10
# The source, where we are receiving the time from
server pool.ntp.br iburst prefer
driftfile /var/lib/ntp/ntp.drift
logfile /var/log/ntp
# Access control
# Default restriction
restrict default ignore
# Allow everything from localhost
restrict 127.0.0.1
# Allow that our time source can only provide time and do nothing else
restrict pool.ntp.br mask 255.255.255.255 nomodify notrap nopeer noquery