From 09727c69b5bef993e47eaa0f86885f5f61a3daf6 Mon Sep 17 00:00:00 2001 From: "yann.lereuille" Date: Thu, 30 Jan 2025 13:21:54 +0100 Subject: [PATCH] Fichiers config bind & dns Charlie --- db.sio-yl.lan | 20 ++++++++++++++++++++ db.sio-yl.lan.rev | 17 +++++++++++++++++ named.conf.options | 24 ++++++++++++++++++++++++ 3 files changed, 61 insertions(+) create mode 100644 db.sio-yl.lan create mode 100644 db.sio-yl.lan.rev create mode 100644 named.conf.options diff --git a/db.sio-yl.lan b/db.sio-yl.lan new file mode 100644 index 0000000..b4b235d --- /dev/null +++ b/db.sio-yl.lan @@ -0,0 +1,20 @@ +; +; BIND data file for local loopback interface +; +$TTL 604800 +@ IN SOA dns1-yl.sio-yl.lan. root.dns1.sio-yl.lan. ( + 2 ; Serial + 604800 ; Refresh + 86400 ; Retry + 2419200 ; Expire + 604800 ) ; Negative Cache TTL + NS dns1-yl.sio-yl.lan. +dns1-yl.sio-yl.lan. A 192.168.0.121 + + +@ IN NS localhost. +;@ IN A 127.0.0.1 +deb-dhcp-yl IN A 192.168.0.120 +dhcp CNAME deb-dhcp.sio-yl.lan. +dns CNAME dns1-yl.sio-yl.lan. +;@ IN AAAA ::1 diff --git a/db.sio-yl.lan.rev b/db.sio-yl.lan.rev new file mode 100644 index 0000000..66d22e3 --- /dev/null +++ b/db.sio-yl.lan.rev @@ -0,0 +1,17 @@ +; +; BIND data file for local loopback interface +; +$TTL 604800 +@ IN SOA dns1-yl.sio-yl.lan. root.dns1-yl.sio-yl.lan. ( + 2 ; Serial + 604800 ; Refresh + 86400 ; Retry + 2419200 ; Expire + 604800 ) ; Negative Cache TTL +; + IN NS dns1-yl.sio.lan. + + +120 IN PTR deb-dhcp-yl.sio-yl.lan. +121 IN PTR dns1-yl.sio-yl.lan. + diff --git a/named.conf.options b/named.conf.options new file mode 100644 index 0000000..6ac2441 --- /dev/null +++ b/named.conf.options @@ -0,0 +1,24 @@ +options { + directory "/var/cache/bind"; + + // If there is a firewall between you and nameservers you want + // to talk to, you may need to fix the firewall to allow multiple + // ports to talk. See http://www.kb.cert.org/vuls/id/800113 + + // If your ISP provided one or more IP addresses for stable + // nameservers, you probably want to use them as forwarders. + // Uncomment the following block, and insert the addresses replacing + // the all-0's placeholder. + + forwarders { + 10.121.38.7; // Forwarder 1 + }; + + //======================================================================== + // If BIND logs error messages about the root key being expired, + // you will need to update your keys. See https://www.isc.org/bind-keys + //======================================================================== + dnssec-validation no; + + listen-on-v6 { any; }; +};