Taupū whanui o te raupapa: Tuihono Rorohiko mo nga SME: Whakataki
Ko tenei tuhinga he korero mo te:
Kia ora e hoa ma, e hoa ma!
Ko te rōpū Ngakau hihiri hokona te ingoa rohe ipurangi fromlinux.fan ki to Kaiwhakarato Ratonga Ipurangi ranei ISP. Hei waahanga o tenei rironga mai, i tono raatau ki ta raatau ISP ki te whakauru i nga rekoata DNS katoa e tika ana mo nga paatai e pa ana ki to raatau rohe kia whakatauhia mai i te Ipurangi.
I tono ano ratou kia whakauruhia nga rekoata a te SRV mo te XMPP na te mea ka whakaaro raatau ki te whakauru i tetahi kaituku karere inamata i runga i Te Kaihoko ka hono atu ki te hononga o nga kaituku XMMP hototahi i runga i te Ipurangi.
- Ko te kaupapa nui o tenei tuhinga he whakaatu me pehea e whakaata ai i nga rekoata a te SRV e pa ana ki te ratonga Karere Tere-hototahi XMPP i roto i te konae rohe DNS.
- Tuhinga o mua Papamahi Ma te hononga whatunga kotahi, ka taea e ia te whakatau ki te whakauru i tetahi kaituku penei ki te whakahaere i tetahi Rohe DNS kua tohaina. Mena ka hono taua kaiwhakarato ki te LAN LAN hei tua atu ki te Ipurangi, me whakarite nga waahanga hei whakamahi i nga hononga whatunga e rua.
Taurangi
- 1 Tūmau turanga
- 2 Papamahi
- 2.1 Ka whakauruhia e maatau te paatete takutai me ona tuhinga.
- 2.2 Tuhinga
- 2.3 Ka whirihorahia e maatau tetahi waahanga whatunga
- 2.4 Ka whakaputahia e matou nga rohe papaaahi
- 2.5 Nga kaupapa here taunoa kia uru ki te pātūahi
- 2.6 He ture mo te whakauru ki te pātūahi
- 2.7 Ka tirohia e matou te taarua o nga konae whirihoranga
- 3 NSD
- 4 Whakarāpopoto
- 5 Te tuku ā muri ake
Tūmau turanga
Kei te whakauru maatau i tetahi kaiwhakarato DNS NSD whai mana Debian "Jessie". Koinei te kaiwhakarato pakiaka mo te "fan." Ko nga waahanga matua o te kaituku:
Ingoa: ns.fan IP wāhitau: 172.16.10.30 pakiaka @ ns: ~ # ingoa rangatira ns pakiaka @ ns: ~ # ingoa rangatira --fqdn ns.fan pakiaka @ ns: ~ # ip addr whakaaturanga 1: he aha: mtu 65536 qdisc noqueue state UNKNOWN roopu taunoa hono hono / loopback 00: 00: 00: 00: 00: 00 brd 00: 00: 00: 00: 00: 00 inet 127.0.0.1/8 host range range lo valid_lft forever prefer_lft forever inet6 :: 1/128 kaitautoko manaaki whaimana_lft ake ake_lft ake ake 2: eth0: mtu 1500 qdisc pfifo_fast state UP roopu taunoa qlen 1000 hono / ether 00: 0c: 29: dc: d7: 1b brd ff: ff: ff: ff: ff: ff inet 172.16.10.30/24 brd 172.16.10.255 whanui ao eth0 valid_lft ake ake prefer_lft ake tonu inet6 fe80 :: 20c: 29ff: fedc: d71b / 64 hono whanui valid_lft ake ake manakohia_lft ake ake
Papamahi
I mua i to wehenga atu me te ratonga ki te WWW Village, he tino pai ki te tiaki i te kaituku me nga ratonga e tukuna ana ma te Putaahi nui - Kaaraara. He maamaa noa te whirihora Shorewall a he waahanga pai hei tiaki.
- Ko te whirihoranga tika me te oti o te Pātahiahi he mahi ma te tohunga, hei tohunga ranei, ehara ko matau. Ka tohaina e maatau he aratohu mo te whirihoranga iti me te mahi.
Ka whakauruhia e maatau te paatete takutai me ona tuhinga.
pakiaka @ ns: ~ # maramataka whakaatu maaramatanga
Mōkihi: shorewall Hou: āe Herenga: kāhore i tāuta
Putanga: 4.6.4.3-2
pakiaka @ ns: ~ # maramatanga me te whakauru i te taha-kiore-tuhinga-tuhinga
Tuhinga
Ka kitea e koe nga tuhinga maha i roto i nga kōpaki:
- / usr / tohatoha / tuhinga / taapiri
- / usr / share / doc / shorewall / tauira
- / usr / tohatoha / tuhinga / shorewall-doc / html
Ka whirihorahia e maatau tetahi waahanga whatunga
pakiaka @ ns: ~ # cp / usr / share / doc / shorewall / tauira / kotahi-atanga / atanga \ / etc / papamuri / pakiaka @ ns: ~ # nano / etc / shorewall / atanga #ZONE INTERFACE OPTIONS net eth0 tcpflags, logmartians, nosmurfs, sourceroute = 0
Ka whakaputahia e matou nga rohe papaaahi
pakiaka @ ns: ~ # cp / usr / share / doc / shorewall / tauira / kotahi-atanga / rohe \ / etc / papamuri / pakiaka @ ns: ~ # nano / etc / shorewall / rohe #WHAI KI TE WHAKARONGO I TE WHAKARANGA # NGA kowhiringa kowhiringa fw pātūahi ipv4 net
Nga kaupapa here taunoa kia uru ki te pātūahi
pakiaka @ ns: ~ # cp / usr / share / doc / shorewall / tauira / kotahi-atanga / kaupapahere \
/ etc / papamuri /
pakiaka @ ns: ~ # nano / etc / shorewall / kaupapahere
#SOURCE DEST POLICY LOG LEVEL LIMIT LIMIT: BURST $ FW net KATOA
net katoa info PARAU
# TE KOTAHI KOTAHI KOTAHI ME KATOA Katoa o nga korero REJECT katoa
He ture mo te whakauru ki te pātūahi
pakiaka @ ns: ~ # cp / usr / share / doc / shorewall / tauira / kotahi-atanga / ture \
/ etc / papamuri /
pakiaka @ ns: ~ # nano / etc / shorewall / ture
#ACTION SOURCE DEST PROTO DEST SOURCE ORIGINAL RATE USER / MARK CON $ # PORT PORT (S) GRATE LIMIT GROUP? SECTION KATOA? SECTION I WHAKAKI? SECTION HONO? SECTION INVALID? SECTION UNTRACKED? SECTION NEW # DROP packet in the INVALID state # Discard nga pute kei te he he he Muhu (TURU) kupenga $ FW tcp # Whakataka Ping mai i te "kino" kupenga rohe .. me te aukati i te waipuke o to raakau .. # Whakakahorehia a Ping mai i te rohe kupenga "kino". # Aukati i te waipuke o te roko punaha (/ var / log / syslog) Ping (DROP) kupenga $ FW # Whakaaetia nga mahinga ICMP katoa MAI i te pātūahi KI TE rohe kupenga # Tukuna nga mahinga ICMP katoa MAI i te pātūahi KI TE rohe kupenga. WHAKARANGA i te $ FW kupenga icmp
# Ture ake # Uru ma te SSH mai i nga rorohiko e rua
SSH / ACCEPT kupenga: 172.16.10.1,172.16.10.10 $ FW tcp 22
# Tukuna te hokohoko ki nga tauranga 53 / tcp me te 53 / udp
WHAKARITIA te kupenga $ FW tcp 53
WHAKARITIA te kupenga $ FW udp 53
Ka tirohia e matou te taarua o nga konae whirihoranga
pakiaka @ ns: ~ # tirotiro takiwaha
Kei te tirotiro ... Tukatuka / etc / shorewall / params ... Tukatuka /etc/shorewall/shorewall.conf ... Uta Tuku ... Tirohia / etc / shorewall / rohe ... Tirohia / etc / shorewall / atanga .. Te whakatau i nga Kaipupuri i nga Rohe ... Te Kimi i nga konae Mahi ... Te tirotiro / me etahi atu / taapiringa / kaupapahere ... Te taapiri i nga Ture Anti-smurf Te tirotiro i nga Haki TCP e taatari ana ... Te tirotiro i te Huarahi Whakawhiti Kernel ... Te tirotiro i te Whakauru a Martian ... Te tirotiro Whakaaetia te Ararere Pūtake ... Te Takitaki i te Tātari MAC - Wahanga 1 ... Te tirotiro / me etahi atu / rainaorangi / ture ... Te arowhai / aha / taapiri / honohono ... Te tirotiro i te Tātari MAC - Wahanga 2 ... Te Hoatu Kaupapahere .. . Te tirotiro /usr/share/shorewall/action. Tuku mo te Hoko mekameka ... Tirohia /usr/share/shorewall/action.Broadcast mo te mekameka Broadcast ... Whiringa Shorewall kua whakamanahia
pakiaka @ ns: ~ # nano / etc / taunoa / takutepae
# aukati i te tiimatanga me te whirihoranga taunoa # tautuhia te whai ake kia 1 kia taea ai te tiimatanga o te Shorewall
whakaoho =1
------
pakiaka @ ns: ~ # ratonga tiiwhana tiimatanga
pakiaka @ ns: ~ # ratonga whakatuuapa moana
pakiaka @ ns: ~ # mana tuuturu o te taha ratonga
● shorewall.service - LSB: Whirihorahia te papangaahi i te wa whakaeke Kua utaina: utaina (/etc/init.d/shorewall) Hohe: hohe (puta) mai i te Ra 2017-04-30 16:02:24 EDT; 31minetahi ki mua Tukanga: 2707 ExecStop = / etc / init.d / tutakina te taha moana (waehere = puta, mana = 0 / MANUITU) Tukanga: 2777 ExecStart = / etc / init.d / shorewall start (code = exited, status = 0 / MANUITANGA)
He tino matauranga ki te panui totika i nga putanga o te whakahau iptables -L ina koa mo nga kaupapa here taunoa mo te INPUT, FORWARD, OUTPUT, me era e paopao ana - whakakore te Pātahiahi hei tiaki i nga whakaeke o waho. Ko te mea iti, ka haere ki te Ipurangi me te iti o te maru, tika? 😉
pakiaka @ ns: ~ # iptables -L
NSD
pakiaka @ ns: ~ # maatauranga whakaatu nsd
Mōkī: nsd Hou: āe Tūnga: tāuta Kua whakauruhia aunoa: kāo
Putanga: 4.1.0-3
pakiaka @ ns: ~ # aptitude tāuta nsd
pakiaka @ ns: ~ # ls / usr / tohatoha / tuhinga / nsd /
contrib changelog.Debian.gz NSD-DIFFFILE REQUIREMENTS.gz tauira changelog.gz NSD-FOR-BIND-USERS.gz TODO.gz rerekētanga manatārua.pdf.gz README.gz TE WHAKARUUTANGA MĀ TE KAUPONO NSD-PĀTAI KAUPAPA.gz
pakiaka @ ns: ~ # nano /etc/nsd/nsd.conf
# Kōnae whirihoranga NSD mo Debian. # Tirohia te wharangi nsd.conf (5) tangata.
# Tirohia /usr/share/doc/nsd/examples/nsd.conf mo tetahi korero
# konae korero
# Ko te raarangi e whai ake nei kei roto ko nga konae whirihoranga mai i te raarangi # /etc/nsd/nsd.conf.d. # WHAKATOKANGA: Kaore ano kia mahi te taera o te ao ... # whakauru: "/etc/nsd/nsd.conf.d/*.conf" kaiwhakarato: logfile: "/var/log/nsd.log" ip-address : 172.16.10.30 # whakarongo i nga hononga IPv4 mahi-ip4: ae # whakarongo i nga hononga IPv6 mahi-ip6: kaore # tauranga hei whakautu i nga paatai. taunoa ko te 53. tauranga: 53 ingoa kaiwhakamahi: nsd # I nga rohe, ko te whiringa-xfr hei tohu mo te rohe takiuru # axfr: ingoa: fan zonefile: /etc/nsd/fan.zone rohe: ingoa: fromlinux.fan
rohe: /etc/nsd/desdelinux.fan.zone whakarato-xfr: 172.16.10.250 Rohe NOKEY: ingoa: 10.16.172.in-addr.harp
zonefile: /etc/nsd/10.16.172.arpa.zone whakarato-xfr: 172.16.10.250 Rohe NOKEY: ingoa: swl.fan zonefile: /etc/nsd/swl.fan.zone rohe: ingoa: debian.fan zonefile: /etc/nsd/debian.fan.zone rohe: ingoa: centos.fan zonefile: /etc/nsd/centos.fan.zone rohe: ingoa: freebsd.fan zonefile: /etc/nsd/freebsd.fan.zone
pakiaka @ ns: ~ # nsd-checkconf /etc/nsd/nsd.conf
pakiaka @ ns: ~ #
Ka hangaia e matou nga konae Rohe
Te Root Root «toa.»Kua whirihorahia i raro ake nei MO TE WHAKAMAHI ANAKE, kaua e waiho hei tauira. Ehara matou i te Kaiwhakahaere mo nga Kaitoha Ingoa Tuuturu. 😉
pakiaka @ ns: ~ # nano /etc/nsd/fan.zone
$ ORIGIN powhiriwhiri. $ TTL 3H @ IN SOA ns.fan. pakiaka.fan. (1; 1D rangatū; tāmata 1H; ngana anō 1W; pau te 3H); iti rawa ranei; Te wa tirotiro kino kino hei oranga; @ IN NS ns.fan. @ IN A 172.16.10.30; ns IN A 172.16.10.30
pakiaka @ ns: ~ # nano /etc/nsd/desdelinux.fan.zone
$ ORIGIN mai i linux.fan. $ TTL 3H @ IN SOA ns.fromlinux.fan. pakiaka.fromlinux.fan. (1; 1D rangatū; tāmata 1H; ngana anō 1W; pau te 3H); iti rawa ranei; Te wa tirotiro kino kino hei oranga; @ IN NS ns.fromlinux.fan. @ IN MX 10 mēra.fromlinux.fan. @ IN TXT "v = spf1 a: mail.desdelinux.fan -all"; ; Whakauru ki te whakatau keri keri mai i linux.fan @ IN A 172.16.10.10; ns IN A 172.16.10.30 mail IN CNAME mai linux.fan. korerorero IN CNAME mai linux.fan. www IN CNAME mai i linux.fan. ; ; Nga rekoata a te SRV e pa ana ki te XMPP
_xmpp-server._tcp IN SRV 0 0 5269 mai i linux.fan.
_xmpp-kaihoko._tcp IN SRV 0 0 5222 mai i linux.fan.
_jabber._tcp IN SRV 0 0 5269 mai i linux.fan.
pakiaka @ ns: ~ # nano /etc/nsd/10.16.172.arpa.zone
$ ORIGIN 10.16.172.in-addr.arpa.
$ TTL 3H @ IN SOA ns.fromlinux.fan. pakiaka.fromlinux.fan. (1; 1D rangatū; tāmata 1H; ngana anō 1W; pau te 3H); iti rawa ranei; Te wa tirotiro kino kino hei oranga; @ IN NS ns.fromlinux.fan. ; 30 IN PTR ns.fromlinux.fan. 10 IN PTR mai i linux.fan.
pakiaka @ ns: ~ # nsd-checkzone mai i linux.fan / etc / nsd / mai i linux.fan.zone
he pai te rohe mai i linux.fan
pakiaka @ ns: ~ # nsd-checkzone 10.16.172.in-addr.arpa /etc/nsd/10.16.172.arpa.zone
rohe 10.16.172.in-addr.arpa kei te pai # I runga i te Debian, ka whakakorehia e te NSD tana whakaturanga kia ahei ai te taunoa
pakiaka @ ns: ~ # systemctl restart nsd
pakiaka @ ns: ~ # systemctl status nsd
● nsd.service - Ingoa Tūmau Daemon Kua utaina: utaina (/lib/systemd/system/nsd.service; whakahohea) Hohe: hohe (rere) mai i te Ra 2017-04-30 09:42:19 EDT; 21min i mua PID Matua: 1230 (nsd) CGroup: /system.slice/nsd.service ├─1230 / usr / sbin / nsd -d -c /etc/nsd/nsd.conf ├─1235 / usr / sbin / nsd - d -c /etc/nsd/nsd.conf └─1249 / usr / sbin / nsd -d -c /etc/nsd/nsd.conf
He tirotiro mai i te kaitoha ns.fan ake
pakiaka @ ns: ~ # manaaki mai i linux.fan desdelinux.fan he wahitau 172.16.10.10 desdelinux.fan mēra ka whakahaerehia e 10 mail.desdelinux.fan. pakiaka @ ns: ~ # host mail.fromlinux.fan Ko te mail.desdelinux.fan he ingoakete mo desdelinux.fan. desdelinux.fan he wahitau 172.16.10.10 desdelinux.fan mēra ka whakahaerehia e 10 mail.desdelinux.fan. pakiaka @ ns: ~ # host chat.fromlinux.fan Ko te chat.desdelinux.fan he ingoakete mo desdelinux.fan. desdelinux.fan he wahitau 172.16.10.10 desdelinux.fan mēra ka whakahaerehia e 10 mail.desdelinux.fan. pakiaka @ ns: ~ # manaaki www.desdelinux.fan www.desdelinux.fan he ingoa kore mo desdelinux.fan. desdelinux.fan he wahitau 172.16.10.10 desdelinux.fan mēra ka whakahaerehia e 10 mail.desdelinux.fan. pakiaka @ ns: ~ # ope ns.fromlinux.fan ns.fromlinux.fan he wahitau 172.16.10.30 pakiaka @ ns: ~ # ope 172.16.10.30 30.10.16.172.in-addr.arpa ingoa ingoa tohu ats.fromlinux.fan. pakiaka @ ns: ~ # ope 172.16.10.10 10.10.16.172.in-addr.arpa tohu tohu tohu mai i linux.fan. pakiaka @ ns: ~ # ope ns.fan ns.fan he wahitau 172.16.10.30
Ko nga arowhai whakatau ingoa mai i te Ipurangi
- Ko nga patai DNS taipitopito kaore i te nui rawa, na te mea ko te tika o te Whakataunga Ingoa Rohe ka pa ki te kaha o te mahi tika a te whatunga..
Hei whakatutuki i nga patai DNS kua hono ahau ki taku whakawhiti - whakakā whakamātautau, pona me te IP 172.16.10.250 me te keti 172.16.10.1, Wāhitau IP e hangai ana ki taku mahi mahi sysadmin.fromlinux.fan e mohiotia ana mai i nga tuhinga o mua.
sandra @ pona: ~ $ sudo ip addr whakaaturanga 1: he aha: mtu 16436 qdisc noqueue state UNKNOWN hono / loopback 00: 00: 00: 00: 00: 00 brd 00: 00: 00: 00: 00: 00 inet 127.0.0.1/8 host host range in in6 :: 1/128 roopu manaaki valid_lft ake ake manakohia_lft ake ake 2: eth0: mtu 1500 qdisc pfifo_fast state UP qlen 1000 hono / ether 00: 17: 42: 8e: 85: 54 brd ff: ff: ff: ff: ff: ff inet 172.16.10.250/24 brd 172.16.10.255 ao whanui eth0 inet6 fe80: : 217: 42ff: fe8e: 8554/64 hononga honohono whaimana_lft ake ake manakohia_lft ake tonu atu 3: wlan0: mtu 1500 qdisc noop state KI RUA qlen 1000 hono / ether 00: 1d: e0: 88: 09: d5 brd ff: ff: ff: ff: ff: ff 4: pan0: mtu 1500 qdisc noop state WHAKARANGA hono / ether de: 0b: 67: 52: 69: ad brd ff: ff: ff: ff: ff: ff sandra @ pona: ~ $ sudo ara -n Kernel IP ararere tepu Whakatau Kaha Gateway Genmask Flags Metric Ref Whakamahia Iface 0.0.0.0 172.16.10.1 0.0.0.0 UG 0 0 0 eth0 172.16.10.0 0.0.0.0 255.255.255.0 U 0 0 0 eth0 sandra @ pona: ~ $ ngeru /etc/resolv.conf nameserver 172.16.10.30 sandra @ pona: ~ $ manaaki desdelinux.fan desdelinux.fan he wahitau 172.16.10.10 desdelinux.fan mēra ka whakahaerehia e 10 mail.desdelinux.fan. sandra @ pona: ~ $ host mail.fromlinux.fan Ko te mail.desdelinux.fan he ingoakete mo desdelinux.fan. desdelinux.fan he wahitau 172.16.10.10 desdelinux.fan mēra ka whakahaerehia e 10 mail.desdelinux.fan. sandra @ pona: ~ $ manaaki ns.fromlinux.fan ns.fromlinux.fan he wahitau 172.16.10.30 sandra @ pona: ~ $ manaaki 172.16.10.30 30.10.16.172.in-addr.arpa ingoa ingoa tohu ats.fromlinux.fan. sandra @ pona: ~ $ manaaki 172.16.10.10 10.10.16.172.in-addr.arpa tohu tohu tohu mai i linux.fan. sandra @ pona: ~ $ host -t SRV _xmpp-server._tcp.fromlinux.fan _xmpp-server._tcp.desdelinux.fan he rekoata SRV 0 0 5269 mai i linux.fan. sandra @ pona: ~ $ manaaki -t SRV _xmpp-client._tcp.fromlinux.fan _xmpp-client._tcp. mai linux.fan he rekoata SRV 0 0 5222 mai i linux.fan. sandra @ pona: ~ $ manaaki -t SRV _jabber._tcp.fromlinux.fan _jabber._tcp.desdelinux.fan he rekoata SRV 0 0 5269 mai i linux.fan. sandra @ pona: ~ $ manaaki -whaiwhai. E ngana ana ki te "fan" ;; - >> HEADER << - opcode: QUERY, mana: NOERROR, id: 57542 ;; haki: qr aa rd; QUERY: 1, PANUITANGA: 3, KAUPAPA: 0, PANUI: 1 ;; WĀHANGA PĀTAI :; pā KI NGA MEA ;; WĀHANGA PANUI: pā. 10800 IN SOA ns.fan. pakiaka.fan. 1 86400 3600 604800 10800 powhiriwhiri. 10800 IN NS ns.fan. pā 10800 IN A 172.16.10.30 ;; WĀHANGA TAPU: ns.fan. 10800 IN A 172.16.10.30 I riro 111 paita mai i te 172.16.10.30 # 53 i te 0 ms
- I whakatauhia e maatau te wahitau 172.16.10.250 I runga i te Pona, ki te tirotiro i nga mea KATOA ma te paatai DNS AXFR, mai i te mea i whirihorahia nga Rohe kia kore -e kore he kupu huna- tenei momo paatai mai i taua IP.
sandra @ pona: ~ $ keri desdelinux.fan axfr
; << >> DiG 9.9.5-9 + deb8u6-Debian << >> mai i linux.fan axfr ;; whiringa ao: + cmd mai i linux.fan. 10800 IN SOA ns.fromlinux.fan. pakiaka.fromlinux.fan. 1 86400 3600 604800 10800 mai i linux.fan. 10800 IN NS ns.fromlinux.fan. Tuhinga ka whai mai. 10800 IN MX 10 mēra.fromlinux.fan. Tuhinga ka whai mai. 10800 IN TXT "v = spf1 a: mail.desdelinux.fan -all" mai i linux.fan. 10800 IN A 172.16.10.10 _jabber._tcp.fromlinux.fan. 10800 IN SRV 0 0 5269 mai i linux.fan. _xmpp-client._tcp.fromlinux.fan. 10800 IN SRV 0 0 5222 mai i linux.fan. _xmpp-server._tcp.fromlinux.fan. 10800 IN SRV 0 0 5269 mai i linux.fan. korerorero.fromlinux.fan. 10800 IN CNAME mai i linux.fan. mail.fromlinux.fan. 10800 IN CNAME mai i linux.fan. ns.fromlinux.fan. 10800 IN A 172.16.10.30 www.desdelinux.fan. 10800 IN CNAME mai i linux.fan. Tuhinga ka whai mai. 10800 IN SOA ns.fromlinux.fan. pakiaka.fromlinux.fan. 1 86400 3600 604800 10800 ;; Te waa Uiui: 0 msec ;; SERVER: 172.16.10.30 # 53 (172.16.10.30) ;; KAA: Ra Ra 30 10:37:10 EDT 2017 ;; Rahi XFR: 13 rekoata (karere 1, paita 428)
sandra @ pona: ~ $ keri 10.16.172.in-addr.arpa axfr
; << >> DiG 9.9.5-9 + deb8u6-Debian << >> 10.16.172.in-addr.arpa axfr ;; nga whiringa o te ao: + cmd 10.16.172.in-addr.arpa. 10800 IN SOA ns.fromlinux.fan. pakiaka.fromlinux.fan. 1 86400 3600 604800 10800 10.16.172.in-addr.arpa. 10800 IN NS ns.fromlinux.fan. 10.10.16.172.in-addr.arpa. 10800 IN PTR mai i linux.fan. 30.10.16.172.in-addr.arpa. 10800 IN PTR ns.fromlinux.fan. 10.16.172.in-addr.arpa. 10800 IN SOA ns.fromlinux.fan. pakiaka.fromlinux.fan. 1 86400 3600 604800 10800 ;; Te waa Uiui: 0 msec ;; SERVER: 172.16.10.30 # 53 (172.16.10.30) ;; KAA: Ra Ra 30 10:37:27 EDT 2017 ;; Rahi XFR: 5 rekoata (karere 1, paita 193)
sandra @ pona: ~ $ ping ns.fromlinux.fan
PING ns.fromlinux.fan (172.16.10.30) 56 (84) paita o te raraunga.
I tika te whakautu o nga patai DNS e tika ana. Ka tirohia hoki e maatau te mahi a te Poutapatu, kaore hoki e whakaae ping mai i nga rorohiko e hono ana ki te Ipurangi.
Whakarāpopoto
- I kite maatau me pehea te whakauru me te whirihora - me nga whiringa whanui me te iti rawa - he kaiwhakarato DNS Mana i runga i te NSD. Ka whakaatuhia e matou ko te wetereo o nga konae rohe he tino rite ki te BIND. I runga i te Ipurangi he tino pai nga tuhinga katoa kei runga i te NSD.
- I tutuki ta maatau whaainga ki te whakaatu i te whakaaturanga o nga rekoata SRV e pa ana ki te XMPP.
- Ka awhina maatau ki te whakauru me te iti o te whirihoranga o te pātūahi Shorewall.
Te tuku ā muri ake
Prosody IM me nga kaiwhakamahi o te rohe.
8 korero, waiho maau
Morena e hoa ma o te hapori linux tino akoranga pai I ngana ahau ki te whakauru i nga dns engari e kii ana kaore i kitea tenei ota mena he ara ke hei whakawhetai mo nga korero
Patai?…. Kaore koe e whakamahi i te SAMBA hei kaiwhakahaere rohe mo nga hononga SME?
fracielarevalo: Kia mahara ko te tuhinga e pa ana ki te whakauru i te NSD ki te punaha whakahaere a Debian "Jessie", kaore i te CentOS.
Alberto: Me haere koe mai i nga mea ngawari ki te matatini. A muri ake nei ka kite tatou i a Samba 4 hei AD-DC, ara, he Whaiaronga Hohe - Kaiwhakahaere Rohe. Te manawanui. Ka tūtohu ahau kia panuihia e koe te tuhinga o mua, ina koa te paratarafa e kii ana: Ko te tikanga whakamana i te whanautanga o te ARPANET, te Ipurangi, me era atu Whatunga Wide Area, Whatunga Rohe Rohe ranei i runga i te LDAP, Ratonga Whaiaronga, a Microsoft LSASS ranei, o te Raarangi Hohe ranei, o Kerberos ranei? whakahua i etahi.
Kia maumahara ko nga tuhinga katoa he mea hono, he raupapa ano hoki. Ki taku whakaaro ehara i te mea nui te tiimata ki te anga ke i tetahi atu ara, ara, mai i te Whaiaronga Hohe ka hoki ki te PAM. Ka kite koe, he maha nga momo tuuturu ka mutu i te PAM i runga i to papamahi Linux. Ko nga rongoa ngawari penei i ta maatau e hipoki nei ki te PAM e tika ana kia tuhia. Mena ka maarama te kaupapa, me panui me te ako.
Tēnā koutou, tēnā kōutou e kōrerohia nei.
Ko tetahi tuhinga nui na te kaituhi, penei i nga wa katoa he mea hou he tino whaihua mo tatou e whakaaro ana he "sysadmins" tatou.
Anei aku panui:
1- Te whakamahi i te NSD hei utu mo te TAI hei kaiwhakarato DNS Mana.
2- Whakauruhia ki te konae DNS nga rekoata a te SRV e pa ana ki te ratonga Karere Inamata e haangai ana ki te XMPP.
3- Ma te whakamahi i te Patuahi PatuArai me te hononga whatunga.
Ko tenei pou he "turanga" maau (i te mea he iti tana korero me te wawata o te kaituhi puta noa i te roopu SME katoa) mena kei te heke mai ka kite au me mahi tonu tetahi otinga penei.
Ka awhina ano te roopu hihiko ki a maatau ki te whakanui ake i o maatau mohiotanga ki te waahanga o nga hononga mo nga SME. Ka nui te mihi ki a koe mo te koha nui, te hapori, ko au ano me taku whakaaro he maha nga sysadmin e mihi ana ki a koe mo te koha nui ... I nga wa o mua he hononga ano taku ki te taha o te taha o te taha tai, engari ka ata tirohia tetahi keehi whaihua mo taku mahi. He uaua rawa atu taau i mahi ai, ko tenei raupapa whatunga mo nga SME he paionia ki nga tuhinga i nga tini waahanga me whakahaere e te sysadmin, ma te mohio ko te nuinga o nga tuhinga e pa ana ki tenei ko te reo Pakeha o te ao Ingarihi ...
Kaua e mutu, tena koutou ka anga whakamua !!!
Lagarto: Ka nui te mihi ki a koe mo o korero me o mihi. Ka tarai ahau ki te toha atu ki te rarangi te turanga iti rawa e hiahiatia ana e Sysadmin. Ae ra, ko te ako-takitahi me te hiahia ake o ia tangata o ia kaupapa ka korerohia ka whakawhirinaki ki tetahi tohu.
Haere tonu ki mua !!!
Kia ora to hapori linx;). He hou ahau ki te OS.opte po waiho matapihi i nga wa o mua a ka hiahia ahau ki te ako kia taea e au..he tuhinga tino pai .. nga mihi nui
Mauruuru Ghost mo te whakauru mai ki te Hapori me te whakaputa korero