PowerDNS yakavhurika sosi DNS server

PowerDNS ndeye DNS server ine dhatabhesi (mukati mayo inotsigira dzakasiyana siyana dhatabhesi, kusanganisira MySQL, PostgreSQL, SQLite3, Oracle uye Microsoft SQL Server, pamwe neLDAP) uye akajeka mavara mafaera ari BIND fomati, se backend zvichiita kuti zvive nyore kubata nhamba hombe yezvinyorwa zveDNS.

Mhinduro ndeye inogona kusefa zvakare (semuenzaniso kusefa spam) kana redirect kubatanidza ako wega madhiraivha muLua, Java, Perl, Python, Ruby, C uye C ++. Pakati pezvimiro, mari inopihwawo ekuunganidza manhamba ari kure, kusanganisira kuburikidza neSNMP kana kuburikidza newebhu API (http server yakavakirwa manhamba uye manejimendi), kutanga patsva, injini yakavakirwa yekubatanidza vatyairi mumutauro weLua, kugona bharanzi mutoro zvichibva nenzvimbo yemutengi.

Vagadziri vacho vakambofunga kupatsanura vega zvikamu zviviri zvinoumba PowerDNS, inodzokororazve uye ine chiremera zita server, kuitira kuti isunungure vhezheni itsva nekukurumidza uye zvakanyanya, sekureva kwevagadziri.

Uye zvakanaka, mazuva mashoma apfuura vagadziri vakapa nyowani vhezheni yePowerDNS 4.2.0, vhezheni iyo zvinoenderana nevanogadzira chirongwa ichi, inoshandira ingangoita makumi matatu muzana yenhamba dzese dzematunhu muEurope (kana tikangotarisa chete maseru ane masayina eDNSSEC, ipapo 30%). Iyo kodhi yeprojekti inogoverwa pasi peGPLv90 rezinesi uye inogona kubvunzwa kubva ku inotevera chinongedzo.

Main nyowani maficha ePowerDNS 4.2.0

Mukuzivisa kweiyi nyowani vhezheni yePowerDNS 4.2.0 kuwedzerwa kwekugona kutsanangura marejista nevatungamiriri mumutauro weLua kunoratidzwa, Izvo zvaunogona kugadzira vatungamiriri vane hunyanzvi vanoisa hanya kana uchitumira AS data, subnets, padyo nemushandisi, nezvimwe.

Lua kutema rutsigiro kunoitwa kune ese ekuchengetedza kumashure, kusanganisira BIND uye LMDB. Semuenzaniso, kudzosa dhata uchifunga nezvemashure cheki yekuwanikwa kwevagadziri munzvimbo dzezone, unogona ikozvino kudoma:

@ IN LUA A "ifportup (443, {'52 .48.64.3 ', '45 .55.10.200'})"

Chishandiso chitsva chawedzerwa ixfrdist, iyo inobvumira nzvimbo kuti dziendeswe kubva kune yakagamuchirwa sevha uchishandisa AXFR uye IXFR zvikumbiro, uchifunga nezvekukosha kweiyo data rinotapuriranwa (kune yega domaini, iyo SOA nhamba inosimbiswa uye chete mitsva mitsva yedunhu inotorwa). Izvo zvinoshandiswa zvinokugonesa kuronga zone kuwiriranisa pane huwandu hukuru hwemasekondi uye anodzokorora maseva pasina kugadzira mutoro wakakura pane yekutanga server.

powerdns-inodzokorodza

Mukugadzirira 2020 DNS mureza wezuva danho, iyo udp-truncation-chikumbaridzo paramende, inova nebasa rekucheka UDP mhinduro kumutengi, yakadzikiswa kubva 1680 kusvika 1232, iyo inofanirwa kudzora zvakanyanya mukana wepaketi kurasikirwa UDP.

Iko kukosha 1232 kunosarudzwa, sezvo iri iyo yakakwira iyo saizi yekupindura kweDNS, kutora IPv6 kufunga, inogadzirisa kune yakaderera kukosha kweMTU (1280);

Iyo nyowani yekuchengetedza backend inoenderana neLMDB dhatabhesi yakawedzerwa.

Iyo yekumashure yakazara zvakakwana DNSSEC inoenderana, inogona kushandiswa kumatenzi uye nharaunda dzevaranda, uye inopa mashandiro ari nani pane mamwe akawanda kumashure.

Yakaregwa rutsigiro rwezvisina kunyorwa zvakanyorwa "autoserial" ficha, izvo zvakatadzisa kuti dzimwe nyaya dzigadziriswe.

Zvinoenderana nezvinodiwa neRFC 8624 (GOST R 34.11-2012 yakaendeswa kune "HAUFANIRI" chikamu), DNSSEC yakasiya rutsigiro rweGOST DS hashes uye ECC-GOST masiginecha edhijitari.

PowerDNS yakaita shanduko kumwedzi mitanhatu yekuvandudza kutenderera, maererano neiyo inotevera inotevera vhezheni yePowerDNS inotarisirwa kuburitswa muna Kukadzi 2020.

Kugadziridzwa kwekuburitswa kukuru kuchagadzirwa mukati megore rose, mushure meizvozvo zvigadziriso zvekushupika zvichapihwa kwemimwe mwedzi mitanhatu. Naizvozvo, rutsigiro rwePowerDNS 4.2 Yakabvumirwa Server bazi richagara kusvika Ndira 2021.

Kune avo vanofarira kuyedza iyi server yeDNS, unogona kudhawunirodha uye uteedzere yekuvaka mirairo kubva chinotevera chinongedzo.

Vanogona zvakare kuwana manejimendi manejimendi yeiri server pane network.


Siya yako yekutaura

Your kero e havazobvumirwi ichibudiswa. Raida minda anozivikanwa ne *

*

*

  1. Inotarisira iyo data: Miguel Ángel Gatón
  2. Chinangwa cheiyo data: Kudzora SPAM, manejimendi manejimendi.
  3. Legitimation: Kubvuma kwako
  4. Kutaurirana kwedata
  5. Dhata yekuchengetedza: Dhatabhesi inobatwa neOccentus Networks (EU)
  6. Kodzero: Panguva ipi neipi iwe unogona kudzora, kupora uye kudzima ruzivo rwako

  1.   kuna Col akadaro

    * uye * pachena * zvinyorwa zvemafaira muBIND fomati