{"id":36537,"date":"2019-10-31T22:12:14","date_gmt":"2019-10-31T19:12:14","guid":{"rendered":"https:\/\/prohoster.info\/blog\/poshagovoe-rukovodstvo-po-nastrojke-dns-servera-bind-v-chroot-srede-dlya-red-hat-rhel-centos-7\/"},"modified":"2019-10-31T22:12:14","modified_gmt":"2019-10-31T19:12:14","slug":"poshagovoe-rukovodstvo-po-nastrojke-dns-servera-bind-v-chroot-srede-dlya-red-hat-rhel-centos-7","status":"publish","type":"post","link":"https:\/\/prohoster.info\/de\/blog\/administrirovanie\/poshagovoe-rukovodstvo-po-nastrojke-dns-servera-bind-v-chroot-srede-dlya-red-hat-rhel-centos-7","title":{"rendered":"Schritt-f\u00fcr-Schritt-Anleitung zur Einrichtung eines BIND-DNS-Servers in einer chroot-Umgebung f\u00fcr Red Hat (RHEL \/ CentOS) 7","gt_translate_keys":[{"key":"rendered","format":"text"}]},"content":{"rendered":"<p><em>\u041f\u0435\u0440\u0435\u0432\u043e\u0434 \u0441\u0442\u0430\u0442\u044c\u0438 \u043f\u043e\u0434\u0433\u043e\u0442\u043e\u0432\u043b\u0435\u043d \u0434\u043b\u044f \u0441\u0442\u0443\u0434\u0435\u043d\u0442\u043e\u0432 \u043a\u0443\u0440\u0441\u0430 <noindex><a rel=\"nofollow\" href=\"https:\/\/otus.pw\/U1cp\/\">\u00ab\u0411\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u044c Linux\u00bb<\/a><\/noindex>. \u0418\u043d\u0442\u0435\u0440\u0435\u0441\u043d\u043e \u0440\u0430\u0437\u0432\u0438\u0432\u0430\u0442\u044c\u0441\u044f \u0432 \u0434\u0430\u043d\u043d\u043e\u043c \u043d\u0430\u043f\u0440\u0430\u0432\u043b\u0435\u043d\u0438\u0438? \u0421\u043c\u043e\u0442\u0440\u0438\u0442\u0435 \u0437\u0430\u043f\u0438\u0441\u044c \u0442\u0440\u0430\u043d\u0441\u043b\u044f\u0446\u0438\u0438 \u043c\u0430\u0441\u0442\u0435\u0440-\u043a\u043b\u0430\u0441\u0441\u0430 \u0418\u0432\u0430\u043d\u0430 \u041f\u0438\u0441\u043a\u0443\u043d\u043e\u0432\u0430 <noindex><a rel=\"nofollow\" href=\"https:\/\/otus.pw\/6yM3\/\">\u00ab\u0411\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u044c \u0432 Linux \u0432 \u0441\u0440\u0430\u0432\u043d\u0435\u043d\u0438\u0438 \u0441 Windows \u0438 MacOS\u00bb<\/a><\/noindex><\/em><\/p>\n<p><\/p>\n<p><img decoding=\"async\" alt=\"\u041f\u043e\u0448\u0430\u0433\u043e\u0432\u043e\u0435 \u0440\u0443\u043a\u043e\u0432\u043e\u0434\u0441\u0442\u0432\u043e \u043f\u043e \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0435 DNS-\u0441\u0435\u0440\u0432\u0435\u0440\u0430 BIND \u0432 chroot \u0441\u0440\u0435\u0434\u0435 \u0434\u043b\u044f Red Hat (RHEL \/ CentOS) 7\" src=\"\/wp-content\/uploads\/2019\/07\/095a422b41ff02620d02c91d8d457117.jpg\" style=\"display:block;margin: 0 auto;\" \/><\/p>\n<p><\/p>\n<p>\u0412 \u044d\u0442\u043e\u0439 \u0441\u0442\u0430\u0442\u044c\u0435 \u044f \u0440\u0430\u0441\u0441\u043a\u0430\u0436\u0443 \u043e \u0448\u0430\u0433\u0430\u0445 \u043f\u043e \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0435 DNS-\u0441\u0435\u0440\u0432\u0435\u0440\u0430 \u043d\u0430 RHEL 7 \u0438\u043b\u0438 CentOS 7. \u0414\u043b\u044f \u0434\u0435\u043c\u043e\u043d\u0441\u0442\u0440\u0430\u0446\u0438\u0438 \u044f \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u043b Red Hat Enterprise Linux 7.4. \u041d\u0430\u0448\u0430 \u0446\u0435\u043b\u044c \u2014 \u0441\u043e\u0437\u0434\u0430\u0442\u044c \u043e\u0434\u043d\u0443 A-\u0437\u0430\u043f\u0438\u0441\u044c \u0438 \u043e\u0434\u043d\u0443 PTR-\u0437\u0430\u043f\u0438\u0441\u044c \u0434\u043b\u044f \u0437\u043e\u043d\u044b \u043f\u0440\u044f\u043c\u043e\u0433\u043e \u0438 \u043e\u0431\u0440\u0430\u0442\u043d\u043e\u0433\u043e \u043f\u0440\u043e\u0441\u043c\u043e\u0442\u0440\u0430 \u0441\u043e\u043e\u0442\u0432\u0435\u0442\u0441\u0442\u0432\u0435\u043d\u043d\u043e.<\/p>\n<p><noindex><a rel=\"nofollow\" name=\"habracut\"><\/a><\/noindex><\/p>\n<p>\u0421\u043d\u0430\u0447\u0430\u043b\u0430 \u0443\u0441\u0442\u0430\u043d\u043e\u0432\u0438\u0442\u0435 \u043d\u0435\u043e\u0431\u0445\u043e\u0434\u0438\u043c\u044b\u0435 rpm-\u043f\u0430\u043a\u0435\u0442\u044b \u0434\u043b\u044f DNS-\u0441\u0435\u0440\u0432\u0435\u0440\u0430.<\/p>\n<p><\/p>\n<p><em>\u041f\u0420\u0418\u041c\u0415\u0427\u0410\u041d\u0418\u0415: \u0414\u043b\u044f RHEL \u0443 \u0432\u0430\u0441 \u0434\u043e\u043b\u0436\u043d\u0430 \u0431\u044b\u0442\u044c <noindex><a rel=\"nofollow\" href=\"https:\/\/www.golinuxcloud.com\/register-rhel-7-attach-subscription-manager\/\">\u0430\u043a\u0442\u0438\u0432\u043d\u0430\u044f \u043f\u043e\u0434\u043f\u0438\u0441\u043a\u0430 \u043d\u0430 RHN<\/a><\/noindex>, \u0438\u043b\u0438 \u0432\u044b \u043c\u043e\u0436\u0435\u0442\u0435 <noindex><a rel=\"nofollow\" href=\"https:\/\/www.golinuxcloud.com\/there-are-no-enabled-repos-yum-dnf-rhel-7-8\/\">\u043d\u0430\u0441\u0442\u0440\u043e\u0438\u0442\u044c \u043b\u043e\u043a\u0430\u043b\u044c\u043d\u044b\u0439 \u0430\u0432\u0442\u043e\u043d\u043e\u043c\u043d\u044b\u0439 \u0440\u0435\u043f\u043e\u0437\u0438\u0442\u043e\u0440\u0438\u0439<\/a><\/noindex>, \u0441 \u043f\u043e\u043c\u043e\u0449\u044c\u044e \u043a\u043e\u0442\u043e\u0440\u043e\u0433\u043e \u043c\u0435\u043d\u0435\u0434\u0436\u0435\u0440 \u043f\u0430\u043a\u0435\u0442\u043e\u0432 \u00abyum\u00bb \u0441\u043c\u043e\u0436\u0435\u0442 \u0443\u0441\u0442\u0430\u043d\u043e\u0432\u0438\u0442\u044c \u043d\u0435\u043e\u0431\u0445\u043e\u0434\u0438\u043c\u044b\u0435 rpm-\u043f\u0430\u043a\u0435\u0442\u044b \u0438 \u0437\u0430\u0432\u0438\u0441\u0438\u043c\u043e\u0441\u0442\u0438.<\/em><\/p>\n<p><\/p>\n<pre><code class=\"bash\"># yum install bind bind-chroot caching-nameserver<\/code><\/pre>\n<p><\/p>\n<p>\u041c\u043e\u0438 \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0438:<\/p>\n<p><\/p>\n<pre><code class=\"bash\"># hostname\ngolinuxhub-client.example\n\u041c\u043e\u0439 IP-\u0430\u0434\u0440\u0435\u0441 192.168.1.7\n# ip address | egrep 'inet.*enp0s3'\n    inet 192.168.1.7\/24 brd 192.168.1.255 scope global dynamic enp0s3<\/code><\/pre>\n<p><\/p>\n<p>\u041f\u043e\u0441\u043a\u043e\u043b\u044c\u043a\u0443 \u043c\u044b \u0431\u0443\u0434\u0435\u043c \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u044c chroot, \u043d\u0443\u0436\u043d\u043e \u043e\u0442\u043a\u043b\u044e\u0447\u0438\u0442\u044c \u0441\u043b\u0443\u0436\u0431\u0443.<\/p>\n<p><\/p>\n<pre><code class=\"bash\"># systemctl stop named\n# systemctl disable named<\/code><\/pre>\n<p><\/p>\n<p>\u0417\u0430\u0442\u0435\u043c \u0441\u043a\u043e\u043f\u0438\u0440\u0443\u0439\u0442\u0435 \u043d\u0435\u043e\u0431\u0445\u043e\u0434\u0438\u043c\u044b\u0435 \u0444\u0430\u0439\u043b\u044b \u0432 \u043a\u0430\u0442\u0430\u043b\u043e\u0433 chroot.<br \/>\n\u041f\u0420\u0418\u041c\u0415\u0427\u0410\u041d\u0418\u0415. \u0418\u0441\u043f\u043e\u043b\u044c\u0437\u0443\u0439\u0442\u0435 \u0430\u0440\u0433\u0443\u043c\u0435\u043d\u0442 <em>-p<\/em> \u0432 \u043a\u043e\u043c\u0430\u043d\u0434\u0435 <em>cp<\/em> \u0434\u043b\u044f \u0441\u043e\u0445\u0440\u0430\u043d\u0435\u043d\u0438\u044f \u043f\u0440\u0430\u0432 \u0438 \u0432\u043b\u0430\u0434\u0435\u043b\u044c\u0446\u0435\u0432.<\/p>\n<p><\/p>\n<pre><code class=\"bash\">[root@golinuxhub-client ~]# cp -rpvf \/usr\/share\/doc\/bind-9.9.4\/sample\/etc\/*  \/var\/named\/chroot\/etc\/\n\u2018\/usr\/share\/doc\/bind-9.9.4\/sample\/etc\/named.conf\u2019 -&gt; \u2018\/var\/named\/chroot\/etc\/named.conf\u2019\n\u2018\/usr\/share\/doc\/bind-9.9.4\/sample\/etc\/named.rfc1912.zones\u2019 -&gt; \u2018\/var\/named\/chroot\/etc\/named.rfc1912.zones\u2019<\/code><\/pre>\n<p><\/p>\n<p>\u0417\u0430\u0442\u0435\u043c \u0441\u043a\u043e\u043f\u0438\u0440\u0443\u0439\u0442\u0435 \u0444\u0430\u0439\u043b\u044b, \u0441\u0432\u044f\u0437\u0430\u043d\u043d\u044b\u0435 \u0441 \u0437\u043e\u043d\u043e\u0439, \u0432 \u043d\u043e\u0432\u043e\u0435 \u043c\u0435\u0441\u0442\u043e.<\/p>\n<p><\/p>\n<pre><code class=\"bash\">[root@golinuxhub-client ~]# cp -rpvf \/usr\/share\/doc\/bind-9.9.4\/sample\/var\/named\/* \/var\/named\/chroot\/var\/named\/\n\u2018\/usr\/share\/doc\/bind-9.9.4\/sample\/var\/named\/data\u2019 -&gt; \u2018\/var\/named\/chroot\/var\/named\/data\u2019\n\u2018\/usr\/share\/doc\/bind-9.9.4\/sample\/var\/named\/my.external.zone.db\u2019 -&gt; \u2018\/var\/named\/chroot\/var\/named\/my.external.zone.db\u2019\n\u2018\/usr\/share\/doc\/bind-9.9.4\/sample\/var\/named\/my.internal.zone.db\u2019 -&gt; \u2018\/var\/named\/chroot\/var\/named\/my.internal.zone.db\u2019\n\u2018\/usr\/share\/doc\/bind-9.9.4\/sample\/var\/named\/named.ca\u2019 -&gt; \u2018\/var\/named\/chroot\/var\/named\/named.ca\u2019\n\u2018\/usr\/share\/doc\/bind-9.9.4\/sample\/var\/named\/named.empty\u2019 -&gt; \u2018\/var\/named\/chroot\/var\/named\/named.empty\u2019\n\u2018\/usr\/share\/doc\/bind-9.9.4\/sample\/var\/named\/named.localhost\u2019 -&gt; \u2018\/var\/named\/chroot\/var\/named\/named.localhost\u2019\n\u2018\/usr\/share\/doc\/bind-9.9.4\/sample\/var\/named\/named.loopback\u2019 -&gt; \u2018\/var\/named\/chroot\/var\/named\/named.loopback\u2019\n\u2018\/usr\/share\/doc\/bind-9.9.4\/sample\/var\/named\/slaves\u2019 -&gt; \u2018\/var\/named\/chroot\/var\/named\/slaves\u2019\n\u2018\/usr\/share\/doc\/bind-9.9.4\/sample\/var\/named\/slaves\/my.ddns.internal.zone.db\u2019 -&gt; \u2018\/var\/named\/chroot\/var\/named\/slaves\/my.ddns.internal.zone.db\u2019\n\u2018\/usr\/share\/doc\/bind-9.9.4\/sample\/var\/named\/slaves\/my.slave.internal.zone.db\u2019 -&gt; \u2018\/var\/named\/chroot\/var\/named\/slaves\/my.slave.internal.zone.db\u2019\n```bash\n\u0422\u0435\u043f\u0435\u0440\u044c \u0434\u0430\u0432\u0430\u0439\u0442\u0435 \u043f\u043e\u0441\u043c\u043e\u0442\u0440\u0438\u043c \u043d\u0430 \u043e\u0441\u043d\u043e\u0432\u043d\u043e\u0439 \u0444\u0430\u0439\u043b \u043a\u043e\u043d\u0444\u0438\u0433\u0443\u0440\u0430\u0446\u0438\u0438.\n```bash\n# cd \/var\/named\/chroot\/etc\/<\/code><\/pre>\n<p><\/p>\n<p>\u041e\u0447\u0438\u0441\u0442\u0438\u0442\u0435 \u0441\u043e\u0434\u0435\u0440\u0436\u0438\u043c\u043e\u0435 named.conf \u0438 \u0432\u0441\u0442\u0430\u0432\u044c\u0442\u0435 \u0441\u043b\u0435\u0434\u0443\u044e\u0449\u0435\u0435.<\/p>\n<p><\/p>\n<pre><code class=\"bash\">[root@golinuxhub-client etc]# vim named.conf\noptions {\n        listen-on port 53 { 127.0.0.1; any; };\n#       listen-on-v6 port 53 { ::1; };\n        directory       \"\/var\/named\";\n        dump-file       \"\/var\/named\/data\/cache_dump.db\";\n        statistics-file \"\/var\/named\/data\/named_stats.txt\";\n        memstatistics-file \"\/var\/named\/data\/named_mem_stats.txt\";\n        allow-query     { localhost; any; };\n        allow-query-cache { localhost; any; };\n};\n\nlogging {\n        channel default_debug {\n                file \"data\/named.run\";\n                severity dynamic;\n        };\n};\n\nview my_resolver {\n        match-clients      { localhost; any; };\n        recursion yes;\n        include \"\/etc\/named.rfc1912.zones\";\n};<\/code><\/pre>\n<p><\/p>\n<p>\u0418\u043d\u0444\u043e\u0440\u043c\u0430\u0446\u0438\u044f, \u043e\u0442\u043d\u043e\u0441\u044f\u0449\u0430\u044f\u0441\u044f \u043a \u0437\u043e\u043d\u0435, \u0434\u043e\u043b\u0436\u043d\u0430 \u0431\u044b\u0442\u044c \u0434\u043e\u0431\u0430\u0432\u043b\u0435\u043d\u0430 \u0432 <em>\/var\/named\/chroot\/etc\/named.rfc1912.zones<\/em>. \u0414\u043e\u0431\u0430\u0432\u044c\u0442\u0435 \u0437\u0430\u043f\u0438\u0441\u0438, \u043f\u0440\u0438\u0432\u0435\u0434\u0435\u043d\u043d\u044b\u0435 \u043d\u0438\u0436\u0435. \u0424\u0430\u0439\u043b example.zone \u2014 \u044d\u0442\u043e \u0444\u0430\u0439\u043b \u0437\u043e\u043d\u044b \u043f\u0440\u044f\u043c\u043e\u0433\u043e \u043f\u0440\u043e\u0441\u043c\u043e\u0442\u0440\u0430, \u0430 <em>example.rzone<\/em> \u2014 \u0444\u0430\u0439\u043b \u043e\u0431\u0440\u0430\u0442\u043d\u043e\u0439 \u0437\u043e\u043d\u044b.<\/p>\n<p><\/p>\n<p><strong>\u0412\u0410\u0416\u041d\u041e\u0415 \u041f\u0420\u0418\u041c\u0415\u0427\u0410\u041d\u0418\u0415: \u0417\u043e\u043d\u0430 \u043e\u0431\u0440\u0430\u0442\u043d\u043e\u0433\u043e \u043f\u0440\u043e\u0441\u043c\u043e\u0442\u0440\u0430 \u0441\u043e\u0434\u0435\u0440\u0436\u0438\u0442 1.168.192, \u043f\u043e\u0441\u043a\u043e\u043b\u044c\u043a\u0443 \u043c\u043e\u0439 IP-\u0430\u0434\u0440\u0435\u0441 192.168.1.7<\/strong><\/p>\n<p><\/p>\n<pre><code class=\"bash\">zone \"example\" IN {\n        type master;\n        file \"example.zone\";\n        allow-update { none; };\n};\n\nzone \"1.168.192.in-addr.arpa\" IN {\n        type master;\n        file \"example.rzone\";\n        allow-update { none; };\n};<\/code><\/pre>\n<p><\/p>\n<p>\u0424\u0430\u0439\u043b\u044b, \u0441\u0432\u044f\u0437\u0430\u043d\u043d\u044b\u0435 \u0441 \u0437\u043e\u043d\u0430\u043c\u0438, \u043d\u0430\u0445\u043e\u0434\u044f\u0442\u0441\u044f \u0437\u0434\u0435\u0441\u044c:<\/p>\n<p><\/p>\n<pre><code class=\"bash\"># cd \/var\/named\/chroot\/var\/named\/<\/code><\/pre>\n<p><\/p>\n<p>\u0414\u0430\u043b\u0435\u0435 \u0441\u043e\u0437\u0434\u0430\u0434\u0438\u043c \u0444\u0430\u0439\u043b\u044b \u0434\u043b\u044f \u043f\u0440\u044f\u043c\u043e\u0439 \u0438 \u043e\u0431\u0440\u0430\u0442\u043d\u043e\u0439 \u0437\u043e\u043d\u044b. \u0418\u043c\u0435\u043d\u0430 \u0444\u0430\u0439\u043b\u043e\u0432 \u0431\u0443\u0434\u0443\u0442 \u0442\u0430\u043a\u0438\u043c\u0438 \u0436\u0435, \u043a\u0430\u043a \u0432\u044b\u0448\u0435 \u0432 \u0444\u0430\u0439\u043b\u0435 <em>named.rfc1912.zones<\/em>. \u0423 \u043d\u0430\u0441 \u0443\u0436\u0435 \u0435\u0441\u0442\u044c \u043d\u0435\u0441\u043a\u043e\u043b\u044c\u043a\u043e \u0448\u0430\u0431\u043b\u043e\u043d\u043e\u0432 \u043f\u043e \u0443\u043c\u043e\u043b\u0447\u0430\u043d\u0438\u044e, \u043a\u043e\u0442\u043e\u0440\u044b\u0435 \u043c\u044b \u043c\u043e\u0436\u0435\u043c \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u044c.<\/p>\n<p><\/p>\n<pre><code class=\"bash\"># cp -p named.localhost  example.zone\n# cp -p named.loopback example.rzone<\/code><\/pre>\n<p><\/p>\n<p>\u041a\u0430\u043a \u0432\u0438\u0434\u0438\u0442\u0435, \u0442\u0435\u043a\u0443\u0449\u0438\u0435 \u0440\u0430\u0437\u0440\u0435\u0448\u0435\u043d\u0438\u044f \u043d\u0430 \u0432\u0441\u0435 \u0444\u0430\u0439\u043b\u044b \u0438 \u043a\u0430\u0442\u0430\u043b\u043e\u0433\u0438 \u043f\u0440\u0438\u043d\u0430\u0434\u043b\u0435\u0436\u0430\u0442 <em>root<\/em>.<\/p>\n<p><\/p>\n<pre><code class=\"bash\">[root@golinuxhub-client named]# ll\ntotal 32\ndrwxr-xr-x. 2 root root    6 May 22  2017 data\n-rw-r--r--. 1 root root  168 May 22  2017 example.rzone\n-rw-r--r--. 1 root root  152 May 22  2017 example.zone\n-rw-r--r--. 1 root root   56 May 22  2017 my.external.zone.db\n-rw-r--r--. 1 root root   56 May 22  2017 my.internal.zone.db\n-rw-r--r--. 1 root root 2281 May 22  2017 named.ca\n-rw-r--r--. 1 root root  152 May 22  2017 named.empty\n-rw-r--r--. 1 root root  152 May 22  2017 named.localhost\n-rw-r--r--. 1 root root  168 May 22  2017 named.loopback\ndrwxr-xr-x. 2 root root   71 Feb 12 21:02 slaves<\/code><\/pre>\n<p><\/p>\n<p>\u0418\u0437\u043c\u0435\u043d\u0438\u0442\u0435 \u043f\u0440\u0430\u0432\u0430 \u0432\u0441\u0435\u0445 \u0444\u0430\u0439\u043b\u043e\u0432, \u0443\u043a\u0430\u0437\u0430\u0432 \u0432 \u043a\u0430\u0447\u0435\u0441\u0442\u0432\u0435 \u0432\u043b\u0430\u0434\u0435\u043b\u044c\u0446\u0430 \u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u0435\u043b\u044f <em>root<\/em> \u0438 \u0433\u0440\u0443\u043f\u043f\u0443 <em>named<\/em>.<\/p>\n<p><\/p>\n<pre><code class=\"bash\"># chown root:named *<\/code><\/pre>\n<p><\/p>\n<p>\u041d\u043e \u0434\u043b\u044f data \u0432\u043b\u0430\u0434\u0435\u043b\u0435\u0446 \u0434\u043e\u043b\u0436\u0435\u043d \u0431\u044b\u0442\u044c <em>named:named<\/em>.<\/p>\n<p><\/p>\n<pre><code class=\"bash\"># chown -R  named:named data\n# ls -l\ntotal 32\ndrwxr-xr-x. 2 named named    6 May 22  2017 data\n-rw-r--r--. 1 root  named  168 May 22  2017 example.rzone\n-rw-r--r--. 1 root  named  152 May 22  2017 example.zone\n-rw-r--r--. 1 root  named   56 May 22  2017 my.external.zone.db\n-rw-r--r--. 1 root  named   56 May 22  2017 my.internal.zone.db\n-rw-r--r--. 1 root  named 2281 May 22  2017 named.ca\n-rw-r--r--. 1 root  named  152 May 22  2017 named.empty\n-rw-r--r--. 1 root  named  152 May 22  2017 named.localhost\n-rw-r--r--. 1 root  named  168 May 22  2017 named.loopback\ndrwxr-xr-x. 2 root  named   71 Feb 12 21:02 slaves<\/code><\/pre>\n<p><\/p>\n<p>\u0414\u043e\u0431\u0430\u0432\u044c\u0442\u0435 \u043f\u0440\u0438\u0432\u0435\u0434\u0435\u043d\u043d\u043e\u0435 \u043d\u0438\u0436\u0435 \u0441\u043e\u0434\u0435\u0440\u0436\u0438\u043c\u043e\u0435 \u0432 \u0444\u0430\u0439\u043b \u043f\u0440\u044f\u043c\u043e\u0439 \u0437\u043e\u043d\u044b. \u0417\u0434\u0435\u0441\u044c \u043c\u044b \u0441\u043e\u0437\u0434\u0430\u0435\u043c A-\u0437\u0430\u043f\u0438\u0441\u044c \u0434\u043b\u044f localhost (golinuxhub-client) \u0438 \u0435\u0449\u0435 \u043e\u0434\u043d\u0443 \u0434\u043b\u044f \u0441\u0435\u0440\u0432\u0435\u0440\u0430 (golinuxhub-server).<\/p>\n<p><\/p>\n<pre><code class=\"bash\"># vim example.zone\n$TTL 1D\n@       IN SOA  example. root (\n                                        1       ; serial\n                                        3H      ; refresh\n                                        15M     ; retry\n                                        1W      ; expire\n                                        1D )    ; minimum\n\n                IN NS           example.\n\n                        IN A 192.168.1.7\ngolinuxhub-server       IN A 192.168.1.5\ngolinuxhub-client       IN A 192.169.1.7<\/code><\/pre>\n<p><\/p>\n<p>\u0414\u0430\u043b\u0435\u0435 \u0434\u043e\u0431\u0430\u0432\u044c\u0442\u0435 \u0441\u043e\u0434\u0435\u0440\u0436\u0438\u043c\u043e\u0435 \u0432 \u0444\u0430\u0439\u043b \u043e\u0431\u0440\u0430\u0442\u043d\u043e\u0439 \u0437\u043e\u043d\u044b. \u0417\u0434\u0435\u0441\u044c \u043c\u044b \u0441\u043e\u0437\u0434\u0430\u0435\u043c PTR-\u0437\u0430\u043f\u0438\u0441\u044c \u0434\u043b\u044f golinuxhub-client \u0438 \u0434\u043b\u044f \u0441\u0435\u0440\u0432\u0435\u0440\u0430 golinuxhub-server.<\/p>\n<p><\/p>\n<pre><code class=\"bash\"># vim example.rzone\n$TTL 1D\n@       IN SOA  example. root.example. (\n                                        1997022700      ; serial\n                                        28800           ; refresh\n                                        14400           ; retry\n                                        3600000         ; expire\n                                        86400  )        ; minimum\n\n        IN NS   example.\n5       IN PTR  golinuxhub-server.example.\n7       IN PTR  golinuxhub-client.example.<\/code><\/pre>\n<p><\/p>\n<p>\u041f\u0440\u0435\u0436\u0434\u0435 \u0447\u0435\u043c \u043c\u044b \u0437\u0430\u043f\u0443\u0441\u0442\u0438\u043c \u0441\u0435\u0440\u0432\u0438\u0441 <em>named-chroot<\/em>, \u043f\u0440\u043e\u0432\u0435\u0440\u0438\u043c \u043a\u043e\u043d\u0444\u0438\u0433\u0443\u0440\u0430\u0446\u0438\u044e \u0444\u0430\u0439\u043b\u0430 \u0437\u043e\u043d\u044b.<\/p>\n<p><\/p>\n<pre><code class=\"bash\">[root@golinuxhub-client named]# named-checkzone golinuxhub-client.example example.zone\nzone golinuxhub-client.example\/IN: loaded serial 1\nOK\n\n[root@golinuxhub-client named]# named-checkzone golinuxhub-client.example example.rzone\nzone golinuxhub-client.example\/IN: loaded serial 1997022700\nOK<\/code><\/pre>\n<p><\/p>\n<p>\u0412\u0441\u0435 \u0432\u044b\u0433\u043b\u044f\u0434\u0438\u0442 \u0445\u043e\u0440\u043e\u0448\u043e. \u0422\u0435\u043f\u0435\u0440\u044c \u043f\u0440\u043e\u0432\u0435\u0440\u044c\u0442\u0435 \u0444\u0430\u0439\u043b \u043a\u043e\u043d\u0444\u0438\u0433\u0443\u0440\u0430\u0446\u0438\u0438, \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u0443\u044f \u0441\u043b\u0435\u0434\u0443\u044e\u0449\u0443\u044e \u043a\u043e\u043c\u0430\u043d\u0434\u0443.<\/p>\n<p><\/p>\n<pre><code class=\"bash\">[root@golinuxhub-client named]# named-checkconf -t \/var\/named\/chroot\/ \/etc\/named.conf<\/code><\/pre>\n<p><\/p>\n<p>\u0418\u0442\u0430\u043a, \u0432\u0441\u0435 \u0432\u044b\u043f\u043e\u043b\u043d\u0435\u043d\u043e \u0443\u0441\u043f\u0435\u0448\u043d\u043e.<\/p>\n<p><\/p>\n<pre><code class=\"bash\">[root@golinuxhub-client named]# echo $?\n0<\/code><\/pre>\n<p><\/p>\n<p><em>\u0412\u0410\u0416\u041d\u041e\u0415 \u041f\u0420\u0418\u041c\u0415\u0427\u0410\u041d\u0418\u0415: \u0443 \u043c\u0435\u043d\u044f SELinux \u043d\u0430\u0445\u043e\u0434\u0438\u0442\u0441\u044f \u0432 \u0440\u0435\u0436\u0438\u043c\u0435 permissive<\/em><\/p>\n<p><\/p>\n<pre><code class=\"bash\"># getenforce\nPermissive<\/code><\/pre>\n<p><\/p>\n<p>\u0412\u0441\u0435 \u0432\u044b\u0433\u043b\u044f\u0434\u0438\u0442 \u0445\u043e\u0440\u043e\u0448\u043e, \u0442\u0430\u043a \u0447\u0442\u043e \u043f\u043e\u0440\u0430 \u0437\u0430\u043f\u0443\u0441\u043a\u0430\u0442\u044c \u043d\u0430\u0448 \u0441\u0435\u0440\u0432\u0438\u0441 <em>named-chroot<\/em> .<\/p>\n<p><\/p>\n<pre><code class=\"bash\">[root@golinuxhub-client named]# systemctl restart named-chroot<\/code><\/pre>\n<p><\/p>\n<pre><code class=\"bash\">[root@golinuxhub-client named]# systemctl status named-chroot\n\u25cf named-chroot.service - Berkeley Internet Name Domain (DNS)\n   Loaded: loaded (\/usr\/lib\/systemd\/system\/named-chroot.service; disabled; vendor preset: disabled)\n   Active: active (running) since Mon 2018-02-12 21:53:23 IST; 19s ago\n  Process: 5236 ExecStop=\/bin\/sh -c \/usr\/sbin\/rndc stop &gt; \/dev\/null 2&gt;&amp;1 || \/bin\/kill -TERM $MAINPID (code=exited, status=0\/SUCCESS)\n  Process: 5327 ExecStart=\/usr\/sbin\/named -u named -c ${NAMEDCONF} -t \/var\/named\/chroot $OPTIONS (code=exited, status=0\/SUCCESS)\n  Process: 5325 ExecStartPre=\/bin\/bash -c if [ ! \"$DISABLE_ZONE_CHECKING\" == \"yes\" ]; then \/usr\/sbin\/named-checkconf -t \/var\/named\/chroot -z \"$NAMEDCONF\"; else echo \"Checking of zone files is disabled\"; fi (code=exited, status=0\/SUCCESS)\n Main PID: 5330 (named)\n   CGroup: \/system.slice\/named-chroot.service\n           \u2514\u25005330 \/usr\/sbin\/named -u named -c \/etc\/named.conf -t \/var\/named\/chroot\n\nFeb 12 21:53:23 golinuxhub-client.example named[5330]: managed-keys-zone\/my_resolver: loaded serial 0\nFeb 12 21:53:23 golinuxhub-client.example named[5330]: zone 0.in-addr.arpa\/IN\/my_resolver: loaded serial 0\nFeb 12 21:53:23 golinuxhub-client.example named[5330]: zone 1.0.0.127.in-addr.arpa\/IN\/my_resolver: loaded serial 0\nFeb 12 21:53:23 golinuxhub-client.example named[5330]: zone 1.168.192.in-addr.arpa\/IN\/my_resolver: loaded serial 1997022700\nFeb 12 21:53:23 golinuxhub-client.example named[5330]: zone example\/IN\/my_resolver: loaded serial 1\nFeb 12 21:53:23 golinuxhub-client.example named[5330]: zone localhost\/IN\/my_resolver: loaded serial 0\nFeb 12 21:53:23 golinuxhub-client.example named[5330]: zone 1.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.ip6.arpa\/IN\/my_resolver: loaded serial 0\nFeb 12 21:53:23 golinuxhub-client.example named[5330]: zone localhost.localdomain\/IN\/my_resolver: loaded serial 0\nFeb 12 21:53:23 golinuxhub-client.example named[5330]: all zones loaded\nFeb 12 21:53:23 golinuxhub-client.example named[5330]: running\n```bash\n\u0423\u0431\u0435\u0434\u0438\u0442\u0435\u0441\u044c, \u0447\u0442\u043e resolv.conf \u0441\u043e\u0434\u0435\u0440\u0436\u0438\u0442 \u0432\u0430\u0448 IP-\u0430\u0434\u0440\u0435\u0441, \u0447\u0442\u043e\u0431\u044b \u043e\u043d \u043c\u043e\u0433 \u0440\u0430\u0431\u043e\u0442\u0430\u0442\u044c \u0432 \u043a\u0430\u0447\u0435\u0441\u0442\u0432\u0435 DNS-\u0441\u0435\u0440\u0432\u0435\u0440\u0430.\n```bash\n# cat \/etc\/resolv.conf\nsearch example\nnameserver 192.168.1.7\n```bash\n\u0414\u0430\u0432\u0430\u0439\u0442\u0435 \u043f\u0440\u043e\u0432\u0435\u0440\u0438\u043c \u043d\u0430\u0448 DNS-\u0441\u0435\u0440\u0432\u0435\u0440 \u0434\u043b\u044f \u043e\u0431\u0440\u0430\u0442\u043d\u043e\u0439 \u0437\u043e\u043d\u044b, \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u0443\u044f dig.\n```bash\n[root@golinuxhub-client named]# dig -x 192.168.1.5\n\n; &lt;&lt;&gt;&gt; DiG 9.9.4-RedHat-9.9.4-50.el7 &lt;&lt;&gt;&gt; -x 192.168.1.5\n;; global options: +cmd\n;; Got answer:\n;; -&gt;&gt;HEADER&lt;&lt;- opcode: QUERY, status: NOERROR, id: 40331\n;; flags: qr aa rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 1, ADDITIONAL: 2\n\n;; OPT PSEUDOSECTION:\n; EDNS: version: 0, flags:; udp: 4096\n;; QUESTION SECTION:\n;5.1.168.192.in-addr.arpa.      IN      PTR\n\n;; ANSWER SECTION:\n5.1.168.192.in-addr.arpa. 86400 IN      PTR     golinuxhub-server.example.\n\n;; AUTHORITY SECTION:\n1.168.192.in-addr.arpa. 86400   IN      NS      example.\n\n;; ADDITIONAL SECTION:\nexample.                86400   IN      A       192.168.1.7\n\n;; Query time: 1 msec\n;; SERVER: 192.168.1.7#53(192.168.1.7)\n;; WHEN: Mon Feb 12 22:13:17 IST 2018\n;; MSG SIZE  rcvd: 122<\/code><\/pre>\n<p><\/p>\n<p>\u041a\u0430\u043a \u0432\u044b \u0432\u0438\u0434\u0438\u0442\u0435, \u043c\u044b \u043f\u043e\u043b\u0443\u0447\u0438\u043b\u0438 \u043f\u043e\u043b\u043e\u0436\u0438\u0442\u0435\u043b\u044c\u043d\u044b\u0439 \u043e\u0442\u0432\u0435\u0442 (ANSWER) \u043d\u0430 \u043d\u0430\u0448 \u0437\u0430\u043f\u0440\u043e\u0441 (QUERY).<\/p>\n<p><\/p>\n<pre><code class=\"bash\">[root@golinuxhub-client named]# dig -x 192.168.1.7\n\n; &lt;&lt;&gt;&gt; DiG 9.9.4-RedHat-9.9.4-50.el7 &lt;&lt;&gt;&gt; -x 192.168.1.7\n;; global options: +cmd\n;; Got answer:\n;; -&gt;&gt;HEADER&lt;&lt;- opcode: QUERY, status: NOERROR, id: 55804\n;; flags: qr aa rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 1, ADDITIONAL: 2\n\n;; OPT PSEUDOSECTION:\n; EDNS: version: 0, flags:; udp: 4096\n;; QUESTION SECTION:\n;7.1.168.192.in-addr.arpa.      IN      PTR\n\n;; ANSWER SECTION:\n7.1.168.192.in-addr.arpa. 86400 IN      PTR     golinuxhub-client.example.\n\n;; AUTHORITY SECTION:\n1.168.192.in-addr.arpa. 86400   IN      NS      example.\n\n;; ADDITIONAL SECTION:\nexample.                86400   IN      A       192.168.1.7\n\n;; Query time: 1 msec\n;; SERVER: 192.168.1.7#53(192.168.1.7)\n;; WHEN: Mon Feb 12 22:12:54 IST 2018\n;; MSG SIZE  rcvd: 122<\/code><\/pre>\n<p><\/p>\n<p>\u0422\u043e\u0447\u043d\u043e \u0442\u0430\u043a \u0436\u0435 \u043c\u044b \u043c\u043e\u0436\u0435\u043c \u043f\u0440\u043e\u0432\u0435\u0440\u0438\u0442\u044c \u043f\u0440\u044f\u043c\u0443\u044e \u0437\u043e\u043d\u0443.<\/p>\n<p><\/p>\n<pre><code class=\"bash\">[root@golinuxhub-client named]# nslookup golinuxhub-client.example\nServer:         192.168.1.7\nAddress:        192.168.1.7#53\n\nName:   golinuxhub-client.example\nAddress: 192.169.1.7\n\n[root@golinuxhub-client named]# nslookup golinuxhub-server.example\nServer:         192.168.1.7\nAddress:        192.168.1.7#53\n\nName:   golinuxhub-server.example\nAddress: 192.168.1.5<\/code><\/pre>\n<p><\/p>\n<p>\u042d\u0442\u0430 \u0441\u0442\u0430\u0442\u044c\u044f \u043d\u0435\u043c\u043d\u043e\u0433\u043e \u0443\u0441\u0442\u0430\u0440\u0435\u043b\u0430, \u0442\u0430\u043a \u043a\u0430\u043a \u0432 RHEL 7 \u0442\u0435\u043f\u0435\u0440\u044c \u043d\u0435 \u043d\u0443\u0436\u043d\u043e \u043a\u043e\u043f\u0438\u0440\u043e\u0432\u0430\u0442\u044c \u0444\u0430\u0439\u043b\u044b \u043a\u043e\u043d\u0444\u0438\u0433\u0443\u0440\u0430\u0446\u0438\u0438 bind \u0432 chroot. <noindex><a rel=\"nofollow\" href=\"https:\/\/www.golinuxcloud.com\/configure-dns-server-bind-chroot-named-centos\/\">Step-by-Step Tutorial: Configure DNS Server using bind chroot (CentOS\/RHEL 7)<\/a><\/noindex>.<\/p>\n<p>\u0418\u0441\u0442\u043e\u0447\u043d\u0438\u043a: <a content=\"nofollow\" rel=\"nofollow\" href=\"https:\/\/habr.com\/ru\/company\/otus\/blog\/461281\/\">habr.com<\/a><\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"excerpt":{"rendered":"<p>\u041f\u0435\u0440\u0435\u0432\u043e\u0434 \u0441\u0442\u0430\u0442\u044c\u0438 \u043f\u043e\u0434\u0433\u043e\u0442\u043e\u0432\u043b\u0435\u043d \u0434\u043b\u044f \u0441\u0442\u0443\u0434\u0435\u043d\u0442\u043e\u0432 \u043a\u0443\u0440\u0441\u0430 \u00ab\u0411\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u044c Linux\u00bb. \u0418\u043d\u0442\u0435\u0440\u0435\u0441\u043d\u043e \u0440\u0430\u0437\u0432\u0438\u0432\u0430\u0442\u044c\u0441\u044f \u0432 \u0434\u0430\u043d\u043d\u043e\u043c \u043d\u0430\u043f\u0440\u0430\u0432\u043b\u0435\u043d\u0438\u0438? \u0421\u043c\u043e\u0442\u0440\u0438\u0442\u0435 \u0437\u0430\u043f\u0438\u0441\u044c \u0442\u0440\u0430\u043d\u0441\u043b\u044f\u0446\u0438\u0438 \u043c\u0430\u0441\u0442\u0435\u0440-\u043a\u043b\u0430\u0441\u0441\u0430 \u0418\u0432\u0430\u043d\u0430 \u041f\u0438\u0441\u043a\u0443\u043d\u043e\u0432\u0430 \u00ab\u0411\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u044c \u0432 Linux \u0432 \u0441\u0440\u0430\u0432\u043d\u0435\u043d\u0438\u0438 \u0441 Windows \u0438 MacOS\u00bb \u0412 \u044d\u0442\u043e\u0439 \u0441\u0442\u0430\u0442\u044c\u0435 \u044f \u0440\u0430\u0441\u0441\u043a\u0430\u0436\u0443 \u043e \u0448\u0430\u0433\u0430\u0445 \u043f\u043e \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0435 DNS-\u0441\u0435\u0440\u0432\u0435\u0440\u0430 \u043d\u0430 RHEL 7 \u0438\u043b\u0438 CentOS 7. \u0414\u043b\u044f \u0434\u0435\u043c\u043e\u043d\u0441\u0442\u0440\u0430\u0446\u0438\u0438 \u044f \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u043b Red Hat Enterprise Linux 7.4. \u041d\u0430\u0448\u0430 \u0446\u0435\u043b\u044c [&hellip;]<\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"author":1,"featured_media":27349,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[688],"tags":[],"class_list":["post-36537","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-administrirovanie"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 5.0.0.1 - aioseo.com -->\n\t<meta name=\"description\" content=\"\u041f\u0435\u0440\u0435\u0432\u043e\u0434 \u0441\u0442\u0430\u0442\u044c\u0438 \u043f\u043e\u0434\u0433\u043e\u0442\u043e\u0432\u043b\u0435\u043d \u0434\u043b\u044f \u0441\u0442\u0443\u0434\u0435\u043d\u0442\u043e\u0432 \u043a\u0443\u0440\u0441\u0430 \u00ab\u0411\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u044c Linux\u00bb. \u0418\u043d\u0442\u0435\u0440\u0435\u0441\u043d\u043e \u0440\u0430\u0437\u0432\u0438\u0432\u0430\u0442\u044c\u0441\u044f \u0432 \u0434\u0430\u043d\u043d\u043e\u043c \u043d\u0430\u043f\u0440\u0430\u0432\u043b\u0435\u043d\u0438\u0438? \u0421\u043c\u043e\u0442\u0440\u0438\u0442\u0435 \u0437\u0430\u043f\u0438\u0441\u044c \u0442\u0440\u0430\u043d\u0441\u043b\u044f\u0446\u0438\u0438 \u043c\u0430\u0441\u0442\u0435\u0440-\u043a\u043b\u0430\u0441\u0441\u0430 \u0418\u0432\u0430\u043d\u0430 \u041f\u0438\u0441\u043a\u0443\u043d\u043e\u0432\u0430 \u00ab\u0411\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u044c \u0432 Linux \u0432 \u0441\u0440\u0430\u0432\u043d\u0435\u043d\u0438\u0438 \u0441 Windows \u0438 MacOS\u00bb \u0412 \u044d\u0442\u043e\u0439 \u0441\u0442\u0430\u0442\u044c\u0435 \u044f \u0440\u0430\u0441\u0441\u043a\u0430\u0436\u0443 \u043e \u0448\u0430\u0433\u0430\u0445 \u043f\u043e \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0435 DNS-\u0441\u0435\u0440\u0432\u0435\u0440\u0430 \u043d\u0430 RHEL 7 \u0438\u043b\u0438 CentOS 7. \u0414\u043b\u044f \u0434\u0435\u043c\u043e\u043d\u0441\u0442\u0440\u0430\u0446\u0438\u0438 \u044f \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u043b Red Hat Enterprise Linux 7.4. \u041d\u0430\u0448\u0430 \u0446\u0435\u043b\u044c\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"Yuri Gagarin\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/prohoster.info\/de\/blog\/administrirovanie\/poshagovoe-rukovodstvo-po-nastrojke-dns-servera-bind-v-chroot-srede-dlya-red-hat-rhel-centos-7\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 5.0.0.1\" \/>\n\t\t<meta property=\"og:locale\" content=\"de_DE\" \/>\n\t\t<meta property=\"og:site_name\" content=\"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"\ud83e\udd47\u041f\u043e\u0448\u0430\u0433\u043e\u0432\u043e\u0435 \u0440\u0443\u043a\u043e\u0432\u043e\u0434\u0441\u0442\u0432\u043e \u043f\u043e \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0435 DNS-\u0441\u0435\u0440\u0432\u0435\u0440\u0430 BIND \u0432 chroot \u0441\u0440\u0435\u0434\u0435 \u0434\u043b\u044f Red Hat (RHEL \/ CentOS) 7 | ProHoster\" \/>\n\t\t<meta property=\"og:description\" content=\"\u041f\u0435\u0440\u0435\u0432\u043e\u0434 \u0441\u0442\u0430\u0442\u044c\u0438 \u043f\u043e\u0434\u0433\u043e\u0442\u043e\u0432\u043b\u0435\u043d \u0434\u043b\u044f \u0441\u0442\u0443\u0434\u0435\u043d\u0442\u043e\u0432 \u043a\u0443\u0440\u0441\u0430 \u00ab\u0411\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u044c Linux\u00bb. \u0418\u043d\u0442\u0435\u0440\u0435\u0441\u043d\u043e \u0440\u0430\u0437\u0432\u0438\u0432\u0430\u0442\u044c\u0441\u044f \u0432 \u0434\u0430\u043d\u043d\u043e\u043c \u043d\u0430\u043f\u0440\u0430\u0432\u043b\u0435\u043d\u0438\u0438? \u0421\u043c\u043e\u0442\u0440\u0438\u0442\u0435 \u0437\u0430\u043f\u0438\u0441\u044c \u0442\u0440\u0430\u043d\u0441\u043b\u044f\u0446\u0438\u0438 \u043c\u0430\u0441\u0442\u0435\u0440-\u043a\u043b\u0430\u0441\u0441\u0430 \u0418\u0432\u0430\u043d\u0430 \u041f\u0438\u0441\u043a\u0443\u043d\u043e\u0432\u0430 \u00ab\u0411\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u044c \u0432 Linux \u0432 \u0441\u0440\u0430\u0432\u043d\u0435\u043d\u0438\u0438 \u0441 Windows \u0438 MacOS\u00bb \u0412 \u044d\u0442\u043e\u0439 \u0441\u0442\u0430\u0442\u044c\u0435 \u044f \u0440\u0430\u0441\u0441\u043a\u0430\u0436\u0443 \u043e \u0448\u0430\u0433\u0430\u0445 \u043f\u043e \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0435 DNS-\u0441\u0435\u0440\u0432\u0435\u0440\u0430 \u043d\u0430 RHEL 7 \u0438\u043b\u0438 CentOS 7. \u0414\u043b\u044f \u0434\u0435\u043c\u043e\u043d\u0441\u0442\u0440\u0430\u0446\u0438\u0438 \u044f \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u043b Red Hat Enterprise Linux 7.4. \u041d\u0430\u0448\u0430 \u0446\u0435\u043b\u044c\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/prohoster.info\/de\/blog\/administrirovanie\/poshagovoe-rukovodstvo-po-nastrojke-dns-servera-bind-v-chroot-srede-dlya-red-hat-rhel-centos-7\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:width\" content=\"350\" \/>\n\t\t<meta property=\"og:image:height\" content=\"350\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2019-10-31T19:12:14+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2019-10-31T19:12:14+00:00\" \/>\n\t\t<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"\ud83e\udd47 Schritt-f\u00fcr-Schritt-Anleitung zur Einrichtung eines BIND-DNS-Servers in chroot-Umgebung f\u00fcr Red Hat (RHEL \/ CentOS) 7 | ProHoster","description":"Der Artikel wurde f\u00fcr die Studenten des Kurses \u201eLinux-Sicherheit\u201c vorbereitet. M\u00f6chten Sie sich in diesem Bereich weiterentwickeln? Sehen Sie sich die Aufzeichnung des Masterclasses von Ivan Piskunov \u00fcber \u201eSicherheit in Linux im Vergleich zu Windows und macOS\u201c an. In diesem Artikel erkl\u00e4re ich die Schritte zur Einrichtung eines DNS-Servers unter RHEL 7 oder CentOS 7. Zur Demonstration habe ich Red Hat Enterprise Linux 7.4 verwendet. Unser Ziel","canonical_url":"https:\/\/prohoster.info\/de\/blog\/administrirovanie\/poshagovoe-rukovodstvo-po-nastrojke-dns-servera-bind-v-chroot-srede-dlya-red-hat-rhel-centos-7","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":null,"og:locale":"de_DE","og:site_name":"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b","og:type":"article","og:title":"\ud83e\udd47\u041f\u043e\u0448\u0430\u0433\u043e\u0432\u043e\u0435 \u0440\u0443\u043a\u043e\u0432\u043e\u0434\u0441\u0442\u0432\u043e \u043f\u043e \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0435 DNS-\u0441\u0435\u0440\u0432\u0435\u0440\u0430 BIND \u0432 chroot \u0441\u0440\u0435\u0434\u0435 \u0434\u043b\u044f Red Hat (RHEL \/ CentOS) 7 | ProHoster","og:description":"\u041f\u0435\u0440\u0435\u0432\u043e\u0434 \u0441\u0442\u0430\u0442\u044c\u0438 \u043f\u043e\u0434\u0433\u043e\u0442\u043e\u0432\u043b\u0435\u043d \u0434\u043b\u044f \u0441\u0442\u0443\u0434\u0435\u043d\u0442\u043e\u0432 \u043a\u0443\u0440\u0441\u0430 \u00ab\u0411\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u044c Linux\u00bb. \u0418\u043d\u0442\u0435\u0440\u0435\u0441\u043d\u043e \u0440\u0430\u0437\u0432\u0438\u0432\u0430\u0442\u044c\u0441\u044f \u0432 \u0434\u0430\u043d\u043d\u043e\u043c \u043d\u0430\u043f\u0440\u0430\u0432\u043b\u0435\u043d\u0438\u0438? \u0421\u043c\u043e\u0442\u0440\u0438\u0442\u0435 \u0437\u0430\u043f\u0438\u0441\u044c \u0442\u0440\u0430\u043d\u0441\u043b\u044f\u0446\u0438\u0438 \u043c\u0430\u0441\u0442\u0435\u0440-\u043a\u043b\u0430\u0441\u0441\u0430 \u0418\u0432\u0430\u043d\u0430 \u041f\u0438\u0441\u043a\u0443\u043d\u043e\u0432\u0430 \u00ab\u0411\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u044c \u0432 Linux \u0432 \u0441\u0440\u0430\u0432\u043d\u0435\u043d\u0438\u0438 \u0441 Windows \u0438 MacOS\u00bb \u0412 \u044d\u0442\u043e\u0439 \u0441\u0442\u0430\u0442\u044c\u0435 \u044f \u0440\u0430\u0441\u0441\u043a\u0430\u0436\u0443 \u043e \u0448\u0430\u0433\u0430\u0445 \u043f\u043e \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0435 DNS-\u0441\u0435\u0440\u0432\u0435\u0440\u0430 \u043d\u0430 RHEL 7 \u0438\u043b\u0438 CentOS 7. \u0414\u043b\u044f \u0434\u0435\u043c\u043e\u043d\u0441\u0442\u0440\u0430\u0446\u0438\u0438 \u044f \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u043b Red Hat Enterprise Linux 7.4. \u041d\u0430\u0448\u0430 \u0446\u0435\u043b\u044c","og:url":"https:\/\/prohoster.info\/de\/blog\/administrirovanie\/poshagovoe-rukovodstvo-po-nastrojke-dns-servera-bind-v-chroot-srede-dlya-red-hat-rhel-centos-7","og:image":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:secure_url":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:width":350,"og:image:height":350,"article:published_time":"2019-10-31T19:12:14+00:00","article:modified_time":"2019-10-31T19:12:14+00:00","article:publisher":"https:\/\/www.facebook.com\/prohoster","article:author":"https:\/\/www.facebook.com\/prohoster"},"aioseo_meta_data":{"post_id":"36537","title":null,"description":null,"keywords":null,"keyphrases":null,"primary_term":null,"canonical_url":null,"og_title":null,"og_description":null,"og_object_type":"default","og_image_type":"default","og_image_url":null,"og_image_width":null,"og_image_height":null,"og_image_custom_url":null,"og_image_custom_fields":null,"og_video":null,"og_custom_url":null,"og_article_section":null,"og_article_tags":null,"twitter_use_og":false,"twitter_card":"default","twitter_image_type":"default","twitter_image_url":null,"twitter_image_custom_url":null,"twitter_image_custom_fields":null,"twitter_title":null,"twitter_description":null,"schema":{"blockGraphs":[],"customGraphs":[],"default":{"data":{"Article":[],"Course":[],"Dataset":[],"FAQPage":[],"Movie":[],"Person":[],"Product":[],"ProductReview":[],"Car":[],"Recipe":[],"Service":[],"SoftwareApplication":[],"WebPage":[]},"graphName":"","isEnabled":true},"graphs":[]},"schema_type":null,"schema_type_options":null,"pillar_content":false,"robots_default":true,"robots_noindex":false,"robots_noarchive":false,"robots_nosnippet":false,"robots_nofollow":false,"robots_noimageindex":false,"robots_noodp":false,"robots_notranslate":false,"robots_max_snippet":null,"robots_max_videopreview":null,"robots_max_imagepreview":"large","priority":null,"frequency":null,"local_seo":null,"seo_analyzer_scan_date":"2026-01-22 03:44:19","breadcrumb_settings":null,"limit_modified_date":false,"reviewed_by":null,"ai":null,"created":"2021-03-01 01:43:32","updated":"2026-01-22 03:44:19","focus_keyword":null,"additional_keywords":null,"truseo_locale":null},"gt_translate_keys":[{"key":"link","format":"url"}],"_links":{"self":[{"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/posts\/36537","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/comments?post=36537"}],"version-history":[{"count":0,"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/posts\/36537\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/media\/27349"}],"wp:attachment":[{"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/media?parent=36537"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/categories?post=36537"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/tags?post=36537"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}