{"id":36537,"date":"2019-10-31T22:12:14","date_gmt":"2019-10-31T19:12:14","guid":{"rendered":"https:\/\/prohoster.info\/blog\/poshagovoe-rukovodstvo-po-nastrojke-dns-servera-bind-v-chroot-srede-dlya-red-hat-rhel-centos-7\/"},"modified":"2019-10-31T22:12:14","modified_gmt":"2019-10-31T19:12:14","slug":"poshagovoe-rukovodstvo-po-nastrojke-dns-servera-bind-v-chroot-srede-dlya-red-hat-rhel-centos-7","status":"publish","type":"post","link":"https:\/\/prohoster.info\/it\/blog\/administrirovanie\/poshagovoe-rukovodstvo-po-nastrojke-dns-servera-bind-v-chroot-srede-dlya-red-hat-rhel-centos-7","title":{"rendered":"Guida passo-passo per la configurazione del server DNS BIND in un ambiente chroot per Red Hat (RHEL \/ CentOS) 7","gt_translate_keys":[{"key":"rendered","format":"text"}]},"content":{"rendered":"<p><em>\u041f\u0435\u0440\u0435\u0432\u043e\u0434 \u0441\u0442\u0430\u0442\u044c\u0438 \u043f\u043e\u0434\u0433\u043e\u0442\u043e\u0432\u043b\u0435\u043d \u0434\u043b\u044f \u0441\u0442\u0443\u0434\u0435\u043d\u0442\u043e\u0432 \u043a\u0443\u0440\u0441\u0430 <noindex><a rel=\"nofollow\" href=\"https:\/\/otus.pw\/U1cp\/\">\u00ab\u0411\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u044c Linux\u00bb<\/a><\/noindex>. \u0418\u043d\u0442\u0435\u0440\u0435\u0441\u043d\u043e \u0440\u0430\u0437\u0432\u0438\u0432\u0430\u0442\u044c\u0441\u044f \u0432 \u0434\u0430\u043d\u043d\u043e\u043c \u043d\u0430\u043f\u0440\u0430\u0432\u043b\u0435\u043d\u0438\u0438? \u0421\u043c\u043e\u0442\u0440\u0438\u0442\u0435 \u0437\u0430\u043f\u0438\u0441\u044c \u0442\u0440\u0430\u043d\u0441\u043b\u044f\u0446\u0438\u0438 \u043c\u0430\u0441\u0442\u0435\u0440-\u043a\u043b\u0430\u0441\u0441\u0430 \u0418\u0432\u0430\u043d\u0430 \u041f\u0438\u0441\u043a\u0443\u043d\u043e\u0432\u0430 <noindex><a rel=\"nofollow\" href=\"https:\/\/otus.pw\/6yM3\/\">\u00ab\u0411\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u044c \u0432 Linux \u0432 \u0441\u0440\u0430\u0432\u043d\u0435\u043d\u0438\u0438 \u0441 Windows \u0438 MacOS\u00bb<\/a><\/noindex><\/em><\/p>\n<p><\/p>\n<p><img decoding=\"async\" alt=\"\u041f\u043e\u0448\u0430\u0433\u043e\u0432\u043e\u0435 \u0440\u0443\u043a\u043e\u0432\u043e\u0434\u0441\u0442\u0432\u043e \u043f\u043e \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0435 DNS-\u0441\u0435\u0440\u0432\u0435\u0440\u0430 BIND \u0432 chroot \u0441\u0440\u0435\u0434\u0435 \u0434\u043b\u044f Red Hat (RHEL \/ CentOS) 7\" src=\"\/wp-content\/uploads\/2019\/07\/095a422b41ff02620d02c91d8d457117.jpg\" style=\"display:block;margin: 0 auto;\" \/><\/p>\n<p><\/p>\n<p>\u0412 \u044d\u0442\u043e\u0439 \u0441\u0442\u0430\u0442\u044c\u0435 \u044f \u0440\u0430\u0441\u0441\u043a\u0430\u0436\u0443 \u043e \u0448\u0430\u0433\u0430\u0445 \u043f\u043e \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0435 DNS-\u0441\u0435\u0440\u0432\u0435\u0440\u0430 \u043d\u0430 RHEL 7 \u0438\u043b\u0438 CentOS 7. \u0414\u043b\u044f \u0434\u0435\u043c\u043e\u043d\u0441\u0442\u0440\u0430\u0446\u0438\u0438 \u044f \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u043b Red Hat Enterprise Linux 7.4. \u041d\u0430\u0448\u0430 \u0446\u0435\u043b\u044c \u2014 \u0441\u043e\u0437\u0434\u0430\u0442\u044c \u043e\u0434\u043d\u0443 A-\u0437\u0430\u043f\u0438\u0441\u044c \u0438 \u043e\u0434\u043d\u0443 PTR-\u0437\u0430\u043f\u0438\u0441\u044c \u0434\u043b\u044f \u0437\u043e\u043d\u044b \u043f\u0440\u044f\u043c\u043e\u0433\u043e \u0438 \u043e\u0431\u0440\u0430\u0442\u043d\u043e\u0433\u043e \u043f\u0440\u043e\u0441\u043c\u043e\u0442\u0440\u0430 \u0441\u043e\u043e\u0442\u0432\u0435\u0442\u0441\u0442\u0432\u0435\u043d\u043d\u043e.<\/p>\n<p><noindex><a rel=\"nofollow\" name=\"habracut\"><\/a><\/noindex><\/p>\n<p>\u0421\u043d\u0430\u0447\u0430\u043b\u0430 \u0443\u0441\u0442\u0430\u043d\u043e\u0432\u0438\u0442\u0435 \u043d\u0435\u043e\u0431\u0445\u043e\u0434\u0438\u043c\u044b\u0435 rpm-\u043f\u0430\u043a\u0435\u0442\u044b \u0434\u043b\u044f DNS-\u0441\u0435\u0440\u0432\u0435\u0440\u0430.<\/p>\n<p><\/p>\n<p><em>\u041f\u0420\u0418\u041c\u0415\u0427\u0410\u041d\u0418\u0415: \u0414\u043b\u044f RHEL \u0443 \u0432\u0430\u0441 \u0434\u043e\u043b\u0436\u043d\u0430 \u0431\u044b\u0442\u044c <noindex><a rel=\"nofollow\" href=\"https:\/\/www.golinuxcloud.com\/register-rhel-7-attach-subscription-manager\/\">\u0430\u043a\u0442\u0438\u0432\u043d\u0430\u044f \u043f\u043e\u0434\u043f\u0438\u0441\u043a\u0430 \u043d\u0430 RHN<\/a><\/noindex>, \u0438\u043b\u0438 \u0432\u044b \u043c\u043e\u0436\u0435\u0442\u0435 <noindex><a rel=\"nofollow\" href=\"https:\/\/www.golinuxcloud.com\/there-are-no-enabled-repos-yum-dnf-rhel-7-8\/\">\u043d\u0430\u0441\u0442\u0440\u043e\u0438\u0442\u044c \u043b\u043e\u043a\u0430\u043b\u044c\u043d\u044b\u0439 \u0430\u0432\u0442\u043e\u043d\u043e\u043c\u043d\u044b\u0439 \u0440\u0435\u043f\u043e\u0437\u0438\u0442\u043e\u0440\u0438\u0439<\/a><\/noindex>, \u0441 \u043f\u043e\u043c\u043e\u0449\u044c\u044e \u043a\u043e\u0442\u043e\u0440\u043e\u0433\u043e \u043c\u0435\u043d\u0435\u0434\u0436\u0435\u0440 \u043f\u0430\u043a\u0435\u0442\u043e\u0432 \u00abyum\u00bb \u0441\u043c\u043e\u0436\u0435\u0442 \u0443\u0441\u0442\u0430\u043d\u043e\u0432\u0438\u0442\u044c \u043d\u0435\u043e\u0431\u0445\u043e\u0434\u0438\u043c\u044b\u0435 rpm-\u043f\u0430\u043a\u0435\u0442\u044b \u0438 \u0437\u0430\u0432\u0438\u0441\u0438\u043c\u043e\u0441\u0442\u0438.<\/em><\/p>\n<p><\/p>\n<pre><code class=\"bash\"># yum install bind bind-chroot caching-nameserver<\/code><\/pre>\n<p><\/p>\n<p>\u041c\u043e\u0438 \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0438:<\/p>\n<p><\/p>\n<pre><code class=\"bash\"># hostname\ngolinuxhub-client.example\n\u041c\u043e\u0439 IP-\u0430\u0434\u0440\u0435\u0441 192.168.1.7\n# ip address | egrep 'inet.*enp0s3'\n    inet 192.168.1.7\/24 brd 192.168.1.255 scope global dynamic enp0s3<\/code><\/pre>\n<p><\/p>\n<p>\u041f\u043e\u0441\u043a\u043e\u043b\u044c\u043a\u0443 \u043c\u044b \u0431\u0443\u0434\u0435\u043c \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u044c chroot, \u043d\u0443\u0436\u043d\u043e \u043e\u0442\u043a\u043b\u044e\u0447\u0438\u0442\u044c \u0441\u043b\u0443\u0436\u0431\u0443.<\/p>\n<p><\/p>\n<pre><code class=\"bash\"># systemctl stop named\n# systemctl disable named<\/code><\/pre>\n<p><\/p>\n<p>\u0417\u0430\u0442\u0435\u043c \u0441\u043a\u043e\u043f\u0438\u0440\u0443\u0439\u0442\u0435 \u043d\u0435\u043e\u0431\u0445\u043e\u0434\u0438\u043c\u044b\u0435 \u0444\u0430\u0439\u043b\u044b \u0432 \u043a\u0430\u0442\u0430\u043b\u043e\u0433 chroot.<br \/>\n\u041f\u0420\u0418\u041c\u0415\u0427\u0410\u041d\u0418\u0415. \u0418\u0441\u043f\u043e\u043b\u044c\u0437\u0443\u0439\u0442\u0435 \u0430\u0440\u0433\u0443\u043c\u0435\u043d\u0442 <em>-p<\/em> \u0432 \u043a\u043e\u043c\u0430\u043d\u0434\u0435 <em>cp<\/em> \u0434\u043b\u044f \u0441\u043e\u0445\u0440\u0430\u043d\u0435\u043d\u0438\u044f \u043f\u0440\u0430\u0432 \u0438 \u0432\u043b\u0430\u0434\u0435\u043b\u044c\u0446\u0435\u0432.<\/p>\n<p><\/p>\n<pre><code class=\"bash\">[root@golinuxhub-client ~]# cp -rpvf \/usr\/share\/doc\/bind-9.9.4\/sample\/etc\/*  \/var\/named\/chroot\/etc\/\n\u2018\/usr\/share\/doc\/bind-9.9.4\/sample\/etc\/named.conf\u2019 -&gt; \u2018\/var\/named\/chroot\/etc\/named.conf\u2019\n\u2018\/usr\/share\/doc\/bind-9.9.4\/sample\/etc\/named.rfc1912.zones\u2019 -&gt; \u2018\/var\/named\/chroot\/etc\/named.rfc1912.zones\u2019<\/code><\/pre>\n<p><\/p>\n<p>\u0417\u0430\u0442\u0435\u043c \u0441\u043a\u043e\u043f\u0438\u0440\u0443\u0439\u0442\u0435 \u0444\u0430\u0439\u043b\u044b, \u0441\u0432\u044f\u0437\u0430\u043d\u043d\u044b\u0435 \u0441 \u0437\u043e\u043d\u043e\u0439, \u0432 \u043d\u043e\u0432\u043e\u0435 \u043c\u0435\u0441\u0442\u043e.<\/p>\n<p><\/p>\n<pre><code class=\"bash\">[root@golinuxhub-client ~]# cp -rpvf \/usr\/share\/doc\/bind-9.9.4\/sample\/var\/named\/* \/var\/named\/chroot\/var\/named\/\n\u2018\/usr\/share\/doc\/bind-9.9.4\/sample\/var\/named\/data\u2019 -&gt; \u2018\/var\/named\/chroot\/var\/named\/data\u2019\n\u2018\/usr\/share\/doc\/bind-9.9.4\/sample\/var\/named\/my.external.zone.db\u2019 -&gt; \u2018\/var\/named\/chroot\/var\/named\/my.external.zone.db\u2019\n\u2018\/usr\/share\/doc\/bind-9.9.4\/sample\/var\/named\/my.internal.zone.db\u2019 -&gt; \u2018\/var\/named\/chroot\/var\/named\/my.internal.zone.db\u2019\n\u2018\/usr\/share\/doc\/bind-9.9.4\/sample\/var\/named\/named.ca\u2019 -&gt; \u2018\/var\/named\/chroot\/var\/named\/named.ca\u2019\n\u2018\/usr\/share\/doc\/bind-9.9.4\/sample\/var\/named\/named.empty\u2019 -&gt; \u2018\/var\/named\/chroot\/var\/named\/named.empty\u2019\n\u2018\/usr\/share\/doc\/bind-9.9.4\/sample\/var\/named\/named.localhost\u2019 -&gt; \u2018\/var\/named\/chroot\/var\/named\/named.localhost\u2019\n\u2018\/usr\/share\/doc\/bind-9.9.4\/sample\/var\/named\/named.loopback\u2019 -&gt; \u2018\/var\/named\/chroot\/var\/named\/named.loopback\u2019\n\u2018\/usr\/share\/doc\/bind-9.9.4\/sample\/var\/named\/slaves\u2019 -&gt; \u2018\/var\/named\/chroot\/var\/named\/slaves\u2019\n\u2018\/usr\/share\/doc\/bind-9.9.4\/sample\/var\/named\/slaves\/my.ddns.internal.zone.db\u2019 -&gt; \u2018\/var\/named\/chroot\/var\/named\/slaves\/my.ddns.internal.zone.db\u2019\n\u2018\/usr\/share\/doc\/bind-9.9.4\/sample\/var\/named\/slaves\/my.slave.internal.zone.db\u2019 -&gt; \u2018\/var\/named\/chroot\/var\/named\/slaves\/my.slave.internal.zone.db\u2019\n```bash\n\u0422\u0435\u043f\u0435\u0440\u044c \u0434\u0430\u0432\u0430\u0439\u0442\u0435 \u043f\u043e\u0441\u043c\u043e\u0442\u0440\u0438\u043c \u043d\u0430 \u043e\u0441\u043d\u043e\u0432\u043d\u043e\u0439 \u0444\u0430\u0439\u043b \u043a\u043e\u043d\u0444\u0438\u0433\u0443\u0440\u0430\u0446\u0438\u0438.\n```bash\n# cd \/var\/named\/chroot\/etc\/<\/code><\/pre>\n<p><\/p>\n<p>\u041e\u0447\u0438\u0441\u0442\u0438\u0442\u0435 \u0441\u043e\u0434\u0435\u0440\u0436\u0438\u043c\u043e\u0435 named.conf \u0438 \u0432\u0441\u0442\u0430\u0432\u044c\u0442\u0435 \u0441\u043b\u0435\u0434\u0443\u044e\u0449\u0435\u0435.<\/p>\n<p><\/p>\n<pre><code class=\"bash\">[root@golinuxhub-client etc]# vim named.conf\noptions {\n        listen-on port 53 { 127.0.0.1; any; };\n#       listen-on-v6 port 53 { ::1; };\n        directory       \"\/var\/named\";\n        dump-file       \"\/var\/named\/data\/cache_dump.db\";\n        statistics-file \"\/var\/named\/data\/named_stats.txt\";\n        memstatistics-file \"\/var\/named\/data\/named_mem_stats.txt\";\n        allow-query     { localhost; any; };\n        allow-query-cache { localhost; any; };\n};\n\nlogging {\n        channel default_debug {\n                file \"data\/named.run\";\n                severity dynamic;\n        };\n};\n\nview my_resolver {\n        match-clients      { localhost; any; };\n        recursion yes;\n        include \"\/etc\/named.rfc1912.zones\";\n};<\/code><\/pre>\n<p><\/p>\n<p>\u0418\u043d\u0444\u043e\u0440\u043c\u0430\u0446\u0438\u044f, \u043e\u0442\u043d\u043e\u0441\u044f\u0449\u0430\u044f\u0441\u044f \u043a \u0437\u043e\u043d\u0435, \u0434\u043e\u043b\u0436\u043d\u0430 \u0431\u044b\u0442\u044c \u0434\u043e\u0431\u0430\u0432\u043b\u0435\u043d\u0430 \u0432 <em>\/var\/named\/chroot\/etc\/named.rfc1912.zones<\/em>. \u0414\u043e\u0431\u0430\u0432\u044c\u0442\u0435 \u0437\u0430\u043f\u0438\u0441\u0438, \u043f\u0440\u0438\u0432\u0435\u0434\u0435\u043d\u043d\u044b\u0435 \u043d\u0438\u0436\u0435. \u0424\u0430\u0439\u043b example.zone \u2014 \u044d\u0442\u043e \u0444\u0430\u0439\u043b \u0437\u043e\u043d\u044b \u043f\u0440\u044f\u043c\u043e\u0433\u043e \u043f\u0440\u043e\u0441\u043c\u043e\u0442\u0440\u0430, \u0430 <em>example.rzone<\/em> \u2014 \u0444\u0430\u0439\u043b \u043e\u0431\u0440\u0430\u0442\u043d\u043e\u0439 \u0437\u043e\u043d\u044b.<\/p>\n<p><\/p>\n<p><strong>\u0412\u0410\u0416\u041d\u041e\u0415 \u041f\u0420\u0418\u041c\u0415\u0427\u0410\u041d\u0418\u0415: \u0417\u043e\u043d\u0430 \u043e\u0431\u0440\u0430\u0442\u043d\u043e\u0433\u043e \u043f\u0440\u043e\u0441\u043c\u043e\u0442\u0440\u0430 \u0441\u043e\u0434\u0435\u0440\u0436\u0438\u0442 1.168.192, \u043f\u043e\u0441\u043a\u043e\u043b\u044c\u043a\u0443 \u043c\u043e\u0439 IP-\u0430\u0434\u0440\u0435\u0441 192.168.1.7<\/strong><\/p>\n<p><\/p>\n<pre><code class=\"bash\">zone \"example\" IN {\n        type master;\n        file \"example.zone\";\n        allow-update { none; };\n};\n\nzone \"1.168.192.in-addr.arpa\" IN {\n        type master;\n        file \"example.rzone\";\n        allow-update { none; };\n};<\/code><\/pre>\n<p><\/p>\n<p>\u0424\u0430\u0439\u043b\u044b, \u0441\u0432\u044f\u0437\u0430\u043d\u043d\u044b\u0435 \u0441 \u0437\u043e\u043d\u0430\u043c\u0438, \u043d\u0430\u0445\u043e\u0434\u044f\u0442\u0441\u044f \u0437\u0434\u0435\u0441\u044c:<\/p>\n<p><\/p>\n<pre><code class=\"bash\"># cd \/var\/named\/chroot\/var\/named\/<\/code><\/pre>\n<p><\/p>\n<p>\u0414\u0430\u043b\u0435\u0435 \u0441\u043e\u0437\u0434\u0430\u0434\u0438\u043c \u0444\u0430\u0439\u043b\u044b \u0434\u043b\u044f \u043f\u0440\u044f\u043c\u043e\u0439 \u0438 \u043e\u0431\u0440\u0430\u0442\u043d\u043e\u0439 \u0437\u043e\u043d\u044b. \u0418\u043c\u0435\u043d\u0430 \u0444\u0430\u0439\u043b\u043e\u0432 \u0431\u0443\u0434\u0443\u0442 \u0442\u0430\u043a\u0438\u043c\u0438 \u0436\u0435, \u043a\u0430\u043a \u0432\u044b\u0448\u0435 \u0432 \u0444\u0430\u0439\u043b\u0435 <em>named.rfc1912.zones<\/em>. \u0423 \u043d\u0430\u0441 \u0443\u0436\u0435 \u0435\u0441\u0442\u044c \u043d\u0435\u0441\u043a\u043e\u043b\u044c\u043a\u043e \u0448\u0430\u0431\u043b\u043e\u043d\u043e\u0432 \u043f\u043e \u0443\u043c\u043e\u043b\u0447\u0430\u043d\u0438\u044e, \u043a\u043e\u0442\u043e\u0440\u044b\u0435 \u043c\u044b \u043c\u043e\u0436\u0435\u043c \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u044c.<\/p>\n<p><\/p>\n<pre><code class=\"bash\"># cp -p named.localhost  example.zone\n# cp -p named.loopback example.rzone<\/code><\/pre>\n<p><\/p>\n<p>\u041a\u0430\u043a \u0432\u0438\u0434\u0438\u0442\u0435, \u0442\u0435\u043a\u0443\u0449\u0438\u0435 \u0440\u0430\u0437\u0440\u0435\u0448\u0435\u043d\u0438\u044f \u043d\u0430 \u0432\u0441\u0435 \u0444\u0430\u0439\u043b\u044b \u0438 \u043a\u0430\u0442\u0430\u043b\u043e\u0433\u0438 \u043f\u0440\u0438\u043d\u0430\u0434\u043b\u0435\u0436\u0430\u0442 <em>root<\/em>.<\/p>\n<p><\/p>\n<pre><code class=\"bash\">[root@golinuxhub-client named]# ll\ntotal 32\ndrwxr-xr-x. 2 root root    6 May 22  2017 data\n-rw-r--r--. 1 root root  168 May 22  2017 example.rzone\n-rw-r--r--. 1 root root  152 May 22  2017 example.zone\n-rw-r--r--. 1 root root   56 May 22  2017 my.external.zone.db\n-rw-r--r--. 1 root root   56 May 22  2017 my.internal.zone.db\n-rw-r--r--. 1 root root 2281 May 22  2017 named.ca\n-rw-r--r--. 1 root root  152 May 22  2017 named.empty\n-rw-r--r--. 1 root root  152 May 22  2017 named.localhost\n-rw-r--r--. 1 root root  168 May 22  2017 named.loopback\ndrwxr-xr-x. 2 root root   71 Feb 12 21:02 slaves<\/code><\/pre>\n<p><\/p>\n<p>\u0418\u0437\u043c\u0435\u043d\u0438\u0442\u0435 \u043f\u0440\u0430\u0432\u0430 \u0432\u0441\u0435\u0445 \u0444\u0430\u0439\u043b\u043e\u0432, \u0443\u043a\u0430\u0437\u0430\u0432 \u0432 \u043a\u0430\u0447\u0435\u0441\u0442\u0432\u0435 \u0432\u043b\u0430\u0434\u0435\u043b\u044c\u0446\u0430 \u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u0435\u043b\u044f <em>root<\/em> \u0438 \u0433\u0440\u0443\u043f\u043f\u0443 <em>named<\/em>.<\/p>\n<p><\/p>\n<pre><code class=\"bash\"># chown root:named *<\/code><\/pre>\n<p><\/p>\n<p>\u041d\u043e \u0434\u043b\u044f data \u0432\u043b\u0430\u0434\u0435\u043b\u0435\u0446 \u0434\u043e\u043b\u0436\u0435\u043d \u0431\u044b\u0442\u044c <em>named:named<\/em>.<\/p>\n<p><\/p>\n<pre><code class=\"bash\"># chown -R  named:named data\n# ls -l\ntotal 32\ndrwxr-xr-x. 2 named named    6 May 22  2017 data\n-rw-r--r--. 1 root  named  168 May 22  2017 example.rzone\n-rw-r--r--. 1 root  named  152 May 22  2017 example.zone\n-rw-r--r--. 1 root  named   56 May 22  2017 my.external.zone.db\n-rw-r--r--. 1 root  named   56 May 22  2017 my.internal.zone.db\n-rw-r--r--. 1 root  named 2281 May 22  2017 named.ca\n-rw-r--r--. 1 root  named  152 May 22  2017 named.empty\n-rw-r--r--. 1 root  named  152 May 22  2017 named.localhost\n-rw-r--r--. 1 root  named  168 May 22  2017 named.loopback\ndrwxr-xr-x. 2 root  named   71 Feb 12 21:02 slaves<\/code><\/pre>\n<p><\/p>\n<p>\u0414\u043e\u0431\u0430\u0432\u044c\u0442\u0435 \u043f\u0440\u0438\u0432\u0435\u0434\u0435\u043d\u043d\u043e\u0435 \u043d\u0438\u0436\u0435 \u0441\u043e\u0434\u0435\u0440\u0436\u0438\u043c\u043e\u0435 \u0432 \u0444\u0430\u0439\u043b \u043f\u0440\u044f\u043c\u043e\u0439 \u0437\u043e\u043d\u044b. \u0417\u0434\u0435\u0441\u044c \u043c\u044b \u0441\u043e\u0437\u0434\u0430\u0435\u043c A-\u0437\u0430\u043f\u0438\u0441\u044c \u0434\u043b\u044f localhost (golinuxhub-client) \u0438 \u0435\u0449\u0435 \u043e\u0434\u043d\u0443 \u0434\u043b\u044f \u0441\u0435\u0440\u0432\u0435\u0440\u0430 (golinuxhub-server).<\/p>\n<p><\/p>\n<pre><code class=\"bash\"># vim example.zone\n$TTL 1D\n@       IN SOA  example. root (\n                                        1       ; serial\n                                        3H      ; refresh\n                                        15M     ; retry\n                                        1W      ; expire\n                                        1D )    ; minimum\n\n                IN NS           example.\n\n                        IN A 192.168.1.7\ngolinuxhub-server       IN A 192.168.1.5\ngolinuxhub-client       IN A 192.169.1.7<\/code><\/pre>\n<p><\/p>\n<p>\u0414\u0430\u043b\u0435\u0435 \u0434\u043e\u0431\u0430\u0432\u044c\u0442\u0435 \u0441\u043e\u0434\u0435\u0440\u0436\u0438\u043c\u043e\u0435 \u0432 \u0444\u0430\u0439\u043b \u043e\u0431\u0440\u0430\u0442\u043d\u043e\u0439 \u0437\u043e\u043d\u044b. \u0417\u0434\u0435\u0441\u044c \u043c\u044b \u0441\u043e\u0437\u0434\u0430\u0435\u043c PTR-\u0437\u0430\u043f\u0438\u0441\u044c \u0434\u043b\u044f golinuxhub-client \u0438 \u0434\u043b\u044f \u0441\u0435\u0440\u0432\u0435\u0440\u0430 golinuxhub-server.<\/p>\n<p><\/p>\n<pre><code class=\"bash\"># vim example.rzone\n$TTL 1D\n@       IN SOA  example. root.example. (\n                                        1997022700      ; serial\n                                        28800           ; refresh\n                                        14400           ; retry\n                                        3600000         ; expire\n                                        86400  )        ; minimum\n\n        IN NS   example.\n5       IN PTR  golinuxhub-server.example.\n7       IN PTR  golinuxhub-client.example.<\/code><\/pre>\n<p><\/p>\n<p>\u041f\u0440\u0435\u0436\u0434\u0435 \u0447\u0435\u043c \u043c\u044b \u0437\u0430\u043f\u0443\u0441\u0442\u0438\u043c \u0441\u0435\u0440\u0432\u0438\u0441 <em>named-chroot<\/em>, \u043f\u0440\u043e\u0432\u0435\u0440\u0438\u043c \u043a\u043e\u043d\u0444\u0438\u0433\u0443\u0440\u0430\u0446\u0438\u044e \u0444\u0430\u0439\u043b\u0430 \u0437\u043e\u043d\u044b.<\/p>\n<p><\/p>\n<pre><code class=\"bash\">[root@golinuxhub-client named]# named-checkzone golinuxhub-client.example example.zone\nzone golinuxhub-client.example\/IN: loaded serial 1\nOK\n\n[root@golinuxhub-client named]# named-checkzone golinuxhub-client.example example.rzone\nzone golinuxhub-client.example\/IN: loaded serial 1997022700\nOK<\/code><\/pre>\n<p><\/p>\n<p>\u0412\u0441\u0435 \u0432\u044b\u0433\u043b\u044f\u0434\u0438\u0442 \u0445\u043e\u0440\u043e\u0448\u043e. \u0422\u0435\u043f\u0435\u0440\u044c \u043f\u0440\u043e\u0432\u0435\u0440\u044c\u0442\u0435 \u0444\u0430\u0439\u043b \u043a\u043e\u043d\u0444\u0438\u0433\u0443\u0440\u0430\u0446\u0438\u0438, \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u0443\u044f \u0441\u043b\u0435\u0434\u0443\u044e\u0449\u0443\u044e \u043a\u043e\u043c\u0430\u043d\u0434\u0443.<\/p>\n<p><\/p>\n<pre><code class=\"bash\">[root@golinuxhub-client named]# named-checkconf -t \/var\/named\/chroot\/ \/etc\/named.conf<\/code><\/pre>\n<p><\/p>\n<p>\u0418\u0442\u0430\u043a, \u0432\u0441\u0435 \u0432\u044b\u043f\u043e\u043b\u043d\u0435\u043d\u043e \u0443\u0441\u043f\u0435\u0448\u043d\u043e.<\/p>\n<p><\/p>\n<pre><code class=\"bash\">[root@golinuxhub-client named]# echo $?\n0<\/code><\/pre>\n<p><\/p>\n<p><em>\u0412\u0410\u0416\u041d\u041e\u0415 \u041f\u0420\u0418\u041c\u0415\u0427\u0410\u041d\u0418\u0415: \u0443 \u043c\u0435\u043d\u044f SELinux \u043d\u0430\u0445\u043e\u0434\u0438\u0442\u0441\u044f \u0432 \u0440\u0435\u0436\u0438\u043c\u0435 permissive<\/em><\/p>\n<p><\/p>\n<pre><code class=\"bash\"># getenforce\nPermissive<\/code><\/pre>\n<p><\/p>\n<p>\u0412\u0441\u0435 \u0432\u044b\u0433\u043b\u044f\u0434\u0438\u0442 \u0445\u043e\u0440\u043e\u0448\u043e, \u0442\u0430\u043a \u0447\u0442\u043e \u043f\u043e\u0440\u0430 \u0437\u0430\u043f\u0443\u0441\u043a\u0430\u0442\u044c \u043d\u0430\u0448 \u0441\u0435\u0440\u0432\u0438\u0441 <em>named-chroot<\/em> .<\/p>\n<p><\/p>\n<pre><code class=\"bash\">[root@golinuxhub-client named]# systemctl restart named-chroot<\/code><\/pre>\n<p><\/p>\n<pre><code class=\"bash\">[root@golinuxhub-client named]# systemctl status named-chroot\n\u25cf named-chroot.service - Berkeley Internet Name Domain (DNS)\n   Loaded: loaded (\/usr\/lib\/systemd\/system\/named-chroot.service; disabled; vendor preset: disabled)\n   Active: active (running) since Mon 2018-02-12 21:53:23 IST; 19s ago\n  Process: 5236 ExecStop=\/bin\/sh -c \/usr\/sbin\/rndc stop &gt; \/dev\/null 2&gt;&amp;1 || \/bin\/kill -TERM $MAINPID (code=exited, status=0\/SUCCESS)\n  Process: 5327 ExecStart=\/usr\/sbin\/named -u named -c ${NAMEDCONF} -t \/var\/named\/chroot $OPTIONS (code=exited, status=0\/SUCCESS)\n  Process: 5325 ExecStartPre=\/bin\/bash -c if [ ! \"$DISABLE_ZONE_CHECKING\" == \"yes\" ]; then \/usr\/sbin\/named-checkconf -t \/var\/named\/chroot -z \"$NAMEDCONF\"; else echo \"Checking of zone files is disabled\"; fi (code=exited, status=0\/SUCCESS)\n Main PID: 5330 (named)\n   CGroup: \/system.slice\/named-chroot.service\n           \u2514\u25005330 \/usr\/sbin\/named -u named -c \/etc\/named.conf -t \/var\/named\/chroot\n\nFeb 12 21:53:23 golinuxhub-client.example named[5330]: managed-keys-zone\/my_resolver: loaded serial 0\nFeb 12 21:53:23 golinuxhub-client.example named[5330]: zone 0.in-addr.arpa\/IN\/my_resolver: loaded serial 0\nFeb 12 21:53:23 golinuxhub-client.example named[5330]: zone 1.0.0.127.in-addr.arpa\/IN\/my_resolver: loaded serial 0\nFeb 12 21:53:23 golinuxhub-client.example named[5330]: zone 1.168.192.in-addr.arpa\/IN\/my_resolver: loaded serial 1997022700\nFeb 12 21:53:23 golinuxhub-client.example named[5330]: zone example\/IN\/my_resolver: loaded serial 1\nFeb 12 21:53:23 golinuxhub-client.example named[5330]: zone localhost\/IN\/my_resolver: loaded serial 0\nFeb 12 21:53:23 golinuxhub-client.example named[5330]: zone 1.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.ip6.arpa\/IN\/my_resolver: loaded serial 0\nFeb 12 21:53:23 golinuxhub-client.example named[5330]: zone localhost.localdomain\/IN\/my_resolver: loaded serial 0\nFeb 12 21:53:23 golinuxhub-client.example named[5330]: all zones loaded\nFeb 12 21:53:23 golinuxhub-client.example named[5330]: running\n```bash\n\u0423\u0431\u0435\u0434\u0438\u0442\u0435\u0441\u044c, \u0447\u0442\u043e resolv.conf \u0441\u043e\u0434\u0435\u0440\u0436\u0438\u0442 \u0432\u0430\u0448 IP-\u0430\u0434\u0440\u0435\u0441, \u0447\u0442\u043e\u0431\u044b \u043e\u043d \u043c\u043e\u0433 \u0440\u0430\u0431\u043e\u0442\u0430\u0442\u044c \u0432 \u043a\u0430\u0447\u0435\u0441\u0442\u0432\u0435 DNS-\u0441\u0435\u0440\u0432\u0435\u0440\u0430.\n```bash\n# cat \/etc\/resolv.conf\nsearch example\nnameserver 192.168.1.7\n```bash\n\u0414\u0430\u0432\u0430\u0439\u0442\u0435 \u043f\u0440\u043e\u0432\u0435\u0440\u0438\u043c \u043d\u0430\u0448 DNS-\u0441\u0435\u0440\u0432\u0435\u0440 \u0434\u043b\u044f \u043e\u0431\u0440\u0430\u0442\u043d\u043e\u0439 \u0437\u043e\u043d\u044b, \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u0443\u044f dig.\n```bash\n[root@golinuxhub-client named]# dig -x 192.168.1.5\n\n; &lt;&lt;&gt;&gt; DiG 9.9.4-RedHat-9.9.4-50.el7 &lt;&lt;&gt;&gt; -x 192.168.1.5\n;; global options: +cmd\n;; Got answer:\n;; -&gt;&gt;HEADER&lt;&lt;- opcode: QUERY, status: NOERROR, id: 40331\n;; flags: qr aa rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 1, ADDITIONAL: 2\n\n;; OPT PSEUDOSECTION:\n; EDNS: version: 0, flags:; udp: 4096\n;; QUESTION SECTION:\n;5.1.168.192.in-addr.arpa.      IN      PTR\n\n;; ANSWER SECTION:\n5.1.168.192.in-addr.arpa. 86400 IN      PTR     golinuxhub-server.example.\n\n;; AUTHORITY SECTION:\n1.168.192.in-addr.arpa. 86400   IN      NS      example.\n\n;; ADDITIONAL SECTION:\nexample.                86400   IN      A       192.168.1.7\n\n;; Query time: 1 msec\n;; SERVER: 192.168.1.7#53(192.168.1.7)\n;; WHEN: Mon Feb 12 22:13:17 IST 2018\n;; MSG SIZE  rcvd: 122<\/code><\/pre>\n<p><\/p>\n<p>\u041a\u0430\u043a \u0432\u044b \u0432\u0438\u0434\u0438\u0442\u0435, \u043c\u044b \u043f\u043e\u043b\u0443\u0447\u0438\u043b\u0438 \u043f\u043e\u043b\u043e\u0436\u0438\u0442\u0435\u043b\u044c\u043d\u044b\u0439 \u043e\u0442\u0432\u0435\u0442 (ANSWER) \u043d\u0430 \u043d\u0430\u0448 \u0437\u0430\u043f\u0440\u043e\u0441 (QUERY).<\/p>\n<p><\/p>\n<pre><code class=\"bash\">[root@golinuxhub-client named]# dig -x 192.168.1.7\n\n; &lt;&lt;&gt;&gt; DiG 9.9.4-RedHat-9.9.4-50.el7 &lt;&lt;&gt;&gt; -x 192.168.1.7\n;; global options: +cmd\n;; Got answer:\n;; -&gt;&gt;HEADER&lt;&lt;- opcode: QUERY, status: NOERROR, id: 55804\n;; flags: qr aa rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 1, ADDITIONAL: 2\n\n;; OPT PSEUDOSECTION:\n; EDNS: version: 0, flags:; udp: 4096\n;; QUESTION SECTION:\n;7.1.168.192.in-addr.arpa.      IN      PTR\n\n;; ANSWER SECTION:\n7.1.168.192.in-addr.arpa. 86400 IN      PTR     golinuxhub-client.example.\n\n;; AUTHORITY SECTION:\n1.168.192.in-addr.arpa. 86400   IN      NS      example.\n\n;; ADDITIONAL SECTION:\nexample.                86400   IN      A       192.168.1.7\n\n;; Query time: 1 msec\n;; SERVER: 192.168.1.7#53(192.168.1.7)\n;; WHEN: Mon Feb 12 22:12:54 IST 2018\n;; MSG SIZE  rcvd: 122<\/code><\/pre>\n<p><\/p>\n<p>\u0422\u043e\u0447\u043d\u043e \u0442\u0430\u043a \u0436\u0435 \u043c\u044b \u043c\u043e\u0436\u0435\u043c \u043f\u0440\u043e\u0432\u0435\u0440\u0438\u0442\u044c \u043f\u0440\u044f\u043c\u0443\u044e \u0437\u043e\u043d\u0443.<\/p>\n<p><\/p>\n<pre><code class=\"bash\">[root@golinuxhub-client named]# nslookup golinuxhub-client.example\nServer:         192.168.1.7\nAddress:        192.168.1.7#53\n\nName:   golinuxhub-client.example\nAddress: 192.169.1.7\n\n[root@golinuxhub-client named]# nslookup golinuxhub-server.example\nServer:         192.168.1.7\nAddress:        192.168.1.7#53\n\nName:   golinuxhub-server.example\nAddress: 192.168.1.5<\/code><\/pre>\n<p><\/p>\n<p>\u042d\u0442\u0430 \u0441\u0442\u0430\u0442\u044c\u044f \u043d\u0435\u043c\u043d\u043e\u0433\u043e \u0443\u0441\u0442\u0430\u0440\u0435\u043b\u0430, \u0442\u0430\u043a \u043a\u0430\u043a \u0432 RHEL 7 \u0442\u0435\u043f\u0435\u0440\u044c \u043d\u0435 \u043d\u0443\u0436\u043d\u043e \u043a\u043e\u043f\u0438\u0440\u043e\u0432\u0430\u0442\u044c \u0444\u0430\u0439\u043b\u044b \u043a\u043e\u043d\u0444\u0438\u0433\u0443\u0440\u0430\u0446\u0438\u0438 bind \u0432 chroot. <noindex><a rel=\"nofollow\" href=\"https:\/\/www.golinuxcloud.com\/configure-dns-server-bind-chroot-named-centos\/\">Step-by-Step Tutorial: Configure DNS Server using bind chroot (CentOS\/RHEL 7)<\/a><\/noindex>.<\/p>\n<p>\u0418\u0441\u0442\u043e\u0447\u043d\u0438\u043a: <a content=\"nofollow\" rel=\"nofollow\" href=\"https:\/\/habr.com\/ru\/company\/otus\/blog\/461281\/\">habr.com<\/a><\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"excerpt":{"rendered":"<p>\u041f\u0435\u0440\u0435\u0432\u043e\u0434 \u0441\u0442\u0430\u0442\u044c\u0438 \u043f\u043e\u0434\u0433\u043e\u0442\u043e\u0432\u043b\u0435\u043d \u0434\u043b\u044f \u0441\u0442\u0443\u0434\u0435\u043d\u0442\u043e\u0432 \u043a\u0443\u0440\u0441\u0430 \u00ab\u0411\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u044c Linux\u00bb. \u0418\u043d\u0442\u0435\u0440\u0435\u0441\u043d\u043e \u0440\u0430\u0437\u0432\u0438\u0432\u0430\u0442\u044c\u0441\u044f \u0432 \u0434\u0430\u043d\u043d\u043e\u043c \u043d\u0430\u043f\u0440\u0430\u0432\u043b\u0435\u043d\u0438\u0438? \u0421\u043c\u043e\u0442\u0440\u0438\u0442\u0435 \u0437\u0430\u043f\u0438\u0441\u044c \u0442\u0440\u0430\u043d\u0441\u043b\u044f\u0446\u0438\u0438 \u043c\u0430\u0441\u0442\u0435\u0440-\u043a\u043b\u0430\u0441\u0441\u0430 \u0418\u0432\u0430\u043d\u0430 \u041f\u0438\u0441\u043a\u0443\u043d\u043e\u0432\u0430 \u00ab\u0411\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u044c \u0432 Linux \u0432 \u0441\u0440\u0430\u0432\u043d\u0435\u043d\u0438\u0438 \u0441 Windows \u0438 MacOS\u00bb \u0412 \u044d\u0442\u043e\u0439 \u0441\u0442\u0430\u0442\u044c\u0435 \u044f \u0440\u0430\u0441\u0441\u043a\u0430\u0436\u0443 \u043e \u0448\u0430\u0433\u0430\u0445 \u043f\u043e \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0435 DNS-\u0441\u0435\u0440\u0432\u0435\u0440\u0430 \u043d\u0430 RHEL 7 \u0438\u043b\u0438 CentOS 7. \u0414\u043b\u044f \u0434\u0435\u043c\u043e\u043d\u0441\u0442\u0440\u0430\u0446\u0438\u0438 \u044f \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u043b Red Hat Enterprise Linux 7.4. \u041d\u0430\u0448\u0430 \u0446\u0435\u043b\u044c [&hellip;]<\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"author":1,"featured_media":27349,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[688],"tags":[],"class_list":["post-36537","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-administrirovanie"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 5.0.0.1 - aioseo.com -->\n\t<meta name=\"description\" content=\"\u041f\u0435\u0440\u0435\u0432\u043e\u0434 \u0441\u0442\u0430\u0442\u044c\u0438 \u043f\u043e\u0434\u0433\u043e\u0442\u043e\u0432\u043b\u0435\u043d \u0434\u043b\u044f \u0441\u0442\u0443\u0434\u0435\u043d\u0442\u043e\u0432 \u043a\u0443\u0440\u0441\u0430 \u00ab\u0411\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u044c Linux\u00bb. \u0418\u043d\u0442\u0435\u0440\u0435\u0441\u043d\u043e \u0440\u0430\u0437\u0432\u0438\u0432\u0430\u0442\u044c\u0441\u044f \u0432 \u0434\u0430\u043d\u043d\u043e\u043c \u043d\u0430\u043f\u0440\u0430\u0432\u043b\u0435\u043d\u0438\u0438? \u0421\u043c\u043e\u0442\u0440\u0438\u0442\u0435 \u0437\u0430\u043f\u0438\u0441\u044c \u0442\u0440\u0430\u043d\u0441\u043b\u044f\u0446\u0438\u0438 \u043c\u0430\u0441\u0442\u0435\u0440-\u043a\u043b\u0430\u0441\u0441\u0430 \u0418\u0432\u0430\u043d\u0430 \u041f\u0438\u0441\u043a\u0443\u043d\u043e\u0432\u0430 \u00ab\u0411\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u044c \u0432 Linux \u0432 \u0441\u0440\u0430\u0432\u043d\u0435\u043d\u0438\u0438 \u0441 Windows \u0438 MacOS\u00bb \u0412 \u044d\u0442\u043e\u0439 \u0441\u0442\u0430\u0442\u044c\u0435 \u044f \u0440\u0430\u0441\u0441\u043a\u0430\u0436\u0443 \u043e \u0448\u0430\u0433\u0430\u0445 \u043f\u043e \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0435 DNS-\u0441\u0435\u0440\u0432\u0435\u0440\u0430 \u043d\u0430 RHEL 7 \u0438\u043b\u0438 CentOS 7. \u0414\u043b\u044f \u0434\u0435\u043c\u043e\u043d\u0441\u0442\u0440\u0430\u0446\u0438\u0438 \u044f \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u043b Red Hat Enterprise Linux 7.4. \u041d\u0430\u0448\u0430 \u0446\u0435\u043b\u044c\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"Yuri Gagarin\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/prohoster.info\/it\/blog\/administrirovanie\/poshagovoe-rukovodstvo-po-nastrojke-dns-servera-bind-v-chroot-srede-dlya-red-hat-rhel-centos-7\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 5.0.0.1\" \/>\n\t\t<meta property=\"og:locale\" content=\"it_IT\" \/>\n\t\t<meta property=\"og:site_name\" content=\"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"\ud83e\udd47\u041f\u043e\u0448\u0430\u0433\u043e\u0432\u043e\u0435 \u0440\u0443\u043a\u043e\u0432\u043e\u0434\u0441\u0442\u0432\u043e \u043f\u043e \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0435 DNS-\u0441\u0435\u0440\u0432\u0435\u0440\u0430 BIND \u0432 chroot \u0441\u0440\u0435\u0434\u0435 \u0434\u043b\u044f Red Hat (RHEL \/ CentOS) 7 | ProHoster\" \/>\n\t\t<meta property=\"og:description\" content=\"\u041f\u0435\u0440\u0435\u0432\u043e\u0434 \u0441\u0442\u0430\u0442\u044c\u0438 \u043f\u043e\u0434\u0433\u043e\u0442\u043e\u0432\u043b\u0435\u043d \u0434\u043b\u044f \u0441\u0442\u0443\u0434\u0435\u043d\u0442\u043e\u0432 \u043a\u0443\u0440\u0441\u0430 \u00ab\u0411\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u044c Linux\u00bb. \u0418\u043d\u0442\u0435\u0440\u0435\u0441\u043d\u043e \u0440\u0430\u0437\u0432\u0438\u0432\u0430\u0442\u044c\u0441\u044f \u0432 \u0434\u0430\u043d\u043d\u043e\u043c \u043d\u0430\u043f\u0440\u0430\u0432\u043b\u0435\u043d\u0438\u0438? \u0421\u043c\u043e\u0442\u0440\u0438\u0442\u0435 \u0437\u0430\u043f\u0438\u0441\u044c \u0442\u0440\u0430\u043d\u0441\u043b\u044f\u0446\u0438\u0438 \u043c\u0430\u0441\u0442\u0435\u0440-\u043a\u043b\u0430\u0441\u0441\u0430 \u0418\u0432\u0430\u043d\u0430 \u041f\u0438\u0441\u043a\u0443\u043d\u043e\u0432\u0430 \u00ab\u0411\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u044c \u0432 Linux \u0432 \u0441\u0440\u0430\u0432\u043d\u0435\u043d\u0438\u0438 \u0441 Windows \u0438 MacOS\u00bb \u0412 \u044d\u0442\u043e\u0439 \u0441\u0442\u0430\u0442\u044c\u0435 \u044f \u0440\u0430\u0441\u0441\u043a\u0430\u0436\u0443 \u043e \u0448\u0430\u0433\u0430\u0445 \u043f\u043e \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0435 DNS-\u0441\u0435\u0440\u0432\u0435\u0440\u0430 \u043d\u0430 RHEL 7 \u0438\u043b\u0438 CentOS 7. \u0414\u043b\u044f \u0434\u0435\u043c\u043e\u043d\u0441\u0442\u0440\u0430\u0446\u0438\u0438 \u044f \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u043b Red Hat Enterprise Linux 7.4. \u041d\u0430\u0448\u0430 \u0446\u0435\u043b\u044c\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/prohoster.info\/it\/blog\/administrirovanie\/poshagovoe-rukovodstvo-po-nastrojke-dns-servera-bind-v-chroot-srede-dlya-red-hat-rhel-centos-7\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:width\" content=\"350\" \/>\n\t\t<meta property=\"og:image:height\" content=\"350\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2019-10-31T19:12:14+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2019-10-31T19:12:14+00:00\" \/>\n\t\t<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"\ud83e\udd47Guida passo passo per la configurazione di un server DNS BIND in un ambiente chroot per Red Hat (RHEL \/ CentOS) 7 | ProHoster","description":"Questo articolo \u00e8 stato preparato per gli studenti del corso \"Sicurezza Linux\". Sei interessato a svilupparti in questo campo? Guarda la registrazione del workshop di Ivan Piskunov \"Sicurezza in Linux rispetto a Windows e MacOS\". In questo articolo parler\u00f2 dei passaggi per configurare un server DNS su RHEL 7 o CentOS 7. Per la dimostrazione, ho utilizzato Red Hat Enterprise Linux 7.4. Il nostro obiettivo","canonical_url":"https:\/\/prohoster.info\/it\/blog\/administrirovanie\/poshagovoe-rukovodstvo-po-nastrojke-dns-servera-bind-v-chroot-srede-dlya-red-hat-rhel-centos-7","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":null,"og:locale":"it_IT","og:site_name":"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b","og:type":"article","og:title":"\ud83e\udd47\u041f\u043e\u0448\u0430\u0433\u043e\u0432\u043e\u0435 \u0440\u0443\u043a\u043e\u0432\u043e\u0434\u0441\u0442\u0432\u043e \u043f\u043e \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0435 DNS-\u0441\u0435\u0440\u0432\u0435\u0440\u0430 BIND \u0432 chroot \u0441\u0440\u0435\u0434\u0435 \u0434\u043b\u044f Red Hat (RHEL \/ CentOS) 7 | ProHoster","og:description":"\u041f\u0435\u0440\u0435\u0432\u043e\u0434 \u0441\u0442\u0430\u0442\u044c\u0438 \u043f\u043e\u0434\u0433\u043e\u0442\u043e\u0432\u043b\u0435\u043d \u0434\u043b\u044f \u0441\u0442\u0443\u0434\u0435\u043d\u0442\u043e\u0432 \u043a\u0443\u0440\u0441\u0430 \u00ab\u0411\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u044c Linux\u00bb. \u0418\u043d\u0442\u0435\u0440\u0435\u0441\u043d\u043e \u0440\u0430\u0437\u0432\u0438\u0432\u0430\u0442\u044c\u0441\u044f \u0432 \u0434\u0430\u043d\u043d\u043e\u043c \u043d\u0430\u043f\u0440\u0430\u0432\u043b\u0435\u043d\u0438\u0438? \u0421\u043c\u043e\u0442\u0440\u0438\u0442\u0435 \u0437\u0430\u043f\u0438\u0441\u044c \u0442\u0440\u0430\u043d\u0441\u043b\u044f\u0446\u0438\u0438 \u043c\u0430\u0441\u0442\u0435\u0440-\u043a\u043b\u0430\u0441\u0441\u0430 \u0418\u0432\u0430\u043d\u0430 \u041f\u0438\u0441\u043a\u0443\u043d\u043e\u0432\u0430 \u00ab\u0411\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u044c \u0432 Linux \u0432 \u0441\u0440\u0430\u0432\u043d\u0435\u043d\u0438\u0438 \u0441 Windows \u0438 MacOS\u00bb \u0412 \u044d\u0442\u043e\u0439 \u0441\u0442\u0430\u0442\u044c\u0435 \u044f \u0440\u0430\u0441\u0441\u043a\u0430\u0436\u0443 \u043e \u0448\u0430\u0433\u0430\u0445 \u043f\u043e \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0435 DNS-\u0441\u0435\u0440\u0432\u0435\u0440\u0430 \u043d\u0430 RHEL 7 \u0438\u043b\u0438 CentOS 7. \u0414\u043b\u044f \u0434\u0435\u043c\u043e\u043d\u0441\u0442\u0440\u0430\u0446\u0438\u0438 \u044f \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u043b Red Hat Enterprise Linux 7.4. \u041d\u0430\u0448\u0430 \u0446\u0435\u043b\u044c","og:url":"https:\/\/prohoster.info\/it\/blog\/administrirovanie\/poshagovoe-rukovodstvo-po-nastrojke-dns-servera-bind-v-chroot-srede-dlya-red-hat-rhel-centos-7","og:image":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:secure_url":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:width":350,"og:image:height":350,"article:published_time":"2019-10-31T19:12:14+00:00","article:modified_time":"2019-10-31T19:12:14+00:00","article:publisher":"https:\/\/www.facebook.com\/prohoster","article:author":"https:\/\/www.facebook.com\/prohoster"},"aioseo_meta_data":{"post_id":"36537","title":null,"description":null,"keywords":null,"keyphrases":null,"primary_term":null,"canonical_url":null,"og_title":null,"og_description":null,"og_object_type":"default","og_image_type":"default","og_image_url":null,"og_image_width":null,"og_image_height":null,"og_image_custom_url":null,"og_image_custom_fields":null,"og_video":null,"og_custom_url":null,"og_article_section":null,"og_article_tags":null,"twitter_use_og":false,"twitter_card":"default","twitter_image_type":"default","twitter_image_url":null,"twitter_image_custom_url":null,"twitter_image_custom_fields":null,"twitter_title":null,"twitter_description":null,"schema":{"blockGraphs":[],"customGraphs":[],"default":{"data":{"Article":[],"Course":[],"Dataset":[],"FAQPage":[],"Movie":[],"Person":[],"Product":[],"ProductReview":[],"Car":[],"Recipe":[],"Service":[],"SoftwareApplication":[],"WebPage":[]},"graphName":"","isEnabled":true},"graphs":[]},"schema_type":null,"schema_type_options":null,"pillar_content":false,"robots_default":true,"robots_noindex":false,"robots_noarchive":false,"robots_nosnippet":false,"robots_nofollow":false,"robots_noimageindex":false,"robots_noodp":false,"robots_notranslate":false,"robots_max_snippet":null,"robots_max_videopreview":null,"robots_max_imagepreview":"large","priority":null,"frequency":null,"local_seo":null,"seo_analyzer_scan_date":"2026-01-22 03:44:19","breadcrumb_settings":null,"limit_modified_date":false,"reviewed_by":null,"ai":null,"created":"2021-03-01 01:43:32","updated":"2026-01-22 03:44:19","focus_keyword":null,"additional_keywords":null,"truseo_locale":null},"gt_translate_keys":[{"key":"link","format":"url"}],"_links":{"self":[{"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/posts\/36537","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/comments?post=36537"}],"version-history":[{"count":0,"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/posts\/36537\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/media\/27349"}],"wp:attachment":[{"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/media?parent=36537"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/categories?post=36537"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/tags?post=36537"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}