· KLDP.org · KLDP.net · KLDP Wiki · KLDP BBS ·
Docbook Sgml/DNS-HOWTO

You are not allowed to 'fullsearch'


DNS HOWTO

DNS HOWTO

Nicolai Langfeldt
Jamie Norrish
and others.

±èÁöȯ


http://www.freechal.com/linuxdocs

Version 3.1, $Date: 2004/01/30 01:26:44 $

HOWTO become a totally small time DNS admin.


1. ¼­¹®

À̹®¼­´Â LDPÀÇ ÀϺÎÀÔ´Ï´Ù.


1.1. ¹ýÀûÈ¿·Â(¿ø¹®±×´ë·Î ½ÇÀ½)

(C)opyright 1995-2001 Nicolai Langfeldt, Jamie Norrish & Co. Do not modify without amending copyright, distribute freely but retain copyright message.


1.2. µµ¿ò¿¡ ´ëÇÑ ½Å¿ë°ú ¿äû

ÀÌ ¹®¼­ ÃʾÈÀ» ¼öµµ ¾øÀÌ Àоî ÁÖ°í ¸¹Àº Á¦¾ÈÀ» ÇØÁØ Arnt Gulbrandsen ¾¾¿¡°Ô °¨»çÀÇ ¸»À» ÀüÇÏ´Â °ÍÀÌ ¼ø¼­¿¡ ¸ÂÀ» °Í °°´Ù. ¶ÇÇÑ e-mail·Î ÀÇ°ß°ú À¯¿ëÇÑ ³»¿ëÀ» º¸³½ ÁØ »ç¶÷µé¿¡°Ôµµ °¨»çÀÇ ¸»À» ÀüÇÑ´Ù.

ÀÌ ¹®¼­´Â ¿Ï°áµÈ ¹®¼­°¡ ¾Æ´Ï´Ù. DNS¸¦ ¼³Á¤ÇÏ¿© »ç¿ëÇÒ ¶§ ¹ß»ýÇÏ´Â ¹®Á¦Á¡À̳ª ±×¿¡ µû¸¥ ÇØ°áÃ¥µéÀÌ ÀÖÀ» °ÍÀÌ´Ù. ±×·¯ÇÑ ³»¿ëµéÀº e-mail·Î º¸³» Áشٸé, ´ÙÀ½ ¹ø¿¡´Â ´õ ÁÁÀº DNS-HOWTO°¡ ³ª¿Ã ¼ö ÀÖÀ» °ÍÀÌ´Ù. money³ª ÀÇ°ß ¶Ç´Â Àǹ®Á¡Àº janl (at) math.uio.no ¾ÕÀ¸·Î º¸³» ÁÖ±æ ¹Ù¶õ´Ù. ¾Æ´Ï¸é ³» DNS Ã¥À» »ç±â ¹Ù¶õ´Ù. ¾Æ´Ï¸é ¿©·¯ Á¤º¸¸¦ ã¾Æº¸±æ ¶ÇÇÑ ¹Ù¶õ´Ù. e-mailÀ» º¸³»±â Àü¿¡ ¹Ýµå½Ã ÀÚ½ÅÀÇ e-mail ÁÖ¼Ò°¡ ¿Ã¹Ù¸¥Áö È®ÀÎÇϵµ·Ï ÇÑ´Ù. ±×·¡¾ß ´ä½ÅÀ» ¹ÞÀ» ¼ö ÀÖ´Ù´Â °ÍÀº ´ç¿¬ÇÑ À̾߱â ÀÏ °ÍÀÌ´Ù. ¶ÇÇÑ ¸ÞÀÏÀ» º¸³»±â Àü¿¡ Áú¹®°ú ´ä ÀýÀ» ÀÐ¾î º¸±â ¹Ù¶õ´Ù. Çϳª´õ. ³ª´Â ³ë¸£¿þÀ̾î¿Í ¿µ¾î¸¸ ÇÒ ÁÙ ¾È´Ù´Â °Íµµ ¾Ë¾ÆµÎ±æ.

ÀÌ HOWTO¹®¼­´Â LDPÀÇ ÀϺηΠ1995³âºÎÅÍ ÀÖ¾ú°í 2000³â±îÁö °°Àº ÁÖÁ¦·Î ±ÛÀ» ½è´Ù. ÀÌ°ÍÀÌ HOWTO¹®¼­ÀÌ°í Ã¥¿¡ À¯»çÇÑ ³»¿ëÀÌ ¸¹¾Æµµ ÀÌ°ÍÀÌ ÀÌ°ÍÀú°Í Èñ¼®Çϰųª ½ÃÁßÀÇ Ã¥À» ¹è³¤°ÍÀÌ ¾Æ´ÔÀ» ¾Ë¾ÆÁÖ±æ ¹Ù¶õ´Ù. ±×¸®°í ÀÌÃ¥ÀÌ Âü°íÇÑ ¹®ÇåÀº ³¡¿¡¼­ È®ÀÎÇÒ ¼ö ÀÖ´Ù. ÀÌ HOWTO¸¦ Àд ºÐµéÀÌ DNSÀÇ ¾î·Á¿îÁ¡À» ¿©±â¿¡¼­ ÇØ°áÇϱ⸦ ¹Ù¶õ´Ù. ¶ÇÇÑ ÀÌ ¹®¼­´Â Ã¥À» º¸Á¶ÇÏ´Â °ÍÀÌÁö¸¸, ¹Ý´ë·Î ÀÌ ¹®¼­¸¦ º¸Á¶Çϱâ À§ÇØ Ã¥À» º¸´Â °æ¿ìµµ ÀÖÀ» °ÍÀÌ´Ù. HOWTO°¡ Ã¥À» »ý±â°Ô Çß°í Ã¥ÀÌ ÀÌ HOWTO ¹öÁ¯À» 3À¸·Î ¸¸µé¾ú´Ù. ³ª¿¡°Ô ±âȸ¸¦ ÁØ Que ÃâÆǻ翡 °¨»ç¸¦ ÇÏ´Â ¹ÙÀÌ´Ù.


1.3. ÇåÁ¤

ÀÌ HOWTO¸¦ Anne Line Norheim Langfeldt¿¡ ¹ÙÄ£´Ù. ±×³à´Â ÀÌ ¹®¼­¸¦ ÀÐ¾î º¸Áöµµ ¾Ê°ÚÁö¸¸, ±×³à´Â Á¤¸»·Î Ưº°ÇÑ ¿©ÀÚÀÌ´Ù.


2. ¼Ò°³

DNS¶õ ¹«¾ùÀΰ¡?

DNS´Â Domain Name ServerÀÌ´Ù. DNS´Â ¸ðµç ³Ý»ó¿¡ ¼ÓÇØÀÖ´Â ÄÄÇ»ÅÍ°¡ °¡Áö°í ÀÖ´Â À̸§À» IPÁÖ¼Ò·Î ¹Ù²Ù¾î ÁÖ´Â ¿ªÇÒÀ» ÇÑ´Ù. ÀÌ°ÍÀº À̸§À» IP·Î ¹Ù²Ù¾î Áֱ⵵ ÇÏ°í IP¸¦ À̸§À̳ª ´Ù¸¥ °ÍÀ¸·Î ¹Ù²Ù¾î Áֱ⵵ ÇÑ´Ù(ȤÀº mappingÇÑ´Ù°íµµ ÇÑ´Ù). ÀÌ HOWTO ¹®¼­´Â ¸®´ª½º¿¡¼­ Ư¼öÈ­µÈ ¸î°¡Áö ºÎºÐÀ» Æ÷ÇÔÇÑ À¯´Ð½º½Ã½ºÅÛÀÇ ÀÌ¿Í°°Àº mapping ¿ë·Ê¿¡ ´ëÇØ Á¤ÀÇÇÒ °ÍÀÌ´Ù.

ÀÌ·¯ÇÑ mappingÀº ´Ü¼øÇÏ°Ô´Â ftp.linux.org.°°Àº ÄÄÇ»ÅÍÀÇ À̸§°ú 199.249.150.4 °°Àº IP ³Ñ¹ö(ȤÀº ¾îµå·¹½º)»çÀÌÀÇ Á¶ÇÕÀ̶ó°í º¼ ¼ö ÀÖ´Ù. ¶ÇÇÑ DNS´Â ´Ù¸¥ ¹æ½ÄÀÇ mappingµµ ÇÒ ¼ö Àִµ¥ ÀÌ°ÍÀº 'reverse mapping'À̶ó°í Çϸç IP¸¦ ÄÄÇ»ÅÍ À̸§À¸·Î ¹Ù²Ù¾î ÁÖ´Â °ÍÀÌ´Ù.

DNS´Â ³×Æ®¿öÅ© °ü¸® ºÎºÐ¿¡¼­ »ó´çÈ÷ ¸ðÈ£ÇÑ ºÎºÐÀÌÁö¸¸ ½ÇÁ¦·Î ±×·¸°Ô ¾î·ÆÁö´Â ¾Ê´Ù. ÀÌ ¹®¼­´Â ¸î°¡Áö ºÎºÐÀ» ¸íÈ®ÇÏ°Ô ÇÏ·Á°í ³ë·ÂÇÒ °ÍÀÌ´Ù. µµ¸ÞÀο¡ ´ëÇÑ 1Â÷ DNS¼­¹ö¿¡ ´ëÇÑ ¼³Á¤°ú Äɽ¬¼­¹ö¸¦ Æ÷ÇÔÇؼ­ °£´ÜÇÑ DNS name server¿¡ ´ëÇÑ ¼³Á¤ÀÛ¾÷¿¡ ´ëÇØ ±â¼úÇÒ °ÍÀÌ´Ù. ´õ º¹ÀâÇÑ ¼³Á¤Àº ÀÌ ¹®¼­ÀÇ Q&AºÎºÐÀ» ÂüÁ¶Çϱæ.... ÀÌ ¹®¼­¿¡ ¾ø´Â ºÎºÐÀº »ó¼¼ÇÑ ¹®¼­¸¦ ÂüÁ¶ÇÏ±æ ¹Ù¶õ´Ù. ¸¶Áö¸· Àå¿¡ »ó¼¼ÇÑ ¹®¼­¿¡ ´ëÇÑ ºÎºÐÀ» ±â¼úÇÒ °ÍÀÌ´Ù.

½ÃÀÛÇϱâ Àü¿¡ telnetÀ» »ç¿ë°¡´ÉÇÏ°Ô Çϸç, ´Ù¸¥ ³Ý»óÀÇ ¸ðµç ¿¬°áÀÌ °¡´ÉÇÏ°Ô ¼³Á¤ÀÌ µÇ¾ß ÇÑ´Ù. ±×¸®°í telnet 127.0.0.1 ÀÌ ½ÇÇà½Ã ÀÚ½ÅÀÇ ÄÄÇ»ÅÍ¿¡ ´ëÇÑ Á¤º¸¸¦ °¡Á®¿Í¾ß ÇÑ´Ù.(½ÇÇàÇØ º¸½Ã±æ) ¶ÇÇÑ ½ÃÀۺκÐÀÎ /etc/nsswitch.conf, /etc/resolv.conf, /etc/hosts ÆÄÀÏÀÌ ¿Ã¹Ù¸£°Ô ¼³Á¤µÇ¾î¾ß ÇÑ´Ù. ¿©±â¿¡¼­´Â À̵éÀÇ ±â´É¿¡ ´ëÇؼ­´Â ¼³¸íÇÏÁö ¾Ê´Â´Ù. ÀÌ·¯ÇÑ Àü¹ÝÀûÀÎ ±â´ÉÀÌ ¼öÇàÀÌ µÇÁö ¾Ê´Â´Ù¸é HowtoÀÇ Networking ºÎºÐÀ» ÂüÁ¶ÇÏ°í Àо±æ ¹Ù¶õ´Ù. (¸ð¸£¸é ¾Ë¾Æ¼­ °øºÎÇ϶ó´Â ¶æ°°±º....--.)

ÀÌ ¹®¼­¿¡¼­ 'ÄÄÇ»ÅÍ'´Â ÀϹÝÀûÀ¸·Î ÀÌ·¯ÇÑ DNS ¼³Á¤ÀÌ µÇ¾î ÀÖ´Â °ÍÀ» ÀǹÌÇÏ¸ç ±×¿ÜÀÇ ÀϹÝÀûÀÎ ÄÄÇ»Å͸¦ ÅëĪÇÏ´Â ºÎºÐÀº ³×Æ®¿öÅ©¿Í ¹«°üÇÑ °æ¿ìÀÌ´Ù.

À̸§ÁúÀÇ(name query)¸¦ ¸·´Â ¹æÈ­º®Àº Á¦°ÅµÇ¾ß Çϸç Ưº°ÇÑ ¼³Á¤ÀÌ ¿ä±¸µÇ¸é ¿ª½Ã Q&A¸¦ Âü°íÇ϶ó.

À¯´Ð½º »óÀÇ ³×ÀÓ¼­¹ö±â´ÉÀºnamed¶ó´Â ÇÁ·Î±×·¥¿¡ ÀÇÇØ ÀÌ·ç¾î Áø´Ù. ÀÌ°ÍÀº BIND ÆÐÅ°Áö¿¡ ÀÖ´Â °ÍÀ̸ç ISC(Internet Sotfware Consortium)ÀÌ Á¦°øÇÑ´Ù. ÀÌ named´Â °ÅÀÇ ¸ðµç ¸®´ª½º ÇÁ·Î±×·¥¿¡ Æ÷ÇԵǾî ÀÖ´Â °ÍÀ̸ç ÀÌ°ÍÀº ÀϹÝÀûÀ¸·Î BIND ÆÐÅ°Áö·Î ¼³Ä¡µÈ °æ¿ì /usr/sbin/namedºÎºÐ¿¡ À§Ä¡ÇÏ°Ô µÈ´Ù.

¸¸¾à ÄÄÇ»ÅÍ¿¡ named°¡ ÀÖÀ¸¸é ¹Ù·Î »ç¿ëÀÌ °¡´ÉÇÏ´Ù. ¸¸¾à¿¡ ¼³Ä¡°¡ µÇÀÖÁö ¾Ê´Ù¸é ftp://ftp.isc.org/isc/bind/src/¿¡¼­ ÃֽŠ¹öÁ¯°ú ¼Ò½º¸¦ ±¸ÇÒ ¼ö ÀÖ´Ù. ÀÌ°ÍÀº BIND ¹öÁ¯ 8¿¡ ´ëÇÑ ¹®¼­ÀÌ´Ù. ±¸¹öÁ¯ÀÎ ¹öÁ¯4ÀÇ °æ¿ì´Â http://www.math.uio.no/~janl/DNS/¿¡¼­ ÀڷḦ ±¸ÇÒ ¼ö ÀÖÀ» °ÍÀÌ´Ù. ¸¸¾à ¹öÁ¯ÀÌ 8À̶ó¸é namedÀÇ manpage¿¡¼­ named.conf¸¦ ¾ð±ÞÇÒ °ÍÀÌ°í ¹öÁ¯ÀÌ 4¶ó¸é named.boot¿¡ ´ëÇÑ ¾ð±ÞÀ» ÇÒ °ÍÀÌ´Ù. ¸¸¾à ¹öÁ¯ 4¸¦ °¡Áö°í ÀÖ´Ù¸é º¸¾ÈÀÇ Ãø¸éÀ» °í·ÁÇؼ­ ¹öÁ¯ 8·Î ¹öÁ¯¾÷À» ÇØ¾ß ÇÒ °ÍÀÌ´Ù

DNS´Â ±¤¹üÀ§ÇÑ ³Ý»óÀÇ µ¥ÀÌÅͺ£À̽ºÀÌ´Ù. ¹«¾ùÀÌ »ðÀԵǾî¾ß ÇÏ´ÂÁö ½ÅÁßÇÏ°Ô °í·ÁÇØ¾ß ÇÑ´Ù. ¾µ¸ð¾ø´Â Á¤º¸°¡ µé¾î°£´Ù¸é º¸´Â ÀÌµé ¿ª½Ã ¾µ¸ð ¾ø´Â Á¤º¸¸¦ ¾ò°Ô µÈ´Ù. DNS¸¦ °£¼ÒÇÏ°í ÇÊ¿äÇÑ °ÍÀ¸·Î ü¿ö¾ß Çϸç, ±×·¯¸é ÁÁÀº ¼­ºñ½º¸¦ ¹Þ°Ô µÉ °ÍÀÌ´Ù. »ç¿ë¹ý, À¯Áö¹ý, µð¹ö±ë¹ýÀ» ¹è¿ì¸é À߸øµÈ °ü¸®·Î ÀÎÇÑ ³Ý»ó¿¡¼­ÀÇ ½ÇÆи¦ ¹æÁöÇÏ´Â ÈǸ¢ÇÑ À¯Áö¸¦ ÇÏ°Ô µÉ °ÍÀÌ´Ù.

작은 정보: ÀÌ·¯ÇÑ ÆÄÀÏ¿¡ ´ëÇÑ ¸ðµç ¹é¾÷ ÆÄÀÏÀ» ¸¸µå½Ã¿À. ±×·¡¼­ ÀÛ¾÷ÀÌÈÄ ÀÛµ¿ÀÌ µÇÁö ¾ÊÀ¸¸é ´Ù½Ã º¹±¸ÇÒ ¼ö ÀÖµµ·Ï ´ëºñÇϽñæ....


3. caching name serverÀÇ ±¸Ãà

¿ì¼± DNS ¼³Á¤Àº ´ÙÀ̾ó¾÷, ÄÉÀ̺í¸ðµ©, ADSL »ç¿ëÀڵ鿡°Ô ¸Å¿ì À¯¿ëÇÏ´Ù.

·¹µåÇòÀ̳ª ·¹µåÇò ±â¹Ý ¹èÆ÷º»Àº ÀÌ¹Ì bind³ª bind-utils¿Í caching nameserver°¡ ¼³Ä¡µÇ¾ú´Ù. µ¥ºñ¾È »ç¿ëÀÚ¶ó¸é bind¿Íbind-doc°¡ ¼³Ä¡µÇ¾úÀ» °ÍÀÌ´Ù. ¹°·Ð ¼³Ä¡½Ã ÀÌ·± ¹®¼­Ã³·³ ÀÚ¼¼ÇÏ°Ô ¼³Ä¡¿¡ ´ëÇØ ³ª¿ÀÁö ¾ÊÀ» °ÍÀÌ°í, ¼³Ä¡µÈ ÆÄÀÏÀ» ¼³Á¤ÇÏ´Â ¹ýÀ» °°ÀÌ Àоî¾ß ÇÒ °ÍÀÌ´Ù.

caching nameserver´Â ´ÜÁö À̸§ÁúÀÇ¿¡ ´ëÇÑ ´ë´ä¸¸À» ã°í ±× ÇØ´äÀ» ±â¾ïÇؼ­ ´ÙÀ½¿¡ ÇÊ¿äÇÒ¶§ »ç¿ë°¡´ÉÇÏ°Ô ÇÑ´Ù. ÀÌ°ÍÀº ±â´Ù¸®´Â ½Ã°£À» ´ÜÃà½Ãų ¼ö ÀÖ´Ù.

¿ì¼± /etc/named.conf (Debian: /etc/bind/named.conf)°¡ ÇÊ¿äÇϸç ÀÌ°ÍÀº named°¡ ±¸µ¿µÉ ¶§ ÇÊ¿äÇÑ °ÍÀÌ´Ù.Æ÷ÇÔµÈ ³»¿ëÀ» »ìÆ캸ÀÚ

// Config file for caching only name server

options {
	directory "/var/named";

	// Uncommenting this might help if you have to go through a
	// firewall and things are not working out.  But you probably
	// need to talk to your firewall admin.

	// query-source port 53;
};

zone "." {
        type hint;
        file "root.hints";
};

zone "0.0.127.in-addr.arpa" {
        type master;
        file "pz/127.0.0";
};

¸®´ª½º ¹èÆ÷º»ÀÌ ¿©±â¿¡¼­ ¾ð±ÞµÇ´Â ¸ðµç Á¾·ùÀÇ ÆÄÀÏÀ̸§°ú ´Ù¸¥ À̸§À» ¾µÁöµµ ¸ð¸¦ ÀÏÀÌÁö¸¸ ¾ÈÀÇ ³»¿ëÀ» À§¿Í °°ÀÌ ¸ðµÎ °°´Ù.

'directory' : namedÇÁ·Î±×·¥ÀÌ ¼³Á¤ ÆÄÀÏÀ» ã´Â À§Ä¡¸¦ ÁöÁ¤ÇØ ÁØ´Ù. named¿¡ °ü·ÃµÈ ÆÄÀϵéÀº À§¿Í °°´Ù. ¿¹¸¦ µé¾î ÀÌÈÄ¿¡ pz¶õ µð·ºÅ丮 °¡ ³ª¿À¸é ±×°ÍÀº /var/named/pz¶ó´Â °ÍÀ» ÀǹÌÇÏ´Â °ÍÀÏ °ÍÀÌ´Ù. À§ÀÇ ¿¹½Ã¿Í °°Àº ¼³Á¤ÀÌ ÀϹÝÀûÀÎ ¼³Á¤ÀÌ´Ù.

/var/named/root.hints¶ó´Â ÆÄÀÏÀÌ ¾È¿¡ ÁöÁ¤µÇ ÀÖ´Ù. /var/named/root.hints´Â ¾Æ·¡ÀÇ ³»¿ëÀ» Æ÷ÇÔÇØ¾ß ÇÑ´Ù. (¸¸¾à ÀÌ ¹®¼­¿¡¼­ ÀÌ ³»¿ëµéÀ» Àß¶ó¼­ Ã·ºÎÇÏ°Ô µÈ´Ù¸é, ÆÄÀÏ ¾Õ¿¡ ÀÖ´Â °ø¹éµéÀ» Á¦°ÅÇϱ⸦ ¹Ù¶õ´Ù. ¸ðµç ¶óÀÎÀÇ ½ÃÀÛÀº °ø¹éÀÌ ¾ø°Ô ±¸¼ºÀÌ µÇ¾î ÀÖ´Ù. ¸î¸î ¹®¼­ ÇÁ·Î±×·¥µéÀº ÀÎÀ§ÀûÀ¸·Î ÀÌ·¯ÇÑ °ø¹éµéÀ» ¸¸µé±âµµ Çϴµ¥ ¸ðµç Ãʱ⠰ø¹éµéÀº Á¦°ÅµÇ¾ß ÇÑ´Ù.

;
; There might be opening comments here if you already have this file.
; If not don't worry.
;
.                       6D IN NS        M.ROOT-SERVERS.NET.
.                       6D IN NS        I.ROOT-SERVERS.NET.
.                       6D IN NS        E.ROOT-SERVERS.NET.
.                       6D IN NS        D.ROOT-SERVERS.NET.
.                       6D IN NS        A.ROOT-SERVERS.NET.
.                       6D IN NS        H.ROOT-SERVERS.NET.
.                       6D IN NS        C.ROOT-SERVERS.NET.
.                       6D IN NS        G.ROOT-SERVERS.NET.
.                       6D IN NS        F.ROOT-SERVERS.NET.
.                       6D IN NS        B.ROOT-SERVERS.NET.
.                       6D IN NS        J.ROOT-SERVERS.NET.
.                       6D IN NS        K.ROOT-SERVERS.NET.
.                       6D IN NS        L.ROOT-SERVERS.NET.
;
M.ROOT-SERVERS.NET.     6D IN A         202.12.27.33
I.ROOT-SERVERS.NET.     6D IN A         192.36.148.17
E.ROOT-SERVERS.NET.     6D IN A         192.203.230.10
D.ROOT-SERVERS.NET.     6D IN A         128.8.10.90
A.ROOT-SERVERS.NET.     6D IN A         198.41.0.4
H.ROOT-SERVERS.NET.     6D IN A         128.63.2.53
C.ROOT-SERVERS.NET.     6D IN A         192.33.4.12
G.ROOT-SERVERS.NET.     6D IN A         192.112.36.4
F.ROOT-SERVERS.NET.     6D IN A         192.5.5.241
B.ROOT-SERVERS.NET.     6D IN A         128.9.0.107
J.ROOT-SERVERS.NET.     6D IN A         198.41.0.10
K.ROOT-SERVERS.NET.     6D IN A         193.0.14.129
L.ROOT-SERVERS.NET.     6D IN A         198.32.64.12

ÀÌ ÆÄÀÏÀº ¼¼»ó¿¡ Á¸ÀçÇÏ´Â root name server¿¡ ´ëÇÏ¿© ±â¼úÇØ ³õ´Â´Ù. ÀÌ ¼­¹öµéÀº ½Ã°£¸¶´Ù ¹Ù²î°í Ç×»ó ÇöÀç »óÅ·ΠÀ¯ÁöµÇ¾ß ÇÑ´Ù. À¯Áö¼½¼Ç(maintain section)¿¡¼­ ¾î¶² ¹æ½ÄÀ¸·Î ¾÷µ¥ÀÌÆ®°¡ ÀÌ·ç¾î Áö´ÂÁö È®ÀÎÇϱæ....

named.confÀÇ ¸¶Áö¸· ºÎºÐÀÎ zone ºÎºÐ¿¡ ´ëÇؼ­´Â ¸¶Áö¸· Àå¿¡ ±â¼úÇØ ³õ±â·Î ÇÑ´Ù. Áö±ÝÀº ´ÜÁö pz µð·ºÅ丮 ¾È¿¡ ÀÖ´Â 127.0.0À̶ó´Â ÆÄÀÏ ±¸¼º¿¡ ´ëÇØ º¸±â·Î ÇÑ´Ù. (´©Â÷ À̾߱â ÇÏÁö¸¸ À߶ó ³ÖÀ» ½Ã Ãʱ⠰ø¹éÀº Á¦¿ÜÇ϶ó....)

$TTL 3D
@               IN      SOA     ns.linux.bogus. hostmaster.linux.bogus. (
				1       ; Serial
				8H	; Refresh
				2H      ; Retry
				4W	; Expire
				1D)	; Minimum TTL
			NS      ns.linux.bogus.
1			PTR	localhost.

´ÙÀ½À¸·Î/etc/resolv.confºÎºÐÀ» È®ÀÎ Çϵµ·Ï ÇÏÀÚ.

search subdomain.your-domain.edu your-domain.edu
nameserver 127.0.0.1

'search'ºÎºÐÀº ¿¬°áÇÏ°íÀÚ Çϴ ȣ½ºÆ® À̸§Àº ¾î´À µµ¸ÞÀο¡¼­ ã¾ÆÁ®¾ß Çϴ°¡¸¦ °áÁ¤ÇØ ÁØ´Ù.`nameserver'ºÎºÐÀº nameserverÀÇ ÁּҺκÐÀ» ³ªÅ¸³»´Âµ¥ À§¿Í °°Àº °æ¿ì´Â named°¡ ±¸µ¿µÇ´Â ¼­¹ö ÀÚ½ÅÀ» ÀǹÌÇÑ´Ù.(127.0.0.1 ÀÌ Á¤»óÀÌ´Ù. ´Ù¸¥ ÄÄÇ»Å͵éÀÌ ¸¶Âù°¡Áö·Î ÀÌ ÁÖ¼Ò¸¦ °¡Áö°í ÀÖ´Ù°í Çصµ ¹®Á¦µÉ °Í ¾ø´Ù.) ¿øÇÑ´Ù¸é `nameserver'ºÎºÐ¿¡ ¿©·¯ nameserverµéÀ» ¾µ ¼öµµ ÀÖ´Ù. (Note1:named µ¥¸óÀÌ ÀÌ ÆÄÀÏÀ» Àд °ÍÀº ¾Æ´Ï´Ù. named°¡ ÀÛµ¿ÇÏ´Â °ÍÀ» ÀÌ¿ëÇÏ´Â resolverµéÀÌ Àд´Ù, Note2: ÀÌ ÆÄÀÏ(resolv.conf)¿¡¼­ domainÀ̶õ ¿ë¾î°¡ »ç¿ëµÈ´Ù. ±×·¯³ª "search"¿Í "domain"ÀÌ °°ÀÌ »ç¿ëµÇÁø ¾Ê´Â´Ù. µÑÁß Çϳª¸¸ÀÌ ÀÛµ¿ÇÒ °ÍÀÌ´Ù.)

ÀÌ·¯ÇÑ ÆÄÀÏÀÇ ÀÛµ¿À» È®ÀÎÇϱâ À§Çؼ­: ¸¸¾à client°¡ foo¶ó´Â °ÍÀ» ã´Â´Ù¸é, foo.subdomain.your-domain.eduÀ» ¿ì¼± È®ÀÎÇÏ°í, ±×¸®°í ³ª¼­ foo.your-domain.edu, ¸¶Áö¸·À¸·Î foo. ¸¦ ã°Ô µÈ´Ù. searchºÎºÐ¿¡¼­ ³Ê¹«¸¹Àº µµ¸ÞÀÎÀ» ³Ö±â ¾Ê´Â°Ô ÁÁ´Ù. °á±¹ ±âÀçµÈ ¸ðµç ºÎºÐÀ» ã´Âµ¥ ½Ã°£ÀÌ ¼Ò¿äµÇ±â ¶§¹®ÀÌ´Ù.

ÀÌ ¿¹¿¡¼­ subdomain.your-domain.edu¿¡ ¼ÓÇØÀÖ´Ù°í º¼¶§, ¿©·¯ºÐµéÀÇ ÄÄÇ»ÅÍ´Â your-machine.subdomain.your-domain.edu¶ó°í ºÒ¸®°Ô µÉ °ÍÀÌ´Ù. ÀÌ·¯ÇÑ search ¶óÀο¡ ¿©·¯ºÐµéÀÇ TLD(Top Level Domain, ¿¹¸¦µé¾îedu)À» Æ÷ÇÔÇÏ¸é ¾ÈµÈ´Ù. ¸¸¾à ´Ù¸¥ µµ¸ÞÀÎÀ» ¿¬°áÇÏ·Á¸é ¿¹½Ã¿Í °°ÀÌ Ãß°¡¿¬°áÇÏ¸é µÈ´Ù.

search subdomain.your-domain.edu your-domain.edu other-domain.com

Á¤È®È÷ À̾߱â ÇÑ´Ù¸é ÀÌ·± ¿¹¸¦ ¹ÙÅÁÀ¸·Î ½ÇÁ¦ µµ¸ÞÀθíÀ» ½á¾ßÇÑ´Ù. µµ¸ÞÀÎ ¸í ¸¶Áö¸·¿¡ Á¡ÀÌ ¾ø´Ù´Â °ÍÀ» À¯ÀÇÇÏÀÚ. Áß¿äÇÏ´Ù. ´Ù½Ã »ó±âÇϱæ....


3.1. namedÀÇ ½ÃÀÛ

ÀÌÁ¦ named¸¦ ½ÃÀÛÇÒ ½Ã°£ÀÌ´Ù. ¸¸¾à¿¡ ÀüÈ­Á¢¼Ó½ÄÀ̸é Á¢¼ÓºÎÅÍ Çضó. 'ndc start'¶ó°í ÄÚµùÇÏ°í ½ÇÇàÇØ º¸±æ... ¿É¼ÇÀº ¾øÀÌ ½ÇÇàÇÑ´Ù. µ¥¸óÀÌ »ý¼ºµÇÁö ¾ÊÀ¸¸é '/usr/sbin/ndc start'¶ó°í ÄÚµùÇؼ­ ½ÇÇàÇØ º¸½Ã±â¸¦. ±×·¡µµ ¾ÈµÇ¸é Q&A¸¦ ÂüÁ¶Ç϶ó. named°¡ ±¸µ¿µÇ´Â µ¿¾È¿¡ syslog ÆÄÀÏÀ» º¸¸é ÀÌ·¯ÇÑ ½ÄÀÇ °á°ú¸¦ º¸°Ô µÉ °ÍÀÌ´Ù.(º¸Åë ÀÌ logÆÄÀÏÀº /var/adm/messages¾È¿¡ Àְųª/var/log ¾È¿¡ À§Ä¡ÇÏ°Ô µÈ´Ù. ÀÌ °á°ú¸¦ º¸·Á¸é 'tail -f /var/log/messages' ¸¦ ÀÔ·ÂÇÏ¸é µÈ´Ù.

(\Àº ¿¬°áµÇ´Â ´ÙÀ½ÁÙÀ» À̾߱âÇÑ´Ù.)

Dec 15 23:53:29 localhost named[3768]: starting.  named 8.2.2-P7 \
		Fri Nov 10 04:50:23 EST 2000 ^Iprospector@porky.\
		devel.redhat.com:/usr/src/bs/BUILD/bind-8.2.2_P7/\
		src/bin/named
Dec 15 23:53:29 localhost named[3768]: hint zone "" (IN) loaded\
		(serial 0)
Dec 15 23:53:29 localhost named[3768]: Zone "0.0.127.in-addr.arpa"\
		(file pz/127.0.0): No default TTL set using SOA\
		minimum instead
Dec 15 23:53:29 localhost named[3768]: master zone\
		"0.0.127.in-addr.arpa" (IN) loaded (serial 1)
Dec 15 23:53:29 localhost named[3768]: listening on [127.0.0.1].53 (lo)
Dec 15 23:53:29 localhost named[3768]: listening on [10.0.0.129].53\
		(wvlan0)
Dec 15 23:53:29 localhost named[3768]: Forwarding source address is\
		[0.0.0.0].1034
Dec 15 23:53:29 localhost named[3769]: Ready to answer queries.

¸¸¾à ¿©±â¿¡ ¿¡·¯ ¸Þ½ÃÁö°¡ ³ª¿Â´Ù¸é ¹º°¡ ½Ç¼ö°¡ ÀÖ´Â °ÍÀÌ´Ù. named °¡ À§ ¿¹¿¡¼­Ã³·³ ³ª¿À´Â ÆÄÀϵéÀ» ÁöÁ¤ÇØ Áֱ⠶§¹®¿¡ ¿¡·¯½Ã ´Ù½Ã ¿øÁ¡À¸·Î µ¹¾Æ°¡¼­ ¿©±â¿¡ ³ª¿À´Â ÆÄÀÏÀ» üũÇϵµ·Ï ÇÏÀÚ.

´ÙÀ½Àº ¼Â¾÷µÈ ºÎºÐÀ» üũÇØ º¸µµ·Ï ÇÑ´Ù. ÀüÅëÀûÀ¸·Î nslookup ÆÄÀÏÀ» »ç¿ëÇßÁö¸¸ ¿äÁòÀº dig dig¸¦ »ç¿ëÇÑ´Ù.

$ dig -x 127.0.0.1       

; <<>> DiG 8.2 <<>> -x 
;; res options: init recurs defnam dnsrch
;; got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 4
;; flags: qr aa rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 1, ADDITIONAL: 0
;; QUERY SECTION:
;;      1.0.0.127.in-addr.arpa, type = ANY, class = IN

;; ANSWER SECTION:
1.0.0.127.in-addr.arpa.  1D IN PTR  localhost.

;; AUTHORITY SECTION:
0.0.127.in-addr.arpa.   1D IN NS        ns.penguin.bv.

;; Total query time: 30 msec
;; FROM: lookfar to SERVER: default -- 127.0.0.1
;; WHEN: Sat Dec 16 00:16:12 2000
;; MSG SIZE  sent: 40  rcvd: 110

ÀÌ·¯ÇÑ ½ÄÀ¸·Î ³ª¿Â´Ù¸é Á¦´ë·Î µ¿ÀÛÇÏ´Â °ÍÀÌ´Ù. ±×·¸Áö ¾ÊÀ¸¸é µ¹¾Æ°¡¼­ ´Ù½Ã óÀ½ºÎÅÍ Ã¼Å©ÇØ º¸µµ·Ï. named.conf¸¦ ¼öÁ¤ÇÒ¶§ ¸¶´Ù ndc restart¸¦ ¼öÇàÇØ¾ß ÇÑ´Ù.

ÀÌÁ¦ ÁúÀǸ¦ ´øÁ®º¸ÀÚ. ´ç½Å°ú °¡±îÀÌ ÀÖ´Â ÄÄÇ»Å͸¦ Á¶»çÇØ ºÁ¶ó. ³ª´Â ¿À½½·Î´ëÇÐÀÇ pat.uio.no°¡ Á¦ÀÏ °¡±õ´Ù.

$ig pat.uio.no

; <<>> DiG 8.2 <<>> pat.uio.no 
;; res options: init recurs defnam dnsrch
;; got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 4
;; flags: qr aa rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 3, ADDITIONAL: 3
;; QUERY SECTION:
;;      pat.uio.no, type = A, class = IN

;; ANSWER SECTION:
pat.uio.no.             1D IN A         129.240.130.16

;; AUTHORITY SECTION:
uio.no.                 1D IN NS        nissen.uio.no.
uio.no.                 1D IN NS        ifi.uio.no.
uio.no.                 1D IN NS        nn.uninett.no.

;; ADDITIONAL SECTION:
nissen.uio.no.          1D IN A         129.240.2.3
ifi.uio.no.             1H IN A         129.240.64.2
nn.uninett.no.          1D IN A         158.38.0.181

;; Total query time: 112 msec
;; FROM: lookfar to SERVER: default -- 127.0.0.1
;; WHEN: Sat Dec 16 00:23:07 2000
;; MSG SIZE  sent: 28  rcvd: 162

¿©±â¿¡¼­ dig´Â named¿¡°Ô pat.uio.no¶ó°í ¸íĪµÈ ±â°è¸¦ ãÀ¸¶ó°í ¿äûÇÏ°Ô µÇ°í ±×·¯¸é root.hintsÆÄÀÏ¿¡ ¸í½ÃµÈ name serverµé Áß¿¡ Çϳª¿¡ Á¢¼ÓÇÏ°Ô µÇ¸ç, ±×°÷À¸·Î ºÎÅÍ µµ´ÞÇÏ´Â ¹æ¹ýÀ» Áú¹®ÇÑ´Ù. °á°ú¸¦ ¾ò±â Àü¿¡ ¾à°£ÀÇ ½Ã°£ÀÌ °É¸± ¼öµµ Àִµ¥ ÀÌ°ÍÀº /etc/resolv.conf ¿¡ ÁöÁ¤µÈ ¸ðµç µµ¸ÞÀÎÀ» ãÀ» °æ¿ì°¡ Àֱ⠶§¹®ÀÌ´Ù. flag: ºÎºÐÀÇ aaºÎºÐÀ» ÁÖ¸ñÇϱæ. ÀÌ°ÍÀº ÁúÀÇ¿¡ ´ëÇÑ °á°ú°¡ ÀÎÁõµÇ¾ú´Ù´Â °ÍÀ» ÀǹÌÇÑ´Ù. ´Ù½Ã ¸»Çϸé ÀÎÁõµÈ ¼­¹ö·Î ºÎÅÍ °»½ÅÀÌ µÇ¾ú´Ù´Â °ÍÀ» ÀǹÌÇÑ´Ù. ´ÙÀ½¿¡ ÀÌ ÀÎÁõºÎºÐ¿¡ ´ëÇØ ´Ù½Ã ¼³¸íÇÒ °ÍÀÌ´Ù.

¸¸¾à ´Ù½Ã ¶È°°Àº ÁúÀǸ¦ º¸³½´Ù¸é ´Ù¸§°ú °°Àº °á°ú¸¦ ¾ò°Ô µÉ °ÍÀÌ´Ù.

$ dig pat.uio.no

; <<>> DiG 8.2 <<>> pat.uio.no 
;; res options: init recurs defnam dnsrch
;; got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 4
;; flags: qr rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 3, ADDITIONAL: 3
;; QUERY SECTION:
;;      pat.uio.no, type = A, class = IN

;; ANSWER SECTION:
pat.uio.no.             23h59m58s IN A  129.240.130.16

;; AUTHORITY SECTION:
UIO.NO.                 23h59m58s IN NS  nissen.UIO.NO.
UIO.NO.                 23h59m58s IN NS  ifi.UIO.NO.
UIO.NO.                 23h59m58s IN NS  nn.uninett.NO.

;; ADDITIONAL SECTION:
nissen.UIO.NO.          23h59m58s IN A  129.240.2.3
ifi.UIO.NO.             1d23h59m58s IN A  129.240.64.2
nn.uninett.NO.          1d23h59m58s IN A  158.38.0.181

;; Total query time: 4 msec
;; FROM: lookfar to SERVER: default -- 127.0.0.1
;; WHEN: Sat Dec 16 00:23:09 2000
;; MSG SIZE  sent: 28  rcvd: 162

ÁúÀÇ¿¡ ´ëÇÑ °á°ú ºÎºÐ¿¡¼­ "flag"ºÎºÐÀÇ "aa"°¡ ¾ø´Ù´Â »ç½ÇÀ» ÁÖ¸ñÇϱæ. ÀÌ°ÍÀº cache°¡ Á¤º¸¸¦ °¡Áö°í ÀÖÀ»¶§ ´õÀÌ»ó named°¡ ÁúÀǸ¦ Çϱâ À§ÇØ ³×Æ®¿öÅ© ¹ÛÀ¸·Î ³ª°¡Áö ¾Ê´Â´Ù´Â °ÍÀ» ÀǹÌÇÑ´Ù. ÀúÀåµÈ Á¤º¸°¡ ¿À·¡ µÇ¾úÀ» ¼öµµ ÀÖ´Ù. ¸Å¿ì Èñ¹ÚÇÏ°ÚÁö¸¸ °¡²û ÀÌ·¯ÇÑ Á¤º¸¸¦ ÅëÇؼ­ "aa"°¡ ¾ø´ÂÁö¸¦ È®ÀÎÇØ¾ß ÇÒ °ÍÀÌ´Ù. ÀÌÁ¦ ÀÚ½ÅÀÇ cache¼­¹ö°¡ ÀÛµ¿ÇÑ´Ù´Â °ÍÀ» ¾Ë°Ô µÇ¾ú´Ù.


3.2. Resolvers

Ç¥ÁØ C API°¡ ±¸ÇöµÇ´Â ¸ðµç Á¾·ùÀÇ OSµéÀº gethostbyname °ú gethostbyaddr¸¦ È£ÃâÇÑ´Ù. ÀÌ·¯ÇÑ ÇÔ¼ö(¾Æ¸¶µµ API±¸Çö ÇÔ¼öÁ¾·ùÀεí ÇÕ´Ï´Ù.) ´Â ´Ù¸¥ ¿©·¯ ¼Ò½º·Î ºÎÅÍ Á¤º¸µéÀ» °¡Á®¿À°Ô µÈ´Ù. °¡Á®¿Â ÀÌ·± Á¤º¸µéÀº ¸®´ª½º³ª ´Ù¸¥ À¯´Ð½º¿¡¼­´Â /etc/nsswitch.conf ºÎºÐ¿¡ ¼³Á¤µÇ¾î ÀÖ´Â µ¥·Î ¹Þ°ÔµÈ´Ù. ÀÌ°ÍÀº ¿©·¯ ´Ù¸¥ ÆÄÀÏÀ̳ª DB¿¡¼­ ¼­·Î ´Ù¸¥ Á¾·ùÀÇ µ¥ÀÌÅ͸¦ ¾ò´Â °ÍÀÌ´Ù. ¸ÇÀ§¿¡ ÀÚ¼¼ÇÑ ÁÖ¼®ÀÌ ÀÖÀ¸¸ç ¹Ýµå½Ã Àб⸦ ¹Ù¶õ´Ù. 'hosts:'·Î ½ÃÀÛÇÏ´Â ¶óÀÎÀ» ã¾Æ º¸ÀÚ. °Å±â¿¡ ÀÌ·¸°Ô ¾²¿© ÀÖÀ» °ÍÀÌ´Ù.

hosts:      files dns

(º¹»çÇÒ °æ¿ì »ý±â´Â °ø¹éÀ» ÀØÁö ¸»±â¸¦... ÀÌÁ¦ ´õ À̾߱â ÇÏÁö ¾ÊÀ» °ÍÀÌ´Ù.)

¸¸¾à 'hosts:'¶ó´Â ¶óÀÎÀÌ º¸ÀÌÁö ¾Ê´Â´Ù¸é À§¿Í°°ÀÌ ±âÀç ÇØ ³õ±â¸¦... ÀÌ°ÍÀº ÇÁ·Î±×·¥µéÀÌ ¿ì¼± /etc/hosts¸¦ ã¾Æ¾ß ÇÑ´Ù´Â °ÍÀ» À̾߱â ÇÏ¸ç ±×¸®°í resolv.conf¿¡ ÁöÁ¤µÈ DNS¸¦ üũÇÑ´Ù´Â À̾߱â ÀÌ´Ù.


3.3. ÃàÇÏ

caching name server ¼³Á¤¹ýÀ» ¾Ë°Ô µÇ¾ú´Ù. ÀÚÃàÇÏ´Â Àǹ̿¡¼­ ¸ÆÁÖ³ª ¿ìÀ¯, ¾Æ´Ï¸é µ¥³¥¶ó, ¸·°É¸®, µ¿µ¿ÁÖ µîµî.. ´Ù¸¥ °É·Î ÃàÇÏÇϽñæ...


4. Forwarding

´ë±Ô¸ð·Î Àß Á¶Á÷µÈ Çг»¸ÁÀ̳ª ÀÎÅÍ³Ý ¼­ºñ½º¾÷ü(ISP)ÀÇ ³×Æ®¿öÅ©¸¦ º¸¸é °¡²û DNS¸¦ Æ÷¿öµù ¼¼ÆÃÇؼ­ ³»ºÎ ³×Æ®¿öÅ©¿¡¼­ÀÇ ºÎÇÏ¿Í ¿ÜºÎ ³×Æ®¿öÅ©·Î ³ª°¡´Â ºÎÇϸ¦ ÁÙÀÌ´Â °æ¿ì¸¦ º¼ ¼ö ÀÖ´Ù. ³»ºÎ¿¡ ÀÌ·¯ÇÑ ³×Æ®¿öÅ©°¡ Á¸ÀçÇÏ´ÂÁö¿¡ ´ëÇÑ ¿©ºÎ¸¦ ¾Æ´Â °ÍÀº ½±Áö ¾Ê´Ù. ±×°Ô Áß¿äÇÑ °ÍÀº ¾Æ´Ï°í ³×Æ®¿öÅ©¿¡¼­ Á¦°øµÇ´Â DNS¸¦ "forwarder"·Î »ç¿ëÇÔÀ¸·Î¼­ ÁúÀÇ¿¡ ´ëÇÑ ÀÀ´äÀ» ´õ »¡¸® ¾òÀ» ¼öµµ ÀÖ°í ³×Æ®¿öÅ©ÀÇ ºÎÇÏ¿ª½Ã ÁÙÀÏ ¼ö ÀÖ´Ù. ¸ðµ©À» »ç¿ëÇÑ´Ù¸é ¾ÆÁÖ ÁÁÀ» °ÍÀÌ´Ù. ³×Æ®¿öÅ© °ø±ÞÀÚ°¡ »ç¿ëÇÏ°í ½ÍÀº ³×ÀÓ ¼­¹ö 2°³¸¦ È®º¸ÇÏ°í ÀÖÀ¸¸ç ±× ip°¡ 10.0.0.1°ú 10.1.0.1 À̶ó°í °¡Á¤ÇØ º¸ÀÚ. ±×·¯¸é named.confºÎºÐ¿¡ "option"À̶ó°í ºÒ¸®´Â ºÎºÐÀÇ ½ÃÀÛ¿¡ ´ÙÀ½°ú °°Àº ½ÄÀ¸·Î ÄÚµùÀ» Ãß°¡ÇÏ¸é µÈ´Ù.

           forward first;
           forwarders {
                10.0.0.1;
                10.1.0.1;
            };

¸ðµ©»ç¿ëÇÏ´Â DNS¿¡°Ô forwardingÀº ¾ÆÁÖ ÁÁÀº ¹æ¹ýÀÌ´Ù.Q&A¿¡ ±â¼úÇØ ³õ¾Ò´Ù.

nameserver¸¦ Àç°¡µ¿ÇÏ°í dig·Î È®ÀÎÇØ º¸±â¸¦. ¾Æ¸¶ Àß ÀÛµ¿ÇÒ °ÍÀÌ´Ù.


5. °£´ÜÇÑ µµ¸ÞÀÎ

µµ¸ÞÀÎ ±¸Ãà ¹æ¹ý.


5.1. 5.1. ¿ì¼±Àº »óÅõÀûÀÎ À̷кÎÅÍ

¿ì¼±ÀûÀ¸·Î ÀÌÀü¿¡ ´Ù¸¥ ¿©·¯ °ü·Ã¼­ÀûÀ» ÀÐ°í ¼÷ÁöÇߴ°¡? ±×·¡¾ß¸¸ÇÑ´Ù.

ÀÌ ÀåÀ» ½ÃÀÛÇϱâ Àü¿¡ DNS°¡ ±¸µ¿µÇ´Â ¾à°£ÀÇ À̷п¡ ´ëÇØ ¼³¸íÇϱâ·Î ÇÑ´Ù. ±×¸®°í ÀÌ ÀåÀ»Àд°ÍÀÌ ÁÁ´Ù. Àб⠽ÈÀ¸¸é Àû¾îµµ named.conf°¡ ³ª¿À±â Àü±îÁö ¼Óµ¶ÀÌ¶óµµ Ç϶ó.

DNS´Â tree±¸Á¶·Î µÇÀÖ´Â °èÃþ±¸Á¶ÀÌ´Ù. ÀϹÝÀûÀÎ treeµ¥ÀÌÅÍ-±¸Á¶¿¡¼­ »óÀ§´Â '.' À¸·Î µÇ¾î ÀÖ°í ÀÌ°ÍÀº 'root'·Î ´Ù½Ã ºÒ¸®¿ö Áø´Ù. '.' ¾Æ·¡¿¡´Â ¼ö¸¹Àº ÃÖ»óÀ§ µµ¸ÞÀεéÀÌ ÀÖ´Ù(TLDs:Top Level Domains);°¡Àå Àß ¾Ë·ÁÁø °ÍÀº ORG, COM, EDU, NET µîÀÌ ÀÖ´Ù. ³ª¹«Ã³·³ »Ñ¸®(root)µµ ÀÖ°í °¡Áö(branch)µµ ÀÖ´Ù°í »ý°¢ÇÏÀÚ. ÄÄÇ»ÅÍ°úÇп¡ ´ëÇÑ Áö½ÄÀÌ ÀÖ´Ù¸é DNS¸¦ treeºÎºÐ, ¸¶µð, ÀÙ¸¶µð, ºÀ¿ì¸®·Î ÀνÄÇÏ°Ô µÉ °ÍÀÌ´Ù. Á¡(.)ÀÌ ºÐ±âÁ¡ÀÌ°í ºÀ¿ì¸®°¡ À̸§µéÀÌ´Ù.

ÁúÀÇ´Â root·Î ºÎÅÍ ½ÃÀ۵Ǵ ±¸Á¶¿¡ ´ëÇؼ­ ¼øȯÀûÀ¸·Î ÁøÇàµÈ´Ù. prep.ai.mit.edu. À̶ó´Â ÁÖ¼Ò¸¦ ãÀ¸·Á ÇÑ´Ù¸é ³×ÀÓ¼­¹ö´Â ¾îµò°¡¿¡ ÁúÀǸ¦ ÇÒ°ÍÀÌ´Ù. ¿ì¼±Àº ij½¬¿¡¼­ºÎÅÍ ÁúÀǸ¦ ÇÑ´Ù. ij½¬°¡ ´äÀ» °¡Áö°í ÀÖ°í ´äº¯ÀÌ ¿À°Ô µÈ´Ù¸é ¹Ù·Î Àü Àå¿¡¼­¿Í °°Àº °á°ú¸¦ º¸°Ô µÉ °ÍÀÌ´Ù.¿©±â¿¡¼­ ´äÀÌ ³ª¿ÀÁö ¾ÊÀ¸¸é À̸§ÀÌ ½ÃÀ۵Ǵ ¿ÞÂʺÎÅÍ Áö¿ö ³ª°¡°Ô µÈ´Ù. ai.mit.edu. ±×¸®°í´Â mit.edu. ¶Ç ±×¸®°í edu.¸¦ ³×ÀÓ¼­¹ö°¡ ¾Ë°í ÀÖ´ÂÁö È®ÀÎÇÏ°í, ¸ð¸¥´Ù¸é. ¿¡°Ô ÁúÀǸ¦ ÇÏ°Ô µÈ´Ù. . Àº hintsÆÄÀÏÀ» °¡¸£Å°±â ¶§¹®ÀÌ´Ù. ±×·¯¸é . ¼­¹öµéÀº prep.ai.mit.edu ¿¡ ´ëÇØ ÁúÀǸ¦ ÇÏ°Ô µÇ¸ç, prep.ai.mit.edu ¼­¹ö°¡ ´äÀ» ¸ð¸£´õ¶óµµ ´Ù¸¥ °÷ ¾îµð¸¦ ã¾Æ¾ß ÇÒÁö¸¦ ´ç½ÅÀÇ ¼­¹ö¿¡ ¾Ë·ÁÁÖ°í, ã¾Æ°£ °÷¿¡¼­ ÁúÀÇ¿¡ ´ëÇÑ ´äÀ» ¾ò°Ô µÈ´Ù. ÀÌ·¯ÇÑ °ÍÀ» ÀÌÁ¦ º¸¿©ÁÙ °ÍÀÌ´Ù. dig¿¡¼­ +norec´Â ºñ¼øȯÀûÀÎ ÁúÀǸ¦ º¸³»¼­ ¿ì¸®¿¡°Ô µ¹¾Æ¿Â °ª¸¸À» ¾ò°Ô µÈ´Ù.ÀÌ ¿É¼ÇÀº dig °úÁ¤À» ÁÙÀÌ°í ÆäÀÌÁö ¼ö¸¦ ÁÙÀÏ°ÍÀÌ´Ù. (ÁúÀÇ º¸³»°í ´Ù½Ã ÁúÀǸ¦ ã´Â ½ÄÀÇ ¼øȯÀÌ ¾Æ´Ï¶ó ÁúÀÇ Çѹø¿¡ °á°ú ÇѹøÀ» º¸¿©Áشٴ Àǹ̷ΠÀÌÇص˴ϴÙ.^^;)

$ dig +norec +noH +noques +nostats +nocmd prep.ai.mit.edu.
;; res options: init defnam dnsrch
;; got answer:
; flags: qr ra; QUERY: 1, ANSWER: 0, AUTHORITY: 13, ADDITIONAL: 13
;; AUTHORITY SECTION:
.                       5d23h48m47s IN NS  I.ROOT-SERVERS.NET.
.                       5d23h48m47s IN NS  E.ROOT-SERVERS.NET.
.                       5d23h48m47s IN NS  D.ROOT-SERVERS.NET.
.                       5d23h48m47s IN NS  A.ROOT-SERVERS.NET.
.                       5d23h48m47s IN NS  H.ROOT-SERVERS.NET.
.                       5d23h48m47s IN NS  C.ROOT-SERVERS.NET.
.                       5d23h48m47s IN NS  G.ROOT-SERVERS.NET.
.                       5d23h48m47s IN NS  F.ROOT-SERVERS.NET.
.                       5d23h48m47s IN NS  B.ROOT-SERVERS.NET.
.                       5d23h48m47s IN NS  J.ROOT-SERVERS.NET.
.                       5d23h48m47s IN NS  K.ROOT-SERVERS.NET.
.                       5d23h48m47s IN NS  L.ROOT-SERVERS.NET.
.                       5d23h48m47s IN NS  M.ROOT-SERVERS.NET.

;; ADDITIONAL SECTION:
I.ROOT-SERVERS.NET.     6d23h48m47s IN A  192.36.148.17
E.ROOT-SERVERS.NET.     6d23h48m47s IN A  192.203.230.10
D.ROOT-SERVERS.NET.     6d23h48m47s IN A  128.8.10.90
A.ROOT-SERVERS.NET.     6d23h48m47s IN A  198.41.0.4
H.ROOT-SERVERS.NET.     6d23h48m47s IN A  128.63.2.53
C.ROOT-SERVERS.NET.     6d23h48m47s IN A  192.33.4.12
G.ROOT-SERVERS.NET.     6d23h48m47s IN A  192.112.36.4
F.ROOT-SERVERS.NET.     6d23h48m47s IN A  192.5.5.241
B.ROOT-SERVERS.NET.     6d23h48m47s IN A  128.9.0.107
J.ROOT-SERVERS.NET.     6d23h48m47s IN A  198.41.0.10
K.ROOT-SERVERS.NET.     6d23h48m47s IN A  193.0.14.129
L.ROOT-SERVERS.NET.     6d23h48m47s IN A  198.32.64.12
M.ROOT-SERVERS.NET.     6d23h48m47s IN A  202.12.27.33

°¡À̵å¶óÀθ¸(referral) µé¾î¿Ô´Ù. ¿ì¸®¿¡°Ô "AUTHORITY SECTION(ÀÎÁõ ¼½¼Ç)"¸¸À» ÁÖ°í "Answer Section(ÀÀ´ä¼½¼Ç)"Àº ÁÖÁö ¾Ê¾Ò´Ù. ¿ì¸® ³×ÀÓ¼­¹ö°¡ ÇϳªÀÇ ³×ÀÓ¼­¹ö¸¦ ¼±ÅÃÇÒ °ÍÀÌ´Ù. ¾Æ¹«°Å³ª Áý¾îº¸ÀÚ.(ÃßõµÈ ¼­¹öÁß Çϳª¸¦ Áý¾î³»¼­ ´Ù½Ã ÁúÀǸ¦ º¸³»ÀÚ´Â À̾߱â°ÚÁ®...)

$ dig +norec +noH +noques +nostats +nocmd prep.ai.mit.edu. @H.ROOT-SERVERS.NET.
; (1 server found)
;; res options: init defnam dnsrch
;; got answer:
; flags: qr; QUERY: 1, ANSWER: 0, AUTHORITY: 3, ADDITIONAL: 3
;; AUTHORITY SECTION:
MIT.EDU.                2D IN NS        BITSY.MIT.EDU.
MIT.EDU.                2D IN NS        STRAWB.MIT.EDU.
MIT.EDU.                2D IN NS        W20NS.MIT.EDU.

;; ADDITIONAL SECTION:
BITSY.MIT.EDU.          2D IN A         18.72.0.3
STRAWB.MIT.EDU.         2D IN A         18.71.0.151
W20NS.MIT.EDU.          2D IN A         18.70.0.160

ÀÌÁ¦ ¿ì¸®¿¡°Ô MIT.EDU¸¦ ¼±ÅÃÇÒ ¼ö ÀÖ´Ù. ´Ù½Ã Çϳª Áý¾î³» º¸ÀÚ.

$ dig +norec +noH +noques +nostats +nocmd prep.ai.mit.edu. @bitsy.mit.edu
; (1 server found)
;; res options: init defnam dnsrch
;; got answer:
; flags: qr ra; QUERY: 1, ANSWER: 1, AUTHORITY: 4, ADDITIONAL: 4
;; ANSWER SECTION:
prep.ai.mit.edu.        3h50m7s IN A    198.186.203.18

;; AUTHORITY SECTION:
AI.MIT.EDU.             6H IN NS        FEDEX.AI.MIT.EDU.
AI.MIT.EDU.             6H IN NS        LIFE.AI.MIT.EDU.
AI.MIT.EDU.             6H IN NS        ALPHA-BITS.AI.MIT.EDU.
AI.MIT.EDU.             6H IN NS        BEET-CHEX.AI.MIT.EDU.

;; ADDITIONAL SECTION:
FEDEX.AI.MIT.EDU.       6H IN A         192.148.252.43
LIFE.AI.MIT.EDU.        6H IN A         128.52.32.80
ALPHA-BITS.AI.MIT.EDU.  6H IN A         128.52.32.5
BEET-CHEX.AI.MIT.EDU.   6H IN A         128.52.32.22

ÀÌÁ¦ "Answer Section"À» ¾ò¾ú°í, ¿ì¸®´Â ÁúÀÇ¿¡ ´ëÇÑ ´äÀ» ¾ò°Ô µÇ¾ú´Ù. "AUTHORITY SECTION"Àº ¾î´À ¼­¹ö¿¡ ai.mit.edu¸¦ ´ÙÀ½¿¡ ¹°¾î¾ß ÇÏ´Â Áö¿¡ ´ëÇÑ Á¤º¸¸¦ °¡Áö°í ÀÖ´Ù. ±×·¡¼­ ¹Ù·Î ´ÙÀ½¿¡ ai.mit.edu¸¦ ¹°¾îº¼ ¼ö ÀÖ°Ô µÈ´Ù.

. ¿¡¼­ºÎÅÍ Ãâ¹ßÇؼ­ ¿ì¸®´Â °¢ µµ¸ÞÀÎ ³×ÀÓÀÇ ·¹º§¿¡¼­ ³×ÀÓ¼­¹ö¸¦ ¼º°øÀûÀ¸·Î ¹ß°ßÇØ ³»¾ú´Ù. ´Ù¸¥ ¼­¹ö¸¦ »ç¿ëÇÏÁö ¾Ê°í ¿©·¯ºÐÀÇ DNS¼­¹ö¸¦ »ç¿ëÇß´Ù¸é ´ç¿¬È÷ ±× Á¤º¸¸¦ ij½¬¿¡ ÀúÀåÇØ µÑ °ÍÀÌ°í ´çºÐ°£Àº ´Ù½Ã ¹¯Áö ¾ÊÀ» °ÍÀÌ´Ù.

ÀÌ Æ®¸®±¸Á¶¿¡¼­ À̸§¾È¿¡ ÀÖ´Â "." µéÀº ºÐ±âÁ¡ÀÌ´Ù. ±×¸®°í "."Á¡µé »çÀÌÀÇ ºÎºÐÀº ÀÌ Æ®¸®±¸Á¶¿¡¼­ °³º°ÀûÀ¸·Î ºÐ±âµÇ´Â ºÎºÐÀÌ´Ù. ¿ì¸®°¡ ¿øÇÏ´Â À̸§À» (prep.ai.mit.edu) ã±â À§Çؼ­ Æ®¸®±¸Á¶¸¦ º¸¸é ¿ì¼± ij½¬¿¡ ÀÖ´Â Á¤º¸³ª ¾Æ´Ï¸é »Ñ¸®(.)¿¡°Ô ¾î´À ¼­¹ö°¡ prep.ai.mit.edu·Î °¡´Â ½ÃÀÛÁ¡(¿øº»Àº father¶ó´Â µ¿»ç¸¦ ¾¹´Ï´Ù.¿ø·ù... ±Ù¿ø...)ÀÎÁö¸¦ ¹°¾îº»´Ù. ij½¬¿¡ Á¤º¸°¡ ¾øÀ¸¸é ¹ÛÀ¸·Î ³ª°¡¼­ ±× À̸§¿¡ ´ëÇÑ Á»´õ °¡±î¿î ÈùÆ®(referral,ÁöÁ¤µÈ ¼­¹ö¶ó°í ¹ø¿ªµÇ´Âµ¥ ÈùÆ®°¡ ´õ Àû´çÇÒ ¼ö ÀÖ°Ú½À´Ï´Ù.)¸¦ ¾ò±â À§ÇØ Àç±ÍÀûÀ¸·Î °è¼ÓÇؼ­ ¼­¹öµé¿¡°Ô Áú¹®À» ÇÏ°Ô µÈ´Ù.

ÀÚÁÖ À̾߱⠵ÇÁö´Â ¾ÊÁö¸¸ Áß¿äÇÑ µµ¸ÞÀÎÀÌ in-addr.arpa ÀÌ´Ù. 'ÀϹÝ'µµ¸ÞÀΰú À¯»çÇÏ´Ù. in-addr.arpa´Â ¿ì¸®°¡ ÁÖ¼Ò¸¦ ¾Ë°í ÀÖÀ» °æ¿ì¿¡ ±× À̸§À» ¾Ë·ÁÁØ´Ù. ¼÷ÁöÇØ¾ß ÇÒ Áß¿äÇÑ ºÎºÐÀº ip ÁÖ¼Ò°¡ in-addr.arpa µµ¸ÞÀο¡¼­´Â °Å²Ù·Î »ç¿ëµÈ´Ù´Â °ÍÀÌ´Ù. ¸¸¾à¿¡ ÁÖ¼Ò 192.148.52.43À» ¾Ë°í ÀÖ´Ù°í ÇÏÀÚ. ±×·¯¸é prep.ai.mit.edu ¿¹¿¡¼­ Çß´ø °Í°ú °°Àº ½ÄÀ¸·Î ÁøÇàÀÌ µÈ´Ù. ¸ÕÀú arpa. ¼­¹ö¸¦ ã°í in-addr.arpa. ¼­¹ö¸¦ ã°ÔµÈ´Ù. ±×¸®°í ³ª¼­ 192.in-addr.arpa. ·Î, 148.192.in-addr.arpa. ·Î, 52.148.192.in-addr.arpa. ¼­¹ö·Î Çؼ­ 43.52.148.192.in-addr.arpa.¼­¹ö¸¦ ã°ÔµÈ´Ù. ¿µ¸®ÇÏÁö ¾ÊÀº°¡? (±×·¸´Ù°í ´ë´äÇ϶ó°í ¿ø¹®Àº °­¿äµµ ÇÑ´Ù.-.-) ¼ýÀÚ¸¦ µÚÁý¾î ³õÀº °ÍÀÌ ´Ù¼Ò°£Àº È¥¶õ½º·¯¿ï °ÍÀÌ´Ù.)


5.2. ÀÚ½ÅÀÇ µµ¸ÞÀÎ

ÀÌÁ¦ ¿ì¸® µµ¸ÞÀÎÀ» Á¤ÀÇÇØ º¸ÀÚ. ¿ì¸®´Â linux.bogus¶ó´Â µµ¸ÞÀÎÀ» °¡Áö°í ¿ì¸® ¼­¹ö¿¡ ¸¸µé¾î ³õÀ» °ÍÀÌ´Ù. ³ª´Â ÀÌ·¯ÇÑ °ÍÀÌ ¿ÜºÎ·Î ½ÇÁ¦ ³ª°¡Áö ¾Ê°Ô °¡Â¥ µµ¸ÞÀÎ À̸§À» ¾µ °ÍÀÌ´Ù.

½ÃÀÛÀü¿¡ Çϳª ¾Ë¾ÆµÖ¾ß ÇÑ´Ù. ¸ðµç ¹®ÀÚ°¡ ´Ù µµ¸ÞÀÎÀÌ µÇ´Â °ÍÀº ¾Æ´Ï´Ù. Á¦ÇÑÀûÀ¸·Î ¿µ¾î ¾ËÆĺªÀÌ ¾²ÀδÙ.: a-z, 0-9, ±×¸®°í '-'(´ë½¬)°¡ »ç¿ëµÈ´Ù. ´ë¼Ò¹®ÀÚ´Â ±¸º°ÀÌ ¾ø´Ù´Â Á¡µµ ¾Ë¾Æ µÎ±â¸¦. ±×·¡¼­ pat.uio.no ´Â Pat.UiO.No ¿Í °°ÀÌ ¾²ÀδÙ.

¿ì¸®´Â ÀÌ¹Ì named.conf¿¡¼­ ÀÌ ºÎºÐÀ» Çß¾ú´Ù.:

zone "0.0.127.in-addr.arpa" {
	type master;
	file "pz/127.0.0";
};

ÀÌ ÆÄÀÏ¿¡¼­´Â µµ¸ÞÀÎ ³×ÀÓÀÇ ¸¶Áö¸·¿¡ '.'ÀÌ ¾ø´Ù´Â »ç½ÇÀ» ÁÖÀÇÇضó. ÀÌ ºÎºÐÀº ¿ì¸®°¡ 0.0.127.in-addr.arpa Á¸¿¡ ´ëÇÑ Á¤ÀÇÀÌ°í ¸¶½ºÅÍ ¼­¹ö¿¡ ´ëÇÑ Á¤ÀÇ°¡ ÀÖÀ¸¸ç pz/127.0.0À̶ó´Â ÆÄÀÏ ¾È¿¡ ÀúÀåÀÌ µÈ´Ù. ¿ì¸®´Â ÀÌ¹Ì ÀÌ ÆÄÀÏÀ» ¼¼ÆÃÇß´Ù. º¸¸é...

$TTL 3D
@               IN      SOA     ns.linux.bogus. hostmaster.linux.bogus. (
				1       ; Serial
				8H	; Refresh
				2H      ; Retry
				4W	; Expire
				1D)	; Minimum TTL
			NS      ns.linux.bogus.
1			PTR	localhost.

À§ÀÇ named.conf¿Í´Â ´Ù¸£°Ô ÀÌ ÆÄÀϾȿ¡ ÀÖ´Â ¸ðµç µµ¸ÞÀθíÀÇ ¸¶Áö¸·¿¡´Â '.'ÀÌ ÀÖ´Ù´Â »ç½ÇÀ» ¾Ë¾ÆµÎ±æ ¹Ù¶õ´Ù. ¾î¶² À̵éÀº ¸ðµç Á¸ ÆÄÀÏÀ» $ORIGINÀ¸·Î ½ÃÀÛÇϱ⵵ Çϴµ¥ ÀÌ°ÍÀº ºÒÇÊ¿äÇÑ °ÍÀÌ´Ù. µµ¸ÞÀÎ °èÃþ¾È¿¡ Æ÷ÇԵǾî ÀÖ´Â ÀÌ Á¸ ÆÄÀϵéÀÇ ±Ù¿øÁö´Â ÀÌ¹Ì named.conf¿¡¼­ ´Ù ¸í½Ã°¡ µÇ¾î Àֱ⠶§¹®ÀÌ´Ù. ÀÌ °æ¿ì¿¡´Â 0.0.127.in-addr.arpa ÀÌ´Ù.

ÀÌ 'zone' ÆÄÀÏÀº 3°³ÀÇ 'ÀÚ¿ø·¹ÄÚµå(RR:Resource Records)'¸¦ °¡Áö°í ÀÖ´Ù. SOA, NS, PTRÀÌ´Ù. SOA´Â Start Of AuthorityÀÇ ¾à¾îÀÌ´Ù. @´Â ¿øº»À» ÀǹÌÇÏ´Â °ÍÀ¸·Î ÀÌ°ÍÀº 'domain'Ä÷³¿¡¼­ 0.0.127.in-addr.arpa¸¦ÀǹÌÇÏ´Â °ÍÀÌ´Ù.

0.0.127.in-addr.arpa.	IN	SOA ...

NS´Â NameServerÀÇ ¾àÀÚÀÌ´Ù. ½ÃÀۺκп¡ '@'°¡ ¾ø´Ù. ÀÌ¹Ì ¾Õ ¶óÀÎÀÌ @·Î ½ÃÀ۵Ǹ鼭 @°¡ ³»Á¦µÇ¾îÀÖ´Ù. ŸÀÌÇÎ ¼ö¸¦ ÁÙ¿©¶ó. ±×·¡¼­ NS¶óÀÎÀº ÀÌ·¸°Ô ¾²¿©Áø´Ù.

0.0.127.in-addr.arpa.	IN	NS	ns.linux.bogus

ÀÌ°ÍÀº DNS¿¡°Ô ¾î¶² ÄÄÇ»ÅÍ°¡ µµ¸ÞÀÎ 0.0.127.in-addr.arpaÀÇ nameserverÀÎÁö ¾Ë·ÁÁÖ°Ô µÈ´Ù. ¿©±â¼­´Â ns.linux.bogusÀÌ´Ù. 'ns'´Â º¸ÆíÀûÀ¸·Î nameserver¿¡ ºÙ´Â ¸»ÀÌ´Ù. ±×·¯³ª À¥¼­¹öÀÇ À̸§ÀÌ ÀϹÝÀûÀ¸·Î www.something À̵íÀÌ ´Ù¸¥ À̸§À» Á־ ¹«¹æÇÏ´Ù.

±×¸®°í ¸¶Áö¸·À¸·Î PTR(Domain Name Pointer)·¹ÄÚµå´Â ¼­ºê³Ý 0.0.127.in-addr.arpaÀÇ È£½ºÆ® ¾îµå·¹½º°¡ 1 ÀÓÀ» À̾߱â ÇÑ´Ù. Áï 127.0.0.1ÀÇ À̸§ÀÌ localhostÀÌ´Ù.

SOA ·¹ÄÚµå´Â ¸ðµç zone ÆÄÀÏÀÇ ¼­µÎ¿¡ ÇØ´çµÇ¸ç °¢ Á¸ ÆÄÀϸ¶´Ù ¹Ýµå½Ã Çϳª¾¿ ÀÖ¾î¾ß ÇÑ´Ù. ÀÌ°ÍÀº ±× zone ÆÄÀÏÀÌ ¹«¾ùÀ̶ó ºÒ¸®´ÂÁö(¿©±â¼­´Â ns.linux.bogus¶ó ºÒ¸°´Ù.), ´©°¡ ÀÌ contents¸¦ °ü¸®ÇÏ´ÂÁö(hostmaster@linux.bogus; emailÁÖ¼Ò¸¦ ÇÊÈ÷ ³Ö¾î¾ß ÇÑ´Ù), ÀÌ Á¸ ÆÄÀÏÀÇ ¹öÁ¯ÀÌ ¹«¾ùÀÎÁö(serial:1), ij½Ã¼­¹ö¿Í 2Â÷ DNS¼­¹ö´Â ¹«¾ùÀÎÁö µîÀ» ±âÀçÇÏ°Ô µÈ´Ù. ³ª¸ÓÁö Çʵå(refresh, retry,expire,minimum)Àº HOWTO ¿¡ ±â¼úµÈ °ÍÀ¸·Î Çضó. ÀÌ°ÍÀÌ ¾ÈÁ¤ÀûÀÏ °ÍÀÌ´Ù. SOA ¶óÀÎÀÌ ¾²¿©Áö±â Àü¿¡ $TTL 3D¶õ °ÍÀ» À§¿¡ ±âÀçÇÏ±æ ¹Ù¶õ´Ù. ÀÌ°ÍÀº ¸ðµç zone file¿¡ ³Ö¾î¾ß ÇÑ´Ù.

ÀÌÁ¦ named ¸¦ À籸µ¿½ÃÄѺ¸ÀÚ.(ndc restart) ±×¸®°í dig¸í·É¾î·Î ÁúÀǸ¦ ÇØ º¸ÀÚ(¿É¼Ç -x)

$ dig -x 127.0.0.1

; <<>> DiG 8.2 <<>> -x 
;; res options: init recurs defnam dnsrch
;; got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 4
;; flags: qr aa rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 1, ADDITIONAL: 0
;; QUERY SECTION:
;;      1.0.0.127.in-addr.arpa, type = ANY, class = IN

;; ANSWER SECTION:
1.0.0.127.in-addr.arpa.  1D IN PTR  localhost.

;; AUTHORITY SECTION:
0.0.127.in-addr.arpa.   1D IN NS        ns.penguin.bv.

;; Total query time: 5 msec
;; FROM: lookfar to SERVER: default -- 127.0.0.1
;; WHEN: Sat Dec 16 01:13:48 2000
;; MSG SIZE  sent: 40  rcvd: 110

À§¿¡¼­ 127.0.0.1¿¡¼­ localhost¸¦ ã´Âµ¥ ¼º°øÇß´Ù. ÀÌÁ¦ ÁÖ¿ä ÀÛ¾÷ÀÎ linux.bogus µµ¸ÞÀÎÀ» ¸¸µé¾î º¸ÀÚ. named.confÀÇ 'zone'¼½¼Ç¿¡ Ãß°¡Ç϶ó

zone "linux.bogus" {
	notify no;
	type master;
	file "pz/linux.bogus";
};

named.conf ÆÄÀÏÀÇ µµ¸ÞÀÎ À̸§¿¡´Â '.'ÀÌ ¾ø´Ù´Â °ÍÀ» ´Ù½ÃÇѹø »ó±âÇÏÀÚ.

linux.bogusÀÇ Á¸ÆÄÀÏ¿¡´Â ÀüºÎ °¡Â¥ µ¥ÀÌÅ͸¦ ³ÖÀ» °ÍÀÌ´Ù.

;
; Zone file for linux.bogus
;
; The full zone file
;
$TTL 3D
@	IN	SOA	ns.linux.bogus. hostmaster.linux.bogus. (
			199802151	; serial, todays date + todays serial #
			8H		; refresh, seconds
			2H		; retry, seconds
			4W		; expire, seconds
			1D )		; minimum, seconds
;
		NS	ns		; Inet Address of name server
		MX	10 mail.linux.bogus	; Primary Mail Exchanger
		MX	20 mail.friend.bogus.	; Secondary Mail Exchanger
;
localhost	A	127.0.0.1
ns		A	192.168.196.2
mail		A	192.168.196.4

SOA ·¹ÄÚµå ºÎºÐ¿¡¼­ 2°¡Áö ºÎºÐÀ» ÁÖÀÇÇؼ­ º¸ÀÚ. ns.linux.bogus´Â A ·¹Äڵ带 °¡Áø ½ÇÁ¦ ÄÄÇ»ÅÍ¿©¾ß ÇÑ´Ù. SOA·¹Äڵ尡 À̾߱âÇÏ´Â ÄÄÇ»ÅÍÀÇ À̸§À» CNAMEÀ¸·Î ÇÏ´Â °ÍÀº ±ÔÁ¤¿¡ ¾î±ß³­´Ù. ÀÌ À̸§¿¡ 'ns'°¡ µé¾î°¥ ÇÊ¿ä´Â ¾øÀ¸¸ç ¾Æ¹« À̸§ÀÌ¶óµµ ±ÔÁ¤¿¡¸¸ ¾î±ß³ªÁö ¾ÊÀ¸¸é µÈ´Ù. ´ÙÀ½À¸·Î hostmaster.linux.bogus ´Â hostmaster@linux.bogus·Î ºÁ¾ß ÇÑ´Ù. ÀÌ°ÍÀº mail alias³ª mailbox·Î¼­, DNS°ü¸®ÀÚ°¡ ÀÌ ÁÖ¼Ò·Î ¸ÞÀÏÀ» ¹Þ°Ô µÉ °ÍÀÌ´Ù. À̸§ÀÌ ²À hostmasterÀÏ ÇÊ¿ä´Â ¾ø´Ù. ÀÏ¹Ý ¸ÞÀÏÁÖ¼Ò¸¦ ³Ö¾îµµ µÇÁö¸¸ 'hostmaster' ÀÎ °ÍÀÌ È¿À²ÀûÀÏ °ÍÀÌ´Ù.

MX¶ó´Â »õ·Î¿î ·¹Äڵ尡 º¸ÀδÙ. ÀÌ°ÍÀº Mail eXchanger·Î ¸ÞÀÏ ½Ã½ºÅÛ¿¡°Ô ¾îµð·Î ¸ÞÀÏÀ» º¸³»´ÂÁö ¾Ë·ÁÁØ´Ù. mail.linux.bogus ȤÀº mail.friend.bogus·Î ÀÎÇØ ÁÖ¼Ò´Â someone@linux.bogus°¡ µÈ´Ù. °¢ computerÀ̸§¾ÕÀÇ ¼ýÀÚ´Â MX·¹ÄÚµåÀÇ ¿ì¼± ¼øÀ§¸¦ ³ªÅ¸³½´Ù. °¡Àå ³·Àº ¼ýÀÚÀÇ ·¹ÄÚµå(10)¿¡ °¡´ÉÇÑ ¿ì¼± ¼øÀ§°¡ ÁÖ¾îÁø´Ù. ÀÌ°ÍÀÌ ½ÇÆÐÇÒ °æ¿ì ´õ Å« ¼ýÀÚ¸¦ ã¾Æ¼­ °¡´Â¿¡ ¿©±â¿¡¼­´Â 20¹øÀÇ mail.friend.bogus°¡ µÈ´Ù.

´Ù½Ã ndc restartÇÑ ÈÄ dig °á°ú¸¦ »ìÆ캸ÀÚ.

$ dig any linux.bogus +pfmin
;; res options: init recurs defnam dnsrch
;; got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 23499
;; QUERY: 1, ANSWER: 4, AUTHORITY: 1, ADDITIONAL: 1
;; QUERY SECTION:
;;      linux.bogus, type = ANY, class = IN

;; ANSWER SECTION:
linux.bogus.            3D IN MX        10 mail.linux.bogus.linux.bogus.
linux.bogus.            3D IN MX        20 mail.friend.bogus.
linux.bogus.            3D IN NS        ns.linux.bogus.
linux.bogus.            3D IN SOA       ns.linux.bogus. hostmaster.linux.bogus. (
                                        199802151       ; serial
                                        8H              ; refresh
                                        2H              ; retry
                                        4W              ; expiry
                                        1D )            ; minimum

Àß º¸¸é ¹ö±×°¡ ÀÖ´Ù. ¶óÀÎÀÇ

linux.bogus.            3D IN MX        10 mail.linux.bogus.linux.bogus.

°¡ À߸øµÇ¾ú´Ù.ÀÌ°ÍÀº

linux.bogus.            3D IN MX        10 mail.linux.bogus.

·Î ³ª¿Í¾ß ÇÑ´Ù. ÀϺη¯ ¹ö±×¸¦ ¸¸µé¾î¼­ º¸¿©Áá´Ù. Á¸ ÆÄÀÏ ºÎºÐ¿¡¼­ ¿ì¸®°¡ ã¾Æ³½ ºÎºÐÀ» »ìÆ캸ÀÚ

		MX	10 mail.linux.bogus	; Primary Mail Exchanger

¸¶Ä§Ç¥°¡ ¾ø°Å³ª 'linux.bogus'°¡ Áߺ¹ÀÌ µÇ¾î ÀÖ´Ù. ³¡ºÎºÐ¿¡ ¸¶Ä§Ç¥¸¦ ÂïÁö ¾ÊÀ¸¸é Á¸ÆÄÀÏÀÇ originÀÌ ´õÇØÁ®¼­ linux.bogus.linux.bogusÇüÅ°¡ µÈ´Ù. ±×·¡¼­

		MX	10 mail.linux.bogus.	; Primary Mail Exchanger

À̰ųª

		MX	10 mail			; Primary Mail Exchanger

ÀÇ ÇüÅ·ΠµÇ¾î¾ß ÇÑ´Ù. ³ª´Â ÈÄÀÚ¸¦ ¼±È£ÇÑ´Ù. ŸÀÌÇμö¸¦ ÁÙÀÌ°Ô µÇ´Ï±î. BIND Àü¹®°¡µéÀº ÀÌ·¯ÇÑ ºÎºÐÀ» µ¿ÀÇÇϱ⵵ ÇÏ°í ¹Ý´ëÇϱ⵵ ÇÑ´Ù. Á¸ ÆÄÀÏ¿¡¼­ µµ¸ÞÀÎÀº ³¡ÀÌ `.'·Î ³¡³ª´ø°¡ ¾Æ´Ï¸é ÀüºÎ Æ÷ÇÔµÇÁö ¸»¾Æ¾ß Çϸç ÀüºÎ Æ÷ÇÔµÇÁö ¾ÊÀ» °æ¿ì´Â µðÆúÆ®·Î originÀÌ µé¾î°£´Ù.

ºÐ¸íÈ÷ named.conf ÆÄÀÏ¿¡´Â `.' ÀÌ µé¾î°¡Áö ¾Ê´Â´Ù°í Çß´Ù. `.'ÀÌ µµ¸ÞÀÎ À̸§ ´ÙÀ½¿¡ ¾ó¸¶³ª ¸¹°Ô ȤÀº Àû°Ô ¾²À̰ųª ÇÏ´Â Â÷ÀÌ·Î ¼¼ÆÃÀÌ ¾ÈµÇ°í »ç¶÷µéÀ» È¥¶õ½º·´°Ô ÇÏ´Â ÀÏÀÌ ´Ù¹Ý»çÀÌ´Ù.

±×·¡¼­ »õ·Î¿î Á¸ ÆÄÀÏÀÇ »ý¼º½Ã¿¡´Â ±×¿¡ ¸Â°Ô Ãß°¡ Á¤º¸°¡ ÁÖ¾îÁ®¾ß ÇÑ´Ù.

;
; Zone file for linux.bogus
;
; The full zone file
;
$TTL 3D
@	IN	SOA	ns.linux.bogus. hostmaster.linux.bogus. (
			199802151	; serial, todays date + todays serial #
			8H		; refresh, seconds
			2H		; retry, seconds
			4W		; expire, seconds
			1D )		; minimum, seconds
;
		TXT	"Linux.Bogus, your DNS consultants"
		NS	ns		; Inet Address of name server
		NS	ns.friend.bogus.
		MX	10 mail		; Primary Mail Exchanger
		MX	20 mail.friend.bogus. ; Secondary Mail Exchanger

localhost	A	127.0.0.1

gw		A	192.168.196.1
		HINFO	"Cisco" "IOS"
		TXT	"The router"

ns		A	192.168.196.2
		MX	10 mail
		MX	20 mail.friend.bogus.
		HINFO	"Pentium" "Linux 2.0"
www		CNAME	ns

donald		A	192.168.196.3
		MX	10 mail
		MX	20 mail.friend.bogus.
		HINFO	"i486"	"Linux 2.0"
		TXT	"DEK"

mail		A	192.168.196.4
		MX	10 mail
		MX	20 mail.friend.bogus.
		HINFO	"386sx" "Linux 1.2"

ftp		A	192.168.196.5
		MX	10 mail
		MX	20 mail.friend.bogus.
		HINFO	"P6" "Linux 2.1.86"

»õ·Î¿î ·¹Äڵ尡 º¸ÀδÙ. HINFO(Host INFOmation)´Â 2°³ÀÇ ÆÄÆ®·Î ±¸¼ºµÇ¾î ÀÖ´Ù. ù° ºÎºÐÀº Çϵå¿þ¾î³ª cpuºÎºÐ, µÑ° ºÎºÐÀº ¼ÒÇÁÆ®¿þ¾î³ª OS¸¦ Ç¥½ÃÇÑ´Ù. 'ns'¶ó ºÒ¸®´Â ÄÄÇ»ÅÍ´Â ÆæƼ¾ö cpu¸¦ °¡Áö°í ÀÖ°í Linux 2.0À¸·Î ±¸ÇöµÈ´Ù. CNAME(Canonical Name)Àº °¢ computer¿¡°Ô ¿©·¯ À̸§À» ÁÖ´Â ¹æ¹ýÀÌ´Ù. ±×·¡¼­ www´Â nsÀÇ alias°¡ µÈ´Ù.

CNAME ·¹ÄÚµå´Â ¾à°£ÀÇ ¹®Á¦Á¡ÀÌ ÀÖ´Ù. ±×·¯³ª ±ÔÁ¤´ë·Î¸¸ ÇÏ¸é ¹®Á¦µÉ ºÎºÐÀº ¾ø´Ù. MX,CNAME,SOA ·¹Äڵ尡 CNAME ·¹Äڵ忡 ¿¬°èµÇ¾î¼­´Â ¾ÈµÈ´Ù. À̰͵éÀº A ·¹Äڵ忡¸¸ ¿¬°èµÇ¾î¾ß Çϱ⠶§¹®ÀÌ´Ù. ±×·¡¼­ ¾Æ·¡¿Í °°Àº °æ¿ì´Â ¾ÈµÈ´Ù.(www°¡ ÀÌ¹Ì CNAMEÀÌ´Ù.)

foobar		CNAME	www			; NO!

±×·¯³ª ÀÌ·± °æ¿ì´Â µÈ´Ù.

foobar		CNAME	ns			; Yes!

CNAMEÀÌ email ÁÖ¼Ò¸¦ À§ÇÑ hostnameÀ¸·Î ¾²±â¿¡´Â ÀûÇÕÇÏÁö ¾Ê´Ù°í ¿©±â´Â °ÍÀÌ Çö¸íÇÒ °ÍÀÌ´Ù. webmaster@www.linux.bogus´Â À§ÀÇ setup°ú ´Ù¸¥ À߸øµÈ °æ¿ìÀÌ´Ù. ¸¹Àº mail °ü¸®ÀÚµéÀÌ ÀÌ°ÍÀÌ ¼³·É µÇ´õ¶óµµ ÀÌ ¹æ½ÄÀ» °ÅÀÇ »ç¿ëÇÏÁö ¾ÊÀ» °ÍÀÌ´Ù. ÀÌ·¯ÇÑ ¿À·ù¸¦ ÇÇÇÏ´Â ¹æ½ÄÀº A ·¹Äڵ带 »ç¿ëÇÏ´Â °ÍÀÌ´Ù.(´Ù¸¥ MX ·¹ÄÚµå ó·³)

www		A	192.168.196.2

¸¹Àº DNSÀü¹®°¡µéÀÌ CNAMEÀ» »ç¿ëÇÏÁö ¾ÊÀ» °ÍÀ» ±Ç°íÇÑ´Ù. ±×·¯³ª »ç¿ë°¡´É ¿©ºÎ´Â ÀÌ HOWTO¿¡¼­ ³íÇÒ ºÎºÐÀº ¾Æ´Ï´Ù.

ÇÏÁö¸¸ ¸¹Àº HOWTO¿Í ¸¹Àº ½ÎÀÌÆ®µéÀÌ ÀÌ ±ÔÄ¢À» µû¸£Áö´Â ¾Ê´Â´Ù.

»õ database¸¦ ·ÎµùÇÏ°í ndc reload¸¦ ½ÇÇàÇغ¸ÀÚ.

$ dig linux.bogus axfr

; <<>> DiG 8.2 <<>> linux.bogus axfr 
$ORIGIN linux.bogus.
@                       3D IN SOA       ns hostmaster (
                                        199802151       ; serial
                                        8H              ; refresh
                                        2H              ; retry
                                        4W              ; expiry
                                        1D )            ; minimum

                        3D IN NS        ns
                        3D IN NS        ns.friend.bogus.
                        3D IN MX        10 mail
                        3D IN MX        20 mail.friend.bogus.
                        3D IN TXT       "Linux.Bogus, your DNS consultants"
gw                      3D IN TXT       "The router"
                        3D IN HINFO     "Cisco" "IOS"
                        3D IN A         192.168.196.1
localhost               3D IN A         127.0.0.1
mail                    3D IN HINFO     "386sx" "Linux 1.2"
                        3D IN MX        10 mail
                        3D IN MX        20 mail.friend.bogus.
                        3D IN A         192.168.196.4
www                     3D IN CNAME     ns
donald                  3D IN TXT       "DEK"
                        3D IN HINFO     "i486" "Linux 2.0"
                        3D IN MX        10 mail
                        3D IN MX        20 mail.friend.bogus.
                        3D IN A         192.168.196.3
ns                      3D IN HINFO     "Pentium" "Linux 2.0"
                        3D IN MX        10 mail
                        3D IN MX        20 mail.friend.bogus.
                        3D IN A         192.168.196.2
ftp                     3D IN HINFO     "P6" "Linux 2.1.86"
                        3D IN MX        10 mail
                        3D IN MX        20 mail.friend.bogus.
                        3D IN A         192.168.196.5
@                       3D IN SOA       ns hostmaster (
                                        199802151       ; serial
                                        8H              ; refresh
                                        2H              ; retry
                                        4W              ; expiry
                                        1D )            ; minimum

;; Received 29 answers (29 records).
;; FROM: lookfar to SERVER: 127.0.0.1
;; WHEN: Sat Dec 16 01:35:05 2000

good! °á°ú°¡ Á¸ ÆÄÀÏ°ú ºñ½ÁÇÏ°Ô º¸ÀδÙ. wwwºÎºÐ¿¡ ´ëÇÑ Á¤º¸¸¦ È®ÀÎÇغ¸ÀÚ

$ig www.linux.bogus +pfmin
;; res options: init recurs defnam dnsrch
;; got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 27345
;; QUERY: 1, ANSWER: 2, AUTHORITY: 2, ADDITIONAL: 1
;; QUERY SECTION:
;;      www.linux.bogus, type = A, class = IN

;; ANSWER SECTION:
www.linux.bogus.        3D IN CNAME     ns.linux.bogus.
ns.linux.bogus.         3D IN A         192.168.196.2

´Ù½Ã º¸¸é www.linux.bogusÀÇ ½ÇÁ¦ À̸§Àº ns.linux.bogusÀÌ´Ù. ±×¸®°í ns°¡ °¡Áø Á¤º¸µµ º¸¿©ÁÖ¸ç ÃæºÐÈ÷ ¿¬°áµÉ ¼ö ÀÖ´Ù.

ÀÌÁ¦ Àý¹Ý Çß´Ù.


5.3. The reverse zone(¿ªº¯È¯Á¸)

ÇÁ·Î±×·¥µéÀº linux.bogusÀÇ À̸§À» Á¢¼Ó°¡´ÉÇÑ ÁÖ¼Ò·Î ¹Ù²ã¾ß Á¢¼ÓÀÌ °¡´ÉÇÏ´Ù. ±×·¯³ª ¿ªº¯È¯Á¸(reverse zone)ÀÌ ÀÖ¾î¾ß DNS°¡ ÁÖ¼Ò¸¦ À̸§À¸·Î ¹Ù²Ù´Â °ÍÀÌ °¡´ÉÇÏ´Ù. ÀÌ·¯ÇÑ À̸§Àº ´ç½ÅÀÌ ÀÌ ¼­ºñ½º¸¦ »ç¿ëÇÒÁö ¸»Áö, ±×¸®°í »ç¿ëÇÑ´Ù¸é ¾ó¸¶¸¸Å­ÀÇ ¿ì¼±¼øÀ§°¡ ÁÖ¾îÁö´ÂÁöµîÀ» °áÁ¤ÇÒ ´Ù¾çÇÑ Á¾·ùÀÇ ¼­¹ö À̸§µé(FTP,IRC,WWW ±×¿Ü)¿¡¼­ »ç¿ëµÈ´Ù. ÀÎÅͳݿ¡¼­ ¸ðµç ¼­ºñ½º¿¡ ´ëÇÑ ¿ÏÀüÇÑ Á¢¼ÓÀ» À§Çؼ­´Â reverse zoneÀÌ ÇÊ¿äÇÏ´Ù.

named.conf¿¡ Ãß°¡ÇØ º¸ÀÚ

zone "196.168.192.in-addr.arpa" {
	notify no;
        type master;
        file "pz/192.168.196";
};

0.0.127.in-addr.arpa¿Í °°´Ù. ³»¿ëµµ À¯»çÇÏ´Ù.

$TTL 3D
@	IN	SOA	ns.linux.bogus. hostmaster.linux.bogus. (
			199802151 ; Serial, todays date + todays serial
			8H	; Refresh
			2H      ; Retry
			4W	; Expire
			1D)	; Minimum TTL
		NS      ns.linux.bogus.

1		PTR	gw.linux.bogus.
2		PTR	ns.linux.bogus.
3		PTR	donald.linux.bogus.
4		PTR	mail.linux.bogus.
5		PTR	ftp.linux.bogus.

ÀÌÁ¦ named¸¦ À籸µ¿½ÃÅ°°í(ndc restart) dig·Î ´Ù½Ã °Ë»çÇØ º¸ÀÚ

$ dig -x 192.168.196.4 +pfmin
;; res options: init recurs defnam dnsrch
;; got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 8764
;; QUERY: 1, ANSWER: 1, AUTHORITY: 1, ADDITIONAL: 1
;; QUERY SECTION:
;;      4.196.168.192.in-addr.arpa, type = ANY, class = IN

;; ANSWER SECTION:
4.196.168.192.in-addr.arpa.  3D IN PTR  mail.linux.bogus.

±¦Âú¾Æ º¸ÀδÙ. ¸ðµç ºÎºÐÀ» °Ë»çÇØ º¸ÀÚ

dig -x 192.168.196 AXFR

; <<>> DiG 8.2 <<>> -x AXFR 
$ORIGIN 196.168.192.in-addr.arpa.
@                       3D IN SOA       ns.linux.bogus. hostmaster.linux.bogus. (
                                        199802151       ; serial
                                        8H              ; refresh
                                        2H              ; retry
                                        4W              ; expiry
                                        1D )            ; minimum

                        3D IN NS        ns.linux.bogus.
4                       3D IN PTR       mail.linux.bogus.
2                       3D IN PTR       ns.linux.bogus.
5                       3D IN PTR       ftp.linux.bogus.
3                       3D IN PTR       donald.linux.bogus.
1                       3D IN PTR       gw.linux.bogus.
@                       3D IN SOA       ns.linux.bogus. hostmaster.linux.bogus. (
                                        199802151       ; serial
                                        8H              ; refresh
                                        2H              ; retry
                                        4W              ; expiry
                                        1D )            ; minimum

;; Received 8 answers (8 records).
;; FROM: lookfar to SERVER: 127.0.0.1
;; WHEN: Sat Dec 16 01:44:03 2000

Àß µÈ´Ù! °á°ú°¡ À§¿Í °°Áö ¾ÊÀ¸¸é syslogÀÇ ¿¡·¯ ¸Þ½ÃÁö¸¦ ºÁ¶ó. ÀÌ¹Ì Ã¹ºÎºÐÀÇ Starting Named¿¡¼­ ¼³¸íÇØ ³ù´Ù.


5.4. ÁÖÀÇ»çÇ×

Ãß°¡ÇÒ ºÎºÐÀÌ ÀÖ´Ù. À§¿¡ ¸í½ÃµÈ IP ÁÖ¼ÒµéÀº ÀüºÎ '»ç¼³¸Á'¿¡ ±¹ÇÑµÈ ¿¹½ÃÀÌ´Ù. ÀÌ°ÍÀº ÀÏ¹Ý ÀÎÅͳݿ¡´Â Àû¿ëµÇÁö ¾Ê´Â´Ù. ±×·¡¼­ ¾ÈÀüÇÏ°Ô ¿¹½Ã¸¦ ´Ù·ê ¼ö ÀÖ´Ù. µÎ¹ø° ºÎºÐÀº 'notify no;'¶ó´Â ºÎºÐÀÌ´Ù. named°¡ Á¸ÆÄÀÏÀÌ ¾÷µ¥ÀÌÆ® µÉ ¶§ ½½·¹À̺꼭¹ö¿¡ °øÁö°¡ µÇ¾î¼­´Â ¾ÈµÈ´Ù´Â À̾߱âÀÌ´Ù. BIND-8 ¹öÁ¯ÀÇ named´Â zoneÆÄÀÏÀÌ ¾÷µ¥ÀÌÆ® µÉ ¶§ zone ÆÄÀÏ¿¡ ÀÖ´Â NS·¹Äڵ忡 µî·ÏµÇ ÀÖ´Â ´Ù¸¥ ¼­¹öµé¿¡°Ô °øÁö¸¦ Çϱ⠶§¹®ÀÌ´Ù. ÀÌ°ÍÀº ÀϹÝÀûÀÎ ÀÌ¿ë¿¡´Â ÆíÇÒ °ÍÀÌÁö¸¸ °³ÀÎÀûÀÎ ¿¬½À¿¡¼­´Â ÀÌ·¯ÇÑ ºÎºÐÀ» »ç¿ëÇÏÁö ¸»¾Æ¾ß ÇÒ °ÍÀÌ´Ù. ¿ì¸®°¡ ÀÌ·¯ÇÑ °ÍÀ¸·Î ÀÎÅͳÝÀ» ¾îÁö·´Èú ¼ö´Â ¾øÁö ¾Ê´Â°¡?

±×¸®°í ÀÌ°ÍÀº ¹°·Ð ¿ÏÀüÈ÷ Ç㱸ÀÌ´Ù. ½Ç·Ê¸¦ º¸·Á¸é ´ÙÀ½ ÀåÀ» ÂüÁ¶Ç϶ó


5.5. ¿Ö reverse lookups ÀÌ ÀÛµ¿ÇÏÁö ¾Ê´Â°¡?

¿ªº¯È¯ Á¸ÀÌ ¼³Á¤µÇ¾úÀ» ¶§ °¡²û name lookup(À̸§°Ë»ç)ÀÌ µÇÁö ¾Ê¾Æ¼­ '¾ÆÂ÷'ÇÏ´Â ¼ø°£µéÀÌ ÀÖ´Ù. ¼öÇàÀü¿¡ ´ç½ÅÀÇ nameserver¿¡ ´ëÇØ ¿ªº¯È¯ °Ë»ç (reverse lookups)¸¦ ÇÒ ÇÊ¿ä°¡ ÀÖ´Ù. ÀÛµ¿ÇÏÁö ¾ÊÀ¸¸é ÀÌ ¼¼ÆÃÀ» ÁøÇàÇϱâ Àü¿¡ µÚ·Î °¡¼­ °íÃÄ¾ß ÇÑ´Ù.

ÀϹÝÀûÀ¸·Î ¿ªº¯È¯ °Ë»ç°¡(reverse looksup) µÇÁö ¾Ê´Â 2°¡Áö ÀÌÀ¯¸¦ µé¾î º¸°Ú´Ù.


5.5.1. ¿ªº¯È¯Á¸ÀÌ Á¦´ë·Î À§ÀÓµÇÁö ¾Ê´Â °æ¿ì.

³×Æ®¿öÅ© ÁÖ¼Ò¿Í µµ¸ÞÀÎÀ» °ø±ÞÇÏ´Â ¾÷ü¿¡ ÀϹÝÀûÀ¸·Î µµ¸ÞÀÎ À̸§À» À§Å¹ÇÏ°Ô µÈ´Ù. ±×·¯¸é ¾÷ü´Â NS ·¹Äڵ忡 Ãß°¡ÇÏ°í ¾Õ¿¡¼­ ¼³¸íÇÑ À̷дë·Î ³×ÀÓ¼­¹ö¸¦ ã´Â´Ù. ÀоîºÃ°ÚÁö¸¸ Á¦´ë·Î ÀÛµ¿µÇÁö ¾ÊÀ¸¸é ´Ù½Ã µ¹¾Æ°¡¼­ ÀоîºÁ¶ó.

¿ªº¯È¯ Á¸ ¿ª½Ã ¸Ã°ÜÁú °ÍÀε¥ ¸¸¾à 192.168.196´ëÀÇ ¸ÁÀ» ¾÷ü·ÎºÎÅÍ linux.bogus¶ó°í ¾ò¾ú´Ù¸é NS·¹Äڵ忡 Æ÷¿öµå Á¸Ã³·³ ¿ªº¯È¯Á¸À» Ãß°¡ÇÒ °ÍÀÌ´Ù. in-addr.arpa¸¦ µû¸£°í ÀÌ°ÍÀ¸·Î ¸ÁÀ» ±¸¼ºÇϸé ÀÌ ¾ÈÀÇ ¿À·ù¸¦ ã¾Æ¾ß ÇÒ °ÍÀÌ¸ç ´ëºÎºÐÀº ¾÷üÀÇ ¹®Á¦ÀÌ´Ù. ¾÷ü¿Í ¿¬¶ôÇؼ­ ¿¡·¯¸¦ ¼öÁ¤Ç϶ó.


5.5.2. Ŭ·¡½º°¡ ¾ø´Â ¼­ºê³ÝÀ» ¾ò´Â °æ¿ì

Á»´õ ¹ßÀüµÈ Çü½ÄÀÌÁö¸¸ ¿ä»çÀÌ´Â ´ç½ÅÀÌ ¼Ò±Ô¸ð ¾÷üÀÌ¸é °¡Áö°í ÀÖÀ» ¹ýÇÑ ÀϹÝÀûÀÎ ±â¼úÀÌ µÇ¾ú´Ù.

classless ¼­ºê³ÝÀº ¿ä»õ ÀÎÅͳÝÀÇ Ãß¼¼ÀÌ´Ù. ¾ó¸¶Àü¸¸Çصµ IP ºÎÁ·À¸·Î °í»ýÀÌ ¸¹¾Ò´Ù. IETF(Internet Engineering Task Force)ÀÇ ¶È¶ÈÇÑ À̵éÀÌ ¸Ó¸®¸¦ ¸Â´ë°í ¹®Á¦¸¦ ÇØ°áÇß´Ù. ±× °á°ú·Î C Ŭ·¡½ºº¸´Ù ÀÛÀº ¼­ºê³ÝÀ» ¾ò°Ô µÇ¾ú´Âµ¥ ¿©±â¿¡ ¾à°£ÀÇ ¹®Á¦°¡ ÀÖ´Ù. Mr. DNSÀÇ »çÀÌÆ®¿¡ °¡¼­ »ç¿ë¹ý°ú ÇØ°á¹ýµµ Âü°íÇ϶ó.

ÀоÁö ¾Ê¾Ò´Ù¸é È®ÀÎÇÏ±æ ¹Ù¶õ´Ù.

ù¹ø° ºÎºÐÀº ÀÎÅÍ³Ý °ø±Þ¾÷ü°¡ Mr.DNSÀÇ ±â¼úÀ» ÀνÄÇÏÁö ¸øÇÑ´Ù´Â ¹®Á¦ÀÌ´Ù. ¸ðµç ÀÎÅÍ³Ý ¾÷ü°¡ ´Ù ±×·¯´Â °ÍÀº ¾Æ´ÏÁö¸¸ ¸¸¾à ÀÌ·± °æ¿ì°¡ »ý±â¸é ´ç½ÅÀÌ ¿øÀÎÀ» ¼³¸íÇÏ°í º¸ÃæÇØ Áà¾ß ÇÑ´Ù. ¹°·Ð ´ç½ÅÀÌ ÀÌ ºÎºÐÀ» ¸ÕÀú ÀÌÇØÇÏ°í ÀÖ¾î¾ß ÇÑ´Ù. ±×·¯¸é ±×µéÀÌ ¿ªº¯È¯ Á¸À» ¼³Á¤ÇÏ°í dig·Î È®ÀÎÇÒ °ÍÀÌ´Ù.

µÎ¹ø° ºÎºÐÀº ±â¼úÀ» ¸íÈ®ÇÏ°Ô ÀÌÇØÇÏÁö ¸øÇÑ´Ù´Â °ÍÀÌ´Ù. ¾ÕºÎºÐÀÌ È®½ÇÇÏÁö ¾Ê´Ù¸é ´Ù½Ã µ¹¾Æ°¡¼­ È®ÀÎÇغ¸±æ. ±×µéÀº Dr.DNS¿¡¼­ ³ª¿Â µ¥·Î Ŭ·¡½º ¾ø´Â ¿ªº¯È¯ Á¸À» »ý¼ºÇÒ °ÍÀÌ´Ù.

¶Ç´Ù¸¥ º¹º´ÀÌ ÀÖ´Ù. ¿À·¡µÈ resolver´Â CNAME Æ®¸¯À» µû¸£Áö ¾Ê°í ¿ªº¯È¯ Á¸ÀÇ °¡µ¿À» ¸·À» °ÍÀÌ´Ù. À߸øµÈ Ŭ·¡½º¸¦ ÇÒ´çÇÏ°í Á¢¼ÓÀ» °ÅºÎÇϱ⵵ÇÑ´Ù. ÀÌ·¯ÇÑ °æ¿ìÀÇ ÇØ°áÃ¥Àº ÀÎÅÍ³Ý °ø±Þ¾÷ü¿¡ ¹®ÀÇÇؼ­ classless Á¸ ÆÄÀÏ¿¡ CNAME ´ë½Å PTR·¹Äڵ带 Á÷Á¢ ³Ö´Â °ÍÀÌ´Ù.

¸î¸î ISP¾÷üµéÀº automasical systemÀ̳ª ¿ªµµ¸ÞÀÎÀ» ¸ÞÇÎÇÏ´Â ½ÄÀÇ À¥±â¹Ý ÆûÀ¸·Î ÀÌ°ÍÀ» Á¶ÀýÇϱ⵵ ÇÑ´Ù.


5.6. Slave servers(2Â÷ ³×ÀÓ¼­¹ö)

master ¼­¹ö¿¡ Á¸ÆÄÀÏ ¼³Á¤À» Á¦´ë·Î Çß´Ù¸é ÀÌÁ¦´Â Çϳª ÀÌ»óÀÇ slave¼­¹öµµ ¼³Á¤ÇØ¾ß ÇÒ °ÍÀÌ´Ù. slave ¼­¹ö´Â ²À ÇÊ¿äÇÑ °ÍÀÌ´Ù. 1Â÷ µµ¸ÞÀÎÀÌ Á×¾î ¹ö·Áµµ »ç¶÷µéÀº 2Â÷ ³×ÀÓ¼­¹ö·Î ã¾Æ°¡ Á¤º¸¸¦ ¾ò°Ô µÉ °ÍÀÌ´Ù. slave ¼­¹ö´Â 1Â÷ ¼­¹ö¿Í ¸Ö¸® ¶³¾îÁ® Àִ°ÍÀÌ ÁÁ´Ù. 1Â÷ DNS¼­¹ö¿Í 2Â÷ DNS¼­¹ö´Â µÉ ¼ö ÀÖÀ¸¸é Power Supply,LAN,ISP,µµ½Ã, ±¹°¡µî.. °øÀ¯ÇÏ´Â °ÍÀÌ ÀûÀ» ¼ö·Ï ÁÁ´Ù. master¿Í slave °¡ À§ÀÇ »çÇ×µéÀÌ ¸ðµÎ ´Ù¸¥ °æ¿ì¶ó¸é ´ç½ÅÀÇ slave´Â ¸Å¿ì ÀßµÈ ¿¹ÀÌ´Ù.

slave´Â ´Ü¼øÈ÷ master·ÎºÎÅÍ Á¸ÆÄÀϵéÀ» º¹»çÇؿ´Ù. ¾Æ·¡¿Í °°ÀÌ ¼³Á¤ÇÏ¸é µÈ´Ù.

zone "linux.bogus" {
	type slave;
	file "sz/linux.bogus";
	masters { 192.168.196.2; };
};

´Ü¼øÈ÷ µ¥ÀÌÅÍ°¡ º¹»çµÇ´Â ±¸Á¶ÀÌ´Ù. ÀÌ·¯ÇÑ ÆÄÀϺ¹»ç´Â SOA¿¡ ÀÇÇØ Á¶Á¤µÈ´Ù.

@	IN	SOA	ns.linux.bogus. hostmaster.linux.bogus. (
			199802151	; serial, todays date + todays serial #
			8H		; refresh, seconds
			2H		; retry, seconds
			4W		; expire, seconds
			1D )		; minimum, seconds

masterÀÇ ½Ã¸®¾ó³Ñ¹ö°¡ ´ÜÁö slaveº¸´Ù Å©±â¸¸ Çϸé Á¸ÆÄÀÏÀÌ Àü¼ÛµÈ´Ù. slaveÀÇ refresh´Â master°¡ ¾÷µ¥ÀÌÆ® µÉ ¶§¸¶´Ù üũÇÒ °ÍÀÌ´Ù. ¸¸¾à¿¡ üũ°¡ µÇÁö ¾ÊÀ¸¸é(master°¡ Á׾) ¸Å¹ø Àç½Ãµµ Çϸ鼭 üũÇÒ °ÍÀÌ´Ù. expire±â°£±îÁö ½ÇÆи¦ ÇÑ´Ù¸é slave´Â Á¸ÆÄÀÏÀ» Á¦°ÅÇÏ°í ´õÀÌ»ó ³×ÀÓ¼­¹öÀÇ ±â´ÉÀ» ÇÏÁö ¾ÊÀ» °ÍÀÌ´Ù.


6. ±âº»º¸¾È¿É¼Ç

By Jamie Norrish

¼³Á¤¿É¼ÇÀ» ÀÌ¿ëÇÏ¿© ¹®Á¦ÀÇ ¼ÒÁö¸¦ ÁÙÀ̱â.

¼­¹öÀÇ ºÎÇϸ¦ ÁÙÀÌ°í º¸¾ÈÀ» ³ôÈ÷±â À§ÇÑ ¸î°¡Áö °£´ÜÇÑ ´Ü°èµéÀÌ ÀÖ´Ù. ¿©±â ³ª¿À´Â ºÎºÐÀÌ ½ÃÀÛÇÒ¶§ ³ª¿Â ºÎºÐº¸´Ù ´õ ³ª°¡´Â °ÍÀº ¾ø´Ù. ¸¸¾à ´ç½ÅÀÌ º¸¾È¿¡ °ü½ÉÀÌ ¾ø´Ù¸é (¾Æ¸¶ ±×·²°ÍÀÌÁö¸¸) ³Ý»óÀÇ ´Ù¸¥ ÀÚ¿øµéÀ» »ìÆ캸±æ ¹Ù¶õ´Ù(¸¶Áö¸· Àå ÂüÁ¶)

¼³Á¤Àº named.conf¿¡¼­ ÀÌ·ç¾îÁø´Ù. file optionsºÎºÐÀÌ ÁöÁ¤µÇ¸é ÆÄÀÏ¿¡ ÁöÁ¤µÈ ¸ðµç zone ÆÄÀϵéÀÌ Àû¿ëÀÌ µÈ´Ù. zone ÆÄÀϺκÐÀÌ ÁöÁ¤ÀÌ µÇ¸é ±× zone¿¡¼­¸¸ Àû¿ëµÈ´Ù. zone ºÎºÐÀº options ºÎºÐÀ» overrideÇÑ´Ù.


6.1. Àü¼Û¿¡¼­ÀÇ Á¦ÇÑ

slave ¼­¹ö°¡ µµ¸ÞÀο¡ ´ëÇØ ÀÀ´äÇÒ ¼ö ÀÖ°Ô ÇÏ·Á¸é ÁÖ¼­¹ö·ÎºÎÅÍ zone Á¤º¸¸¦ Àü´Þ¹Þ¾Æ¾ß ÇÑ´Ù. ÀÌ·¯ÇÑ ¿äûÀ» ÇÏ´Â ºÎºÐÀº ÀϺκÐÀÌ¸é µÈ´Ù. allow-transfer ¿É¼ÇÀ¸·Î Àü¼ÛÀ» Á¦ÇÑ ÇÒ ¼ö ÀÖ´Ù.192.168.1.4 ÁÖ¼Ò´Â ns.friend.bogusÀÇ ÁÖ¼ÒÀÌ°í µð¹ö±ë ¸ñÀûÀ¸·Î Ãß°¡µÇ¾ú´Ù.

zone "linux.bogus" {
      allow-transfer { 192.168.1.4; localhost; };
};

zone Àü¼ÛÀ» Á¦ÇÑÇÔÀ¸·Î¼­ Á¤º¸°¡ ÇÊ¿äÇÑ »ç¶÷¸¸ÀÌ ÁúÀǸ¦ ÇÒ ¼ö ÀÖ°í ±×¿Ü¿¡´Â DNS ¼Â¾÷¿¡ ´ëÇÑ Á¤º¸¸¦ ¾òÀ» ¼ö ¾ø´Ù..


6.2. spoofingÀ¸·ÎºÎÅÍÀÇ º¸È£

¿ì¼± ÀÚ½ÅÀÇ ÄÄÇ»ÅÍ ÀÌ¿Ü¿¡´Â ¾î¶² ÁúÀǵµ ºÒ°¡´ÉÇÏ°Ô Ç϶ó(³»ºÎ/local Àº Á¦¿Ü). ÀÌ°ÍÀº ¾ÇÀÇÀûÀÎ DNS»ç¿ëÀ» ¸·¾ÆÁÙ °ÍÀÌ°í ¼­¹öÀÇ ºÒÇÊ¿äÇÑ ÀÌ¿ëÀ» ÁÙ¿© ÁÙ °ÍÀÌ´Ù.

options {
      allow-query { 192.168.196.0/24; localhost; };
};

zone "linux.bogus" {
      allow-query { any; };
};

zone "196.168.192.in-addr.arpa" {
      allow-query { any; };
};

±×¸®°í ³»ºÎ/localÀ» Á¦¿ÜÇÑ ³ª¸ÓÁö¿¡¼­ Àç±ÍÀûÀÎ ÁúÀǸ¦ ºÒ°¡´ÉÇÏ°Ô Ç϶ó. ÀÌ°ÍÀº cache °ø°ÝÀÇ À§Çè(À߸øµÈ µ¥ÀÌÅ͸¦ Àü¼ÛÇÏ´Â °æ¿ì)À» ÁÙ¿©ÁÙ °ÍÀÌ´Ù.

options {
	allow-recursion { 192.168.196.0/24; localhost; };
};


6.3. root¿ÜÀÇ °èÁ¤À¸·Î named ±¸µ¿

named¸¦ root°¡ ¾Æ´Ñ user·Î ±¸µ¿½ÃÅ°´Â °ÍÀº ¾ÆÁÖ ÁÁÀº »ý°¢ÀÌ´Ù. ÀÌ·¸°Ô µÇ¸é Å©·¡Ä¿¿¡°Ô ±ÇÇÑÀ» »¯°Üµµ Á¦ÇÑÀûÀÏ ¼ö ¹Û¿¡ ¾ø´Ù. named¸¦ ±¸µ¿ÇÒ user¿Í groupÀ» »ý¼ºÇÏ°í named°¡ ±¸µ¿µÇ°Ô init script¸¦ ¼öÁ¤Ç϶ó. named¸¦ »õ userÀÇ groupÀÌ Á¶Á¤Çϵµ·Ï -u ¿Í -g flag¸¦ Áà¶ó.

¿¹¸¦ µé¾î Debian GNU/Linux2.2 °æ¿ì /etc/init.d/bind script´Â ¾Æ·¡¿Í °°ÀÌ ¼öÁ¤ÇÒ ¼ö ÀÖ´Ù. (user¿Í groupÀÌ »ý±ä »óȲ¿¡¼­)

start-stop-daemon --start --quiet --exec /usr/sbin/named -- -u named -g named

RedHatÀ̳ª ´Ù¸¥ ¹èÆ÷Æǵµ ¸¶Âù°¡ÁöÀÌ´Ù. Dave Lugo°¡ secure dual chroot setup¿¡ ´ëÇؼ­ http://www.etherboy.com/dns/chrootdns.html¿¡ ±â¼úÇØ ³õ¾Ò´Ù. °ü½ÉÀÖÀ¸¸é Âü°íÇϱæ


7. ½Çµµ¸ÞÀÎÀÇ ¿¹

½ÇÁ¦ µµ¸ÞÀÎÀÇ ¿¹

ÀÌÁ¦ ½ÇÁ¦ ¿¹½Ã·Î »ç¿ëÀÌ µÇ°í ÀÖ´Â ¿¹¸¦ µé¾îº¸±â·Î ÇÑ´Ù

³ª´Â ¿¹Á¦·Î Dave BullockÀÇ LAND-5¸¦ ¿¹·Î µé¾î º»´Ù. ÀÌ ÆÄÀϵéÀº 1996³â 9¿ù 24ÀÏ¿¡ ¸¸µé¾î Á³°í BIND-8±ÔÁ¤¿¡ ¸Â°Ô ¾à°£ È®ÀåÆíÁýÀ» ÇØ ³õ¾Ò´Ù. Áö±ÝÀÇ LAND-5 named ¼­¹ö¸¦ ÁúÀÇÇÑ´Ù¸é ¾à°£ÀÇ Â÷ÀÌ°¡ ÀÖÀ» °ÍÀÌ´Ù.


7.1. /etc/named.conf (or /var/named/named.conf)

ÀÌÁ¦ 127.0.0 net°ú LAND-5ÀÇ 206.6.177 ¼­ºê³Ý¿¡ ÇÊ¿äÇÑ 2°³ÀÇ reverse zoneÀÌ ÀÖ´Â master zoneºÎºÐ¿¡ ´ëÇؼ­ º¸±â·Î ÇÏÀÚ. ±×¸®°í land-5ÀÇ Æ÷¿öµå Á¸ÀÎ land-5.comµµ º¸±â·Î ÇÏÀÚ. HOWTO¿¡¼­ ¾²´ø pz ´ë½Å¿¡ zoneÀ̶ó´Â µð·ºÅ丮¸¦ ¾²´Â °Íµµ ÁÖÀÇÇÏ±æ ¹Ù¶õ´Ù.

// Boot file for LAND-5 name server

options {
	directory "/var/named";
};

zone "." {
	type hint;
	file "root.hints";
};

zone "0.0.127.in-addr.arpa" {
	type master;
	file "zone/127.0.0";
};

zone "land-5.com" {
	type master;
	file "zone/land-5.com";
};

zone "177.6.206.in-addr.arpa" {
	type master;
	file "zone/206.6.177";
};

¸¸¾à À§¿Í °°ÀÌ named.confÆÄÀÏÀ» ¼³Á¤Çß´Ù¸é Á¦¹ß! 2°³ÀÇ land-5 zone¿¡ "notify no;"¶ó°í Àû¾î¼­ Ãæµ¹À» ¹æÁöÇØÁÖ±æ ¹Ù¶õ´Ù.


7.2. /var/named/root.hints

ÀÌ ÆÄÀϵéÀÌ À¯µ¿ÀûÀ̶ó´Â »ç½ÇÀ» ±â¾ïÇضó. ±×¸®°í ÀÌ°ÍÀÌ ¿¾³¯ °ÍÀ̶ó´Â °Íµµ ±â¾ïÇ϶ó. ÀÌÀü¿¡ ¼³¸íÇÑ dig ·Î Áö±ÝÀÇ °ÍÀ» ÃøÁ¤ÇÏ´Â °ÍÀÌ ÈξÀ ³ªÀ» °ÍÀÌ´Ù.

; <<>> DiG 8.1 <<>> @A.ROOT-SERVERS.NET. 
; (1 server found)
;; res options: init recurs defnam dnsrch
;; got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 10
;; flags: qr aa rd; QUERY: 1, ANSWER: 13, AUTHORITY: 0, ADDITIONAL: 13
;; QUERY SECTION:
;;	., type = NS, class = IN

;; ANSWER SECTION:
.			6D IN NS	G.ROOT-SERVERS.NET.
.			6D IN NS	J.ROOT-SERVERS.NET.
.			6D IN NS	K.ROOT-SERVERS.NET.
.			6D IN NS	L.ROOT-SERVERS.NET.
.			6D IN NS	M.ROOT-SERVERS.NET.
.			6D IN NS	A.ROOT-SERVERS.NET.
.			6D IN NS	H.ROOT-SERVERS.NET.
.			6D IN NS	B.ROOT-SERVERS.NET.
.			6D IN NS	C.ROOT-SERVERS.NET.
.			6D IN NS	D.ROOT-SERVERS.NET.
.			6D IN NS	E.ROOT-SERVERS.NET.
.			6D IN NS	I.ROOT-SERVERS.NET.
.			6D IN NS	F.ROOT-SERVERS.NET.

;; ADDITIONAL SECTION:
G.ROOT-SERVERS.NET.	5w6d16h IN A	192.112.36.4
J.ROOT-SERVERS.NET.	5w6d16h IN A	198.41.0.10
K.ROOT-SERVERS.NET.	5w6d16h IN A	193.0.14.129
L.ROOT-SERVERS.NET.	5w6d16h IN A	198.32.64.12
M.ROOT-SERVERS.NET.	5w6d16h IN A	202.12.27.33
A.ROOT-SERVERS.NET.	5w6d16h IN A	198.41.0.4
H.ROOT-SERVERS.NET.	5w6d16h IN A	128.63.2.53
B.ROOT-SERVERS.NET.	5w6d16h IN A	128.9.0.107
C.ROOT-SERVERS.NET.	5w6d16h IN A	192.33.4.12
D.ROOT-SERVERS.NET.	5w6d16h IN A	128.8.10.90
E.ROOT-SERVERS.NET.	5w6d16h IN A	192.203.230.10
I.ROOT-SERVERS.NET.	5w6d16h IN A	192.36.148.17
F.ROOT-SERVERS.NET.	5w6d16h IN A	192.5.5.241

;; Total query time: 215 msec
;; FROM: roke.uio.no to SERVER: A.ROOT-SERVERS.NET.  198.41.0.4
;; WHEN: Sun Feb 15 01:22:51 1998
;; MSG SIZE  sent: 17  rcvd: 436


7.3. /var/named/zone/127.0.0

±âº»ÀûÀ¸·Î SOA·¹ÄÚ´Â ÇʼöÀÌ°í, ÀÌ ·¹ÄÚµå´Â 127.0.0.1¸¦ localhost·Î ¸ÅÇÎÇÑ´Ù. µÑ ´Ù ÇÊ¿äÇÏ´Ù. ÆÄÀÏ ¾È¿¡ ÀÌ ÀÌ»ó ÇÊ¿äÇÏÁöµµ ¾ÊÀ¸¸ç ³×ÀÓ¼­¹ö³ª hostmaster ÁÖ¼Ò°¡ ¹Ù²îÁö ¾Ê´Â ÀÌ»óÀº ¾÷µ¥ÀÌÆ® ÇÏÁö ¾Ê´Â°Ô ÁÁ´Ù.

@               IN      SOA     land-5.com. root.land-5.com. (
                                199609203       ; Serial
                                28800   ; Refresh
                                7200    ; Retry
                                604800  ; Expire
                                86400)  ; Minimum TTL
                        NS      land-5.com.
        
1                       PTR     localhost.

BIND¸¦ ±×³É ÀνºÅçÇß´Ù¸é(rpmÀ̳ª ¿É¼ÇÀÌ ¾ø´Â °æ¿ì¸¦ À̾߱âÇÏ´Â °Í °°´Ù.) À§¿¡ $TTL¶óÀÎÀÌ À§¿Í °°ÀÌ ºüÁ® ÀÖÀ» °ÍÀÌ´Ù. Àü¿¡´Â ¾²Áö ¾Ê´Ù°¡ BIND 8.2 ¹öÁ¯ºÎÅÍ ÀÌ°ÍÀ» Ãß°¡Çϱ⠽ÃÀÛÇß´Ù. ÀÌ ¶óÀÎÀÌ ºüÁø°ÍÀ» º¸´Âµ¥·Î ³Ö´Â °ÍÀÌ ÁÁÀ» °ÍÀÌ´Ù.


7.4. /var/named/zone/land-5.com

¿ì¸®´Â SOA ·¹Äڵ忡¼­ NS·¹Äڵ尡 ¾²ÀÌ´Â °ÍÀ» ºÃ´Ù. ¿ì¸®´Â 2Â÷ ³×ÀÓ¼­¹ö·Î ns2.psi.netÀ̶ó°í µÇÀÖ´Â °ÍÀ» º¸°Ô µÉ °ÍÀÌ´Ù. ÀÌ°ÍÀº 2Â÷ ¼­¹ö·Î Ç×»ó off¶óÀÎ»ó¿¡ ÀÖ¾î¾ß ÇÏ¸ç ¹é¾÷¿ëÀ¸·Î »ç¿ëµÈ´Ù´Â °ÍÀÌ´Ù. ¶ÇÇÑ master È£½ºÆ®°¡ land-5 ÀÌ°í ÀÌ°ÍÀº ¿©·¯ ´Ù¸¥ ¼­ºñ½º¸¦ ÇÏ°Ô µÈ´Ù.¿©±â¼­´Â CNAMEÀ» »ç¿ëÇÑ´Ù. (´ëüÇÒ ¼ö ÀÖ´Â °ÍÀ¸·Î´Â A·¹Äڵ尡 ÀÖ´Ù.)

i SOA Ç׸ñ¿¡¼­ ¾Ë ¼ö ÀÖµíÀÌ, Á¸ ÆÄÀÏÀº originÀÌ land-5.com ÀÌ¸ç °ü¸®ÀÚ´Â root@land-5.comÀÌ´Ù. hostmaster´Â °ü¸®ÀÚÀÇ ÁÖ¼Ò·Î ÀÚÁÖ »ç¿ëµÇ´Â °ÍÀÌ´Ù. ½Ã¸®¾ó ³Ñ¹ö´Â ÀÇ·ÊÀûÀ¸·Î yyyymmdd Çü½Ä¿¡ ±×³¯ÀÇ ½Ã¸®¾ó ³Ñ¹ö¸¦ µ¡ºÙÀδÙ. ¾Æ·¡¼­ º¸¸é ¾Æ¸¶ ÀÌ Áö¿ª ÆÄÀÏÀº 1996³â 9¿ù 20ÀÏ ¹öÀü 6ÀÏ °ÍÀÌ´Ù. ½Ã¸®¾ó ³Ñ¹ö´Â ÇѹæÇâÀ¸·Î¸¸ Áõ°¡ÇØ¾ß ÇÔÀ» ¸í½ÉÇÏÀÚ. ¿©±â¼­´Â ±×³¯ÀÇ ½Ã¸®¾ó ³Ñ¹ö°¡ ÇÑÀÚ¸®´Ù. ±×·¯¹Ç·Î 9¹øÀ» ÆíÁýÇÏ°í ³ª¼­ ¶Ç ÆíÁýÇÏ·Á¸é ³»ÀÏÀ» ±â´Ù·Á¾ß ÇÒ °ÍÀÌ´Ù. µÎ ÀÚ¸®¼ö »ç¿ëÀ» °í·ÁÇÏÀÚ.

@       IN      SOA     land-5.com. root.land-5.com. (
                        199609206       ; serial, todays date + todays serial #
                        8H		; refresh, seconds
                        2H		; retry, seconds
                        4W		; expire, seconds
                        1D )		; minimum, seconds
                NS      land-5.com.
                NS      ns2.psi.net.
                MX      10 land-5.com.  ; Primary Mail Exchanger
                TXT     "LAND-5 Corporation"

localhost	A	127.0.0.1

router          A       206.6.177.1
        
land-5.com.     A       206.6.177.2
ns		A	206.6.177.3
www             A	207.159.141.192

ftp             CNAME   land-5.com.
mail            CNAME   land-5.com.
news            CNAME   land-5.com.

funn            A       206.6.177.2

;
;       Workstations
;
ws-177200	A       206.6.177.200
                MX      10 land-5.com.   ; Primary Mail Host
ws-177201       A       206.6.177.201
                MX      10 land-5.com.   ; Primary Mail Host
ws-177202       A       206.6.177.202
                MX      10 land-5.com.   ; Primary Mail Host
ws-177203       A       206.6.177.203
                MX      10 land-5.com.   ; Primary Mail Host
ws-177204       A       206.6.177.204
                MX      10 land-5.com.   ; Primary Mail Host
ws-177205       A       206.6.177.205
                MX      10 land-5.com.   ; Primary Mail Host
; {Many repetitive definitions deleted - SNIP}
ws-177250       A       206.6.177.250
                MX      10 land-5.com.   ; Primary Mail Host
ws-177251       A       206.6.177.251
                MX      10 land-5.com.   ; Primary Mail Host
ws-177252       A       206.6.177.252
                MX      10 land-5.com.   ; Primary Mail Host
ws-177253       A       206.6.177.253
                MX      10 land-5.com.   ; Primary Mail Host
ws-177254       A       206.6.177.254
                MX      10 land-5.com.   ; Primary Mail Host

È®ÀÎÇØ º¸¸é ¾Ë°ÚÁö¸¸ host ¸íÀÌ ws_number Çü½ÄÀ¸·Î µÇ¾îÀÖ´Ù. BIND4 ¹öÁ¯¿¡¼­´Â named¸¦ ½ÃÀÛÇÒ ¶§ ¾²À̴ ȣ½ºÆ®¸íÀÌ °­Á¦ÀûÀ¸·Î Á¦ÇѵǾú´Ù. ±×·¯³ª BIND 8¿¡¼­´Â ÀÌ·¯ÇÑ °ÍÀÌ Àû¿ëµÇÁö ¾ÊÀ¸¹Ç·Î '_'(underline) ´ë½Å¿¡ '-'(dash)·Î ¹Ù²Ù¾ú´Ù.

¶Ç Çϳª ÁÖ¸ñÇØ¾ß ÇÒ ºÎºÐÀº workstation ÀÇ À̸§ÀÌ °³ÀÎÀÇ À̸§ÀÌ ¾Æ´Ï°í IP ÁÖ¼ÒÀÇ ³¡ 2ºÎºÐÀ̶ó´Â °ÍÀÌ´Ù. ÀÌ·¯ÇÑ °ÍµéÀº °ü¸®¸¦ ÆíÇÏ°Ô ÇÒ ¼ö ÀÖ°ÚÁö¸¸ Á¶±ÝÀº ºñÀΰ£ÀûÀÌ°í °í°´°úÀÇ ºÒ½ÅÀÇ ¿äÀÎÀÌ µÉ ¼öµµ ÀÖ´Ù.

¶ÇÇÑ funn.land-5.comÀÌ land-5.com ¸¦ CNAME´ë½Å¿¡ A ·¹Äڵ带 ½è´Ù´Â »ç½ÇÀ» ÁÖÀÇÇØ¾ß ÇÑ´Ù. ÀÌ°ÍÀº Àü¿¡ À̾߱â Çßµí ÁÁÀº ¹æħÀÌ´Ù.


7.5. /var/named/zone/206.6.177

¾Æ·¡¿¡ ÀÌ ÆÄÀÏÀÇ ¼³¸íÀÌ ÀÖ´Ù

@               IN      SOA     land-5.com. root.land-5.com. (
                                199609206       ; Serial
                                28800   ; Refresh
                                7200    ; Retry
                                604800  ; Expire
                                86400)  ; Minimum TTL
                        NS      land-5.com.
                        NS      ns2.psi.net.
;
;       Servers
;
1       PTR     router.land-5.com.
2       PTR     land-5.com.
2       PTR     funn.land-5.com.
;
;       Workstations
;
200     PTR     ws-177200.land-5.com.
201     PTR     ws-177201.land-5.com.
202     PTR     ws-177202.land-5.com.
203     PTR     ws-177203.land-5.com.
204     PTR     ws-177204.land-5.com.
205     PTR     ws-177205.land-5.com.
; {Many repetitive definitions deleted - SNIP}
250     PTR     ws-177250.land-5.com.
251     PTR     ws-177251.land-5.com.
252     PTR     ws-177252.land-5.com.
253     PTR     ws-177253.land-5.com.
254     PTR     ws-177254.land-5.com.

¿ªº¯È¯ Á¸Àº ´ëºÎºÐÀÇ ºñ±ØÀ» ¾ß±â½ÃÅ°´Â ¼³Á¤ÀÌ´Ù. ÀÌ°ÍÀº IPÁÖ¼Ò¸¦ °¡Áö°í ÀÖÀ¸¸é hostnameÀ» ã´Âµ¥ »ç¿ëµÈ´Ù. ¿¹¸¦ º¸ÀÚ: IRC ¼­¹ö°¡ ÀÖ°í IRC Ŭ¶óÀ̾ðÆ®·ÎºÎÅÍ Á¢¼ÓÀ» Çã¿ëÇÒ °æ¿ì¸¦ º¸ÀÚ. ³ë¸£¿þÀÌ IRC ¼­¹ö¸¦ »ç¿ëÇÏ¸ç ³ë¸£¿þÀÌ¿Í ½ºÄ­µð³ªºñ¾Æ¹Ýµµ Ŭ¶óÀ̾ðÆ®¿ÍÀÇ Á¢¼Ó¸¸ Çã¿ëÇÏ·Á ÇÑ´Ù. Ŭ¶óÀ̾ðÆ® Á¢¼ÓÀ» ÇÒ ¶§ C ¶óÀ̺귯¸®°¡ Ŭ¶óÀ̾ðÆ®ÀÇ IP ¹øÈ£¸¦ ¾Ë·ÁÁØ´Ù. Ŭ¶óÀ̾ðÆ®ÀÇ IP¹øÈ£°¡ ³Ý»óÀ¸·Î ¿À´Â ÆÐŶ¿¡ Æ÷ÇԵǾî Àֱ⠶§¹®ÀÌ´Ù. ÀÌÁ¦ gethostbyaddrÀ̶ó´Â ÇÔ¼ö¸¦ È£ÃâÇؼ­ ÁÖ¾îÁø IP·Î ±× ÄÄÇ»Å͸¦ ã´Â´Ù. gethostbyaddrÀº DNS¼­¹ö¿¡ ÁúÀǸ¦ ÇÒ °ÍÀ̸ç DNS´Â ãÀº ÄÄÇ»ÅÍ À̸§À¸·Î º¯È¯ÇÒ °ÍÀÌ´Ù. Ŭ¶óÀ̾ðÆ®°¡ ws-177200.land-5.com¿¡ Á¢¼ÓÇß´Ù°í °¡Á¤ÇØ º¸ÀÚ. IRC¼­¹ö¸¦ À§ÇØ C¶óÀ̺귯¸®´Â IP°¡ 206.6.177.200ÀÓÀ» ¾Ë¾Æ³»°í ÄÄÇ»ÅÍÀÇ À̸§À» ¾Ë¾Æ³»±â À§ÇØ 200.177.6.206.in-addr.arpaÀ» ã°Ô µÈ´Ù. DNS´Â ¿ì¼± arpa.À» ã°ÔµÇ¸ç ±×¸®°í´Â in-addr.arpa., ¿ª¼øÀ¸·Î 206, 6 À» ÃßÀûÇÏ°í ¸¶Áö¸·À¸·Î 177.6.206.in-addr.arpa¸¦ LAND-5 Á¸À¸·ÎºÎÅÍ Ã£¾Æ³»°Ô µÈ´Ù. °Å±â¿¡¼­ ¿ì¸®´Â ÃÖÁ¾ÀûÀ¸·Î 200.177.6.206.in-addr.arpa¸¦ "PTR ws-177200.land-5.com" ·¹ÄÚµå·ÎºÎÅÍ ¾ò°Ô µÈ´Ù. ÀÌ°ÍÀº 206.6.177.200Àº ws-177200.land-5.comÀ» ÀǹÌÇÏ´Â °ÍÀÌ´Ù. À§ÀÇ ¼³¸íÀº prep.ai.mit.edu¿¡¼­µµ Çß°í ¿©±â¿¡¼­´Â Ç㱸°¡ °çµé¿©Á® ÀÖ´Ù.

IRC ¼­¹ö À̾߱â·Î µ¹¾Æ¿Í¼­, IRC¼­¹ö´Â ÀÌÁ¦ ½ºÄ­µð³ªºñ¾Æ Áö¿ªÀÇ Á¢¼Ó¸¸À» Çã°¡ÇÑ´Ù. *.no,*.se, *.dk °°Àº °ÍÀ» Çã°¡ÇÒ °ÍÀÌ°í ws-177200.land-5.com Àº ÀûÇÕÇÏÁö ¾Ê°í Á¢¼ÓÀ» °ÅºÎÇÒ °ÍÀÌ´Ù.in-addr.arpa Á¸À¸·ÎºÎÅÍ 206.2.177.200 ¿¡ ´ëÇÑ ¿ªº¯È¯ mappingÀÌ ¾øÀ¸¸é ¼­¹ö´Â À̸§µéÀ» ÀüÇô ãÁö ¸øÇϸç 206.2.177.200Àº ¸ÅÄ¡°¡ ¾ÈµÇ´Â *.no, *.se , *.dk¿Í ºñ±³ÇÒ °ÍÀÌ´Ù.

ȤÀÚ´Â ¿ªº¯È¯ mappingÀ» ã´Â °ÍÀÌ ´ÜÁö ¼­¹ö¿¡°Ô¸¸ ÇÊ¿äÇÑ ÀÏÀ̰ųª Áß¿äÇÏÁö ¾Ê´Ù°í Çϴµ¥, °áÄÚ ±×·¸Áö ¾Ê´Ù. ¸¹Àº ftp, news,IRC¿Í ½ÉÁö¾î´Â http(www)¼­¹öµµ À̸§À» ãÁö ¸øÇϸé Á¢¼ÓÇÏÁö ¾ÊÀ» °ÍÀÌ´Ù. ¿ªº¯È¯ mappingÀº »ç½Ç ÇʼöÀûÀÎ °ÍÀÌ´Ù.


8. À¯Áö

ÀÛµ¿ÀÌ µÇ°Ô À¯ÁöÇ϶ó.

namedÀÇ ±â´ÉÀÌ À¯ÁöµÇ°Ô ÇØ¾ß ÇÏ¸ç ±×°ÍÀÌ Áö¼ÓÀûÀ¸·Î ±¸µ¿µÇ°Ô ÇØ¾ß ÇÑ´Ù. ±×·²·Á¸é root.hints¸¦ ¾÷µ¥ÀÌÆ® ÇØ¾ß ÇÑ´Ù. °¡Àå ¼Õ½¬¿î ¹æ¹ýÀº dig¸¦ ÀÌ¿ëÇÏ´Â °ÍÀÌ´Ù. ¸ÕÀú ¾î¶² Àμöµµ ¾øÀÌ dig ¸¦ ±¸µ¿½ÃÅ°¸é ÀÚ½ÅÀÇ ¼­¹ö¿¡ ÇØ´çÇÏ´Â root.hints¸¦ ¾ò°Ô µÉ °ÍÀÌ´Ù. ±×¸®°í ³ª¼­´Â dig @rootserver·Î ³ª¿­µÈ ·çÆ®¼­¹öÁß Çϳª¿¡ ÁúÀǸ¦ ÇÑ´Ù. root.hints ÆÄÀÏÀ» ³ªÅ¸³»´Â Ãâ·Â°á°ú¸¦ ÁÖ½ÃÇØ¾ß ÇÑ´Ù. ÆÄÀÏÀ» ÀúÀåÇÏ°í(dig @e.root-servers.net . ns>root.hints.new) root.hints ÆÄÀÏÀ» ±³Ã¼ÇÏ¸é µÈ´Ù.

Ç×»ó ij½¬ÆÄÀÏÀ» ±³Ã¼ÇÏ°í ³ª¸é named¸¦ À籸µ¿ ÇØ¾ß ÇÑ´Ù´Â »ç½ÇÀ» ¿°µÎÇØ µÎ±æ.

Al Longyear¾¾°¡ ÀÚµ¿ÀûÀ¸·Î root.hints¸¦ °»½ÅÇÒ ¼ö ÀÖ´Â ½ºÅ©¸³Æ®¸¦ Á¦°øÇØ ÁÖ¾ú´Ù. crontab¿¡ ÀúÀåÇÏ°í ÇÑ´Þ¿¡ Çѹø¾¿ µ¹¾Æ°¡°Ô ¼³Á¤ÇÏ¸é ±×µÚ¿¡´Â ½Å°æ¾²Áö ¾Ê¾Æµµ µÈ´Ù. ÀÌ ½ºÅ©¸³Æ®´Â ¿©·¯ºÐÀÇ ¸ÞÀÏÀÌ ÀÛµ¿ÇÏ°í mail-alias 'hostmaster'°¡ Á¤ÀǵǾî ÀÖ´Ù°í °¡Á¤ÇÑ´Ù. ¼öÁ¤Çؼ­ Àڽſ¡°Ô ¸Â°Ô ¼³Á¤ÇØ¾ß ÇÑ´Ù.

#!/bin/sh
#
# Update the nameserver cache information file once per month.
# This is run automatically by a cron entry.
#
# Original by Al Longyear
# Updated for BIND 8 by Nicolai Langfeldt
# Miscelanious error-conditions reported by David A. Ranch
# Ping test suggested by Martin Foster
# named up-test suggested by Erik Bryer.
#
(
 echo "To: hostmaster <hostmaster>"
 echo "From: system <root>"

 # Is named up? Check the status of named.
 case `ndc status 2>&1` in
    *'cannot connect to command channel'*)
        echo "named is DOWN. root.hints was NOT updated"
        echo
        exit 0
        ;;
 esac

 PATH=/sbin:/usr/sbin:/bin:/usr/bin:
 export PATH
 # NOTE: /var/named must be writable only by trusted users or this script 
 # will cause root compromise/denial of service opportunities.
 cd /var/named 2>/dev/null || {
    echo "Subject: Cannot cd to /var/named, error $?"
    echo
    echo "The subject says it all"
    exit 1
 }

 # Are we online?  Ping a server at your ISP
 case `ping -qnc 1 some.machine.net 2>&1` in
   *'100% packet loss'*)
        echo "Subject: root.hints NOT updated.  The network is DOWN."
	echo
	echo "The subject says it all"
	exit 1
	;;
 esac

 dig @e.root-servers.net . ns >root.hints.new 2> errors

 case `cat root.hints.new` in
   *NOERROR*)
	# It worked
	:;;
   *)
	echo "Subject: The root.hints file update has FAILED."
        echo
   	echo "The root.hints update has failed"
	echo "This is the dig output reported:"
   	echo
   	cat root.hints.new errors
        exit 1
	;;
 esac

 echo "Subject: The root.hints file has been updated"
 echo
 echo "The root.hints file has been updated to contain the following   
information:"
 echo
 cat root.hints.new

 chown root.root root.hints.new
 chmod 444 root.hints.new
 rm -f root.hints.old errors
 mv root.hints root.hints.old
 mv root.hints.new root.hints
 ndc restart
 echo
 echo "The nameserver has been restarted to ensure that the update is complete."
 echo "The previous root.hints file is now called   
/var/named/root.hints.old."
) 2>&1 | /usr/lib/sendmail -t
exit 0

ȤÀÚµéÀº root.hints ÆÄÀÏÀ» ÀÎÅÍ´ÐÀÇ ftp·ÎºÎÅÍ °¡Á®¿À´Â °ÍÀÌ À¯¿ëÇÏ´Ù°í ÇÑ´Ù. ftp¸¦ »ç¿ëÇÏÁö ¸»°í À§ÀÇ ¹æ¹ýÀ¸·Î root.hints ¸¦ ¾÷µ¥ÀÌÆ® Çϱ⸦. À§ÀÇ ¹æ¹ýÀÌ ´õ net»ó¿¡¼­, ±×¸®°í internic ¿¡µµ ÁÁÀº °ÍÀÌ´Ù.


9. ¹öÁ¯ 4¿¡¼­ 8·ÎÀÇ º¯È¯

ÀÌ ºÎºÐÀº David E. Smith (dave@bureau42.ml.org)¾¾°¡ ¾´ 'using bind 8'¿¡ ÀÖ´ø ÀýÀÌ´Ù. »õ·ÎÀº ÀýÀÇ À̸§¿¡ ¸Âµµ·Ï ¾à°£ ÆíÁýÀ» °¡Çß´Ù.

º°·Î ÇؾßÇÒ °ÍÀº ¾ø´Ù. named.boot´ë½Å named.conf¸¦ »ç¿ëÇÏ´Â Á¡ ¸»°í´Â ¸ðµç °ÍÀÌ µ¿ÀÏÇÏ´Ù. bind8Àº ÆÞ ½ºÅ©¸³Æ®·Î ¿¾ Çü½ÄÀÇ ÆÄÀϵéÀ» »õ·Î¿î Çü½Ä¿¡ ¸Â°Ô º¯È¯ÇÑ´Ù. ´ÙÀ½Àº ¿¾Çü½ÄÀ¸·Î µÈ ij½Ã Àü¿ë ³×ÀÓ ¼­¹öÀÇ ¿¹ÀÌ´Ù.

directory /var/named
cache	.	                                root.hints
primary	0.0.127.IN-ADDR.ARPA                    127.0.0.zone
primary	localhost				localhost.zone	 	

¾Æ·¡ÀÇ ¸í·ÉÀ» bind8/src/bin/named µð·ºÅ丮 ¾È¿¡¼­ ½ÇÇàÇ϶ó (ÀÌ°ÍÀº ¼Ò½º·Î ÄÄÆÄÀÏÇÏ´Â ¹èÆ÷º»ÀÇ °æ¿ìÀÌ¸ç ¹ÙÀ̳ʸ® ÆÐÅ°Áö¸¦ »ç¿ëÇß´Ù¸é ½ºÅ©¸³Æ®°¡ ¾îµò°¡¿¡ ÀÖÀ» °ÍÀÌ´Ù. ¾îµð¿¡ ÀÖ´ÂÁö´Â È®½ÅÇÒ ¼ö ¾ø´Ù)

./named-bootconf.pl < named.boot > named.conf

ÀÌÁ¦ named.conf°¡ ¸¸µé¾î Á³´Ù.

// generated by named-bootconf.pl

options {
	directory "/var/named";
};

zone "." {
	type hint;
	file "root.hints";
};

zone "0.0.127.IN-ADDR.ARPA" {
	type master;
	file "127.0.0.zone";
};

zone "localhost" {
	type master;
	file "localhost.zone";
};

named.boot¾È¿¡ ÀÖ´ø ³»¿ëµéÀº ±×´ë·Î ÀÛµ¿ÇÏÁö¸¸ BIND-8ÀÇ »õ·Î¿î ±â´ÉÀ̳ª ¼³Á¤Àº ÀÛµ¿ÇÏÁö ¾Ê´Â´Ù. ¿©±â¿¡ ºñ½ÁÇÏÁö¸¸ ´õ È¿°úÀûÀÎ º¸´Ù Á¤±³ÇÑ named.conf°¡ ÀÖ´Ù

// This is a configuration file for named (from BIND 8.1 or later).
// It would normally be installed as /etc/named.conf.
// The only change made from the `stock' named.conf (aside from this
// comment :) is that the directory line was uncommented, since I
// already had the zone files in /var/named.

options {
	directory "/var/named";
	datasize 20M;
};

zone "localhost" IN {
	type master;
	file "localhost.zone";
};

zone "0.0.127.in-addr.arpa" IN {
	type master;
	file "127.0.0.zone";
};

zone "." IN {
	type hint;
	file "root.hints";
};

BIND 8 ¹èÆ÷º»ÀÇ bind8/src/bin/named/test¿¡¼­ Å×½ºÆ® ÇÒ ¼ö ÀÖÀ¸¸ç Á¸ ÆÄÀÏÀ» º¹»çÇÒ ¼ö ÀÖ´Ù. »ç¶÷µéÀº ÀÌ·¯ÇÑ ½ÄÀ¸·Î ÀÔ·ÂÇؼ­ Áï½Ã »ç¿ëÇÏ°ï ÇÑ´Ù.

Á¸ ÆÄÀÏ°ú root.hints ÆÄÀÏÀº ¼­·Î Çü½ÄÀÌ µ¿ÀÏÇÏ¸ç ±×µéÀ» ¾÷µ¥ÀÌÆ®ÇÏ´Â ¸í·É ¶ÇÇÑ µ¿ÀÏÇÏ´Ù.


10. Áú¹®°ú ´äº¯

¼ÖÂïÈ÷ ÀÌÇØ°¡ ¾È°¡´Â ºÎºÐÀÌ ¸¹Àº ºÎºÐÀÔ´Ï´Ù. ¿ø¹®µµ °°ÀÌ »ìÆìºÁ ÁÖ¼¼¿ä. ¿ì¼± ³ª¿¡°Ô ¸ÞÀÏ º¸³»±â Àü¿¡ À̺κÐÀ» Àб⸦ ¹Ù¶õ´Ù.

  1. ³» ³×ÀÓ¼­¹ö°¡ named.boot¸¦ ã°í ÀÖ¾î¿ä.

    ÀÌ HOWTO¹®¼­¸¦ Á¦´ë·Î ÀÐÁö ¾ÊÀº °æ¿ìÀÌ´Ù. ÀÌÀü ¹öÁ¯ÀÎ BIND 4ÀÇ HOWTO¸¦ º¸·Á¸é ¾Æ·¡¸¦ Âü°íÇ϶ó. http://www.math.uio.no/~janl/DNS/

  2. ¹æÈ­º® ¾È¿¡ ÀÖ´Â DNS¸¦ »ç¿ëÇÏ´Â ¹æ¹ýÀº?

    A hint: forward only;forward ¹Û¿¡ ¾ø´Ù.;. ¶ÇÇÑ

      query-source port 53;
      

    named.confÀÇ "option" ºÎºÐ¾È¿¡ ³ÖÀ¸¸é µÈ´Ù. caching ºÎºÐ¿¡ ±â¼úÇß¾ú´Ù.

  3. ¿¹¸¦µé¾î www.busy.site°°ÀÌ ¾î¶»°Ô ÇØ¾ß ºÎÇϸ¦ È¿°úÀûÀ̰ųª ºñ½ÁÇÏ°Ô À¯ÁöÇϸ鼭 DNS¸¦ µ¹¸±¼ö ÀÖ´ÂÁö?

    www.busy.site¿¡ ¸Â´Â A ·¹Äڵ带 »ç¿ëÇÏ°í BIND 4.9.3 À̳ª ±× ÀÌÈÄ ¹öÁ¯À» »ç¿ëÇ϶ó. ±×·¯¸é BIND °¡ ¾Ë¾Æ¼­ µ¹¸é¼­ ÁúÀǸ¦ ´äÇØÁÙ °ÍÀ̸ç ÀÌÀü ¹öÁ¯¿¡¼­´Â ÀÛµ¿ÇÏÁö ¾ÊÀ» °ÍÀÌ´Ù.

  4. ÀÎÆ®¶ó³Ý¿¡(¿ÜºÎ¿Í ´ÜÀýµÈ) DNS ¸¦ ¼³Á¤ÇÏ°íÀÚ ÇÕ´Ï´Ù. ¹» ÇØ¾ß ÇÏ´ÂÁö?

    root.hints ÆÄÀÏÀ» Á¦¿ÜÇÏ°í zoneÆÄÀÏÀ» ¸¸µé¾î¶ó. ÀÌ°ÍÀº Ç×»ó »õ hints ÆÄÀÏÀ» °»½ÅÇÒ ÇÊ¿ä°¡ ¾ø´Ù´Â À̾߱âÀÌ´Ù.

  5. 2Â÷(slave) ³×ÀÓ¼­¹ö¸¦ ¾î¶»°Ô ¼³Á¤Çմϱî?

    ¸¸¾à¿¡ 1Â÷ ³×ÀÓ¼­¹ö(primary/master)°¡ 127.0.0.1 ÀÌ¸é ´ç½ÅÀÇ 2Â÷ ³×ÀÓ¼­¹öÀÇ named.conf¿¡ ´ÙÀ½À» Ãß°¡ÇÏ¸é µÈ´Ù.

      zone "linux.bogus" {
    	type slave;
    	file "sz/linux.bogus";
    	masters { 127.0.0.1; };
      };
      

    masters ºÎºÐ¿¡ ';' (semicolon)À¸·Î ±¸ºÐÇؼ­ ¿©·¯ ´ëü master¸¦ ³ÖÀ¸¸é ±×°Íµµ °°ÀÌ º¹»ç°¡ µÈ´Ù.

  6. ³Ý»óÀÇ Á¢¼ÓÀ» ²÷°í ³ª¼­µµ BIND°¡ ±¸µ¿µÇ°Ô ÇÏ°í ½Í´Ù¸é.

    4°¡Áö ¹æ¹ýÀÌ ÀÖ´Ù.

    • BIND 8À» Ưº°È­Çϱâ, Adam L Rice°¡ ³»°Ô ´ÙÀ̾ó¾÷ ÄÄÇ»ÅÍ¿¡¼­ DNS¸¦ ¹®Á¦¾øÀÌ »ç¿ëÇÏ´Â ¹æ¹ýÀ» email·Î ¾Ë·Á¿Ô´Ù.

      ³ª´Â »õ BIND ¹öÁ¯¿¡¼­ [<em/shuffeling files, -ed/] ÀÌ ´õÀÌ»ó ÇÊ¿äÇÏÁö ¾Ê´Ù´Â 
      °ÍÀ» ¾Ë¾Ò´Ù. "forwarders"¸¦ Æ÷ÇÔÇÑ "forward" ·Î ¾î¶»°Ô ÀÌ°ÍÀ» ÅëÁ¦ÇÏ´ÂÁö¸¦ ¾Ë¾Ò´Ù. 
      ±âº»¼³Á¤Àº "forward first"·Î ÀÌ°ÍÀº °¢°¢ÀÇ forwardersµé¿¡°Ô ÁúÀǸ¦ ÇÏ°í, ÀÌ°ÍÀÌ 
      ½ÇÆÐÇϸé ÀϹÝÀûÀ¸·Î ÀÚ½ÅÀ» öÀúÇÏ°Ô Á¶»çÇÑ´Ù. ÀÌ°ÍÀº gethostbyname()¿Í À¯»çÇÑ 
      °á°ú¸¦ ÁÖ¸ç ÀϹÝÀûÀ¸·Î ¸µÅ©°¡ ¾ÈµÉ ¶§ ¿À·£ ½Ã°£À» ÇãºñÇÑ´Ù.±×·¯³ª "forward only" °¡ 
      ¼³Á¤µÇ¸é, forwarders·Î ºÎÅÍ ÀÀ´äÀÌ ¾øÀ» °æ¿ì ¹Ù·Î Æ÷±â¸¦ ÇÏ°í gethostbyname() ·Î 
      ³Ñ¾î°£´Ù. °í·Î /etcÆÄÀÏÀ» ¼Ø¾¾ÀÖ°Ô ¼³Á¤ÇÒ ÇÊ¿äµµ ¾ø°í ¼­¹ö¸¦ Àç½ÃÀÛÇÒ ÇÊ¿äµµ ¾ø´Ù.
      
      ³» °æ¿ì¿¡´Â ´ÜÁö ¸îÁÙ¸¸À» Ãß°¡Çß´Ù.
      
      forward only;
      forwarders { 193.133.58.5; };
      
      ³» named.conf file¿¡ ¼³Á¤Çß°í Àß ÀÛµ¿µÈ´Ù. ÀÌ°ÍÀÇ ´ÜÁ¡Àº ´ÜÁö dump cache »óȲÀ» 
      º¸´Â DNS ÇÁ·Î±×·¥ÀÇ Á¤È®µµ¸¦ ³·Ãá´Ù´Â °ÍÀÌ´Ù.Á»´õ È®À强À» °®±â À§ÇØ, ÀÌ·¯ÇÑ dump 
      cache ÇÁ·Î±×·¥À» µ¹¸®°í ½ÍÁö¸¸ ¸®´ª½º¿¡¼­ ±×´ÙÁö ÇÊ¿äÇÑ ÇÁ·Î±×·¥Àº ¾Æ´Ñ °Í °°´Ù.

    • Ian Clark¿¡°Ô¼­µµ ÆíÁö¸¦ ¹Þ¾Ò´Ù. ±×´Â ±×°¡ ÇÑ ¹æ½ÄÀ» ¼³¸íÇÑ´Ù.

      ³ª´Â named¸¦ 'Masquerading'»óÅ¿¡¼­ ±¸µ¿ÇÑ´Ù.³ª´Â 2°³ÀÇ root.hints fileÀÌ ÀÖ°í 
      Çϳª´Â root.hints.real·Î ¸í¸íÇß´Ù. ÀÌ°ÍÀº ½ÇÁ¦  root server À̸§À» °¡Áö°í ÀÖ°í 
      ±×¸®°í root.hints.fake ¶ó ºÒ¸®´Â ´Ù¸¥ ÆÄÀÏÀº...
      
      ----
      ; root.hints.fake
      ; this file contains no information
      ----
      
      ³»°¡ off¶óÀÎÀ϶§ ³ª´Â root.hints.fake file ¸¦ root.hints ·Î º¹»çÇÏ°í named¸¦ 
      ±¸µ¿ ½ÃŲ´Ù..
      
      ³»°¡ onlineÀ϶§ root.hints.real À» root.hints ·Î º¹»çÇÏ°í named¸¦ Àç½ÃÀÛÇÑ´Ù.
      
      
      ÀÌ°ÍÀº ip-down & ip-up ÀÏ °æ¿ì ÇàÇØÁø´Ù.
      
      ³»°¡ óÀ½À¸·Î off line ¿¡¼­ ÁúÀǸ¦ ÇßÀ» ¶§ Á¤¹ÐÇÏ°Ô ÀÛµ¿ÇÏÁö ¾Ê¾ÒÀ¸¸ç ¾Æ·¡¿Í °°Àº 
      ¸Þ½ÃÁö¸¸ Ãâ·Âç´.
      
      Jan 28 20:10:11 hazchem named[10147]: No root nameserver for class IN
      
      which I can live with.
               
      Àß ÀÛµ¿ÇÏ´Â °Í °°´Ù. ¿ÜºÎ µµ¸ÞÀο¡ ´ëÇÑ Áö¿¬½Ã°£ ¾øÀÌ ·ÎÄà ÄÄÇ»ÅÍ¿¡¼­ ³×ÀÓ¼­¹ö¸¦ 
      ¿î¿µÇÒ ¼ö ÀÖ¾úÀ¸¸ç ¿ÜºÎ µµ¸ÞÀÎÀÌ ÀÛµ¿ÇÏ´ÂÁö ÁúÀǸ¦ º¸³¾ ¼ö ÀÖ¾ú´Ù.

      Peter Denison Àº Ian ÀÌ ÃæºÐÄ¡ ¸øÇÏ´Ù°í »ý°¢ÇÏ°í ±ÛÀ» º¸³Â´Ù.

      ¿¬°áµÇ¾úÀ»¶§  ) ij½¬µÇ¾îÁø(Áö¿ª³×Æ®¿öÅ© Æ÷ÇÔ) ¸ñ·ÏÀº Áï½Ã ¼­ºñ½º
                      ij½¬µÇ¾îÁöÁö ¾ÊÀº ºÎºÐÀº ISPÀÇ ³×ÀÓ¼­¹ö·Î Æ÷¿öµùµÈ´Ù.
      ¿¬°áµÇÁö¾ÊÀ»¶§) Áö¿ª³×Æ®¿öÅ© ÁúÀÇ´Â Áï½Ã ÀÌ·ç¾îÁü
                      ´Ù¸¥ ÁúÀÇ´Â Áï½Ã ½ÇÆÐÇÔ
      
      ·çÆ® ij½¬ÆÄÀÏ°ú Æ÷¿öµù ÁúÀÇÀÇ º¯°æÁ¶ÇÕÀº Àß ÀÛµ¿ÇÏÁö ¾Ê´Â´Ù.
      
      ±×·¡¼­ ³ª´Â ³»ºÎLUGµé°ú Åä·ÐÀ» Çؼ­ 2°³ÀÇ nameds¸¦ ´ÙÀ½°ú °°ÀÌ ¸¸µé¾ú´Ù:
      
      
      named-online:   forwards to ISPs nameserver
                      master for localnet zone
                      master for localnet reverse zone (1.168.192.in-addr.arpa)
                      master for 0.0.127.in-addr.arpa
                      listens on port 60053
      
      named-offline:  no forwarding
                      "fake" root cache file
                      slave for 3 local zones (master is 127.0.0.1:60053)
                      listens on port 61053
      
      ±×¸®°í ÀÌ°ÍÀ» Æ÷Æ® Æ÷¿öµù°ú °áÇÕÇؼ­ off¶óÀÎÀ϶§ port 53 ºÎÅÍ 61053 ±îÁö º¸³»¸ç 
      ¿Â¶óÀÎÀÏ °æ¿ì´Â port 60053 À» »ç¿ëÇß´Ù. (³ª´Â 2.3.18´ëÀÇ »õ netfilter¸¦ »ç¿ëÇßÁö¸¸ 
      ¿¾³¯ (ipchains) ¹æ½ÄÀÌ ÀÛµ¿µÇ¾ú´Ù.)
      
      ±¸¹öÁ¯¿¡¼­´Â ÀÛµ¿ÇÏÁö ¾Ê°í BIND 8.2¿¡´Â ¾à°£ÀÇ ¹ö±×°¡ ÀÖ´Ù´Â °ÍÀ» ¸í½ÉÇضó.
      ½½·¹À̺ê¿Í ¸¶½ºÅÍ°¡ ºñ·Ï Æ÷Æ®°¡ ´Ù¸¥ °æ¿ì¶ó Çصµ °°Àº IP¸¦ ¾²Áö ¸»¾Æ¾ß ÇÑ´Ù. ÀÌ°ÍÀº 
      trial ¹öÁ¯ÀÌ¸ç °÷ ³ª¾ÆÁú °ÍÀÌ´Ù.

    • Karl-Max Wanger·ÎºÎÅÍ BIND°¡ ¿ÀÇÁ¶óÀο¡¼­ NFS¿Í port mapper¿Í »óÈ£ÀÛ¿ëÇÏ´Â ¹ý¿¡ ´ëÇÑ Á¤º¸¸¦ ¹Þ¾Ò´Ù:

      ³ª´Â ¸ðµ©À¸·Î ³» nameserver¸¦ µ¹¸®°í ³×ÀÓ¼­¹ö´Â cache ³×ÀÓ¼­¹öÀÇ ±â´É¸¸À» ÇÑ´Ù.
      ÀÎÁõÀ̳ª ¸ðµç root.cache file¿¡ ´ëÇÑ ÀçÁúÀÇ´Â ¾ø´Ù. Slackwareó·³ nfsd ³ª mountd
      ÀÌÀü¿¡ ±¸µ¿µÈ´Ù.
      
      ³» ÄÄÇ»ÅÍÁß Çϳª·Î (a Libretto 30 notebook) ³» local LANÀ» ÅëÇØ ´Ù¸¥ ½Ã½ºÅÛ¿¡
      ¸¶¿îÆ®¸¦ ÇÒ¼ö Àִµ¥ ´ëºÎºÐÀº ±×·¸°Ô µÇÁö ¾Ê´Â ¹®Á¦¸¦ °¡Áö°í ÀÖ´Ù. Á÷·ÄÆ÷Æ®¿¡¼­
      ÀÛµ¿ÇÏ´Â PLIP, a PCMCIA ethernet card ³ª PPP µîÀ» ¹«½ÃÇصµ °°Àº °á°ú°¡ ³ª¿Â´Ù.
      
      °è¼Ó ÃßÃøÇÏ°í ½ÇÇèÇϸ鼭 ³ª´Â ¹«ÀǹÌÇÑ nfsd¿Í mountd µî·Ï°úÁ¤ÀÌ portmapper°¡
      ½ÃÀÛÆÄÀÏ¿¡¼­ ½ÇÇàµÉ ¶§ °è¼Ó ÁøÇàµÈ´Ù´Â °ÍÀ» ¾Ë¾Ò´Ù.(ÀÌ·¯ÇÑ daemons µéÀ» ÀÇ·ÊÈ÷
      ºÎÆ®ºÎºÐ¿¡ ³Ö¾ú´Ù.) named ¸¦ nfsd ¿Í mountd ÀÌÈÄ¿¡ ¼öÇàÇϸé ÀÌ·¯ÇÑ ¹®Á¦´Â »ç¶óÁø´Ù.
      
      ÀÌ·¯ÇÑ boot sequence¸¦ ¼öÁ¤Çϴµ¥ Ưº°ÇÑ ºÒÀÌÀÍÀº ¾ø´Ù.ÀÌ·¯ÇÑ ¹æ½ÄÀ» ±ÇÀ¯Çؼ­
      ¹®Á¦Á¡À» ¹æÁöÇßÀ¸¸é ÇÑ´Ù.

    • ¸¶Áö¸·À¸·Î, ÀÌ ºÎºÐ¿¡ °üÇÑ HOWTO Á¤º¸ÀÌ´Ù. Ask Mr. DNS at¿¡¼­ ã¾Æº¸±æ. BIND 4 ¿¡ ´ëÇÑ Á¤º¸ÀÌÁö¸¸ BIND 8¿¡µµ ¸¹ÀÌ Àû¿ëµÈ´Ù°í À̾߱â ÇÑ´Ù.

  7. ij½¬ Àü¿ë ³×ÀÓ ¼­¹ö´Â ±× ij½¬ Á¤º¸¸¦ ¾îµð¿¡ ÀúÀåÇϳª? ij½¬ Å©±â¸¦ Á¦¾îÇÒ¼ö ÀÖ´Â ¹æ¹ýÀº ¾ø´Â°¡?

    ij½ÃµÈ Á¤º¸´Â ¸ðµÎ ¸Þ¸ð¸®¿¡ ÀúÀåµÈ´Ù. µð½ºÅ©¿¡´Â ±â·ÏµÇÁö ¾Ê´Â´Ù. named¸¦ Á×ÀÏ ¶§¸¶´Ù ij½Ã´Â »ç¶óÁø´Ù. ij½Ã Á¤º¸´Â ¾î¶² ¹æ¹ýÀ¸·Îµç Á¦¾îÇÒ ¼ö ¾ø´Ù. named´Â ¾î¶² °£´ÜÇÑ ±ÔÄ¢¿¡ µû¶ó ij½Ã¸¦ ´Ù·ç´Âµ¥ ´ÙÀ½°ú °°´Ù. ¾î¶² ¸ñÀûÀ¸·Îµç ij½Ã Á¤º¸³ª ij½Ã Å©±â¸¦ Á¦¾îÇÒ ¹æ¹ýÀº ¾ø´Ù. ±×·¯°í ½Í´Ù¸é named¸¦ ÇØÅ·Çؼ­ ¼öÁ¤ÇÏ¸é µÈ´Ù. ±×·¯³ª ±ÇÇÏÁö´Â ¾Ê´Â´Ù.

  8. named°¡ Àç½ÃÀ۵Ǵ µ¿¾ÈÀº ij½Ã¸¦ ÀúÀåÇϴ°¡? ÀúÀåÇϵµ·Ï ÇÒ ¼ö Àִ°¡?

    ¾ø´Ù. named´Â ¸ØÃâ ¶§ ij½Ã¸¦ ÀúÀåÇÏÁö ¾Ê´Â´Ù. Áï, named°¡ ¸ØÃß¾ú´Ù°¡ ´Ù½Ã ½ÃÀÛÇÒ ¶§¸¶´Ù ij½Ã´Â »õ·Î ¸¸µé¾î Áø´Ù. named·Î ÇÏ¿©±Ý ij½Ã¸¦ ÆÄÀÏ·Î ÀúÀåÇÏ°Ô ÇÒ ¼ö´Â ¾ø´Ù. ±×·¯°í ½Í´Ù¸é named¸¦ ÇØÅ·Çؼ­ ¼öÁ¤ÇÏ¸é µÈ´Ù. ±×·¯³ª ±ÇÇÏÁö´Â ¾Ê´Â´Ù.

  9. ¾î¶»°Ô µµ¸ÞÀÎÀ» ¾ò¾î¾ß ÇÏ°í, ¿¹¸¦µé¾î linux-rules.net°°Àº µµ¸ÞÀÎÀ» ¾î¶»°Ô ±¸ÃàÇØ¾ß Çϸç, ¾î¶»°Ô ÇÏ¸é ³ª¿¡°Ô ÀûÇÕÇÑ µµ¸ÞÀÎÀ» ÇÒ´çÇÒ ¼ö Àִ°¡?

    ¼­ºñ½º °ø±Þ¾÷ü¿¡ ¿¬¶ôÀ» Çضó. ÀÌ·¯ÇÑ ºÎºÐµéÀ» µµ¿ÍÁÙ °ÍÀÌ´Ù.´ëºÎºÐÀº µµ¸ÞÀÎÀ» ¾ò±â À§ÇØ µ·À» ÁöºÒÇÑ´Ù´Â »ç½ÇÀ» ¸í½ÉÇضó.

  10. DNS serverÀÇ º¸¾ÈÀ» ³ôÈ÷°í DNS¸¦ ºÐ¸®ÇÏ´Â ¹æ¹ýÀº?

    µÑ´Ù Áøº¸ÇÑ ÁÖÁ¦ÀÌ´Ù. µÑ´Ù http://www.etherboy.com/dns/chrootdns.html ¿¡ ±â¼ú µÇ¾î ÀÖ´Ù. ¿©±â¼­´Â ´õÀÌ»ó ¼³¸íÇÏÁö ¾Ê´Â´Ù.


11. DNS °ü¸®Àڷμ­ ´õ ¸¹Àº ½Ã°£À» ¼ÒºñÇÏ·Á¸é

¹®¼­¿Í Åøµé

¿Â¶óÀÎ »ó°ú ÃâÆÇµî ¹®¼­µéÀÌ ¿©·µÀÖ´Ù. ÀÌ·¯ÇÑ ¹®¼­µéÀ» Àд °ÍÀº ´õ ¸¹Àº ½Ã°£ÀÌ µç´Ù. Que (ISDN 0-7897-2273-9)¿¡¼­ ÃâÆÇµÈ The Concise Guide to DNS and BIND (by Nicolai Langfeldt)°¡ ÀÖ´Ù. ÀÌ Ã¥Àº HOWTO¿Í ºñ½ÁÇÏÁö¸¸ ´õ ¸¹°í ÀÚ¼¼ÇÑ ³»¿ëÀ» ±â¼úÇØ ³õ¾Ò´Ù. ±×·¯³ª ÀϹÝÀûÀ¸·Î´Â C. Liu and P. Albitz°¡ ¾´ O'Reilly & Associates (ISBN 0-937175-82-X)ÀÇ DNS and BIND °¡ ÀÖ´Ù. ÀÌ°Í ¿ª½Ã ¸Å¿ì ÁÁ´Ù. 3ÆDZîÁö ³ª¿Ô´Ù. BIND 4¸¸Å­À̳ª BIND 8À» ¸¹ÀÌ ¼³¸íÇØ ³õ¾Ò´Ù. Craig Hunt°¡ ¾´ O'Reilly (ISBN 0-937175-82-X)»çÀÇ TCP/IP Network AdministrationÀÇ DNS ºÎºÐµµ ÁÁ´Ù. Robert M. PirsigÀÇ Zen and the Art of Motorcycle Maintenance ¿ª½Ã ÈǸ¢ÇÏ´Ù(ISBN 0688052304).

ÀÎÅͳݿ¡¼­´Â http://www.dns.net/dnsrd/ , http://www.isc.org/bind.html¿¡¼­ °ü·Ã ³»¿ëÀ» ãÀ» ¼ö ÀÖ´Ù. FAQ, ·¹ÆÛ·±½º ¸Å´º¾ó(BOG; Bind Operations Guide), ±â»ç, ÇÁ·ÎÅäÄÝ Á¤ÀÇ, DNS ÇØÅ· (ÀüºÎ´Â ¾Æ´ÏÁö¸¸, ÀÌ ¹®¼­¿Í rfcs ´ëºÎºÐÀÌ bind ¹èÆ÷º»¿¡ Æ÷ÇԵǾî ÀÖ´Ù.) ÇÊÀÚ´Â ÀÌµé ´ëºÎºÐÀ» ÀÐÁö º¸Áö ¾Ê¾Ò´Ù. ¾î¶µç ÇÊÀÚ´Â Àü¹®ÀûÀ¸·Î DNS¸¦ °ü¸®ÇÏ´Â °ü¸®ÀÚ´Â ¾Æ´Ï´Ù. ¹Ý¸é Arnt GulbrandsenÀº BOG¸¦ Àоú°í ±× »ç½Ç¿¡ ȲȦÇØ ÇÑ´Ù. :-) news:comp.protocols.tcp-ip.domains°¡ DNS °ü·Ã ´º½º±×·ìÀÌ´Ù. ¶ÇÇÑ, DNS¿¡ °üÇÑ RFC°¡ ¸¹ÀÌ ÀÖ´Ù. ¾Æ¸¶µµ °¡Àå Áß¿äÇÑ °ÍÀº ÀÌ°Í µéÀÏ °ÍÀÌ´Ù.

RFC 2671

P. Vixie, Extension Mechanisms for DNS (EDNS0) August 1999.

RFC 2317

, BCP 20, H. Eidnes et. al. Classless IN-ADDR.ARPA delegation, March 1998. This is about CIDR, or classless subnet reverse lookups.

RFC 2308

, M. Andrews, Negative Caching of DNS Queries, March 1998. About negative caching and the $TTL zone file directive.

RFC 2219

, BCP 17, M. Hamilton and R. Wright, Use of DNS Aliases for Network Services, October 1997. About CNAME usage.

RFC 2182

, BCP 16, R. Elz et. al., Selection and Operation of Secondary DNS Servers, July 1997.

RFC 2052

A. Gulbrandsen, P. Vixie, A DNS RR for specifying the location of services (DNS SRV), October 1996

RFC 1918

Y. Rekhter, R. Moskowitz, D. Karrenberg, G. de Groot, E. Lear, Address Allocation for Private Internets, 02/29/1996.

RFC 1912

D. Barr, Common DNS Operational and Configuration Errors, 02/28/1996.

RFC 1912 Errors

B. Barr Errors in RFC 1912, this is available at http://www.cis.ohio-state.edu/~barr/rfc1912-errors.html

RFC 1713

A. Romao, Tools for DNS debugging, 11/03/1994.

RFC 1712

C. Farrell, M. Schulze, S. Pleitner, D. Baldoni, DNS Encoding of Geographical Location, 11/01/1994.

RFC 1183

R. Ullmann, P. Mockapetris, L. Mamakos, C. Everhart, New DNS RR Definitions, 10/08/1990.

RFC 1035

P. Mockapetris, Domain names - implementation and specification, 11/01/1987.

RFC 1034

P. Mockapetris, Domain names - concepts and facilities, 11/01/1987.

RFC 1033

M. Lottor, Domain administrators operations guide, 11/01/1987.

RFC 1032

M. Stahl, Domain administrators guide, 11/01/1987.

RFC 974

C. Partridge, Mail routing and the domain system, 01/01/1986.


ID
Password
Join
The attacker must vanquish; the defender need only survive.


sponsored by andamiro
sponsored by cdnetworks
sponsored by HP

Valid XHTML 1.0! Valid CSS! powered by MoniWiki
last modified 2004-01-30 10:26:44
Processing time 0.0019 sec