Hello, I add my network listen-on port 53 { 127.0.0.1; 192.168.1.0/24; }; and too { localhost; 192.168.1.0/24; };
The zones ipv6 are running when i start DNS, try make steps: In my /etc/named.conf I comment the lines. (I not need dnssec now) //listen-on-v6 port 53 { ::1; }; //dnssec-enable yes; //dnssec-validation yes; //dnssec-lookaside auto; //bindkeys-file "/etc/named.iscdlv.key"; //logging { // channel default_debug { // file "data/named.run"; // severity dynamic; // }; //}; In /etc/named.rfc1912.zones I comment the zone ipv6 //zone "0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.ip6.arpa" IN { // type master; // file "/var/named/named.ip6.local"; // allow-update { none; }; //}; [root@centos ~]# grep 4 /etc/sysconfig/named #OPTIONS ="-4" root@centos ~]# cat /etc/resolv.conf search redefariat.com nameserver 127.0.0.1 nameserver 192.168.1.200 The zone ipv6 is loadded in logs below, my linux server is CentOS Ipv6 still enabled, but where ? I had commented all lines about ipv6. Jun 26 18:16:59 centos named[4489]: received control channel command 'reload' Jun 26 18:16:59 centos named[4489]: loading configuration from '/etc/named.conf' Jun 26 18:16:59 centos named[4489]: using default UDP/IPv4 port range: [1024, 65535] Jun 26 18:16:59 centos named[4489]: using default UDP/IPv6 port range: [1024, 65535] Jun 26 18:16:59 centos named[4489]: reloading configuration succeeded Jun 26 18:16:59 centos named[4489]: reloading zones succeede ------------------------------------------------------------------------------------------------------------------------ Jun 26 17:54:23 centos named[4489]: adjusted limit on open files from 1024 to 1048576 Jun 26 17:54:23 centos named[4489]: found 1 CPU, using 1 worker thread Jun 26 17:54:23 centos named[4489]: using up to 4096 sockets Jun 26 17:54:23 centos named[4489]: loading configuration from '/etc/named.conf' Jun 26 17:54:23 centos named[4489]: using default UDP/IPv4 port range: [1024, 65535] Jun 26 17:54:23 centos named[4489]: using default UDP/IPv6 port range: [1024, 65535] Jun 26 17:54:23 centos named[4489]: listening on IPv4 interface lo, 127.0.0.1#53 Jun 26 17:54:23 centos named[4489]: listening on IPv4 interface eth0, 192.168.1.200#53 Jun 26 17:54:23 centos named[4489]: generating session key for dynamic DNS Jun 26 17:54:23 centos named[4489]: automatic empty zone: 127.IN-ADDR.ARPA Jun 26 17:54:23 centos named[4489]: automatic empty zone: 254.169.IN-ADDR.ARPA Jun 26 17:54:23 centos named[4489]: automatic empty zone: 2.0.192.IN-ADDR.ARPA Jun 26 17:54:23 centos named[4489]: automatic empty zone: 255.255.255.255.IN-ADDR.ARPA Jun 26 17:54:23 centos named[4489]: automatic empty zone: 0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.IP6.ARPA Jun 26 17:54:23 centos named[4489]: automatic empty zone: 1.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.IP6.ARPA Jun 26 17:54:23 centos named[4489]: automatic empty zone: D.F.IP6.ARPA Jun 26 17:54:23 centos named[4489]: automatic empty zone: 8.E.F.IP6.ARPA Jun 26 17:54:23 centos named[4489]: automatic empty zone: 9.E.F.IP6.ARPA Jun 26 17:54:23 centos named[4489]: automatic empty zone: A.E.F.IP6.ARPA Jun 26 17:54:23 centos named[4489]: automatic empty zone: B.E.F.IP6.ARPA Jun 26 17:54:23 centos named[4489]: command channel listening on 127.0.0.1#953 Jun 26 17:54:23 centos named[4489]: command channel listening on ::1#953 Jun 26 17:54:23 centos named[4489]: zone 0.in-addr.arpa/IN: loaded serial 42 Jun 26 17:54:23 centos named[4489]: zone 0.0.127.in-addr.arpa/IN: loaded serial 1997022700 Jun 26 17:54:23 centos named[4489]: zone 255.in-addr.arpa/IN: loaded serial 42 Jun 26 17:54:23 centos named[4489]: zone redefariat.com/IN: redefariat.com/MX 'mail.redefariat.com.redefariat.com' has no address records (A or AAAA) Jun 26 17:54:23 centos named[4489]: zone redefariat.com/IN: loaded serial 2011062522 Jun 26 17:54:23 centos named[4489]: zone localdomain/IN: loaded serial 42 Jun 26 17:54:23 centos named[4489]: zone localhost/IN: loaded serial 42 Jun 26 17:54:23 centos named[4489]: running Jun 26 17:54:23 centos named[4489]: zone redefariat.com/IN: sending notifies (serial 2011062522) Jun 26 17:54:23 centos named[4489]: client 192.168.1.200#37202: received notify for zone 'redefariat.com' un 26 18:55:19 centos named[5036]: error (network unreachable) resolving 'mirror.team-cymru.org/A/IN': 2001:503:ba3e::2:30#53 Jun 26 18:55:19 centos named[5036]: error (network unreachable) resolving 'mirrors.usc.edu/A/IN': 2001:503:c27::2:30#53 Jun 26 18:55:19 centos named[5036]: error (network unreachable) resolving 'mirrors.usc.edu/A/IN': 2001:7fd::1#53 Jun 26 19:02:58 centos named[5197]: error (network unreachable) resolving 'www.uol.com.br/A/IN': 2001:500:1::803f:235#53 Jun 26 19:02:58 centos named[5197]: error (network unreachable) resolving '45.2.221.200.in-addr.arpa/PTR/IN': 2001:dc3::35#53 Jun 26 19:02:58 centos named[5197]: error (network unreachable) resolving '45.2.221.200.in-addr.arpa/PTR/IN': 2001:503:c27::2:30#53 Em Dom, 2011-06-26 às 18:12 +0200, Zenon Panoussis escreveu: > On 06/26/2011 05:38 PM, Rodrigo Faria Tavares wrote: > > > After copy the zone files for chroot, e change the pemissions > > in /var/named, now my dns zones is ready, resolving names. > > > But come the logs in messages: > > > > Jun 26 12:35:39 localhost named[4484]: error (network unreachable) > > resolving 'ns.isc.afilias-nst.info/AAAA/IN': 2001:500:a::79#53 > > To me this smells more like a system misconfiguration than a bind > problem. > > I'm guessing: you have enabled IPv6 on the system that's running bind, > but you have no IPv6 connectivity to the outside world and no global > v6 address. > > > options { > > listen-on port 53 { 127.0.0.1; }; > > listen-on-v6 port 53 { ::1; }; > > If you only listen on the loopback interface (127.0.0.1 and ::1), the only > machine in your network that will be able to use your DNS server will be > the machine on which it's running. I's a bit of a waste going through all > this installation just to accomplish what a single line in /etc/resolv.conf > would have accomplished too. > > Second, you should not define the port unless you're forced to. Under normal > circumstances the correct syntax would be listen-on { 127.0.0.1; }; without > the port. > > Third, if you don't have (global or local) v6 connectivity on that box, you > should comment out the listen-on-v6 line (or, if you're on a redhattish > system, > add OPTIONS=" -4" at the bottom of /etc/sysconfig/named). > > > allow-query { localhost; }; > > Aha, so you really meant to only serve the local machine :) > > Z > > _______________________________________________ > Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe > from this list > > bind-users mailing list > bind-users@lists.isc.org > https://lists.isc.org/mailman/listinfo/bind-users _______________________________________________ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users