{"id":2783,"date":"2024-07-20T01:16:09","date_gmt":"2024-07-19T16:16:09","guid":{"rendered":"https:\/\/weblog.hirohiro716.com\/?p=2783"},"modified":"2025-06-13T20:32:16","modified_gmt":"2025-06-13T11:32:16","slug":"almalinux9%e3%81%a7dhcp%e3%81%a8bind%e3%82%92%e9%80%a3%e6%90%ba%e3%81%95%e3%81%9b%e5%ae%b6%e5%ba%ad%e5%86%85ddns","status":"publish","type":"post","link":"https:\/\/weblog.hirohiro716.com\/?p=2783","title":{"rendered":"AlmaLinux9\u3067dhcp\u3068bind\u3092\u9023\u643a\u3055\u305b\u5bb6\u5ead\u5185DDNS"},"content":{"rendered":"<p>\nDNS\u30b5\u30fc\u30d0\u30fc\u3082DHCP\u30b5\u30fc\u30d0\u30fc\u30821\u53f0\u3067\u517c\u4efb\u3055\u305b\u308b\u304c\u3001\u5197\u9577\u5316\u306e\u305f\u3081\u30be\u30fc\u30f3\u8ee2\u9001\u3092\u5229\u7528\u3057\u30662\u53f0\u5206\u3092\u8a2d\u5b9a\u3059\u308b\u3002\n<\/p>\n<pre class=\"brush: plain; gutter: false; title: ; notranslate\" title=\"\">\r\n\u30fb AlmaLinux: 9.4\r\n\u30fb bind: 9.16.23\r\n\u30fb dhcp-server: 4.4.2\r\n<\/pre>\n<pre class=\"brush: plain; gutter: false; title: ; notranslate\" title=\"\">\r\n\u30fb \u30d7\u30e9\u30a4\u30de\u30eaIP\u30a2\u30c9\u30ec\u30b9: 192.168.1.11\r\n\u30fb \u30bb\u30ab\u30f3\u30c0\u30eaIP\u30a2\u30c9\u30ec\u30b9: 192.168.1.12\r\n<\/pre>\n<h4>\u30d7\u30e9\u30a4\u30de\u30ea\u30b5\u30fc\u30d0\u30fc\u306e\u8a2d\u5b9a<\/h4>\n<p>\n\u30d1\u30c3\u30b1\u30fc\u30b8\u3092\u30a4\u30f3\u30b9\u30c8\u30fc\u30eb\u3059\u308b\u3002\n<\/p>\n<pre class=\"brush: plain; title: ; notranslate\" title=\"\">\r\n# dnf install bind dhcp-server\r\n<\/pre>\n<p>\nDNS\u30b5\u30fc\u30d0\u30fc\u306e\u8a2d\u5b9a\u30d5\u30a1\u30a4\u30eb\u306e\u5185\u5bb9\u3092\u4e0b\u8a18\u306b\u5909\u66f4\u3059\u308b\u3002\n<\/p>\n<pre class=\"brush: plain; title: \/etc\/named.conf; notranslate\" title=\"\/etc\/named.conf\">\r\noptions {\r\n    listen-on port 53 { any; };\r\n    listen-on-v6 { none; };\r\n    directory &quot;\/var\/named\/&quot;;\r\n    \u2026\r\n    \/\/ LAN\u5185\u304b\u3089\u306e\u554f\u3044\u5408\u308f\u305b\u3092\u8a31\u53ef\r\n    allow-query {\r\n        localhost;\r\n        192.168.1.0\/24;\r\n    };\r\n    \u2026\r\n    \/\/ \u30be\u30fc\u30f3\u8ee2\u9001\u3092\u8a31\u53ef\u3059\u308bIP\u3092\u8a2d\u5b9a\r\n    allow-transfer {\r\n        192.168.1.12;\r\n    };\r\n    \/\/ \u81ea\u5206\u3067\u540d\u524d\u89e3\u6c7a\u3067\u304d\u306a\u3044\u3068\u304d\u306e\u4e38\u6295\u3052\u5148\r\n    forwarders {\r\n        192.168.1.254;\r\n        8.8.8.8;\r\n    };\r\n};\r\n\u2026\r\nzone &quot;example.jp.&quot; {\r\n    type master;\r\n    file &quot;example.jp.zone&quot;;\r\n    \/\/ \u81ea\u8eab\u304b\u3089\u306e\u5909\u66f4\u3092\u8a31\u53ef\r\n    allow-update {\r\n        localhost;\r\n        192.168.1.12;\r\n    };\r\n};\r\n\u2026\r\n<\/pre>\n<p>\n\u3055\u3063\u304d\u6307\u5b9a\u3057\u305fzone\u30d5\u30a1\u30a4\u30eb\u3092\u4f5c\u6210\u3059\u308b\u3002<br \/>\n\u203bLAN\u5185\u306eDDNS\u306b\u4f7f\u7528\u3059\u308b\u305f\u3081\u66f4\u65b0\u9593\u9694\u3092\u77ed\u304f<br \/>\n\u203b&#8221;admin.example.jp.&#8221;\u306f&#8221;admin@example.jp&#8221;\u3068\u3044\u3046\u7ba1\u7406\u8005\u306eE-mail\u3068\u3044\u3046\u610f\u5473\u3089\u3057\u3044\n<\/p>\n<pre class=\"brush: plain; title: \/var\/named\/example.jp.zone; notranslate\" title=\"\/var\/named\/example.jp.zone\">\r\n$TTL 86400\r\n@    IN    SOA    sv1.example.jp.    admin.example.jp. (\r\n           2024071501\r\n           300\r\n           60\r\n           3600\r\n           300\r\n)\r\n\r\n        IN    NS   sv1.example.jp.\r\n        IN    NS   sv2.example.jp.\r\nsv1     IN    A    192.168.1.11\r\nsv2     IN    A    192.168.1.12\r\n<\/pre>\n<p>\n\u4f5c\u6210\u3057\u305f\u3089\u30d5\u30a1\u30a4\u30eb\u306e\u6240\u6709\u8005\u3092named\u306b\u5909\u66f4\u3059\u308b\u3002\n<\/p>\n<pre class=\"brush: plain; title: ; notranslate\" title=\"\">\r\n# chown named:named \/var\/named\/example.jp.zone\r\n<\/pre>\n<p>\nDHCP\u30b5\u30fc\u30d0\u30fc\u306e\u8a2d\u5b9a\u30d5\u30a1\u30a4\u30eb\u306b\u4e0b\u8a18\u3092\u8ffd\u8a18\u3059\u308b\u3002\n<\/p>\n<pre class=\"brush: plain; title: \/etc\/dhcp\/dhcpd.conf; notranslate\" title=\"\/etc\/dhcp\/dhcpd.conf\">\r\n# DNS\u30b5\u30fc\u30d0\u30fc\u306b\u66f4\u65b0\u8981\u6c42\u3092\u9001\u4fe1\u3059\u308b\u8a2d\u5b9a\r\nddns-update-style interim;\r\n# \u666e\u901a\u306eDHCP\u306e\u8a2d\u5b9a\r\nsubnet 192.168.1.0 netmask 255.255.255.0 {\r\n    range 192.168.1.101 192.168.1.120;\r\n    option routers 192.168.1.254;\r\n    option domain-name &quot;example.jp&quot;;\r\n    option domain-name-servers 192.168.1.11, 192.168.1.12;\r\n    # \u66f4\u65b0\u3092\u901a\u77e5\u3059\u308bDNS\u30b5\u30fc\u30d0\u30fc\u3092\u6307\u5b9a\r\n    zone example.jp. {\r\n        primary localhost;\r\n    }\r\n}\r\n<\/pre>\n<p>\nSELinux\u3068\u30d5\u30a1\u30a4\u30a2\u30a6\u30a9\u30fc\u30eb\u306b\u4f8b\u5916\u3092\u8ffd\u52a0\u3059\u308b\u3002\n<\/p>\n<pre class=\"brush: plain; title: ; notranslate\" title=\"\">\r\n# setsebool -P named_write_master_zones true\r\n# firewall-cmd --add-service=dns --permanent\r\n# firewall-cmd --add-service=dhcp --permanent\r\n# firewall-cmd --reload\r\n<\/pre>\n<p>\n\u30b5\u30fc\u30d3\u30b9\u3092\u6709\u52b9\u306b\u3057\u3066\u8d77\u52d5\u3002\n<\/p>\n<pre class=\"brush: plain; title: ; notranslate\" title=\"\">\r\n# systemctl enable --now named\r\n# systemctl enable --now dhcpd\r\n<\/pre>\n<h4>\u30bb\u30ab\u30f3\u30c0\u30ea\u30b5\u30fc\u30d0\u30fc\u306e\u8a2d\u5b9a<\/h4>\n<p>\n\u30d1\u30c3\u30b1\u30fc\u30b8\u3092\u30a4\u30f3\u30b9\u30c8\u30fc\u30eb\u3059\u308b\u3002\n<\/p>\n<pre class=\"brush: plain; title: ; notranslate\" title=\"\">\r\n# dnf install bind dhcp-server\r\n<\/pre>\n<p>\nDNS\u30b5\u30fc\u30d0\u30fc\u306e\u8a2d\u5b9a\u30d5\u30a1\u30a4\u30eb\u3092\u5909\u66f4\u307e\u305f\u306f\u8ffd\u8a18\u3059\u308b\u3002\n<\/p>\n<pre class=\"brush: plain; title: \/etc\/named.conf; notranslate\" title=\"\/etc\/named.conf\">\r\noptions {\r\n    listen-on port 53 { any; };\r\n    listen-on-v6 { none; };\r\n    directory &quot;\/var\/named\/&quot;;\r\n    \u2026\r\n    allow-query {\r\n        localhost;\r\n        192.168.1.0\/24;\r\n    };\r\n    \u2026\r\n    forwarders {\r\n        192.168.1.254;\r\n        8.8.8.8;\r\n    };\r\n};\r\n\u2026\r\nzone &quot;example.jp.&quot; {\r\n    type slave;\r\n    file &quot;example.jp.zone&quot;;\r\n    masters {\r\n        192.168.1.11;\r\n    };\r\n};\r\n\u2026\r\n<\/pre>\n<p>\nDHCP\u30b5\u30fc\u30d0\u30fc\u306e\u8a2d\u5b9a\u30d5\u30a1\u30a4\u30eb\u306b\u4e0b\u8a18\u3092\u8ffd\u8a18\u3059\u308b\u3002\n<\/p>\n<pre class=\"brush: plain; title: \/etc\/dhcp\/dhcpd.conf; notranslate\" title=\"\/etc\/dhcp\/dhcpd.conf\">\r\nddns-update-style interim;\r\nsubnet 192.168.1.0 netmask 255.255.255.0 {\r\n    range 192.168.1.121 192.168.1.140;\r\n    option routers 192.168.1.254;\r\n    option domain-name &quot;example.jp&quot;;\r\n    option domain-name-servers 192.168.1.11, 192.168.1.12;\r\n    zone example.jp. {\r\n        primary 192.168.1.11;\r\n    }\r\n}\r\n<\/pre>\n<p>\nSELinux\u3068\u30d5\u30a1\u30a4\u30a2\u30a6\u30a9\u30fc\u30eb\u306b\u4f8b\u5916\u3092\u8ffd\u52a0\u3059\u308b\u3002\n<\/p>\n<pre class=\"brush: plain; title: ; notranslate\" title=\"\">\r\n# firewall-cmd --add-service=dns --permanent\r\n# firewall-cmd --add-service=dhcp --permanent\r\n# firewall-cmd --reload\r\n<\/pre>\n<p>\n\u30b5\u30fc\u30d3\u30b9\u3092\u6709\u52b9\u306b\u3057\u3066\u8d77\u52d5\u3002\n<\/p>\n<pre class=\"brush: plain; title: ; notranslate\" title=\"\">\r\n# systemctl enable --now named\r\n# systemctl enable --now dhcpd\r\n<\/pre>\n<h4>\u88dc\u8db3<\/h4>\n<h5>\u30be\u30fc\u30f3\u3092\u518d\u8aad\u307f\u8fbc\u307f\u3059\u308b<\/h5>\n<p>\n\u4fdd\u6301\u3057\u3066\u3044\u308b\u30be\u30fc\u30f3\u306e\u60c5\u5831\u3092\u30ea\u30ed\u30fc\u30c9\u3059\u308b\u3002masters\u306e\u30b7\u30ea\u30a2\u30eb\u304c\u4fdd\u6301\u3057\u3066\u3044\u308b\u30b7\u30ea\u30a2\u30eb\u3088\u308a\u3082\u5927\u304d\u3051\u308c\u3070\u30be\u30fc\u30f3\u8ee2\u9001\u304c\u884c\u308f\u308c\u308b\u3002\n<\/p>\n<pre class=\"brush: plain; title: ; notranslate\" title=\"\">\r\n# rndc reload example.jp\r\n<\/pre>\n<h5>\u73fe\u5728\u306eDNS\u30ec\u30b3\u30fc\u30c9\u306e\u78ba\u8a8d<\/h5>\n<p>\nrndc\u3067dump\u3057\u3066\u73fe\u5728\u306eDNS\u30ec\u30b3\u30fc\u30c9\u3092\u78ba\u8a8d\u3059\u308b\u3002\n<\/p>\n<pre class=\"brush: plain; title: ; notranslate\" title=\"\">\r\n# rndc dumpdb -zones\r\n# less \/var\/named\/data\/cache_dump.db \r\n<\/pre>\n<h5>DNS\u30ec\u30b3\u30fc\u30c9\u306e\u66f4\u65b0\u30c6\u30b9\u30c8<\/h5>\n<p>\nnsupdate\u3092\u4f7f\u7528\u3057\u3066DNS\u30b5\u30fc\u30d0\u30fc\u3092\u66f4\u65b0\u3092\u30c6\u30b9\u30c8\u3059\u308b\u306b\u306fbind-utils\u3092\u30a4\u30f3\u30b9\u30c8\u30fc\u30eb\u3057\u3001nsupdate\u30b3\u30de\u30f3\u30c9\u3092\u5b9f\u884c\u3059\u308b\u3002\u5b9f\u884c\u3057\u305f\u3089\u5bfe\u8a71\u578b\u30b3\u30f3\u30bd\u30fc\u30eb\u306b\u306a\u308b\u306e\u3067\u4e0b\u8a18\u306e\u3088\u3046\u306a\u611f\u3058\u3067\u5165\u529b\u3059\u308b\u3002\u4f55\u3082\u30a8\u30e9\u30fc\u304c\u51fa\u306a\u3051\u308c\u3070OK\u3002<br \/>\n\u203bIN\u306f\u30a4\u30f3\u30bf\u30fc\u30cd\u30c3\u30c8\u306e\u610f\u5473\u3089\u3057\u3044\u304c\u672a\u6307\u5b9a\u3067\u3082\u554f\u984c\u306a\u3044<\/p>\n<p><pre class=\"brush: plain; title: ; notranslate\" title=\"\">\r\n&gt;server 127.0.0.1\r\n&gt;update add test.example.jp. 3600 IN A 192.168.1.222\r\n&gt;send\r\n&gt;server 127.0.0.1\r\n&gt;update delete test.example.jp. IN\r\n&gt;send\r\n<\/pre>\n<h5>DNS\u30ec\u30b3\u30fc\u30c9\u306e\u524a\u9664<\/h5>\n<p>\n\u307e\u308c\u306bDNS\u30ec\u30b3\u30fc\u30c9\u306eIP\u30a2\u30c9\u30ec\u30b9\u304c\u4e00\u5207\u66f4\u65b0\u3055\u308c\u306a\u304f\u306a\u308b\u30af\u30e9\u30a4\u30a2\u30f3\u30c8\u304c\u3042\u308b\u3002nsupdate\u30b3\u30de\u30f3\u30c9\u3092\u5b9f\u884c\u3057\u3066\u53e4\u3044DNS\u30ec\u30b3\u30fc\u30c9\u3092\u524a\u9664\u3059\u308b\u3068\u305d\u306e\u3046\u3061\u76f4\u308b\u3002<\/p>\n<p><pre class=\"brush: plain; title: ; notranslate\" title=\"\">\r\n&gt;server 127.0.0.1\r\n&gt;update delete test.example.jp.\r\n&gt;send\r\n<\/pre>\n","protected":false},"excerpt":{"rendered":"<p>DNS\u30b5\u30fc\u30d0\u30fc\u3082DHCP\u30b5\u30fc\u30d0\u30fc\u30821\u53f0\u3067\u517c\u4efb\u3055\u305b\u308b\u304c\u3001\u5197\u9577\u5316\u306e\u305f\u3081\u30be\u30fc\u30f3\u8ee2\u9001\u3092\u5229\u7528\u3057\u30662\u53f0\u5206\u3092\u8a2d\u5b9a\u3059\u308b\u3002 \u30fb AlmaLinux: 9.4 \u30fb bind: 9.16.23 \u30fb dhcp-server: 4.4.2 \u30fb \u30d7 [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[31],"tags":[],"class_list":["post-2783","post","type-post","status-publish","format-standard","hentry","category-almalinux"],"views":1353,"_links":{"self":[{"href":"https:\/\/weblog.hirohiro716.com\/index.php?rest_route=\/wp\/v2\/posts\/2783","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/weblog.hirohiro716.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/weblog.hirohiro716.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/weblog.hirohiro716.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/weblog.hirohiro716.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=2783"}],"version-history":[{"count":16,"href":"https:\/\/weblog.hirohiro716.com\/index.php?rest_route=\/wp\/v2\/posts\/2783\/revisions"}],"predecessor-version":[{"id":3109,"href":"https:\/\/weblog.hirohiro716.com\/index.php?rest_route=\/wp\/v2\/posts\/2783\/revisions\/3109"}],"wp:attachment":[{"href":"https:\/\/weblog.hirohiro716.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=2783"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/weblog.hirohiro716.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=2783"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/weblog.hirohiro716.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=2783"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}