Network Security Internet Technology Development Database Servers Mobile Phone Android Software Apple Software Computer Software News IT Information

In addition to Weibo, there is also WeChat

Please pay attention

WeChat public account

Shulou

The whole process of DNS separation and analysis can be followed.

2025-04-06 Update From: SLTechnology News&Howtos shulou NAV: SLTechnology News&Howtos > Servers >

Share

Shulou(Shulou.com)06/02 Report--

Use Linux as the gateway in separation parsing

Analyze the scope division:

1. Analysis of external WAN area

two。 Area Analysis of Internal Local area Network

Definition: different addresses are obtained by parsing the same domain name according to visitors from different regions

Turn on one linux and two windows (1 and 2) systems. Download the bind software package when the linux system is online, add a new network card to the system after completion, and select host-only mode (all three systems are in host-only mode)

Edit the static ip and subnet mask in the first network card ens33 to use this network card as the internal gateway.

Copy ens33 as the configuration file of ens36 and go to the second network card of ens36 for editing.

Edit the static ip and subnet mask in the second network card ens36 to use this network card as the external gateway.

After editing, restart the network card service, and the configuration of the two network cards is complete.

Enter window system 1 again and configure it with static ip, subnet mask, default gateway and other information.

To do the same, in window system 2, configure it with static ip and subnet mask, default gateway and other information.

After the two network cards are set up, you can ping your own gateway (ping in cmd)

Enter the main configuration file / etc/named.conf of the dns server, and modify the listening scope to two network cards, that is, any. Change to any in allow access resolution (that is, allow any access resolution).

Go to the regional configuration file / etc/named.rfc1912.zones of the dns server and configure the local and wide area network data. When typing data by hand, you need to pay special attention to the format and letters (if there is an error, the dns service will not be able to open), and delete the excess data.

Copy out the data file, name it kgc.com.lan, and enter it for editing

Copy the data file kgc.com.lan, name it kgc.com.wan, and edit it.

After editing and saving, open the dns server

After that, turn off the firewall and enhanced security features.

Then, let's test dns parsing on the first system of windows

When parsing with the WAN, the resolved address is the gateway address: 12.0.0.1

Finally, let's test dns parsing (LAN parsing) on the second system of windows.

When parsing in the local area network, the addresses parsed are all real addresses.

Welcome to subscribe "Shulou Technology Information " to get latest news, interesting things and hot topics in the IT industry, and controls the hottest and latest Internet news, technology news and IT industry trends.

Views: 0

*The comments in the above article only represent the author's personal views and do not represent the views and positions of this website. If you have more insights, please feel free to contribute and share.

Share To

Servers

Wechat

© 2024 shulou.com SLNews company. All rights reserved.

12
Report