Sada je: 30 svi 2020, 15:46.
Linux, poslužitelj, mreže i sigurnost

Moderator/ica: Moderatori/ce

mojadomena /etc/bind: named-checkzone mojadomena.net db1.mojadomena.net
zone mojadomena.net/IN: loaded serial 2013021506
OK
mojadomena /etc/bind: named-checkzone mojadomena.net db1.mojadomena.net.reverse
zone mojadomena.net/IN: NS 'ns.mojadomena.net' has no address records (A or AAAA)
zone mojadomena.net/IN: not loaded due to errors.

Skuzio sam da sam fulao i serial 2013021506 pa sam stavio na oba 2013021507

FW:
Kod: Označi sve
$TTL    86400
mojadomena.net.                IN SOA          ns.mojadomena.net.       root.mojadomena.net. (
                                2013021506              ; serial (d. adams)
                                        3H              ; refresh
                                        15M             ; retry
                                        1W              ; expiry
                                        1D )            ; minimum

                IN NS           ns.mojadomena.net.
                IN MX 10        mail.mojadomena.net.
ns.mojadomena.net.             IN A            192.73.xxx.xxx
mail.mojadomena.net.           IN A            192.73.xxx.xxx
mojadomena.net.                IN A            192.73.xxx.xxx



RV:
Kod: Označi sve
$TTL    86400
mojadomena.net.               IN SOA          ns.mojadomena.net.       root.mojadomena.net. (
                                2013021507              ; serial (d. adams)
                                        3H              ; refresh
                                        15M             ; retry
                                        1W              ; expiry
                                        1D )            ; minimum

                IN NS           ns.mojadomena.net.
11               IN PTR          ns.mojadomena.net.
15              IN PTR          mail.mojadomena.net.




dig NS

Kod: Označi sve
mojadomena /etc/bind: dig @localhost mojadomena.net NS

; <<>> DiG 9.7.3 <<>> @localhost mojadomena.net NS
; (2 servers found)
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 63103
;; flags: qr aa rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1

;; QUESTION SECTION:
;mojadomena.net.      IN   NS

;; ANSWER SECTION:
mojadomena.net.   86400   IN   NS   ns.mojadomena.net.

;; ADDITIONAL SECTION:
ns.mojadomena.net.   86400   IN   A   192.73.xxx.xxx

;; Query time: 0 msec
;; SERVER: ::1#53(::1)
;; WHEN: Fri Feb 15 17:48:39 2013
;; MSG SIZE  rcvd: 66


dig A

Kod: Označi sve
mojadomena /etc/bind: dig @localhost mojadomena.net A

; <<>> DiG 9.7.3 <<>> @localhost mojadomena.net A
; (2 servers found)
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 31737
;; flags: qr aa rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 1, ADDITIONAL: 1

;; QUESTION SECTION:
;mojadomena.net.      IN   A

;; ANSWER SECTION:
mojadomena.net.   86400   IN   A   192.73.xxx.xxx

;; AUTHORITY SECTION:
mojadomena.net.   86400   IN   NS   ns.mojadomena.net.

;; ADDITIONAL SECTION:
ns.mojadomena.net.   86400   IN   A   192.73.xxx.xxx

;; Query time: 0 msec
;; SERVER: ::1#53(::1)
;; WHEN: Fri Feb 15 17:49:56 2013
;; MSG SIZE  rcvd: 82


soa:

Kod: Označi sve
mojadomena /etc/bind: dig @localhost mojadomena.net soa

; <<>> DiG 9.7.3 <<>> @localhost mojadomena.net soa
; (2 servers found)
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 19069
;; flags: qr aa rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 1, ADDITIONAL: 1

;; QUESTION SECTION:
;mojadomena.net.      IN   SOA

;; ANSWER SECTION:
mojadomena.net.   86400   IN   SOA   ns.mojadomena.net. root.mojadomena.net. 2013021506 10800 900 604800 86400

;; AUTHORITY SECTION:
mojadomena.net.   86400   IN   NS   ns.mojadomena.net.

;; ADDITIONAL SECTION:
ns.mojadomena.net.   86400   IN   A   192.73.xxx.xxx

;; Query time: 0 msec
;; SERVER: ::1#53(::1)
;; WHEN: Fri Feb 15 17:50:44 2013
;; MSG SIZE  rcvd: 107



Ok, dobio sam answer ali zasto nemogu nslookup-at na ns.mojadomena.net

Kod: Označi sve
fail   SOA MNAME Check   ERROR: Your SOA (Start of Authority) record states that your master (primary) name server is: That server is not listed at the parent servers, which is not correct.
Postovi: 288
Postovi: 288
Pridružen/a: 23 ruj 2009, 02:00
Podijelio/la zahvalu: 10 puta
Primio/la zahvalu: 0 puta
Spol: M
OS: Ubuntu, Debian
evo od hostera:

Kod: Označi sve
Hello,

I'm not sure I understand your entire request, but to clarify: we do not offer DNS through RamNode. You can use a 3rd party system like CloudFlare or order 2 IPs to set up your own private nameservers. We intend to offer DNS in the future, but it's not ready right now.

As far as which DNS option to use, you might want to ask around our IRC channel for advice.
Postovi: 288
Postovi: 288
Pridružen/a: 23 ruj 2009, 02:00
Podijelio/la zahvalu: 10 puta
Primio/la zahvalu: 0 puta
Spol: M
OS: Ubuntu, Debian
Kod kojeg registra ti je registrirana mojadomena.net ?

nslookup naredba ti ne radi zato jer negdje moras pointirati da je DNS server za domenu mojadomena.net na toj i toj IP adresi.
When you're a kid and you wanna go "Weee !", but you ain't got drugs yet ... You hold out for your life, hold on to your little GONADS ... and STRIFE.
Avatar
Postovi: 910
Postovi: 910
Pridružen/a: 12 svi 2010, 07:57
Podijelio/la zahvalu: 0 puta
Primio/la zahvalu: 13 puta
OS: linux
Domena je registrirana zasebno kod domain.com a server vps kod ramnode.com
Postovi: 288
Postovi: 288
Pridružen/a: 23 ruj 2009, 02:00
Podijelio/la zahvalu: 10 puta
Primio/la zahvalu: 0 puta
Spol: M
OS: Ubuntu, Debian
Imas li pristup editiranju DNS zapisa kod registra ? Tamo bi trebao pointirati da je DNS server na IP adresi tvog VPS hostinga.
When you're a kid and you wanna go "Weee !", but you ain't got drugs yet ... You hold out for your life, hold on to your little GONADS ... and STRIFE.
Avatar
Postovi: 910
Postovi: 910
Pridružen/a: 12 svi 2010, 07:57
Podijelio/la zahvalu: 0 puta
Primio/la zahvalu: 13 puta
OS: linux
Dakle domain.com, oni nude DNS postavke evo od support-a:

Hello,

Yes, as long as the domain is registered with us, you can set the name servers from our control panel.

From the control panel:

- Click on the domain name.
- Click the Name Servers tab.
- Fill in the radio button to use the default name servers - save.
- Once this is done, you can manage the DNS from the DNS tab.

Please allow 2-4 hours for the name server change to propagate.

Thank you,

Philip
Technical Support


To sam napravio i prije nego sam dobio ticket, medjutim dalje za dns postavke su dolje...

na domain.com domain provideru:

dosad je bilo:

domena: (name servers pointan na ns1.mojadomena.com)


Sada je:

domena: (name servers pointan na ns1.domain.com)

Domena je zakupljena preko domain.com


====================

Korištenjem DNS REPORT (http://thednsreport.com) upravo mi je prošlo i dobio ns podatke:

pass NS records at parent servers Your NS records at the parent servers are:

ns1.domain.com. [ 66.96.142.147 ]
ns2.domain.com. [ 65.254.254.171 ]
[These were obtained from g.gtld-servers.net.]

---------

SOA je prošla isto:
http://tinypic.com/r/2s0oghd/6

---------

U domain.com imam sljedeće opcije:

POINTER tab:

nudi:
Home Directory [unos home dir],
Subdicrectory [subdir unos],
URL [uri adresa],
Parked [nema unos] <- trenutno je aktivno jer mora biti park


Name servers tab:
Use default name servers

Nameserver 1
ns1.domain.com
Nameserver 2
ns2.domain.com


DNS tab:

Private Nameserver checkbox

Private Nameserver is a nameserver built using your own domain name (ns1.yourdomain.com and ns2.yourdomain.com)
Host Points To: Action
ns1.domain.com 192.73.xxx.xxx (unio sam ns1.domain.com on je sam stavio ns i adresu od VPS servera)


MX Record checkbox

Update MX Record to define the mail receiving server. Please note: Changes may take up to 24 hours to take effect.
Priority Host Points To: Action
30
mx.domain.com 192.73.xxx.xxx (unio sam
mx.domain.com on je sam stavio mx i adresu od VPS servera)

CNAME checkbox preskočio.

NS Record checkbox

NS

A NS record is an alias record that associates a specific domain with a specific name server (sales.yourdomain.com >> ns1.nameserver.com)

Host Points To:
mojadomena.net ns1.domain.com


A Record mi nudi sve živo ali je ostala ona mojadomena:

A Record

An A Record (or host name) associates a specific address with a specific IP address (secure.yourdomain.com >> 11.222.333.444)


Hm, tu mi nudi adrese od domain.com-a ? ne bi li trebalo to biti na VPS IP umjesto domain.com?

Kod: Označi sve
Host      Points To:      Action   
mail.domain.com   
192.73.234.167
   
mx.domain.com
192.73.234.167
   
*
192.73.234.167
   
mojadomena.net
192.73.234.167

ns1.domain.com
192.73.234.167


Kad napravim dig mojadomena soa ne dobijem jos IP VPS adresu ili mx:

Kod: Označi sve
; <<>> DiG 9.8.1-P1 <<>> mojadomena.net mx
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: SERVFAIL, id: 58171
;; flags: qr rd ra; QUERY: 1, ANSWER: 0, AUTHORITY: 0, ADDITIONAL: 0

;; QUESTION SECTION:
;mojadomena.net.      IN   MX

;; Query time: 17 msec
;; SERVER: 127.0.1.1#53(127.0.1.1)
;; WHEN: Fri Feb 15 19:16:39 2013
;; MSG SIZE  rcvd: 33
Postovi: 288
Postovi: 288
Pridružen/a: 23 ruj 2009, 02:00
Podijelio/la zahvalu: 10 puta
Primio/la zahvalu: 0 puta
Spol: M
OS: Ubuntu, Debian
Definitivno moras postaviti da je za tvoju domenu (mojadomena.net) zaduzen ns.mojadomena.net (domain.com je neki default).

Treba neko vrijeme proci kako bi se hijerarhija DNS servera uskladila. Citiram:
Please note: Changes may take up to 24 hours to take effect.


Pazi, svi DNS servisni rekordi se moraju poklapati s onime sto imas uneseno u DNS serveru (ne domain.com; naravno, ukoliko je to razlicito od mojadomena.net).

Dakle (uz odgovarajuce IP adrese):
1. MX bi trebao biti mail.mojadomena.net
2. NS bi trebao biti ns.mojadomena.net
When you're a kid and you wanna go "Weee !", but you ain't got drugs yet ... You hold out for your life, hold on to your little GONADS ... and STRIFE.
Avatar
Postovi: 910
Postovi: 910
Pridružen/a: 12 svi 2010, 07:57
Podijelio/la zahvalu: 0 puta
Primio/la zahvalu: 13 puta
OS: linux
Točno jer će mailovi raditi na VPS-u. (mx.mojadomena.net)

Misim da mi je proradilo, jer sam sa nslookup-om na webu isprobao pointat i dobijem resolvan VPS IP serera (ns od mojadomena.net uredno raspoznaje IP adresu)

Kod: Označi sve
mojadomena ~: dig mojadomena.net soa

; <<>> DiG 9.7.3 <<>> mojadomena.net soa
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 4572
;; flags: qr rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 0

;; QUESTION SECTION:
;mojadomena.net.      IN   SOA

;; ANSWER SECTION:
mojadomena.net.   3600   IN   SOA   ns1.domain.com. dnsadmin.domain.com. 2013021358 10800 3600 604800 3600

;; Query time: 86 msec
;; SERVER: 8.8.8.8#53(8.8.8.8)
;; WHEN: Sat Feb 16 01:21:09 2013
;; MSG SIZE  rcvd: 92


Znači krenulo je ovo. Uredno raspoznaje ns1.domain.com
Da treba pričekati par sati, ma da sam sa proxy-jem vidio da response-a a i nslookup-om pokazuje ip adresu
Postovi: 288
Postovi: 288
Pridružen/a: 23 ruj 2009, 02:00
Podijelio/la zahvalu: 10 puta
Primio/la zahvalu: 0 puta
Spol: M
OS: Ubuntu, Debian
Eto !

Jos jedan prijedlog, dodaj u datoteku "named.conf.options" sljedece (ovo je sigurnosti radi):
Kod: Označi sve
recursion no;
version "FoFF";


Umjesto "FoFF" mozes staviti sto god hoces, to je da sprijecis nekoga da ti sazna verziju instaliranog bind servisa.

Sljedeca naredba ce ti pokazati koja je verzija pokrenuta:
Kod: Označi sve
dig @NAMESERVER_IP version.bind txt chaos
When you're a kid and you wanna go "Weee !", but you ain't got drugs yet ... You hold out for your life, hold on to your little GONADS ... and STRIFE.
Avatar
Postovi: 910
Postovi: 910
Pridružen/a: 12 svi 2010, 07:57
Podijelio/la zahvalu: 0 puta
Primio/la zahvalu: 13 puta
OS: linux
Puno sam toga naučio, ali čini se da ću se morati ipak prihvatiti knjige pro binds od apressa-a. Razmisljao sam zasto sam uzeo debian-a 6, a mogao sam centos-a. nekak sam se naviko na deb distru pa sam i ostao na to. doduse vec je gore i virtualhosts i sve vec podeseno, ali eto prvi put se susrecem sa ovim slucajem (na minivps.com nisam nist morao mijenjati jer je managed openvz) no bolje da sam se susreo sa ovom situacijom ipak se nesto novo naucilo tj. puuno toga :)

Prijatelju stvarno sam ti duzan ali zaista smo se trudili :)

I mislim da moram napraviti nekakav tutorial pa na wiki iako ovisi od vps servera.
Postovi: 288
Postovi: 288
Pridružen/a: 23 ruj 2009, 02:00
Podijelio/la zahvalu: 10 puta
Primio/la zahvalu: 0 puta
Spol: M
OS: Ubuntu, Debian

Na mreži
Trenutno korisnika/ca: / i 1 gost.