Herramientas de usuario

Herramientas del sitio


informatica:certificaciones:lpic:lpic-2:207_domain_name_server

¡Esta es una revisión vieja del documento!


Topic 207: Domain Name Server

Perteneciente a LPIC-2

Módulos:

Lo que se aprenderá para el examen:

  • Localización de los ficheros de configuración y utilidades de sevidor BIND.
  • Tipos de servidores DNS (master, slave, cache).
  • Definición de zonas.
  • Creación y modificación de ficheros de zonas directa e inversa.
  • Uso de directivas allow-query/allow-transfer.
  • Configuración Bind en chroot.
  • Conocimiento de DNSSEC.
  • Configuración y uso de firmas de transacción (TSIG).

Tests

What is the purpose of a PTR record?

  • To provide name to IP resolution.
  • To provide IP to name resolution. (Solución)
  • To direct email to a specific host.
  • To provide additional host information.
  • To direct clients to another nameserver .

Using only commands included with named, what is the command, with options or parameters, to make named re-read its zone files?

  • rndc reload

According to the configuration below, what is the e-mail address of the administrator for this domain?

$TTL 86400
$ORIGIN certkiller.com
@    IN    SOA    mars.certkiller.com. hostmaster.certkiller.com. (
                  2005020801
                  10800
                  3600
                  604800
                  86400 );
  • hostmaster@certkiller.com

The mailserver is currently called fred, while the primary MX record points to mailhost.example.org. What must be done to direct example.org email towards fred?

  • Add an A record for mailhost to fred's IP address.
  • Add a CNAME record from mailhost to fred. (Solución)
  • Add another MX record pointing to fred's IP address.
  • Add a PTR record from mailhost to fred.

Sería algo como:

fred    IN    CNAME    mailhost.example.org.

DNSSEC is used for?

  • Encrypted DNS queries between nameservers.
  • Cryptographic authentication of DNS zones. (Solución)
  • Secondary DNS queries for local zones.
  • Defining a secure DNS section.
  • Querying a secure DNS section.

No se cifra la información, solo se firma para verificar la autenticidad.

informatica/certificaciones/lpic/lpic-2/207_domain_name_server.1618224037.txt.gz · Última modificación: por tempwin