Dec 1 13:29:08 ad named[19266]: starting BIND 9.7.3 -u bind
Dec 1 13:29:08 ad named[19266]: built with '--prefix=/usr' '--mandir=/usr/share/man' '--infodir=/usr/share/info' '--sysconfdir=/etc/bind' '--localstatedir=/var' '--enable-threads' '--enable-largefile' '--with-libtool' '--enable-shared' '--enable-static' '--with-openssl=/usr' '--with-gssapi=/usr' '--with-gnu-ld' '--with-dlz-postgres=no' '--with-dlz-mysql=no' '--with-dlz-bdb=yes' '--with-dlz-filesystem=yes' '--with-dlz-ldap=yes' '--with-dlz-stub=yes' '--with-geoip=/usr' '--enable-ipv6' 'CFLAGS=-fno-strict-aliasing -DDIG_SIGCHASE -O2' 'LDFLAGS=-Wl,-Bsymbolic-functions' 'CPPFLAGS='
Dec 1 13:29:08 ad named[19266]: adjusted limit on open files from 4096 to 1048576
Dec 1 13:29:08 ad named[19266]: found 4 CPUs, using 4 worker threads
Dec 1 13:29:08 ad named[19266]: using up to 4096 sockets
Dec 1 13:29:08 ad named[19266]: loading configuration from '/etc/bind/named.conf'
Dec 1 13:29:08 ad named[19266]: reading built-in trusted keys from file '/etc/bind/bind.keys'
Dec 1 13:29:08 ad named[19266]: using default UDP/IPv4 port range: [1024, 65535]
Dec 1 13:29:08 ad named[19266]: using default UDP/IPv6 port range: [1024, 65535]
Dec 1 13:29:08 ad named[19266]: no IPv6 interfaces found
Dec 1 13:29:08 ad named[19266]: listening on IPv4 interface lo, 127.0.0.1#53
Dec 1 13:29:08 ad named[19266]: listening on IPv4 interface eth0, 10.0.100.253#53
Dec 1 13:29:08 ad named[19266]: generating session key for dynamic DNS
Dec 1 13:29:08 ad named[19266]: set up managed keys zone for view _default, file 'managed-keys.bind'
Dec 1 13:29:08 ad named[19266]: automatic empty zone: 254.169.IN-ADDR.ARPA
Dec 1 13:29:08 ad named[19266]: automatic empty zone: 2.0.192.IN-ADDR.ARPA
Dec 1 13:29:08 ad named[19266]: automatic empty zone: 100.51.198.IN-ADDR.ARPA
Dec 1 13:29:08 ad named[19266]: automatic empty zone: 113.0.203.IN-ADDR.ARPA
Dec 1 13:29:08 ad named[19266]: automatic empty zone: 255.255.255.255.IN-ADDR.ARPA
Dec 1 13:29:08 ad named[19266]: automatic empty zone: 0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.IP6.ARPA
Dec 1 13:29:08 ad named[19266]: automatic empty zone: 1.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.IP6.ARPA
Dec 1 13:29:08 ad named[19266]: automatic empty zone: D.F.IP6.ARPA
Dec 1 13:29:08 ad named[19266]: automatic empty zone: 8.E.F.IP6.ARPA
Dec 1 13:29:08 ad named[19266]: automatic empty zone: 9.E.F.IP6.ARPA
Dec 1 13:29:08 ad named[19266]: automatic empty zone: A.E.F.IP6.ARPA
Dec 1 13:29:08 ad named[19266]: automatic empty zone: B.E.F.IP6.ARPA
Dec 1 13:29:08 ad named[19266]: automatic empty zone: 8.B.D.0.1.0.0.2.IP6.ARPA
Dec 1 13:29:08 ad named[19266]: command channel listening on 127.0.0.1#953
Dec 1 13:29:08 ad named[19266]: zone 0.in-addr.arpa/IN: loaded serial 1
Dec 1 13:29:08 ad named[19266]: zone 100.0.10.in-addr.arpa/IN: loaded serial 9
Dec 1 13:29:08 ad named[19266]: zone 127.in-addr.arpa/IN: loaded serial 1
Dec 1 13:29:08 ad named[19266]: zone 255.in-addr.arpa/IN: loaded serial 1
Dec 1 13:29:08 ad named[19266]: zone localhost/IN: loaded serial 2
Dec 1 13:29:08 ad named[19266]: zone my.domen.ru/IN: loaded serial 2011120105
Dec 1 13:29:08 ad named[19266]: managed-keys-zone ./IN: loading from master file managed-keys.bind failed: file not found
Dec 1 13:29:08 ad named[19266]: managed-keys-zone ./IN: loaded serial 0
Dec 1 13:29:08 ad named[19266]: running
Dec 1 13:29:12 ad dhcpd: DHCPINFORM from 10.0.100.18 via eth0
Dec 1 13:29:12 ad dhcpd: DHCPACK to 10.0.100.18 (00:15:58:07:de:b9) via eth0
Dec 1 13:29:13 ad ntpd[16172]: 10.0.100.44 interface 10.0.100.253 -> (null)
Dec 1 13:29:14 ad ntpd[16172]: 169.254.2.2 interface 10.0.100.253 -> (null)
Dec 1 13:29:14 ad ntpd[16172]: 10.0.100.9 interface 10.0.100.253 -> (null)
Пользователь решил продолжить мысль 01 Декабря 2011, 08:35:37:
еще в файл /etc/apparmor.d/usr.sbin.named
я добавил строки при настройке домена
/var/lib/samba/private/* rw,
/var/lib/samba/private/dns/* rw,
Может они лишние ?
Пользователь решил продолжить мысль 01 Декабря 2011, 09:22:10:
Еще меня интересует момент в файле конфига, есть такая строка
/*
* the list of principals and what they can change is created
* dynamically by Samba, based on the membership of the domain controllers
* group. The provision just creates this file as an empty file.
*/
include "/var/lib/samba/private/named.conf.update";
Этот файл содержит
/* this file is auto-generated - do not edit */
update-policy {
grant MY.DOMEN.RU ms-self * A AAAA;
grant AD$@MY.DOMEN.RU wildcard * A AAAA SRV CNAME;
grant Administrator@MY.DOMEN.RU wildcard * A AAAA SRV CNAME;
};
Или он вообще ни как не влияет на параметр обновления dns зон?