Ich habe in der Konfig die Option forwarders eingetragen und die Google IPs eingetragen.
options {
listen-on port 53 { any; };
directory "/var/named";
dump-file "/var/named/data/cache_dump.db";
statistics-file "/var/named/data/named_stats.txt";
memstatistics-file "/var/named/data/named_mem_stats.txt";
secroots-file "/var/named/data/named.secroots";
recursing-file "/var/named/data/named.recursing";
allow-query { any; };
filter-aaaa-on-v4 yes;
/*
- If you are building an AUTHORITATIVE DNS server, do NOT enable recursion.
- If you are building a RECURSIVE (caching) DNS server, you need to enable
recursion.
- If your recursive DNS server has a public IP address, you MUST enable access
control to limit queries to your legitimate users. Failing to do so will
cause your server to become part of large scale DNS amplification
attacks. Implementing BCP38 within your network would greatly
reduce such attack surface
*/
recursion yes;
dnssec-enable no;
dnssec-validation no;
managed-keys-directory "/var/named/dynamic";
pid-file "/run/named/named.pid";
session-keyfile "/run/named/session.key";
/* https://fedoraproject.org/wiki/Changes/CryptoPolicy */
include "/etc/crypto-policies/back-ends/bind.config";
notify yes;
};
forwarders {
8.8.8.8;
8.8.4.4;
};
logging {
channel default_debug {
file "data/named.run" versions 3 size 10m;
severity info;
};
category queries { default_debug; }; // eingehende Client-Queries
category client { default_debug; }; // Client-Handling-Details
category resolver { default_debug; }; // rekursive Auflösungen
category query-errors { default_debug; }; // NXDOMAIN/SERVFAIL etc.
};
zone "." IN {
type hint;
file "named.ca";
};
include "/etc/named.rfc1912.zones";
include "/etc/named.root.key";
zone "google.local" IN {
type master;
file "/var/named/google.local.db";
allow-update { none; };
//allow-transfer { none; }; // Keine AXFR an Dritte (Stub/Secondary nicht gewünscht)
allow-query { any; }; // Autoritativ ausliefern
notify yes; // Kein NOTIFY
// allow-transfer { 172.21.0.3; };
also-notify { 172.21.0.3; };
};Wenn ich den Server neu starte kommt in journalctl der Fehler
/etc/named.conf:37: unknown option 'forwarders'
Wie trage ich die Forwarder richtig ein?