the name of the TSIG password, and key indicates the actual password. The password is a 64-bit encrypted string, usually generated by dnssec-keygen (8. Exercise caution when using option-y on a multi-user system, because the password may be visible in ps (1) output or shell history documents. When both dig and TSCG are used for authentication, the queried name server needs to know the password and decoding rules. In BIND, provide the correct password
the TSIG password, and key is the actual password. The password is a 64-bit cryptographic string, usually generated by Dnssec-keygen (8). Caution should be exercised when using option-Y on multi-user systems, because the password may be visible in the output of PS (1) or in the Shell's history file. When using both dig and TSCG authentication, the queried name server needs to know the password and decoding rules. In BIND, the implementation is implem
server to find the operator, the discovery of a cache will be directly from the cache to return the answer, improve resolution efficiency.Note: the forwarded server needs to be able to do recursion for the requestor, otherwise, the forwarding request will not proceed;(1) All forwarding: all the non-native all responsible for the resolution of the area of the request, all forwarded to the designated server;options{forward{first|only} fowwarders}First: Forward, if there is no answer to the root o
address, so only local use is allowed;After the BIND program is installed, the cache name server can be used by default, and the service can be started directly if there is no specific area for parsing.CentOS 6:service named startCentOS 7:systemctl Start Named.serviceMaster configuration file Format:Global Configuration segment:Options {...}Log configuration section:Logging {...}Zone Configuration segment:Zone {...}Those areas that are parsed by the local machine, or the area that is forwarded;
"/var/named";Dump-file "/var/named/data/cache_dump.db";Statistics-file "/var/named/data/named_stats.txt";Memstatistics-file "/var/named/data/named_mem_stats.txt";allow-query {localhost;};Recursion Yes,------------------------the main configuration is commented out here, we specify it separately in the viewDnssec-enable Yes;Dnssec-validation Yes;Dnssec-lookaside Auto;/* Path to ISC DLV key */Bindkeys-file "
, automatically switch to different firewall configuration.
6, DNSSEC support: Enhanced domain name Resolution Protocol standards, the old DNS is risky, so added to the DNS enhanced version of the DNSSEC support.
7. NAP Network Rights protection: This is the feature introduced in Vista, continue to inherit. The computer can be tested for health.
8, DirectAccess safe and seamless connection with the compa
realize the dynamic update of DNS, the first thing to consider is how to ensure the implementation of DDNS safely. The approach given by ISC is to create a key that is dynamically updated and validated by the key when it is updated. To achieve this, you need to run the following command as root:
root@slack9:/etc# dnssec-keygen-a hmac-md5-b 128-n USER Myddns
kmyddns.+157+37662
The function of the above Dnssec
Install the DNS package:
Yum install-y bind
To Configure the DNS master configuration file:
Configuration files:/etc/named.conf,named.rfc1912.zones,
Parse Library file:/var/named/
1. vi/etc/named.conf
Listen-on Port 53 {192.168.1.10;};
To turn off the security features of DNS without affecting the local parsing feature:Dnssec-enable No;Dnssec-validation No;Dnssec-lookaside No;
2. Check the configuration f
Recently, we helped the customer move the host from Godaddy to Hostgator. The domain name is still on godaddy, but the NameSever (NS) is changed to Hostgator, so that the domain name can be managed in the hostgator background, you do not have to worry about the failure to access the website due to the Host IP address change.
The website was successfully transferred. The first night of the transfer was uploa
try it, and then have time, you can try another. Here SAE is the SAE version that supports thinkphp. So upload the code to see the effect, post-release URL will look like: ****.sinaapp.com
SAE is based on access to traffic charges, get a real name certification, will send traffic, for the beginning of the site, enough to use; If you are not at ease, you can apply for a mid-level developer, each month will be given traffic. Before the microblog has added V can apply for intermediate develope
test program is not wrong, but it cannot be displayed normally. later (after going home), I checked the statement: for ($ I = 0; $ I ++; $ I
7. Godaddy space Zend Optimizer upgrade _ PHP Tutorial
Introduction: how to upgrade Godaddy space Zend Optimizer. But today I am prompted zend Optimizer not installed when installing the test program. This makes me confused why zend is not installed in such a common
address, while using an internal jump the address in the browser does not change and looks more like the actual two-level domain name Virtual server. Reboot the Apache server after Setup and you're done!Update May 1, today on the Internet to see someone ask a question: seeking rewrite anti-theft chain regularDo not allow www.im286.com www.chinaz.com these two sites hotlinking, other sites can hotlinking rules how to write. the answer in the forum is: Rewriteengine onRewritecond%{http_referer}
very good, especially the JS part, but also for a long time did not review the reason. On the machine topic is to write a copy of the Google Page class, when to take like 9/2 of the largest integer, but how can not think of function ceil name, dizzy for half a day. The final test program is not wrong, but it is not normal display, and later (after home) a check to know is the statement: for ($i =0; $i + +; $i
7. GoDaddy space Zend Optimizer upgrade
, about whether to use full escape, such as in Rewritecond%{http_referer} chinaz.com [NC] to change chinaz.com to chinaz\.comThe answer is, both are possible.Second, today in doing yourcaddy.com (that is, I did last year Planetcoachella deformation), on the GoDaddy host can not turn normal, and later found the problem:On Hostmonster and on my own machine,Rewriterule ^business/([^\.] +) $ biz/detail.php?name=$1 [L]Reach the rewrite. On the
Preparations: lftp must be installed in VPS in advance. lftp is powerful. CentOS directly executes: yuminstalllftp and Debian execute: apt-getinstalllftp. You need to create the/home/backup/directory on VPS and the backup directory on FTP. If there are not many VPS databases, you can use Godaddy free space (10 GB space, 300
Preparations:
Lftp needs to be installed in VPS in advance. lftp is powerful and can be directly executed in CentOS:Yum install l
Many Personal webmasters encounter capital bottlenecks during their business operations, such as domain name and space fees for website construction, external chain purchases, staff salaries, and even office equipment, we are often forced to give up the blue ocean of good projects due to funding issues. So todayOnline earning tutorialWe will mainly share with you the strategies for saving money on domain names. There are mainly the following methods:1. low discount prices for IDC agents:This met
To implement the following functions: Upload the source code to the web site.
First, use Upload. exp to implement automatic FTP upload]
#! /Usr/bin/empty CT
Because my space is hosted in free Godaddy space, all pages are embedded with Godaddy ads, and all source code files need to be processed, the function is to replace
[Upload. Sh]
#! /Bin/sh
Usage:
./Upload. Sh test. cpp
Files are stored in the CPP
The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion;
products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the
content of the page makes you feel confusing, please write us an email, we will handle the problem
within 5 days after receiving your email.
If you find any instances of plagiarism from the community, please send an email to:
info-contact@alibabacloud.com
and provide relevant evidence. A staff member will contact you within 5 working days.