Здравствуйте. Проблема такая: при опросе своего NS сервера
; <<>> DiG 9.9.5 <<>> @ns1.example.com example.com ANY
; (1 server found)
;; global options: +cmd
;; connection timed out; no servers could be reached
Спрашиваю у гугла
; <<>> DiG 9.9.5 <<>> @8.8.8.8 example.com ANY
; (1 server found)
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 50739
;; flags: qr rd ra; QUERY: 1, ANSWER: 6, AUTHORITY: 0, ADDITIONAL: 1
;; OPT PSEUDOSECTION:
; EDNS: version: 0, flags:; udp: 512
;; QUESTION SECTION:
;example.com. IN ANY
;; ANSWER SECTION:
example.com. 3599 IN SOA ns1.example.com. admin.example.com. 2016021301 3600 900 3600000 3600
example.com. 3599 IN NS ns.secondary.net.ua.
example.com. 3599 IN NS ns1.example.com.
example.com. 3599 IN NS ns2.example.com.
example.com. 3599 IN MX 10 mx.example.com.
example.com. 3599 IN A 91.203.26.168
;; Query time: 159 msec
;; SERVER: 8.8.8.8#53(8.8.8.8)
;; WHEN: Sun Feb 14 12:59:05 MSK 2016
;; MSG SIZE rcvd: 187
Конфиг named.conf
acl "xfer" { 193.201.116.2; };
acl "trusted" { 127.0.0.0/8; 192.168.0.0/28; };
//------------------------ Раздел опций ---------------------------//
options {
directory "/var/bind";
pid-file "/run/named/named.pid";
//bindkeys-file "/etc/bind/bind.keys";
listen-on-v6 { none; };
listen-on { 127.0.0.1; 192.168.0.1; 91.203.26.168; };
allow-query { trusted; };
allow-query-cache { trusted; };
allow-recursion { trusted; };
allow-transfer { xfer; };
allow-update { none; };
forward first;
forwarders {
176.120.119.66; // ISP
// 4.2.2.1; // Level3 Public DNS
// 4.2.2.2; // Level3 Public DNS
8.8.8.8; // Google Open DNS
8.8.4.4; // Google Open DNS
};
//dnssec-enable yes;
//dnssec-validation yes;
//dnssec-validation auto;
query-source address * port 53;
};
//----------------------- Политика логов --------------------------//
logging {
channel default_log {
file "/var/log/named/named.log" versions 5 size 50M;
print-time yes;
print-severity yes;
print-category yes;
};
category default { default_log; };
category general { default_log; };
};
include "/etc/bind/rndc.key";
controls {
inet 127.0.0.1 port 953 allow { 127.0.0.1/32; } keys { "rndc-key"; };
};
//----------------------- Внутренний вид -------------------------//
view "internal" {
match-clients { 192.168.0.0/28; localhost; };
recursion yes;
zone "." in {
type hint;
file "/var/bind/named.cache";
};
zone "localhost" IN {
type master;
file "pri/localhost.zone";
notify no;
};
zone "example.com" {
type master;
file "pri/example-com.internal";
allow-transfer { any; };
};
};
//----------------------- Внешний вид ----------------------------//
view "external" {
match-clients { any; };
recursion yes;
zone "." in {
type hint;
file "/var/bind/named.cache";
};
zone "example.com" {
type master;
file "pri/example-com.external";
notify yes;
allow-query { any; };
allow-transfer { xfer; };
};
};
Файл зоны
Зона;время жизни до обновления кеша по умолчанию 1 час.
$TTL 3600
;запись SOA - начальная запись зоны
@ IN SOA ns1.example.com. admin.example.com. (
2016021301 ; Серийный номер формат YYYYMMDDNN
3600 ; Обновление
900 ; Повтор
3600000 ; Истечение срока
3600 ) ; Минимальное TTL
;серверы DNS
@ IN NS ns1.example.com.
@ IN NS ns2.example.com.
@ IN NS ns.secondary.net.ua.
;записи MX
@ MX 10 mx.example.com.
;сопоставление имя - ip
@ IN A 91.203.26.168
ns1 IN A 91.203.26.168
ns2 IN A 91.203.26.168
test IN A 91.203.26.168
Подскажите пожайлуста в чем может быть проблема?