centos7 bind 設定

 

一、bind log 檔

讓 bind DNS 把 log 記錄分類

https://ssorc.tw/2517

/etc/named.conf

logging {
 channel default-log { // 名稱定義
 file "/var/log/named/default.log" versions 20 size 50m; // 記錄檔、保留多少個 (default.log , default.0~19)、檔案最大 50mb就輪替
 severity info; // 什麼等級的程度才記錄
 print-severity yes; // 記錄程度
 print-time yes; // 記錄時間
 print-category yes; // 記錄類別名稱
 };
 channel query-log {
 file "/var/log/named/query.log" versions 20 size 50m;
 severity info;
 print-severity yes;
 print-time yes;
 print-category yes;
 };
 channel security-log {
 file "/var/log/named/security.log" versions 20 size 50m;
 severity info;
 print-severity yes;
 print-time yes;
 print-category yes;
 };
 channel other-log {
 file "/var/log/named/other.log" versions 20 size 50m;
 severity info;
 print-severity yes;
 print-time yes;
 print-category yes;
 };
 category default {default-log;}; // 定義類別記錄到那裡
 category queries { query-log;};
 category security { security-log;};
 category lame-servers { null; };
 category client { other-log;};
 category config { other-log;};
 category database { other-log;};
 category general { other-log;};
};