1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
| yum install unbound -y
sed -i 's/# interface: 0.0.0.0$/interface: 0.0.0.0/' /etc/unbound/unbound.conf
sed -i 's|# access-control: 0.0.0.0/0 refuse$|access-control: 0.0.0.0/0 allow|' /etc/unbound/unbound.conf
cat << "END" > /etc/unbound/local.d/moonpac.com.conf
local-zone: "moonpac.com." static
local-data: "moonpac.com. IN SOA ns.moonpac.com. root.moonpac.com. 1 1h 1h 1h 1h"
local-data: "moonpac.com. IN NS ns.moonpac.com."
local-data: "ns.moonpac.com. IN A 10.173.28.219"
local-data: "vcenter.moonpac.com. IN A 10.173.28.241"
local-data: "vrlcm.moonpac.com. IN A 172.24.98.192"
local-data: "vidm.moonpac.com. IN A 172.24.98.191"
local-data: "vra.moonpac.com. IN A 172.24.98.190"
local-data-ptr: "10.173.28.241 vcenter.moonpac.com"
local-data-ptr: "172.24.98.192 vrlcm.moonpac.com"
local-data-ptr: "172.24.98.191 vidm.moonpac.com"
local-data-ptr: "172.24.98.190 vra.moonpac.com"
END
cat << "END" > /etc/unbound/conf.d/forward.com.conf
server:
domain-insecure: "com."
domain-insecure: "net."
domain-insecure: "org."
forward-zone:
name: "."
forward-addr: 114.114.114.114
END
unbound-control-setup
systemctl enable unbound.service --now
systemctl disable firewalld.service --now
ss -tunlp | grep :53
|