// LAN内のIPアドレスグループをLOCALと定義
acl "LOCAL" {
192.168.11.0/24;
240d:1a:34d:7f00::/64;
localhost;
localnets;
};
// ネームサーバー共通設定
options {
directory "/var/cache/bind";
// If there is a firewall between you and nameservers you want
// to talk to, you may need to fix the firewall to allow multiple
// ports to talk. See http://www.kb.cert.org/vuls/id/800113
// If your ISP provided one or more IP addresses for stable
// nameservers, you probably want to use them as forwarders.
// Uncomment the following block, and insert the addresses replacing
// the all-0's placeholder.
forwarders { 8.8.8.8; 8.8.4.4;};
allow-query { LOCAL; };
allow-query-cache { LOCAL; };
allow-transfer { none; };
masterfile-format text;
//========================================================================
// If BIND logs error messages about the root key being expired,
// you will need to update your keys. See https://www.isc.org/bind-keys
//========================================================================
dnssec-validation auto;
auth-nxdomain no; # conform to RFC1035
listen-on-v6 { any; };
};
//
// Do any local configuration here
//
// この部分にゾーン情報を追加します
// Consider adding the 1918 zones here, if they are not used in your
// organization
//include "/etc/bind/zones.rfc1918"; // コメントから有効に変更
;; sunao-mita.pgw.jp
$TTL 86400
@ IN SOA sunao-mita.pgw.jp. root.sunao-mita.pgw.jp. (
2020010202 ;Serial
3600 ;Refresh
900 ;Retry
604800 ;Expire
86400 ;Minimum TTL
)
IN NS dns.sunao-mita.pgw.jp.
IN NS dns2.sunao-mita.pgw.jp.
IN NS gate.sunao-mita.pgw.jp.
IN MX 10 mail.sunao-mita.pgw.jp.
IN A 192.168.11.2
IN AAAA 240d:1a:34d:7f00:a284:cc24:64bd:daae
dns2 IN A 192.168.11.20
dns IN A 192.168.11.2
ubuntu-sv IN A 192.168.11.199
rpi1-disk IN A 192.168.11.23
rpi1-disk IN AAAA 240d:1a:34d:7f00:11cf:af0d:3b62:8501
ubuntu-dtp IN A 192.168.11.100
gate IN A 192.168.11.1
virt IN A 192.168.11.105
Radio IN A 192.168.11.20
DebianPogo IN A 192.168.11.22
DebianPogo IN AAAA 240d:1a:34d:7f00:225:31ff:fe00:9df0
mail IN A 192.168.11.2
mail IN AAAA 240d:1a:34d:7f00:a284:cc24:64bd:daae
PogoV6 IN AAAA 240d:1a:34d:7f00:225:31ff:fe00:9df0
dns2 IN AAAA 240d:1a:34d:7f00:ba27:ebff:feac:28a8
dns IN AAAA 240d:1a:34d:7f00:a284:cc24:64bd:daae
www IN A 192.168.11.2
www IN AAAA 240d:1a:34d:7f00:a284:cc24:64bd:daae
RadioV6 IN AAAA 240d:1a:34d:7f00:ba27:ebff:feac:28a8
rpi1-com2 IN A 192.168.11.21
rpi1-com2 IN AAAA 240d:1a:34d:7f00:ba27:ebff:fe0c:5ef3
note IN A 192.168.11.51
note IN AAAA 240d:1a:34d:7f00:3906:1714:acef:3e46
web-server IN A 192.168.11.2
web-server IN AAAA 240d:1a:34d:7f00:a284:cc24:64bd:daae
collection IN CNAME virt
share IN CNAME rpi1-disk
2020年元旦になって、数年前から懸念していた公開サーバーを入れ換えることができました。交換したサーバーは、現在の状況で最新版のラズパイで、Raspberry pi 4 B+ / 4GBメモリ で一応最強モデルです。
長く放置できそうな OS
利用する OS は、色々悩みましたが使い慣れているラズパイではデフォルトとなる Raspbian の最新版に落ち着きました。このハードなら色々な OS の選択肢もあるようですが、今までの公開サーバー(PogoPlug E02) のように数年で交換を悩まなそうな見通しを考慮し、日常的で簡単な保守だけで長く安定的に公開させられればとの考えもあっての選択です。