Cari Blog Ini

Selasa, 11 Desember 2012

CARA INSTALL UNBOUND DI UBUNTU SERVER

CARA INSTALL UNBOUND DI UBUNTU SERVER


apt-get update
apt-get install unbound
cd /etc/unbound
wget ftp://FTP.INTERNIC.NET/domain/named.cache
unbound-control-setup
chown unbound:root unbound_*
chmod 440 unbound_*
sudo unbound-control stats | tail -16
sudo apt-get remove bind  ======> supaya tdk bentrok dengan unbound, buang bind
sudo apt-get purge bind   ======> supaya tdk bentrok dengan unbound, buang bind
sudo apt-get clean    ====> utk membersihkan sisa file bind

edit file unbound.conf
$ nano /etc/unbound/unbound.conf
isi dengan ini :

=====================================================================
server:
verbosity: 1
statistics-interval: 120
statistics-cumulative: yes
num-threads: 1
interface: 0.0.0.0

outgoing-range: 512
num-queries-per-thread: 1024

msg-cache-size: 16m
rrset-cache-size: 32m

msg-cache-slabs: 4
rrset-cache-slabs: 4

cache-max-ttl: 86400
infra-host-ttl: 60
infra-lame-ttl: 120

infra-cache-numhosts: 10000
infra-cache-lame-size: 10k

do-ip4: yes
do-ip6: no
do-udp: yes
do-tcp: yes
do-daemonize: yes

#access-control: 0.0.0.0/0 allow
access-control: 192.168.0.0/16 allow
access-control: 172.16.0.0/12 allow
access-control: 10.0.0.0/8 allow
access-control: 127.0.0.0/8 allow
access-control: 0.0.0.0/0 refuse

chroot: "/etc/unbound"
username: "unbound"
directory: "/etc/unbound"
username: "unbound"
directory: "/etc/unbound"
#logfile: "/etc/unbound/unbound.log"
#use-syslog: yes
logfile: ""
use-syslog: no
pidfile: "/etc/unbound/unbound.pid"
root-hints: "/etc/unbound/named.cache"

identity: "DNS"
version: "1.4"
hide-identity: yes
hide-version: yes
harden-glue: yes
do-not-query-address: 127.0.0.1/8
do-not-query-localhost: yes
module-config: "iterator"

#zone localhost
local-zone: "localhost." static
local-data: "localhost. 10800 IN NS localhost."
local-data: "localhost. 10800 IN SOA localhost. nobody.invalid. 1 3600 1200 604800 10800"
local-data: "localhost. 10800 IN A 127.0.0.1"

local-zone: "127.in-addr.arpa." static
local-data: "127.in-addr.arpa. 10800 IN NS localhost."
local-data: "127.in-addr.arpa. 10800 IN SOA localhost. nobody.invalid. 2 3600 1200 604800 10800"
local-data: "1.0.0.127.in-addr.arpa. 10800 IN PTR localhost."

#zone zoky.net
local-zone: "zoky.net." static
local-data: "zoky.net. 86400 IN NS ns1.zoky.net."
local-data: "zoky.net. 86400 IN SOA zoky.net. hostmaster.zoky.net. 3 3600 1200 604800 86400"
local-data: "zoky.net. 86400 IN A 192.168.1.2"
local-data: "www.zoky.net. 86400 IN A 192.168.1.2"
local-data: "ns1.zoky.net. 86400 IN A 192.168.1.2"

local-data: "mail.zoky.net. 86400 IN A 192.168.1.2"
local-data: "zoky.net. 86400 IN MX 10 mail.zoky.net."
local-data: "mail.zoky.net. 86400 IN A 192.168.1.2"
local-data: "zoky.net. 86400 IN MX 10 mail.zoky.net."
local-data: "zoky.net. 86400 IN TXT v=spf1 a mx ~all"

local-zone: "2.168.192.in-addr.arpa." static
local-data: "2.168.192.in-addr.arpa. 10800 IN NS zoky.net."
local-data: "2.168.192.in-addr.arpa. 10800 IN SOA zoky.net. hostmaster.zoky.net. 4 3600 1200 604800 864000"
local-data: "2.2.168.192.in-addr.arpa. 10800 IN PTR zoky.net."

        local-data: "speedtest.indosatm2.com 86400 IN A 192.168.0.1"
        local-data: "speedtest.sby.dnet.net.id 86400 IN A 192.168.0.1"
        local-data: "speedtest.biznetnetworks.com 86400 IN A 192.168.0.1"
        local-data: "jogja.speedtest.telkomspeedy.com 86400 IN A 192.168.0.1"
        local-data: "www.speedtest.mygreenlinks.net 86400 IN A 192.168.0.1"
        local-data: "speedtest.sby.dnet.net.id 86400 IN A 192.168.0.1"
        local-data: "1.speedtest.telkomspeedy.com 86400 IN A 192.168.0.1"
        local-data: "2.speedtest.telkomspeedy.com 86400 IN A 192.168.0.1"
        local-data: "3.speedtest.telkomspeedy.com 86400 IN A 192.168.0.1"
        local-data: "4.speedtest.telkomspeedy.com 86400 IN A 192.168.0.1"
        local-data: "5.speedtest.telkomspeedy.com 86400 IN A 192.168.0.1"
        local-data: "6.speedtest.telkomspeedy.com 86400 IN A 192.168.0.1"
        local-data: "7.speedtest.telkomspeedy.com 86400 IN A 192.168.0.1"
        local-data: "8.speedtest.telkomspeedy.com 86400 IN A 192.168.0.1"
        local-data: "9.speedtest.telkomspeedy.com 86400 IN A 192.168.0.1"
        local-data: "10.speedtest.telkomspeedy.com 86400 IN A 192.168.0.1"
        local-data: "speedtest.elnus.net.id 86400 IN A 192.168.0.1"
        local-data: "speedtest.wigo.co.id 86400 IN A 192.168.0.1"
        local-data: "speedtest-surabaya.biznetnetworks.com 86400 IN A 192.168.0.1"
        local-data: "speedtest.cbn.net.id 86400 IN A 192.168.0.1"
        local-data: "speedtest.vqbn.com 86400 IN A 192.168.0.1"
        local-data: "speedtest.singnet.com.sg 86400 IN A 192.168.0.1"
        local-data: "speedtest.net 86400 IN A 192.168.0.1"
        local-data: "bandwidthplace.com 86400 IN A 192.168.0.1"
        local-data: "speedtest.hyper.net.id 86400 IN A 192.168.0.1"
forward-zone:
name: "."
forward-addr: 203.130.208.18
forward-addr: 203.130.193.74
forward-addr: 203.89.146.160
forward-addr: 218.100.27.65
forward-addr: 203.130.196.155
forward-addr: 222.124.204.34

remote-control:
control-enable: yes
control-interface: 127.0.0.1
control-port: 953
server-key-file: "/etc/unbound/unbound_server.key"
server-cert-file: "/etc/unbound/unbound_server.pem"
control-key-file: "/etc/unbound/unbound_control.key"
control-cert-file: "/etc/unbound/unbound_control.pem"
======================================================================
Restart Unbound
$ sudo /etc/init.d/unbound restart

taraaa......antum sdh menggunakan DNS Unbound yg menurut sy super cepat utk sa'at ini....bagi Agan2 yg sdh biasa, abaikan aja postingan ini...Postingan ini hanya utk para Newbie ( Termasuk Saya...hehehe )

Tidak ada komentar:

Posting Komentar