DDNS无法正常工作,求救

DDNS无法正常工作,求救

在配置DDNS后出现DHCP分配IP正常,而更新机器名出现错误。log的提示如下:

tail /var/log/messages
Dec 17 22:23:07 localhost dhcpd: Internet Systems Consortium DHCP Server V3.1.0
Dec 17 22:23:07 localhost dhcpd: Copyright 2004-2007 Internet Systems Consortium.
Dec 17 22:23:07 localhost dhcpd: All rights reserved.
Dec 17 22:23:07 localhost dhcpd: For info, please visit http://www.isc.org/sw/dhcp/
Dec 17 22:23:07 localhost dhcpd: Internet Systems Consortium DHCP Server V3.1.0
Dec 17 22:23:07 localhost dhcpd: Copyright 2004-2007 Internet Systems Consortium.
Dec 17 22:23:07 localhost dhcpd: All rights reserved.
Dec 17 22:23:07 localhost dhcpd: For info, please visit http://www.isc.org/sw/dhcp/
Dec 17 22:23:07 localhost dhcpd: Wrote 1 leases to leases file.
Dec 17 22:23:08 localhost dhcpd: Listening on LPF/eth0/00:0c:29:17:9a:b3/192.168.1/24
Dec 17 22:23:08 localhost dhcpd: Sending on   LPF/eth0/00:0c:29:17:9a:b3/192.168.1/24
Dec 17 22:23:08 localhost dhcpd: Sending on   Socket/fallback/fallback-net
Dec 17 22:23:19 localhost named[2421]: client 192.168.1.10#32770: update 'mtls.com/IN' denied
Dec 17 22:23:19 localhost dhcpd: Unable to add forward map from liushumantou.mtls.com to 192.168.1.11: timed out
Dec 17 22:23:19 localhost dhcpd: DHCPREQUEST for 192.168.1.11 from 00:50:56:c0:00:01 (liushumantou) via eth0
Dec 17 22:23:19 localhost dhcpd: DHCPACK on 192.168.1.11 to 00:50:56:c0:00:01 (liushumantou) via eth0

环境:LINUX作为DNS+DHCP服务器,ip是192.168.1.10;  上面的log中liushumantou是一台 xp client,
DNS和DHCP的相关配置文件如下:  其中DNS是以named用户运行的,dhcp是以root用户运行的。

/etc/dhcpd.conf


ddns-update-style interim;
ignore client-updates;
option domain-name "mtls.com";
option domain-name-servers ns.mtls.com;
default-lease-time 600;
max-lease-time 7200;
log-facility local7;
subnet 192.168.1.0 netmask 255.255.255.0 {
  range  192.168.1.11 192.168.1.245;
  option routers ns.mtls.com;
}

key DHCP_UPDATER {
        algorithm        HMAC-MD5.SIG-ALG.REG.INT;
        secret        O4FIgI+3JxXqDBvB0bREmw==;
};

zone mtsl.com. {
        primary 127.0.0.1;
        key DHCP_UPDATER;
}

zone 1.168.192.in-addr.arpa. {
        primary 127.0.0.1;
        key DHCP_UPDATER;
}



/etc/named.conf

options {
        directory "/var/named";
};

controls {
        inet 127.0.0.1 allow { localhost; } keys { rndckey; };
};
zone "." IN {
        type hint;
        file "named.ca";
};

zone "localhost" IN {
        type master;
        file "localhost.zone";
        allow-update { none; };
};

zone "0.0.127.in-addr.arpa" IN {
        type master;
        file "named.local";
        allow-update { none; };
};

include "/etc/rndc.key";

zone "mtls.com" IN {
        type master;
        file "mtls.com.zone";
        allow-update { key DHCP_UPDATER; };
};

zone "1.168.192.in-addr.arpa" IN {
        type master;
        file "1.168.192.zone";
        allow-update { key DHCP_UPDATER; };
};

key DHCP_UPDATER {
        algorithm HMAC-MD5.SIG-ALG.REG.INT;
        secret O4FIgI+3JxXqDBvB0bREmw==;
};      
这里改成zone "mtls.com" IN {
        notify yes
        type master;
        file "mtls.com.zone";
        allow-update { 192.168.1.0/24; };
};

试一下      
谢谢楼上的,问题解决。

只需要加上notify  yes;就可以了,allow-update还是用KEY来验证,否则DNS会报不安全的警告。

另外有一个问题,notify在默认情况下本来就是yes的,为什么会出现这种情况呢?      
弄了N久都没成功,等下再试试。