ããã¯ãUbuntu OnlineãFedora OnlineãWindows ãªã³ã©ã€ã³ ãšãã¥ã¬ãŒã¿ãŒããŸã㯠MAC OS ãªã³ã©ã€ã³ ãšãã¥ã¬ãŒã¿ãŒãªã©ã®è€æ°ã®ç¡æãªã³ã©ã€ã³ ã¯ãŒã¯ã¹ããŒã·ã§ã³ã® XNUMX ã€ã䜿çšããŠãOnWorks ç¡æãã¹ãã£ã³ã° ãããã€ããŒã§å®è¡ã§ããã³ãã³ã kdig ã§ãã
ããã°ã©ã ïŒ
NAME
dig - DNS ã«ãã¯ã¢ãã ãŠãŒãã£ãªãã£
SYNOPSIS
dig [@ãµãŒããŒ] [-b äœæ] [-c class] [-f ãã¡ã€ã«å] [-k ãã¡ã€ã«å] [-m] [-p ããŒãïŒ]
[-q å] [-t type] [-v] [-x addr] [-y [hmac:]åå:ããŒ] [-4] [-6] [åå] [çš®é¡]
[ã¯ã©ã¹] [ã¯ãšãªãªãã...]
dig [-h]
dig [global-queryopt...] [ã¯ãšãª...]
DESCRIPTION
dig (domain information groper) ã¯ãDNS ããŒã ãµãŒããŒã«åãåãããããã®æè»ãªããŒã«ã§ãã ãã
DNS ã«ãã¯ã¢ãããå®è¡ããããŒã ãµãŒããŒããè¿ãããåçã衚瀺ããŸãã
質åãããããšã ã»ãšãã©ã® DNS 管çè ã䜿çšãã dig DNS ã®åé¡ããã©ãã«ã·ã¥ãŒãã£ã³ã°ããã«ã¯ã
æè»æ§ã䜿ãããããåºåã®æçãã ä»ã®æ€çŽ¢ããŒã«ã§ã¯ãæ å ±ãå°ãªãåŸåããããŸãã
æ©èœæ§ããã dig.
ããã dig éåžžã¯ã³ãã³ãã©ã€ã³åŒæ°ãšãšãã«äœ¿çšãããŸãããããã ã¢ãŒãããããŸãã
ãã¡ã€ã«ããã«ãã¯ã¢ããèŠæ±ãèªã¿åãæäœã ã³ãã³ãã©ã€ã³ã®ç°¡åãªæŠèŠ
åŒæ°ãšãªãã·ã§ã³ã¯ã -h ãªãã·ã§ã³ãäžããããŸãã 以åã®ããŒãžã§ã³ãšã¯ç°ãªãã
BIND 9 ã®å®è£ dig ã³ãã³ãã©ã€ã³ããè€æ°ã®ã«ãã¯ã¢ãããçºè¡ã§ããããã«ãªããŸãã
ç¹å®ã®ããŒã ãµãŒããŒã«ã¯ãšãªããããã«æ瀺ãããªãéãã dig ãªã¹ããããŠããåãµãŒããŒãè©ŠããŸã
in /etc/resolv.confã 䜿çšå¯èœãªãµãŒããŒã¢ãã¬ã¹ãèŠã€ãããªãå Žåã¯ã dig ã«ã¯ãšãªãéä¿¡ããŸã
ããŒã«ã«ãã¹ãã
ã³ãã³ãã©ã€ã³åŒæ°ããªãã·ã§ã³ãæå®ãããŠããªãå Žåã dig ã.ãã® NS ã¯ãšãªãå®è¡ããŸãã
ïŒãã®æ ¹ïŒã
ãŠãŒã¶ãŒããšã®ããã©ã«ããèšå®ããããšãå¯èœã§ã dig ã ${HOME}/.digrcã ãã®ãã¡ã€ã«ãèªã¿åãããŠã
ãã®äžã®ãªãã·ã§ã³ã¯ãã¹ãŠãã³ãã³ãã©ã€ã³åŒæ°ã®åã«é©çšãããŸãã
IN ããã³ CH ã®ã¯ã©ã¹åã¯ãIN ããã³ CH ã®ãããã¬ãã« ãã¡ã€ã³åãšéè€ããŸãã ã©ã¡ãã䜿çšããŠã
ã -t ãš -c ã¿ã€ããšã¯ã©ã¹ãæå®ãããªãã·ã§ã³ã¯ã -q ãã¡ã€ã³ãæå®ããŸã
ååãå ¥åãããããINãã䜿çšããŸãã ãããŠãCHãã ãããã®ãããã¬ãã« ãã¡ã€ã³ãæ€çŽ¢ãããšãã
SIMPLE USAGE
å žåçãªåŒã³åºã dig 次ã®ããã«ãªããŸãã
dig @ãµãŒããŒåã®ã¿ã€ã
ããã§ã
ã¯ãšãªããããŒã ãµãŒããŒã®ååãŸã㯠IP ã¢ãã¬ã¹ã§ãã ããã¯ã次㮠IPv4 ã¢ãã¬ã¹ã«ããããšãã§ããŸãã
ãããä»ã 6 é²è¡šèšãŸãã¯ã³ãã³åºåãè¡šèšã® IPvXNUMX ã¢ãã¬ã¹ã ãšã
äŸçµŠ åŒæ°ã¯ãã¹ãåã§ãã dig ã¯ãšãªãå®è¡ããåã«ãã®ååã解決ããŸã
ããŒã ãµãŒããŒã
ãªãå Žå åŒæ°ãæäŸãããŠããå Žåã dig çžè« /etc/resolv.conf; äœæã
ããã§èŠã€ãã£ãå Žåã¯ããã®ã¢ãã¬ã¹ã®ããŒã ãµãŒããŒã«ã¯ãšãªãå®è¡ããŸãã ã©ã¡ããã®å Žåã -4 or -6
ãªãã·ã§ã³ã䜿çšãããŠããå Žåã¯ã察å¿ãããã©ã³ã¹ããŒãã®ã¢ãã¬ã¹ã®ã¿ãè©Šè¡ãããŸãã
䜿çšå¯èœãªã¢ãã¬ã¹ãèŠã€ãããªãå Žåã¯ã dig ã¯ãšãªãããŒã«ã« ãã¹ãã«éä¿¡ããŸãã è¿äºã¯
å¿çããããŒã ãµãŒããŒããã®ã¡ãã»ãŒãžã衚瀺ãããŸãã
å
æ€çŽ¢ãããªãœãŒã¹ ã¬ã³ãŒãã®ååã§ãã
type
å¿ èŠãªã¯ãšãªã®ã¿ã€ã (ANYãAãMXãSIG ãªã©) ã瀺ããŸãã type äœã§ãããŸããŸãã
æå¹ãªã¯ãšãª ã¿ã€ãã ãããã®å Žå type åŒæ°ãæå®ãããŠããå Žåã dig A ã®æ€çŽ¢ãå®è¡ããŸã
èšé²ã
OPTIONS
-4
IPv4 ã®ã¿ã䜿çšããŸãã
-6
IPv6 ã®ã¿ã䜿çšããŸãã
-b ã¢ãã¬ã¹[#ããŒã]
ã¯ãšãªã®éä¿¡å IPã¢ãã¬ã¹ãèšå®ããŸãã ã® äœæ 次ã®ããããã®æå¹ãªã¢ãã¬ã¹ã§ããå¿ èŠããããŸã
ãã¹ãã®ãããã¯ãŒã¯ ã€ã³ã¿ãŒãã§ã€ã¹ããŸãã¯ã0.0.0.0ããŸãã¯ã::ãã ãªãã·ã§ã³ã®ããŒããæå®ã§ããŸã
ã#ããè¿œå ããããšã§ã
-c class
ã¯ãšãªã¯ã©ã¹ãèšå®ããŸãã ããã©ã«ã class ã¯INã§ãã ä»ã®ã¯ã©ã¹ã¯ãã·ãªãã¹ã¬ã³ãŒãã®HSã§ã
Chaosnet ã¬ã³ãŒãã®å Žå㯠CH ã§ãã
-f file
ãããã¢ãŒãïŒ dig æå®ããããªã¯ãšã¹ãããåŠçããã«ãã¯ã¢ãããªã¯ãšã¹ãã®ãªã¹ããèªã¿åããŸãã fileã å
ãã¡ã€ã«å ã®è¡ã¯ã次ã®ããã«è¡šç€ºãããã®ãšåãæ¹æ³ã§ç·šæããå¿ èŠããããŸãã
ãžã®ã¯ãšãª dig ã³ãã³ãã©ã€ã³ã€ã³ã¿ãŒãã§ã€ã¹ã䜿çšããŸãã
-i
å»æ¢ããã RFC6 IP1886.INT ãã¡ã€ã³ã䜿çšããŠãIPv6 éåŒãã«ãã¯ã¢ãããå®è¡ããŸãã
䜿çšäžã§ã å»æ¢ããããããæååã©ãã« ã¯ãšãª (RFC2874) ã¯è©Šè¡ãããŸããã
-k ããŒãã¡ã€ã«
æå®ããããã¡ã€ã«ããèªã¿åãããããŒã䜿çšããŠãTSIG ã䜿çšããŠã¯ãšãªã«çœ²åããŸãã ã㌠ãã¡ã€ã«ã¯æ¬¡ã®ãšããã§ãã
ã䜿çšããŠçæ tsig-keygen(8)ã TSIGèªèšŒã䜿çšããå Žå digã åå
ã¯ãšãªãåãããµãŒããŒã¯ã䜿çšãããŠããããŒãšã¢ã«ãŽãªãºã ãç¥ãå¿ èŠããããŸãã ã§
BINDãããã¯é©åãªãªãã·ã§ã³ãæäŸããããšã«ãã£ãŠè¡ãããŸãã ã㌠㚠ã®ã¹ããŒãã¡ã³ã named.conf.
-m
ã¡ã¢ãªäœ¿çšéã®ãããã°ãæå¹ã«ããŸãã
-p ããŒã
ããã©ã«ãã®ããŒã 53 ã§ã¯ãªãããµãŒããŒäžã®éæšæºããŒãã«ã¯ãšãªãéä¿¡ããŸãã
ãã®ãªãã·ã§ã³ã¯ããªãã¹ã³ããããã«æ§æãããããŒã ãµãŒããŒããã¹ãããããã«äœ¿çšãããŸãã
éæšæºã®ããŒãçªå·ã§ã¯ãšãªãå®è¡ããŸãã
-q å
ã¯ãšãªãããã¡ã€ã³åã ããã¯ã å ä»ã®è°è«ããã
-t type
ã¯ãšãªãããªãœãŒã¹ ã¬ã³ãŒã ã¿ã€ãã ãµããŒããããŠããä»»æã®æå¹ãªã¯ãšãª ã¿ã€ããæå®ã§ããŸãã
BIND 9 ã§ã¯ãããã©ã«ãã®ã¯ãšãª ã¿ã€ãã¯ãAãã§ãã -x ãªãã·ã§ã³ã¯ãããã瀺ãããã«æäŸãããŸã
éåŒãæ€çŽ¢ã AXFRã®çš®é¡ãæå®ããŠãŸãŒã³è»¢éãèŠæ±ã§ããŸãã ãã€
ã€ã³ã¯ãªã¡ã³ã¿ã« ãŸãŒã³è»¢é (IXFR) ãå¿ èŠãªå Žåã¯ã type ixfr=N ã«ã ã®
å¢åãŸãŒã³è»¢éã«ã¯ãã·ãªã¢ã«è»¢é以éã«ãŸãŒã³ã«å ããããå€æŽãå«ãŸããŸãã
ãŸãŒã³ã® SOA ã¬ã³ãŒãå ã®çªå·ã¯ N.
-v
ããŒãžã§ã³çªå·ãåºåããŠçµäºããŸãã
-x addr
ã¢ãã¬ã¹ãååã«ãããã³ã°ããããã®ãåçŽåãããéåŒãåç §ã ã® addr IPv4ã§ã
ãããä»ã 6 é²è¡šèšã®ã¢ãã¬ã¹ããŸãã¯ã³ãã³ã§åºåããã IPvXNUMX ã¢ãã¬ã¹ã ãšã -x is
䜿çšãããŠããå Žåã¯ãæäŸããå¿ èŠã¯ãããŸããã å, class ãš type åŒæ° dig
94.2.0.192.in-addr.arpa ã®ãããªååã®æ€çŽ¢ãèªåçã«å®è¡ãã
ã¯ãšãªã®ã¿ã€ããšã¯ã©ã¹ããããã PTR ãš IN ã«èšå®ããŸãã IPv6 ã¢ãã¬ã¹ã¯æ¬¡ã䜿çšããŠæ€çŽ¢ãããŸãã
IP6.ARPA ãã¡ã€ã³ã®ããã«åœ¢åŒ (ãã ãã -i ãªãã·ã§ã³ïŒã
-y [hmac:]ããŒå:ã·ãŒã¯ã¬ãã
æå®ãããèªèšŒããŒã䜿çšã㊠TSIG ã䜿çšããŠã¯ãšãªã«çœ²åããŸãã ããŒããŒã ã®ååã§ã
ããŒãããã³ ç§å¯ Base64 ã§ãšã³ã³ãŒããããå ±æç§å¯ã§ãã hmac ããŒã®ååã§ã
ã¢ã«ãŽãªãºã ; æå¹ãªéžæè¢ã¯ hmac-md5ãhmac-sha1ãhmac-sha224ãhmac-sha256ã
hmac-sha384ããŸã㯠hmac-sha512ã ãã hmac ãæå®ãããŠããªãå Žåãããã©ã«ã㯠hmac-md5 ã§ãã
泚: ã䜿çšããå¿ èŠããããŸãã -k ãªãã·ã§ã³ãéžæããŠåé¿ããŸã -y ãªãã·ã§ã³ããªããªã -y å ±æããã
Secret ã¯ã³ãã³ã ã©ã€ã³åŒæ°ãšããŠã¯ãªã¢ ããã¹ãã§æå®ãããŸãã ããã¯æ¬¡ã®å Žåã«è¡šç€ºãããå¯èœæ§ããããŸã
ããã®åºå ps(1) ãŸãã¯ãŠãŒã¶ãŒã®ã·ã§ã«ã«ãã£ãŠç¶æãããå±¥æŽãã¡ã€ã«å ã
QUERY OPTIONS
dig ã«ãã¯ã¢ããã®å®è¡æ¹æ³ã«åœ±é¿ãäžããå€æ°ã®ã¯ãšãª ãªãã·ã§ã³ãæäŸããŸãã
çµæã衚瀺ãããŸããã ãããã®äžéšã¯ã¯ãšãª ããããŒã®ãã©ã° ããããèšå®ãŸãã¯ãªã»ããããŸãã
åçã®ã©ã®ã»ã¯ã·ã§ã³ãå°å·ãããã決å®ãããã®ä»ã®ã»ã¯ã·ã§ã³ã¯ã¿ã€ã ã¢ãŠããš
æŠç¥ãåè©Šè¡ããŸãã
åã¯ãšãª ãªãã·ã§ã³ã¯ãå é ã«ãã©ã¹èšå· (+) ãä»ããŠããããŒã¯ãŒãã«ãã£ãŠèå¥ãããŸãã ããã€ãã®ããŒã¯ãŒã
ãªãã·ã§ã³ãèšå®ãŸãã¯ãªã»ããããŸãã ãããã®æå³ãç¡å¹ã«ããããã«ããããã®åã«æåå no ãä»ããããšãã§ããŸãã
ãã®ããŒã¯ãŒãã ä»ã®ããŒã¯ãŒãã¯ãã¿ã€ã ã¢ãŠãééãªã©ã®ãªãã·ã§ã³ã«å€ãå²ãåœãŠãŸãã 圌ãã¯æã£ãŠãã
ãã©ãŒã +ããŒã¯ãŒã=å€ã ããŒã¯ãŒãã¯çç¥ã§ããŸãããã ããçç¥åœ¢ã¯æ¬¡ã®ãšããã§ãã
æ確ãª; ããšãã°ã+cd 㯠+cdflag ãšåçã§ãã ã¯ãšãª ãªãã·ã§ã³ã¯æ¬¡ã®ãšããã§ãã
+[ããã]aaflag
ã®åçŸ©èª +[ããã]aaã®ã¿.
+[ããã]aaã®ã¿
ã¯ãšãªã«ãaaããã©ã°ãèšå®ããŸãã
+[ããã]è¿œå
è¿ä¿¡ã®è¿œå ã»ã¯ã·ã§ã³ã衚瀺ããŸã[衚瀺ããŸãã]ã ããã©ã«ãã§ã¯è¡šç€ºãããŸã
ããŒãã³ã¯
+[ããã]ã¢ããã©ã°
ã¯ãšãªã« AD (èªèšŒããŒã¿) ããããèšå®ããŸã (èšå®ããªãã§ãã ãã)ã ããã¯ãµãŒããŒã«æ¬¡ã®ããšãèŠæ±ããŸã
ãã¹ãŠã®åçã»ã¯ã·ã§ã³ãšæš©éã»ã¯ã·ã§ã³ããã¹ãŠæ¬¡ã®ããã«æ€èšŒããããã©ãããè¿ããŸãã
ãµãŒããŒã®ã»ãã¥ãªãã£ããªã·ãŒã«åŸã£ãŠå®å šã«ä¿è·ãããŸãã AD=1 ã¯ãã¹ãŠã®ã¬ã³ãŒãã瀺ããŸã
å®å šã§ããããšãæ€èšŒãããŠãããçã㯠OPT-OUT ç¯å²ããã®ãã®ã§ã¯ãããŸããã AD=0
åçã®äžéšãå®å šã§ã¯ãªãããæ€èšŒãããŠããªãããšã瀺ããŸãã ãã®ãããã¯èšå®ãããŠããŸã
ããã©ã«ãã§ã¯
+[ããã]ãã¹ãŠ
ãã¹ãŠã®è¡šç€ºãã©ã°ãèšå®ãŸãã¯ã¯ãªã¢ããŸãã
+[ããã]åç
è¿ä¿¡ã®åçæ¬ã衚瀺ãã衚瀺ããªãã ããã©ã«ãã§ã¯è¡šç€ºãããŸãã
+[ãªã]æš©é
è¿ä¿¡ã®æš©éã»ã¯ã·ã§ã³ã衚瀺ããŸãïŒè¡šç€ºããŸããïŒã ããã©ã«ãã§ã¯è¡šç€ºãããŸã
ããŒãã³ã¯
+[ããã]æåã®åªå
äžæ£ãªåœ¢åŒã®ã¡ãã»ãŒãžã®å 容ã衚瀺ããããšããŸããã ããã©ã«ãã§ã¯ã
äžæ£ãªåçã衚瀺ããŸãã
+bufsize=B
EDNS0 ã䜿çšããŠã¢ããã¿ã€ãºããã UDP ã¡ãã»ãŒãž ãããã¡ ãµã€ãºã次ã®ããã«èšå®ããŸãã B ãã€ãã æ倧å€ãš
ãã®ãããã¡ã®æå°ãµã€ãºã¯ãããã 65535 ãš 0 ã§ãã ãã®ç¯å²å€ã®å€
ã¯é©åã«åãäžããŸãã¯åãæšãŠãããŸãã ãŒã以å€ã®å€ãæå®ãããšãEDNS ã¯ãšãªãçºçããŸãã
éä¿¡ãããŸãã
+[ããã]cdãã©ã°
ã¯ãšãªã« CD (ãã§ãã¯ç¡å¹) ããããèšå®ããŸã (èšå®ããªãã§ãã ãã)ã ããã¯ãµãŒããŒã«ãªã¯ãšã¹ãããŸã
å¿çã® DNSSEC æ€èšŒãå®è¡ããªãããã«ããŸãã
+[ããã]ã¯ã©ã¹
ã¬ã³ãŒããå°å·ãããšãã« CLASS ã衚瀺ããŸã (衚瀺ããŸãã)ã
+[ããã]cmd
ã®ããŒãžã§ã³ãèå¥ããåºåå ã®æåã®ã³ã¡ã³ãã®å°å·ãåãæ¿ããŸãã
dig ããã³é©çšãããã¯ãšãª ãªãã·ã§ã³ã ãã®ã³ã¡ã³ãã¯ããã©ã«ãã§å°å·ãããŸãã
+[ããã]ã³ã¡ã³ã
åºåå ã®ã³ã¡ã³ãè¡ã®è¡šç€ºãåãæ¿ããŸãã ããã©ã«ãã§ã¯ã³ã¡ã³ããå°å·ããŸãã
+[ãªã]æå·
DNSSEC ã¬ã³ãŒãã®æå·ãã£ãŒã«ãã®è¡šç€ºãåãæ¿ããŸãã ãããã®å 容ã¯ã
ãã£ãŒã«ãã¯ã»ãšãã©ã® DNSSEC æ€èšŒãšã©ãŒã®ãããã°ã«ã¯äžèŠã§ããããã£ãŒã«ããåé€ãããšã
ãããã倱æã確èªãããããªããŸãã ããã©ã«ãã§ã¯ãã£ãŒã«ãã衚瀺ãããŸãã ãã€
çç¥ãããå Žåã¯ãæååã[çç¥]ããŸã㯠DNSKEY ã®å Žåã¯ã㌠ID ã«çœ®ãæããããŸãã
眮æãšããŠã[ key id = value ]ãã衚瀺ãããŸãã
+[ããã]å®çŸ©å
éæšå¥šãšãªãã次ã®å矩èªãšããŠæ±ãããŸãã +[ããã]æ€çŽ¢
+[ããã]dnssec
OPT ã¬ã³ãŒãã® DNSSEC OK ããã (DO) ãèšå®ããŠãDNSSEC ã¬ã³ãŒãã®éä¿¡ãèŠæ±ããŸãã
ã¯ãšãªã®è¿œå ã»ã¯ã·ã§ã³ã
+ãã¡ã€ã³=誰ãã®åå
åäžã®ãã¡ã€ã³ãå«ãããã«æ€çŽ¢ãªã¹ããèšå®ããŸãã ãµã ããŒã ã§æå®ãããŠãããã®ããã«ã ãã¡ã€ã³
ã®æ什 /etc/resolv.confãšåæ§ã«æ€çŽ¢ãªã¹ãã®åŠçãæå¹ã«ããŸãã +æ€çŽ¢
ãªãã·ã§ã³ãäžããããŸããã
+[ããã]ç·šé[=#]
ã¯ãšãªã«äœ¿çšãã EDNS ããŒãžã§ã³ãæå®ããŸãã æå¹ãªå€ã¯ 0 ïœ 255 ã§ãã EDNS ã®èšå®
ããŒãžã§ã³ã«ãã EDNS ã¯ãšãªãéä¿¡ãããŸãã +ããšãã³ãº èšæ¶ãããŠããEDNSãã¯ãªã¢ããŸã
ããŒãžã§ã³ã EDNS ã¯ããã©ã«ã㧠0 ã«èšå®ãããŠããŸãã
+[no]ednsflags[=#]
ãŒãã§ãªããã°ãªããªã EDNS ãã©ã° ããã (Z ããã) ãæå®ãããå€ã«èšå®ããŸãã XNUMXé²æ°ãXNUMXé²æ°ã
XNUMX é²ãšã³ã³ãŒãã£ã³ã°ãåãå ¥ããããŸãã ååä»ããã©ã° (DO ãªã©) ãèšå®ãããšãäœãéç¥ãããã«ç¡èŠãããŸãã
ããã©ã«ãã§ã¯ãZ ãããã¯èšå®ãããŠããŸããã
+[ãªã]亀æž
EDNS ããŒãžã§ã³ã®ããŽã·ãšãŒã·ã§ã³ãæå¹ãŸãã¯ç¡å¹ã«ããŸãã ããã©ã«ãã§ã¯ãEDNS ããŒãžã§ã³ ããŽã·ãšãŒã·ã§ã³ã¯æ¬¡ã®ãšããã§ãã
æå¹ã«ãªããŸããã
+[no]ednsopt[=ã³ãŒã[:å€]]
EDNSãªãã·ã§ã³ãã³ãŒããã€ã³ãã§æå® ã³ãŒã ããã³ãªãã·ã§ã³ã§ãã€ããŒã å€ ãšããŠ
XNUMX é²æ°ã®æååã +ããšãã³ãœãã éä¿¡ãã EDNS ãªãã·ã§ã³ãã¯ãªã¢ããŸãã
+æå¹æéãªã
EDNS æéåããªãã·ã§ã³ãéä¿¡ããŸãã
+[ããã]倱æ
SERVFAIL ãåãåã£ãå Žåã¯ã次ã®ãµãŒããŒãè©Šè¡ããªãã§ãã ããã ããã©ã«ãã§ã¯ã
ããã¯ãéåžžã®ã¹ã¿ããªãŸã«ãåäœã®éã§ãã
+[ããã]ç¹å®ãã
å¿çãæäŸãã IP ã¢ãã¬ã¹ãšããŒãçªå·ã衚瀺ããŸã (ãŸãã¯è¡šç€ºããŸãã)ã
+ã·ã§ãŒã ãªãã·ã§ã³ãæå¹ã«ãªã£ãŠããŸãã çã圢åŒã®åçãèŠæ±ãããå Žåãããã©ã«ãã§ã¯ã
çããæäŸãããµãŒããŒã®éä¿¡å ã¢ãã¬ã¹ãšããŒãçªå·ã衚瀺ããŸãã
+[ããã]ç¡èŠ
TCP ã§åè©Šè¡ãã代ããã«ãUDP å¿çã®åãæšãŠãç¡èŠããŸãã ããã©ã«ãã§ã¯ãTCP
ãªãã©ã€ãè¡ãããŸãã
+[ããã]éãããŸãŸã«ãã
æ°ãã TCP ãäœæããã®ã§ã¯ãªããã¯ãšãªé㧠TCP ãœã±ãããéãããŸãŸã«ããŠåå©çšããŸãã
åã«ãã¯ã¢ããã®ãœã±ããã ããã©ã«ã㯠+nokeepopen.
+[ããã]è€æ°è¡
SOA ã¬ã³ãŒããªã©ã®ã¬ã³ãŒããã人éãå€èªã§ããåé·ãªè€æ°è¡åœ¢åŒã§åºåããŸãã
ã³ã¡ã³ãã ããã©ã«ãã§ã¯ãæ©æ¢°ã®åŠçã容æã«ããããã«ãåã¬ã³ãŒãã XNUMX è¡ã«å°å·ããŸãã
ã®è§£æ dig åºåã
+ndots=D
衚瀺ããå¿ èŠããããããã®æ°ãèšå®ããŸãã å ããž D ãããèæ ®ãããããã«
絶察ã ããã©ã«ãå€ã¯ã次㮠ndots ã¹ããŒãã¡ã³ãã䜿çšããŠå®çŸ©ãããå€ã§ãã
/etc/resolv.confããŸã㯠ndots ã¹ããŒãã¡ã³ããååšããªãå Žå㯠1ã ãããã®æ°ãå°ãªãååã¯ã
çžå¯ŸåãšããŠè§£éããããªã¹ããããŠãããã¡ã€ã³å ã§æ€çŽ¢ãããŸãã
ãµãŒã or ãã¡ã€ã³ ã®æ什 /etc/resolv.conf if +æ€çŽ¢ èšå®ãããŠããŸãã
+[no]nsid
ã¯ãšãªãéä¿¡ãããšãã«ãEDNS ããŒã ãµãŒã㌠ID ãªã¯ãšã¹ããå«ããŸãã
+[ããã]nssearch
ãã®ãªãã·ã§ã³ãèšå®ãããšã dig ã®æš©éã®ããããŒã ãµãŒããŒãèŠã€ããããšããŸãã
æ€çŽ¢ãããŠããååãå«ããŸãŒã³ãæ€çŽ¢ããããããã®ååãå«ãŸãã SOA ã¬ã³ãŒãã衚瀺ããŸãã
ãµãŒããŒã«ã¯ãŸãŒã³ããããŸãã
+[no]onesoa
AXFR ãå®è¡ãããšãã¯ã(éå§) SOA ã¬ã³ãŒãã XNUMX ã€ã ãåºåããŸãã ããã©ã«ãã¯å°å·ã§ã
éå§ãšçµäºã®äž¡æ¹ã® SOA ã¬ã³ãŒãã
+[ããã]ãªãã³ãŒã=å€
DNS ã¡ãã»ãŒãžã®ãªãã³ãŒããæå®ãããå€ã«èšå® [埩å ] ããŸãã ããã©ã«ãå€ã¯æ¬¡ã®ãšããã§ã
ã¯ãšãª (0)ã
+[ããã]qr
éä¿¡ãããã¯ãšãªãå°å·ããŸã [å°å·ããŸãã]ã ããã©ã«ãã§ã¯ãã¯ãšãªã¯åºåãããŸããã
+[ããã]質å
åçãè¿ããããšãã«ãã¯ãšãªã®è³ªåã»ã¯ã·ã§ã³ãå°å·ããŸã [å°å·ããŸãã]ã ã®
ããã©ã«ãã§ã¯ã質åã»ã¯ã·ã§ã³ãã³ã¡ã³ããšããŠåºåãããŸãã
+[no]rdflag
ã®åçŸ©èª +[ããã]ååž°.
+[ããã]ååž°
ã¯ãšãªå ã® RD (ååž°èŠæ±) ãããã®èšå®ãåãæ¿ããŸãã ãã®ãããã¯æ¬¡ã«ãã£ãŠèšå®ãããŸãã
ããã©ã«ããã€ãŸã dig éåžžã¯ååž°çãªã¯ãšãªãéä¿¡ããŸãã ååž°ã¯èªåçã«è¡ãããŸã
ã®å Žåã¯ç¡å¹ã«ãªããŸã +nssearch or +ãã¬ãŒã¹ ã¯ãšãªãªãã·ã§ã³ã䜿çšãããŸãã
+åè©Šè¡=T
ãµãŒããŒãžã® UDP ã¯ãšãªãåè©Šè¡ããåæ°ãèšå®ããŸãã T ããã©ã«ãã®ä»£ããã«ã
2.ãšã¯ç°ãªã +è©Šè¡ãããã«ã¯æåã®ã¯ãšãªã¯å«ãŸããŸããã
+[ããã]ã³ã¡ã³ã
åºåå ã®ã¬ã³ãŒãããšã®ã³ã¡ã³ãã®è¡šç€ºãåãæ¿ããŸã (ããšãã°ã人éãå€èªã§ããã³ã¡ã³ã)
DNSKEY ã¬ã³ãŒãã«é¢ããããŒæ å ±)ã ããã©ã«ãã§ã¯ãã¬ã³ãŒãã®ã³ã¡ã³ãã¯å°å·ãããŸããã
è€æ°è¡ã¢ãŒããã¢ã¯ãã£ãã§ãªãéãã
+[ããã]æ€çŽ¢
ã® searchlist ãŸãã¯ãã¡ã€ã³ ãã£ã¬ã¯ãã£ãã§å®çŸ©ãããæ€çŽ¢ãªã¹ãã䜿çšããŸã (䜿çšããŸãã)ã
resolve.conf (ããã°)ã æ€çŽ¢ãªã¹ãã¯ããã©ã«ãã§ã¯äœ¿çšãããŸããã
ãndotsããã resolve.conf (ããã©ã«ã㯠1) +ããã ãã©ããã決å®ããŸã
ååã¯çžå¯Ÿçãªãã®ãšããŠæ±ããããã©ããããããã£ãŠæ€çŽ¢ãæçµçã«è¡ããããã©ããã決ãŸããŸãã
å®è¡ããããã©ããã
+[ããã]çã
ç°¡æœã«çããŠãã ããã ããã©ã«ãã§ã¯ãåçã詳现ãªåœ¢åŒã§åºåãããŸãã
+[ããã]æ€çŽ¢ã衚瀺
äžéçµæã衚瀺ããæ€çŽ¢ãå®è¡ããŸã[å®è¡ããŸãã]ã
+[ããã]ã·ã°ãã§ã€ã¹
DNSSEC 眲åãã§ãŒã³ã远跡ããŸãã dig ã -DDIG_SIGCHASE ã§ã³ã³ãã€ã«ããå¿ èŠããããŸãã
+[ããã]座ã[=####]
ãœãŒã¹ ID ããŒã¯ã³ EDNS ãªãã·ã§ã³ããªãã·ã§ã³ã®å€ãšãšãã«éä¿¡ããŸãã SIT ãåçãã
以åã®å¿çã«ããããµãŒããŒã¯ä»¥åã®ã¯ã©ã€ã¢ã³ããèå¥ã§ããããã«ãªããŸãã ããã©ã«ãã¯
+ããŒã·ããã çŸåšããªãã·ã§ã³ ã³ãŒãã«å®éšå€ 65001 ã䜿çšããŠããŸãã
+åå²=W
ãªãœãŒã¹ ã¬ã³ãŒãå ã®é·ã 64 é²åœ¢åŒãŸã㯠BaseXNUMX 圢åŒã®ãã£ãŒã«ãããã£ã³ã¯ã«åå²ããŸãã W
æå (ãã㧠W æãè¿ã 4 ã®åæ°ã«åãäžããããŸã)ã +nosplit or +åå²=0
ãã£ãŒã«ãããŸã£ããåå²ãããªããªããŸãã ããã©ã«ã㯠56 æåãŸã㯠44 æåã§ãã
è€æ°è¡ã¢ãŒããã¢ã¯ãã£ããªå Žåã
+[ãªã]çµ±èš
ãã®ã¯ãšãª ãªãã·ã§ã³ã¯ãçµ±èšã®åºåãåãæ¿ããŸããã¯ãšãªãäœæããããšã
è¿ä¿¡ã®ãµã€ãºãªã©ã ããã©ã«ãã®åäœã§ã¯ãã¯ãšãªçµ±èšãåºåãããŸãã
+[ããã]ãµãããã=ã¢ãã¬ã¹/ãã¬ãã£ãã¯ã¹
æå®ããã IP ã¢ãã¬ã¹ãŸãã¯ãããã¯ãŒã¯ ãã¬ãã£ãã¯ã¹ã䜿çšã㊠EDNS ã¯ã©ã€ã¢ã³ã ãµãããã ãªãã·ã§ã³ãéä¿¡ããŸãã
+[ããã]TCP
ããŒã ãµãŒããŒã«åãåããããšãã¯ãTCP ã䜿çšããŸã (䜿çšããªãã§ãã ãã)ã ããã©ã«ãã®åäœã§ã¯ UDP ã䜿çšããŸãã
ãã ããixfr=N ã¯ãšãªãèŠæ±ãããå Žåã¯ãããã©ã«ã㯠TCP ã«ãªããŸãã AXFRã¯ãšãª
åžžã« TCP ã䜿çšããŠãã ããã
+æé=T
ã¯ãšãªã®ã¿ã€ã ã¢ãŠãã次ã®ããã«èšå®ããŸãã T ç§ã ããã©ã«ãã®ã¿ã€ã ã¢ãŠã㯠5 ç§ã§ãã ã¢ã³
èšå®ããŠã¿ã T 1 æªæºã«èšå®ãããšãã¯ãšãª ã¿ã€ã ã¢ãŠãã 1 ç§ã«ãªããŸãã
é©çšãããã
+[ããã]ãããããŠã³
DNSSEC 眲åãã§ãŒã³ã远跡ãããšãã¯ããããããŠã³æ€èšŒãå®è¡ãããŸãã æãå¿ èŠããããŸã
-DDIG_SIGCHASE ã§ã³ã³ãã€ã«ãããŸãã
+[ç¡]çè·¡
察象ã®ååã®ã«ãŒã ããŒã ãµãŒããŒããã®å§ä»»ãã¹ã®ãã¬ãŒã¹ãåãæ¿ããŸãã
調ã¹ãã ãã¬ãŒã¹ã¯ããã©ã«ãã§ã¯ç¡å¹ã«ãªã£ãŠããŸãã ãã¬ãŒã¹ãæå¹ã«ãªã£ãŠããå Žåã dig MAKES
å埩ã¯ãšãªãå®è¡ããŠãæ€çŽ¢ãããŠããååã解決ããŸãã ããã®çŽ¹ä»ã«åŸããŸã
ã«ãŒã ãµãŒããŒãåé¡ã解決ããããã«äœ¿çšãããåãµãŒããŒããã®åçã衚瀺ããŸãã
調ã¹ãã
@server ãæå®ããå Žåãã«ãŒã ãŸãŒã³åã®æåã®ã¯ãšãªã«ã®ã¿åœ±é¿ããŸãã
ãµãŒããŒã
+dnssec +trace ãèšå®ãããŠããå Žåã«ããããã©ã«ãã®ã¯ãšãªãããé©åã«ãšãã¥ã¬ãŒãããããã«èšå®ãããŸãã
ããŒã ãµãŒããŒã
+è©Šè¡=T
ãµãŒããŒãžã® UDP ã¯ãšãªãè©Šè¡ããåæ°ãèšå®ããŸãã T ããã©ã«ãã®3ã®ä»£ããã«ã
If T ã 1 以äžã®å Žåãè©Šè¡åæ°ã¯é»ã£ãŠ XNUMX ã«åãäžããããŸãã
+ä¿¡é ŒãããããŒ=####
䜿çšããä¿¡é Œã§ããããŒãå«ããã¡ã€ã«ãæå®ããŸãã +ã·ã°ãã§ã€ã¹ã åDNSKEYã¬ã³ãŒã
ç¬èªã®è¡ã«ãªããã°ãªããŸããã
æå®ãããŠããªãå Žåã dig æ¢ããŸã /etc/trusted-key.key ãã®åŸ ä¿¡é ŒãããããŒ.key äŒå Žã¯
ã«ã¬ã³ããã£ã¬ã¯ããªã
dig ã -DDIG_SIGCHASE ã§ã³ã³ãã€ã«ããå¿ èŠããããŸãã
+[ããã]ttlid
ã¬ã³ãŒããå°å·ãããšãã« TTL ã衚瀺ããŸã (衚瀺ããŸãã)ã
+[ãªã]vc
ããŒã ãµãŒããŒã«åãåããããšãã¯ãTCP ã䜿çšããŸã (䜿çšããªãã§ãã ãã)ã ãã®ä»£æ¿æ§æã¯ã +[ããã]TCP is
äžäœäºææ§ã®ããã«æäŸãããŠããŸãã ãvcãã¯ãä»®æ³åç·ãã®ç¥ã§ãã
è€æ° ã¯ãšãª
BIND 9 ã®å®è£ dig ã³ãã³ãã©ã€ã³ã§ã®è€æ°ã®ã¯ãšãªã®æå®ããµããŒãããŸã
(ãµããŒãã«å ããŠã -f ããããã¡ã€ã«ãªãã·ã§ã³)ã ãããã®ã¯ãšãªã®ããããã¯ã
ç¬èªã®ãã©ã°ããªãã·ã§ã³ãã¯ãšãª ãªãã·ã§ã³ã®ã»ãããæäŸãããŸãã
ãã®å Žåããããã ã¯ãšãªãŒ åŒæ°ã¯ã³ãã³ãã©ã€ã³æ§æã®åã ã®ã¯ãšãªãè¡šããŸã
äžã§èª¬æããã ããããã¯ãæšæºã®ãªãã·ã§ã³ãšãã©ã°ã®ããããã§æ§æãããååã¯
æ€çŽ¢ãããããªãã·ã§ã³ã®ã¯ãšãª ã¿ã€ããšã¯ã©ã¹ãããã³é©çšããå¿ èŠãããã¯ãšãª ãªãã·ã§ã³
ãã®ã¯ãšãªã«å¯ŸããŠã
ãã¹ãŠã®ã¯ãšãªã«é©çšããå¿ èŠãããã¯ãšãª ãªãã·ã§ã³ã®ã°ããŒãã« ã»ãããã
äŸçµŠãããŸãã ãããã®ã°ããŒãã« ã¯ãšãª ãªãã·ã§ã³ã¯ãååãã¯ã©ã¹ãã¿ã€ãã
ã³ãã³ã ã©ã€ã³ã§æå®ããããªãã·ã§ã³ããã©ã°ãããã³ã¯ãšãª ãªãã·ã§ã³ã ä»»æã®ã°ããŒãã« ã¯ãšãª ãªãã·ã§ã³
ïŒãé€ã +[ããã]cmd ãªãã·ã§ã³) ã¯ãã¯ãšãªåºæã®ã¯ãšãª ãªãã·ã§ã³ã®ã»ããã«ãã£ãŠãªãŒããŒã©ã€ãã§ããŸãã
äŸïŒ
dig +qr www.isc.org any -x 127.0.0.1 isc.org ns +noqr
ã·ã§ãŒã·ã§ãŒ dig ã³ãã³ã ã©ã€ã³ãã䜿çšãããšã次㮠XNUMX ã€ã®æ€çŽ¢ãè¡ãããšãã§ããŸãã
www.isc.orgã127.0.0.1 ã®éåŒãããã³ isc.org ã® NS ã¬ã³ãŒãã®ã¯ãšãªã ã
ã°ããŒãã« ã¯ãšãª ãªãã·ã§ã³ +qr ãé©çšãããã®ã§ã dig äœæããæåã®ã¯ãšãªã瀺ããŸã
ããããã®æ€çŽ¢ã æåŸã®ã¯ãšãªã«ã¯ã次ã®ããŒã«ã« ã¯ãšãª ãªãã·ã§ã³ããããŸãã +noqr ããã¯ãããšãæå³ããŸã dig æå¿
isc.org ã® NS ã¬ã³ãŒããæ€çŽ¢ãããšãã«æåã®ã¯ãšãªãåºåããŸããã
IDN ãµããŒã
If dig IDN (åœéåãã¡ã€ã³å) ãµããŒãã䜿çšããŠæ§ç¯ãããŠãããåãå ¥ããããšãã§ãã
é ASCII ãã¡ã€ã³åã衚瀺ããŸãã dig ãã¡ã€ã³ã®æåãšã³ã³ãŒãã£ã³ã°ãé©åã«å€æããŸã
DNS ãµãŒããŒã«ãªã¯ãšã¹ããéä¿¡ããåããŸãã¯ãµãŒããŒããã®å¿çã衚瀺ããåã«ãååã確èªããŠãã ããã ããã
äœããã®çç±ã§ IDN ãµããŒãããªãã«ãããå Žåã¯ã IDN_DISABLE
ç°å¢å€æ°ã å€æ°ãèšå®ãããŠããå ŽåãIDN ãµããŒãã¯ç¡å¹ã«ãªããŸãã dig èµ°ã
onworks.net ãµãŒãã¹ã䜿çšããŠãªã³ã©ã€ã³ã§ kdig ã䜿çšãã