oaded: loaded (/usr/lib/systemd/system/named.service; disabled; preset: disabled) Active: active (running) since Fri 2024-02-23 14:02:57 EST; 7s ago Process: 43363 ExecStartPre=/bin/bash -c if [ ! "$DISABLE_ZONE_CHECKING" == "yes" ]; then /usr/sbin/named-checkconf -z "$NAMEDCONF"> Process: 43365 ExecStart=/usr/sbin/named -u named -c ${NAMEDCONF} $OPTIONS (code=exited, status=0/SUCCESS) Main PID: 43366 (named) Tasks: 6 (limit: 100242) Memory: 48.9M CPU: 50ms CGroup: /system.slice/named.service └─43366 /usr/sbin/named -u named -c /etc/named.conf -4 Feb 23 14:02:57 localhost.localdomain named[43366]: zone localhost/IN: loaded serial 0 Feb 23 14:02:57 localhost.localdomain named[43366]: all zones loaded Feb 23 14:02:57 localhost.localdomain named[43366]: running Feb 23 14:02:57 localhost.localdomain systemd[1]: Started Berkeley Internet Name Domain (DNS). Feb 23 14:02:57 localhost.localdomain named[43366]: managed-keys-zone: DNSKEY set for zone '.' could not be verified with current keys Feb 23 14:02:57 localhost.localdomain named[43366]: resolver priming query complete Feb 23 14:02:57 localhost.localdomain named[43366]: checkhints: b.root-servers.net/A (170.247.170.2) missing from hints Feb 23 14:02:57 localhost.localdomain named[43366]: checkhints: b.root-servers.net/A (199.9.14.201) extra record in hints Feb 23 14:02:57 localhost.localdomain named[43366]: checkhints: b.root-servers.net/AAAA (2801:1b8:10::b) missing from hints Feb 23 14:02:57 localhost.localdomain named[43366]: checkhints: b.root-servers.net/AAAA (2001:500:200::b) extra record in hints ~ ~ ~ ~ ~ ~ ~ ~ ~ [group65@localhost ~]$ sudo nano /etc/named.conf [group65@localhost ~]$ cd /home/group65/Downloads [group65@localhost Downloads]$ ls keyset-cit.lcl [group65@localhost Downloads]$ cd /etc/bind bash: cd: /etc/bind: No such file or directory [group65@localhost Downloads]$ cd /var/named [group65@localhost named]$ ls 165.102.44.db acme65.com.zone data dynamic forward.acme65.com.save named.ca named.empty named.localhost named.loopback slaves [group65@localhost named]$ /etc/named bash: /etc/named: Is a directory [group65@localhost named]$ ls 165.102.44.db acme65.com.zone data dynamic forward.acme65.com.save named.ca named.empty named.localhost named.loopback slaves [group65@localhost named]$ cd /etc/named [group65@localhost named]$ ls ls: cannot open directory '.': Permission denied [group65@localhost named]$ sudi ls bash: sudi: command not found... Similar command is: 'sudo' [group65@localhost named]$ sudo ls [sudo] password for group65: [group65@localhost named]$ [group65@localhost named]$ ls ls: cannot open directory '.': Permission denied [group65@localhost named]$ cd /etc/named/ [group65@localhost named]$ ls ls: cannot open directory '.': Permission denied [group65@localhost named]$ /var/named bash: /var/named: Is a directory [group65@localhost named]$ cd /var/named [group65@localhost named]$ ls 165.102.44.db acme65.com.zone data dynamic forward.acme65.com.save named.ca named.empty named.localhost named.loopback slaves [group65@localhost named]$ touch /var/named/keys/acme65.com/ touch: cannot touch '/var/named/keys/acme65.com/': No such file or directory [group65@localhost named]$ mkdir /var/named/keys/acme65.com/ mkdir: cannot create directory ‘/var/named/keys/acme65.com/’: No such file or directory [group65@localhost named]$ mkdir /var/named/ mkdir: cannot create directory ‘/var/named/’: File exists [group65@localhost named]$ mkdir /var/named/keys [group65@localhost named]$ mkdir /var/named/keys/acme65.com/ [group65@localhost named]$ cp /home/group65/Downloads/keyset-cit.lcl /var/named/keys/acme65.com/keyset-cit.lcl [group65@localhost named]$ cd /var/named [group65@localhost named]$ ls 165.102.44.db data forward.acme65.com.save named.ca named.localhost slaves acme65.com.zone dynamic keys named.empty named.loopback [group65@localhost named]$ cd /var/named/keys [group65@localhost keys]$ ls acme65.com [group65@localhost keys]$ cd acme65.com/ [group65@localhost acme65.com]$ ls keyset-cit.lcl [group65@localhost acme65.com]$ dnssec-keygen -a RSASHA256 -b 2048 ZONE acme65.com dnssec-keygen: fatal: extraneous arguments [group65@localhost acme65.com]$ dnssec-keygen -a RSASHA256 -b 2048 -n ZONE acme65.com Generating key pair.......+...+.....+.+........+.+......+...+..+...............+.........+......+....+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++*.........+.+...+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++*.......+..+...+.........+..........+..+..........+.....+.........+....+...+..+...+.........+.+........+..........+.........+...............+........+....+...+..+....+...............+...........+.+..+......+.+.....+....+.........+..+....+..+....+.....+...+.+.....+....+.....+...............+...............+...+....+......+.....+....+....................+.+..............+....+......+...+...+...+..+...+......+...+............+...+.+..+...+....+..+.........+....+......+..+.......+..+.............+........+....+...+......+..+....+......+.........+......+...+.........+..+..........+.....+.+.....+.............+......+...+..+....+.....+....+........+.........+.+..+.......+......+..+...............+...+...+....+...+...+..............................+..+.......+.....+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ .......+...+......+....+........+...+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++*..............+...+...+.+........+.......+...+......+..+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++*.......+.......+.........+.....+...+.+........................+..+....+..+..........+...+..+....+........+.......+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Kacme65.com.+008+00889 [group65@localhost acme65.com]$ dnssec-keygen -a RSASHA256 -b 2048 -n ZONE acme65.com^C [group65@localhost acme65.com]$ dnssec-signzone -o acme65.com -K /var/named/keys/acme65.com acme65.com.zone dnssec-signzone: fatal: failed loading zone from 'acme65.com.zone': file not found [group65@localhost acme65.com]$ dnssec-signzone -o acme65.com -K /var/named/keys/acme65.com /var/named/acme65.com.zone dnssec-signzone: fatal: No signing keys specified or found. [group65@localhost acme65.com]$ dnssec-signzone -o acme65.com -K /var/named/keys/acme65.com/keyset-cit.lcl /var/named/acme65.com.zone dnssec-signzone: fatal: No signing keys specified or found. [group65@localhost acme65.com]$ sudo nano /etc/named.conf [sudo] password for group65: [group65@localhost acme65.com]$ cd /var/named [group65@localhost named]$ ls 165.102.44.db data forward.acme65.com.save named.ca named.localhost slaves acme65.com.zone dynamic keys named.empty named.loopback [group65@localhost named]$ rm /var/named/keys rm: cannot remove '/var/named/keys': Is a directory [group65@localhost named]$ rm /var/named/keys/ rm: cannot remove '/var/named/keys/': Is a directory [group65@localhost named]$ rmdir /var/named/keys/ rmdir: failed to remove '/var/named/keys/': Directory not empty [group65@localhost named]$ rmdir -f /var/named/keys/ rmdir: invalid option -- 'f' Try 'rmdir --help' for more information. [group65@localhost named]$ rmdir -F /var/named/keys/ rmdir: invalid option -- 'F' Try 'rmdir --help' for more information. [group65@localhost named]$ rmdir -r /var/named/keys/ rmdir: invalid option -- 'r' Try 'rmdir --help' for more information. [group65@localhost named]$ rmdir -d /var/named/keys/ rmdir: invalid option -- 'd' Try 'rmdir --help' for more information. [group65@localhost named]$ rmdir -rf /var/named/keys/ rmdir: invalid option -- 'r' Try 'rmdir --help' for more information. [group65@localhost named]$ sudo rmdir -rf /var/named/keys/ rmdir: invalid option -- 'r' Try 'rmdir --help' for more information. [group65@localhost named]$ sudo rmdir -r /var/named/keys/ rmdir: invalid option -- 'r' Try 'rmdir --help' for more information. [group65@localhost named]$ sudo rm /var/named/keys/acme65.com/keyset-cit.lcl [group65@localhost named]$ sudo rmdir -r /var/named/keys/acme65.com rmdir: invalid option -- 'r' Try 'rmdir --help' for more information. [group65@localhost named]$ sudo rmdir /var/named/keys/acme65.com rmdir: failed to remove '/var/named/keys/acme65.com': Directory not empty [group65@localhost named]$ sudo rmdir /var/named/keys/acme65.com/ rmdir: failed to remove '/var/named/keys/acme65.com/': Directory not empty [group65@localhost named]$ sudo rmdir -r /var/named/keys/acme65.com/ rmdir: invalid option -- 'r' Try 'rmdir --help' for more information. [group65@localhost named]$ sudo rm /var/named/keys/acme65.com/ rm: cannot remove '/var/named/keys/acme65.com/': Is a directory [group65@localhost named]$ cd /var/named [group65@localhost named]$ ls 165.102.44.db data forward.acme65.com.save named.ca named.localhost slaves acme65.com.zone dynamic keys named.empty named.loopback [group65@localhost named]$ cd keys [group65@localhost keys]$ ls acme65.com [group65@localhost keys]$ cd acme65.com/ [group65@localhost acme65.com]$ ls Kacme65.com.+008+00889.key Kacme65.com.+008+00889.private [group65@localhost acme65.com]$ sudo rmdir -r /var/named/keys/acme65.com/ rmdir: invalid option -- 'r' Try 'rmdir --help' for more information. [group65@localhost acme65.com]$ sudo rmdir -R /var/named/keys/acme65.com/ rmdir: invalid option -- 'R' Try 'rmdir --help' for more information. [group65@localhost acme65.com]$ sudo rmdir -fr /var/named/keys/acme65.com/ rmdir: invalid option -- 'f' Try 'rmdir --help' for more information. [group65@localhost acme65.com]$ rmdir --help Usage: rmdir [OPTION]... DIRECTORY... Remove the DIRECTORY(ies), if they are empty. --ignore-fail-on-non-empty ignore each failure that is solely because a directory is non-empty -p, --parents remove DIRECTORY and its ancestors; e.g., 'rmdir -p a/b/c' is similar to 'rmdir a/b/c a/b a' -v, --verbose output a diagnostic for every directory processed --help display this help and exit --version output version information and exit GNU coreutils online help: Full documentation or available locally via: info '(coreutils) rmdir invocation' [group65@localhost acme65.com]$ sudo rmdir --ignore-fail-on-non-empty /var/named/keys/acme65.com/ [group65@localhost acme65.com]$ sudo rmdir --ignore-fail-on-non-empty /var/named/keys/ [group65@localhost acme65.com]$ cd /var/named [group65@localhost named]$ ls 165.102.44.db data forward.acme65.com.save named.ca named.localhost slaves acme65.com.zone dynamic keys named.empty named.loopback [group65@localhost named]$ cd keys [group65@localhost keys]$ ls acme65.com [group65@localhost keys]$ cd /var/named [group65@localhost named]$ cd ket bash: cd: ket: No such file or directory [group65@localhost named]$ cd keys [group65@localhost keys]$ ls acme65.com [group65@localhost keys]$ cd acme65.com/ [group65@localhost acme65.com]$ ls Kacme65.com.+008+00889.key Kacme65.com.+008+00889.private [group65@localhost acme65.com]$ sudo rm Kacme65.com.+008+00889.key [group65@localhost acme65.com]$ sudo rm Kacme65.com.+008+00889.private [group65@localhost acme65.com]$ cd acme65.com/ bash: cd: acme65.com/: No such file or directory [group65@localhost acme65.com]$ cd /var/named [group65@localhost named]$ ls 165.102.44.db data forward.acme65.com.save named.ca named.localhost slaves acme65.com.zone dynamic keys named.empty named.loopback [group65@localhost named]$ cd keys [group65@localhost keys]$ cd acme65.com/ [group65@localhost acme65.com]$ rmdir /var/named/keys/acme65.com/ [group65@localhost acme65.com]$ rmdir /var/named/keys/ [group65@localhost acme65.com]$ cd /var/name bash: cd: /var/name: No such file or directory [group65@localhost acme65.com]$ cd /var/named [group65@localhost named]$ ls 165.102.44.db acme65.com.zone data dynamic forward.acme65.com.save named.ca named.empty named.localhost named.loopback slaves [group65@localhost named]$ cp /home/group65/Downloads/keyset-cit.lcl /var/named/dynamic/keyset-cit.lcl cp: failed to access '/var/named/dynamic/keyset-cit.lcl': Permission denied [group65@localhost named]$ sudo cp /home/group65/Downloads/keyset-cit.lcl /var/named/dynamic/keyset-cit.lcl [group65@localhost named]$ dnssec-keygen -a RSASHA256 -b 2048 -n ZONE acme65.com Generating key pair....+.+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++*.......+...+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++*....+.+..+............+.............+...+..+............+....+..+.......+..+.+..+.+..+.........+....+............+........+...............+...............+....+...+..+.......+.....................+..+.+..+.........+...+......+....+...+.....+...+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ ..+.+...........+.+.........+...+..+...+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++*........+...........+...............+....+...+...+..+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++*...............+...+...........+......+...+.+...+........+.......+..+......+......................+..................+..............+.+..+...............+......+.+......+........................+...........+..........+............+...+...+.....+.+.....+.+...+..+...................+.....+.........+......+.+..+................+..+....+...+......+......+.....+.+........+.+.....+.+..+...+....+..............+......+....+..+...+....+........+.......+........+...+.......+..+.+......+.....+.+.........+........+.+..+.........+......+....+.........+.....+....+...+...+......+...............+........+.......+...+..+...+.+.....+.......+........+.......+..+...+.......+..+.............+...+..+.......+..................+......+.....+....+.....+.+.....+.........+.......+...+........+...+....+...+.....+.......+......+...........+......+...+.........................+.....+.+........+.+..+..........+..+...+....+......+...+...........+...+.+..+....+..............+....+...........+...............+......+................+.....+....+.....+....+.....+......+...+...............+.+..+...+.+......+..+...............+.+.....+......+.............+..+......+.......+..+.+.....+..........+.....+....+........+.+..+..........+...+..+..........+...+..........................+.........+......+......+..........+..+.......+........+.+..+............+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Kacme65.com.+008+13195 [group65@localhost named]$ dnssec-signzone -o acme65.com -K /var/named/dynamic/keyset-cit.lcl /var/named/acme65.com.zone dnssec-signzone: fatal: No signing keys specified or found. [group65@localhost named]$ dnssec-signzone -o acme65.com -K /var/named/acme65.com /var/named/acme65.com.zone dnssec-signzone: fatal: No signing keys specified or found. [group65@localhost named]$ ls 165.102.44.db data forward.acme65.com.save Kacme65.com.+008+13195.private named.empty named.loopback acme65.com.zone dynamic Kacme65.com.+008+13195.key named.ca named.localhost slaves [group65@localhost named]$ cd dynamic/ bash: cd: dynamic/: Permission denied [group65@localhost named]$ sudo cd dynamic [group65@localhost named]$ ls 165.102.44.db data forward.acme65.com.save Kacme65.com.+008+13195.private named.empty named.loopback acme65.com.zone dynamic Kacme65.com.+008+13195.key named.ca named.localhost slaves [group65@localhost named]$ Sudo mv /var/named/Kacme65.com.+008+13195.key /var/named/dynamic/Kacme65.com.+008+13195.key bash: Sudo: command not found... Similar command is: 'sudo' [group65@localhost named]$ sudo mv /var/named/Kacme65.com.+008+13195.key /var/named/dynamic/Kacme65.com.+008+13195.key [group65@localhost named]$ sudo cd dynamic [group65@localhost named]$ ls 165.102.44.db data forward.acme65.com.save named.ca named.localhost slaves acme65.com.zone dynamic Kacme65.com.+008+13195.private named.empty named.loopback [group65@localhost named]$ sudo cd /var/named/dynamic/ [group65@localhost named]$ ls 165.102.44.db data forward.acme65.com.save named.ca named.localhost slaves acme65.com.zone dynamic Kacme65.com.+008+13195.private named.empty named.loopback [group65@localhost named]$ chmod 777 /var/named/dynamic chmod: changing permissions of '/var/named/dynamic': Operation not permitted [group65@localhost named]$ sudo chmod 777 /var/named/dynamic [group65@localhost named]$ sudo cd /var/named/dynamic/ [group65@localhost named]$ ls 165.102.44.db data forward.acme65.com.save named.ca named.localhost slaves acme65.com.zone dynamic Kacme65.com.+008+13195.private named.empty named.loopback [group65@localhost named]$ sudo mv /var/named/dynamic/Kacme65.com.+008+13195.key /var/named/Kacme65.com.+008+13195.key [group65@localhost named]$ ls 165.102.44.db data forward.acme65.com.save Kacme65.com.+008+13195.private named.empty named.loopback acme65.com.zone dynamic Kacme65.com.+008+13195.key named.ca named.localhost slaves [group65@localhost named]$ dnssec-signzone -o acme65.com -K /var/named /var/named/acme65.com.zone /var/named/Kacme65.com*.key dnssec-signzone: fatal: failed to find keys at the zone apex: not found [group65@localhost named]$ dnssec-signzone -o acme65.com -K /var/named /var/named/acme65.com.zone /var/named/Kacme65.com.+008+13195.key dnssec-signzone: fatal: failed to find keys at the zone apex: not found [group65@localhost named]$ cd [group65@localhost ~]$ cd /var/named [group65@localhost named]$ ls 165.102.44.db data forward.acme65.com.save Kacme65.com.+008+13195.private named.empty named.loopback acme65.com.zone dynamic Kacme65.com.+008+13195.key named.ca named.localhost slaves [group65@localhost named]$ nano /etc/named.conf [group65@localhost named]$ systemctl status named ● named.service - Berkeley Internet Name Domain (DNS) Loaded: loaded (/usr/lib/systemd/system/named.service; disabled; preset: disabled) Active: active (running) since Fri 2024-02-23 14:02:57 EST; 38min ago Process: 43363 ExecStartPre=/bin/bash -c if [ ! "$DISABLE_ZONE_CHECKING" == "yes" ]; then /usr/sbin/named-checkconf -z "$NAMEDCONF"> Process: 43365 ExecStart=/usr/sbin/named -u named -c ${NAMEDCONF} $OPTIONS (code=exited, status=0/SUCCESS) Main PID: 43366 (named) Tasks: 6 (limit: 100242) Memory: 65.1M CPU: 211ms CGroup: /system.slice/named.service └─43366 /usr/sbin/named -u named -c /etc/named.conf -4 Feb 23 14:02:57 localhost.localdomain named[43366]: zone localhost/IN: loaded serial 0 Feb 23 14:02:57 localhost.localdomain named[43366]: all zones loaded Feb 23 14:02:57 localhost.localdomain named[43366]: running Feb 23 14:02:57 localhost.localdomain systemd[1]: Started Berkeley Internet Name Domain (DNS). Feb 23 14:02:57 localhost.localdomain named[43366]: managed-keys-zone: DNSKEY set for zone '.' could not be verified with current keys Feb 23 14:02:57 localhost.localdomain named[43366]: resolver priming query complete Feb 23 14:02:57 localhost.localdomain named[43366]: checkhints: b.root-servers.net/A (170.247.170.2) missing from hints Feb 23 14:02:57 localhost.localdomain named[43366]: checkhints: b.root-servers.net/A (199.9.14.201) extra record in hints Feb 23 14:02:57 localhost.localdomain named[43366]: checkhints: b.root-servers.net/AAAA (2801:1b8:10::b) missing from hints Feb 23 14:02:57 localhost.localdomain named[43366]: checkhints: b.root-servers.net/AAAA (2001:500:200::b) extra record in hints [group65@localhost named]$ ls -ld /var/named/dynamic drwxrwxrwx. 2 named named 82 Feb 23 14:37 /var/named/dynamic [group65@localhost named]$ chown -R named:named /var/named/dynamic chown: changing ownership of '/var/named/dynamic/managed-keys.bind.jnl': Operation not permitted chown: changing ownership of '/var/named/dynamic/managed-keys.bind': Operation not permitted chown: changing ownership of '/var/named/dynamic/keyset-cit.lcl': Operation not permitted chown: changing ownership of '/var/named/dynamic': Operation not permitted [group65@localhost named]$ sudo chown -R named:named /var/named/dynamic [sudo] password for group65: Sorry, try again. [sudo] password for group65: [group65@localhost named]$ cd /var/named/dynamic/ [group65@localhost dynamic]$ s bash: s: command not found... [group65@localhost dynamic]$ ;s bash: syntax error near unexpected token `;' [group65@localhost dynamic]$ ls keyset-cit.lcl managed-keys.bind managed-keys.bind.jnl [group65@localhost dynamic]$ Sudo mv /var/named/Kacme65.com.+008+13195.key /var/named/dynamic/Kacme65.com.+008+13195.key bash: Sudo: command not found... Similar command is: 'sudo' [group65@localhost dynamic]$ sudo mv /var/named/Kacme65.com.+008+13195.key /var/named/dynamic/Kacme65.com.+008+13195.key [group65@localhost dynamic]$ sudo mv /var/named/Kacme65.com.+008+13195.private /var/named/dynamic/Kacme65.com.+008+13195.private [group65@localhost dynamic]$ sudo nano /etc/named. named.conf named.rfc1912.zones named.root.key [group65@localhost dynamic]$ sudo nano /etc/named.rfc1912.zones [group65@localhost dynamic]$ sudo nano /etc/named.rfc1912.zones [group65@localhost dynamic]$ cd /var/named [group65@localhost named]$ dnssec-signzone -K /var/named/dynamic -o acme65.com acme65.com.zone dnssec-signzone: fatal: No signing keys specified or found. [group65@localhost named]$ cd /etc/pki/ca-trust/source/anchors [group65@localhost anchors]$ ;s bash: syntax error near unexpected token `;' [group65@localhost anchors]$ ls [group65@localhost anchors]$ mv /home/group65/Downloads/certnew.cer /etc/pki/ca-trust/source/anchors/certnew.ca mv: cannot create regular file '/etc/pki/ca-trust/source/anchors/certnew.ca': Permission denied [group65@localhost anchors]$ sudo mv /home/group65/Downloads/certnew.cer /etc/pki/ca-trust/source/anchors/certnew.ca [sudo] password for group65: [group65@localhost anchors]$ sudo update-ca-trust [group65@localhost anchors]$ ^C