Setup PowerDNS Recursor on Ubuntu 20.04
Posted February 17, 2022
By Kevin Schwickrath1 min read
I’m exploring using PowerDNS to replace a good chunk of my DNS infrastructure. Don’t get me wrong; I like Bind. I’m looking for something database driven that is easier to integrate with monitoring and IPAM systems. The first test is to play around with the most basic of services, DNS recursor.
Let’s get started installing PowerDNS Recursor on Ubuntu 20.04.
Create the file ‘/etc/apt/sources.list.d/pdns.list’ with this content:
This will install the latest bleeding edge version of PowerDNS visit the PowerDNS Repo for a more stable branch or install from your distro repos_). Skip below to the install section if you don’t want to install this repo.
deb [arch=amd64] http://repo.powerdns.com/ubuntu focal-rec-master mainAnd this to ‘/etc/apt/preferences.d/pdns’:
Package: pdns-*Pin: origin repo.powerdns.comPin-Priority: 600and execute the following command:
curl https://repo.powerdns.com/CBC8B383-pub.asc | sudo apt-key add - &&Run these commands to install PowerDNS
sudo apt-get update &&
sudo apt-get install pdns-recursorEdit the config file:
sudo vi /etc/powerdns/recursor.confAdd or change these lines (check that you want to enable validate before you set this option):
allow-from=127.0.0.0/8, 10.0.0.0/8, 192.168.0.0/16
dnssec=validate
dont-query=127.0.0.0/8, 10.0.0.0/8, 100.64.0.0/10, 169.254.0.0/16, 192.168.0.0/16, 172.16.0.0/12, ::1/128, fc00::/7, fe80::/10, 0.0.0.0/8, 192.0.0.0/24, 192.0.2.0/24, 198.51.100.0/24, 203.0.113.0/24, 240.0.0.0/4, ::/96, ::ffff:0:0/96, 100::/64, 2001:db8::/32
local-address=10.0.0.2Restart the process:
systemctl restart pdns-recursorI also recommend you secure the operating system and enable a firewall. That’s all there is to it.
This post is licensed under CC BY 4.0 by the author.