DragonFly kernel List (threaded) for 2004-05
[
Date Prev][
Date Next]
[
Thread Prev][
Thread Next]
[
Date Index][
Thread Index]
Re: bind9 import coming up soon
:
:-On [20040527 08:02], Matthew Dillon (dillon@xxxxxxxxxxxxxxxxxxxx) wrote:
:> I promised Paul Vixie I would bring bind-9 into the tree as our base
:> system bind for the first DragonFly release.
:
:Are you having it set up as a chrooted named?
:
:--
:Jeroen Ruigrok van der Werven <asmodai(at)wxs.nl> / asmodai / kita no mono
It will be chrooted and run as user 'bind' by default (-t /etc/namedb
-u bind), which is the setup I use on my existing nameserver boxes.
/etc/namedb will be owned by root (unwritable by named) with
/etc/namedb/s/ owned by bind (for secondaries).
That should be pretty secure.
-Matt
Matthew Dillon
<dillon@xxxxxxxxxxxxx>
[
Date Prev][
Date Next]
[
Thread Prev][
Thread Next]
[
Date Index][
Thread Index]