Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 1 Feb 2001 12:40:07 -0500
From:      Vivek Khera <khera@kciLink.com>
To:        stable@FreeBSD.ORG
Subject:   Re: chrooting bind
Message-ID:  <14969.40823.370037.847034@onceler.kciLink.com>
In-Reply-To: <Pine.BSF.4.31.0102010924030.17707-100000@sdmail0.sd.bmarts.com>
References:  <14969.39780.805831.185241@onceler.kciLink.com> <Pine.BSF.4.31.0102010924030.17707-100000@sdmail0.sd.bmarts.com>

next in thread | previous in thread | raw e-mail | index | archive | help
>>>>> "GT" == Gordon Tetlow <gordont@bluemtn.net> writes:

GT> On Thu, 1 Feb 2001, Vivek Khera wrote:
>> Pretty much the only thing you have to do to run bind in chroot is to
>> set the named_flags="-g bind -u bind" flags in /etc/rc.conf.  That's
>> my understanding of it based on the FreeBSD docs.

GT> Correct me if I'm wrong, but this is only a sandbox (run as a different
GT> user) while this person wants to set up a true chroot environment.

Hmmm.  I got the impression that it was chrooted from somewhere... I
guess I was wrong.  I'll track that down and send a bug report to the
docs team.  But in my mind sandbox == chroot.

GT> Personally, I think that the former is adequete as nothing else on the box
GT> is owned by the bind user.

Good 'nuff for government work ;-)


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-stable" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?14969.40823.370037.847034>