From owner-freebsd-current@FreeBSD.ORG Wed Nov 3 10:01:22 2004 Return-Path: Delivered-To: freebsd-current@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 8665F16A4CE for ; Wed, 3 Nov 2004 10:01:22 +0000 (GMT) Received: from smtp.cegetel.net (mf00.sitadelle.com [212.94.174.77]) by mx1.FreeBSD.org (Postfix) with ESMTP id 189AE43D2D for ; Wed, 3 Nov 2004 10:01:22 +0000 (GMT) (envelope-from tataz@sitadelle.com) Received: from droopy.tech.sitadelle.com (213-223-184-201.dti.cegetel.net [213.223.184.201]) by smtp.cegetel.net (Postfix) with ESMTP id 8E10467194; Wed, 3 Nov 2004 11:01:08 +0100 (CET) Received: by droopy.tech.sitadelle.com (Postfix, from userid 1000) id 10CF8FC00E; Wed, 3 Nov 2004 11:01:26 +0100 (CET) Date: Wed, 3 Nov 2004 11:01:26 +0100 From: Jeremie Le Hen To: Eivind Olsen Message-ID: <20041103100126.GN10641@sitadelle.com> References: <4188039D.8020109@aminor.no> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <4188039D.8020109@aminor.no> User-Agent: Mutt/1.5.6+20040907i cc: freebsd-current@freebsd.org Subject: Re: Problem with RELENG_5_3, BIND9 and dynamic updates X-BeenThere: freebsd-current@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Discussions about the use of FreeBSD-current List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 03 Nov 2004 10:01:22 -0000 > It looks like BIND9, as delivered in the base, has problems when zones > are using dynamic DNS updates. > > This is because it runs as user "bind", but that user doesn't have write > access to /var/named/etc/namedb/master - the script /etc/rc.d/named uses > mtree to set that directory as follows: > > [log squeezed] I think this setup must be considered as particular enough to change your named.conf(5). You can either change the "directory" statement in the "options" block if your server is a master-only name server, or use the "file" statement in the "zone" block if you want to explicitely separate master zones from slave zones. Regards, -- Jeremie Le Hen jeremie@le-hen.org