From owner-freebsd-current@FreeBSD.ORG Thu Sep 30 10:39:33 2004 Return-Path: Delivered-To: freebsd-current@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id F2D7316A4CF for ; Thu, 30 Sep 2004 10:39:32 +0000 (GMT) Received: from rwcrmhc12.comcast.net (rwcrmhc12.comcast.net [216.148.227.85]) by mx1.FreeBSD.org (Postfix) with ESMTP id C462B43D4C for ; Thu, 30 Sep 2004 10:39:30 +0000 (GMT) (envelope-from DougB@freebsd.org) Received: from lap (c-24-130-110-32.we.client2.attbi.com[24.130.110.32]) by comcast.net (rwcrmhc12) with ESMTP id <2004093010391901400bbe6ee>; Thu, 30 Sep 2004 10:39:30 +0000 Date: Thu, 30 Sep 2004 03:39:19 -0700 (PDT) From: Doug Barton To: =?iso-8859-1?q?Dag-Erling_Sm=F8rgrav?= In-Reply-To: Message-ID: <20040930033816.H57326@ync.qbhto.arg> References: <20040928025635.Q5094@ync.qbhto.arg> <727FCC18-1156-11D9-BBA6-000D936BE398@beforever.com> <20040929110207.S90578@qbhto.arg> Organization: http://www.FreeBSD.org/ X-message-flag: Outlook -- Not just for spreading viruses anymore! MIME-Version: 1.0 Content-Type: MULTIPART/MIXED; BOUNDARY="0-93385416-1096540759=:57326" cc: Dimitry Andric cc: freebsd-current@freebsd.org Subject: Re: HEADS UP: named now runs chroot'ed by default X-BeenThere: freebsd-current@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Discussions about the use of FreeBSD-current List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 30 Sep 2004 10:39:33 -0000 This message is in MIME format. The first part should be readable text, while the remaining parts are likely unreadable without MIME-aware tools. --0-93385416-1096540759=:57326 Content-Type: TEXT/PLAIN; charset=iso-8859-1; format=flowed Content-Transfer-Encoding: 8BIT On Wed, 29 Sep 2004, Dag-Erling Smørgrav wrote: > Doug Barton writes: >> Dmitry beat me to it, but yes, I'm 99% sure that'll do it for you. Can >> you please test it and confirm that Dmitry is correct, and if so I can >> add a commented out entry to the named.conf file. > > yep, works fine. > > you should test it with -4 or on a non-IPv6 kernel, with a little luck > you won't need to have it commented out. If enabled by default on a non-IPv6 system it prints a warning, which was part of the reason to add the option in the first place. :) Doug -- This .signature sanitized for your protection --0-93385416-1096540759=:57326--