From owner-freebsd-stable@freebsd.org Fri Jul 24 09:09:58 2015 Return-Path: Delivered-To: freebsd-stable@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id 5E3BE9A992D for ; Fri, 24 Jul 2015 09:09:58 +0000 (UTC) (envelope-from ferdinand.goldmann@jku.at) Received: from emailsecure.uni-linz.ac.at (emailsecure.uni-linz.ac.at [140.78.3.66]) by mx1.freebsd.org (Postfix) with ESMTP id 2866310AC for ; Fri, 24 Jul 2015 09:09:57 +0000 (UTC) (envelope-from ferdinand.goldmann@jku.at) Received: from dyn-ant67.edvz.uni-linz.ac.at (dyn-ant67.edvz.uni-linz.ac.at [140.78.6.67]) by emailsecure.uni-linz.ac.at (Postfix) with ESMTPSA id 0B5BFFEBCD for ; Fri, 24 Jul 2015 11:02:18 +0200 (CEST) From: Ferdinand Goldmann Content-Type: text/plain; charset=windows-1252 Content-Transfer-Encoding: quoted-printable Subject: local_unbound & chroot Message-Id: <5B0561C3-A820-4DB7-9C2B-5B1E90777AE7@jku.at> Date: Fri, 24 Jul 2015 11:02:18 +0200 To: freebsd-stable@freebsd.org Mime-Version: 1.0 (Mac OS X Mail 7.3 \(1878.6\)) X-Mailer: Apple Mail (2.1878.6) X-BeenThere: freebsd-stable@freebsd.org X-Mailman-Version: 2.1.20 Precedence: list List-Id: Production branch of FreeBSD source code List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 24 Jul 2015 09:09:58 -0000 Hello, I=92ve made the experience that enabling local_unbound does not play too = well if I am using a chroot=92ed unbound environment like chroot: = =93/var/unbound=94 in=20 the configuration file. In particular, there is no way to automatically mount a devfs and create = a link to the syslog socket. Also, the local_unbound service script expects a = PID file in /var/run/local_unbound.pid. So you have to create a symlink to=20 /var/unbound/unbound.pid as well. For the time being, I=92ve added a few lines to the local_unbound script = which do just that. But maybe it would be a good idea to offer this possibility via an = extra rc.conf variable, like local_unbound_chroot? Also, I=92ve noticed that it is not possible to raise the number of = threads above 1, as this seems to use more file descriptors than the builtin mini-event = library can handle. Kind regards, Ferdinand=