From owner-freebsd-net@FreeBSD.ORG Mon Aug 4 08:57:57 2008 Return-Path: Delivered-To: freebsd-net@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id A06011065674; Mon, 4 Aug 2008 08:57:57 +0000 (UTC) (envelope-from remko@elvandar.org) Received: from websrv01.jr-hosting.nl (websrv01.jr-hosting.nl [78.47.69.233]) by mx1.freebsd.org (Postfix) with ESMTP id 5B8308FC1C; Mon, 4 Aug 2008 08:57:57 +0000 (UTC) (envelope-from remko@elvandar.org) Received: from localhost ([::1] helo=galain.elvandar.org) by websrv01.jr-hosting.nl with esmtpa (Exim 4.69 (FreeBSD)) (envelope-from ) id 1KPvt6-000N6c-AH; Mon, 04 Aug 2008 10:57:56 +0200 Received: from 145.7.91.133 (SquirrelMail authenticated user remko) by galain.elvandar.org with HTTP; Mon, 4 Aug 2008 10:57:56 +0200 (CEST) Message-ID: In-Reply-To: <20080804084833.GA35267@svzserv.kemerovo.su> References: <20080803073803.GA10321@grosbein.pp.ru> <4895EB57.2000801@FreeBSD.org> <20080803183346.GA53252@svzserv.kemerovo.su> <4896997D.8060001@FreeBSD.org> <20080804060658.GA19639@svzserv.kemerovo.su> <4896A416.80602@FreeBSD.org> <20080804075510.GA28531@svzserv.kemerovo.su> <20080804084833.GA35267@svzserv.kemerovo.su> Date: Mon, 4 Aug 2008 10:57:56 +0200 (CEST) From: "Remko Lodder" To: "Eugene Grosbein" User-Agent: SquirrelMail/1.4.15 MIME-Version: 1.0 Content-Type: text/plain;charset=iso-8859-1 Content-Transfer-Encoding: 8bit X-Priority: 3 (Normal) Importance: Normal Cc: freebsd-net@freebsd.org, Doug Barton Subject: Re: permissions on /etc/namedb X-BeenThere: freebsd-net@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list Reply-To: remko@elvandar.org List-Id: Networking and TCP/IP with FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 04 Aug 2008 08:57:57 -0000 On Mon, August 4, 2008 10:48 am, Eugene Grosbein wrote: > On Mon, Aug 04, 2008 at 10:44:59AM +0200, Remko Lodder wrote: > >> I like the unwriteable /etc/namedb directory for bind, so that one is >> "forced" to create directories for bind, which it has write access to. >> You >> do not want to clobber the /etc/namedb directory with files (imo) ;) > > Should we change our default src/etc/namedb/named.conf in the Repository > so that named won't warn about unwriteable "working directory"? > > Eugene Grosbein > Hi, I dont think so.. I think the current default is fine, if you want to write files to it, then you need to change things, best is to use seperated directories. Note that you need to change things anyway because the server listens on localhost by default. So, if you want things differently; you have to customize it. Sounds like a fair deal to me ;) (the defaults that is) -- /"\ Best regards, | remko@FreeBSD.org \ / Remko Lodder | remko@EFnet X http://www.evilcoder.org/ | / \ ASCII Ribbon Campaign | Against HTML Mail and News