Subject: Re: chrooted bind
To: None <firstname.lastname@example.org>
From: Thilo Manske <Thilo.Manske@HEH.Uni-Oldenburg.DE>
Date: 01/30/2001 15:27:39
On Tue, Jan 30 2001 at 12:46:28 +0100, Feico Dillema wrote:
> In the light of the recent bind vulnerabilities reports, is there a
> reason why NetBSD doesn't come with bind setup for a chrooted
> environment or an easy optional way to easily do this (like an
> /etc/rc.conf option). It would already be nice to have named
> statically linked by default for this, or is the price of this
> considered to high?
BTW: It's not difficult to let bind run as an other user either
(options -g & -u), I use this for >2 years now. I wonder why this is not
used more often...
Dies ist Thilos Unix Signature! Viel Spass damit.