Subject: Re: proposals for running named in a non-root chroot cage
To: None <itojun@iijlab.net>
From: Andrew Brown <atatat@atatdot.net>
List: tech-security
Date: 03/08/2001 20:35:54
>>>	- change the build system to populate /var/named/ by default
>>>	  (with named-xfer, the example etc/namedb, ...)
>>...named-xfer would be installed in /var/named/usr/libexec/named-xfer
>>and a symlink would be put at /usr/libexec/named-xfer?
>
>	or, every time before named startup, copy /usr/libexec/named-xfer
>	into /var/named/usr/libexec/named-xfer.

that might be a bit heavy.  running cmp (or diff) would be heavier,
but checking that the mtime and size were the same (if copied with -p)
would probably be sufficient.

-- 
|-----< "CODE WARRIOR" >-----|
codewarrior@daemon.org             * "ah!  i see you have the internet
twofsonet@graffiti.com (Andrew Brown)                that goes *ping*!"
andrew@crossbar.com       * "information is power -- share the wealth."