[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Whom the BIND newest vulnerability concerns?



Russell Coker <russell@coker.com.au> wrote:
> On Fri, 12 Nov 1999, David Huggins-Daines wrote:
>>
>>In fact, -u named is much better, because if you use sudo, named will not be
>>able to create its pidfile or the /var/run/ndc socket.

> Just have the "named" user be in the "daemon" group, have the /var/run
> directory owned by group "daemon" and mode 1775...

Personally I'd create /var/run/named, owned by named, and put the pid file
there.
-- 
Debian GNU/Linux 2.1 is out! ( http://www.debian.org/ )
Email:  Herbert Xu ~{PmV>HI~} <herbert@gondor.apana.org.au>
Home Page: http://gondor.apana.org.au/~herbert/
PGP Key: http://gondor.apana.org.au/~herbert/pubkey.txt


Reply to: