[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: To the bind maintainer



On Fri 21 Jan 2000, Marek Habersack wrote:

> You still seem to miss the point. The problem is not with bind starting as
> another user but with running it on a machine with dynamically changing IP
> interfaces. bind watches for interfaces going up and down and attaches
> itself to listen on any of these interfaces that may appear. Now, since the
> DNS port is 53 TCP/UDP bind has to be root to do it successfuly. After being
> started as root, AFAIR, bind drops the root privileges completely. If you
> have a notebook or (as said in the README) using some tunneling stuff, you
> might have interfaces going up and down dynamically all the time. If bind
> isn't run as root then you'd have to restart it BY HAND every time any
> interface changes.

Every time I'm reminded of bind attaching itself to each interface
explicitly, I wonder why it does that (and doesn't simply bind to
0.0.0.0). _Is_ there a valid reason?


Paul Slootman
-- 
home:       paul@wurtel.demon.nl http://www.wurtel.demon.nl/
work:       paul@murphy.nl       http://www.murphy.nl/
debian:     paul@debian.org      http://www.debian.org/
isdn4linux: paul@isdn4linux.de   http://www.isdn4linux.de/


Reply to: