[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: These 'roots' are bugging me.



Its neither a debian or linux problem.

ports below 1024 are priviledged ports which can only be bound to by the
super user.

just like apache starts as root, but then spawns child processes as a non
root user, the same thing is done with bind when started with the -u and
-g options.


On Wed, 30 Jan 2002, Tim Uckun wrote:

> 
> >I have no experience demoting BIND, but I realize I must.  Making a 
> >chroot'ed environment isn't as large a concern for me as just dropping 
> >root from the daemon. My question is can I perform this task in a 'Debian' 
> >way?  By that I mean can I follow a HOWTO aimed at Debian, so Apt wont 
> >trample of my work during the next BIND update? Does anyone have a 
> >methodology for BIND8 on Debian 2.2?
> 
> I was under the impression one had to be root to bind to lower ports. 
> Although I agree that this is a problem (not to mention a silly one) I 
> don't think it's a debian problem it's more of a linux problem.
> 
> 
> :wq
> Tim Uckun
> US Investigations Services/Due Diligence
>   http://www.diligence.com/
> 
> 
> -- 
> To UNSUBSCRIBE, email to debian-security-request@lists.debian.org
> with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org
> 



Todays root password is brought to you by /dev/random

.-------------------------------------.
| Steve Mickeler * Network Operations |
+-------------------------------------+
|     Neptune Internet Services       |
`-------------------------------------'

1024D/ACB58D4F = 0227 164B D680 9E13 9168  AE28 843F 57D7 ACB5 8D4F





Reply to: