Subject: Re: proposals for running named in a non-root chroot cage
To: None <itojun@iijlab.net>
From: Andrew Brown <atatat@atatdot.net>
List: tech-security
Date: 03/08/2001 20:35:54
>>> - change the build system to populate /var/named/ by default
>>> (with named-xfer, the example etc/namedb, ...)
>>...named-xfer would be installed in /var/named/usr/libexec/named-xfer
>>and a symlink would be put at /usr/libexec/named-xfer?
>
> or, every time before named startup, copy /usr/libexec/named-xfer
> into /var/named/usr/libexec/named-xfer.
that might be a bit heavy. running cmp (or diff) would be heavier,
but checking that the mtime and size were the same (if copied with -p)
would probably be sufficient.
--
|-----< "CODE WARRIOR" >-----|
codewarrior@daemon.org * "ah! i see you have the internet
twofsonet@graffiti.com (Andrew Brown) that goes *ping*!"
andrew@crossbar.com * "information is power -- share the wealth."