Changeset ca89a835 for server/other/bind/bind-config.xml
- Timestamp:
- 09/29/2003 04:32:43 PM (21 years ago)
- Branches:
- 10.0, 10.1, 11.0, 11.1, 11.2, 11.3, 12.0, 12.1, 6.0, 6.1, 6.2, 6.2.0, 6.2.0-rc1, 6.2.0-rc2, 6.3, 6.3-rc1, 6.3-rc2, 6.3-rc3, 7.10, 7.4, 7.5, 7.6, 7.6-blfs, 7.6-systemd, 7.7, 7.8, 7.9, 8.0, 8.1, 8.2, 8.3, 8.4, 9.0, 9.1, basic, bdubbs/svn, elogind, gnome, kde5-13430, kde5-14269, kde5-14686, kea, ken/TL2024, ken/inkscape-core-mods, ken/tuningfonts, krejzi/svn, lazarus, lxqt, nosym, perl-modules, plabs/newcss, plabs/python-mods, python3.11, qt5new, rahul/power-profiles-daemon, renodr/vulkan-addition, systemd-11177, systemd-13485, trunk, upgradedb, v5_0, v5_0-pre1, v5_1, v5_1-pre1, xry111/intltool, xry111/llvm18, xry111/soup3, xry111/test-20220226, xry111/xf86-video-removal
- Children:
- 8eb94806
- Parents:
- 31ff91e4
- File:
-
- 1 edited
Legend:
- Unmodified
- Added
- Removed
-
server/other/bind/bind-config.xml
r31ff91e4 rca89a835 14 14 jail as an unprivileged user (named). This configuration is more secure 15 15 in that a <acronym>DNS</acronym> compromise can only affect a few files 16 in the named user's <envar> $HOME</envar> directory.</para>16 in the named user's <envar>HOME</envar> directory.</para> 17 17 18 18 <para>First we create the unpriviledged user and group named:</para> … … 58 58 file "pz/127.0.0"; 59 59 }; 60 <command> >EOF</command></userinput></screen>60 <command>EOF</command></userinput></screen> 61 61 62 62 <para>Create a zone file with the following contents:</para> … … 107 107 L.ROOT-SERVERS.NET. 6D IN A 198.32.64.12 108 108 M.ROOT-SERVERS.NET. 6D IN A 202.12.27.33 109 <command> >EOF</command></userinput></screen>109 <command>EOF</command></userinput></screen> 110 110 111 111 <para>The <filename>root.hints</filename> file is a list of root name 112 112 servers. This file must be updated periodically with the 113 113 <command>dig</command> utility. 114 Consult the <a cronym>BIND</acronym> 9 Administrator Reference Manual for114 Consult the <application><acronym>BIND</acronym></application> 9 Administrator Reference Manual for 115 115 details.</para> 116 116 … … 143 143 search yourdomain.com 144 144 nameserver 127.0.0.1 145 <command> >EOF</command></userinput></screen>145 <command>EOF</command></userinput></screen> 146 146 147 147 <para>Set permissions on the chroot jail with the following
Note:
See TracChangeset
for help on using the changeset viewer.