Re: Dynamic DNS and failed journal



Brian Chadwick wrote:
Thanks for your comment Paul

The thing is, when bind chroots, it should have writeable access to its own /var/named, which as far as the host is concerned, is actually /var/named/chroot/var/named.

Why should it have write access there? It doesn't by default, and doesn't normally need it (remember that bind is running as user named, not as root).

its needs to know where to load its zone information from, ie. /var/named, then chroots.

No, it chroots first. So you should put your DDNS zone file in /var/named/chroot/var/named/slaves (I expect you have a symlink /var/named/slaves -> /var/named/chroot/var/named/slaves btw).

I cant see how that should be a problem for bind to write to its own /var/named directory. Anyway I tried it, and changed options directory /var/named to /var/named/slaves .... naturally, bind couldnt find zone information ...

Don't change the main directory in the options clause, change the file location for your DDNS zone in its zone clause.

So you have something like:

zone "example.com" IN {
...
file "slaves/example.com";
...
};

Paul.

--
fedora-list mailing list
fedora-list@xxxxxxxxxx
To unsubscribe: https://www.redhat.com/mailman/listinfo/fedora-list



Relevant Pages

  • Re: Dynamic DNS and failed journal
    ... The thing is, when bind chroots, it should have writeable access to ... It doesn't by default, and doesn't normally need it (remember that bind is running as user named, not as root). ... its needs to know where to load its zone information from, ...
    (Fedora)
  • ISC BIND 9.7.0b1 is now available
    ... BIND 9.7.0b1 is the first beta release of BIND 9.7.0. ... Simplified configuration of DNSSEC Lookaside Validation. ... Support for RFC 5011 automated trust anchor maintenance ... simplified tools for zone signing and key ...
    (comp.protocols.dns.bind)
  • Re: [opensuse] Why Bind dies, where is its log file?
    ... I want to debug my system but I am not sure where bind error log file is? ... The following is part of a server howto I put together so I don't have to reinvent the wheel when I install a new server for the office. ... This is my configuration for bind where dhcpd provides dynamic update to the zone files. ...
    (SuSE)
  • BIND 9.6.2b1 is now available.
    ... BIND 9.6.2b1 is a maintenance release for BIND 9.6. ... dnssec-signzone man page. ... for NSEC3 signed zones. ... the NSEC3 parameters used to sign the zone change. ...
    (comp.protocols.dns.bind)
  • For anyone interested in blocking nameserver lookups to sites
    ... I am using a BIND ... 8.2.x series name server and a semi-current version of RedHat Linux. ... Setup your forwarders as your primary and secondary name servers (these are ... zone "doubleclick.net" in { ...
    (comp.os.linux.security)