summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorkuriyama <kuriyama@FreeBSD.org>2001-08-23 13:34:45 +0000
committerkuriyama <kuriyama@FreeBSD.org>2001-08-23 13:34:45 +0000
commit40c6311b533e5c459371b88a91d82feb1812c2e4 (patch)
treeaf41a5894f37b205c69ff4ed7b73e8809305d6c3
parent2879f02ee4dd1e56bdd4fae95260c2b61096f406 (diff)
downloadFreeBSD-src-40c6311b533e5c459371b88a91d82feb1812c2e4.zip
FreeBSD-src-40c6311b533e5c459371b88a91d82feb1812c2e4.tar.gz
Invoke named with privilege of bind:bind.
Change pidfile location to /var/run/named/pid.
-rw-r--r--etc/defaults/rc.conf3
-rw-r--r--etc/mtree/BSD.var.dist2
-rw-r--r--etc/namedb/named.conf1
3 files changed, 4 insertions, 2 deletions
diff --git a/etc/defaults/rc.conf b/etc/defaults/rc.conf
index e30ffd2..217f15c 100644
--- a/etc/defaults/rc.conf
+++ b/etc/defaults/rc.conf
@@ -121,8 +121,7 @@ inetd_flags="-wW" # Optional flags to inetd
#
named_enable="NO" # Run named, the DNS server (or NO).
named_program="named" # path to named, if you want a different one.
-named_flags="" # Flags for named
-#named_flags="-u bind -g bind" # Flags for named
+named_flags="-u bind -g bind" # Flags for named
#
# kerberos. Do not run the admin daemons on slave servers
diff --git a/etc/mtree/BSD.var.dist b/etc/mtree/BSD.var.dist
index 62015b5..ec8ebf7 100644
--- a/etc/mtree/BSD.var.dist
+++ b/etc/mtree/BSD.var.dist
@@ -55,6 +55,8 @@
preserve
..
run
+ named uname=bind gname=bind
+ ..
..
rwho gname=daemon mode=0775
..
diff --git a/etc/namedb/named.conf b/etc/namedb/named.conf
index 8a53cfa..89cf388 100644
--- a/etc/namedb/named.conf
+++ b/etc/namedb/named.conf
@@ -8,6 +8,7 @@
options {
directory "/etc/namedb";
+ pid-file "/var/run/named/pid";
// In addition to the "forwarders" clause, you can force your name
// server to never initiate queries of its own, but always ask its
OpenPOWER on IntegriCloud