Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > comp.protocols.dns.bind > #16006

Re: /etc/bind.keys in a chrooted environment

Path csiph.com!news.uzoreto.com!news.etla.org!nntp-feed.chiark.greenend.org.uk!ewrotcd!usenet-its.stanford.edu!usenet.stanford.edu!not-for-mail
From tale <d.lawrence@salesforce.com>
Newsgroups comp.protocols.dns.bind
Subject Re: /etc/bind.keys in a chrooted environment
Date Wed, 22 Jul 2020 11:34:39 -0400
Lines 13
Approved bind-users@lists.isc.org
Message-ID <mailman.748.1595432060.942.bind-users@lists.isc.org> (permalink)
References <0e03752f-9ce1-ff80-ee4b-14416e94cbde@suse.de> <41683619-f25c-29ff-f1b8-78bc8625858f@ripe.net> <d379bee3-e9e5-a9e8-49d9-b92a6bab34a3@suse.de> <295f1ecf-341a-fdc4-96d9-503776a411e7@ripe.net> <2193fa25-9b7c-6a01-ede7-e6d46676cd32@suse.de> <d5f0523a-ed8d-a9cd-f6e1-7487d003ce35@ripe.net> <CAGrdBBvEZdJ1XHOXutxqMTE1cnGXhhyiN5sa=jy=5mzt5VS07A@mail.gmail.com>
NNTP-Posting-Host lists.isc.org
Mime-Version 1.0
Content-Type text/plain; charset="UTF-8"
X-Trace usenet.stanford.edu 1595432099 4061 149.20.1.60 (22 Jul 2020 15:34:59 GMT)
X-Complaints-To action@cs.stanford.edu
Cc Josef Moellers <jmoellers@suse.de>, bind-users <bind-users@lists.isc.org>
To Anand Buddhdev <anandb@ripe.net>
Return-Path <d.lawrence@salesforce.com>
X-Original-To bind-users@lists.isc.org
Delivered-To bind-users@lists.isc.org
DKIM-Signature v=1; a=rsa-sha256; c=relaxed/relaxed; d=salesforce.com; s=google; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=rs9C44us96fLwrJL7lOIjEHKtaocQq6rJ5+TNXuuz8k=; b=PmZV9hd1ORhVZZ78yWyIKxON/KzKL9x+ht+vfsPWctMuT3aev65S6dPnR3eDRGbTk/ kAvVLSv669jS/91S9rOaqjjEm6eDE1qf7yPTZmLhdvFqvJOPj7N4vb8mmDk8Q5u9qRH1 IDc1P3seGoqeR1o3XZvz9I9cfdLm1PJQ2YsjA=
X-Google-DKIM-Signature v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=rs9C44us96fLwrJL7lOIjEHKtaocQq6rJ5+TNXuuz8k=; b=M9TEyJ6KZjuLEw9/7LMX/Y0VU1XO3Dwr5H/ezqQwjnA1mWYQQ1hXAQ2cAueWUBjsUq G8Wjpw4avAVmXgyjqix9pcHCymXJNa//ALyTvgdOy/R4gsbL/fp/7ZKY/bpBuDJSIcAW PxczV7BVzbMf3/hAyxOmJ4lnxUcjlDhDk7d8g2zn5u4N6hcQte5cU3JsTTGd0pQKSnJ/ gUkQnhxrffM06P+dVtGXswFs27oHMXkzw/+xFd1q/e/sUYGQnQdTB7+4eU9mIuq74IfF IQodMlVXFmo0LAMcAf3141YuIVd6SHxc4I9f4s9MgI9dF+uDTT3YlRJYGtp7m3Tzohwo a40w==
X-Gm-Message-State AOAM533wTGH/GWN6g1CnnO6WjAlJQvgO/FdOF6PPhGqb6WvxbqeKYSF4 0L794GLFXmYWRaTbznsVB5C5kzRC4DzmzSS8kPXBzwx0wJI=
X-Google-Smtp-Source ABdhPJwzT9UHPjllZuD9XjEENpgMn2M4AVUSOKHIs25hWiJMhozjWHe5j7iBklJVHnSx9/Puw8EPh2XApkAvn9trozc=
X-Received by 2002:a17:90b:2311:: with SMTP id mt17mr15548pjb.106.1595432090324; Wed, 22 Jul 2020 08:34:50 -0700 (PDT)
In-Reply-To <d5f0523a-ed8d-a9cd-f6e1-7487d003ce35@ripe.net>
X-Spam-Status No, score=-0.2 required=5.0 tests=DKIMWL_WL_MED,DKIM_SIGNED, DKIM_VALID,DKIM_VALID_AU,DKIM_VALID_EF,RCVD_IN_DNSWL_NONE, SPF_HELO_NONE,SPF_PASS autolearn=disabled version=3.4.2
X-Spam-Checker-Version SpamAssassin 3.4.2 (2018-09-13) on mx.pao1.isc.org
X-BeenThere bind-users@lists.isc.org
X-Mailman-Version 2.1.29
Precedence list
List-Id BIND Users Mailing List <bind-users.lists.isc.org>
List-Unsubscribe <https://lists.isc.org/mailman/options/bind-users>, <mailto:bind-users-request@lists.isc.org?subject=unsubscribe>
List-Archive <https://lists.isc.org/pipermail/bind-users/>
List-Post <mailto:bind-users@lists.isc.org>
List-Help <mailto:bind-users-request@lists.isc.org?subject=help>
List-Subscribe <https://lists.isc.org/mailman/listinfo/bind-users>, <mailto:bind-users-request@lists.isc.org?subject=subscribe>
X-Mailman-Original-Message-ID <CAGrdBBvEZdJ1XHOXutxqMTE1cnGXhhyiN5sa=jy=5mzt5VS07A@mail.gmail.com>
X-Mailman-Original-References <0e03752f-9ce1-ff80-ee4b-14416e94cbde@suse.de> <41683619-f25c-29ff-f1b8-78bc8625858f@ripe.net> <d379bee3-e9e5-a9e8-49d9-b92a6bab34a3@suse.de> <295f1ecf-341a-fdc4-96d9-503776a411e7@ripe.net> <2193fa25-9b7c-6a01-ede7-e6d46676cd32@suse.de> <d5f0523a-ed8d-a9cd-f6e1-7487d003ce35@ripe.net>
Xref csiph.com comp.protocols.dns.bind:16006

Show key headers only | View raw


On Wed, Jul 22, 2020 at 11:05 AM Anand Buddhdev <anandb@ripe.net> wrote:
> There is no harm in copying the file into the chroot. It will get rid of
> the warning.

With the caveat that you have to be sure that if you keep the original
copy outside of the chroot, you have to be sure updates get reflected
inside the chroot.

NAMED_CONF_INCLUDE_FILES mentioned in the OP seems to be a SuSE-ism
and I didn't dig into whatever bearing it might have for maintenance
of the chroot.
-- 
tale

Back to comp.protocols.dns.bind | Previous | Next | Find similar


Thread

Re: /etc/bind.keys in a chrooted environment tale <d.lawrence@salesforce.com> - 2020-07-22 11:34 -0400

csiph-web