Fedora 20
Sponsored Link

Enable chroot Environment2013/12/19

  Configute chroot environment. Simply install "bind-chroot" package to do so. If you edit named.conf or other zone files on chroot environment, edit configuration files under /var/named/chroot/.
[root@dlp ~]#
yum -y install bind-chroot
[root@dlp ~]#
/usr/libexec/setup-named-chroot.sh /var/named/chroot on

[root@dlp ~]#
systemctl stop named.service

[root@dlp ~]#
systemctl disable named.service

[root@dlp ~]#
systemctl start named-chroot.service

[root@dlp ~]#
systemctl enable named-chroot.service

ln -s '/usr/lib/systemd/system/named-chroot.service' '/etc/systemd/system/multi-user.target.wants/named-chroot.service'
[root@dlp ~]#
ll /var/named/chroot/etc

total 32
-rw-r--r-- 1 root root   331 Dec 17 14:05 localtime
drwxr-x--- 2 root named 4096 Nov 12 22:41 named
-rw-r----- 1 root named 2235 Dec 17 13:48 named.conf
-rw-r--r-- 1 root named 2389 Nov 12 22:41 named.iscdlv.key
-rw-r----- 1 root named  931 Jun 21  2007 named.rfc1912.zones
-rw-r--r-- 1 root named  487 Jul 19  2010 named.root.key
drwxr-x--- 3 root named 4096 Dec 17 14:05 pki
-rw-r----- 1 root named   77 Dec 17 13:56 rndc.key
[root@dlp ~]#
ll /var/named/chroot/var/named

total 40
-rw-r--r-- 1 root  root   358 Dec 17 13:53 0.0.10.db
drwxr-x--- 7 root  named 4096 Dec 17 14:05 chroot
drwxrwx--- 2 named named 4096 Dec 17 13:56 data
drwxrwx--- 2 named named 4096 Dec 17 14:06 dynamic
-rw-r----- 1 root  named 2076 Jan 28  2013 named.ca
-rw-r----- 1 root  named  152 Dec 15  2009 named.empty
-rw-r----- 1 root  named  152 Jun 21  2007 named.localhost
-rw-r----- 1 root  named  168 Dec 15  2009 named.loopback
-rw-r--r-- 1 root  root   350 Dec 17 13:51 srv.world.lan
drwxrwx--- 2 named named 4096 Nov 12 22:41 slaves
Matched Content