Fedora 33
Sponsored Link

BIND : Configure Chroot Environment
2020/11/02
 
If you'd like to configute Chroot Environment for named, Set like follows.
[1] After setting Chroot environment, configuration files are placed under [/var/named/chroot]. [named.conf] is placed under [/var/named/chroot/etc/named.conf], zone files are placed [/var/named/chroot/var/named/***]. When modify settings, Change them under [/var/named/chroot] files.
[root@dlp ~]#
dnf -y install bind-chroot
[root@dlp ~]#
/usr/libexec/setup-named-chroot.sh /var/named/chroot on
[root@dlp ~]#
systemctl disable --now named

[root@dlp ~]#
systemctl enable --now named-chroot

Created symlink /etc/systemd/system/multi-user.target.wants/named-chroot.service → /usr/lib/systemd/system/named-chroot.service.
[root@dlp ~]#
ll /var/named/chroot/etc

total 708
drwxr-x---. 3 root named     23 Nov  1 19:28 crypto-policies
-rw-r--r--. 2 root root     309 Oct 23 22:15 localtime
drwxr-x---. 2 root named      6 Sep 23 02:05 named
-rw-r-----. 1 root named   2410 Nov  1 19:25 named.conf
-rw-r-----. 1 root named   1029 Sep 23 02:05 named.rfc1912.zones
-rw-r--r--. 1 root named   1070 Sep 23 02:05 named.root.key
drwxr-x---. 3 root named     25 Nov  1 19:28 pki
-rw-r--r--. 1 root root    6568 Jun 23 15:11 protocols
-rw-r-----. 1 root named    100 Nov  1 19:20 rndc.key
-rw-r--r--. 1 root root  692252 Jun 23 15:11 services

[root@dlp ~]#
ll /var/named/chroot/var/named

total 24
-rw-r--r--. 1 root  root   313 Nov  1 19:19 0.0.10.db
drwxr-x---. 7 root  named   61 Nov  1 19:28 chroot
drwxrwx---. 2 named named   23 Nov  1 19:20 data
drwxrwx---. 2 named named  108 Nov  1 19:28 dynamic
-rw-r-----. 1 root  named 2253 Sep 23 02:05 named.ca
-rw-r-----. 1 root  named  152 Sep 23 02:05 named.empty
-rw-r-----. 1 root  named  152 Sep 23 02:05 named.localhost
-rw-r-----. 1 root  named  168 Sep 23 02:05 named.loopback
drwxrwx---. 2 named named    6 Sep 23 02:04 slaves
-rw-r--r--. 1 root  root   404 Nov  1 19:27 srv.world.lan
Matched Content