From: Andy Kwong (iserlohn_at_aicompro.com)
Date: Fri 23 Nov 2001 - 21:35:14 GMT
Or you can use BIND8 which, AKAIK, does not use linux capabilities.
On Fri, 2001-11-23 at 12:33, Andy Kwong wrote:
> You need to recompile bind. Run ./configure --disable-linux-caps. Or
> modify the spec file of the SRPM and --rebuild.
> On Fri, 2001-11-23 at 07:32, Robert Lassfolk wrote:
> > hi again!
> > i'm wondering how to get bind to work in a vserver.
> > the problem is when i try to start named. it says capset failed.
> > i think this has something to do with the --secure setting.
> > does anyone now what capabilities bind needs for it to run in a vserver and
> > how to give it the capabilities it needs. does bind need the still
> > unimplemented capabilities assigned to a individual program?
> > would it be ok to start bind in its own vserver without --secure?
> > or would this create a security issue?
> > also having a wee bit problem with squid :)
> > i'm wondering if i need to configure squid as a transparent proxy for it to
> > work?
> > any thoughts on the problems above would be helpful
> > Robert.