From: Robert Lassfolk (rlassfol_at_yrkes.syi.fi)
Date: Sat 24 Nov 2001 - 10:46:16 GMT
> Or you can use BIND8 which, AKAIK, does not use linux capabilities.
> On Fri, 2001-11-23 at 12:33, Andy Kwong wrote:
>> You need to recompile bind. Run ./configure --disable-linux-caps. Or
>> modify the spec file of the SRPM and --rebuild.
>> On Fri, 2001-11-23 at 07:32, Robert Lassfolk wrote:
>> > hi again!
>> > i'm wondering how to get bind to work in a vserver.
>> > the problem is when i try to start named. it says capset failed. i
>> > think this has something to do with the --secure setting.
>> > does anyone now what capabilities bind needs for it to run in a
>> > vserver and how to give it the capabilities it needs. does bind need
>> > the still unimplemented capabilities assigned to a individual
>> > program?
>> > would it be ok to start bind in its own vserver without --secure? or
>> > would this create a security issue?
>> > also having a wee bit problem with squid :)
>> > i'm wondering if i need to configure squid as a transparent proxy
>> > for it to work?
>> > any thoughts on the problems above would be helpful
>> > Robert.
thanks got bind working.