[vserver] BIND9 and bcapabilities

From: Phil Daws <uxbod_at_splatnix.net>
Date: Thu 23 Feb 2012 - 17:20:58 GMT
Message-ID: <1327194470.135052.1330017658369.JavaMail.root@office.splatnix.net>

Hello all,

am trying to get BIND working with chroot() but when I start named I am seeing:

[root@nspriv01 /]# service named start
mount: permission denied

I have given the vserver MKNOD, CAP_SYS_CHROOT and CAP_SYS_RESOURCE but it only seems to work if I give it CAP_SYS_ADMIN which appears very over kill.

Which capability am I missing ? This is using kernel 3.0.16-vs2.3.2.1.

-- 
Thanks, Phil 
Received on Thu Feb 23 17:21:14 2012
[Next/Previous Months] [Main vserver Project Homepage] [Howto Subscribe/Unsubscribe] [Paul Sladen's vserver stuff]
Generated on Thu 23 Feb 2012 - 17:21:14 GMT by hypermail 2.1.8