We made the changes to the named file, but have subsequently found
"couldn't create pid file /var/run/named.pid" in our logs.

It looks like root permission is needed to create the "named.pid" file, but
is it critical?

LF


----- Original Message -----
From: "Kevin D" <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Sent: Tuesday, June 12, 2001 4:46 PM
Subject: Re: [cobalt-security] profile of a bind worm


> From: "Jabie Gray" <[EMAIL PROTECTED]>
>
> > My named is running as root too.
>
> Bad idea.
>
> > I see two instances of the daemon function in the /etc/rc.d/init.d/named
> > script. One is for start, the other is for hard restart.
> > Do I need to change both of them to use -u & -g options?
>
> Yes you should.
>
> > Do I need to create the user and group of named?
>
> Maybe. Check your /etc/passwd file. My guess is probably not.
>
> Kevin
>
> _______________________________________________
> cobalt-security mailing list
> [EMAIL PROTECTED]
> http://list.cobalt.com/mailman/listinfo/cobalt-security

_______________________________________________
cobalt-security mailing list
[EMAIL PROTECTED]
http://list.cobalt.com/mailman/listinfo/cobalt-security

Reply via email to