On 2010/10/02 15:06, Jakob Schlyter wrote:
> On 2 okt 2010, at 13.48, Stuart Henderson wrote:
>
> > I think it makes sense to do have a separate user for these, that's how
> > I've been running nsd in the past.
>
> did you make nsd-{patch,zonec} drop privs to that user, or did you start them
> as the user?
I haven't used the nsd-patch (just scp files around instead) and just start
nsd-zonec as that user, but it would be more user-friendly if they were
to drop privs when started as root.
> where did you put nsd.db? I guess a subdir of /var/nsd makes more sense than
> /var/nsd itself.
I used /var/nsd/db.