Chroot Environment
2015/11/05 |
Configute chroot environment. Simply install "bind-chroot" package to do so. If you edit named.conf or other zone files on chroot environment, edit configuration files under /var/named/chroot/. |
[root@dlp ~]#
dnf -y install bind-chroot
[root@dlp ~]#
[root@dlp ~]# /usr/libexec/setup-named-chroot.sh /var/named/chroot on [root@dlp ~]# systemctl stop named [root@dlp ~]# systemctl disable named [root@dlp ~]# systemctl start named-chroot [root@dlp ~]# systemctl enable named-chroot
ll /var/named/chroot/etc total 24 drwxr-xr-x 3 root root 23 Nov 5 11:44 crypto-policies -rw-r--r--. 2 root root 355 Oct 6 04:57 localtime drwxr-x--- 2 root named 6 Sep 17 23:28 named -rw-r----- 1 root named 2303 Nov 5 11:34 named.conf -rw-r--r-- 1 root named 2389 Sep 17 23:28 named.iscdlv.key -rw-r----- 1 root named 931 Jun 21 2007 named.rfc1912.zones -rw-r--r-- 1 root named 487 Jul 19 2010 named.root.key drwxr-x--- 3 root named 25 Nov 5 11:44 pki -rw-r----- 1 root named 77 Nov 5 11:40 rndc.key[root@dlp ~]# ll /var/named/chroot/var/named total 24 -rw-r--r-- 1 root root 358 Nov 5 11:39 0.0.10.db drwxr-x--- 7 root named 61 Nov 5 11:44 chroot drwxrwx--- 2 named named 23 Nov 5 11:40 data drwxrwx--- 2 named named 166 Nov 5 11:45 dynamic -rw-r----- 1 root named 2076 Jan 28 2013 named.ca -rw-r----- 1 root named 152 Dec 15 2009 named.empty -rw-r----- 1 root named 152 Jun 21 2007 named.localhost -rw-r----- 1 root named 168 Dec 15 2009 named.loopback -rw-r--r-- 1 root root 350 Nov 5 11:39 srv.world.lan drwxrwx--- 2 named named 6 Sep 17 23:28 slaves |