[systemd-devel] bind-mount of /run/systemd for chrooted bind9/named

Marc Haber mh+systemd-devel at zugschlus.de
Tue Jul 4 06:40:58 UTC 2023


On Mon, Jul 03, 2023 at 11:21:22PM +0200, Silvio Knizek wrote:
> why is it suggested to run `named` within its own chroot? For security reasons? This can be achieved much easier with systemd native options.

That feature is two decades older than systemd, and name server
operators are darn conservative.

Greetings
Marc

-- 
-----------------------------------------------------------------------------
Marc Haber         | "I don't trust Computers. They | Mailadresse im Header
Leimen, Germany    |  lose things."    Winona Ryder | Fon: *49 6224 1600402
Nordisch by Nature |  How to make an American Quilt | Fax: *49 6224 1600421


More information about the systemd-devel mailing list