Re: About DNS

From: Kasper Dupont (kasperd@daimi.au.dk)
Date: 01/28/03


From: Kasper Dupont <kasperd@daimi.au.dk>
Date: Tue, 28 Jan 2003 22:48:24 +0100

The Unknown Hacker wrote:
>
> This is an easy one:
> user bind is a privileged user (it can only handle this daemon)
> This means that all associated files of named have owner permission for root
> and bind
> Conclusion: bind is an invoked user and cannot have a shell

That doesn't seem to be an answer to the question.
Read Philippe's explanation instead.

-- 
Kasper Dupont -- der bruger for meget tid på usenet.
For sending spam use mailto:aaarep@daimi.au.dk
for(_=52;_;(_%5)||(_/=5),(_%5)&&(_-=2))putchar(_);


Relevant Pages

  • [Full-disclosure] [ GLSA 200908-02 ] BIND: Denial of Service
    ... Dynamic Update packets can cause a Denial of Service in the BIND ... dynamic update message to the BIND daemon, ... Security is a primary focus of Gentoo Linux and ensuring the ...
    (Full-Disclosure)
  • [ GLSA 200908-02 ] BIND: Denial of Service
    ... Dynamic Update packets can cause a Denial of Service in the BIND ... dynamic update message to the BIND daemon, ... Security is a primary focus of Gentoo Linux and ensuring the ...
    (Bugtraq)
  • annouce for a soft
    ... CBS is a client-server system, that allows a daemon (apache or bind ... client for cbsd. ...
    (comp.security.unix)
  • Re: Firewalling NFS
    ... Eygene Ryabinkin wrote: ... and statd have '-p' options: ... -p The -p option allow to force the daemon to bind to the specified ...
    (freebsd-net)
  • Re: Killing unix daemon
    ... I wrote a daemon application which starts up and puts itself in the ... Does anyone have some information on what is common practice regarding ... signals are the most common technique. ... technique that BIND has used since BIND 8, although I think it still has ...
    (comp.unix.programmer)