Possibly stupid Q

classic Classic list List threaded Threaded
3 messages Options
Reply | Threaded
Open this post in threaded view
|

Possibly stupid Q

Bruce  Johnson
I am running bind in a chroot jail using the named-chroot package in CentOS 8.

Looking at this page in the docs about logging https://kb.isc.org/docs/aa-01526

the sample ones are set to :

channel default_log {          
file "/var/named/log/default" versions 3 size 20m;
          print-time  yes;
          print-category yes;
          print-severity yes;
          severity info;    
};

in named-chroot do these go to the actual system /var/named/log or does the named-chroot process put them in /var/named/chroot/var directory?



--
Bruce Johnson
University of Arizona
College of Pharmacy
Information Technology Group

Institutions do not have opinions, merely customs

_______________________________________________
Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list

ISC funds the development of this software with paid support subscriptions. Contact us at https://www.isc.org/contact/ for more information.


bind-users mailing list
[hidden email]
https://lists.isc.org/mailman/listinfo/bind-users
Reply | Threaded
Open this post in threaded view
|

Re: Possibly stupid Q

Rick Dicaire
On Wed, Jan 20, 2021 at 2:19 PM Bruce Johnson <[hidden email]> wrote:
channel default_log {         
file "/var/named/log/default" versions 3 size 20m;
          print-time  yes;
          print-category yes;
          print-severity yes;
          severity info;     
};

in named-chroot do these go to the actual system /var/named/log or does the named-chroot process put them in /var/named/chroot/var directory?


The path should be inside the chroot.

_______________________________________________
Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list

ISC funds the development of this software with paid support subscriptions. Contact us at https://www.isc.org/contact/ for more information.


bind-users mailing list
[hidden email]
https://lists.isc.org/mailman/listinfo/bind-users
Reply | Threaded
Open this post in threaded view
|

Re: Possibly stupid Q

Michael De Roover
If the chroot location is set to /var/named/chroot, then this should be
the case yes. As far as the software running in the chroot is
concerned, the chroot directory is its rootfs at /. It does not have
access to anything above that.

On Wed, 2021-01-20 at 16:42 -0500, Rick Dicaire wrote:

> On Wed, Jan 20, 2021 at 2:19 PM Bruce Johnson <
> [hidden email]> wrote:
> > channel default_log {          
> > file "/var/named/log/default" versions 3 size 20m;
> >           print-time  yes;
> >           print-category yes;
> >           print-severity yes;
> >           severity info;    
> > };
> >
> > in named-chroot do these go to the actual system /var/named/log or
> > does the named-chroot process put them in /var/named/chroot/var
> > directory?
> >
>
> The path should be inside the chroot.
> _______________________________________________
> Please visit https://lists.isc.org/mailman/listinfo/bind-users to
> unsubscribe from this list
>
> ISC funds the development of this software with paid support
> subscriptions. Contact us at https://www.isc.org/contact/ for more
> information.
>
>
> bind-users mailing list
> [hidden email]
> https://lists.isc.org/mailman/listinfo/bind-users
--
Michael De Roover <[hidden email]>

_______________________________________________
Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list

ISC funds the development of this software with paid support subscriptions. Contact us at https://www.isc.org/contact/ for more information.


bind-users mailing list
[hidden email]
https://lists.isc.org/mailman/listinfo/bind-users