Chasecreek Systemhouse wrote:
On 1/13/06, Justin Willmert <justin@xxxxxxxxxx> wrote:/var/named/chroot/etc/named.conf (config file) /var/named/chroot/var/named/ (zone files dir)It should not be chrooted if SELinux is enabled.
Whyever not?
And SELinux is more secure than a chrooted name server.
And chrooted+SELinux is more secure still. Layers of defence and all that. Paul.