DNS how to

Adam Tkac atkac at redhat.com
Mon Aug 6 07:43:42 UTC 2007


Stephen John Smoogen napsal(a):
>
> For a small zone, you can also use the system-config-bind tool that RH ships.
>
> yum install bind bind-chroot bind-libs bind-utils system-config-bind
>   
I see you're using chroot-ed BIND. I recommend use SELinux on systems 
whose have it included (like RH systems). It's more secure than chroot. 
(Correctly configured SELinux without chroot is sufficient, 
chroot+SELinux for "multilevel" security)

Adam
> For a large set of zones, I can highly recommend Men and Mice's
> product.. but if that is out of line from the list my apologies. [ I
> do not work for M&M; I use their product for a university and find it
> exceedingly useful for people who do not have the time to write their
> own management routines.]
>
> http://checklists.nist.gov/repository/1063.html
>
> Covers another checklist.
>
>
>   



More information about the bind-users mailing list