NetBSD Problem Report #39250

From www@NetBSD.org  Wed Jul 30 00:13:46 2008
Return-Path: <www@NetBSD.org>
Received: from mail.netbsd.org (mail.netbsd.org [204.152.190.11])
	by narn.NetBSD.org (Postfix) with ESMTP id 9CF6F63B91E
	for <gnats-bugs@gnats.netbsd.org>; Wed, 30 Jul 2008 00:13:46 +0000 (UTC)
Message-Id: <20080730001346.66FBD63B907@narn.NetBSD.org>
Date: Wed, 30 Jul 2008 00:13:46 +0000 (UTC)
From: uwe@NetBSD.org
Reply-To: uwe@NetBSD.org
To: gnats-bugs@NetBSD.org
Subject: /etc/rc.d/named:named_precmd() should add entries to /etc/mtree/special.local
X-Send-Pr-Version: www-1.0

>Number:         39250
>Category:       misc
>Synopsis:       /etc/rc.d/named:named_precmd() should add entries to /etc/mtree/special.local
>Confidential:   no
>Severity:       non-critical
>Priority:       low
>Responsible:    misc-bug-people
>State:          open
>Class:          sw-bug
>Submitter-Id:   net
>Arrival-Date:   Wed Jul 30 00:15:00 +0000 2008
>Originator:     Valeriy E. Ushakov
>Release:        NetBSD 4.0
>Organization:
>Environment:
>Description:
After named_precmd() does its "migration" job, daily security runs 
start complaining about:

Checking special files and directories.
etc/namedb:
        type (dir, link)
etc/named.conf:
        type (file, link)


If named_precmd() decides to migrate, it should also add overriding entries to /etc/mtree/special.local

>How-To-Repeat:
Set 

named=YES
named_chrootdir=/var/chroot/named

in rc.conf and start named with its rc.d script, watch it creating 
symlinks from /etc that point into $named_chrootdir.

Wait for daily cron job to run daily security checks or run them manually.

>Fix:

NetBSD Home
NetBSD PR Database Search

(Contact us) $NetBSD: query-full-pr,v 1.39 2013/11/01 18:47:49 spz Exp $
$NetBSD: gnats_config.sh,v 1.8 2006/05/07 09:23:38 tsutsui Exp $
Copyright © 1994-2007 The NetBSD Foundation, Inc. ALL RIGHTS RESERVED.