It's dumped into:

options {
  directory "/var/cache/bind";
};

Have you changed default directory?  I think it works out of the box
on my system.

It could also be apparmor.d/selinux issue.

Ondrej.

> Dumping the cache (rndc dumpdb) fails with permission denied because the 
> Debian config runs bind9 as used 'bind', but the directory rndc tries to 
> write the dump file into
> doesn't allow user 'bind' to write in the directory. Adding 'dump-directory 
> "/tmp/named_dump.db"' to the config fixes the problem.
>
> Bind's error message just says it can't write named_dump.db. It doesn't say 
> where it tried to write, and the location is hard to find (someone on the 
> users list found it
> for me), so tracking down the problem is very difficult...
>
> -- System Information:
> Debian Release: 5.0
>  APT prefers testing
>  APT policy: (500, 'testing')
> Architecture: amd64 (x86_64)
>
> Kernel: Linux 2.6.26-1-amd64 (SMP w/2 CPU cores)
> Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)
> Shell: /bin/sh linked to /bin/bash
>
> Versions of packages bind9 depends on:
> ii  adduser              3.110               add and remove users and groups
> ii  bind9utils           1:9.5.0.dfsg.P2-5.1 Utilities for BIND
> ii  debconf [debconf-2.0 1.5.24              Debian configuration management 
> sy
> ii  libbind9-40          1:9.5.0.dfsg.P2-5.1 BIND9 Shared Library used by BIND
> ii  libc6                2.7-18              GNU C Library: Shared libraries
> ii  libcap2              2.11-2              support for getting/setting 
> POSIX.
> ii  libdb4.6             4.6.21-11           Berkeley v4.6 Database Libraries 
> [
> ii  libdns43             1:9.5.0.dfsg.P2-5.1 DNS Shared Library used by BIND
> ii  libisc44             1:9.5.0.dfsg.P2-5.1 ISC Shared Library used by BIND
> ii  libisccc40           1:9.5.0.dfsg.P2-5.1 Command Channel Library used by 
> BI
> ii  libisccfg40          1:9.5.0.dfsg.P2-5.1 Config File Handling Library used
> ii  libkrb53             1.6.dfsg.4~beta1-5  MIT Kerberos runtime libraries
> ii  libldap-2.4-2        2.4.11-1            OpenLDAP libraries
> ii  liblwres40           1:9.5.0.dfsg.P2-5.1 Lightweight Resolver Library used
> ii  libssl0.9.8          0.9.8g-15           SSL shared libraries
> ii  libxml2              2.6.32.dfsg-5       GNOME XML library
> ii  lsb-base             3.2-20              Linux Standard Base 3.2 init 
> scrip
> ii  net-tools            1.60-22             The NET-3 networking toolkit
> ii  netbase              4.34                Basic TCP/IP networking system
>
> bind9 recommends no packages.
>
> Versions of packages bind9 suggests:
> pn  bind9-doc            <none>              (no description available)
> ii  dnsutils             1:9.5.0.dfsg.P2-5.1 Clients provided with BIND
> pn  resolvconf           <none>              (no description available)
> pn  ufw                  <none>              (no description available)
>
> -- debconf information:
>  bind9/different-configuration-file:
>  bind9/run-resolvconf: true
>  bind9/start-as-user: bind
>
>
>
>



-- 
Ondřej Surý <ond...@sury.org>



--
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to