Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 05 Sep 2003 14:04:59 -0400
From:      Dwayne MacKinnon <Dwayne.MacKinnon@xwave.com>
To:        "Simon L. Nielsen" <simon@FreeBSD.org>
Cc:        Kris Kennaway <kris@obsecurity.org>
Subject:   Re: PUzzling sshd behaviour
Message-ID:  <3F58D04B.6050805@xwave.com>
In-Reply-To: <20030905171125.GA1356@FreeBSD.org>
References:  <3F589E94.1080508@xwave.com> <20030905154646.GA59881@rot13.obsecurity.org> <3F58B3F4.3020502@xwave.com> <20030905161030.GC22913@pun.isi.edu> <3F58B9D6.7040102@xwave.com> <20030905171125.GA1356@FreeBSD.org>

next in thread | previous in thread | raw e-mail | index | archive | help
Simon L. Nielsen wrote:

> Do you use Privilege Separation?  That can give interesting results with
> DNS due to chroot into /var/empty...  see the mailing lists archives.

Argh. This frustrates me. I did some searching on various mailing lists 
before, and when they talked about switching into /var/empty they were 
talking about the box abruptly attempting to make DNS lookups on the 
localhost.

That wasn't what I was seeing, so I thought it was something different. 
But I went looking again, and this time found my exact situation on 
freebsd,stable. And yes, it's the privilege separation / chroot issue.

My apologies for wasting time and bandwidth.

DMK



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?3F58D04B.6050805>