Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 15 Dec 2000 16:13:44 -0500
From:      "Matthew Emmerton" <matt@gsicomp.on.ca>
To:        <peter@sysadmin-inc.com>, <freebsd-net@FreeBSD.ORG>
Subject:   Re: named in a sand box.
Message-ID:  <000701c066db$e8969eb0$1200a8c0@gsicomp.on.ca>
References:  <002d01c066f4$1ba7a980$46010a0a@sysadmininc.com>

next in thread | previous in thread | raw e-mail | index | archive | help
> I have a nomenclature ignorance when it comes to the term sandbox.
>
> When someone says, "named runs in a sandbox on my machine."
>
> Do they mean
>
> a) named runs under an unpriviliged user
> or
> b) named runs in a chrooted environment
> or
> c) both

At one point in time, "sandbox" meant a) as above.

However, with the advent of chroot and the security gains that it provides,
"sandbox" has been re-defined to mean b) in most cases.

Unfortunately, this means that some documentation causes confusion, such as
named-related sources you quoted.

--
Matthew Emmerton



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-net" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?000701c066db$e8969eb0$1200a8c0>