On Thu, Nov 23, 2006 at 05:25:12PM +0100, Wolfgang Hennerbichler wrote: > On 21.11.2006, at 03:38, Herbert Poetzl wrote: > > >>One more question... > >>Do I have to do something in order to enable 'masking' for bind9? > >> > >>Bind9 works without problems, but after some time it freezes > >>completely, whis is not very nice... > > > >nope, freezing is not nice, could you try to attach > >'strace -fF -p <bindpid>' once that happens, and look > >what bind9 is doing on your guest? > > Sorry, switched back to my stable vserver kernel for now and can't > try anymore.
> I'd just like to know if I need any special capability or flag for > bind to work with the latest dev-version. nope, is supposed to work out of the box ... > I do have CAP_NET_RAW in bcapabilities, and nproc in flags. nproc has been obsoleted for 3 years now, and doesn't do anything on 2.6 kernels, CAP_NET_RAW is not required for proper operation (instead it opens a security leak by allowing the guest to sniff and spoof traffic) best, Herbert > thx > wogri > > -- > www.vix.at // www.aco.net // www.sth.ac.at > [EMAIL PROTECTED] // WH844-RIPE > Vienna University Computer Center > Tel: +43 1 4277-14031 // Fax: -9140 > > > _______________________________________________ > Vserver mailing list > Vserver@list.linux-vserver.org > http://list.linux-vserver.org/mailman/listinfo/vserver _______________________________________________ Vserver mailing list Vserver@list.linux-vserver.org http://list.linux-vserver.org/mailman/listinfo/vserver