[Bug 585121] [NEW] rndc.key permission denied

robs roberto.sebastiano at gmail.com
Mon May 24 20:54:27 BST 2010


Public bug reported:

Binary package hint: bind9

root at server:/etc# named -g
24-May-2010 21:49:45.797 starting BIND 9.7.0-P1 -g
24-May-2010 21:49:45.797 built with '--prefix=/usr' '--mandir=/usr/share/man' '--infodir=/usr/share/info' '--sysconfdir=/etc/bind' '--localstatedir=/var' '--enable-threads' '--enable-largefile' '--with-libtool' '--enable-shared' '--enable-static' '--with-openssl=/usr' '--with-gssapi=/usr' '--with-gnu-ld' '--with-dlz-postgres=no' '--with-dlz-mysql=no' '--with-dlz-bdb=yes' '--with-dlz-filesystem=yes' '--with-dlz-ldap=yes' '--with-dlz-stub=yes' '--with-geoip=/usr' '--enable-ipv6' 'CFLAGS=-fno-strict-aliasing -DDIG_SIGCHASE -O2' 'LDFLAGS=-Wl,-Bsymbolic-functions' 'CPPFLAGS='
[SNIP] ....
24-May-2010 21:49:45.831 none:0: open: /etc/bind/rndc.key: permission denied
24-May-2010 21:49:45.831 couldn't add command channel 127.0.0.1#953: permission denied
24-May-2010 21:49:45.831 none:0: open: /etc/bind/rndc.key: permission denied
24-May-2010 21:49:45.831 couldn't add command channel ::1#953: permission denied

This is currently in Lucid.
Fix is simple:
in /etc/bind/named.conf add line:
include "/etc/bind/rndc.key";

change mode to root.bind 640 /etc/bind/rndc.key

See also: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=386791

Thank you,
Roberto Sebastiano

** Affects: bind9 (Ubuntu)
     Importance: Undecided
         Status: New

-- 
rndc.key permission denied
https://bugs.launchpad.net/bugs/585121
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to bind9 in ubuntu.



More information about the Ubuntu-server-bugs mailing list