How would you run named inside a chroot jail as user nobody and group nogroup?
A.
Add “user nobody; group nogroup; chroot /var/named/root” to named.conf
B.
named runs as nobody/nogroup by default, so just invoke it as “name –chroot /var/named/root”
C.
Use /usr/bin/chroot after running “chown nobody.nogroup named”
D.
Invoke named as “named -t /var/named/root -u nobody”
Explanation:
http://unixwiz.net/techtips/bind9-chroot.html
The group is taken automatically from the group of the specified user. nobody must be member of
nogroup.