The zone and reverse zone files permissions and security context should be (on Fedora):
Code:
-rw-r----- root named system_u:object_r:named_zone_t
and the etc files should be:
Code:
-rw-r--r-- root root system_u:object_r:named_conf_t localtime
-rw-r--r-- root named system_u:object_r:named_conf_t named.conf
-rw-r--r-- root named system_u:object_r:named_conf_t named.custom
-rw-r----- root named system_u:object_r:named_conf_t rndc.conf
-rw-r--r-- root named system_u:object_r:dnssec_t rndc.key