LinuxQuestions.org
Review your favorite Linux distribution.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Server
User Name
Password
Linux - Server This forum is for the discussion of Linux Software used in a server related context.

Notices


Reply
  Search this Thread
Old 04-04-2010, 02:58 PM   #1
debianfan
Member
 
Registered: Mar 2010
Posts: 54

Rep: Reputation: 15
RNDC Permissions Problem on Ubuntu Server


I am running Ubuntu server 9.10 and running into issues with the rndc.key in my Bind 9 configuration. In particular, I believe I have an RNDC permissions error that I am trying to figure out how to resolve safely.

Here are the details. After configuring my Bind 9 server and restarting the daemon, the following error message appeared:

Code:
 * Stopping domain name service... bind9
rndc: connect failed: 127.0.0.1#953: connection refused
   ...done.
 * Starting domain name service... bind9
   ...fail!
So I checked the /var/log/daemon.log messages to see what was going on, which showed it to be a permissions problem:

Code:
03-Apr-2010 21:08:56.880 loading configuration from '/etc/bind/named.conf'
03-Apr-2010 21:08:56.880 /etc/bind/named.conf:8: open: /etc/bind/rndc.key: permission denied
03-Apr-2010 21:08:56.880 loading configuration: permission denied
03-Apr-2010 21:08:56.880 exiting (due to fatal error)
I regenerated the key using this command, but the problems persisted regardless:

Code:
sudo rndc-confgen -r /dev/urandom -a
Does anyone have any ideas on how to straighten out this permissions issue and ensure it does not arise again. I think it is an apparmor issue but have no concrete idea on how to fix it. From all the flack I have seen about this on the ubuntu forums I think it may be a bug. I am just hoping there is a workaround. Thank you for any help you can provide.
 
Old 04-04-2010, 08:20 PM   #2
Dutch Master
Senior Member
 
Registered: Dec 2005
Posts: 1,686

Rep: Reputation: 124Reputation: 124
Is it possible to create an apparmour rule that allows bind to connect? (don't know any of those, TBH...)
 
Old 04-05-2010, 09:33 AM   #3
debianfan
Member
 
Registered: Mar 2010
Posts: 54

Original Poster
Rep: Reputation: 15
I took a look at the apparmor rules and it looks like it does have one for reading Bind configuration files:

Code:
/etc/bind/** r
Which makes it seem more unusual it can't read the Bind files. So it looks like we might have to find another avenue for troubleshooting. I appreciate the help.
 
Old 04-06-2010, 09:02 AM   #4
debianfan
Member
 
Registered: Mar 2010
Posts: 54

Original Poster
Rep: Reputation: 15
I just wanted to bump this again in case anyone has ideas. Thanks again.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
rndc works, but rndc stats doesnt havok1977 Linux - Networking 2 04-08-2010 03:18 PM
[SOLVED] Bind and rndc problems!! How do I remove rndc? TylerD75 Linux - Server 4 01-06-2010 08:40 AM
File permissions on an Ubuntu Server. algogeek Linux - Server 12 06-29-2009 03:11 AM
[SOLVED] Strange intermittent permissions problem on Ubuntu 8.04 server edition Plastic Freddie Linux - Server 1 11-17-2008 03:30 AM
Problem setting umask and default file permissions on ubuntu 7.04 server with xfs a2brute Linux - Server 1 05-22-2008 04:57 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Server

All times are GMT -5. The time now is 03:34 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration