On Thu, 26 Apr 2001, Colonel Panic wrote: > > I suggest this: make a /var/named/sec directory, place all secondary files > > there and make it writable by named. > > any harm in making > /var/named > owned by named not root? least privilege. named only needs to write to sec/ and run/, it shouldn't be able to overwrite named.conf and primary zones. -alex