Re: DNSSEC policy using wrong directory?
Ondřej Surý <[email protected]>
| Newsgroups | gmane.network.dns.bind9.user |
|---|---|
| Message-ID | <688F1B44-219A-4CAD-BD4B-A03C409569E3__33021.9503071689$1756025653$gmane$org@isc.org> |
https://bind9.readthedocs.io/en/stable/chapter6.html#the-journal-file -- Ondřej Surý — ISC (He/Him) My working hours and your working hours may be different. Please do not feel obligated to reply outside your normal working hours. > On 24. 8. 2025, at 3:54, Mike <[email protected]> wrote: > > I just set up `dnssec-policy default;` in my zones. Now I'm seeing error > messages like: > > general: error: /etc/bind/good-with-numbers.com.signed.jnl: create: permission denied > > Well, yeah, that's a read-only file system. > > options { > directory "/var/cache/bind"; > > is set, so that's the working directory, so it should be writing into there. > Instead, it seems to be choosing the directory where the zone file is: > > zone "good-with-numbers.com" { > file "/etc/bind/good-with-numbers.com"; > > Is there an override? > -- > Visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list > > ISC funds the development of this software with paid support subscriptions. Contact us at https://www.isc.org/contact/ for more information. > > > bind-users mailing list > [email protected] > https://lists.isc.org/mailman/listinfo/bind-users -- Visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list ISC funds the development of this software with paid support subscriptions. Contact us at https://www.isc.org/contact/ for more information. bind-users mailing list [email protected] https://lists.isc.org/mailman/listinfo/bind-users