<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Starting process named as nobody in Operating System - HP-UX</title>
    <link>https://community.hpe.com/t5/operating-system-hp-ux/starting-process-named-as-nobody/m-p/2749047#M69710</link>
    <description>It's not a good idea.  Named has to be able to read a lot of files:  /etc/resolf.conf, /etc/nsswitch.conf, /etc/hosts, /etc/named.boot (or /etc/named.conf) and all your DNS files. &lt;BR /&gt;&lt;BR /&gt;You'll also run into directory permissions in /var/run.&lt;BR /&gt;&lt;BR /&gt;HTH&lt;BR /&gt;mark</description>
    <pubDate>Thu, 20 Jun 2002 15:05:36 GMT</pubDate>
    <dc:creator>Mark Greene_1</dc:creator>
    <dc:date>2002-06-20T15:05:36Z</dc:date>
    <item>
      <title>Starting process named as nobody</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/starting-process-named-as-nobody/m-p/2749046#M69709</link>
      <description>Hi,&lt;BR /&gt;I want to know if someone has never started the process named (DNS process) with the user NOBODY. And which are the benefit to do it ?&lt;BR /&gt;I've another little things: On my machine there are some NFS file system....&lt;BR /&gt;I'm runnig on HPUX 11.0&lt;BR /&gt;Thanks a lot&lt;BR /&gt;Fabrizio</description>
      <pubDate>Thu, 20 Jun 2002 14:52:36 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/starting-process-named-as-nobody/m-p/2749046#M69709</guid>
      <dc:creator>Fabrizio Alleva</dc:creator>
      <dc:date>2002-06-20T14:52:36Z</dc:date>
    </item>
    <item>
      <title>Re: Starting process named as nobody</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/starting-process-named-as-nobody/m-p/2749047#M69710</link>
      <description>It's not a good idea.  Named has to be able to read a lot of files:  /etc/resolf.conf, /etc/nsswitch.conf, /etc/hosts, /etc/named.boot (or /etc/named.conf) and all your DNS files. &lt;BR /&gt;&lt;BR /&gt;You'll also run into directory permissions in /var/run.&lt;BR /&gt;&lt;BR /&gt;HTH&lt;BR /&gt;mark</description>
      <pubDate>Thu, 20 Jun 2002 15:05:36 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/starting-process-named-as-nobody/m-p/2749047#M69710</guid>
      <dc:creator>Mark Greene_1</dc:creator>
      <dc:date>2002-06-20T15:05:36Z</dc:date>
    </item>
    <item>
      <title>Re: Starting process named as nobody</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/starting-process-named-as-nobody/m-p/2749048#M69711</link>
      <description>I try to run it as user named on linux system but start having trouble and then when I start using root I have no more trouble.&lt;BR /&gt;&lt;BR /&gt;Sachin</description>
      <pubDate>Thu, 20 Jun 2002 15:37:03 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/starting-process-named-as-nobody/m-p/2749048#M69711</guid>
      <dc:creator>Sachin Patel</dc:creator>
      <dc:date>2002-06-20T15:37:03Z</dc:date>
    </item>
    <item>
      <title>Re: Starting process named as nobody</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/starting-process-named-as-nobody/m-p/2749049#M69712</link>
      <description>Fabrizio,&lt;BR /&gt;&lt;BR /&gt;From what I've read it's good practice to Run BIND with minimum privileges: as a non-root user, with a tight umask.  Take a look at the following paper that describes a secure install on Solairs:&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://www.boran.com/security/sp/bind_hardening8.html" target="_blank"&gt;http://www.boran.com/security/sp/bind_hardening8.html&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;If you are trying to further secure your BIND installation, I would recommend the following:&lt;BR /&gt;&lt;BR /&gt;1.  Create a user and group account for BIND (named:named)&lt;BR /&gt;&lt;BR /&gt;2.  Don't allow the BIND account to use ftp (/etc/ftpusers)&lt;BR /&gt;&lt;BR /&gt;3.  Set up file permissions on all assoicated named files and directories.&lt;BR /&gt;&lt;BR /&gt;The paper further describes these steps.&lt;BR /&gt;&lt;BR /&gt;Hope that helps.&lt;BR /&gt;&lt;BR /&gt;-Mike</description>
      <pubDate>Thu, 20 Jun 2002 15:42:56 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/starting-process-named-as-nobody/m-p/2749049#M69712</guid>
      <dc:creator>Mike Hassell</dc:creator>
      <dc:date>2002-06-20T15:42:56Z</dc:date>
    </item>
    <item>
      <title>Re: Starting process named as nobody</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/starting-process-named-as-nobody/m-p/2749050#M69713</link>
      <description>Hello,&lt;BR /&gt;You are telling that you have some NFS file systems.&lt;BR /&gt;Might be someone has started some processes from that.&lt;BR /&gt;Whenever you access a remote file system you are assigned as user nobody.&lt;BR /&gt;&lt;BR /&gt;Thanks</description>
      <pubDate>Fri, 21 Jun 2002 02:50:36 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/starting-process-named-as-nobody/m-p/2749050#M69713</guid>
      <dc:creator>T G Manikandan</dc:creator>
      <dc:date>2002-06-21T02:50:36Z</dc:date>
    </item>
  </channel>
</rss>

