  Chroot-BIND HOWTO
  Scott Wunsch, scott at wunsch.org
  v1.5, 1 December 2001
  앐Y nakano at apm.seikei.ac.jp
  v1.5j1, 3 January 2002

  ̕ BIND 8 ̃l[T[o "chroot jail" ̓ŁA root 
  [UƂĎs悤ȃCXg[̂܂Bɂ
  ăZLeBA܂ZLeBjꂽƂeŏ
  ɂł܂BȂA̕ BIND 9 ɍXV܂B܂ BIND 8
  gĂĺA Chroot-BIND8 HOWTO ǂłB
  ______________________________________________________________________

  ڎ

  1. ͂߂
     1.1 What?
     1.2 Why?
     1.3 Where?
     1.4 How?
     1.5 Ƃ

  2. jail ̗p
     2.1 [U̍쐬
     2.2 fBNg\
     2.3 BIND ̃f[^zu
     2.4 VXẽT|[gt@C
     2.5 OL^
        2.5.1 zIȉ
        2.5.2 ʂ̉
     2.6 p[~bV

  3. sJsJ BIND VKɃRpCECXg[
     3.1 RpC

  4. BIND CXg[
     4.1 oCiCXg[
     4.2 init XNvgҏWB
     4.3 ݒύX

  5. WEGh
     5.1 BIND ̋N
     5.2 ȏ!

  6. t^ -  BIND AbvO[hɂ
  7. t^ - ӎ
  8. t^ - ̔zz|V[

  ______________________________________________________________________

  1.  ͂߂

  ̕ Chroot-BIND HOWTO łBŐVł̒uĂ}X^[TCg
   ``Where?''  ĂBǎ҂ BIND (the Berkeley Internet Name
  Domain) ̐ݒ@Ep@ɒmĂƂĘbi߂܂Bm
  ĺA܂ DNS HOWTO ǂނƗǂł傤B܂g UNIX nVX
  eɂRpCECXg[ɂẮAǎ҂͏KnĂ
  Ƃ܂B

  1.1.  What?

  ́̕ABIND ̃CXg[Ɏ邱Ƃ̂łAtIȃZL
  eB΍ɂĐ܂B܂ABIND  ``chroot jail'' ̓œ
  悤ݒ肷@ɂĐ܂BȂ킿ABIND ͕߂
  ꂽȃfBNgc[̊Oɂt@C邱ƂłȂ
  ̂łB܂ABIND  root [UŎs悤Ȑݒs
  B

  chroot ̔wɂĺAƂĂPłB BIND (邢͑̃vZ
  X)  chroot jail ̓ŎsƁÃvZX̓t@CVXe
  ̂ jail ̓邱ƂłȂȂ̂łBႦ΁A̕
  ́ABIND  /chroot/named fBNg chroot ԂŎs܂B
  BIND ɂƂẮÃfBNg̒g / ̂悤Ɍ̂łB
  fBNg̊Oɂ͈؃ANZXł܂BJVXe ftp Ń
  OCƂ̂ĺA炭ɂ chroot jail ɏo
  Ǝv܂B

  chroot ̏ BIND 9 ł͂ƊȒPɂȂ̂ŁA̕
  g邱ƂɂāA BIND ̃CXg[ɂAƈʓIȃR
  cȂǂ܂߂悤ɂ܂BłA̕ BIND Sɂ邽߂
  SȂKChł͂܂ (A܂)B̕
  ɏĂ邱Ƃsł́A܂l[T[oSɂł
  ł͂Ȃ̂ł!

  1.2.  Why?

  Ȃ BIND  chroot jail ̓œ삳Ɨǂ̂ł傤B
  ́AɈz BIND ̌găANZX𓾂ƂĂÃANZX
  ł͈͂ŏɐł邩łB BIND  root [Uœ
  삳̂RłB

  ͒ʏ팾ĂZLeB΍ (ŐVłgAANZX
  AȂ) ́A΁u܂vƂ݂ȂׂŁA񂱂ւ
  ̂ƍlĂ͂܂B

  ǎ҂ DNS ̃ZLeBɋȂA̐i𒲂ׂĂ݂̂
  ǂ܂B BIND  StackGuard
  <http://www.immunix.org/products.html#stackguard> Ƌɍ\z΁A
  ƈSコĂł傤Bg͊ȒPłBʂ
  gcc ƓłB܂ Dan Bernstein ̏ DNScache
  <http://cr.yp.to/dnscache.html> ́ABIND ̑ɗpłSȃ\
  tgEFAłBy: djbdns <http://cr.yp.to/djbdns.html> ɉ
  悤łz Dan  qmail ̒҂ł܂B

  1.3.  Where?

  ̍̕ŐVł́A Linux/Open Source Users of Regina, Sask. 
  web TCgł܂B <http://www.losurs.org/docs/howto/Chroot-
  BIND.html> łB

  ݂͂̓̕{łA앐Y nakano at apm.seikei.ac.jp 
  ǗĂ܂B <http://www.linux.or.jp/JF/JFdocs/Chroot-BIND-
  HOWTO.html> ł܂B

  BIND  the Internet Software Consortium <http://www.isc.org/> 
  <http://www.isc.org/bind.html> ł܂B̎̕M_
  ̍ŐVł 9.2.0 łB BIND 9 g悤ɂȂĂ炾ԂA
  ۂ̋ƖɎgĂl悤łBAێIȐĺA
   BIND 8 gDł悤łBǎ҂҂ɑȂ΁A
  chroot ̏ڍׂɂĂ Chroot-BIND8 HOWTO (ꏊɂ܂) ̕
  ǂłBłABIND 8 ̂ق chroot ɂ͂Ɩʓ|ł
  邱ƂYȂB

  Âo[W BIND ̑ɂ́Am̃ZLeBz[܂B
  KŐVłg悤ɁACĂ!

  1.4.  How?

  ͂̕Ag chroot  BIND ZbgAbvo
  Âď܂B̏ꍇ́A BIND  ( Linux fBXg
  r[V) pbP[W`ŃCXg[Ă܂B炭
  ҂̂قƂǂł傤Bł̂ŁAł͊ɃCXg[ς݂
  BIND ݒt@CړďCApbP[W͍폜āAV
  CXg[邱Ƃɂ܂Bł܂pbP[W͍폜Ȃł
  ˁB܂炢t@CKvɂȂ܂B

  ܂ BIND CXg[ĂȂlłA̕̕@𗘗p邱
  ͂ł܂BႢ́Ãt@CRs[Ă悤w
  ŁÃt@C[珑NKvAƂłB̍
  ɂ DNS HOWTO ɗł傤B

  1.5.  Ƃ

  ̋Lq͎̃VXeł͓삵܂Aǎ҂̂Ƃł̌ʂ͈
  Ȃ邩܂B 1 ̃Av[`ɉ߂Al̐ݒs
  ɂ͂낢ȕ@L蓾܂ (ʓIȃAv[`͂ɂȂ
  ł傤)B́A݂ōŏɓ삵̂ŁA
  ɏLɂ܂B

  ݂̌܂łɎ BIND ̌oł́A Linux T[oɂCXg[
  sĂ܂BA̐̑̕唼́A̎ނ UNIX ɂe
  ՂɓKpł͂łB̋CtႢɂẮAł邾Lq
  łB܂ÃfBXgr[V⑼̃vbgtH[
  gĂl炢wE󂯂Ă܂̂ŁAł邾
  ܂߂悤ɂ܂B

  Linux gĂĺAOɁAgĂ̂ 2.4 J[l
  ł邩ǂmFKv܂B -u XCb` ( root [Uœ
  삳) ɂ́A̐VJ[lKvłB

  2.  jail ̗p

  2.1.  [U̍쐬

  u͂߂Ɂvŏqׂ悤ɁA BIND  root Ŏŝ͂܂ǂ
  lł͂܂B]āA܂ŏ BIND p̃[U܂
  B̖ړIɁAnobody ̂悤Ȋ̈ʌ[ÚAĎgׂ
  ł͂܂BASuSE  Linux Mandrake ȂǁAŏ炱̂
  ̃[U ( named ƂO) pӂĂfBXgr[V
  ̂ŁȀꍇ͂]݂Ȃ炱̃[UpĂ\܂B

  āA[Uǉɂ́Â悤ȍs /etc/passwd ɉ܂B

       named:x:200:200:Nameserver:/chroot/named:/bin/false

  Ď̍s /etc/group ɉ܂B

       named:x:200:

   BIND p named Ƃ[UƃO[vł܂B UID  GID
  (̗ł͗Ƃ 200) Ag̃VXeőƏdȂĂȂ悤
  ɒӂ܂傤B̃[U̓OCKvȂ̂ŁAVF
  /bin/false ɂĂ܂B

  2.2.  fBNg\

  ɁAchroot jail ɎgpfBNg\ĂKv
  B BIND ̐̏ƂȂ킯łB̓t@CVXêǂ
  ł\܂Bɐ_oȐĺAƗ{[ (p[eBV
  ) ɒuƂv܂ˁBł /chroot/named g
  ܂B܂ȉ̂悤ȃfBNg\ĂB

       /chroot
         +-- named
              +-- dev
              +-- etc
              |    +-- namedb
              |         +-- slave
              +-- var
                   +-- run

  (Linux VXeȂǂ) GNU  mkdir gĂĺÂ悤ɂ
  ̃fBNg\܂B

       # mkdir -p /chroot/named
       # cd /chroot/named
       # mkdir -p dev etc/namedb/slave var/run

  2.3.  BIND ̃f[^zu

  ɒʏ̂ BIND CXg[łĂāA𗘗pĂ
  A named.conf t@Cƃ][t@C͂łB̃t@C
   chroot jail ̒Ɉړ (邢͈SɂȂRs[) āA BIND
  猩悤ɂĂKv܂B named.conf 
  /chroot/named/etc ցA][t@C /chroot/named/etc/namedb ֈړ
  ܂BႦ:

       # cp -p /etc/named.conf /chroot/named/etc/

       # cp -a /var/named/* /chroot/named/etc/namedb/

  BIND ͒ʏ namedb fBNgւ̏݌KvƂ܂B
  ZLeB邽߂ɁA͋ȂƂɂ܂傤Bg
   DNS ][X[uŃT[rXꍇ́A BIND ͂̃][
  t@CXVłȂ΂Ȃ܂BȂ킿̃t@Cɂ͕ʂ
  fBNgɕۑ悤ɂāA BIND ̏݃ANZX
  ɂ܂B

       # chown -R named:named /chroot/named/etc/namedb/slave

  ŁAX[u][͑S̃fBNgɈړ̂YȂ
  ƁB܂Aɉ named.conf ̕ύXKvɂȂ܂B

  BIND  /var/run fBNgւ݌KvƂ܂B pid t@
  CƓvɍ邩łB̃R}hł\ɂĂ
  ܂傤B

       # chown named:named /chroot/named/var/run

  2.4.  VXẽT|[gt@C

  BIND  chroot jail ł̎sn߂ƁA jail Õt@Cւ͈
  ؃ANZXłȂȂ܂BA̏dvȃt@Cɂ͎s
  ANZXłȂ΂Ȃ܂B BIND 8 ɔׂƂԏȂ
  łB

  BIND  jail ̓ɕKvƂt@ĈЂƂɁA̂
  A/dev/null ܂BŁÃfoCXm[h邽߂ɕKv
  R}h̓VXeɂĈقȂ邱Ƃ܂B /dev/MAKEDEV XNv
  g𒲂ׂĊmFĂBVXeɂĂ /dev/zero KvȂ
  ܂B BIND 9.2.0 [X\łł́A /dev/random KvƂ
  񍐂܂BقƂǂ Linux VXeł́Aȉ̃R}hg
  ܂B

       # mknod /chroot/named/dev/null c 1 3
       # mknod /chroot/named/dev/random c 1 8
       # chmod 666 /chroot/named/dev/{null,random}

  FreeBSD 4.3 ł͎̂悤ɂȂ܂B

       # mknod /chroot/named/dev/null c 2 2
       # mknod /chroot/named/dev/random c 2 3
       # chmod 666 /chroot/named/dev/{null,random}

  ɂ jail  /etc fBNgɕKvȃt@C܂B BIND
  ɐŃOL^ɂ́A /etc/localtime (VXeɂ
   /usr/lib/zoneinfo/localtime ܂) ɃRs[Kv
  ܂Bȉ̃R}h̖ʓ|Ă܂B

       # cp /etc/localtime /chroot/named/etc/

  2.5.  OL^

  {̎lƂ͈قȂABIND ̓OL^ǂɏƂ͂ł܂ :-)B
  ʏ BIND ̓OAVXẽMOf[ł syslogd oRŋL
  ^܂B̃^CṽOL^́Aȃ\Pbgł /dev/log ʂ
  ăOGg𑗐M邱Ƃōs܂B jail ̊Oɂ
  ܂ABIND ͎g܂Bł肪ƂɁA
  @͂݂܂B

  2.5.1.  zIȉ

  ̃W}ɑ΂闝zIȉ@ɂ́A OpenBSD œꂽ -a X
  Cb`T|[gArIVo[W syslogd KvłB
  syslogd(8)  man y[W`FbNāA̎gĂ̂ꂩǂ
  ĂB

  T|[gĂ΁Asyslogd Nۂ̃R}hC ``-a
  /chroot/named/dev/log'' ǉ邾 OK łB SysV-init ׂ
  gĂVXe (Linux fBXgr[V̂قƂǂ͂) 
  AN͒ʏ /etc/rc.d/init.d/syslog t@CłȂ܂BႦ΁A
   Red Hat Linux VXeł́A

       daemon syslogd -m 0

  ̍s

       daemon syslogd -m 0 -a /chroot/named/dev/log

  ƕύX܂B

  ʔƂ Red Hat 7.2 ł́AƂ Red Hat ͂̏Ɗ
  PɂĂ܂B݂ /etc/sysconfig/syslog Ƃt@CA
  ɂ syslogd ɗ]ɗ^p[^`ł̂łB

  Caldera OpenLinux VXeł ssd Ƃf[`gĂ
  A͐ݒ /etc/sysconfig/daemons/syslog ǂ݂܂B̒
  IvVsȉ̂悤ɏC邾łB

       OPTIONS_SYSLOGD="-m 0 -a /chroot/named/dev/log"

  l SuSE VXeł́ÃXCb` /etc/rc.config t@Cɒǉ
  ̂ǂłB

       SYSLOGD_PARAMS=""

  Ƃs

       SYSLOGD_PARAMS="-a /chroot/named/dev/log"

  Ƃ OK łB

  čŌ (ƂĂdv̏ł͂Ȃł) FreeBSD 4.3 ł́A
  rc.conf t@CҏWĎ̍sǉ΂悢łB

       syslogd_flags="-s -l /chroot/named/dev/log"

  -s ̓ZLeB̖肩^̂ŁAftHg̐ݒ̈ꕔ
  B -l ́Aʂ̃Om[huĂ郍[JȃpXłB

  y: Debian Ȃ /etc/init.d/syslogd 

       SYSLOGD=""

  Ƃs

       SYSLOGD="-a /chroot/named/dev/log"

  Ƃ܂Bz

  g̃VXeł̕ύX@킩A syslogd ċN邾
  Bkill čĂ (ǉp[^ƂƂ) NĂłA
  SysV-init XNvggĎ̂悤ɂ̂łǂł傤B

       # /etc/rc.d/init.d/syslog stop
       # /etc/rc.d/init.d/syslog start

  ċNłA/chroot/named/dev Ɉȉ̂悤 log Ƃut@C
  vłĂ͂łB

  srw-rw-rw-   1 root     root            0 Mar 13 20:58 log

  2.5.2.  ʂ̉

  Â syslogd gĂꍇ́AOɂ͕ʂ̕@Ȃ
  ΂Ȃ܂BႦ hoellogd ̂悤ȁAuvLVvƂē삷悤
  ݌vĂvO݂܂B chroot ꂽ BIND 烍
  OGg󂯎Aʏ /dev/log \Pbgɓn܂B

  邢́ABIND ݒ肵āAO syslog ɑ̂ł͂Ȃt@Cɏ
  ނ悤ɂł܂B̕@IԂȂABIND ̕ɂďڍ
  𒲂ׂĂB

  2.6.  p[~bV

  ܂ŏɁA/chroot fBNgŜւ̃ANZXA΂ root [
  Û݂ɌĂ܂܂傤BAl΂ł͂Ȃ
  傤Bɑ̃\tgEFÃc[ȉɃCXg[ĂāA
  ̕ύX̃\tgɂ͓K؂łȂ悤ȏꍇɂ͂łˁB

       # chown root /chroot
       # chmod 700 /chroot

   /chroot/named ւ̃ANZX́A named [Uɂ̂݌Ă܂
  vłB

       # chown named:named /chroot/named
       # chmod 700 /chroot/named

  ƌꍇ́A Linux VXeȂ ext2 t@CVXe
  t@CfBNg̑A chattr Ƃc[ immutable
  (s) ɂ邱Ƃł܂B

       # cd /chroot/named
       # chattr +i etc etc/localtime var

  l FreeBSD 4.3 ł immutable ɂȂA chflags 𒲂
  Ă݂܂傤BႦΎ̂悤ɂ΁A/chroot/named/etc fBNg
  ׂ̂Ă immutable ɂł܂B

       # chflags schg /chroot/named/etc/*(*).

   dev fBNgɂ{Ηǂ̂ł傤AcOȂ炱
   syslogd  dev/log \PbgȂȂĂ܂܂B
  jail ̓ɂ鑼̃t@C immutable rbg𗧂ĂĂ悢ł傤
  (Ⴆ΃vC}][t@CύXꂽȂꍇȂ)B

  3.  sJsJ BIND VKɃRpCECXg[

  3.1.  RpC

  chroot jail ŗp BIND 9 ̃RpĆA BIND 8 ̂Ƃ
  KȍƂƂȂł傤B̂ƂAȂ΂ȂȂƂ͓ɉ
  ȂAWI ./configure && make ŗǂ̂łB

   IPv6 T|[g BIND  Linux VXeō肽ꍇ
  (--enable-ipv6) ́AJ[l glibc ̃o[W킹Ȃ΂Ȃ
  ܂BJ[l 2.2 Ȃ glibc 2.1 KvłBJ[l 2.4 Ȃ
  glibc 2.2 KvłB BIND ͂̓_ɂĂ͔ɂ邳łB

  4.  BIND CXg[

  ł (Ⴆ RPM Ȃǂ) CXg[Ă BIND 
  ́AV̂CXg[Oɂ폜KvƎv
  B Red Hat VXeł bind  bind-util ̃pbP[WA bind-
  devel  caching-nameserver ȂǂA݂Ă폜Kv
  傤B

   init XNvg (Ȃ킿 /etc/rc.d/init.d/named) ꍇ
  ́ApbP[W̍폜̑OɁÃt@CRs[ĕۑĂق
  ł傤BƂƂŖɗ܂B

  BIND 8 ̂悤ȁAÂo[W BIND AbvO[hꍇ́A
  BIND ̃\[XpbP[W doc/misc/migration ɂAڍŝ߂̕
  ǂłقł傤BڍsɊւéA̕ł͈
  BPɌݓ삵Ă BIND 9 ̃CXg[u悤ƂĂ
  AƂ̂{ł̑zΏۂłB

  4.1.  oCiCXg[

  ͊ȒPł :-) make install sāA܂邾łB
  A{ɂꂾȂł!

  4.2.  init XNvgҏWB

  fBXgr[VɊ܂܂Ă init XNvg΁AVo
  CiK؂ȃXCb`ŋN悤ɁAύX̂łȒP
  傤BXCb`... (Ńh[...)

  o  -u named,  BIND [U root ł͂Ȃ named Ŏs܂B

  o  -t /chroot/named, ɂ BIND ͎g (ɗpӂ) jail
      chroot ܂B

  o  -c /etc/named.conf,  BIND ɁA jail ̓ɂݒt@C
     ̂肩܂B

  ȉ init XNvǵA҂ Red Hat 6.0 VXeŎgĂ
  ̂łB킩̂ƂAقƂǂ Red Hat ̂̂ƕς肠
  B킽 rndc R}h͂܂Ă܂񂪁AꂪȂR
  ͂Ȃ͂łB

  ______________________________________________________________________
  #!/bin/sh
  #
  # named           This shell script takes care of starting and stopping
  #                 named (BIND DNS server).
  #
  # chkconfig: 345 55 45
  # description: named (BIND) is a Domain Name Server (DNS) \
  # that is used to resolve host names to IP addresses.
  # probe: true

  # Source function library.
  . /etc/rc.d/init.d/functions

  # Source networking configuration.
  . /etc/sysconfig/network

  # Check that networking is up.
  [ ${NETWORKING} = "no" ] && exit 0

  [ -f /usr/local/sbin/named ] || exit 0

  [ -f /chroot/named/etc/named.conf ] || exit 0

  # See how we were called.
  case "$1" in
    start)
          # Start daemons.
          echo -n "Starting named: "
          daemon /usr/local/sbin/named -u named -t /chroot/named -c /etc/named.conf
          echo
          touch /var/lock/subsys/named
          ;;
    stop)
          # Stop daemons.
          echo -n "Shutting down named: "
          killproc named
          rm -f /var/lock/subsys/named
          echo
          ;;
    status)
          status named
          exit $?
          ;;
    restart)
          $0 stop
          $0 start
          exit $?
          ;;
    reload)
          /usr/local/sbin/rndc reload
          exit $?
          ;;
    probe)
          # named knows how to reload intelligently; we don't want linuxconf
          # to offer to restart every time
          /usr/local/sbin/rndc reload >/dev/null 2>&1 || echo start
          exit 0
          ;;

    *)
          echo "Usage: named {start|stop|status|restart|reload}"
          exit 1
  esac

  exit 0
  ______________________________________________________________________

  syslogd ł̏ꍇƓA݂ Red Hat 7.2 ł́Ảߒ͂Ɋ
  PɂȂĂ܂B /etc/sysconfig/named Ƃt@CA
  named ɗ^ǉp[^`ł܂B Red Hat 7.2 ł̃f
  tHg /etc/rc.d/init.d/named ł́ANO /etc/named.conf 
  邩`FbN܂B̃pX͕ύXȂ΂Ȃ܂B

  Caldera OpenLinux VXeł́A擪t߂Œ`ĂϐCA
  ȉ̂悤ɂ OK łB

       NAME=named
       DAEMON=/usr/local/sbin/$NAME
       OPTIONS="-t /chroot/named -u named -c /etc/named.conf"

   FreeBSD 4.3 ł́Arc.conf t@CҏWāA̍sǉ
  B

       named_enable="YES"
       named_program="chroot/named/bin/named"
       named_flags="-u named -t /chroot/named -c /etc/namedb/named.conf"

  4.3.  ݒύX

  named.conf ɂǉECsA낢ȃfBNg
  삷悤ɂKv܂BɁAȉ option ZNVɒ
   (邢͂łɂΏC) Ȃ΂Ȃ܂B

       directory "/etc/namedb";
       pid-file "/var/run/named.pid";
       statistics-file "/var/run/named.stats";

  ̃t@C named f[ǂނƂɂȂ̂ŁApX
  ׂ chroot jail ł̑ΈʒuɂȂ܂BM̎_ł́ABIND 9
  ͑Õo[WŃT|[gĂv_vt@C̑
  T|[gĂ܂B炭̓T|[gĂƎv܂B
  ҂̂ĝ̂̂悤ȃo[Włꍇ́A BIND 
  /var/run fBNgɏ悤ɁAGg𓯂悤ɒǉ
  Kvł傤B

  5.  WEGh

  5.1.  BIND ̋N

  łׂĂ̐ݒ肪I܂BVAS BIND sɈڂ
  鎞킯łB SysV ` init XNvgpĂȂA
  悤Ɏs邾łB

  # /etc/rc.d/init.d/named start

  sOɌÂo[W BIND s kill ̂YȂ
  ɁB

  5.2.  ȏ!

  ňSĖ邱Ƃł܂ ;-)

  6.  t^ -  BIND AbvO[hɂ

  āA BIND 9.1.2 ܂ chroot āA]݂̂ƂɃ`[
  ܂...  ABIND 9.1.3 [XAɂ
  ׂAƂ̕\Ă܂B̐Vo[WłA
  ܂ŏqׂĂ葱ŜJԂȂ΂ȂȂ̂ł傤?

  BۂɕKvȂ̂́AVo[W BIND RpCāA
  ̂ɏ㏑CXg[邾łB̌Âł kill 
  āABIND ċN邱ƁBȂƌÂo[Ŵ܂܎s
  Ă܂!

  7.  t^ - ӎ

   HOWTO ̍쐬̏ƂȂĂAȉ̕XɊӂ܂B

  o  Lonny Selinger <lonny at abyss.za.org> ́A HOWTO ̍ŏ̔ł
     ueXgvĂAKvȎ葱΂ĂȂƂM҂Ɋm
     MĂ܂B

  o  Chirik <chirik at CastleFur.COM>, Dwayne Litzenberger <dlitz at
     dlitz.net>, Phil Bambridge <phil.b at cableinet.co.uk>, Robert Cole
     <rcole at metrum-datatape.com>, Colin MacDonald <colinm at
     telus.net> قÅF񂪂̊̕ԈႢAwEĂ
     A܂ HOWOTO ǂ邽߂̗LvȃAhoCX
     ܂B

  o  Erik Wallin <erikw at sec.se>  Brian Cervenka <brian at
     zerobelow.org> ́Ajail ɋłɂ邽߂́ADꂽĂ𑗂
     Ă܂B

  o  Robert Dalton <support at accesswest.com> ́AR}hǉĂ
     ĂĂA܂ BIND 9.2.0 ł /dev/random KvƂȂ邱
     wEĂ܂B

  o  Eric McCormick <hostmaster at cybertime.net>  FreeBSD 4.3 ̏
     𑗂Ă܂B

  o  Tan Zheng Da <tzd at pobox.com> ́AƂXyɂĂA Red
     Hat 7.2 łȂꂽύX̏ڍׂĂ܂B

  čŌɁA Chroot-BIND HOWTO {ɖ|󂵂Ăꂽ Nakano Takeo
  <nakano at apm.seikei.ac.jp> Ɋӂ܂B̖|
  <http://www.linux.or.jp/JF/JFdocs/Chroot-BIND-HOWTO.html> ɂ܂B

  y: |ɂẮAxcωpƍSɗLvȃRg
  ܂Bz

  8.  t^ - ̔zz|V[

  Copyright (C) Scott Wunsch, 2000-2001.  This document may be
  distributed only subject to the terms set forth in the LDP licence at
  <http://metalab.unc.edu/LDP/COPYRIGHT.html>.

  This HOWTO is free documentation; you can redistribute it and/or
  modify it under the terms of the LDP licence.  It is distributed in
  the hope that it will be useful, but without any warranty; without
  even the impled warranty of merchantability or fitness for a
  particular purpose.  See the LDP licence for more details.

  y: D悳܂AQƂ̂߂ɖ|܂B

  Copyright (C) Scott Wunsch, 2000-2001.  ̕
  <http://metalab.unc.edu/LDP/COPYRIGHT.html> ɂ LDP CZXɏ]
  Δzzł܂B

   HOWTO ̓t[łB LDP CZX̉ōĔzzEς\
  B͗̕Lvł񂱂ƂĔzzĂ܂Aۏ؂͈؂
  ܂BÖق̂̂܂߁Apɖ𗧂ۏ؂܂񂵁A̗pr
  ɍv邩ǂ킩܂Bڍׂ LDP CZXĂ
  B

  Ȃ|ł LDP CZX̉ōĔzzEω\Ƃ܂B Copyright
  (C) NAKANO Takeo, 2001.z

