From owner-freebsd-jail@FreeBSD.ORG Mon May 2 11:07:01 2011 Return-Path: Delivered-To: freebsd-jail@FreeBSD.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id E283B106566B for ; Mon, 2 May 2011 11:07:01 +0000 (UTC) (envelope-from owner-bugmaster@FreeBSD.org) Received: from freefall.freebsd.org (freefall.freebsd.org [IPv6:2001:4f8:fff6::28]) by mx1.freebsd.org (Postfix) with ESMTP id D11628FC17 for ; Mon, 2 May 2011 11:07:01 +0000 (UTC) Received: from freefall.freebsd.org (localhost [127.0.0.1]) by freefall.freebsd.org (8.14.4/8.14.4) with ESMTP id p42B71dd064129 for ; Mon, 2 May 2011 11:07:01 GMT (envelope-from owner-bugmaster@FreeBSD.org) Received: (from gnats@localhost) by freefall.freebsd.org (8.14.4/8.14.4/Submit) id p42B710B064127 for freebsd-jail@FreeBSD.org; Mon, 2 May 2011 11:07:01 GMT (envelope-from owner-bugmaster@FreeBSD.org) Date: Mon, 2 May 2011 11:07:01 GMT Message-Id: <201105021107.p42B710B064127@freefall.freebsd.org> X-Authentication-Warning: freefall.freebsd.org: gnats set sender to owner-bugmaster@FreeBSD.org using -f From: FreeBSD bugmaster To: freebsd-jail@FreeBSD.org Cc: Subject: Current problem reports assigned to freebsd-jail@FreeBSD.org X-BeenThere: freebsd-jail@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Discussion about FreeBSD jail\(8\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 02 May 2011 11:07:02 -0000 Note: to view an individual PR, use: http://www.freebsd.org/cgi/query-pr.cgi?pr=(number). The following is a listing of current problems submitted by FreeBSD users. These represent problem reports covering all versions including experimental development code and obsolete releases. S Tracker Resp. Description -------------------------------------------------------------------------------- o kern/156584 jail [jail] ipv4 packet is not forward to v4-mapped binding o kern/156111 jail [jail] procstat -b not supported in jail o misc/155765 jail [patch] `buildworld' does not honors WITHOUT_JAIL o conf/154246 jail [jail] [patch] Bad symlink created if devfs mount poin o conf/150599 jail [patch] /etc/rc.d/jail does not set jailname. o conf/149050 jail [jail] rcorder ``nojail'' too coarse for Jail+VNET s conf/142972 jail [jail] [patch] Support JAILv2 and vnet in rc.d/jail o conf/141317 jail [patch] uncorrect jail stop in /etc/rc.d/jail o kern/133265 jail [jail] is there a solution how to run nfs client in ja o kern/119842 jail [smbfs] [jail] "Bad address" with smbfs inside a jail o bin/99566 jail [jail] [patch] fstat(1) according to specified jid o bin/32828 jail [jail] w(1) incorrectly handles stale utmp slots with 12 problems total. From owner-freebsd-jail@FreeBSD.ORG Wed May 4 09:27:43 2011 Return-Path: Delivered-To: freebsd-jail@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 802D6106564A for ; Wed, 4 May 2011 09:27:43 +0000 (UTC) (envelope-from uffe@uffe.org) Received: from mail.starion.dk (mx0.starion.dk [93.162.70.34]) by mx1.freebsd.org (Postfix) with SMTP id BAE2F8FC12 for ; Wed, 4 May 2011 09:27:42 +0000 (UTC) Received: (qmail 19315 invoked by uid 1004); 3 May 2011 21:17:11 -0000 FCC: imap://uffe%40starion.info@mail.starion.dk/Sent X-Identity-Key: id4 Message-ID: <4DC0709A.4040705@uffe.org> Date: Tue, 03 May 2011 23:16:10 +0200 From: Uffe Jakobsen X-Mozilla-Draft-Info: internal/draft; vcard=0; receipt=0; DSN=0; uuencode=0 User-Agent: Mozilla/5.0 (X11; U; Linux x86_64; en-US; rv:1.9.2.14) Gecko/20110223 Lightning/1.0b2 Mnenhy/0.8.3 Thunderbird/3.1.8 MIME-Version: 1.0 To: freebsd-jail@freebsd.org References: <20110208173032.38e0a073@adolfputzen> In-Reply-To: <20110208173032.38e0a073@adolfputzen> Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit Subject: Re: Getting hostname from jail_getid(3) or ezjail(5) X-BeenThere: freebsd-jail@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Discussion about FreeBSD jail\(8\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 04 May 2011 09:27:43 -0000 On 2011-02-08 17:30, Julian Fagir wrote: > Hi, > > I wanted to write a tool starting a shell in a jail. I know, jexec > accomplishes this too, but I want to compile the name of the jail into the > program, no commandline-parameters (more about this topic will be posted on > this list soon). > Thus, I used libjail, more specific jail_getid(3) to get the id of the jail > and start a shell in it. > The name of the jail is 'jail2', it was created by ezjail(5), and the > important lines in /usr/local/etc/ezjail/jail2 are: > export jail_jail2_hostname="zweihorn2" > export jail_jail2_ip="IPADDRESS" > export jail_jail22_rootdir="/usr/jails/jail2" > > Anyway, when starting the jail, `jls` bravely shows as the hostname of the > jail 'jail2'. > > But when I compile this program (with `cc -ljail jexec_sh.c -o jexec_sh`) > > #include > #include > #include > > #include > #include > #include > #include > > #define JAIL_NAME "jail2" > > int > main(int argc, char* argv[]) { > char *jname; > int jid; > > jid = jail_getid(JAIL_NAME); > printf("Jail 2 is running: %d\n", jid); > jname = jail_getname(jid); > printf("Jailname: '%s' to jid %d\n", jname, jid); > return(0); > } > > jail_getid returns -1; meaning the jailname does not exist. When setting > JAIL_NAME to "1" (or "2", etc., according to the jid, if I restarted it), the > jid is correctly returned: > zweihorn1# /home/julian/jexec_sh > Jail 1 is running: 1 > Jailname: '1' to jid 1 > > Am i missing something? jail_getid/jail_getname should return exactly the > output I expected?! ezjail must be setting the name right as jls returns the > correct name. jls does nearly the same, though requesting directly the params > without libjail, but libjail does that internally, too. > > > Regards, Julian jail_name and jail_hostname are not the same thing - jls without options does not display jail_name only hostname - try to look at the output of "jls -v" This (pending) patch enabled setting of jail_name from rc.d/rc.conf framework http://www.freebsd.org/cgi/query-pr.cgi?pr=conf/150599 /Uffe From owner-freebsd-jail@FreeBSD.ORG Wed May 4 09:27:43 2011 Return-Path: Delivered-To: freebsd-jail@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 8315A106566C for ; Wed, 4 May 2011 09:27:43 +0000 (UTC) (envelope-from uffe@uffe.org) Received: from mail.starion.dk (mx0.starion.dk [93.162.70.34]) by mx1.freebsd.org (Postfix) with SMTP id BADEE8FC0C for ; Wed, 4 May 2011 09:27:42 +0000 (UTC) Received: (qmail 19063 invoked by uid 1004); 3 May 2011 21:08:08 -0000 FCC: imap://uffe%40starion.info@mail.starion.dk/Sent X-Identity-Key: id4 Message-ID: <4DC06E87.3030109@uffe.org> Date: Tue, 03 May 2011 23:07:19 +0200 From: Uffe Jakobsen X-Mozilla-Draft-Info: internal/draft; vcard=0; receipt=0; DSN=0; uuencode=0 User-Agent: Mozilla/5.0 (X11; U; Linux x86_64; en-US; rv:1.9.2.14) Gecko/20110223 Lightning/1.0b2 Mnenhy/0.8.3 Thunderbird/3.1.8 MIME-Version: 1.0 To: freebsd-jail@freebsd.org References: <20110326190947.19ff58f9@r500.local> In-Reply-To: <20110326190947.19ff58f9@r500.local> Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit Cc: Subject: Re: jexec by jname X-BeenThere: freebsd-jail@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Discussion about FreeBSD jail\(8\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 04 May 2011 09:27:43 -0000 On 2011-03-26 19:09, Fabian Keil wrote: > Subbsd wrote: > >> I see wrong information at http://wiki.freebsd.org/Jails >> "jexec - selection by jail name, 2008-05-26 commited to 8-CURRENT" >> >> I do not see something like "jexec -n" in RELENG_8 or >> CURRENT. This is fake ;) ? > > Quoting jexec(8): > > | DESCRIPTION > | The jexec utility executes command inside the jail identified by its jid > | or name. > > The -n option is still there, but silently ignored. > > Note, however, that the jail name jexec(8) is talking > about is not the same as the host name. > > By default the jail id is used as jail name: > > fk@r500 ~ $jls -n name jid > name=1 jid=1 > name=2 jid=2 > name=3 jid=3 > > So while jexec allows you to use the jail "name", it seems > to lack the "accept hostname or ip-number" feature mentioned > in the wiki, unless a non default jail name is used. > > Fabian FYI: I've submitted a patch that would enable configurable jail_names from the (rc.d) rc.conf But it is still pending: http://www.freebsd.org/cgi/query-pr.cgi?pr=conf/150599 /Uffe From owner-freebsd-jail@FreeBSD.ORG Wed May 4 23:24:13 2011 Return-Path: Delivered-To: freebsd-jail@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 150E81065678 for ; Wed, 4 May 2011 23:24:13 +0000 (UTC) (envelope-from mh.unet@gmail.com) Received: from mail-px0-f176.google.com (mail-px0-f176.google.com [209.85.212.176]) by mx1.freebsd.org (Postfix) with ESMTP id DDF358FC12 for ; Wed, 4 May 2011 23:24:12 +0000 (UTC) Received: by pxi11 with SMTP id 11so1220124pxi.7 for ; Wed, 04 May 2011 16:24:12 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=domainkey-signature:mime-version:date:message-id:subject:from:to :content-type; bh=GaasjPYP890jNOdnyhzpFnTcHXfXA+T/zY4WiRQf0Rk=; b=NEk5mEQMAsGkYZ7WDAdcPljdrazHPoKx8eMn4bnTyDwyclZK9/dt+EDX9CrKB6je9X L7t0NzAS378IFBvpjeWVwKOkEJSHSX1eBaEBLXHDVY4EdodoOIh6koEf94c+Pc/mDMGS wPpMkq57nDpQ7vRPigJAqbrWMdOJoXGaEwKj8= DomainKey-Signature: a=rsa-sha1; c=nofws; d=gmail.com; s=gamma; h=mime-version:date:message-id:subject:from:to:content-type; b=REtSelBmM+beBCa/M5jNr5aUTvruwf3yPntvo0pabeeB7ZXjIUVY7fDLkYkvbluAgy +XJtnKrCM1sfmPydch7z3H0J8tOsZ4pYOzf/IYHUkGZhzmiL+KgNBU2kur1qpovbDXTL J3oFUBjV5H2R+Tn8ivVXBqGD+LdUcour3ZmD4= MIME-Version: 1.0 Received: by 10.143.27.13 with SMTP id e13mr866816wfj.336.1304551451150; Wed, 04 May 2011 16:24:11 -0700 (PDT) Received: by 10.143.33.3 with HTTP; Wed, 4 May 2011 16:24:11 -0700 (PDT) Date: Wed, 4 May 2011 16:24:11 -0700 Message-ID: From: Mickey Harvey To: freebsd-jail@freebsd.org Content-Type: text/plain; charset=ISO-8859-1 X-Content-Filtered-By: Mailman/MimeDel 2.1.5 Subject: Jail starts but doesn't start X-BeenThere: freebsd-jail@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Discussion about FreeBSD jail\(8\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 04 May 2011 23:24:13 -0000 Hosts /etc/rc.conf 1. ifconfig_bge0="inet 192.168.224.11 netmask 255.255.255.0" 2. defaultrouter="192.168.224.1" 3. sshd_enable="YES" 4. 5. linux_enable="YES" 6. zfs_enable="YES" 7. jail_enable="YES" 8. jail_list="www0 dns0 smarty0 centos" 9. 10. ifconfig_bge0_alias0="inet 192.168.224.12 netmask 255.255.255.255" 11. jail_www0_rootdir="/tank/jails/www0" 12. jail_www0_hostname="www0" 13. jail_www0_ip="192.168.224.12" 14. jail_www0_devfs_enable="YES" 15. jail_www0_exec_stop="/etc/rc.shutdown" 16. 17. #JAIL READY TO USE, JUST NEEDS APPROPRIATE FSTAB ENTRIES 18. #ENTRIES ARE IN LOADER.CONF 19. #TRIED TO BOOT WITH REQUIRED FSTAB BUT IT BROKE SO I REVERTED 20. #5/3/11 MH 21. #ifconfig_bge0_alias1="inet 192.168.224.13 netmask 255.255.255.255" 22. #jail_deb0_rootdir="/tank/jails/deb0" 23. #jail_deb0_hostname="deb0" 24. #jail_deb0_ip="192.168.224.13" 25. #jail_deb0_devfs_enable="YES" 26. #jail_deb0_exec_start="/etc/init.d/rc 3" 27. #jail_deb0_exec_stop="/etc/init.d/rc 0" 28. #jail_deb0_flags="-l -u root" 29. 30. ifconfig_bge0_alias1="inet 192.168.224.14 netmask 255.255.255.255" 31. jail_dns0_rootdir="/tank/jails/dns0" 32. jail_dns0_hostname="dns0" 33. jail_dns0_ip="192.168.224.14" 34. jail_dns0_devfs_enable="YES" 35. jail_dns0_exec_stop="/etc/rc.shutdown" 36. 37. ifconfig_bge0_alias2="inet 192.168.224.15 netmask 255.255.255.255" 38. jail_smarty0_rootdir="/tank/jails/smarty0" 39. jail_smarty0_hostname="smarty0" 40. jail_smarty0_ip="192.168.224.15" 41. jail_smarty0_devfs_enable="YES" 42. jail_smarty0_exec_stop="/etc/rc.shutdown" 43. 44. ifconfig_bge0_alias3="inet 192.168.224.16 netmask 255.255.255.255" 45. jail_centos_rootdir="/tank/jails/centos" 46. jail_centos_hostname="centos" 47. jail_centos_ip="192.168.224.16" 48. jail_centos_devfs_enable="YES" Result of jls after /etc/rc.d/jail start centos (notice there's no entry for centos) JID IP Address Hostname Path 1 192.168.224.12 www0 /tank/jails/www0 2 192.168.224.14 dns0 /tank/jails/dns0 3 192.168.224.15 smarty0 /tank/jails/smarty0 No error messages when starting or stopping centos jail. /var/run contains jail_centos.id Alias exists on bge0. So I tried "jexec 4 /bin/bash" figuring jls just isn't showing the centos jail for some reason but: jexec: jail_attach(4): Invalid argument Anybody have any idea about what might be happening here? From owner-freebsd-jail@FreeBSD.ORG Wed May 4 23:35:07 2011 Return-Path: Delivered-To: freebsd-jail@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id EFD5E1065675 for ; Wed, 4 May 2011 23:35:07 +0000 (UTC) (envelope-from michael.scheidell@secnap.com) Received: from mx1.secnap.com.ionspam.net (mx1.secnap.com.ionspam.net [204.89.241.253]) by mx1.freebsd.org (Postfix) with ESMTP id ACD988FC08 for ; Wed, 4 May 2011 23:35:07 +0000 (UTC) Received: from mx1.secnap.com.ionspam.net (mx1.secnap.com.ionspam.net [10.70.1.253]) by mx1.secnap.com.ionspam.net (Postfix) with ESMTP id 28A572B7CD5; Wed, 4 May 2011 19:35:07 -0400 (EDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=secnap.com; h= mime-version:content-transfer-encoding:content-id:content-type :content-type:content-language:accept-language:in-reply-to :references:message-id:date:date:subject:subject:from:from; s= dkim; t=1304552105; x=1306366505; bh=xmAMPYMu7a0mCOEijjAKak3vvCZ YiW4waY0ZuMXDXJ8=; b=dn9TO0EWgCJXl0hYSw22idnVNifbrWJQvMa1ZodDotl tyY75pToXYdXX5rfnf69zi3OImB6phimWq9TOiPmzQPjs4+aEJugnppMKOqZ0VzQ oanW2Jk4Fw/EQalS4bjbvKb7+22dNK6rCy02X0MxOSfzy5bGjx6/998/ncWjpKB0 = X-Amavis-Modified: Mail body modified (using disclaimer) - mx1.secnap.com.ionspam.net X-Virus-Scanned: SpammerTrap(r) VPS-1500 2.14 at mx1.secnap.com.ionspam.net Received: from USBCTDC001.secnap.com (usbctdc001.secnap.com [10.70.1.1]) (using TLSv1 with cipher AES128-SHA (128/128 bits)) (No client certificate requested) by mx1.secnap.com.ionspam.net (Postfix) with ESMTPS id EE3312B7CD3; Wed, 4 May 2011 19:35:05 -0400 (EDT) Received: from USBCTDC001.secnap.com ([10.70.1.1]) by USBCTDC001 ([10.70.1.1]) with mapi; Wed, 4 May 2011 19:35:05 -0400 From: Michael Scheidell To: Mickey Harvey , "freebsd-jail@freebsd.org" Thread-Topic: Jail starts but doesn't start Thread-Index: AcwKs+VevS93RG4I4U20rq24F1qh4A== Date: Wed, 4 May 2011 23:35:19 +0000 Message-ID: <5e0d97d4-5461-484d-9561-46b96b0470a3@blur> References: <53538995-8ae5-4f0b-acfd-4f898578c887@blur> In-Reply-To: <53538995-8ae5-4f0b-acfd-4f898578c887@blur> Accept-Language: en-US Content-Language: en-US X-MS-Has-Attach: X-MS-TNEF-Correlator: Content-Type: text/plain; charset="utf-8" Content-ID: <63a8d0a7-9747-4a09-be37-c4b4aad1b766> Content-Transfer-Encoding: base64 MIME-Version: 1.0 Cc: Subject: Re: Jail starts but doesn't start X-BeenThere: freebsd-jail@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Discussion about FreeBSD jail\(8\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 04 May 2011 23:35:08 -0000 VHJ5IHNoIGZpcnN0LiAgQmFzaCBtaWdodCBub3QgYmUgaW5zdGFsbGVkIGluIGphaWwuDQoNCi0t DQpNaWNoYWVsIFNjaGVpZGVsbA0KQ1RPIFNFQ05BUCBOZXR3b3JrIFNlY3VyaXR5DQo1NjEtOTk5 LTUwMDA8dGVsOjU2MTk5OTUwMDA+DQoNCg0KLS0tLS1PcmlnaW5hbCBtZXNzYWdlLS0tLS0NCkZy b206IE1pY2tleSBIYXJ2ZXkgPG1oLnVuZXRAZ21haWwuY29tPg0KVG86ICJmcmVlYnNkLWphaWxA ZnJlZWJzZC5vcmciIDxmcmVlYnNkLWphaWxAZnJlZWJzZC5vcmc+DQpTZW50OiBXZWQsIE1heSA0 LCAyMDExIDIzOjI0OjU1IEdNVCswMDowMA0KU3ViamVjdDogSmFpbCBzdGFydHMgYnV0IGRvZXNu J3Qgc3RhcnQNCg0KSG9zdHMgL2V0Yy9yYy5jb25mDQoNCiAgIDEuIGlmY29uZmlnX2JnZTA9Imlu ZXQgMTkyLjE2OC4yMjQuMTEgbmV0bWFzayAyNTUuMjU1LjI1NS4wIg0KICAgMi4gZGVmYXVsdHJv dXRlcj0iMTkyLjE2OC4yMjQuMSINCiAgIDMuIHNzaGRfZW5hYmxlPSJZRVMiDQogICA0Lg0KICAg NS4gbGludXhfZW5hYmxlPSJZRVMiDQogICA2LiB6ZnNfZW5hYmxlPSJZRVMiDQogICA3LiBqYWls X2VuYWJsZT0iWUVTIg0KICAgOC4gamFpbF9saXN0PSJ3d3cwIGRuczAgc21hcnR5MCBjZW50b3Mi DQogICA5Lg0KICAgMTAuIGlmY29uZmlnX2JnZTBfYWxpYXMwPSJpbmV0IDE5Mi4xNjguMjI0LjEy IG5ldG1hc2sgMjU1LjI1NS4yNTUuMjU1Ig0KICAgMTEuIGphaWxfd3d3MF9yb290ZGlyPSIvdGFu ay9qYWlscy93d3cwIg0KICAgMTIuIGphaWxfd3d3MF9ob3N0bmFtZT0id3d3MCINCiAgIDEzLiBq YWlsX3d3dzBfaXA9IjE5Mi4xNjguMjI0LjEyIg0KICAgMTQuIGphaWxfd3d3MF9kZXZmc19lbmFi bGU9IllFUyINCiAgIDE1LiBqYWlsX3d3dzBfZXhlY19zdG9wPSIvZXRjL3JjLnNodXRkb3duIg0K ICAgMTYuDQogICAxNy4gI0pBSUwgUkVBRFkgVE8gVVNFLCBKVVNUIE5FRURTIEFQUFJPUFJJQVRF IEZTVEFCIEVOVFJJRVMNCiAgIDE4LiAjRU5UUklFUyBBUkUgSU4gTE9BREVSLkNPTkYNCiAgIDE5 LiAjVFJJRUQgVE8gQk9PVCBXSVRIIFJFUVVJUkVEIEZTVEFCIEJVVCBJVCBCUk9LRSBTTyBJIFJF VkVSVEVEDQogICAyMC4gIzUvMy8xMSBNSA0KICAgMjEuICNpZmNvbmZpZ19iZ2UwX2FsaWFzMT0i aW5ldCAxOTIuMTY4LjIyNC4xMyBuZXRtYXNrIDI1NS4yNTUuMjU1LjI1NSINCiAgIDIyLiAjamFp bF9kZWIwX3Jvb3RkaXI9Ii90YW5rL2phaWxzL2RlYjAiDQogICAyMy4gI2phaWxfZGViMF9ob3N0 bmFtZT0iZGViMCINCiAgIDI0LiAjamFpbF9kZWIwX2lwPSIxOTIuMTY4LjIyNC4xMyINCiAgIDI1 LiAjamFpbF9kZWIwX2RldmZzX2VuYWJsZT0iWUVTIg0KICAgMjYuICNqYWlsX2RlYjBfZXhlY19z dGFydD0iL2V0Yy9pbml0LmQvcmMgMyINCiAgIDI3LiAjamFpbF9kZWIwX2V4ZWNfc3RvcD0iL2V0 Yy9pbml0LmQvcmMgMCINCiAgIDI4LiAjamFpbF9kZWIwX2ZsYWdzPSItbCAtdSByb290Ig0KICAg MjkuDQogICAzMC4gaWZjb25maWdfYmdlMF9hbGlhczE9ImluZXQgMTkyLjE2OC4yMjQuMTQgbmV0 bWFzayAyNTUuMjU1LjI1NS4yNTUiDQogICAzMS4gamFpbF9kbnMwX3Jvb3RkaXI9Ii90YW5rL2ph aWxzL2RuczAiDQogICAzMi4gamFpbF9kbnMwX2hvc3RuYW1lPSJkbnMwIg0KICAgMzMuIGphaWxf ZG5zMF9pcD0iMTkyLjE2OC4yMjQuMTQiDQogICAzNC4gamFpbF9kbnMwX2RldmZzX2VuYWJsZT0i WUVTIg0KICAgMzUuIGphaWxfZG5zMF9leGVjX3N0b3A9Ii9ldGMvcmMuc2h1dGRvd24iDQogICAz Ni4NCiAgIDM3LiBpZmNvbmZpZ19iZ2UwX2FsaWFzMj0iaW5ldCAxOTIuMTY4LjIyNC4xNSBuZXRt YXNrIDI1NS4yNTUuMjU1LjI1NSINCiAgIDM4LiBqYWlsX3NtYXJ0eTBfcm9vdGRpcj0iL3Rhbmsv amFpbHMvc21hcnR5MCINCiAgIDM5LiBqYWlsX3NtYXJ0eTBfaG9zdG5hbWU9InNtYXJ0eTAiDQog ICA0MC4gamFpbF9zbWFydHkwX2lwPSIxOTIuMTY4LjIyNC4xNSINCiAgIDQxLiBqYWlsX3NtYXJ0 eTBfZGV2ZnNfZW5hYmxlPSJZRVMiDQogICA0Mi4gamFpbF9zbWFydHkwX2V4ZWNfc3RvcD0iL2V0 Yy9yYy5zaHV0ZG93biINCiAgIDQzLg0KICAgNDQuIGlmY29uZmlnX2JnZTBfYWxpYXMzPSJpbmV0 IDE5Mi4xNjguMjI0LjE2IG5ldG1hc2sgMjU1LjI1NS4yNTUuMjU1Ig0KICAgNDUuIGphaWxfY2Vu dG9zX3Jvb3RkaXI9Ii90YW5rL2phaWxzL2NlbnRvcyINCiAgIDQ2LiBqYWlsX2NlbnRvc19ob3N0 bmFtZT0iY2VudG9zIg0KICAgNDcuIGphaWxfY2VudG9zX2lwPSIxOTIuMTY4LjIyNC4xNiINCiAg IDQ4LiBqYWlsX2NlbnRvc19kZXZmc19lbmFibGU9IllFUyINCg0KDQpSZXN1bHQgb2YgamxzIGFm dGVyIC9ldGMvcmMuZC9qYWlsIHN0YXJ0IGNlbnRvcyAobm90aWNlIHRoZXJlJ3Mgbm8gZW50cnkg Zm9yDQpjZW50b3MpDQoNCiAgIEpJRCAgSVAgQWRkcmVzcyAgICAgIEhvc3RuYW1lICAgICAgICAg ICAgICAgICAgICAgIFBhdGgNCiAgICAgMSAgMTkyLjE2OC4yMjQuMTIgIHd3dzAgICAgICAgICAg ICAgICAgICAgICAgICAgIC90YW5rL2phaWxzL3d3dzANCiAgICAgMiAgMTkyLjE2OC4yMjQuMTQg IGRuczAgICAgICAgICAgICAgICAgICAgICAgICAgIC90YW5rL2phaWxzL2RuczANCiAgICAgMyAg MTkyLjE2OC4yMjQuMTUgIHNtYXJ0eTAgICAgICAgICAgICAgICAgICAgICAgIC90YW5rL2phaWxz L3NtYXJ0eTANCg0KDQpObyBlcnJvciBtZXNzYWdlcyB3aGVuIHN0YXJ0aW5nIG9yIHN0b3BwaW5n IGNlbnRvcyBqYWlsLg0KL3Zhci9ydW4gY29udGFpbnMgamFpbF9jZW50b3MuaWQNCkFsaWFzIGV4 aXN0cyBvbiBiZ2UwLg0KDQpTbyBJIHRyaWVkICJqZXhlYyA0IC9iaW4vYmFzaCIgZmlndXJpbmcg amxzIGp1c3QgaXNuJ3Qgc2hvd2luZyB0aGUgY2VudG9zDQpqYWlsIGZvciBzb21lIHJlYXNvbiBi dXQ6DQpqZXhlYzogamFpbF9hdHRhY2goNCk6IEludmFsaWQgYXJndW1lbnQNCg0KQW55Ym9keSBo YXZlIGFueSBpZGVhIGFib3V0IHdoYXQgbWlnaHQgYmUgaGFwcGVuaW5nIGhlcmU/DQpfX19fX19f X19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fXw0KZnJlZWJzZC1qYWlsQGZy ZWVic2Qub3JnIG1haWxpbmcgbGlzdA0KaHR0cDovL2xpc3RzLmZyZWVic2Qub3JnL21haWxtYW4v bGlzdGluZm8vZnJlZWJzZC1qYWlsDQpUbyB1bnN1YnNjcmliZSwgc2VuZCBhbnkgbWFpbCB0byAi ZnJlZWJzZC1qYWlsLXVuc3Vic2NyaWJlQGZyZWVic2Qub3JnIg0K From owner-freebsd-jail@FreeBSD.ORG Thu May 5 10:40:56 2011 Return-Path: Delivered-To: freebsd-jail@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id ACB171065678 for ; Thu, 5 May 2011 10:40:56 +0000 (UTC) (envelope-from freebsd@psconsult.nl) Received: from mx1.psconsult.nl (unknown [IPv6:2001:7b8:30f:e0::5059:ee8a]) by mx1.freebsd.org (Postfix) with ESMTP id 5D3D18FC12 for ; Thu, 5 May 2011 10:40:56 +0000 (UTC) Received: from mx1.psconsult.nl (psc11.adsl.iaf.nl [80.89.238.138]) by mx1.psconsult.nl (8.14.4/8.14.4) with ESMTP id p45AemN5034233 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO) for ; Thu, 5 May 2011 12:40:54 +0200 (CEST) (envelope-from freebsd@psconsult.nl) Received: (from paul@localhost) by mx1.psconsult.nl (8.14.4/8.14.4/Submit) id p45AemeZ034232 for freebsd-jail@freebsd.org; Thu, 5 May 2011 12:40:48 +0200 (CEST) (envelope-from freebsd@psconsult.nl) X-Authentication-Warning: mx1.psconsult.nl: paul set sender to freebsd@psconsult.nl using -f Date: Thu, 5 May 2011 12:40:48 +0200 From: Paul Schenkeveld To: freebsd-jail@freebsd.org Message-ID: <20110505104048.GA34113@psconsult.nl> References: MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: User-Agent: Mutt/1.5.21 (2010-09-15) Subject: Re: Jail starts but doesn't start X-BeenThere: freebsd-jail@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Discussion about FreeBSD jail\(8\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 05 May 2011 10:40:56 -0000 On Wed, May 04, 2011 at 04:24:11PM -0700, Mickey Harvey wrote: > Hosts /etc/rc.conf > > 1. ifconfig_bge0="inet 192.168.224.11 netmask 255.255.255.0" > 2. defaultrouter="192.168.224.1" > 3. sshd_enable="YES" > 4. > 5. linux_enable="YES" > 6. zfs_enable="YES" > 7. jail_enable="YES" > 8. jail_list="www0 dns0 smarty0 centos" > 9. > 10. ifconfig_bge0_alias0="inet 192.168.224.12 netmask 255.255.255.255" > 11. jail_www0_rootdir="/tank/jails/www0" > 12. jail_www0_hostname="www0" > 13. jail_www0_ip="192.168.224.12" > 14. jail_www0_devfs_enable="YES" > 15. jail_www0_exec_stop="/etc/rc.shutdown" > 16. > 17. #JAIL READY TO USE, JUST NEEDS APPROPRIATE FSTAB ENTRIES > 18. #ENTRIES ARE IN LOADER.CONF > 19. #TRIED TO BOOT WITH REQUIRED FSTAB BUT IT BROKE SO I REVERTED > 20. #5/3/11 MH > 21. #ifconfig_bge0_alias1="inet 192.168.224.13 netmask 255.255.255.255" > 22. #jail_deb0_rootdir="/tank/jails/deb0" > 23. #jail_deb0_hostname="deb0" > 24. #jail_deb0_ip="192.168.224.13" > 25. #jail_deb0_devfs_enable="YES" > 26. #jail_deb0_exec_start="/etc/init.d/rc 3" > 27. #jail_deb0_exec_stop="/etc/init.d/rc 0" > 28. #jail_deb0_flags="-l -u root" > 29. > 30. ifconfig_bge0_alias1="inet 192.168.224.14 netmask 255.255.255.255" > 31. jail_dns0_rootdir="/tank/jails/dns0" > 32. jail_dns0_hostname="dns0" > 33. jail_dns0_ip="192.168.224.14" > 34. jail_dns0_devfs_enable="YES" > 35. jail_dns0_exec_stop="/etc/rc.shutdown" > 36. > 37. ifconfig_bge0_alias2="inet 192.168.224.15 netmask 255.255.255.255" > 38. jail_smarty0_rootdir="/tank/jails/smarty0" > 39. jail_smarty0_hostname="smarty0" > 40. jail_smarty0_ip="192.168.224.15" > 41. jail_smarty0_devfs_enable="YES" > 42. jail_smarty0_exec_stop="/etc/rc.shutdown" > 43. > 44. ifconfig_bge0_alias3="inet 192.168.224.16 netmask 255.255.255.255" > 45. jail_centos_rootdir="/tank/jails/centos" > 46. jail_centos_hostname="centos" > 47. jail_centos_ip="192.168.224.16" > 48. jail_centos_devfs_enable="YES" > > > Result of jls after /etc/rc.d/jail start centos (notice there's no entry for > centos) > > JID IP Address Hostname Path > 1 192.168.224.12 www0 /tank/jails/www0 > 2 192.168.224.14 dns0 /tank/jails/dns0 > 3 192.168.224.15 smarty0 /tank/jails/smarty0 > > > No error messages when starting or stopping centos jail. > /var/run contains jail_centos.id > Alias exists on bge0. > > So I tried "jexec 4 /bin/bash" figuring jls just isn't showing the centos > jail for some reason but: > jexec: jail_attach(4): Invalid argument > > Anybody have any idea about what might be happening here? This usually happens when there are no processes running in the jail to keep it up. By default, jails started thru rc.d/jail are not persistent. Try adding something like cron_enable="YES" to rc.conf inside the jail. Regards, Paul Schenkeveld From owner-freebsd-jail@FreeBSD.ORG Fri May 6 19:21:06 2011 Return-Path: Delivered-To: freebsd-jail@hub.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 32380106566B; Fri, 6 May 2011 19:21:06 +0000 (UTC) (envelope-from trasz@FreeBSD.org) Received: from freefall.freebsd.org (freefall.freebsd.org [IPv6:2001:4f8:fff6::28]) by mx1.freebsd.org (Postfix) with ESMTP id 0A53A8FC27; Fri, 6 May 2011 19:21:06 +0000 (UTC) Received: from freefall.freebsd.org (localhost [127.0.0.1]) by freefall.freebsd.org (8.14.4/8.14.4) with ESMTP id p46JL5Fx012885; Fri, 6 May 2011 19:21:05 GMT (envelope-from trasz@freefall.freebsd.org) Received: (from trasz@localhost) by freefall.freebsd.org (8.14.4/8.14.4/Submit) id p46JL5b8012843; Fri, 6 May 2011 19:21:05 GMT (envelope-from trasz) Date: Fri, 6 May 2011 19:21:05 GMT Message-Id: <201105061921.p46JL5b8012843@freefall.freebsd.org> To: uffe@uffe.org, trasz@FreeBSD.org, freebsd-jail@FreeBSD.org From: trasz@FreeBSD.org Cc: Subject: Re: conf/150599: [patch] /etc/rc.d/jail does not set jailname. X-BeenThere: freebsd-jail@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Discussion about FreeBSD jail\(8\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 06 May 2011 19:21:06 -0000 Synopsis: [patch] /etc/rc.d/jail does not set jailname. State-Changed-From-To: open->closed State-Changed-By: trasz State-Changed-When: Fri May 6 19:21:05 UTC 2011 State-Changed-Why: The same functionality can already be achieved using jail__flags, e.g. 'jail_shell_flags="-l -U root -n shell"'. http://www.freebsd.org/cgi/query-pr.cgi?pr=150599 From owner-freebsd-jail@FreeBSD.ORG Fri May 6 20:28:57 2011 Return-Path: Delivered-To: freebsd-jail@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 6136A1065718 for ; Fri, 6 May 2011 20:28:57 +0000 (UTC) (envelope-from mh.unet@gmail.com) Received: from mail-pw0-f54.google.com (mail-pw0-f54.google.com [209.85.160.54]) by mx1.freebsd.org (Postfix) with ESMTP id 38CB98FC12 for ; Fri, 6 May 2011 20:28:56 +0000 (UTC) Received: by pwj8 with SMTP id 8so2083255pwj.13 for ; Fri, 06 May 2011 13:28:56 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=domainkey-signature:mime-version:date:message-id:subject:from:to :content-type; bh=YmdJdLYQfhDyTK50e6eGWhK4zHCHNXfvBbXLDtQ1DsA=; b=IJPPDdVQzDAEWzgAAlpWawjbjxjlS2w6r/DX+buYrRkOT1uaLbE/+PGk5Mlh4vxZaI 3VXOdpey5shQXhiGhYm7zfmBfQPzR1CLICzo4yP6XLkshLkixsgeZWnJjoYCJ3zFAOdj 7fbrHnflXnvohX7+mHY6+KSbpJb16J2YrgmgA= DomainKey-Signature: a=rsa-sha1; c=nofws; d=gmail.com; s=gamma; h=mime-version:date:message-id:subject:from:to:content-type; b=Dx0uv8ti2knc+oCjZgUwNnMaRuNME3e6Xj9IS4UjWbudsACXqU7X27xpieN/NJexq5 BI9BIkaLlfCGTo1+0kr/Aj1+3Bcbz7Zxr+2Q1jt0Zklqn7Q8B4GiCPbN8w47gF8UrkiP nocp7FosLPcxt7viU9WYXPm/itVgPQT9v+NPo= MIME-Version: 1.0 Received: by 10.143.178.10 with SMTP id f10mr2224876wfp.108.1304713736776; Fri, 06 May 2011 13:28:56 -0700 (PDT) Received: by 10.143.33.3 with HTTP; Fri, 6 May 2011 13:28:56 -0700 (PDT) Date: Fri, 6 May 2011 13:28:56 -0700 Message-ID: From: Mickey Harvey To: freebsd-jail@freebsd.org Content-Type: text/plain; charset=ISO-8859-1 X-Content-Filtered-By: Mailman/MimeDel 2.1.5 Subject: pf or ipfw within a jail? X-BeenThere: freebsd-jail@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Discussion about FreeBSD jail\(8\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 06 May 2011 20:28:57 -0000 Is it possible to run pf or ipfw within a jail? I am running 8.2 and have vimage compiled in the kernel. From owner-freebsd-jail@FreeBSD.ORG Fri May 6 21:31:52 2011 Return-Path: Delivered-To: freebsd-jail@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id D1392106564A for ; Fri, 6 May 2011 21:31:52 +0000 (UTC) (envelope-from bzeeb-lists@lists.zabbadoz.net) Received: from mx1.sbone.de (mx1.sbone.de [IPv6:2a01:4f8:130:3ffc::401:25]) by mx1.freebsd.org (Postfix) with ESMTP id 5B70D8FC0C for ; Fri, 6 May 2011 21:31:52 +0000 (UTC) Received: from mail.sbone.de (mail.sbone.de [IPv6:fde9:577b:c1a9:31::2013:587]) (using TLSv1 with cipher ADH-CAMELLIA256-SHA (256/256 bits)) (No client certificate requested) by mx1.sbone.de (Postfix) with ESMTPS id D5DC725D37C4; Fri, 6 May 2011 21:31:50 +0000 (UTC) Received: from content-filter.sbone.de (content-filter.sbone.de [IPv6:fde9:577b:c1a9:31::2013:2742]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by mail.sbone.de (Postfix) with ESMTPS id DA4AC159EE90; Fri, 6 May 2011 21:31:49 +0000 (UTC) X-Virus-Scanned: amavisd-new at sbone.de Received: from mail.sbone.de ([IPv6:fde9:577b:c1a9:31::2013:587]) by content-filter.sbone.de (content-filter.sbone.de [fde9:577b:c1a9:31::2013:2742]) (amavisd-new, port 10024) with ESMTP id eJ+ZXuXxldYH; Fri, 6 May 2011 21:31:48 +0000 (UTC) Received: from orange-en1.sbone.de (orange-en1.sbone.de [IPv6:fde9:577b:c1a9:31:cabc:c8ff:fecf:e8e3]) (using TLSv1 with cipher AES128-SHA (128/128 bits)) (No client certificate requested) by mail.sbone.de (Postfix) with ESMTPSA id B18B3159EE65; Fri, 6 May 2011 21:31:48 +0000 (UTC) Mime-Version: 1.0 (Apple Message framework v1084) Content-Type: text/plain; charset=us-ascii From: "Bjoern A. Zeeb" In-Reply-To: Date: Fri, 6 May 2011 21:31:47 +0000 Content-Transfer-Encoding: 7bit Message-Id: <368245A4-1F9F-4D52-A64E-32993BB35E17@lists.zabbadoz.net> References: To: Mickey Harvey X-Mailer: Apple Mail (2.1084) Cc: freebsd-jail@freebsd.org Subject: Re: pf or ipfw within a jail? X-BeenThere: freebsd-jail@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Discussion about FreeBSD jail\(8\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 06 May 2011 21:31:52 -0000 On May 6, 2011, at 8:28 PM, Mickey Harvey wrote: > Is it possible to run pf or ipfw within a jail? I am running 8.2 and have > vimage compiled in the kernel. ipfw might work then; pf not yet. ipfilter in a far distant future. -- Bjoern A. Zeeb You have to have visions! Stop bit received. Insert coin for new address family.