From owner-freebsd-current@FreeBSD.ORG Tue Apr 4 12:24:41 2006 Return-Path: X-Original-To: freebsd-current@freebsd.org Delivered-To: freebsd-current@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id E761716A401; Tue, 4 Apr 2006 12:24:41 +0000 (UTC) (envelope-from dmitry@atlantis.dp.ua) Received: from postman.atlantis.dp.ua (postman.atlantis.dp.ua [193.108.47.1]) by mx1.FreeBSD.org (Postfix) with ESMTP id 2EA1743D45; Tue, 4 Apr 2006 12:24:40 +0000 (GMT) (envelope-from dmitry@atlantis.dp.ua) Received: from smtp.atlantis.dp.ua (smtp.atlantis.dp.ua [193.108.46.231]) by postman.atlantis.dp.ua (8.13.1/8.13.1) with ESMTP id k34COQHj079674; Tue, 4 Apr 2006 15:24:26 +0300 (EEST) (envelope-from dmitry@atlantis.dp.ua) Date: Tue, 4 Apr 2006 15:24:26 +0300 (EEST) From: Dmitry Pryanishnikov To: Julian Elischer In-Reply-To: <44317A45.9000504@elischer.org> Message-ID: <20060404151508.P73219@atlantis.atlantis.dp.ua> References: <20060403003318.K947@ganymede.hub.org> <20060403163220.F36756@fledge.watson.org> <44317A45.9000504@elischer.org> MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII; format=flowed Cc: "Marc G. Fournier" , freebsd-stable@freebsd.org, freebsd-current@freebsd.org, Robert Watson , pjd@freebsd.org Subject: Re: new feature: private IPC for every jail X-BeenThere: freebsd-current@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Discussions about the use of FreeBSD-current List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 04 Apr 2006 12:24:42 -0000 Hello! On Mon, 3 Apr 2006, Julian Elischer wrote: >> (2) The name space model for system v ipc is flat, so while it's desirable >> to >> allow the administrator in the host environment to monitor and control >> resource use in the jail (for example, delete allocated but unused >> segments), doing that requires developing an administrative model for >> it. > > > it is possible the admin environment can't see it. > unless you prefix it with something.. I think it would be nice if we can just name jail's IPC objects from host environment using syntax like e.g. /JID/name_in_jail or /jail_IP/name_in_jail However, I can't find info whether "/" is legal as the 1st character of IPC object ID. If yes, we should use another prefix. This approach won't work if there are no restriction on IPC object IDs 1st character. Are there any? Sincerely, Dmitry -- Atlantis ISP, System Administrator e-mail: dmitry@atlantis.dp.ua nic-hdl: LYNX-RIPE