From owner-freebsd-current@freebsd.org Mon Apr 10 14:39:06 2017 Return-Path: Delivered-To: freebsd-current@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id 507E5D372FC for ; Mon, 10 Apr 2017 14:39:06 +0000 (UTC) (envelope-from luzar722@gmail.com) Received: from mail-io0-x22c.google.com (mail-io0-x22c.google.com [IPv6:2607:f8b0:4001:c06::22c]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 15E3B960 for ; Mon, 10 Apr 2017 14:39:06 +0000 (UTC) (envelope-from luzar722@gmail.com) Received: by mail-io0-x22c.google.com with SMTP id l7so97377790ioe.3 for ; Mon, 10 Apr 2017 07:39:06 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=message-id:date:from:user-agent:mime-version:to:cc:subject :references:in-reply-to:content-transfer-encoding; bh=8qPHJPeXDOFoFD9lFdPkd+IvsbXIb2fifUCQe8ydIVQ=; b=EFf+7GjyMAbOLwaQjjNav1rQKrE7YOSMjfiPRYx1LamM0Q3Jy+yp+TUnjVGm4WQvTx asfSPwI28zLbPWP8q1hDVjl0a89sYD6DK6Xskjx9qu2MZ467LeyG88KnYQSlJ3u92wmA 1uBVp0lbt18n+bxX7S7uA0pTwlLcw0fe12sMjAbra/6Ld/pMh6oZtkmKDaKqZTUprPXD dj3QshLwm1zvRnPjhLtMwl2nq2T6VgScFJdt8yUacEuFK9Oem2NzIQ+qONjwd0P/SqtU ZmwLjQ1g1/3JjvAbnJ9YQMchbuZrAbmtPrVs6K7XdWwBg0b0uF9KBkkqFKKKoH6atoMF HAXA== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:message-id:date:from:user-agent:mime-version:to :cc:subject:references:in-reply-to:content-transfer-encoding; bh=8qPHJPeXDOFoFD9lFdPkd+IvsbXIb2fifUCQe8ydIVQ=; b=P3b5/Bfk2c5jZb5tvw0GYBxKZL5jdNI7MZCMiVjF1wMF++zz8dQDrVQqu/thxVJh9/ xkhEY+KyiBkCZ5diMxL8gDNhHQ3r9OJ0xlInxPN7SbICHGpo2KcBNz5lrQBsICHIpoSM oMxelMOo7VJo0LRWvnLZPZj2bm9fsFz51tW55wFI/LlzLhlbTQ4VWOioWUuA1upJXu28 WYoc9QeeRRVondmDegE6U3YtkHJyrNkgEoapXd6U2qYnyVqHPDPkKjOJ6VddfUAe3Vty 6gSwL6xbg7o+XrCDZkIAt6yJqJ4tpR4LxPRYUxiYNbN1QrCkqJU7mTR38Iqjm3VidSt6 hHfQ== X-Gm-Message-State: AN3rC/4Jpm5G7MYhukP4SdAtsSzosVgw9MV09GkyVPVclwskpJdj6reA 4n7kMzvAGMdN5ja5 X-Received: by 10.36.105.132 with SMTP id e126mr12491992itc.61.1491835142798; Mon, 10 Apr 2017 07:39:02 -0700 (PDT) Received: from [10.0.10.3] (cpe-74-141-88-57.neo.res.rr.com. [74.141.88.57]) by smtp.googlemail.com with ESMTPSA id p6sm6460781iof.12.2017.04.10.07.39.01 (version=TLS1 cipher=ECDHE-RSA-AES128-SHA bits=128/128); Mon, 10 Apr 2017 07:39:02 -0700 (PDT) Message-ID: <58EB990A.50502@gmail.com> Date: Mon, 10 Apr 2017 10:39:06 -0400 From: Ernie Luzar User-Agent: Thunderbird 2.0.0.24 (Windows/20100228) MIME-Version: 1.0 To: freebsd-current CC: "Bjoern A. Zeeb" Subject: Re: VNET branch destiny References: <0136F3BE-4B47-4677-8D81-3FE0F5E67E79@lists.zabbadoz.net> <24B3E322-5B92-470D-A1D6-10DF8EF79490@bsd4all.org> In-Reply-To: <24B3E322-5B92-470D-A1D6-10DF8EF79490@bsd4all.org> Content-Type: text/plain; charset=UTF-8; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-current@freebsd.org X-Mailman-Version: 2.1.23 Precedence: list List-Id: Discussions about the use of FreeBSD-current List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 10 Apr 2017 14:39:06 -0000 To the VNET (VIMAGE) update project team members Release 11.0 has some out standing VNET (VIMAGE) PR's that need addressing. https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=212000 https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=212013 https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=212031 I believe 212000 and 212013 would require an rewrite replacing the kernel method they use to the user land method as used by ipfw. At the very lease it should be documented somewhere that pf & ipfilter do not work in an vnet/vimage jail. PR 212031 looks like a vimage/vnet problem to me. To the members of current, This bug report is not a jail(8) problem but a kernel problem that needs to be addressed. Could someone please look into fixing it. I effects all jail(8) users. https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=210049 There is also the matter of removing the depreciated rc.conf jail definition method from the rc.d scripts making the jail.conf method the default. This is long over due and maybe something over looked in the 11.0 release. Thank you for your attention.