From owner-freebsd-jail@FreeBSD.ORG Sun Aug 3 01:01:06 2008 Return-Path: Delivered-To: freebsd-jail@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 9B28D106566B for ; Sun, 3 Aug 2008 01:01:06 +0000 (UTC) (envelope-from reddvinylene@gmail.com) Received: from mu-out-0910.google.com (mu-out-0910.google.com [209.85.134.189]) by mx1.freebsd.org (Postfix) with ESMTP id 1DB6B8FC08 for ; Sun, 3 Aug 2008 01:01:05 +0000 (UTC) (envelope-from reddvinylene@gmail.com) Received: by mu-out-0910.google.com with SMTP id i2so1249708mue.3 for ; Sat, 02 Aug 2008 18:01:04 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=domainkey-signature:received:received:message-id:date:from:to :subject:in-reply-to:mime-version:content-type :content-transfer-encoding:content-disposition:references; bh=qHF5NTyXHAuPkXVp+bBTlxQHEL1nN6hgFpmPkTvYg0c=; b=lOanT30EhJyX1qjnC5sbSEz55S09scDTazJXq/LCfgIH7eSbv9co9sdxy9K+P3dd1p bl/93fSXoXFeTMiQF8Mmyz7E/P7wc3SjDehZsdxEBkg5ZjwFx98D/azVZ298rur2ilFp 55V5YRoPbyT5UuGrC72ShWvLTcyUK1qXB/66Y= DomainKey-Signature: a=rsa-sha1; c=nofws; d=gmail.com; s=gamma; h=message-id:date:from:to:subject:in-reply-to:mime-version :content-type:content-transfer-encoding:content-disposition :references; b=tr24va2v6yxmP+jP1ft3bIV/lDFNfoi6oE25FsSLW5PXgzTvzEd66ohftO9vgi8DH3 CiI6/XtJiSQzpknFfr/ra/8zeu8Wc6PQwrwItJxOCNbzETaIrRzjoQV/MopSCqcLQ0/7 v8CCLPhytK9Bt97e6Ndh/ZMFwVvTrY+6lmrX0= Received: by 10.103.202.13 with SMTP id e13mr4873366muq.3.1217725264702; Sat, 02 Aug 2008 18:01:04 -0700 (PDT) Received: by 10.103.199.5 with HTTP; Sat, 2 Aug 2008 18:01:04 -0700 (PDT) Message-ID: Date: Sun, 3 Aug 2008 03:01:04 +0200 From: "Redd Vinylene" To: freebsd-jail@freebsd.org In-Reply-To: <20080802215132.M88849@maildrop.int.zabbadoz.net> MIME-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit Content-Disposition: inline References: <20080802215132.M88849@maildrop.int.zabbadoz.net> Subject: Re: Can't SSH into my jails after a makeworld X-BeenThere: freebsd-jail@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Discussion about FreeBSD jail\(8\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sun, 03 Aug 2008 01:01:06 -0000 On Sat, Aug 2, 2008 at 11:55 PM, Mikhail Goriachev wrote: > > Whenever you execute this: > > # csup /etc/cvsupfile > > The multi-ip patch goes away. You have to reapply the patch after you sync > the sources. My bad, I forgot to mention that I commented that. On Sat, Aug 2, 2008 at 11:55 PM, Bjoern A. Zeeb wrote: > > what does > sysctl security.jail.jailed_sockets_first > give? security.jail.jailed_sockets_first: 1 > If you jexec into jail, does sshd actually run? Did it give an > error/warning? What does netstat -an show? (in case this is long do > not psate it into mail and/or make sure there are no extra line wraps). I actually got it working. But sometimes, after reboots, none of them will start. Is there anything I can do to debug? Might this be because I forgot to stop the jails prior to the makeworld? - Also, these stopped working: jail_camel_devfs_ruleset="camel_ruleset" jail_box_devfs_ruleset="box_ruleset" Producing: Starting jails:/etc/rc.d/jail: WARNING: devfs_set_ruleset: you must specify a ruleset number devfs rule: ioctl DEVFSIO_SAPPLY: No such process So I had to switch over to: jail_camel_devfs_ruleset="devfsrules_jail" jail_box_devfs_ruleset="devfsrules_jail" - Another strange thing, this just freezes up: # /etc/rc.d/jail start Configuring jails:. Starting jails: I can't terminate it either: # /etc/rc.d/jail start Configuring jails:. Starting jails:^C^C^C -- http://www.home.no/reddvinylene From owner-freebsd-jail@FreeBSD.ORG Sun Aug 3 07:53:18 2008 Return-Path: Delivered-To: freebsd-jail@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 88BE21065676; Sun, 3 Aug 2008 07:53:18 +0000 (UTC) (envelope-from m.seaman@infracaninophile.co.uk) Received: from smtp.infracaninophile.co.uk (gate6.infracaninophile.co.uk [IPv6:2001:8b0:151:1::1]) by mx1.freebsd.org (Postfix) with ESMTP id E39678FC25; Sun, 3 Aug 2008 07:53:17 +0000 (UTC) (envelope-from m.seaman@infracaninophile.co.uk) Received: from happy-idiot-talk.infracaninophile.co.uk (localhost [IPv6:::1]) (authenticated bits=0) by smtp.infracaninophile.co.uk (8.14.2/8.14.2) with ESMTP id m737rB6a080259; Sun, 3 Aug 2008 08:53:12 +0100 (BST) (envelope-from m.seaman@infracaninophile.co.uk) X-DKIM: Sendmail DKIM Filter v2.7.0 smtp.infracaninophile.co.uk m737rB6a080259 DKIM-Signature: v=1; a=rsa-sha256; c=simple/simple; d=infracaninophile.co.uk; s=200708; t=1217749992; bh=eGbbuU5BHyA8X5 xfi+ja1V21fH0lQ0DG9bYaa3traLw=; h=Message-ID:Date:From:MIME-Version: To:CC:Subject:References:In-Reply-To:Content-Type:Cc:Content-Type: Date:From:In-Reply-To:Message-ID:Mime-Version:References:To; z=Mes sage-ID:=20<489563D3.3060507@infracaninophile.co.uk>|Date:=20Sun,=2 003=20Aug=202008=2008:52:51=20+0100|From:=20Matthew=20Seaman=20|Organization:=20Infracaninophile|User -Agent:=20Thunderbird=202.0.0.16=20(X11/20080726)|MIME-Version:=201 .0|To:=20Redd=20Vinylene=20|CC:=20questions @freebsd.org,=20freebsd-jail@freebsd.org|Subject:=20Re:=20jail_box_ ip=3D""|References:=20=09=20<48949B5 F.4070300@infracaninophile.co.uk>=09=20=20|In-Reply-To:=20|X-Enigmail-Version:=200.95. 6|Content-Type:=20multipart/signed=3B=20micalg=3Dpgp-sha256=3B=0D=0 A=20protocol=3D"application/pgp-signature"=3B=0D=0A=20boundary=3D"- -----------enig89CC4665D462497BCEF998D5"; b=QOzxglxbf+6+3UmvLngAl6Y zTQTp1L7C3/chNf6oiFIE/sq40sj6AoJBIl2XC+zyHJ1+Gga0cDN9GiqQVgkQaoJpGd 04nYci5YXb9P2E8LvU76adR15T7I3j//Y8HoUD/6pj92bDsj0NJg5Du6f/82AW3Htum nBj61JsR4bmpqc= Message-ID: <489563D3.3060507@infracaninophile.co.uk> Date: Sun, 03 Aug 2008 08:52:51 +0100 From: Matthew Seaman Organization: Infracaninophile User-Agent: Thunderbird 2.0.0.16 (X11/20080726) MIME-Version: 1.0 To: Redd Vinylene References: <48949B5F.4070300@infracaninophile.co.uk> In-Reply-To: X-Enigmail-Version: 0.95.6 Content-Type: multipart/signed; micalg=pgp-sha256; protocol="application/pgp-signature"; boundary="------------enig89CC4665D462497BCEF998D5" X-Greylist: Sender succeeded SMTP AUTH, not delayed by milter-greylist-4.0 (smtp.infracaninophile.co.uk [IPv6:::1]); Sun, 03 Aug 2008 08:53:12 +0100 (BST) X-Virus-Scanned: ClamAV 0.93.3/7918/Sun Aug 3 03:45:57 2008 on happy-idiot-talk.infracaninophile.co.uk X-Virus-Status: Clean X-Spam-Status: No, score=-3.0 required=5.0 tests=AWL,BAYES_00,DKIM_SIGNED, DKIM_VERIFIED,NO_RELAYS autolearn=ham version=3.2.5 X-Spam-Checker-Version: SpamAssassin 3.2.5 (2008-06-10) on happy-idiot-talk.infracaninophile.co.uk Cc: freebsd-jail@freebsd.org, questions@freebsd.org Subject: Re: jail_box_ip="" X-BeenThere: freebsd-jail@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Discussion about FreeBSD jail\(8\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sun, 03 Aug 2008 07:53:18 -0000 This is an OpenPGP/MIME signed message (RFC 2440 and 3156) --------------enig89CC4665D462497BCEF998D5 Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: quoted-printable Redd Vinylene wrote: > Can something similar be used for my >=20 > ifconfig_rl0_aliasN=3D"inet 66.252.2.N netmask 255.255.255.255" >=20 > as well? You'ld have to write a loop: for N in $( jot 124 4 ) ; do eval "ifconfig_rl0_alias$N=3D\"inet 66.252.2.$N netmask 255.255.255.2= 55\"" done Cheers, Matthew --=20 Dr Matthew J Seaman MA, D.Phil. 7 Priory Courtyard Flat 3 PGP: http://www.infracaninophile.co.uk/pgpkey Ramsgate Kent, CT11 9PW --------------enig89CC4665D462497BCEF998D5 Content-Type: application/pgp-signature; name="signature.asc" Content-Description: OpenPGP digital signature Content-Disposition: attachment; filename="signature.asc" -----BEGIN PGP SIGNATURE----- Version: GnuPG v2.0.9 (FreeBSD) Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org iEYEAREIAAYFAkiVY+cACgkQ8Mjk52CukIy8+gCfbNWTNxerrBn/S2HhVkC1ottM OiEAnRIXgmWL/JNXkOKhvOjHZta3fyHJ =4Oyj -----END PGP SIGNATURE----- --------------enig89CC4665D462497BCEF998D5-- From owner-freebsd-jail@FreeBSD.ORG Mon Aug 4 07:50:08 2008 Return-Path: Delivered-To: freebsd-jail@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 6CB6E1065688 for ; Mon, 4 Aug 2008 07:50:08 +0000 (UTC) (envelope-from bzeeb-lists@lists.zabbadoz.net) Received: from mail.cksoft.de (mail.cksoft.de [62.111.66.27]) by mx1.freebsd.org (Postfix) with ESMTP id 287BA8FC1A for ; Mon, 4 Aug 2008 07:50:07 +0000 (UTC) (envelope-from bzeeb-lists@lists.zabbadoz.net) Received: from localhost (amavis.str.cksoft.de [192.168.74.71]) by mail.cksoft.de (Postfix) with ESMTP id F3DB341C72F for ; Mon, 4 Aug 2008 09:50:05 +0200 (CEST) X-Virus-Scanned: amavisd-new at cksoft.de Received: from mail.cksoft.de ([62.111.66.27]) by localhost (amavis.str.cksoft.de [192.168.74.71]) (amavisd-new, port 10024) with ESMTP id lDjwtbJULZzL for ; Mon, 4 Aug 2008 09:50:05 +0200 (CEST) Received: by mail.cksoft.de (Postfix, from userid 66) id 612F541C70C; Mon, 4 Aug 2008 09:50:05 +0200 (CEST) Received: from maildrop.int.zabbadoz.net (maildrop.int.zabbadoz.net [10.111.66.10]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by mail.int.zabbadoz.net (Postfix) with ESMTP id 127DC444892 for ; Mon, 4 Aug 2008 07:48:57 +0000 (UTC) Date: Mon, 4 Aug 2008 07:48:57 +0000 (UTC) From: "Bjoern A. Zeeb" X-X-Sender: bz@maildrop.int.zabbadoz.net To: freebsd-jail@freebsd.org Message-ID: <20080804074505.Y88849@maildrop.int.zabbadoz.net> X-OpenPGP-Key: 0x14003F198FEFA3E77207EE8D2B58B8F83CCF1842 MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII; format=flowed Subject: Patch no longer applying cleanly X-BeenThere: freebsd-jail@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Discussion about FreeBSD jail\(8\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 04 Aug 2008 07:50:08 -0000 Hi, FYI: I am aware of that the jail patches are no longer applying cleanly. There are upcoming changes during this week which will add further conflicts. I'll update the patches once those changes are in and the tree should be stable again with regard to the jail work. /bz -- Bjoern A. Zeeb Stop bit received. Insert coin for new game. From owner-freebsd-jail@FreeBSD.ORG Mon Aug 4 11:06:57 2008 Return-Path: Delivered-To: freebsd-jail@FreeBSD.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id B4492106566C for ; Mon, 4 Aug 2008 11:06:57 +0000 (UTC) (envelope-from owner-bugmaster@FreeBSD.org) Received: from freefall.freebsd.org (freefall.freebsd.org [IPv6:2001:4f8:fff6::28]) by mx1.freebsd.org (Postfix) with ESMTP id A4E2A8FC08 for ; Mon, 4 Aug 2008 11:06:57 +0000 (UTC) (envelope-from owner-bugmaster@FreeBSD.org) Received: from freefall.freebsd.org (localhost [127.0.0.1]) by freefall.freebsd.org (8.14.2/8.14.2) with ESMTP id m74B6vpH082108 for ; Mon, 4 Aug 2008 11:06:57 GMT (envelope-from owner-bugmaster@FreeBSD.org) Received: (from gnats@localhost) by freefall.freebsd.org (8.14.2/8.14.1/Submit) id m74B6vlt082104 for freebsd-jail@FreeBSD.org; Mon, 4 Aug 2008 11:06:57 GMT (envelope-from owner-bugmaster@FreeBSD.org) Date: Mon, 4 Aug 2008 11:06:57 GMT Message-Id: <200808041106.m74B6vlt082104@freefall.freebsd.org> X-Authentication-Warning: freefall.freebsd.org: gnats set sender to owner-bugmaster@FreeBSD.org using -f From: FreeBSD bugmaster To: freebsd-jail@FreeBSD.org Cc: Subject: Current problem reports assigned to freebsd-jail@FreeBSD.org X-BeenThere: freebsd-jail@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Discussion about FreeBSD jail\(8\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 04 Aug 2008 11:06:57 -0000 Current FreeBSD problem reports Critical problems Serious problems S Tracker Resp. Description -------------------------------------------------------------------------------- s kern/89528 jail [jail] [patch] impossible to kill a jail o kern/119842 jail [smbfs] [jail] "Bad address" with smbfs inside a jail 2 problems total. Non-critical problems S Tracker Resp. Description -------------------------------------------------------------------------------- o bin/32828 jail [jail] w(1) incorrectly handles stale utmp slots with o kern/68192 jail [quotas] [jail] Cannot use quotas on jailed systems o kern/72498 jail [libc] [jail] timestamp code on jailed SMP machine gen o kern/74314 jail [resolver] [jail] DNS resolver broken under certain ja o kern/84215 jail [jail] [patch] wildcard ip (INADDR_ANY) should not bin o kern/89989 jail [jail] [patch] Add option -I (ASCII 73) PID to specif o kern/97071 jail [jail] [patch] add security.jail.jid sysctl o bin/99566 jail [jail] [patch] fstat(1) according to specified jid o kern/120753 jail [jail] Zombie jails (jailed child process exits while 9 problems total. From owner-freebsd-jail@FreeBSD.ORG Wed Aug 6 16:25:11 2008 Return-Path: Delivered-To: freebsd-jail@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id E5F58106567B for ; Wed, 6 Aug 2008 16:25:11 +0000 (UTC) (envelope-from reddvinylene@gmail.com) Received: from gv-out-0910.google.com (gv-out-0910.google.com [216.239.58.189]) by mx1.freebsd.org (Postfix) with ESMTP id 775D38FC12 for ; Wed, 6 Aug 2008 16:25:11 +0000 (UTC) (envelope-from reddvinylene@gmail.com) Received: by gv-out-0910.google.com with SMTP id n8so127168gve.39 for ; Wed, 06 Aug 2008 09:25:04 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=domainkey-signature:received:received:message-id:date:from:to :subject:mime-version:content-type:content-transfer-encoding :content-disposition; bh=oW7HI98v5xzk8tSx9GqtsXAW+bWF6cmKhRgi387PxwM=; b=UhhZISdZh2Ith/bMIS7ecHgf/3ZhF0Un/7M7c8tlD70QXGRQZuz7FlsEzJlHVSUKyZ rXMCiJgB6xPwzjoZ7Gx5dU3/vATzMzZ2vftxYC+7RXo759/OxzVtfFfD91pd0SIXWuWe zw7ADtlE75wU2jXKsRf/SWi1Oa34XfsnBVqB0= DomainKey-Signature: a=rsa-sha1; c=nofws; d=gmail.com; s=gamma; h=message-id:date:from:to:subject:mime-version:content-type :content-transfer-encoding:content-disposition; b=N1W60EtqIgL7YdPVBLts4Q8Oknp8SsJ/x60IkmbdDls5/ADIhShRykm2zKfryI5c5/ XQhhXXFmPY9w0gZqNX7129xpgPuERJtatVfK7a0hpb0wzi0S1I6o4q5A1X9mj2JRWbWq 8BSd5N3EeQ5Pl0WEtGXdH9ku0FwrK6XkoVHbs= Received: by 10.103.211.3 with SMTP id n3mr1591924muq.43.1218039904214; Wed, 06 Aug 2008 09:25:04 -0700 (PDT) Received: by 10.103.199.5 with HTTP; Wed, 6 Aug 2008 09:25:04 -0700 (PDT) Message-ID: Date: Wed, 6 Aug 2008 18:25:04 +0200 From: "Redd Vinylene" To: freebsd-jail@freebsd.org, questions@freebsd.org MIME-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: quoted-printable Content-Disposition: inline Cc: Subject: identd on jail with multiple IPs X-BeenThere: freebsd-jail@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Discussion about FreeBSD jail\(8\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 06 Aug 2008 16:25:12 -0000 Greetings! I cannot seem to make identd work on a jail with multiple IPs (Bjoern Zeeb's patch): jail # cat /etc/inetd.conf auth stream tcp nowait root internal auth -r -f -n -o UNKNOWN -t 30 - jail # grep inetd /etc/rc.conf inetd_enable=3D"YES" - host # grep jail /etc/rc.conf jail_enable=3D"YES" jail_list=3D"box" jail_box_ip=3D"80.252.2.4,80.252.2.5,80.252.2.6,80.252.2.7,80.252.2.8,80.25= 2.2.9,80.252.2.10,80.252.2.11,80.252.2.12,80.252.2.13,80.252.2.14,80.252.2.= 15,80.252.2.16,80.252.2.17,80.252.2.18,80.252.2.19,80.252.2.20,80.252.2.21,= 80.252.2.22,80.252.2.23,80.252.2.24,80.252.2.25,80.252.2.26,80.252.2.27,80.= 252.2.28,80.252.2.29,80.252.2.30,80.252.2.31,80.252.2.32,80.252.2.33,80.252= .2.34,80.252.2.35,80.252.2.36,80.252.2.37,80.252.2.38,80.252.2.39,80.252.2.= 40,80.252.2.41,80.252.2.42,80.252.2.43,80.252.2.44,80.252.2.45,80.252.2.46,= 80.252.2.47,80.252.2.48,80.252.2.49,80.252.2.50,80.252.2.51,80.252.2.52,80.= 252.2.53,80.252.2.54,80.252.2.55,80.252.2.56,80.252.2.57,80.252.2.58,80.252= .2.59,80.252.2.60,80.252.2.61,80.252.2.62,80.252.2.63,80.252.2.64,80.252.2.= 65,80.252.2.80,80.252.2.67,80.252.2.68,80.252.2.69,80.252.2.70,80.252.2.71,= 80.252.2.72,80.252.2.73,80.252.2.74,80.252.2.75,80.252.2.76,80.252.2.77,80.= 252.2.78,80.252.2.79,80.252.2.80,80.252.2.81,80.252.2.82,80.252.2.83,80.252= .2.84,80.252.2.85,80.252.2.86,80.252.2.87,80.252.2.88,80.252.2.89,80.252.2.= 90,80.252.2.91,80.252.2.92,80.252.2.93,80.252.2.94,80.252.2.95,80.252.2.96,= 80.252.2.97,80.252.2.98,80.252.2.99,80.252.2.100,80.252.2.101,80.252.2.102,= 80.252.2.103,80.252.2.104,80.252.2.105,80.252.2.106,80.252.2.107,80.252.2.1= 08,80.252.2.109,80.252.2.110,80.252.2.111,80.252.2.112,80.252.2.113,80.252.= 2.114,80.252.2.115,80.252.2.116,80.252.2.117,80.252.2.118,80.252.2.119,80.2= 52.2.120,80.252.2.121,80.252.2.122,80.252.2.123,80.252.2.124,80.252.2.125,8= 0.252.2.126,80.252.2.127" jail_box_rootdir=3D"/usr/jail/box" jail_box_hostname=3D"box.fox-host.net" jail_box_devfs_enable=3D"YES" jail_box_devfs_ruleset=3D"devfsrules_jail" - It worked when I had just one IP in jail_box_ip. Is there a way to make auth listen to all my IPs, or should I switch to oidentd or pidentd? Many thanks! --=20 http://www.home.no/reddvinylene From owner-freebsd-jail@FreeBSD.ORG Wed Aug 6 20:20:07 2008 Return-Path: Delivered-To: freebsd-jail@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id E4FF0106566C for ; Wed, 6 Aug 2008 20:20:07 +0000 (UTC) (envelope-from bzeeb-lists@lists.zabbadoz.net) Received: from mail.cksoft.de (mail.cksoft.de [62.111.66.27]) by mx1.freebsd.org (Postfix) with ESMTP id 98E578FC18 for ; Wed, 6 Aug 2008 20:20:07 +0000 (UTC) (envelope-from bzeeb-lists@lists.zabbadoz.net) Received: from localhost (amavis.str.cksoft.de [192.168.74.71]) by mail.cksoft.de (Postfix) with ESMTP id AE18B41C752; Wed, 6 Aug 2008 22:20:05 +0200 (CEST) X-Virus-Scanned: amavisd-new at cksoft.de Received: from mail.cksoft.de ([62.111.66.27]) by localhost (amavis.str.cksoft.de [192.168.74.71]) (amavisd-new, port 10024) with ESMTP id 18XRpbiUV6qy; Wed, 6 Aug 2008 22:20:05 +0200 (CEST) Received: by mail.cksoft.de (Postfix, from userid 66) id 40C5A41C751; Wed, 6 Aug 2008 22:20:05 +0200 (CEST) Received: from maildrop.int.zabbadoz.net (maildrop.int.zabbadoz.net [10.111.66.10]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by mail.int.zabbadoz.net (Postfix) with ESMTP id DED99444892; Wed, 6 Aug 2008 20:18:15 +0000 (UTC) Date: Wed, 6 Aug 2008 20:18:15 +0000 (UTC) From: "Bjoern A. Zeeb" X-X-Sender: bz@maildrop.int.zabbadoz.net To: Redd Vinylene In-Reply-To: Message-ID: <20080806201636.J88849@maildrop.int.zabbadoz.net> References: X-OpenPGP-Key: 0x14003F198FEFA3E77207EE8D2B58B8F83CCF1842 MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII; format=flowed Cc: freebsd-jail@freebsd.org, questions@freebsd.org Subject: Re: identd on jail with multiple IPs X-BeenThere: freebsd-jail@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Discussion about FreeBSD jail\(8\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 06 Aug 2008 20:20:08 -0000 On Wed, 6 Aug 2008, Redd Vinylene wrote: > I cannot seem to make identd work on a jail with multiple IPs (Bjoern > Zeeb's patch): So do you have any kind of error message? packet traces or anything to further isolate the problem rather than "does not work"? -- Bjoern A. Zeeb Stop bit received. Insert coin for new game. From owner-freebsd-jail@FreeBSD.ORG Wed Aug 6 20:58:04 2008 Return-Path: Delivered-To: freebsd-jail@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 0F382106566B for ; Wed, 6 Aug 2008 20:58:04 +0000 (UTC) (envelope-from reddvinylene@gmail.com) Received: from mu-out-0910.google.com (mu-out-0910.google.com [209.85.134.188]) by mx1.freebsd.org (Postfix) with ESMTP id 85EE08FC1E for ; Wed, 6 Aug 2008 20:58:03 +0000 (UTC) (envelope-from reddvinylene@gmail.com) Received: by mu-out-0910.google.com with SMTP id i2so58645mue.3 for ; Wed, 06 Aug 2008 13:58:02 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=domainkey-signature:received:received:message-id:date:from:to :subject:in-reply-to:mime-version:content-type :content-transfer-encoding:content-disposition:references; bh=vDSppoA5ivBmWAysOiiDkcEWUY9hUuSZUU9OEr9t2Aw=; b=CZHznOlG2GqWcxrgoQjX/UfltsSJx/bdRi1GfFkD/RQIXj8PCuJmwYAkn7uK3hXG2e nzjaIuLh653VPGgOdLkRg20091VmgB4K3IzSC8cI09cnzAZVGS5ryvpdt3bkj9KT8cZq Z7cjqyUV7naPudNPGkqcLT0yThvB2095TMObM= DomainKey-Signature: a=rsa-sha1; c=nofws; d=gmail.com; s=gamma; h=message-id:date:from:to:subject:in-reply-to:mime-version :content-type:content-transfer-encoding:content-disposition :references; b=XXOD6yxVqVeo5vUhuLO55nPz5/C1I5eJYzRZDiXc00t+bA209xPcpgcw3FCBfHHj7e l/cfk1mUJJEcfBD/sNyzCwlLhKxAqFYjhB2H2lOoJJPnX3XTXMEr94k+yTENpB2lvM8v 6PZvZb06EzFqvLV00n5fT6NwjWYa4Vci8/Rt4= Received: by 10.103.173.5 with SMTP id a5mr1731081mup.117.1218056281998; Wed, 06 Aug 2008 13:58:01 -0700 (PDT) Received: by 10.103.199.5 with HTTP; Wed, 6 Aug 2008 13:58:01 -0700 (PDT) Message-ID: Date: Wed, 6 Aug 2008 22:58:01 +0200 From: "Redd Vinylene" To: "Bjoern A. Zeeb" , freebsd-jail@freebsd.org In-Reply-To: <20080806201636.J88849@maildrop.int.zabbadoz.net> MIME-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit Content-Disposition: inline References: <20080806201636.J88849@maildrop.int.zabbadoz.net> Cc: Subject: Re: identd on jail with multiple IPs X-BeenThere: freebsd-jail@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Discussion about FreeBSD jail\(8\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 06 Aug 2008 20:58:04 -0000 Good evening Bjoern, Exactly how do I do a packet trace? I could do a tcpdump -n -e -ttt -i rl0 but I don't know how to filter out all the noise. But actually, identd works just fine here with the jail's first IP, 66.252.2.4. The problem must be elsewhere. When I change the IP to 66.252.2.5, or any other IP besides the first, I get errors like: ERROR Closing Link: 0.0.0.0 (A-banned: [AKILL ID:1212791563K-a] [exp/idsh] Connections from this netrange are required to respond to identd requests in order to connect to DALnet. Visit http://kline.dal.net/exploits/ident.htm for more information. Contact your provider if identd is not working (2008/08/04 02.07)) When connecting to irc.freenode.net though, it defaults back to 66.252.2.4 no matter what IP I use. Maybe I've just twisted some of the basics? - The host (mother)'s rc.conf http://pastie.org/248762 (you've probably seen that one before though) - 66.252.2.4# cat /etc/rc.conf sshd_enable="YES" inetd_enable="YES" linux_enable="YES" clear_tmp_enable="YES" update_motd="NO" - 66.252.2.4# cat /etc/resolv.conf # Same as the host. Perhaps it should only contain "nameserver 66.252.2.2"? nameserver 69.65.17.101 nameserver 69.65.16.102 - 66.252.2.4# cat /etc/hosts 127.0.0.1 localhost localhost.fox-host.net 66.252.2.2 mother.fox-host.net mother 66.252.2.3 camel.fox-host.net camel 66.252.2.4 box.fox-host.net box - 66.252.2.4# uname -a FreeBSD mother.fox-host.net 7.0-STABLE FreeBSD 7.0-STABLE #3: Sat Aug 2 18:55:18 CDT 2008 kalle@mother.fox-host.net:/usr/obj/usr/src/sys/GENERIC i386 - Maybe you'd be willing to log onto the box yourself and boss it around a little? Cheers, Redd On Wed, Aug 6, 2008 at 10:18 PM, Bjoern A. Zeeb wrote: > On Wed, 6 Aug 2008, Redd Vinylene wrote: > >> I cannot seem to make identd work on a jail with multiple IPs (Bjoern >> Zeeb's patch): > > So do you have any kind of error message? packet traces or anything to > further isolate the problem rather than "does not work"? > > -- > Bjoern A. Zeeb Stop bit received. Insert coin for new game. > -- http://www.home.no/reddvinylene From owner-freebsd-jail@FreeBSD.ORG Wed Aug 6 21:01:21 2008 Return-Path: Delivered-To: freebsd-jail@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 9DCD5106567F for ; Wed, 6 Aug 2008 21:01:21 +0000 (UTC) (envelope-from reddvinylene@gmail.com) Received: from nf-out-0910.google.com (nf-out-0910.google.com [64.233.182.187]) by mx1.freebsd.org (Postfix) with ESMTP id 2A6FC8FC1E for ; Wed, 6 Aug 2008 21:01:20 +0000 (UTC) (envelope-from reddvinylene@gmail.com) Received: by nf-out-0910.google.com with SMTP id h3so81806nfh.33 for ; Wed, 06 Aug 2008 14:01:20 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=domainkey-signature:received:received:message-id:date:from:to :subject:in-reply-to:mime-version:content-type :content-transfer-encoding:content-disposition:references; bh=x+XOgVkEkKJMIbQeaQsnwSFVixNoOyM7gA7vefQb/dQ=; b=dnALbj0Xq0GyYu6yww1J649iW99X6ism7FUvxPLg1zdhVu4D+r8nshX1EX855Nj+Xa OWpHiqE9BBdMfB8m7lBHx+LGo8RW2JZ9D1lKO/mdM/xpkocb5tCvRzM9BCF1OCtT/VdY BF9+6mEiOYaoRBBuQCTn/gDp8vyZg0gL2E9+g= DomainKey-Signature: a=rsa-sha1; c=nofws; d=gmail.com; s=gamma; h=message-id:date:from:to:subject:in-reply-to:mime-version :content-type:content-transfer-encoding:content-disposition :references; b=jH4AnUg1rp7Q05uF8x8AsifbmXiQYmWSCX08S/+fcDm+0A5IF94CMgcHxLxPoC5gDM jpDowwvEHJBzCy2OR6HPUwt/TVLKlg5nbLWjEJNSvuo6hsfekiXqN+wh98l2h+hzPzok LLIUR4hqGNQpFD7Y+K+vcjuLejLJ3S3Ny8cYs= Received: by 10.103.212.20 with SMTP id o20mr1762078muq.22.1218056479078; Wed, 06 Aug 2008 14:01:19 -0700 (PDT) Received: by 10.103.199.5 with HTTP; Wed, 6 Aug 2008 14:01:19 -0700 (PDT) Message-ID: Date: Wed, 6 Aug 2008 23:01:19 +0200 From: "Redd Vinylene" To: "Bjoern A. Zeeb" , freebsd-jail@freebsd.org In-Reply-To: MIME-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit Content-Disposition: inline References: <20080806201636.J88849@maildrop.int.zabbadoz.net> Cc: Subject: Re: identd on jail with multiple IPs X-BeenThere: freebsd-jail@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Discussion about FreeBSD jail\(8\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 06 Aug 2008 21:01:21 -0000 Could it be a DNS misconfiguration perhaps? On Wed, Aug 6, 2008 at 10:58 PM, Redd Vinylene wrote: > Good evening Bjoern, > > Exactly how do I do a packet trace? I could do a tcpdump -n -e -ttt -i > rl0 but I don't know how to filter out all the noise. > > But actually, identd works just fine here with the jail's first IP, > 66.252.2.4. The problem must be elsewhere. > > When I change the IP to 66.252.2.5, or any other IP besides the first, > I get errors like: > > ERROR Closing Link: 0.0.0.0 (A-banned: [AKILL ID:1212791563K-a] > [exp/idsh] Connections from this netrange are required to respond to > identd requests in order to connect to DALnet. Visit > http://kline.dal.net/exploits/ident.htm for more information. Contact > your provider if identd is not working (2008/08/04 02.07)) > > When connecting to irc.freenode.net though, it defaults back to > 66.252.2.4 no matter what IP I use. > > Maybe I've just twisted some of the basics? > > - > > The host (mother)'s rc.conf http://pastie.org/248762 (you've probably > seen that one before though) > > - > > 66.252.2.4# cat /etc/rc.conf > sshd_enable="YES" > inetd_enable="YES" > linux_enable="YES" > clear_tmp_enable="YES" > update_motd="NO" > > - > > 66.252.2.4# cat /etc/resolv.conf > # Same as the host. Perhaps it should only contain "nameserver 66.252.2.2"? > nameserver 69.65.17.101 > nameserver 69.65.16.102 > > - > > 66.252.2.4# cat /etc/hosts > 127.0.0.1 localhost localhost.fox-host.net > 66.252.2.2 mother.fox-host.net mother > 66.252.2.3 camel.fox-host.net camel > 66.252.2.4 box.fox-host.net box > > - > > 66.252.2.4# uname -a > FreeBSD mother.fox-host.net 7.0-STABLE FreeBSD 7.0-STABLE #3: Sat Aug > 2 18:55:18 CDT 2008 > kalle@mother.fox-host.net:/usr/obj/usr/src/sys/GENERIC i386 > > - > > Maybe you'd be willing to log onto the box yourself and boss it around a little? > > Cheers, > Redd > > On Wed, Aug 6, 2008 at 10:18 PM, Bjoern A. Zeeb > wrote: >> On Wed, 6 Aug 2008, Redd Vinylene wrote: >> >>> I cannot seem to make identd work on a jail with multiple IPs (Bjoern >>> Zeeb's patch): >> >> So do you have any kind of error message? packet traces or anything to >> further isolate the problem rather than "does not work"? >> >> -- >> Bjoern A. Zeeb Stop bit received. Insert coin for new game. >> > > > > -- > http://www.home.no/reddvinylene > -- http://www.home.no/reddvinylene From owner-freebsd-jail@FreeBSD.ORG Wed Aug 6 22:54:36 2008 Return-Path: Delivered-To: freebsd-jail@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 1D35A106566C for ; Wed, 6 Aug 2008 22:54:36 +0000 (UTC) (envelope-from reddvinylene@gmail.com) Received: from fg-out-1718.google.com (fg-out-1718.google.com [72.14.220.158]) by mx1.freebsd.org (Postfix) with ESMTP id 9F4398FC19 for ; Wed, 6 Aug 2008 22:54:35 +0000 (UTC) (envelope-from reddvinylene@gmail.com) Received: by fg-out-1718.google.com with SMTP id l26so178437fgb.35 for ; Wed, 06 Aug 2008 15:54:34 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=domainkey-signature:received:received:message-id:date:from:to :subject:in-reply-to:mime-version:content-type :content-transfer-encoding:content-disposition:references; bh=/QSgKh+1fZJRWTf/wRogsxCLaG50lyOoH7iUb93MGtM=; b=WgN9AJOC0yClSCBhwPjZMHfC/SYPPfD41Cty2/OuY/1evxgORA/OqyFEIbXm4eHpdU 1JfQ73wDctrtWljpubviryyvKOLFYepXvxrhhw3ZmixrvctQXT+1bdi7a7FwvhWK/LSf 8sdokQ+izRYFfzTHQgG8SiUhLIMdYCs/monb4= DomainKey-Signature: a=rsa-sha1; c=nofws; d=gmail.com; s=gamma; h=message-id:date:from:to:subject:in-reply-to:mime-version :content-type:content-transfer-encoding:content-disposition :references; b=G2DhUKgI/1YNH5xUoolOXvTyhRlIugE+qg/KBcRlazPzE62gtVXvy0maehFIE8Im+d Vpm8DlWQ6Po7zAgrxyOxiHNPZD15TLBNxLhl+baVChF7MTSNMZxByQgaZCMbsYC2+6cs tRJYUojgkQKKnKEXWhmH3xiJmlOpUipMmRabM= Received: by 10.103.214.8 with SMTP id r8mr1800914muq.64.1218063274330; Wed, 06 Aug 2008 15:54:34 -0700 (PDT) Received: by 10.103.199.5 with HTTP; Wed, 6 Aug 2008 15:54:34 -0700 (PDT) Message-ID: Date: Thu, 7 Aug 2008 00:54:34 +0200 From: "Redd Vinylene" To: "Bjoern A. Zeeb" , freebsd-jail@freebsd.org In-Reply-To: MIME-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit Content-Disposition: inline References: <20080806201636.J88849@maildrop.int.zabbadoz.net> Cc: Subject: Re: identd on jail with multiple IPs X-BeenThere: freebsd-jail@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Discussion about FreeBSD jail\(8\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 06 Aug 2008 22:54:36 -0000 On Wed, Aug 6, 2008 at 11:01 PM, Redd Vinylene wrote: > Could it be a DNS misconfiguration perhaps? No it's not, I just had it confirmed. Either I got the basics wrong, or you got the patch wrong ;) Thank you so much for the help so far. Hopefully one of these days I'll be able to donate you guys a nice sum of money. Best regards, Redd -- http://www.home.no/reddvinylene From owner-freebsd-jail@FreeBSD.ORG Thu Aug 7 14:47:23 2008 Return-Path: Delivered-To: freebsd-jail@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 7E4FA1065674 for ; Thu, 7 Aug 2008 14:47:23 +0000 (UTC) (envelope-from reddvinylene@gmail.com) Received: from ug-out-1314.google.com (ug-out-1314.google.com [66.249.92.171]) by mx1.freebsd.org (Postfix) with ESMTP id 07B7C8FC1E for ; Thu, 7 Aug 2008 14:47:22 +0000 (UTC) (envelope-from reddvinylene@gmail.com) Received: by ug-out-1314.google.com with SMTP id q2so376788uge.37 for ; Thu, 07 Aug 2008 07:47:21 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=domainkey-signature:received:received:message-id:date:from:to :subject:in-reply-to:mime-version:content-type :content-transfer-encoding:content-disposition:references; bh=RKOhZYMXn8FU+v6lYMbEIpGDripw99cr8nPSXi7a8M8=; b=cmTXG/eywwQyycw9InZ2onf/iJz3nc7D+P1y3WTTj60O0KGVJxI/skXtihTyn8Bgmv acp9d53atSy6eGBQWPeNDr5kjW2QxItEaC7WCzNuDMaA+TmnIqgvY922/DmIWAgGQSMP v+Wy/Jjdu81uKo0TvgWgWUkNDr3K2vU3GxThA= DomainKey-Signature: a=rsa-sha1; c=nofws; d=gmail.com; s=gamma; h=message-id:date:from:to:subject:in-reply-to:mime-version :content-type:content-transfer-encoding:content-disposition :references; b=fPwkH/0tvaMwK4qXoJ/X3fqVb2TE8e19i6we3d3kapA36bj4UI0iMRbuS7G7/0yi6H MtonBCscfvnaWDmxyWWx06VpytOKzZXg0WDfTWAaTZW6n/6d/V3Y8o4M9tnu3p/U+hi/ fomI7cegE5RsyjE2IleWWgI21BJTHyrsArQwE= Received: by 10.103.245.18 with SMTP id x18mr2347397mur.20.1218120441608; Thu, 07 Aug 2008 07:47:21 -0700 (PDT) Received: by 10.103.199.5 with HTTP; Thu, 7 Aug 2008 07:47:20 -0700 (PDT) Message-ID: Date: Thu, 7 Aug 2008 16:47:20 +0200 From: "Redd Vinylene" To: "Bjoern A. Zeeb" , freebsd-jail@freebsd.org In-Reply-To: MIME-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit Content-Disposition: inline References: <20080806201636.J88849@maildrop.int.zabbadoz.net> Cc: Subject: Re: identd on jail with multiple IPs X-BeenThere: freebsd-jail@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Discussion about FreeBSD jail\(8\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 07 Aug 2008 14:47:23 -0000 Bjoern, How much do you need to help me? I really need to get this stuff working. My friend who runs this server is regretting ever saying yes to my suggestion, as his customers are calling him every day giving him a hard time. On Thu, Aug 7, 2008 at 12:54 AM, Redd Vinylene wrote: > On Wed, Aug 6, 2008 at 11:01 PM, Redd Vinylene wrote: >> Could it be a DNS misconfiguration perhaps? > > No it's not, I just had it confirmed. Either I got the basics wrong, > or you got the patch wrong ;) > > Thank you so much for the help so far. Hopefully one of these days > I'll be able to donate you guys a nice sum of money. > > Best regards, > Redd > > -- > http://www.home.no/reddvinylene > -- http://www.home.no/reddvinylene From owner-freebsd-jail@FreeBSD.ORG Thu Aug 7 18:17:04 2008 Return-Path: Delivered-To: freebsd-jail@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 55B3A1065677 for ; Thu, 7 Aug 2008 18:17:04 +0000 (UTC) (envelope-from mikhailg@webanoide.org) Received: from smtp.tal.navalradio.cl (smtp.tal.navalradio.cl [201.236.67.155]) by mx1.freebsd.org (Postfix) with ESMTP id D8EA28FC17 for ; Thu, 7 Aug 2008 18:17:03 +0000 (UTC) (envelope-from mikhailg@webanoide.org) Received: from [172.18.96.244] ([172.18.96.244]) (authenticated bits=0) by smtp.tal.navalradio.cl (8.13.8/8.13.8) with ESMTP id m77IGtHN055891 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NOT); Thu, 7 Aug 2008 18:17:00 GMT (envelope-from mikhailg@webanoide.org) Message-ID: <489B3C11.9000305@webanoide.org> Date: Thu, 07 Aug 2008 14:16:49 -0400 From: Mikhail Goriachev Organization: Webanoide User-Agent: Thunderbird 2.0.0.16 (Windows/20080708) MIME-Version: 1.0 To: Redd Vinylene References: <20080806201636.J88849@maildrop.int.zabbadoz.net> In-Reply-To: Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit Cc: freebsd-jail@freebsd.org Subject: Re: identd on jail with multiple IPs X-BeenThere: freebsd-jail@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Discussion about FreeBSD jail\(8\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 07 Aug 2008 18:17:04 -0000 Redd Vinylene wrote: > Good evening Bjoern, > > Exactly how do I do a packet trace? I could do a tcpdump -n -e -ttt -i > rl0 but I don't know how to filter out all the noise. > > But actually, identd works just fine here with the jail's first IP, > 66.252.2.4. The problem must be elsewhere. Just a shot in the dark. How about redirecting all IPs to the jail's primary IP with PF or similar? This might get you going - temporarily. Regards, Mikhail. -- Mikhail Goriachev Webanoide From owner-freebsd-jail@FreeBSD.ORG Fri Aug 8 15:36:45 2008 Return-Path: Delivered-To: freebsd-jail@hub.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 63E7F1065672; Fri, 8 Aug 2008 15:36:45 +0000 (UTC) (envelope-from kris@FreeBSD.org) Received: from freefall.freebsd.org (freefall.freebsd.org [IPv6:2001:4f8:fff6::28]) by mx1.freebsd.org (Postfix) with ESMTP id 398478FC12; Fri, 8 Aug 2008 15:36:45 +0000 (UTC) (envelope-from kris@FreeBSD.org) Received: from freefall.freebsd.org (kris@localhost [127.0.0.1]) by freefall.freebsd.org (8.14.2/8.14.2) with ESMTP id m78FaiAJ073451; Fri, 8 Aug 2008 15:36:44 GMT (envelope-from kris@freefall.freebsd.org) Received: (from kris@localhost) by freefall.freebsd.org (8.14.2/8.14.1/Submit) id m78FaiHi073447; Fri, 8 Aug 2008 15:36:44 GMT (envelope-from kris) Date: Fri, 8 Aug 2008 15:36:44 GMT Message-Id: <200808081536.m78FaiHi073447@freefall.freebsd.org> To: kris@FreeBSD.org, freebsd-bugs@FreeBSD.org, freebsd-jail@FreeBSD.org From: kris@FreeBSD.org Cc: Subject: Re: kern/126368: Running ktrace/kdump in jail leads to stale jails X-BeenThere: freebsd-jail@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Discussion about FreeBSD jail\(8\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 08 Aug 2008 15:36:45 -0000 Synopsis: Running ktrace/kdump in jail leads to stale jails Responsible-Changed-From-To: freebsd-bugs->freebsd-jail Responsible-Changed-By: kris Responsible-Changed-When: Fri Aug 8 15:36:29 UTC 2008 Responsible-Changed-Why: Looks like a simple patch to review http://www.freebsd.org/cgi/query-pr.cgi?pr=126368 From owner-freebsd-jail@FreeBSD.ORG Fri Aug 8 17:40:04 2008 Return-Path: Delivered-To: freebsd-jail@hub.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 4DE461065674 for ; Fri, 8 Aug 2008 17:40:04 +0000 (UTC) (envelope-from gnats@FreeBSD.org) Received: from freefall.freebsd.org (freefall.freebsd.org [IPv6:2001:4f8:fff6::28]) by mx1.freebsd.org (Postfix) with ESMTP id 3CAD78FC14 for ; Fri, 8 Aug 2008 17:40:04 +0000 (UTC) (envelope-from gnats@FreeBSD.org) Received: from freefall.freebsd.org (gnats@localhost [127.0.0.1]) by freefall.freebsd.org (8.14.2/8.14.2) with ESMTP id m78He4RN084277 for ; Fri, 8 Aug 2008 17:40:04 GMT (envelope-from gnats@freefall.freebsd.org) Received: (from gnats@localhost) by freefall.freebsd.org (8.14.2/8.14.1/Submit) id m78He4bc084276; Fri, 8 Aug 2008 17:40:04 GMT (envelope-from gnats) Date: Fri, 8 Aug 2008 17:40:04 GMT Message-Id: <200808081740.m78He4bc084276@freefall.freebsd.org> To: freebsd-jail@FreeBSD.org From: "Mateusz Guzik" Cc: Subject: Re: kern/126368: Running ktrace/kdump in jail leads to stale jails X-BeenThere: freebsd-jail@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list Reply-To: Mateusz Guzik List-Id: "Discussion about FreeBSD jail\(8\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 08 Aug 2008 17:40:04 -0000 The following reply was made to PR kern/126368; it has been noted by GNATS. From: "Mateusz Guzik" To: bug-followup@freebsd.org Cc: Subject: Re: kern/126368: Running ktrace/kdump in jail leads to stale jails Date: Fri, 8 Aug 2008 19:30:22 +0200 Err, I made a mistake. crfree() will be called in case of failure (loop starting at line 959), so the following patch should be ok: --- sys/kern/kern_ktrace.c.orig 2008-08-08 16:37:45.000000000 +0200 +++ sys/kern/kern_ktrace.c 2008-08-08 19:25:16.000000000 +0200 @@ -933,12 +933,14 @@ error = VOP_WRITE(vp, &auio, IO_UNIT | IO_APPEND, cred); VOP_UNLOCK(vp, 0, td); vn_finished_write(mp); vrele(vp); VFS_UNLOCK_GIANT(vfslocked); - if (!error) + if (!error) { + crfree(cred); return; + } /* * If error encountered, give up tracing on this vnode. We defer * all the vrele()'s on the vnode until after we are finished walking * the various lists to avoid needlessly holding locks. */ From owner-freebsd-jail@FreeBSD.ORG Fri Aug 8 19:02:04 2008 Return-Path: Delivered-To: freebsd-jail@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 3133B106566B for ; Fri, 8 Aug 2008 19:02:04 +0000 (UTC) (envelope-from bz@FreeBSD.org) Received: from mail.cksoft.de (mail.cksoft.de [62.111.66.27]) by mx1.freebsd.org (Postfix) with ESMTP id DFF508FC0C for ; Fri, 8 Aug 2008 19:02:03 +0000 (UTC) (envelope-from bz@FreeBSD.org) Received: from localhost (amavis.str.cksoft.de [192.168.74.71]) by mail.cksoft.de (Postfix) with ESMTP id BD1A741C7AC; Fri, 8 Aug 2008 20:45:05 +0200 (CEST) X-Virus-Scanned: amavisd-new at cksoft.de Received: from mail.cksoft.de ([62.111.66.27]) by localhost (amavis.str.cksoft.de [192.168.74.71]) (amavisd-new, port 10024) with ESMTP id OWrOAjsAaorn; Fri, 8 Aug 2008 20:45:05 +0200 (CEST) Received: by mail.cksoft.de (Postfix, from userid 66) id 683F541C7AB; Fri, 8 Aug 2008 20:45:05 +0200 (CEST) Received: from maildrop.int.zabbadoz.net (maildrop.int.zabbadoz.net [10.111.66.10]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by mail.int.zabbadoz.net (Postfix) with ESMTP id 2F171444892; Fri, 8 Aug 2008 18:43:38 +0000 (UTC) Date: Fri, 8 Aug 2008 18:43:38 +0000 (UTC) From: "Bjoern A. Zeeb" X-X-Sender: bz@maildrop.int.zabbadoz.net To: Mateusz Guzik In-Reply-To: <200808081740.m78He4bc084276@freefall.freebsd.org> Message-ID: <20080808184224.H88849@maildrop.int.zabbadoz.net> References: <200808081740.m78He4bc084276@freefall.freebsd.org> X-OpenPGP-Key: 0x14003F198FEFA3E77207EE8D2B58B8F83CCF1842 MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII; format=flowed Cc: freebsd-jail@FreeBSD.org Subject: Re: kern/126368: Running ktrace/kdump in jail leads to stale jails X-BeenThere: freebsd-jail@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Discussion about FreeBSD jail\(8\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 08 Aug 2008 19:02:04 -0000 On Fri, 8 Aug 2008, Mateusz Guzik wrote: > The following reply was made to PR kern/126368; it has been noted by GNATS. > > From: "Mateusz Guzik" > To: bug-followup@freebsd.org > Cc: > Subject: Re: kern/126368: Running ktrace/kdump in jail leads to stale jails > Date: Fri, 8 Aug 2008 19:30:22 +0200 > > Err, I made a mistake. crfree() will be called in case of failure > (loop starting at line 959), so the following patch should be ok: > > --- sys/kern/kern_ktrace.c.orig 2008-08-08 16:37:45.000000000 +0200 > +++ sys/kern/kern_ktrace.c 2008-08-08 19:25:16.000000000 +0200 > @@ -933,12 +933,14 @@ > error = VOP_WRITE(vp, &auio, IO_UNIT | IO_APPEND, cred); > VOP_UNLOCK(vp, 0, td); > vn_finished_write(mp); > vrele(vp); > VFS_UNLOCK_GIANT(vfslocked); > - if (!error) > + if (!error) { > + crfree(cred); > return; > + } that sounds more plausible w/o seeing the surrounding code. I had wondered already earlier today when I was pointed at. I'll look into this. > /* > * If error encountered, give up tracing on this vnode. We defer > * all the vrele()'s on the vnode until after we are finished walking > * the various lists to avoid needlessly holding locks. > */ > _______________________________________________ > freebsd-jail@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-jail > To unsubscribe, send any mail to "freebsd-jail-unsubscribe@freebsd.org" > -- Bjoern A. Zeeb Stop bit received. Insert coin for new game. From owner-freebsd-jail@FreeBSD.ORG Sat Aug 9 12:38:33 2008 Return-Path: Delivered-To: freebsd-jail@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 9727E1065681 for ; Sat, 9 Aug 2008 12:38:33 +0000 (UTC) (envelope-from reddvinylene@gmail.com) Received: from fg-out-1718.google.com (fg-out-1718.google.com [72.14.220.154]) by mx1.freebsd.org (Postfix) with ESMTP id A1FFF8FC13 for ; Sat, 9 Aug 2008 12:38:32 +0000 (UTC) (envelope-from reddvinylene@gmail.com) Received: by fg-out-1718.google.com with SMTP id l26so1725058fgb.35 for ; Sat, 09 Aug 2008 05:38:31 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=domainkey-signature:received:received:message-id:date:from:to :subject:mime-version:content-type:content-transfer-encoding :content-disposition; bh=5bwvcm2BZm4xarDno+w+fS7SSJF8wib8ZGPKel8nU1s=; b=ks7RUGLAdaPQorF2XCfVqRzrnOV6F+YPD3Oh4oXnw5RLY1fIlQmwLQDQIo09PKBaTr hur3ON/KtuWRPD7RzMwCj79P+SNaXlOvg9SGkyKUB5wo8QOWiXPodGQrvMbPo4DbxMqR JcpCSJpdvqBrYnGN/QSZUnwumMS6NZlCnpeak= DomainKey-Signature: a=rsa-sha1; c=nofws; d=gmail.com; s=gamma; h=message-id:date:from:to:subject:mime-version:content-type :content-transfer-encoding:content-disposition; b=qIMsr/DxrIEl0I/n3E+6F+wW+516uQkCjImhahCK4Gxmwxk0Ti5S+/mCP+41M5zN/x awoKVfUX318rQQUYbde4xsS7YrE/3cP6i0xxkTu7GRMVcVQDLtIxUVhOgsj1DYnKO1ft XQTkLSfU64s5VRXM5eoHasgBZ4Nvcex5lftNQ= Received: by 10.103.242.7 with SMTP id u7mr4062238mur.100.1218285511089; Sat, 09 Aug 2008 05:38:31 -0700 (PDT) Received: by 10.103.199.5 with HTTP; Sat, 9 Aug 2008 05:38:31 -0700 (PDT) Message-ID: Date: Sat, 9 Aug 2008 14:38:31 +0200 From: "Redd Vinylene" To: "Bjoern A. Zeeb" , freebsd-jail@freebsd.org MIME-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit Content-Disposition: inline Cc: Subject: My jails just died X-BeenThere: freebsd-jail@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Discussion about FreeBSD jail\(8\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 09 Aug 2008 12:38:33 -0000 My jails just died. They worked just fine yesterday and I haven't touched anything. I've tried rebooting over and over but they just won't start. jls remains empty. (root@mother)(08/09+12:25) (/usr) /etc/rc.d/jail start Configuring jails:. Starting jails: Nothing happens. I'm confused. On Sat, Aug 9, 2008 at 12:33 PM, Redd Vinylene wrote: > Man that was very, very helpful indeed. Interesting network forensics there... > > Do you have PayPal? Also, do let me know when you're in Sweden so I > can buy you a beer :-)) > > I've now come up with this question: > > - > > I got a FreeBSD server, mother (66.252.2.2). On it, I've made two > jails, camel (66.252.2.3) and box (66.252.2.4 through to > 66.252.2.127). The problem is that reverse lookups for any of the IPs > preceding .4 on box fails. If I connect to IRC with .5 for instance, > it times out and reverts back to .4, whose lookup works just fine. > BIND runs on camel. Could the problem be that BIND is not upstream for > all those IPs? (I 'm not quite sure what that means though, a friend > just gave me a tip.) Maybe I must configure the reverse for each of > IPs individually? I would really like to keep the DNS server running > on camel though, as its dedicated to all my vital services, whereas > box is more the home of all my users, and thus expendable ;) My > (hopefully) relevant configuration files can be found here -- > http://pastie.org/250469 -- much obliged, and thanks! > > - > > Cheers! > > On Sat, Aug 9, 2008 at 12:33 AM, Bjoern A. Zeeb > wrote: >> On Fri, 8 Aug 2008, Redd Vinylene wrote: >> >> Hi, >> >>> Actually I'm not sure how to make identd to listen to all the IPs. >> >> by default it does and it looks like it does: >> tcp4 0 0 *.113 *.* LISTEN >> >> >>> There's no such option in the manuals. But ain't the problem more >>> related to the IPs? >>> >>> If you need access to the host as well, surely that is no problem! >> >> I wondered how your users would IRC from a non-default IP but now this >> is obvious. >> >> >> So what I did in one exterm was: >> >> (bjoern@box)(08/09+03:06) >> (~) telnet -s 66.252.2.38 66.252.2.117 22 Trying 66.252.2.117... >> Connected to 66.252.2.117. >> Escape character is '^]'. >> SSH-2.0-OpenSSH_4.5p1 FreeBSD-20061110 >> >> >> and in the other I checked netstat -an for port 22 to find the other >> port number: >> >> tcp4 0 0 66.252.2.117.22 66.252.2.38.50503 ESTABLISHED >> tcp4 0 0 66.252.2.38.50503 66.252.2.117.22 ESTABLISHED >> >> trying to remember how to speak ident (auth): >> >> (bjoern@box)(08/09+03:07) >> (~) telnet -s 66.252.2.117 66.252.2.38 113 >> Trying 66.252.2.38... >> Connected to 66.252.2.38. >> Escape character is '^]'. >> 22,50503 >> 22 , 50503 : ERROR : NO-USER >> Connection closed by foreign host. >> (bjoern@box)(08/09+03:08) >> (~) (bjoern@box)(08/09+03:08) >> (~) telnet -s 66.252.2.117 66.252.2.38 113 >> Trying 66.252.2.38... >> Connected to 66.252.2.38. >> Escape character is '^]'. >> 50503,22 >> 50503 , 22 : USERID : UNKNOWN : bjoern >> Connection closed by foreign host. >> (bjoern@box)(08/09+03:08) >> >> looks good. >> >> What I notcied was that it was responing very slowly. So next I will >> check inetd options (especially -w/-W) and if I can find obvious things >> like DNS timeouts... >> >> (~) ps axuwl | grep inetd >> root 47676 0.0 0.1 3240 1348 ?? IsJ Thu11PM 0:00.01 inetd 0 >> 1 0 44 0 select >> >> I wonder why I do not see any options there? Have you started inetd >> manually? >> >> The defaults are: >> >> (/etc/defaults) grep inetd rc.conf inetd_enable="NO" # Run the >> network daemon dispatcher (YES/NO). >> inetd_program="/usr/sbin/inetd" # path to inetd, if you want a different >> one. >> inetd_flags="-wW -C 60" # Optional flags to inetd >> (bjoern@box)(08/09+03:12) >> >> and rc.conf only has: >> (/etc) grep inetd rc.conf inetd_enable="YES" >> >> It's probably okay to not rate limit and not tcpwrap it - as it is >> running. >> >> You may want to add the following to /etc/rc.conf >> inetd_flags="" >> >> >> >> Okay resolve.conf is populated as well: >> (/etc) cat resolv.conf >> >> # FreeBSD/i386 box.fox-host.net >> >> nameserver 69.65.17.101 >> >> nameserver 69.65.16.102 >> >> >> Typing netstat (without options) hangs after "box", when it starts to >> resolve the additional IPs which are not in /etc/hosts. >> >> (/etc) host -t ns 2.252.66.in-addr.arpa. Host 2.252.66.in-addr.arpa not >> found: 2(SERVFAIL) >> >> You may want to add the other IPs with some dummy values to >> /etc/hosts to temporarily most likely solve this problem. >> >> telnet 66.252.2.4 22 returns instantly from within the jail, >> telnet 66.252.2.5 22 takes ages to print the SSH "EHLO" >> >> So I guess you problem is neither with jails nor with auth(ident) but >> with something trying to do a reverse lookup (on your address) and >> timing out, timing out the ident lookups from IRC servers which should >> return almost instantly. >> >> Let me know if that helped. >> >> >> Bjoern >> >> PS: >> >> BTW. clock is way off on this box: >> Sat Aug 9 03:19:45 UTC 2008 >> but it's about >> Fri Aug 8 22:27:59 UTC 2008 >> >> -- >> Bjoern A. Zeeb Stop bit received. Insert coin for new game. >> > > > > -- > http://www.home.no/reddvinylene > -- http://www.home.no/reddvinylene From owner-freebsd-jail@FreeBSD.ORG Sat Aug 9 12:45:08 2008 Return-Path: Delivered-To: freebsd-jail@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 34D6B106564A for ; Sat, 9 Aug 2008 12:45:08 +0000 (UTC) (envelope-from bzeeb-lists@lists.zabbadoz.net) Received: from mail.cksoft.de (mail.cksoft.de [62.111.66.27]) by mx1.freebsd.org (Postfix) with ESMTP id E2EF48FC13 for ; Sat, 9 Aug 2008 12:45:07 +0000 (UTC) (envelope-from bzeeb-lists@lists.zabbadoz.net) Received: from localhost (amavis.str.cksoft.de [192.168.74.71]) by mail.cksoft.de (Postfix) with ESMTP id 383E741C799; Sat, 9 Aug 2008 14:45:06 +0200 (CEST) X-Virus-Scanned: amavisd-new at cksoft.de Received: from mail.cksoft.de ([62.111.66.27]) by localhost (amavis.str.cksoft.de [192.168.74.71]) (amavisd-new, port 10024) with ESMTP id x5q+vCFprfKt; Sat, 9 Aug 2008 14:45:05 +0200 (CEST) Received: by mail.cksoft.de (Postfix, from userid 66) id DA5ED41C798; Sat, 9 Aug 2008 14:45:05 +0200 (CEST) Received: from maildrop.int.zabbadoz.net (maildrop.int.zabbadoz.net [10.111.66.10]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by mail.int.zabbadoz.net (Postfix) with ESMTP id C5ED344487F; Sat, 9 Aug 2008 12:44:20 +0000 (UTC) Date: Sat, 9 Aug 2008 12:44:20 +0000 (UTC) From: "Bjoern A. Zeeb" X-X-Sender: bz@maildrop.int.zabbadoz.net To: Redd Vinylene In-Reply-To: Message-ID: <20080809124116.T88849@maildrop.int.zabbadoz.net> References: X-OpenPGP-Key: 0x14003F198FEFA3E77207EE8D2B58B8F83CCF1842 MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII; format=flowed Cc: freebsd-jail@freebsd.org Subject: Re: My jails just died X-BeenThere: freebsd-jail@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Discussion about FreeBSD jail\(8\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 09 Aug 2008 12:45:08 -0000 On Sat, 9 Aug 2008, Redd Vinylene wrote: Hi, > My jails just died. They worked just fine yesterday and I haven't > touched anything. what do you mean with "died"? Did the box crash and once booted, the jails were no longer started? Did you stop the jails and they didn't start again? > I've tried rebooting over and over but they just won't start. jls remains empty. This is not windows. rebooting usually does not help to solve problems unless you need to update the kernel;) > (root@mother)(08/09+12:25) > (/usr) /etc/rc.d/jail start > Configuring jails:. > Starting jails: > > Nothing happens. I'm confused. have you edited /etc/rc.conf on mother? Are the jails still configured there? -- Bjoern A. Zeeb Stop bit received. Insert coin for new game. From owner-freebsd-jail@FreeBSD.ORG Sat Aug 9 18:54:17 2008 Return-Path: Delivered-To: freebsd-jail@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 5B710106566C for ; Sat, 9 Aug 2008 18:54:17 +0000 (UTC) (envelope-from reddvinylene@gmail.com) Received: from fg-out-1718.google.com (fg-out-1718.google.com [72.14.220.152]) by mx1.freebsd.org (Postfix) with ESMTP id D671E8FC0A for ; Sat, 9 Aug 2008 18:54:16 +0000 (UTC) (envelope-from reddvinylene@gmail.com) Received: by fg-out-1718.google.com with SMTP id l26so1852489fgb.35 for ; Sat, 09 Aug 2008 11:54:15 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=domainkey-signature:received:received:message-id:date:from:to :subject:in-reply-to:mime-version:content-type :content-transfer-encoding:content-disposition:references; bh=HiX8FubmTxD/XQAThTIWr0QeIxIpxoNPbQHzREudpRc=; b=GPTrx9CcjoyZKT4KReqLfUbax6PlW18MsvekGkAa7UaDHQWs57HhNCFAlre4S2PC+6 HisAObfiB2DARTOaQw2Tmfx0UPGPZ9OjwFRNHgP2M7DS+5jfxRQe5luqWd0FAA//bmMZ 5hG6jsBKHcuAbk+EUBAqbfprNGIjhPxil9T40= DomainKey-Signature: a=rsa-sha1; c=nofws; d=gmail.com; s=gamma; h=message-id:date:from:to:subject:in-reply-to:mime-version :content-type:content-transfer-encoding:content-disposition :references; b=njjOrf1QCF2l4yjbmBY1FGcqXpOq/303O30MXUhPehBfpkf/tGshjnXSxb5c0Nfb9i +BT18//5PzzqjHPvhE4ID1iRkkwlgQ5IQqE3msbIgHNwKUmCb2h5MbzwfGWtZG1wFBYt 2XCNCswoL7U5jLgL2fXmog8sy5KYB6FD1fJlU= Received: by 10.103.223.20 with SMTP id a20mr4234022mur.86.1218308054755; Sat, 09 Aug 2008 11:54:14 -0700 (PDT) Received: by 10.103.199.5 with HTTP; Sat, 9 Aug 2008 11:54:14 -0700 (PDT) Message-ID: Date: Sat, 9 Aug 2008 20:54:14 +0200 From: "Redd Vinylene" To: albinootje , freebsd-jail@freebsd.org In-Reply-To: <489DE501.1060106@gmail.com> MIME-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit Content-Disposition: inline References: <489DE501.1060106@gmail.com> Cc: Subject: Re: My jails just died X-BeenThere: freebsd-jail@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Discussion about FreeBSD jail\(8\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 09 Aug 2008 18:54:17 -0000 Hello albinootje :) It turned out to be a combination of sendmail and a couple of mongrel processes that prevented the jails from loading properly. Bjoern Zeeb helped me identify the issue, I disabled them, and my jails went back up! Much obliged though, and have a nice day! On Sat, Aug 9, 2008 at 8:42 PM, albinootje wrote: > Redd Vinylene wrote: > >> My jails just died. They worked just fine yesterday and I haven't >> touched anything. >> >> I've tried rebooting over and over but they just won't start. jls remains >> empty. >> >> (root@mother)(08/09+12:25) >> (/usr) /etc/rc.d/jail start >> Configuring jails:. >> Starting jails: >> >> Nothing happens. I'm confused. > > could you post the output of : # grep -i jails /etc/rc.conf > and # uname -a ? > > in the meantime you can try starting just one of your jails manually > following the jail manual page, like e.g. > > jail /data/jail/192.168.11.100 testhostname 192.168.11.100 \ > /bin/sh /etc/rc > > to narrow down the exact problem > > > -- http://www.home.no/reddvinylene From owner-freebsd-jail@FreeBSD.ORG Sat Aug 9 19:09:00 2008 Return-Path: Delivered-To: freebsd-jail@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 12DB51065687 for ; Sat, 9 Aug 2008 19:09:00 +0000 (UTC) (envelope-from albinootje@gmail.com) Received: from wr-out-0506.google.com (wr-out-0506.google.com [64.233.184.230]) by mx1.freebsd.org (Postfix) with ESMTP id BBBE38FC28 for ; Sat, 9 Aug 2008 19:08:59 +0000 (UTC) (envelope-from albinootje@gmail.com) Received: by wr-out-0506.google.com with SMTP id c8so583198wra.27 for ; Sat, 09 Aug 2008 12:08:59 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=domainkey-signature:received:received:message-id:date:from :user-agent:mime-version:to:cc:subject:references:in-reply-to :content-type:content-transfer-encoding; bh=/RyOF/XogwnqAaPJvObevf4kUqdctk0kWctMwCTBrGI=; b=LKaJr0Y030jfbPZgKIXc201rzbw/eD350eHWJaQSWpUToeNcupQyAcEQ+NzYsDBWFP J7AQiT4T7Vj5MKV6wYttvQk7kIhaHkYkX4OspQ9aPlLsMzwz9dVo5X4tcJH1Dg7ei6d2 pBDVDRHK8NlMPmlRNoRhXCg5M2OKjkGjV9G2E= DomainKey-Signature: a=rsa-sha1; c=nofws; d=gmail.com; s=gamma; h=message-id:date:from:user-agent:mime-version:to:cc:subject :references:in-reply-to:content-type:content-transfer-encoding; b=WQoIGC3XY2z8d0muMYVuYl6IU7YaJvpwemWrJ+ScI6tNk4ZwcrlQ7YqbBPfd1TCd7q 7TbZl3G12BzVCei1DLjp1aFwRBHAQUzjo65ZGtmyT75Rjc9imOxSOD1ZjM4McmgflVKA adjVH7VFL9ob3D8DoeZYGKrv16Y4TwiEtzkKU= Received: by 10.90.117.20 with SMTP id p20mr8436105agc.91.1218307332746; Sat, 09 Aug 2008 11:42:12 -0700 (PDT) Received: from ?192.168.0.104? ( [217.19.30.147]) by mx.google.com with ESMTPS id 44sm2672620hsa.9.2008.08.09.11.42.11 (version=TLSv1/SSLv3 cipher=RC4-MD5); Sat, 09 Aug 2008 11:42:12 -0700 (PDT) Message-ID: <489DE501.1060106@gmail.com> Date: Sat, 09 Aug 2008 20:42:09 +0200 From: albinootje User-Agent: Thunderbird 2.0.0.16 (X11/20080726) MIME-Version: 1.0 To: Redd Vinylene References: In-Reply-To: Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit Cc: freebsd-jail@freebsd.org Subject: Re: My jails just died X-BeenThere: freebsd-jail@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Discussion about FreeBSD jail\(8\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 09 Aug 2008 19:09:00 -0000 Redd Vinylene wrote: > My jails just died. They worked just fine yesterday and I haven't > touched anything. > > I've tried rebooting over and over but they just won't start. jls remains empty. > > (root@mother)(08/09+12:25) > (/usr) /etc/rc.d/jail start > Configuring jails:. > Starting jails: > > Nothing happens. I'm confused. could you post the output of : # grep -i jails /etc/rc.conf and # uname -a ? in the meantime you can try starting just one of your jails manually following the jail manual page, like e.g. jail /data/jail/192.168.11.100 testhostname 192.168.11.100 \ /bin/sh /etc/rc to narrow down the exact problem