Date: Thu, 12 Aug 2010 14:35:37 +0000 (GMT) From: Brice ERRANDONEA <berrandonea@yahoo.fr> To: freebsd-questions@FreeBSD.ORG Subject: Re : Re : How to connect a jail to the web ? Message-ID: <861468.90347.qm@web24607.mail.ird.yahoo.com> In-Reply-To: <201008121252.o7CCq0Z2090702@lurza.secnetix.de> References: <201008121252.o7CCq0Z2090702@lurza.secnetix.de>
next in thread | previous in thread | raw e-mail | index | archive | help
Here they are.=0A=0AOn the host, when the jail is not running :=0A=0A%ifcon=
fig=0Arl0: flags=3D8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> metric 0 mt=
u 1500=0A options=3D8<VLAN_MTU>=0A ether 00:11:09:15:72:6a=0A=
inet 192.168.1.38 netmask 0xffffff00 broadcast 192.168.1.255=0A =
media: Ethernet autoselect (100baseTX <full-duplex>)=0A status: =
active=0Afwe0: flags=3D8802<BROADCAST,SIMPLEX,MULTICAST> metric 0 mtu 1500=
=0A options=3D8<VLAN_MTU>=0A ether 02:11:06:99:8a:ff=0A =
ch 1 dma -1=0Afwip0: flags=3D8802<BROADCAST,SIMPLEX,MULTICAST> metric 0 m=
tu 1500=0A lladdr 0.11.6.66.0.99.8a.ff.a.2.ff.fe.0.0.0.0=0Aplip0: fl=
ags=3D8810<POINTOPOINT,SIMPLEX,MULTICAST> metric 0 mtu 1500=0Alo0: flags=3D=
8049<UP,LOOPBACK,RUNNING,MULTICAST> metric 0 mtu 16384=0A options=3D=
3<RXCSUM,TXCSUM>=0A inet6 fe80::1%lo0 prefixlen 64 scopeid 0x5=0A =
inet6 ::1 prefixlen 128=0A inet 127.0.0.1 netmask 0xff000000=0A=
nd6 options=3D3<PERFORMNUD,ACCEPT_RTADV>=0A%netstat -rnfinet=0ARout=
ing tables=0A=0AInternet:=0ADestination Gateway Flags =
Refs Use Netif Expire=0Adefault 192.168.1.1 UGS =
16 434 rl0=0A127.0.0.1 link#5 UH =
0 20 lo0=0A192.168.1.0/24 link#1 U 1 =
98 rl0=0A192.168.1.38 link#1 UHS 0 0=
lo0=0A=0AOn the host when the jail is running :=0A=0AFreeBSD# jls=0A =
JID IP Address Hostname Path=0A 1 93.0.168.=
242 MaPrison /usr/prison=0AFreeBSD# ifconfig=0Arl0:=
flags=3D8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> metric 0 mtu 1500=0A =
options=3D8<VLAN_MTU>=0A ether 00:11:09:15:72:6a=0A in=
et 192.168.1.38 netmask 0xffffff00 broadcast 192.168.1.255=0A inet 9=
3.0.168.242 netmask 0xffffffff broadcast 93.0.168.242=0A media: Ethe=
rnet autoselect (100baseTX <full-duplex>)=0A status: active=0Afwe0: =
flags=3D8802<BROADCAST,SIMPLEX,MULTICAST> metric 0 mtu 1500=0A optio=
ns=3D8<VLAN_MTU>=0A ether 02:11:06:99:8a:ff=0A ch 1 dma -1=0A=
fwip0: flags=3D8802<BROADCAST,SIMPLEX,MULTICAST> metric 0 mtu 1500=0A =
lladdr 0.11.6.66.0.99.8a.ff.a.2.ff.fe.0.0.0.0=0Aplip0: flags=3D8810<POINT=
OPOINT,SIMPLEX,MULTICAST> metric 0 mtu 1500=0Alo0: flags=3D8049<UP,LOOPBACK=
,RUNNING,MULTICAST> metric 0 mtu 16384=0A options=3D3<RXCSUM,TXCSUM>=
=0A inet6 fe80::1%lo0 prefixlen 64 scopeid 0x5=0A inet6 ::1 p=
refixlen 128=0A inet 127.0.0.1 netmask 0xff000000=0A nd6 opti=
ons=3D3<PERFORMNUD,ACCEPT_RTADV>=0AFreeBSD# netstat -rnfinet=0ARouting tabl=
es=0A=0AInternet:=0ADestination Gateway Flags Refs =
Use Netif Expire=0Adefault 192.168.1.1 UGS 0 =
474 rl0=0A93.0.168.242 link#1 UHS 0 =
20 lo0 =3D>=0A93.0.168.242/32 link#1 U 0 =
0 rl0=0A127.0.0.1 link#5 UH 0 20 =
lo0=0A192.168.1.0/24 link#1 U 0 102 rl0=
=0A192.168.1.38 link#1 UHS 0 0 lo0=0A=
=0AIn the jail (running, of course) :=0A=0AFreeBSD# jexec 1 ifconfig=0Arl0:=
flags=3D8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> metric 0 mtu 1500=0A =
options=3D8<VLAN_MTU>=0A ether 00:11:09:15:72:6a=0A in=
et 93.0.168.242 netmask 0xffffffff broadcast 93.0.168.242=0A media: =
Ethernet autoselect (100baseTX <full-duplex>)=0A status: active=0Afw=
e0: flags=3D8802<BROADCAST,SIMPLEX,MULTICAST> metric 0 mtu 1500=0A o=
ptions=3D8<VLAN_MTU>=0A ether 02:11:06:99:8a:ff=0A ch 1 dma -=
1=0Afwip0: flags=3D8802<BROADCAST,SIMPLEX,MULTICAST> metric 0 mtu 1500=0A =
lladdr 0.11.6.66.0.99.8a.ff.a.2.ff.fe.0.0.0.0=0Aplip0: flags=3D8810<P=
OINTOPOINT,SIMPLEX,MULTICAST> metric 0 mtu 1500=0Alo0: flags=3D8049<UP,LOOP=
BACK,RUNNING,MULTICAST> metric 0 mtu 16384=0A options=3D3<RXCSUM,TXC=
SUM>=0AFreeBSD# jexec 1 netstat -rnfinet=0ARouting tables=0A=0AInternet:=0A=
Destination Gateway Flags Refs Use Netif Expire=
=0Adefault 192.168.1.1 UGS 0 480 rl0=0A93=
.0.168.242 link#1 UHS 0 20 lo0 =3D>=0A93=
.0.168.242/32 link#1 U 0 0 rl0=0A127.0.0=
.1 link#5 UH 0 20 lo0=0A192.168.1.0/=
24 link#1 U 0 102 rl0=0A192.168.1.38 =
link#1 UHS 0 0 lo0=0A=0ADo you find what's =
wrong ?=0A=0ABrice=0A=0A=0A=0A=0A=0A________________________________=0ADe :=
Oliver Fromme <olli@lurza.secnetix.de>=0A=C0 : freebsd-questions@FreeBSD.O=
RG; berrandonea@yahoo.fr=0AEnvoy=E9 le : Jeu 12 ao=FBt 2010, 14h 52min 00s=
=0AObjet : Re: Re : How to connect a jail to the web ?=0A=0ABrice ERRANDONE=
A <berrandonea@yahoo.fr> wrote:=0A> 192.168.1.38 is the private address of =
rl0 on my host. 93.0.168.242 is the =0A> public one. I tried both as the ja=
il's address. With the private one, neither =0A> portsnap nor ping work at =
all.=0A> =0A> With the public one, I get this result :=0A> [...]=0A> FreeBS=
D# jexec 2 ping www.yahoo.fr=0A> ping: cannot resolve www.yahoo.fr: Host na=
me lookup failure=0A> FreeBSD# jexec 2 ping 69.147.83.33=0A> PING 69.147.83=
.33 (69.147.83.33): 56 data bytes=0A> [...]=0A> 32 packets transmitted, 0 p=
ackets received, 100.0% packet loss=0A=0APlease show the _complete_ output =
from "ifconfig" and "netstat -rnfinet".=0A=0ABest regards=0A Oliver=0A=0A=
-- =0AOliver Fromme, secnetix GmbH & Co. KG, Marktplatz 29, 85567 Grafing b=
. M.=0AHandelsregister: Registergericht Muenchen, HRA 74606, Gesch=E4ftsfu=
ehrung:=0Asecnetix Verwaltungsgesellsch. mbH, Handelsregister: Registergeri=
cht M=FCn-=0Achen, HRB 125758, Gesch=E4ftsf=FChrer: Maik Bachmann, Olaf Er=
b, Ralf Gebhart=0A=0AFreeBSD-Dienstleistungen, -Produkte und mehr: http://=
www.secnetix.de/bsd=0A=0API:=0Aint f[9814],b,c=3D9814,g,i;long a=3D1e4,d,e,=
h;=0Amain(){for(;b=3Dc,c-=3D14;i=3Dprintf("%04d",e+d/a),e=3Dd%a)=0Awhile(g=
=3D--b*2)d=3Dh*b+a*(i?f[b]:a/5),h=3Dd/--g,f[b]=3Dd%g;}=0A__________________=
_____________________________=0Afreebsd-questions@freebsd.org mailing list=
=0Ahttp://lists.freebsd.org/mailman/listinfo/freebsd-questions=0ATo unsubsc=
ribe, send any mail to "freebsd-questions-unsubscribe@freebsd.org"=0A=0A=0A=
=0A
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?861468.90347.qm>
