From owner-freebsd-hackers@FreeBSD.ORG Fri May 10 19:33:21 2013 Return-Path: Delivered-To: freebsd-hackers@freebsd.org Received: from mx1.freebsd.org (mx1.FreeBSD.org [8.8.178.115]) by hub.freebsd.org (Postfix) with ESMTP id 1AFAA9D9; Fri, 10 May 2013 19:33:21 +0000 (UTC) (envelope-from alexander@leidinger.net) Received: from mail.ebusiness-leidinger.de (mail.ebusiness-leidinger.de [217.11.53.44]) by mx1.freebsd.org (Postfix) with ESMTP id CC4542F3; Fri, 10 May 2013 19:33:20 +0000 (UTC) Received: from outgoing.leidinger.net (p5DD44783.dip0.t-ipconnect.de [93.212.71.131]) by mail.ebusiness-leidinger.de (Postfix) with ESMTPSA id 403868443D3; Fri, 10 May 2013 21:33:06 +0200 (CEST) Received: from unknown (Titan.Leidinger.net [192.168.1.17]) by outgoing.leidinger.net (Postfix) with ESMTP id B92991071; Fri, 10 May 2013 21:33:03 +0200 (CEST) DKIM-Signature: v=1; a=rsa-sha256; c=simple/simple; d=leidinger.net; s=outgoing-alex; t=1368214383; bh=PXC5bJXL1iqpdjnO6UB3t7pattA5nt3TQd3FkbEkclE=; h=Date:From:To:Cc:Subject:In-Reply-To:References; b=XlqLJYfNb7w57q0SvCmetu3sMl471QPVaVlzHowS7oOxxlAXVePs7hDYw0tRTegdb 686OlwAFoKeXlNbyVIRYOPDz6uTDdJTVhtdYMT8MWUMKuN6CuLGPp81svUyalaHlSO UUaeneEZV5bV+YwjEVfag5fCOYwrdHSWYxD2hFYaJk8qkPfAMn4gT2xnHb/UPxV8Uo 1otEj7tKduc9ww1QBTuyEO/95HBhY70RVwpf5LIyYjJVxsMlJZa6oC3IZR0h4fsT+u sx9hzk3jZywb5TvjQVgBJ3mgxj1khOcfLYGiq7T2nCa1SkGY1r4OypuMdgt0Ttb4Go nAHXlAUVJa1sQ== Date: Fri, 10 May 2013 21:33:03 +0200 From: Alexander Leidinger To: Uffe Jakobsen Subject: Re: priv_check/make_dev/devfs.rules: What is preventing a device to show up in a jail? Message-ID: <20130510213303.00005078@unknown> In-Reply-To: <518CDD73.9090405@uffe.org> References: <20130509110718.0000528e@unknown> <518C060E.8040301@gmail.com> <20130510121133.00001e2a@unknown> <518CDD73.9090405@uffe.org> X-Mailer: Claws Mail 3.9.0git149+gcbfce9 (GTK+ 2.16.6; i586-pc-mingw32msvc) Mime-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: 7bit X-EBL-MailScanner-Information: Please contact the ISP for more information X-EBL-MailScanner-ID: 403868443D3.AEE44 X-EBL-MailScanner: Found to be clean X-EBL-MailScanner-SpamCheck: not spam, spamhaus-ZEN, SpamAssassin (not cached, score=-1.223, required 6, autolearn=disabled, ALL_TRUSTED -1.00, AWL -0.11, DKIM_SIGNED 0.10, DKIM_VALID -0.10, DKIM_VALID_AU -0.10, T_RP_MATCHES_RCVD -0.01, URIBL_BLOCKED 0.00) X-EBL-MailScanner-From: alexander@leidinger.net X-EBL-MailScanner-Watermark: 1368819186.99703@+ZpQ5qns8WPnaLCmZYLdfw X-EBL-Spam-Status: No X-Mailman-Approved-At: Fri, 10 May 2013 20:01:26 +0000 Cc: usb@FreeBSD.org, freebsd-hackers@freebsd.org X-BeenThere: freebsd-hackers@freebsd.org X-Mailman-Version: 2.1.14 Precedence: list List-Id: Technical Discussions relating to FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 10 May 2013 19:33:21 -0000 On Fri, 10 May 2013 13:43:47 +0200 Uffe Jakobsen wrote: > On 2013-05-10 12:11, Alexander Leidinger wrote: > > > > I worry about what is going on. We have something which is supposed > > to provide security as required, but is does not seem to work as > > described. We either need to fix the documentation, or a bug in the > > code. To do the later it needs to be debugged. > > > > It seems to me that you are struggeling with this - or a related - > problem: > > http://www.freebsd.org/cgi/query-pr.cgi?pr=kern/122838 Indeed, this is the problem. I have all entries visible now. Anyone interested to have this changed (as suggested by Andriy in the PR) should voice his opinion. I voiced mine already. Bye, Alexander. -- http://www.Leidinger.net Alexander @ Leidinger.net: PGP ID = B0063FE7 http://www.FreeBSD.org netchild @ FreeBSD.org : PGP ID = 72077137