From owner-freebsd-jail@FreeBSD.ORG Thu Jun 19 10:49:21 2008 Return-Path: Delivered-To: freebsd-jail@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 1EA4A106571F for ; Thu, 19 Jun 2008 10:49:21 +0000 (UTC) (envelope-from scheidell@secnap.net) Received: from fl.us.spammertrap.net (fl.us.spammertrap.net [204.89.241.173]) by mx1.freebsd.org (Postfix) with ESMTP id C871C8FC21 for ; Thu, 19 Jun 2008 10:49:20 +0000 (UTC) (envelope-from scheidell@secnap.net) Received: from localhost (localhost [127.0.0.1]) by fl.us.spammertrap.net (Postfix) with ESMTP id 650EFE6040 for ; Thu, 19 Jun 2008 06:30:28 -0400 (EDT) X-Quarantine-ID: X-Virus-Scanned: SpammerTrap(r) SME-250 1.81 at secnap.com X-Amavis-Modified: Mail body modified (using disclaimer) by fl.us.spammertrap.net Received: from secnap3.secnap.com (secnap3.secnap.com [204.89.241.130]) by fl.us.spammertrap.net (Postfix) with ESMTP id 9DB0DE603C for ; Thu, 19 Jun 2008 06:30:27 -0400 (EDT) Received: from 3.sub-75-203-162.myvzw.com ([10.80.0.4]) by secnap3.secnap.com with Microsoft SMTPSVC(6.0.3790.3959); Thu, 19 Jun 2008 06:30:27 -0400 Message-ID: <485A359A.8010303@secnap.net> Date: Thu, 19 Jun 2008 06:31:54 -0400 From: Michael Scheidell User-Agent: Thunderbird 2.0.0.14 (Macintosh/20080421) MIME-Version: 1.0 To: Jille Timmmermans References: <485A30DA.8080807@hexon.cx> In-Reply-To: <485A30DA.8080807@hexon.cx> X-OriginalArrivalTime: 19 Jun 2008 10:30:27.0500 (UTC) FILETIME=[7DA2AEC0:01C8D1F7] Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 8bit X-Content-Filtered-By: Mailman/MimeDel 2.1.5 Cc: freebsd-jail@freebsd.org Subject: Re: tun/gif interfaces inside jail. X-BeenThere: freebsd-jail@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Discussion about FreeBSD jail\(8\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 19 Jun 2008 10:49:21 -0000 Jille Timmmermans wrote: > No. > You must run OpenVPN outside of your jail > > Peter Ankerstål wrote: I have read RUMORS that you can have the jailed systems route through and access the jail which is outside the jail, but so far, have not sean any real 'cookbook' on how to do it. I tried it a couple of times and gave up. I wanted to get it to work, but with all the partial hints about routing, natd, pf rules with no real solution, I gave up and bought a $500 sonicwall firewall. -- Michael Scheidell, CTO Main: 561-999-5000, Office: 561-939-7259 > *| *SECNAP Network Security Corporation Winner 2008 Technosium hot company award. www.technosium.com/hotcompanies/ _________________________________________________________________________ This email has been scanned and certified safe by SpammerTrap(r). For Information please see http://www.spammertrap.com _________________________________________________________________________