Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 1 Sep 2004 19:26:29 +0100
From:      "Rob MacGregor" <freebsd.macgregor@blueyonder.co.uk>
To:        <freebsd-current@freebsd.org>
Subject:   RE: 5.3-BETA1, jails and devfs
Message-ID:  <200409011826.i81IQTs4030534@the-macgregors.org>
In-Reply-To: <790a9fff04090111132a67ac3e@mail.gmail.com>

next in thread | previous in thread | raw e-mail | index | archive | help
On Wednesday, September 01, 2004 7:13 PM, Scot Hetzel
<mailto:swhetzel@gmail.com> unleashed the infinite monkeys and produced:
> If you are applying them from inside the jail, I don't believe that is
> supported.  You need to apply the rules before starting the jail.

Ah, that'll be my error then.

Next dumb question - how do I apply them to *only* the jail, not the host?

What I'm trying to do is lock it down such that the jail has no access to any
devices on the host.  Not sure what that list will be, but I'm happy to break
things finding out :)

TIA

-- 
 Rob | Oh my God! They killed init! You bastards!



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200409011826.i81IQTs4030534>