Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 04 May 2002 19:59:33 +0200
From:      Poul-Henning Kamp <phk@critter.freebsd.dk>
To:        Dmitry <dima@haali.cs.msu.ru>
Cc:        arch@FreeBSD.ORG
Subject:   Re: df(1) Broken in jail(8) 
Message-ID:  <38214.1020535173@critter.freebsd.dk>
In-Reply-To: Your message of "Sat, 04 May 2002 21:30:08 %2B0400." <20020504173008.GA92411@haali.cs.msu.ru> 

next in thread | previous in thread | raw e-mail | index | archive | help
In message <20020504173008.GA92411@haali.cs.msu.ru>, Dmitry writes:

>Actually I think the only good idea is to prevent jailed users from
>getting any info about host with his jail.

This has never been a design-goal of jail so far.

>3) Jailed user must not have a way to find out he is in jail. Hmm, 
>   seems it is too hard for now :)

This is impossible.  All he has to do is try one of the operations
jails don't allow and he will know.

Jails are not virtual machines.  If you want to do true virtual
machines, then you should do that instead of hacking on jail.

-- 
Poul-Henning Kamp       | UNIX since Zilog Zeus 3.20
phk@FreeBSD.ORG         | TCP/IP since RFC 956
FreeBSD committer       | BSD since 4.3-tahoe    
Never attribute to malice what can adequately be explained by incompetence.

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-arch" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?38214.1020535173>