From owner-freebsd-current@FreeBSD.ORG Fri Mar 5 03:16:00 2004 Return-Path: Delivered-To: freebsd-current@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id F062B16A4CE for ; Fri, 5 Mar 2004 03:15:59 -0800 (PST) Received: from anduin.net (anduin.net [212.12.46.226]) by mx1.FreeBSD.org (Postfix) with SMTP id 3D6A443D2D for ; Fri, 5 Mar 2004 03:15:59 -0800 (PST) (envelope-from ltning@anduin.net) Received: (qmail 75925 invoked by uid 6759); 5 Mar 2004 11:15:58 -0000 Received: from ltning@anduin.net by anduin.net by uid 82 with qmail-scanner-1.20 (clamscan: 0.60. spamassassin: 2.60. Clear:RC:1(213.225.74.166):. Processed in 1.223438 secs); 05 Mar 2004 11:15:58 -0000 X-Qmail-Scanner-Mail-From: ltning@anduin.net via anduin.net X-Qmail-Scanner: 1.20 (Clear:RC:1(213.225.74.166):. Processed in 1.223438 secs) Received: from eirik.unicore.no (HELO ?10.0.16.10?) (213.225.74.166) by anduin.net with SMTP; 5 Mar 2004 11:15:56 -0000 From: Eirik Oeverby To: Pawel Jakub Dawidek In-Reply-To: <20040305102543.GJ10864@darkness.comp.waw.pl> References: <20040305102543.GJ10864@darkness.comp.waw.pl> Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="=-sZAZbpv8QlqFn9SWONzg" Message-Id: <1078485446.98622.13.camel@eirik.unicore.no> Mime-Version: 1.0 X-Mailer: Ximian Evolution 1.5.4FreeBSD GNOME Team Port Date: Fri, 05 Mar 2004 12:17:26 +0100 X-Mailman-Approved-At: Fri, 05 Mar 2004 04:55:08 -0800 cc: current@freebsd.org Subject: Re: HEADS UP: rcNG scripts inside a jail. X-BeenThere: freebsd-current@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Discussions about the use of FreeBSD-current List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 05 Mar 2004 11:16:00 -0000 --=-sZAZbpv8QlqFn9SWONzg Content-Type: text/plain Content-Transfer-Encoding: quoted-printable Hi, Where is this flag set, whatever it'll be called? And how can I query it, for example when populating a jail? /Eirik On Fri, 2004-03-05 at 11:25 +0100, Pawel Jakub Dawidek wrote: > Hello. >=20 > I'm going to mark scripts below as not usable inside jail. > If anyone is using one of those scripts inside a jail and it works, > now is the right time to start screaming. >=20 > abi > accounting > addswap > adjkerntz > amd > apm > apmd > archdep > atm1 > atm2 > atm3 > bgfsck > ccd > devd > devfs > dhclient > diskless > dmesg > dumpon > fsck > gbde > gbde_swap > ike > initdiskless > initrandom > ip6addrctl > ip6fw > ipfilter > ipfs > ipfw > ipmon > ipnat > ipsec > jail > kldxref > lomac > lpd > mountcritlocal > mountcritremote > mountd > moused > mroute6d > netif > netoptions > network_ipv6 > nfsclient > nfsd > nfslocking > nfsserver > ntpd > ntpdate > pccard > pcvt > power_profile > ppp-user > pppoed > quota > random > root > routing > rtadvd > savecore > serial > sppp > swap1 > syscons > timed > usbd > vinum > watchdogd >=20 > This is the list of scripts that I belive works fine inside a jail, but..= . >=20 > cleanvar > cleartmp > cron > early.sh > inetd > ipxrouted > isdnd > kadmind > ldconfig > local > localpkg > motd > msgs > named > nisdomain > othermta > pwcheck > securelevel > sendmail > sshd > sysctl > syslogd > virecover > ypbind > yppasswdd > ypserv > ypset > ypupdated > ypxfrd >=20 > And here is the list of scripts that I've no idea if they should be > available inside a jail or not: >=20 > bootparams > kdc > kerberos > keyserv > kpasswdd > mrouted > rarpd > route6d > routed > rpcbind > rwho >=20 > I'll be grateful if responsible parties can help me with those. >=20 > If there will be no obejections I'm going to commit it for 3 days > (08/March/2004). >=20 > Now is also the right time to discuss if we should change 'nojail' > flag with 'jailok' flag. >=20 > --=20 > Pawel Jakub Dawidek http://www.FreeBSD.org > pjd@FreeBSD.org http://garage.freebsd.pl > FreeBSD committer Am I Evil? Yes, I Am! --=-sZAZbpv8QlqFn9SWONzg Content-Type: application/pgp-signature; name=signature.asc Content-Description: This is a digitally signed message part -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.4 (FreeBSD) iD8DBQBASGHGdAvR8ct7fEcRAs/JAJsE+7PAcbCYvXi58I9WSGyqpy5WZQCdFCGI FB3YKaS9wzEyVXRQ8Wj0vk8= =8EW+ -----END PGP SIGNATURE----- --=-sZAZbpv8QlqFn9SWONzg--