From owner-freebsd-hackers@FreeBSD.ORG Sat Sep 16 11:54:20 2006 Return-Path: X-Original-To: freebsd-hackers@freebsd.org Delivered-To: freebsd-hackers@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 904CC16A416 for ; Sat, 16 Sep 2006 11:54:20 +0000 (UTC) (envelope-from umka@sevcity.net) Received: from mail.sevcity.net (ns.sevcity.net [193.47.166.213]) by mx1.FreeBSD.org (Postfix) with ESMTP id C47FA43D76 for ; Sat, 16 Sep 2006 11:54:19 +0000 (GMT) (envelope-from umka@sevcity.net) Received: from mail.sevcity.net (service.sevcity [127.0.0.1]) by mail.sevcity.net (Postfix) with ESMTP id BA44D170031 for ; Sat, 16 Sep 2006 14:54:40 +0300 (EEST) Received: from berloga.shadowland (umka.sevcity.net [193.47.166.138]) by mail.sevcity.net (Postfix) with ESMTP id 91CD5170007 for ; Sat, 16 Sep 2006 14:54:40 +0300 (EEST) Received: from berloga.shadowland (berloga.shadowland [127.0.0.1]) by berloga.shadowland (8.12.11.20060308/8.12.11) with ESMTP id k8GBsHn4003805 for ; Sat, 16 Sep 2006 14:54:17 +0300 Received: (from root@localhost) by berloga.shadowland (8.12.11.20060308/8.12.11/Submit) id k8GBsGRc003802 for freebsd-hackers@freebsd.org; Sat, 16 Sep 2006 14:54:16 +0300 From: Alex Lyashkov To: freebsd-hackers@freebsd.org Content-Type: text/plain Content-Transfer-Encoding: 7bit Organization: SevcityNet Message-Id: <1158407656.3215.33.camel@berloga.shadowland> Mime-Version: 1.0 X-Mailer: Ximian Evolution 1.4.5 (1.4.5-17) Date: Sat, 16 Sep 2006 14:54:16 +0300 X-Virus-Scanned: ClamAV using ClamSMTP Subject: jail2 patchset 12 X-BeenThere: freebsd-hackers@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Technical Discussions relating to FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 16 Sep 2006 11:54:20 -0000 Hello All, Some time ago I finished the next public jail2 patchset. As of now, jail2 supports per-jail SYSV IPC namespaces. It is possible to configure which jails can and which cannot use SYSV IPC. The UID hash is also perl-jail now. he patchset also implements per-jail resource limits, such as: - number of SYSV IPC objects; - number of processes; - number of filedescriptors. In addition, all jail-related code was moved under 'options JAIL'. The project's homepage: http://docs.freevps.com/doku.php?id=freebsd:index -- Alex Lyashkov SevcityNet