Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 16 Apr 2007 17:59:03 +0100 (BST)
From:      Robert Watson <rwatson@FreeBSD.org>
To:        LI Xin <delphij@delphij.net>
Cc:        clsung@freebsd.org, Rong-en Fan <grafan@gmail.com>, Julian Elischer <julian@elischer.org>, current@freebsd.org
Subject:   Re: RFC: top displays jail id
Message-ID:  <20070416175748.C56064@fledge.watson.org>
In-Reply-To: <46231B1B.6050600@delphij.net>
References:  <6eb82e0704152113t1247b3a4tb8b0655291c8cceb@mail.gmail.com> <46231258.5070208@elischer.org> <46231B1B.6050600@delphij.net>

next in thread | previous in thread | raw e-mail | index | archive | help

On Mon, 16 Apr 2007, LI Xin wrote:

> Julian Elischer wrote:
> [...]
>> how about ONLY showing processes in a particular jail?
>
> What about just 'jexec N top'? :-) Currently top(1) has no ability to attach 
> particular jail to do things like obtaining usernames from within a jail. 
> Personally I think the jexec approach is more useful because it can reveal 
> usernames within the jail.

Be aware that if you run the jail's version of top inside the jail, then the 
output of top can be controlled by processes in the jail.  Running top from 
outside the jail limits the ways in which processes inside jail can manipulate 
the monitoring tool.

Robert N M Watson
Computer Laboratory
University of Cambridge



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20070416175748.C56064>