Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 06 Sep 2005 22:19:37 +0200
From:      =?ISO-8859-2?Q?Szuk=E1cs_Istv=E1n?= <leccine@gmail.com>
To:        freebsd-pf@freebsd.org
Subject:   Re: pf ruleset modify from jail
Message-ID:  <431DF9D9.8050809@gmail.com>
In-Reply-To: <200509061650.54519.max@love2party.net>
References:  <431D830D.1080906@gmail.com> <200509061650.54519.max@love2party.net>

next in thread | previous in thread | raw e-mail | index | archive | help

Max Laier:

>On Tuesday 06 September 2005 13:52, Szukács István wrote:
>  
>
>>The problem is that inside the jail the root has access to pf(the
>>outside system's pf), and can read/write the ruleset.
>>How can i protect it?
>>    
>>
>
>You can use devfs rulesets to hide /dev/pf from the jail's devfs.  See 
>devfs(8) for more details.
>
>  
>
i try to use this rulesets but i am a little bit confused(there is no 
detailed howto)
but it is not belong to this list anymore
thanks anyway




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?431DF9D9.8050809>