From owner-freebsd-jail@freebsd.org Tue Feb 12 14:47:39 2019 Return-Path: Delivered-To: freebsd-jail@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id 8505114E8E2E for ; Tue, 12 Feb 2019 14:47:39 +0000 (UTC) (envelope-from pi@freebsd.org) Received: from mailman.ysv.freebsd.org (mailman.ysv.freebsd.org [IPv6:2001:1900:2254:206a::50:5]) by mx1.freebsd.org (Postfix) with ESMTP id 277758F182 for ; Tue, 12 Feb 2019 14:47:39 +0000 (UTC) (envelope-from pi@freebsd.org) Received: by mailman.ysv.freebsd.org (Postfix) id DAE4C14E8E2D; Tue, 12 Feb 2019 14:47:38 +0000 (UTC) Delivered-To: jail@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id C8C0F14E8E2C for ; Tue, 12 Feb 2019 14:47:38 +0000 (UTC) (envelope-from pi@freebsd.org) Received: from home.opsec.eu (home.opsec.eu [IPv6:2001:14f8:200::1]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) server-signature RSA-PSS (4096 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 602798F180 for ; Tue, 12 Feb 2019 14:47:38 +0000 (UTC) (envelope-from pi@freebsd.org) Received: from pi by home.opsec.eu with local (Exim 4.91 (FreeBSD)) (envelope-from ) id 1gtZLT-000Pme-Jz; Tue, 12 Feb 2019 15:47:35 +0100 Date: Tue, 12 Feb 2019 15:47:35 +0100 From: Kurt Jaeger To: Ernie Luzar Cc: "Rudy (bulk address)" , jail@freebsd.org Subject: Re: "ipfw log" messages from jail show in host syslog Message-ID: <20190212144735.GL2748@home.opsec.eu> References: <2331cedc410f2123b2a0e142f81bf92e.squirrel@mail.monkeybrains.net> <5C62DA43.8050202@gmail.com> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <5C62DA43.8050202@gmail.com> X-BeenThere: freebsd-jail@freebsd.org X-Mailman-Version: 2.1.29 Precedence: list List-Id: "Discussion about FreeBSD jail\(8\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 12 Feb 2019 14:47:39 -0000 Hi! > Rudy (bulk address) wrote: > > I've switched to VNET (love it) in jails. Neat, you an have ipfw running > > in your jail! > > > > I added some log lines to test it out and was a bit confused when > > /var/log/security wasn't showing the log lines. Turns out, the kernel is > > grabbing them and logging in the host and not the chrooted environment. > This is a known bug problem. There is a PR about this filed a few years ago. https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=178482 -- pi@opsec.eu +49 171 3101372 One year to go !