From owner-freebsd-questions@FreeBSD.ORG Wed Feb 20 19:09:56 2013 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) by hub.freebsd.org (Postfix) with ESMTP id A366EC71 for ; Wed, 20 Feb 2013 19:09:56 +0000 (UTC) (envelope-from jeff.t@mail.com) Received: from mout.gmx.net (mout.gmx.net [74.208.4.201]) by mx1.freebsd.org (Postfix) with ESMTP id 593E1D56 for ; Wed, 20 Feb 2013 19:09:56 +0000 (UTC) Received: from mailout-us.mail.com ([172.19.198.94]) by mrigmx.server.lan (mrigmxus001) with ESMTP (Nemesis) id 0Ltr8L-1Up6Dr1OR3-011DxM for ; Wed, 20 Feb 2013 20:09:50 +0100 Received: (qmail invoked by alias); 20 Feb 2013 19:09:49 -0000 Received: from unknown (EHLO blazon-pc.rw.local) [78.84.97.244] by mail.gmx.com (mp-us011) with SMTP; 20 Feb 2013 14:09:49 -0500 X-Authenticated: #76218138 X-Provags-ID: V01U2FsdGVkX19shUBBQDdsKSnEV449jXWr2IlU64YAkfTt/W49h0 IuXN0axpiP6bUl Message-ID: <51251FA5.6030903@mail.com> Date: Wed, 20 Feb 2013 21:10:29 +0200 From: Jeff Tipton User-Agent: Mozilla/5.0 (X11; FreeBSD i386; rv:16.0) Gecko/20121030 Thunderbird/16.0.1 MIME-Version: 1.0 To: freebsd-questions@freebsd.org Subject: Re: jail and networking References: <5124F505.4040906@bananmonarki.se> <13CA24D6AB415D428143D44749F57D7201EABA71@ltcfiswmsgmb21> <51250B20.4000308@bananmonarki.se> <512510ED.6080807@mail.com>, <51251496.4050701@bananmonarki.se> <13CA24D6AB415D428143D44749F57D7201EABC1F@ltcfiswmsgmb21> In-Reply-To: <13CA24D6AB415D428143D44749F57D7201EABC1F@ltcfiswmsgmb21> Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit X-Y-GMX-Trusted: 0 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.14 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 20 Feb 2013 19:09:56 -0000 On 02/20/2013 20:59, Teske, Devin wrote: > On Wed, 20 Feb 2013, Bernt Hansson wrote: > >> On 2013-02-20 19:07, Jeff Tipton wrote: >>> On 02/20/2013 19:42, Bernt Hansson wrote: >>>> On 2013-02-20 17:23, Teske, Devin wrote: >>>>> On Wed, 20 Feb 2013, Bernt Hansson wrote: >>>>> >>>>>> Hello list! >>>>>> >>>>>> I dont seem to get net working in a test jail. >>>>>> >>>>>> These I've tried; >>>>>> >>>>>> ftp, fetch, telnet >>>>>> >>>>>> They time out. >>>>>> >>>>>> Ssh sort of work. >>>>>> >>>>>> 32bit# ssh 10.0.0.3 >>>>>> ssh_askpass: exec(/usr/local/bin/ssh-askpass): No such file or >>>>>> directory >>>>>> Host key verification failed. >>>>>> >>>>>> jail is 8.3-STABLE i386 GENERIC >>>>>> >>>>>> host is FreeBSD 8.3-STABLE amd64 GENERIC >>>>>> >>>>>> I'm sure you want more info so just tell me what info. >>>>> Commonly the problem is that you are "jexec'd" into the jail and I >>>>> find that tools like ssh, ftp, telnet, etc. don't work when you're in >>>>> the jail via "jexec" but instead what works way better is if you ssh >>>>> into the jail (via the jail'd ssh process of course). >>>>> >>>>> Does that seem to be the case in your situation? >>>> If you mean this sshd IsJ 0:00,00 /usr/sbin/sshd >>>> >>>> Then no. >>>> >>>> %ssh 10.0.0.10 ssh: connect to host 10.0.0.10 port 22: Operation timed >>>> out >>>> >>>> I did have an alias on the host to the jail's ip. >>>> Tried to restart the jail it went fine, but now I can't jexec in to >>>> the jail. >>>> >>>> testbox# jexec 1 tcsh >>>> jexec: jail_attach(1): Invalid argument >>>> >>>> Sooo... I'm kind of out of ideas. >>> What does "jls" command say? If you have restarted your jail, it's ID >>> most likely has changed. >> The ID did change, didn't know about that, thank you. >> >> But still, sshd isn't running in the jail >> >> 32bit# ps ax >> PID TT STAT TIME COMMAND >> 2385 ?? IsJ 0:00,00 sendmail: Queue runner@00:30:00 for >> /var/spool/clientmqueue (sendmail) >> 2391 ?? SsJ 0:00,00 /usr/sbin/cron -s >> 2464 0 SJ 0:00,01 tcsh >> 2482 0 R+J 0:00,00 ps ax >> >> testbox# ps ax | grep J >> 2385 ?? IsJ 0:00,00 sendmail: Queue runner@00:30:00 for >> /var/spool/clientmqueue (sendmail) >> 2391 ?? SsJ 0:00,00 /usr/sbin/cron -s >> 2488 0 S+ 0:00,00 grep J >> >> testbox is the host. > A stab in the dark, but... > > Did you add sshd_enable="YES" to the jail's rc.conf(5)? Or, from within the jail, what does service sshd status say?