From owner-freebsd-questions@FreeBSD.ORG Wed Feb 6 15:23:36 2013 Return-Path: Delivered-To: questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) by hub.freebsd.org (Postfix) with ESMTP id 99700263 for ; Wed, 6 Feb 2013 15:23:36 +0000 (UTC) (envelope-from gobble.wa@gmail.com) Received: from mail-bk0-f42.google.com (mail-bk0-f42.google.com [209.85.214.42]) by mx1.freebsd.org (Postfix) with ESMTP id 273E123D for ; Wed, 6 Feb 2013 15:23:35 +0000 (UTC) Received: by mail-bk0-f42.google.com with SMTP id jk7so694645bkc.29 for ; Wed, 06 Feb 2013 07:23:28 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:x-received:in-reply-to:references:date:message-id :subject:from:to:cc:content-type; bh=py5/Or4Bbf53ZVKzq2tyNK4SMWXhBT38Ao1V4HX6UPQ=; b=YVUr15H4qU8nWh72x0pO6NBVVOk9D0PUkalwM9yZZdoKJ+RbwMF9WvvMrfG85h3HGF JeSNLReTse7G5vr4UGGwKY28USTOLkXuBXwra2zf3EdLsmE4uItAOsaTlqoaQUE9PydT 1d9uV0L7n1ov/qRkHDf6Jkial5BsJTpbJJOkemOeQJ7ijox3S0RGNykc+Fvx1GrsNodl Y22eMf1jVv6syamKbidQqHxkCHDw2F4CKM1Bob5osn5FfRZXaFIGbbHZ5cJ6beOdUO/r nT2ds/Ar/Cel4O3DNus/mMjeKEpzFK+cM86VhdYvLEvIfa2xzBq68DE+LlFE6bkSaFc7 N8RQ== MIME-Version: 1.0 X-Received: by 10.204.127.14 with SMTP id e14mr3770973bks.95.1360164208748; Wed, 06 Feb 2013 07:23:28 -0800 (PST) Received: by 10.205.76.198 with HTTP; Wed, 6 Feb 2013 07:23:28 -0800 (PST) Received: by 10.205.76.198 with HTTP; Wed, 6 Feb 2013 07:23:28 -0800 (PST) In-Reply-To: <511273F6.7010801@a1poweruser.com> References: <5112706B.8080707@a1poweruser.com> <511273F6.7010801@a1poweruser.com> Date: Wed, 6 Feb 2013 07:23:28 -0800 Message-ID: Subject: Re: sysctl security.jail.* descriptions From: Waitman Gobble To: Fbsd8 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: quoted-printable X-Content-Filtered-By: Mailman/MimeDel 2.1.14 Cc: FreeBSD questions X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.14 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 06 Feb 2013 15:23:36 -0000 On Feb 6, 2013 7:17 AM, "Fbsd8" wrote: > > Waitman Gobble wrote: >> >> On Feb 6, 2013 7:02 AM, "Fbsd8" wrote: >>> >>> Where do I find the descriptions of what these jail MIBs do? >>> >>> >>> security.jail.param.allow.mount.zfs: 0 >>> security.jail.param.allow.mount.procfs: 0 >>> security.jail.param.allow.mount.nullfs: 0 >>> security.jail.param.allow.mount.devfs: 0 >>> security.jail.param.allow.mount.: 0 >>> security.jail.param.allow.socket_af: 0 >>> security.jail.param.allow.quotas: 0 >>> security.jail.param.allow.chflags: 0 >>> security.jail.param.allow.raw_sockets: 0 >>> security.jail.param.allow.sysvipc: 0 >>> security.jail.param.allow.set_hostname: 0 >>> security.jail.param.ip6.saddrsel: 0 >>> security.jail.param.ip6.: 0 >>> security.jail.param.ip4.saddrsel: 0 >>> security.jail.param.ip4.: 0 >>> security.jail.param.cpuset.id: 0 >>> security.jail.param.host.hostid: 0 >>> security.jail.param.host.hostuuid: 64 >>> security.jail.param.host.domainname: 256 >>> security.jail.param.host.hostname: 256 >>> security.jail.param.host.: 0 >>> security.jail.param.children.max: 0 >>> security.jail.param.children.cur: 0 >>> security.jail.param.dying: 0 >>> security.jail.param.persist: 0 >>> security.jail.param.devfs_ruleset: 0 >>> security.jail.param.enforce_statfs: 0 >>> security.jail.param.securelevel: 0 >>> security.jail.param.path: 1024 >>> security.jail.param.name: 256 >>> security.jail.param.parent: 0 >>> security.jail.param.jid: 0 >>> security.jail.devfs_ruleset: 0 >>> security.jail.enforce_statfs: 2 >>> security.jail.mount_zfs_allowed: 0 >>> security.jail.mount_procfs_allowed: 0 >>> security.jail.mount_nullfs_allowed: 0 >>> security.jail.mount_devfs_allowed: 0 >>> security.jail.mount_allowed: 0 >>> security.jail.chflags_allowed: 0 >>> security.jail.allow_raw_sockets: 0 >>> security.jail.sysvipc_allowed: 0 >>> security.jail.socket_unixiproute_only: 1 >>> security.jail.set_hostname_allowed: 1 >>> security.jail.jail_max_af_ips: 255 >>> security.jail.jailed: 0 >>> >> >> >> Did you try the man page? Also there is often interesting comments in >> /usr/src >> >> Hope that helps. >> >> Waitman Gobble >> San Jose California >> >> > > There are no man pages for any MIBs > Sorry, but im not at a computer now to check, but I believe it would be in the =ABjail=BB man page. Hopefully that's the right 411. Waitman