From owner-freebsd-questions@FreeBSD.ORG Tue Jan 31 08:00:18 2012 Return-Path: Delivered-To: questions@FreeBSD.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id A969C1065672 for ; Tue, 31 Jan 2012 08:00:17 +0000 (UTC) (envelope-from vnik@arqa.ru) Received: from grom.arqa.ru (grom.arqa.ru [193.178.135.38]) by mx1.freebsd.org (Postfix) with ESMTP id 653078FC0C for ; Tue, 31 Jan 2012 08:00:13 +0000 (UTC) Received: from maik.arqa.ru (maik [192.168.47.115]) by grom.arqa.ru (8.14.3/8.14.3) with ESMTP id q0V7MrhA073453 for ; Tue, 31 Jan 2012 14:22:53 +0700 (NOVT) (envelope-from vnik@arqa.ru) Received: from [127.0.0.1] (pc-vnik.arqa.ru [192.168.40.162]) by maik.arqa.ru (8.14.4/8.14.4) with ESMTP id q0V7Mric003314 for ; Tue, 31 Jan 2012 14:22:53 +0700 (NOVT) (envelope-from vnik@arqa.ru) Message-ID: <4F2796CD.8030906@arqa.ru> Date: Tue, 31 Jan 2012 14:22:53 +0700 From: Vitaly Nikitin User-Agent: Mozilla/5.0 (Windows NT 5.1; rv:9.0) Gecko/20111222 Thunderbird/9.0.1 MIME-Version: 1.0 To: questions@FreeBSD.org Content-Type: text/plain; charset=UTF-8; format=flowed Content-Transfer-Encoding: 7bit X-SpamTest-Version: SMTP-Filter Version 3.0.0 [0284], KAS30/Release X-SpamTest-Info: Not protected X-Anti-Virus: Kaspersky Anti-Virus for Linux Mail Server 5.6.39/RELEASE, bases: 20120131 #6775761, check: 20120131 notchecked X-Mailman-Approved-At: Tue, 31 Jan 2012 12:12:27 +0000 Cc: Subject: Problem with auditd into jail X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 31 Jan 2012 08:00:18 -0000 Hello! I try to start service auditd into jail. I permit the device "audit" from the parent OS, everything else is limited. When I start auditd, I see the message: "Error setting audit stat". What steps do I need to do and what permission (perhaps via sysctl) I must to give, In order to start the service auditd inside jail? Maybe I can to log developments into jail through auditd started in the parent system? Please help me. Thanks in advance. Operation System: 7.2-RELEASE FreeBSD