From owner-freebsd-hackers@FreeBSD.ORG Thu Mar 20 17:38:52 2008 Return-Path: Delivered-To: freebsd-hackers@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 2EB031065671 for ; Thu, 20 Mar 2008 17:38:52 +0000 (UTC) (envelope-from julian@elischer.org) Received: from outY.internet-mail-service.net (outY.internet-mail-service.net [216.240.47.248]) by mx1.freebsd.org (Postfix) with ESMTP id 1F2408FC25 for ; Thu, 20 Mar 2008 17:38:51 +0000 (UTC) (envelope-from julian@elischer.org) Received: from mx0.idiom.com (HELO idiom.com) (216.240.32.160) by out.internet-mail-service.net (qpsmtpd/0.40) with ESMTP; Thu, 20 Mar 2008 10:38:52 -0700 Received: from julian-mac.elischer.org (localhost [127.0.0.1]) by idiom.com (Postfix) with ESMTP id 2A4132D6018; Thu, 20 Mar 2008 10:38:51 -0700 (PDT) Message-ID: <47E2A12B.2010207@elischer.org> Date: Thu, 20 Mar 2008 10:38:51 -0700 From: Julian Elischer User-Agent: Thunderbird 2.0.0.12 (Macintosh/20080213) MIME-Version: 1.0 To: Ivan Voras , freebsd-ports@freebsd.org, freebsd-hackers@freebsd.org References: <20080313210242.GA55395@hades.panopticon> <20080320152314.GA1586@straylight.m.ringlet.net> In-Reply-To: <20080320152314.GA1586@straylight.m.ringlet.net> Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit Cc: Subject: Re: Transferring ports X-BeenThere: freebsd-hackers@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Technical Discussions relating to FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 20 Mar 2008 17:38:52 -0000 Peter Pentchev wrote: > On Fri, Mar 14, 2008 at 12:02:42AM +0300, Dmitry Marakasov wrote: >> >> The purpose is similar - creating jails out of host system in fast >> and easy way, possibility to strip everything unneeded (useful for >> secure minimal jails or flash/livecd/embedded installations of >> minimal size) and add something extra, like stuff from /usr/local >> without installing full packages in a jail, or, say, copying over >> additional tree of jail-specific changes (mostly stuff under /etc >> and /usr/local/etc). >> >> Such an utility is something I still might start working on. I don't use the host system.. I keep a special pristine jail just for that purpose (to act as a source for other jails). sometimes I also use null=mounts, and sometimes if the jails are on one big partition, I hardlink some stuff.. e.g binaries in /bin etc betweem teh jails.. saves memory and disk.. Of course that is only when I basically trust the jail user (me).