From owner-freebsd-questions@FreeBSD.ORG Sun Oct 19 11:40:29 2003 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 4D71716A4B3 for ; Sun, 19 Oct 2003 11:40:29 -0700 (PDT) Received: from bialystok.bsk.vectranet.pl (bialystok.bsk.vectranet.pl [212.33.81.2]) by mx1.FreeBSD.org (Postfix) with ESMTP id 25DFF43F93 for ; Sun, 19 Oct 2003 11:40:28 -0700 (PDT) (envelope-from ptnowak@bsk.vectranet.pl) Received: from [10.1.255.220] (helo=bsk.vectranet.pl) by bialystok.bsk.vectranet.pl with esmtp (Exim 3.35 #1 (Debian)) id 1ABITZ-0006ej-00 for ; Sun, 19 Oct 2003 20:40:25 +0200 Message-ID: <3F92DAA8.60409@bsk.vectranet.pl> Date: Sun, 19 Oct 2003 20:40:40 +0200 From: Adam Nowacki User-Agent: Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.3.1) Gecko/20030425 X-Accept-Language: pl, en-us, en MIME-Version: 1.0 To: freebsd-questions@freebsd.org Content-Type: text/plain; charset=us-ascii; format=flowed Content-Transfer-Encoding: 7bit Subject: jail + devfs + snp problem (FreeBSD 5.1-RELEASE-p10) X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sun, 19 Oct 2003 18:40:29 -0000 shell# /sbin/devfs rule -s 2 delset shell# /sbin/devfs rule -s 2 add hide shell# /sbin/devfs rule -s 2 add path random unhide shell# /sbin/devfs rule -s 2 add path urandom unhide shell# /sbin/devfs rule -s 2 add path zero unhide shell# /sbin/devfs rule -s 2 add path pty\* unhide shell# /sbin/devfs rule -s 2 add path pty\* unhide shell# /sbin/devfs rule -s 2 add path tty\* unhide shell# /sbin/mount_devfs devfs /storage0/site/dev shell# /sbin/devfs -m /storage0/site/dev ruleset 2 shell# cd /storage0/site/dev shell# ls fd ptyp6 ptypf ptypo ttyld0 ttyp7 ttypg ttypp ttyv6 ttyvf net ptyp7 ptypg ptypp ttyld1 ttyp8 ttyph ttypq ttyv7 urandom null ptyp8 ptyph ptypq ttyp0 ttyp9 ttypi ttypr ttyv8 zero ptyp0 ptyp9 ptypi ptypr ttyp1 ttypa ttypj ttyv0 ttyv9 ptyp1 ptypa ptypj random ttyp2 ttypb ttypk ttyv1 ttyva ptyp2 ptypb ptypk ttyd0 ttyp3 ttypc ttypl ttyv2 ttyvb ptyp3 ptypc ptypl ttyd1 ttyp4 ttypd ttypm ttyv3 ttyvc ptyp4 ptypd ptypm ttyid0 ttyp5 ttype ttypn ttyv4 ttyvd ptyp5 ptype ptypn ttyid1 ttyp6 ttypf ttypo ttyv5 ttyve Everything looks great, but: shell# w -n USER TTY FROM LOGIN@ IDLE WHAT root pm ??? ??? - w -n shell# jexec 1 /bin/sh # cd /dev # ls -al snp* ls: snp*: No such file or directory # watch -W pm shell# id uid=0(root) gid=0(wheel) groups=0(wheel), 5(operator) And I'm outside !