Date: Wed, 10 Feb 2010 15:33:22 +0200 From: George Mamalakis <mamalos@eng.auth.gr> To: Igor Mozolevsky <igor@hybrid-lab.co.uk> Cc: freebsd-doc@freebsd.org, freebsd-stable <freebsd-stable@freebsd.org> Subject: Re: A more secure approach of jail establishment. It could be included in jail chapter of fbsd handbook Message-ID: <4B72B5A2.7000103@eng.auth.gr> In-Reply-To: <a2b6592c1002100510h404268edyb0d270e05529084f@mail.gmail.com> References: <4B72A0DB.5010806@eng.auth.gr> <a2b6592c1002100510h404268edyb0d270e05529084f@mail.gmail.com>
next in thread | previous in thread | raw e-mail | index | archive | help
On 10/02/2010 15:10, Igor Mozolevsky wrote: > alling a full blown OS inside their jails? > You do know that it is possible to have a jail with a single program > inside and not much els Yes I do, but still in my configs I may need much more than just one program running in my jails, so I prefer the almost-full-OS option. Moreover, I find it also easier to maintain and troubleshoot, no matter how peculiar this may sound, since I don't have to chose only the files needed in each jail when I upgrade them, and I am able to run terminals in the jail, along with other which makes troubleshooting the jail easier. Of course, this is just my opinion and I think it is more of a matter of "taste" on how someone would want to setup their jails. Thank you for your answer. -- George Mamalakis IT Officer Electrical and Computer Engineer (Aristotle Un. of Thessaloniki), MSc (Imperial College of London) Department of Electrical and Computer Engineering Faculty of Engineering Aristotle University of Thessaloniki phone number : +30 (2310) 994379
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?4B72B5A2.7000103>