From owner-freebsd-questions@FreeBSD.ORG Sun Aug 10 08:44:07 2003 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id E032137B401 for ; Sun, 10 Aug 2003 08:44:07 -0700 (PDT) Received: from enterprise.thenetnow.com (enterprise.thenetnow.com [65.39.193.152]) by mx1.FreeBSD.org (Postfix) with ESMTP id EACE843F75 for ; Sun, 10 Aug 2003 08:44:06 -0700 (PDT) (envelope-from grant@thenetnow.com) Received: from grant (dsla96.ody.ca [216.240.4.96]) by enterprise.thenetnow.com (8.11.6/8.11.6) with SMTP id h7AFYr190701; Sun, 10 Aug 2003 11:34:54 -0400 (EDT) (envelope-from grant@thenetnow.com) Message-ID: <005901c35f56$38c77dd0$6501a8c0@grant> From: "Grant Peel" To: "Clement Laforet" References: <006b01c35f41$7d202f00$6501a8c0@grant> <20030810152655.2cb0eb0c.sheepkiller@cultdeadsheep.org> Date: Sun, 10 Aug 2003 11:44:01 -0400 Organization: The Net Now MIME-Version: 1.0 Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: 7bit X-Priority: 3 X-MSMail-Priority: Normal X-Mailer: Microsoft Outlook Express 6.00.2800.1158 X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1165 cc: freebsd-questions@FreeBSD.ORG Subject: Re: Jails X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list Reply-To: Grant Peel List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sun, 10 Aug 2003 15:44:08 -0000 Hi all, My questions are realating to a recent dev install I did with FreeBSD 5.1 The jail was setup on a fresh install, with no other ports or mods installed. Q1, If I do another completely fresh installation of 5.1 and then install a bunch of ports, (Apache, Exim, named etc etc) when its time to build the jail, will ALL of the things that were installed on the parent server be automaticaly built for the jail? Q2, When one installs new things to the main server, how do you add them to the jail(s)?. Q3, Are there any available patches that should be installed before any jails are built? Q4, If complete servers are built in a jail, and a jailed user is given shell access VIA ssh, how secure is the jail? Can the jailed user 'break out' to the main server? TIA, -Grant Grant W. Peel Server Admin grant@thenetnow.com http://thenetnow.com ----- Original Message ----- From: "Clement Laforet" To: "Grant Peel" Cc: Sent: Sunday, August 10, 2003 9:26 AM Subject: Re: Jails > On Sun, 10 Aug 2003 09:15:36 -0400 > "Grant Peel" wrote: > > > Hello all, > > > > I have read all the docs on the FreeBSD site regarding jails and have one > > working jail setup on my devbox. > > > > Are there any experts who would like to discuss on or off list, as I still > > have a number of questions. > > > > -Grant > > What do you want to know ? > just ask on questions@ :) >