Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 10 Feb 2013 13:56:06 +0000
From:      "Teske, Devin" <Devin.Teske@fisglobal.com>
To:        Nikos Vassiliadis <nvass@gmx.com>
Cc:        Fbsd8 <fbsd8@a1poweruser.com>, FreeBSD questions <questions@freebsd.org>
Subject:   RE: vnet without epair
Message-ID:  <13CA24D6AB415D428143D44749F57D7201EA6C2D@ltcfiswmsgmb21>
In-Reply-To: <5117A540.1060702@gmx.com>
References:  <511671FA.3050801@a1poweruser.com> <511680AD.1040209@gmx.com>, <5116A452.6030104@a1poweruser.com> <13CA24D6AB415D428143D44749F57D7201EA6A3F@ltcfiswmsgmb21>, <511780DF.6010600@gmx.com> <13CA24D6AB415D428143D44749F57D7201EA6BAB@ltcfiswmsgmb21>, <5117A540.1060702@gmx.com>

next in thread | previous in thread | raw e-mail | index | archive | help
On Sun, 10 Feb 2013, Nikos Vassiliadis wrote:

> On 2/10/2013 2:54 PM, Teske, Devin wrote:
> > It's not in ports only because I first wanted to see where jail.conf wo=
uld take us w/respect to vimages.
>=20
> I see.
>=20
> > However, this package not being in ports shouldn't prevented you from t=
rying it -- it's extremely stable and as I mentioned, we've been using it h=
eavily at $work for over 12 months now. When you download the package (*.tg=
z) and pkg_add it, it installs the following two files only:
> >
> > /etc/rc.d/vimage
> > /etc/rc.conf.d/vimage
> >
> > NOTE: The rc.conf.d file is the "documentation" on usage
> >
> > If you haven't tried it, then I hope you will because I think the new j=
ail.conf stuff falls short. Don't get me wrong, jail.conf is a great start,=
 but simply adding the ability to manage the vnet aspect of a jail does not=
 make a vimage (what's missing is the built-in support for generating bridg=
es as vimages are brought up/down dynamically).
> >
> > I feel that before I add this to ports I need to reprogram it to use ja=
il.conf (not directly). That will simplify its code and [should] make it sm=
aller. I was somewhat waiting on /etc/rc.d/jail to blaze the trail for me.
> >
> > In short, the landscape has been changing fast enough that it's prevent=
ed me from adding this to ports, but in spite of that it's still very much =
real _and_ real stable.
> >
>=20
> Yes, of course.
>=20
> I will try it and report back to you my findings.
>=20
> What I - nikos - really need from a script like yours is the ability
> to generate arbitrarily complex topologies with interconnected vnet
> jails. Something like:
> a----b----c---d
>       |
>       |
> h----e----f---g
>            |
>            |
>            i
>=20
> Like a cut-down version of imunes[1] without the need of a graphical
> user interface.
>=20

Excellent! This is precisely what I was after when I wrote the vimage packa=
ge and its contents. I'm familiar with IMUNES and netgraph fits the bill we=
ll (especially with "ngctl dot" being useful in providing visual confirmati=
on when you've achieved the desired network layout -- when "ngctl dot | dot=
 -Tsvg -o netgraph.svg" starts to look like your IMUNES graph, then you kno=
w you're making progress toward having the right configuration).
--=20
Devin

_____________
The information contained in this message is proprietary and/or confidentia=
l. If you are not the intended recipient, please: (i) delete the message an=
d all copies; (ii) do not disclose, distribute or use the message in any ma=
nner; and (iii) notify the sender immediately. In addition, please be aware=
 that any message addressed to our domain is subject to archiving and revie=
w by persons other than the intended recipient. Thank you.



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?13CA24D6AB415D428143D44749F57D7201EA6C2D>