Date: Thu, 24 Dec 2020 22:57:43 +0000 From: Steve O'Hara-Smith <steve@sohara.org> To: freebsd-questions@freebsd.org Subject: Re: Network namespaces in FreeBSD Message-ID: <20201224225743.5fbea1299f1d76c4af877668@sohara.org> In-Reply-To: <5b36e28e-d546-665a-1e89-6fa2323502e7@antonovs.family> References: <SG2PR01MB2443D481AC24AF7207218E0EF1DE0.ref@SG2PR01MB2443.apcprd01.prod.exchangelabs.com> <SG2PR01MB2443D481AC24AF7207218E0EF1DE0@SG2PR01MB2443.apcprd01.prod.exchangelabs.com> <20201223182227.da6c11d3604eb07bb4f18ce5@sohara.org> <A577602D-C1A9-4B6E-822E-03641A4070A0@FreeBSD.org> <2581038e-fa0f-231d-ae33-1b42d50c8600@antonovs.family> <e59209c3-af09-68e9-c78d-ddf70909f354@qeng-ho.org> <25fbf315-7aec-853c-cf69-a805805bd06e@antonovs.family> <9a80d70b-3f37-09ac-825f-c87e2c3e4925@qeng-ho.org> <5d38e65e-98e2-4c27-7ccb-37be93f868df@antonovs.family> <1687992626.3246491.1608839712067@mail.yahoo.com> <20201224201945.c8ce7c55c1ce68d729805a64@sohara.org> <5b36e28e-d546-665a-1e89-6fa2323502e7@antonovs.family>
next in thread | previous in thread | raw e-mail | index | archive | help
On Thu, 24 Dec 2020 13:32:10 -0800 Ihor Antonov <ihor@antonovs.family> wrote: > On 12/24/20 12:19 PM, Steve O'Hara-Smith wrote: > > pkg jail nginx --jail webserver-3 --ip4addr ... > > > > and obtain a jail with just enough in it to run nginx (or > > whatever package you choose) and nothing else - by that I mean not a > > base system with the necessary packages but a system stripped of > > everything but the dependencies of the application - if the application > > doesn't need ls then ls isn't there. > > > Yes, that too. > > In linux world there is such a ting [1] and it is quite interesting, Not quite - AIUI those are manually constructed docker images, what I was thinking of was an extension to pkg to *automatically* create that minimal environment possibly with the aid of hints (as few as possible). -- Steve O'Hara-Smith <steve@sohara.org>
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20201224225743.5fbea1299f1d76c4af877668>