Re: Re: Jail vnet features

2014-07-13 Thread Peter Toth
On Mon, Jul 14, 2014 at 4:30 AM, Marcin Michta wrote: > > > >wishmaster wrote: > >> > >> > >> --- Original message --- > >> From: "Fbsd8" > >> Date: 11 July 2014, 16:49:08 > >> > >> > >> > >>> Marcin Michta wrote: > Hello, > > > > I want to ask what are advantages and

Re: Re: Jail vnet features

2014-07-13 Thread Marcin Michta
> >wishmaster wrote: >> >> >> --- Original message --- >> From: "Fbsd8" >> Date: 11 July 2014, 16:49:08 >> >> >> >>> Marcin Michta wrote: Hello, I want to ask what are advantages and disadvantages using VNET? I know that it allows each jail to have a p

Re: mergemaster and better support for ezjails

2014-07-13 Thread Warren Block
On Sun, 13 Jul 2014, Ian Smith wrote: On Sat, 12 Jul 2014 20:08:52 -0600, Warren Block wrote: A couple of patches to make mergemaster work better with ezjails. > These are only very superficially tested. Feedback welcome. > 1. If /etc/mergemaster.rc exists in the jail, it is sourced. This

Re: vnet jail and ipfw/nat on host - keep-state problem?

2014-07-13 Thread Ian Smith
Hi Peter, going back to your second message .. On Wed, 9 Jul 2014 16:24:27 +1000, Peter Ross wrote: > P.S. I also have the following rules near the top: > > 01000 check-state > 01100 allow tcp from any to any established For one thing, if you are running named as an authoritative nameserver