Re: pf or ipfw within a jail?

2011-05-07 Thread Espartano
On Fri, May 6, 2011 at 4:31 PM, Bjoern A. Zeeb wrote: > > On May 6, 2011, at 8:28 PM, Mickey Harvey wrote: > >> Is it possible to run pf or ipfw within a jail? I am running 8.2 and have >> vimage compiled in the kernel. > > ipfw might work then; pf not yet. ipfilter in a far distant future. > But

Re: security.jail.allow_raw_sockets per jail

2009-05-11 Thread Espartano
dows, BSD is for people who love UNIX". "Documentation is like sex: when it is good, it is very, very good; and when it is bad, it is better than nothing." My personal webblog http://people.linuxreal.org/espartano/blog/ Sent from Cordoba, Ver, Mexico __

Re: maxproc per jail

2009-03-17 Thread Espartano
On Tue, Mar 17, 2009 at 1:48 AM, Nicolas de Bari Embriz Garcia Rojas wrote: > Hi all, it is posible to limite the maxproc per jail ? > > or how to put a protection to the main host in case the root user of a jail > try to make  a fork bom. > may be you can protect your computer using cpu's limits