[Bug 228454] running acpiconf -s 4 in a jail as root sends the host to sleep

2018-05-24 Thread bugzilla-noreply
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=228454 --- Comment #11 from Steve Wills --- (In reply to Conrad Meyer from comment #10) Sorry, I guess I misunderstood your comment. -- You are receiving this mail because: You are the assignee for the bug. __

[Bug 228454] running acpiconf -s 4 in a jail as root sends the host to sleep

2018-05-24 Thread bugzilla-noreply
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=228454 --- Comment #10 from Conrad Meyer --- (In reply to Steve Wills from comment #9) Please don't be snarky :( -- we're all trying to make FreeBSD better. No, priv_check does not obsolete devfs rulesets. devfs rulesets are still necessary for

[Bug 228454] running acpiconf -s 4 in a jail as root sends the host to sleep

2018-05-24 Thread bugzilla-noreply
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=228454 --- Comment #9 from Steve Wills --- (In reply to Conrad Meyer from comment #8) Then I guess once this bug is fixed, we need to remove the devfs rules for jails, since they won't be needed. -- You are receiving this mail because: You are t

[Bug 228454] running acpiconf -s 4 in a jail as root sends the host to sleep

2018-05-24 Thread bugzilla-noreply
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=228454 --- Comment #8 from Conrad Meyer --- (In reply to Miroslav Lachman from comment #7) That is not true. See priv_check_cred() / prison_priv_check(). Root in jails is constrained beyond root on host, even with /dev access. -- You are recei

[Bug 228454] running acpiconf -s 4 in a jail as root sends the host to sleep

2018-05-24 Thread bugzilla-noreply
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=228454 Miroslav Lachman <000.f...@quip.cz> changed: What|Removed |Added CC||000.f...@quip.

[Bug 228454] running acpiconf -s 4 in a jail as root sends the host to sleep

2018-05-24 Thread bugzilla-noreply
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=228454 --- Comment #6 from Conrad Meyer --- In fact, /dev/acpi (sys/dev/acpica/acpic.c acpiopen(), acpiioctl()) does not priv_check() at all! Only validates that the user was able to open the device writable (i.e., Unix permissions, which are not

[Bug 228454] running acpiconf -s 4 in a jail as root sends the host to sleep

2018-05-24 Thread bugzilla-noreply
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=228454 Conrad Meyer changed: What|Removed |Added CC||c...@freebsd.org --- Comment #5 fro

[Bug 228454] running acpiconf -s 4 in a jail as root sends the host to sleep

2018-05-24 Thread bugzilla-noreply
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=228454 --- Comment #4 from Steve Wills --- (In reply to Kurt Jaeger from comment #3) Yeah, I don't think this is a bug, merely a mis-configuration. -- You are receiving this mail because: You are the assignee for the bug. ___

[Bug 228454] running acpiconf -s 4 in a jail as root sends the host to sleep

2018-05-24 Thread bugzilla-noreply
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=228454 --- Comment #3 from Kurt Jaeger --- ups, /dev/log, not /var/log -- You are receiving this mail because: You are the assignee for the bug. ___ freebsd-jail@freebsd.org mailing list https://lists.

[Bug 228454] running acpiconf -s 4 in a jail as root sends the host to sleep

2018-05-24 Thread bugzilla-noreply
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=228454 --- Comment #2 from Kurt Jaeger --- It's the same as the base host, except /var/log/. So I guess it's time to add devfs_ruleset=4 to the jail start ? -- You are receiving this mail because: You are the assignee for the bug. _

[Bug 228454] running acpiconf -s 4 in a jail as root sends the host to sleep

2018-05-24 Thread bugzilla-noreply
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=228454 Steve Wills changed: What|Removed |Added CC||swi...@freebsd.org --- Comment #1 fr

[Bug 228454] running acpiconf -s 4 in a jail as root sends the host to sleep

2018-05-24 Thread bugzilla-noreply
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=228454 Mark Linimon changed: What|Removed |Added Assignee|b...@freebsd.org|j...@freebsd.org -- You are receiv