jul...@elischer.org (Julian Elischer) writes:
>there is a version of pf in the wings that actually knows about jails.
>This change is not to be confused with that.
I was worried that the pf/vimage project was stalled. I eagerly await!
--
G. Paul Ziemba
FreeBSD unix:
9:46PM up 98 days, 13:27, 2
On 9/9/10 12:22 PM, Luiz Gustavo S. Costa wrote:
Hi Bjoern,
I just perform tests with your patch and it worked very well! thanks
for the patch ...
But I found something that may be unsafe within the jail environment,
I'm allowed to change /dev/pf, so that if I run a "pfctl-f
/etc/pf.conf" insid
lol
in the rush to see the patch working not read the head of it :p
has every reason only disable dev ;)
2010/9/9 Bjoern A. Zeeb :
> On Thu, 9 Sep 2010, Luiz Gustavo S. Costa wrote:
>
> Hey,
>
>> But I found something that may be unsafe within the jail environment,
>> I'm allowed to change
On Thu, 9 Sep 2010, Luiz Gustavo S. Costa wrote:
Hey,
But I found something that may be unsafe within the jail environment,
I'm allowed to change /dev/pf, so that if I run a "pfctl-f
/etc/pf.conf" inside the jail to do with that the rules are read
again, killing pf.conf on the main environment
Hi Bjoern,
I just perform tests with your patch and it worked very well! thanks
for the patch ...
But I found something that may be unsafe within the jail environment,
I'm allowed to change /dev/pf, so that if I run a "pfctl-f
/etc/pf.conf" inside the jail to do with that the rules are read
again
___
freebsd-virtualization@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-virtualization
To unsubscribe, send any mail to
"freebsd-virtualization-unsubscr...@freebsd.org"
On Tue, 7 Sep 2010, Bjoern A. Zeeb wrote:
Hey,
in a way to work on something I needed to be able to at least load pf
on my VIMAGE development machine. So I quickly hacked together a
patch that does exactly that. I hope it'll apply to HEAD or stable/8
but I didn't test on either.
This will NO
Hey,
in a way to work on something I needed to be able to at least load pf
on my VIMAGE development machine. So I quickly hacked together a
patch that does exactly that. I hope it'll apply to HEAD or stable/8
but I didn't test on either.
This will NOT allow you to use pf with jails+vnet but sh