Re: Call for a hacker.... security.bsd.see_other_uids in jails only

From: Bjoern A. Zeeb <bzeeb-lists_at_lists.zabbadoz.net>
Date: Fri, 21 May 2004 13:24:56 +0000 (UTC)
On Fri, 21 May 2004, Ruslan Ermilov wrote:

> > A more general solution will be better, but harder to implement: make
> > some sysctl branches (e.g. security.bsd) local per jail, and possibility to
> > change them only from host machine.
> >
> I like the idea of per-jail sysctl MIB trees, e.g.:
>
> jail.<JID>.security.bsd

jail ID is not too good; we would need s.th. that could be treated
'perstistent' between reboots.

Perhaps not use sysctl at all ...

-- 
Bjoern A. Zeeb				bzeeb at Zabbadoz dot NeT

there is no 'do you really want to quit ?'-button in RL.
Received on Fri May 21 2004 - 04:30:29 UTC

This archive was generated by hypermail 2.4.0 : Wed May 19 2021 - 11:37:54 UTC