Michael Tokarev via Postfix-users:
> I still yet to see the reason for this, besides a statement "chroot is
> painless for freebsd but for linux is unsupportable", which is nothing
> but a big old myth, since the two works the same.

That is a myth, because we already discussed that glibc needs file
system access for things that other OS libc implementations don't.

This is all I have in my FreeBSD 14 chroot jail (my server does not
do 'traditional' PKI certificate verification):

    /var/spool/postfix/var/run/log
    /var/spool/postfix/etc/resolv.conf

Everything else is loaded or opened before a Postfix daemon drops
its privileges.

        Wietse
_______________________________________________
Postfix-users mailing list -- postfix-users@postfix.org
To unsubscribe send an email to postfix-users-le...@postfix.org

Reply via email to