Re: HOWTO monitor changes in installed packages within jails?

2013-07-23 Thread Michael Grimm
On 20.07.2013, at 18:34, Michael Grimm wrote: > On 20.07.2013, at 14:53, Matthew Seaman > wrote: >> On 20/07/2013 12:09, Michael Grimm wrote: > >>> I did migrate to pkgng some month ago, and ever since I am curious >>> how to monitor changes in inst

Re: HOWTO monitor changes in installed packages within jails?

2013-07-20 Thread Michael Grimm
On 20.07.2013, at 14:53, Matthew Seaman wrote: > On 20/07/2013 12:09, Michael Grimm wrote: >> I did migrate to pkgng some month ago, and ever since I am curious >> how to monitor changes in installed packages within jails. I am >> looking for a functionality/port that

Re: HOWTO monitor changes in installed packages within jails?

2013-07-20 Thread Matthew Seaman
On 20/07/2013 12:09, Michael Grimm wrote: > I did migrate to pkgng some month ago, and ever since I am curious > how to monitor changes in installed packages within jails. I am > looking for a functionality/port that works like 490.status- > pkg-changes for my host. > > Ques

HOWTO monitor changes in installed packages within jails?

2013-07-20 Thread Michael Grimm
Hi -- I did migrate to pkgng some month ago, and ever since I am curious how to monitor changes in installed packages within jails. I am looking for a functionality/port that works like 490.status-pkg-changes for my host. Question: is there any functionality within the periodic system or a

Re: netgraph network setup for jail(8) vnet jails.

2013-05-23 Thread Trond Endrestøl
On Thu, 23 May 2013 09:42-0400, Joe wrote: > Teske, Devin wrote: > > snip... > > I rendered your output by saving it in a file ("joe.dot") and then running: > > > > dot -Tsvg -o joe.svg < joe.dot > > > > I then uploaded "joe.svg" to my website: > > > > http://druidbsd.sf.net/downlo

Re: netgraph network setup for jail(8) vnet jails.

2013-05-23 Thread Joe
Teske, Devin wrote: snip... I rendered your output by saving it in a file ("joe.dot") and then running: dot -Tsvg -o joe.svg < joe.dot I then uploaded "joe.svg" to my website: http://druidbsd.sf.net/download/joe.svg Compare your output to any of the following: http://druidbsd.s

Re: netgraph network setup for jail(8) vnet jails.

2013-05-18 Thread Teske, Devin
On May 18, 2013, at 5:51 PM, Joe wrote: Teske, Devin wrote: Sorry for top-post, but just wanted to add a quick note: The output of "ngctl dot" would be very helpful to others in debugging your setup. graph netgraph { edge [ weight = 1.0 ]; node [ shape = record, fontsize = 12 ] { "1" [ label =

Re: netgraph network setup for jail(8) vnet jails.

2013-05-18 Thread Joe
Teske, Devin wrote: Sorry for top-post, but just wanted to add a quick note: The output of "ngctl dot" would be very helpful to others in debugging your setup. graph netgraph { edge [ weight = 1.0 ]; node [ shape = record, fontsize = 12 ] { "1" [ label = "{rl0

Re: netgraph network setup for jail(8) vnet jails.

2013-05-18 Thread Teske, Devin
select (100baseTX ) > status: active > plip0: flags=8810 metric 0 mtu 1500 > nd6 options=29 > ipfw0: flags=8801 metric 0 mtu 65536 > nd6 options=29 > lo0: flags=8049 metric 0 mtu 16384 > options=63 > inet6 ::1 prefixlen 128 > inet

netgraph network setup for jail(8) vnet jails.

2013-05-18 Thread Joe
k 0xff00 nd6 options=21 The jails config file # /root >cat /usr/local/etc/vnet/vdir4 vdir4 { host.hostname = "vdir4"; path = "/usr/jails/vdir4"; mount.fstab = "/usr/local/etc/fstab/vdir4"; vnet; persist; } The netgraph sc

SCTP: transport protocol and vimage jails

2013-05-14 Thread Joe
All the info on vimage jails say to nooption SCTP when compiling vimage into your kernel. Reason given is that sctp is not vimage aware. If that is ture, then why can't I find a PR on SCTP or vimage about this problem? ___ freebsd-ques

Re: /etc/jail.conf for automatically started jails listed in /etc/rc.conf

2013-05-14 Thread Matthew Seaman
On 14/05/2013 14:31, dweimer wrote: > I can confirm that PostgreSQL will not run in a jail without sysvipc > enabled, I just setup a jail running PostgreSQL a few weeks ago and had > to do that as well. PostgreSQL will not start without it enabled, > though perhaps there is some setting change in

Re: /etc/jail.conf for automatically started jails listed in /etc/rc.conf

2013-05-14 Thread David Demelier
2013/5/14 Joe : > David Demelier wrote: >> >> 2013/5/14 Joe : >>> >>> David Demelier wrote: >>>> >>>> Le lundi 13 mai 2013 16:32:01 Joe a écrit : >>>>> >>>>> David Demelier wrote: >>>>

Re: /etc/jail.conf for automatically started jails listed in /etc/rc.conf

2013-05-14 Thread dweimer
On 05/14/2013 8:20 am, Joe wrote: David Demelier wrote: 2013/5/14 Joe : David Demelier wrote: Le lundi 13 mai 2013 16:32:01 Joe a écrit : David Demelier wrote: Hello dear, Does jail.conf(5) does not work for jails listed in the rc.conf ? I've added in /etc/jail.conf: foo { hostname=Foo;

Re: /etc/jail.conf for automatically started jails listed in /etc/rc.conf

2013-05-14 Thread Joe
David Demelier wrote: 2013/5/14 Joe : David Demelier wrote: Le lundi 13 mai 2013 16:32:01 Joe a écrit : David Demelier wrote: Hello dear, Does jail.conf(5) does not work for jails listed in the rc.conf ? I've added in /etc/jail.conf: foo { hostname=Foo; path=/jail

Re: /etc/jail.conf for automatically started jails listed in /etc/rc.conf

2013-05-13 Thread David Demelier
2013/5/14 Joe : > David Demelier wrote: >> >> Le lundi 13 mai 2013 16:32:01 Joe a écrit : >>> >>> David Demelier wrote: >>>> >>>> Hello dear, >>>> >>>> Does jail.conf(5) does not work for jails listed in the rc.conf

Re: /etc/jail.conf for automatically started jails listed in /etc/rc.conf

2013-05-13 Thread Joe
David Demelier wrote: Le lundi 13 mai 2013 16:32:01 Joe a écrit : David Demelier wrote: Hello dear, Does jail.conf(5) does not work for jails listed in the rc.conf ? I've added in /etc/jail.conf: foo { hostname=Foo; path=/jails/foo; allow.sysvipc=1; } And in /etc/rc.conf

Re: /etc/jail.conf for automatically started jails listed in /etc/rc.conf

2013-05-13 Thread David Demelier
Le lundi 13 mai 2013 16:32:01 Joe a écrit : > David Demelier wrote: > > Hello dear, > > > > Does jail.conf(5) does not work for jails listed in the rc.conf ? > > > > I've added in /etc/jail.conf: > > > > foo { > > > >

Re: /etc/jail.conf for automatically started jails listed in /etc/rc.conf

2013-05-13 Thread Joe
David Demelier wrote: Hello dear, Does jail.conf(5) does not work for jails listed in the rc.conf ? I've added in /etc/jail.conf: foo { hostname=Foo; path=/jails/foo; allow.sysvipc=1; } And in /etc/rc.conf only foo in the jail_list parameter, but when I try to start the ja

/etc/jail.conf for automatically started jails listed in /etc/rc.conf

2013-05-13 Thread David Demelier
Hello dear, Does jail.conf(5) does not work for jails listed in the rc.conf ? I've added in /etc/jail.conf: foo { hostname=Foo; path=/jails/foo; allow.sysvipc=1; } And in /etc/rc.conf only foo in the jail_list parameter, but when I try to start the jail it still complain

jails running xorg desktop, is it possible?

2013-02-09 Thread Fbsd8
Has anyone been able to get a xorg desktop to run inside of a jail? All information and links to howto's welcome. ___ freebsd-questions@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-questions To unsubscribe, send any mail to

Re: jails bind ip

2013-01-27 Thread Ivailo Tanusheff
. Regards, Ivailo Tanusheff "Zyumbilev, Peter" Sent by: owner-freebsd-questi...@freebsd.org 26.01.2013 15:18 To "freebsd-questions@freebsd.org" cc Subject jails bind ip Hi, I have successfully run multiple jails on freebsd 9.1 Two of the jails are FreeBSD and I h

Re: jails bind ip

2013-01-26 Thread Zyumbilev, Peter
at mailing list archives earlier ...See >> mails from me. >> >> >> Peter > > > Ok I read the archive thread subject "jails". > You read a reply pointing you to a French howto. > > http://blog.etoilebsd.net/post/Emprisonner_une_debian_dans_un_FreeBSD >

Re: jails bind ip

2013-01-26 Thread Fbsd8
Zyumbilev, Peter wrote: Are you saying you installed the Debian 6.0 operating system inside of a Freebsd jail and expect it to function? on top of all works ;-) Look at mailing list archives earlier ...See mails from me. Peter Ok I read the archive thread subject "jails".

Re: jails bind ip

2013-01-26 Thread Zyumbilev, Peter
> Are you saying you installed the Debian 6.0 operating system > inside of a Freebsd jail and expect it to function? > > on top of all works ;-) Look at mailing list archives earlier ...See mails from me. Peter ___ freebsd-questions@freebsd.org mai

Re: jails bind ip

2013-01-26 Thread Fbsd8
Zyumbilev, Peter wrote: Hi, I have successfully run multiple jails on freebsd 9.1 Two of the jails are FreeBSD and I have no problems with them. However I havesome strange problem with Debian 6.0 Jail. This is my config jail_debian_rootdir="/jail/debian" jail_debia

jails bind ip

2013-01-26 Thread Zyumbilev, Peter
Hi, I have successfully run multiple jails on freebsd 9.1 Two of the jails are FreeBSD and I have no problems with them. However I havesome strange problem with Debian 6.0 Jail. This is my config jail_debian_rootdir="/jail/debian" jail_debian_hostname="debian.bivol.net&

Re: Best approach to jails + zfs

2013-01-25 Thread Steve O'Hara-Smith
ity on the best > >> approach in order to handle a quite large system with couple of jails > >> (shouldn't have more than 5 to 10). Whole system is based on zfs. I'll > >> use this as a backup server. > > > > You might like the sysutils/ezjail p

Re: Best approach to jails + zfs

2013-01-25 Thread bsd
Le 25 janv. 2013 à 18:41, Steve O'Hara-Smith a écrit : > On Fri, 25 Jan 2013 18:25:06 +0100 > bsd wrote: > >> Hi, >> >> I wanted to have the point of view of the community on the best approach >> in order to handle a quite large system with couple of jail

Re: Best approach to jails + zfs

2013-01-25 Thread Steve O'Hara-Smith
On Fri, 25 Jan 2013 18:25:06 +0100 bsd wrote: > Hi, > > I wanted to have the point of view of the community on the best approach > in order to handle a quite large system with couple of jails (shouldn't > have more than 5 to 10). Whole system is based on zfs. I'll use

Best approach to jails + zfs

2013-01-25 Thread bsd
Hi, I wanted to have the point of view of the community on the best approach in order to handle a quite large system with couple of jails (shouldn't have more than 5 to 10). Whole system is based on zfs. I'll use this as a backup server. I have been using the "handbook" ap

Re: jails & ip addresses

2013-01-25 Thread Patrick Lamaiziere
y are case of this. One example is poudriere (a package builder), it starts several jails to build the packages and all the jails are bound to 127.0.0.1. The jail IP enforces that the jailed processus cannot use another one IP but that's all. Regards. _

jails & ip addresses

2013-01-24 Thread Fbsd8
Is there any situation where assigning the same IP address to a new jail that has already been assigned to a previous jail valid? I think not, but want verification. What are your thoughts? ___ freebsd-questions@freebsd.org mailing list http://lists.f

Re: Jails

2013-01-15 Thread Leonardo M . Ramé
- Original Message - > From: "Zyumbilev, Peter" > To: "freebsd-questions@FreeBSD.org" > Cc: > Sent: Tuesday, January 15, 2013 3:12 AM > Subject: Re: Jails > > On 15/01/2013 02:10, Leonardo M. Ramé wrote: > >> >> Yes, and also

Re: Jails

2013-01-14 Thread Devin Teske
On Jan 14, 2013, at 10:12 PM, Zyumbilev, Peter wrote: > On 15/01/2013 02:10, Leonardo M. Ramé wrote: > >> >> Yes, and also defined /etc/resolv.conf. Any hint? >> >> >> Leonardo M. Ramé >> http://leonardorame.blogspot.com > > > This is my jail conf. > > jail_debian_rootdir="/jail/debian" >

Re: Jails

2013-01-14 Thread Zyumbilev, Peter
On 15/01/2013 02:10, Leonardo M. Ramé wrote: > > Yes, and also defined /etc/resolv.conf. Any hint? > > > Leonardo M. Ramé > http://leonardorame.blogspot.com This is my jail conf. jail_debian_rootdir="/jail/debian" jail_debian_hostname="debian.bivol.net" jail_debian_ip="192.168.30.12" jail_de

Re: Jails

2013-01-14 Thread Leonardo M . Ramé
> > From: "Zyumbilev, Peter" >To: "freebsd-questions@FreeBSD.org" >Sent: Monday, January 14, 2013 3:53 AM >Subject: Re: Jails > > > >On 13/01/2013 23:58, Leonardo M. Ramé wrote: >> >> > >> r

Re: Jails

2013-01-13 Thread Zyumbilev, Peter
On 13/01/2013 23:58, Leonardo M. Ramé wrote: > root@debian:/# ping www.google.com > WARNING: setsockopt(ICMP_FILTER): Protocol not available > WARNING: your kernel is veeery old. No problems. > PING www.google.com (173.194.42.16) 56(84) bytes of data. > ping: recvmsg: Invalid argument > ping: re

Re: Jails

2013-01-13 Thread Zyumbilev, Peter
On 13/01/2013 23:58, Leonardo M. Ramé wrote: > > > root@debian:/# ping www.google.com > WARNING: setsockopt(ICMP_FILTER): Protocol not available > WARNING: your kernel is veeery old. No problems. > PING www.google.com (173.194.42.16) 56(84) bytes of data. > ping: recvmsg: Invalid argument > pi

Re: Jails

2013-01-13 Thread Leonardo M . Ramé
- Original Message - > From: Devin Teske > To: Leonardo M. Ramé > Cc: "freebsd-questions@FreeBSD.org" > Sent: Sunday, January 13, 2013 2:23 PM > Subject: Re: Jails > > > On Jan 13, 2013, at 7:45 AM, Leonardo M. Ramé wrote: > >>>

Re: Jails

2013-01-13 Thread Devin Teske
On Jan 13, 2013, at 7:45 AM, Leonardo M. Ramé wrote: >> > >> From: "Zyumbilev, Peter" >> To: freebsd-questions@FreeBSD.org >> Cc: Mark Felder ; Devin Teske ; Devin >> Teske >> Sent: Sunday, January 13, 2013

Re: Jails

2013-01-13 Thread Leonardo M . Ramé
> > From: "Zyumbilev, Peter" >To: freebsd-questions@FreeBSD.org >Cc: Mark Felder ; Devin Teske ; Devin Teske > >Sent: Sunday, January 13, 2013 7:09 AM >Subject: Re: Jails > > >On 12/01/2013 18:41, Devin Teske wr

Re: Jails

2013-01-13 Thread Zyumbilev, Peter
eemed to >> run, but have not tested it, for plex - have not tried yet. >> > > netstat isn't allowed in traditional jails (but is allowed in "vimage" jails > which have their own network stack). > > If you're able/willing to compile a new kernel

Re: Jails

2013-01-12 Thread Devin Teske
> netstat isn't allowed in traditional jails (but is allowed in "vimage" jails which have their own network stack). If you're able/willing to compile a new kernel to enable the "VIMAGE" feature, then this can be improved so that you can indeed use netstat with

Re: Jails

2013-01-11 Thread Zyumbilev, Peter
Hi, I have not tested it, but so far things do not look promising... I cannot even run "netstat -nvatp" properly, however sopcast seemed to run, but have not tested it, for plex - have not tried yet. Peter On 11/01/2013 21:19, Mark Felder wrote: > On Fri, 11 Jan 2013 18:28:41 +0200 > "Zyumbilev

Re: Jails

2013-01-11 Thread Mark Felder
On Fri, 11 Jan 2013 18:28:41 +0200 "Zyumbilev, Peter" wrote: > 1. Use > http://download.openvz.org/template/precreated/debian-6.0-x86.tar.gz > instead the file listed in the howto. > > 2. Run sysctl compat.linux.osrelease=2.6.32 in Freebsd shell before > starting the jail, otherwise you will get

Re: Jails

2013-01-11 Thread Zyumbilev, Peter
On 11/01/2013 17:31, Patrick Lamaiziere wrote: > Le Fri, 11 Jan 2013 17:02:19 +0200, > "Zyumbilev, Peter" a écrit : > >> Hi, >> >> I run FreeBSD 9.1 64 bit(Nas4free). I have no problem setting up >> FreeBSD jails inside. However, I wonder, is there an

Re: Jails

2013-01-11 Thread Zyumbilev, Peter
On 11/01/2013 17:31, Patrick Lamaiziere wrote: > Baptiste (bapt@) made a small doc for this in the past, but in french. > > http://blog.etoilebsd.net/post/Emprisonner_une_debian_dans_un_FreeBSD > > > Regards > Will do the job :-) Thanks ! How stable it is ? Anyone have some experience ? I wa

Re: Jails

2013-01-11 Thread Patrick Lamaiziere
Le Fri, 11 Jan 2013 17:02:19 +0200, "Zyumbilev, Peter" a écrit : > Hi, > > I run FreeBSD 9.1 64 bit(Nas4free). I have no problem setting up > FreeBSD jails inside. However, I wonder, is there any tutorial on how > to make Debian Squeeze run inside a jail ? I know it

Jails

2013-01-11 Thread Zyumbilev, Peter
Hi, I run FreeBSD 9.1 64 bit(Nas4free). I have no problem setting up FreeBSD jails inside. However, I wonder, is there any tutorial on how to make Debian Squeeze run inside a jail ? I know it is possible with PC-BSD, should be possible with FreeBSD, but I have not documentation on how to utilize

Re: How do you manage jails?

2012-11-30 Thread Eric S Pulley
> On 11/29/2012 13:34, Fbsd8 wrote: > >> Stay away from using vimage with production jails (vimage provides a >> network stack for each jail). Vimage is marked as experimental and use >> at your own risk. You have to compile it into your kernel to deploy it. >> >

Re: How do you manage jails?

2012-11-29 Thread Robison, Dave
On 11/29/2012 13:34, Fbsd8 wrote: > Stay away from using vimage with production jails (vimage provides a > network stack for each jail). Vimage is marked as experimental and use > at your own risk. You have to compile it into your kernel to deploy it. > FWIW we are using vimages

Re: How do you manage jails?

2012-11-29 Thread Fbsd8
Rick Miller wrote: Hi All, I want to inquire how the majority of users manage jails within their own environments. Do you use the utilities described in the handbook in chapter 16 or some other management facility like qjail or ezjail? Found qjail to be much more function rich than ezjail

Re: How do you manage jails?

2012-11-29 Thread Devin Teske
On Nov 29, 2012, at 6:12 AM, Devin Teske wrote: > > On Nov 29, 2012, at 6:05 AM, Rick Miller wrote: > >> Hi All, >> >> I want to inquire how the majority of users manage jails within their >> own environments. Do you use the utilities described in the handbo

Re: How do you manage jails?

2012-11-29 Thread Steve O'Hara-Smith
On Thu, 29 Nov 2012 09:05:30 -0500 Rick Miller wrote: > Hi All, > > I want to inquire how the majority of users manage jails within their > own environments. Do you use the utilities described in the handbook > in chapter 16 or some other management facility like

Re: How do you manage jails?

2012-11-29 Thread Devin Teske
On Nov 29, 2012, at 6:05 AM, Rick Miller wrote: > Hi All, > > I want to inquire how the majority of users manage jails within their > own environments. Do you use the utilities described in the handbook > in chapter 16 or some other management facility like qjail or ezjail? &

How do you manage jails?

2012-11-29 Thread Rick Miller
Hi All, I want to inquire how the majority of users manage jails within their own environments. Do you use the utilities described in the handbook in chapter 16 or some other management facility like qjail or ezjail? -- Take care Rick Miller

Re: ZFS / Boot Environments / Jails / Upgrading form Source Code

2012-10-19 Thread dweimer
On 2012-10-19 02:48, Shane Ambler wrote: On 19/10/2012 07:44, dweimer wrote: First step replace the usr/src within the jail with new source using svn, easy enough. Then start make buildworld... oops, I have a problem now, the usr/obj/usr stuff is now under /usr/obj/usr/jails/release91rc2

Re: ZFS / Boot Environments / Jails / Upgrading form Source Code

2012-10-19 Thread Shane Ambler
On 19/10/2012 07:44, dweimer wrote: First step replace the usr/src within the jail with new source using svn, easy enough. Then start make buildworld... oops, I have a problem now, the usr/obj/usr stuff is now under /usr/obj/usr/jails/release91rc2..., However I want it to be under /usr/jails

ZFS / Boot Environments / Jails / Upgrading form Source Code

2012-10-18 Thread dweimer
this list can help em out with, to save me some trial an error. Steps already figured out, mount new boot environment (using 9.1rc2 to test with) in /usr/jails/release91rc2, added the necessary settings to rc.conf, started jail, so far so good. I now know I can run the boot environment from

Re: Resolvconf with FreeBSD jails

2012-07-30 Thread Jeff Tipton
On 07/30/2012 18:03, Grzegorz Junka wrote: FreeBSD 9 uses resolvconf tool to manage the resolv.conf file. How can I make it working with FreeBSD jails? In my case I am moving my laptop between networks and every time I boot FreeBSD it gets assigned a different DNS server. The file /etc

Resolvconf with FreeBSD jails

2012-07-30 Thread Grzegorz Junka
FreeBSD 9 uses resolvconf tool to manage the resolv.conf file. How can I make it working with FreeBSD jails? In my case I am moving my laptop between networks and every time I boot FreeBSD it gets assigned a different DNS server. The file /etc/resolv.conf gets updated but the same file in

Re: Jails on FreeBSD 9.0

2012-07-23 Thread Herbert J. Skuhra
On Mon, Jul 23, 2012 at 8:31 AM, Eitan Adler wrote: > If this is a fxp bug, can you please file a PR explaining the issue > and how to reproduce it? kern/170081 -- Herbert ___ freebsd-questions@freebsd.org mailing list http://lists.freebsd.org/mailma

Re: Jails on FreeBSD 9.0

2012-07-22 Thread Eitan Adler
On 22 July 2012 21:55, Herbert J. Skuhra wrote: > On Sat, 21 Jul 2012 16:10:56 +0200 > "Herbert J. Skuhra" wrote: > >> On Sat, Jul 21, 2012 at 11:24 AM, Herbert J. Skuhra >> wrote: >> > Hi, >> > >> > ok, this is obviously a pf problem and the reason why the network in >> > the jail doesn't work

Re: Jails on FreeBSD 9.0

2012-07-22 Thread Herbert J. Skuhra
On Sat, 21 Jul 2012 16:10:56 +0200 "Herbert J. Skuhra" wrote: > On Sat, Jul 21, 2012 at 11:24 AM, Herbert J. Skuhra > wrote: > > Hi, > > > > ok, this is obviously a pf problem and the reason why the network in > > the jail doesn't work. > > > > ifconfig lo1 create > > ifconfig lo1 10.0.0.10 net

Re: Jails on FreeBSD 9.0

2012-07-21 Thread Herbert J. Skuhra
On Sat, Jul 21, 2012 at 11:24 AM, Herbert J. Skuhra wrote: > Hi, > > ok, this is obviously a pf problem and the reason why the network in > the jail doesn't work. > > ifconfig lo1 create > ifconfig lo1 10.0.0.10 netmask 0xff00 > nc -s 10.0.0.10 xx.xx.xx.xx 25 > > With pf: connections fails; se

Re: Jails on FreeBSD 9.0

2012-07-21 Thread Herbert J. Skuhra
Hi, ok, this is obviously a pf problem and the reason why the network in the jail doesn't work. ifconfig lo1 create ifconfig lo1 10.0.0.10 netmask 0xff00 nc -s 10.0.0.10 xx.xx.xx.xx 25 With pf: connections fails; server receives SYN-ACK, but nc continues sending SYNs until nc gives up With

Re: Jails on FreeBSD 9.0

2012-07-17 Thread Herbert J. Skuhra
On Tue, Jul 17, 2012 at 11:46 AM, Herbert J. Skuhra wrote: > With pf: > > I see the packets going out/coming in on fxp0 but somehow the jail > does not "see" them. Running 'nc 173.194.35.177 80" 'pfctl -ss' shows: all tcp xx.xxx.xx.xxx:54724 (192.168.1.1:30177) -> 173.194.35.177:80 ESTABLI

Re: Jails on FreeBSD 9.0

2012-07-17 Thread Herbert J. Skuhra
ert J. Skuhra >>>> wrote: >>>>> Hi, >>>>> >>>>> although I've followed the instructions in jail(8) and jail.conf(5) I >>>>> cannot manage to setup jails on FreeBSD 9.0 STABLE (r238334). >>>>> >>>>> T

Re: Jails on FreeBSD 9.0

2012-07-17 Thread Kalle Møller
>> although I've followed the instructions in jail(8) and jail.conf(5) I >>>> cannot manage to setup jails on FreeBSD 9.0 STABLE (r238334). >>>> >>>> The symptons: >>>> >>>> * ssh'ing to jail works, but it takes about 20 s

Re: IPNAT seems to affect network performance? of jails on lo0 (10.0.0.0/24) - why?

2012-07-03 Thread Kalle Møller
; > On a KVM virtualized host, I run FreeBSD 8.3-RELEASE-p3 and some >> > qjails, 8.3-RELEASE. The jails are connected all via lo0 on >> > 10.0.0.0. >> > >> > While by the large working as expected, I have noticed one >> > pecularity I have faile

Re: IPNAT seems to affect network performance? of jails on lo0 (10.0.0.0/24) - why?

2012-06-26 Thread Christopher J. Ruwe
On Mon, 25 Jun 2012 18:23:56 -0400 Robert Huff wrote: > > Christopher J. Ruwe writes: > > > On a KVM virtualized host, I run FreeBSD 8.3-RELEASE-p3 and some > > qjails, 8.3-RELEASE. The jails are connected all via lo0 on > > 10.0.0.0. > > > > Wh

IPNAT seems to affect network performance? of jails on lo0 (10.0.0.0/24) - why?

2012-06-25 Thread Robert Huff
Christopher J. Ruwe writes: > On a KVM virtualized host, I run FreeBSD 8.3-RELEASE-p3 and some > qjails, 8.3-RELEASE. The jails are connected all via lo0 on > 10.0.0.0. > > While by the large working as expected, I have noticed one > pecularity I have failed to pinpoi

IPNAT seems to affect network performance? of jails on lo0 (10.0.0.0/24) - why?

2012-06-25 Thread Christopher J. Ruwe
On a KVM virtualized host, I run FreeBSD 8.3-RELEASE-p3 and some qjails, 8.3-RELEASE. The jails are connected all via lo0 on 10.0.0.0. While by the large working as expected, I have noticed one pecularity I have failed to pinpoint: When launching processes with some network interaction, like

Re: Synchronising jails

2012-04-28 Thread Wojciech Puchar
/usr/ports/net/rsync On Fri, 27 Apr 2012, Frank Staals wrote: Hey Everyone, I'm looking for a way to synchronise two jails. More specifically, I would like to keep/maintain an exact copy of a given jail. As an example: Suppose I build a jail A on some system (in my particular case build

Re: Synchronising jails

2012-04-27 Thread Fbsd8
Frank Staals wrote: Hey Everyone, I'm looking for a way to synchronise two jails. More specifically, I would like to keep/maintain an exact copy of a given jail. As an example: Suppose I build a jail A on some system (in my particular case build with ezjail) , and I copy the jail into jail

Re: Synchronising jails

2012-04-27 Thread Johan Hendriks
> > Hey Everyone, > > I'm looking for a way to synchronise two jails. More specifically, I > would like to keep/maintain an exact copy of a given jail. As an > example: Suppose I build a jail A on some system (in my particular case > build with ezjail) , and I copy

Re: Synchronising jails

2012-04-27 Thread Lowell Gilbert
Frank Staals writes: > Hey Everyone, > > I'm looking for a way to synchronise two jails. More specifically, I > would like to keep/maintain an exact copy of a given jail. As an > example: Suppose I build a jail A on some system (in my particular case > build with ezjail

Re: Synchronising jails

2012-04-27 Thread Eric Schuele
On 04/27/2012 09:35, Frank Staals wrote: > > Hey Everyone, > > I'm looking for a way to synchronise two jails. More specifically, I > would like to keep/maintain an exact copy of a given jail. As an > example: Suppose I build a jail A on some system (in my particular c

Synchronising jails

2012-04-27 Thread Frank Staals
Hey Everyone, I'm looking for a way to synchronise two jails. More specifically, I would like to keep/maintain an exact copy of a given jail. As an example: Suppose I build a jail A on some system (in my particular case build with ezjail) , and I copy the jail into jail B on some other s

Re: Best practices about Jails

2012-04-20 Thread Andrea Venturoli
ems very simliar to ezjails, which I used (I didn't do jails by hand). bye & Thanks av. ___ freebsd-questions@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-questions To unsubscribe, send any mail to "freebsd-questions-unsubscr...@freebsd.org"

Re: Changes in Jails from FreeBSD 6 to FreeBSD 9 -- particularly, networking and routing

2012-04-15 Thread Chad Leigh Shire.Net LLC
On Apr 13, 2012, at 4:58 PM, Mark Felder wrote: > On Fri, 13 Apr 2012 15:53:49 -0500, Chad Leigh Shire.Net LLC > wrote: > >> No NAT needed since they share the network stack under Jails v1 they share >> the routing tables. It works. Try it. > > You're clear

Re: Changes in Jails from FreeBSD 6 to FreeBSD 9 -- particularly, networking and routing

2012-04-13 Thread Mark Felder
On Fri, 13 Apr 2012 15:53:49 -0500, Chad Leigh Shire.Net LLC wrote: No NAT needed since they share the network stack under Jails v1 they share the routing tables. It works. Try it. You're clearly exploiting a bug in FreeBSD 6's jails. It must get confused and send your pu

Re: Changes in Jails from FreeBSD 6 to FreeBSD 9 -- particularly, networking and routing

2012-04-13 Thread Chad Leigh Shire.Net LLC
ail #1 > 192.168.1.3/24 <-- Jail #2 > > > With this configuration you had no problems accessing the internet from the > jails. correct. (not that it did not matter I don't think is the private IP, host only exists and ALL IP exist on the host in addition to whateve

Re: Changes in Jails from FreeBSD 6 to FreeBSD 9 -- particularly, networking and routing

2012-04-13 Thread Mark Felder
ccessing the internet from the jails. Is this correct? This seems bizarre; this should only be possible if you're doing NAT somewhere in there and that is not possible with Jails v1 (which share a network stack) and is only possible

Changes in Jails from FreeBSD 6 to FreeBSD 9 -- particularly, networking and routing

2012-04-13 Thread Chad Leigh Shire.Net LLC
Hi All OK, so I have a server that has been running FreeBSD 6.1 and a bunch of jails, providing a few limited services. I am migrating these from real hardware and FreeBSD 6.1 with jail running, to a Xen based VPS running FreeBSD 9.0-R with a kernel rebuild from a GENERIC kernel to GENERIC

Re: Best practices about Jails

2012-04-04 Thread Adam Vande More
forge.net/vimage.shtml to manage VIMAGE jails. It works well. I don't use any of the jail frameworks in ports because I don't run a large amount of jails which is where one sees the greatest benefit from them. Of course they make certain optimization and procedures easier, but ther

Re: Best practices about Jails

2012-04-04 Thread Roland Smith
On Wed, Apr 04, 2012 at 10:16:37AM +0200, Andrea Venturoli wrote: > Hello. > > Plase forgive the long post and the amount of questions, but I'm new to > jails and I'd like to be sure of what I'm doing before deploying more > than a test one. > Right now I

Re: Best practices about Jails

2012-04-04 Thread Mark Felder
On Wed, 04 Apr 2012 09:06:25 -0500, wrote: Firewall in a jail will not work. Only the host firewall has access to the network. Jailsv2 allows your own firewall in the jail. You get a full network stack. This is not supported by ezjails, and should still be marked rather EXPERIMENTAL but

Re: Best practices about Jails

2012-04-04 Thread Fbsd8
Andrea Venturoli wrote: Hello. Plase forgive the long post and the amount of questions, but I'm new to jails and I'd like to be sure of what I'm doing before deploying more than a test one. Right now I need to run a commercial Java app, which, ideally, I would forbid to acces

Best practices about Jails

2012-04-04 Thread Andrea Venturoli
Hello. Plase forgive the long post and the amount of questions, but I'm new to jails and I'd like to be sure of what I'm doing before deploying more than a test one. Right now I need to run a commercial Java app, which, ideally, I would forbid to access files outside its direct

RE: Email issues, relay failure, perhaps Jails is causing it.

2012-02-27 Thread Bender, Chris
-questions@freebsd.org Subject: Re: Email issues, relay failure, perhaps Jails is causing it. 2012-02-26 00:54, Bender, Chris skrev: > Hi Brent > > Yes the system we are calling X, is jailed by another system. > > Here is the jailer system: > > zs1# netstat -aptcp | grep smtp > tc

RE: Email issues, relay failure, perhaps Jails is causing it.

2012-02-27 Thread Bender, Chris
Message- From: Bernt Hansson [mailto:b...@bananmonarki.se] Sent: Sunday, February 26, 2012 2:20 AM To: Bender, Chris Cc: freebsd-questions@freebsd.org Subject: Re: Email issues, relay failure, perhaps Jails is causing it. 2012-02-26 00:54, Bender, Chris skrev: > Hi Brent > > Yes the

Re: Email issues, relay failure, perhaps Jails is causing it.

2012-02-26 Thread Daniel Staal
--As of February 26, 2012 8:20:14 AM +0100, Bernt Hansson is alleged to have said: http://www.uk.freebsd.org/doc/en_US.ISO8859-1/books/handbook/jails.html Have you tried to telnet into the other jailed hostnames and ip-addresses, like telnet rt3.* 25 What does it say? Can you connect? There

Re: Email issues, relay failure, perhaps Jails is causing it.

2012-02-25 Thread Bernt Hansson
*.*LISTEN Here is about jails; http://www.uk.freebsd.org/doc/en_US.ISO8859-1/books/handbook/jails.html Have you tried to telnet into the other jailed hostnames and ip-addresses, like telnet rt3.* 25 What does it say? Can you connect? There seems to be either a jail problem or a routing

RE: Email issues, relay failure, perhaps Jails is causing it.

2012-02-25 Thread Bender, Chris
rebooted the jailer system. Jails really should have no affect on This it is a virtual machine essentially, at least that is my thoughts. What happen to your thought that snmp needs to run as a non mailer system? Thanks regards -Original Message- From: Bernt Hansson [mailto:b

Re: Jails V2, VIMAGE, and integration in the base system

2012-02-04 Thread Devin Teske
curity patch). We've been running amd64 hosts with both amd64 and i386 jails. Doing compiler builds, using them as web servers, shell servers, bastion's, gateways, proxies (both shell and web), and even for running legacy releases of FreeBSD (running 4.11 i386 on an amd64 8.1 host). So t

Re: Jails V2, VIMAGE, and integration in the base system

2012-02-04 Thread Hugo Silva
On 02/03/12 17:02, Devin Teske wrote: Please give this a try: http://druidbsd.sf.net/vimage.shtml http://druidbsd.sf.net/download.shtml Hi, Interesting. Is it safe to run in production (VIMAGE/vnets) ? ___ freebsd-questions@freebsd.org mailing lis

Re: Jails V2, VIMAGE, and integration in the base system

2012-02-03 Thread Fbsd8
Hugo Silva wrote: Hello, I didn't find much about jails v2 + epair + vimage on google; The FreeBSD wiki pages concerning this subject seem fairly outdated (that or not much has happened in 3 years), and the manpages don't mention much about vimage/vnet. According to http://

RE: Jails V2, VIMAGE, and integration in the base system

2012-02-03 Thread Devin Teske
> -Original Message- > From: owner-freebsd-questi...@freebsd.org [mailto:owner-freebsd- > questi...@freebsd.org] On Behalf Of Hugo Silva > Sent: Friday, February 03, 2012 8:17 AM > To: freebsd-questions@freebsd.org > Subject: Jails V2, VIMAGE, and integration

  1   2   3   4   5   6   7   8   >