Re: RFC: Enabling VIMAGE in GENERIC

2014-12-02 Thread Bjoern A. Zeeb
On 30 Nov 2014, at 10:04 , Julian Elischer jul...@freebsd.org wrote: On 11/29/14, 5:28 PM, Craig Rodrigues wrote: On Mon, Nov 24, 2014 at 9:03 AM, Julian Elischer jul...@freebsd.org mailto:jul...@freebsd.org wrote: also look at the following: (a little dated)

Re: RFC: Enabling VIMAGE in GENERIC

2014-12-02 Thread Julian Elischer
On 12/2/14, 7:31 PM, Bjoern A. Zeeb wrote: On 30 Nov 2014, at 10:04 , Julian Elischer jul...@freebsd.org wrote: On 11/29/14, 5:28 PM, Craig Rodrigues wrote: On Mon, Nov 24, 2014 at 9:03 AM, Julian Elischer jul...@freebsd.org mailto:jul...@freebsd.org wrote: also look at the following: (a

Re: RFC: Enabling VIMAGE in GENERIC

2014-11-20 Thread Craig Rodrigues
On Wed, Nov 19, 2014 at 4:33 PM, Bjoern A. Zeeb b...@freebsd.org wrote: https://people.freebsd.org/~bz/20100530-02.vnet.9.html The man page should be in that perforce branch you converted to github. Thank you for pointing that out. It is indeed in github:

Re: RFC: Enabling VIMAGE in GENERIC

2014-11-19 Thread Alexander V. Chernikov
On 19.11.2014 07:28, Craig Rodrigues wrote: On Mon, Nov 17, 2014 at 9:47 AM, Alfred Perlstein alf...@freebsd.org wrote: On 11/17/14, 3:02 AM, Warner Losh wrote: On Nov 17, 2014, at 12:46 AM, Craig Rodrigues rodr...@freebsd.org wrote: (3) Take a pass through

Re: RFC: Enabling VIMAGE in GENERIC

2014-11-19 Thread Marko Zec
On Wed, 19 Nov 2014 16:07:46 +0400 Alexander V. Chernikov melif...@freebsd.org wrote: ... Can we have some wiki/man/docs on how particular subsystem should interact with VNET first? This can probably help to make proper vnet fixes in less number of attempts :) For example, even

Re: RFC: Enabling VIMAGE in GENERIC

2014-11-19 Thread Bjoern A. Zeeb
On 19 Nov 2014, at 03:28 , Craig Rodrigues rodr...@freebsd.org wrote: (6) Ask clusteradm to run one of the machines they use for PF firewalls + IPv6 with a VIMAGE enabled kernel, and provide feedback. For people to use pf with VIMAGE we first MUST have the security fix imported

Re: RFC: Enabling VIMAGE in GENERIC

2014-11-19 Thread John-Mark Gurney
Alexander V. Chernikov wrote this message on Wed, Nov 19, 2014 at 16:07 +0400: Can we have some wiki/man/docs on how particular subsystem should interact with VNET first? Yes, we need a man page talking about this feature first, how to enable it, compile it into the kernel, how to manage it,

Re: RFC: Enabling VIMAGE in GENERIC

2014-11-19 Thread Craig Rodrigues
On Wed, Nov 19, 2014 at 11:59 AM, John-Mark Gurney j...@funkthat.com wrote: Yes, we need a man page talking about this feature first, how to enable it, compile it into the kernel, how to manage it, what subsystems it interacts w/, what sysctl nodes it provides, etc. Marko, Do you have any

Re: RFC: Enabling VIMAGE in GENERIC

2014-11-19 Thread Bjoern A. Zeeb
On 19 Nov 2014, at 23:14 , Craig Rodrigues rodr...@freebsd.org wrote: On Wed, Nov 19, 2014 at 11:59 AM, John-Mark Gurney j...@funkthat.com wrote: Yes, we need a man page talking about this feature first, how to enable it, compile it into the kernel, how to manage it, what subsystems it

Re: RFC: Enabling VIMAGE in GENERIC

2014-11-18 Thread Peter Ross
On Sun, 16 Nov 2014, Craig Rodrigues wrote: (4) Not everyone uses bhyve. FreeBSD jails are an excellent virtualization platform for FreeBSD. Jails are still very popular and performant. VIMAGE makes jails even better by allowing per-jail network stacks. I am using

Re: RFC: Enabling VIMAGE in GENERIC

2014-11-18 Thread Craig Rodrigues
On Mon, Nov 17, 2014 at 9:47 AM, Alfred Perlstein alf...@freebsd.org wrote: On 11/17/14, 3:02 AM, Warner Losh wrote: On Nov 17, 2014, at 12:46 AM, Craig Rodrigues rodr...@freebsd.org wrote: (3) Take a pass through http://wiki.freebsd.org/VIMAGE/TODO and

Re: RFC: Enabling VIMAGE in GENERIC

2014-11-17 Thread Warner Losh
On Nov 17, 2014, at 12:46 AM, Craig Rodrigues rodr...@freebsd.org wrote: Hi, PROPOSAL == I would like to get feedback on the following proposal. In the head branch (CURRENT), I would like to enable VIMAGE with this commit: PATCH == Index: sys/conf/NOTES

Re: RFC: Enabling VIMAGE in GENERIC

2014-11-17 Thread Bjoern A. Zeeb
On 17 Nov 2014, at 11:20 , Willem Jan Withagen w...@digiware.nl wrote: I think I understand your critique, but then on the other hand I wonder where the reluctance is As I read it, things are going to be enabled in CURRENT only (for the time). Which is exactly for the reasons you worry

Re: RFC: Enabling VIMAGE in GENERIC

2014-11-17 Thread Willem Jan Withagen
Op 17 nov. 2014 om 16:37 heeft Dag-Erling Smørgrav d...@des.no het volgende geschreven: Willem Jan Withagen w...@digiware.nl writes: The constraints as you put them are indeed rather tight. There is little to be done about it. I was not aware of the fact that 11.0 is planned for release in

RFC: Enabling VIMAGE in GENERIC

2014-11-16 Thread Craig Rodrigues
Hi, PROPOSAL == I would like to get feedback on the following proposal. In the head branch (CURRENT), I would like to enable VIMAGE with this commit: PATCH == Index: sys/conf/NOTES === --- sys/conf/NOTES (revision