Re: [zones-discuss] query re zones and trusted solaris

2006-05-12 Thread James Carlson
that zones on a TX system are essentially an implementation detail, and can't be used to create independent Solaris environments. -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA

Re: [zones-discuss] Re: Non-global zone sending TCP SYN-ACK packet over

2006-05-12 Thread James Carlson
the 'ipf' module plumbed atop the 'aggr0' driver, so you'll have a single stream. If you were to use the older Sun Trunking solution, it would work only if there were a single IP stream plumbed for the trunk. -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems / 1

Re: [zones-discuss] query re zones and trusted solaris

2006-05-12 Thread James Carlson
within a zone, but could be used for other things. For the shared IP address(es), packets are distinguished by the IP security label option. Each zone has a label, and the label on the packet maps it to a particular zone. -- James Carlson, KISS Network[EMAIL PROTECTED] Sun

Re: [zones-discuss] SecurityFocus Article

2006-05-19 Thread James Carlson
-global zone. -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803-2757 42.496N Fax +1 781 442 1677 ___ zones-discuss mailing list

Re: [zones-discuss] zone stuck in 'mounted' state

2006-06-28 Thread James Carlson
'vera1': $ANYTHING operation is invalid for zones in state 'mounted' zoneadm: zone 'vera1': call to zoneadmd failed Try unmount. -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington

Re: [zones-discuss] Zones, clusters, and maintainability

2006-06-29 Thread James Carlson
file systems are in the miniroot you plan to use. If they're not, then you'll need to modify the miniroot to add them. -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803

Re: [zones-discuss] The ability to lock non-global zones

2006-07-20 Thread James Carlson
issue here.) Are you looking for someone to file the RFE, or are you planning to visit bugs.opensolaris.org? -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803-2757

Re: [zones-discuss] traffic/data between zones

2006-07-26 Thread James Carlson
between the zones without hitting the NIC/wire. huh? Perhaps the right question in response is: what problem are you seeing, and what are you trying to do? It's quite unclear to me what would prompt a question about lofs that looks like the above. -- James Carlson, KISS Network

Re: [zones-discuss] traffic/data between zones

2006-07-26 Thread James Carlson
on the wire. It's not necessarily enforced that every packet you see via DLPI loopback is in fact transmitted -- some might not be -- but the ones that you don't see aren't sent. -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox

Re: [zones-discuss] traffic/data between zones

2006-07-26 Thread James Carlson
Lei Liu writes: DTrace is the tool instrumenting the request. [...] I would check for calls to put(9F) and putnext(9F) from within the IP module (which includes TCP). ... then those are the calls you want. -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems

Re: [zones-discuss] Question on user account config with zones

2006-07-31 Thread James Carlson
-administrable) like the host name. Instead, I think we need a way to ask the system (perhaps a new ioctl?) whether a given known IP address represents a local address or a remote one. Or just fix the deadlock. ;-} Seems like the kernel has to help out here. I agree. -- James Carlson, KISS Network

Re: [zones-discuss] /usr read only

2006-08-03 Thread James Carlson
-zone-local, /export/home/your-zone-local) out in the global zone that hold the separate /usr/local bits for each non-global zone. -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington

Re: [zones-discuss] FYI: # of logical interfaces in a zone

2006-08-03 Thread James Carlson
Steffen Weiberle writes: PS. I was impressed with the linearity of ifconfig going through 8K interfaces. This is due to the work of the SolarMAX project, which converted the kernel ipif database from a linear list to AVL trees. -- James Carlson, KISS Network[EMAIL

Re: [zones-discuss] /usr read only

2006-08-03 Thread James Carlson
and installation does fail on that... In that case, whole root zones are probably the way to go, along with making sure there isn't already a CR filed against the package in question. -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1

Re: [zones-discuss] Re: Solaris 10 1/06 to 6/06 upgrade problems

2006-08-08 Thread James Carlson
appear to be working. It sounds to me like you need to talk to the group that supports mpxio, rather than install or zones. -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803

Re: [zones-discuss] Live Upgrade and Zones

2006-08-09 Thread James Carlson
Jesus Cea writes: Is there any plan to support live upgrade on machines with Solaris zones? Yes. The project code name is Zulu. If affirmative, any timetable?. I don't think we can share that at this time, but it's soon. The plan is to have it in one of the S10 updates. -- James Carlson

Re: [zones-discuss] Creating a zone with the -b option

2006-08-30 Thread James Carlson
(such as the -b option) is supported, unless somehow explicitly disclaimed. -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803-2757 42.496N Fax +1 781 442 1677

Re: [zones-discuss] minimal os/sw install in global zone and different in non-global

2006-08-30 Thread James Carlson
pkginfo(4)), then it must be installed in the global zone. If it delivers bits that are used in the kernel (drivers or kernel modules), then it also must be installed in the global zone. -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems / 1 Network Drive

Re: [zones-discuss] Re: Zone in a mounted state ?

2006-09-06 Thread James Carlson
install crapped out. Possibly $ZONEPATH/lu is involved then. As Enda said, I got around it by running a 'zoneadm -z myzone unmount'. It is indeed internal. If you see it, then that's a bug. -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems / 1 Network Drive

Re: [zones-discuss] /etc/zones/index and uuid

2006-09-14 Thread James Carlson
that we don't accidentally synchronize (LU) zones that have been uninstalled and then reinstalled. I can't guarantee that this is the only thing that will break, as we may end up adding other things later that are dependent on UUID, but it's the first one. -- James Carlson, KISS Network

Re: [zones-discuss] Re: Re: Convert sparse root to full root zone without reinstall?

2006-09-21 Thread James Carlson
' Filesystem Standard. With this manpage originated by Sun we may get software vendor to fix their software for beeing usable in local zones. In the meantime, using whole-root zones where such software is required is probably the least troublesome workaround. -- James Carlson, KISS Network

Re: [zones-discuss] zones network documentation redux

2006-09-22 Thread James Carlson
loopback. You need a network interface to do that. Fortunately, it doesn't need to be a real interface. Doing something like this should work: # ifconfig ip.tun0 plumb 192.168.0.1 192.168.0.2 up # ifconfig ip.tun0:1 plumb 192.168.0.2 192.168.0.1 zone test up -- James Carlson, KISS Network

Re: [zones-discuss] zones, network and routing

2006-09-25 Thread James Carlson
I setup ipf on the GZ to do this? No ... IP Filter currently does not intercept traffic flowing locally between zones. -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803

Re: [zones-discuss] /etc/zones/index content

2006-09-27 Thread James Carlson
to is the UUID, then this is a known problem. It's CR 6379341, which is fixed in Solaris 10 Update 06/06, and patches 122662-02 (SPARC) and 122663-05 (x86). It's nothing to be worried about; the updates correct the problem, and the software knows how to deal with it. -- James Carlson, KISS Network

Re: [zones-discuss] Company offering Zones hosting

2006-10-05 Thread James Carlson
of obvious tie-in, it sounds to me more like a www.sun.com sort of thing. -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803-2757 42.496N Fax +1 781 442 1677

Re: [zones-discuss] zone_enter problem

2006-10-06 Thread James Carlson
with EFAULT. You also can't use any descriptor-passing mechanism to pass in an NFS-related file descriptor from one zone to another. See PSARC 2004/357 for details. -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084

Re: [zones-discuss] Company offering Zones hosting

2006-10-06 Thread James Carlson
Stephen Hahn writes: * James Carlson [EMAIL PROTECTED] [2006-10-05 13:47]: Dan Price writes: On Thu 05 Oct 2006 at 07:16PM, Alan Burlison wrote: Someone using Solaris 10 Zones for hosting provision, cool to see ^^ [...] Probably something to discuss

Re: [zones-discuss] Re: RFE?: Prevent installation of packages

2006-10-18 Thread James Carlson
to that release passed ages ago. It's been in testing since then. In general, if you want new features quickly, you'll want to use Solaris Express. And the feature hasn't hit Solaris Express yet. -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems / 1 Network Drive

Re: [zones-discuss] Re: Re: RFE?: Prevent installation of packages

2006-10-18 Thread James Carlson
with upgrade. -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803-2757 42.496N Fax +1 781 442 1677 ___ zones-discuss mailing list

Re: [zones-discuss] Zones and VLAN tagging.

2006-10-23 Thread James Carlson
appears to be CR 6367840 -- fixed in Nevada, but not S10. -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803-2757 42.496N Fax +1 781 442 1677

Re: [zones-discuss] What is the proceess to change the physical net to an already working zone?

2006-11-02 Thread James Carlson
zonecfg:test:net set physical=bge1 zonecfg:test:net end zonecfg:test verify zonecfg:test commit zonecfg:test exit # zoneadm -z test reboot The second case: # ifconfig bge0:1 unplumb # ifconfig bge1:1 10.12.13.14 netmask + broadcast + zone test up -- James Carlson, KISS Network[EMAIL

Re: [zones-discuss] zone creation

2006-11-07 Thread James Carlson
remove the -b. -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803-2757 42.496N Fax +1 781 442 1677 ___ zones-discuss mailing

Re: [zones-discuss] zone UUID in older releases

2006-11-08 Thread James Carlson
BEs is the same zone but just under a different name (thus still needing synchronization), and when someone destroys and re-creates a zone under the same name (thus not needing synchronization). -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems / 1 Network Drive

Re: [zones-discuss] Re: [networking-discuss] Re: [crossbow-discuss]Design review of IP Instances part of Crossbow

2006-11-08 Thread James Carlson
Erik Nordmark writes: James Carlson wrote: I don't think that argument works on two counts. First, exclusive-IP behavior does not offer complete IP isolation, because you can't (for instance) install your own copy of Firewall-1 or Cisco VPN into a non-global exclusive-IP zone

Re: [zones-discuss] Re: [networking-discuss] Re: [crossbow-discuss]Design review of IP Instances part of Crossbow

2006-11-08 Thread James Carlson
Erik Nordmark writes: James Carlson wrote: Erik Nordmark writes: But the key thing to me is the consistency between where things can be observed and where they can be modified. We already have RFEs filed against other utilities because they don't show non-global zone activity (see

Re: [zones-discuss] Re: [networking-discuss] Re: [crossbow-discuss]Design review of IP Instances part of Crossbow

2006-11-08 Thread James Carlson
is controlled by the proc_zone privilege. Normally, only a user with all privileges will have this ability unless modified via RBAC. Thanks. ;-} I _knew_ it wasn't as simple as killing a process in the global zone. -- James Carlson, KISS Network[EMAIL PROTECTED] Sun

Re: [zones-discuss] Re: [networking-discuss] Re: [crossbow-discuss]Design review of IP Instances part of Crossbow

2006-11-08 Thread James Carlson
belongs to some other subsystem, rather than behaving as the configuration tool itself. (Yeah, there's a fuzzy line here as well.) -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA

Re: [zones-discuss] Re: Zones and Solaris upgrade

2006-12-01 Thread James Carlson
Peter Baer Galvin writes: Hi, any update on the status of the Zulu project!? thanks. It integrated into build 53. Work is continuing now on cleaning up some related bugs and backporting for S10. -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems / 1 Network

RE: [zones-discuss] Re: Zones and Solaris upgrade

2006-12-01 Thread James Carlson
the ability to print them out. Other than that, it should be just as it was before, except that you can now live-upgrade a system with non-global zones. -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS

Re: [zones-discuss] zone delete/rename problems

2006-12-04 Thread James Carlson
. -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803-2757 42.496N Fax +1 781 442 1677 ___ zones-discuss mailing list zones

Re: [zones-discuss] Zone installation problem.

2006-12-05 Thread James Carlson
that file system is mounted? -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803-2757 42.496N Fax +1 781 442 1677 ___ zones

Re: [zones-discuss] How to get new ZFS Solaris 10 U3 features going from Solaris 10 U2

2006-12-15 Thread James Carlson
this support to Live Upgrade, so that all the upgrade mechanisms are supported. -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803-2757 42.496N Fax +1 781 442 1677

Re: [zones-discuss] DHCP-/BOOTP-server in a local zone ?

2006-12-18 Thread James Carlson
, which means at least sys_net_config is required. sys_net_config is on the list of privileges that cannot be added to a zone: % grep sys_net_config /usr/lib/brand/native/config.xml privilege set=prohibited name=sys_net_config / % It seems unlikely that this will work. -- James Carlson

Re: [zones-discuss] Re: zone to zone networking slow!!

2007-01-04 Thread James Carlson
to be no difference among those numbers, as it's the same stack being driven in the same code paths. Zones are not an emulation layer. It's puzzling that you're seeing a difference at all. -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems / 1 Network Drive

Re: [zones-discuss] Re: zone to zone networking slow!!

2007-01-04 Thread James Carlson
Jeff Victor writes: Yes, I did. As I said in that msg, don't read too much into those numbers. You went and read too much into them, didn't you? :-) Yeah, ok, I'm like that. ;-} -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems / 1 Network Drive

Re: [zones-discuss] Patching the system

2007-01-05 Thread James Carlson
state, in which all file systems are mounted, but no processes are running in the zone. I can probably make the design document that describes scratch zones public if you need it. -- James Carlson, KISS Network[EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W

Re: [zones-discuss] Re: Ashanti and Zulu Details Needed

2007-01-08 Thread James Carlson
makes a copy of the system, upgrades that while the system continues to run, then switches from one image to the other). If possible, having access to the PSARC 2005/474 Spec would be appreciated. In progress ... but it doesn't address any of your questions. -- James Carlson, KISS Network

Re: [zones-discuss] How to update zone configuration

2007-01-09 Thread James Carlson
-- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803-2757 42.496N Fax +1 781 442 1677 ___ zones-discuss mailing list zones

Re: [zones-discuss] Re: Re: Ashanti and Zulu Details Needed

2007-01-11 Thread James Carlson
. But, if you do, then propose an ACR for detached zones project and have at it. -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803-2757 42.496N Fax +1 781 442 1677

Re: [zones-discuss] Zones and Resource Pools

2007-01-17 Thread James Carlson
(perhaps with Zones extensions) to do that, or zonecfg if I'm interested in the start-time configuration of the zone. -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803-2757

Re: [zones-discuss] putting local zone filesystem in global zone vfstab

2007-01-22 Thread James Carlson
inside the zone. Use 'zonecfg' instead. -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803-2757 42.496N Fax +1 781 442 1677

Re: [zones-discuss] Re: Zones on NFS

2007-01-23 Thread James Carlson
believe that they have talked about the problem, though I don't (immediately) see a related project on opensolaris.org. It definitely needs their input. See also CR 4963321. -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W

RE: [zones-discuss] Re: Zones on NFS

2007-01-23 Thread James Carlson
. (others can then attach to it in order to hopefully influence its priority) I cited the RFE in my previous message -- it's CR 4963321. -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212

Re: [zones-discuss] Re: Zones on NFS

2007-01-23 Thread James Carlson
Jeremy Teo writes: I cited the RFE in my previous message -- it's CR 4963321. James, would you mind sharing the rest of the info in CR 4963321? b.o.o. says see comments :) Wretched, I know. I'll see what I can do with it. -- James Carlson, Solaris Networking [EMAIL PROTECTED

Re: [zones-discuss] Netmask conversion fix

2007-01-25 Thread James Carlson
. -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803-2757 42.496N Fax +1 781 442 1677 ___ zones-discuss mailing list zones

Re: [zones-discuss] LU non-global zone timeline

2007-02-02 Thread James Carlson
of circumstances. ;-} -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803-2757 42.496N Fax +1 781 442 1677 ___ zones-discuss

Re: [zones-discuss] hostnames and zones

2007-02-02 Thread James Carlson
and associated configuration files are inaccessible from within a non-global zone, and thus have no effect there. I think things may be different in TX zones, though. -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781

Re: [zones-discuss] NFS server in zones

2007-02-15 Thread James Carlson
case hasn't been solved. I don't think it's a special problem that's particular to allowing non-global zones to be NFS servers. -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA

Re: [zones-discuss] Zone in mounted state

2007-03-07 Thread James Carlson
the system too much after having interrupted a packaging change. -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803-2757 42.496N Fax +1 781 442 1677

Re: [zones-discuss] Re: Zone start order

2007-03-08 Thread James Carlson
. -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803-2757 42.496N Fax +1 781 442 1677 ___ zones-discuss mailing list zones-discuss

[zones-discuss] Re: SOA (was: Zone start order)

2007-03-08 Thread James Carlson
and dependency tree aware of distributed applications -- and the usage of the new feature would be independent of (though perhaps useful for) Zones. -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212

Re: [zones-discuss] Re: SOA (was: Zone start order)

2007-03-08 Thread James Carlson
this is a nobrainer. We can even have dependencies between smf services across zones. I agree there's likely a real need for this. I'm just wary that it'll leak into places where it's _not_ the right answer. -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1

Re: [zones-discuss] [Fwd: [install-discuss] virtual interfaces in non-global zone ?]

2007-03-16 Thread James Carlson
requestor wanted. He wanted multiple addresses on the same interface. Fortunately, I think that works just by using the same 'physical' for multiple 'add net' sections. -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781

Re: [zones-discuss] Re: [install-discuss] DHCP Server in zone, WAS: Install software from SXCE DVD?

2007-03-17 Thread James Carlson
there, that won't work), and the NFS server hasn't been virtualized (meaning that you can't yet have an NFS server in a non-global zone). -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA

Re: [zones-discuss] Re: Re: Re: zone hung in shutting_down status

2007-04-24 Thread James Carlson
this. -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803-2757 42.496N Fax +1 781 442 1677 ___ zones-discuss mailing list zones-discuss

Re: [zones-discuss] pidentd

2007-05-04 Thread James Carlson
to do is to create a set of stable interfaces to get PID lists for sockets. We don't currently have such a thing in Solaris, but it looks like this is something that other programs (such as lsof) need. -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network

Re: [zones-discuss] pidentd

2007-05-04 Thread James Carlson
isn't the only one; there's also lsof and probably ntop as well) would be a _very_ nice thing to have. -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803-2757 42.496N

Re: [zones-discuss] pidentd

2007-05-04 Thread James Carlson
(pidentd isn't the only one; there's also lsof and probably ntop as well) would be a _very_ nice thing to have. Yep. But defining an interface is hairy, specially considering locking and performance. *sigh* -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1

Re: [zones-discuss] pidentd

2007-05-04 Thread James Carlson
to the user) or higher still (service providers). -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803-2757 42.496N Fax +1 781 442 1677

Re: [zones-discuss] zones network documentation

2007-05-25 Thread James Carlson
complicated mechanism for causing it. A simple nslookup something badIP works as well. If it's that easy to encounter, then this needs to be looked at much more urgently. I've bumped up the priority of this bug to P2. -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems

[zones-discuss] Re: [install-discuss] updating a zone when attaching

2007-06-04 Thread James Carlson
) to expose the features you need. I assume that the reason you're not doing this is that delivery of Install updates on which this new feature depends would be more difficult. Is that right? -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive

[zones-discuss] Re: [install-discuss] updating a zone when attaching

2007-06-04 Thread James Carlson
capability. I didn't see it on that roadmap, but ok ... -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803-2757 42.496N Fax +1 781 442 1677

[zones-discuss] Re: [install-discuss] updating a zone when attaching

2007-06-04 Thread James Carlson
that (if it is a problem) you can at least detect it and fail out. I will add some material explaining this assumption to the proposal. OK. -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212

Re: [zones-discuss] zoneadm install

2007-06-04 Thread James Carlson
packaging database will live, among other important zone-private things. Did you add this to the zone configuration on your own (if so, why?), or did some script do it for you (if so, what script?)? -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive

Re: [install-discuss] Re: [zones-discuss] updating a zone when attaching

2007-06-05 Thread James Carlson
on opensolaris.org and the mercurial change log is not terribly revealing. It's an open case, so everything ought to be there. I'll drop a line to the ARC discuss list. -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442

Re: [zones-discuss] ipfilter in local zones

2007-06-06 Thread James Carlson
-global zones.. Sure. Ipf rules specified for the global zone apply to all 'regular' (non-exclusive) non-global zones as well. The rules themselves don't have a way to filter based on Zone ID or name, but you can still filter based on address. -- James Carlson, Solaris Networking [EMAIL

Re: [install-discuss] Re: [zones-discuss] updating a zone when attaching

2007-06-06 Thread James Carlson
://www.opensolaris.org/os/community/arc/caselog/2007/304/ -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803-2757 42.496N Fax +1 781 442 1677

Re: [zones-discuss] ipfilter in local zones

2007-06-07 Thread James Carlson
answer is to go with some VM-like solution, such as Xen, LDOMS, Domains, or VMware. All this allows is filtering between zones the global zones ipf rules.. Yes; that's what the loopback intercept is for. -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1

Re: [zones-discuss] create command question

2007-06-11 Thread James Carlson
into a sparse-root zone. -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803-2757 42.496N Fax +1 781 442 1677 ___ zones-discuss

Re: [zones-discuss] zonecfg and dhcp for shared interface?

2007-06-14 Thread James Carlson
with exclusive-ip? I don't see why that's a special case ... -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803-2757 42.496N Fax +1 781 442 1677

Re: [zones-discuss] zonecfg and dhcp for shared interface?

2007-06-14 Thread James Carlson
that with one NIC. I see. I think that just pushes the issue elsewhere, as you have to deal with (potentially) very large numbers of MAC addresses. -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212

Re: [zones-discuss] zonecfg and dhcp for shared interface?

2007-06-14 Thread James Carlson
, and there are probably some advantages to doing so, but one detraction would be having to manage the MAC addresses. Doing the same thing by using DHCP's support for logical interfaces would avoid that particular problem. -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun

Re: [zones-discuss] Can I migrate zones without reboot?.

2007-06-15 Thread James Carlson
larry lancaster writes: when i use zones, can I migrate then without havign to reboot my machine? Is ohter words is the zone migration static or live? The zone itself must be shut down in order to migrate, but the machine itself doesn't need to be rebooted. -- James Carlson, Solaris

Re: [zones-discuss] zonecfg and dhcp for shared interface?

2007-06-15 Thread James Carlson
, but it's worth some thought. -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803-2757 42.496N Fax +1 781 442 1677 ___ zones-discuss

Re: [zones-discuss] zonecfg and dhcp for shared interface?

2007-06-15 Thread James Carlson
Erik Nordmark writes: James Carlson wrote: Getting the DHCP data into a form where Linux can use it inside the zone might be a challenge, but it's worth some thought. I think it would also require emulation/translation of some additional Linux ioctls; I don't think the ioctl to *set

Re: [zones-discuss] Zones and 3D applications

2007-07-10 Thread James Carlson
products, not on the Zones feature itself. -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803-2757 42.496N Fax +1 781 442 1677

Re: [zones-discuss] Running zonename command in an alternate root

2007-07-26 Thread James Carlson
that you find elsewhere may not necessarily work. -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803-2757 42.496N Fax +1 781 442 1677

Re: [zones-discuss] Running zonename command in an alternate root

2007-07-27 Thread James Carlson
Dan Price writes: On Thu 26 Jul 2007 at 05:04PM, James Carlson wrote: Here's a code snippet : ZONECMD=${PKG_INSTALL_ROOT}/usr/bin/zonename That's the broken part. That should be just: ZONECMD=/usr/bin/zonename I'm lacking context here, slightly, but... Isn't it also

Re: [zones-discuss] Zones and Routing

2007-08-01 Thread James Carlson
the ip-type property in zonecfg(1M). (Are you running an OpenSolaris-based distribution? If so, then if you have a recent enough build, you should already have this feature.) -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W

Re: [zones-discuss] Creating a Virtualization Community Group

2007-08-07 Thread James Carlson
suggest that a single virtualization group would be a good way to start. In fact, other than a possibly excessive list of community group leaders and core contributors, I find it a little hard to understand why separate CGs would be helpful here. -- James Carlson, Solaris Networking

Re: [zones-discuss] Non-global zone and nfs mounts from global zone

2007-08-08 Thread James Carlson
. Just create a directory and export it into the desired non-global zones via lofs. The alternative is to choose some other means for sharing files -- such as (for example) a web, ftp, ssh, or rsync server running in the non-global zone. -- James Carlson, Solaris Networking [EMAIL

Re: [zones-discuss] Zones on zfs

2007-08-16 Thread James Carlson
) to carry the same bits twice -- once as packages (for regular upgrades of global-zone-only systems) and then again as a set of patches (for Ashanti upgrades of systems with non-global zones). It wasn't sustainable. -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun

Re: [zones-discuss] Zones on zfs

2007-08-17 Thread James Carlson
Mike Gerdts writes: On 8/16/07, James Carlson [EMAIL PROTECTED] wrote: Previously (in S10u1 through S10u3) the upgrade mechanism consisted of some tricky patch-based work, from a project code-named Ashanti. The problem with that mechanism is that it required the distribution medium (DVD

Re: [zones-discuss] webshere in Solaris 10 containers

2007-08-22 Thread James Carlson
zonecfg:blue:fs set special=/export/blue-itp-configuration zonecfg:blue:fs set type=lofs zonecfg:blue:fs end -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803-2757 42.496N

Re: [zones-discuss] [brandz-discuss] Creating a Virtualization Community Group

2007-08-23 Thread James Carlson
, and that a common community would serve no useful purpose. I don't quite agree, but in our last OGB meeting, we did approve the LDoms community proposal. Going ahead with a virtualization community that _doesn't_ involve LDoms seems much more feasible to me. -- James Carlson, Solaris Networking

Re: [zones-discuss] [xen-discuss] [brandz-discuss] Creating a Virtualization Community Group

2007-08-23 Thread James Carlson
. The only ones in favor of the broader community were the other groups, such as Xen: http://mail.opensolaris.org/pipermail/ogb-discuss/2007-August/002234.html -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442

Re: [zones-discuss] [xen-discuss] [brandz-discuss] Creating a Virtualization Community Group

2007-08-23 Thread James Carlson
of overlap are. If anything, the zones project was the odd man out, since they virtualize at a different level of the stack than Xen and LDoms. Even with Zones, I'd expect software packaging, install, and maintenance issues to be shared (at least in part) with the other groups. -- James Carlson

Re: [zones-discuss] luzonevfs failed and Zones tool patches

2007-08-30 Thread James Carlson
the Solaris 10 8/07 Live Upgrade packages on a previous version of Solaris without following the Solaris 10 8/07 patch requirements that will be detailed in this document. 8/07 is U4. -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive

Re: [zones-discuss] unable to rsh into zone2

2007-09-26 Thread James Carlson
refused What's the status of svc:/network/shell:default in that zone? Did you perhaps configure zone2 and forget to go through sysid? -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212

Re: [zones-discuss] unable to rsh into zone2

2007-09-26 Thread James Carlson
. In general, you ought not be using them anymore. Try ssh instead. -- James Carlson, Solaris Networking [EMAIL PROTECTED] Sun Microsystems / 1 Network Drive 71.232W Vox +1 781 442 2084 MS UBUR02-212 / Burlington MA 01803-2757 42.496N Fax +1 781 442 1677

  1   2   3   >