Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 24 Nov 2007 12:11:18 +0100
From:      Gabor Tjong A Hung <g.v.tjongahung@gmail.com>
To:        freebsd-hackers@freebsd.org
Subject:   Need for SysV IPC to be confined to jail instances
Message-ID:  <8AAADCFE-9D0D-4801-8684-5BD6A3070C2C@GMail.com>

next in thread | raw e-mail | index | archive | help
Dear all,

I have come to understand that postgresql needs sys v ipc. I haven't  
tried to figure out why exactly, but I'm sure they have good reasons.
As I came to understand, if you enable jail_sysvipc_allow in rc.conf I  
am defeating the purpose of a jail.
So basically I if you want pgsql in a jail you're wanting something  
which is impossible on FreeBSD.
I got a suggestion that it might be possible to have sys v ipc  
confined to a jail instance and perhaps let it work like a telephone  
number.
Every jail gets localized IPC numbers, and systemwide they just become  
jailid + localized ipc number.
I was wondering if this is at all possible and if so how I would go  
about submitting a PR for this.

Kind Regards,
Gabor



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?8AAADCFE-9D0D-4801-8684-5BD6A3070C2C>