Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 25 Sep 2008 22:55:59 +0200
From:      "Simon L. Nielsen" <simon@FreeBSD.org>
To:        Ruslan Ermilov <ru@freebsd.org>
Cc:        cvs-src@freebsd.org, freebsd-jail@freebsd.org, src-committers@freebsd.org, cvs-all@freebsd.org
Subject:   Re: cvs commit: src/etc/rc.d jail src/share/man/man5 rc.conf.5
Message-ID:  <20080925205558.GA1114@arthur.nitro.dk>
In-Reply-To: <20080925052004.GB76968@edoofus.dev.vega.ru>
References:  <200809241525.m8OFPifi095256@repoman.freebsd.org> <20080924181315.S65801@maildrop.int.zabbadoz.net> <20080925052004.GB76968@edoofus.dev.vega.ru>

next in thread | previous in thread | raw e-mail | index | archive | help
[Trying to moving off commit lists]

On 2008.09.25 09:20:04 +0400, Ruslan Ermilov wrote:
> Hi Bjoern,
> 
> On Wed, Sep 24, 2008 at 06:34:53PM +0000, Bjoern A. Zeeb wrote:
> > On Wed, 24 Sep 2008, Ruslan Ermilov wrote:
> > 
> > > ru          2008-09-24 15:18:27 UTC
> > >
> > >  FreeBSD src repository
> > >
> > >  Modified files:
> > >    etc/rc.d             jail
> > >    share/man/man5       rc.conf.5
> > >  Log:
> > >  SVN rev 183325 on 2008-09-24 15:18:27Z by ru
> > >
> > >  Allow a jail's IP alias to be created with an arbitrary netmask.
> > 
> > So I had been talking with various people during the last weeks/months
> > about this feature of configuring an interface from rc.d/jail and I
> > had been >< close to remove it a lot of times but it seems people
> > prefer to actually mix network configuration, management and jail
> > startup/teardown in a single script, which I think is a very
> > questionable thing especially considering that we already had an
> > SA for[1] that script for other means.
> > 
> At work, we use ezjail as a management tool for jails.  We want our

[...]

I think the main problem is that the configuration required for jails
"today" is simply too much for what should be done in an rc.d script
configured by rc.conf.  At the Cambridge Devsummit we talked about
creating some kind of more advanced jail management system and I think
that is the way to go in the long run and kill off rc.d/jail.

Of course doing this is no small task, but I think adding kludges to
rc.conf is going to be increasingly painful.  I'm not sure what form a
management system should take, but having ezjail like functionality in
base would be a good thing IMO.

Personally I also have a rather strong dislike for the jail auto ip
setting feature, but as people are using it removing the functionality
will cause pain.

-- 
Simon L. Nielsen



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20080925205558.GA1114>