Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 10 Oct 2003 00:19:25 +0100
From:      Lewis Thompson <purple@lewiz.info>
To:        Kenny Freeman <kennyf@pchg.net>
Cc:        FreeBSD-questions <freebsd-questions@freebsd.org>
Subject:   Re: Jail FS questions.
Message-ID:  <20031009231925.GD587@lewiz.org>
In-Reply-To: <200310091700.09658.kennyf@pchg.net>
References:  <20030803200948.GA10712@lewiz.org> <200310091700.09658.kennyf@pchg.net>

next in thread | previous in thread | raw e-mail | index | archive | help

--4zI0WCX1RcnW9Hbu
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

On Thu, Oct 09, 2003 at 05:00:02PM -0400, Kenny Freeman wrote:
Content-Description: signed data
> I've got a 120GB drive in that system, so for me I don't really have a
> problem with space.

Yeah, same here, but the way I figure it is it's surely better to
conserve the disk space if at all possible ;)

> jails, for example:
>=20
> /secure/files/mail <- mail spools
>=20
> would be shared using: (/etc/crontab entries)
>=20
> none /secure/files/mail
> /secure/internal/smtp/postfix/server/var/spool/mail
> rw,noexec,nosuid,nodev 0 0 none /secure/files/mail
> /secure/internal/imap/courier/server/var/spool/mail
> rw,noexec,nosuid,nodev 0 0
>=20
> haven't really got these up and running yet (ie. I don't really know
> if postfix + courier both work inside a jail).

I can confirm they both do ;)  I assume you mean Courier-IMAP and not
the Courier MTA.  It sucks.  Postfix or Exim are much better ;)

> Anyway, nullfs is great for "remounting"
> parts of the file system.

Yeah, right now I'm using NFS mounts, which is a bit ugly, to say the
least.  Since I had troubles with union I steered clear of nullfs, since
the same ``slippery dog'' warning exists ;)

  Thanks very much for sharing your ideas, eventually somebody will
write a jail HOWTO that covers all of the different methods of achieving
these things... I hope ;)

-lewiz.

--=20
I was so much older then, I'm younger than that now.  --Bob Dylan, 1964.
------------------------------------------------------------------------
-| msn:purple@lewiz.net | jab:lewiz@jabber.org | url:http://lewiz.net |-

--4zI0WCX1RcnW9Hbu
Content-Type: application/pgp-signature
Content-Disposition: inline

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.3 (FreeBSD)

iD8DBQE/hez9Itq0KFQv7T8RAnvYAJoDQLuje3D1fdVyK+3DQ8QutC7x9QCbBYE/
j344kSe0084jGzqb3uypeLI=
=6Mp/
-----END PGP SIGNATURE-----

--4zI0WCX1RcnW9Hbu--



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20031009231925.GD587>