From owner-freebsd-security Sun Oct 10 17:50:31 1999 Delivered-To: freebsd-security@freebsd.org Received: from neptune.psn.net (neptune.psn.net [207.211.58.16]) by hub.freebsd.org (Postfix) with ESMTP id 069101561A for ; Sun, 10 Oct 1999 17:50:22 -0700 (PDT) (envelope-from will@shadow.blackdawn.com) Received: from 5042-243.008.popsite.net ([209.224.140.243] helo=shadow.blackdawn.com) by neptune.psn.net with esmtp (PSN Internet Service 2.12 #3) id 11aTf8-0002LJ-00; Sun, 10 Oct 1999 17:50:07 -0700 Received: (from will@localhost) by shadow.blackdawn.com (8.9.3/8.9.3) id UAA10251; Sun, 10 Oct 1999 20:48:45 -0400 (EDT) (envelope-from will) Date: Sun, 10 Oct 1999 20:48:44 -0400 From: Will Andrews To: Justin Wells Cc: freebsd-security@FreeBSD.ORG Subject: Re: chroot jail in pre 4.0 Message-ID: <19991010204844.A9523@shadow.blackdawn.com> References: <19991008170540.A1618@fever.semiotek.com> Mime-Version: 1.0 Content-Type: multipart/mixed; boundary="WIyZ46R2i8wDzkSu" X-Mailer: Mutt 1.0pre3i In-Reply-To: <19991008170540.A1618@fever.semiotek.com> Sender: owner-freebsd-security@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.org --WIyZ46R2i8wDzkSu Content-Type: text/plain; charset=us-ascii On Fri, Oct 08, 1999 at 05:05:40PM -0400, Justin Wells wrote: > > I have several daemons running chrooted on my box, and I am wondering just > how safe I can make things under 3.3/3.2. I will definately be using jail() > once that's available to me, but currently it's not.. Actually.. Jacques Vidrine is in the process of (has finished?) backporting jail(2,8) to -STABLE. This is currently being discussed on freebsd-stable@FreeBSD.ORG. So far, however, I'm pretty certain that the developers will choose not to commit due to a small chance that the commit may break binaries (KLD's) built by third-party vendors (if any). Jacques questions whether there are any or not.. please see freebsd-stable@FreeBSD.ORG mailing list archives. --Will (newbie mutt user, gotta add .procmailrc now ;) --WIyZ46R2i8wDzkSu Content-Type: text/plain; charset=us-ascii Content-Disposition: attachment; filename=".signature.simplest" -- Will Andrews GCS/E/S @d- s+:+>+:- a--->+++ C++ UB++++ P+ L- E--- W+++ !N !o ?K w--- ?O M+ V-- PS+ PE++ Y+ PGP+>+++ t++ 5 X++ R+ tv+ b++>++++ DI+++ D+ G++>+++ e->++++ h! r-->+++ y? --WIyZ46R2i8wDzkSu-- To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message