From owner-freebsd-questions@FreeBSD.ORG Sat Feb 24 22:11:04 2007 Return-Path: X-Original-To: freebsd-questions@freebsd.org Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [69.147.83.52]) by hub.freebsd.org (Postfix) with ESMTP id 2EB0316A401 for ; Sat, 24 Feb 2007 22:11:04 +0000 (UTC) (envelope-from stapleton.41@gmail.com) Received: from mu-out-0910.google.com (mu-out-0910.google.com [209.85.134.189]) by mx1.freebsd.org (Postfix) with ESMTP id B3E9513C467 for ; Sat, 24 Feb 2007 22:11:03 +0000 (UTC) (envelope-from stapleton.41@gmail.com) Received: by mu-out-0910.google.com with SMTP id g7so794312muf for ; Sat, 24 Feb 2007 14:11:02 -0800 (PST) DKIM-Signature: a=rsa-sha1; c=relaxed/relaxed; d=gmail.com; s=beta; h=domainkey-signature:received:received:message-id:date:from:to:subject:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; b=oMz7pp7OXhLUU/fqNSFAF+Vvn5YWs+41lKfPRRMsRf5kLQd9GOBTqibjRZIesu1vLs8F+lNxxpz6SrpAGkIlIs3bHcV0RjMeO2k7WXRDTP52/+KeFb3xB6dmYcB7CulULZ/nOQTAPccweNbpYhLWP+bRxlWKs4vJ+HqUiLI8ioc= DomainKey-Signature: a=rsa-sha1; c=nofws; d=gmail.com; s=beta; h=received:message-id:date:from:to:subject:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; b=pkuYyH7y8emHFxw6NobUzrs9QJaI2jdC1uH7LRWHigQIb36TVBGwaaiY6A77vW9YQBOjzUolKnGlWtxcvrPK5qLi8FYFYwrMFYeWQtiueDDM49D7DGkhyqaXlamToEy1YQ23HFRzPRZS6QxMcI9OfZCT8uZptOc0blQapct+3mM= Received: by 10.82.113.6 with SMTP id l6mr1191998buc.1172355062063; Sat, 24 Feb 2007 14:11:02 -0800 (PST) Received: by 10.82.191.16 with HTTP; Sat, 24 Feb 2007 14:11:01 -0800 (PST) Message-ID: <80f4f2b20702241411r592908c4xca4e6858504c6bd1@mail.gmail.com> Date: Sat, 24 Feb 2007 22:11:01 +0000 From: "Jim Stapleton" To: freebsd-questions@freebsd.org In-Reply-To: <45E0AEFE.4080403@h3q.com> MIME-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit Content-Disposition: inline References: <80f4f2b20702231107p1cf7f4f3n5896aa7e8ef0ecaf@mail.gmail.com> <200702240408.40222.h.schmalzbauer@omnisec.de> <80f4f2b20702231921x603c759g9b143b24edfaa7d5@mail.gmail.com> <200702240430.09674.h.schmalzbauer@omnisec.de> <80f4f2b20702231936m9725099v6e638685273630f0@mail.gmail.com> <80f4f2b20702231943j3fea9f4fxb3919898ad4dfc21@mail.gmail.com> <20070224055350.GA2587@idoru.cepheid.org> <80f4f2b20702240505o6c7f1e36r87389f645bc86238@mail.gmail.com> <45E0AEFE.4080403@h3q.com> Subject: Re: problems with jail X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 24 Feb 2007 22:11:04 -0000 Thank you, that fixed it. After all the other stuff (some of which also had it broke), it was a 1... ARGH! Thanks again, I am now the proud owner of a shiny new jail to put all my processes behind bars inside of. :-) On 2/24/07, Philipp Wuensche wrote: > Jim Stapleton wrote: > > > > Issue not confused, but it did give me some "try this" tests. > > Unfortunately I still cant connect to anything outside of the jail, > > not even to the host. > > SSHing into jail does not work, into host does. > > root@elrond 07:54:40 (0) /usr/ports > jail /jail/ legolas 92.168.1.85 > > /bin/csh > > %ssh -x 192.168.1.84 > > ^C > > > > And as a last test I should have thought of before: > > root@elrond 07:59:13 (0) /usr/ports > sysctl > > security.jail.allow_raw_sockets > > security.jail.allow_raw_sockets: 1 > > root@elrond 07:59:26 (0) /usr/ports > jail /jail/ legolas 92.168.1.85 > > /bin/csh > > %ping 127.0.0.1 > > PING 127.0.0.1 (127.0.0.1): 56 data bytes > > ^C > > There is missing a 1 in front of 92.168.1.85 > > If you do ifconfig inside the jail and you don't see the ipaddr. of the > jail configured on any of the network interfaces, you did something > wrong. Either forgot to configure the ipaddr. or used the wrong in the > jail command. > > greetings, > philipp > >