From owner-freebsd-questions@FreeBSD.ORG Sun Aug 12 12:40:55 2012 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [69.147.83.52]) by hub.freebsd.org (Postfix) with ESMTP id 24541106566B for ; Sun, 12 Aug 2012 12:40:55 +0000 (UTC) (envelope-from fbsd8@a1poweruser.com) Received: from mail-03.name-services.com (mail-03.name-services.com [69.64.155.195]) by mx1.freebsd.org (Postfix) with ESMTP id 03C668FC12 for ; Sun, 12 Aug 2012 12:40:54 +0000 (UTC) Received: from [10.0.10.3] ([173.88.199.104]) by mail-03.name-services.com with Microsoft SMTPSVC(6.0.3790.4675); Sun, 12 Aug 2012 05:40:56 -0700 Message-ID: <5027A459.8060809@a1poweruser.com> Date: Sun, 12 Aug 2012 08:40:57 -0400 From: Fbsd8 User-Agent: Thunderbird 2.0.0.17 (Windows/20080914) MIME-Version: 1.0 References: <1344347348.23440.5.camel@blackfriar.inhio.eu> <5022715C.9010301@a1poweruser.com> <50250034.8010004@a1poweruser.com> <20120810135446.GA48662@ei.bzerk.org> <50251DE5.3010106@a1poweruser.com> <50266F8F.4010504@a1poweruser.com> In-Reply-To: Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit X-OriginalArrivalTime: 12 Aug 2012 12:40:56.0151 (UTC) FILETIME=[B7B34670:01CD7887] X-Sender: fbsd8@a1poweruser.com X-Authenticated-Sender: fbsd8@a1poweruser.com X-EchoSenderHash: [fbsd8]-[a1poweruser*com] Cc: freebsd-questions@freebsd.org, blackfriar Subject: Re: NFS within a Jail?! X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sun, 12 Aug 2012 12:40:55 -0000 http://forums.freebsd.org/showthread.php?t=29968&highlight=nfsd Found this which I think says it all at the conclusion. March 30th, 2012 Received some information from the FreeBSD mailing list and apparently exporting NFS from an jailed environment is not possible. For those who have "managed" (by heavy tweaking of sysctl.conf) to export the NFS probably have these concerns: 1) Security may have been compromised on their own jails as a result of tweaks and 2) Even if you manage to export the NFS share under such strained boundary conditions, it may cause problems in some of the application's you would like to use (eg: tinderbox) finally, 3) If you try to use net/unfs3 and succeed to export NFS, this will not have a very fast (ro) transport rate and will have many (rw) speed limitations. My personal conclusion is to wait until the default kernel version of nfs is updated to be jail-friendly before I try using nfs in jails.