Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 27 Aug 2015 22:31:53 -0700
From:      "Chris H" <bsd-lists@bsdforge.com>
To:        <freebsd-current@freebsd.org>
Subject:   Re: Why does netstat not work in jails?
Message-ID:  <3f5c0eb3e833b3f8433074db7c6d01bd@ultimatedns.net>
In-Reply-To: <1043401440738773@web3h.yandex.ru>
References:  null <af6459cb33b5020737f3a70130b7f13c@ultimatedns.net>, <1043401440738773@web3h.yandex.ru>

next in thread | previous in thread | raw e-mail | index | archive | help
On Fri, 28 Aug 2015 08:12:53 +0300 "Alexander V. Chernikov" <melifaro@ipfw.ru>
wrote

> 28.08.2015, 04:56, "Chris H" <bsd-lists@bsdforge.com>:
> > I've been attempting to run jails on an 11-CURRENT
> > for the purpose of building world/kernel && ports
> > for all of our 9-STABLE production servers. I'm using
> > standard/classic jail setup(s) -- not using any
> > of the "convenience" ports/applications that abstract
> > the process in any way.
> > While everything seemed to go as intended/anticipated,
> > I'm seeing things I *didn't* expect.
> > The host network get's it's "public" IP from the router
> > in front of it. From the router, I insure that it is
> > allocated the same non-public IP everytime. So DHCP
> > assigns it 192.168.0.100. I assigned the jail 192.168.0.103.
> > SSHD is started within the jail, root IS allowed login.
> > But any attempt to ssh to 192.168.0.103 from the host,
> > returns:
> > ssh_exchange_identification: Connection closed by remote host.
> >
> > SSHD id NOT running on the host.
> >
> > inetd_flags="-wW -a 192.168.0.100" and syslogd_flags="-ss"
> > is set on the host via rc.conf
> >
> > second issue; loging into the jail, via jexex. If I perform:
> > netstat -nr
> > The following is returned:
> > netstat: kvm not available: /dev/mem: No such file or directory
> > Routing tables
> > rt_tables: symbol not in namelist
> >
> > Any thought's jump out at anyone?
> Direct kvm interface was removed from head a year ago.
> What you can do is recompiling netstat binary from 9 with NewTree variable
> defined to 1 and see if this helps. Output will look  a bit different, but
> you'll be able to see routing tables from jail.
> https://svnweb.freebsd.org/base/stable/9/usr.bin/netstat/route.c?revision=242
> 025&view=markup#l122 
>
> Another option is merging r261207 and r263335.

Perfect! That explains it.

Thank you, Alexander!

--Chris

--





Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?3f5c0eb3e833b3f8433074db7c6d01bd>