Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 25 Jul 2002 16:00:12 -0700 (PDT)
From:      Jan Srzednicki <winfried@expro.pl>
To:        freebsd-bugs@FreeBSD.org
Subject:   Re: bin/40894: OpenSSH weird delays
Message-ID:  <200207252300.g6PN0C7B054301@freefall.freebsd.org>

next in thread | raw e-mail | index | archive | help
The following reply was made to PR bin/40894; it has been noted by GNATS.

From: Jan Srzednicki <winfried@expro.pl>
To: Peter Pentchev <roam@ringlet.net>
Cc: FreeBSD-gnats-submit@FreeBSD.org
Subject: Re: bin/40894: OpenSSH weird delays
Date: Fri, 26 Jul 2002 00:51:27 +0200 (CEST)

 On Tue, 23 Jul 2002, Peter Pentchev wrote:
 
 > > But.. of course. It doesn't happen when I turn off the
 > > UsePrivilegeSeparation. chroot()ed unprivileged process does not have
 > > access to /etc/resolv.conf, so it tries to ask on local interface.. and
 > > waits for a timeout. 
 > 
 > How is this 'strange'? :)
 
 OK, it was strange at first. Now it does not seem strange.
 
 > You seem to have found the reason for the
 > delays yourself.  From there, it is only a little step to the idea of
 > copying your /etc/resolv.conf into the privilege separation's tree; that
 > is, mkdir -p /var/empty/etc && cp -p /etc/resolv.conf /var/empty/etc/
 > 
 > Does this help?
 
 Yes.
 But it's rather tricky thing, so my suggestion is to turn IP resolving off
 whenever UsePrivilegeSeparation is on. Or maybe I should write to the
 OpenSSH developpers directly about that?
 
 -- 
 Jan 'Winfried' Srzednicki
 winfried@expro.pl
 
 

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-bugs" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200207252300.g6PN0C7B054301>