Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 29 Nov 2017 12:16:08 +0100
From:      Matthias Meyser <matthias@harz.de>
To:        freebsd-jail@FreeBSD.org
Subject:   IPSEC in VNET Jails
Message-ID:  <f144fcea-b5c2-683e-c7ca-5a86bc45ffbc@harz.de>

next in thread | raw e-mail | index | archive | help
Hi

i use a IPSEC Tunnel inside a VNET jail without problems.

Annoyingly /etc/rc.d/ipsec dos not run in VNET jails.

This is fixed in head see
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=211364

This is NOT MFCed to stable/11 because the author isn't convinced that VNET 
jails are "is sufficiently robust in stable/11 to encourage people to use it"

As this fix only makes a difference if you

1) Have compiled a Kernel WITH VIMAGE support
2) Setup and configured a VNET jail.
3) Setup IPSEC inside the VNET jail.

i think this should be MFCed.
-- 
Matthias Meyser
38678 Clausthal-Zellerfeld, Marktstrasse 40
Telefon: +49 5323 9839910
Fax:     +49 5323 9839917



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?f144fcea-b5c2-683e-c7ca-5a86bc45ffbc>