Re: jails available in openbsd?

From: erik van westen (erik_at_geenspam.vanwesten.net.invalid)
Date: 07/29/04


Date: Thu, 29 Jul 2004 11:20:12 +0200

jpd wrote:

> On 2004-07-27, Peter Matulis <petermatulis@yahoo.ca> wrote:
>> On Tue, 27 Jul 2004 20:18:56 +0200, Frank <no@spam.org> wrote:
>>>Does OpenBSD support a mechanism similar like freebsd jails? Since I
>>>cannot find information on this topic on the website I asume this is not
>>>the case. Just to make sure though..
>>
>> Are you refering to chroot environments? I know that named and httpd are
>> installed by default and run within a chroot jail.
>
> Altough you could call a chroot a jail, I'm not aware that OpenBSD
> supports a similar featureset as FreeBSD does with its `jail' mechanism:
>
> http://docs.freebsd.org/44doc/papers/jail/jail.html
>
> Feel free to correct me if I'm wrong, though.
>
>

I think you are correct. systrace might offer the same or more functionality
though.

EJ

-- 
Remove geenspam. to email
See http://www.vanwesten.net for examples pf and ipf
(IPv4 and IPv6 website)


Relevant Pages

  • Re: FTP guest access chroot not working
    ... the "root" dir for the chroot is /home/someguy/ftp ... # chroot ftp users ... cannot get out of that jail. ... if you created a symlink inside the jail that points to some real ...
    (comp.unix.sco.misc)
  • Re: /devices jailbreak
    ... however as duplicating device special files does /not/ ... processes in a chroot env will ... duplicates in the chrootjail ultimately lead to the same actual ... But that path will be in the chrootjail, as far as the jailed process ...
    (comp.unix.solaris)
  • Re: /devices jailbreak
    ... processes in a chroot env will ... outside the chroot environment will of course report the device paths ... within the jail as a normal user with the restricted Korn ... directory tree, as expected, except for a couple /devices files ...
    (comp.unix.solaris)
  • Re: /devices jailbreak
    ... however as duplicating device special files does /not/ ... processes in a chroot env will ... duplicates in the chrootjail ultimately lead to the same actual ... But that path will be in the chrootjail, as far as the jailed process ...
    (comp.unix.solaris)
  • Re: exiting chroot()
    ... I understand the need and desire for the chroot jail, ... >> If security is so slack as to let someone login as root to run something ...
    (comp.unix.programmer)