FreeBSD Jail

From: Elite Bizkit (elite_bizkit@hotmail.com)
Date: 12/30/02


From: "Elite Bizkit" <elite_bizkit@hotmail.com>
To: freebsd-security@FreeBSD.org
Date: Mon, 30 Dec 2002 13:23:03 +0000

I have just built my first jail following instructions in jail(8) and an
article on BSDpro.com and have a few questions relating to jails in general.
First of all, how do you login to the jail (and logout)? Another question is
if someone manages to get root in the jail what happens if they run "exit",
will they get to the host system or will it just close the jail and their
connection? And finally in the BSDpro article the ports system was mounted
using mount_nfs, surely if you can run this in the jail then you could mount
other directories such as "/etc" and screw around with files on the host
system?

Im probably missing something simple here but if anyone could answer any of
the above I would be very greatful :)

Oh yeh, im running FreeBSD 4.7-RELEASE :)

- BiZKiT

_________________________________________________________________
MSN 8 with e-mail virus protection service: 3 months FREE*.
http://join.msn.com/?page=features/virus&xAPID=42&PS=47575&PI=7324&DI=7474&SU
http://www.hotmail.msn.com/cgi-bin/getmsg&HL=1216hotmailtaglines_eliminateviruses_3mf

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message



Relevant Pages

  • jails bring down network interface
    ... While tracking an issue with a jail I run, the interface to which the ... then runs ifconfig alias. ... I'm running FreeBSD 5.4-p5, the interface in question is a VIA VT6105 ...
    (freebsd-stable)
  • Re: SSH From within a Jail
    ... > I currently am running Freebsd 6.0 Release. ... Would you please use "sockstat -4" within the jail (see jexec ... To unsubscribe, ...
    (freebsd-hackers)
  • Re: Call for a hacker.... security.bsd.see_other_uids in jails only
    ... we can invent the jail naming like ... Then the first jail will have name ``foo'' and second one will be ``bar'' ... and the names will not depend on JIDs. ... Names are persistent between reboots so a problem disappears. ...
    (freebsd-current)
  • Re: Call for a hacker.... security.bsd.see_other_uids in jails only
    ... we can invent the jail naming like ... Then the first jail will have name ``foo'' and second one will be ``bar'' ... and the names will not depend on JIDs. ... Names are persistent between reboots so a problem disappears. ...
    (freebsd-current)
  • Jail wont start
    ... I'm new to working with jail's in FreeBSD, so I've created a jail using the following instructions: ... I am running FreeBSD 6.0-RELEASE-p9. ... I'm having trouble starting my jail, and I've included my attempt below: ...
    (freebsd-questions)

Quantcast