Jail vnet features

wishmaster artemrts at ukr.net
Fri Jul 11 19:56:11 UTC 2014



 
 --- Original message ---
 From: "Fbsd8" <fbsd8 at a1poweruser.com>
 Date: 11 July 2014, 16:49:08
  


> Marcin Michta wrote:
> > Hello,
> > 
> > 
> > 
> > I want to ask what are advantages and disadvantages using VNET?
> > 
> > I know that it allows each jail to have a private networking stack, but what
> > else?
> > 
> > 
> > 
> > Regards
> > 
> > Marthin
> > 
> 
> Its experimental, it has many bugs posted in PR system, loses memory 
> every time a vnet jail is stopped, firewalls in vnet jail don't work,
> other that these show stoppers, use at your own risk.

Hey, man. Stop panic!

Firewall works very well. Memory leak on shutdown it is not very big problem.
Main advantage for me is: I am able to filtering and prioritization traffic coming thought base system. My vnete'ed jails is like a regular LAN clients and they share INET pipe with appropriate weight. I use ipfw.






More information about the freebsd-jail mailing list