Jails that keep hanging around

Pawel Jakub Dawidek pjd at FreeBSD.org
Mon Feb 16 06:04:16 PST 2004


On Mon, Feb 16, 2004 at 04:47:25PM +0300, Maxim Konovalov wrote:
+> > If there is no objections I'm going to commit it tomorrow.
+> 
+> What I really do not understand why we do not leak in non-jail
+> environment?

I'm sure we are, this is just hard to check, because we don't have
list with allocated 'cred' structures.

But try to do your test without a jail and track 2nd column in:

	# sysctl kern.malloc | grep cred

Number of objects grows when I'm killing daemon while connection
exists. I'm wondering if this cannot be used to some DoS attack.

-- 
Pawel Jakub Dawidek                       http://www.FreeBSD.org
pjd at FreeBSD.org                           http://garage.freebsd.pl
FreeBSD committer                         Am I Evil? Yes, I Am!
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 187 bytes
Desc: not available
Url : http://lists.freebsd.org/pipermail/freebsd-current/attachments/20040216/e245df0b/attachment.bin


More information about the freebsd-current mailing list