5.3-BETA1, jails and devfs

Scot Hetzel swhetzel at gmail.com
Wed Sep 1 11:13:22 PDT 2004


On Wed, 1 Sep 2004 19:02:56 +0100, Rob MacGregor
<freebsd.macgregor at blueyonder.co.uk> wrote:
> Probably a stupid question, however...
> 
> I've got my first jail running under 5.3-BETA1 and am trying to lock down /dev,
> as per the advice in the jail man page.  All attempts fail however:
> 
> # devfs ruleset 10
> devfs ruleset: ioctl DEVFSIO_SUSE: Operation not permitted
> # devfs rule apply hide
> devfs rule: ioctl DEVFSIO_RAPPLY: Operation not permitted
> 
> I'm pretty sure I've missed something obvious in a man page, but having re-read
> them a few dozen times I'm darned if I can work it out.  Any help appreciated.
> 
How are you applying the devfs rules (on the host, or inside the jail)?

If you are applying them from inside the jail, I don't believe that is
supported.  You need to apply the rules before starting the jail.

Scot


More information about the freebsd-current mailing list