[Bug 181794] jexec(8) runs commands in Jails without taking into account of the Jail's FIB

bugzilla-noreply at freebsd.org bugzilla-noreply at freebsd.org
Wed Jun 20 02:16:19 UTC 2018


https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=181794

Jeff Kletsky <jeff+freebsd at wagsky.com> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
                 CC|                            |jeff+freebsd at wagsky.com

--- Comment #8 from Jeff Kletsky <jeff+freebsd at wagsky.com> ---
I've definitely been "caught" by the "jexec problem" myself and would welcome
this change.

Perhaps an enhancement request as it requires some thought as to how to do it,
but that a jail can't be made "safe" to FIB changes

    # jexec some_jail_with_default_fib_2 setfib 3 ping 10.0.3.1

is somewhat concerning. Being able to configure a jail so that one could "lock
down" the FIB and its contents would be a welcome enhancement, one day.

-- 
You are receiving this mail because:
You are the assignee for the bug.


More information about the freebsd-jail mailing list