nullfs [was: Need urgent help regarding security]

Mark Bucciarelli mark at
Thu Nov 17 14:36:51 GMT 2005

On Wed, Nov 16, 2005 at 10:16:16PM -0700, Chad Leigh -- Shire.Net LLC

> I then create one or more jails that use nullfs to READ ONLY mount
> specific parts of the master hierarchy into the jail.

This is very interesting to me, as I are currently working on a jail
design and nullfs has a number of question marks next to it, mainly due
to the scary man page warning. Here are a few of the questions:

How did you decide it was trustworthy?

Does it result in lower RAM usage? (The program that is run, for
example, Apache, comes from the same spot on the disk across all jails.)

Is it currently maintained? The man page includes a maintainer

Have you had any problems in production?

Have you used it for long?


