ZFS in jails 9.2-RC1 permission denied

Trond Endrestøl Trond.Endrestol at fagskolen.gjovik.no
Fri Aug 9 05:55:28 UTC 2013


On Thu, 8 Aug 2013 19:04+0300, George Kontostanos wrote:

> On Thu, Aug 8, 2013 at 2:59 PM, Mark Felder <feld at freebsd.org> wrote:
> 
> > On Thu, Aug 8, 2013, at 6:53, George Kontostanos wrote:
> > >
> > > Anybody?
> > >
> >
> > Can you provide your jail configuration? I think 9.2 introduces the new
> > /etc/jail.conf functionality and perhaps it somehow it broke the way you
> > were doing it previously? If so, the old method is supposed to be work
> > as well...
> 
> jail_enable="YES"
> jail_list="jail1"
> jail_jail1_rootdir="/tank/jails/jail1"
> jail_jail1_hostname="jail1"
> jail_jail1_interface="em0"
> jail_jail1_ip="172.16.154.32"
> jail_jail1_devfs_enable="YES"

During my experimentation yesterday, I had to add:

jail_jail1_parameters="enforce_statfs=1 allow.mount=1 allow.mount.zfs=1"

I wish there was a way of executing a command in the host environment 
_after_ the jail is created, but _before_ exec.start is run from 
within the jail environment, exec.prestart is run in the host 
environment before the jail is created and is of no use for attaching 
a ZFS dataset to a particular jail with the zfs jail command.

Until this issue is resolved, I see no other way than manually 
attaching a ZFS dataset to a jail, and manually running the mount 
command from within the jail environment.

-- 
+-------------------------------+------------------------------------+
| Vennlig hilsen,               | Best regards,                      |
| Trond Endrestøl,              | Trond Endrestøl,                   |
| IT-ansvarlig,                 | System administrator,              |
| Fagskolen Innlandet,          | Gjøvik Technical College, Norway,  |
| tlf. mob.   952 62 567,       | Cellular...: +47 952 62 567,       |
| sentralbord 61 14 54 00.      | Switchboard: +47 61 14 54 00.      |
+-------------------------------+------------------------------------+


More information about the freebsd-stable mailing list