no network connection from inside a jail

James Gritton jamie at gritton.org
Thu Oct 2 12:50:51 UTC 2014


On 10/2/2014 4:05 AM, Erich Dollansky wrote:
> Hi,
>
> I recently upgraded to 10.1 BETA3 via sources. All seemed to be fine
> until I started jails which connect to the Internet. It simply does not
> work anymore. When the browser from the jail connects to another jail
> on the same machine via HTTP, it all works. Accesses to the ouside of
> the machine fails.
>
> Even a ping to a local device does not work.
>
> ping 192.168.yyy.xxx
> ping: socket: Operation not permitted
>
> despite having
>
> security.jail.allow_raw_sockets: 1
>
> Just to make sure, I upgraded also the world in all jails without any
> difference.
>
> UPDATING did not mention any changes since BETA1.
>
> I feel a bit lost now.
>
> What could have caused the problems?
>
> Erich

It would be handle to see what happens when the IP addresses are set
on the jail in the first place.  Try running:

jail -r '*'
jail -v -c '*'

and look at the results when it (presumably) runs ifconfig.
Hopefully, there'll be a clue there.

- Jamie


More information about the freebsd-stable mailing list