[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [ezjail] dmesg from jail console lists host info

Le mardi 25 à 13:13, Joe a écrit :
> Freebsd 8.0 and ezjail installed from ports collection. Do
> ezjail-admin onestart jail9
> ezjail-admin console jail9
> then from the jail9 console issue dmesg command and the hosts info is 
> listed.

This is more a question about the jails per se. From the FreeBSD wiki:

> leak of system message buffer from host system to jails
>     By default jails can read the system message buffer (ie: the
> console buffer). In many cases this isn't desired. Add the following
> line to /etc/sysctl.conf to turn it off:
> security.bsd.unprivileged_read_msgbuf=0