bastille

  1. freezr

    Solved Escaping from "La Bastille"... How binding host folders?

    Hi guys, I am trying to build up again my Gemini server but this time I decided to use jails to run the services associate with, just for fun, and I thought that learning BastilleBSD would be cool. I have a my BastilleBSD container up and running (somehow) but I'd would like to keep the data...
  2. freezr

    Unable to clone interface

    Hi guys, I am following this Bastille tutorial to create a jail however I am not able to create the cloned interface as described in there: doas sysrc cloned_interface+=lo1 cloned_interface: -> lo1 doas sysrc ifconfig_lo1_name="bastille0" ifconfig_lo1_name: -> bastille0 doas service netif...
  3. freezr

    Where posting about Bastille?

    Hi folks, I have a bunch of questions/issues about Bastille, which is the best section to make answer about it? Thanks, freezr
  4. W

    jails bastille - debian 11: PAM Failure

    I followed https://bastillebsd.org/getting-started/ and get PAM Failure. Anybody got an idea what's wrong? root@edge:/usr/local/bastille # uname -a FreeBSD edge 13.0-RELEASE-p11 FreeBSD 13.0-RELEASE-p11 #0: Tue Apr 5 18:54:35 UTC 2022...
  5. Azrael

    Solved No Networking In Bastille Jail

    So, I thought I would try setting up a jail with Bastille. I found some documentation here: https://bastillebsd.org/blog/2020/02/17/bastille-networking-in-depth/ So I put this in my /etc/rc.conf: linux_enable="YES" bastille_enable="YES" cloned_interfaces="lo1" ifconfig_lo1_name="bastille0" I...
  6. E

    Fatal Error Unable to allocate shared memory segment

    Hi All, In a jail (Bastille) with Freebsd 13, I tried : - to install apache 24 : succesfull (I see 'it works' on the webpage) - to install php80-fpm : successful also via the test.php page - to install maraidb106 (server and client) : successful also and I create my database - to install...
  7. E

    Jail BastilleBSD : mount a dataset of host ?

    Hi All, I am testing jail with BastilleBSD. It works fine but I have a specific need : how can I mount a dataset of the host ? I see the mount option (or fstab) of the jail. But not too much detail for the possible option. How to mount a dataset of the host ? Same also if I want to mount a...
  8. G

    Solved losing access to (some jailed) sshd after pfctl -F rules

    Hey guys, I am currently experiencing a very strange behavior and I've got no more ideas: Situation: FreeBSD server running 13.0-RELEASE several (bastille) jails running 13.0-RELEASE some older (bastille) jails running 12.4-RELEASE SSH access to host (x.x.0.0/24 network) works SSH access to...
  9. john_rambo

    Bastille jail: no sound in firefox

    I have successfully created a jail & installed Firefox inside the jail problem Firefox is completely mute. I can't watch Youtube. How do I enable sound in the jailed Firefox ?
  10. cbunn

    Solved VNET Jails (via Bastille) no longer connect after upgrade from FreeBSD 12 to 13.

    I'm using Bastille to manage several jails, and things have been working great for a while now. But recently I decided to upgrade the server and its jails from 12.2-RELEASE to 13.0-RELEASE. The upgrade on the server went without a hitch, and upgrading the base jail through Bastille was also not...
  11. sidetone

    jails devfs.rules problem including other rulesets: bastille

    When I use a bastille, jail rules that include rules 1 to 3 from /etc/defaults/devfs.rules work. Rules 1 to 3, referenced in the beginning of rule 4: [devfsrules_jail=4] add include $devfsrules_hide_all add include $devfsrules_unhide_basic add include $devfsrules_unhide_login When I reference...
  12. sidetone

    Bastille jail: console, nest display + building & testing builds

    Install sysutils/bastille and net/gitup on host through either ports or packages. For a nested display server to run or test from the jail, install x11-servers/xorg-nestserver or x11-servers/xephyr on the host system as well. Bastille jail in the example or instruction will be named "myjail"...
  13. sidetone

    Solved Executing X11 program built in Bastille jail

    How do I execute a graphical program that was built in Bastille? How would I do it from the package to the Host system? Also, how would I run it from inside the jail? A long time ago, I ran a graphical program inside an xserver inside a jail, in ezjail. I used x11-servers/xorg-nestserver then...
  14. marschro

    jails BastilleBSD Jail with pf NAT - IPv6 Requests not routed to jail

    Hi all, The Problem My http(s) server is not responding to IPv6 requests from curl -v -L -6 my devpunx.com Curl logs: * Trying 2a03:b0c0:3:d0::1012:6001:80... * Immediate connect fail for 2a03:b0c0:3:d0::1012:6001: Connection refused * Closing connection 0 The Setup Host: FreeBSD...
  15. marschro

    Solved BastilleBSD Jail can not run package update or install with pf configured on host

    Hi all, DiscIaimer: I only partially understand what I am doing. I set up a FreeBSD 13.0 Host with. BastilleBSD. Everything working fine but I struggle with the configuration of the pf packet filter, which is new to me (only used ipfw since). My goal is to be as restrictive as possible without...
  16. M

    PF Nat is not forwarding to jail

    I am using PF and cannot get packets forwarded to a particular jail. I want data that comes into my base machine on port 4243 to be forwarded to my jail that has a service that is listening on port 4243. I have verified with telnet that the jail can receive data on that port. Here is my...
  17. sidetone

    Solved jails - Accessing devices from Bastille

    How do I make devices in /dev/ accessible inside a Bastille jail? When I have two sets of rules, how do I set this in rc.conf.local, from within the host system? devfs_system_ruleset="localrules" How would bastille also get referenced with this? In devfs.rules of the host (not within the...
  18. G

    jails How can I play media trough SSH?

    I am trying to play media trough SSH running VLC in a bastille jail called briarcliff with the IP 192.168.1.1 and when I run ssh -CY briarcliff vlc the VLC interface loads, but when I play an audio file, no sound comes out at all. And when I try to play a video file, it just blinks between all...
  19. G

    running LibreOffice in a bastille container

    I have made a bastille container called briarcliff and installed LibreOffice and xauth in it when I try to run LibreOffice trough ssh on the host The splash screen shows up but it gets stuck there and libreoffice never loads. I ran ssh -vvv -CY briarcliff libreoffice but I don't understand the...
  20. saeedpersa

    PF PF and Bastille

    dear my friends I configured Bastille and it works well but there is another problem which I don't know how to handle it. Internet > Firewall > VMWare > FreeBSD > BastilleOS how can I configure BastilleOS to access the Internet? I want to access the internet from my BastilleOS? and How...
Back
Top