jail

  1. I

    jails How to configure routing for jail?

    I'm having some problem setting routing inside a jail. I added to rc.conf (inside jail) and it did not work. I then tried "route add 172.16.0.1" and it responded "route: writing to routing socket: Operation not permitted" I think it is not possible to set routing from inside. So, how do I...
  2. M

    PF Nat is not forwarding to jail

    I am using PF and cannot get packets forwarded to a particular jail. I want data that comes into my base machine on port 4243 to be forwarded to my jail that has a service that is listening on port 4243. I have verified with telnet that the jail can receive data on that port. Here is my...
  3. jbodenmann

    Solved Unexpected behavior mounting NFS share to jail data

    The following scenario is happening on two freshly installed FreeBSD 13.0-RELEASE hosts. Host A acts as an NFSv4 server. It provides the following share: 192.168.250.61:/myshare Host B can successfully mount and browse the share using mount -t nfs -o nfsv4,rw 192.168.250.61:/mysare /mnt. Host B...
  4. poorandunlucky

    Problem upgrading jails (pkg, freebsd-update)

    So I have these jails now, and I want to install Samba on my www jail. I've upgraded to 12.2-p6, pkg -vv shows kernel 120200. I've upgraded my jail with freebsd-update -b /jails/www There was an error, some directories for the certificates under /usr/share/[certs]/[trusted/blacklisted] didn't...
  5. sidetone

    Solved jails - Accessing devices from Bastille

    How do I make devices in /dev/ accessible inside a Bastille jail? When I have two sets of rules, how do I set this in rc.conf.local, from within the host system? devfs_system_ruleset="localrules" How would bastille also get referenced with this? In devfs.rules of the host (not within the...
  6. G

    PF pf - does not block traffic to jail

    I have remote FreeBSD server with name server inside jail. My rules are: ext_if="em0" ext_ip="X.X.X.X" jail_net="10.0.0.0/24" ns_ip="10.0.0.1" icmp_types = "echoreq" table <blacklist> persist file "/etc/pf/blacklist" table <trusted> persist file "/etc/pf/trusted" set block-policy drop set...
  7. danbanta

    jails Mounting nullfs in jails causes empty directories for parent mount

    Good morning, evening, or afternoon. I currently treat my jails as stateless. I do this by mounting host zfs datasets into the jail using nullfs to store state. Sometimes this leaves the data directory on the host empty although the data is present. Why do I see this behavior? What am I doing...
  8. D

    Solved Issue with building the port in Jail

    Hello, I have been trying to build graphics/drm-fbsd12.0-kmod inside a Jail with make package but there I am having an issue: ===> radeonkmsfw/verde_smc (install) install -T release -o root -g wheel -m 555 radeon_verde_smc_bin.ko...
  9. D

    Solved Creating Separate Virtual Interface For Jail

    Hello, I have set up an jail with ezjail while following this handbook tutorial. After setting it up, my physical interface that host uses has two IPs, one for jail one for host. For some programs listening on all IPs in host's interface this is not ideal. Can I add a virtual interface with its...
  10. I

    Help needed to get KDE installed and running inside a Jail.

    I'm trying to install KDE in jail. I've installed these: Set the /etc/fstab (inside the jail): And added to /etc/rc.conf (inside jail): And the I tried to start the jail, and got these errors in the sddm.log file: I tried to run "Xorg -configure" and got: I think there is no video...
  11. B

    jails Jail | Samba | Previous versions

    hi, I'm trying to setup samba shadow copy in jail. I follow the documentation and searching forums but my settings not working. The previous versions not showing in windows tab. Where I'm wrong ? smb.conf [global] workgroup = TEST server string = Samba Server Version %v security = ads realm =...
  12. S

    iocage jail can only reach its host but not the LAN

    I'm in the middle of setting up a dedicated server. It's running ESXi and I installed a FreeBSD guest. Using iocage I want to create some jails. I have done this before more than once and usually this is strait-forward... but this time I'm stuck somehow. The jail is created with vnet=on and I...
  13. B

    How To: Webcam and Microphone Inside of GUI Jail

    One-stop guide on how to get your webcam working inside of a GUI jail, including the microphone. Assumes you already have GUI set up inside the jail. My hardware: Ryzen Threadripper 3960x, NVIDIA 2080 RTX, Logitec C920 Webcam OVERVIEW - Background Info - Load Kernel Modules - Install...
  14. R

    How do I route all Jail traffic through OpenVPN on FIB1

    Hello FreeBSD users, this is my fist post, I'm still learning so please be gentle :) I am trying to setup a jail (using ioCage) so that all of its traffic goes through our VPN. I have already setup OpenVPN which connects to our VPN service without issue. However the I seem unable 😕 to...
  15. S

    Solved vnet jail vlan setup, on lagg interface

    Hi all, I'm trying to setup a separate subnet for my jails, and I think I have everything setup correctly, but am unsure. Here is the Switch: trunk 45-48 Trk2 LACP vlan 23 name "Jails" tagged 23,Trk1-Trk2 no ip address exit Trunk 1 is the firewall, Trunk 2 is the server. I know my...
  16. I

    What is the new jail(8) feature "allow running Linux® in a jailed environment" (in 12.2)?

    In the latest FreeBSD 12.2 release, there is a feature "The jail(8) utility has been updated to allow running Linux® in a jailed environment.". Diving further, the doc for jail(8) has these entries: What does this mean? Does this mean we can boot an entire Linux OS (not just some Linux...
  17. V

    PF Route jail data through wireguard

    I have successfully set up a jail following genneko's notes on setting up a jail in FreeBSD. However after installing and enabling Wireguard every single boot time, my jail has no network. I modified genneko's jails into making one jail by the way. Here's how my set up is looking at the moment...
  18. I

    bhyve Need help installing/running Debian using bhyve inside jail.

    I'm trying to boot a Debian disk image and get it running using bhyve within a jail. When I execute this command (inside the jail): it causes a "vm_create: Device not configured" error. I dived deeper into the vmrun.sh file and inserted the following code: just before: The printout is...
  19. patpro

    Solved Reuse Bhyve's public switch with jails

    Hello, I'm running a FreeBSD 12.1-RELEASE server that hosts few bhyve VMs. The network config is like this: ixl0: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> metric 0 mtu 1500 options=e507bb<RXCSUM,TXCSUM,VLAN_MTU,...> ether ... inet MY.PUBLIC.IP.ADDR netmask 0xffffffc0...
  20. T

    Solved can USB devices be directly assigned to a jail?

    Is it possible to directly access a USB device in a jail? I came across this article: https://forums.freebsd.org/threads/usb-passthrough-to-iocage-jail.73292/ It seems possible to do so from that article. If it is possible, would it make sense to create a Linux jail that has raw access to a...
Top