Okkkk, this is so dangerous. I did "add hide" for all devices before starting a jail and then whitelisted a couple of devices I need.
Then, some time later ukbd0 and kbd2 miraculously appear in the jail!


This seems crazy. Can a jail make sure nothing get added to it dynamically after it is started?! I assumed that was the default behavior.
Then, some time later ukbd0 and kbd2 miraculously appear in the jail!
This seems crazy. Can a jail make sure nothing get added to it dynamically after it is started?! I assumed that was the default behavior.