Page MenuHomeFreeBSD

devfs.rules: Correctly unhide pf in vnet jails
ClosedPublic

Authored by zlei on Nov 3 2021, 10:02 AM.
Tags
None
Referenced Files
Unknown Object (File)
Mon, Nov 24, 11:38 PM
Unknown Object (File)
Sat, Nov 15, 12:47 PM
Unknown Object (File)
Sat, Nov 8, 11:37 PM
Unknown Object (File)
Oct 29 2025, 7:24 PM
Unknown Object (File)
Oct 29 2025, 5:36 PM
Unknown Object (File)
Oct 29 2025, 5:35 PM
Unknown Object (File)
Oct 29 2025, 5:34 PM
Unknown Object (File)
Oct 17 2025, 9:27 AM
Subscribers

Details

Summary

The revision D26537 introduced a new devfs rule devfsrules_jail_vnet. It includes rule devfsrules_jail which include other rules. Unfortunately devfs could not recursively parse the action include and thus devfsrules_jail_vnet will expose all nodes.

Obtained from: Gijs Peskens <gijs@peskens.net>
PR: 255660

Test Plan
service devfs restart
mount -t devfs devfs /tmp/dev
devfs -m /tmp/dev rule -s 5 applyset

and manually verify mount point.

Diff Detail

Repository
rG FreeBSD src repository
Lint
Lint Not Applicable
Unit
Tests Not Applicable