Page MenuHomeFreeBSD

devfs.rules: Correctly unhide pf in vnet jails
ClosedPublic

Authored by zlei on Nov 3 2021, 10:02 AM.
Tags
None
Referenced Files
Unknown Object (File)
Mon, Apr 22, 7:42 PM
Unknown Object (File)
Mon, Apr 22, 2:37 AM
Unknown Object (File)
Mar 12 2024, 12:48 AM
Unknown Object (File)
Mar 12 2024, 12:48 AM
Unknown Object (File)
Mar 8 2024, 4:08 AM
Unknown Object (File)
Mar 8 2024, 3:55 AM
Unknown Object (File)
Feb 6 2024, 12:44 PM
Unknown Object (File)
Dec 23 2023, 6:21 AM
Subscribers

Details

Summary

The revision D26537 introduced a new devfs rule devfsrules_jail_vnet. It includes rule devfsrules_jail which include other rules. Unfortunately devfs could not recursively parse the action include and thus devfsrules_jail_vnet will expose all nodes.

Obtained from: Gijs Peskens <gijs@peskens.net>
PR: 255660

Test Plan
service devfs restart
mount -t devfs devfs /tmp/dev
devfs -m /tmp/dev rule -s 5 applyset

and manually verify mount point.

Diff Detail

Repository
rG FreeBSD src repository
Lint
Lint Not Applicable
Unit
Tests Not Applicable