Page MenuHomeFreeBSD

devfs.rules: Correctly unhide pf in vnet jails
ClosedPublic

Authored by zlei on Nov 3 2021, 10:02 AM.
Tags
None
Referenced Files
F132023351: D32814.id.diff
Mon, Oct 13, 1:05 AM
F132023298: D32814.id97924.diff
Mon, Oct 13, 1:04 AM
F132023293: D32814.id97912.diff
Mon, Oct 13, 1:04 AM
F131963528: D32814.diff
Sun, Oct 12, 1:28 PM
Unknown Object (File)
Fri, Sep 26, 3:42 PM
Unknown Object (File)
Fri, Sep 26, 3:42 PM
Unknown Object (File)
Mon, Sep 22, 5:52 PM
Unknown Object (File)
Fri, Sep 19, 3:08 PM
Subscribers

Details

Summary

The revision D26537 introduced a new devfs rule devfsrules_jail_vnet. It includes rule devfsrules_jail which include other rules. Unfortunately devfs could not recursively parse the action include and thus devfsrules_jail_vnet will expose all nodes.

Obtained from: Gijs Peskens <gijs@peskens.net>
PR: 255660

Test Plan
service devfs restart
mount -t devfs devfs /tmp/dev
devfs -m /tmp/dev rule -s 5 applyset

and manually verify mount point.

Diff Detail

Repository
rG FreeBSD src repository
Lint
Lint Not Applicable
Unit
Tests Not Applicable