Page MenuHomeFreeBSD

devfs.rules: Correctly unhide pf in vnet jails
ClosedPublic

Authored by zlei on Nov 3 2021, 10:02 AM.
Tags
None
Referenced Files
Unknown Object (File)
Mon, Nov 18, 12:37 AM
Unknown Object (File)
Sun, Nov 17, 10:40 PM
Unknown Object (File)
Sep 27 2024, 8:13 PM
Unknown Object (File)
Sep 27 2024, 1:14 PM
Unknown Object (File)
Sep 24 2024, 12:32 PM
Unknown Object (File)
Sep 23 2024, 10:01 PM
Unknown Object (File)
Sep 20 2024, 8:00 AM
Unknown Object (File)
Sep 17 2024, 6:02 AM
Subscribers

Details

Summary

The revision D26537 introduced a new devfs rule devfsrules_jail_vnet. It includes rule devfsrules_jail which include other rules. Unfortunately devfs could not recursively parse the action include and thus devfsrules_jail_vnet will expose all nodes.

Obtained from: Gijs Peskens <gijs@peskens.net>
PR: 255660

Test Plan
service devfs restart
mount -t devfs devfs /tmp/dev
devfs -m /tmp/dev rule -s 5 applyset

and manually verify mount point.

Diff Detail

Repository
rG FreeBSD src repository
Lint
Lint Skipped
Unit
Tests Skipped