Page MenuHomeFreeBSD

devfs.rules: Correctly unhide pf in vnet jails
ClosedPublic

Authored by zlei on Nov 3 2021, 10:02 AM.
Tags
None
Referenced Files
Unknown Object (File)
Wed, Dec 17, 9:19 PM
Unknown Object (File)
Nov 24 2025, 11:38 PM
Unknown Object (File)
Nov 15 2025, 12:47 PM
Unknown Object (File)
Nov 8 2025, 11:37 PM
Unknown Object (File)
Oct 29 2025, 7:24 PM
Unknown Object (File)
Oct 29 2025, 5:36 PM
Unknown Object (File)
Oct 29 2025, 5:35 PM
Unknown Object (File)
Oct 29 2025, 5:34 PM
Subscribers

Details

Summary

The revision D26537 introduced a new devfs rule devfsrules_jail_vnet. It includes rule devfsrules_jail which include other rules. Unfortunately devfs could not recursively parse the action include and thus devfsrules_jail_vnet will expose all nodes.

Obtained from: Gijs Peskens <gijs@peskens.net>
PR: 255660

Test Plan
service devfs restart
mount -t devfs devfs /tmp/dev
devfs -m /tmp/dev rule -s 5 applyset

and manually verify mount point.

Diff Detail

Repository
rG FreeBSD src repository
Lint
Lint Skipped
Unit
Tests Skipped