IPSEC in VNET Jails
Matthias Meyser
matthias at harz.de
Wed Nov 29 11:22:28 UTC 2017
Hi
i use a IPSEC Tunnel inside a VNET jail without problems.
Annoyingly /etc/rc.d/ipsec dos not run in VNET jails.
This is fixed in head see
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=211364
This is NOT MFCed to stable/11 because the author isn't convinced that VNET
jails are "is sufficiently robust in stable/11 to encourage people to use it"
As this fix only makes a difference if you
1) Have compiled a Kernel WITH VIMAGE support
2) Setup and configured a VNET jail.
3) Setup IPSEC inside the VNET jail.
i think this should be MFCed.
--
Matthias Meyser
38678 Clausthal-Zellerfeld, Marktstrasse 40
Telefon: +49 5323 9839910
Fax: +49 5323 9839917
More information about the freebsd-jail
mailing list