Re: Jails and loopback interfaces

看板FB_security作者時間18年前 (2007/07/24 10:54), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串13/13 (看更多)
On Mon, 2007-07-02 at 12:43 -0500, Matt Simerson wrote: > The problem I have with this arrangement is when a jail attempts to > connect to the public IP of another jails, the connection fails. So, > a client running in one jail can't send email to my mail server > running in another jail. You can try keeping up-to-date version of /etc/hosts with hostnames of public services pointing to you 127.0.0.2+ IPs. It's dirty, but at least keeps your pf.conf clean as much as possible. It works for me and it should for you if you dont move services around a lot. Then it requires lots of recursive changes in each jail if you move some service from one IP to another. _______________________________________________ freebsd-security@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-security To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"
文章代碼(AID): #16fMdK00 (FB_security)
討論串 (同標題文章)
文章代碼(AID): #16fMdK00 (FB_security)