Subject: Re: Jail For NetBSD
To: NetBSD Kernel <tech-kern@netbsd.org>
From: Dick Davies <rasputnik@hellooperator.net>
List: tech-kern
Date: 12/06/2004 10:20:18
* kamel derouiche <derouiche_dz@yahoo.fr> [1228 03:28]:
>  --- "Mike M. Volokhov" <mishka@apk.od.ua> a ?crit : 
> > On Sat, 4 Dec 2004 05:56:45 -0800 (PST)
> > kamel derouiche <derouiche_dz@yahoo.fr> wrote:
> > 
> > > Hi, 
> > > Is what it exist an equivalent of jail in NetBSD ?
> > 
> > You may try out systrace(4) framework. But it is not
> > "jail", tough.

No-one mentioned xen ( http://www.cl.cam.ac.uk/Research/SRG/netos/xen/ )
yet - the netbsd port sounds like its usable,
it wizzes all over jail from a process isolation point of view, and if you
need wider binary support you just run linux/plan9/freebsd alongside netbsd...

-- 
Bender, Ship, stop arguing or I'll come back there and change
your opinions manually. - Leela
Rasputin :: Jack of All Trades - Master of Nuns