summaryrefslogtreecommitdiffstats
path: root/sys/kern/kern_jail.c
Commit message (Expand)AuthorAgeFilesLines
* In order to maximize the re-usability of kernel code in user space thiskmacy2011-09-161-6/+6
* Delay the recursive decrement of pr_uref when jails are made invisiblejamie2011-08-261-26/+5
* Always disable mount and unmount for jails with enforce_statfs==2.mm2011-08-021-1/+2
* This update changes the mnt_flag field in the mount structure frommckusick2011-07-241-2/+2
* Add infrastructure to allow all frames/packets received on an interfacebz2011-07-031-0/+1
* Change the way rctl interfaces with jails by introducing prison_raccttrasz2011-05-031-9/+107
* Add rctl. It's used by racct to take user-configurable actions basedtrasz2011-03-301-0/+4
* Add racct. It's an API to keep per-process, per-jail, per-loginclasstrasz2011-03-291-0/+17
* - Merge changes to the base system to support OFED. These includejeff2011-03-211-1/+1
* Add two new system calls, setloginclass(2) and getloginclass(2). This makestrasz2011-03-051-0/+6
* Add macro to test the sv_flags of any process. Change some places to testdchagin2011-01-261-2/+2
* Mfp4 CH177924:bz2010-12-311-1/+8
* Don't exit kern_jail_set without freeing options when enforce_statfsjamie2010-09-101-5/+8
* Back out r210974. Any convenience of not typing "persist" is outweighedjamie2010-08-081-2/+6
* Implicitly make a new jail persistent if it's set not to attach.jamie2010-08-061-6/+2
* Declare ip6 as (struct in6_addr *) instead of (struct in_addr *). This iscperciva2010-06-041-1/+1
* Provide groundwork for 32-bit binary compatibility on non-x86 platforms,nwhitehorn2010-03-111-4/+4
* Revised revision 199201 (add interface description capability as inspireddelphij2010-01-271-0/+1
* Add ip4.saddrsel/ip4.nosaddrsel (and equivalent for ip6) to controlbz2010-01-171-2/+108
* Change DDB show prison:bz2010-01-111-5/+6
* Adjust a comment to reflect reality, as we have proper sourcebz2010-01-111-1/+3
* (S)LIST_HEAD_INITIALIZER takes a (S)LIST_HEAD as an argument.antoine2009-12-281-1/+1
* Throughout the network stack we have a few places ofbz2009-12-131-1/+24
* Revert revision 199201 for now as it has introduced a kernel vulnerabilitydelphij2009-11-121-1/+0
* Add interface description capability as inspired by OpenBSD.delphij2009-11-111-0/+1
* Revert previous commit and add myself to the list of people who shouldphk2009-09-081-1/+0
* Add necessary include.phk2009-09-081-0/+1
* Allow a jail's name to be the same as its jid (which is the default if nojamie2009-09-041-9/+20
* Fix a LOR between allprison_lock and vnode locks by releasingjamie2009-08-271-2/+2
* When "jail -c vnet" request fails, the current code actually creates andzec2009-08-241-1/+1
* Make it possible to change the vnet sysctl variables on jailsbz2009-08-131-0/+23
* Make the kernel compile without IP networking by movingbz2009-08-121-1/+2
* Merge the remainder of kern_vimage.c and vimage.h into vnet.c andrwatson2009-08-011-1/+4
* Make the "enforce_statfs" default 2 (most restrictive) in jail_set(2),jamie2009-07-311-3/+4
* Remove a LOR, where the the sleepable allprison_lock was being obtainedjamie2009-07-301-309/+187
* Don't allow mixing the "vnet" and "ip4/6" jail parameters, since vnetjamie2009-07-291-11/+98
* Change the default value of the "ip4" and "ip6" jail parameters tojamie2009-07-291-27/+7
* Some jail parameters (in particular, "ip4" and "ip6" for IP addressjamie2009-07-251-35/+85
* Remove the interim vimage containers, struct vimage and struct procg,jamie2009-07-171-4/+0
* Wrap a PR_VNET inside "#ifdef VIMAGE" since that the only place it applies.jamie2009-06-241-0/+2
* In case of prisons with their own network stack, permitjamie2009-06-241-0/+128
* Add a limit for child jails via the "children.cur" and "children.max"jamie2009-06-231-9/+50
* Manage vnets via the jail system. If a jail is given the booleanjamie2009-06-151-0/+29
* Rename the host-related prison fields to be the same as the host.*jamie2009-06-131-29/+33
* Add counterparts to getcredhostname:jamie2009-06-131-1/+32
* Fix some overflow errors: a signed allocation and an insufficiantjamie2009-06-091-4/+12
* Move "options MAC" from opt_mac.h to opt_global.h, as it's now in GENERICrwatson2009-06-051-1/+0
* Place hostnames and similar information fully under the prison system.jamie2009-05-291-16/+155
* Add hierarchical jails. A jail may further virtualize its environmentjamie2009-05-271-559/+1658
* Delay an error message until the variable it uses gets initialized.jamie2009-05-231-8/+6
OpenPOWER on IntegriCloud