0e5c6bd436
by doing most of the work in a new function prison_add_vfs in kern_jail.c Now a jail-enabled filesystem need only mark itself with VFCF_JAIL, and the rest is taken care of. This includes adding a jail parameter like allow.mount.foofs, and a sysctl like security.jail.mount_foofs_allowed. Both of these used to be a static list of known filesystems, with predefined permission bits. Reviewed by: kib Differential Revision: D14681 |
||
---|---|---|
.. | ||
command.c | ||
config.c | ||
jail.8 | ||
jail.c | ||
jail.conf.5 | ||
jaillex.l | ||
jailp.h | ||
jailparse.y | ||
Makefile | ||
Makefile.depend | ||
state.c |