| Commit message (Expand) | Author | Age | Files | Lines |
| * | Add a limit for child jails via the "children.cur" and "children.max" | Jamie Gritton | 2009-06-23 | 1 | -9/+50 |
| * | Manage vnets via the jail system. If a jail is given the boolean | Jamie Gritton | 2009-06-15 | 1 | -0/+29 |
| * | Rename the host-related prison fields to be the same as the host.* | Jamie Gritton | 2009-06-13 | 1 | -29/+33 |
| * | Add counterparts to getcredhostname: | Jamie Gritton | 2009-06-13 | 1 | -1/+32 |
| * | Fix some overflow errors: a signed allocation and an insufficiant | Jamie Gritton | 2009-06-09 | 1 | -4/+12 |
| * | Move "options MAC" from opt_mac.h to opt_global.h, as it's now in GENERIC | Robert Watson | 2009-06-05 | 1 | -1/+0 |
| * | Place hostnames and similar information fully under the prison system. | Jamie Gritton | 2009-05-29 | 1 | -16/+155 |
| * | Add hierarchical jails. A jail may further virtualize its environment | Jamie Gritton | 2009-05-27 | 1 | -559/+1658 |
| * | Delay an error message until the variable it uses gets initialized. | Jamie Gritton | 2009-05-23 | 1 | -8/+6 |
| * | Introduce a new virtualization container, provisionally named vprocg, to hold | Marko Zec | 2009-05-08 | 1 | -0/+4 |
| * | Move the per-prison Linux MIB from a private one-off pointer to the new | Jamie Gritton | 2009-05-07 | 1 | -1/+0 |
| * | Introduce the extensible jail framework, using the same "name=value" | Jamie Gritton | 2009-04-29 | 1 | -463/+1532 |
| * | Some non-functional changes: whitespace, KASSERT strings, declaration order. | Jamie Gritton | 2009-04-29 | 1 | -5/+5 |
| * | Whitespace/spelling fixes in advance of upcoming functional changes. | Jamie Gritton | 2009-03-27 | 1 | -12/+12 |
| * | Don't allow creating a socket with a protocol family that the current | Jamie Gritton | 2009-02-05 | 1 | -0/+42 |
| * | Standardize the various prison_foo_ip[46] functions and prison_if to | Jamie Gritton | 2009-02-05 | 1 | -70/+74 |
| * | Mark most often used sysctl's as MPSAFE. | Ed Schouten | 2009-01-28 | 1 | -4/+6 |
| * | For consistency with prison_{local,remote,check}_ipN rename | Bjoern A. Zeeb | 2009-01-25 | 1 | -2/+2 |
| * | Back out r186615; the sanitizing of the pointers in the error case | Bjoern A. Zeeb | 2009-01-04 | 1 | -2/+0 |
| * | Added missing second part of cleaning j->ip[46] as requested by bz | Peter Holm | 2008-12-30 | 1 | -0/+2 |
| * | Make sure that unused j->ip[46] are cleared | Peter Holm | 2008-12-30 | 1 | -2/+4 |
| * | Correctly check the number of prison states to not access anything | Bjoern A. Zeeb | 2008-12-11 | 1 | -2/+2 |
| * | Unbreak the no-networks (no INET/6) build that I broke with | Bjoern A. Zeeb | 2008-11-29 | 1 | -0/+2 |
| * | MFp4: | Bjoern A. Zeeb | 2008-11-29 | 1 | -60/+848 |
| * | With the permissions of phk@ change the license on kern_jail.c | Bjoern A. Zeeb | 2008-11-28 | 1 | -6/+22 |
| * | Update ZFS from version 6 to 13 and bring some FreeBSD-specific changes. | Pawel Jakub Dawidek | 2008-11-17 | 1 | -234/+28 |
| * | Retire the MALLOC and FREE macros. They are an abomination unto style(9). | Dag-Erling Smørgrav | 2008-10-23 | 1 | -6/+6 |
| * | Step 1.5 of importing the network stack virtualization infrastructure | Marko Zec | 2008-10-02 | 1 | -0/+1 |
| * | Commit step 1 of the vimage project, (network stack) | Bjoern A. Zeeb | 2008-08-17 | 1 | -1/+2 |
| * | MFp4 144659: | Bjoern A. Zeeb | 2008-07-07 | 1 | -0/+4 |
| * | Introduce a new lock, hostname_mtx, and use it to synchronize access | Robert Watson | 2008-07-05 | 1 | -1/+4 |
| * | Revert rev. 178124 as requested by kris@. Having jail id not being | Xin LI | 2008-06-19 | 1 | -18/+24 |
| * | Instead of rolling our own jail number allocation procedure, use | Xin LI | 2008-04-11 | 1 | -24/+18 |
| * | Add the support for the AT_FDCWD and fd-relative name lookups to the | Konstantin Belousov | 2008-03-31 | 1 | -0/+1 |
| * | Replace the last susers calls in netinet6/ with privilege checks. | Bjoern A. Zeeb | 2008-01-24 | 1 | -0/+6 |
| * | VOP_LOCK1() (and so VOP_LOCK()) and VOP_UNLOCK() are only used in | Attilio Rao | 2008-01-13 | 1 | -3/+3 |
| * | vn_lock() is currently only used with the 'curthread' passed as argument. | Attilio Rao | 2008-01-10 | 1 | -1/+1 |
| * | Merge first in a series of TrustedBSD MAC Framework KPI changes | Robert Watson | 2007-10-24 | 1 | -1/+1 |
| * | Add PRIV_VFS_STAT privilege, which will allow overriding policy limits on | Robert Watson | 2007-10-21 | 1 | -0/+1 |
| * | Fix jails and jail-friendly file systems handling: | Pawel Jakub Dawidek | 2007-04-13 | 1 | -0/+1 |
| * | Allow PRIV_NETINET_REUSEPORT in jail. | Robert Watson | 2007-04-10 | 1 | -1/+3 |
| * | prison_free() can be called with a mutex held. This wasn't a problem until | Pawel Jakub Dawidek | 2007-04-08 | 1 | -11/+16 |
| * | Only use prison mutex to protect the fields that need to be protected by it. | Pawel Jakub Dawidek | 2007-04-08 | 1 | -2/+2 |
| * | pr_list is protected by the allprison_lock. | Pawel Jakub Dawidek | 2007-04-08 | 1 | -1/+1 |
| * | Implement functionality I called 'jail services'. | Pawel Jakub Dawidek | 2007-04-05 | 1 | -27/+244 |
| * | Make prison_find() globally accessible. | Pawel Jakub Dawidek | 2007-04-05 | 1 | -2/+1 |
| * | Add security.jail.mount_allowed sysctl, which allows to mount and | Pawel Jakub Dawidek | 2007-04-05 | 1 | -0/+17 |
| * | Minor simplification. | Pawel Jakub Dawidek | 2007-03-09 | 1 | -3/+1 |
| * | White space nits. | Pawel Jakub Dawidek | 2007-03-07 | 1 | -4/+4 |
| * | Remove 'MPSAFE' annotations from the comments above most system calls: all | Robert Watson | 2007-03-04 | 1 | -4/+0 |