All of lore.kernel.org
 help / color / mirror / Atom feed
From: antoine <antoine@nagafix.co.uk>
To: Blaisorblade <blaisorblade@yahoo.it>
Cc: user-mode-linux-devel@lists.sourceforge.net
Subject: Re: [uml-devel] 2.6.12-rc6-mm1 patches testing
Date: Thu, 09 Jun 2005 20:23:28 +0100	[thread overview]
Message-ID: <1118345008.10190.145.camel@localhost> (raw)
In-Reply-To: <200506091917.48234.blaisorblade@yahoo.it>

On Thu, 2005-06-09 at 19:17 +0200, Blaisorblade wrote:
> On Thursday 09 June 2005 18:53, antoine wrote:
> > On Thu, 2005-06-09 at 17:31 +0100, antoine wrote:
> > > > > Now, if someone could have a look at hppfs I could resurect my
> > > > > honeypots.
> > > >
> > > > I've not the time, however test the attached patches. The first one
> > > > fixes the basical bugs; the second one could be needed to fix a fd
> > > > leak... but I don't think it's needed at all, so test with only the
> > > > first and let me know if the 2nd is needed, or if there are any
> > > > problems (in that case, a ready-to-use hppfs configuration +
> > > > explaination would be happily accepted, I've really little time now).
> > >
> > > Works fine with just the first patch. Thank you very much!
> >
> > Small correction: local file override works fine (files in the host's
> > fake proc appear in the guest's /proc)
> That is allowed, too? The daemon uses normal files only to forcibly "remove" 
> entries, while it uses sockets for the rest.
AFAIK That has always been the case. I was using it to hardcode the
cpuinfo and cmdline shown in honeypots.

> Also, have you tested if it's the chroot and/or SELinux interacting? The 
> daemon communicates through a Unix domain socket when host contents are 
> supplied ... the base path is $ARGV[0], i.e. the first parameter...
Yep, I was running this instance outside of the chroot for now (because
of the libcap lib dependency) and not where the honeypot.pl expected it.
Also, the path was wrong chroot/proc/proc, 'lsof' showed me what I was
doing wrong, but it still isn't working as expected - more on this
later.

BTW, I copied /lib/libnss* to the chroot but the pcap interface does not
come up:
ifconfig eth1 0.0.0.0 promisc up
SIOCSIFFLAGS: No such device
SIOCSIFFLAGS: No such device
So something else must be missing... Any ideas?

Antoine



-------------------------------------------------------
This SF.Net email is sponsored by: NEC IT Guy Games.  How far can you shotput
a projector? How fast can you ride your desk chair down the office luge track?
If you want to score the big prize, get to know the little guy.  
Play to win an NEC 61" plasma display: http://www.necitguy.com/?r=20
_______________________________________________
User-mode-linux-devel mailing list
User-mode-linux-devel@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/user-mode-linux-devel

  reply	other threads:[~2005-06-09 19:13 UTC|newest]

Thread overview: 16+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2005-06-09  1:25 [uml-devel] 2.6.12-rc6-mm1 patches testing antoine
2005-06-09 15:24 ` Blaisorblade
2005-06-09 15:56   ` antoine
2005-06-09 17:20     ` Blaisorblade
2005-06-09 17:52       ` antoine
2005-06-09 18:26         ` SELinux for UML (was: Re: [uml-devel] 2.6.12-rc6-mm1 patches testing) Blaisorblade
2005-06-09 19:19           ` antoine
2005-06-09 18:04       ` [uml-devel] 2.6.12-rc6-mm1 patches testing antoine
2005-06-09 19:45         ` Stephen Smalley
2005-06-09 22:57           ` Blaisorblade
2005-06-10 13:35             ` Stephen Smalley
2005-06-09 16:31   ` antoine
2005-06-09 16:53     ` antoine
2005-06-09 17:17       ` Blaisorblade
2005-06-09 19:23         ` antoine [this message]
2005-06-09 23:28           ` Blaisorblade

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=1118345008.10190.145.camel@localhost \
    --to=antoine@nagafix.co.uk \
    --cc=blaisorblade@yahoo.it \
    --cc=user-mode-linux-devel@lists.sourceforge.net \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.