root@t:~ # service ezjail restart desktop Stopping jails: desktop.pis. Starting jails: desktop.pis. /etc/rc.d/jail: WARNING: Per-jail configuration via jail_* \ variables is obsolete. Please consider migrating to \ /etc/jail.conf. root@t:~ #
jail_JID_devfs_rulesetは名前ではなく番号で指定する
export jail_desktop_devfs_ruleset=11
追加パラメータの指定はjail_JID_parametersで行なう
export jail_desktop_parameters="allow.kmem; allow.sysvipc;"
security.jail.allow_raw_socketsの設定(4)は
jail_JID_socket_unixiproute_only="NO"
で行なう