@kaveman Thank you so much for mentioning my little experiment with bringing Jails to NetBSD here - I really appreciate it.

In the meantime I’ve brought it to a somewhat usable state (at least in its core) and experimented with some interesting - though highly experimental - integration paths with UVM and NPF.

I’m currently thinking about what the best next step would be. One idea is a stripped-down version that complements the kernel code - essentially just secmodel_jail+kauth+jailctl+jailmgr, but without UVM and without NPF integration - possibly as a pkgsrc package?

The current experimental state is described here:
petermann-digital.de/blog/netb

(Sorry - at the moment it’s available in German only.)

A visualization of a atom with the core (secmodel_jail) and orbits of jailctl and jailmgr.
0

If you have a fediverse account, you can quote this note from your own instance. Search https://mastodon.bsd.cafe/ap/users/116097543692739616/statuses/116100680803976820 on your instance and quote it. (Note that quoting is not supported in Mastodon.)