ezjail/man1/ezjail-admin.1

172 lines
5.2 KiB
Groff
Raw Normal View History

2005-09-05 02:49:33 +00:00
.TH ezjail\-admin 1
.SH NAME
ezjail-admin \- Administrate ezjail
.SH SYNOPSIS
.T
.B ezjail-admin create
2005-11-21 17:37:12 +00:00
[-f flavour] [-r jailroot] [-x]
2005-09-05 02:49:33 +00:00
.I hostname jailip
.T
.B ezjail-admin delete
[-w]
.I hostname
.T
.B ezjail-admin list
.T
.B ezjail-admin update
2006-01-16 05:01:43 +00:00
[-s sourcetree] [-i] [-pP]
2005-09-05 02:49:33 +00:00
.SH DESCRIPTION
The
.B ezjail-admin
tool is used to manage jails inside the ezjail scope. It is not used
to start or stop ezjails jails. Refer to ezjail(5) for more details.
.SH ezjail-admin create
2006-02-08 11:13:58 +00:00
copies the template jail to the root of a new jail, whose name and IP
address are provided as mandatory parameters.
If no jail root is specified via the -r option, it is derived from
the jails name. In this case or, if a jail root is given and does not
start with a '/', it is interpreted relative to ezjails root dir
(default:
.I /usr/jails
). If a specified jail root lies outside ezjail root dir, a soft link
is created inside this root dir pointing to the newly created jails
location.
The -x (jail exists) option indicates, that an ezjail already exists
at the jail root.
.B In this case nothing is copied. ezjail only updates its config.
This is useful in situations where you just want to alter some of a
jail properties and called ezjail-admin delete without the -w option
before. However, sanity checks are being performed.
The script creates an entry in its config and a
2005-11-21 17:37:12 +00:00
.I /etc/fstab.hostname
2006-02-08 11:13:58 +00:00
file allowing the jail to be brought up after next reboot (or) via
the EZJAIL_PREFIX/etc/rc.d/ezjail.sh script.
2005-09-05 02:49:33 +00:00
2006-02-08 11:13:58 +00:00
The newly created jail can perform some initializiation actions, if the
2006-01-30 19:02:44 +00:00
-f
.I flavour
option is given, where
.I flavour
2006-02-08 11:13:58 +00:00
is a directory tree under ezjails root dir (default:
.I /usr/jails/flavours
). See section
2005-11-21 17:37:12 +00:00
.B FLAVOURS
below for more details.
2005-10-14 16:22:05 +00:00
Options for newly created jails are read from
.B ezjail.conf,
refer to ezjail.conf(5) for more information.
2005-09-05 02:49:33 +00:00
.SH ezjail-admin delete
2006-02-08 11:13:58 +00:00
removes a jail from ezjails config and the corresponding
2005-11-21 17:37:12 +00:00
.I /etc/fstab.hostname
2006-02-08 11:13:58 +00:00
file, thus preventing the jail from being brought
up on next reboot.
2005-09-05 02:49:33 +00:00
2006-02-08 11:13:58 +00:00
If the -w (wipe) option is given, the directory pointed to by the jail
2005-10-14 16:22:05 +00:00
root entry is removed as well as the soft link in ezjails root dir.
2005-09-05 02:49:33 +00:00
.SH ezjail-admin list
lists all jails inside ezjails scope, together with some information on
them.
.SH ezjail-admin update
2006-02-08 11:13:58 +00:00
creates or update ezjails basejail. Depending on the parameters
2006-01-30 19:02:44 +00:00
given it will install a FreeBSD system from a source tree whose location
is either provided in the
.B ezjail.conf
2006-01-30 19:02:44 +00:00
config file or via the -s option.
2006-02-08 11:13:58 +00:00
If the -p or -P options are given, the base jail also is given a copy of
FreeBSDs ports tree, which is in turn linked into all newly created
ezjails.
2006-01-30 19:02:44 +00:00
If the -P option is given,
.B only the ports tree will be checked out/updated,
this can be done, while jails are running.
2006-01-30 19:02:44 +00:00
If the -i (install only) option is given,
.B ezjail-admin update
only performes a
.I make installworld,
otherwise
.I make world
is invoked.
2005-09-05 02:49:33 +00:00
2005-09-09 20:06:00 +00:00
.SH NOTES
2006-01-30 19:02:44 +00:00
.B ezjail-admin update
uses a temporary directory to install its world to, thus leaving intact
all installed libraries, if a base jail already exists.
2005-09-09 20:06:00 +00:00
When using the
.B ezjail-admin update
option, be careful to use the same FreeBSD source tree used to build the
host systems world, or at least its kernel. Combining a make world in the
host system with
.B ezjail-admin update
is considered a good idea.
2006-01-16 05:01:43 +00:00
When a ports tree exists in base jail, a make.conf containing reasonable
values for having ports in jails is created in the template jail.
2005-11-21 17:37:12 +00:00
.SH FLAVOURS
.B ezjail-admin
2006-02-08 11:13:58 +00:00
provides an easy way to create many jails with similar or identical
2005-11-21 17:37:12 +00:00
properties. Currently it supports creating users, installing files and
installing packages.
A sample flavour config directory resides under
2005-11-21 17:37:12 +00:00
.I EZJAIL_PREFIX/share/examples/ezjail/default/.
Some typical Jail initialization actions are demonstrated and you are
encouraged to use it as a template for your flavours.
2006-02-08 11:13:58 +00:00
If a flavour is selected on jail creation, the flavour root is being
copied to the new Jails root, mostly containing an
.I /ezjail.flavour .
If the Jail starts up for the first time it runs a setup script found
at
.I /etc/rc.d/ezjail-config.sh.
This script will create some users specified in the flavour config.
2006-02-08 11:13:58 +00:00
It will then chown files specified in the flavour config. (This allows
chown-ing files to users only created by the config script.) All
packages residing under
.I /pkg
2006-02-08 11:13:58 +00:00
will be pkg_install-ed. Finally the script
.I /ezjail.postinstall
is being sourced, if it exists.
.I ezjail-config.sh
then removes all traces, including itself.
2005-11-21 17:37:12 +00:00
.SH EXAMPLES
2006-01-18 20:19:01 +00:00
ezjail-admin update -p
2005-11-21 17:37:12 +00:00
.br
ezjail-admin create -f httpd -r /jails/web12 web12.test.org 10.0.1.12
.br
EZJAIL_PREFIX/etc/rc.d/ezjail.sh start web12.test.org
.br
EZJAIL_PREFIX/etc/rc.d/ezjail.sh stop ns.test.org
.br
ezjail-admin delete ns.test.org
.br
ezjail-admin create -x -r /jails/ns ns.test.org 10.0.2.1
.SH BUGS
2006-02-08 11:13:58 +00:00
Due to the way ezjail handles jail config files it is not possible to
create multiple jails if their names are identical when piped through
.B tr -C [:alnum:] _
Sure to be others.
2005-09-05 02:49:33 +00:00
.SH FILES
.T4
2005-09-24 14:46:53 +00:00
EZJAIL_PREFIX/etc/ezjail.conf
2005-09-05 02:49:33 +00:00
.br
2005-09-26 01:30:00 +00:00
EZJAIL_PREFIX/etc/rc.d/ezjail.sh
2005-11-21 17:37:12 +00:00
.br
EZJAIL_PREFIX/share/examples/ezjail/
2005-09-05 02:49:33 +00:00
.SH "SEE ALSO"
ezjail(5), ezjail.conf(5), jail(8), devfs(5), fdescfs(5), procfs(5)
.SH AUTHOR
Dirk Engling <erdgeist@erdgeist.org>