exec.start = "/bin/sh /etc/rc";
exec.stop = "/bin/sh /etc/rc.shutdown";
exec.clean;
mount.devfs;
host.hostname = $name;
path = "/vm/$name";
exec.consolelog = "/var/log/jail_${name}_console.log";
exec.prestart = "cp /etc/resolv.conf $path/etc";
exec.poststop = "rm $path/etc/resolv.conf";
devfs_ruleset = 10;
proxy {
$net = "vi0";
$gwv4 = "172.31.0.1";
$ipv4 = "172.31.0.2";
$plen = 24;
vnet;
vnet.interface = "${net}_$name";
exec.prestart += "vnet add -4 $gwv4/$plen $net ${net}_$name";
exec.start += "ifconfig ${net}_$name $ipv4/$plen";
exec.start += "route add default $gwv4";
exec.poststop += "vnet delete $net ${net}_$name";
}
webdav {
$net = "vi0";
$gwv4 = "172.31.0.1";
$ipv4 = "172.31.0.3";
$plen = 24;
vnet;
vnet.interface = "${net}_$name";
exec.prestart += "vnet add -4 $gwv4/$plen $net ${net}_$name";
exec.start += "ifconfig ${net}_$name $ipv4/$plen";
exec.start += "route add default $gwv4";
exec.poststop += "vnet delete $net ${net}_$name";
}
[devfsrules_bpfjail=10]
add include $devfsrules_jail
add path 'bpf*' unhide
[devfsrules_tunjail=11]
add include $devfsrules_jail
add path 'tun*' unhide
nat on em0 inet from 172.31.0.0/24 to any -> (em0)
gateway_enable="YES"
pf_enable="YES"
pflog_enable="YES"
jail_enable="YES"
/usr/local/etc/privoxy/config (excerpts)
debug 1
debug 1024
listen-address 172.31.0.2:8118
privoxy_enable="YES"
/usr/local/etc/apache24/httpd.conf (excerpts)
LoadModule socache_shmcb_module libexec/apache24/mod_socache_shmcb.so
LoadModule ssl_module libexec/apache24/mod_ssl.so
LoadModule dav_module libexec/apache24/mod_dav.so
LoadModule dav_fs_module libexec/apache24/mod_dav_fs.so
LoadModule dav_lock_module libexec/apache24/mod_dav_lock.so
ServerName 172.31.0.3:80
Include etc/apache24/extra/httpd-dav.conf
Include etc/apache24/extra/httpd-ssl.conf
/usr/local/etc/apache24/extra/httpd-dav.conf (excerpts)
DavLockDB "/usr/local/var/DavLock/DavLock"
Alias /dav "/usr/local/www/dav"
<Directory "/usr/local/www/dav">
SSLRequireSSL
AuthType Basic
AuthName DAV
AuthUserFile "/usr/local/etc/davuser.passwd"
/usr/local/etc/apache24/extra/httpd-ssl.conf (excerpts)
ServerName 172.31.0.3:443
apache24_enable="YES"