Re: Have I got this VIMAGE setup correct?

2015-12-22 Thread Julian Elischer
On 23/12/2015 1:05 AM, Garrett Wollman wrote: The consensus when I asked seemed to be that VIMAGE+jail was the right combination to give every container its own private loopback interface, so I tried to build that. I noticed a few things: 1) The kernel prints out a warning message at boot time

Re: Have I got this VIMAGE setup correct?

2015-12-22 Thread Matthew D. Fuller
On Tue, Dec 22, 2015 at 12:05:07PM -0500 I heard the voice of Garrett Wollman, and lo! it spake thus: > > The consensus when I asked seemed to be that VIMAGE+jail was the > right combination to give every container its own private loopback > interface, so I tried to build that. I noticed a few

Re: Have I got this VIMAGE setup correct?

2015-12-22 Thread Craig Rodrigues
On Tue, Dec 22, 2015 at 9:05 AM, Garrett Wollman wrote: > Any patches I should pull up to make this setup more > reliable before I roll it out in production? > > If you loook at CURRENT, bz@ has committed a few VIMAGE related fixes this week which you might want to look

Have I got this VIMAGE setup correct?

2015-12-22 Thread Garrett Wollman
The consensus when I asked seemed to be that VIMAGE+jail was the right combination to give every container its own private loopback interface, so I tried to build that. I noticed a few things: 1) The kernel prints out a warning message at boot time that VIMAGE is "highly experimental". Should I