mirror of
https://github.com/postgres/postgres.git
synced 2025-07-26 01:22:12 +03:00
More FreeBSD jail wording improvements.
This commit is contained in:
@ -1,5 +1,5 @@
|
|||||||
<!--
|
<!--
|
||||||
$PostgreSQL: pgsql/doc/src/sgml/runtime.sgml,v 1.357.2.2 2006/04/11 19:28:03 momjian Exp $
|
$PostgreSQL: pgsql/doc/src/sgml/runtime.sgml,v 1.357.2.3 2006/04/11 19:46:48 momjian Exp $
|
||||||
-->
|
-->
|
||||||
|
|
||||||
<chapter Id="runtime">
|
<chapter Id="runtime">
|
||||||
@ -770,9 +770,9 @@ options "SEMMNS=240"
|
|||||||
If running in FreeBSD jails by enabling <application>sysconf</>'s
|
If running in FreeBSD jails by enabling <application>sysconf</>'s
|
||||||
<literal>security.jail.sysvipc_allowed</>, <application>postmaster</>s
|
<literal>security.jail.sysvipc_allowed</>, <application>postmaster</>s
|
||||||
running in different jails should be run by different operating system
|
running in different jails should be run by different operating system
|
||||||
users. This improves security because it prevents one jail from
|
users. This improves security because it prevents non-root users
|
||||||
interfering with shared memory or semaphores in another, and it
|
from interfering with shared memory or semaphores in a different jail,
|
||||||
allows the PostgreSQL IPC cleanup code to function properly.
|
and it allows the PostgreSQL IPC cleanup code to function properly.
|
||||||
(In FreeBSD 6.0 and later the IPC cleanup code doesn't properly detect
|
(In FreeBSD 6.0 and later the IPC cleanup code doesn't properly detect
|
||||||
processes in other jails, preventing the running of postmasters on the
|
processes in other jails, preventing the running of postmasters on the
|
||||||
same port in different jails.)
|
same port in different jails.)
|
||||||
|
Reference in New Issue
Block a user