1
0
mirror of https://github.com/postgres/postgres.git synced 2025-07-27 12:41:57 +03:00

More FreeBSD jail wording improvements.

This commit is contained in:
Bruce Momjian
2006-04-11 19:46:48 +00:00
parent 493eea649c
commit e860973aed

View File

@ -1,5 +1,5 @@
<!-- <!--
$PostgreSQL: pgsql/doc/src/sgml/runtime.sgml,v 1.357.2.2 2006/04/11 19:28:03 momjian Exp $ $PostgreSQL: pgsql/doc/src/sgml/runtime.sgml,v 1.357.2.3 2006/04/11 19:46:48 momjian Exp $
--> -->
<chapter Id="runtime"> <chapter Id="runtime">
@ -770,9 +770,9 @@ options "SEMMNS=240"
If running in FreeBSD jails by enabling <application>sysconf</>'s If running in FreeBSD jails by enabling <application>sysconf</>'s
<literal>security.jail.sysvipc_allowed</>, <application>postmaster</>s <literal>security.jail.sysvipc_allowed</>, <application>postmaster</>s
running in different jails should be run by different operating system running in different jails should be run by different operating system
users. This improves security because it prevents one jail from users. This improves security because it prevents non-root users
interfering with shared memory or semaphores in another, and it from interfering with shared memory or semaphores in a different jail,
allows the PostgreSQL IPC cleanup code to function properly. and it allows the PostgreSQL IPC cleanup code to function properly.
(In FreeBSD 6.0 and later the IPC cleanup code doesn't properly detect (In FreeBSD 6.0 and later the IPC cleanup code doesn't properly detect
processes in other jails, preventing the running of postmasters on the processes in other jails, preventing the running of postmasters on the
same port in different jails.) same port in different jails.)