[PATCH v6 6/9] seccomp: add "seccomp" syscall
luto at amacapital.net
Fri Jun 13 13:41:02 PDT 2014
On Tue, Jun 10, 2014 at 8:25 PM, Kees Cook <keescook at chromium.org> wrote:
> This adds the new "seccomp" syscall with both an "operation" and "flags"
> parameter for future expansion. The third argument is a pointer value,
> used with the SECCOMP_SET_MODE_FILTER operation. Currently, flags must
> be 0. This is functionally equivalent to prctl(PR_SET_SECCOMP, ...).
Question for the linux-abi people:
What's the preferred way to do this these days? This syscall is a
general purpose "adjust the seccomp state" thing. The alternative
would be a specific new syscall to add a filter with a flags argument.
More information about the linux-arm-kernel