diff options
author | Lennart Poettering <lennart@poettering.net> | 2016-11-02 08:46:18 -0600 |
---|---|---|
committer | Lennart Poettering <lennart@poettering.net> | 2016-11-02 08:50:00 -0600 |
commit | 133ddbbeae74fc06173633605b3e612e934bc2dd (patch) | |
tree | e642c6e827ecbd0ee47be2628e05c22aa389055c /units/systemd-sysusers.service.in | |
parent | aa6b9cec8813c2135049cecc2247a202ff6e311d (diff) |
seccomp: add two new syscall groups
@resources contains various syscalls that alter resource limits and memory and
scheduling parameters of processes. As such they are good candidates to block
for most services.
@basic-io contains a number of basic syscalls for I/O, similar to the list
seccomp v1 permitted but slightly more complete. It should be useful for
building basic whitelisting for minimal sandboxes
Diffstat (limited to 'units/systemd-sysusers.service.in')
0 files changed, 0 insertions, 0 deletions