On Fri, 10 Jan 2014 20:56:18 +0200 Victor Porton <porton@xxxxxxxx> wrote: > I remind that we discuss sandboxing of untrusted programs. > > My application needs to receive a signal when ALL direct and indirect > children of a process (including this process itself) started in a > sandbox exit (it should work even when they call setsid()). > > Can this be done with the current kernel? This is completely unrelated to SELinux, so please don't discuss it on this list. Have a look into cgroups ("notify_on_release"). -- Luis Ressel <aranea@xxxxxxxx> GPG fpr: F08D 2AF6 655E 25DE 52BC E53D 08F5 7F90 3029 B5BD
Attachment:
signature.asc
Description: PGP signature
_______________________________________________ Selinux mailing list Selinux@xxxxxxxxxxxxx To unsubscribe, send email to Selinux-leave@xxxxxxxxxxxxx. To get help, send an email containing "help" to Selinux-request@xxxxxxxxxxxxx.