Re: How to disable seccomp in systemd-nspawn?

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Sun, 16 Aug 2020 at 16:32, Steve Dodd <steved424@xxxxxxxxx> wrote:

Ah, looks like we need to seccomp_attr_get(&ctx, SCMP_FLTATR_CTL_LOG, ..) somewhere for this to work. Not sure if that should be done unconditionally...

https://github.com/systemd/systemd/pull/16752 makes it conditional on an environment variable, "SYSTEMD_LOG_SECCOMP", which seems neat enough.

I've tried to open a discussion about the ENOSYS handling in libseccomp at https://github.com/seccomp/libseccomp/issues/286, but I'm probably not being very coherent..

S.
_______________________________________________
systemd-devel mailing list
systemd-devel@xxxxxxxxxxxxxxxxxxxxx
https://lists.freedesktop.org/mailman/listinfo/systemd-devel

[Index of Archives]     [LARTC]     [Bugtraq]     [Yosemite Forum]     [Photo]

  Powered by Linux