Commit Briefs

Omar Polo

initial seccomp support


Omar Polo

missing break


Omar Polo

switch to getcwd


Omar Polo

wording


Omar Polo

split into two processes: listener and executor

this way, we can sandbox the listener with seccomp (todo) or capsicum (already done) and still have CGI scripts. When we want to exec, we tell the executor what to do, the executor executes the scripts and send the fd backt to the listener.



Omar Polo

drop inet_ntop leftovers

we switched to getnameinfo some time ago, but that call to inet_ntop remained. Fortunately, it doesn't harm, since what i wrote is overwritten by getnameinfo and the provided buffer should be large enough.


Omar Polo

move cgi stuff to its own file


Omar Polo

add protocols to the config


Omar Polo

sync changes



Omar Polo

style



Omar Polo

update README


Omar Polo

added sample configuration