Commits
- Commit:
6827d2781e8aaaa6aad1e32026a21863070c90f4
- From:
- Omar Polo <op@omarpolo.com>
- Date:
[seccomp] allow newfstatat and gettimeofday
these are required to run on arch linux (at least)
- Commit:
4c857c0afcb7d76cb03323ba7d0dfef60b27589f
- From:
- Omar Polo <op@omarpolo.com>
- Date:
[seccomp] epoll_wait(2) isn't available on every arch
- Commit:
f6b9a079e378d2891906510206419fd28f3ff890
- From:
- Omar Polo <op@omarpolo.com>
- Date:
allow epoll_wait
fedora 33 issue an epoll_wait instead of pwait.
- Commit:
c214d1ab67b2eee5a6424f518a795ab7883b868f
- From:
- Omar Polo <op@omarpolo.com>
- Date:
allow sigreturn and sigaction on linux
- Commit:
df58efff26529acd6a5675d3b4044d494b138397
- From:
- Omar Polo <op@omarpolo.com>
- Date:
fix seccomp for the new event loop
add/remove syscalls from the BPF filter and move sandbox() after
libevent initialisation
- Commit:
8ef09de3d077645d29bc3e670f1d1aacab0d91cb
- From:
- Omar Polo <op@omarpolo.com>
- Date:
don't include err.h, gmid.h (via config.h) does that
- Commit:
2d3f837ac587063ac967c12afbdb219ba231256c
- From:
- Omar Polo <op@omarpolo.com>
- Date:
[seccomp] allow getrandom
- Commit:
2d3cc76f6d5c2eb4a23f0dbebe5ef779f07b947b
- From:
- Omar Polo <op@omarpolo.com>
- Date:
we don't need unveil "x" in listener
not a big deal, since the pledge prohibits us to exec, but
nevertheless.
- Commit:
f88311e5344ed934d8b05c3738cca2a978491987
- From:
- Omar Polo <op@omarpolo.com>
- Date:
[seccomp] allow fcntl F_SETFD
musl does a F_SETFD in its fdopendir
- Commit:
1a49166de409ffcd354353450de98a7ee9885f8b
- From:
- Omar Polo <op@omarpolo.com>
- Date:
fix date
- Commit:
e29dbd7217cb1ad27be0fd47e757f5dcba74db0b
- From:
- Omar Polo <op@omarpolo.com>
- Date:
added missic copyright notice
- Commit:
338f06f4e569807582f005f5804ca3abc412b255
- From:
- Omar Polo <op@omarpolo.com>
- Date:
drop seccomp.h: not needed
- Commit:
61f8d630c81fb92d771cf26496b25b5157c776ca
- From:
- Omar Polo <op@omarpolo.com>
- Date:
fmt
- Commit:
f2b3a5193f96ab48bae4463654c67af706a18cdd
- From:
- Omar Polo <op@omarpolo.com>
- Date:
allow clock_gettime and a bit of fmt
alpine on amd64 (under OpenBSD vmd) tries to do a clock_gettime. I
don't know why, but it doesn't seem a problem to allow it.
- Commit:
3c0375e405857c074c428ddb3330d6286fcc47aa
- From:
- Omar Polo <op@omarpolo.com>
- Date:
fix BPF