Is it time to drop seccomp?

Eric S. Raymond esr at thyrsus.com
Tue Feb 12 23:07:34 UTC 2019


Hal Murray via devel <devel at ntpsec.org>:
> 
> NTS uses libssl which adds a large can of worms to the existing pile.
> 

What additional syscalls does it imply?

Dropping seccomp would be bad optics for a security-focused project.
That doesn't mean we can't do it, but we'd better be able to tell the
world a damn good reason why if we do.
-- 
		<a href="http://www.catb.org/~esr/">Eric S. Raymond</a>

My work is funded by the Internet Civil Engineering Institute: https://icei.org
Please visit their site and donate: the civilization you save might be your own.




More information about the devel mailing list