seccomp mess, continued, status update

Hal Murray hmurray at megapathdsl.net
Mon Feb 24 12:19:42 UTC 2020


hmurray at megapathdsl.net said:
> I'm working on a hack fix. 

Fix pushed.  CI is happy.

The bug is missing code in a header file.  I just put that code inside 
ntp_sandbox.  Seems obvious in hindsight.  The hard part was figuring out when 
to do it.

Then I had to debug seccomp on Alpine.  I'd been testing builds but never 
actually tested running it.  There were a couple of slots missing and I had to 
dig out the source to figure out what was going on.  Write ends up using the 
writev syscall.


-- 
These are my opinions.  I hate spam.





More information about the devel mailing list