droproot, seccomp

Eric S. Raymond esr at thyrsus.com
Tue Feb 25 21:37:28 UTC 2020


James Browning via devel <devel at ntpsec.org>:
> Is there anything preventing the possibility of an early looser
> seccomp setup and then tightening it later possibly with a knob
> to generate terse or verbose warnings instead of dying.

That is a very interesting idea that I think deserves further
examination.

Do you have an implementation strategy in mind?
-- 
		<a href="http://www.catb.org/~esr/">Eric S. Raymond</a>




More information about the devel mailing list