Here is a patch to make the secomp trap handler on Linux more helpfully verbose.

James Browning jamesb192 at
Tue Feb 28 09:54:35 UTC 2023

I wrote and tested this on a bleeding-edge Ubuntu box. I have yet to
try this on other Linux flavors.

I also have a patch that can incrementally tighten the syscall filter
to calls listed in a text file. I will work on that one a bit more
first, however. The code for both is also at
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0001-Attempt-to-make-seccomp-errors-useful-not-Lassie.patch
Type: text/x-patch
Size: 1048 bytes
Desc: not available
URL: <>

More information about the devel mailing list