Here is a patch to make the secomp trap handler on Linux more helpfully verbose.

James Browning jamesb192 at jamesb192.com
Tue Feb 28 09:54:35 UTC 2023


I wrote and tested this on a bleeding-edge Ubuntu box. I have yet to
try this on other Linux flavors.

I also have a patch that can incrementally tighten the syscall filter
to calls listed in a text file. I will work on that one a bit more
first, however. The code for both is also at

https://gitlab.com/na280/ntpsec/-/commits/23B27-seccomp
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0001-Attempt-to-make-seccomp-errors-useful-not-Lassie.patch
Type: text/x-patch
Size: 1048 bytes
Desc: not available
URL: <https://lists.ntpsec.org/pipermail/devel/attachments/20230228/55c36315/attachment.bin>


More information about the devel mailing list