Cook: seccomp Filter Now in Ubuntu

36

On his blog, Kees Cook reports that the Ubuntu kernel for 12.04 has added the seccomp filters feature that uses the packet filtering machinery (BPF) to restrict access to system calls. He also notes that the feature will be added to the Chrome OS kernel soon. “One of the questions I’ve been…

Read more at LWN