summaryrefslogtreecommitdiff
path: root/sys/dev/clock_subr.h
diff options
context:
space:
mode:
authorDamien Miller <djm@cvs.openbsd.org>2011-06-22 01:32:17 +0000
committerDamien Miller <djm@cvs.openbsd.org>2011-06-22 01:32:17 +0000
commit4f0546e1bdcfaf41875f487df2603a194f410fe6 (patch)
tree10b7802b9e8cb5c52e024b38f6f5597b37bed427 /sys/dev/clock_subr.h
parent5d5e214bb3fc042864e46fc7ded36e4e82ac98c0 (diff)
Add a SYSTR_POLICY_KILL per-syscall policy option that sends SIGKILL to
the traced process when the syscall is attempted. This is more useful and safer for unsupervised sandboxing than returning EPERM (which is the behaviour of SYSTR_POLICY_NEVER), as this could cause dangerous misbehaviour in applications that don't expect it. "I like it" deraadt@ markus@
Diffstat (limited to 'sys/dev/clock_subr.h')
0 files changed, 0 insertions, 0 deletions