mirror of
https://github.com/torvalds/linux.git
synced 2024-11-16 00:52:01 +00:00
8ac270d1e2
Documents how system call filtering using Berkeley Packet
Filter programs works and how it may be used.
Includes an example for x86 and a semi-generic
example using a macro-based code generator.
Acked-by: Eric Paris <eparis@redhat.com>
Signed-off-by: Will Drewry <wad@chromium.org>
Acked-by: Kees Cook <keescook@chromium.org>
v18: - added acked by
- update no new privs numbers
v17: - remove @compat note and add Pitfalls section for arch checking
(keescook@chromium.org)
v16: -
v15: -
v14: - rebase/nochanges
v13: - rebase on to
|
||
---|---|---|
.. | ||
bpf-direct.c | ||
bpf-fancy.c | ||
bpf-helper.c | ||
bpf-helper.h | ||
dropper.c | ||
Makefile |