LWN.net Logo

Limiting system calls via control groups?

Limiting system calls via control groups?

Posted Oct 20, 2011 8:09 UTC (Thu) by dw (subscriber, #12017)
In reply to: Limiting system calls via control groups? by dw
Parent article: Limiting system calls via control groups?

Grumble, slightly incomprehensible comment. By mention of the library and "unprivileged userspace", I meant something like how BPF or iptables works, where complexity of parsing some expression (or rule set) is handled by a library, which produces easily verifiable byte code, which is then handed off to the kernel.


(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds