Posted May 14, 2009 3:30 UTC (Thu) by jamesmrh (guest, #31622)
Parent article: Seccomp and sandboxing
Parent article: Seccomp and sandboxing
It's like TCP or Unix, which people keep reinventing poorly.
They start out with an idea which superficially seems simple and efficient, yet once all of the hard-learned lessons of the past are applied with all of their subtleties and nuances, the end result is just some variation on an existing scheme, but without the benefit of having been closely scrutinized and shaken-out over time.
That's what I'm sensing in this case, although I'm more than happy to be proven wrong.
