Losing the simplicity
Losing the simplicity
Posted May 14, 2009 4:28 UTC (Thu) by felixfix (subscriber, #242)Parent article: Seccomp and sandboxing
It does seem like a fun project, but I shudder thinking of how the utter simplicity will be thrown out for endless complexity. It's bad enough having a bitmask to allow arbitrary syscalls, but to then monitor syscall arguments? Seems to me the word "security" hardly deserves to be treated so shabbily as to be associated with this.
