Re: [PATCH v3 0/4] Improved seccomp logging

2017-04-27 Thread Kees Cook
On Thu, Apr 27, 2017 at 3:17 PM, Tyler Hicks wrote: > Quick update... I finished the move from the high-water mark > log_max_action sysctl to the bitmask based actions_logged sysctl. Awesome! > Unfortunately, I've just realized that SECCOMP_SET_LOGGING, or any > process-wide logging configuratio

Re: [PATCH v3 0/4] Improved seccomp logging

2017-04-27 Thread Tyler Hicks
On 04/10/2017 10:59 PM, Kees Cook wrote: > On Fri, Apr 7, 2017 at 4:46 PM, Tyler Hicks wrote: >> On 04/07/2017 05:46 PM, Kees Cook wrote: >>> Does the app-controlled bitmask apply to the filter, the process, the >>> process tree, or something else? e.g. systemd launches an app with a >>> filter, l