I've got some challenges using systemd's seccomp support because it conflicts with the way my system is managed. I need to manage the seccomp SystemCallFilter lists in a central location (single directory) so that they can be updated independently of the packages and portable services on my systems. Would there be any objections to a patch that would add a new unit option for loading the system call filter list out of a specified file?

--
Chris PeBenito
_______________________________________________
systemd-devel mailing list
systemd-devel@lists.freedesktop.org
https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Reply via email to