[openssh with openssl cryptodev engine] sshd killed by seccomp filter

Ángel González keisial at gmail.com
Thu Feb 26 09:07:38 AEDT 2015


On 25/02/15 18:21, Damien Miller wrote:
> On Wed, 25 Feb 2015, LABBE Corentin wrote:
>> +	SC_ALLOW(ioctl),
> no, sorry. ioctl is too much attack kernel surface and would defeat the
> usefulness of the sandbox.
>
> -d
Labbe, which ioctl is being issued?



More information about the openssh-unix-dev mailing list