Add a new BPF helper syscall_broker::BrokerProcess::IsSyscallAllowed().
This helper can be used in bpf_dsl::Policy::EvaluateSyscall() to make it easier to craft BPF policies that trap to the broker process. Change-Id: I8588b0a934343d7d0009c0d07bf259a085451ece Reviewed-on: https://chromium-review.googlesource.com/1175934 Commit-Queue: Robert Sesek <rsesek@chromium.org> Reviewed-by:Tom Sepez <tsepez@chromium.org> Cr-Commit-Position: refs/heads/master@{#583407}
Showing
Please register or sign in to comment