Re: [PATCH v13 11/12] samples/landlock: Add network demo
From: Mickaël Salaün <mic@digikod.net>
Date: 2023-10-18 12:33:49
Also in:
linux-security-module, netfilter-devel
From: Mickaël Salaün <mic@digikod.net>
Date: 2023-10-18 12:33:49
Also in:
linux-security-module, netfilter-devel
Please update the subject to "samples/landlock: Support TCP restrictions" On Mon, Oct 16, 2023 at 09:50:29AM +0800, Konstantin Meskhidze wrote:
This commit adds network demo. It's possible to allow a sandboxer to bind/connect to a list of particular ports restricting network actions to the rest of ports. Signed-off-by: Konstantin Meskhidze <redacted> Link: https://lore.kernel.org/r/20230920092641.832134-12-konstantin.meskhidze@huawei.com (local) [mic: Define __SANE_USERSPACE_TYPES__ to select int-ll64.h and avoid format warnings for PowerPC]
You can remove all this kind of "[mic: ]" comments, I add them when I merge a patch with additional changes.
Signed-off-by: Mickaël Salaün <mic@digikod.net> --- Changes since v12: * Defines __SANE_USERSPACE_TYPES__ to avoid warnings for PowerPC.