linux-stable/Documentation/features
Mickaël Salaün c50b4659e4 um: Add seccomp support
This brings SECCOMP_MODE_STRICT and SECCOMP_MODE_FILTER support through
prctl(2) and seccomp(2) to User-mode Linux for i386 and x86_64
subarchitectures.

secure_computing() is called first in handle_syscall() so that the
syscall emulation will be aborted quickly if matching a seccomp rule.

This is inspired from Meredydd Luff's patch
(https://gerrit.chromium.org/gerrit/21425).

Signed-off-by: Mickaël Salaün <mic@digikod.net>
Cc: Jeff Dike <jdike@addtoit.com>
Cc: Richard Weinberger <richard@nod.at>
Cc: Ingo Molnar <mingo@redhat.com>
Cc: Kees Cook <keescook@chromium.org>
Cc: Andy Lutomirski <luto@amacapital.net>
Cc: Will Drewry <wad@chromium.org>
Cc: Chris Metcalf <cmetcalf@ezchip.com>
Cc: Michael Ellerman <mpe@ellerman.id.au>
Cc: James Hogan <james.hogan@imgtec.com>
Cc: Meredydd Luff <meredydd@senatehouse.org>
Cc: David Drysdale <drysdale@google.com>
Signed-off-by: Richard Weinberger <richard@nod.at>
Acked-by: Kees Cook <keescook@chromium.org>
2016-01-10 21:49:49 +01:00
..
core Documentation/features/core: Add feature description and arch support status file for 'BPF-JIT' 2015-06-03 12:51:43 +02:00
debug Documentation/features/KASAN: arm64 supports KASAN now 2015-10-12 17:46:50 +01:00
io Documentation/features/io: Add feature description and arch support status file for 'dma-api-debug' 2015-06-03 12:51:41 +02:00
lib/strncasecmp Documentation/features/lib: Add feature description and arch support status file for 'strncasecmp' 2015-06-03 12:51:33 +02:00
locking Documentation/features/locking: Add feature description and arch support status file for 'queued-rwlocks' 2015-06-03 12:51:43 +02:00
perf Documentation/features/perf: Add feature description and arch support status file for 'perf-stackdump' 2015-06-03 12:51:42 +02:00
sched/numa-balancing Documentation/features/sched: Add feature description and arch support status file for 'numa-balancing' 2015-06-03 12:51:36 +02:00
seccomp/seccomp-filter um: Add seccomp support 2016-01-10 21:49:49 +01:00
time Documentation/features/time: Add feature description and arch support status file for 'arch-tick-broadcast' 2015-06-03 12:51:39 +02:00
vm Documentation/features/vm: THP now supported by ARC 2015-10-17 17:48:19 +05:30
arch-support.txt Documentation/features: Explain kernel feature descriptions and add visualization script 2015-06-03 12:59:38 +02:00
list-arch.sh Documentation/features: Explain kernel feature descriptions and add visualization script 2015-06-03 12:59:38 +02:00