sandbox: expose seccomp interface

There's no point in artificially limiting and abstracting away these options. The higher level hakurei package is responsible for providing a secure baseline and sane defaults. The sandbox package should present everything to the caller.

Signed-off-by: Ophestra <cat@gensokyo.uk>
This commit is contained in:
2025-07-02 04:38:28 +09:00
parent a6887f7253
commit 31aef905fa
12 changed files with 117 additions and 77 deletions

View File

@@ -171,11 +171,11 @@ type ScmpDatum uint64
// Argument / Value comparison definition
type ScmpArgCmp struct {
// argument number, starting at 0
arg C.uint
Arg C.uint
// the comparison op, e.g. SCMP_CMP_*
op ScmpCompare
Op ScmpCompare
datum_a, datum_b ScmpDatum
DatumA, DatumB ScmpDatum
}
// only used for testing