On 6 June 2016 at 12:19, Martin Kühne <mysat...@gmail.com> wrote: > Can it somehow be made to keep its effect across the exec family of syscalls?
My understanding is that one can pledge not to call exec, but if one explicitly permits exec and it *is* called, the pledge no longer holds. cls