In this small patch series I basically:

  v3 update:
  - reincluded getrlimit(), it's used by Xen.

  v2 update:
  - set libseccomp 2.1.0 as requirement on configure script.
  - reincluded setrlimit() (used by Xen) and removed sendfile64() from
    the whitelist.

  1) Remove the ifdef's for the (not so) new libseccomp version that does a
  best effort and translates x86_32 syscalls into x86_64 when possible.

  2) Remove unused syscalls on the seccomp whitelist. For that removal, I've 
been
  running several instances of Qemu using a script written on top of
  virt-test[0]. After some weeks testing I could come up with this small list,
  and safely remove them without breaking anything.

[0] - https://github.com/autotest/virt-test/wiki

Eduardo Otubo (2):
  seccomp: no need to check arch in syscall whitelist
  seccomp: removing unused syscalls gtom whitelist

 configure      |  2 +-
 qemu-seccomp.c | 17 -----------------
 2 files changed, 1 insertion(+), 18 deletions(-)

-- 
1.8.3.1


Reply via email to