diff options
author | Michael Pratt <mpratt@google.com> | 2018-09-11 17:53:48 -0700 |
---|---|---|
committer | Shentubot <shentubot@google.com> | 2018-09-11 17:54:50 -0700 |
commit | b4aed01bf227bfc0b29ce3100858366f60c0647b (patch) | |
tree | 3af477af1501b9ecedea0847cee43e31eb30c89d | |
parent | 6cc9b311af3633d244f526abed50c0d3b0ce06a1 (diff) |
Rollback of changelist 212483372
PiperOrigin-RevId: 212557844
Change-Id: I414de848e75d57ecee2c05e851d05b607db4aa57
-rw-r--r-- | runsc/boot/filter/config.go | 15 |
1 files changed, 7 insertions, 8 deletions
diff --git a/runsc/boot/filter/config.go b/runsc/boot/filter/config.go index 8cdf56963..1a0c426ab 100644 --- a/runsc/boot/filter/config.go +++ b/runsc/boot/filter/config.go @@ -205,14 +205,13 @@ var allowedSyscalls = seccomp.SyscallRules{ seccomp.AllowValue(syscall.MAP_PRIVATE | syscall.MAP_ANONYMOUS | syscall.MAP_FIXED), }, }, - syscall.SYS_MPROTECT: {}, - syscall.SYS_MUNMAP: {}, - syscall.SYS_NANOSLEEP: {}, - syscall.SYS_NEWFSTATAT: {}, - syscall.SYS_POLL: {}, - syscall.SYS_PREAD64: {}, - syscall.SYS_PWRITE64: {}, - syscall.SYS_READ: {}, + syscall.SYS_MPROTECT: {}, + syscall.SYS_MUNMAP: {}, + syscall.SYS_NANOSLEEP: {}, + syscall.SYS_POLL: {}, + syscall.SYS_PREAD64: {}, + syscall.SYS_PWRITE64: {}, + syscall.SYS_READ: {}, syscall.SYS_READV: []seccomp.Rule{ { seccomp.AllowAny{}, |