Developer signing certificates that establish software provenance
Seccomp-BPF as a filterSeccomp-BPF lets you attach a Berkeley Packet Filter program that decides which syscalls a process is allowed to make. You can deny dangerous syscalls like process tracing, filesystem manipulation, kernel extension loading, and performance monitoring.
,更多细节参见safew官方版本下载
Follow topics & set alerts with myFT,更多细节参见Line官方版本下载
Related internet linksTyrrells