diff options
| author | Dmitry Vyukov <dvyukov@google.com> | 2018-01-22 12:10:56 +0100 |
|---|---|---|
| committer | Dmitry Vyukov <dvyukov@google.com> | 2018-01-22 12:13:40 +0100 |
| commit | 6785f793478373cf21c27431c66bc4d20e835576 (patch) | |
| tree | 02f988937bf0ea9f36554df2172f1036b4b2becb /executor/syscalls_linux.h | |
| parent | aeb24072ff271c77f86d3bd98daae46e894e2f88 (diff) | |
executor: reshuffle namespace sandboxing sequence again
Now we create tun in the _outer_ net namespace,
which is tied to init user namespace. Thus fuzzer
does not have CAP_ADMIN in it.
In the end it seems that there is no sandboxing sequence,
which would give us everything we need.
Reshuffle sequences so that we have corrent namespace
hierarchy, but don't have IFF_NAPI_FRAGS.
Diffstat (limited to 'executor/syscalls_linux.h')
0 files changed, 0 insertions, 0 deletions
