This looks promising. I would like to test it out, but I think it looks good.
- Queries
- All Stories
- Search
- Advanced Search
- Transactions
- Transaction Logs
Advanced Search
Jan 11 2021
Dec 13 2020
Oct 31 2020
Thanks @gbe I have merged this PR upstream btw
Oct 25 2020
This looks ok at first glance, bu we need to make sure there is no conflicts with upstream. I can do this
@gbe can you submit a PR upstream to the openbsm project as well?
Oct 24 2020
+1
Otherwise +1 from me
In D26922#600559, @kevans wrote:In D26922#600534, @kib wrote:Instead of trying to outguess all syscalls, might be add a TDP flag to indicate that AUDIT on exit does not need to be done. Then, in the special-case syscalls like *execve() and perhaps all users of kern_posix_exit(), call AUDIT_SYSCALL_EXIT() manually when you know the correct errno.
Hmm... I like it. I will do this.
Oct 15 2020
SOCK_RAW is still used by other subsystems, e.g. configuring firewalls rules among other things. This is the main reason raw sockets were restricted within jails in the first place. I am not seeing how this patch protects other subsystems.
Jul 28 2020
Working on this right now BTW, just waiting for CI to finish
Jul 22 2020
I will take care of this commit. I thought this was done already
Jul 1 2020
I am ok with this diff.
Jun 23 2020
May 21 2020
May 16 2020
May 15 2020
May 9 2020
Apr 20 2020
Apr 16 2020
Mar 30 2020
Mar 3 2020
Mar 2 2020
Mar 1 2020
Looks good to me
Looks perfectly reasonable to me.
Feb 29 2020
Feb 28 2020
Break out the switch case statements for the new syscalls
Feb 24 2020
Feb 20 2020
Feb 19 2020
Sep 3 2019
Jun 7 2019
- Fix comment