diff --git a/profiles/seccomp/default.json b/profiles/seccomp/default.json index edf8ee2d02..3ae143c8b1 100644 --- a/profiles/seccomp/default.json +++ b/profiles/seccomp/default.json @@ -232,6 +232,8 @@ "openat", "openat2", "pause", + "pidfd_open", + "pidfd_send_signal", "pipe", "pipe2", "poll", @@ -721,6 +723,7 @@ { "names": [ "kcmp", + "pidfd_getfd", "process_vm_readv", "process_vm_writev", "ptrace" diff --git a/profiles/seccomp/default_linux.go b/profiles/seccomp/default_linux.go index 18b5cb02bb..232a4149cd 100644 --- a/profiles/seccomp/default_linux.go +++ b/profiles/seccomp/default_linux.go @@ -225,6 +225,8 @@ func DefaultProfile() *Seccomp { "openat", "openat2", "pause", + "pidfd_open", + "pidfd_send_signal", "pipe", "pipe2", "poll", @@ -622,6 +624,7 @@ func DefaultProfile() *Seccomp { { Names: []string{ "kcmp", + "pidfd_getfd", "process_vm_readv", "process_vm_writev", "ptrace",