Bladeren bron

Merge pull request #34445 from pmoust/f-seccomp-quotacl

seccomp: whitelist quotactl with CAP_SYS_ADMIN
Yong Tang 8 jaren geleden
bovenliggende
commit
bbb401de87
2 gewijzigde bestanden met toevoegingen van 2 en 0 verwijderingen
  1. 1 0
      profiles/seccomp/default.json
  2. 1 0
      profiles/seccomp/seccomp_default.go

+ 1 - 0
profiles/seccomp/default.json

@@ -557,6 +557,7 @@
 				"mount",
 				"name_to_handle_at",
 				"perf_event_open",
+				"quotactl",
 				"setdomainname",
 				"sethostname",
 				"setns",

+ 1 - 0
profiles/seccomp/seccomp_default.go

@@ -488,6 +488,7 @@ func DefaultProfile() *types.Seccomp {
 				"mount",
 				"name_to_handle_at",
 				"perf_event_open",
+				"quotactl",
 				"setdomainname",
 				"sethostname",
 				"setns",