Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

Linux Foundation

Handling New Syscalls in Seccomp Filters

Linux Foundation via YouTube

Overview

Coursera Spring Sale
40% Off Coursera Plus Annual!
Grab it
Explore the challenges and solutions for handling new system calls in seccomp filters during this 31-minute conference talk from the Linux Foundation. Learn about the current limitations of libseccomp's allow list and deny list filtering approaches when systems are updated to newer kernels with new syscalls, where allow lists may block legitimate new syscalls causing container failures, while deny lists may inadvertently permit dangerous new syscalls creating security vulnerabilities. Discover the proposed solution developed by the libseccomp team to address these kernel version compatibility issues. Engage in an interactive discussion between the libseccomp developers Tom Hromatka from Oracle Corporate and Paul Moore from Microsoft and the Linux Security Summit audience about current problem-solving approaches, evaluation of the proposed functionality and API, and additional suggestions for kernel version-based syscall filtering improvements.

Syllabus

Handling New Syscalls in Seccomp Filters - Tom Hromatka, Oracle Corporate & Paul Moore, Microsoft

Taught by

Linux Foundation

Reviews

Start your review of Handling New Syscalls in Seccomp Filters

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.