package seccomp

import "github.com/containerd/containerd/contrib/seccomp"

Index

Functions

func DefaultProfile

func DefaultProfile(sp *specs.Spec) *specs.LinuxSeccomp

DefaultProfile defines the allowed syscalls for the default seccomp profile.

func WithDefaultProfile

func WithDefaultProfile() oci.SpecOpts

WithDefaultProfile sets the default seccomp profile to the spec. Note: must follow the setting of process capabilities

func WithProfile

func WithProfile(profile string) oci.SpecOpts

WithProfile receives the name of a file stored on disk comprising a json formatted seccomp profile, as specified by the opencontainers/runtime-spec. The profile is read from the file, unmarshaled, and set to the spec.

Source Files

seccomp.go seccomp_default_unsupported.go

Version
v1.7.8
Published
Oct 26, 2023
Platform
js/wasm
Imports
7 packages
Last checked
6 minutes ago

Tools for package owners.