there is no reason it would be default policy. Else might as well block every socket and just multiplex everything on stdin/out
there is no reason it would be default policy. Else might as well block every socket and just multiplex everything on stdin/out
You may be on to something…
share and enjoy!
A compounding issue is that using AF_ALG doesn't require a separate syscall: it's just using SYS_socket with the first argument set to 38. Your container behaviour specification needs to be specific enough to not only enumerate allowed syscalls, but the allowed values for each syscall parameter.
In the vast majority of the world, you set permissions to what's reasonable and trust that most of the time things will work out pretty well and have a plan for if you need to fix things on the fly.
I personally am not terribly paranoid, but I've worked places where we had to be pretty paranoid (shared hosting).