Chromium Code Reviews
chromiumcodereview-hr@appspot.gserviceaccount.com (chromiumcodereview-hr) | Please choose your nickname with Settings | Help | Chromium Project | Gerrit Changes | Sign out
(1118)

Side by Side Diff: content/common/sandbox_linux/sandbox_init_linux.cc

Issue 1029283003: WIP: Implement seccomp-bpf sandbox for nacl_helper_nonsfi. Base URL: https://chromium.googlesource.com/chromium/src.git@master
Patch Set: Created 5 years, 9 months ago
Use n/p to move between diff chunks; N/P to move between comments. Draft comments are only viewable by you.
Jump to:
View unified diff | Download patch
« no previous file with comments | « components/nacl_nonsfi.gyp ('k') | content/common/sandbox_linux/sandbox_seccomp_bpf_linux.cc » ('j') | no next file with comments »
Toggle Intra-line Diffs ('i') | Expand Comments ('e') | Collapse Comments ('c') | Show Comments Hide Comments ('s')
OLDNEW
1 // Copyright 2013 The Chromium Authors. All rights reserved. 1 // Copyright 2013 The Chromium Authors. All rights reserved.
2 // Use of this source code is governed by a BSD-style license that can be 2 // Use of this source code is governed by a BSD-style license that can be
3 // found in the LICENSE file. 3 // found in the LICENSE file.
4 4
5 #include "content/public/common/sandbox_init.h" 5 #include "content/public/common/sandbox_init.h"
6 6
7 #include "base/files/scoped_file.h" 7 #include "base/files/scoped_file.h"
8 #include "base/memory/scoped_ptr.h" 8 #include "base/memory/scoped_ptr.h"
9 #include "content/common/sandbox_linux/sandbox_seccomp_bpf_linux.h" 9 #include "content/common/sandbox_linux/sandbox_seccomp_bpf_linux.h"
10 #include "sandbox/linux/bpf_dsl/policy.h" 10 #include "sandbox/linux/bpf_dsl/policy.h"
11 11
12 namespace content { 12 namespace content {
13 13
14 bool InitializeSandbox(scoped_ptr<sandbox::bpf_dsl::Policy> policy, 14 bool InitializeSandbox(scoped_ptr<sandbox::bpf_dsl::Policy> policy,
15 base::ScopedFD proc_fd) { 15 base::ScopedFD proc_fd) {
16 return SandboxSeccompBPF::StartSandboxWithExternalPolicy(policy.Pass(), 16 return SandboxSeccompBPF::StartSandboxWithExternalPolicy(policy.Pass(),
17 proc_fd.Pass()); 17 proc_fd.Pass());
18 } 18 }
19 19
20 #if !defined(OS_NACL_NONSFI)
20 scoped_ptr<sandbox::bpf_dsl::Policy> GetBPFSandboxBaselinePolicy() { 21 scoped_ptr<sandbox::bpf_dsl::Policy> GetBPFSandboxBaselinePolicy() {
21 return SandboxSeccompBPF::GetBaselinePolicy().Pass(); 22 return SandboxSeccompBPF::GetBaselinePolicy().Pass();
22 } 23 }
24 #endif
23 25
24 } // namespace content 26 } // namespace content
OLDNEW
« no previous file with comments | « components/nacl_nonsfi.gyp ('k') | content/common/sandbox_linux/sandbox_seccomp_bpf_linux.cc » ('j') | no next file with comments »

Powered by Google App Engine
This is Rietveld 408576698