cgroups: restrict allowed keys in 'unified' section
[project/procd.git] / jail / seccomp-oci.h
1 /*
2 * Copyright (C) 2020 Daniel Golle <daniel@makrotopia.org>
3 *
4 * This program is free software; you can redistribute it and/or modify
5 * it under the terms of the GNU Lesser General Public License version 2.1
6 * as published by the Free Software Foundation
7 *
8 * This program is distributed in the hope that it will be useful,
9 * but WITHOUT ANY WARRANTY; without even the implied warranty of
10 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
11 * GNU General Public License for more details.
12 */
13 #ifndef _JAIL_SECCOMP_OCI_H_
14 #define _JAIL_SECCOMP_OCI_H_
15
16 #include <linux/filter.h>
17
18 struct sock_fprog *parseOCIlinuxseccomp(struct blob_attr *msg);
19 int applyOCIlinuxseccomp(struct sock_fprog *prog);
20
21 #ifndef SECCOMP_SUPPORT
22 struct sock_fprog *parseOCIlinuxseccomp(struct blob_attr *msg) {
23 return NULL;
24 }
25
26 int applyOCIlinuxseccomp(struct sock_fprog *prog) {
27 return ENOTSUP;
28 }
29 #endif
30
31 #endif