mirror of https://github.com/mkerrisk/man-pages
proc.5: Document "Seccomp" field of /proc/PID/status
Signed-off-by: Michael Kerrisk <mtk.manpages@gmail.com>
This commit is contained in:
parent
068653012c
commit
039b6546fd
16
man5/proc.5
16
man5/proc.5
|
@ -1599,6 +1599,7 @@ CapInh: 0000000000000000
|
||||||
CapPrm: 0000000000000000
|
CapPrm: 0000000000000000
|
||||||
CapEff: 0000000000000000
|
CapEff: 0000000000000000
|
||||||
CapBnd: ffffffffffffffff
|
CapBnd: ffffffffffffffff
|
||||||
|
Seccomp: 0
|
||||||
Cpus_allowed: 00000001
|
Cpus_allowed: 00000001
|
||||||
Cpus_allowed_list: 0
|
Cpus_allowed_list: 0
|
||||||
Mems_allowed: 1
|
Mems_allowed: 1
|
||||||
|
@ -1711,6 +1712,21 @@ Capability Bounding set
|
||||||
(since Linux 2.6.26, see
|
(since Linux 2.6.26, see
|
||||||
.BR capabilities (7)).
|
.BR capabilities (7)).
|
||||||
.IP *
|
.IP *
|
||||||
|
.IR Seccomp :
|
||||||
|
.\" commit 2f4b3bf6b2318cfaa177ec5a802f4d8d6afbd816
|
||||||
|
Seccomp mode of the process
|
||||||
|
(since Linux 3.8, see
|
||||||
|
.BR seccomp (2)).
|
||||||
|
0 means
|
||||||
|
.BR SECCOMP_MODE_DISABLED ;
|
||||||
|
1 means
|
||||||
|
.BR SECCOMP_MODE_STRICT ;
|
||||||
|
2 means
|
||||||
|
.BR SECCOMP_MODE_FILTER .
|
||||||
|
This field is provided only if the kernel was built with the
|
||||||
|
.BR CONFIG_SECCOMP
|
||||||
|
kernel configuration option enabled.
|
||||||
|
.IP *
|
||||||
.IR Cpus_allowed :
|
.IR Cpus_allowed :
|
||||||
Mask of CPUs on which this process may run
|
Mask of CPUs on which this process may run
|
||||||
(since Linux 2.6.24, see
|
(since Linux 2.6.24, see
|
||||||
|
|
Loading…
Reference in New Issue