From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from eggs.gnu.org ([2001:4830:134:3::10]:32833) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1VI0yB-0002kA-Ho for qemu-devel@nongnu.org; Fri, 06 Sep 2013 14:41:36 -0400 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1VI0y2-00031p-9L for qemu-devel@nongnu.org; Fri, 06 Sep 2013 14:41:23 -0400 Received: from e24smtp02.br.ibm.com ([32.104.18.86]:47033) by eggs.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1VI0y1-00030O-RS for qemu-devel@nongnu.org; Fri, 06 Sep 2013 14:41:14 -0400 Received: from /spool/local by e24smtp02.br.ibm.com with IBM ESMTP SMTP Gateway: Authorized Use Only! Violators will be prosecuted for from ; Fri, 6 Sep 2013 15:41:11 -0300 Received: from d24relay01.br.ibm.com (d24relay01.br.ibm.com [9.8.31.16]) by d24dlp01.br.ibm.com (Postfix) with ESMTP id C2AB63520060 for ; Fri, 6 Sep 2013 14:41:07 -0400 (EDT) Received: from d24av05.br.ibm.com (d24av05.br.ibm.com [9.18.232.44]) by d24relay01.br.ibm.com (8.13.8/8.13.8/NCO v10.0) with ESMTP id r86IaHFK2318512 for ; Fri, 6 Sep 2013 15:36:17 -0300 Received: from d24av05.br.ibm.com (d24av05 [127.0.0.1]) by d24av05.br.ibm.com (8.14.4/8.14.4/NCO v10.0 AVout) with ESMTP id r86If6GV017728 for ; Fri, 6 Sep 2013 14:41:07 -0400 Message-ID: <522A21C2.3010801@linux.vnet.ibm.com> Date: Fri, 06 Sep 2013 15:41:06 -0300 From: Eduardo Otubo MIME-Version: 1.0 References: <1378297508-7242-1-git-send-email-otubo@linux.vnet.ibm.com> <1530529.70Yh7p4t0h@sifl> In-Reply-To: <1530529.70Yh7p4t0h@sifl> Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit Subject: Re: [Qemu-devel] [PATCH] seccomp: adding times() to the whitelist List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , To: Paul Moore Cc: Paolo Bonzini , coreyb@linux.vnet.ibm.com, qemu-devel@nongnu.org Hello, Any chance to get this patch applied? Thanks! On 09/04/2013 11:11 AM, Paul Moore wrote: > On Wednesday, September 04, 2013 09:25:08 AM Eduardo Otubo wrote: >> This was causing Qemu process to hang when using -sandbox on. >> >> Related RHBZ: https://bugzilla.redhat.com/show_bug.cgi?id=1004175 >> >> Signed-off-by: Eduardo Otubo > > Works for me. > > Tested-by: Paul Moore > >> --- >> qemu-seccomp.c | 1 + >> 1 files changed, 1 insertions(+), 0 deletions(-) >> >> diff --git a/qemu-seccomp.c b/qemu-seccomp.c >> index 37d38f8..69cee44 100644 >> --- a/qemu-seccomp.c >> +++ b/qemu-seccomp.c >> @@ -90,6 +90,7 @@ static const struct QemuSeccompSyscall seccomp_whitelist[] >> = { { SCMP_SYS(getuid), 245 }, >> { SCMP_SYS(geteuid), 245 }, >> { SCMP_SYS(timer_create), 245 }, >> + { SCMP_SYS(times), 245 }, >> { SCMP_SYS(exit), 245 }, >> { SCMP_SYS(clock_gettime), 245 }, >> { SCMP_SYS(time), 245 }, > -- Eduardo Otubo IBM Linux Technology Center