Name |
Last commit
|
Last update |
---|---|---|
.github/workflows | ||
bin | ||
contrib | ||
kconfig_hardened_check | ||
.gitignore | ||
LICENSE.txt | ||
MANIFEST.in | ||
README.md | ||
default.nix | ||
setup.cfg | ||
setup.py |
CLIP OS wiki and Kees say that BPF interpreter is worse for the kernel security than BPF_JIT. So for now I withdraw my recommendation about BPF_JIT. N.B. LOCKDOWN disables BPF_SYSCALL, but not BPF_JIT.
Name |
Last commit
|
Last update |
---|---|---|
.github/workflows | Loading commit data... | |
bin | Loading commit data... | |
contrib | Loading commit data... | |
kconfig_hardened_check | Loading commit data... | |
.gitignore | Loading commit data... | |
LICENSE.txt | Loading commit data... | |
MANIFEST.in | Loading commit data... | |
README.md | Loading commit data... | |
default.nix | Loading commit data... | |
setup.cfg | Loading commit data... | |
setup.py | Loading commit data... |