Chromium Code Reviews
chromiumcodereview-hr@appspot.gserviceaccount.com (chromiumcodereview-hr) | Please choose your nickname with Settings | Help | Chromium Project | Gerrit Changes | Sign out
(51)

Issue 10836243: Add basic ARM policy to seccomp-bpf sandbox. (Closed)

Created:
8 years, 4 months ago by Jorge Lucangeli Obes
Modified:
8 years, 4 months ago
CC:
chromium-reviews, joi+watch-content_chromium.org, darin-cc_chromium.org, jam, agl, jln+watch_chromium.org
Base URL:
http://git.chromium.org/chromium/src.git@master
Visibility:
Public.

Description

Add basic ARM policy to seccomp-bpf sandbox. BUG=141157 TEST=about:sandbox on daisy shows "Seccomp-BPF Yes". Committed: http://src.chromium.org/viewvc/chrome?view=rev&revision=151650

Patch Set 1 #

Total comments: 20

Patch Set 2 : Address jln's comments. #

Patch Set 3 : Add newline. #

Total comments: 10

Patch Set 4 : Addressed more comments. #

Total comments: 2

Patch Set 5 : Fix nits. #

Unified diffs Side-by-side diffs Delta from patch set Stats (+43 lines, -6 lines) Patch
M content/common/sandbox_seccomp_bpf_linux.cc View 1 2 3 4 5 chunks +15 lines, -6 lines 0 comments Download
A sandbox/linux/services/arm_linux_syscalls.h View 1 2 3 1 chunk +28 lines, -0 lines 0 comments Download

Messages

Total messages: 10 (0 generated)
Jorge Lucangeli Obes
Still trying to decide whether to include all ARM syscalls now, or just include the ...
8 years, 4 months ago (2012-08-14 18:59:21 UTC) #1
jln (very slow on Chromium)
https://chromiumcodereview.appspot.com/10836243/diff/1/content/common/sandbox_seccomp_bpf_linux.cc File content/common/sandbox_seccomp_bpf_linux.cc (right): https://chromiumcodereview.appspot.com/10836243/diff/1/content/common/sandbox_seccomp_bpf_linux.cc#newcode51 content/common/sandbox_seccomp_bpf_linux.cc:51: inline bool IsARM() { You're not using it at ...
8 years, 4 months ago (2012-08-14 19:10:34 UTC) #2
jln (very slow on Chromium)
https://chromiumcodereview.appspot.com/10836243/diff/1/content/common/sandbox_seccomp_bpf_linux.cc File content/common/sandbox_seccomp_bpf_linux.cc (right): https://chromiumcodereview.appspot.com/10836243/diff/1/content/common/sandbox_seccomp_bpf_linux.cc#newcode38 content/common/sandbox_seccomp_bpf_linux.cc:38: #include "sandbox/linux/services/arm_linux_syscalls.h" Once you're confident arm is well covered, ...
8 years, 4 months ago (2012-08-14 20:11:50 UTC) #3
Jorge Lucangeli Obes
PTAL https://chromiumcodereview.appspot.com/10836243/diff/1/content/common/sandbox_seccomp_bpf_linux.cc File content/common/sandbox_seccomp_bpf_linux.cc (right): https://chromiumcodereview.appspot.com/10836243/diff/1/content/common/sandbox_seccomp_bpf_linux.cc#newcode38 content/common/sandbox_seccomp_bpf_linux.cc:38: #include "sandbox/linux/services/arm_linux_syscalls.h" On 2012/08/14 20:11:50, Julien Tinnes wrote: ...
8 years, 4 months ago (2012-08-14 21:58:06 UTC) #4
jln (very slow on Chromium)
Looks good with a few minor issues. https://chromiumcodereview.appspot.com/10836243/diff/8002/content/common/sandbox_seccomp_bpf_linux.cc File content/common/sandbox_seccomp_bpf_linux.cc (right): https://chromiumcodereview.appspot.com/10836243/diff/8002/content/common/sandbox_seccomp_bpf_linux.cc#newcode38 content/common/sandbox_seccomp_bpf_linux.cc:38: #include "sandbox/linux/services/arm_linux_syscalls.h" ...
8 years, 4 months ago (2012-08-14 22:19:32 UTC) #5
Jorge Lucangeli Obes
PTAL. Thanks! https://chromiumcodereview.appspot.com/10836243/diff/8002/content/common/sandbox_seccomp_bpf_linux.cc File content/common/sandbox_seccomp_bpf_linux.cc (right): https://chromiumcodereview.appspot.com/10836243/diff/8002/content/common/sandbox_seccomp_bpf_linux.cc#newcode38 content/common/sandbox_seccomp_bpf_linux.cc:38: #include "sandbox/linux/services/arm_linux_syscalls.h" On 2012/08/14 22:19:32, Julien Tinnes ...
8 years, 4 months ago (2012-08-14 22:40:45 UTC) #6
jln (very slow on Chromium)
LGTM (with nits so minor that you should feel free to skip). https://chromiumcodereview.appspot.com/10836243/diff/11001/content/common/sandbox_seccomp_bpf_linux.cc File content/common/sandbox_seccomp_bpf_linux.cc ...
8 years, 4 months ago (2012-08-14 22:51:45 UTC) #7
Jorge Lucangeli Obes
On 2012/08/14 22:51:45, Julien Tinnes wrote: > LGTM > > (with nits so minor that ...
8 years, 4 months ago (2012-08-15 02:20:20 UTC) #8
commit-bot: I haz the power
CQ is trying da patch. Follow status at https://chromium-status.appspot.com/cq/jorgelo@chromium.org/10836243/12001
8 years, 4 months ago (2012-08-15 02:30:24 UTC) #9
commit-bot: I haz the power
8 years, 4 months ago (2012-08-15 04:21:59 UTC) #10
Change committed as 151650

Powered by Google App Engine
This is Rietveld 408576698