Tunney: Porting OpenBSD pledge() to Linux
Justine Tunney has created animplementation of the OpenBSD pledge() system call for Linux.
OpenBSD limits security to a small pond, but makes it easy. Linuxis a big tent, but makes it impossibly hard. SECCOMP BPF might aswell be the Traditional Chinese of programming languages, sinceonly a small number of people who've devoted the oodles of time ittakes to understand code like what you see above have actually beenable to benefit from it.