Loading...

Sandboxing the python interpreter using seccomp-nurse

1,027 views

Loading...

Loading...

Rating is available when the video has been rented.
This feature is not available right now. Please try again later.
Published on Apr 11, 2011

This video shows the sandboxing of /usr/bin/python using seccomp-nurse (http://chdir.org/~nico/seccomp-nurse/).

In this video, you can see that you can use Python like usual: importing modules, opening files, etc.

For this screencast, the ACL policy engine was configured to limit open() to only allow files in whitelisted directories. However, no security checks were made for the access() syscall (thus action is executed).

Loading...

When autoplay is enabled, a suggested video will automatically play next.

Up next


to add this to Watch Later

Add to

Loading playlists...