automation-tests/common
Jacob Emmert-Aronson 8d0bbae800 Add a hint for misconfigured helper_binaries_dir
Signed-off-by: Jacob Emmert-Aronson <jacob@roadnottaken2718.com>
2021-10-23 14:50:57 -07:00
..
.github Remove `vendor` from dependabot config 2021-03-10 13:58:55 +01:00
cmd/seccomp Migrate seccomp/containers-golang 2020-08-27 10:15:31 +02:00
docs Moved containerfile man page to buildah 2021-10-01 14:51:49 -04:00
libimage libimage: speed up image filters 2021-10-19 15:30:06 +02:00
logos rename images to logos 2021-04-06 11:24:38 +02:00
pkg Add a hint for misconfigured helper_binaries_dir 2021-10-23 14:50:57 -07:00
tests new libimage package 2021-04-21 11:17:47 +02:00
tools seccomp: add CI check for up-to-date seccomp.json 2021-01-27 21:40:45 +11:00
vendor build(deps): bump github.com/onsi/ginkgo from 1.16.4 to 1.16.5 2021-10-12 04:39:50 +00:00
version Move to v0.46.1-dev 2021-09-24 14:38:56 -04:00
.cirrus.yml Cirrus: Freshen VM images 2021-09-14 11:41:16 -04:00
.gitignore Migrate seccomp/containers-golang 2020-08-27 10:15:31 +02:00
.golangci.yml new libimage package 2021-04-21 11:17:47 +02:00
CODE-OF-CONDUCT.md Initial Code of Conduct 2020-02-01 16:35:55 -05:00
CONTRIBUTING.md fix typo 2018-12-10 12:57:11 +01:00
LICENSE add Apache 2.0 license file 2019-11-18 10:41:54 +01:00
Makefile Remove no_libsubid flag 2021-08-10 13:20:10 -04:00
OWNERS add @Luap99 to OWNERS 2021-06-10 11:08:52 +02:00
README.md Fix `pkg/sysctl` path typo 2021-08-16 20:36:46 -05:00
SECURITY.md Touch up Security title 2020-05-04 17:47:51 -04:00
go.mod build(deps): bump github.com/onsi/ginkgo from 1.16.4 to 1.16.5 2021-10-12 04:39:50 +00:00
go.sum build(deps): bump github.com/onsi/ginkgo from 1.16.4 to 1.16.5 2021-10-12 04:39:50 +00:00

README.md

containers/common

Location for shared common files and common go code to manage those files in github.com/containers repos.

The common files to one or more projects in the containers group will be kept in this repository.

It will be up to the individual projects to include the files from this repository.

seccomp

The seccomp package in pkg/seccomp is a set of Go libraries used by container runtimes to generate and load seccomp mappings into the kernel.

seccomp (short for secure computing mode) is a BPF based syscall filter language and present a more conventional function-call based filtering interface that should be familiar to, and easily adopted by, application developers.

Building the seccomp.json file

The make target make seccomp.json generates the seccomp.json file, which contains the allowed list of syscalls that can be used by container runtime engines like CRI-O, Buildah, Podman and Docker, and container runtimes like OCI Runc to control the syscalls available to containers.

Supported build tags

Contributing

When developing this library, please use make (or make … BUILDTAGS=…) to take advantage of the tests and validation.

Contact