Capability mode
• ࢦఆͨ͠ϓϩηεΛsandboxԽ͢ΔsyscallͷՃ
• cap_enter()ɹ˞ϑϥάΛཱͯΔ͚ͩ
• ϓϩηεcap_enter()ޙʹglobal namespace͔Βִ
͞ΕΔ
• *atܥʢ૬ରύεʹΑΔϑΝΠϧૢ࡞ʣͷΈར༻Մೳ
• global namespace = (PID, File paths, NFS file handle, File
System ID, Protocol Address, System V IPC, POSIX IPC, Jail... )
※sysctl30ݸexplicitʹڐՄɽ͋ͱdenied
sysctl, shm_openಗ໊ϝϞϦΦϒδΣΫτ
ͷΈ࡞Մೳ
(Extended kernel)