Skip to content

Seccomp #1

@Danack

Description

@Danack

Even after containerisation, locking down ImageMagick to not be able to access the network would be good.

https://offbyinfinity.com/2017/12/sandboxing-imagemagick-with-nsjail/

https://github.com/google/nsjail

https://github.com/derwolfe/magicks-linux-seccomp-bpf

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions