[RFC PATCH 2/7] x86/sci: add core implementation for system call isolation

James Morris jmorris at namei.org
Mon Apr 29 18:26:59 UTC 2019


On Sat, 27 Apr 2019, Ingo Molnar wrote:

>  - A C language runtime that is a subset of current C syntax and 
>    semantics used in the kernel, and which doesn't allow access outside 
>    of existing objects and thus creates a strictly enforced separation 
>    between memory used for data, and memory used for code and control 
>    flow.

Might be better to start with Rust.


-- 
James Morris
<jmorris at namei.org>



More information about the Linux-security-module-archive mailing list