artulab
projects
/
openbsd
/ commitdiff
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
| commitdiff |
tree
raw
|
patch
| inline |
side by side
(parent:
f42d00b
)
relayd's ca process pledges to only use stdio.
author
benno
<benno@openbsd.org>
Sat, 10 Oct 2015 00:16:23 +0000
(
00:16
+0000)
committer
benno
<benno@openbsd.org>
Sat, 10 Oct 2015 00:16:23 +0000
(
00:16
+0000)
ok deraadt@
usr.sbin/relayd/ca.c
patch
|
blob
|
history
diff --git
a/usr.sbin/relayd/ca.c
b/usr.sbin/relayd/ca.c
index
81f9971
..
977151b
100644
(file)
--- a/
usr.sbin/relayd/ca.c
+++ b/
usr.sbin/relayd/ca.c
@@
-1,4
+1,4
@@
-/* $OpenBSD: ca.c,v 1.1
3 2015/05/02 13:15:24 claudio Exp $
*/
+/* $OpenBSD: ca.c,v 1.1
4 2015/10/10 00:16:23 benno Exp $
*/
/*
* Copyright (c) 2014 Reyk Floeter <reyk@openbsd.org>
@@
-73,6
+73,9
@@
ca(struct privsep *ps, struct privsep_proc *p)
void
ca_init(struct privsep *ps, struct privsep_proc *p, void *arg)
{
+ if (pledge("stdio", NULL) == -1)
+ fatal("pledge");
+
if (config_init(ps->ps_env) == -1)
fatal("failed to initialize configuration");