summaryrefslogtreecommitdiff
path: root/system/systrace/README
diff options
context:
space:
mode:
authorB. Watson <yalhcru@gmail.com>2013-06-04 17:15:44 -0400
committerRobby Workman <rworkman@slackbuilds.org>2013-06-05 03:17:46 -0500
commit128fdc9ce0e44590049f7a2c649b37dd77d21054 (patch)
treebf0b4ebf9dc041d7dc7464270f3843a619529dac /system/systrace/README
parent2502f463549e48b84933d76fbf70e333a8a39b21 (diff)
downloadslackbuilds-128fdc9ce0e44590049f7a2c649b37dd77d21054.tar.gz
system/systrace: Added (interactive policy gen. for system calls)
Signed-off-by: dsomero <xgizzmo@slackbuilds.org>
Diffstat (limited to 'system/systrace/README')
-rw-r--r--system/systrace/README12
1 files changed, 12 insertions, 0 deletions
diff --git a/system/systrace/README b/system/systrace/README
new file mode 100644
index 0000000000..ed5bd49364
--- /dev/null
+++ b/system/systrace/README
@@ -0,0 +1,12 @@
+systrace (interactive policy generation for system calls)
+
+Systrace enforces system call policies for applications by constraining
+the application's access to the system. The policy is generated
+interactively. Operations not covered by the policy raise an alarm,
+allowing an user to refine the currently configured policy.
+
+By default, this build includes a GTK+ GUI frontend (gtk-systrace), which
+will be started by systrace as needed. To build without the GUI (e.g. for
+use on headless servers), set GUI=no in the script's environment. In
+this case, you'll have to run systrace with the -t option to prevent it
+trying to start the nonexistant GUI.