CAP_SANDBOXED(3) | MidnightBSD Library Functions Manual | CAP_SANDBOXED(3) |
cap_sandboxed
—
Check if in a capability mode sandbox
Standard C Library (libc, -lc)
#include
<sys/capsicum.h>
#include <stdbool.h>
bool
cap_sandboxed
(void);
cap_sandboxed
()
returns true if the process is in a capability mode
sandbox or false if it is not. This function is a more
handy alternative to the
cap_getmode(2)
system call as it always succeeds, so there is no need for error checking.
If the support for capability mode is not compiled into the kernel,
cap_sandboxed
() will always return
false.
Function cap_sandboxed
() is always
successful and will return either true or
false.
The cap_sandboxed
() function first
appeared in FreeBSD 9.2.
This function was implemented and manual page was written by Pawel Jakub Dawidek <pawel@dawidek.net> under sponsorship of the FreeBSD Foundation.
May 5, 2020 | midnightbsd-3.1 |