changeset 5244:5ebd308638cd draft

privsep: inet processes no longer need inet pledge
author Roy Marples <roy@marples.name>
date Wed, 20 May 2020 17:27:07 +0100
parents 0d5671483751
children 05b76a4875e0
files src/privsep-inet.c
diffstat 1 files changed, 2 insertions(+), 2 deletions(-) [+]
line wrap: on
line diff
--- a/src/privsep-inet.c	Wed May 20 17:14:12 2020 +0100
+++ b/src/privsep-inet.c	Wed May 20 17:27:07 2020 +0100
@@ -313,7 +313,7 @@
 		logerr("%s: cap_enter", __func__);
 #endif
 #ifdef HAVE_PLEDGE
-	if (pid == 0 && pledge("stdio inet", NULL) == -1)
+	if (pid == 0 && pledge("stdio", NULL) == -1)
 		logerr("%s: pledge", __func__);
 #endif
 
@@ -567,7 +567,7 @@
 			logerr("%s: cap_enter", __func__);
 #endif
 #ifdef HAVE_PLEDGE
-		if (pledge("stdio inet", NULL) == -1)
+		if (pledge("stdio", NULL) == -1)
 			logerr("%s: pledge", __func__);
 #endif
 		break;