Hacker News
new
past
comments
ask
show
jobs
points
by
PunchyHamster
3 hours ago
|
comments
by
staticassertion
1 hours ago
|
next
[-]
The reason is that it's very rarely used and has a history of issues.
reply
by
cduzz
2 hours ago
|
prev
|
next
[-]
I'd have guessed that the default paranoia-first policy would be "drop everything; verify what you need" which would include AF_ALG.
share and enjoy!
reply
by
SV_BubbleTime
2 hours ago
|
prev
|
[-]
>might as well block every socket and just multiplex everything on stdin/out
You may be on to something…
reply