syscalls_amd64.go 1.3 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243
  1. //go:build linux && amd64
  2. package nodejs_syscall
  3. import "syscall"
  4. var ALLOW_SYSCALLS = []int{
  5. syscall.SYS_OPEN, syscall.SYS_WRITE, syscall.SYS_CLOSE, syscall.SYS_READ,
  6. syscall.SYS_OPENAT, syscall.SYS_NEWFSTATAT, syscall.SYS_IOCTL, syscall.SYS_LSEEK,
  7. syscall.SYS_FSTAT,
  8. syscall.SYS_MPROTECT, syscall.SYS_MMAP, syscall.SYS_MUNMAP,
  9. syscall.SYS_BRK,
  10. syscall.SYS_RT_SIGACTION, syscall.SYS_RT_SIGPROCMASK,
  11. syscall.SYS_MADVISE, syscall.SYS_GETPID, syscall.SYS_GETUID,
  12. syscall.SYS_FCNTL, syscall.SYS_SIGALTSTACK,
  13. syscall.SYS_FUTEX,
  14. syscall.SYS_EXIT_GROUP,
  15. syscall.SYS_EPOLL_CTL,
  16. syscall.SYS_EPOLL_PWAIT,
  17. syscall.SYS_SETUID, syscall.SYS_SETGID,
  18. syscall.SYS_CLOCK_GETTIME, syscall.SYS_GETTIMEOFDAY, syscall.SYS_NANOSLEEP,
  19. syscall.SYS_TIME,
  20. syscall.SYS_TGKILL,
  21. syscall.SYS_READLINK,
  22. syscall.SYS_DUP3,
  23. }
  24. var ALLOW_ERROR_SYSCALLS = []int{
  25. syscall.SYS_CLONE,
  26. }
  27. var ALLOW_NETWORK_SYSCALLS = []int{
  28. syscall.SYS_SOCKET, syscall.SYS_CONNECT, syscall.SYS_BIND, syscall.SYS_LISTEN, syscall.SYS_ACCEPT, syscall.SYS_SENDTO, syscall.SYS_RECVFROM,
  29. syscall.SYS_GETSOCKNAME, syscall.SYS_RECVMSG, syscall.SYS_GETPEERNAME, syscall.SYS_SETSOCKOPT, syscall.SYS_PPOLL, syscall.SYS_UNAME,
  30. syscall.SYS_SENDMSG, syscall.SYS_GETSOCKOPT,
  31. syscall.SYS_IOCTL, syscall.SYS_LSEEK,
  32. syscall.SYS_FSTAT, syscall.SYS_FCNTL, syscall.SYS_FSTATFS,
  33. }