cap_sandboxed
—
Check if in a capability mode sandbox
Standard C Library (libc, -lc)
cap_sandboxed
() returns true if
the process is in a capability mode sandbox or false if
it is not. This function is a more handy alternative to the
cap_getmode(2)
system call as it always succeeds, so there is no need for error checking. If
the support for capability mode is not compiled into the kernel,
cap_sandboxed
() will always return
false.
Function cap_sandboxed
() is always successful and will
return either true or false.
The cap_sandboxed
() function first appeared in
FreeBSD 9.2.
This function was implemented and manual page was written by
Pawel Jakub Dawidek
<pawel@dawidek.net>
under sponsorship of the FreeBSD Foundation.