|Sandboxing in Fuchsia|
|By Thom Holwerda on 2017-06-16 22:53:15|
On Fuchsia, a newly created process has nothing. A newly created process cannot access any kernel objects, cannot allocate memory, and cannot even execute code. Of course, such a process isn't very useful, which is why we typically create processes with some initial resources and capabilities.
Most commonly, a process starts executing some code with an initial stack, some command line arguments, environment variables, a set of initial handles. One of the most important initial handles is the
Not the most detailed description just yet, but Fuchsia seems to be getting fleshed out more and more.
- Genode 18.02 introduces Sculpt OS - 2018-03-09
- Tock: a secure embedded operating system - 2017-11-08
- An open letter to Intel - 2017-11-07
- PC-MOS released under GPL - 2017-10-21
- More related articles