docs icon indicating copy to clipboard operation
docs copied to clipboard

Please add io_uring to the list of significant syscalls blocked by the default profile

Open sitsofe opened this issue 1 month ago • 0 comments

Is this a docs issue?

  • [x] My issue is about the documentation content or website

Type of issue

Information is incorrect

Description

The io_uring_* syscalls are missing from the significant syscalls blocked table on https://docs.docker.com/engine/security/seccomp/#significant-syscalls-blocked-by-the-default-profile .

Location

https://docs.docker.com/engine/security/seccomp/

Suggestion

Please can can you add the individual io_uring_* syscalls to the table of significant syscalls blocked by default? https://github.com/moby/moby/pull/46762 is the commit that switched docker to blocking them and hopefully by listing them in the docs it will help people open things up just enough rather than reaching straight for --security-opt seccomp=unconfined if they need to use io_uring...

sitsofe avatar Nov 27 '25 16:11 sitsofe