This bug is to track progress on getting a seccomp-bpf sandbox on Android.
Here are the loose steps:
- Get sandbox/ to compile and the unit tests to pass (requires modifications to the GYP file and additions of files to the Android NDK)
- Get seccomp-bpf wired-in Chrome for Android (get an AllowAll policy applied to renderers
- Write a real layer-2 (layer-1 is uid separation) sandbox for Android