-systrace (interactive policy generation for system calls)
-Systrace enforces system call policies for applications by constraining
-the application's access to the system. The policy is generated
-interactively. Operations not covered by the policy raise an alarm,
-allowing an user to refine the currently configured policy.
-By default, this build includes a GTK+ GUI frontend (gtk-systrace), which
-will be started by systrace as needed. To build without the GUI (e.g. for
-use on headless servers), set GUI=no in the script's environment. In
-this case, you'll have to run systrace with the -t option to prevent it
-trying to start the nonexistant GUI.
-# The "handy ruler" below makes it easier to edit a package description.
-# Line up the first '|' above the ':' following the base package name, and
-# the '|' on the right side marks the last column you can put a character in.
-# You must make exactly 11 lines for the formatting to be correct. It's also
-# customary to leave one space after the ':' except on otherwise blank lines.
- |-----handy-ruler------------------------------------------------------|
-systrace: systrace (interactive policy generation for system calls)
-systrace: Systrace enforces system call policies for applications by constraining
-systrace: the application's access to the system. The policy is generated
-systrace: interactively. Operations not covered by the policy raise an alarm,
-systrace: allowing an user to refine the currently configured policy.
