• [object Object]@lemmy.world
    link
    fedilink
    arrow-up
    3
    ·
    edit-2
    12 hours ago

    That raises the question of how their ps, top, lsof and such work, since afaik in Linux they read from /proc.

    P.S. Looks like BSDs tug at the kernel via syscalls, namely sysctl and also the ‘kvm interface’ in the case of MacOS (not sure what ‘kvm’ thing is meant here). Seems vaguely reasonable, since procfs also queries the kernel for the info, so about the same resources would be used, perhaps even with the overhead of filesystem traversal and string-numbers conversion.

    • provectus@lemmy.ml
      link
      fedilink
      English
      arrow-up
      1
      ·
      4 hours ago

      I might be mistaken, but I think kvm stands for kernel virtual machine. Having no /proc, and interacting with sysctl instead sounds more secure, IMO.

      • [object Object]@lemmy.world
        link
        fedilink
        arrow-up
        1
        ·
        1 minute ago

        Some pseudofiles under /proc are only readable by the user running the process, and of course root can read everything. So it’s the standard Unix security model, afaics.

        For example, any process’ command-line arguments are famously visible to everyone, while the environment variables only to the user of the process.