use std::fs;
use restrict::{syscall::Syscall, *};
use policy::Policy;
fn main() -> Result<(), SeccompError> {
let mut filter = Policy::allow_all()?;
filter
.fail_with(Syscall::Openat, 44);
filter.apply()?;
let _read_fs = fs::read("test.txt").unwrap();
println!("This read will fail with errno 44 `Channel number is out of range`");
Ok(())
}