Support people love to get the output from strace. Often it's "strace program" but it's almost as common to do "strace -p". Doesn't "strace -f" also require attaching to a process in the same way that "strace -p" does?

You're making the system more secure, sure, but you're making the life of the support people rather harder as well.

Re: strace for support?

Yes. But support people will know how to turn off the feature. Users will not know how to turn it on.

