Pare down the iOS WebContent Process sandbox to only things actually needed by WebKit.
Created attachment 329046 [details] Patch
Pare down the set of sandbox exceptions in the iOS WebContent process sandbox to just those services actually in use: 1. Remove unused code. 2. Instead of defining a 'UIKit-app' function and calling it, just declare the individual sandbox commands inline. This will allow them to be more easily consolidated with other parts of the sandbox in a future step.
These sandbox edits should not produce any change in behavior, since these are user interface features used by applications, not things needed by WebKit.
Comment on attachment 329046 [details] Patch rs=me
Committed r225763: <https://trac.webkit.org/changeset/225763>
<rdar://problem/35982266>