diff options
author | 2022-12-21 23:39:42 +0000 | |
---|---|---|
committer | 2022-12-21 23:39:42 +0000 | |
commit | ec44e1d8ca29dd023f20a64eb65a56e7d869af76 (patch) | |
tree | 93799f4fd787ec55dbb9032c946515ef8af09379 /etc/inc/disable-proc.inc | |
parent | New profile: ssmtp (#5544) (diff) | |
download | firejail-ec44e1d8ca29dd023f20a64eb65a56e7d869af76.tar.gz firejail-ec44e1d8ca29dd023f20a64eb65a56e7d869af76.tar.zst firejail-ec44e1d8ca29dd023f20a64eb65a56e7d869af76.zip |
clarify that duplicated blacklisting of /proc/config.gz is intentional (#5548)
* add comment on intentional duplication of blacklisted kernel configuration
* disable-proc.inc: update the duplication comment
* disable-common.inc: add duplication notice for kernel configuration
Diffstat (limited to 'etc/inc/disable-proc.inc')
-rw-r--r-- | etc/inc/disable-proc.inc | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/etc/inc/disable-proc.inc b/etc/inc/disable-proc.inc index 81a8883f3..7cb1ec2ab 100644 --- a/etc/inc/disable-proc.inc +++ b/etc/inc/disable-proc.inc | |||
@@ -8,7 +8,7 @@ blacklist /proc/bootconfig | |||
8 | blacklist /proc/buddyinfo | 8 | blacklist /proc/buddyinfo |
9 | blacklist /proc/cgroups | 9 | blacklist /proc/cgroups |
10 | blacklist /proc/cmdline | 10 | blacklist /proc/cmdline |
11 | blacklist /proc/config.gz | 11 | blacklist /proc/config.gz # keep this here even though it's also in disable-common.inc |
12 | blacklist /proc/consoles | 12 | blacklist /proc/consoles |
13 | #blacklist /proc/cpuinfo | 13 | #blacklist /proc/cpuinfo |
14 | blacklist /proc/crypto | 14 | blacklist /proc/crypto |