aboutsummaryrefslogtreecommitdiffstats
path: root/etc
diff options
context:
space:
mode:
authorLibravatar glitsj16 <glitsj16@users.noreply.github.com>2019-12-19 19:36:08 +0000
committerLibravatar GitHub <noreply@github.com>2019-12-19 19:36:08 +0000
commit81997259ef3d28193e806d1e413c562927fd7631 (patch)
tree219dd2e361c8e2a48466b33fa1d3fd74de1a0759 /etc
parentFix private-etc ordering in seahorse-tool (diff)
downloadfirejail-81997259ef3d28193e806d1e413c562927fd7631.tar.gz
firejail-81997259ef3d28193e806d1e413c562927fd7631.tar.zst
firejail-81997259ef3d28193e806d1e413c562927fd7631.zip
Fix Brave's native sandbox (#3087)
* Allow user access to /proc/config.gz * Fix Brave's native sandbox * Move /proc/config.gz to disable-common.inc * Move /proc/config.gz to disable-common.inc
Diffstat (limited to 'etc')
-rw-r--r--etc/brave.profile3
-rw-r--r--etc/disable-common.inc3
2 files changed, 6 insertions, 0 deletions
diff --git a/etc/brave.profile b/etc/brave.profile
index 29130ea5f..35c59f5a3 100644
--- a/etc/brave.profile
+++ b/etc/brave.profile
@@ -25,5 +25,8 @@ whitelist ${HOME}/.config/brave
25whitelist ${HOME}/.config/brave-flags.conf 25whitelist ${HOME}/.config/brave-flags.conf
26whitelist ${HOME}/.gnupg 26whitelist ${HOME}/.gnupg
27 27
28# Brave sandbox needs read access to /proc/config.gz
29noblacklist /proc/config.gz
30
28# Redirect 31# Redirect
29include chromium-common.profile 32include chromium-common.profile
diff --git a/etc/disable-common.inc b/etc/disable-common.inc
index 137e4f8bd..16f231108 100644
--- a/etc/disable-common.inc
+++ b/etc/disable-common.inc
@@ -452,3 +452,6 @@ blacklist ${HOME}/Mail
452blacklist ${HOME}/mail 452blacklist ${HOME}/mail
453blacklist ${HOME}/postponed 453blacklist ${HOME}/postponed
454blacklist ${HOME}/sent 454blacklist ${HOME}/sent
455
456# kernel configuration
457blacklist /proc/config.gz