aboutsummaryrefslogtreecommitdiffstats
path: root/src/man
diff options
context:
space:
mode:
authorLibravatar smitsohu <smitsohu@gmail.com>2021-06-21 01:26:17 +0200
committerLibravatar smitsohu <smitsohu@gmail.com>2021-06-21 01:26:17 +0200
commit435d739d961cc71406db8114d3040999d096d2fa (patch)
treeb558a9a00992a2273d68109e18ab7a639d9246f4 /src/man
parentcleanup (diff)
downloadfirejail-435d739d961cc71406db8114d3040999d096d2fa.tar.gz
firejail-435d739d961cc71406db8114d3040999d096d2fa.tar.zst
firejail-435d739d961cc71406db8114d3040999d096d2fa.zip
tmpfs option enhancements
* downgrade error to warning, smiliar to read-write option; this simplifies use of tmpfs option in general purpose profiles, for example we don't need to worry about links people put in their homedir * update manpage
Diffstat (limited to 'src/man')
-rw-r--r--src/man/firejail-profile.txt2
-rw-r--r--src/man/firejail.txt5
2 files changed, 3 insertions, 4 deletions
diff --git a/src/man/firejail-profile.txt b/src/man/firejail-profile.txt
index 6f3bef7f2..db58e0910 100644
--- a/src/man/firejail-profile.txt
+++ b/src/man/firejail-profile.txt
@@ -420,7 +420,7 @@ Make directory or file read-only.
420Make directory or file read-write. 420Make directory or file read-write.
421.TP 421.TP
422\fBtmpfs directory 422\fBtmpfs directory
423Mount an empty tmpfs filesystem on top of directory. This option is available only when running the sandbox as root. 423Mount an empty tmpfs filesystem on top of directory. Directories outside user home or not owned by the user are not allowed. Sandboxes running as root are exempt from these restrictions.
424.TP 424.TP
425\fBtracelog 425\fBtracelog
426Blacklist violations logged to syslog. 426Blacklist violations logged to syslog.
diff --git a/src/man/firejail.txt b/src/man/firejail.txt
index 3212a88e4..4a2e520c5 100644
--- a/src/man/firejail.txt
+++ b/src/man/firejail.txt
@@ -2566,14 +2566,13 @@ Kill the sandbox automatically after the time has elapsed. The time is specified
2566$ firejail \-\-timeout=01:30:00 firefox 2566$ firejail \-\-timeout=01:30:00 firefox
2567.TP 2567.TP
2568\fB\-\-tmpfs=dirname 2568\fB\-\-tmpfs=dirname
2569Mount a writable tmpfs filesystem on directory dirname. This option is available only when running the sandbox as root. 2569Mount a writable tmpfs filesystem on directory dirname. Directories outside user home or not owned by the user are not allowed. Sandboxes running as root are exempt from these restrictions. File globbing is supported, see \fBFILE GLOBBING\fR section for more details.
2570File globbing is supported, see \fBFILE GLOBBING\fR section for more details.
2571.br 2570.br
2572 2571
2573.br 2572.br
2574Example: 2573Example:
2575.br 2574.br
2576# firejail \-\-tmpfs=/var 2575$ firejail \-\-tmpfs=~/.local/share
2577.TP 2576.TP
2578\fB\-\-top 2577\fB\-\-top
2579Monitor the most CPU-intensive sandboxes, see \fBMONITORING\fR section for more details. 2578Monitor the most CPU-intensive sandboxes, see \fBMONITORING\fR section for more details.