diff options
author | 2016-08-25 09:15:50 -0400 | |
---|---|---|
committer | 2016-08-25 09:15:50 -0400 | |
commit | 3880034da5e0f8e387dd8cf79d8b973aaa87fffe (patch) | |
tree | 11cc6fa95f57475f68708d7ca8835ffb0e520b7e /todo | |
parent | Merge pull request #743 from manevich/security (diff) | |
download | firejail-3880034da5e0f8e387dd8cf79d8b973aaa87fffe.tar.gz firejail-3880034da5e0f8e387dd8cf79d8b973aaa87fffe.tar.zst firejail-3880034da5e0f8e387dd8cf79d8b973aaa87fffe.zip |
command name fix
Diffstat (limited to 'todo')
-rw-r--r-- | todo | 16 |
1 files changed, 1 insertions, 15 deletions
@@ -247,7 +247,6 @@ References | |||
247 | 247 | ||
248 | 22. add support for read-write and noexec to Firetools | 248 | 22. add support for read-write and noexec to Firetools |
249 | 249 | ||
250 | |||
251 | 23. AppArmor | 250 | 23. AppArmor |
252 | 251 | ||
253 | $ sudo apt-get install apparmor apparmor-profiles apparmor-utils apparmor-notify | 252 | $ sudo apt-get install apparmor apparmor-profiles apparmor-utils apparmor-notify |
@@ -266,19 +265,6 @@ $ sudo aa-notify -p -f /var/log/audit/audit.log | |||
266 | 24. check monitor proc behaviour for sandboxes with --blacklist=/proc | 265 | 24. check monitor proc behaviour for sandboxes with --blacklist=/proc |
267 | also check --apparmor in this case | 266 | also check --apparmor in this case |
268 | 267 | ||
269 | 25. bring back strings.profile | 268 | 25. fix firemon and firetools on systems with hidepid=2 |
270 | |||
271 | # strings profile | ||
272 | quiet | ||
273 | ignore noroot | ||
274 | include /etc/firejail/default.profile | ||
275 | tracelog | ||
276 | net none | ||
277 | shell none | ||
278 | private-dev | ||
279 | private-tmp | ||
280 | nosound | ||
281 | |||
282 | 26. fix firemon and firetools on systems with hidepid=2 | ||
283 | 269 | ||
284 | sudo mount -o remount,rw,hidepid=2 /proc | 270 | sudo mount -o remount,rw,hidepid=2 /proc |