aboutsummaryrefslogtreecommitdiffstats
path: root/etc
diff options
context:
space:
mode:
Diffstat (limited to 'etc')
-rw-r--r--etc/apparmor/firejail-default2
1 files changed, 2 insertions, 0 deletions
diff --git a/etc/apparmor/firejail-default b/etc/apparmor/firejail-default
index b4e7f642a..3cc771ed7 100644
--- a/etc/apparmor/firejail-default
+++ b/etc/apparmor/firejail-default
@@ -33,6 +33,7 @@ owner /{,var/}run/firejail/dbus/[0-9]*/[0-9]*-user w,
33#ptrace, 33#ptrace,
34# Allow obtaining some process information, but not ptrace(2) 34# Allow obtaining some process information, but not ptrace(2)
35ptrace (read,readby) peer=@{profile_name}, 35ptrace (read,readby) peer=@{profile_name},
36ptrace (read,readby) peer=@{profile_name}//&unconfined,
36 37
37########## 38##########
38# Allow read access to whole filesystem and control it from firejail. 39# Allow read access to whole filesystem and control it from firejail.
@@ -123,6 +124,7 @@ network packet,
123########## 124##########
124# There is no equivalent in Firejail for filtering signals. 125# There is no equivalent in Firejail for filtering signals.
125########## 126##########
127signal (send) peer=@{profile_name}//&unconfined,
126signal (send) peer=@{profile_name}, 128signal (send) peer=@{profile_name},
127signal (receive), 129signal (receive),
128 130