From c6abe4d06cc6349b9a814b11c5058f749ac8585a Mon Sep 17 00:00:00 2001 From: netblue30 Date: Tue, 23 Aug 2016 07:59:03 -0400 Subject: run time support to disable chroot desktop features --- etc/firejail.config | 5 +++++ 1 file changed, 5 insertions(+) (limited to 'etc') diff --git a/etc/firejail.config b/etc/firejail.config index 275bba8e2..6b6ba7fdf 100644 --- a/etc/firejail.config +++ b/etc/firejail.config @@ -9,6 +9,11 @@ # Enable or disable chroot support, default enabled. # chroot yes +# Use chroot for desktop programs, default enabled. The sandbox will have full +# access to system's /dev directory in order to allow video acceleration, +# and it will harden the rest of the chroot tree. +# chroot-desktop yes + # Enable or disable file transfer support, default enabled. # file-transfer yes -- cgit v1.2.3-54-g00ecf