From 90c1f897e7dcf174c302f29356f8d73082cbae47 Mon Sep 17 00:00:00 2001 From: netblue30 Date: Tue, 12 Apr 2016 08:59:59 -0400 Subject: added /usr/local/bin to private-bin --- src/firejail/fs_bin.c | 3 ++- src/firejail/sandbox.c | 1 - src/firejail/usage.c | 3 +-- src/man/firejail.txt | 2 +- 4 files changed, 4 insertions(+), 5 deletions(-) (limited to 'src') diff --git a/src/firejail/fs_bin.c b/src/firejail/fs_bin.c index d218f2852..fe1ac9243 100644 --- a/src/firejail/fs_bin.c +++ b/src/firejail/fs_bin.c @@ -25,9 +25,10 @@ #include static char *paths[] = { + "/usr/local/bin", "/bin", - "/sbin", "/usr/bin", + "/sbin", "/usr/sbin", NULL }; diff --git a/src/firejail/sandbox.c b/src/firejail/sandbox.c index 70a356058..4a4956687 100644 --- a/src/firejail/sandbox.c +++ b/src/firejail/sandbox.c @@ -204,7 +204,6 @@ static int monitor_application(pid_t app_pid) { if (monitored_pid != 0 && arg_debug) printf("Sandbox monitor: monitoring %u\n", monitored_pid); } -printf("blablabla\n"); // return the latest exit status. return status; diff --git a/src/firejail/usage.c b/src/firejail/usage.c index 3e4a0d1c3..539785f21 100644 --- a/src/firejail/usage.c +++ b/src/firejail/usage.c @@ -180,8 +180,7 @@ void usage(void) { printf(" --private=directory - use directory as user home.\n\n"); printf(" --private-bin=file,file - build a new /bin in a temporary filesystem,\n"); - printf("\tand copy the programs in the list. The same directory is\n"); - printf("\talso bind-mounted over /sbin, /usr/bin and /usr/sbin.\n\n"); + printf("\tand copy the programs in the list.\n\n"); printf(" --private-dev - create a new /dev directory. Only dri, null, full, zero,\n"); printf("\ttty, pst, ptms, random, urandom, log and shm devices are available.\n\n"); diff --git a/src/man/firejail.txt b/src/man/firejail.txt index 60c53378a..23db832c1 100644 --- a/src/man/firejail.txt +++ b/src/man/firejail.txt @@ -1000,7 +1000,7 @@ $ firejail \-\-private=/home/netblue/firefox-home firefox .TP \fB\-\-private-bin=file,file Build a new /bin in a temporary filesystem, and copy the programs in the list. -The same directory is also bind-mounted over /sbin, /usr/bin and /usr/sbin. +The same directory is also bind-mounted over /sbin, /usr/bin, /usr/sbin and /usr/local/bin. .br .br -- cgit v1.2.3-54-g00ecf