-
Notifications
You must be signed in to change notification settings - Fork 578
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Blacklisting /media/ except for one folder #3581
Comments
It is easy, just do |
Doesn't work.
|
Ok, then it is
Or just If the latter does not work, please post the output of |
Thanks, whitelisting beneath the profile's blacklistings worked. Previously it didn't - probably because I kept the blacklistings. |
It worked for one profile but not the other. I also put whitelist to the bottom of the profile before caps.drop all. I tried removing the noblacklist for the same directory. It's the profile for #3579 |
Is there a |
No, it's mostly the default JDownloader profile. I added |
… which |
I suspected this line to be the culprit. How to enable-mnt without having to modify this profile? |
Add |
Thank you!! |
When I use a profile that has
noblacklist /media/directory/path
followed by a laterblacklist /media/
I keep getting blacklist violations in the syslog:syscall opendir, path /media
. These errors only appear when I includeblacklist /media/
.How to blacklist all /media/ except for one directory?
And it also doesn't work when whitelisting the directory (next to the other whitelistings in the profile).
firejail version 0.9.62
The text was updated successfully, but these errors were encountered: