mirror of
https://github.com/netblue30/firejail.git
synced 2026-05-15 14:16:14 -06:00
[GH-ISSUE #5383] firejail just went crazy #2977
Labels
No labels
LTS merge
LTS merge
bug
bug
converted-to-discussion
doc-todo
documentation
duplicate
enhancement
file-transfer
firecfg
firejail-in-firejail
firetools
graphics
help wanted
information_old
installation
invalid
modif
moved
needinfo
networking
notabug
notourbug
old-version
overlayfs
packaging
profile-request
pull-request
question
question_old
removal
runtime-permissions
sandbox-ipc
security
stale
wiki
wiki
wontfix
wordpress
workaround
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference: github-starred/firejail#2977
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Originally created by @githlp on GitHub (Sep 27, 2022).
Original GitHub issue: https://github.com/netblue30/firejail/issues/5383
i have suffered enough now for several month..
first, a lot of applications do not work anymore in their regular scheme they are supposed to work - you cannot download to specific directories anymore, you cannot open downloaded files with standard file manager anymore, you cannot access standard config files for several programs anymore etc.. etc.. etc..
At least the provided config files destroy/prohibit every useful and WANTED operation every firejailed program needs to work properly.
So i really wondered what might be the use case of those extreme restrictions and over that, standard users are not capable of reconfigure all these tight restrictions of their own.
Why not leave programs the rights they need for their usual work and restrict every side-step or unnecessary internet/filesystem access and fine we are.. PROs that know where to screw around could tighten restrictions anyway the way they like, no problem..
As i discovered today (probably after another profile update) that even my standard browsers cannot access the internet anymore (but on cli or called with /usr/bin/firefox there is no problem) i will uninstall firejail and leave my system as it WORKED before, no pain as with every update of these firejail profiles..
It's really a pity - i thought this project would be a good approach to strengthen the security on my system, i did not expect it to prohibit every normal usage ..
Thanx for all the fish
@kmk3 commented on GitHub (Sep 28, 2022):
Hello, this seems more like a discussion topic than an actionable issue, so I'm
converting it into a discussion.