[GH-ISSUE #5383] firejail just went crazy #2977

Closed
opened 2026-05-05 09:38:10 -06:00 by gitea-mirror · 1 comment
Owner

Originally created by @githlp on GitHub (Sep 27, 2022).
Original GitHub issue: https://github.com/netblue30/firejail/issues/5383

i have suffered enough now for several month..

first, a lot of applications do not work anymore in their regular scheme they are supposed to work - you cannot download to specific directories anymore, you cannot open downloaded files with standard file manager anymore, you cannot access standard config files for several programs anymore etc.. etc.. etc..

At least the provided config files destroy/prohibit every useful and WANTED operation every firejailed program needs to work properly.

So i really wondered what might be the use case of those extreme restrictions and over that, standard users are not capable of reconfigure all these tight restrictions of their own.

Why not leave programs the rights they need for their usual work and restrict every side-step or unnecessary internet/filesystem access and fine we are.. PROs that know where to screw around could tighten restrictions anyway the way they like, no problem..

As i discovered today (probably after another profile update) that even my standard browsers cannot access the internet anymore (but on cli or called with /usr/bin/firefox there is no problem) i will uninstall firejail and leave my system as it WORKED before, no pain as with every update of these firejail profiles..

It's really a pity - i thought this project would be a good approach to strengthen the security on my system, i did not expect it to prohibit every normal usage ..

Thanx for all the fish

Originally created by @githlp on GitHub (Sep 27, 2022). Original GitHub issue: https://github.com/netblue30/firejail/issues/5383 i have suffered enough now for several month.. first, a lot of applications do not work anymore in their regular scheme they are supposed to work - you cannot download to specific directories anymore, you cannot open downloaded files with standard file manager anymore, you cannot access standard config files for several programs anymore etc.. etc.. etc.. At least the provided config files destroy/prohibit every useful and WANTED operation every firejailed program needs to work properly. So i really wondered what might be the use case of those extreme restrictions and over that, standard users are not capable of reconfigure all these tight restrictions of their own. Why not leave programs the rights they need for their usual work and restrict every side-step or unnecessary internet/filesystem access and fine we are.. PROs that know where to screw around could tighten restrictions anyway the way they like, no problem.. As i discovered today (probably after another profile update) that even my standard browsers cannot access the internet anymore (but on cli or called with /usr/bin/firefox there is no problem) i will uninstall firejail and leave my system as it WORKED before, no pain as with every update of these firejail profiles.. It's really a pity - i thought this project would be a good approach to strengthen the security on my system, i did not expect it to prohibit every normal usage .. Thanx for all the fish
gitea-mirror 2026-05-05 09:38:10 -06:00
Author
Owner

@kmk3 commented on GitHub (Sep 28, 2022):

Hello, this seems more like a discussion topic than an actionable issue, so I'm
converting it into a discussion.

<!-- gh-comment-id:1260503185 --> @kmk3 commented on GitHub (Sep 28, 2022): Hello, this seems more like a discussion topic than an actionable issue, so I'm converting it into a discussion.
Sign in to join this conversation.
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference: github-starred/firejail#2977
No description provided.