[PR #4781] [MERGED] Whitelist ${HOME}/.local/opt/tor-browser to make tor-browser work #5250

Closed
opened 2026-05-05 10:34:59 -06:00 by gitea-mirror · 0 comments
Owner

📋 Pull Request Information

Original PR: https://github.com/netblue30/firejail/pull/4781
Author: @YorkZ
Created: 12/17/2021
Status: Merged
Merged: 12/18/2021
Merged by: @netblue30

Base: masterHead: pr


📝 Commits (1)

  • b91e2ff Whitelist ${HOME}/.local/opt/tor-browser to make tor-browser work

📊 Changes

2 files changed (+5 additions, -0 deletions)

View changed files

📝 etc/inc/disable-common.inc (+2 -0)
📝 etc/profile-m-z/tor-browser.profile (+3 -0)

📄 Description

Thank you very much for this amazing project.

tor-browser 11.0.2-1 doesn't work without whitelisting this directory. The following was the message I got before whitelisting this directory.

Reading profile /etc/firejail/tor-browser.profile
Reading profile /etc/firejail/torbrowser-launcher.profile
Reading profile /etc/firejail/allow-python2.inc
Reading profile /etc/firejail/allow-python3.inc
Reading profile /etc/firejail/disable-common.inc
Reading profile /etc/firejail/disable-devel.inc
Reading profile /etc/firejail/disable-exec.inc
Reading profile /etc/firejail/disable-interpreters.inc
Reading profile /etc/firejail/disable-passwdmgr.inc
Reading profile /etc/firejail/disable-programs.inc
Reading profile /etc/firejail/disable-xdg.inc
Reading profile /etc/firejail/whitelist-common.inc
Reading profile /etc/firejail/whitelist-var-common.inc
Reading profile /etc/firejail/whitelist-runuser-common.inc
Reading profile /etc/firejail/whitelist-usr-share-common.inc
Warning: Warning: NVIDIA card detected, nogroups command disabled
Seccomp list in: !chroot, check list: @default-keep, prelist: unknown,
Parent pid 12653, child pid 12654
104 programs installed in 153.32 ms
Warning: An abstract unix socket for session D-BUS might still be available. Use --net or remove unix from --protocol set.
Warning: skipping asound.conf for private /etc
Warning: skipping crypto-policies for private /etc
Warning fcopy: skipping /etc/fonts/conf.d/11-lcdfilter-default.conf, cannot find inode
Warning: skipping pki for private /etc
Private /etc installed in 64.84 ms
Private /usr/etc installed in 0.00 ms
Warning: cleaning all supplementary groups
Warning: cleaning all supplementary groups
Warning: /sbin directory link was not blacklisted
Warning: /usr/sbin directory link was not blacklisted
Warning: cleaning all supplementary groups
Seccomp list in: !chroot, check list: @default-keep, prelist: unknown,
Warning: cleaning all supplementary groups
Child process initialized in 325.75 ms
/usr/bin/tor-browser: [Error] The tor-browser archive could not be extracted to your home directory.
Check the permissions of ~/.local/opt/tor-browser/app.
The error log can be found in ~/.local/opt/tor-browser/LOG.
/usr/bin/tor-browser: line 218: ~/.local/opt/tor-browser/app/Browser/start-tor-browser: No such file or directory

🔄 This issue represents a GitHub Pull Request. It cannot be merged through Gitea due to API limitations.

## 📋 Pull Request Information **Original PR:** https://github.com/netblue30/firejail/pull/4781 **Author:** [@YorkZ](https://github.com/YorkZ) **Created:** 12/17/2021 **Status:** ✅ Merged **Merged:** 12/18/2021 **Merged by:** [@netblue30](https://github.com/netblue30) **Base:** `master` ← **Head:** `pr` --- ### 📝 Commits (1) - [`b91e2ff`](https://github.com/netblue30/firejail/commit/b91e2ff9cc0c704c7322174f9e749d4184516d93) Whitelist ${HOME}/.local/opt/tor-browser to make tor-browser work ### 📊 Changes **2 files changed** (+5 additions, -0 deletions) <details> <summary>View changed files</summary> 📝 `etc/inc/disable-common.inc` (+2 -0) 📝 `etc/profile-m-z/tor-browser.profile` (+3 -0) </details> ### 📄 Description Thank you very much for this amazing project. tor-browser 11.0.2-1 doesn't work without whitelisting this directory. The following was the message I got before whitelisting this directory. > Reading profile /etc/firejail/tor-browser.profile > Reading profile /etc/firejail/torbrowser-launcher.profile > Reading profile /etc/firejail/allow-python2.inc > Reading profile /etc/firejail/allow-python3.inc > Reading profile /etc/firejail/disable-common.inc > Reading profile /etc/firejail/disable-devel.inc > Reading profile /etc/firejail/disable-exec.inc > Reading profile /etc/firejail/disable-interpreters.inc > Reading profile /etc/firejail/disable-passwdmgr.inc > Reading profile /etc/firejail/disable-programs.inc > Reading profile /etc/firejail/disable-xdg.inc > Reading profile /etc/firejail/whitelist-common.inc > Reading profile /etc/firejail/whitelist-var-common.inc > Reading profile /etc/firejail/whitelist-runuser-common.inc > Reading profile /etc/firejail/whitelist-usr-share-common.inc > Warning: Warning: NVIDIA card detected, nogroups command disabled > Seccomp list in: !chroot, check list: @default-keep, prelist: unknown, > Parent pid 12653, child pid 12654 > 104 programs installed in 153.32 ms > Warning: An abstract unix socket for session D-BUS might still be available. Use --net or remove unix from --protocol set. > Warning: skipping asound.conf for private /etc > Warning: skipping crypto-policies for private /etc > Warning fcopy: skipping /etc/fonts/conf.d/11-lcdfilter-default.conf, cannot find inode > Warning: skipping pki for private /etc > Private /etc installed in 64.84 ms > Private /usr/etc installed in 0.00 ms > Warning: cleaning all supplementary groups > Warning: cleaning all supplementary groups > Warning: /sbin directory link was not blacklisted > Warning: /usr/sbin directory link was not blacklisted > Warning: cleaning all supplementary groups > Seccomp list in: !chroot, check list: @default-keep, prelist: unknown, > Warning: cleaning all supplementary groups > Child process initialized in 325.75 ms > /usr/bin/tor-browser: [Error] The tor-browser archive could not be extracted to your home directory. > Check the permissions of ~/.local/opt/tor-browser/app. > The error log can be found in ~/.local/opt/tor-browser/LOG. > /usr/bin/tor-browser: line 218: ~/.local/opt/tor-browser/app/Browser/start-tor-browser: No such file or directory > --- <sub>🔄 This issue represents a GitHub Pull Request. It cannot be merged through Gitea due to API limitations.</sub>
gitea-mirror 2026-05-05 10:34:59 -06:00
Sign in to join this conversation.
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference: github-starred/firejail#5250
No description provided.