-
Notifications
You must be signed in to change notification settings - Fork 577
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Question about Desktop Integration #2629
Comments
Nope, you can see witch programms are firejailed by default, when you run firecfg there are firecfg also does .desktop files fixes that have Besides: the most filemanagers aren't firejailed by default (but have a profile). You can manualy firejail every programm by default by running |
See #1261 for reasoning as to why file managers are not sandboxed by default. |
Applications are also often unsandboxed if they are referenced in an application as helper applications by using their full path. Which means that their symlinks in /usr/local/bin are bypassed. Example: krusader |
Seems like the question was answered, so lemme close this. @FOSSONLY, please feel free to re-open if you have further questions. |
According to the man page, it is specified that desktop integration covers, among other things, the execution of files using the icon.
But also all common file managers are isolated by default. That should mean that everything that is executed via file manager should be isolated (via dolphin.profile for example), and therefore also unknown programs without profile? Or is this a thinking error?
The text was updated successfully, but these errors were encountered: