Changes

Jump to: navigation, search

Security/Sandbox

564 bytes added, 19:10, 26 July 2017
Update Linux sandboxing info
|-
| [https://dxr.mozilla.org/mozilla-central/search?q=class+ContentSandboxPolicy&redirect=true&case=true Linux (content)]
|style='text-align:center;' colspan="2"|Level 23
|style='text-align:center;' colspan="1"|Level 2
|style='text-align:center;' colspan="1"| Fx54
! Job Level !! What's Blocked by the Sandbox?
|-
| Level 1 [1] ||
* write access to most of the filesystem
* inbound/outbound network I/O
== Linux ==
=== Content Levels === {| class="wikitable"|-! Job Level !! What's Blocked by the Sandbox?|-| Level 1 [1] ||* Many syscalls, including process creation|-| Level 2 ||* Many syscalls, including process creation* Write access to the filesystem** Excludes shared memory, tempdir, video hardware|-| Level 3 || * Many syscalls, including process creation* Write access to the filesystem** Excludes shared memory, tempdir, video hardware* Read access to most of the filesystem** Excludes themes/GTK configuration, fonts, shared data and libraries|} === Content Rules ===
[https://dxr.mozilla.org/mozilla-central/source/security/sandbox/linux/SandboxFilter.cpp?q=ContentSandboxPolicy Filter ruleset]
Confirm
333
edits

Navigation menu