Security/Sandbox: Difference between revisions

Jump to navigation Jump to search
m
(Add level 4 description)
Line 337: Line 337:
* Read access to most of the filesystem
* Read access to most of the filesystem
** Excludes themes/GTK configuration, fonts, shared data and libraries
** Excludes themes/GTK configuration, fonts, shared data and libraries
|-
| Level 4 ||
| Level 4 ||
* Network access including local sockets
* Network access including local sockets
** Excludes X11 socket
** Excludes X11 socket
* System V IPC
* System V IPC
** Unless fgxlrx or VirtualGL is in use
* Uses chroot jail
* Uses chroot jail
* Uses Unprivileged User Namespaces (if available)
* Uses Unprivileged User Namespaces (if available)
Confirmed users
334

edits

Navigation menu