I have a non-standard installation of firefox that the "regular" firejail didn't like, though I didn't spend any time trying to get it to work.
Code: Select all
$ cat `which firefox`
apulse /mnt/DATA/Firefox/firefox/firefox -P profile.default -new-instance "$@"
Code: Select all
$ firejail firefox
Reading profile /etc/firejail/firefox.profile
Reading profile /etc/firejail/firefox-common.profile
...
*** Error: Downloads directory was not found in user home.
*** Any files saved by the program, will be lost when the sandbox is closed.
...
Error: no suitable firefox executable found
Parent is shutting down, bye...
firefox-common.profile:whitelist /mnt/DATA/download/
Then
Code: Select all
$ firejail firefox
Warning: an existing sandbox was detected. firefox will run without any additional sandboxing features
Error: Access was denied while trying to open files in your profile directory.
Code: Select all
$ find . -iname "jail*"
find: './.audacity-data': Permission denied
find: './.config/uGet': Permission denied
... pretty much all of 'em ...
find: './.cache/mozilla': Permission denied
...
find: './.gimp-2.8': Permission denied
find: './.pki': Permission denied
$