Firefox profile is already enforced.
Dening the access is not a good choice, because you can mount a partition at any place.
I think mount rule is needed.
Type: Posts; User: Lfekey; Keyword(s):
Firefox profile is already enforced.
Dening the access is not a good choice, because you can mount a partition at any place.
I think mount rule is needed.
I don't want firefox mount some sda partition.
I add "deny mount /dev/sda7" to /etc/apparmor.d/local/user.bin.firefox, but it doesn't work.
sda7 is a fat32 partition.