Skip to content

Looks like /crypto_keyfile.bin is accessible in all profiles - should it be blacklisted? #5662

Answered by glitsj16
netcarver asked this question in Q&A
Discussion options

You must be logged in to vote

I would have thought this would be a candidate for adding to the blacklisted files in disable-common.inc but I really don't know enough about firejail or LUKS configuration yet to comment any more about this.

Welcome to the Firejail project. While there's always room for learning you seem to do fine! You're assumptions are correct and we should indeed blacklist that file. Can you open a PR to add it in disable-common.inc? At first glance you could create a new entree group dm-crypt / LUKS like we have for VeraCrypt for example. Or add it to top secret.

Replies: 2 comments

Comment options

You must be logged in to vote
0 replies
Answer selected by netcarver
Comment options

You must be logged in to vote
0 replies
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants