Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Dropbox needs access to python #4150

Closed
matthew-cline opened this issue Mar 31, 2021 · 3 comments · Fixed by #4155
Closed

Dropbox needs access to python #4150

matthew-cline opened this issue Mar 31, 2021 · 3 comments · Fixed by #4155

Comments

@matthew-cline
Copy link
Contributor

firejail --name=dropbox dropbox start fails with execvp: Permission denied unless include allow-python3.inc is added to $HOME/.config/firejail/dropbox.local.

Environment

  • Fedora 33
  • Firejail version 0.9.64
output of `firejail --version` firejail version 0.9.64

Compile time support:
- AppArmor support is disabled
- AppImage support is enabled
- chroot support is enabled
- D-BUS proxy support is enabled
- file and directory whitelisting support is enabled
- file transfer support is enabled
- firetunnel support is enabled
- networking support is enabled
- overlayfs support is enabled
- private-home support is enabled
- SELinux support is enabled
- user namespace support is enabled
- X11 sandboxing support is enabled

Additional context

Result of strace, specifically a non-sandboxed strace -f -z -e trace=%file,%process -o strace.log dropbox start resulting in a working Dropbox daemon.

Dropbox daemon version: 119.4.1772
Dropbox command-line interface version: 2020.03.04

/usr/bin/python is a Python script with /usr/bin/python3 as the interpreter.

The dropbox package I'm using was packaged by the RPM Fusion project, not by the Fedora Project.

debug output
Reading profile /etc/firejail/dropbox.profile
Autoselecting /bin/bash as shell
Building quoted command line: 'dropbox' 'start' 
Command name #dropbox#
Found dropbox.profile profile in /etc/firejail directory
Reading profile /home/matt/.config/firejail/dropbox.local
Found dropbox.local profile in /home/matt/.config/firejail directory
Reading profile /etc/firejail/disable-common.inc
Found disable-common.inc profile in /etc/firejail directory
Reading profile /etc/firejail/disable-devel.inc
Found disable-devel.inc profile in /etc/firejail directory
Reading profile /etc/firejail/disable-interpreters.inc
Found disable-interpreters.inc profile in /etc/firejail directory
Reading profile /etc/firejail/disable-passwdmgr.inc
Found disable-passwdmgr.inc profile in /etc/firejail directory
Reading profile /etc/firejail/disable-programs.inc
Found disable-programs.inc profile in /etc/firejail directory
Reading profile /etc/firejail/whitelist-common.inc
Found whitelist-common.inc profile in /etc/firejail directory
DISPLAY=:0 parsed as 0
Parent pid 117076, child pid 117077
Using the local network stack
Debug 456: new_name #/home/matt/.Dropbox#, whitelist
Debug 571: fname #/home/matt/.Dropbox#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.config/autostart/dropbox.desktop#, whitelist
Debug 571: fname #/home/matt/.config/autostart/dropbox.desktop#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.dropbox#, whitelist
Debug 571: fname #/home/matt/.dropbox#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.dropbox-dist#, whitelist
Debug 571: fname #/home/matt/.dropbox-dist#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.XCompose#, whitelist
Debug 571: fname #/home/matt/.XCompose#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.asoundrc#, whitelist
Using the local network stack
Initializing child process
PID namespace installed
Mounting tmpfs on /run/firejail/mnt directory
Creating empty /run/firejail/mnt/seccomp directory
Creating empty /run/firejail/mnt/seccomp/seccomp.protocol file
Creating empty /run/firejail/mnt/seccomp/seccomp.postexec file
Creating empty /run/firejail/mnt/seccomp/seccomp.postexec32 file
Build protocol filter: unix,inet,inet6
sbox run: /run/firejail/lib/fseccomp protocol build unix,inet,inet6 /run/firejail/mnt/seccomp/seccomp.protocol 
Mounting /proc filesystem representing the PID namespace
Basic read-only filesystem:
Mounting read-only /etc
965 899 253:0 /etc /etc ro,relatime master:1 - ext4 /dev/mapper/fedora-root rw,lazytime,seclabel
mountid=965 fsname=/etc dir=/etc fstype=ext4
Mounting noexec /etc
966 965 253:0 /etc /etc ro,nosuid,nodev,noexec,relatime master:1 - ext4 /dev/mapper/fedora-root rw,lazytime,seclabel
mountid=966 fsname=/etc dir=/etc fstype=ext4
Mounting read-only /var
967 899 253:0 /var /var ro,relatime master:1 - ext4 /dev/mapper/fedora-root rw,lazytime,seclabel
mountid=967 fsname=/var dir=/var fstype=ext4
Mounting noexec /var
968 967 253:0 /var /var ro,nosuid,nodev,noexec,relatime master:1 - ext4 /dev/mapper/fedora-root rw,lazytime,seclabel
mountid=968 fsname=/var dir=/var fstype=ext4
Mounting read-only /usr
969 899 253:0 /usr /usr ro,relatime master:1 - ext4 /dev/mapper/fedora-root rw,lazytime,seclabel
mountid=969 fsname=/usr dir=/usr fstype=ext4
Mounting tmpfs on /var/lock
Mounting tmpfs on /var/tmp
Mounting tmpfs on /var/log
Create the new utmp file
Mount the new utmp file
Cleaning /home directory
Relabeling /home as /home (system_u:object_r:home_root_t:s0)
Cleaning /run/user directory
Relabeling /run/user as /run/user (system_u:object_r:user_tmp_t:s0)
Relabeling /run/user/1000 as /run/user/1000 (system_u:object_r:user_tmp_t:s0)
Sanitizing /etc/passwd, UID_MIN 1000
Sanitizing /etc/group, GID_MIN 1000
Disable /home/matt/.config/firejail
Disable /run/firejail/network
Disable /run/firejail/bandwidth
Disable /run/firejail/name
Disable /run/firejail/profile
Disable /run/firejail/x11
Mounting tmpfs on /dev
Process /dev/shm directory
Relabeling /dev/shm as /dev/shm (system_u:object_r:tmpfs_t:s0)
Relabeling /dev/pts as /dev/pts (system_u:object_r:devpts_t:s0)
Relabeling /dev/ptmx as /dev/ptmx (system_u:object_r:device_t:s0)
Generate private-tmp whitelist commands
blacklist /run/firejail/dbus
Mounting read-only /proc/sys
Remounting /sys directory
Disable /sys/firmware
Disable /sys/hypervisor
Disable /sys/power
Disable /sys/kernel/debug
Disable /sys/kernel/vmcoreinfo
Disable /proc/sys/fs/binfmt_misc
Disable /proc/sys/kernel/core_pattern
Disable /proc/sys/kernel/modprobe
Disable /proc/sysrq-trigger
Disable /proc/sys/vm/panic_on_oom
Disable /proc/irq
Disable /proc/bus
Disable /proc/sched_debug
Disable /proc/timer_list
Disable /proc/kcore
Disable /proc/kallsyms
Disable /usr/lib/modules (requested /lib/modules)
Disable /usr/lib/debug
Disable /boot
Disable /run/user/1000/gnupg
Disable /run/user/1000/systemd
Disable /proc/kmsg
Replaced whitelist path: whitelist /home/matt/.Dropbox
Replaced whitelist path: whitelist /home/matt/.config/autostart/dropbox.desktop
Replaced whitelist path: whitelist /home/matt/.dropbox
Replaced whitelist path: whitelist /home/matt/.dropbox-dist
Replaced whitelist path: whitelist /home/matt/.XCompose
Removed whitelist/nowhitelist path: whitelist ${HOME}/.asoundrc
	expanded: /home/matt/.asoundrc
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.config/ibus#, whitelist
Removed whitelist/nowhitelist path: whitelist ${HOME}/.config/ibus
	expanded: /home/matt/.config/ibus
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.config/mimeapps.list#, whitelist
Debug 571: fname #/home/matt/.config/mimeapps.list#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.config/pkcs11#, whitelist
Replaced whitelist path: whitelist /home/matt/.config/mimeapps.list
Removed whitelist/nowhitelist path: whitelist ${HOME}/.config/pkcs11
	expanded: /home/matt/.config/pkcs11
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.config/user-dirs.dirs#, whitelist
Debug 571: fname #/home/matt/.config/user-dirs.dirs#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.config/user-dirs.locale#, whitelist
Debug 571: fname #/home/matt/.config/user-dirs.locale#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.drirc#, whitelist
Replaced whitelist path: whitelist /home/matt/.config/user-dirs.dirs
Replaced whitelist path: whitelist /home/matt/.config/user-dirs.locale
Removed whitelist/nowhitelist path: whitelist ${HOME}/.drirc
	expanded: /home/matt/.drirc
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.icons#, whitelist
Removed whitelist/nowhitelist path: whitelist ${HOME}/.icons
	expanded: /home/matt/.icons
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.local/share/applications#, whitelist
Debug 571: fname #/home/matt/.local/share/applications#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.local/share/icons#, whitelist
Debug 571: fname #/home/matt/.local/share/icons#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.local/share/mime#, whitelist
Debug 571: fname #/home/matt/.local/share/mime#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.mime.types#, whitelist
Debug 571: fname #/home/matt/.mime.types#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.uim.d#, whitelist
Replaced whitelist path: whitelist /home/matt/.local/share/applications
Replaced whitelist path: whitelist /home/matt/.local/share/icons
Replaced whitelist path: whitelist /home/matt/.local/share/mime
Replaced whitelist path: whitelist /home/matt/.mime.types
Removed whitelist/nowhitelist path: whitelist ${HOME}/.uim.d
	expanded: /home/matt/.uim.d
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.config/dconf#, whitelist
Debug 571: fname #/home/matt/.config/dconf#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.cache/fontconfig#, whitelist
Debug 571: fname #/home/matt/.cache/fontconfig#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.config/fontconfig#, whitelist
Debug 571: fname #/home/matt/.config/fontconfig#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.fontconfig#, whitelist
Replaced whitelist path: whitelist /home/matt/.config/dconf
Replaced whitelist path: whitelist /home/matt/.cache/fontconfig
Replaced whitelist path: whitelist /home/matt/.config/fontconfig
Removed whitelist/nowhitelist path: whitelist ${HOME}/.fontconfig
	expanded: /home/matt/.fontconfig
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.fonts#, whitelist
Removed whitelist/nowhitelist path: whitelist ${HOME}/.fonts
	expanded: /home/matt/.fonts
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.fonts.conf#, whitelist
Debug 571: fname #/home/matt/.config/fontconfig/fonts.conf#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.fonts.conf.d#, whitelist
Replaced whitelist path: whitelist /home/matt/.config/fontconfig/fonts.conf
Removed whitelist/nowhitelist path: whitelist ${HOME}/.fonts.conf.d
	expanded: /home/matt/.fonts.conf.d
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.fonts.d#, whitelist
Removed whitelist/nowhitelist path: whitelist ${HOME}/.fonts.d
	expanded: /home/matt/.fonts.d
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.local/share/fonts#, whitelist
Removed whitelist/nowhitelist path: whitelist ${HOME}/.local/share/fonts
	expanded: /home/matt/.local/share/fonts
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.pangorc#, whitelist
Removed whitelist/nowhitelist path: whitelist ${HOME}/.pangorc
	expanded: /home/matt/.pangorc
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.config/gtk-2.0#, whitelist
Debug 571: fname #/home/matt/.config/gtk-2.0#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.config/gtk-3.0#, whitelist
Debug 571: fname #/home/matt/.config/gtk-3.0#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.config/gtk-4.0#, whitelist
Replaced whitelist path: whitelist /home/matt/.config/gtk-2.0
Replaced whitelist path: whitelist /home/matt/.config/gtk-3.0
Removed whitelist/nowhitelist path: whitelist ${HOME}/.config/gtk-4.0
	expanded: /home/matt/.config/gtk-4.0
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.config/gtkrc#, whitelist
Debug 571: fname #/home/matt/.config/gtkrc#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.config/gtkrc-2.0#, whitelist
Debug 571: fname #/home/matt/.config/gtkrc-2.0#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.gnome2#, whitelist
Debug 571: fname #/home/matt/.gnome2#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.gnome2-private#, whitelist
Replaced whitelist path: whitelist /home/matt/.config/gtkrc
Replaced whitelist path: whitelist /home/matt/.config/gtkrc-2.0
Replaced whitelist path: whitelist /home/matt/.gnome2
Removed whitelist/nowhitelist path: whitelist ${HOME}/.gnome2-private
	expanded: /home/matt/.gnome2-private
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.gtk-2.0#, whitelist
Removed whitelist/nowhitelist path: whitelist ${HOME}/.gtk-2.0
	expanded: /home/matt/.gtk-2.0
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.gtkrc#, whitelist
Removed whitelist/nowhitelist path: whitelist ${HOME}/.gtkrc
	expanded: /home/matt/.gtkrc
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.gtkrc-2.0#, whitelist
Debug 571: fname #/home/matt/.gtkrc-2.0#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.kde/share/config/gtkrc#, whitelist
Debug 571: fname #/home/matt/.kde/share/config/gtkrc#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.kde/share/config/gtkrc-2.0#, whitelist
Debug 571: fname #/home/matt/.kde/share/config/gtkrc-2.0#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.kde4/share/config/gtkrc#, whitelist
Replaced whitelist path: whitelist /home/matt/.gtkrc-2.0
Replaced whitelist path: whitelist /home/matt/.kde/share/config/gtkrc
Replaced whitelist path: whitelist /home/matt/.kde/share/config/gtkrc-2.0
Removed whitelist/nowhitelist path: whitelist ${HOME}/.kde4/share/config/gtkrc
	expanded: /home/matt/.kde4/share/config/gtkrc
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.kde4/share/config/gtkrc-2.0#, whitelist
Removed whitelist/nowhitelist path: whitelist ${HOME}/.kde4/share/config/gtkrc-2.0
	expanded: /home/matt/.kde4/share/config/gtkrc-2.0
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.local/share/themes#, whitelist
Removed whitelist/nowhitelist path: whitelist ${HOME}/.local/share/themes
	expanded: /home/matt/.local/share/themes
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.themes#, whitelist
Removed whitelist/nowhitelist path: whitelist ${HOME}/.themes
	expanded: /home/matt/.themes
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.cache/kioexec/krun#, whitelist
Removed whitelist/nowhitelist path: whitelist ${HOME}/.cache/kioexec/krun
	expanded: /home/matt/.cache/kioexec/krun
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.config/Kvantum#, whitelist
Removed whitelist/nowhitelist path: whitelist ${HOME}/.config/Kvantum
	expanded: /home/matt/.config/Kvantum
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.config/Trolltech.conf#, whitelist
Debug 571: fname #/home/matt/.config/Trolltech.conf#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.config/kdeglobals#, whitelist
Debug 571: fname #/home/matt/.config/kdeglobals#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.config/kio_httprc#, whitelist
Debug 571: fname #/home/matt/.config/kio_httprc#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.config/kioslaverc#, whitelist
Replaced whitelist path: whitelist /home/matt/.config/Trolltech.conf
Replaced whitelist path: whitelist /home/matt/.config/kdeglobals
Replaced whitelist path: whitelist /home/matt/.config/kio_httprc
Removed whitelist/nowhitelist path: whitelist ${HOME}/.config/kioslaverc
	expanded: /home/matt/.config/kioslaverc
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.config/ksslcablacklist#, whitelist
Removed whitelist/nowhitelist path: whitelist ${HOME}/.config/ksslcablacklist
	expanded: /home/matt/.config/ksslcablacklist
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.config/qt5ct#, whitelist
Removed whitelist/nowhitelist path: whitelist ${HOME}/.config/qt5ct
	expanded: /home/matt/.config/qt5ct
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.kde/share/config/kdeglobals#, whitelist
Debug 571: fname #/home/matt/.kde/share/config/kdeglobals#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.kde/share/config/kio_httprc#, whitelist
Debug 571: fname #/home/matt/.kde/share/config/kio_httprc#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.kde/share/config/kioslaverc#, whitelist
Debug 571: fname #/home/matt/.kde/share/config/kioslaverc#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.kde/share/config/ksslcablacklist#, whitelist
Replaced whitelist path: whitelist /home/matt/.kde/share/config/kdeglobals
Replaced whitelist path: whitelist /home/matt/.kde/share/config/kio_httprc
Replaced whitelist path: whitelist /home/matt/.kde/share/config/kioslaverc
Removed whitelist/nowhitelist path: whitelist ${HOME}/.kde/share/config/ksslcablacklist
	expanded: /home/matt/.kde/share/config/ksslcablacklist
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.kde/share/config/oxygenrc#, whitelist
Debug 571: fname #/home/matt/.kde/share/config/oxygenrc#, cfg.homedir #/home/matt#
Debug 456: new_name #/home/matt/.kde/share/icons#, whitelist
Replaced whitelist path: whitelist /home/matt/.kde/share/config/oxygenrc
Removed whitelist/nowhitelist path: whitelist ${HOME}/.kde/share/icons
	expanded: /home/matt/.kde/share/icons
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.kde4/share/config/kdeglobals#, whitelist
Removed whitelist/nowhitelist path: whitelist ${HOME}/.kde4/share/config/kdeglobals
	expanded: /home/matt/.kde4/share/config/kdeglobals
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.kde4/share/config/kio_httprc#, whitelist
Removed whitelist/nowhitelist path: whitelist ${HOME}/.kde4/share/config/kio_httprc
	expanded: /home/matt/.kde4/share/config/kio_httprc
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.kde4/share/config/kioslaverc#, whitelist
Removed whitelist/nowhitelist path: whitelist ${HOME}/.kde4/share/config/kioslaverc
	expanded: /home/matt/.kde4/share/config/kioslaverc
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.kde4/share/config/ksslcablacklist#, whitelist
Removed whitelist/nowhitelist path: whitelist ${HOME}/.kde4/share/config/ksslcablacklist
	expanded: /home/matt/.kde4/share/config/ksslcablacklist
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.kde4/share/config/oxygenrc#, whitelist
Removed whitelist/nowhitelist path: whitelist ${HOME}/.kde4/share/config/oxygenrc
	expanded: /home/matt/.kde4/share/config/oxygenrc
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.kde4/share/icons#, whitelist
Removed whitelist/nowhitelist path: whitelist ${HOME}/.kde4/share/icons
	expanded: /home/matt/.kde4/share/icons
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/home/matt/.local/share/qt5ct#, whitelist
Removed whitelist/nowhitelist path: whitelist ${HOME}/.local/share/qt5ct
	expanded: /home/matt/.local/share/qt5ct
	real path: (null)
	realpath: No such file or directory
Debug 456: new_name #/tmp/.X11-unix#, whitelist
Mounting tmpfs on /tmp directory
Relabeling /tmp as /tmp (system_u:object_r:tmp_t:s0)
Mounting a new /root directory
Relabeling /root as /root (system_u:object_r:admin_home_t:s0)
Mounting a new /home directory
Relabeling /home as /home (system_u:object_r:home_root_t:s0)
Create a new user directory
Relabeling /home/matt as /home/matt (unconfined_u:object_r:user_home_dir_t:s0)
Relabeling /home/matt/.bashrc as /home/matt/.bashrc (unconfined_u:object_r:user_home_t:s0)
Whitelisting /home/matt/.Dropbox
1026 1025 253:2 /matt/.Dropbox /home/matt/.Dropbox rw,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1026 fsname=/matt/.Dropbox dir=/home/matt/.Dropbox fstype=ext4
Whitelisting /home/matt/.config/autostart/dropbox.desktop
1027 1025 253:2 /matt/.config/autostart/dropbox.desktop /home/matt/.config/autostart/dropbox.desktop rw,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1027 fsname=/matt/.config/autostart/dropbox.desktop dir=/home/matt/.config/autostart/dropbox.desktop fstype=ext4
Whitelisting /home/matt/.dropbox
1028 1025 253:2 /matt/.dropbox /home/matt/.dropbox rw,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1028 fsname=/matt/.dropbox dir=/home/matt/.dropbox fstype=ext4
Whitelisting /home/matt/.dropbox-dist
1029 1025 253:2 /matt/.dropbox-dist /home/matt/.dropbox-dist rw,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1029 fsname=/matt/.dropbox-dist dir=/home/matt/.dropbox-dist fstype=ext4
Whitelisting /home/matt/.XCompose
1030 1025 253:2 /matt/.XCompose /home/matt/.XCompose rw,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1030 fsname=/matt/.XCompose dir=/home/matt/.XCompose fstype=ext4
Whitelisting /home/matt/.config/mimeapps.list
1031 1025 253:2 /matt/.config/mimeapps.list /home/matt/.config/mimeapps.list rw,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1031 fsname=/matt/.config/mimeapps.list dir=/home/matt/.config/mimeapps.list fstype=ext4
Whitelisting /home/matt/.config/user-dirs.dirs
1032 1025 253:2 /matt/.config/user-dirs.dirs /home/matt/.config/user-dirs.dirs rw,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1032 fsname=/matt/.config/user-dirs.dirs dir=/home/matt/.config/user-dirs.dirs fstype=ext4
Whitelisting /home/matt/.config/user-dirs.locale
1033 1025 253:2 /matt/.config/user-dirs.locale /home/matt/.config/user-dirs.locale rw,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1033 fsname=/matt/.config/user-dirs.locale dir=/home/matt/.config/user-dirs.locale fstype=ext4
Whitelisting /home/matt/.local/share/applications
1034 1025 253:2 /matt/.local/share/applications /home/matt/.local/share/applications rw,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1034 fsname=/matt/.local/share/applications dir=/home/matt/.local/share/applications fstype=ext4
Whitelisting /home/matt/.local/share/icons
1035 1025 253:2 /matt/.local/share/icons /home/matt/.local/share/icons rw,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1035 fsname=/matt/.local/share/icons dir=/home/matt/.local/share/icons fstype=ext4
Whitelisting /home/matt/.local/share/mime
1036 1025 253:2 /matt/.local/share/mime /home/matt/.local/share/mime rw,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1036 fsname=/matt/.local/share/mime dir=/home/matt/.local/share/mime fstype=ext4
Whitelisting /home/matt/.mime.types
1037 1025 253:2 /matt/.mime.types /home/matt/.mime.types rw,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1037 fsname=/matt/.mime.types dir=/home/matt/.mime.types fstype=ext4
Whitelisting /home/matt/.config/dconf
1038 1025 253:2 /matt/.config/dconf /home/matt/.config/dconf rw,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1038 fsname=/matt/.config/dconf dir=/home/matt/.config/dconf fstype=ext4
Whitelisting /home/matt/.cache/fontconfig
1039 1025 253:2 /matt/.cache/fontconfig /home/matt/.cache/fontconfig rw,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1039 fsname=/matt/.cache/fontconfig dir=/home/matt/.cache/fontconfig fstype=ext4
Whitelisting /home/matt/.config/fontconfig
1040 1025 253:2 /matt/.config/fontconfig /home/matt/.config/fontconfig rw,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1040 fsname=/matt/.config/fontconfig dir=/home/matt/.config/fontconfig fstype=ext4
Whitelisting /home/matt/.config/fontconfig/fonts.conf
Created symbolic link /home/matt/.fonts.conf -> /home/matt/.config/fontconfig/fonts.conf
Whitelisting /home/matt/.config/gtk-2.0
1041 1025 253:2 /matt/.config/gtk-2.0 /home/matt/.config/gtk-2.0 rw,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1041 fsname=/matt/.config/gtk-2.0 dir=/home/matt/.config/gtk-2.0 fstype=ext4
Whitelisting /home/matt/.config/gtk-3.0
1042 1025 253:2 /matt/.config/gtk-3.0 /home/matt/.config/gtk-3.0 rw,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1042 fsname=/matt/.config/gtk-3.0 dir=/home/matt/.config/gtk-3.0 fstype=ext4
Whitelisting /home/matt/.config/gtkrc
1043 1025 253:2 /matt/.config/gtkrc /home/matt/.config/gtkrc rw,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1043 fsname=/matt/.config/gtkrc dir=/home/matt/.config/gtkrc fstype=ext4
Whitelisting /home/matt/.config/gtkrc-2.0
1044 1025 253:2 /matt/.config/gtkrc-2.0 /home/matt/.config/gtkrc-2.0 rw,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1044 fsname=/matt/.config/gtkrc-2.0 dir=/home/matt/.config/gtkrc-2.0 fstype=ext4
Whitelisting /home/matt/.gnome2
1045 1025 253:2 /matt/.gnome2 /home/matt/.gnome2 rw,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1045 fsname=/matt/.gnome2 dir=/home/matt/.gnome2 fstype=ext4
Whitelisting /home/matt/.gtkrc-2.0
1046 1025 253:2 /matt/.gtkrc-2.0 /home/matt/.gtkrc-2.0 rw,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1046 fsname=/matt/.gtkrc-2.0 dir=/home/matt/.gtkrc-2.0 fstype=ext4
Whitelisting /home/matt/.kde/share/config/gtkrc
1047 1025 253:2 /matt/.kde/share/config/gtkrc /home/matt/.kde/share/config/gtkrc rw,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1047 fsname=/matt/.kde/share/config/gtkrc dir=/home/matt/.kde/share/config/gtkrc fstype=ext4
Whitelisting /home/matt/.kde/share/config/gtkrc-2.0
1048 1025 253:2 /matt/.kde/share/config/gtkrc-2.0 /home/matt/.kde/share/config/gtkrc-2.0 rw,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1048 fsname=/matt/.kde/share/config/gtkrc-2.0 dir=/home/matt/.kde/share/config/gtkrc-2.0 fstype=ext4
Whitelisting /home/matt/.config/Trolltech.conf
1049 1025 253:2 /matt/.config/Trolltech.conf /home/matt/.config/Trolltech.conf rw,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1049 fsname=/matt/.config/Trolltech.conf dir=/home/matt/.config/Trolltech.conf fstype=ext4
Whitelisting /home/matt/.config/kdeglobals
1050 1025 253:2 /matt/.config/kdeglobals /home/matt/.config/kdeglobals rw,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1050 fsname=/matt/.config/kdeglobals dir=/home/matt/.config/kdeglobals fstype=ext4
Whitelisting /home/matt/.config/kio_httprc
1051 1025 253:2 /matt/.config/kio_httprc /home/matt/.config/kio_httprc rw,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1051 fsname=/matt/.config/kio_httprc dir=/home/matt/.config/kio_httprc fstype=ext4
Whitelisting /home/matt/.kde/share/config/kdeglobals
1052 1025 253:2 /matt/.kde/share/config/kdeglobals /home/matt/.kde/share/config/kdeglobals rw,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1052 fsname=/matt/.kde/share/config/kdeglobals dir=/home/matt/.kde/share/config/kdeglobals fstype=ext4
Whitelisting /home/matt/.kde/share/config/kio_httprc
1053 1025 253:2 /matt/.kde/share/config/kio_httprc /home/matt/.kde/share/config/kio_httprc rw,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1053 fsname=/matt/.kde/share/config/kio_httprc dir=/home/matt/.kde/share/config/kio_httprc fstype=ext4
Whitelisting /home/matt/.kde/share/config/kioslaverc
1054 1025 253:2 /matt/.kde/share/config/kioslaverc /home/matt/.kde/share/config/kioslaverc rw,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1054 fsname=/matt/.kde/share/config/kioslaverc dir=/home/matt/.kde/share/config/kioslaverc fstype=ext4
Whitelisting /home/matt/.kde/share/config/oxygenrc
1055 1025 253:2 /matt/.kde/share/config/oxygenrc /home/matt/.kde/share/config/oxygenrc rw,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1055 fsname=/matt/.kde/share/config/oxygenrc dir=/home/matt/.kde/share/config/oxygenrc fstype=ext4
Whitelisting /tmp/.X11-unix
1056 1020 0:35 /.X11-unix /tmp/.X11-unix rw,nosuid,nodev master:20 - tmpfs tmpfs rw,seclabel,size=7683616k,nr_inodes=409600,inode64
mountid=1056 fsname=/.X11-unix dir=/tmp/.X11-unix fstype=tmpfs
Not blacklist /home/matt/.config/autostart
Disable /etc/xdg/autostart
Mounting read-only /home/matt/.config/kdeglobals
1060 1050 253:2 /matt/.config/kdeglobals /home/matt/.config/kdeglobals ro,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1060 fsname=/matt/.config/kdeglobals dir=/home/matt/.config/kdeglobals fstype=ext4
Mounting read-only /home/matt/.config/kio_httprc
1061 1051 253:2 /matt/.config/kio_httprc /home/matt/.config/kio_httprc ro,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1061 fsname=/matt/.config/kio_httprc dir=/home/matt/.config/kio_httprc fstype=ext4
Mounting read-only /home/matt/.kde/share/config/kdeglobals
1062 1052 253:2 /matt/.kde/share/config/kdeglobals /home/matt/.kde/share/config/kdeglobals ro,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1062 fsname=/matt/.kde/share/config/kdeglobals dir=/home/matt/.kde/share/config/kdeglobals fstype=ext4
Mounting read-only /home/matt/.kde/share/config/kio_httprc
1063 1053 253:2 /matt/.kde/share/config/kio_httprc /home/matt/.kde/share/config/kio_httprc ro,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1063 fsname=/matt/.kde/share/config/kio_httprc dir=/home/matt/.kde/share/config/kio_httprc fstype=ext4
Mounting read-only /home/matt/.kde/share/config/kioslaverc
1064 1054 253:2 /matt/.kde/share/config/kioslaverc /home/matt/.kde/share/config/kioslaverc ro,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1064 fsname=/matt/.kde/share/config/kioslaverc dir=/home/matt/.kde/share/config/kioslaverc fstype=ext4
Disable /run/user/1000/klauncherDKQvKn.1.slave-socket
Disable /run/user/1000/kdeinit5__0
Mounting read-only /home/matt/.config/dconf
1067 1038 253:2 /matt/.config/dconf /home/matt/.config/dconf ro,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1067 fsname=/matt/.config/dconf dir=/home/matt/.config/dconf fstype=ext4
Disable /var/lib/systemd
Disable /usr/bin/systemd-run
Disable /usr/bin/systemd-run (requested /bin/systemd-run)
Disable /run/user/1000/systemd
Disable /etc/rc.d/init.d (requested /etc/init.d/)
Disable /var/lib/upower
Disable /var/spool/mail (requested /var/mail)
Disable /var/opt
Disable /run/acpid.socket (requested /var/run/acpid.socket)
Disable /var/spool/anacron
Disable /var/spool/cron
Disable /var/spool/mail
Disable /etc/anacrontab
Disable /etc/crontab
Disable /etc/cron.hourly
Disable /etc/cron.weekly
Disable /etc/cron.deny
Disable /etc/cron.daily
Disable /etc/cron.monthly
Disable /etc/cron.d
Disable /etc/profile.d
Disable /etc/rc.d/rc4.d (requested /etc/rc4.d)
Disable /etc/rc.d/rc1.d (requested /etc/rc1.d)
Disable /etc/rc.d/rc3.d (requested /etc/rc3.d)
Disable /etc/rc.d/rc5.d (requested /etc/rc5.d)
Disable /etc/rc.d/rc0.d (requested /etc/rc0.d)
Disable /etc/rc.d/rc2.d (requested /etc/rc2.d)
Disable /etc/rc.d/rc6.d (requested /etc/rc6.d)
Disable /etc/kernel
Disable /etc/grub.d
Disable /etc/grub-customizer
Disable /etc/selinux
Disable /etc/modules-load.d
Disable /etc/logrotate.d
Disable /etc/logrotate.conf
Mounting read-only /home/matt/.bashrc
1103 1025 0:56 /matt/.bashrc /home/matt/.bashrc ro,nosuid,nodev,noexec - tmpfs tmpfs rw,seclabel,mode=755,inode64
mountid=1103 fsname=/matt/.bashrc dir=/home/matt/.bashrc fstype=tmpfs
Mounting read-only /home/matt/.local/share/applications
1104 1034 253:2 /matt/.local/share/applications /home/matt/.local/share/applications ro,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1104 fsname=/matt/.local/share/applications dir=/home/matt/.local/share/applications fstype=ext4
Mounting read-only /home/matt/.config/mimeapps.list
1105 1031 253:2 /matt/.config/mimeapps.list /home/matt/.config/mimeapps.list ro,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1105 fsname=/matt/.config/mimeapps.list dir=/home/matt/.config/mimeapps.list fstype=ext4
Mounting read-only /home/matt/.config/user-dirs.dirs
1106 1032 253:2 /matt/.config/user-dirs.dirs /home/matt/.config/user-dirs.dirs ro,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1106 fsname=/matt/.config/user-dirs.dirs dir=/home/matt/.config/user-dirs.dirs fstype=ext4
Mounting read-only /home/matt/.config/user-dirs.locale
1107 1033 253:2 /matt/.config/user-dirs.locale /home/matt/.config/user-dirs.locale ro,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1107 fsname=/matt/.config/user-dirs.locale dir=/home/matt/.config/user-dirs.locale fstype=ext4
Mounting read-only /home/matt/.local/share/mime
1108 1036 253:2 /matt/.local/share/mime /home/matt/.local/share/mime ro,relatime master:45 - ext4 /dev/mapper/fedora-home rw,lazytime,seclabel
mountid=1108 fsname=/matt/.local/share/mime dir=/home/matt/.local/share/mime fstype=ext4
Disable /home/matt/.gnome2/keyrings
Disable /etc/group-
Disable /etc/gshadow
Disable /etc/gshadow-
Disable /etc/passwd-
Disable /etc/shadow
Disable /etc/shadow-
Disable /etc/ssh
Disable /usr/sbin (requested /sbin)
Disable /usr/local/sbin
Disable /usr/sbin
Disable /usr/bin/at
Disable /usr/bin/at (requested /bin/at)
Disable /usr/bin/chage
Disable /usr/bin/chage (requested /bin/chage)
Disable /usr/bin/chfn
Disable /usr/bin/chfn (requested /bin/chfn)
Disable /usr/bin/chsh
Disable /usr/bin/chsh (requested /bin/chsh)
Disable /usr/bin/crontab
Disable /usr/bin/crontab (requested /bin/crontab)
Disable /usr/bin/fusermount
Disable /usr/bin/fusermount (requested /bin/fusermount)
Disable /usr/bin/gpasswd
Disable /usr/bin/gpasswd (requested /bin/gpasswd)
Disable /usr/bin/mount
Disable /usr/bin/mount (requested /bin/mount)
Disable /usr/bin/ncat (requested /usr/bin/nc)
Disable /usr/bin/ncat (requested /bin/nc)
Disable /usr/bin/ncat
Disable /usr/bin/ncat (requested /bin/ncat)
Disable /usr/bin/newgidmap
Disable /usr/bin/newgidmap (requested /bin/newgidmap)
Disable /usr/bin/newgrp
Disable /usr/bin/newgrp (requested /bin/newgrp)
Disable /usr/bin/newuidmap
Disable /usr/bin/newuidmap (requested /bin/newuidmap)
Disable /usr/bin/ntfs-3g
Disable /usr/bin/ntfs-3g (requested /bin/ntfs-3g)
Disable /usr/bin/pkexec
Disable /usr/bin/pkexec (requested /bin/pkexec)
Disable /usr/bin/newgrp (requested /usr/bin/sg)
Disable /usr/bin/newgrp (requested /bin/sg)
Disable /usr/bin/strace
Disable /usr/bin/strace (requested /bin/strace)
Disable /usr/bin/su
Disable /usr/bin/su (requested /bin/su)
Disable /usr/bin/sudo
Disable /usr/bin/sudo (requested /bin/sudo)
Disable /usr/bin/umount
Disable /usr/bin/umount (requested /bin/umount)
Disable /usr/bin/xev
Disable /usr/bin/xev (requested /bin/xev)
Disable /usr/bin/xinput
Disable /usr/bin/xinput (requested /bin/xinput)
Disable /run/user/1000/app
Debug: no access to file /run/user/1000/doc, forcing mount
Disable /run/user/1000/doc
Disable /run/user/1000/.dbus-proxy
Disable /run/user/1000/.flatpak
Disable /run/user/1000/.flatpak-helper
Disable /usr/share/flatpak
Disable /var/lib/flatpak/.fedora-initialized
Not blacklist /var/lib/flatpak/exports
Disable /var/lib/flatpak/repo
Disable /var/lib/flatpak/.changed
Disable /var/lib/flatpak/.backrc
Disable /var/lib/flatpak/.removed
Disable /var/lib/flatpak/oci
Disable /var/lib/flatpak/runtime
Disable /var/lib/flatpak/appstream
Disable /var/lib/flatpak/app
Disable /usr/bin/bwrap
Disable /usr/bin/bwrap (requested /bin/bwrap)
Disable /usr/bin/dig
Disable /usr/bin/dig (requested /bin/dig)
Disable /usr/bin/nslookup
Disable /usr/bin/nslookup (requested /bin/nslookup)
Disable /usr/bin/host
Disable /usr/bin/host (requested /bin/host)
Disable /usr/bin/resolvectl
Disable /usr/bin/resolvectl (requested /bin/resolvectl)
Disable /usr/bin/as
Disable /usr/bin/as (requested /bin/as)
Disable /usr/bin/ccache (requested /usr/lib64/ccache/cc)
Disable /usr/bin/gcc (requested /usr/bin/cc)
Disable /usr/bin/gcc (requested /bin/cc)
Disable /usr/bin/ccache (requested /usr/lib64/ccache/c++)
Disable /usr/bin/c++filt
Disable /usr/bin/c++
Disable /usr/bin/c++filt (requested /bin/c++filt)
Disable /usr/bin/c++ (requested /bin/c++)
Disable /usr/bin/c89
Disable /usr/bin/c89 (requested /bin/c89)
Disable /usr/bin/c99
Disable /usr/bin/c99 (requested /bin/c99)
Disable /usr/bin/cpp
Disable /usr/bin/cpp2html
Disable /usr/bin/cpp (requested /bin/cpp)
Disable /usr/bin/cpp2html (requested /bin/cpp2html)
Disable /usr/bin/ccache (requested /usr/lib64/ccache/g++)
Disable /usr/bin/g++
Disable /usr/bin/g++ (requested /bin/g++)
Disable /usr/bin/ccache (requested /usr/lib64/ccache/gcc)
Disable /usr/bin/gcc-nm
Disable /usr/bin/gcc-ranlib
Disable /usr/bin/gcc
Disable /usr/bin/gcc-ar
Disable /usr/bin/gcc-nm (requested /bin/gcc-nm)
Disable /usr/bin/gcc-ranlib (requested /bin/gcc-ranlib)
Disable /usr/bin/gcc (requested /bin/gcc)
Disable /usr/bin/gcc-ar (requested /bin/gcc-ar)
Disable /usr/libexec/gdb (requested /usr/bin/gdb)
Disable /usr/libexec/gdb (requested /bin/gdb)
Disable /usr/bin/ld.bfd (requested /usr/bin/ld)
Disable /usr/bin/ld.bfd (requested /bin/ld)
Disable /usr/bin/ccache (requested /usr/lib64/ccache/x86_64-redhat-linux-gcc)
Disable /usr/bin/x86_64-redhat-linux-gcc-10
Disable /usr/bin/x86_64-redhat-linux-gcc
Disable /usr/bin/x86_64-redhat-linux-gcc-10 (requested /bin/x86_64-redhat-linux-gcc-10)
Disable /usr/bin/x86_64-redhat-linux-gcc (requested /bin/x86_64-redhat-linux-gcc)
Disable /usr/bin/ccache (requested /usr/lib64/ccache/x86_64-redhat-linux-g++)
Disable /usr/bin/x86_64-redhat-linux-g++
Disable /usr/bin/x86_64-redhat-linux-g++ (requested /bin/x86_64-redhat-linux-g++)
Disable /usr/bin/ccache (requested /usr/lib64/ccache/x86_64-redhat-linux-gcc)
Disable /usr/bin/x86_64-redhat-linux-gcc-10
Disable /usr/bin/x86_64-redhat-linux-gcc
Disable /usr/bin/x86_64-redhat-linux-gcc-10 (requested /bin/x86_64-redhat-linux-gcc-10)
Disable /usr/bin/x86_64-redhat-linux-gcc (requested /bin/x86_64-redhat-linux-gcc)
Disable /usr/bin/ccache (requested /usr/lib64/ccache/x86_64-redhat-linux-g++)
Disable /usr/bin/x86_64-redhat-linux-g++
Disable /usr/bin/x86_64-redhat-linux-g++ (requested /bin/x86_64-redhat-linux-g++)
Disable /usr/java/jdk-14.0.2/bin/java (requested /usr/java/default/bin/java)
Disable /usr/java/jdk-14.0.2/bin/java (requested /usr/java/jre/bin/java)
Disable /usr/java/jdk-14.0.2/bin/java (requested /usr/bin/java)
Disable /usr/java/jdk-14.0.2/bin/java (requested /bin/java)
Disable /usr/java/jdk-14.0.2/bin/javac (requested /usr/java/default/bin/javac)
Disable /usr/java/jdk-14.0.2/bin/javac (requested /usr/java/jre/bin/javac)
Disable /usr/java/jdk-14.0.2/bin/javac (requested /usr/bin/javac)
Disable /usr/java/jdk-14.0.2/bin/javac (requested /bin/javac)
Disable /etc/java
Disable /usr/lib/java
Disable /usr/share/java
Disable /usr/bin/openssl
Disable /usr/bin/openssl (requested /bin/openssl)
Disable /usr/bin/valgrind
Disable /usr/bin/valgrind-listener
Disable /usr/bin/valgrind-di-server
Disable /usr/bin/valgrind (requested /bin/valgrind)
Disable /usr/bin/valgrind-listener (requested /bin/valgrind-listener)
Disable /usr/bin/valgrind-di-server (requested /bin/valgrind-di-server)
Disable /usr/src
Disable /usr/local/src
Disable /usr/include
Disable /usr/local/include
Disable /usr/bin/luac
Disable /usr/bin/lua
Disable /usr/bin/luac (requested /bin/luac)
DDISPLAY=:0 parsed as 0
 line  OP JT JF    K
=================================
 0000: 20 00 00 00000004   ld  data.architecture
 0001: 15 04 00 c000003e   jeq ARCH_64 0006 (false 0002)
 0002: 20 00 00 00000000   ld  data.syscall-number
 0003: 15 01 00 00000167   jeq unknown 0005 (false 0004)
 0004: 06 00 00 7fff0000   ret ALLOW
 0005: 05 00 00 00000006   jmp 000c
 0006: 20 00 00 00000004   ld  data.architecture
 0007: 15 01 00 c000003e   jeq ARCH_64 0009 (false 0008)
 0008: 06 00 00 7fff0000   ret ALLOW
 0009: 20 00 00 00000000   ld  data.syscall-number
 000a: 15 01 00 00000029   jeq socket 000c (false 000b)
 000b: 06 00 00 7fff0000   ret ALLOW
 000c: 20 00 00 00000010   ld  data.args[0]
 000d: 15 00 01 00000001   jeq 1 000e (false 000f)
 000e: 06 00 00 7fff0000   ret ALLOW
 000f: 15 00 01 00000002   jeq 2 0010 (false 0011)
 0010: 06 00 00 7fff0000   ret ALLOW
 0011: 15 00 01 0000000a   jeq a 0012 (false 0013)
 0012: 06 00 00 7fff0000   ret ALLOW
 0013: 06 00 00 0005005f   ret ERRNO(95)
 line  OP JT JF    K
=================================
 0000: 20 00 00 00000004   ld  data.architecture
 0001: 15 01 00 40000003   jeq ARCH_32 0003 (false 0002)
 0002: 06 00 00 7fff0000   ret ALLOW
 0003: 20 00 00 00000000   ld  data.syscall-number
 0004: 15 00 01 00000015   jeq 15 0005 (false 0006)
 0005: 06 00 00 00000001   ret KILL
 0006: 15 00 01 00000034   jeq 34 0007 (false 0008)
 0007: 06 00 00 00000001   ret KILL
 0008: 15 00 01 0000001a   jeq 1a 0009 (false 000a)
 0009: 06 00 00 00000001   ret KILL
 000a: 15 00 01 0000011b   jeq 11b 000b (false 000c)
 000b: 06 00 00 00000001   ret KILL
 000c: 15 00 01 00000155   jeq 155 000d (false 000e)
 000d: 06 00 00 00000001   ret KILL
 000e: 15 00 01 00000156   jeq 156 000f (false 0010)
 000f: 06 00 00 00000001   ret KILL
 0010: 15 00 01 0000007f   jeq 7f 0011 (false 0012)
 0011: 06 00 00 00000001   ret KILL
 0012: 15 00 01 00000080   jeq 80 0013 (false 0014)
 0013: 06 00 00 00000001   ret KILL
 0014: 15 00 01 0000015e   jeq 15e 0015 (false 0016)
 0015: 06 00 00 00000001   ret KILL
 0016: 15 00 01 00000081   jeq 81 0017 (false 0018)
 0017: 06 00 00 00000001   ret KILL
 0018: 15 00 01 0000006e   jeq 6e 0019 (false 001a)
 0019: 06 00 00 00000001   ret KILL
 001a: 15 00 01 00000065   jeq 65 001b (false 001c)
 001b: 06 00 00 00000001   ret KILL
 001c: 15 00 01 00000121   jeq 121 001d (false 001e)
 001d: 06 00 00 00000001   ret KILL
 001e: 15 00 01 00000057   jeq 57 001f (false 0020)
 001f: 06 00 00 00000001   ret KILL
 0020: 15 00 01 00000073   jeq 73 0021 (false 0022)
 0021: 06 00 00 00000001   ret KILL
 0022: 15 00 01 00000067   jeq 67 0023 (false 0024)
 0023: 06 00 00 00000001   ret KILL
 0024: 15 00 01 0000015b   jeq 15b 0025 (false 0026)
 0025: 06 00 00 00000001   ret KILL
 0026: 15 00 01 0000015c   jeq 15c 0027 (false 0028)
 0027: 06 00 00 00000001   ret KILL
 0028: 15 00 01 00000087   jeq 87 0029 (false 002a)
 0029: 06 00 00 00000001   ret KILL
 002a: 15 00 01 00000095   jeq 95 002b (false 002c)
 002b: 06 00 00 00000001   ret KILL
 002c: 15 00 01 0000007c   jeq 7c 002d (false 002e)
 002d: 06 00 00 00000001   ret KILL
 002e: 15 00 01 00000157   jeq 157 002f (false 0030)
 002f: 06 00 00 00000001   ret KILL
 0030: 15 00 01 000000fd   jeq fd 0031 (false 0032)
 0031: 06 00 00 00000001   ret KILL
 0032: 15 00 01 00000150   jeq 150 0033 (false 0034)
 0033: 06 00 00 00000001   ret KILL
 0034: 15 00 01 00000152   jeq 152 0035 (false 0036)
 0035: 06 00 00 00000001   ret KILL
 0036: 15 00 01 0000015d   jeq 15d 0037 (false 0038)
 0037: 06 00 00 00000001   ret KILL
 0038: 15 00 01 0000011e   jeq 11e 0039 (false 003a)
 0039: 06 00 00 00000001   ret KILL
 003a: 15 00 01 0000011f   jeq 11f 003b (false 003c)
 003b: 06 00 00 00000001   ret KILL
 003c: 15 00 01 00000120   jeq 120 003d (false 003e)
 003d: 06 00 00 00000001   ret KILL
 003e: 15 00 01 00000056   jeq 56 003f (false 0040)
 003f: 06 00 00 00000001   ret KILL
 0040: 15 00 01 00000033   jeq 33 0041 (false 0042)
 0041: 06 00 00 00000001   ret KILL
 0042: 15 00 01 0000007b   jeq 7b 0043 (false 0044)
 0043: 06 00 00 00000001   ret KILL
 0044: 15 00 01 000000d9   jeq d9 0045 (false 0046)
 0045: 06 00 00 00000001   ret KILL
 0046: 15 00 01 000000f5   jeq f5 0047 (false 0048)
 0047: 06 00 00 00000001   ret KILL
 0048: 15 00 01 000000f6   jeq f6 0049 (false 004a)
 0049: 06 00 00 00000001   ret KILL
 004a: 15 00 01 000000f7   jeq f7 004b (false 004c)
 004b: 06 00 00 00000001   ret KILL
 004c: 15 00 01 000000f8   jeq f8 004d (false 004e)
 004d: 06 00 00 00000001   ret KILL
 004e: 15 00 01 000000f9   jeq f9 004f (false 0050)
 004f: 06 00 00 00000001   ret KILL
 0050: 15 00 01 00000101   jeq 101 0051 (false 0052)
 0051: 06 00 00 00000001   ret KILL
 0052: 15 00 01 00000112   jeq 112 0053 (false 0054)
 0053: 06 00 00 00000001   ret KILL
 0054: 15 00 01 00000114   jeq 114 0055 (false 0056)
 0055: 06 00 00 00000001   ret KILL
 0056: 15 00 01 00000126   jeq 126 0057 (false 0058)
 0057: 06 00 00 00000001   ret KILL
 0058: 15 00 01 0000013d   jeq 13d 0059 (false 005a)
 0059: 06 00 00 00000001   ret KILL
 005a: 15 00 01 0000013c   jeq 13c 005b (false 005c)
 005b: 06 00 00 00000001   ret KILL
 005c: 15 00 01 0000003d   jeq 3d 005d (false 005e)
 005d: 06 00 00 00000001   ret KILL
 005e: 15 00 01 00000058   jeq 58 005f (false 0060)
 005f: 06 00 00 00000001   ret KILL
 0060: 15 00 01 000000a9   jeq a9 0061 (false 0062)
 0061: 06 00 00 00000001   ret KILL
 0062: 15 00 01 00000082   jeq 82 0063 (false 0064)
 0063: 06 00 00 00000001   ret KILL
 0064: 06 00 00 7fff0000   ret ALLOW
 line  OP JT JF    K
=================================
 0000: 20 00 00 00000004   ld  data.architecture
 0001: 15 01 00 c000003e   jeq ARCH_64 0003 (false 0002)
 0002: 06 00 00 7fff0000   ret ALLOW
 0003: 20 00 00 00000000   ld  data.syscall-number
 0004: 35 01 00 40000000   jge X32_ABI 0006 (false 0005)
 0005: 35 01 00 00000000   jge read 0007 (false 0006)
 0006: 06 00 00 00050001   ret ERRNO(1)
 0007: 15 00 01 0000009f   jeq adjtimex 0008 (false 0009)
 0008: 06 00 00 00000001   ret KILL
 0009: 15 00 01 00000131   jeq clock_adjtime 000a (false 000b)
 000a: 06 00 00 00000001   ret KILL
 000b: 15 00 01 000000e3   jeq clock_settime 000c (false 000d)
 000c: 06 00 00 00000001   ret KILL
 000d: 15 00 01 000000a4   jeq settimeofday 000e (false 000f)
 000e: 06 00 00 00000001   ret KILL
 000f: 15 00 01 0000009a   jeq modify_ldt 0010 (false 0011)
 0010: 06 00 00 00000001   ret KILL
 0011: 15 00 01 000000d4   jeq lookup_dcookie 0012 (false 0013)
 0012: 06 00 00 00000001   ret KILL
 0013: 15 00 01 0000012a   jeq perf_event_open 0014 (false 0015)
 0014: 06 00 00 00000001   ret KILL
 0015: 15 00 01 00000137   jeq process_vm_writev 0016 (false 0017)
 0016: 06 00 00 00000001   ret KILL
 0017: 15 00 01 000000b0   jeq delete_module 0018 (false 0019)
 0018: 06 00 00 00000001   ret KILL
 0019: 15 00 01 00000139   jeq finit_module 001a (false 001b)
 001a: 06 00 00 00000001   ret KILL
 001b: 15 00 01 000000af   jeq init_module 001c (false 001d)
 001c: 06 00 00 00000001   ret KILL
 001d: 15 00 01 000000a1   jeq chroot 001e (false 001f)
 001e: 06 00 00 00000001   ret KILL
 001f: 15 00 01 000000a5   jeq mount 0020 (false 0021)
 0020: 06 00 00 00000001   ret KILL
 0021: 15 00 01 0000009b   jeq pivot_root 0022 (false 0023)
 0022: 06 00 00 00000001   ret KILL
 0023: 15 00 01 000000a6   jeq umount2 0024 (false 0025)
 0024: 06 00 00 00000001   ret KILL
 0025: 15 00 01 0000009c   jeq _sysctl 0026 (false 0027)
 0026: 06 00 00 00000001   ret KILL
 0027: 15 00 01 000000b7   jeq afs_syscall 0028 (false 0029)
 0028: 06 00 00 00000001   ret KILL
 0029: 15 00 01 000000ae   jeq create_module 002a (false 002b)
 002a: 06 00 00 00000001   ret KILL
 002b: 15 00 01 000000b1   jeq get_kernel_syms 002c (false 002d)
 002c: 06 00 00 00000001   ret KILL
 002d: 15 00 01 000000b5   jeq getpmsg 002e (false 002f)
 002e: 06 00 00 00000001   ret KILL
 002f: 15 00 01 000000b6   jeq putpmsg 0030 (false 0031)
 0030: 06 00 00 00000001   ret KILL
 0031: 15 00 01 000000b2   jeq query_module 0032 (false 0033)
 0032: 06 00 00 00000001   ret KILL
 0033: 15 00 01 000000b9   jeq security 0034 (false 0035)
 0034: 06 00 00 00000001   ret KILL
 0035: 15 00 01 0000008b   jeq sysfs 0036 (false 0037)
 0036: 06 00 00 00000001   ret KILL
 0037: 15 00 01 000000b8   jeq tuxcall 0038 (false 0039)
 0038: 06 00 00 00000001   ret KILL
 0039: 15 00 01 00000086   jeq uselib 003a (false 003b)
 003a: 06 00 00 00000001   ret KILL
 003b: 15 00 01 00000088   jeq ustat 003c (false 003d)
 003c: 06 00 00 00000001   ret KILL
 003d: 15 00 01 000000ec   jeq vserver 003e (false 003f)
 003e: 06 00 00 00000001   ret KILL
 003f: 15 00 01 000000ad   jeq ioperm 0040 (false 0041)
 0040: 06 00 00 00000001   ret KILL
 0041: 15 00 01 000000ac   jeq iopl 0042 (false 0043)
 0042: 06 00 00 00000001   ret KILL
 0043: 15 00 01 000000f6   jeq kexec_load 0044 (false 0045)
 0044: 06 00 00 00000001   ret KILL
 0045: 15 00 01 00000140   jeq kexec_file_load 0046 (false 0047)
 0046: 06 00 00 00000001   ret KILL
 0047: 15 00 01 000000a9   jeq reboot 0048 (false 0049)
 0048: 06 00 00 00000001   ret KILL
 0049: 15 00 01 000000a7   jeq swapon 004a (false 004b)
 004a: 06 00 00 00000001   ret KILL
 004b: 15 00 01 000000a8   jeq swapoff 004c (false 004d)
 004c: 06 00 00 00000001   ret KILL
 004d: 15 00 01 00000130   jeq open_by_handle_at 004e (false 004f)
 004e: 06 00 00 00000001   ret KILL
 004f: 15 00 01 0000012f   jeq name_to_handle_at 0050 (false 0051)
 0050: 06 00 00 00000001   ret KILL
 0051: 15 00 01 000000fb   jeq ioprio_set 0052 (false 0053)
 0052: 06 00 00 00000001   ret KILL
 0053: 15 00 01 00000067   jeq syslog 0054 (false 0055)
 0054: 06 00 00 00000001   ret KILL
 0055: 15 00 01 0000012c   jeq fanotify_init 0056 (false 0057)
 0056: 06 00 00 00000001   ret KILL
 0057: 15 00 01 00000138   jeq kcmp 0058 (false 0059)
 0058: 06 00 00 00000001   ret KILL
 0059: 15 00 01 000000f8   jeq add_key 005a (false 005b)
 005a: 06 00 00 00000001   ret KILL
 005b: 15 00 01 000000f9   jeq request_key 005c (false 005d)
 005c: 06 00 00 00000001   ret KILL
 005d: 15 00 01 000000ed   jeq mbind 005e (false 005f)
 005e: 06 00 00 00000001   ret KILL
 005f: 15 00 01 00000100   jeq migrate_pages 0060 (false 0061)
 0060: 06 00 00 00000001   ret KILL
 0061: 15 00 01 00000117   jeq move_pages 0062 (false 0063)
 0062: 06 00 00 00000001   ret KILL
 0063: 15 00 01 000000fa   jeq keyctl 0064 (false 0065)
 0064: 06 00 00 00000001   ret KILL
 0065: 15 00 01 000000ce   jeq io_setup 0066 (false 0067)
 0066: 06 00 00 00000001   ret KILL
 0067: 15 00 01 000000cf   jeq io_destroy 0068 (false 0069)
 0068: 06 00 00 00000001   ret KILL
 0069: 15 00 01 000000d0   jeq io_getevents 006a (false 006b)
 006a: 06 00 00 00000001   ret KILL
 006b: 15 00 01 000000d1   jeq io_submit 006c (false 006d)
 006c: 06 00 00 00000001   ret KILL
 006d: 15 00 01 000000d2   jeq io_cancel 006e (false 006f)
 006e: 06 00 00 00000001   ret KILL
 006f: 15 00 01 000000d8   jeq remap_file_pages 0070 (false 0071)
 0070: 06 00 00 00000001   ret KILL
 0071: 15 00 01 00000143   jeq userfaultfd 0072 (false 0073)
 0072: 06 00 00 00000001   ret KILL
 0073: 15 00 01 000000a3   jeq acct 0074 (false 0075)
 0074: 06 00 00 00000001   ret KILL
 0075: 15 00 01 00000141   jeq bpf 0076 (false 0077)
 0076: 06 00 00 00000001   ret KILL
 0077: 15 00 01 000000b4   jeq nfsservctl 0078 (false 0079)
 0078: 06 00 00 00000001   ret KILL
 0079: 15 00 01 000000ab   jeq setdomainname 007a (false 007b)
 007a: 06 00 00 00000001   ret KILL
 007b: 15 00 01 000000aa   jeq sethostname 007c (false 007d)
 007c: 06 00 00 00000001   ret KILL
 007d: 15 00 01 00000099   jeq vhangup 007e (false 007f)
 007e: 06 00 00 00000001   ret KILL
 007f: 15 00 01 00000065   jeq ptrace 0080 (false 0081)
 0080: 06 00 00 00000001   ret KILL
 0081: 15 00 01 00000087   jeq personality 0082 (false 0083)
 0082: 06 00 00 00000001   ret KILL
 0083: 15 00 01 00000136   jeq process_vm_readv 0084 (false 0085)
 0084: 06 00 00 00000001   ret KILL
 0085: 06 00 00 7fff0000   ret ALLOW
isable /usr/bin/lua (requested /bin/lua)
Disable /usr/share/lua
Disable /usr/lib64/libmozjs-78.so.0.0.0 (requested /usr/lib64/libmozjs-78.so.0)
Disable /usr/lib64/libmozjs-78.so.0.0.0
Disable /usr/bin/cpan-mirrors
Disable /usr/bin/cpan
Disable /usr/bin/cpan-mirrors (requested /bin/cpan-mirrors)
Disable /usr/bin/cpan (requested /bin/cpan)
Disable /usr/bin/perl
Disable /usr/bin/perl (requested /bin/perl)
Disable /usr/share/perl5
Disable /usr/bin/python3.9 (requested /usr/bin/python3)
Disable /usr/bin/python3.9
Disable /usr/bin/python3.9 (requested /bin/python3)
Disable /usr/bin/python3.9 (requested /bin/python3.9)
Disable /usr/lib/python3.8
Disable /usr/lib/python3.7
Disable /usr/lib/python3.9
Disable /usr/lib64/python3.4
Disable /usr/lib64/python3.6
Disable /usr/lib64/python3.8
Disable /usr/lib64/python3.7
Disable /usr/lib64/python3.5
Disable /usr/lib64/python3.9
Not blacklist /home/matt/.dropbox-dist
Not blacklist /home/matt/.dropbox
Mounting noexec /tmp
1290 1289 0:35 /.X11-unix /tmp/.X11-unix rw,nosuid,nodev master:20 - tmpfs tmpfs rw,seclabel,size=7683616k,nr_inodes=409600,inode64
mountid=1290 fsname=/.X11-unix dir=/tmp/.X11-unix fstype=tmpfs
Mounting noexec /tmp/.X11-unix
1291 1290 0:35 /.X11-unix /tmp/.X11-unix rw,nosuid,nodev,noexec master:20 - tmpfs tmpfs rw,seclabel,size=7683616k,nr_inodes=409600,inode64
mountid=1291 fsname=/.X11-unix dir=/tmp/.X11-unix fstype=tmpfs
Mounting read-only /tmp/.X11-unix
1292 1291 0:35 /.X11-unix /tmp/.X11-unix ro,nosuid,nodev,noexec master:20 - tmpfs tmpfs rw,seclabel,size=7683616k,nr_inodes=409600,inode64
mountid=1292 fsname=/.X11-unix dir=/tmp/.X11-unix fstype=tmpfs
Disable /sys/fs
Disable /sys/module
disable pulseaudio
blacklist /run/user/1000/pulse/native
blacklist /run/user/1000/pulse
Current directory: /home/matt
Install protocol filter: unix,inet,inet6
configuring 20 seccomp entries in /run/firejail/mnt/seccomp/seccomp.protocol
sbox run: /usr/lib64/firejail/fsec-print /run/firejail/mnt/seccomp/seccomp.protocol 
configuring 101 seccomp entries in /run/firejail/mnt/seccomp/seccomp.32
sbox run: /usr/lib64/firejail/fsec-print /run/firejail/mnt/seccomp/seccomp.32 
Dual 32/64 bit seccomp filter configured
configuring 134 seccomp entries in /run/firejail/mnt/seccomp/seccomp
sbox run: /usr/lib64/firejail/fsec-print /run/firejail/mnt/seccomp/seccomp 
seccomp filter configured
Mounting read-only /run/firejail/mnt/seccomp
1297 962 0:43 /seccomp /run/firejail/mnt/seccomp ro,nosuid - tmpfs tmpfs rw,seclabel,mode=755,inode64
mountid=1297 fsname=/seccomp dir=/run/firejail/mnt/seccomp fstype=tmpfs
Seccomp directory:
ls /run/firejail/mnt/seccomp
drwxr-xr-x root     root             160 .
drwxr-xr-x root     root             320 ..
-rw-r--r-- matt     matt            1072 seccomp
-rw-r--r-- matt     matt             808 seccomp.32
-rw-r--r-- matt     matt             114 seccomp.list
-rw-r--r-- matt     matt               0 seccomp.postexec
-rw-r--r-- matt     matt               0 seccomp.postexec32
-rw-r--r-- matt     matt             160 seccomp.protocol
Active seccomp files:
cat /run/firejail/mnt/seccomp/seccomp.list
/run/firejail/mnt/seccomp/seccomp.protocol
/run/firejail/mnt/seccomp/seccomp.32
/run/firejail/mnt/seccomp/seccomp
Dropping all capabilities
noroot user namespace installed
Dropping all capabilities
NO_NEW_PRIVS set
Drop privileges: pid 1, uid 1000, gid 1000, nogroups 1
No supplementary groups
Child process initialized in 184.75 ms
starting application
LD_PRELOAD=(null)
execvp argument 0: dropbox
execvp argument 1: start
execvp: Permission denied
Searching $PATH for dropbox
trying #/usr/lib64/qt5/bin/dropbox#
trying #/home/matt/bin/dropbox#
trying #/usr/java/default/bin/dropbox#
trying #/usr/java/jre/bin/dropbox#
trying #/usr/local/threaded-bin/dropbox#
trying #/usr/lib64/ccache/dropbox#
trying #/usr/lib64/qt5/bin/dropbox#
trying #/usr/local/bin/dropbox#
trying #/usr/bin/dropbox#
Installing /run/firejail/mnt/seccomp/seccomp seccomp filter
Installing /run/firejail/mnt/seccomp/seccomp.32 seccomp filter
Installing /run/firejail/mnt/seccomp/seccomp.protocol seccomp filter

Parent is shutting down, bye...
@reinerh
Copy link
Collaborator

reinerh commented Apr 1, 2021

/usr/bin/python is a Python script with /usr/bin/python3 as the interpreter.

Fedora is also shipping a python symlink to python3? :-|
Many scripts assume that python is a python2 interpreter. Scripts that support python3 should normally update their shebang.

But regarding dropbox, I guess it's fine to allow python3 if it's needed. Do you want to open a merge request?

@rusty-snake
Copy link
Collaborator

@reinerh FIY https://fedoraproject.org/wiki/FinalizingFedoraSwitchtoPython3

@matthew-cline
Copy link
Contributor Author

Oops, I meant "/usr/bin/dropbox is a Python script with /usr/bin/python3 as the interpreter". But, yeah, /usr/bin/python is a symlink to python3 on Fedora.

Do you want to open a merge request?

Sure, I'll do that.

@rusty-snake rusty-snake linked a pull request Apr 2, 2021 that will close this issue
reinerh added a commit that referenced this issue Apr 2, 2021
dropbox: allow python3, fix for issue #4150
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging a pull request may close this issue.

3 participants