firejail_0.9.58.2-1_i386.deb


Advertisement

Description

firejail - sandbox to restrict the application environment

Property Value
Distribution Ubuntu 19.04 (Disco Dingo)
Repository Ubuntu Universe i386
Package filename firejail_0.9.58.2-1_i386.deb
Package name firejail
Package version 0.9.58.2
Package release 1
Package architecture i386
Package type deb
Category universe/utils
Homepage https://firejail.wordpress.com
License -
Maintainer Ubuntu Developers <ubuntu-devel-discuss@lists.ubuntu.com>
Download size 284.58 KB
Installed size 1.04 MB
Firejail is a SUID security sandbox program that reduces the risk of
security breaches by restricting the running environment of untrusted
applications using Linux namespaces and seccomp-bpf.  It allows a
process and all its descendants to have their own private view of the
globally shared kernel resources, such as the network stack, process
table, mount table.

Alternatives

Package Version Architecture Repository
firejail_0.9.58.2-1_amd64.deb 0.9.58.2 amd64 Ubuntu Universe
firejail - - -

Requires

Name Value
libapparmor1 >= 2.7.0~beta1+bzr1772
libc6 >= 2.27

Download

Type URL
Mirror archive.ubuntu.com
Binary Package firejail_0.9.58.2-1_i386.deb
Source Package firejail

Install Howto

  1. Update the package index:
    # sudo apt-get update
  2. Install firejail deb package:
    # sudo apt-get install firejail

Files

Path
/etc/apparmor.d/firejail-default
/etc/firejail/default.profile
/etc/firejail/disable-common.inc
/etc/firejail/disable-devel.inc
/etc/firejail/disable-interpreters.inc
/etc/firejail/disable-passwdmgr.inc
/etc/firejail/disable-programs.inc
/etc/firejail/disable-xdg.inc
/etc/firejail/firefox-common-addons.inc
/etc/firejail/firejail.config
/etc/firejail/login.users
/etc/firejail/nolocal.net
/etc/firejail/server.profile
/etc/firejail/tcpserver.net
/etc/firejail/webserver.net
/etc/firejail/whitelist-common.inc
/etc/firejail/whitelist-var-common.inc
/usr/bin/firecfg
/usr/bin/firejail
/usr/bin/firemon
/usr/lib/i386-linux-gnu/firejail/faudit
/usr/lib/i386-linux-gnu/firejail/fbuilder
/usr/lib/i386-linux-gnu/firejail/fcopy
/usr/lib/i386-linux-gnu/firejail/firecfg.config
/usr/lib/i386-linux-gnu/firejail/fldd
/usr/lib/i386-linux-gnu/firejail/fnet
/usr/lib/i386-linux-gnu/firejail/fnetfilter
/usr/lib/i386-linux-gnu/firejail/fsec-optimize
/usr/lib/i386-linux-gnu/firejail/fsec-print
/usr/lib/i386-linux-gnu/firejail/fseccomp
/usr/lib/i386-linux-gnu/firejail/fshaper.sh
/usr/lib/i386-linux-gnu/firejail/ftee
/usr/lib/i386-linux-gnu/firejail/libpostexecseccomp.so
/usr/lib/i386-linux-gnu/firejail/libtrace.so
/usr/lib/i386-linux-gnu/firejail/libtracelog.so
/usr/lib/i386-linux-gnu/firejail/seccomp
/usr/lib/i386-linux-gnu/firejail/seccomp.32
/usr/lib/i386-linux-gnu/firejail/seccomp.block_secondary
/usr/lib/i386-linux-gnu/firejail/seccomp.debug
/usr/lib/i386-linux-gnu/firejail/seccomp.mdwx
/usr/share/bash-completion/completions/firecfg
/usr/share/bash-completion/completions/firejail
/usr/share/bash-completion/completions/firemon
/usr/share/doc/firejail/NEWS.Debian.gz
/usr/share/doc/firejail/README.Debian
/usr/share/doc/firejail/README.gz
/usr/share/doc/firejail/changelog.Debian.gz
/usr/share/doc/firejail/copyright
/usr/share/doc/firejail/contrib/fix_private-bin.py.gz
/usr/share/doc/firejail/contrib/fj-mkdeb.py
/usr/share/doc/firejail/contrib/fjclip.py
/usr/share/doc/firejail/contrib/fjdisplay.py
/usr/share/doc/firejail/contrib/fjresize.py
/usr/share/doc/firejail/contrib/jail_prober.py.gz
/usr/share/lintian/overrides/firejail
/usr/share/man/man1/firecfg.1.gz
/usr/share/man/man1/firejail.1.gz
/usr/share/man/man1/firemon.1.gz
/usr/share/man/man5/firejail-login.5.gz
/usr/share/man/man5/firejail-profile.5.gz
/usr/share/man/man5/firejail-users.5.gz

Changelog

2019-02-08 - Reiner Herrmann <reiner@reiner-h.de>
firejail (0.9.58.2-1) unstable; urgency=medium
* New upstream release.
- new global configuration flag (name-change) that allows disabling
automatic renaming of sandboxes, if requested name already exists
(Closes: #920768)
- whitelist additional files in zoom profile
Thanks to Patrik Flykt for the patch. (Closes: #921454)
* Drop patch applied upstream.
* Switch off cgroup support by default in firejail.config, as it can be
used to move processes into less restricted cgroups (see also #916920).
* Install AppArmor local override file via dh_apparmor.
2019-01-27 - Reiner Herrmann <reiner@reiner-h.de>
firejail (0.9.58-1) unstable; urgency=medium
* New upstream release.
* Mark github-desktop.profile as moved conffile.
* Allow ptrace read/readby requests in AppArmor profile.
Thanks to Salvo Tomaselli for the report and intrigeri for help with
AppArmor. (Closes: #912587)
* Restrict networking feature by default in firejail.config, as a new
network namespace can circumvent packet filter of default namespace.
Thanks to Alain Ducharme for the report. (Closes: #916920)
2019-01-21 - Reiner Herrmann <reiner@reiner-h.de>
firejail (0.9.58~rc1-1) experimental; urgency=low
* New upstream release candidate.
- fix profile detection when path contains spaces (Closes: #903831)
* Drop patch applied upstream.
* Bump copyright years.
* Bump Standards-Version to 4.3.0.
2018-10-01 - Reiner Herrmann <reiner@reiner-h.de>
firejail (0.9.56-2) unstable; urgency=medium
* Properly (re)move obsolete conffiles.
Thanks to Paul Wise for repeatedly reporting these issues.
(Closes: #909640)
* Mark autopkgtests as flaky, as some tests behave differently than
expected depending on the environment they are run in.
* Cherry-pick upstream patches to skip some environment-dependent tests.
2018-09-20 - Reiner Herrmann <reiner@reiner-h.de>
firejail (0.9.56-1) unstable; urgency=medium
* New upstream release.
* Move profiles test to unisolated test run.
* Recommend iproute2 for tc used in fshaper.sh for --bandwidth feature.
* Drop patch applied upstream.
* Bump Standards-Version to 4.2.1.
2018-08-16 - Reiner Herrmann <reiner@reiner-h.de>
firejail (0.9.56~rc1-1) experimental; urgency=low
* New upstream release candidate.
- evaluate UID_MIN at runtime instead of hardcoding during compilation
(Closes: #900337)
* Bump Standards-Version to 4.2.0.
* debian/tests:
- disable tests that attempt to access the internet
- temporarily disable broken tests (fixed upstream already)
- reorganize tests a bit; allow some to run unisolated
2018-05-16 - Reiner Herrmann <reiner@reiner-h.de>
firejail (0.9.54-1) unstable; urgency=medium
* New upstream release.
2018-05-13 - Reiner Herrmann <reiner@reiner-h.de>
firejail (0.9.54~rc2-1) experimental; urgency=medium
* New upstream release candidate.
2018-05-07 - Reiner Herrmann <reiner@reiner-h.de>
firejail (0.9.54~rc1-1) experimental; urgency=low
* New upstream release candidate.
- mark ~/.homesick as read-only by default (Closes: #884579)
Thanks to Alexander Gerasiov for the patch.
* Add NEWS entry about new user restriction feature.
* Add renamed profile to maintscript helper.
* Use dh_missing for missed file detection instead of dh_install.
* Bump copyright years.
2018-04-27 - Reiner Herrmann <reiner@reiner-h.de>
firejail (0.9.52-3) unstable; urgency=medium
* Move packaging VCS to salsa.
* Bump Standards-Version to 4.1.4.
* Add upstream metadata file.

See Also

Package Description
fireqos-doc_3.1.5+ds-1ubuntu1_all.deb easy to use but powerful traffic shaping tool (docs)
fireqos_3.1.5+ds-1ubuntu1_all.deb easy to use but powerful traffic shaping tool (program)
firetools_0.9.58-1_i386.deb Qt frontend for the Firejail application sandbox
firewall-applet_0.6.3-5ubuntu4_all.deb panel applet providing status information of firewalld
firewall-config_0.6.3-5ubuntu4_all.deb graphical configuration tool to change the firewall settings
firewalld_0.6.3-5ubuntu4_all.deb dynamically managed firewall with support for network zones
firmware-ath9k-htc-dbgsym_1.4.0-97-g75b3e59+dfsg-3_all.deb QCA ath9k-htc Firmware ELF file
firmware-ath9k-htc_1.4.0-97-g75b3e59+dfsg-3_all.deb QCA ath9k-htc Firmware
firmware-microbit-micropython-dl_1.2.4+dfsg-1_all.deb micro:bit MicroPython runtime downloader
firmware-microbit-micropython-doc_1.0.1-1_all.deb MicroPython runtime for the BBC micro:bit (documentation)
firmware-microbit-micropython_1.0.1-1_all.deb MicroPython runtime for the BBC micro:bit
fis-gtm-6.3-005_6.3-005-2_i386.deb package for FIS-GT.M database
fis-gtm_6.3-005-2_all.deb metapackage for the latest version of FIS-GT.M database
fische_3.2.2-4_i386.deb stand-alone sound visualisation for Linux
fish-common_3.0.2-1_all.deb friendly interactive shell (architecture-independent files)
Advertisement
Advertisement