bunpen: sandbox with bunpen
This commit is contained in:
@@ -2,7 +2,8 @@
|
|||||||
{
|
{
|
||||||
sane.programs.captree = {
|
sane.programs.captree = {
|
||||||
packageUnwrapped = pkgs.linkBinIntoOwnPackage pkgs.libcap-with-captree "captree";
|
packageUnwrapped = pkgs.linkBinIntoOwnPackage pkgs.libcap-with-captree "captree";
|
||||||
sandbox.method = "bwrap";
|
sandbox.method = "bunpen";
|
||||||
sandbox.isolatePids = false;
|
sandbox.isolatePids = false;
|
||||||
|
sandbox.extraPaths = [ "/proc" ];
|
||||||
};
|
};
|
||||||
}
|
}
|
||||||
|
Reference in New Issue
Block a user