We are confining the plugins that firefox runs, as long as you don't
disable the unconfined_mozilla_plugin_transition boolean.
Confining firefox in general is difficult to do. You might investigate
the selinux sandbox, which allows you to run firefox in a
sandbox/container environment.
On 03/27/2014 08:00 AM, hibhib(a)hushmail.com wrote:
I have a default Fedora 20 system. I have made no SELinux policy
changes from the default.
How do I enable SELinux protection for Firefox? Are there some simple
steps I can take? I see that there is a "mozilla" policy but firefox
always runs in unconfined domain.
Thanks!
--
selinux mailing list
selinux(a)lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/selinux