update firefox for webauthn

This commit is contained in:
valoq 2022-08-10 21:10:06 +02:00
parent 6c4c091ab5
commit c5593bded1
No known key found for this signature in database
GPG Key ID: 19F09A0FB865CBD8
1 changed files with 18 additions and 2 deletions

View File

@ -13,6 +13,21 @@ set -euo pipefail
--proc /proc \ --proc /proc \
--dev /dev \ --dev /dev \
--dev-bind /dev/snd /dev/snd \ --dev-bind /dev/snd /dev/snd \
--dev-bind-try /dev/hidraw0 /dev/hidraw0 \
--dev-bind-try /dev/hidraw1 /dev/hidraw1 \
--dev-bind-try /dev/hidraw2 /dev/hidraw2 \
--dev-bind-try /dev/hidraw3 /dev/hidraw3 \
--dev-bind-try /dev/hidraw4 /dev/hidraw4 \
--dev-bind-try /dev/hidraw5 /dev/hidraw5 \
--dev-bind-try /dev/hidraw6 /dev/hidraw6 \
--dev-bind-try /dev/hidraw7 /dev/hidraw7 \
--dev-bind-try /dev/hidraw8 /dev/hidraw8 \
--dev-bind-try /dev/hidraw9 /dev/hidraw9 \
--dev-bind /dev/char /dev/char \
--dev-bind /dev/usb /dev/usb \
--ro-bind /sys/bus/usb /sys/bus/usb \
--ro-bind /sys/class/hidraw /sys/class/hidraw \
--ro-bind /sys/devices/pci0000:00 /sys/devices/pci0000:00 \
--ro-bind /etc/passwd /etc/passwd \ --ro-bind /etc/passwd /etc/passwd \
--ro-bind /etc/group /etc/group \ --ro-bind /etc/group /etc/group \
--ro-bind /etc/hostname /etc/hostname \ --ro-bind /etc/hostname /etc/hostname \
@ -28,10 +43,10 @@ set -euo pipefail
--ro-bind /etc/pulse /etc/pulse \ --ro-bind /etc/pulse /etc/pulse \
--ro-bind /etc/asound.conf /etc/asound.conf \ --ro-bind /etc/asound.conf /etc/asound.conf \
--tmpfs /run \ --tmpfs /run \
--ro-bind /run/user/"$(id -u)"/wayland-0 /run/user/"$(id -u)"/wayland-0 \ --ro-bind /run/user/"$(id -u)"/wayland-1 /run/user/"$(id -u)"/wayland-1 \
--bind ~/Downloads ~/Downloads \
--bind ~/.mozilla ~/.mozilla \ --bind ~/.mozilla ~/.mozilla \
--bind ~/.cache/mozilla ~/.cache/mozilla \ --bind ~/.cache/mozilla ~/.cache/mozilla \
--bind ~/Downloads ~/Downloads \
--chdir ~/ \ --chdir ~/ \
--unsetenv DBUS_SESSION_BUS_ADDRESS \ --unsetenv DBUS_SESSION_BUS_ADDRESS \
--setenv MOZ_ENABLE_WAYLAND 1 \ --setenv MOZ_ENABLE_WAYLAND 1 \
@ -39,6 +54,7 @@ set -euo pipefail
--unshare-pid \ --unshare-pid \
--unshare-uts \ --unshare-uts \
--unshare-cgroup-try \ --unshare-cgroup-try \
--hostname mypc \
--new-session \ --new-session \
--seccomp 10 \ --seccomp 10 \
10< /usr/local/bin/seccomp_default_filter.bpf \ 10< /usr/local/bin/seccomp_default_filter.bpf \