[tor-bugs] #20794 [Applications/Tor Browser Sandbox]: Track what mozilla is doing with their sandboxing efforts.

Tor Bug Tracker & Wiki blackhole at torproject.org
Sun Nov 27 06:58:12 UTC 2016


#20794: Track what mozilla is doing with their sandboxing efforts.
--------------------------------------------------+---------------------
     Reporter:  yawning                           |      Owner:  yawning
         Type:  task                              |     Status:  new
     Priority:  Medium                            |  Milestone:
    Component:  Applications/Tor Browser Sandbox  |    Version:
     Severity:  Normal                            |   Keywords:
Actual Points:                                    |  Parent ID:
       Points:                                    |   Reviewer:
      Sponsor:                                    |
--------------------------------------------------+---------------------
 https://wiki.mozilla.org/Security/Sandbox is where their sandboxing
 efforts are.  The goal of our sandboxing should be to augument such
 things, and not replace them.

 Skimming the Linux stuff it looks like they want to use `seccomp-bpf` and
 namespaces *with* `USER_NS`.  Life will get interesting/horrifying once
 non-USER_NS namespaces enter the picture, but till then, it's probably
 manageable.

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/20794>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list