Do I really need Apparmor to confine Chrome/Chromium-browser? From what I’ve read so far it has its own sandbox mechanism. Ubuntu 11.04 has a ready profile for Chromium-browser and after updating to 11 I find that I can’t open Chromium anymore. Opening the application on a terminal gives me a cryptic message informing me that I don’t have permission for /sys/dbus/pci/devices/** I put the Chromium profile to complain for now. I want to find a more elegant way to secure Chromium after some of my questions are answered. I use Chromium as an alternative browser. Additional issues with Chromium-browser has something to do with me using Xmarks. Xmarks seems to have issues with Google sync and duplicate sync services so I had to disable the Xmarks sync altogether. I thought I had a nice solution to this one a few days ago.
Previously ranted about the blind alley Ubuntu 11.04 seemed to be leading us when it comes to some applications not being ready yet for the dropping of system tray. What I should have done is press on. There are posts about editing a white list with a recommended GUI tool to help us out here , here and here . Like everything in Linux, there's a configuration file for it, if you can find it and if you have the inclination to go ninja. If not then there's dconf-editor. Download dconf-tools from Software Center. Navigate to desktop>unity>panel. Add your application in the white list. Then close the window. No save button. mmm. So far I have added Shutter, Dropbox and Keepassx in the white list. Before... After.
Comments