Changeset 98679
- Timestamp:
- Oct 12, 2012, 11:15:53 PM (12 years ago)
- File:
-
- 1 edited
Legend:
- Unmodified
- Added
- Removed
-
trunk/base/src/port1.0/portsandbox.tcl
r98281 r98679 70 70 71 71 set portsandbox_profile "(version 1) (allow default) (deny file-write*) \ 72 (allow file-write-data (literal \"/dev/null\")) (allow file-write* (regex #\"^(/private)?(/var)?/tmp/\"))" 72 (allow file-write-data (literal \"/dev/null\")) (allow file-write* (regex #\"^(/private)?(/var)?/tmp/\" \ 73 #\"^(/private)?/var/folders/\"))" 74 73 75 foreach dir $allow_dirs { 74 append portsandbox_profile " (allow file-write* "76 append portsandbox_profile " (allow file-write* (" 75 77 if {${os.major} > 9} { 76 append portsandbox_profile " (subpath \"${dir}\")"78 append portsandbox_profile "subpath \"${dir}\"))" 77 79 } else { 78 append portsandbox_profile " (regex #\"^${dir}/\")"80 append portsandbox_profile "regex #\"^${dir}/\"))" 79 81 } 80 append portsandbox_profile ")"81 82 } 82 83 }
Note: See TracChangeset
for help on using the changeset viewer.