diff options
| author | Daiderd Jordan <daiderd@gmail.com> | 2019-02-16 16:18:52 +0100 |
|---|---|---|
| committer | Daiderd Jordan <daiderd@gmail.com> | 2019-02-16 16:55:07 +0100 |
| commit | 1e67f6a2bc496cb5014915a71e323603e4b41662 (patch) | |
| tree | 9d7aba2c7dcd8c289279713345173acac920d8b5 /modules/programs | |
| parent | 10c34f12775dd941ecb796f426272f891bde5ec7 (diff) | |
sandbox: add module for sandbox profiles
This could be used outside of nix-darwin, but this is mainly useful for
services since all of the inputs are known there.
{
# $ /usr/bin/sandbox-exec -f $profile $coreutils/bin/ls /
# ls: cannot access '/': Operation not permitted
security.sandbox.profiles.example.closure = [ pkgs.coreutils ];
}
Diffstat (limited to 'modules/programs')
0 files changed, 0 insertions, 0 deletions
