Here's a parent ticket to track efforts to sandbox Tor Browser. Please use this ticket to discuss various approaches and link to email discussions where available.
To upload designs, you'll need to enable LFS and have an admin enable hashed storage. More information
Child items ...
Show closed items
Linked items 0
Link issues together to show that they're related.
Learn more.
FWIW, I'm vaguely against using my modified start-tor-browser script (#19055 (moved)) for the official Tor Browser sandboxing efforts, since there's a bunch of pitfalls to the approach I took. This doesn't mean that firejail is unsuitable (it's probably still the most expedient approach for Linux), just the way I integrated it when I first started looking at sandboxing stuff is suboptimal.
I have ideas on "how to do it better", just wanted to comment that my views on certain things have shifted a bit.
Trac: Description: Here's a parent ticket to track efforts to sandbox of Tor Browser. Please use this ticket to discuss various approaches and link to email discussions where available.
to
Here's a parent ticket to track efforts to sandbox Tor Browser. Please use this ticket to discuss various approaches and link to email discussions where available.
This is substantially less bad than my prior attempts with firejail, and it even includes a launcher process that handles keeping the browser installed and up to date. It's probably not ready for production use.