Skip to content

This issue was moved to a discussion.

You can continue the conversation there. Go to discussion →

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Unsure if bug or not] Can't disconnect steam from home (Steam and apps always have access to whole home) #407

Closed
AtFreezingPoint opened this issue Sep 11, 2024 · 5 comments

Comments

@AtFreezingPoint
Copy link

AtFreezingPoint commented Sep 11, 2024

Hey, I try doing (sudo) snap disconnect steam:home and it seems to not disconnect or maybe I'm not understanding this correctly, when I do the said command and try running double-commander (file explorer) Linux and Windows in Steam I'm fully able to view and look into files in /home, also can copy, move etc. and Games like Project Zomboid also have the ability to do the same, isn't this breaking confinement of the sandbox? I got apparmor enabled and haven't tampered with the configs. I believe I had it off for a while with the same result.

Example of Zomboid folder:
Example of Zomboid folder

To clarify: I've worked with flatpak and gotten some amazing configs set up yet stopped using it due to the dependencies being handled (in my opinion) horribly & the updates being clunky.

@AtFreezingPoint
Copy link
Author

Adding as sidenote, I've also tried disconnecting removable-media to no luck on this... Is same resolution.

@AtFreezingPoint
Copy link
Author

@ashuntu sorry for the ping but anything you can say about this?

@ashuntu
Copy link
Collaborator

ashuntu commented Sep 30, 2024

Just responding to let you know I've seen this issue. We're doing some reworking of how Steam gets permissions and will let you know when I have something concrete to give you.

@AtFreezingPoint
Copy link
Author

Just responding to let you know I've seen this issue. We're doing some reworking of how Steam gets permissions and will let you know when I have something concrete to give you.

So it’s misconfig in apparmor profile? That’s kind of scary to think it’s possible on snap which is supposed to like be used on servers

@ashuntu
Copy link
Collaborator

ashuntu commented Sep 30, 2024

I should clarify, what you're experiencing is intentional. There is no misconfig or compromise of security or anything like that going on. Steam specifically requires some very specific permissions, so we have been reworking how that works in the Steam snap only (its apparmor profile), and I'll have more to share in the future.

I'll keep this open for discussion, but I'll label it accordingly to be less confusing.

@canonical canonical locked and limited conversation to collaborators Sep 30, 2024
@ashuntu ashuntu converted this issue into discussion #410 Sep 30, 2024

This issue was moved to a discussion.

You can continue the conversation there. Go to discussion →

Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants