krathalan / apparmor-profiles

Krathalan's AppArmor profiles for Arch Linux
GNU General Public License v3.0
38 stars 8 forks source link

WebUSB in Chromium not working #10

Closed s0up4200 closed 2 years ago

s0up4200 commented 2 years ago

I'm having issues getting WebUSB to work with Chromium. Any ideas?

Tried with Yubikeys and a Trezor.

Appreciate any help. Thanks!

s0up4200 commented 2 years ago

Ok so got this working with the following list added to local/chromium Im gonna go over it and remove stuff that probably won't be needed.

  /dev/hidraw0 rw,
  /dev/hidraw3 rw,
  /dev/hidraw5 rw,

  /sys/bus/ r,
  /sys/bus/acpi/devices/ r,
  /sys/bus/auxiliary/devices/ r,
  /sys/bus/clockevents/devices/ r,
  /sys/bus/clocksource/devices/ r,
  /sys/bus/container/devices/ r,
  /sys/bus/cpu/devices/ r,
  /sys/bus/dax/devices/ r,
  /sys/bus/edac/devices/ r,
  /sys/bus/event_source/devices/ r,
  /sys/bus/gpio/devices/ r,
  /sys/bus/hdaudio/devices/ r,
  /sys/bus/hid/devices/ r,
  /sys/bus/i2c/devices/ r,
  /sys/bus/isa/devices/ r,
  /sys/bus/machinecheck/devices/ r,
  /sys/bus/mdio_bus/devices/ r,
  /sys/bus/memory/devices/ r,
  /sys/bus/mipi-dsi/devices/ r,
  /sys/bus/nd/devices/ r,
  /sys/bus/node/devices/ r,
  /sys/bus/nvmem/devices/ r,
  /sys/bus/pci_express/devices/ r,
  /sys/bus/platform/devices/ r,
  /sys/bus/pnp/devices/ r,
  /sys/bus/scsi/devices/ r,
  /sys/bus/serial/devices/ r,
  /sys/bus/snd_seq/devices/ r,
  /sys/bus/spi/devices/ r,
  /sys/bus/tee/devices/ r,
  /sys/bus/usb-serial/devices/ r,
  /sys/bus/usb/devices/ r,
  /sys/bus/virtio/devices/ r,
  /sys/bus/wmi/devices/ r,
  /sys/bus/workqueue/devices/ r,
  /sys/bus/xen-backend/devices/ r,
  /sys/bus/xen/devices/ r,

  /sys/class/ r,
  /sys/class/ata_device/ r,
  /sys/class/ata_link/ r,
  /sys/class/ata_port/ r,
  /sys/class/backlight/ r,
  /sys/class/bdi/ r,
  /sys/class/block/ r,
  /sys/class/bsg/ r,
  /sys/class/cpuid/ r,
  /sys/class/devcoredump/ r,
  /sys/class/devfreq-event/ r,
  /sys/class/devfreq/ r,
  /sys/class/devlink/ r,
  /sys/class/dma_heap/ r,
  /sys/class/dma/ r,
  /sys/class/dmi/ r,
  /sys/class/drm/ r,
  /sys/class/extcon/ r,
  /sys/class/firmware-attributes/ r,
  /sys/class/firmware/ r,
  /sys/class/graphics/ r,
  /sys/class/hidraw/ r,
  /sys/class/hwmon/ r,
  /sys/class/i2c-adapter/ r,
  /sys/class/ieee80211/ r,
  /sys/class/input/ r,
  /sys/class/intel_scu_ipc/ r,
  /sys/class/iommu/ r,
  /sys/class/leds/ r,
  /sys/class/lirc/ r,
  /sys/class/mdio_bus/ r,
  /sys/class/mem/ r,
  /sys/class/misc/ r,
  /sys/class/msr/ r,
  /sys/class/nd/ r,
  /sys/class/net/ r,
  /sys/class/nvme-generic/ r,
  /sys/class/nvme-subsystem/ r,
  /sys/class/nvme/ r,
  /sys/class/pci_bus/ r,
  /sys/class/phy/ r,
  /sys/class/power_supply/ r,
  /sys/class/powercap/ r,
  /sys/class/pps/ r,
  /sys/class/ptp/ r,
  /sys/class/pwm/ r,
  /sys/class/rc/ r,
  /sys/class/regulator/ r,
  /sys/class/remoteproc/ r,
  /sys/class/rfkill/ r,
  /sys/class/rtc/ r,
  /sys/class/scsi_device/ r,
  /sys/class/scsi_disk/ r,
  /sys/class/scsi_host/ r,
  /sys/class/sound/ r,
  /sys/class/spi_master/ r,
  /sys/class/spi_slave/ r,
  /sys/class/tee/ r,
  /sys/class/thermal/ r,
  /sys/class/tpm/ r,
  /sys/class/tpmrm/ r,
  /sys/class/tty/ r,
  /sys/class/usbmisc/ r,
  /sys/class/vc/ r,
  /sys/class/vtconsole/ r,
  /sys/class/wakeup/ r,
  /sys/class/watchdog/ r,
  /sys/class/wmi_bus/ r,
  /sys/class/wwan/ r,
  /sys/class/zram-control/ r,

  /sys/devices/pci0000:00/*/*/usb*/*/*/*/* r,