Thumbnails are not generated with hidepid greater than 0 in proc mount option
Affected version
- Nightly flatpak: Can't test it because flatpak / appimage are not authorized on company computers
- Other: Debian 10.1 with gnome-shell 3.30
Steps to reproduce
- enable hidepid in proc mount options with
mount -o remount,hidepid=1 /proc
ormount -o remount,hidepid=2 /proc
- stop running nautilus with
killall nautilus
- delete thumbnails cache with
rm -rf ~/.cache/thumbnails
- open directory with nautilus contain files like pdf, jpeg, ...
Current behavior
No thumbnails are generated with security hardening for professionnal restricted environments.
Expected behavior
Thumbnails are generated with this restriction.
Additional information
A non admin user (standard user) don't need to see all process in an OS, hidepid for proc entry in fstab are mandatory for some security standards certification (PCIDSS, ANSSI, ...). For information /home for user laptop are with noexec,nosuid,nodev but not affect generation of thumbnails.