Refuse to run in --rw --no-sandbox mode as it is too dangerous.
[captive.git] / src / libcaptive / client / init.c
index f3c35c9..d3fe353 100644 (file)
@@ -337,6 +337,9 @@ gboolean errbool;
 
        captive_log_init(captive_options);
 
+       if (captive_options->rwmode==CAPTIVE_OPTION_RWMODE_RW && !captive_options->sandbox)
+               g_error(_("Rejecting --rw --no-sandbox operation as too dangerous - use --blind or --sandbox"));
+
        captive_image_iochannel=captive_options->image_iochannel;
        g_io_channel_ref(captive_image_iochannel);