# Credits : Mikhail Morfikov abi , include @{exec_path} = /{usr/,}bin/fusermount{,3} profile fusermount @{exec_path} { include include # To mount anything: # fusermount: mount failed: Operation not permitted capability sys_admin, # For jmtpfs capability dac_read_search, @{exec_path} mr, # Where to mount ISO files owner @{HOME}/*/ rw, owner @{HOME}/*/*/ rw, owner @{HOME}/.cache/**/ rw, # Be able to mount ISO images mount fstype={fuse,fuse.*}, unmount fstype={fuse,fuse.*}, /etc/fuse.conf r, /dev/fuse rw, @{PROC}/@{pid}/mounts r, include if exists }