Flatsonar

Boxes

by The GNOME Project

Virtualization made simple

Dangerous permissions Verified creator LGPL-2.1+ v50.0

Support the creators

Flatsonar is just the shop window. The people below made Boxes.

Screenshot 1 of Boxes Screenshot 2 of Boxes Screenshot 3 of Boxes Screenshot 4 of Boxes

About

Select an operating system and let Boxes download and install it for you in a virtual machine.

Features:

- Download freely available operating systems - Automatically install CentOS Stream, Debian, Fedora, Microsoft Windows, OpenSUSE, Red Hat Enterprise Linux, and Ubuntu - Create virtual machines from operating system images with a couple of clicks - Limit the resources (memory and storage) your virtual machines consume from your system - Take snapshots of virtual machines to restore to previous states - Redirect USB devices from your physical machine into virtual machines - 3D acceleration for some of the supported operating systems - Automatically resize virtual machines displays to the window size - Share clipboard between your system and virtual machines - Share files to virtual machines by dropping them from your file manager into the Boxes window - Setup Shared Folders between your system and virtual machines

Permissions

5 permissions weaken the sandbox. Flatsonar asks before installing.

  • all devices (/dev): webcams, disks, raw hardware
    --device=all
  • full access to your entire file system
    --filesystem=host
  • X11 display: X11 lets apps read input and windows of other apps
    --socket=x11
  • dconf: all GNOME settings
    --talk-name=ca.desrt.dconf
  • talks to system service org.freedesktop.timedate1
    --system-talk-name=org.freedesktop.timedate1
  • network
    --share=network
  • inter-process communication (needed for X11)
    --share=ipc
  • Wayland display
    --socket=wayland
  • audio
    --socket=pulseaudio
  • X11 display, only when Wayland is unavailable
    --socket=fallback-x11
  • access to xdg-run/dconf
    --filesystem=xdg-run/dconf
  • access to ~/.config/dconf
    --filesystem=~/.config/dconf:ro
  • talks to org.gnome.ControlCenter
    --talk-name=org.gnome.ControlCenter
  • talks to org.gnome.Settings
    --talk-name=org.gnome.Settings

Who publishes this

The creator demonstrably controls this app id: Flathub verification, the hosting account owns the namespace, or a well-known file on their domain.

  • verified on Flathub: the developer proved they control this app id
    publisher:flathub

Maintenance

Recent activity on the upstream repository, or built and reviewed by Flathub.

No staleness signals: recent activity, or built and reviewed by Flathub.