Protecting your server from Dropbox

December 3, 2013 2.2k views
Has anyone successfully deployed Dropbox on their cloud server, while placing limitations on what the Dropbox daemon or client can access? Say, via a chroot jail, AppArmor, creating a separate user account w/limited rights, ...? I'm in the process of writing up an article on deploying Dropbox on a DigitalOcean droplet. The component where there does not seem to be much of a consensus, however, is how to reign in Dropbox's access to files on your system that it has no business going into. The most helpful article I've come across, on the topic, thus far, is Protecting Your GNU/Linux System from Dropbox; but I'm holding out for a simpler approach.
1 Answer
If you're running Ubuntu, I'd look into creating an AppArmor profile for Dropbox. It's a pretty simple way to lock down a process so that that it only has access certain files, etc:

I think that would probably be the best way forward.
