Who was suggesting that? We were talking about using a separate mountpoint dir, owned permanently by a given user:group.
That could be, say, /mnt/$username (chown'd once) or a distinct directory, say /dir4purpose (chown"d once) or a directory in the user's tree.
I think we're dealing with skill levels below ACLs, when far simpler solutions are at hand and already documented in the reference handbook.
I'm not suggesting there's a problem with your method, once you understand what's going on at that level.
No, I didn't mean anything vaguely like that.
"Allowing untrusted users to mount arbitrary media, by enabling vfs.usermount as described below, should not be considered safe from a security point of view."
That's for servers, or at least systems having untrusted users.
LibreQuest will correct me if I'm wrong, but I believe this is a one-user system, or at least only trusted users, in which case vfs.usermount=1 is entirely appropriate.
Of course. I went back to the beginning of thread and noticed problems and mixed advice and am trying to help.
As are you, I'm sure. Let's see what happens next ...