summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorLibravatar rusty-snake <print_hello_world+Public@protonmail.com>2019-08-19 07:35:55 +0000
committerLibravatar GitHub <noreply@github.com>2019-08-19 07:35:55 +0000
commit2e9a23d30cbcd6357a061f208492382dda215e17 (patch)
tree1e2213cef0066dd31ce82571de7dedc1f46f48ab
parentreadme (diff)
downloadfirejail-2e9a23d30cbcd6357a061f208492382dda215e17.tar.gz
firejail-2e9a23d30cbcd6357a061f208492382dda215e17.tar.zst
firejail-2e9a23d30cbcd6357a061f208492382dda215e17.zip
noblacklist but no blacklist (#2886)
* beginn fixup * continue * continue * continue * continue * continue * continue
-rw-r--r--etc/atom.profile1
-rw-r--r--etc/code.profile1
-rw-r--r--etc/disable-programs.inc3
-rw-r--r--etc/emacs.profile1
-rw-r--r--etc/geany.profile1
-rw-r--r--etc/gedit.profile1
-rw-r--r--etc/git.profile1
-rw-r--r--etc/gnome-builder.profile1
-rw-r--r--etc/gnome-schedule.profile6
-rw-r--r--etc/gnome-system-log.profile2
-rw-r--r--etc/mutt.profile1
-rw-r--r--etc/nethack-vultures.profile1
-rw-r--r--etc/pluma.profile1
-rw-r--r--etc/ppsspp.profile2
-rw-r--r--etc/pycharm-community.profile1
-rw-r--r--etc/qutebrowser.profile2
-rw-r--r--etc/scallion.profile1
-rw-r--r--etc/seahorse-tool.profile2
-rw-r--r--etc/seahorse.profile1
-rw-r--r--etc/steam.profile2
-rw-r--r--etc/vim.profile1
-rw-r--r--etc/wine.profile2
-rw-r--r--etc/xed.profile1
-rw-r--r--etc/xmr-stak.profile1
24 files changed, 3 insertions, 34 deletions
diff --git a/etc/atom.profile b/etc/atom.profile
index 8928baf5d..4bb37552b 100644
--- a/etc/atom.profile
+++ b/etc/atom.profile
@@ -19,7 +19,6 @@ noblacklist ${HOME}/.git-credentials
19noblacklist ${HOME}/.python-history 19noblacklist ${HOME}/.python-history
20noblacklist ${HOME}/.python_history 20noblacklist ${HOME}/.python_history
21noblacklist ${HOME}/.pythonhist 21noblacklist ${HOME}/.pythonhist
22noblacklist ${HOME}/.pythonrc.py
23 22
24include disable-common.inc 23include disable-common.inc
25include disable-exec.inc 24include disable-exec.inc
diff --git a/etc/code.profile b/etc/code.profile
index 6faf429e1..76320d56b 100644
--- a/etc/code.profile
+++ b/etc/code.profile
@@ -15,7 +15,6 @@ noblacklist ${HOME}/.git-credentials
15noblacklist ${HOME}/.python-history 15noblacklist ${HOME}/.python-history
16noblacklist ${HOME}/.python_history 16noblacklist ${HOME}/.python_history
17noblacklist ${HOME}/.pythonhist 17noblacklist ${HOME}/.pythonhist
18noblacklist ${HOME}/.pythonrc.py
19noblacklist ${HOME}/.vscode 18noblacklist ${HOME}/.vscode
20noblacklist ${HOME}/.vscode-oss 19noblacklist ${HOME}/.vscode-oss
21 20
diff --git a/etc/disable-programs.inc b/etc/disable-programs.inc
index a3f7c570b..36afb606a 100644
--- a/etc/disable-programs.inc
+++ b/etc/disable-programs.inc
@@ -641,6 +641,8 @@ blacklist ${HOME}/.tuxguitar*
641blacklist ${HOME}/.unknown-horizons 641blacklist ${HOME}/.unknown-horizons
642blacklist ${HOME}/.viking 642blacklist ${HOME}/.viking
643blacklist ${HOME}/.viking-maps 643blacklist ${HOME}/.viking-maps
644blacklist ${HOME}/.vim
645blacklist ${HOME}/.vimrc
644blacklist ${HOME}/.vscode 646blacklist ${HOME}/.vscode
645blacklist ${HOME}/.vscode-oss 647blacklist ${HOME}/.vscode-oss
646blacklist ${HOME}/.vst 648blacklist ${HOME}/.vst
@@ -732,6 +734,7 @@ blacklist ${HOME}/.cache/libgweather
732blacklist ${HOME}/.cache/liferea 734blacklist ${HOME}/.cache/liferea
733blacklist ${HOME}/.cache/Mendeley Ltd. 735blacklist ${HOME}/.cache/Mendeley Ltd.
734blacklist ${HOME}/.cache/midori 736blacklist ${HOME}/.cache/midori
737blacklist ${HOME}/.cache/minetest
735blacklist ${HOME}/.cache/moonchild productions/basilisk 738blacklist ${HOME}/.cache/moonchild productions/basilisk
736blacklist ${HOME}/.cache/moonchild productions/pale moon 739blacklist ${HOME}/.cache/moonchild productions/pale moon
737blacklist ${HOME}/.cache/mozilla 740blacklist ${HOME}/.cache/mozilla
diff --git a/etc/emacs.profile b/etc/emacs.profile
index f8b451f02..95a4dd6b2 100644
--- a/etc/emacs.profile
+++ b/etc/emacs.profile
@@ -14,7 +14,6 @@ noblacklist ${HOME}/.emacs.d
14noblacklist ${HOME}/.python-history 14noblacklist ${HOME}/.python-history
15noblacklist ${HOME}/.python_history 15noblacklist ${HOME}/.python_history
16noblacklist ${HOME}/.pythonhist 16noblacklist ${HOME}/.pythonhist
17noblacklist ${HOME}/.pythonrc.py
18 17
19include disable-common.inc 18include disable-common.inc
20include disable-passwdmgr.inc 19include disable-passwdmgr.inc
diff --git a/etc/geany.profile b/etc/geany.profile
index 2cffb8777..53a718d63 100644
--- a/etc/geany.profile
+++ b/etc/geany.profile
@@ -13,7 +13,6 @@ noblacklist ${HOME}/.git-credentials
13noblacklist ${HOME}/.python-history 13noblacklist ${HOME}/.python-history
14noblacklist ${HOME}/.python_history 14noblacklist ${HOME}/.python_history
15noblacklist ${HOME}/.pythonhist 15noblacklist ${HOME}/.pythonhist
16noblacklist ${HOME}/.pythonrc.py
17 16
18include disable-common.inc 17include disable-common.inc
19include disable-passwdmgr.inc 18include disable-passwdmgr.inc
diff --git a/etc/gedit.profile b/etc/gedit.profile
index ed6efc3b6..763d33eb1 100644
--- a/etc/gedit.profile
+++ b/etc/gedit.profile
@@ -14,7 +14,6 @@ noblacklist ${HOME}/.git-credentials
14noblacklist ${HOME}/.python-history 14noblacklist ${HOME}/.python-history
15noblacklist ${HOME}/.python_history 15noblacklist ${HOME}/.python_history
16noblacklist ${HOME}/.pythonhist 16noblacklist ${HOME}/.pythonhist
17noblacklist ${HOME}/.pythonrc.py
18 17
19include disable-common.inc 18include disable-common.inc
20# include disable-devel.inc 19# include disable-devel.inc
diff --git a/etc/git.profile b/etc/git.profile
index f7c812e65..8b1c81ca4 100644
--- a/etc/git.profile
+++ b/etc/git.profile
@@ -15,7 +15,6 @@ noblacklist ${HOME}/.gitconfig
15noblacklist ${HOME}/.git-credentials 15noblacklist ${HOME}/.git-credentials
16noblacklist ${HOME}/.gnupg 16noblacklist ${HOME}/.gnupg
17noblacklist ${HOME}/.nanorc 17noblacklist ${HOME}/.nanorc
18noblacklist ${HOME}/.oh-my-zsh
19noblacklist ${HOME}/.ssh 18noblacklist ${HOME}/.ssh
20noblacklist ${HOME}/.vim 19noblacklist ${HOME}/.vim
21noblacklist ${HOME}/.viminfo 20noblacklist ${HOME}/.viminfo
diff --git a/etc/gnome-builder.profile b/etc/gnome-builder.profile
index dfa1a5da8..46281af6e 100644
--- a/etc/gnome-builder.profile
+++ b/etc/gnome-builder.profile
@@ -14,7 +14,6 @@ noblacklist ${HOME}/.git-credentials
14noblacklist ${HOME}/.python-history 14noblacklist ${HOME}/.python-history
15noblacklist ${HOME}/.python_history 15noblacklist ${HOME}/.python_history
16noblacklist ${HOME}/.pythonhist 16noblacklist ${HOME}/.pythonhist
17noblacklist ${HOME}/.pythonrc.py
18 17
19include disable-common.inc 18include disable-common.inc
20include disable-passwdmgr.inc 19include disable-passwdmgr.inc
diff --git a/etc/gnome-schedule.profile b/etc/gnome-schedule.profile
index 6c9c83e5f..e8b36dd41 100644
--- a/etc/gnome-schedule.profile
+++ b/etc/gnome-schedule.profile
@@ -13,15 +13,9 @@ noblacklist ${PATH}/at
13noblacklist ${PATH}/crontab 13noblacklist ${PATH}/crontab
14 14
15# Needs access to these files/dirs 15# Needs access to these files/dirs
16noblacklist /etc/at.allow
17noblacklist /etc/at.deny
18noblacklist /etc/cron.allow 16noblacklist /etc/cron.allow
19noblacklist /etc/cron.deny 17noblacklist /etc/cron.deny
20noblacklist /etc/fonts
21noblacklist /etc/ld.so.preload
22noblacklist /etc/pam.d
23noblacklist /etc/shadow 18noblacklist /etc/shadow
24noblacklist /var/spool/at
25noblacklist /var/spool/cron 19noblacklist /var/spool/cron
26 20
27# cron job testing needs a terminal, resulting in sandbox escape (see disable-common.inc) 21# cron job testing needs a terminal, resulting in sandbox escape (see disable-common.inc)
diff --git a/etc/gnome-system-log.profile b/etc/gnome-system-log.profile
index f1347a8dc..b2907b32c 100644
--- a/etc/gnome-system-log.profile
+++ b/etc/gnome-system-log.profile
@@ -6,8 +6,6 @@ include gnome-system-log.local
6# Persistent global definitions 6# Persistent global definitions
7include globals.local 7include globals.local
8 8
9noblacklist /var/log
10
11include disable-common.inc 9include disable-common.inc
12include disable-devel.inc 10include disable-devel.inc
13include disable-exec.inc 11include disable-exec.inc
diff --git a/etc/mutt.profile b/etc/mutt.profile
index c424dbb85..92babd50f 100644
--- a/etc/mutt.profile
+++ b/etc/mutt.profile
@@ -17,7 +17,6 @@ noblacklist ${HOME}/.emacs
17noblacklist ${HOME}/.emacs.d 17noblacklist ${HOME}/.emacs.d
18noblacklist ${HOME}/.gnupg 18noblacklist ${HOME}/.gnupg
19noblacklist ${HOME}/.mail 19noblacklist ${HOME}/.mail
20noblacklist ${HOME}/.mailcap
21noblacklist ${HOME}/.msmtprc 20noblacklist ${HOME}/.msmtprc
22noblacklist ${HOME}/.mutt 21noblacklist ${HOME}/.mutt
23noblacklist ${HOME}/.muttrc 22noblacklist ${HOME}/.muttrc
diff --git a/etc/nethack-vultures.profile b/etc/nethack-vultures.profile
index e1294153b..079f44ee7 100644
--- a/etc/nethack-vultures.profile
+++ b/etc/nethack-vultures.profile
@@ -7,7 +7,6 @@ include nethack.local
7include globals.local 7include globals.local
8 8
9noblacklist ${HOME}/.vultures 9noblacklist ${HOME}/.vultures
10noblacklist /var/log
11 10
12include disable-common.inc 11include disable-common.inc
13include disable-devel.inc 12include disable-devel.inc
diff --git a/etc/pluma.profile b/etc/pluma.profile
index 1e0512fd8..4c32c2979 100644
--- a/etc/pluma.profile
+++ b/etc/pluma.profile
@@ -11,7 +11,6 @@ noblacklist ${HOME}/.config/pluma
11noblacklist ${HOME}/.python-history 11noblacklist ${HOME}/.python-history
12noblacklist ${HOME}/.python_history 12noblacklist ${HOME}/.python_history
13noblacklist ${HOME}/.pythonhist 13noblacklist ${HOME}/.pythonhist
14noblacklist ${HOME}/.pythonrc.py
15 14
16include disable-common.inc 15include disable-common.inc
17include disable-devel.inc 16include disable-devel.inc
diff --git a/etc/ppsspp.profile b/etc/ppsspp.profile
index 116698312..970290002 100644
--- a/etc/ppsspp.profile
+++ b/etc/ppsspp.profile
@@ -8,8 +8,6 @@ include globals.local
8 8
9noblacklist ${HOME}/.config/ppsspp 9noblacklist ${HOME}/.config/ppsspp
10noblacklist ${DOCUMENTS} 10noblacklist ${DOCUMENTS}
11# with >=llvm-4 mesa drivers need llvm stuff
12noblacklist /usr/lib/llvm*
13 11
14include disable-common.inc 12include disable-common.inc
15include disable-devel.inc 13include disable-devel.inc
diff --git a/etc/pycharm-community.profile b/etc/pycharm-community.profile
index 17218adee..e1d55c89e 100644
--- a/etc/pycharm-community.profile
+++ b/etc/pycharm-community.profile
@@ -9,7 +9,6 @@ noblacklist ${HOME}/.PyCharmCE*
9noblacklist ${HOME}/.python-history 9noblacklist ${HOME}/.python-history
10noblacklist ${HOME}/.python_history 10noblacklist ${HOME}/.python_history
11noblacklist ${HOME}/.pythonhist 11noblacklist ${HOME}/.pythonhist
12noblacklist ${HOME}/.pythonrc.py
13 12
14# Allow java (blacklisted by disable-devel.inc) 13# Allow java (blacklisted by disable-devel.inc)
15include allow-java.inc 14include allow-java.inc
diff --git a/etc/qutebrowser.profile b/etc/qutebrowser.profile
index e556ecf1f..a7ba18292 100644
--- a/etc/qutebrowser.profile
+++ b/etc/qutebrowser.profile
@@ -9,8 +9,6 @@ include globals.local
9noblacklist ${HOME}/.cache/qutebrowser 9noblacklist ${HOME}/.cache/qutebrowser
10noblacklist ${HOME}/.config/qutebrowser 10noblacklist ${HOME}/.config/qutebrowser
11noblacklist ${HOME}/.local/share/qutebrowser 11noblacklist ${HOME}/.local/share/qutebrowser
12# with >=llvm-4 mesa drivers need llvm stuff
13noblacklist /usr/lib/llvm*
14 12
15# Allow python (blacklisted by disable-interpreters.inc) 13# Allow python (blacklisted by disable-interpreters.inc)
16include allow-python2.inc 14include allow-python2.inc
diff --git a/etc/scallion.profile b/etc/scallion.profile
index 232ec4346..dee9e1f40 100644
--- a/etc/scallion.profile
+++ b/etc/scallion.profile
@@ -7,7 +7,6 @@ include scallion.local
7include globals.local 7include globals.local
8 8
9noblacklist ${PATH}/llvm* 9noblacklist ${PATH}/llvm*
10noblacklist /usr/lib/llvm*
11noblacklist ${PATH}/openssl 10noblacklist ${PATH}/openssl
12noblacklist ${PATH}/openssl-1.0 11noblacklist ${PATH}/openssl-1.0
13noblacklist ${DOCUMENTS} 12noblacklist ${DOCUMENTS}
diff --git a/etc/seahorse-tool.profile b/etc/seahorse-tool.profile
index 96f365a4b..4bf23c512 100644
--- a/etc/seahorse-tool.profile
+++ b/etc/seahorse-tool.profile
@@ -7,8 +7,6 @@ include seahorse-tool.local
7# added by included profile 7# added by included profile
8#include globals.local 8#include globals.local
9 9
10noblacklist ${DOWNLOADS}
11
12private-tmp 10private-tmp
13 11
14memory-deny-write-execute 12memory-deny-write-execute
diff --git a/etc/seahorse.profile b/etc/seahorse.profile
index 0c824e95b..b9a0fd149 100644
--- a/etc/seahorse.profile
+++ b/etc/seahorse.profile
@@ -8,7 +8,6 @@ include globals.local
8 8
9blacklist /tmp/.X11-unix 9blacklist /tmp/.X11-unix
10 10
11noblacklist ${HOME}/.config/dconf
12noblacklist ${HOME}/.gnupg 11noblacklist ${HOME}/.gnupg
13noblacklist ${HOME}/.ssh 12noblacklist ${HOME}/.ssh
14noblacklist /tmp/ssh-* 13noblacklist /tmp/ssh-*
diff --git a/etc/steam.profile b/etc/steam.profile
index 569f281a0..654ea825e 100644
--- a/etc/steam.profile
+++ b/etc/steam.profile
@@ -19,8 +19,6 @@ noblacklist ${HOME}/.local/share/vulkan
19noblacklist ${HOME}/.steam 19noblacklist ${HOME}/.steam
20noblacklist ${HOME}/.steampath 20noblacklist ${HOME}/.steampath
21noblacklist ${HOME}/.steampid 21noblacklist ${HOME}/.steampid
22# with >=llvm-4 mesa drivers need llvm stuff
23noblacklist /usr/lib/llvm*
24# needed for STEAM_RUNTIME_PREFER_HOST_LIBRARIES=1 to work 22# needed for STEAM_RUNTIME_PREFER_HOST_LIBRARIES=1 to work
25noblacklist /sbin 23noblacklist /sbin
26noblacklist /usr/sbin 24noblacklist /usr/sbin
diff --git a/etc/vim.profile b/etc/vim.profile
index 49abb0d44..957dc91aa 100644
--- a/etc/vim.profile
+++ b/etc/vim.profile
@@ -9,7 +9,6 @@ include globals.local
9noblacklist ${HOME}/.python-history 9noblacklist ${HOME}/.python-history
10noblacklist ${HOME}/.python_history 10noblacklist ${HOME}/.python_history
11noblacklist ${HOME}/.pythonhist 11noblacklist ${HOME}/.pythonhist
12noblacklist ${HOME}/.pythonrc.py
13noblacklist ${HOME}/.vim 12noblacklist ${HOME}/.vim
14noblacklist ${HOME}/.viminfo 13noblacklist ${HOME}/.viminfo
15noblacklist ${HOME}/.vimrc 14noblacklist ${HOME}/.vimrc
diff --git a/etc/wine.profile b/etc/wine.profile
index 34c695cf1..192c375cd 100644
--- a/etc/wine.profile
+++ b/etc/wine.profile
@@ -11,8 +11,6 @@ noblacklist ${HOME}/.local/share/Steam
11noblacklist ${HOME}/.local/share/steam 11noblacklist ${HOME}/.local/share/steam
12noblacklist ${HOME}/.steam 12noblacklist ${HOME}/.steam
13noblacklist ${HOME}/.wine 13noblacklist ${HOME}/.wine
14# with >=llvm-4 mesa drivers need llvm stuff
15noblacklist /usr/lib/llvm*
16 14
17include disable-common.inc 15include disable-common.inc
18include disable-devel.inc 16include disable-devel.inc
diff --git a/etc/xed.profile b/etc/xed.profile
index a02f1ef51..a67230e51 100644
--- a/etc/xed.profile
+++ b/etc/xed.profile
@@ -9,7 +9,6 @@ noblacklist ${HOME}/.config/xed
9noblacklist ${HOME}/.python-history 9noblacklist ${HOME}/.python-history
10noblacklist ${HOME}/.python_history 10noblacklist ${HOME}/.python_history
11noblacklist ${HOME}/.pythonhist 11noblacklist ${HOME}/.pythonhist
12noblacklist ${HOME}/.pythonrc.py
13 12
14# Allow python (blacklisted by disable-interpreters.inc) 13# Allow python (blacklisted by disable-interpreters.inc)
15include allow-python2.inc 14include allow-python2.inc
diff --git a/etc/xmr-stak.profile b/etc/xmr-stak.profile
index 3fbdf66ab..c6ba9bd9d 100644
--- a/etc/xmr-stak.profile
+++ b/etc/xmr-stak.profile
@@ -6,7 +6,6 @@ include xmr-stak.local
6include globals.local 6include globals.local
7 7
8noblacklist ${HOME}/.xmr-stak 8noblacklist ${HOME}/.xmr-stak
9noblacklist /usr/lib/llvm*
10 9
11include disable-common.inc 10include disable-common.inc
12include disable-devel.inc 11include disable-devel.inc