diff options
author | glitsj16 <glitsj16@users.noreply.github.com> | 2018-10-13 05:07:21 +0000 |
---|---|---|
committer | GitHub <noreply@github.com> | 2018-10-13 05:07:21 +0000 |
commit | 09b3edd1f4a39234c751d9aa220bef84fef8e7e3 (patch) | |
tree | dc933ec66db74ce7c835d367b2e6544b556cca45 | |
parent | Create mencoder.profile (diff) | |
download | firejail-09b3edd1f4a39234c751d9aa220bef84fef8e7e3.tar.gz firejail-09b3edd1f4a39234c751d9aa220bef84fef8e7e3.tar.zst firejail-09b3edd1f4a39234c751d9aa220bef84fef8e7e3.zip |
Redo mencoder as extending mplayer profile
-rw-r--r-- | etc/mencoder.profile | 19 |
1 files changed, 3 insertions, 16 deletions
diff --git a/etc/mencoder.profile b/etc/mencoder.profile index 6ba3023ef..9306d268e 100644 --- a/etc/mencoder.profile +++ b/etc/mencoder.profile | |||
@@ -4,9 +4,8 @@ | |||
4 | # Persistent local customizations | 4 | # Persistent local customizations |
5 | include /etc/firejail/mencoder.local | 5 | include /etc/firejail/mencoder.local |
6 | # Persistent global definitions | 6 | # Persistent global definitions |
7 | include /etc/firejail/globals.local | 7 | # added by included profile |
8 | 8 | #include /etc/firejail/globals.local | |
9 | noblacklist ${HOME}/.mplayer | ||
10 | 9 | ||
11 | include /etc/firejail/disable-common.inc | 10 | include /etc/firejail/disable-common.inc |
12 | include /etc/firejail/disable-devel.inc | 11 | include /etc/firejail/disable-devel.inc |
@@ -14,14 +13,9 @@ include /etc/firejail/disable-interpreters.inc | |||
14 | include /etc/firejail/disable-passwdmgr.inc | 13 | include /etc/firejail/disable-passwdmgr.inc |
15 | include /etc/firejail/disable-programs.inc | 14 | include /etc/firejail/disable-programs.inc |
16 | 15 | ||
17 | # apparmor | ||
18 | caps.drop all | ||
19 | net none | 16 | net none |
20 | no3d | 17 | no3d |
21 | nodbus | 18 | nodbus |
22 | nogroups | ||
23 | nonewprivs | ||
24 | noroot | ||
25 | nosound | 19 | nosound |
26 | notv | 20 | notv |
27 | nou2f | 21 | nou2f |
@@ -29,13 +23,6 @@ protocol unix | |||
29 | seccomp | 23 | seccomp |
30 | shell none | 24 | shell none |
31 | 25 | ||
32 | disable-mnt | ||
33 | private-bin mencoder | 26 | private-bin mencoder |
34 | private-cache | ||
35 | private-dev | ||
36 | private-etc mplayer | ||
37 | private-tmp | ||
38 | 27 | ||
39 | memory-deny-write-execute | 28 | include /etc/firejail/mplayer.profile |
40 | noexec ${HOME} | ||
41 | noexec /tmp | ||