diff options
author | glitsj16 <glitsj16@users.noreply.github.com> | 2019-08-13 01:29:48 +0000 |
---|---|---|
committer | GitHub <noreply@github.com> | 2019-08-13 01:29:48 +0000 |
commit | 61e1bb41819491e1fad345efc5d94e0ccbcdf71f (patch) | |
tree | 9e7907da2cf8a191b0fd89541b4f8c20228a2f6a | |
parent | Fix order of nodvd in bsdtar.profile (diff) | |
download | firejail-61e1bb41819491e1fad345efc5d94e0ccbcdf71f.tar.gz firejail-61e1bb41819491e1fad345efc5d94e0ccbcdf71f.tar.zst firejail-61e1bb41819491e1fad345efc5d94e0ccbcdf71f.zip |
Harden 7z.profile
-rw-r--r-- | etc/7z.profile | 6 |
1 files changed, 6 insertions, 0 deletions
diff --git a/etc/7z.profile b/etc/7z.profile index 15e99e936..284aa37a2 100644 --- a/etc/7z.profile +++ b/etc/7z.profile | |||
@@ -13,7 +13,9 @@ include disable-interpreters.inc | |||
13 | include disable-passwdmgr.inc | 13 | include disable-passwdmgr.inc |
14 | include disable-programs.inc | 14 | include disable-programs.inc |
15 | 15 | ||
16 | apparmor | ||
16 | caps.drop all | 17 | caps.drop all |
18 | hostname 7z | ||
17 | ipc-namespace | 19 | ipc-namespace |
18 | machine-id | 20 | machine-id |
19 | net none | 21 | net none |
@@ -33,4 +35,8 @@ shell none | |||
33 | tracelog | 35 | tracelog |
34 | x11 none | 36 | x11 none |
35 | 37 | ||
38 | #private-bin 7z,7z*,p7zip | ||
39 | private-cache | ||
36 | private-dev | 40 | private-dev |
41 | |||
42 | memory-deny-write-execute | ||