aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorLibravatar netblue30 <netblue30@yahoo.com>2018-10-11 08:33:14 -0500
committerLibravatar GitHub <noreply@github.com>2018-10-11 08:33:14 -0500
commit099013ee8d0f5d4f505ae8261b01fdd29eee4d2d (patch)
tree88ed49cabd22031bd1917c7311d50bdd7c33559b
parentMerge pull request #2167 from glitsj16/claws-mail (diff)
parentUpdate for devilspie2 (diff)
downloadfirejail-099013ee8d0f5d4f505ae8261b01fdd29eee4d2d.tar.gz
firejail-099013ee8d0f5d4f505ae8261b01fdd29eee4d2d.tar.zst
firejail-099013ee8d0f5d4f505ae8261b01fdd29eee4d2d.zip
Merge pull request #2168 from glitsj16/devilspie2
New profile devilspie2
-rw-r--r--etc/devilspie2.profile49
-rw-r--r--etc/disable-programs.inc1
2 files changed, 50 insertions, 0 deletions
diff --git a/etc/devilspie2.profile b/etc/devilspie2.profile
new file mode 100644
index 000000000..3a9a9659a
--- /dev/null
+++ b/etc/devilspie2.profile
@@ -0,0 +1,49 @@
1# Firejail profile for devilspie2
2# Description: Window matching daemon (Lua)
3# This file is overwritten after every install/update
4# Persistent local customizations
5include /etc/firejail/devilspie2.local
6# Persistent global definitions
7include /etc/firejail/globals.local
8
9noblacklist ${HOME}/.config/devilspie2
10
11include /etc/firejail/disable-common.inc
12include /etc/firejail/disable-devel.inc
13include /etc/firejail/disable-interpreters.inc
14include /etc/firejail/disable-passwdmgr.inc
15include /etc/firejail/disable-programs.inc
16
17caps.drop all
18ipc-namespace
19machine-id
20net none
21no3d
22nodbus
23nodvd
24nogroups
25nonewprivs
26noroot
27nosound
28notv
29nou2f
30novideo
31protocol unix
32seccomp
33shell none
34tracelog
35
36disable-mnt
37private-bin devilspie2
38private-cache
39private-dev
40private-etc none
41private-lib gconv
42private-tmp
43
44memory-deny-write-execute
45noexec ${HOME}
46noexec /tmp
47
48# devilspie2 will never write anything
49read-only ${HOME}
diff --git a/etc/disable-programs.inc b/etc/disable-programs.inc
index b050b8b25..6401b51b0 100644
--- a/etc/disable-programs.inc
+++ b/etc/disable-programs.inc
@@ -114,6 +114,7 @@ blacklist ${HOME}/.config/corebird
114blacklist ${HOME}/.config/darktable 114blacklist ${HOME}/.config/darktable
115blacklist ${HOME}/.config/deadbeef 115blacklist ${HOME}/.config/deadbeef
116blacklist ${HOME}/.config/deluge 116blacklist ${HOME}/.config/deluge
117blacklist ${HOME}/.config/devilspie2
117blacklist ${HOME}/.config/digikam 118blacklist ${HOME}/.config/digikam
118blacklist ${HOME}/.config/digikamrc 119blacklist ${HOME}/.config/digikamrc
119blacklist ${HOME}/.config/discord 120blacklist ${HOME}/.config/discord