aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorLibravatar SkewedZeppelin <8296104+SkewedZeppelin@users.noreply.github.com>2018-11-27 23:33:20 +0000
committerLibravatar GitHub <noreply@github.com>2018-11-27 23:33:20 +0000
commit10d9157cfe71bd473b7a6fcede51926909ed19e0 (patch)
tree624005cfd236c11be6841c0960bb75d71821cfdd
parentMerge pull request #2279 from pirate486743186/patch-1 (diff)
parentnew profile mpsyt.profile (diff)
downloadfirejail-10d9157cfe71bd473b7a6fcede51926909ed19e0.tar.gz
firejail-10d9157cfe71bd473b7a6fcede51926909ed19e0.tar.zst
firejail-10d9157cfe71bd473b7a6fcede51926909ed19e0.zip
Merge pull request #2280 from pirate486743186/patch-2
new profile mpsyt.profile
-rw-r--r--etc/mpsyt.profile47
1 files changed, 47 insertions, 0 deletions
diff --git a/etc/mpsyt.profile b/etc/mpsyt.profile
new file mode 100644
index 000000000..c64b71ad6
--- /dev/null
+++ b/etc/mpsyt.profile
@@ -0,0 +1,47 @@
1# Firejail profile for mpsyt
2# Description: Terminal based YouTube player and downloader
3# This file is overwritten after every install/update
4# Persistent local customizations
5include /etc/firejail/mpsyt.local
6# Persistent global definitions
7include /etc/firejail/globals.local
8
9noblacklist ${HOME}/.config/mpv
10noblacklist ${HOME}/.mplayer
11noblacklist ${HOME}/.config/mps-youtube
12noblacklist ${HOME}/.netrc
13noblacklist ${HOME}/mps
14noblacklist ${MUSIC}
15noblacklist ${VIDEOS}
16
17# Allow python (blacklisted by disable-interpreters.inc)
18noblacklist ${PATH}/python2*
19noblacklist ${PATH}/python3*
20noblacklist /usr/lib/python2*
21noblacklist /usr/lib/python3*
22noblacklist /usr/local/lib/python2*
23noblacklist /usr/local/lib/python3*
24
25include /etc/firejail/disable-common.inc
26include /etc/firejail/disable-devel.inc
27include /etc/firejail/disable-interpreters.inc
28include /etc/firejail/disable-passwdmgr.inc
29include /etc/firejail/disable-programs.inc
30include /etc/firejail/disable-xdg.inc
31
32include /etc/firejail/whitelist-var-common.inc
33
34apparmor
35caps.drop all
36netfilter
37# Seems to cause issues with Nvidia drivers sometimes
38nogroups
39nonewprivs
40noroot
41protocol unix,inet,inet6
42seccomp
43shell none
44tracelog
45
46private-bin mpsyt,mplayer,mpv,youtube-dl,python*,env
47private-dev