aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorLibravatar Tad <tad@spotco.us>2018-11-29 02:08:23 -0500
committerLibravatar Tad <tad@spotco.us>2018-11-29 02:09:04 -0500
commitcc9db57343c3df0a9fc191e31273c955314c8f72 (patch)
treedf2411810cf4e534af6ded52a11222da8ef25831
parentMerge pull request #2281 from pirate486743186/mpsyt-profile (diff)
downloadfirejail-cc9db57343c3df0a9fc191e31273c955314c8f72.tar.gz
firejail-cc9db57343c3df0a9fc191e31273c955314c8f72.tar.zst
firejail-cc9db57343c3df0a9fc191e31273c955314c8f72.zip
merges
-rw-r--r--etc/mpsyt.profile41
-rw-r--r--src/firecfg/firecfg.config2
2 files changed, 22 insertions, 21 deletions
diff --git a/etc/mpsyt.profile b/etc/mpsyt.profile
index eb51a45cc..9fb52c0a8 100644
--- a/etc/mpsyt.profile
+++ b/etc/mpsyt.profile
@@ -2,9 +2,17 @@
2# Description: Terminal based YouTube player and downloader 2# Description: Terminal based YouTube player and downloader
3# This file is overwritten after every install/update 3# This file is overwritten after every install/update
4# Persistent local customizations 4# Persistent local customizations
5include /etc/firejail/mpsyt.local 5include mpsyt.local
6# Persistent global definitions 6# Persistent global definitions
7include /etc/firejail/globals.local 7include globals.local
8
9# Allow python (blacklisted by disable-interpreters.inc)
10noblacklist ${PATH}/python2*
11noblacklist ${PATH}/python3*
12noblacklist /usr/lib/python2*
13noblacklist /usr/lib/python3*
14noblacklist /usr/local/lib/python2*
15noblacklist /usr/local/lib/python3*
8 16
9noblacklist ${HOME}/.config/mpv 17noblacklist ${HOME}/.config/mpv
10noblacklist ${HOME}/.mplayer 18noblacklist ${HOME}/.mplayer
@@ -15,8 +23,14 @@ noblacklist ${MUSIC}
15noblacklist ${VIDEOS} 23noblacklist ${VIDEOS}
16noblacklist ${DOWNLOADS} 24noblacklist ${DOWNLOADS}
17 25
18mkdir ${HOME}/.config/mps-youtube 26include disable-common.inc
27include disable-devel.inc
28include disable-interpreters.inc
29include disable-passwdmgr.inc
30include disable-programs.inc
31include disable-xdg.inc
19 32
33mkdir ${HOME}/.config/mps-youtube
20whitelist ${HOME}/.config/mpv 34whitelist ${HOME}/.config/mpv
21whitelist ${HOME}/.mplayer 35whitelist ${HOME}/.mplayer
22whitelist ${HOME}/.config/mps-youtube 36whitelist ${HOME}/.config/mps-youtube
@@ -25,23 +39,8 @@ whitelist ${HOME}/mps
25whitelist ${MUSIC} 39whitelist ${MUSIC}
26whitelist ${VIDEOS} 40whitelist ${VIDEOS}
27whitelist ${DOWNLOADS} 41whitelist ${DOWNLOADS}
28 42include whitelist-common.inc
29# Allow python (blacklisted by disable-interpreters.inc) 43include whitelist-var-common.inc
30noblacklist ${PATH}/python2*
31noblacklist ${PATH}/python3*
32noblacklist /usr/lib/python2*
33noblacklist /usr/lib/python3*
34noblacklist /usr/local/lib/python2*
35noblacklist /usr/local/lib/python3*
36
37include /etc/firejail/disable-common.inc
38include /etc/firejail/disable-devel.inc
39include /etc/firejail/disable-interpreters.inc
40include /etc/firejail/disable-passwdmgr.inc
41include /etc/firejail/disable-programs.inc
42include /etc/firejail/disable-xdg.inc
43
44include /etc/firejail/whitelist-var-common.inc
45 44
46apparmor 45apparmor
47caps.drop all 46caps.drop all
@@ -55,7 +54,7 @@ seccomp
55shell none 54shell none
56tracelog 55tracelog
57 56
58private-bin mpsyt,mplayer,mpv,youtube-dl,python*,env 57private-bin mpsyt,mplayer,mpv,youtube-dl,python*,env,ffmpeg
59private-dev 58private-dev
60private-tmp 59private-tmp
61 60
diff --git a/src/firecfg/firecfg.config b/src/firecfg/firecfg.config
index c26ac278f..68ef5e5d1 100644
--- a/src/firecfg/firecfg.config
+++ b/src/firecfg/firecfg.config
@@ -140,6 +140,7 @@ evolution
140exiftool 140exiftool
141falkon 141falkon
142fbreader 142fbreader
143feedreader
143feh 144feh
144ffmpeg 145ffmpeg
145file-roller 146file-roller
@@ -290,6 +291,7 @@ min
290minetest 291minetest
291mousepad 292mousepad
292mplayer 293mplayer
294mpsyt
293mpv 295mpv
294ms-excel 296ms-excel
295ms-office 297ms-office