aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorLibravatar SkewedZeppelin <8296104+SkewedZeppelin@users.noreply.github.com>2018-04-27 15:14:13 -0400
committerLibravatar GitHub <noreply@github.com>2018-04-27 15:14:13 -0400
commit3c64988fbe8994e1a5aa34ab5e28349c6ce0f680 (patch)
tree6b7653c181e167f841a6b2a9fd9a719d63ab2830
parentMerges (diff)
parentAdd more files and directories to private-etc (diff)
downloadfirejail-3c64988fbe8994e1a5aa34ab5e28349c6ce0f680.tar.gz
firejail-3c64988fbe8994e1a5aa34ab5e28349c6ce0f680.tar.zst
firejail-3c64988fbe8994e1a5aa34ab5e28349c6ce0f680.zip
Merge pull request #1914 from flacks/profiles/gajim
Update Gajim profile
-rw-r--r--etc/disable-programs.inc1
-rw-r--r--etc/gajim.profile16
2 files changed, 6 insertions, 11 deletions
diff --git a/etc/disable-programs.inc b/etc/disable-programs.inc
index 9adf5d97b..ea334c289 100644
--- a/etc/disable-programs.inc
+++ b/etc/disable-programs.inc
@@ -348,7 +348,6 @@ blacklist ${HOME}/.kodi
348blacklist ${HOME}/.linphone-history.db 348blacklist ${HOME}/.linphone-history.db
349blacklist ${HOME}/.linphonerc 349blacklist ${HOME}/.linphonerc
350blacklist ${HOME}/.lmmsrc.xml 350blacklist ${HOME}/.lmmsrc.xml
351blacklist ${HOME}/.local/lib/python2.7/site-packages
352blacklist ${HOME}/.local/share/0ad 351blacklist ${HOME}/.local/share/0ad
353blacklist ${HOME}/.local/share/3909/PapersPlease 352blacklist ${HOME}/.local/share/3909/PapersPlease
354blacklist ${HOME}/.local/share/Empathy 353blacklist ${HOME}/.local/share/Empathy
diff --git a/etc/gajim.profile b/etc/gajim.profile
index 02c818443..8e76352f4 100644
--- a/etc/gajim.profile
+++ b/etc/gajim.profile
@@ -9,9 +9,9 @@ noblacklist ${HOME}/.cache/gajim
9noblacklist ${HOME}/.config/gajim 9noblacklist ${HOME}/.config/gajim
10noblacklist ${HOME}/.local/share/gajim 10noblacklist ${HOME}/.local/share/gajim
11 11
12# Allow python2.7 (blacklisted by disable-interpreters.inc) 12# Allow Python (blacklisted by disable-interpreters.inc)
13noblacklist ${PATH}/python2* 13noblacklist ${PATH}/python3*
14noblacklist /usr/lib/python2* 14noblacklist /usr/lib/python3*
15 15
16include /etc/firejail/disable-common.inc 16include /etc/firejail/disable-common.inc
17include /etc/firejail/disable-devel.inc 17include /etc/firejail/disable-devel.inc
@@ -21,12 +21,10 @@ include /etc/firejail/disable-programs.inc
21 21
22mkdir ${HOME}/.cache/gajim 22mkdir ${HOME}/.cache/gajim
23mkdir ${HOME}/.config/gajim 23mkdir ${HOME}/.config/gajim
24mkdir ${HOME}/.local/lib/python2.7/site-packages/
25mkdir ${HOME}/.local/share/gajim 24mkdir ${HOME}/.local/share/gajim
26mkdir ${HOME}/Downloads 25mkdir ${HOME}/Downloads
27whitelist ${HOME}/.cache/gajim 26whitelist ${HOME}/.cache/gajim
28whitelist ${HOME}/.config/gajim 27whitelist ${HOME}/.config/gajim
29whitelist ${HOME}/.local/lib/python2.7/site-packages/
30whitelist ${HOME}/.local/share/gajim 28whitelist ${HOME}/.local/share/gajim
31whitelist ${HOME}/Downloads 29whitelist ${HOME}/Downloads
32include /etc/firejail/whitelist-common.inc 30include /etc/firejail/whitelist-common.inc
@@ -43,9 +41,7 @@ seccomp
43shell none 41shell none
44 42
45disable-mnt 43disable-mnt
46private-bin python2.7,gajim 44private-bin python,gajim
47private-dev 45private-dev
48# private-etc fonts 46private-etc alsa,asound.conf,ca-certificates,crypto-policies,fonts,group,hostname,hosts,ld.so.cache,ld.so.conf,localtime,machine-id,passwd,pki,pulse,resolv.conf,ssl
49# private-tmp 47private-tmp
50# Allow the local python 2.7 site packages, in case any plugins are using these
51read-only ${HOME}/.local/lib/python2.7/site-packages/