aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorLibravatar netblue30 <netblue30@yahoo.com>2018-10-28 14:52:47 -0400
committerLibravatar netblue30 <netblue30@yahoo.com>2018-10-28 14:52:47 -0400
commit96f2c32c0bcda0eb4267b7af98da577acb0876d5 (patch)
tree9b3cfcc960f78084dcfd415a5d6be1c4148467df
parentaisleriot (diff)
downloadfirejail-96f2c32c0bcda0eb4267b7af98da577acb0876d5.tar.gz
firejail-96f2c32c0bcda0eb4267b7af98da577acb0876d5.tar.zst
firejail-96f2c32c0bcda0eb4267b7af98da577acb0876d5.zip
aisleriot profile
-rw-r--r--etc/sol.profile48
1 files changed, 48 insertions, 0 deletions
diff --git a/etc/sol.profile b/etc/sol.profile
new file mode 100644
index 000000000..c0ad3c739
--- /dev/null
+++ b/etc/sol.profile
@@ -0,0 +1,48 @@
1# Firejail profile for default
2# This file is overwritten after every install/update
3# Persistent local customizations
4include sol.local
5# Persistent global definitions
6include globals.local
7
8include disable-common.inc
9include disable-devel.inc
10include disable-interpreters.inc
11include disable-passwdmgr.inc
12include disable-programs.inc
13include disable-xdg.inc
14
15# all necessary files in $HOME are in whitelist-common.inc
16include whitelist-common.inc
17include whitelist-var-common.inc
18net none
19
20caps.drop all
21# ipc-namespace
22# netfilter
23# no3d
24# nodbus
25nodvd
26nogroups
27nonewprivs
28noroot
29# nosound
30notv
31nou2f
32novideo
33protocol unix
34seccomp
35shell none
36
37disable-mnt
38# private
39private-bin sol
40# private-cache
41private-dev
42# private-etc none
43# private-lib
44private-tmp
45
46memory-deny-write-execute
47noexec ${HOME}
48noexec /tmp