diff options
author | netblue30 <netblue30@protonmail.com> | 2022-08-30 09:10:55 -0400 |
---|---|---|
committer | Kelvin M. Klann <kmk3.code@protonmail.com> | 2022-09-05 01:07:41 -0300 |
commit | d900d531969512a13204f19dd5a67238bc59800c (patch) | |
tree | 39985b38ef6e70641e53979dde36a7532631f32f /README.md | |
parent | tracelog disabled by default in /etc/firejail/firejail.config file (diff) | |
download | firejail-d900d531969512a13204f19dd5a67238bc59800c.tar.gz firejail-d900d531969512a13204f19dd5a67238bc59800c.tar.zst firejail-d900d531969512a13204f19dd5a67238bc59800c.zip |
README/README.md
Committer note: This is the same as commit 796fa0963
("README/README.md", 2022-08-30) and commit 0594c5d3d ("typos",
2022-08-30) but without the Landlock-related changes.
Diffstat (limited to 'README.md')
-rw-r--r-- | README.md | 44 |
1 files changed, 22 insertions, 22 deletions
@@ -214,7 +214,7 @@ Milestone page: https://github.com/netblue30/firejail/milestone/1 | |||
214 | $ firejail --restrict-namespaces=user,net | 214 | $ firejail --restrict-namespaces=user,net |
215 | ````` | 215 | ````` |
216 | 216 | ||
217 | #### Support for custom AppArmor profiles | 217 | ### Support for custom AppArmor profiles |
218 | 218 | ||
219 | ````` | 219 | ````` |
220 | --apparmor | 220 | --apparmor |
@@ -238,30 +238,30 @@ No include .local found in /etc/firejail/noprofile.profile | |||
238 | Warning: multiple caps in /etc/firejail/transmission-daemon.profile | 238 | Warning: multiple caps in /etc/firejail/transmission-daemon.profile |
239 | 239 | ||
240 | Stats: | 240 | Stats: |
241 | profiles 1191 | 241 | profiles 1196 |
242 | include local profile 1190 (include profile-name.local) | 242 | include local profile 1195 (include profile-name.local) |
243 | include globals 1164 (include globals.local) | 243 | include globals 1169 (include globals.local) |
244 | blacklist ~/.ssh 1063 (include disable-common.inc) | 244 | blacklist ~/.ssh 1067 (include disable-common.inc) |
245 | seccomp 1082 | 245 | seccomp 1087 |
246 | capabilities 1185 | 246 | capabilities 1190 |
247 | noexec 1070 (include disable-exec.inc) | 247 | noexec 1075 (include disable-exec.inc) |
248 | noroot 991 | 248 | noroot 995 |
249 | memory-deny-write-execute 267 | 249 | memory-deny-write-execute 269 |
250 | apparmor 710 | 250 | apparmor 713 |
251 | private-bin 689 | 251 | private-bin 695 |
252 | private-dev 1041 | 252 | private-dev 1045 |
253 | private-etc 539 | 253 | private-etc 542 |
254 | private-lib 70 | 254 | private-lib 70 |
255 | private-tmp 915 | 255 | private-tmp 918 |
256 | whitelist home directory 573 | 256 | whitelist home directory 575 |
257 | whitelist var 855 (include whitelist-var-common.inc) | 257 | whitelist var 858 (include whitelist-var-common.inc) |
258 | whitelist run/user 1159 (include whitelist-runuser-common.inc | 258 | whitelist run/user 1164 (include whitelist-runuser-common.inc |
259 | or blacklist ${RUNUSER}) | 259 | or blacklist ${RUNUSER}) |
260 | whitelist usr/share 628 (include whitelist-usr-share-common.inc | 260 | whitelist usr/share 630 (include whitelist-usr-share-common.inc |
261 | net none 403 | 261 | net none 404 |
262 | dbus-user none 673 | 262 | dbus-user none 677 |
263 | dbus-user filter 123 | 263 | dbus-user filter 123 |
264 | dbus-system none 833 | 264 | dbus-system none 837 |
265 | dbus-system filter 12 | 265 | dbus-system filter 12 |
266 | ``` | 266 | ``` |
267 | 267 | ||