diff options
author | Tad <tad@spotco.us> | 2017-09-16 14:11:43 -0400 |
---|---|---|
committer | Tad <tad@spotco.us> | 2017-09-18 18:24:13 -0400 |
commit | 3c3602fe4e747f3489c917f4de991c9043df9751 (patch) | |
tree | 052baee1387ce11b9ecd00e49a7c96d59f92d480 /etc/ardour5.profile | |
parent | Fixup 36 profiles (diff) | |
download | firejail-3c3602fe4e747f3489c917f4de991c9043df9751.tar.gz firejail-3c3602fe4e747f3489c917f4de991c9043df9751.tar.zst firejail-3c3602fe4e747f3489c917f4de991c9043df9751.zip |
Harden 25 profiles
Diffstat (limited to 'etc/ardour5.profile')
-rw-r--r-- | etc/ardour5.profile | 5 |
1 files changed, 4 insertions, 1 deletions
diff --git a/etc/ardour5.profile b/etc/ardour5.profile index 42744f4dd..738b5990a 100644 --- a/etc/ardour5.profile +++ b/etc/ardour5.profile | |||
@@ -19,8 +19,11 @@ include /etc/firejail/disable-programs.inc | |||
19 | caps.drop all | 19 | caps.drop all |
20 | ipc-namespace | 20 | ipc-namespace |
21 | net none | 21 | net none |
22 | nodvd | ||
22 | nogroups | 23 | nogroups |
24 | nonewprivs | ||
23 | noroot | 25 | noroot |
26 | notv | ||
24 | seccomp | 27 | seccomp |
25 | shell none | 28 | shell none |
26 | 29 | ||
@@ -29,5 +32,5 @@ private-dev | |||
29 | #private-etc pulse,X11,alternatives,ardour4,ardour5,fonts | 32 | #private-etc pulse,X11,alternatives,ardour4,ardour5,fonts |
30 | private-tmp | 33 | private-tmp |
31 | 34 | ||
32 | noexec /home | 35 | noexec ${HOME} |
33 | noexec /tmp | 36 | noexec /tmp |