aboutsummaryrefslogtreecommitdiffstats
path: root/etc/basilisk.profile
diff options
context:
space:
mode:
authorLibravatar netblue30 <netblue30@yahoo.com>2017-12-27 11:46:43 -0500
committerLibravatar netblue30 <netblue30@yahoo.com>2017-12-27 11:46:43 -0500
commite8e54df67cc8df996bf87b9d98b7f3e202e68b50 (patch)
tree50c63199b133fdbc74beaf459c475077f20d7d3e /etc/basilisk.profile
parentMerge branch 'master' of http://github.com/netblue30/firejail (diff)
downloadfirejail-e8e54df67cc8df996bf87b9d98b7f3e202e68b50.tar.gz
firejail-e8e54df67cc8df996bf87b9d98b7f3e202e68b50.tar.zst
firejail-e8e54df67cc8df996bf87b9d98b7f3e202e68b50.zip
adding basilisk profile - #1693
Diffstat (limited to 'etc/basilisk.profile')
-rw-r--r--etc/basilisk.profile60
1 files changed, 60 insertions, 0 deletions
diff --git a/etc/basilisk.profile b/etc/basilisk.profile
new file mode 100644
index 000000000..a87391942
--- /dev/null
+++ b/etc/basilisk.profile
@@ -0,0 +1,60 @@
1# Firejail profile for basilisk
2# This file is overwritten after every install/update
3# Persistent local customizations
4include /etc/firejail/basilisk.local
5# Persistent global definitions
6include /etc/firejail/globals.local
7
8noblacklist ${HOME}/.cache/moonchild productions/basilisk
9noblacklist ${HOME}/.moonchild productions/basilisk
10
11include /etc/firejail/disable-common.inc
12include /etc/firejail/disable-devel.inc
13include /etc/firejail/disable-programs.inc
14
15# These are uncommented in the Firefox profile. If you run into trouble you may
16# want to uncomment (some of) them.
17#whitelist ${HOME}/dwhelper
18#whitelist ${HOME}/.zotero
19#whitelist ${HOME}/.vimperatorrc
20#whitelist ${HOME}/.vimperator
21#whitelist ${HOME}/.pentadactylrc
22#whitelist ${HOME}/.pentadactyl
23#whitelist ${HOME}/.keysnail.js
24#whitelist ${HOME}/.config/gnome-mplayer
25#whitelist ${HOME}/.cache/gnome-mplayer/plugin
26#whitelist ${HOME}/.pki
27#whitelist ${HOME}/.lastpass
28
29# For silverlight
30#whitelist ${HOME}/.wine-pipelight
31#whitelist ${HOME}/.wine-pipelight64
32#whitelist ${HOME}/.config/pipelight-widevine
33#whitelist ${HOME}/.config/pipelight-silverlight5.1
34
35mkdir ${HOME}/.cache/moonchild productions/basilisk
36mkdir ${HOME}/.moonchild productions
37whitelist ${DOWNLOADS}
38whitelist ${HOME}/.cache/moonchild productions/basilisk
39whitelist ${HOME}/.moonchild productions
40include /etc/firejail/whitelist-common.inc
41
42caps.drop all
43netfilter
44nodvd
45nogroups
46nonewprivs
47noroot
48notv
49protocol unix,inet,inet6,netlink
50seccomp
51shell none
52tracelog
53
54# private-bin basilisk
55# private-dev (disabled for now as it will interfere with webcam use in basilisk)
56# private-etc passwd,group,hostname,hosts,localtime,nsswitch.conf,resolv.conf,gtk-2.0,pango,fonts,iceweasel,firefox,adobe,mime.types,mailcap,asound.conf,pulse
57# private-opt basilisk
58private-tmp
59
60disable-mnt