aboutsummaryrefslogtreecommitdiffstats
path: root/etc/checkbashisms.profile
diff options
context:
space:
mode:
authorLibravatar glitsj16 <glitsj16@users.noreply.github.com>2019-02-24 20:46:50 +0000
committerLibravatar GitHub <noreply@github.com>2019-02-24 20:46:50 +0000
commit5678df608625fb8b7d7aefc48952db2414b0ac67 (patch)
tree644ee19890b7791426b600f28f7c1b1d9e8260c0 /etc/checkbashisms.profile
parentHarden arch-audit.profile (#2450) (diff)
downloadfirejail-5678df608625fb8b7d7aefc48952db2414b0ac67.tar.gz
firejail-5678df608625fb8b7d7aefc48952db2414b0ac67.tar.zst
firejail-5678df608625fb8b7d7aefc48952db2414b0ac67.zip
Harden checkbashisms.profile (#2451)
Diffstat (limited to 'etc/checkbashisms.profile')
-rw-r--r--etc/checkbashisms.profile4
1 files changed, 4 insertions, 0 deletions
diff --git a/etc/checkbashisms.profile b/etc/checkbashisms.profile
index 601ca58a9..fe2648792 100644
--- a/etc/checkbashisms.profile
+++ b/etc/checkbashisms.profile
@@ -25,8 +25,10 @@ include disable-xdg.inc
25 25
26include whitelist-var-common.inc 26include whitelist-var-common.inc
27 27
28apparmor
28caps.drop all 29caps.drop all
29ipc-namespace 30ipc-namespace
31machine-id
30net none 32net none
31no3d 33no3d
32nodbus 34nodbus
@@ -42,7 +44,9 @@ protocol unix
42seccomp 44seccomp
43shell none 45shell none
44 46
47private-cache
45private-dev 48private-dev
49private-lib perl*
46private-tmp 50private-tmp
47 51
48memory-deny-write-execute 52memory-deny-write-execute