aboutsummaryrefslogtreecommitdiffstats
path: root/etc/desktop.profile
diff options
context:
space:
mode:
authorLibravatar glitsj16 <glitsj16@users.noreply.github.com>2018-10-11 07:41:52 +0000
committerLibravatar GitHub <noreply@github.com>2018-10-11 07:41:52 +0000
commite76abca17e1b1d39932c35da1deaad857e3e203b (patch)
treec30da1aaf1fba0f38341df009ca73bb0dd9a1bfd /etc/desktop.profile
parentmerges (diff)
downloadfirejail-e76abca17e1b1d39932c35da1deaad857e3e203b.tar.gz
firejail-e76abca17e1b1d39932c35da1deaad857e3e203b.tar.zst
firejail-e76abca17e1b1d39932c35da1deaad857e3e203b.zip
Create desktop.profile
Diffstat (limited to 'etc/desktop.profile')
-rw-r--r--etc/desktop.profile44
1 files changed, 44 insertions, 0 deletions
diff --git a/etc/desktop.profile b/etc/desktop.profile
new file mode 100644
index 000000000..8bfa885a3
--- /dev/null
+++ b/etc/desktop.profile
@@ -0,0 +1,44 @@
1# Firejail profile for desktop
2# Description: Extend your GitHub workflow beyond your browser with GitHub Desktop
3# This file is overwritten after every install/update
4# Persistent local customizations
5include /etc/firejail/github-desktop.local
6# Persistent global definitions
7include /etc/firejail/globals.local
8
9whitelist ${HOME}/.gitconfig
10whitelist ${HOME}/.config/GitHub Desktop
11
12include /etc/firejail/disable-common.inc
13include /etc/firejail/disable-passwdmgr.inc
14include /etc/firejail/disable-programs.inc
15include /etc/firejail/disable-devel.inc
16include /etc/firejail/disable-interpreters.inc
17
18include /etc/firejail/whitelist-common.inc
19
20caps.drop all
21netfilter
22# no3d
23nodvd
24nogroups
25nonewprivs
26noroot
27nosound
28notv
29nou2f
30novideo
31protocol unix,inet,inet6,netlink
32seccomp
33
34disable-mnt
35# private-bin Atom,desktop
36# private-cache
37# private-dev
38# private-etc none
39# private-lib
40# private-tmp
41
42# memory-deny-write-execute
43# noexec ${HOME}
44# noexec /tmp