aboutsummaryrefslogtreecommitdiffstats
path: root/etc/disable-common.inc
diff options
context:
space:
mode:
authorLibravatar valoq <valoq@mailbox.org>2016-10-19 18:09:30 +0200
committerLibravatar valoq <valoq@mailbox.org>2016-10-19 18:09:30 +0200
commitb53b92cb0d21ca137b340c3d9a47a53d6cb00c45 (patch)
treec8b3703b49b56d2bd9ddb6aefb99f7f5b291721b /etc/disable-common.inc
parentadded profiles (diff)
downloadfirejail-b53b92cb0d21ca137b340c3d9a47a53d6cb00c45.tar.gz
firejail-b53b92cb0d21ca137b340c3d9a47a53d6cb00c45.tar.zst
firejail-b53b92cb0d21ca137b340c3d9a47a53d6cb00c45.zip
blacklisted common suid programms
Diffstat (limited to 'etc/disable-common.inc')
-rw-r--r--etc/disable-common.inc26
1 files changed, 26 insertions, 0 deletions
diff --git a/etc/disable-common.inc b/etc/disable-common.inc
index 4f854c8d8..506d4e258 100644
--- a/etc/disable-common.inc
+++ b/etc/disable-common.inc
@@ -172,3 +172,29 @@ blacklist ${PATH}/roxterm-config
172blacklist ${PATH}/terminix 172blacklist ${PATH}/terminix
173blacklist ${PATH}/urxvtc 173blacklist ${PATH}/urxvtc
174blacklist ${PATH}/urxvtcd 174blacklist ${PATH}/urxvtcd
175
176# disable common suid programms
177blacklist ${PATH}/firejail
178blacklist ${PATH}/sudo
179blacklist ${PATH}/su
180blacklist ${PATH}/mount
181blacklist ${PATH}/umount
182blacklist ${PATH}/fusermount
183blacklist ${PATH}/passwd
184blacklist ${PATH}/gpasswd
185blacklist ${PATH}/newgidmap
186blacklist ${PATH}/newgrp
187blacklist ${PATH}/newuidmap
188blacklist ${PATH}/pkexec
189blacklist ${PATH}/sg
190blacklist ${PATH}/rsh
191blacklist ${PATH}/rlogin
192blacklist ${PATH}/rcp
193blacklist ${PATH}/crontab
194blacklist ${PATH}/ksu
195blacklist ${PATH}/chsh
196blacklist ${PATH}/chfn
197blacklist ${PATH}/chage
198blacklist ${PATH}/expiry
199blacklist ${PATH}/ping
200blacklist ${PATH}/unix_chkpwd