aboutsummaryrefslogtreecommitdiffstats
path: root/etc/franz.profile
diff options
context:
space:
mode:
authorLibravatar Tad <tad@spotco.us>2017-08-07 01:22:08 -0400
committerLibravatar Tad <tad@spotco.us>2017-08-07 01:22:08 -0400
commit9e3ba319be6b9546d7e8f450ca419ee2f3f4040b (patch)
tree0aebe82de78a61877c267f4dcb2ebcc13a2e37c9 /etc/franz.profile
parentvarious profile fixes (#1433) (diff)
downloadfirejail-9e3ba319be6b9546d7e8f450ca419ee2f3f4040b.tar.gz
firejail-9e3ba319be6b9546d7e8f450ca419ee2f3f4040b.tar.zst
firejail-9e3ba319be6b9546d7e8f450ca419ee2f3f4040b.zip
Unify all profiles
Diffstat (limited to 'etc/franz.profile')
-rw-r--r--etc/franz.profile32
1 files changed, 16 insertions, 16 deletions
diff --git a/etc/franz.profile b/etc/franz.profile
index c5e019947..486326fe0 100644
--- a/etc/franz.profile
+++ b/etc/franz.profile
@@ -1,30 +1,28 @@
1# Persistent global definitions go here 1# Firejail profile for franz
2include /etc/firejail/globals.local 2# This file is overwritten after every install/update
3 3# Persistent local customizations
4# This file is overwritten during software install.
5# Persistent customizations should go in a .local file.
6include /etc/firejail/franz.local 4include /etc/firejail/franz.local
5# Persistent global definitions
6include /etc/firejail/globals.local
7 7
8# Franz profile
9noblacklist ~/.config/Franz
10noblacklist ~/.cache/Franz 8noblacklist ~/.cache/Franz
9noblacklist ~/.config/Franz
11noblacklist ~/.pki 10noblacklist ~/.pki
11
12include /etc/firejail/disable-common.inc 12include /etc/firejail/disable-common.inc
13include /etc/firejail/disable-programs.inc
14include /etc/firejail/disable-devel.inc 13include /etc/firejail/disable-devel.inc
14include /etc/firejail/disable-programs.inc
15 15
16whitelist ${DOWNLOADS}
17mkdir ~/.config/Franz
18whitelist ~/.config/Franz
19mkdir ~/.cache/Franz 16mkdir ~/.cache/Franz
20whitelist ~/.cache/Franz 17mkdir ~/.config/Franz
21mkdir ~/.pki 18mkdir ~/.pki
19whitelist ${DOWNLOADS}
20whitelist ~/.cache/Franz
21whitelist ~/.config/Franz
22whitelist ~/.pki 22whitelist ~/.pki
23
24include /etc/firejail/whitelist-common.inc 23include /etc/firejail/whitelist-common.inc
25 24
26caps.drop all 25caps.drop all
27#ipc-namespace
28netfilter 26netfilter
29nogroups 27nogroups
30nonewprivs 28nonewprivs
@@ -32,11 +30,13 @@ noroot
32protocol unix,inet,inet6,netlink 30protocol unix,inet,inet6,netlink
33seccomp 31seccomp
34shell none 32shell none
35#tracelog
36 33
34disable-mnt
37private-dev 35private-dev
38private-tmp 36private-tmp
39disable-mnt
40 37
41noexec ${HOME} 38noexec ${HOME}
42noexec /tmp 39noexec /tmp
40
41# CLOBBERED COMMENTS
42# tracelog