summaryrefslogtreecommitdiffstats
path: root/etc/gajim.profile
diff options
context:
space:
mode:
authorLibravatar Tad <tad@spotco.us>2017-08-07 01:22:08 -0400
committerLibravatar Tad <tad@spotco.us>2017-08-07 01:22:08 -0400
commit9e3ba319be6b9546d7e8f450ca419ee2f3f4040b (patch)
tree0aebe82de78a61877c267f4dcb2ebcc13a2e37c9 /etc/gajim.profile
parentvarious profile fixes (#1433) (diff)
downloadfirejail-9e3ba319be6b9546d7e8f450ca419ee2f3f4040b.tar.gz
firejail-9e3ba319be6b9546d7e8f450ca419ee2f3f4040b.tar.zst
firejail-9e3ba319be6b9546d7e8f450ca419ee2f3f4040b.zip
Unify all profiles
Diffstat (limited to 'etc/gajim.profile')
-rw-r--r--etc/gajim.profile50
1 files changed, 25 insertions, 25 deletions
diff --git a/etc/gajim.profile b/etc/gajim.profile
index a3deb2c73..d8ca7424c 100644
--- a/etc/gajim.profile
+++ b/etc/gajim.profile
@@ -1,34 +1,30 @@
1# Persistent global definitions go here 1# Firejail profile for gajim
2include /etc/firejail/globals.local 2# This file is overwritten after every install/update
3 3# Persistent local customizations
4# This file is overwritten during software install.
5# Persistent customizations should go in a .local file.
6include /etc/firejail/gajim.local 4include /etc/firejail/gajim.local
5# Persistent global definitions
6include /etc/firejail/globals.local
7 7
8# Firejail profile for Gajim
9noblacklist ${HOME}/.local/share/gajim
10noblacklist ${HOME}/.config/gajim
11noblacklist ${HOME}/.cache/gajim 8noblacklist ${HOME}/.cache/gajim
9noblacklist ${HOME}/.config/gajim
10noblacklist ${HOME}/.local/share/gajim
11
12include /etc/firejail/disable-common.inc
13include /etc/firejail/disable-devel.inc
14include /etc/firejail/disable-passwdmgr.inc
15include /etc/firejail/disable-programs.inc
12 16
13mkdir ${HOME}/.cache/gajim 17mkdir ${HOME}/.cache/gajim
14mkdir ${HOME}/.local/share/gajim
15mkdir ${HOME}/.config/gajim 18mkdir ${HOME}/.config/gajim
16mkdir ${HOME}/Downloads
17
18# Allow the local python 2.7 site packages, in case any plugins are using these
19mkdir ${HOME}/.local/lib/python2.7/site-packages/ 19mkdir ${HOME}/.local/lib/python2.7/site-packages/
20whitelist ${HOME}/.local/lib/python2.7/site-packages/ 20mkdir ${HOME}/.local/share/gajim
21read-only ${HOME}/.local/lib/python2.7/site-packages/ 21mkdir ${HOME}/Downloads
22
23whitelist ${HOME}/.cache/gajim 22whitelist ${HOME}/.cache/gajim
24whitelist ${HOME}/.local/share/gajim
25whitelist ${HOME}/.config/gajim 23whitelist ${HOME}/.config/gajim
24whitelist ${HOME}/.local/lib/python2.7/site-packages/
25whitelist ${HOME}/.local/share/gajim
26whitelist ${HOME}/Downloads 26whitelist ${HOME}/Downloads
27 27include /etc/firejail/whitelist-common.inc
28include /etc/firejail/disable-common.inc
29include /etc/firejail/disable-passwdmgr.inc
30include /etc/firejail/disable-programs.inc
31include /etc/firejail/disable-devel.inc
32 28
33caps.drop all 29caps.drop all
34netfilter 30netfilter
@@ -39,8 +35,12 @@ protocol unix,inet,inet6
39seccomp 35seccomp
40shell none 36shell none
41 37
42#private-bin python2.7 gajim
43#private-etc fonts
44private-dev
45#private-tmp
46disable-mnt 38disable-mnt
39# private-bin python2.7 gajim
40private-dev
41# private-etc fonts
42# private-tmp
43read-only ${HOME}/.local/lib/python2.7/site-packages/
44
45# CLOBBERED COMMENTS
46# Allow the local python 2.7 site packages, in case any plugins are using these