aboutsummaryrefslogtreecommitdiffstats
path: root/etc/gajim.profile
diff options
context:
space:
mode:
authorLibravatar greigdp <greigdp@users.noreply.github.com>2016-08-18 12:00:46 +0100
committerLibravatar greigdp <greigdp@users.noreply.github.com>2016-08-18 12:00:46 +0100
commit6ffdc467370c4d4964ced120e5a2cddc0bc38490 (patch)
tree6b1a5b72a0ada75f8fcf4d4fb8171924b1aa3801 /etc/gajim.profile
parentfiremon fixes (diff)
downloadfirejail-6ffdc467370c4d4964ced120e5a2cddc0bc38490.tar.gz
firejail-6ffdc467370c4d4964ced120e5a2cddc0bc38490.tar.zst
firejail-6ffdc467370c4d4964ced120e5a2cddc0bc38490.zip
Add profile for Gajim IM client
Diffstat (limited to 'etc/gajim.profile')
-rw-r--r--etc/gajim.profile33
1 files changed, 33 insertions, 0 deletions
diff --git a/etc/gajim.profile b/etc/gajim.profile
new file mode 100644
index 000000000..04902a734
--- /dev/null
+++ b/etc/gajim.profile
@@ -0,0 +1,33 @@
1# Firejail profile for Gajim
2
3mkdir ${HOME}/.cache/gajim
4mkdir ${HOME}/.local/share/gajim
5mkdir ${HOME}/.config/gajim
6mkdir ${HOME}/Downloads
7
8# Allow the local python 2.7 site packages, in case any plugins are using these
9mkdir ${HOME}/.local/lib/python2.7/site-packages/
10whitelist ${HOME}/.local/lib/python2.7/site-packages/
11read-only ${HOME}/.local/lib/python2.7/site-packages/
12
13whitelist ${HOME}/.cache/gajim
14whitelist ${HOME}/.local/share/gajim
15whitelist ${HOME}/.config/gajim
16whitelist ${HOME}/Downloads
17
18include /etc/firejail/disable-common.inc
19include /etc/firejail/disable-passwdmgr.inc
20include /etc/firejail/disable-programs.inc
21include /etc/firejail/disable-devel.inc
22
23caps.drop all
24netfilter
25nonewprivs
26nogroups
27noroot
28protocol unix,inet,inet6
29seccomp
30shell none
31
32#private-bin python2.7 gajim
33private-dev