aboutsummaryrefslogtreecommitdiffstats
path: root/etc/geeqie.profile
diff options
context:
space:
mode:
authorLibravatar Tad <tad@spotco.us>2017-08-07 01:22:08 -0400
committerLibravatar Tad <tad@spotco.us>2017-08-07 01:22:08 -0400
commit9e3ba319be6b9546d7e8f450ca419ee2f3f4040b (patch)
tree0aebe82de78a61877c267f4dcb2ebcc13a2e37c9 /etc/geeqie.profile
parentvarious profile fixes (#1433) (diff)
downloadfirejail-9e3ba319be6b9546d7e8f450ca419ee2f3f4040b.tar.gz
firejail-9e3ba319be6b9546d7e8f450ca419ee2f3f4040b.tar.zst
firejail-9e3ba319be6b9546d7e8f450ca419ee2f3f4040b.zip
Unify all profiles
Diffstat (limited to 'etc/geeqie.profile')
-rw-r--r--etc/geeqie.profile27
1 files changed, 14 insertions, 13 deletions
diff --git a/etc/geeqie.profile b/etc/geeqie.profile
index 194b76674..9434d49b8 100644
--- a/etc/geeqie.profile
+++ b/etc/geeqie.profile
@@ -1,30 +1,31 @@
1# Persistent global definitions go here 1# Firejail profile for geeqie
2include /etc/firejail/globals.local 2# This file is overwritten after every install/update
3 3# Persistent local customizations
4# This file is overwritten during software install.
5# Persistent customizations should go in a .local file.
6include /etc/firejail/geeqie.local 4include /etc/firejail/geeqie.local
5# Persistent global definitions
6include /etc/firejail/globals.local
7 7
8# Firejail profile for Geeqie 8noblacklist ~/.cache/geeqie
9noblacklist ~/.config/geeqie 9noblacklist ~/.config/geeqie
10noblacklist ~/.local/share/geeqie 10noblacklist ~/.local/share/geeqie
11noblacklist ~/.cache/geeqie 11
12include /etc/firejail/disable-common.inc 12include /etc/firejail/disable-common.inc
13include /etc/firejail/disable-programs.inc
14include /etc/firejail/disable-devel.inc 13include /etc/firejail/disable-devel.inc
15include /etc/firejail/disable-passwdmgr.inc 14include /etc/firejail/disable-passwdmgr.inc
15include /etc/firejail/disable-programs.inc
16 16
17caps.drop all 17caps.drop all
18nogroups 18nogroups
19nonewprivs 19nonewprivs
20noroot 20noroot
21nosound
21protocol unix 22protocol unix
22seccomp 23seccomp
23nosound 24shell none
24 25
26# private-bin geeqie
25private-dev 27private-dev
28# private-etc X11
26 29
27#Experimental: 30# CLOBBERED COMMENTS
28shell none 31# Experimental:
29#private-bin geeqie
30#private-etc X11