aboutsummaryrefslogtreecommitdiffstats
path: root/etc/generic.profile
diff options
context:
space:
mode:
authorLibravatar netblue30 <netblue30@yahoo.com>2015-08-08 19:12:30 -0400
committerLibravatar netblue30 <netblue30@yahoo.com>2015-08-08 19:12:30 -0400
commit1379851360349d6617ad32944a25ee5e2bb74fc2 (patch)
treef69b48e90708bfa3c2723d5a27ed3e024c827b43 /etc/generic.profile
parentdelete files (diff)
downloadfirejail-1379851360349d6617ad32944a25ee5e2bb74fc2.tar.gz
firejail-1379851360349d6617ad32944a25ee5e2bb74fc2.tar.zst
firejail-1379851360349d6617ad32944a25ee5e2bb74fc2.zip
Baseline firejail 0.9.28
Diffstat (limited to 'etc/generic.profile')
-rw-r--r--etc/generic.profile41
1 files changed, 41 insertions, 0 deletions
diff --git a/etc/generic.profile b/etc/generic.profile
new file mode 100644
index 000000000..83bf59e0a
--- /dev/null
+++ b/etc/generic.profile
@@ -0,0 +1,41 @@
1################################
2# Generic profile based on Firefox profile
3################################
4#include /etc/firejail/disable-mgmt.inc
5# system directories
6blacklist /sbin
7blacklist /usr/sbin
8# system management
9blacklist ${PATH}/umount
10blacklist ${PATH}/mount
11blacklist ${PATH}/fusermount
12blacklist ${PATH}/su
13blacklist ${PATH}/sudo
14blacklist ${PATH}/xinput
15blacklist ${PATH}/strace
16
17#include /etc/firejail/disable-secret.inc
18# HOME directory
19blacklist ${HOME}/.ssh
20tmpfs ${HOME}/.gnome2_private
21blacklist ${HOME}/.gnome2/keyrings
22blacklist ${HOME}/kde4/share/apps/kwallet
23blacklist ${HOME}/kde/share/apps/kwallet
24blacklist ${HOME}/.pki/nssdb
25blacklist ${HOME}/.gnupg
26blacklist ${HOME}/.local/share/recently-used.xbel
27
28blacklist ${HOME}/.adobe
29blacklist ${HOME}/.macromedia
30blacklist ${HOME}/.mozilla
31blacklist ${HOME}/.icedove
32blacklist ${HOME}/.thunderbird
33blacklist ${HOME}/.config/opera
34blacklist ${HOME}/.config/chromium
35blacklist ${HOME}/.config/google-chrome
36
37caps.drop all
38seccomp
39netfilter
40noroot
41