aboutsummaryrefslogtreecommitdiffstats
path: root/etc/git.profile
diff options
context:
space:
mode:
authorLibravatar Tad <tad@spotco.us>2017-08-07 01:22:08 -0400
committerLibravatar Tad <tad@spotco.us>2017-08-07 01:22:08 -0400
commit9e3ba319be6b9546d7e8f450ca419ee2f3f4040b (patch)
tree0aebe82de78a61877c267f4dcb2ebcc13a2e37c9 /etc/git.profile
parentvarious profile fixes (#1433) (diff)
downloadfirejail-9e3ba319be6b9546d7e8f450ca419ee2f3f4040b.tar.gz
firejail-9e3ba319be6b9546d7e8f450ca419ee2f3f4040b.tar.zst
firejail-9e3ba319be6b9546d7e8f450ca419ee2f3f4040b.zip
Unify all profiles
Diffstat (limited to 'etc/git.profile')
-rw-r--r--etc/git.profile25
1 files changed, 12 insertions, 13 deletions
diff --git a/etc/git.profile b/etc/git.profile
index 5fa3ef95e..a565f3b5a 100644
--- a/etc/git.profile
+++ b/etc/git.profile
@@ -1,35 +1,34 @@
1# Firejail profile for git
2# This file is overwritten after every install/update
1quiet 3quiet
2# Persistent global definitions go here 4# Persistent local customizations
5include /etc/firejail/git.local
6# Persistent global definitions
3include /etc/firejail/globals.local 7include /etc/firejail/globals.local
4 8
5# This file is overwritten during software install. 9blacklist /tmp/.X11-unix
6# Persistent customizations should go in a .local file.
7include /etc/firejail/git.local
8 10
9# git profile
10noblacklist ~/.gitconfig
11noblacklist ~/.ssh
12noblacklist ~/.gnupg
13noblacklist ~/.emacs 11noblacklist ~/.emacs
14noblacklist ~/.emacs.d 12noblacklist ~/.emacs.d
15noblacklist ~/.viminfo 13noblacklist ~/.gitconfig
14noblacklist ~/.gnupg
15noblacklist ~/.ssh
16noblacklist ~/.vim 16noblacklist ~/.vim
17noblacklist ~/.viminfo
17 18
18include /etc/firejail/disable-common.inc 19include /etc/firejail/disable-common.inc
19include /etc/firejail/disable-programs.inc
20include /etc/firejail/disable-passwdmgr.inc 20include /etc/firejail/disable-passwdmgr.inc
21include /etc/firejail/disable-programs.inc
21 22
22caps.drop all 23caps.drop all
23netfilter 24netfilter
25no3d
24nogroups 26nogroups
25nonewprivs 27nonewprivs
26noroot 28noroot
27nosound 29nosound
28no3d
29protocol unix,inet,inet6 30protocol unix,inet,inet6
30seccomp 31seccomp
31shell none 32shell none
32 33
33blacklist /tmp/.X11-unix
34
35private-dev 34private-dev