aboutsummaryrefslogtreecommitdiffstats
path: root/etc/gnome-2048.profile
diff options
context:
space:
mode:
authorLibravatar Tad <tad@spotco.us>2017-07-04 10:51:43 -0400
committerLibravatar Tad <tad@spotco.us>2017-07-04 11:35:29 -0400
commit5354f20012b488c50cd556e315b78ad351ae0f9d (patch)
tree89c737f738f8525da446786083473c249b8a9f79 /etc/gnome-2048.profile
parentper-profile disable-mnt (diff)
downloadfirejail-5354f20012b488c50cd556e315b78ad351ae0f9d.tar.gz
firejail-5354f20012b488c50cd556e315b78ad351ae0f9d.tar.zst
firejail-5354f20012b488c50cd556e315b78ad351ae0f9d.zip
Harden 50 profiles
Hardened many profiles using disable-mnt and novideo Fixed gnome-font-viewer
Diffstat (limited to 'etc/gnome-2048.profile')
-rw-r--r--etc/gnome-2048.profile10
1 files changed, 10 insertions, 0 deletions
diff --git a/etc/gnome-2048.profile b/etc/gnome-2048.profile
index 0e757a06f..5e0dfc2a1 100644
--- a/etc/gnome-2048.profile
+++ b/etc/gnome-2048.profile
@@ -26,7 +26,17 @@ include /etc/firejail/whitelist-common.inc
26#Options 26#Options
27caps.drop all 27caps.drop all
28netfilter 28netfilter
29no3d
29nonewprivs 30nonewprivs
30noroot 31noroot
32#nosound
33novideo
31protocol unix,inet,inet6 34protocol unix,inet,inet6
32seccomp 35seccomp
36
37private-dev
38private-tmp
39disable-mnt
40
41noexec ${HOME}
42noexec /tmp