aboutsummaryrefslogtreecommitdiffstats
path: root/etc/gnome-chess.profile
diff options
context:
space:
mode:
authorLibravatar Tad <tad@spotco.us>2017-07-04 10:51:43 -0400
committerLibravatar Tad <tad@spotco.us>2017-07-04 11:35:29 -0400
commit5354f20012b488c50cd556e315b78ad351ae0f9d (patch)
tree89c737f738f8525da446786083473c249b8a9f79 /etc/gnome-chess.profile
parentper-profile disable-mnt (diff)
downloadfirejail-5354f20012b488c50cd556e315b78ad351ae0f9d.tar.gz
firejail-5354f20012b488c50cd556e315b78ad351ae0f9d.tar.zst
firejail-5354f20012b488c50cd556e315b78ad351ae0f9d.zip
Harden 50 profiles
Hardened many profiles using disable-mnt and novideo Fixed gnome-font-viewer
Diffstat (limited to 'etc/gnome-chess.profile')
-rw-r--r--etc/gnome-chess.profile6
1 files changed, 6 insertions, 0 deletions
diff --git a/etc/gnome-chess.profile b/etc/gnome-chess.profile
index 9ff978803..8c098d592 100644
--- a/etc/gnome-chess.profile
+++ b/etc/gnome-chess.profile
@@ -14,10 +14,12 @@ include /etc/firejail/disable-programs.inc
14include /etc/firejail/disable-passwdmgr.inc 14include /etc/firejail/disable-passwdmgr.inc
15 15
16caps.drop all 16caps.drop all
17no3d
17nogroups 18nogroups
18nonewprivs 19nonewprivs
19noroot 20noroot
20nosound 21nosound
22novideo
21protocol unix 23protocol unix
22seccomp 24seccomp
23shell none 25shell none
@@ -27,3 +29,7 @@ private-bin fairymax,gnome-chess,hoichess
27private-dev 29private-dev
28private-etc fonts,gnome-chess 30private-etc fonts,gnome-chess
29private-tmp 31private-tmp
32disable-mnt
33
34noexec ${HOME}
35noexec /tmp