aboutsummaryrefslogtreecommitdiffstats
path: root/etc/gpg.profile
diff options
context:
space:
mode:
authorLibravatar Tad <tad@spotco.us>2017-08-07 01:22:08 -0400
committerLibravatar Tad <tad@spotco.us>2017-08-07 01:22:08 -0400
commit9e3ba319be6b9546d7e8f450ca419ee2f3f4040b (patch)
tree0aebe82de78a61877c267f4dcb2ebcc13a2e37c9 /etc/gpg.profile
parentvarious profile fixes (#1433) (diff)
downloadfirejail-9e3ba319be6b9546d7e8f450ca419ee2f3f4040b.tar.gz
firejail-9e3ba319be6b9546d7e8f450ca419ee2f3f4040b.tar.zst
firejail-9e3ba319be6b9546d7e8f450ca419ee2f3f4040b.zip
Unify all profiles
Diffstat (limited to 'etc/gpg.profile')
-rw-r--r--etc/gpg.profile19
1 files changed, 9 insertions, 10 deletions
diff --git a/etc/gpg.profile b/etc/gpg.profile
index 9ecc0a753..2d745b435 100644
--- a/etc/gpg.profile
+++ b/etc/gpg.profile
@@ -1,31 +1,30 @@
1# Persistent global definitions go here 1# Firejail profile for gpg
2# This file is overwritten after every install/update
3# Persistent local customizations
4include /etc/firejail/gpg.local
5# Persistent global definitions
2include /etc/firejail/globals.local 6include /etc/firejail/globals.local
3 7
4# This file is overwritten during software install. 8blacklist /tmp/.X11-unix
5# Persistent customizations should go in a .local file.
6include /etc/firejail/gpg.local
7 9
8# gpg profile
9noblacklist ~/.gnupg 10noblacklist ~/.gnupg
10 11
11include /etc/firejail/disable-common.inc 12include /etc/firejail/disable-common.inc
12include /etc/firejail/disable-programs.inc
13include /etc/firejail/disable-devel.inc 13include /etc/firejail/disable-devel.inc
14include /etc/firejail/disable-passwdmgr.inc 14include /etc/firejail/disable-passwdmgr.inc
15include /etc/firejail/disable-programs.inc
15 16
16caps.drop all 17caps.drop all
18netfilter
19no3d
17nogroups 20nogroups
18nonewprivs 21nonewprivs
19noroot 22noroot
20nosound 23nosound
21protocol unix,inet,inet6 24protocol unix,inet,inet6
22seccomp 25seccomp
23netfilter
24no3d
25shell none 26shell none
26tracelog 27tracelog
27 28
28blacklist /tmp/.X11-unix
29
30# private-bin gpg,gpg-agent 29# private-bin gpg,gpg-agent
31private-dev 30private-dev