aboutsummaryrefslogtreecommitdiffstats
path: root/etc/inc/disable-proc.inc
diff options
context:
space:
mode:
authorLibravatar rusty-snake <41237666+rusty-snake@users.noreply.github.com>2021-09-09 17:06:23 +0200
committerLibravatar rusty-snake <41237666+rusty-snake@users.noreply.github.com>2021-09-09 17:06:23 +0200
commit23f6bb9e2f3e6cc45f08205da2e1f1a7e35bc2ab (patch)
treef5babb1fed22be7b02eaac7ecc53f8a049f71035 /etc/inc/disable-proc.inc
parentFix #4509 -- Nextcloud profile broken - needs 3D and system tray access (diff)
downloadfirejail-23f6bb9e2f3e6cc45f08205da2e1f1a7e35bc2ab.tar.gz
firejail-23f6bb9e2f3e6cc45f08205da2e1f1a7e35bc2ab.tar.zst
firejail-23f6bb9e2f3e6cc45f08205da2e1f1a7e35bc2ab.zip
Create disable-proc.inc
Diffstat (limited to 'etc/inc/disable-proc.inc')
-rw-r--r--etc/inc/disable-proc.inc79
1 files changed, 79 insertions, 0 deletions
diff --git a/etc/inc/disable-proc.inc b/etc/inc/disable-proc.inc
new file mode 100644
index 000000000..8bc9f03c5
--- /dev/null
+++ b/etc/inc/disable-proc.inc
@@ -0,0 +1,79 @@
1# This file is overwritten during software install.
2# Persistent customizations should go in a .local file.
3include disable-proc.local
4
5blacklist /proc/acpi
6blacklist /proc/asound
7blacklist /proc/bootconfig
8blacklist /proc/buddyinfo
9blacklist /proc/cgroups
10blacklist /proc/cmdline
11blacklist /proc/config.gz
12blacklist /proc/consoles
13#blacklist /proc/cpuinfo
14blacklist /proc/crypto
15blacklist /proc/devices
16blacklist /proc/diskstats
17blacklist /proc/dma
18blacklist /proc/driver
19blacklist /proc/dynamic_debug
20blacklist /proc/execdomains
21blacklist /proc/fb
22blacklist /proc/filesystems
23blacklist /proc/fs
24blacklist /proc/i8k
25blacklist /proc/interrupts
26blacklist /proc/iomem
27blacklist /proc/ioports
28blacklist /proc/irq
29blacklist /proc/kallsyms
30blacklist /proc/kcore
31blacklist /proc/keys
32blacklist /proc/key-users
33blacklist /proc/kmsg
34blacklist /proc/kpagecgroup
35blacklist /proc/kpagecount
36blacklist /proc/kpageflags
37blacklist /proc/latency_stats
38blacklist /proc/loadavg
39blacklist /proc/locks
40blacklist /proc/mdstat
41#blacklist /proc/meminfo
42blacklist /proc/misc
43blacklist /proc/modules
44#blacklist /proc/mounts
45blacklist /proc/mtrr
46#blacklist /proc/net
47blacklist /proc/partitions
48blacklist /proc/pressure
49blacklist /proc/sched_debug
50blacklist /proc/schedstat
51blacklist /proc/scsi
52#blacklist /proc/self
53blacklist /proc/slabinfo
54blacklist /proc/softirqs
55blacklist /proc/spl
56blacklist /proc/stat
57blacklist /proc/swaps
58#blacklist /proc/sys
59blacklist /proc/sysrq-trigger
60blacklist /proc/sysvipc
61#blacklist /proc/thread-self
62blacklist /proc/timer_list
63blacklist /proc/tty
64blacklist /proc/uptime
65blacklist /proc/version
66blacklist /proc/version_signature
67blacklist /proc/vmallocinfo
68blacklist /proc/vmstat
69blacklist /proc/zoneinfo
70
71blacklist /proc/sys/abi
72blacklist /proc/sys/crypto
73blacklist /proc/sys/debug
74#blacklist /proc/sys/dev
75#blacklist /proc/sys/fs
76#blacklist /proc/sys/kernel
77#blacklist /proc/sys/net
78blacklist /proc/sys/user
79#blacklist /proc/sys/vm