aboutsummaryrefslogtreecommitdiffstats
path: root/etc/iridium.profile
diff options
context:
space:
mode:
authorLibravatar smitsohu <smitsohu@gmail.com>2017-10-29 13:06:19 +0100
committerLibravatar smitsohu <smitsohu@gmail.com>2017-10-29 13:06:19 +0100
commit8ef2c87931fa83c2d1fd6b35f23ac650adee6355 (patch)
treead154ca76315d658334fb06b587e1df835fb137a /etc/iridium.profile
parentfix for #1614 (--timeout) (diff)
downloadfirejail-8ef2c87931fa83c2d1fd6b35f23ac650adee6355.tar.gz
firejail-8ef2c87931fa83c2d1fd6b35f23ac650adee6355.tar.zst
firejail-8ef2c87931fa83c2d1fd6b35f23ac650adee6355.zip
fix and harden various profiles
Diffstat (limited to 'etc/iridium.profile')
-rw-r--r--etc/iridium.profile10
1 files changed, 10 insertions, 0 deletions
diff --git a/etc/iridium.profile b/etc/iridium.profile
index db9c5c7cf..5b1268f4e 100644
--- a/etc/iridium.profile
+++ b/etc/iridium.profile
@@ -21,7 +21,17 @@ whitelist ~/.cache/iridium
21whitelist ~/.config/iridium 21whitelist ~/.config/iridium
22whitelist ~/.pki 22whitelist ~/.pki
23include /etc/firejail/whitelist-common.inc 23include /etc/firejail/whitelist-common.inc
24include /etc/firejail/whitelist-var-common.inc
24 25
26caps.keep sys_chroot,sys_admin
25netfilter 27netfilter
26nodvd 28nodvd
29nogroups
27notv 30notv
31shell none
32
33private-dev
34# private-tmp - problems with multiple browser sessions
35
36noexec ${HOME}
37noexec /tmp