aboutsummaryrefslogtreecommitdiffstats
path: root/etc/mediainfo.profile
diff options
context:
space:
mode:
authorLibravatar Tad <tad@spotco.us>2017-07-05 09:40:54 -0400
committerLibravatar Tad <tad@spotco.us>2017-08-02 00:13:42 -0400
commit0dba38435ef92ccc01cc9ff23b69df55489ec983 (patch)
treedfd1d8db02f579183fa77acdbde9aa315596220f /etc/mediainfo.profile
parentx11/xpra support (diff)
downloadfirejail-0dba38435ef92ccc01cc9ff23b69df55489ec983.tar.gz
firejail-0dba38435ef92ccc01cc9ff23b69df55489ec983.tar.zst
firejail-0dba38435ef92ccc01cc9ff23b69df55489ec983.zip
Harden profiles
- Added 'disable-devel.conf' to many profiles - Added 'disable-mnt' to many profiles - Added 'noexec' to many profiles - Removed 'netfilter' and 'net none' from profiles with 'protocol unix' - Cleaned up profiles using defaults
Diffstat (limited to 'etc/mediainfo.profile')
-rw-r--r--etc/mediainfo.profile4
1 files changed, 1 insertions, 3 deletions
diff --git a/etc/mediainfo.profile b/etc/mediainfo.profile
index 59cb080d3..c6e95cc5c 100644
--- a/etc/mediainfo.profile
+++ b/etc/mediainfo.profile
@@ -12,15 +12,13 @@ include /etc/firejail/disable-devel.inc
12include /etc/firejail/disable-passwdmgr.inc 12include /etc/firejail/disable-passwdmgr.inc
13 13
14caps.drop all 14caps.drop all
15nogroups
16nonewprivs 15nonewprivs
16nogroups
17noroot 17noroot
18nosound 18nosound
19no3d 19no3d
20protocol unix 20protocol unix
21seccomp 21seccomp
22netfilter
23net none
24shell none 22shell none
25tracelog 23tracelog
26 24