aboutsummaryrefslogtreecommitdiffstats
path: root/etc/multimc5.profile
diff options
context:
space:
mode:
authorLibravatar Tad <tad@spotco.us>2017-08-07 01:22:08 -0400
committerLibravatar Tad <tad@spotco.us>2017-08-07 01:22:08 -0400
commit9e3ba319be6b9546d7e8f450ca419ee2f3f4040b (patch)
tree0aebe82de78a61877c267f4dcb2ebcc13a2e37c9 /etc/multimc5.profile
parentvarious profile fixes (#1433) (diff)
downloadfirejail-9e3ba319be6b9546d7e8f450ca419ee2f3f4040b.tar.gz
firejail-9e3ba319be6b9546d7e8f450ca419ee2f3f4040b.tar.zst
firejail-9e3ba319be6b9546d7e8f450ca419ee2f3f4040b.zip
Unify all profiles
Diffstat (limited to 'etc/multimc5.profile')
-rw-r--r--etc/multimc5.profile31
1 files changed, 12 insertions, 19 deletions
diff --git a/etc/multimc5.profile b/etc/multimc5.profile
index 6b0696064..882f17485 100644
--- a/etc/multimc5.profile
+++ b/etc/multimc5.profile
@@ -1,47 +1,40 @@
1# Persistent global definitions go here 1# Firejail profile for multimc5
2include /etc/firejail/globals.local 2# This file is overwritten after every install/update
3 3# Persistent local customizations
4# This file is overwritten during software install.
5# Persistent customizations should go in a .local file.
6include /etc/firejail/multimc5.local 4include /etc/firejail/multimc5.local
5# Persistent global definitions
6include /etc/firejail/globals.local
7 7
8#
9#Profile for multimc5
10#
11
12#No Blacklist Paths
13noblacklist ${HOME}/.java 8noblacklist ${HOME}/.java
14noblacklist ${HOME}/.local/share/multimc5 9noblacklist ${HOME}/.local/share/multimc5
15noblacklist ${HOME}/.multimc5 10noblacklist ${HOME}/.multimc5
16 11
17#Blacklist Paths
18include /etc/firejail/disable-common.inc 12include /etc/firejail/disable-common.inc
19include /etc/firejail/disable-programs.inc
20include /etc/firejail/disable-passwdmgr.inc
21include /etc/firejail/disable-devel.inc 13include /etc/firejail/disable-devel.inc
14include /etc/firejail/disable-passwdmgr.inc
15include /etc/firejail/disable-programs.inc
22 16
23#Whitelist Paths
24mkdir ${HOME}/.local/share/multimc5 17mkdir ${HOME}/.local/share/multimc5
25whitelist ${HOME}/.local/share/multimc5
26mkdir ${HOME}/.multimc5 18mkdir ${HOME}/.multimc5
19whitelist ${HOME}/.local/share/multimc5
27whitelist ${HOME}/.multimc5 20whitelist ${HOME}/.multimc5
28include /etc/firejail/whitelist-common.inc 21include /etc/firejail/whitelist-common.inc
29 22
30#Options
31caps.drop all 23caps.drop all
32#ipc-namespace
33netfilter 24netfilter
34nogroups 25nogroups
35nonewprivs 26nonewprivs
36noroot 27noroot
37novideo 28novideo
38protocol unix,inet,inet6 29protocol unix,inet,inet6
39#seccomp
40shell none 30shell none
41 31
32disable-mnt
42private-dev 33private-dev
43private-tmp 34private-tmp
44disable-mnt
45 35
46noexec ${HOME} 36noexec ${HOME}
47noexec /tmp 37noexec /tmp
38
39# CLOBBERED COMMENTS
40# seccomp