aboutsummaryrefslogtreecommitdiffstats
path: root/etc/pinta.profile
diff options
context:
space:
mode:
authorLibravatar Tad <tad@spotco.us>2017-09-22 08:42:52 -0400
committerLibravatar Tad <tad@spotco.us>2017-09-22 08:42:52 -0400
commit04adc450151cc5107098ef2f555ad526ac9f632e (patch)
treece43807c66368539ffba1630ccedb0819cbc12dc /etc/pinta.profile
parentFixup merge of #1565 (diff)
downloadfirejail-04adc450151cc5107098ef2f555ad526ac9f632e.tar.gz
firejail-04adc450151cc5107098ef2f555ad526ac9f632e.tar.zst
firejail-04adc450151cc5107098ef2f555ad526ac9f632e.zip
Further fixup #1565 and add a profile for uefitool
Diffstat (limited to 'etc/pinta.profile')
-rw-r--r--etc/pinta.profile12
1 files changed, 8 insertions, 4 deletions
diff --git a/etc/pinta.profile b/etc/pinta.profile
index 2562e1b80..4228e5880 100644
--- a/etc/pinta.profile
+++ b/etc/pinta.profile
@@ -1,15 +1,21 @@
1# Firejail profile for krita 1# Firejail profile for pinta
2# This file is overwritten after every install/update 2# This file is overwritten after every install/update
3# Persistent local customizations 3# Persistent local customizations
4include /etc/firejail/krita.local 4include /etc/firejail/pinta.local
5# Persistent global definitions 5# Persistent global definitions
6include /etc/firejail/globals.local 6include /etc/firejail/globals.local
7 7
8
9noblacklist ${HOME}/.config/Pinta
10
8include /etc/firejail/disable-common.inc 11include /etc/firejail/disable-common.inc
9include /etc/firejail/disable-devel.inc 12include /etc/firejail/disable-devel.inc
10include /etc/firejail/disable-passwdmgr.inc 13include /etc/firejail/disable-passwdmgr.inc
11include /etc/firejail/disable-programs.inc 14include /etc/firejail/disable-programs.inc
12 15
16whitelist ${HOME}/.config/Pinta
17include /etc/firejail/whitelist-common.inc
18
13caps.drop all 19caps.drop all
14ipc-namespace 20ipc-namespace
15net none 21net none
@@ -27,7 +33,5 @@ shell none
27private-dev 33private-dev
28private-tmp 34private-tmp
29 35
30
31whitelist ~/.config/Pinta
32noexec ${HOME} 36noexec ${HOME}
33noexec /tmp 37noexec /tmp