aboutsummaryrefslogtreecommitdiffstats
path: root/etc/pithos.profile
diff options
context:
space:
mode:
authorLibravatar Fred Barclay <Fred-Barclay@users.noreply.github.com>2017-04-15 22:06:37 +0000
committerLibravatar GitHub <noreply@github.com>2017-04-15 22:06:37 +0000
commitf13aa1b80ac13085503bc190bf4ee7d7513607be (patch)
treeb32a354af0af97e19b779380382ec973275a1006 /etc/pithos.profile
parentnoblacklist .config/qt5ct (part 1) (diff)
parentHarden Steam (diff)
downloadfirejail-f13aa1b80ac13085503bc190bf4ee7d7513607be.tar.gz
firejail-f13aa1b80ac13085503bc190bf4ee7d7513607be.tar.zst
firejail-f13aa1b80ac13085503bc190bf4ee7d7513607be.zip
Merge pull request #1220 from SpotComms/harden
Harden some profiles
Diffstat (limited to 'etc/pithos.profile')
-rw-r--r--etc/pithos.profile9
1 files changed, 9 insertions, 0 deletions
diff --git a/etc/pithos.profile b/etc/pithos.profile
index 500e35989..c25b5772b 100644
--- a/etc/pithos.profile
+++ b/etc/pithos.profile
@@ -17,7 +17,16 @@ include /etc/firejail/whitelist-common.inc
17#Options 17#Options
18caps.drop all 18caps.drop all
19netfilter 19netfilter
20no3d
21nogroups
20nonewprivs 22nonewprivs
21noroot 23noroot
22protocol unix,inet,inet6 24protocol unix,inet,inet6
23seccomp 25seccomp
26shell none
27
28private-dev
29private-tmp
30
31noexec ${HOME}
32noexec /tmp