aboutsummaryrefslogtreecommitdiffstats
path: root/etc/profile-a-l
diff options
context:
space:
mode:
authorLibravatar smitsohu <smitsohu@gmail.com>2022-04-10 17:55:48 +0200
committerLibravatar smitsohu <smitsohu@gmail.com>2022-04-10 18:03:35 +0200
commitce6f792efd0af09b95050864b71f79c46359fa49 (patch)
tree9670725f5cb8d014b09b1a271060e0f933bc1d36 /etc/profile-a-l
parentunbound: fixes, blacklist all of ${RUNUSER} (diff)
downloadfirejail-ce6f792efd0af09b95050864b71f79c46359fa49.tar.gz
firejail-ce6f792efd0af09b95050864b71f79c46359fa49.tar.zst
firejail-ce6f792efd0af09b95050864b71f79c46359fa49.zip
libvirt dnsmasq fix (#5089)
Diffstat (limited to 'etc/profile-a-l')
-rw-r--r--etc/profile-a-l/dnsmasq.profile4
1 files changed, 4 insertions, 0 deletions
diff --git a/etc/profile-a-l/dnsmasq.profile b/etc/profile-a-l/dnsmasq.profile
index 2db1548a4..71b960311 100644
--- a/etc/profile-a-l/dnsmasq.profile
+++ b/etc/profile-a-l/dnsmasq.profile
@@ -19,6 +19,9 @@ include disable-interpreters.inc
19include disable-programs.inc 19include disable-programs.inc
20include disable-xdg.inc 20include disable-xdg.inc
21 21
22whitelist /var/lib/libvirt/dnsmasq
23whitelist /var/run
24
22caps.keep net_admin,net_bind_service,net_raw,setgid,setuid 25caps.keep net_admin,net_bind_service,net_raw,setgid,setuid
23no3d 26no3d
24nodvd 27nodvd
@@ -35,3 +38,4 @@ disable-mnt
35private 38private
36private-cache 39private-cache
37private-dev 40private-dev
41writable-var