aboutsummaryrefslogtreecommitdiffstats
path: root/etc/profile-m-z/vlc.profile
diff options
context:
space:
mode:
authorLibravatar Fred Barclay <Fred-Barclay@users.noreply.github.com>2020-08-15 17:27:10 -0500
committerLibravatar GitHub <noreply@github.com>2020-08-15 17:27:10 -0500
commit5d741795c3bb2060730e282a8f512b999418e098 (patch)
tree8ff4e8937c10e995b54869ff82effbc73b888fca /etc/profile-m-z/vlc.profile
parentMerge pull request #3559 from smitsohu/smitsohu-bandwidth (diff)
downloadfirejail-5d741795c3bb2060730e282a8f512b999418e098.tar.gz
firejail-5d741795c3bb2060730e282a8f512b999418e098.tar.zst
firejail-5d741795c3bb2060730e282a8f512b999418e098.zip
Use whitelisting for video players (#3472)
* Use whitelisting for video players See https://github.com/netblue30/firejail/pull/3469 * Update media player whitelists See reviews at https://github.com/netblue30/firejail/pull/3472 Block $DOCUMENTS Make $DESKTOP read-only * Review fixes: include read-only Desktop in whitelist
Diffstat (limited to 'etc/profile-m-z/vlc.profile')
-rw-r--r--etc/profile-m-z/vlc.profile16
1 files changed, 13 insertions, 3 deletions
diff --git a/etc/profile-m-z/vlc.profile b/etc/profile-m-z/vlc.profile
index 0069ebeae..07a1b5fc0 100644
--- a/etc/profile-m-z/vlc.profile
+++ b/etc/profile-m-z/vlc.profile
@@ -9,8 +9,6 @@ include globals.local
9noblacklist ${HOME}/.cache/vlc 9noblacklist ${HOME}/.cache/vlc
10noblacklist ${HOME}/.config/vlc 10noblacklist ${HOME}/.config/vlc
11noblacklist ${HOME}/.local/share/vlc 11noblacklist ${HOME}/.local/share/vlc
12noblacklist ${MUSIC}
13noblacklist ${VIDEOS}
14 12
15include disable-common.inc 13include disable-common.inc
16include disable-devel.inc 14include disable-devel.inc
@@ -18,8 +16,20 @@ include disable-exec.inc
18include disable-interpreters.inc 16include disable-interpreters.inc
19include disable-passwdmgr.inc 17include disable-passwdmgr.inc
20include disable-programs.inc 18include disable-programs.inc
21include disable-xdg.inc
22 19
20read-only ${DESKTOP}
21mkdir ${HOME}/.cache/vlc
22mkdir ${HOME}/.config/vlc
23mkdir ${HOME}/.local/share/vlc
24whitelist ${HOME}/.cache/vlc
25whitelist ${HOME}/.config/vlc
26whitelist ${HOME}/.local/share/vlc
27whitelist ${DESKTOP}
28whitelist ${DOWNLOADS}
29whitelist ${MUSIC}
30whitelist ${PICTURES}
31whitelist ${VIDEOS}
32include whitelist-common.inc
23include whitelist-var-common.inc 33include whitelist-var-common.inc
24 34
25#apparmor - on Ubuntu 18.04 it refuses to start without dbus access 35#apparmor - on Ubuntu 18.04 it refuses to start without dbus access