diff options
author | netblue30 <netblue30@yahoo.com> | 2016-03-26 20:39:16 -0400 |
---|---|---|
committer | netblue30 <netblue30@yahoo.com> | 2016-03-26 20:39:16 -0400 |
commit | f841cc971e148d9e73476061a7c0eeaf8de936ae (patch) | |
tree | 562eec1d4da6daed6a1a04aff9d432beea966f39 /etc/ssh.profile | |
parent | spilt disable-common.profile into two files (diff) | |
download | firejail-f841cc971e148d9e73476061a7c0eeaf8de936ae.tar.gz firejail-f841cc971e148d9e73476061a7c0eeaf8de936ae.tar.zst firejail-f841cc971e148d9e73476061a7c0eeaf8de936ae.zip |
profile work
Diffstat (limited to 'etc/ssh.profile')
-rw-r--r-- | etc/ssh.profile | 17 |
1 files changed, 17 insertions, 0 deletions
diff --git a/etc/ssh.profile b/etc/ssh.profile new file mode 100644 index 000000000..d78fa749d --- /dev/null +++ b/etc/ssh.profile | |||
@@ -0,0 +1,17 @@ | |||
1 | # ssh client | ||
2 | noblacklist ~/.ssh | ||
3 | include /etc/firejail/disable-mgmt.inc | ||
4 | include /etc/firejail/disable-secret.inc | ||
5 | include /etc/firejail/disable-common.inc | ||
6 | include /etc/firejail/disable-programs.inc | ||
7 | include /etc/firejail/disable-terminals.inc | ||
8 | blacklist ${HOME}/.pki/nssdb | ||
9 | blacklist ${HOME}/.lastpass | ||
10 | blacklist ${HOME}/.keepassx | ||
11 | blacklist ${HOME}/.password-store | ||
12 | caps.drop all | ||
13 | seccomp | ||
14 | protocol unix,inet,inet6 | ||
15 | netfilter | ||
16 | noroot | ||
17 | |||