aboutsummaryrefslogtreecommitdiffstats
path: root/etc/tracker.profile
diff options
context:
space:
mode:
authorLibravatar Tad <tad@spotco.us>2017-08-07 01:22:08 -0400
committerLibravatar Tad <tad@spotco.us>2017-08-07 01:22:08 -0400
commit9e3ba319be6b9546d7e8f450ca419ee2f3f4040b (patch)
tree0aebe82de78a61877c267f4dcb2ebcc13a2e37c9 /etc/tracker.profile
parentvarious profile fixes (#1433) (diff)
downloadfirejail-9e3ba319be6b9546d7e8f450ca419ee2f3f4040b.tar.gz
firejail-9e3ba319be6b9546d7e8f450ca419ee2f3f4040b.tar.zst
firejail-9e3ba319be6b9546d7e8f450ca419ee2f3f4040b.zip
Unify all profiles
Diffstat (limited to 'etc/tracker.profile')
-rw-r--r--etc/tracker.profile25
1 files changed, 12 insertions, 13 deletions
diff --git a/etc/tracker.profile b/etc/tracker.profile
index b87bebf43..98040133c 100644
--- a/etc/tracker.profile
+++ b/etc/tracker.profile
@@ -1,34 +1,33 @@
1# Persistent global definitions go here 1# Firejail profile for tracker
2include /etc/firejail/globals.local 2# This file is overwritten after every install/update
3 3# Persistent local customizations
4# This file is overwritten during software install.
5# Persistent customizations should go in a .local file.
6include /etc/firejail/tracker.local 4include /etc/firejail/tracker.local
5# Persistent global definitions
6include /etc/firejail/globals.local
7 7
8# tracker profile 8blacklist /tmp/.X11-unix
9
10# Tracker is started by systemd on most systems. Therefore it is not firejailed by default
11 9
12include /etc/firejail/disable-common.inc 10include /etc/firejail/disable-common.inc
13include /etc/firejail/disable-programs.inc
14include /etc/firejail/disable-devel.inc 11include /etc/firejail/disable-devel.inc
15include /etc/firejail/disable-passwdmgr.inc 12include /etc/firejail/disable-passwdmgr.inc
13include /etc/firejail/disable-programs.inc
16 14
17caps.drop all 15caps.drop all
18netfilter 16netfilter
17no3d
19nogroups 18nogroups
20nonewprivs 19nonewprivs
21noroot 20noroot
22nosound 21nosound
23no3d
24protocol unix 22protocol unix
25seccomp 23seccomp
26shell none 24shell none
27tracelog 25tracelog
28 26
29blacklist /tmp/.X11-unix
30
31# private-bin tracker 27# private-bin tracker
32# private-tmp
33# private-dev 28# private-dev
34# private-etc fonts 29# private-etc fonts
30# private-tmp
31
32# CLOBBERED COMMENTS
33# Tracker is started by systemd on most systems. Therefore it is not firejailed by default