diff options
author | SYN-cook <SYN-cook@users.noreply.github.com> | 2017-02-28 19:57:25 +0100 |
---|---|---|
committer | GitHub <noreply@github.com> | 2017-02-28 19:57:25 +0100 |
commit | 0890a915daf92ef2e37bb28be3d887e699ec1de2 (patch) | |
tree | 785bfa9d2eded39c3df72f00071d1abedb5cec90 /etc/uzbl-browser.profile | |
parent | remove redundancy (diff) | |
parent | profile merges (diff) | |
download | firejail-0890a915daf92ef2e37bb28be3d887e699ec1de2.tar.gz firejail-0890a915daf92ef2e37bb28be3d887e699ec1de2.tar.zst firejail-0890a915daf92ef2e37bb28be3d887e699ec1de2.zip |
Merge pull request #2 from netblue30/master
merge upstream
Diffstat (limited to 'etc/uzbl-browser.profile')
-rw-r--r-- | etc/uzbl-browser.profile | 33 |
1 files changed, 33 insertions, 0 deletions
diff --git a/etc/uzbl-browser.profile b/etc/uzbl-browser.profile new file mode 100644 index 000000000..ce0b0d0a5 --- /dev/null +++ b/etc/uzbl-browser.profile | |||
@@ -0,0 +1,33 @@ | |||
1 | # This file is overwritten during software install. | ||
2 | # Persistent customizations should go in a .local file. | ||
3 | include /etc/firejail/uzbl-browser.local | ||
4 | |||
5 | # Firejail profile for uzbl-browser | ||
6 | |||
7 | noblacklist ~/.config/uzbl | ||
8 | noblacklist ~/.gnupg | ||
9 | include /etc/firejail/disable-common.inc | ||
10 | include /etc/firejail/disable-programs.inc | ||
11 | include /etc/firejail/disable-devel.inc | ||
12 | |||
13 | caps.drop all | ||
14 | netfilter | ||
15 | nonewprivs | ||
16 | noroot | ||
17 | protocol unix,inet,inet6 | ||
18 | seccomp | ||
19 | tracelog | ||
20 | |||
21 | mkdir ~/.config/uzbl | ||
22 | whitelist ~/.config/uzbl | ||
23 | mkdir ~/.local/share/uzbl | ||
24 | whitelist ~/.local/share/uzbl | ||
25 | |||
26 | whitelist ${DOWNLOADS} | ||
27 | |||
28 | mkdir ~/.gnupg | ||
29 | whitelist ~/.gnupg | ||
30 | mkdir ~/.password-store | ||
31 | whitelist ~/.password-store | ||
32 | |||
33 | include /etc/firejail/whitelist-common.inc | ||