summaryrefslogtreecommitdiffstats
path: root/etc
diff options
context:
space:
mode:
authorLibravatar netblue30 <netblue30@yahoo.com>2017-03-21 12:57:38 -0400
committerLibravatar netblue30 <netblue30@yahoo.com>2017-03-21 12:57:38 -0400
commite372c8ab0849b9d2ea4d6a3fa6027403a8acad98 (patch)
tree7938359f84e9b776589f938f496c30b4d06be335 /etc
parentcompile cleanup (diff)
downloadfirejail-e372c8ab0849b9d2ea4d6a3fa6027403a8acad98.tar.gz
firejail-e372c8ab0849b9d2ea4d6a3fa6027403a8acad98.tar.zst
firejail-e372c8ab0849b9d2ea4d6a3fa6027403a8acad98.zip
Removed all .cache directory references from profile files. The directory is disabled by default - a tmpfs is mounted on top of it.
Diffstat (limited to 'etc')
-rw-r--r--etc/0ad.profile4
-rw-r--r--etc/abrowser.profile4
-rw-r--r--etc/chromium.profile3
-rw-r--r--etc/cyberfox.profile4
-rw-r--r--etc/disable-programs.inc38
-rw-r--r--etc/epiphany.profile3
-rw-r--r--etc/evolution.profile1
-rw-r--r--etc/firefox.profile4
-rw-r--r--etc/flashpeak-slimjet.profile3
-rw-r--r--etc/fossamail.profile3
-rw-r--r--etc/franz.profile3
-rw-r--r--etc/gajim.profile3
-rw-r--r--etc/geeqie.profile1
-rw-r--r--etc/gjs.profile2
-rw-r--r--etc/gnome-books.profile2
-rw-r--r--etc/gnome-weather.profile2
-rw-r--r--etc/google-chrome-beta.profile3
-rw-r--r--etc/google-chrome-unstable.profile3
-rw-r--r--etc/google-chrome.profile3
-rw-r--r--etc/icecat.profile4
-rw-r--r--etc/icedove.profile4
-rw-r--r--etc/inox.profile3
-rw-r--r--etc/iridium.profile3
-rw-r--r--etc/mutt.profile1
-rw-r--r--etc/netsurf.profile3
-rw-r--r--etc/opera-beta.profile3
-rw-r--r--etc/opera.profile3
-rw-r--r--etc/palemoon.profile4
-rw-r--r--etc/polari.profile2
-rw-r--r--etc/psi-plus.profile2
-rw-r--r--etc/quiterss.profile3
-rw-r--r--etc/qupzilla.profile2
-rw-r--r--etc/qutebrowser.profile3
-rw-r--r--etc/seamonkey.profile4
-rw-r--r--etc/simple-scan.profile2
-rw-r--r--etc/spotify.profile3
-rw-r--r--etc/thunderbird.profile4
-rw-r--r--etc/transmission-cli.profile1
-rw-r--r--etc/transmission-gtk.profile1
-rw-r--r--etc/transmission-qt.profile1
-rw-r--r--etc/transmission-show.profile1
-rw-r--r--etc/vivaldi.profile3
-rw-r--r--etc/wesnoth.profile3
-rw-r--r--etc/whitelist-common.inc1
-rw-r--r--etc/xreader.profile1
45 files changed, 0 insertions, 154 deletions
diff --git a/etc/0ad.profile b/etc/0ad.profile
index 84addc229..d4f06f732 100644
--- a/etc/0ad.profile
+++ b/etc/0ad.profile
@@ -3,7 +3,6 @@
3include /etc/firejail/0ad.local 3include /etc/firejail/0ad.local
4 4
5# Firejail profile for 0ad. 5# Firejail profile for 0ad.
6noblacklist ~/.cache/0ad
7noblacklist ~/.config/0ad 6noblacklist ~/.config/0ad
8noblacklist ~/.local/share/0ad 7noblacklist ~/.local/share/0ad
9include /etc/firejail/disable-common.inc 8include /etc/firejail/disable-common.inc
@@ -12,9 +11,6 @@ include /etc/firejail/disable-passwdmgr.inc
12include /etc/firejail/disable-programs.inc 11include /etc/firejail/disable-programs.inc
13 12
14# Whitelists 13# Whitelists
15mkdir ~/.cache/0ad
16whitelist ~/.cache/0ad
17
18mkdir ~/.config/0ad 14mkdir ~/.config/0ad
19whitelist ~/.config/0ad 15whitelist ~/.config/0ad
20 16
diff --git a/etc/abrowser.profile b/etc/abrowser.profile
index b9a30d6bf..3b60750d5 100644
--- a/etc/abrowser.profile
+++ b/etc/abrowser.profile
@@ -4,7 +4,6 @@ include /etc/firejail/abrowser.local
4 4
5# Firejail profile for Abrowser 5# Firejail profile for Abrowser
6noblacklist ~/.mozilla 6noblacklist ~/.mozilla
7noblacklist ~/.cache/mozilla
8noblacklist ~/.pki 7noblacklist ~/.pki
9noblacklist ~/.lastpass 8noblacklist ~/.lastpass
10include /etc/firejail/disable-common.inc 9include /etc/firejail/disable-common.inc
@@ -22,8 +21,6 @@ tracelog
22whitelist ${DOWNLOADS} 21whitelist ${DOWNLOADS}
23mkdir ~/.mozilla 22mkdir ~/.mozilla
24whitelist ~/.mozilla 23whitelist ~/.mozilla
25mkdir ~/.cache/mozilla/abrowser
26whitelist ~/.cache/mozilla/abrowser
27whitelist ~/dwhelper 24whitelist ~/dwhelper
28whitelist ~/.zotero 25whitelist ~/.zotero
29whitelist ~/.vimperatorrc 26whitelist ~/.vimperatorrc
@@ -32,7 +29,6 @@ whitelist ~/.pentadactylrc
32whitelist ~/.pentadactyl 29whitelist ~/.pentadactyl
33whitelist ~/.keysnail.js 30whitelist ~/.keysnail.js
34whitelist ~/.config/gnome-mplayer 31whitelist ~/.config/gnome-mplayer
35whitelist ~/.cache/gnome-mplayer/plugin
36whitelist ~/.pki 32whitelist ~/.pki
37whitelist ~/.lastpass 33whitelist ~/.lastpass
38 34
diff --git a/etc/chromium.profile b/etc/chromium.profile
index 995c0001b..ce823e0db 100644
--- a/etc/chromium.profile
+++ b/etc/chromium.profile
@@ -4,7 +4,6 @@ include /etc/firejail/chromium.local
4 4
5# Chromium browser profile 5# Chromium browser profile
6noblacklist ~/.config/chromium 6noblacklist ~/.config/chromium
7noblacklist ~/.cache/chromium
8noblacklist ~/.pki 7noblacklist ~/.pki
9include /etc/firejail/disable-common.inc 8include /etc/firejail/disable-common.inc
10include /etc/firejail/disable-programs.inc 9include /etc/firejail/disable-programs.inc
@@ -18,8 +17,6 @@ netfilter
18whitelist ${DOWNLOADS} 17whitelist ${DOWNLOADS}
19mkdir ~/.config/chromium 18mkdir ~/.config/chromium
20whitelist ~/.config/chromium 19whitelist ~/.config/chromium
21mkdir ~/.cache/chromium
22whitelist ~/.cache/chromium
23mkdir ~/.pki 20mkdir ~/.pki
24whitelist ~/.pki 21whitelist ~/.pki
25 22
diff --git a/etc/cyberfox.profile b/etc/cyberfox.profile
index a79303f77..d9896e4a7 100644
--- a/etc/cyberfox.profile
+++ b/etc/cyberfox.profile
@@ -4,7 +4,6 @@ include /etc/firejail/cyberfox.local
4 4
5# Firejail profile for Cyberfox (based on Mozilla Firefox) 5# Firejail profile for Cyberfox (based on Mozilla Firefox)
6noblacklist ~/.8pecxstudios 6noblacklist ~/.8pecxstudios
7noblacklist ~/.cache/8pecxstudios
8noblacklist ~/.pki 7noblacklist ~/.pki
9noblacklist ~/.lastpass 8noblacklist ~/.lastpass
10include /etc/firejail/disable-common.inc 9include /etc/firejail/disable-common.inc
@@ -22,8 +21,6 @@ tracelog
22whitelist ${DOWNLOADS} 21whitelist ${DOWNLOADS}
23mkdir ~/.8pecxstudios 22mkdir ~/.8pecxstudios
24whitelist ~/.8pecxstudios 23whitelist ~/.8pecxstudios
25mkdir ~/.cache/8pecxstudios
26whitelist ~/.cache/8pecxstudios
27whitelist ~/dwhelper 24whitelist ~/dwhelper
28whitelist ~/.zotero 25whitelist ~/.zotero
29whitelist ~/.vimperatorrc 26whitelist ~/.vimperatorrc
@@ -32,7 +29,6 @@ whitelist ~/.pentadactylrc
32whitelist ~/.pentadactyl 29whitelist ~/.pentadactyl
33whitelist ~/.keysnail.js 30whitelist ~/.keysnail.js
34whitelist ~/.config/gnome-mplayer 31whitelist ~/.config/gnome-mplayer
35whitelist ~/.cache/gnome-mplayer/plugin
36whitelist ~/.pki 32whitelist ~/.pki
37whitelist ~/.lastpass 33whitelist ~/.lastpass
38 34
diff --git a/etc/disable-programs.inc b/etc/disable-programs.inc
index 06a519e9a..12f8a1755 100644
--- a/etc/disable-programs.inc
+++ b/etc/disable-programs.inc
@@ -17,44 +17,6 @@ blacklist ${HOME}/.arduino15
17blacklist ${HOME}/.atom 17blacklist ${HOME}/.atom
18blacklist ${HOME}/.audacity-data 18blacklist ${HOME}/.audacity-data
19blacklist ${HOME}/.bcast5 19blacklist ${HOME}/.bcast5
20blacklist ${HOME}/.cache/0ad
21blacklist ${HOME}/.cache/8pecxstudios
22blacklist ${HOME}/.cache/Franz
23blacklist ${HOME}/.cache/INRIA
24blacklist ${HOME}/.cache/QuiteRss
25blacklist ${HOME}/.cache/champlain
26blacklist ${HOME}/.cache/chromium
27blacklist ${HOME}/.cache/qupzilla
28blacklist ${HOME}/.cache/chromium-dev
29blacklist ${HOME}/.cache/darktable
30blacklist ${HOME}/.cache/epiphany
31blacklist ${HOME}/.cache/evolution
32blacklist ${HOME}/.cache/gajim
33blacklist ${HOME}/.cache/geeqie
34blacklist ${HOME}/.cache/google-chrome
35blacklist ${HOME}/.cache/google-chrome-beta
36blacklist ${HOME}/.cache/google-chrome-unstable
37blacklist ${HOME}/.cache/icedove
38blacklist ${HOME}/.cache/inox
39blacklist ${HOME}/.cache/libgweather
40blacklist ${HOME}/.cache/midori
41blacklist ${HOME}/.cache/mozilla
42blacklist ${HOME}/.cache/mutt
43blacklist ${HOME}/.cache/netsurf
44blacklist ${HOME}/.cache/opera
45blacklist ${HOME}/.cache/opera-beta
46blacklist ${HOME}/.cache/org.gnome.Books
47blacklist ${HOME}/.cache/qutebrowser
48blacklist ${HOME}/.cache/simple-scan
49blacklist ${HOME}/.cache/slimjet
50blacklist ${HOME}/.cache/spotify
51blacklist ${HOME}/.cache/telepathy
52blacklist ${HOME}/.cache/thunderbird
53blacklist ${HOME}/.cache/torbrowser
54blacklist ${HOME}/.cache/transmission
55blacklist ${HOME}/.cache/vivaldi
56blacklist ${HOME}/.cache/wesnoth
57blacklist ${HOME}/.cache/xreader
58blacklist ${HOME}/.claws-mail 20blacklist ${HOME}/.claws-mail
59blacklist ${HOME}/.config/0ad 21blacklist ${HOME}/.config/0ad
60blacklist ${HOME}/.config/Atom 22blacklist ${HOME}/.config/Atom
diff --git a/etc/epiphany.profile b/etc/epiphany.profile
index 1bf259440..0b281c448 100644
--- a/etc/epiphany.profile
+++ b/etc/epiphany.profile
@@ -4,7 +4,6 @@ include /etc/firejail/epiphany.local
4 4
5# Epiphany browser profile 5# Epiphany browser profile
6noblacklist ${HOME}/.config/epiphany 6noblacklist ${HOME}/.config/epiphany
7noblacklist ${HOME}/.cache/epiphany
8noblacklist ${HOME}/.local/share/epiphany 7noblacklist ${HOME}/.local/share/epiphany
9 8
10include /etc/firejail/disable-common.inc 9include /etc/firejail/disable-common.inc
@@ -16,8 +15,6 @@ mkdir ${HOME}/.local/share/epiphany
16whitelist ${HOME}/.local/share/epiphany 15whitelist ${HOME}/.local/share/epiphany
17mkdir ${HOME}/.config/epiphany 16mkdir ${HOME}/.config/epiphany
18whitelist ${HOME}/.config/epiphany 17whitelist ${HOME}/.config/epiphany
19mkdir ${HOME}/.cache/epiphany
20whitelist ${HOME}/.cache/epiphany
21include /etc/firejail/whitelist-common.inc 18include /etc/firejail/whitelist-common.inc
22 19
23caps.drop all 20caps.drop all
diff --git a/etc/evolution.profile b/etc/evolution.profile
index cb6615716..637ac334a 100644
--- a/etc/evolution.profile
+++ b/etc/evolution.profile
@@ -5,7 +5,6 @@ include /etc/firejail/evolution.local
5# evolution profile 5# evolution profile
6noblacklist ~/.config/evolution 6noblacklist ~/.config/evolution
7noblacklist ~/.local/share/evolution 7noblacklist ~/.local/share/evolution
8noblacklist ~/.cache/evolution
9noblacklist ~/.pki 8noblacklist ~/.pki
10noblacklist ~/.pki/nssdb 9noblacklist ~/.pki/nssdb
11noblacklist ~/.gnupg 10noblacklist ~/.gnupg
diff --git a/etc/firefox.profile b/etc/firefox.profile
index e2cfb9138..dec44ca67 100644
--- a/etc/firefox.profile
+++ b/etc/firefox.profile
@@ -4,7 +4,6 @@ include /etc/firejail/firefox.local
4 4
5# Firejail profile for Mozilla Firefox (Iceweasel in Debian) 5# Firejail profile for Mozilla Firefox (Iceweasel in Debian)
6noblacklist ~/.mozilla 6noblacklist ~/.mozilla
7noblacklist ~/.cache/mozilla
8noblacklist ~/.config/qpdfview 7noblacklist ~/.config/qpdfview
9noblacklist ~/.local/share/qpdfview 8noblacklist ~/.local/share/qpdfview
10noblacklist ~/.kde/share/apps/okular 9noblacklist ~/.kde/share/apps/okular
@@ -25,8 +24,6 @@ tracelog
25whitelist ${DOWNLOADS} 24whitelist ${DOWNLOADS}
26mkdir ~/.mozilla 25mkdir ~/.mozilla
27whitelist ~/.mozilla 26whitelist ~/.mozilla
28mkdir ~/.cache/mozilla/firefox
29whitelist ~/.cache/mozilla/firefox
30whitelist ~/dwhelper 27whitelist ~/dwhelper
31whitelist ~/.zotero 28whitelist ~/.zotero
32whitelist ~/.vimperatorrc 29whitelist ~/.vimperatorrc
@@ -35,7 +32,6 @@ whitelist ~/.pentadactylrc
35whitelist ~/.pentadactyl 32whitelist ~/.pentadactyl
36whitelist ~/.keysnail.js 33whitelist ~/.keysnail.js
37whitelist ~/.config/gnome-mplayer 34whitelist ~/.config/gnome-mplayer
38whitelist ~/.cache/gnome-mplayer/plugin
39mkdir ~/.pki 35mkdir ~/.pki
40whitelist ~/.pki 36whitelist ~/.pki
41whitelist ~/.lastpass 37whitelist ~/.lastpass
diff --git a/etc/flashpeak-slimjet.profile b/etc/flashpeak-slimjet.profile
index 4dc5b5cfc..a35aa7a33 100644
--- a/etc/flashpeak-slimjet.profile
+++ b/etc/flashpeak-slimjet.profile
@@ -10,7 +10,6 @@ include /etc/firejail/flashpeak-slimjet.local
10# firejail flashpeak-slimjet --no-sandbox 10# firejail flashpeak-slimjet --no-sandbox
11# 11#
12noblacklist ~/.config/slimjet 12noblacklist ~/.config/slimjet
13noblacklist ~/.cache/slimjet
14noblacklist ~/.pki 13noblacklist ~/.pki
15include /etc/firejail/disable-common.inc 14include /etc/firejail/disable-common.inc
16include /etc/firejail/disable-programs.inc 15include /etc/firejail/disable-programs.inc
@@ -29,8 +28,6 @@ seccomp
29whitelist ${DOWNLOADS} 28whitelist ${DOWNLOADS}
30mkdir ~/.config/slimjet 29mkdir ~/.config/slimjet
31whitelist ~/.config/slimjet 30whitelist ~/.config/slimjet
32mkdir ~/.cache/slimjet
33whitelist ~/.cache/slimjet
34mkdir ~/.pki 31mkdir ~/.pki
35whitelist ~/.pki 32whitelist ~/.pki
36 33
diff --git a/etc/fossamail.profile b/etc/fossamail.profile
index 3caaad71c..a33514c88 100644
--- a/etc/fossamail.profile
+++ b/etc/fossamail.profile
@@ -12,8 +12,5 @@ noblacklist ~/.fossamail
12mkdir ~/.fossamail 12mkdir ~/.fossamail
13whitelist ~/.fossamail 13whitelist ~/.fossamail
14 14
15noblacklist ~/.cache/fossamail
16mkdir ~/.cache/fossamail
17whitelist ~/.cache/fossamail
18 15
19include /etc/firejail/firefox.profile 16include /etc/firejail/firefox.profile
diff --git a/etc/franz.profile b/etc/franz.profile
index 05ff72a47..1692f4516 100644
--- a/etc/franz.profile
+++ b/etc/franz.profile
@@ -4,7 +4,6 @@ include /etc/firejail/franz.local
4 4
5# Franz profile 5# Franz profile
6noblacklist ~/.config/Franz 6noblacklist ~/.config/Franz
7noblacklist ~/.cache/Franz
8noblacklist ~/.pki 7noblacklist ~/.pki
9include /etc/firejail/disable-common.inc 8include /etc/firejail/disable-common.inc
10include /etc/firejail/disable-programs.inc 9include /etc/firejail/disable-programs.inc
@@ -21,8 +20,6 @@ seccomp
21whitelist ${DOWNLOADS} 20whitelist ${DOWNLOADS}
22mkdir ~/.config/Franz 21mkdir ~/.config/Franz
23whitelist ~/.config/Franz 22whitelist ~/.config/Franz
24mkdir ~/.cache/Franz
25whitelist ~/.cache/Franz
26mkdir ~/.pki 23mkdir ~/.pki
27whitelist ~/.pki 24whitelist ~/.pki
28 25
diff --git a/etc/gajim.profile b/etc/gajim.profile
index bac6cc466..f64d9241a 100644
--- a/etc/gajim.profile
+++ b/etc/gajim.profile
@@ -3,11 +3,9 @@
3include /etc/firejail/gajim.local 3include /etc/firejail/gajim.local
4 4
5# Firejail profile for Gajim 5# Firejail profile for Gajim
6noblacklist ${HOME}/.cache/gajim
7noblacklist ${HOME}/.local/share/gajim 6noblacklist ${HOME}/.local/share/gajim
8noblacklist ${HOME}/.config/gajim 7noblacklist ${HOME}/.config/gajim
9 8
10mkdir ${HOME}/.cache/gajim
11mkdir ${HOME}/.local/share/gajim 9mkdir ${HOME}/.local/share/gajim
12mkdir ${HOME}/.config/gajim 10mkdir ${HOME}/.config/gajim
13mkdir ${HOME}/Downloads 11mkdir ${HOME}/Downloads
@@ -17,7 +15,6 @@ mkdir ${HOME}/.local/lib/python2.7/site-packages/
17whitelist ${HOME}/.local/lib/python2.7/site-packages/ 15whitelist ${HOME}/.local/lib/python2.7/site-packages/
18read-only ${HOME}/.local/lib/python2.7/site-packages/ 16read-only ${HOME}/.local/lib/python2.7/site-packages/
19 17
20whitelist ${HOME}/.cache/gajim
21whitelist ${HOME}/.local/share/gajim 18whitelist ${HOME}/.local/share/gajim
22whitelist ${HOME}/.config/gajim 19whitelist ${HOME}/.config/gajim
23whitelist ${HOME}/Downloads 20whitelist ${HOME}/Downloads
diff --git a/etc/geeqie.profile b/etc/geeqie.profile
index 57f942a50..9f79e15b8 100644
--- a/etc/geeqie.profile
+++ b/etc/geeqie.profile
@@ -3,7 +3,6 @@
3include /etc/firejail/geeqie.local 3include /etc/firejail/geeqie.local
4 4
5# Firejail profile for Geeqie 5# Firejail profile for Geeqie
6noblacklist ~/.cache/geeqie
7noblacklist ~/.config/geeqie 6noblacklist ~/.config/geeqie
8noblacklist ~/.local/share/geeqie 7noblacklist ~/.local/share/geeqie
9include /etc/firejail/disable-common.inc 8include /etc/firejail/disable-common.inc
diff --git a/etc/gjs.profile b/etc/gjs.profile
index 24ec70e86..03dd7893c 100644
--- a/etc/gjs.profile
+++ b/etc/gjs.profile
@@ -6,10 +6,8 @@ include /etc/firejail/gjs.local
6 6
7# when gjs apps are started via gnome-shell, firejail is not applied because systemd will start them 7# when gjs apps are started via gnome-shell, firejail is not applied because systemd will start them
8 8
9noblacklist ~/.cache/org.gnome.Books
10noblacklist ~/.config/libreoffice 9noblacklist ~/.config/libreoffice
11noblacklist ~/.local/share/gnome-photos 10noblacklist ~/.local/share/gnome-photos
12noblacklist ~/.cache/libgweather
13 11
14include /etc/firejail/disable-common.inc 12include /etc/firejail/disable-common.inc
15include /etc/firejail/disable-programs.inc 13include /etc/firejail/disable-programs.inc
diff --git a/etc/gnome-books.profile b/etc/gnome-books.profile
index 692e32896..bf2a9f36f 100644
--- a/etc/gnome-books.profile
+++ b/etc/gnome-books.profile
@@ -6,8 +6,6 @@ include /etc/firejail/gnome-books.local
6 6
7# when gjs apps are started via gnome-shell, firejail is not applied because systemd will start them 7# when gjs apps are started via gnome-shell, firejail is not applied because systemd will start them
8 8
9noblacklist ~/.cache/org.gnome.Books
10
11include /etc/firejail/disable-common.inc 9include /etc/firejail/disable-common.inc
12include /etc/firejail/disable-programs.inc 10include /etc/firejail/disable-programs.inc
13include /etc/firejail/disable-devel.inc 11include /etc/firejail/disable-devel.inc
diff --git a/etc/gnome-weather.profile b/etc/gnome-weather.profile
index 925420a5a..3b6bdd130 100644
--- a/etc/gnome-weather.profile
+++ b/etc/gnome-weather.profile
@@ -6,8 +6,6 @@ include /etc/firejail/gnome-weather.local
6 6
7# when gjs apps are started via gnome-shell, firejail is not applied because systemd will start them 7# when gjs apps are started via gnome-shell, firejail is not applied because systemd will start them
8 8
9noblacklist ~/.cache/libgweather
10
11include /etc/firejail/disable-common.inc 9include /etc/firejail/disable-common.inc
12include /etc/firejail/disable-programs.inc 10include /etc/firejail/disable-programs.inc
13include /etc/firejail/disable-devel.inc 11include /etc/firejail/disable-devel.inc
diff --git a/etc/google-chrome-beta.profile b/etc/google-chrome-beta.profile
index 3bd16de4a..65bc42648 100644
--- a/etc/google-chrome-beta.profile
+++ b/etc/google-chrome-beta.profile
@@ -4,7 +4,6 @@ include /etc/firejail/google-chrome-beta.local
4 4
5# Google Chrome beta browser profile 5# Google Chrome beta browser profile
6noblacklist ~/.config/google-chrome-beta 6noblacklist ~/.config/google-chrome-beta
7noblacklist ~/.cache/google-chrome-beta
8noblacklist ~/.pki 7noblacklist ~/.pki
9include /etc/firejail/disable-common.inc 8include /etc/firejail/disable-common.inc
10include /etc/firejail/disable-programs.inc 9include /etc/firejail/disable-programs.inc
@@ -18,8 +17,6 @@ netfilter
18whitelist ${DOWNLOADS} 17whitelist ${DOWNLOADS}
19mkdir ~/.config/google-chrome-beta 18mkdir ~/.config/google-chrome-beta
20whitelist ~/.config/google-chrome-beta 19whitelist ~/.config/google-chrome-beta
21mkdir ~/.cache/google-chrome-beta
22whitelist ~/.cache/google-chrome-beta
23mkdir ~/.pki 20mkdir ~/.pki
24whitelist ~/.pki 21whitelist ~/.pki
25include /etc/firejail/whitelist-common.inc 22include /etc/firejail/whitelist-common.inc
diff --git a/etc/google-chrome-unstable.profile b/etc/google-chrome-unstable.profile
index d2def4f96..6f6fa1bf2 100644
--- a/etc/google-chrome-unstable.profile
+++ b/etc/google-chrome-unstable.profile
@@ -4,7 +4,6 @@ include /etc/firejail/google-chrome-unstable.local
4 4
5# Google Chrome unstable browser profile 5# Google Chrome unstable browser profile
6noblacklist ~/.config/google-chrome-unstable 6noblacklist ~/.config/google-chrome-unstable
7noblacklist ~/.cache/google-chrome-unstable
8noblacklist ~/.pki 7noblacklist ~/.pki
9include /etc/firejail/disable-common.inc 8include /etc/firejail/disable-common.inc
10include /etc/firejail/disable-programs.inc 9include /etc/firejail/disable-programs.inc
@@ -18,8 +17,6 @@ netfilter
18whitelist ${DOWNLOADS} 17whitelist ${DOWNLOADS}
19mkdir ~/.config/google-chrome-unstable 18mkdir ~/.config/google-chrome-unstable
20whitelist ~/.config/google-chrome-unstable 19whitelist ~/.config/google-chrome-unstable
21mkdir ~/.cache/google-chrome-unstable
22whitelist ~/.cache/google-chrome-unstable
23mkdir ~/.pki 20mkdir ~/.pki
24whitelist ~/.pki 21whitelist ~/.pki
25include /etc/firejail/whitelist-common.inc 22include /etc/firejail/whitelist-common.inc
diff --git a/etc/google-chrome.profile b/etc/google-chrome.profile
index 38feb12a5..131538dd9 100644
--- a/etc/google-chrome.profile
+++ b/etc/google-chrome.profile
@@ -4,7 +4,6 @@ include /etc/firejail/google-chrome.local
4 4
5# Google Chrome browser profile 5# Google Chrome browser profile
6noblacklist ~/.config/google-chrome 6noblacklist ~/.config/google-chrome
7noblacklist ~/.cache/google-chrome
8noblacklist ~/.pki 7noblacklist ~/.pki
9include /etc/firejail/disable-common.inc 8include /etc/firejail/disable-common.inc
10include /etc/firejail/disable-programs.inc 9include /etc/firejail/disable-programs.inc
@@ -18,8 +17,6 @@ netfilter
18whitelist ${DOWNLOADS} 17whitelist ${DOWNLOADS}
19mkdir ~/.config/google-chrome 18mkdir ~/.config/google-chrome
20whitelist ~/.config/google-chrome 19whitelist ~/.config/google-chrome
21mkdir ~/.cache/google-chrome
22whitelist ~/.cache/google-chrome
23mkdir ~/.pki 20mkdir ~/.pki
24whitelist ~/.pki 21whitelist ~/.pki
25include /etc/firejail/whitelist-common.inc 22include /etc/firejail/whitelist-common.inc
diff --git a/etc/icecat.profile b/etc/icecat.profile
index 64401efe8..4bd3f3047 100644
--- a/etc/icecat.profile
+++ b/etc/icecat.profile
@@ -4,7 +4,6 @@ include /etc/firejail/icecat.local
4 4
5# Firejail profile for GNU Icecat 5# Firejail profile for GNU Icecat
6noblacklist ~/.mozilla 6noblacklist ~/.mozilla
7noblacklist ~/.cache/mozilla
8noblacklist ~/.pki 7noblacklist ~/.pki
9noblacklist ~/.lastpass 8noblacklist ~/.lastpass
10include /etc/firejail/disable-common.inc 9include /etc/firejail/disable-common.inc
@@ -22,8 +21,6 @@ tracelog
22whitelist ${DOWNLOADS} 21whitelist ${DOWNLOADS}
23mkdir ~/.mozilla 22mkdir ~/.mozilla
24whitelist ~/.mozilla 23whitelist ~/.mozilla
25mkdir ~/.cache/mozilla/icecat
26whitelist ~/.cache/mozilla/icecat
27whitelist ~/dwhelper 24whitelist ~/dwhelper
28whitelist ~/.zotero 25whitelist ~/.zotero
29whitelist ~/.vimperatorrc 26whitelist ~/.vimperatorrc
@@ -32,7 +29,6 @@ whitelist ~/.pentadactylrc
32whitelist ~/.pentadactyl 29whitelist ~/.pentadactyl
33whitelist ~/.keysnail.js 30whitelist ~/.keysnail.js
34whitelist ~/.config/gnome-mplayer 31whitelist ~/.config/gnome-mplayer
35whitelist ~/.cache/gnome-mplayer/plugin
36whitelist ~/.pki 32whitelist ~/.pki
37whitelist ~/.lastpass 33whitelist ~/.lastpass
38 34
diff --git a/etc/icedove.profile b/etc/icedove.profile
index b5265e992..aae0e3bf5 100644
--- a/etc/icedove.profile
+++ b/etc/icedove.profile
@@ -14,10 +14,6 @@ noblacklist ~/.icedove
14mkdir ~/.icedove 14mkdir ~/.icedove
15whitelist ~/.icedove 15whitelist ~/.icedove
16 16
17noblacklist ~/.cache/icedove
18mkdir ~/.cache/icedove
19whitelist ~/.cache/icedove
20
21# allow browsers 17# allow browsers
22ignore private-tmp 18ignore private-tmp
23include /etc/firejail/firefox.profile 19include /etc/firejail/firefox.profile
diff --git a/etc/inox.profile b/etc/inox.profile
index 0b2e4ee5e..6043ded8a 100644
--- a/etc/inox.profile
+++ b/etc/inox.profile
@@ -4,7 +4,6 @@ include /etc/firejail/inox.local
4 4
5# Inox browser profile 5# Inox browser profile
6noblacklist ~/.config/inox 6noblacklist ~/.config/inox
7noblacklist ~/.cache/inox
8noblacklist ~/.pki 7noblacklist ~/.pki
9include /etc/firejail/disable-common.inc 8include /etc/firejail/disable-common.inc
10include /etc/firejail/disable-programs.inc 9include /etc/firejail/disable-programs.inc
@@ -14,8 +13,6 @@ netfilter
14whitelist ${DOWNLOADS} 13whitelist ${DOWNLOADS}
15mkdir ~/.config/inox 14mkdir ~/.config/inox
16whitelist ~/.config/inox 15whitelist ~/.config/inox
17mkdir ~/.cache/inox
18whitelist ~/.cache/inox
19mkdir ~/.pki 16mkdir ~/.pki
20whitelist ~/.pki 17whitelist ~/.pki
21 18
diff --git a/etc/iridium.profile b/etc/iridium.profile
index 2d79a3935..dcbd0b84b 100644
--- a/etc/iridium.profile
+++ b/etc/iridium.profile
@@ -4,7 +4,6 @@ include /etc/firejail/iridium.local
4 4
5# Iridium browser profile 5# Iridium browser profile
6noblacklist ~/.config/iridium 6noblacklist ~/.config/iridium
7noblacklist ~/.cache/iridium
8include /etc/firejail/disable-common.inc 7include /etc/firejail/disable-common.inc
9include /etc/firejail/disable-programs.inc 8include /etc/firejail/disable-programs.inc
10 9
@@ -17,8 +16,6 @@ netfilter
17whitelist ${DOWNLOADS} 16whitelist ${DOWNLOADS}
18mkdir ~/.config/iridium 17mkdir ~/.config/iridium
19whitelist ~/.config/iridium 18whitelist ~/.config/iridium
20mkdir ~/.cache/iridium
21whitelist ~/.cache/iridium
22mkdir ~/.pki 19mkdir ~/.pki
23whitelist ~/.pki 20whitelist ~/.pki
24 21
diff --git a/etc/mutt.profile b/etc/mutt.profile
index 2f0809f02..f9d537779 100644
--- a/etc/mutt.profile
+++ b/etc/mutt.profile
@@ -14,7 +14,6 @@ noblacklist ~/mail
14noblacklist ~/Mail 14noblacklist ~/Mail
15noblacklist ~/sent 15noblacklist ~/sent
16noblacklist ~/postponed 16noblacklist ~/postponed
17noblacklist ~/.cache/mutt
18noblacklist ~/.w3m 17noblacklist ~/.w3m
19noblacklist ~/.elinks 18noblacklist ~/.elinks
20noblacklist ~/.vim 19noblacklist ~/.vim
diff --git a/etc/netsurf.profile b/etc/netsurf.profile
index c217346de..a3c360c1e 100644
--- a/etc/netsurf.profile
+++ b/etc/netsurf.profile
@@ -4,7 +4,6 @@ include /etc/firejail/netsurf.local
4 4
5# Firejail profile for Mozilla Firefox (Iceweasel in Debian) 5# Firejail profile for Mozilla Firefox (Iceweasel in Debian)
6noblacklist ~/.config/netsurf 6noblacklist ~/.config/netsurf
7noblacklist ~/.cache/netsurf
8include /etc/firejail/disable-common.inc 7include /etc/firejail/disable-common.inc
9include /etc/firejail/disable-programs.inc 8include /etc/firejail/disable-programs.inc
10include /etc/firejail/disable-devel.inc 9include /etc/firejail/disable-devel.inc
@@ -20,7 +19,5 @@ tracelog
20whitelist ${DOWNLOADS} 19whitelist ${DOWNLOADS}
21mkdir ~/.config/netsurf 20mkdir ~/.config/netsurf
22whitelist ~/.config/netsurf 21whitelist ~/.config/netsurf
23mkdir ~/.cache/netsurf
24whitelist ~/.cache/netsurf
25 22
26include /etc/firejail/whitelist-common.inc 23include /etc/firejail/whitelist-common.inc
diff --git a/etc/opera-beta.profile b/etc/opera-beta.profile
index 92624f334..5a0d54744 100644
--- a/etc/opera-beta.profile
+++ b/etc/opera-beta.profile
@@ -4,7 +4,6 @@ include /etc/firejail/opera-beta.local
4 4
5# Opera-beta browser profile 5# Opera-beta browser profile
6noblacklist ~/.config/opera-beta 6noblacklist ~/.config/opera-beta
7noblacklist ~/.cache/opera-beta
8noblacklist ~/.pki 7noblacklist ~/.pki
9include /etc/firejail/disable-common.inc 8include /etc/firejail/disable-common.inc
10include /etc/firejail/disable-programs.inc 9include /etc/firejail/disable-programs.inc
@@ -15,8 +14,6 @@ netfilter
15whitelist ${DOWNLOADS} 14whitelist ${DOWNLOADS}
16mkdir ~/.config/opera-beta 15mkdir ~/.config/opera-beta
17whitelist ~/.config/opera-beta 16whitelist ~/.config/opera-beta
18mkdir ~/.cache/opera-beta
19whitelist ~/.cache/opera-beta
20mkdir ~/.pki 17mkdir ~/.pki
21whitelist ~/.pki 18whitelist ~/.pki
22include /etc/firejail/whitelist-common.inc 19include /etc/firejail/whitelist-common.inc
diff --git a/etc/opera.profile b/etc/opera.profile
index 57835f2f2..4af502060 100644
--- a/etc/opera.profile
+++ b/etc/opera.profile
@@ -4,7 +4,6 @@ include /etc/firejail/opera.local
4 4
5# Opera browser profile 5# Opera browser profile
6noblacklist ~/.config/opera 6noblacklist ~/.config/opera
7noblacklist ~/.cache/opera
8noblacklist ~/.opera 7noblacklist ~/.opera
9noblacklist ~/.pki 8noblacklist ~/.pki
10include /etc/firejail/disable-common.inc 9include /etc/firejail/disable-common.inc
@@ -16,8 +15,6 @@ netfilter
16whitelist ${DOWNLOADS} 15whitelist ${DOWNLOADS}
17mkdir ~/.config/opera 16mkdir ~/.config/opera
18whitelist ~/.config/opera 17whitelist ~/.config/opera
19mkdir ~/.cache/opera
20whitelist ~/.cache/opera
21mkdir ~/.opera 18mkdir ~/.opera
22whitelist ~/.opera 19whitelist ~/.opera
23mkdir ~/.pki 20mkdir ~/.pki
diff --git a/etc/palemoon.profile b/etc/palemoon.profile
index 8cac00e03..472d58cee 100644
--- a/etc/palemoon.profile
+++ b/etc/palemoon.profile
@@ -4,7 +4,6 @@ include /etc/firejail/palemoon.local
4 4
5# Firejail profile for Pale Moon 5# Firejail profile for Pale Moon
6noblacklist ~/.moonchild productions/pale moon 6noblacklist ~/.moonchild productions/pale moon
7noblacklist ~/.cache/moonchild productions/pale moon
8include /etc/firejail/disable-common.inc 7include /etc/firejail/disable-common.inc
9include /etc/firejail/disable-programs.inc 8include /etc/firejail/disable-programs.inc
10include /etc/firejail/disable-devel.inc 9include /etc/firejail/disable-devel.inc
@@ -13,8 +12,6 @@ include /etc/firejail/whitelist-common.inc
13whitelist ${DOWNLOADS} 12whitelist ${DOWNLOADS}
14mkdir ~/.moonchild productions 13mkdir ~/.moonchild productions
15whitelist ~/.moonchild productions 14whitelist ~/.moonchild productions
16mkdir ~/.cache/moonchild productions/pale moon
17whitelist ~/.cache/moonchild productions/pale moon
18 15
19caps.drop all 16caps.drop all
20netfilter 17netfilter
@@ -40,7 +37,6 @@ private-tmp
40#whitelist ~/.pentadactyl 37#whitelist ~/.pentadactyl
41#whitelist ~/.keysnail.js 38#whitelist ~/.keysnail.js
42#whitelist ~/.config/gnome-mplayer 39#whitelist ~/.config/gnome-mplayer
43#whitelist ~/.cache/gnome-mplayer/plugin
44#whitelist ~/.pki 40#whitelist ~/.pki
45#whitelist ~/.lastpass 41#whitelist ~/.lastpass
46 42
diff --git a/etc/polari.profile b/etc/polari.profile
index 834a8b3d6..52a58322e 100644
--- a/etc/polari.profile
+++ b/etc/polari.profile
@@ -15,8 +15,6 @@ mkdir ${HOME}/.local/share/TpLogger
15whitelist ${HOME}/.local/share/TpLogger 15whitelist ${HOME}/.local/share/TpLogger
16mkdir ${HOME}/.config/telepathy-account-widgets 16mkdir ${HOME}/.config/telepathy-account-widgets
17whitelist ${HOME}/.config/telepathy-account-widgets 17whitelist ${HOME}/.config/telepathy-account-widgets
18mkdir ${HOME}/.cache/telepathy
19whitelist ${HOME}/.cache/telepathy
20mkdir ${HOME}/.purple 18mkdir ${HOME}/.purple
21whitelist ${HOME}/.purple 19whitelist ${HOME}/.purple
22include /etc/firejail/whitelist-common.inc 20include /etc/firejail/whitelist-common.inc
diff --git a/etc/psi-plus.profile b/etc/psi-plus.profile
index 45cb22ee4..5106fccb2 100644
--- a/etc/psi-plus.profile
+++ b/etc/psi-plus.profile
@@ -14,8 +14,6 @@ mkdir ~/.config/psi+
14whitelist ~/.config/psi+ 14whitelist ~/.config/psi+
15mkdir ~/.local/share/psi+ 15mkdir ~/.local/share/psi+
16whitelist ~/.local/share/psi+ 16whitelist ~/.local/share/psi+
17mkdir ~/.cache/psi+
18whitelist ~/.cache/psi+
19 17
20caps.drop all 18caps.drop all
21netfilter 19netfilter
diff --git a/etc/quiterss.profile b/etc/quiterss.profile
index f4e4f96d3..158425e18 100644
--- a/etc/quiterss.profile
+++ b/etc/quiterss.profile
@@ -2,7 +2,6 @@
2# Persistent customizations should go in a .local file. 2# Persistent customizations should go in a .local file.
3include /etc/firejail/quiterss.local 3include /etc/firejail/quiterss.local
4 4
5noblacklist ${HOME}/.cache/QuiteRss
6noblacklist ${HOME}/.config/QuiteRss 5noblacklist ${HOME}/.config/QuiteRss
7noblacklist ${HOME}/.config/QuiteRssrc 6noblacklist ${HOME}/.config/QuiteRssrc
8noblacklist ${HOME}/.local/share/QuiteRss 7noblacklist ${HOME}/.local/share/QuiteRss
@@ -19,8 +18,6 @@ whitelist ${HOME}/.config/QuiteRssrc
19mkdir ~/.local/share/data 18mkdir ~/.local/share/data
20mkdir ~/.local/share/data/QuiteRss 19mkdir ~/.local/share/data/QuiteRss
21whitelist ${HOME}/.local/share/data/QuiteRss 20whitelist ${HOME}/.local/share/data/QuiteRss
22mkdir ~/.cache/QuiteRss
23whitelist ${HOME}/.cache/QuiteRss
24 21
25caps.drop all 22caps.drop all
26netfilter 23netfilter
diff --git a/etc/qupzilla.profile b/etc/qupzilla.profile
index 3f5cb60c0..783bc516d 100644
--- a/etc/qupzilla.profile
+++ b/etc/qupzilla.profile
@@ -4,7 +4,6 @@ include /etc/firejail/qupzilla.local
4 4
5# Firejail profile for Qupzilla web browser 5# Firejail profile for Qupzilla web browser
6noblacklist ${HOME}/.config/qupzilla 6noblacklist ${HOME}/.config/qupzilla
7noblacklist ${HOME}/.cache/qupzilla
8include /etc/firejail/disable-mgmt.inc 7include /etc/firejail/disable-mgmt.inc
9include /etc/firejail/disable-secret.inc 8include /etc/firejail/disable-secret.inc
10include /etc/firejail/disable-common.inc 9include /etc/firejail/disable-common.inc
@@ -17,7 +16,6 @@ tracelog
17noroot 16noroot
18whitelist ${DOWNLOADS} 17whitelist ${DOWNLOADS}
19whitelist ~/.config/qupzilla 18whitelist ~/.config/qupzilla
20whitelist ~/.cache/qupzilla
21include /etc/firejail/whitelist-common.inc 19include /etc/firejail/whitelist-common.inc
22 20
23# experimental features 21# experimental features
diff --git a/etc/qutebrowser.profile b/etc/qutebrowser.profile
index f43307ef9..53be1178c 100644
--- a/etc/qutebrowser.profile
+++ b/etc/qutebrowser.profile
@@ -4,7 +4,6 @@ include /etc/firejail/qutebrowser.local
4 4
5# Firejail profile for Qutebrowser (Qt5-Webkit+Python) browser 5# Firejail profile for Qutebrowser (Qt5-Webkit+Python) browser
6noblacklist ~/.config/qutebrowser 6noblacklist ~/.config/qutebrowser
7noblacklist ~/.cache/qutebrowser
8include /etc/firejail/disable-common.inc 7include /etc/firejail/disable-common.inc
9include /etc/firejail/disable-programs.inc 8include /etc/firejail/disable-programs.inc
10include /etc/firejail/disable-devel.inc 9include /etc/firejail/disable-devel.inc
@@ -20,8 +19,6 @@ tracelog
20whitelist ${DOWNLOADS} 19whitelist ${DOWNLOADS}
21mkdir ~/.config/qutebrowser 20mkdir ~/.config/qutebrowser
22whitelist ~/.config/qutebrowser 21whitelist ~/.config/qutebrowser
23mkdir ~/.cache/qutebrowser
24whitelist ~/.cache/qutebrowser
25mkdir ~/.local/share/qutebrowser 22mkdir ~/.local/share/qutebrowser
26whitelist ~/.local/share/qutebrowser 23whitelist ~/.local/share/qutebrowser
27include /etc/firejail/whitelist-common.inc 24include /etc/firejail/whitelist-common.inc
diff --git a/etc/seamonkey.profile b/etc/seamonkey.profile
index df1910469..756700c2f 100644
--- a/etc/seamonkey.profile
+++ b/etc/seamonkey.profile
@@ -4,7 +4,6 @@ include /etc/firejail/seamonkey.local
4 4
5# Firejail profile for Seamoneky based off Mozilla Firefox 5# Firejail profile for Seamoneky based off Mozilla Firefox
6noblacklist ~/.mozilla 6noblacklist ~/.mozilla
7noblacklist ~/.cache/mozilla
8noblacklist ~/.pki 7noblacklist ~/.pki
9noblacklist ~/.lastpass 8noblacklist ~/.lastpass
10include /etc/firejail/disable-common.inc 9include /etc/firejail/disable-common.inc
@@ -22,8 +21,6 @@ tracelog
22whitelist ${DOWNLOADS} 21whitelist ${DOWNLOADS}
23mkdir ~/.mozilla/seamonkey 22mkdir ~/.mozilla/seamonkey
24whitelist ~/.mozilla/seamonkey 23whitelist ~/.mozilla/seamonkey
25mkdir ~/.cache/mozilla/seamonkey
26whitelist ~/.cache/mozilla/seamonkey
27whitelist ~/dwhelper 24whitelist ~/dwhelper
28whitelist ~/.zotero 25whitelist ~/.zotero
29whitelist ~/.vimperatorrc 26whitelist ~/.vimperatorrc
@@ -32,7 +29,6 @@ whitelist ~/.pentadactylrc
32whitelist ~/.pentadactyl 29whitelist ~/.pentadactyl
33whitelist ~/.keysnail.js 30whitelist ~/.keysnail.js
34whitelist ~/.config/gnome-mplayer 31whitelist ~/.config/gnome-mplayer
35whitelist ~/.cache/gnome-mplayer/plugin
36whitelist ~/.pki 32whitelist ~/.pki
37whitelist ~/.lastpass 33whitelist ~/.lastpass
38include /etc/firejail/whitelist-common.inc 34include /etc/firejail/whitelist-common.inc
diff --git a/etc/simple-scan.profile b/etc/simple-scan.profile
index ee7e50ba7..0f6d626a5 100644
--- a/etc/simple-scan.profile
+++ b/etc/simple-scan.profile
@@ -3,8 +3,6 @@
3include /etc/firejail/simple-scan.local 3include /etc/firejail/simple-scan.local
4 4
5# simple-scan profile 5# simple-scan profile
6noblacklist ~/.cache/simple-scan
7
8include /etc/firejail/disable-common.inc 6include /etc/firejail/disable-common.inc
9include /etc/firejail/disable-programs.inc 7include /etc/firejail/disable-programs.inc
10include /etc/firejail/disable-devel.inc 8include /etc/firejail/disable-devel.inc
diff --git a/etc/spotify.profile b/etc/spotify.profile
index 843038a2b..23ef75b71 100644
--- a/etc/spotify.profile
+++ b/etc/spotify.profile
@@ -4,7 +4,6 @@ include /etc/firejail/spotify.local
4 4
5# Spotify media player profile 5# Spotify media player profile
6noblacklist ${HOME}/.config/spotify 6noblacklist ${HOME}/.config/spotify
7noblacklist ${HOME}/.cache/spotify
8noblacklist ${HOME}/.local/share/spotify 7noblacklist ${HOME}/.local/share/spotify
9include /etc/firejail/disable-common.inc 8include /etc/firejail/disable-common.inc
10include /etc/firejail/disable-programs.inc 9include /etc/firejail/disable-programs.inc
@@ -16,8 +15,6 @@ mkdir ${HOME}/.config/spotify
16whitelist ${HOME}/.config/spotify 15whitelist ${HOME}/.config/spotify
17mkdir ${HOME}/.local/share/spotify 16mkdir ${HOME}/.local/share/spotify
18whitelist ${HOME}/.local/share/spotify 17whitelist ${HOME}/.local/share/spotify
19mkdir ${HOME}/.cache/spotify
20whitelist ${HOME}/.cache/spotify
21 18
22caps.drop all 19caps.drop all
23netfilter 20netfilter
diff --git a/etc/thunderbird.profile b/etc/thunderbird.profile
index 88ab7501e..1dc8b15c7 100644
--- a/etc/thunderbird.profile
+++ b/etc/thunderbird.profile
@@ -14,10 +14,6 @@ noblacklist ~/.thunderbird
14mkdir ~/.thunderbird 14mkdir ~/.thunderbird
15whitelist ~/.thunderbird 15whitelist ~/.thunderbird
16 16
17noblacklist ~/.cache/thunderbird
18mkdir ~/.cache/thunderbird
19whitelist ~/.cache/thunderbird
20
21# allow browsers 17# allow browsers
22ignore private-tmp 18ignore private-tmp
23include /etc/firejail/firefox.profile 19include /etc/firejail/firefox.profile
diff --git a/etc/transmission-cli.profile b/etc/transmission-cli.profile
index dbcc8d041..5b6bec4c1 100644
--- a/etc/transmission-cli.profile
+++ b/etc/transmission-cli.profile
@@ -4,7 +4,6 @@ include /etc/firejail/transmission-cli.local
4 4
5# transmission-cli bittorrent profile 5# transmission-cli bittorrent profile
6noblacklist ${HOME}/.config/transmission 6noblacklist ${HOME}/.config/transmission
7noblacklist ${HOME}/.cache/transmission
8 7
9include /etc/firejail/disable-common.inc 8include /etc/firejail/disable-common.inc
10include /etc/firejail/disable-programs.inc 9include /etc/firejail/disable-programs.inc
diff --git a/etc/transmission-gtk.profile b/etc/transmission-gtk.profile
index dcd3317ef..78ce5fba2 100644
--- a/etc/transmission-gtk.profile
+++ b/etc/transmission-gtk.profile
@@ -4,7 +4,6 @@ include /etc/firejail/transmission-gtk.local
4 4
5# transmission-gtk bittorrent profile 5# transmission-gtk bittorrent profile
6noblacklist ${HOME}/.config/transmission 6noblacklist ${HOME}/.config/transmission
7noblacklist ${HOME}/.cache/transmission
8 7
9include /etc/firejail/disable-common.inc 8include /etc/firejail/disable-common.inc
10include /etc/firejail/disable-programs.inc 9include /etc/firejail/disable-programs.inc
diff --git a/etc/transmission-qt.profile b/etc/transmission-qt.profile
index ed63f7cff..2f7fe0714 100644
--- a/etc/transmission-qt.profile
+++ b/etc/transmission-qt.profile
@@ -4,7 +4,6 @@ include /etc/firejail/transmission-qt.local
4 4
5# transmission-qt bittorrent profile 5# transmission-qt bittorrent profile
6noblacklist ${HOME}/.config/transmission 6noblacklist ${HOME}/.config/transmission
7noblacklist ${HOME}/.cache/transmission
8 7
9include /etc/firejail/disable-common.inc 8include /etc/firejail/disable-common.inc
10include /etc/firejail/disable-programs.inc 9include /etc/firejail/disable-programs.inc
diff --git a/etc/transmission-show.profile b/etc/transmission-show.profile
index 0b88789b1..052843882 100644
--- a/etc/transmission-show.profile
+++ b/etc/transmission-show.profile
@@ -4,7 +4,6 @@ include /etc/firejail/transmission-show.local
4 4
5# transmission-show profile 5# transmission-show profile
6noblacklist ${HOME}/.config/transmission 6noblacklist ${HOME}/.config/transmission
7noblacklist ${HOME}/.cache/transmission
8 7
9include /etc/firejail/disable-common.inc 8include /etc/firejail/disable-common.inc
10include /etc/firejail/disable-programs.inc 9include /etc/firejail/disable-programs.inc
diff --git a/etc/vivaldi.profile b/etc/vivaldi.profile
index 2c2fbd9f0..bf6af3926 100644
--- a/etc/vivaldi.profile
+++ b/etc/vivaldi.profile
@@ -4,7 +4,6 @@ include /etc/firejail/vivaldi.local
4 4
5# Vivaldi browser profile 5# Vivaldi browser profile
6noblacklist ~/.config/vivaldi 6noblacklist ~/.config/vivaldi
7noblacklist ~/.cache/vivaldi
8include /etc/firejail/disable-common.inc 7include /etc/firejail/disable-common.inc
9include /etc/firejail/disable-programs.inc 8include /etc/firejail/disable-programs.inc
10include /etc/firejail/disable-devel.inc 9include /etc/firejail/disable-devel.inc
@@ -14,6 +13,4 @@ netfilter
14whitelist ${DOWNLOADS} 13whitelist ${DOWNLOADS}
15mkdir ~/.config/vivaldi 14mkdir ~/.config/vivaldi
16whitelist ~/.config/vivaldi 15whitelist ~/.config/vivaldi
17mkdir ~/.cache/vivaldi
18whitelist ~/.cache/vivaldi
19include /etc/firejail/whitelist-common.inc 16include /etc/firejail/whitelist-common.inc
diff --git a/etc/wesnoth.profile b/etc/wesnoth.profile
index 212466f5a..fbb381a86 100644
--- a/etc/wesnoth.profile
+++ b/etc/wesnoth.profile
@@ -4,7 +4,6 @@ include /etc/firejail/wesnoth.local
4 4
5# Whitelist-based profile for "Battle for Wesnoth" (game). 5# Whitelist-based profile for "Battle for Wesnoth" (game).
6noblacklist ${HOME}/.config/wesnoth 6noblacklist ${HOME}/.config/wesnoth
7noblacklist ${HOME}/.cache/wesnoth
8noblacklist ${HOME}/.local/share/wesnoth 7noblacklist ${HOME}/.local/share/wesnoth
9 8
10include /etc/firejail/disable-common.inc 9include /etc/firejail/disable-common.inc
@@ -23,8 +22,6 @@ private-tmp
23 22
24mkdir ${HOME}/.local/share/wesnoth 23mkdir ${HOME}/.local/share/wesnoth
25mkdir ${HOME}/.config/wesnoth 24mkdir ${HOME}/.config/wesnoth
26mkdir ${HOME}/.cache/wesnoth
27whitelist ${HOME}/.local/share/wesnoth 25whitelist ${HOME}/.local/share/wesnoth
28whitelist ${HOME}/.config/wesnoth 26whitelist ${HOME}/.config/wesnoth
29whitelist ${HOME}/.cache/wesnoth
30include /etc/firejail/whitelist-common.inc 27include /etc/firejail/whitelist-common.inc
diff --git a/etc/whitelist-common.inc b/etc/whitelist-common.inc
index cf7797100..516f47041 100644
--- a/etc/whitelist-common.inc
+++ b/etc/whitelist-common.inc
@@ -19,7 +19,6 @@ whitelist ~/.fonts.conf
19whitelist ~/.fonts.conf.d 19whitelist ~/.fonts.conf.d
20whitelist ~/.local/share/fonts 20whitelist ~/.local/share/fonts
21whitelist ~/.config/fontconfig 21whitelist ~/.config/fontconfig
22whitelist ~/.cache/fontconfig
23 22
24# gtk 23# gtk
25whitelist ~/.gtkrc 24whitelist ~/.gtkrc
diff --git a/etc/xreader.profile b/etc/xreader.profile
index 2e6015aef..51dbcad51 100644
--- a/etc/xreader.profile
+++ b/etc/xreader.profile
@@ -4,7 +4,6 @@ include /etc/firejail/xreader.local
4 4
5# Xreader profile 5# Xreader profile
6noblacklist ~/.config/xreader 6noblacklist ~/.config/xreader
7noblacklist ~/.cache/xreader
8noblacklist ~/.local/share 7noblacklist ~/.local/share
9 8
10include /etc/firejail/disable-common.inc 9include /etc/firejail/disable-common.inc