aboutsummaryrefslogtreecommitdiffstats
path: root/etc
diff options
context:
space:
mode:
authorLibravatar netblue30 <netblue30@yahoo.com>2020-03-18 12:28:19 -0400
committerLibravatar netblue30 <netblue30@yahoo.com>2020-03-18 12:28:19 -0400
commita81a8b4539ca52d5b02c37ec95c7fe864b656641 (patch)
treeeb465fa57d2231dcc64fe07795a380bb1fcdbf19 /etc
parentfix mplayer profile (diff)
downloadfirejail-a81a8b4539ca52d5b02c37ec95c7fe864b656641.tar.gz
firejail-a81a8b4539ca52d5b02c37ec95c7fe864b656641.tar.zst
firejail-a81a8b4539ca52d5b02c37ec95c7fe864b656641.zip
profile fixes
Diffstat (limited to 'etc')
-rw-r--r--etc/bluefish.profile1
-rw-r--r--etc/brasero.profile3
-rw-r--r--etc/curl.profile2
-rw-r--r--etc/deluge.profile2
-rw-r--r--etc/dig.profile1
-rw-r--r--etc/fbreader.profile3
-rw-r--r--etc/freeciv.profile1
-rw-r--r--etc/frozen-bubble.profile2
-rw-r--r--etc/kino.profile3
-rw-r--r--etc/lincity-ng.profile1
-rw-r--r--etc/lximage-qt.profile3
-rw-r--r--etc/lxmusic.profile1
-rw-r--r--etc/open-invaders.profile3
-rw-r--r--etc/opencity.profile1
-rw-r--r--etc/openclonk.profile3
-rw-r--r--etc/openttd.profile2
-rw-r--r--etc/ping.profile1
-rw-r--r--etc/pingus.profile3
-rw-r--r--etc/supertux2.profile2
-rw-r--r--etc/tshark.profile1
-rw-r--r--etc/wget.profile1
-rw-r--r--etc/whois.profile1
22 files changed, 40 insertions, 1 deletions
diff --git a/etc/bluefish.profile b/etc/bluefish.profile
index 412088ba9..a85840d2f 100644
--- a/etc/bluefish.profile
+++ b/etc/bluefish.profile
@@ -15,6 +15,7 @@ include disable-programs.inc
15 15
16include whitelist-var-common.inc 16include whitelist-var-common.inc
17 17
18apparmor
18caps.drop all 19caps.drop all
19net none 20net none
20no3d 21no3d
diff --git a/etc/brasero.profile b/etc/brasero.profile
index 67fc07afb..417a6b3e0 100644
--- a/etc/brasero.profile
+++ b/etc/brasero.profile
@@ -15,6 +15,9 @@ include disable-interpreters.inc
15include disable-passwdmgr.inc 15include disable-passwdmgr.inc
16include disable-programs.inc 16include disable-programs.inc
17 17
18include whitelist-var-common.inc
19
20apparmor
18caps.drop all 21caps.drop all
19net none 22net none
20nogroups 23nogroups
diff --git a/etc/curl.profile b/etc/curl.profile
index 3f93e5f7e..a720aca9b 100644
--- a/etc/curl.profile
+++ b/etc/curl.profile
@@ -19,7 +19,9 @@ include disable-programs.inc
19#include disable-xdg.inc 19#include disable-xdg.inc
20 20
21include whitelist-usr-share-common.inc 21include whitelist-usr-share-common.inc
22include whitelist-var-common.inc
22 23
24apparmor
23caps.drop all 25caps.drop all
24ipc-namespace 26ipc-namespace
25machine-id 27machine-id
diff --git a/etc/deluge.profile b/etc/deluge.profile
index 8f4f9fbe9..17c5059f5 100644
--- a/etc/deluge.profile
+++ b/etc/deluge.profile
@@ -14,6 +14,7 @@ include allow-python3.inc
14 14
15include disable-common.inc 15include disable-common.inc
16# include disable-devel.inc 16# include disable-devel.inc
17include disable-exec.inc
17include disable-interpreters.inc 18include disable-interpreters.inc
18include disable-passwdmgr.inc 19include disable-passwdmgr.inc
19include disable-programs.inc 20include disable-programs.inc
@@ -24,6 +25,7 @@ whitelist ${HOME}/.config/deluge
24include whitelist-common.inc 25include whitelist-common.inc
25include whitelist-var-common.inc 26include whitelist-var-common.inc
26 27
28apparmor
27caps.drop all 29caps.drop all
28machine-id 30machine-id
29netfilter 31netfilter
diff --git a/etc/dig.profile b/etc/dig.profile
index 054e4891d..0e1598406 100644
--- a/etc/dig.profile
+++ b/etc/dig.profile
@@ -25,6 +25,7 @@ include whitelist-common.inc
25include whitelist-usr-share-common.inc 25include whitelist-usr-share-common.inc
26include whitelist-var-common.inc 26include whitelist-var-common.inc
27 27
28apparmor
28caps.drop all 29caps.drop all
29ipc-namespace 30ipc-namespace
30machine-id 31machine-id
diff --git a/etc/fbreader.profile b/etc/fbreader.profile
index 701f14dce..49cec85c7 100644
--- a/etc/fbreader.profile
+++ b/etc/fbreader.profile
@@ -11,6 +11,7 @@ noblacklist ${DOCUMENTS}
11 11
12include disable-common.inc 12include disable-common.inc
13include disable-devel.inc 13include disable-devel.inc
14include disable-exec.inc
14include disable-interpreters.inc 15include disable-interpreters.inc
15include disable-passwdmgr.inc 16include disable-passwdmgr.inc
16include disable-programs.inc 17include disable-programs.inc
@@ -18,7 +19,9 @@ include disable-xdg.inc
18 19
19include whitelist-var-common.inc 20include whitelist-var-common.inc
20 21
22apparmor
21caps.drop all 23caps.drop all
24net none
22netfilter 25netfilter
23nodvd 26nodvd
24nonewprivs 27nonewprivs
diff --git a/etc/freeciv.profile b/etc/freeciv.profile
index fa115d325..379c5eca9 100644
--- a/etc/freeciv.profile
+++ b/etc/freeciv.profile
@@ -21,6 +21,7 @@ whitelist ${HOME}/.freeciv
21include whitelist-common.inc 21include whitelist-common.inc
22include whitelist-var-common.inc 22include whitelist-var-common.inc
23 23
24apparmor
24caps.drop all 25caps.drop all
25ipc-namespace 26ipc-namespace
26netfilter 27netfilter
diff --git a/etc/frozen-bubble.profile b/etc/frozen-bubble.profile
index 6cef181c8..c089d2e35 100644
--- a/etc/frozen-bubble.profile
+++ b/etc/frozen-bubble.profile
@@ -13,6 +13,7 @@ include allow-perl.inc
13 13
14include disable-common.inc 14include disable-common.inc
15include disable-devel.inc 15include disable-devel.inc
16include disable-exec.inc
16include disable-interpreters.inc 17include disable-interpreters.inc
17include disable-passwdmgr.inc 18include disable-passwdmgr.inc
18include disable-programs.inc 19include disable-programs.inc
@@ -22,6 +23,7 @@ whitelist ${HOME}/.frozen-bubble
22include whitelist-common.inc 23include whitelist-common.inc
23include whitelist-var-common.inc 24include whitelist-var-common.inc
24 25
26apparmor
25caps.drop all 27caps.drop all
26net none 28net none
27nodbus 29nodbus
diff --git a/etc/kino.profile b/etc/kino.profile
index 9e8d61391..b3ade0dd9 100644
--- a/etc/kino.profile
+++ b/etc/kino.profile
@@ -16,6 +16,9 @@ include disable-interpreters.inc
16include disable-passwdmgr.inc 16include disable-passwdmgr.inc
17include disable-programs.inc 17include disable-programs.inc
18 18
19include whitelist-var-common.inc
20
21apparmor
19caps.drop all 22caps.drop all
20netfilter 23netfilter
21nogroups 24nogroups
diff --git a/etc/lincity-ng.profile b/etc/lincity-ng.profile
index b55ac9a15..748d38221 100644
--- a/etc/lincity-ng.profile
+++ b/etc/lincity-ng.profile
@@ -21,6 +21,7 @@ whitelist ${HOME}/.lincity-ng
21include whitelist-common.inc 21include whitelist-common.inc
22include whitelist-var-common.inc 22include whitelist-var-common.inc
23 23
24apparmor
24caps.drop all 25caps.drop all
25ipc-namespace 26ipc-namespace
26net none 27net none
diff --git a/etc/lximage-qt.profile b/etc/lximage-qt.profile
index 74adb7a67..c1135d859 100644
--- a/etc/lximage-qt.profile
+++ b/etc/lximage-qt.profile
@@ -14,8 +14,11 @@ include disable-exec.inc
14include disable-interpreters.inc 14include disable-interpreters.inc
15include disable-passwdmgr.inc 15include disable-passwdmgr.inc
16include disable-programs.inc 16include disable-programs.inc
17include whitelist-var-common.inc
17 18
19apparmor
18caps.drop all 20caps.drop all
21net none
19netfilter 22netfilter
20no3d 23no3d
21nodvd 24nodvd
diff --git a/etc/lxmusic.profile b/etc/lxmusic.profile
index e1a37343e..9094f4377 100644
--- a/etc/lxmusic.profile
+++ b/etc/lxmusic.profile
@@ -20,6 +20,7 @@ include disable-xdg.inc
20 20
21include whitelist-var-common.inc 21include whitelist-var-common.inc
22 22
23apparmor
23caps.drop all 24caps.drop all
24netfilter 25netfilter
25no3d 26no3d
diff --git a/etc/open-invaders.profile b/etc/open-invaders.profile
index 5925ccc09..0ba9451d8 100644
--- a/etc/open-invaders.profile
+++ b/etc/open-invaders.profile
@@ -10,6 +10,7 @@ noblacklist ${HOME}/.openinvaders
10 10
11include disable-common.inc 11include disable-common.inc
12include disable-devel.inc 12include disable-devel.inc
13include disable-exec.inc
13include disable-interpreters.inc 14include disable-interpreters.inc
14include disable-passwdmgr.inc 15include disable-passwdmgr.inc
15include disable-programs.inc 16include disable-programs.inc
@@ -17,7 +18,9 @@ include disable-programs.inc
17mkdir ${HOME}/.openinvaders 18mkdir ${HOME}/.openinvaders
18whitelist ${HOME}/.openinvaders 19whitelist ${HOME}/.openinvaders
19include whitelist-common.inc 20include whitelist-common.inc
21include whitelist-var-common.inc
20 22
23apparmor
21caps.drop all 24caps.drop all
22net none 25net none
23nodbus 26nodbus
diff --git a/etc/opencity.profile b/etc/opencity.profile
index 6a27c8095..b0192c947 100644
--- a/etc/opencity.profile
+++ b/etc/opencity.profile
@@ -21,6 +21,7 @@ whitelist ${HOME}/.opencity
21include whitelist-common.inc 21include whitelist-common.inc
22include whitelist-var-common.inc 22include whitelist-var-common.inc
23 23
24apparmor
24caps.drop all 25caps.drop all
25ipc-namespace 26ipc-namespace
26net none 27net none
diff --git a/etc/openclonk.profile b/etc/openclonk.profile
index da60006b3..8921bc460 100644
--- a/etc/openclonk.profile
+++ b/etc/openclonk.profile
@@ -21,9 +21,10 @@ whitelist ${HOME}/.clonk
21include whitelist-common.inc 21include whitelist-common.inc
22include whitelist-var-common.inc 22include whitelist-var-common.inc
23 23
24apparmor
24caps.drop all 25caps.drop all
25ipc-namespace 26ipc-namespace
26net none 27# net none - networked game
27nodbus 28nodbus
28nodvd 29nodvd
29nogroups 30nogroups
diff --git a/etc/openttd.profile b/etc/openttd.profile
index 5de4d325d..507a18e1c 100644
--- a/etc/openttd.profile
+++ b/etc/openttd.profile
@@ -21,8 +21,10 @@ whitelist ${HOME}/.openttd
21include whitelist-common.inc 21include whitelist-common.inc
22include whitelist-var-common.inc 22include whitelist-var-common.inc
23 23
24apparmor
24caps.drop all 25caps.drop all
25ipc-namespace 26ipc-namespace
27net none
26netfilter 28netfilter
27nodbus 29nodbus
28nodvd 30nodvd
diff --git a/etc/ping.profile b/etc/ping.profile
index 5f68ee011..75ad0ee31 100644
--- a/etc/ping.profile
+++ b/etc/ping.profile
@@ -19,6 +19,7 @@ include whitelist-common.inc
19include whitelist-usr-share-common.inc 19include whitelist-usr-share-common.inc
20include whitelist-var-common.inc 20include whitelist-var-common.inc
21 21
22apparmor
22caps.keep net_raw 23caps.keep net_raw
23ipc-namespace 24ipc-namespace
24#net tun0 25#net tun0
diff --git a/etc/pingus.profile b/etc/pingus.profile
index a3adc55a2..8e77a26d0 100644
--- a/etc/pingus.profile
+++ b/etc/pingus.profile
@@ -10,6 +10,7 @@ noblacklist ${HOME}/.pingus
10 10
11include disable-common.inc 11include disable-common.inc
12include disable-devel.inc 12include disable-devel.inc
13include disable-exec.inc
13include disable-interpreters.inc 14include disable-interpreters.inc
14include disable-passwdmgr.inc 15include disable-passwdmgr.inc
15include disable-programs.inc 16include disable-programs.inc
@@ -17,7 +18,9 @@ include disable-programs.inc
17mkdir ${HOME}/.pingus 18mkdir ${HOME}/.pingus
18whitelist ${HOME}/.pingus 19whitelist ${HOME}/.pingus
19include whitelist-common.inc 20include whitelist-common.inc
21include whitelist-var-common.inc
20 22
23apparmor
21caps.drop all 24caps.drop all
22net none 25net none
23nodbus 26nodbus
diff --git a/etc/supertux2.profile b/etc/supertux2.profile
index 4c64ee766..a702faa9e 100644
--- a/etc/supertux2.profile
+++ b/etc/supertux2.profile
@@ -10,6 +10,7 @@ noblacklist ${HOME}/.local/share/supertux2
10 10
11include disable-common.inc 11include disable-common.inc
12include disable-devel.inc 12include disable-devel.inc
13include disable-exec.inc
13include disable-interpreters.inc 14include disable-interpreters.inc
14include disable-passwdmgr.inc 15include disable-passwdmgr.inc
15include disable-programs.inc 16include disable-programs.inc
@@ -19,6 +20,7 @@ whitelist ${HOME}/.local/share/supertux2
19include whitelist-common.inc 20include whitelist-common.inc
20include whitelist-var-common.inc 21include whitelist-var-common.inc
21 22
23apparmor
22caps.drop all 24caps.drop all
23net none 25net none
24nodbus 26nodbus
diff --git a/etc/tshark.profile b/etc/tshark.profile
index 22ced5d8a..211f59f29 100644
--- a/etc/tshark.profile
+++ b/etc/tshark.profile
@@ -19,6 +19,7 @@ include whitelist-common.inc
19include whitelist-usr-share-common.inc 19include whitelist-usr-share-common.inc
20include whitelist-var-common.inc 20include whitelist-var-common.inc
21 21
22apparmor
22#caps.keep net_raw 23#caps.keep net_raw
23caps.keep dac_override,net_admin,net_raw 24caps.keep dac_override,net_admin,net_raw
24ipc-namespace 25ipc-namespace
diff --git a/etc/wget.profile b/etc/wget.profile
index 401926e2d..d402316e9 100644
--- a/etc/wget.profile
+++ b/etc/wget.profile
@@ -26,6 +26,7 @@ include disable-programs.inc
26include whitelist-usr-share-common.inc 26include whitelist-usr-share-common.inc
27include whitelist-var-common.inc 27include whitelist-var-common.inc
28 28
29apparmor
29caps.drop all 30caps.drop all
30ipc-namespace 31ipc-namespace
31machine-id 32machine-id
diff --git a/etc/whois.profile b/etc/whois.profile
index 0e60e18ab..9af6d6843 100644
--- a/etc/whois.profile
+++ b/etc/whois.profile
@@ -21,6 +21,7 @@ include disable-xdg.inc
21include whitelist-usr-share-common.inc 21include whitelist-usr-share-common.inc
22include whitelist-var-common.inc 22include whitelist-var-common.inc
23 23
24apparmor
24caps.drop all 25caps.drop all
25hostname whois 26hostname whois
26ipc-namespace 27ipc-namespace