aboutsummaryrefslogtreecommitdiffstats
path: root/etc
diff options
context:
space:
mode:
authorLibravatar rusty-snake <print_hello_world+Public@protonmail.com>2020-01-18 14:02:59 +0100
committerLibravatar rusty-snake <print_hello_world+Public@protonmail.com>2020-01-18 14:03:53 +0100
commiteba10ae24f248b96b746c81ee412141d1eb68d9e (patch)
treeff992e368abb022dfe2e36fed191fbea93e2811e /etc
parentmake devilspie2 redircet to devilspie (#3163) (diff)
downloadfirejail-eba10ae24f248b96b746c81ee412141d1eb68d9e.tar.gz
firejail-eba10ae24f248b96b746c81ee412141d1eb68d9e.tar.zst
firejail-eba10ae24f248b96b746c81ee412141d1eb68d9e.zip
add tvbrowser.profile
Thanks @Micha-Btz for all the testing.
Diffstat (limited to 'etc')
-rw-r--r--etc/disable-programs.inc2
-rw-r--r--etc/tvbrowser.profile51
2 files changed, 53 insertions, 0 deletions
diff --git a/etc/disable-programs.inc b/etc/disable-programs.inc
index 7e8e67656..25bc37801 100644
--- a/etc/disable-programs.inc
+++ b/etc/disable-programs.inc
@@ -312,6 +312,7 @@ blacklist ${HOME}/.config/tox
312blacklist ${HOME}/.config/transgui 312blacklist ${HOME}/.config/transgui
313blacklist ${HOME}/.config/transmission 313blacklist ${HOME}/.config/transmission
314blacklist ${HOME}/.config/truecraft 314blacklist ${HOME}/.config/truecraft
315blacklist ${HOME}/.config/tvbrowser
315blacklist ${HOME}/.config/uGet 316blacklist ${HOME}/.config/uGet
316blacklist ${HOME}/.config/uzbl 317blacklist ${HOME}/.config/uzbl
317blacklist ${HOME}/.config/viewnior 318blacklist ${HOME}/.config/viewnior
@@ -663,6 +664,7 @@ blacklist ${HOME}/.torcs
663blacklist ${HOME}/.tremulous 664blacklist ${HOME}/.tremulous
664blacklist ${HOME}/.ts3client 665blacklist ${HOME}/.ts3client
665blacklist ${HOME}/.tuxguitar* 666blacklist ${HOME}/.tuxguitar*
667blacklist ${HOME}/.tvbrowser
666blacklist ${HOME}/.unknown-horizons 668blacklist ${HOME}/.unknown-horizons
667blacklist ${HOME}/.viking 669blacklist ${HOME}/.viking
668blacklist ${HOME}/.viking-maps 670blacklist ${HOME}/.viking-maps
diff --git a/etc/tvbrowser.profile b/etc/tvbrowser.profile
new file mode 100644
index 000000000..6e028b086
--- /dev/null
+++ b/etc/tvbrowser.profile
@@ -0,0 +1,51 @@
1# Firejail profile for tvbrowser
2# Description: java tv programm form tvbrowser.org
3# This file is overwritten after every install/update
4# Persistent local customizations
5include tvbrowser.local
6# Persistent global definitions
7include globals.local
8
9noblacklist ${HOME}/.config/tvbrowser
10noblacklist ${HOME}/.tvbrowser
11
12# Allow java (blacklisted by disable-devel.inc)
13include allow-java.inc
14
15include disable-common.inc
16include disable-devel.inc
17include disable-exec.inc
18include disable-interpreters.inc
19include disable-passwdmgr.inc
20include disable-programs.inc
21include disable-xdg.inc
22
23mkdir ${HOME}/.config/tvbrowser
24mkdir ${HOME}/.tvbrowser
25whitelist ${HOME}/.config/tvbrowser
26whitelist ${HOME}/.tvbrowser
27whitelist /usr/share/tvbrowser
28include whitelist-common.inc
29include whitelist-usr-share-common.inc
30include whitelist-var-common.inc
31
32caps.drop all
33netfilter
34no3d
35nodbus
36nodvd
37nogroups
38nonewprivs
39noroot
40notv
41nou2f
42novideo
43protocol unix,inet,inet6
44seccomp
45shell none
46tracelog
47
48disable-mnt
49private-cache
50private-dev
51private-tmp