diff options
author | rusty-snake <print_hello_world+Public@protonmail.com> | 2020-01-19 10:26:48 +0100 |
---|---|---|
committer | rusty-snake <print_hello_world+Public@protonmail.com> | 2020-01-19 10:26:48 +0100 |
commit | e1f356b2a15b247907a77ef1aa7a552a1471ad61 (patch) | |
tree | 6c2c0b4151dbac20c022f0e4b068dd2fa4d58ae9 /etc | |
parent | create rtv.profile (diff) | |
download | firejail-e1f356b2a15b247907a77ef1aa7a552a1471ad61.tar.gz firejail-e1f356b2a15b247907a77ef1aa7a552a1471ad61.tar.zst firejail-e1f356b2a15b247907a77ef1aa7a552a1471ad61.zip |
harden celluloid.profile
Diffstat (limited to 'etc')
-rw-r--r-- | etc/celluloid.profile | 3 |
1 files changed, 3 insertions, 0 deletions
diff --git a/etc/celluloid.profile b/etc/celluloid.profile index 5a3bf0008..d099ba11e 100644 --- a/etc/celluloid.profile +++ b/etc/celluloid.profile | |||
@@ -24,6 +24,7 @@ include disable-passwdmgr.inc | |||
24 | include disable-programs.inc | 24 | include disable-programs.inc |
25 | include disable-xdg.inc | 25 | include disable-xdg.inc |
26 | 26 | ||
27 | include whitelist-usr-share-common.inc | ||
27 | include whitelist-var-common.inc | 28 | include whitelist-var-common.inc |
28 | 29 | ||
29 | apparmor | 30 | apparmor |
@@ -45,3 +46,5 @@ private-etc alternatives,ca-certificates,crypto-policies,dconf,drirc,fonts,gtk-3 | |||
45 | private-dev | 46 | private-dev |
46 | private-tmp | 47 | private-tmp |
47 | 48 | ||
49 | read-only ${HOME} | ||
50 | read-write ${HOME}/.config/celluloid | ||