diff options
author | Thomas Jarosch <thomas.jarosch@intra2net.com> | 2016-07-28 16:24:29 +0200 |
---|---|---|
committer | Thomas Jarosch <thomas.jarosch@intra2net.com> | 2016-07-28 16:30:40 +0200 |
commit | 3da7ed2d8b6a6cb85b9fd07906b0ad518d5ccc32 (patch) | |
tree | b1b997f7b81c43d042c404217ae215d55b588063 /etc | |
parent | whitelist fix (diff) | |
download | firejail-3da7ed2d8b6a6cb85b9fd07906b0ad518d5ccc32.tar.gz firejail-3da7ed2d8b6a6cb85b9fd07906b0ad518d5ccc32.tar.zst firejail-3da7ed2d8b6a6cb85b9fd07906b0ad518d5ccc32.zip |
Add profile for uudeview
uudeview might access unsafe email content,
therefore restrict it as much as possible.
In fact it's best to call firejail with a private home dir, too.
Diffstat (limited to 'etc')
-rw-r--r-- | etc/uudeview.profile | 13 |
1 files changed, 13 insertions, 0 deletions
diff --git a/etc/uudeview.profile b/etc/uudeview.profile new file mode 100644 index 000000000..8218ac959 --- /dev/null +++ b/etc/uudeview.profile | |||
@@ -0,0 +1,13 @@ | |||
1 | # uudeview profile | ||
2 | # the default profile will disable root user, enable seccomp filter etc. | ||
3 | include /etc/firejail/default.profile | ||
4 | |||
5 | tracelog | ||
6 | net none | ||
7 | shell none | ||
8 | private-bin uudeview | ||
9 | private-dev | ||
10 | private-tmp | ||
11 | private-etc nonexisting_fakefile_for_empty_etc | ||
12 | hostname uudeview | ||
13 | nosound | ||